summaryrefslogtreecommitdiff
path: root/Bugs.txt
diff options
context:
space:
mode:
authorB. Stack <bgstack15@gmail.com>2022-05-22 17:03:17 -0400
committerB. Stack <bgstack15@gmail.com>2022-05-22 17:03:17 -0400
commit2c81be72eef5363736cf1892646c74a3311ee4c1 (patch)
tree3894ba7e10c78750c195381a861da5e8166a6bfd /Bugs.txt
parentMerge branch 'b11.20' into 'master' (diff)
downloadFreeFileSync-2c81be72eef5363736cf1892646c74a3311ee4c1.tar.gz
FreeFileSync-2c81be72eef5363736cf1892646c74a3311ee4c1.tar.bz2
FreeFileSync-2c81be72eef5363736cf1892646c74a3311ee4c1.zip
add upstream 11.21b11.21
Diffstat (limited to 'Bugs.txt')
-rw-r--r--Bugs.txt15
1 files changed, 14 insertions, 1 deletions
diff --git a/Bugs.txt b/Bugs.txt
index 7e0845ad..fe9fd7dc 100644
--- a/Bugs.txt
+++ b/Bugs.txt
@@ -5,7 +5,7 @@ the ones mentioned below. The remaining issues that are yet to be fixed are list
----------------
-| libcurl 7.74 |
+| libcurl 7.83|
----------------
__________________________________________________________________________________________________________
/lib/ftp.c
@@ -62,6 +62,19 @@ move the following constants from src/sftp.h to include/libssh2_sftp.h:
#define MAX_SFTP_READ_SIZE 30000
__________________________________________________________________________________________________________
+src/userauth.c
+buffer overflow: https://github.com/libssh2/libssh2/pull/693
+
+-if (banner_len >= session->userauth_list_data_len - 5) {
++if (banner_len > session->userauth_list_data_len - 5) {
+
+-session->userauth_banner = LIBSSH2_ALLOC(session, banner_len);
++session->userauth_banner = LIBSSH2_ALLOC(session, banner_len + 1);
+
+-memmove(session->userauth_banner, session->userauth_list_data + 5,
++memcpy(session->userauth_banner, session->userauth_list_data + 5,
+
+__________________________________________________________________________________________________________
-------------------
bgstack15