Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-30424

libmaxminddb: Addressing findings from static application security testing

    • Icon: Bug Bug
    • Resolution: Done-Errata
    • Icon: Minor Minor
    • rhel-9.5
    • rhel-9.0.0, rhel-9.1.0, rhel-9.2.0, rhel-9.3.0, rhel-9.4
    • libmaxminddb
    • None
    • libmaxminddb-1.5.2-4.el9
    • None
    • None
    • rhel-sst-cs-net-perf-services
    • ssg_core_services
    • 11
    • 2
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None

      The invocation of va_start() is missing a corresponding va_end in function 'diag(const char *fmt, ...)' when a return is called. This is already fixed in Upstream[1] and it is a very simple one-liner.

      [1]https://github.com/zorgnax/libtap/blob/b53e4ef5257f80e881762b6143834d8aae29da1a/tap.c#L233

              mruprich@redhat.com Michal Ruprich
              mruprich@redhat.com Michal Ruprich
              Michal Ruprich Michal Ruprich
              Ondrej Mejzlik Ondrej Mejzlik
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                Resolved: