StreamReader::ReadFromExternal in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. It uses uint32t(mBufferSize-mInputSize) even though mInputSize can exceed m_BufferSize.
{ "binaries": [ { "binary_version": "1.18+dfsg-1", "binary_name": "librenderdoc" }, { "binary_version": "1.18+dfsg-1", "binary_name": "librenderdoc-dev" }, { "binary_version": "1.18+dfsg-1", "binary_name": "python3-renderdoc" }, { "binary_version": "1.18+dfsg-1", "binary_name": "qrenderdoc" }, { "binary_version": "1.18+dfsg-1", "binary_name": "renderdoc" }, { "binary_version": "1.18+dfsg-1", "binary_name": "renderdoccmd" } ] }