Wireshark-bugs: [Wireshark-bugs] [Bug 3290] TRY_TO_FAKE_THIS_ITEM disables bounds errors

Date: Fri, 31 May 2013 07:06:02 +0000

Comment # 26 on bug 3290 from
Hi,

Found possible integer overflow:

+       gint size = length;
/* asume size == 4 */

+           n = get_uint_value(tree, tvb, start, length, little_endian);
/* assume n == = 0xFFFFFFFE */

+           size += n;
/* size = 2 */


You are receiving this mail because:
  • You are the assignee for the bug.
  • You are watching all bug changes.