Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add bounds checking to avoid heap-based buffer overflow vulnerability #4785

Closed
wants to merge 2 commits into from

Conversation

wswsmao
Copy link
Contributor

@wswsmao wswsmao commented Aug 29, 2024

@derobins derobins added Merge - To 1.14 Priority - 1. High 🔼 These are important issues that should be resolved in the next release Component - Tools Command-line tools like h5dump, includes high-level tools Type - Bug / Bugfix Please report security issues to [email protected] instead of creating an issue on GitHub labels Aug 29, 2024
@derobins
Copy link
Member

Do you have a test file? There's no test to ensure this is really fixed.

@wswsmao
Copy link
Contributor Author

wswsmao commented Aug 30, 2024

Do you have a test file? There's no test to ensure this is really fixed.

Ok,I will add test files as appendix

Copy link
Contributor

@mattjala mattjala left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Needs a test file for regression testing

@derobins
Copy link
Member

We've removed the gif tools from the HDF5 library, so I'm going to close this.

@derobins derobins closed this Oct 22, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Component - Tools Command-line tools like h5dump, includes high-level tools Priority - 1. High 🔼 These are important issues that should be resolved in the next release Type - Bug / Bugfix Please report security issues to [email protected] instead of creating an issue on GitHub
Projects
Status: Merges Complete
Development

Successfully merging this pull request may close these issues.

5 participants