Closed tr3ee closed 4 years ago
CVE-2018-17076 has been assigned to this.
I'm looking at the 'poc_gpp.txt' file, and see a binary. Am I seeing it incorrectly, or is the issue the importance of screening for binary files?
@tr3ee: Thank you for the report. As you may have seen, the issue has been fixed and a new release issued.
When using the file below, GPP will try to use more memory space than is available on the stack.
poc_gpp.txt
This can lead to denial of service attacks, even remote code execution in specific situations