Skip to content

Commit 456f893

Browse files
committed
Refined the description of DW202403-001
modified: bugxml/data.txt Regenerated modified: bugxml/dwarfbug.html modified: bugxml/dwarfbug.xml modified: bugxml/dwarfbuglohi.html Refinded the Changes for 0.9.2 to just list the vulnerabilities. modified: doc/libdwarf.dox
1 parent c20fdfd commit 456f893

File tree

5 files changed

+279
-183
lines changed

5 files changed

+279
-183
lines changed

bugxml/data.txt

Lines changed: 6 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -8,8 +8,12 @@ description: A carefully corrupted line table
88
header can cause libdwarf to read outside of its
99
allowed areas in a .debug_line section reading
1010
the file names part of the header.
11-
The failure to check for end-of-section following the
12-
very last byte in section has been present for many years.
11+
The failure to check for end-of-section before reading
12+
past end-of-section at the very last byte in section
13+
(at a very few specific
14+
points in the line table reader code where a
15+
valid line table header would not require a test)
16+
has been present for many years.
1317
datefixed: 2024-02-19
1418
references: regressiontests/ossfuzz67490/fuzz_srcfiles-5195296927711232
1519
gitfixid: 2930f3121ee6b07da405103934c329bbeca0382f

0 commit comments

Comments
 (0)