3528ec
From 4c5f309925e568f3ccd4bacc1907c082401c13cd Mon Sep 17 00:00:00 2001
3528ec
From: =?UTF-8?q?Nikola=20Forr=C3=B3?= <nforro@redhat.com>
3528ec
Date: Thu, 6 Dec 2018 14:42:00 +0100
3528ec
Subject: [PATCH 01/10] Fix CVE-2016-3186
3528ec
3528ec
---
3528ec
 tools/gif2tiff.c | 2 +-
3528ec
 1 file changed, 1 insertion(+), 1 deletion(-)
3528ec
3528ec
diff --git a/tools/gif2tiff.c b/tools/gif2tiff.c
3528ec
index 1e9b4b9..e89ac5b 100644
3528ec
--- a/tools/gif2tiff.c
3528ec
+++ b/tools/gif2tiff.c
3528ec
@@ -316,7 +316,7 @@ readextension(void)
3528ec
     char buf[255];
3528ec
 
3528ec
     (void) getc(infile);
3528ec
-    while ((count = getc(infile)))
3528ec
+    while ((count = getc(infile)) && count >= 0 && count <= 255)
3528ec
         fread(buf, 1, count, infile);
3528ec
 }
3528ec
 
3528ec
-- 
3528ec
2.17.2
3528ec