GNOME Bugzilla – Bug 703625
Segfault in go_image_set_name on a corrupted (fuzzed) gnumeric file
Last modified: 2013-07-04 19:29:01 UTC
Segfault in go_image_set_name on a corrupted (fuzzed) gnumeric file. Git versions of glib, goffice, gnumeric, libgsf and libxml2. Test case: http://jutaky.com/fuzzing/gnumeric_case_2122_27732.gnumeric Program received signal SIGSEGV, Segmentation fault. 0x00007ffff75469a1 in go_image_set_name (image=0x0, name=0x7c2610 "Image") at utils/go-image.c:722 722 g_free (image->name); (gdb) bt
+ Trace 232188
-- Juha Kylmänen Research Assistant, OUSPG
This problem has been fixed in the development version. The fix will be available in the next major software release. Thank you for your bug report.