freetype-commit
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Git][freetype/freetype][master] [colr] Ensure enough bytes for PaintCol


From: Werner Lemberg (@wl)
Subject: [Git][freetype/freetype][master] [colr] Ensure enough bytes for PaintColrLayers
Date: Sat, 09 Mar 2024 06:42:57 +0000

Werner Lemberg pushed to branch master at FreeType / FreeType

Commits:

  • f42ce255
    by Ben Wanger at 2024-03-08T14:55:12-05:00
    [colr] Ensure enough bytes for PaintColrLayers
    
    * src/sfnt/ttcolr.c (read_paint): check that there are five additional
    bytes to be read when reading PaintColrLayers.
    
    Reported as
    
      https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=66566
    

1 changed file:

Changes:

  • src/sfnt/ttcolr.c
    ... ... @@ -661,6 +661,7 @@
    661 661
           FT_UInt32  first_layer_index;
    
    662 662
     
    
    663 663
     
    
    664
    +      ENSURE_READ_BYTES( 5 );
    
    664 665
           num_layers = FT_NEXT_BYTE( p );
    
    665 666
           if ( num_layers > colr->num_layers_v1 )
    
    666 667
             return 0;
    


  • reply via email to

    [Prev in Thread] Current Thread [Next in Thread]