Red Hat Bugzilla – Bug 183190
Buffer overflow in strace
Last modified: 2007-11-30 17:11:25 EST
Description of problem:
Under certain circumstances strace will overflow a buffer
Version-Release number of selected component (if applicable):
You need to be strace'ing a suitably program.
But I am not going to suplly one because you only need to read the code to
discover the vulnerability.
Steps to Reproduce:
You say "How did this code get out the door".
You have nothing to say.
Created attachment 125307 [details]
Patch to fix buffer overflow
This bug was fixed right after 4.5.11 release.
Fixed in fc4 update and in fc5.