[prev in list] [next in list] [prev in thread] [next in thread] 

List:       kde-commits
Subject:    branches/KDE/3.5/kdegraphics/kpdf/xpdf/xpdf
From:       Dirk Mueller <mueller () kde ! org>
Date:       2007-07-30 13:59:31
Message-ID: 1185803971.622750.5304.nullmailer () svn ! kde ! org
[Download RAW message or body]

SVN commit 694346 by mueller:

newest round of xpdf fixes (CVE-2007-3387)


 M  +3 -3      Stream.cc  


--- branches/KDE/3.5/kdegraphics/kpdf/xpdf/xpdf/Stream.cc #694345:694346
@@ -411,9 +411,9 @@
 
   nVals = width * nComps;
   if (width <= 0 || nComps <= 0 || nBits <= 0 ||
-      nComps >= INT_MAX / nBits ||
-      width >= INT_MAX / nComps / nBits ||
-      nVals * nBits + 7 < 0) {
+      nComps > gfxColorMaxComps || nBits > 16 ||
+      width >= INT_MAX / nComps ||
+      nVals >= (INT_MAX - 7) / nBits) {
     return;
   }
   pixBytes = (nComps * nBits + 7) >> 3;
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic