Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

clam-1645 fix overread during ldb load #560

Merged
merged 1 commit into from May 31, 2022

Conversation

m-sola
Copy link
Contributor

@m-sola m-sola commented Apr 22, 2022

Added bounds checking for 3-byte comparison step

Code defect, not a vuln

Copy link
Contributor

@shutton shutton left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@micahsnyder
Copy link
Contributor

Could you also add a merge request to the private fuzz corpus?

Added bounds checking for 3-byte comparison step

Code defect, not a vuln
@micahsnyder
Copy link
Contributor

Rebased to see it go through the test pipelines with the PoC in there.

@micahsnyder micahsnyder merged commit f7e120a into Cisco-Talos:main May 31, 2022
22 of 24 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants