Fix crash in qppmhandler for certain malformed image files
authorEirik Aavitsland <eirik.aavitsland@qt.io>
Thu, 2 Aug 2018 11:11:20 +0000 (13:11 +0200)
committerFelix Geyer <fgeyer@debian.org>
Sun, 14 Jul 2019 10:19:27 +0000 (11:19 +0100)
commit77da376213eaaca7da930b0fdd71e709f89e925c
treef76151d006215d9ff99be9eacf0af8bcf7c3ec75
parente58d5061d1bc9fa8099fe25db47217a6ab6e41ff
Fix crash in qppmhandler for certain malformed image files

The ppm format specifies that the maximum color value field must be
less than 65536. The handler did not enforce this, leading to
potentional overflow when the value was used in 16 bits context.

Task-number: QTBUG-69449
Change-Id: Iea7a7e0f8953ec1ea8571e215687d12a9d77e11c
Reviewed-by: Lars Knoll <lars.knoll@qt.io>
Gbp-Pq: Name CVE-2018-19872.patch
src/gui/image/qppmhandler.cpp