漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
A memory corruption vulnerability exists in the PSD Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When loading a specially crafted .psd file, an integer overflow can be made to occur when calculating the stride for decoding. Afterwards, this will cause a heap-based buffer to overflow when decoding the image which can lead to remote code execution. An attacker will need to convince the library to read a file to trigger this vulnerability.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Vulnerability Type
整数溢出导致缓冲区溢出
Vulnerability Title
SAIL 安全漏洞
Vulnerability Description
SAIL是SAIL开源的一款图像解码库。 SAIL 0.9.8版本存在安全漏洞,该漏洞源于PSD图像解码功能存在整数溢出,可能导致远程代码执行。
CVSS Information
N/A
Vulnerability Type
N/A