Skip to content

CVE-2024-23077.#397

Merged
jfree merged 1 commit intojfree:v1.5.xfrom
trashgod:CVE-2024-23077
Jun 23, 2024
Merged

CVE-2024-23077.#397
jfree merged 1 commit intojfree:v1.5.xfrom
trashgod:CVE-2024-23077

Conversation

@trashgod
Copy link
Copy Markdown
Contributor

@trashgod trashgod commented Apr 17, 2024

In v1.5.x, add check and test for lower array bound to CompassPlot::setSeriesNeedle, mentioned in CVE-2024-23077 and CVE-2023-52070, raised in issue #396.

Copy link
Copy Markdown
Collaborator

@tracylynne99 tracylynne99 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

That looks good to me

@jfree jfree merged commit 2f3754d into jfree:v1.5.x Jun 23, 2024
@jfree
Copy link
Copy Markdown
Owner

jfree commented Jun 23, 2024

Thanks

jfree added a commit that referenced this pull request Jun 23, 2024
@jfree jfree mentioned this pull request Jun 23, 2024
@trashgod trashgod deleted the CVE-2024-23077 branch October 16, 2024 21:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants