readfile returns a value of type ssize_t (signed) and returns -1 if an
error occurs. In auth_readdb_internal, however, we were assigning the
return value of readfile to a variable of type size_t (unsigned), but
then testing this unsigned value to see if it was < 0, a
contradiction. We would thus simultaneously fail to report the error
in readfile and would end up with a corrupted length value.
FILE *f;
char *data, *s;
size_t len, i, n, N;
+ ssize_t slen;
auth_passwd_t *apw;
if (!am->am_stat)
if (am->am_stat)
stat(am->am_db, am->am_stat); /* too bad if this fails */
- len = readfile(am->am_home, f, &buffer, 1);
+ slen = readfile(am->am_home, f, &buffer, 1);
#if HAVE_FLOCK
/* Release shared lock on the database file */
fclose(f);
- if (len < 0)
+ if (slen < 0)
return -1;
+ len = (size_t)slen;
/* Count number of entries in new buffer */
for (i = am->am_anonymous, s = data = buffer;
buffer[len] = '\0';
*contents = buffer;
- return len;
+ return (ssize_t)len;
}
/* ====================================================================== */