Home GnuPG
Diffusion GnuPG 2b4809406b65

gpg: Fix off-by-one read in the attribute subpacket parser.
2b4809406b65Unpublished

Unpublished Commit · Learn More

Not On Permanent Ref: This commit is not an ancestor of any permanent ref.

Description

gpg: Fix off-by-one read in the attribute subpacket parser.

* g10/parse-packet.c (parse_attribute_subpkts): Check that the
attribute packet is large enough for the subpacket type.

(backported from commit 0988764397f99db4efef1eabcdb8072d6159af76)

  • Reported-by: Hanno Böck
  • Signed-off-by: Werner Koch <wk@gnupg.org>

Details

Provenance
wernerAuthored on Nov 24 2014, 7:38 PM
Parents
rG69767ccf4218: gpg: Fix a NULL-deref for invalid input data.
Branches
Unknown
Tags
Unknown

Event Timeline