Go to:
Gentoo Home
Documentation
Forums
Lists
Bugs
Planet
Store
Wiki
Get Gentoo!
Gentoo's Bugzilla – Attachment 134385 Details for
Bug 197067
dev-lang/mono < 1.2.5-r1 Buffer overflow in BigInteger (CVE-2007-5197)
Home
|
New
–
[Ex]
|
Browse
|
Search
|
Privacy Policy
|
[?]
|
Reports
|
Requests
|
Help
|
New Account
|
Log In
[x]
|
Forgot Password
Login:
[x]
[patch]
updated patch
mono-biginteger_overflow.diff (text/plain), 848 bytes, created by
Jurek Bartuszek (RETIRED)
on 2007-10-25 22:10:12 UTC
(
hide
)
Description:
updated patch
Filename:
MIME Type:
Creator:
Jurek Bartuszek (RETIRED)
Created:
2007-10-25 22:10:12 UTC
Size:
848 bytes
patch
obsolete
>--- mcs/class/corlib/Mono.Math/BigInteger.cs 2007-09-19 19:06:06.000000000 +0200 >+++ mcs/class/corlib/Mono.Math/BigInteger.cs 2007-10-25 23:46:55.000000000 +0200 >@@ -1607,7 +1607,7 @@ > uint j = 1; > > // Multiply and add >- for (; j < m.length; j++) { >+ for (; j < m.length && j < A.length; j++) { > c += (ulong)u_i * (ulong)*(mP++) + *(aSP++); > *(aDP++) = (uint)c; > c >>= 32; >--- mcs/class/Mono.Security/Mono.Math/BigInteger.cs 2007-07-24 23:48:50.000000000 +0200 >+++ mcs/class/Mono.Security/Mono.Math/BigInteger.cs 2007-10-25 23:45:01.000000000 +0200 >@@ -1601,7 +1601,7 @@ > uint j = 1; > > // Multiply and add >- for (; j < m.length; j++) { >+ for (; j < m.length && j < A.length; j++) { > c += (ulong)u_i * (ulong)*(mP++) + *(aSP++); > *(aDP++) = (uint)c; > c >>= 32;
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Diff
View Attachment As Raw
Actions:
View
|
Diff
Attachments on
bug 197067
:
134361
|
134384
| 134385