Hi Kevin!

> Looking for a review of libxml2 fixes:
> https://cr.opensolaris.org/action/browse/userland/kc28005/libxml2/webrev/
> 
> Requesting feedback from Craig & Laszlo - but anyone else that can
> review this and provide feedback in this late build would be much
> appreciated also!

The xmlRealloc calls in xinclude.c seems to exhibit the same problem,
have you considered fixing them?

The same ./xmlreader.c xmlTextReaderEntPush. Especially since it's
return value is not checked.

The only xmlRealloc ./nanohttp.c looks suspicious too.

Then I stopped looking for more. But it was just a quick grep across the
sources. Is there some pattern which places are dangerous and which are
not?

-- 
        Vlad
_______________________________________________
userland-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/userland-discuss

Reply via email to