summaryrefslogtreecommitdiffstats
path: root/meta/recipes-extended/cups/cups/CVE-2023-32324.patch
blob: 40b89c9899878c9353d88d87757f3c015bdb548c (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
From 07cbffd11107eed3aaf1c64e35552aec20f792da Mon Sep 17 00:00:00 2001
From: Zdenek Dohnal <zdohnal@redhat.com>
Date: Thu, 1 Jun 2023 12:04:00 +0200
Subject: [PATCH] cups/string.c: Return if `size` is 0 (fixes CVE-2023-32324)

CVE: CVE-2023-32324
Upstream-Status: Backport [https://github.com/OpenPrinting/cups/commit/fd8bc2d32589]

(cherry picked from commit fd8bc2d32589d1fd91fe1c0521be2a7c0462109e)
Signed-off-by: Sanjay Chitroda <schitrod@cisco.com>
---
 cups/string.c | 4 ++++
 1 file changed, 4 insertions(+)

diff --git a/cups/string.c b/cups/string.c
index 93cdad19..6ef58515 100644
--- a/cups/string.c
+++ b/cups/string.c
@@ -1,6 +1,7 @@
 /*
  * String functions for CUPS.
  *
+ * Copyright © 2023 by OpenPrinting.
  * Copyright © 2007-2019 by Apple Inc.
  * Copyright © 1997-2007 by Easy Software Products.
  *
@@ -730,6 +731,9 @@ _cups_strlcpy(char       *dst,		/* O - Destination string */
   size_t	srclen;			/* Length of source string */
 
 
+  if (size == 0)
+    return (0);
+
  /*
   * Figure out how much room is needed...
   */