3.0.2 / new bug in rlm_perl.c - perl script gets garbage in hv lists

Arran Cudbard-Bell a.cudbardb at freeradius.org
Mon Mar 24 19:07:22 CET 2014


On 24 Mar 2014, at 17:30, Chaigneau, Nicolas <nicolas.chaigneau at capgemini.com> wrote:

> Thanks.
> 
> 
> I've tested the fix to rlm_perl.c, it works.

Ok, i've pushed the proper fix, can you make sure that's ok too.

The other one, whilst fixing the symptoms, would still allow a buffer overflow if the returned value from vp_prints_value() was > 1023 bytes.

-Arran

Arran Cudbard-Bell <a.cudbardb at freeradius.org>
FreeRADIUS Development Team

FD31 3077 42EC 7FCD 32FE 5EE2 56CF 27F9 30A8 CAA2

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 881 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://lists.freeradius.org/mailman/private/freeradius-devel/attachments/20140324/721ce9ed/attachment.pgp>


More information about the Freeradius-Devel mailing list