Re: [PATCH] Fix infinite loop in gpgme data_object_to_stream().
"Kevin J. McCarthy" <[email protected]>
| Newsgroups | gmane.mail.mutt.devel |
|---|---|
| Message-ID | <aeWa7U2ctx1EvbNI@qinghai> |
On Sun, Apr 19, 2026 at 08:44:51AM +0200, Alejandro Colomar via Mutt-dev wrote: >Hi Kevin, > >On 2026-04-19T13:49:31+0800, Kevin J. McCarthy wrote: >> The code was not properly checking for a -1 return value in the read, >> leading to an infinite loop, and printing past the buffer value to the >> stream. >> >> Thanks to [email protected] for the security report. >> --- >> This is 2 in the list evilrabbit sent. >> >> Thanks for the suggestion Alex, but it reads a little funny compared to >> the rest of the codebase, so I'm keeping the comparision as is for this >> fix. :-D > >That's fine. :-) > >Reviewed-by: Alejandro Colomar <[email protected]> Pushed to stable and merged into master. -- Kevin J. McCarthy GPG Fingerprint: 8975 A9B3 3AA3 7910 385C 5308 ADEF 7684 8031 6BDA
signature.asc
(application/pgp-signature, 833 B)
-----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEiXWpszqjeRA4XFMIre92hIAxa9oFAmnlmu0ACgkQre92hIAx a9pQXA//cSrAfFOvMqqtcnqpxCrk2eiGFVM7kVzRDgSxZzy+oTaKtttTvrU84fgo GfRFkDZSaBkzUiSXbD1wjnOHD+dh5hfJf1kjyrPRsvHaFTTmx+b5WcCJVn0Rcpvr wrq6jtsXua42RwpdvJfHLE7Zwf1EyV5Im8XiodAXIX3LhbI+r0Fix9vH1eVpQyTF npt+7WGxAEDoEZG6tMBI8Gf7igwmu1xE379HkLaQIsdXTnztlQEbfeAT2NNFHaea afwCNt2NtWhCCWgqu6Lc+UXOaKaHDSYMh8T0X8sm1N+vOHPksK76hQjwccH/8jI4 Dl14xHop4STmoqcott1LPDLK0UtRFGvx66fYxWHBFzQCeR8tRKw8PLsuTF/RSoPH tvaj+0WT5/8zLiD+ny5mpUB5CxSHOQ5P9PbiCH8sRYenwul/ztnSvGg8LxGK1URL H81lNvjI7LsoJ7vwqk7Y4qu+Puj5RM19N2la4yFv4djJxmWiPE+KzLnLfoqhZZMF vha5U0mjUGqyG8Yx6aDE04tHY7hi9S/ueYqoNj0mzUgm9Bt8sChBDIrAtNcsowEJ xtCFVWhmUImYMqrUVgJxJ6GO3uZ7siM/ArZgnWAnNx3ydg38w89FaUEF3hmBDtgs Ey9NqENNYiM24668V4O4R8REWgT66T0ylnKuLWSHZC5/z39eTBk= =deZu -----END PGP SIGNATURE-----