[libksba] asn1-func.c: array index out of range

Werner Koch wk at gnupg.org
Mon Jun 29 08:32:32 CEST 2009

On Wed, 24 Jun 2009 18:26, petr.uzel at suse.cz said:

> as David Binderman (CC:) pointed out in [1], there's a 'array index
> out of range' bug in current libksba. Patch follows ;)

Thanks for reporting.  This is a really old code part:

	* asn1-func.c (copy_value): Fix out-of-bounds assignment of a
	boolean to HELPBUF.  Due to alignment rules this was not
	exploitable and we did not even used this code path.  Reported by
	David Binderman.

Fixed in SVN r306.



Die Gedanken sind frei.  Auschnahme regelt ein Bundeschgesetz.

More information about the Gnupg-devel mailing list