From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail-out.m-online.net (mail-out.m-online.net [212.18.0.9]) by sourceware.org (Postfix) with ESMTPS id 1A67E3857C50; Tue, 18 Jan 2022 13:13:53 +0000 (GMT) DMARC-Filter: OpenDMARC Filter v1.4.1 sourceware.org 1A67E3857C50 Authentication-Results: sourceware.org; dmarc=none (p=none dis=none) header.from=linux-m68k.org Authentication-Results: sourceware.org; spf=pass smtp.mailfrom=nefkom.net Received: from frontend01.mail.m-online.net (unknown [192.168.8.182]) by mail-out.m-online.net (Postfix) with ESMTP id 4JdTk80dVPz1qwxn; Tue, 18 Jan 2022 14:13:51 +0100 (CET) Received: from localhost (dynscan1.mnet-online.de [192.168.6.70]) by mail.m-online.net (Postfix) with ESMTP id 4JdTk75YQTz1qqkC; Tue, 18 Jan 2022 14:13:51 +0100 (CET) X-Virus-Scanned: amavisd-new at mnet-online.de Received: from mail.mnet-online.de ([192.168.8.182]) by localhost (dynscan1.mail.m-online.net [192.168.6.70]) (amavisd-new, port 10024) with ESMTP id CxL_VJB0WqTm; Tue, 18 Jan 2022 14:13:50 +0100 (CET) X-Auth-Info: 6m3umyuhwBk6C90Z4p5CBiAB0CqSm+UxrBuri1uOt9kyOnIce2O07id7iDP67O4L Received: from igel.home (ppp-46-244-174-214.dynamic.mnet-online.de [46.244.174.214]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.mnet-online.de (Postfix) with ESMTPSA; Tue, 18 Jan 2022 14:13:50 +0100 (CET) Received: by igel.home (Postfix, from userid 1000) id 5C88E2C39F0; Tue, 18 Jan 2022 14:13:50 +0100 (CET) From: Andreas Schwab To: Siddhesh Poyarekar Cc: Siddhesh Poyarekar via Libc-alpha , fweimer@redhat.com, Qualys Security Advisory Subject: Re: [PATCH 3/3] getcwd: Set errno to ERANGE for size == 1 (CVE-2021-3999) References: <20220118090728.1825487-1-siddhesh@sourceware.org> <20220118090728.1825487-4-siddhesh@sourceware.org> <87a6ft8dmy.fsf@igel.home> <149b2d34-a393-06e3-5dff-59a3885d208b@sourceware.org> X-Yow: I'm having fun HITCHHIKING to CINCINNATI or FAR ROCKAWAY!! Date: Tue, 18 Jan 2022 14:13:50 +0100 In-Reply-To: <149b2d34-a393-06e3-5dff-59a3885d208b@sourceware.org> (Siddhesh Poyarekar's message of "Tue, 18 Jan 2022 18:40:52 +0530") Message-ID: <871r1589v5.fsf@igel.home> User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/28.0.91 (gnu/linux) MIME-Version: 1.0 Content-Type: text/plain X-Spam-Status: No, score=-3.2 required=5.0 tests=BAYES_00, HEADER_FROM_DIFFERENT_DOMAINS, KAM_DMARC_STATUS, RCVD_IN_DNSWL_LOW, RCVD_IN_MSPIKE_H3, RCVD_IN_MSPIKE_WL, SPF_HELO_NONE, SPF_PASS, TXREP autolearn=ham autolearn_force=no version=3.4.4 X-Spam-Checker-Version: SpamAssassin 3.4.4 (2020-01-24) on server2.sourceware.org X-BeenThere: libc-alpha@sourceware.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: Libc-alpha mailing list List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 18 Jan 2022 13:13:54 -0000 On Jan 18 2022, Siddhesh Poyarekar wrote: > We then process it to try and get the cwd anyway by using the posix > variant. Which returns the appropriate error. -- Andreas Schwab, schwab@linux-m68k.org GPG Key fingerprint = 7578 EB47 D4E5 4D69 2510 2552 DF73 E780 A9DA AEC1 "And now for something completely different."