From: libusb T. <tr...@li...> - 2013-03-06 23:20:31
|
#162: libusb_alloc_transfer vulnerable to integer overflow/underflow ---------------------+------------------------ Reporter: meacer | Owner: Type: defect | Status: new Milestone: | Component: libusb-1.0 Resolution: | Keywords: security Blocked By: | Blocks: ---------------------+------------------------ Comment (by stuge): Replying to [comment:1 xiaofan]: > I remember that last time Daniel Drake's idea about this kind of patch was that the library will not check all kind of boundary conditions and it is the user's responsibility. Well, only things that the user can actually know about. The other parts of the patch look fine. Thanks! -- Ticket URL: <https://libusb.org/ticket/162#comment:2> libusb <https://libusb.org/> C library for writing portable USB drivers in userspace |