lung (Luc Nguyen)
- Login: lung
- Registered on: 03/05/2017
- Last sign in: 04/09/2017
Issues
| open | closed | Total | |
|---|---|---|---|
| Assigned issues | 0 | 0 | 0 |
| Reported issues | 0 | 1 | 1 |
Activity
03/07/2017
-
06:02 AM Ruby Bug #13289 (Closed): Integer overflow in str_byte_substr & rb_str_subpos when set SHARABLE_MIDDLE_SUBSTRING by 1
- Integer overflow occurs in string.c(line 2319 & 5257).
beg + len & clen/n can be controlled by user.
Eg:
```
a="B"*0x400
a[0x40,0x7fffffffffffffff] => set length of sub array to 0x7fffffffffffffff
```
This lead to access o...