GnuTLS 3.0.14 gnutls-serv segfaults when an invalid number is passed to --debug

Nikos Mavrogiannopoulos nmav at gnutls.org
Sat Feb 25 09:34:39 CET 2012


On 02/25/2012 03:59 AM, Matthew Hall wrote:

> While investigating some other bugs in GnuTLS I located this bug in
> the --debug=99999999 option in GnuTLS 3.0.14, which is not present in
> 3.0.11, due to some changes in the way that GnuTLS seems to handle
> its CLI options.
> 
> It is possible the bug is caused by the AutoOpts library.
> 
> It seems to be an issue with the format string or arg list used to
> attempt to report that the value passed to the --debug is out of the
> expected range up to 9999. The bug triggers on any value > 9999.


Thank you for reporting that. It seems there is a string format issue.
I've reported it to the autogen maintainer.


regards,
Nikos





More information about the Gnutls-devel mailing list