Untriaged
An integer overflow issue has been reported in the general_composite_rect() …
An integer overflow issue has been reported in the general_composite_rect() function in pixman prior to version 0.32.8. An attacker could exploit this issue to cause an application using pixman to crash or, potentially, execute arbitrary code.
References
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-5297 x_refsource_CONFIRM
- https://bugs.freedesktop.org/show_bug.cgi?id=92027 x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-5297 x_transferred x_refsource_CONFIRM
- https://bugs.freedesktop.org/show_bug.cgi?id=92027 x_transferred x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-5297 x_refsource_CONFIRM
- https://bugs.freedesktop.org/show_bug.cgi?id=92027 x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-5297 x_transferred x_refsource_CONFIRM
- https://bugs.freedesktop.org/show_bug.cgi?id=92027 x_transferred x_refsource_MISC
Affected products
pixman
- ==0.32.8
Matching in nixpkgs
pkgs.pixman
Low-level library for pixel manipulation
pkgs.xorg.pixman
Low-level library for pixel manipulation