]> git.ipfire.org Git - thirdparty/glibc.git/commit
CVE-2022-23219: Buffer overflow in sunrpc clnt_create for "unix" (bug 22542)
authorFlorian Weimer <fweimer@redhat.com>
Mon, 17 Jan 2022 09:21:34 +0000 (10:21 +0100)
committerAurelien Jarno <aurelien@aurel32.net>
Tue, 18 Jan 2022 06:46:02 +0000 (07:46 +0100)
commit4653cd9e3669ff0a49908397e6f2a2eb8e572fdf
treefb245d1fb91719c60fb41ddf971e0143594bd669
parentf10e992e8d6c61f915c711f7bcc491ad2f10b06c
CVE-2022-23219: Buffer overflow in sunrpc clnt_create for "unix" (bug 22542)

Processing an overlong pathname in the sunrpc clnt_create function
results in a stack-based buffer overflow.

Reviewed-by: Siddhesh Poyarekar <siddhesh@sourceware.org>
(cherry picked from commit 226b46770c82899b555986583294b049c6ec9b40)
NEWS
sunrpc/clnt_gen.c