Sign Up
Log In
Log In
or
Sign Up
Places
All Projects
Status Monitor
Collapse sidebar
home:jcronenberg:branches:OBS_Maintained:unbound
unbound.SUSE_SLE-15-SP1_Update
unbound-1.20-CVE-2024-43167.patch
Overview
Repositories
Revisions
Requests
Users
Attributes
Meta
File unbound-1.20-CVE-2024-43167.patch of Package unbound.SUSE_SLE-15-SP1_Update
commit fe4c67b2287ebf916198b98e8e69db8815e57464 Author: zhailiangliang <zhailiangliang@loongson.cn> Date: Tue May 21 08:40:16 2024 +0000 [1.20] [CVE-2024-43167] fix null pointer dereference issue in function ub_ctx_set_fwd of file libunbound/libunbound.c diff --git a/libunbound/libunbound.c b/libunbound/libunbound.c index 17057ec6..3c895514 100644 --- a/libunbound/libunbound.c +++ b/libunbound/libunbound.c @@ -981,7 +981,8 @@ ub_ctx_set_fwd(struct ub_ctx* ctx, const char* addr) if(!addr) { /* disable fwd mode - the root stub should be first. */ if(ctx->env->cfg->forwards && - strcmp(ctx->env->cfg->forwards->name, ".") == 0) { + (ctx->env->cfg->forwards->name && + strcmp(ctx->env->cfg->forwards->name, ".") == 0)) { s = ctx->env->cfg->forwards; ctx->env->cfg->forwards = s->next; s->next = NULL; @@ -1001,7 +1002,8 @@ ub_ctx_set_fwd(struct ub_ctx* ctx, const char* addr) /* it parses, add root stub in front of list */ lock_basic_lock(&ctx->cfglock); if(!ctx->env->cfg->forwards || - strcmp(ctx->env->cfg->forwards->name, ".") != 0) { + (ctx->env->cfg->forwards->name && + strcmp(ctx->env->cfg->forwards->name, ".") != 0)) { s = calloc(1, sizeof(*s)); if(!s) { lock_basic_unlock(&ctx->cfglock); @@ -1019,6 +1021,7 @@ ub_ctx_set_fwd(struct ub_ctx* ctx, const char* addr) ctx->env->cfg->forwards = s; } else { log_assert(ctx->env->cfg->forwards); + log_assert(ctx->env->cfg->forwards->name); s = ctx->env->cfg->forwards; } dupl = strdup(addr);
Locations
Projects
Search
Status Monitor
Help
OpenBuildService.org
Documentation
API Documentation
Code of Conduct
Contact
Support
@OBShq
Terms
openSUSE Build Service is sponsored by
The Open Build Service is an
openSUSE project
.
Sign Up
Log In
Places
Places
All Projects
Status Monitor