[CVE-2018-17942] vasnprintf: Fix heap memory overrun bug. 87/253587/1
authorBruno Haible <bruno@clisp.org>
Sun, 23 Sep 2018 12:13:52 +0000 (14:13 +0200)
committerDongHun Kwak <dh0128.kwak@samsung.com>
Tue, 16 Feb 2021 01:36:30 +0000 (10:36 +0900)
commit01ec76b9eb113348c2811dead462eac319864d5f
treee13912408b4741e5f723a5bf45e7122e92955f09
parentb433c69cd752e68737c15f34c327f1d7e4780d1d
[CVE-2018-17942] vasnprintf: Fix heap memory overrun bug.

Reported by Ben Pfaff <blp@cs.stanford.edu> in
<https://lists.gnu.org/archive/html/bug-gnulib/2018-09/msg00107.html>.

* lib/vasnprintf.c (convert_to_decimal): Allocate one more byte of
memory.

Change-Id: Id0c55f547fef88da6848754e84568c09e800203f
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
lib/vasnprintf.c