Actions
Bug #3739
closedIncorrect handling of ASN1 relative_offset keyword
Affected Versions:
Effort:
Difficulty:
Label:
Description
The relative_offset keyword option allows to read past the front of the buffer with a negative offset, no bounds checking is done on this i32 value and is not relative to the last "content" match
Updated by Jeff Lucovsky over 4 years ago
- Copied from Bug #3720: Incorrect handling of ASN1 relative_offset keyword added
Updated by Jeff Lucovsky about 4 years ago
- Status changed from Assigned to In Review
Updated by Victor Julien about 4 years ago
- Status changed from In Review to Closed
Actions