From nobody Fri Dec 05 06:16:32 2025 X-Original-To: desktop@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4dN1Nc4FVjz6KVcM for ; Fri, 05 Dec 2025 06:16:32 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R12" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4dN1Nc34N0z3pmG for ; Fri, 05 Dec 2025 06:16:32 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1764915392; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=BWup9QWMRv6utpndKuR2EnKYrsbNpc7rTsRTaSoSLdo=; b=Se4+j8DW8IbHTPAe7g0XV+zfr3tMg2CYjIjZ6tInB/Nu6ElvQw3PS28Njzv+49jOWfOy0Q 2WBIazFDiWucfthNXbs2vqpJ+bbt4RUaRZCL+G5rym1bEyUDKEJvsD8gmUY/XhFjuXtSws GPf/zMEvgI2/17pLSFrPzrit+U4tAVHXexF+v0+lWhjqB5KK/2WdiQl+8FFKczE2FAts0G XGcPIUHZGgR+PT8LFG3/lPO2kr0MSViNb1PhhsTkS4NPRO+N1pR8MOIWg3p/BXqbMqHxHT 3UPOsX09wwxhonJ72ozTov70Z/sWKZqKav8o3Bvfcfa7Opb8BAeYiBlufSDVrQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1764915392; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=BWup9QWMRv6utpndKuR2EnKYrsbNpc7rTsRTaSoSLdo=; b=gsztsOpeJxULf+F7ihVYZp7q0hj6M68awKt0Vwf0Gev1Sy1kOzAWwTEaqyYuG+/SXvr1/P tzJkSg1jd6EI1sNvUzaqCaiujUOX7jnzlP+JQhLEUyv2o+paEJH2FfrYXNL9tLFll6q/Nw OpxH0NnTYjcUeX/hCeROodJy5eWTMQGVb52oUyUQPpktbyKr4VlFHVZ3f07Skt9je0bHw8 3+6cxQVxRem0vOCwkkEy228O0Xg4Tb37F2ilwOng6rQtfwi6adFuZ1ECVTPL/kqR7MHmLu V1sGyV0O/N1IxJb52ZbnuyDAbHorCrcP+5O/nbxBKwKy+WDnf0Y2L5FHrC8IMw== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1764915392; a=rsa-sha256; cv=none; b=aPzex2mACQo1b4D1cdbftfwAZmyqG8F5Jgtp+77lUW8mRKEmdtmXgCQMHLQUsokJO7/jgr TKFxzm2gGktqdMcvbNet6+cXRDNPT35fwOLFxeqdG6xfyUjsa5428f8465Z6C3W8md66pb dL4rHHFU1jR8NK8Ly8K9YrHXH47XG912hcK9p2Fwg8BSIRX0MjZEjJqFFR//rNjn1pt6Xg OHjYqDsoNhkzcYjLdtK8AcU9cEKMGP04gNJ/BhbuqcVOxzznMNbYBQD8cU8WGfwTHs+By6 0iazmFpYhzcRU+/nEdBT4C2kSJYmy9JINdnMuc8sdh4L2eOhnjnoP+4ybCrqJQ== ARC-Authentication-Results: i=1; mx1.freebsd.org; none Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4dN1Nc2b92zxZ3 for ; Fri, 05 Dec 2025 06:16:32 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 5B56GWcY066562 for ; Fri, 5 Dec 2025 06:16:32 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from bugzilla@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 5B56GWXs066561 for desktop@FreeBSD.org; Fri, 5 Dec 2025 06:16:32 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: bugzilla set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: desktop@FreeBSD.org Subject: [Bug 291410] security/vuxml: Out of bounds read in graphics/png Date: Fri, 05 Dec 2025 06:16:32 +0000 X-Bugzilla-Reason: AssignedTo CC X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Ports & Packages X-Bugzilla-Component: Individual Port(s) X-Bugzilla-Version: Latest X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Only Me X-Bugzilla-Who: commit-hook@FreeBSD.org X-Bugzilla-Status: In Progress X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: desktop@FreeBSD.org X-Bugzilla-Flags: X-Bugzilla-Changed-Fields: Message-ID: In-Reply-To: References: Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset="UTF-8" X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Using and improving FreeBSD on the desktop List-Archive: https://lists.freebsd.org/archives/freebsd-desktop List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-desktop@FreeBSD.org MIME-Version: 1.0 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D291410 --- Comment #2 from commit-hook@FreeBSD.org --- A commit in branch main references this bug: URL: https://cgit.FreeBSD.org/ports/commit/?id=3Ddf1135a895c37fcc13ad9e435f48cfb= 3f5df5c49 commit df1135a895c37fcc13ad9e435f48cfb3f5df5c49 Author: Polarian AuthorDate: 2025-12-05 02:36:48 +0000 Commit: Charlie Li CommitDate: 2025-12-05 06:14:17 +0000 security/vuxml: Out of bounds read in graphics/png PR: 291266, 291410 security/vuxml/vuln/2025.xml | 31 +++++++++++++++++++++++++++++++ 1 file changed, 31 insertions(+) --=20 You are receiving this mail because: You are the assignee for the bug. You are on the CC list for the bug.=