buffer overflow in getmntent
Bug #1525578 reported by
Phillip Susi
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
glibc (Ubuntu) |
New
|
Undecided
|
Unassigned |
Bug Description
While running valgrind on gparted I noticed a buffer overflow reported in getmntent(). I wrote a simple reproducer and verified it is a bug in libc. valgrind shows that it touches 1 byte before the start of the buffer it allocated.
Attaching the reproducer and a copy of my /etc/fstab that it is running on when it does this. When run on /proc/mounts, the bug does not occur.
To post a comment you must log in.