Deark v.1.6.2 was discovered to contain a stack overflow via the do_prism_read_palette() function at /modules/atari-img.c.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://github.com/jsummers/deark/issues/52 | third party advisory exploit |
https://github.com/jsummers/deark | third party advisory |