3adc33842b
* libtiff/tif_fax3.c (Fax3SetupState): Avoid under-allocation of buffer due to integer overflow in TIFFroundup() and several other potential overflows. In conjunction with the fix to TIFFhowmany(), fixes CVE-2010-1411. * libtiff/tiffiop.h (TIFFhowmany): Return zero if parameters would result in an integer overflow. This causes TIFFroundup() to also return zero if there would be an integer overflow. |
||
---|---|---|
.. | ||
.cvsignore | ||
back.gif | ||
bali.jpg | ||
cat.gif | ||
cover.jpg | ||
cramps.gif | ||
dave.gif | ||
info.gif | ||
jello.jpg | ||
jim.gif | ||
Makefile.am | ||
Makefile.in | ||
note.gif | ||
oxford.gif | ||
quad.jpg | ||
ring.gif | ||
smallliz.jpg | ||
strike.gif | ||
warning.gif |