StreamReader::ReadFromExternal in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. It uses uint32_t(m_BufferSize-m_InputSize) even though m_InputSize can exceed m_BufferSize.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-06-07T00:00:00

Updated: 2024-08-02T15:54:13.336Z

Reserved: 2023-05-23T00:00:00

Link: CVE-2023-33864

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-06-07T20:15:10.007

Modified: 2024-11-21T08:06:05.600

Link: CVE-2023-33864

cve-icon Redhat

No data.