]> git.ipfire.org Git - thirdparty/glibc.git/commit
CVE-2022-23218: Buffer overflow in sunrpc svcunix_create (bug 28768)
authorFlorian Weimer <fweimer@redhat.com>
Mon, 17 Jan 2022 10:49:25 +0000 (11:49 +0100)
committerDmitry V. Levin <ldv@altlinux.org>
Tue, 4 Oct 2022 08:00:00 +0000 (08:00 +0000)
commit0c9137a4449789649eb42b3f1b7cfdff4968ff2b
tree1599047d3b94279228cb550e1716abe161bf6bff
parent7a9e8a984a32ccaf8947d116fca63ad406452bfa
CVE-2022-23218: Buffer overflow in sunrpc svcunix_create (bug 28768)

The sunrpc function svcunix_create suffers from a stack-based buffer
overflow with overlong pathname arguments.

Reviewed-by: Siddhesh Poyarekar <siddhesh@sourceware.org>
(cherry picked from commit f545ad4928fa1f27a3075265182b38a4f939a5f7)
NEWS
sunrpc/Makefile
sunrpc/svc_unix.c
sunrpc/tst-bug28768.c [new file with mode: 0644]