In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsA fix was pushed into the master branch but not yet published.
Affected versions of this package are vulnerable to Out-of-bounds Write in the PCD decoder when processing a specially crafted PCD file with a page or subimage index of 4 or higher, or a size hint of 1536x1024 or greater. An attacker can achieve heap corruption and potentially execute arbitrary code by supplying a malicious PCD image file to an application that processes untrusted images. This is only exploitable if the decoding conditions involve a page/subimage index of 4 or higher, or a size hint of 1536x1024 or greater.