Bug#964552: [Security Issue][liblivemedia] stack buffer overflow in liblivemedia

2020-07-08 Thread Xiaobo Xiang
0000000-0.01\r\n\r\n' % sessionId s.send(payload) time.sleep(0.1) print(s.recv(0x1)) while True: pass ``` Best Regards, Xiaobo Xiang

Bug#861738: [bug report][libpodofo]heap based overflow in ReadXRefStreamEntry

2017-05-03 Thread Xiaobo Xiang
Package: libpodofo Version: 0.9.5 [summary] I've found a heap based buffer overflow in libpodofo using libFuzzer. PdfXRefStreamParserObject::ReadXRefStreamEntry(src/base/PdfXRefStreamParserObject.cpp:224) [details] in function PdfXRefStreamParserObject::ReadXRefTable(), the program get nW[] array