Page MenuHomeFreeBSD

libutil: avoid an out-of-bounds read in trimdomain(3)
Needs ReviewPublic

Authored by kevans on Fri, Jan 9, 5:00 PM.
Tags
None
Referenced Files
Unknown Object (File)
Thu, Jan 15, 3:13 AM
Unknown Object (File)
Sun, Jan 11, 8:43 AM
Unknown Object (File)
Sat, Jan 10, 2:03 AM
Unknown Object (File)
Sat, Jan 10, 1:07 AM
Unknown Object (File)
Fri, Jan 9, 8:14 PM
Subscribers

Details

Reviewers
brooks
jrtc27
olce
Group Reviewers
Klara
Summary

memchr(3) will happily believe we've passed in a valid object, but
hostsize could easily exceed the bounds of fullhost. Clamp it down to
the string size to be safe and avoid UB.

Sponsored by: Klara, Inc.

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Skipped
Unit
Tests Skipped
Build Status
Buildable 69766
Build 66649: arc lint + arc unit