#3720: Integer Overflow
------------------------+----------------------
Reporter: MegaManSec | Owner: mutt-dev
Type: defect | Status: new
Priority: major | Milestone:
Component: crypto | Version: 1.5.23
Keywords: |
------------------------+----------------------
Hi,
In pgppacket.c, in the pgp_read_packet function, an integer overflow may
occur with the variable 'material'.
Add operation overflows on operands material and b + 192. Example values
for operands: b + 192 = 192, material = 18446744073709551424.
127 material += b + 192;
Thanks
--
Ticket URL: <http://dev.mutt.org/trac/ticket/3720>
Mutt <http://www.mutt.org/>
The Mutt mail user agent