On Tue, 13 Nov 2018 at 19:43, Wolfgang Walter wine@stwm.de wrote:
But probably wineps has other parts where it does not check for overflows or malicious data, i.e. when accessing the glyph table.
Yeah, but you have to start somewhere. If someone had some free time and wanted to have some fun, it may be interesting to run AFL [1] on some of that code. At the very least they'd gain some insight into the various ways in which things can break.