[PATCH FOR REVIEW] Potential Buffer Overflow in java_props_md.c

Alan Bateman Alan.Bateman at oracle.com
Wed Aug 1 21:04:48 UTC 2012


On 01/08/2012 14:52, Andrew Hughes wrote:
> :
>
>
> In any case, there is a Sun bug open for this:
>
> 6844255: Potential stack corruption in GetJavaProperties
>
> Can I take it that I can just get on and push Omair's extended version now then,
> with that bug ID?
Yes, go ahead, I should have said that in my mail.

> Well, the locale can be set be an environment variable, so it could potentially
> be anything of any length...
>
> The Debian bug posted above has an example, though I couldn't replicate it.
>
I couldn't replicate it either and was just curious if anyone managed to 
demonstrate it.

-Alan.



More information about the core-libs-dev mailing list