[svn.haxx.se] · SVN Dev · SVN Users · SVN Org · TSVN Dev · TSVN Users · Subclipse Dev · Subclipse Users · this month's index

Re: Suspect buffer underrun in svn_path_uri_decode

From: Julian Foad <julianfoad_at_btopenworld.com>
Date: 2004-10-01 23:07:07 CEST

Peter N. Lundblad wrote:
> On Fri, 1 Oct 2004, Julian Foad wrote:
>
>>Reading old mail, I found this with no reply.
>>
>>Klaus Rennecke wrote:
>>
>>>Shall I file this in the issue tracker? I believe it's a severe memory
>>>corruption risk.
>>
>>The snippet below only shows _reading_ from invalid memory, but this does then cause the output buffer to overflow, so it is bad.
>
> AFAICT, this is fixed on trunk and in 1.1. Checks were inserted in the if
> statement. I don't know in what revision it was fixed, though.

Oh, so it is (r10199 and r10200). Apologies for not checking this before posting.

- Julian

---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscribe@subversion.tigris.org
For additional commands, e-mail: dev-help@subversion.tigris.org
Received on Fri Oct 1 23:08:28 2004

This is an archived mail posted to the Subversion Dev mailing list.