mirror of https://github.com/Cisco-Talos/clamav
A heap buffer overflow could occur during resource cleanup if a malloc fails when adding a regex pattern to the phishing suffix tree. The solution is to increment suffix_cnt after cli_realloc succeeds. The issue was identified using fault injection and is not a vulnerability. Resolves: https://github.com/Cisco-Talos/clamav/issues/429pull/434/head
parent
89b72cb002
commit
b30d9c54b2
Loading…
Reference in new issue