In prepare_to_draw_into_mask of SkBlurMaskFilterImpl.cpp,...
High severity
Unreviewed
Published
Jan 3, 2025
to the GitHub Advisory Database
•
Updated Jan 4, 2025
Description
Published by the National Vulnerability Database
Jan 3, 2025
Published to the GitHub Advisory Database
Jan 3, 2025
Last updated
Jan 4, 2025
In prepare_to_draw_into_mask of SkBlurMaskFilterImpl.cpp, there is a possible heap overflow due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
References