[Rpm-maint] [rpm-software-management/rpm] invalid read in dataLength / grabData (header.c) (#138)

Panu Matilainen notifications at github.com
Tue Feb 7 10:25:05 UTC 2017

The package is no longer readable after commit 3a07ba3ba6f2c7d594730beefe8235b7eba4af52 because there's a negative tag involved. However the actual crash here is due to RPMTAG_PREFIXES type mismatch (int32 in package, assumed string array) combined with lack of validation and error checking - rpm assumes tags are of correct type almost everywhere throughout the codebase. Sigh.

You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.rpm.org/pipermail/rpm-maint/attachments/20170207/bc85cbb5/attachment.html>

More information about the Rpm-maint mailing list