From mboxrd@z Thu Jan 1 00:00:00 1970 From: Michael Buesch Date: Tue, 24 Feb 2004 19:57:40 +0000 Subject: [PATCH] udev buffer overrun fix Message-Id: <200402242057.40061.mbuesch@freenet.de> List-Id: MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit To: linux-hotplug@vger.kernel.org Hi, This patch fixes a possible buffer overrun for char filename[255] in create_node(). --- udev-add.c.orig 2004-02-24 15:24:13.000000000 +0100 +++ udev-add.c 2004-02-24 20:49:25.000000000 +0100 @@ -146,7 +146,7 @@ int tail; strncpy(filename, udev_root, sizeof(filename)); - strncat(filename, dev->name, sizeof(filename)); + strncat(filename, dev->name, sizeof(filename) - strlen(udev_root) - 1); switch (dev->type) { case 'b': -- Regards Michael Buesch [ http://www.tuxsoft.de.vu ] ------------------------------------------------------- SF.Net is sponsored by: Speed Start Your Linux Apps Now. Build and deploy apps & Web services for Linux with a free DVD software kit from IBM. Click Now! http://ads.osdn.com/?ad_id56&alloc_id438&op=click _______________________________________________ Linux-hotplug-devel mailing list http://linux-hotplug.sourceforge.net Linux-hotplug-devel@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/linux-hotplug-devel