Skip to content

OutOfMemoryError parsing a small plist file #72

@lfcnassif

Description

@lfcnassif

The attached 1.68KB plist file causes a 4GB int[] array allocation when parsed using dd-plist-1.23. It is possibly corrupted, but I think the library should defend itself against this to avoid DOS attacks. This was first reported at sepinf-inc/IPED#1403

Let me know if you need some other information.

Thanks in advance.
1061134322640399597.zip

Metadata

Metadata

Assignees

Labels

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions