From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail-out.m-online.net (mail-out.m-online.net [IPv6:2001:a60:0:28:0:1:25:1]) by sourceware.org (Postfix) with ESMTPS id BA7053858C60; Fri, 21 Jan 2022 17:59:38 +0000 (GMT) DMARC-Filter: OpenDMARC Filter v1.4.1 sourceware.org BA7053858C60 Authentication-Results: sourceware.org; dmarc=none (p=none dis=none) header.from=linux-m68k.org Authentication-Results: sourceware.org; spf=pass smtp.mailfrom=nefkom.net Received: from frontend01.mail.m-online.net (unknown [192.168.8.182]) by mail-out.m-online.net (Postfix) with ESMTP id 4JgRwT1z43z1st9F; Fri, 21 Jan 2022 18:59:36 +0100 (CET) Received: from localhost (dynscan1.mnet-online.de [192.168.6.70]) by mail.m-online.net (Postfix) with ESMTP id 4JgRwS4ST1z1qqkD; Fri, 21 Jan 2022 18:59:36 +0100 (CET) X-Virus-Scanned: amavisd-new at mnet-online.de Received: from mail.mnet-online.de ([192.168.8.182]) by localhost (dynscan1.mail.m-online.net [192.168.6.70]) (amavisd-new, port 10024) with ESMTP id rdCXnHshOIU2; Fri, 21 Jan 2022 18:59:35 +0100 (CET) X-Auth-Info: RCEkiQjMr0nif39FPXWf5ZeA8LeKDA4kuqdt7iT/bJHqLf0lERs9aVLTiuAC3Dij Received: from igel.home (ppp-46-244-178-244.dynamic.mnet-online.de [46.244.178.244]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.mnet-online.de (Postfix) with ESMTPSA; Fri, 21 Jan 2022 18:59:35 +0100 (CET) Received: by igel.home (Postfix, from userid 1000) id 5A78C2C389C; Fri, 21 Jan 2022 18:59:35 +0100 (CET) From: Andreas Schwab To: Siddhesh Poyarekar via Libc-alpha Cc: Siddhesh Poyarekar , Qualys Security Advisory Subject: Re: [PATCH v4] getcwd: Set errno to ERANGE for size == 1 (CVE-2021-3999) References: <20220121173831.2185053-1-siddhesh@sourceware.org> X-Yow: Intra-mural sports results are filtering through th' plumbing... Date: Fri, 21 Jan 2022 18:59:35 +0100 In-Reply-To: <20220121173831.2185053-1-siddhesh@sourceware.org> (Siddhesh Poyarekar via Libc-alpha's message of "Fri, 21 Jan 2022 23:08:31 +0530") Message-ID: <87r191c6m0.fsf@igel.home> User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/28.0.91 (gnu/linux) MIME-Version: 1.0 Content-Type: text/plain X-Spam-Status: No, score=-2.8 required=5.0 tests=BAYES_00, HEADER_FROM_DIFFERENT_DOMAINS, KAM_DMARC_STATUS, RCVD_IN_DNSWL_LOW, SPF_HELO_NONE, SPF_PASS, TXREP autolearn=ham autolearn_force=no version=3.4.4 X-Spam-Checker-Version: SpamAssassin 3.4.4 (2020-01-24) on server2.sourceware.org X-BeenThere: libc-alpha@sourceware.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: Libc-alpha mailing list List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 21 Jan 2022 17:59:40 -0000 On Jan 21 2022, Siddhesh Poyarekar via Libc-alpha wrote: > +static int > +recv_fd (const int sock) > +{ > + struct msghdr msg; > + union > + { > + struct cmsghdr hdr; > + char buf[CMSG_SPACE(sizeof(int))]; > + } cmsgbuf; Zero-init like in send_fd. -- Andreas Schwab, schwab@linux-m68k.org GPG Key fingerprint = 7578 EB47 D4E5 4D69 2510 2552 DF73 E780 A9DA AEC1 "And now for something completely different."