local-CVE-2023-6780
authorGNU Libc Maintainers <debian-glibc@lists.debian.org>
Tue, 23 Jan 2024 20:57:06 +0000 (21:57 +0100)
committerAurelien Jarno <aurel32@debian.org>
Tue, 23 Jan 2024 20:57:06 +0000 (21:57 +0100)
commita07c766eee3add780b65a62e30dca4cc517678ab
tree545bf7ad8d60b721efac6c575573c54353864177
parentcef735933032703fa9ea067e61dc53467c5ab068
local-CVE-2023-6780

syslog: Fix integer overflow in __vsyslog_internal (CVE-2023-6780)

__vsyslog_internal calculated a buffer size by adding two integers, but
did not first check if the addition would overflow.  This commit fixes
that.

Gbp-Pq: Topic any
Gbp-Pq: Name local-CVE-2023-6780.patch
misc/syslog.c