New submission from Venkatesh Srinivas <[email protected]>:

malloc(SIZE_MAX) returns a buffer sized for 0 bytes on i386; this is because the
addition and mask on nmalloc.c line 824 can overflow.

----------
messages: 10107
nosy: vsrinivas
status: unread
title: malloc(SIZE_MAX) returns a buffer sized for 0.

_____________________________________________________
DragonFly issue tracker <[email protected]>
<http://bugs.dragonflybsd.org/issue2130>
_____________________________________________________

Reply via email to