[issue2595] Multiple integer overflows in imgfile extension module lead to buffer overflow

Justin Ferguson report at bugs.python.org
Tue Apr 8 19:01:25 CEST 2008


Justin Ferguson <justin.ferguson at ioactive.com> added the comment:

I'm not going to file a different bug for rgbimgmodule.c, it has the
same types of issues.

Sorry, I don't mean to drop a ton of bugs, I'm prepping up to do a talk
on attacking the metadata in scripting languages (i.e. the python call
stack instead of the processors) and I need to have these public/patched
before I talk about them. I've got a bunch more bugs, I'll file them
later when some of this stuff is caught up with.

__________________________________
Tracker <report at bugs.python.org>
<http://bugs.python.org/issue2595>
__________________________________


More information about the Python-bugs-list mailing list