This is the mail archive of the
glibc-bugs@sourceware.org
mailing list for the glibc project.
[Bug libc/5043] New: iconv_open() should not crash on too long codepage arguments
- From: "pasky at suse dot cz" <sourceware-bugzilla at sourceware dot org>
- To: glibc-bugs at sources dot redhat dot com
- Date: 18 Sep 2007 15:05:23 -0000
- Subject: [Bug libc/5043] New: iconv_open() should not crash on too long codepage arguments
- Reply-to: sourceware-bugzilla at sourceware dot org
iconv_open() currently crashes on too long codepage arguments, leading to
potential DoS security problems for various applications. See for example
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4783.
--
Summary: iconv_open() should not crash on too long codepage
arguments
Product: glibc
Version: unspecified
Status: NEW
Severity: normal
Priority: P2
Component: libc
AssignedTo: drepper at redhat dot com
ReportedBy: pasky at suse dot cz
CC: glibc-bugs at sources dot redhat dot com
http://sourceware.org/bugzilla/show_bug.cgi?id=5043
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.