[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[bug #63609] Fix a buffer overrun in warn_undefined.
From: |
Dmitry Goncharov |
Subject: |
[bug #63609] Fix a buffer overrun in warn_undefined. |
Date: |
Tue, 3 Jan 2023 00:23:01 -0500 (EST) |
Follow-up Comment #1, bug #63609 (project make):
The following code in warn_undefined causes a buffer overrun
++++
if (memcmp (*cp, name, len) == 0 && (*cp)[len] == '\0')
----
when len exceeds strlen (*cp). This happens when make needs to expand a
variable whos name is longer than *cp,
_______________________________________________________
Reply to this item at:
<https://savannah.gnu.org/bugs/?63609>
_______________________________________________
Message sent via Savannah
https://savannah.gnu.org/