diff options
author | Alan Coopersmith <alan.coopersmith@oracle.com> | 2013-03-09 13:48:28 -0800 |
---|---|---|
committer | Alan Coopersmith <alan.coopersmith@oracle.com> | 2013-05-04 16:35:55 -0700 |
commit | 5074d9d64192bd04519a438062b7d5bf216d06ee (patch) | |
tree | 4c2ea27a86af0ba756b1739bc93674e3947146b7 /README | |
parent | b6fe1a7af34ea620e002fc453f9c5eacf7db3969 (diff) |
integer overflow in DMXGetInputAttributes() [CVE-2013-1992 3/3]
If the server provided nameLength causes integer overflow
when padding length is added, a smaller buffer would be allocated
than the amount of data written to it.
Reported-by: Ilja Van Sprundel <ivansprundel@ioactive.com>
Signed-off-by: Alan Coopersmith <alan.coopersmith@oracle.com>
Diffstat (limited to 'README')
0 files changed, 0 insertions, 0 deletions