Back to bug 2240759

Who When What Removed Added
TEJ RATHI 2023-09-26 10:43:30 UTC Blocks 2240760
Pedro Sampaio 2023-09-27 17:11:09 UTC Summary TRIAGE-CVE-2023-5129 libwebp: out-of-bounds write with a specially crafted WebP lossless file CVE-2023-5129 libwebp: out-of-bounds write with a specially crafted WebP lossless file
Pedro Sampaio 2023-09-27 17:15:19 UTC Summary CVE-2023-5129 libwebp: out-of-bounds write with a specially crafted WebP lossless file libwebp: out-of-bounds write with a specially crafted WebP lossless file
Pedro Sampaio 2023-09-27 17:25:43 UTC Alias TRIAGE-CVE-2023-5129 CVE-2023-5129
Pedro Sampaio 2023-09-27 17:26:18 UTC Summary libwebp: out-of-bounds write with a specially crafted WebP lossless file CVE-2023-5129 libwebp: out-of-bounds write with a specially crafted WebP lossless file
Pedro Sampaio 2023-09-27 17:29:02 UTC Doc Text A heap-based buffer flaw was found in the way libwebp, a library used to process "WebP" image format data, processes certain specially formatted WebP images. An attacker could use this flaw to crash or execute remotely arbitrary code in an application such as a web browser compiled with this library.
Paige Jung 2023-09-27 18:00:22 UTC Doc Text A heap-based buffer flaw was found in the way libwebp, a library used to process "WebP" image format data, processes certain specially formatted WebP images. An attacker could use this flaw to crash or execute remotely arbitrary code in an application such as a web browser compiled with this library. A heap-based buffer flaw was found in libwebp, a library used to process "WebP" image format data. This issue occurs when processing certain specially formatted WebP images, which could allow an attacker to crash the system or remotely execute arbitrary code in an application such as a web browser compiled with this library.
Sandipan Roy 2023-09-28 06:56:27 UTC Depends On 2241121, 2241119, 2241120, 2241122
Sandipan Roy 2023-09-28 09:01:32 UTC Resolution --- NOTABUG
Doc Text A heap-based buffer flaw was found in libwebp, a library used to process "WebP" image format data. This issue occurs when processing certain specially formatted WebP images, which could allow an attacker to crash the system or remotely execute arbitrary code in an application such as a web browser compiled with this library. This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Duplicate of CVE-2023-4863.
Status NEW CLOSED
Last Closed 2023-09-28 09:01:32 UTC
Sandipan Roy 2023-09-28 09:14:38 UTC Resolution NOTABUG DUPLICATE
Sandipan Roy 2023-09-28 09:16:50 UTC Doc Text This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Duplicate of CVE-2023-4863. This CVE ID has been rejected by its CVE Numbering Authority. Duplicate of CVE-2023-4863.
Tomas Popela 2023-10-02 12:54:15 UTC CC saroy, tpopela
Flags needinfo?(saroy)
Sandipan Roy 2023-10-04 12:22:58 UTC Flags needinfo?(saroy)

Back to bug 2240759