- **status**: unassigned --> fixed
- **Blocker**: --> False
- **Milestone**: future --> 5.1.FC
- **Comment**:
Fixed in enhacement ticket [#1315] since OpenSAF 5.1 release.
---
** [tickets:#1286] LOG: String copy without length check or check if string**
**Status:** fixed
**Milestone:** 5.1.FC
**Created:** Thu Mar 26, 2015 03:01 PM UTC by elunlen
**Last Updated:** Tue Sep 20, 2016 06:04 PM UTC
**Owner:** nobody
When standby receives checkpointing for a log record write the received name of
logFileCurrent is copied to the stream info This is done using strcpy. At least
length check must be done in case the in data is garbage. May cause segv
See function ckpt_proc_log_write() in lgs_mbcsv.c
---
Sent from sourceforge.net because [email protected] is
subscribed to https://sourceforge.net/p/opensaf/tickets/
To unsubscribe from further messages, a project admin can change settings at
https://sourceforge.net/p/opensaf/admin/tickets/options. Or, if this is a
mailing list, you can unsubscribe from the mailing list.
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
Opensaf-tickets mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/opensaf-tickets