[libksba] asn1-func.c: array index out of range

Werner Koch wk at gnupg.org
Mon Jun 29 08:32:32 CEST 2009


On Wed, 24 Jun 2009 18:26, petr.uzel at suse.cz said:

> as David Binderman (CC:) pointed out in [1], there's a 'array index
> out of range' bug in current libksba. Patch follows ;)

Thanks for reporting.  This is a really old code part:

	* asn1-func.c (copy_value): Fix out-of-bounds assignment of a
	boolean to HELPBUF.  Due to alignment rules this was not
	exploitable and we did not even used this code path.  Reported by
	David Binderman.

Fixed in SVN r306.


Salam-Shalom,

   Werner


-- 
Die Gedanken sind frei.  Auschnahme regelt ein Bundeschgesetz.




More information about the Gnupg-devel mailing list