buffer overflow warning in /bin/sh

Dimitry Andric dim at FreeBSD.org
Sun Feb 28 23:25:10 UTC 2016


On 28 Feb 2016, at 23:16, Jilles Tjoelker <jilles at stack.nl> wrote:
> 
> On Fri, Feb 26, 2016 at 06:21:20PM +0100, Dimitry Andric wrote:
...
>>  This frame has 3 object(s):
>>    [16, 20) 'bqlist'
>>    [32, 128) 'state_static' <== Memory access at offset 32 is inside this variable
>>    [160, 170) 'buf'
...
>> This may be a false positive though.
> 
> The reported store, which is near the top of the function, is clearly
> within bounds.

Yes, it's definitely a false positive.  I'm still attempting to find out
where this goes awry, but it isn't in sh, at least.  (After some help
from Bryan Drewery I managed to run it through valgrind-devel, and that
does not complain about anything...)

-Dimitry

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 194 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://lists.freebsd.org/pipermail/freebsd-current/attachments/20160229/39f61f55/attachment.sig>


More information about the freebsd-current mailing list