Displaying 1 result from an estimated 1 matches for "expr_to_str".
2023 Oct 17
1
[Bug 1714] New: Stack smash: libnftables does not enforce string length limits for log prefixes
...ith the message "Error: Could not
process rule: Numerical result out of range".
>From what I can see, the log prefix buffer size is defined in
include/linux/netfilter/nf_log.h and used to create stack variables in
src/json.c and src/statement.c. The stack variables are then passed to
expr_to_string() without any indication of the maximum size.
Please let me know if there's anything I can do to assist fixing this bug!
-- Sam
--
You are receiving this mail because:
You are watching all bug changes.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <ht...