Re: version string can cause overflow and affect eip/rip (needs length check in version string)

2014-09-26 Thread Johan Nestaas
, "Chet Ramey" wrote: > On 9/26/14, 3:13 AM, Johan Nestaas wrote: > > This isn't nearly as important as shellshock or whatever you want to call > > it, but I found this while glancing at the source and the latest patch. > > It's a funny little bug that

version string can cause overflow and affect eip/rip (needs length check in version string)

2014-09-26 Thread Johan Nestaas
g for [0-9] which is why you are extremely limited to what you can do, but there should probably be a length limit to 31 characters, in the configure or makefile or something. Hope all is well now. I know it's been a busy week :) Cheers, Johan Nestaas