Red Hat Bugzilla – Bug 682813
corosync does not null terminate strings when strncpy
Last modified: 2016-04-26 09:51:11 EDT
Description of problem: Corosync does not null terminate strings when strncpy is the length of the string being copied. I am not entirely sure if this is a real problem, but could expose as a security issue. Version-Release number of selected component (if applicable): corosync-1.2.3 How reproducible: can't generate failure - found via inspection by upstream Steps to Reproduce: 1. 2. 3. Actual results: strncpy is not null terminating strings Expected results: strncpy is null terminating strings Additional info:
Created attachment 482723 [details] upstream patch to fix the problem
Technical note added. If any revisions are required, please edit the "Technical Notes" field accordingly. All revisions will be proofread by the Engineering Content Services team. New Contents: Do not document.
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. http://rhn.redhat.com/errata/RHBA-2011-1515.html