On Thu, Oct 20, 2022 at 05:11:12PM -0400, Alec Brown wrote:
> In grub-core/video/readers/jpeg.c, Coverity identified an untrusted loop bound
> bug. After resolving this bug, a private Coverity scan identified another
> untrusted loop bound bug in a different function. Since this bug only shows up
> after resolving the first bug, there isn't a CID for the second bug.
>
> The Coverity bugs being addressed are:
> CID 292450
>
> Alec Brown (2):
>       video/readers: Add artificial limit to image dimensions
>       video/readers/jpeg: Check next_marker is within file size

Reviewed-by: Daniel Kiper <daniel.ki...@oracle.com> for both...

Thank you for fixing these issues!

Daniel

_______________________________________________
Grub-devel mailing list
Grub-devel@gnu.org
https://lists.gnu.org/mailman/listinfo/grub-devel

Reply via email to