... leaving the k->str could lead to buffer over-reads later on. 82/183082/1
authorSeonah Moon <seonah1.moon@samsung.com>
Mon, 2 Jul 2018 04:54:24 +0000 (13:54 +0900)
committerSeonah Moon <seonah1.moon@samsung.com>
Mon, 2 Jul 2018 06:13:04 +0000 (15:13 +0900)
commitd189731e2bc2eca4dddabe597990a2f59ebd854a
treeb605e6d9745f6d40e4677243924f57e723142d25
parent3fc9fa4a2eec165a99785babebba905ad993c3ab
... leaving the k->str could lead to buffer over-reads later on.

CVE: CVE-2018-1000301
Assisted-by: Max Dymond
Detected by OSS-Fuzz.
Bug: https://curl.haxx.se/docs/adv_2018-b138.html
Bug: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=7105

Change-Id: I0bd3b891aef2bf08fdb485d135e695c2eeab86a7
lib/http.c