Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Potential null-pointer dereference vulnerability #19992

Open
HoshinoStranding opened this issue Feb 17, 2025 · 0 comments
Open

Potential null-pointer dereference vulnerability #19992

HoshinoStranding opened this issue Feb 17, 2025 · 0 comments

Comments

@HoshinoStranding
Copy link

Hi, I have found a potential null-pointer-dereference bug in the project and would like to report it to the maintainers. Can you please help me check it? Thank you for your effort and patience!

At line 549 in file ext/SPIRV-Cross/spirv_cross.hpp, the function Compiler::stream may return NULL. But at line 4906 in file ext/SPIRV-Cross/spirv_hlsl.cpp, the function CompilerHLSL::emit_store calls Compiler::stream and doesn't check the return value before dereferencing it, which may lead to null-pointer-dereference vulnerability. The same risk also exists at line 9341 in file ext/SPIRV-Cross/spirv_msl.cpp.

Image

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant