Leptonica before 1.80.0 allows a heap-based buffer over-read in findNextBorderPixel in ccbord.c.
[ { "source": "https://github.com/danbloomberg/leptonica/commit/8d6e1755518cfb98536d6c3daf0601f226d16842", "deprecated": false, "digest": { "function_hash": "127539715730754054398143450005495522806", "length": 518.0 }, "target": { "file": "src/ccbord.c", "function": "findNextBorderPixel" }, "id": "CVE-2020-36278-69a98e2d", "signature_type": "Function", "signature_version": "v1" }, { "source": "https://github.com/danbloomberg/leptonica/commit/8d6e1755518cfb98536d6c3daf0601f226d16842", "deprecated": false, "digest": { "line_hashes": [ "84058546430904092903565697564913235937", "267459965478394905332371027664390918915", "153553398293841150508864306755947262626", "15448888410989113498545674424520384233" ], "threshold": 0.9 }, "target": { "file": "src/ccbord.c" }, "id": "CVE-2020-36278-7ab58c8a", "signature_type": "Line", "signature_version": "v1" } ]