[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256040

 
 

909

 
 

199103

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2023-2023-355 --- libwebp

ID: oval:org.secpod.oval:def:19500417Date: (C)2024-01-04   (M)2024-01-08
Class: PATCHFamily: unix




With a specially crafted WebP lossless file, libwebp may write data out of bounds to the heap.The ReadHuffmanCodes function allocates the HuffmanCode buffer with a size that comes from an array of precomputed sizes: kTableSize. The color_cache_bits value defines which size to use.The kTableSize array only takes into account sizes for 8-bit first-level table lookups but not second-level table lookups. libwebp allows codes that are up to 15-bit . When BuildHuffmanTable attempts to fill the second-level tables it may write data out-of-bounds. The OOB write to the undersized array happens in ReplicateValue

Platform:
Amazon Linux 2023
Product:
libwebp
Reference:
ALAS2023-2023-355
CVE-2023-4863
CVE    1
CVE-2023-4863
CPE    1
cpe:/a:webmproject:libwebp

© SecPod Technologies