Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: cherry-pick 8c346e3cd9 from chromium. #26831

Merged

Conversation

ppontes
Copy link
Member

@ppontes ppontes commented Dec 4, 2020

ui: CHECK that UnPremultiply is passed a 32bpp image

To do otherwise results in accessing random data.

BUG=1147430
TEST=none

(cherry picked from commit 1f673896837ab8c687d93fec604c96c78c7f679b)

Change-Id: Icedacbaac64cad3fc903e6423c6f9aad8c1e8cb5
Reviewed-on: https://chromium-review.googlesource.com/c/chromium/src/+/2531118
Commit-Queue: danakj danakj@chromium.org
Reviewed-by: danakj danakj@chromium.org
Cr-Original-Commit-Position: refs/heads/master@{#826300}
Reviewed-on: https://chromium-review.googlesource.com/c/chromium/src/+/2538047
Reviewed-by: Scott Violet sky@chromium.org
Commit-Queue: Scott Violet sky@chromium.org
Cr-Commit-Position: refs/branch-heads/4240@{#1452}
Cr-Branched-From: f297677702651916bbf65e59c0d4bbd4ce57d1ee-refs/heads/master@{#800218}

Release Notes

Notes: backported the fix to CVE-2020-16024: Heap buffer overflow in UI.

@ppontes ppontes added 9-x-y backport-check-skip Skip trop's backport validity checking labels Dec 4, 2020
@ppontes ppontes requested a review from a team as a code owner December 4, 2020 13:42
@MarshallOfSound MarshallOfSound added the semver/patch backwards-compatible bug fixes label Dec 4, 2020
@MarshallOfSound MarshallOfSound merged commit 533b971 into 9-x-y Dec 4, 2020
@release-clerk
Copy link

release-clerk bot commented Dec 4, 2020

Release Notes Persisted

backported the fix to CVE-2020-16024: Heap buffer overflow in UI.

@MarshallOfSound MarshallOfSound deleted the ppontes/cherry-pick/9-x-y/chromium/8c346e3cd branch December 4, 2020 21:31
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
9-x-y backport-check-skip Skip trop's backport validity checking semver/patch backwards-compatible bug fixes
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants