Blame SOURCES/0005-Fix-a-read-past-end-of-buffer.patch

3709cf
From fa8feee1fce1c6e728512d9e6c0bfffa89f0ce62 Mon Sep 17 00:00:00 2001
3709cf
From: =?UTF-8?q?Ond=C5=99ej=20Lyson=C4=9Bk?= <olysonek@redhat.com>
3709cf
Date: Mon, 13 Aug 2018 14:39:46 +0200
3709cf
Subject: [PATCH 5/7] Fix a read past end of buffer
3709cf
MIME-Version: 1.0
3709cf
Content-Type: text/plain; charset=UTF-8
3709cf
Content-Transfer-Encoding: 8bit
3709cf
3709cf
Signed-off-by: Ondřej Lysoněk <olysonek@redhat.com>
3709cf
---
3709cf
 src/ascii-xfr.c | 4 ++--
3709cf
 1 file changed, 2 insertions(+), 2 deletions(-)
3709cf
3709cf
diff --git a/src/ascii-xfr.c b/src/ascii-xfr.c
3709cf
index ca27ebf..79af763 100644
3709cf
--- a/src/ascii-xfr.c
3709cf
+++ b/src/ascii-xfr.c
3709cf
@@ -207,7 +207,7 @@ int arecv(char *file)
3709cf
   }
3709cf
 
3709cf
   while ((n = read(STDIN_FILENO, line, sizeof(line))) > 0) {
3709cf
-    for (s = line; n-- >0; s++) {
3709cf
+    for (s = line; s - line < n; s++) {
3709cf
       if (*s == eofchar)
3709cf
         break;
3709cf
       if (dotrans && *s == '\r')
3709cf
@@ -217,7 +217,7 @@ int arecv(char *file)
3709cf
     }
3709cf
     stats(first);
3709cf
     first = 0;
3709cf
-    if (*s == eofchar)
3709cf
+    if (s - line < n && *s == eofchar)
3709cf
       break;
3709cf
   }
3709cf
   fclose(fp);
3709cf
-- 
3709cf
2.14.4
3709cf