diff options
author | Daniel Stenberg <daniel@haxx.se> | 2018-06-13 12:24:40 +0200 |
---|---|---|
committer | Daniel Stenberg <daniel@haxx.se> | 2018-07-09 08:15:48 +0200 |
commit | ba1dbd78e5f1ed67c1b8d37ac89d90e5e330b628 (patch) | |
tree | 2c1aeab789324e085d673ae3211cabad90ee01c6 /docs/libcurl/opts/CURLOPT_HTTPGET.3 | |
parent | 0b4ccc97f26316476d4c2abbd429952bf61b6375 (diff) |
smtp: use the upload buffer size for scratch buffer malloc
... not the read buffer size, as that can be set smaller and thus cause
a buffer overflow! CVE-2018-0500
Reported-by: Peter Wu
Bug: https://curl.haxx.se/docs/adv_2018-70a2.html
Diffstat (limited to 'docs/libcurl/opts/CURLOPT_HTTPGET.3')
0 files changed, 0 insertions, 0 deletions