[Openais] patch for buffer overflow in clm.c:my_cluster_node_load

Lars Marowsky-Bree lmb at suse.de
Wed Feb 18 01:31:15 PST 2009


On 2009-02-17T22:47:28, Steven Dake <sdake at redhat.com> wrote:

> IMO the bugzilla should never result in a buffer overflow and points at
> a problem is totempg_ifaces_get.  I put some data in the bugzilla which
> I'd like collected if possible.
> 
> Maybe it can help us get to the root cause of the problem instead of
> hacking around it with this patch.

Getting to the root cause surely is appreciated, yet still, using
snprintf() + error checking seems like a good idea too?


Regards,
    Lars

-- 
Teamlead Kernel, SuSE Labs, Research and Development
SUSE LINUX Products GmbH, GF: Markus Rex, HRB 16746 (AG Nürnberg)
"Experience is the name everyone gives to their mistakes." -- Oscar Wilde



More information about the Openais mailing list