Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-121120

libblkid: follow upstream to improve robustness

Linking RHIVOS CVEs to...Migration: Automation ...SWIFT: POC ConversionSync from "Extern...XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • rhel-10.2
    • rhel-9.6, rhel-10.0
    • util-linux
    • None
    • None
    • None
    • rhel-base-utils-core
    • 0
    • False
    • False
    • Hide

      None

      Show
      None
    • No
    • None
    • None
    • None
    • Unspecified Release Note Type - Unknown
    • Unspecified
    • Unspecified
    • Unspecified
    • None

      It would be nice to backport the upstream commit that removes sprintf() use from the libblkid code. The sprintf() function should not be used because it does not verify the size of the buffer used to write the result. It can end with buffer overflow if the caller is not careful.

              rhn-engineering-kzak Karel Zak
              rhn-engineering-kzak Karel Zak
              Karel Zak Karel Zak
              Radka Brychtova Radka Brychtova
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated: