Description
Out-of-bounds Write vulnerability in PointCloudLibrary pcl allows Overflow Buffers. Since version 1.14.0, PCL by default uses a zlib installation from the system, unless the user sets WITH_SYSTEM_ZLIB=FALSE. So this potential vulnerability is only relevant if the PCL version is older than 1.14.0 or the user specifically requests to not use the system zlib.
Problem types
Product status
Any version before <1.15.0
Credits
TITAN Team (titancaproject@gmail.com)
References
github.com/PointCloudLibrary/pcl/pull/6246
github.com/...Library/pcl/blob/master/surface/CMakeLists.txt
github.com/...ommit/502bd2b013ce635f21632d523aa8cf2e04f7b7ac