|
Viewing Issue Advanced Details
[ Jump to Notes ]
|
[ View Simple ]
[ Issue History ]
[ Print ]
|
|
ID |
Category |
Severity |
Reproducibility |
Date Submitted |
Last Update |
|
0000447 |
[exiv2] miscellaneous |
minor |
always |
2005-12-09 07:08 |
2006-09-07 02:25 |
|
|
Reporter |
ahuggel |
View Status |
public |
|
|
Assigned To |
ahuggel |
|
Priority |
normal |
Resolution |
fixed |
Platform |
|
|
Status |
closed |
|
OS |
|
|
Projection |
none |
|
OS Version |
|
|
ETA |
none |
Fixed in Version |
0.9 |
Product Version |
0.8 |
| |
Target Version |
|
Product Build |
|
|
|
Summary |
0000447: Buffer overflow in sscanf |
|
Description |
sscanf expects a 0 terminated C-string to read from. In exiv2 the function is in some places called with a data buffer (not 0 terminated) instead. This causes a buffer overflow and may crash the application. |
|
Steps To Reproduce |
|
|
Additional Information |
|
| Tags |
No tags attached. |
|
|
Attached Files |
|
|
|