This is the mail archive of the libc-alpha@sourceware.org mailing list for the glibc project.


Index Nav: [Date Index] [Subject Index] [Author Index] [Thread Index]
Message Nav: [Date Prev] [Date Next] [Thread Prev] [Thread Next]
Other format: [Raw text]

Re: [patch] Fix for heap overflow in wscanf (BZ 16618)


On Mon, Feb 2, 2015 at 10:45 AM, Andreas Schwab <schwab@suse.de> wrote:
                 \
>> +               __set_errno (ENOMEM);                                     \
>
> You already have a meaningful errno from the failed realloc.

I see. And we are sure that "free(old)" will not touch errno?

Patch updated.
-- 
Paul Pluzhnikov

2015-02-02  Paul Pluzhnikov  <ppluzhnikov@google.com>

        [BZ #16618]
        * stdio-common/vfscanf.c (ADDW): Correct alloca size check and
        fix heap buffer overflow.
        * stdio-common/tst-sscanf.c: Add test for BZ 16618

Attachment: pr16618.patch5.txt
Description: Text document


Index Nav: [Date Index] [Subject Index] [Author Index] [Thread Index]
Message Nav: [Date Prev] [Date Next] [Thread Prev] [Thread Next]