diff options
author | Jeff King <peff@peff.net> | 2014-08-23 01:32:37 -0400 |
---|---|---|
committer | Junio C Hamano <gitster@pobox.com> | 2014-08-25 12:20:57 -0700 |
commit | c252785982c268e5c969900c677322744d09f52e (patch) | |
tree | 23f0fdc47e95e924827fc3039351f09a482f1eca /t/t5515/fetch.br-branches-one-merge_branches-one | |
parent | 3c078b9c860c7c1dbe8782aa1f79877354cbc602 (diff) | |
download | git-jk/fast-import-fixes.tar.gz |
fast-import: fix buffer overflow in dump_tagsjk/top-level-refs-cleanupjk/fast-import-fixes
When creating a new annotated tag, we sprintf the refname
into a static-sized buffer. If we have an absurdly long
tagname, like:
git init repo &&
cd repo &&
git commit --allow-empty -m foo &&
git tag -m message mytag &&
git fast-export mytag |
perl -lpe '/^tag/ and s/mytag/"a" x 8192/e' |
git fast-import <input
we'll overflow the buffer. We can fix it by using a strbuf.
Signed-off-by: Jeff King <peff@peff.net>
Reviewed-by: Michael Haggerty <mhagger@alum.mit.edu>
Reviewed-by: Ronnie Sahlberg <sahlberg@google.com>
Signed-off-by: Junio C Hamano <gitster@pobox.com>
Diffstat (limited to 't/t5515/fetch.br-branches-one-merge_branches-one')
0 files changed, 0 insertions, 0 deletions