Hello Otto Visser!

Manual fuzz testing... Thanks for your interest in hardening
the util-linux implementation. :)

On Fri, Mar 20, 2015 at 10:11:56AM +0100, Otto Visser wrote:
> Package: util-linux
> Version: 2.25.2-5
> Severity: normal
> 
> Dear Maintainer,
> 
> Let's start with the TL;DR version: 
> if fdisk encounters a GPT header
> with an incorrect size field it tries to calculate the CRC32 over
> whatever this size field is reporting, leading eventually to a segfault.
[...]

My initial advice would be to try with a newer upstream version of util-linux.
I know several GPT-related bug-fixes has been added upstream and should
be part of 2.26(.1).

You should be able to build and run the upstream version straight from the
build directory (just make sure you load the right libfdisk also from the
build directory and not the system one).

If this does not solve the problem, then I would advice you post about it
on the upstream mailing list. They will be able to give you much more
detailed advice....

Please keep this bug report posted about your findings. Thanks.

Regards,
Andreas Henriksson


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to