oss-sec mailing list archives

Re: Fuzzing findings (and maybe CVE requests) - Image/GraphicsMagick, elfutils, GIMP, gdk-pixbuf, file, ndisasm, less


From: Jakub Wilk <jwilk () jwilk net>
Date: Mon, 17 Nov 2014 14:52:22 +0100

* Hanno Böck <hanno () hboeck de>, 2014-11-17, 13:33:
I wasn't able to fuzz a crash out of 7z, arj, msgunfmt (gettext),

https://bugs.debian.org/763820
https://bugs.debian.org/769901

I don't remember the exact details, but I'm pretty sure it took at most a few hours of afl-fuzzing to find these crashers.

--
Jakub Wilk


Current thread: