The attached file causes an overflow in heap thumbnailing. To reproduce, place both attached files on a server and visit http://127.0.0.1/LoadImage.swf?img=thumb2.atf
附件:
[thumb2.atf](https://bugs.chromium.org/p/project-zero/issues/attachment?aid=261527)
[LoadImage.swf](https://bugs.chromium.org/p/project-zero/issues/attachment?aid=261528)
暂无评论