summaryrefslogtreecommitdiffstats
path: root/abs/core/libtiff/libtiff-CVE-2013-4244.patch
diff options
context:
space:
mode:
Diffstat (limited to 'abs/core/libtiff/libtiff-CVE-2013-4244.patch')
-rw-r--r--abs/core/libtiff/libtiff-CVE-2013-4244.patch15
1 files changed, 15 insertions, 0 deletions
diff --git a/abs/core/libtiff/libtiff-CVE-2013-4244.patch b/abs/core/libtiff/libtiff-CVE-2013-4244.patch
new file mode 100644
index 0000000..792e076
--- /dev/null
+++ b/abs/core/libtiff/libtiff-CVE-2013-4244.patch
@@ -0,0 +1,15 @@
+diff --git a/tools/gif2tiff.c b/tools/gif2tiff.c
+index 375b152..2731273 100644
+--- a/tools/gif2tiff.c
++++ b/tools/gif2tiff.c
+@@ -402,6 +402,10 @@ process(register int code, unsigned char** fill)
+ }
+
+ if (oldcode == -1) {
++ if (code >= clear) {
++ fprintf(stderr, "bad input: code=%d is larger than clear=%d\n",code, clear);
++ return 0;
++ }
+ *(*fill)++ = suffix[code];
+ firstchar = oldcode = code;
+ return 1;