Integer overflow in the CJBig2_Image::expand function in fxcodec/jbig2/JBig2_Image.cpp in PDFium, as used in Google Chrome before 44.0.2403.89, allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via large height and stride values.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Enterprise_linux_desktop_supplementary | Redhat | 6.0 (including) | 6.0 (including) |
Enterprise_linux_server_supplementary | Redhat | 6.0 (including) | 6.0 (including) |
Enterprise_linux_server_supplementary_eus | Redhat | 6.7z (including) | 6.7z (including) |
Enterprise_linux_workstation_supplementary | Redhat | 6.0 (including) | 6.0 (including) |
Red Hat Enterprise Linux 6 Supplementary | RedHat | chromium-browser-0:44.0.2403.89-1.el6 | * |
Chromium-browser | Ubuntu | devel | * |
Chromium-browser | Ubuntu | precise | * |
Chromium-browser | Ubuntu | trusty | * |
Chromium-browser | Ubuntu | upstream | * |
Chromium-browser | Ubuntu | utopic | * |
Chromium-browser | Ubuntu | vivid | * |
Chromium-browser | Ubuntu | wily | * |