Skip to content

src/cryptopp: Fix potential vulnerable cloned function#1042

Open
npt-1707 wants to merge 1 commit intoqtumproject:masterfrom
npt-1707:fix_CVE-2017-9434
Open

src/cryptopp: Fix potential vulnerable cloned function#1042
npt-1707 wants to merge 1 commit intoqtumproject:masterfrom
npt-1707:fix_CVE-2017-9434

Conversation

@npt-1707
Copy link

Hi Development Team,

I identified a potential vulnerability in a clone function Inflator::DecodeBody()() in src/cryptopp/zinflate.cpp sourced from weidai11/cryptopp. This issue, originally reported in CVE-2017-9434, was resolved in the repository via this commit https://github.com/weidai11/cryptopp/blob/07dbcc3d9644b18e05c1776db2a57fe04d780965.

This PR applies the corresponding patch to fix the vulnerability in this codebase.

Please review at your convenience. Thank you!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant