GNOME Bugzilla – Bug 769170
ico loader crashes when loading crafted file
Last modified: 2016-08-03 16:48:12 UTC
There's a crash when loading specially crafted ico files. See http://seclists.org/oss-sec/2016/q3/61 I have reproduced this with 2.30.7, 2.31.1 and 2.35.2. It doesn't happen with 2.26.1. It's easily reproducible with tests/pixbuf-read. Here's the backtrace for 2.35.2: Program received signal SIGSEGV, Segmentation fault. 0x00007ffff54ea414 in OneLine32 (context=0x611f50) at io-ico.c:596 596 Pixels[X * 4 + 0] = context->LineBuf[X * 4 + 2]; (gdb) bt
+ Trace 236484
Created attachment 332123 [details] ico test file Attached (compressed) test file.