On Wed, 14 May 2025, 11:14 Александр Ушаков, wrote:
> For reference, I believe this qualifies for a CVE because:
> * It is a reproducible crash (DoS) in a security-sensitive component
> (command interpreter).
>
By this logic, there should be a CVE for gcc because when you give it « int
main (){
I’ve opened an issue in the readline repo for this with a patch if there’s
interest.
https://savannah.gnu.org/support/?111068
I had been using this patch for some months in my own build of bash and it seems
to be working well. More recently I’ve just used the default zsh on a new
machine
since