Bug 1089730 - (CVE-2018-10111) VUL-1: CVE-2018-10111: gegl: The render_rectangle function inprocess/gegl-processor.c has unbounded memory allocation, leading to a denial of service
(CVE-2018-10111)
VUL-1: CVE-2018-10111: gegl: The render_rectangle function inprocess/gegl-pro...
Status: NEW
Classification: openSUSE
Product: openSUSE Tumbleweed
Classification: openSUSE
Component: Security
Current
Other openSUSE Factory
: P4 - Low : Minor (vote)
: Current
Assigned To: E-mail List
Security Team bot
https://smash.suse.de/issue/204017/
CVSSv3:RedHat:CVE-2018-10111:4.3:(AV...
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2018-04-16 15:28 UTC by Johannes Segitz
Modified: 2019-07-03 10:36 UTC (History)
2 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments
Reproducer (116 bytes, text/plain)
2018-04-16 15:28 UTC, Johannes Segitz
Details

Note You need to log in before you can comment on or make changes to this bug.
Description Johannes Segitz 2018-04-16 15:28:26 UTC
Created attachment 767310 [details]
Reproducer

CVE-2018-10111

An issue was discovered in GEGL through 0.3.32. The render_rectangle function in
process/gegl-processor.c has unbounded memory allocation, leading to a denial of
service (application crash) upon allocation failure.

Reproducer: gegl gegl-dos-2

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2018-10111
https://github.com/xiaoqx/pocs/tree/master/gegl
Comment 1 Markéta Machová 2018-09-07 09:23:37 UTC
Upstream issue: https://gitlab.gnome.org/GNOME/gegl/issues/65
This bug isn't fixed yet and due to its low priority we can wait for the upstream to fix it.