[WIP] Test for CVE-2015-1781 -- glibc gethostbyname_r() buffer overflow with misaligned buffer

Arjun Shankar arjun@redhat.com
Thu Feb 25 22:16:00 GMT 2016


The attached tarball contains an out-of-tree test used to validate the
changes for CVE-2015-1781. It requires some complex setup which makes
it unsuitable, at present, for inclusion in the test suite. However,
downstream distributions have requested a reproducer, so I am posting this
publicly.

The test was written by Florian Weimer and reviewed by Carlos O'Donell.

Cheers,
Arjun
-------------- next part --------------
A non-text attachment was scrubbed...
Name: CVE-2015-1781.tar.gz
Type: application/gzip
Size: 2685 bytes
Desc: not available
URL: <http://sourceware.org/pipermail/libc-alpha/attachments/20160225/996ef572/attachment.gz>


More information about the Libc-alpha mailing list