[frameworks-kimageformats] [Bug 498368] ANI plugin DoS vulnerability

2025-01-14 Thread bugzilla_noreply
https://bugs.kde.org/show_bug.cgi?id=498368 --- Comment #7 from iph...@gmail.com --- Thank you so much for the quick fixes. I'll be running a fuzzer against all the plugins for a while. If I find more issues, I'll file more bugs. We want to use these plugins for our chat client (qTox) and want to

[frameworks-kimageformats] [Bug 498368] ANI plugin DoS vulnerability

2025-01-14 Thread Albert Astals Cid
https://bugs.kde.org/show_bug.cgi?id=498368 Albert Astals Cid changed: What|Removed |Added Latest Commit||https://invent.kde.org/fram

[frameworks-kimageformats] [Bug 498368] ANI plugin DoS vulnerability

2025-01-13 Thread Bug Janitor Service
https://bugs.kde.org/show_bug.cgi?id=498368 Bug Janitor Service changed: What|Removed |Added Ever confirmed|0 |1 Status|REPORTED

[frameworks-kimageformats] [Bug 498368] ANI plugin DoS vulnerability

2025-01-13 Thread Albert Astals Cid
https://bugs.kde.org/show_bug.cgi?id=498368 Albert Astals Cid changed: What|Removed |Added Status|NEEDSINFO |REPORTED Resolution|WAITINGFORINFO

[frameworks-kimageformats] [Bug 498368] ANI plugin DoS vulnerability

2025-01-08 Thread bugzilla_noreply
https://bugs.kde.org/show_bug.cgi?id=498368 --- Comment #4 from iph...@gmail.com --- It's not a wrong memory access, it's a 4GB memory allocation. Try setting ulimit to something not unlimited. -- You are receiving this mail because: You are watching all bug changes.

[frameworks-kimageformats] [Bug 498368] ANI plugin DoS vulnerability

2025-01-08 Thread Albert Astals Cid
https://bugs.kde.org/show_bug.cgi?id=498368 --- Comment #3 from Albert Astals Cid --- i can not reproduce any wrong memory access with that code neigher with valgrind nor with asan. Do you have a backtrace you can share with us? -- You are receiving this mail because: You are watching all bug

[frameworks-kimageformats] [Bug 498368] ANI plugin DoS vulnerability

2025-01-08 Thread bugzilla_noreply
https://bugs.kde.org/show_bug.cgi?id=498368 --- Comment #2 from iph...@gmail.com --- https://github.com/TokTok/toktok-stack/blob/31385ffceba1ab2f8672893bbef6c8ef8a32eb07/third_party/kimageformats/test/qimage_test.cpp#L48-L50 Base64-encoded: ``` AFJJRkYOAACAQUNPTgB+YAAAUklGRg4AAIBBQ09OAH5g

[frameworks-kimageformats] [Bug 498368] ANI plugin DoS vulnerability

2025-01-08 Thread Albert Astals Cid
https://bugs.kde.org/show_bug.cgi?id=498368 Albert Astals Cid changed: What|Removed |Added Resolution|--- |WAITINGFORINFO Status|REPORTED