- **status**: unassigned --> fixed
- **Blocker**:  --> False
- **Milestone**: future --> 5.1.FC
- **Comment**:

Fixed in enhacement ticket [#1315] since OpenSAF 5.1 release.



---

** [tickets:#1286] LOG: String copy without length check or check if string**

**Status:** fixed
**Milestone:** 5.1.FC
**Created:** Thu Mar 26, 2015 03:01 PM UTC by elunlen
**Last Updated:** Tue Sep 20, 2016 06:04 PM UTC
**Owner:** nobody


When standby receives checkpointing for a log record write the received name of 
logFileCurrent is copied to the stream info This is done using strcpy. At least 
length check must be done in case the in data is garbage. May cause segv
See function ckpt_proc_log_write() in lgs_mbcsv.c


---

Sent from sourceforge.net because [email protected] is 
subscribed to https://sourceforge.net/p/opensaf/tickets/

To unsubscribe from further messages, a project admin can change settings at 
https://sourceforge.net/p/opensaf/admin/tickets/options.  Or, if this is a 
mailing list, you can unsubscribe from the mailing list.
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
Opensaf-tickets mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/opensaf-tickets

Reply via email to