#48387 ASAN invalid read in cos_cache.c
Closed: Fixed None Opened 3 years ago by firstyear.

==7050== ERROR: AddressSanitizer: global-buffer-overflow on address 0x7f643b32c5ff at pc 0x7f643b3217aa bp 0x7f64331c5f60 sp 0x7f64331c5f50 READ of size 1 at 0x7f643b32c5ff thread T5 #0 0x7f643b3217a9 in cos_cache_backwards_stricmp_and_clip /home/wibrown/development/389ds/ds/ldap/servers/plugins/cos/cos_cache.c:3428 Issue exists in the length check, which allows the value to go to -1 causing the invalid read.

commit a3a11f9c22898c09ca26c4c0e9d6ef6c50e6fde4
To ssh://git.fedorahosted.org/git/389/ds.git
f5b9053..d7c71db master -> master

Thanks!

Metadata Update from @firstyear:
- Issue assigned to firstyear
- Issue set to the milestone: 1.3.5.0

2 years ago

Login to comment on this ticket.

Metadata