Commit dee76c9
Timothy B. Terriberry
Fix out-of-bounds read in serialno matching logic
We very carefully ensured _cur_link + 1 was in bounds, and then
dereferenced nlinks + 1 (guaranteed to be out of bounds) instead.
Introduced in commit f83675e.
Thanks to the Google Autfuzz project for the report.
Fixes #23261 parent 2c239eb commit dee76c9
1 file changed
+1
-1
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
1835 | 1835 | | |
1836 | 1836 | | |
1837 | 1837 | | |
1838 | | - | |
| 1838 | + | |
1839 | 1839 | | |
1840 | 1840 | | |
1841 | 1841 | | |
| |||
0 commit comments