[PATCH] malloc: Always call memcpy in _int_realloc [BZ #24027]

DJ Delorie dj@redhat.com
Mon Dec 31 21:24:00 GMT 2018


Florian Weimer <fw@deneb.enyo.de> writes:
> Thanks.  Do you think we should treat this as a vulnerability?  Can
> this code path be reached in a default configuration?

I think that triggering this as an exploit would require too much
dependence on the system-as-a-whole state to be considered a risk.



More information about the Libc-alpha mailing list