A null pointer dereference was found in libpano13, version libpano13-2.9.20. The flow allows attackers to cause a denial of service and potential code execute via a crafted file.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://groups.google.com/u/1/g/hugin-ptx/c/gLtz2vweD74 | mailing list third party advisory exploit |
https://sourceforge.net/p/panotools/libpano13/ci/62aa7eed8fae5d8f247a2508a757f31000de386f/ | patch |