mirror of
https://github.com/HDFGroup/hdf5.git
synced 2025-02-05 15:42:32 +08:00
According to the specification, the information block for external links contains 1 byte of version/flag information and two 0 terminated strings for the object linked to and the full path. Although not very useful, the minimum string length for each (with terminating 0) would be one byte. Checking this will help to avoid SEGVs triggered by bogus files. This fixes CVE-2018-16438 / Bug #2233. Signed-off-by: Egbert Eich <eich@suse.com> |
||
---|---|---|
.. | ||
HISTORY-1_0-1_8_0_rc3.txt | ||
HISTORY-1_8_0-1_10_0.txt | ||
HISTORY-1_8.txt | ||
HISTORY-1_10_0-1_12_0.txt | ||
HISTORY-1_10.txt | ||
HISTORY-1_12.txt | ||
HISTORY-1_13.txt | ||
INSTALL | ||
INSTALL_CMake.txt | ||
INSTALL_Cygwin.txt | ||
INSTALL_parallel | ||
INSTALL_Warnings.txt | ||
INSTALL_Windows.txt | ||
README_HDF5_CMake | ||
README_HPC | ||
RELEASE.txt | ||
USING_CMake_Examples.txt | ||
USING_HDF5_CMake.txt | ||
USING_HDF5_VS.txt |