Found by difference scan RHEL6.1/RHEL6.2 tog-pegasus package (tog-pegasus 2.9.1/2.11.0).
- should'nt there be "#ifdef PEGASUS_ENABLE_IPV6"? Because
structure p_addr has two parts (not only "ip4_addr"). Inside
slp_is_loop_back could occur a static overrun if "addr" was
- called from line 1755, 1762, 1768 and it seems on ipv6 addresses also
/builddir/build/BUILD/pegasus/src/slp/slp_client/src/cmd-utils/slp_client/slp_client.cpp:1389: overrun-buffer-val: Overrunning struct type struct in_addr of size 4 bytes by passing it as an argument to a function which indexes it at byte position 15.
/builddir/build/BUILD/pegasus/src/slp/slp_client/src/cmd-utils/slp_client/slp_utils.cpp:350: access_dbuff_const: Calling "memcmp" indexes array "addr" with index "sizeof (ip6) /*16*/" at byte position 15.
After source code inspection - it seems to be false positive.