It was possible to end up with a dangling pointer in m_listStack.
This is now avoided by using QPointer and doing nullptr checks before
accessing any QTextList pointer stored there.
We have 2 specimens of garbage that caused crashes before; now they don't.
But only fuzz20450 triggered the dangling pointer in the list stack.
The crash caused by fuzz20580 was fixed by updating md4c from upstream:
|
||
|---|---|---|
| .. | ||
| data | ||
| qtextmarkdownimporter.pro | ||
| tst_qtextmarkdownimporter.cpp | ||