mailing list of musl libc
 help / color / mirror / code / Atom feed
* cluts memcpy() test
@ 2011-07-20  0:28 Solar Designer
  2011-07-20 10:30 ` Luka M.
  0 siblings, 1 reply; 3+ messages in thread
From: Solar Designer @ 2011-07-20  0:28 UTC (permalink / raw)
  To: musl

Luka, Rich -

It'd be nice for cluts to detect issues like this:

http://www.nodefense.org/eglibc.txt

Maybe it already does?

"... an attacker controllable length value is used to calculate the jump
table pointer index in the optimized copy function. Setting the length
value to a negative number will cause a jmp instruction to be skipped
due to an signedness vulnerbility, resulting in attacker supplied value
being used to calculate the location of a jump table function, resulting
in malicious code execution."

Alexander


^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2011-07-20 13:27 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2011-07-20  0:28 cluts memcpy() test Solar Designer
2011-07-20 10:30 ` Luka M.
2011-07-20 13:27   ` Rich Felker

Code repositories for project(s) associated with this public inbox

	https://git.vuxu.org/mirror/musl/

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).