Negative array index write via lack of error handling in STUN

Daniel Atallah daniel.atallah at gmail.com
Sat Mar 16 14:30:41 EDT 2013


Folks,

One of the issues in the Coverity static analysis (CID 732047) is a
write to a negative array index in stun.c due to a lack of adequate
error handling.

I've pushed the attached patch to the private repo as 932b985540e9

-D
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 33825.patch
Type: application/octet-stream
Size: 564 bytes
Desc: not available
URL: <http://pidgin.im/cgi-bin/mailman/private/security/attachments/20130316/2899923f/attachment.obj>


More information about the security mailing list