Blame SOURCES/autotrace-0.31.1-CVE-2016-7392.patch

b40ea7
Subject: Fix heap-based buffer overflow in pstoedit_suffix_table_init
b40ea7
ID: CVE-2016-7392
b40ea7
Author: unknown (taken from DLA-621-1)
b40ea7
Bug-Debian: https://bugs.debian.org/837599
b40ea7
b40ea7
--- a/output-pstoedit.c
b40ea7
+++ b/output-pstoedit.c
b40ea7
@@ -84,7 +84,7 @@
b40ea7
       dd_tmp   = dd_start;
b40ea7
       while (dd_tmp->symbolicname)
b40ea7
 	dd_tmp++;
b40ea7
-      XMALLOC(pstoedit_suffix_table, sizeof(char *) * 2 * (dd_tmp - dd_start) + 1);
b40ea7
+      XMALLOC(pstoedit_suffix_table, sizeof(char *) * (2 * (dd_tmp - dd_start) + 1));
b40ea7
 
b40ea7
 #if defined (OUTPUT_PSTOEDIT_DEBUG) && defined(__GNUC__)
b40ea7
   fprintf(stderr, "OUTPUT PSTOEDIT BACKEND DEBUG(%s)\n", __FUNCTION__);