Bug#673778: librxtx-java: Crashes with buffer overflow when trying to open a locked device

Sergio Talens-Oliag sto at debian.org
Mon May 21 11:48:12 UTC 2012


Package: librxtx-java
Version: 2.2pre2-10
Severity: normal
Tags: upstream patch

As reported in:

  http://mailman.qbang.org/pipermail/rxtx/2009-May/10897125.html

java fails with a buffer overflow when a locked serial device is opened from
the library.

I'm attaching a patch that uses snprintf when reporting fhs_lock errors.

-- System Information:
Debian Release: wheezy/sid
  APT prefers unstable
  APT policy: (500, 'unstable'), (500, 'testing'), (1, 'experimental')
Architecture: amd64 (x86_64)

Kernel: Linux 3.2.0-2-amd64 (SMP w/4 CPU cores)
Locale: LANG=ca_ES.UTF-8, LC_CTYPE=ca_ES.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages librxtx-java depends on:
ii  libc6  2.13-32

librxtx-java recommends no packages.

librxtx-java suggests no packages.

-- no debconf information

-- 
Sergio Talens-Oliag <sto at debian.org>   <http://people.debian.org/~sto/>
Key fingerprint = 29DF 544F  1BD9 548C  8F15 86EF  6770 052B  B8C1 FA69
-------------- next part --------------
A non-text attachment was scrubbed...
Name: fhs_lock_buffer_overflow_fix.patch
Type: text/x-diff
Size: 2515 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-java-maintainers/attachments/20120521/b63a67c9/attachment.patch>


More information about the pkg-java-maintainers mailing list