ruby-changes:1904
From: ko1@a...
Date: 7 Sep 2007 16:40:36 +0900
Subject: [ruby-changes:1904] shyouhei - Ruby:r13395 (ruby_1_8_6): * string.c (rb_str_splice): integer overflow for length.
shyouhei 2007-09-07 16:40:27 +0900 (Fri, 07 Sep 2007)
New Revision: 13395
Modified files:
branches/ruby_1_8_6/ChangeLog
branches/ruby_1_8_6/string.c
branches/ruby_1_8_6/version.h
Log:
* string.c (rb_str_splice): integer overflow for length.
[ruby-dev:31739]
http://svn.ruby-lang.org/cgi-bin/viewvc.cgi/branches/ruby_1_8_6/ChangeLog?r1=13395&r2=13394
http://svn.ruby-lang.org/cgi-bin/viewvc.cgi/branches/ruby_1_8_6/version.h?r1=13395&r2=13394
http://svn.ruby-lang.org/cgi-bin/viewvc.cgi/branches/ruby_1_8_6/string.c?r1=13395&r2=13394
Index: ruby_1_8_6/ChangeLog
===================================================================
--- ruby_1_8_6/ChangeLog (revision 13394)
+++ ruby_1_8_6/ChangeLog (revision 13395)
@@ -1,3 +1,8 @@
+Fri Sep 7 16:39:23 2007 Yukihiro Matsumoto <matz@r...>
+
+ * string.c (rb_str_splice): integer overflow for length.
+ [ruby-dev:31739]
+
Fri Sep 7 16:33:23 2007 Yukihiro Matsumoto <matz@r...>
* include/ruby/defines.h (flush_register_windows): call "ta 0x03"
Index: ruby_1_8_6/version.h
===================================================================
--- ruby_1_8_6/version.h (revision 13394)
+++ ruby_1_8_6/version.h (revision 13395)
@@ -2,7 +2,7 @@
#define RUBY_RELEASE_DATE "2007-09-07"
#define RUBY_VERSION_CODE 186
#define RUBY_RELEASE_CODE 20070907
-#define RUBY_PATCHLEVEL 97
+#define RUBY_PATCHLEVEL 98
#define RUBY_VERSION_MAJOR 1
#define RUBY_VERSION_MINOR 8
Index: ruby_1_8_6/string.c
===================================================================
--- ruby_1_8_6/string.c (revision 13394)
+++ ruby_1_8_6/string.c (revision 13395)
@@ -1647,7 +1647,7 @@
}
beg += RSTRING(str)->len;
}
- if (RSTRING(str)->len < beg + len) {
+ if (RSTRING(str)->len < len || RSTRING(str)->len < beg + len) {
len = RSTRING(str)->len - beg;
}
--
ML: ruby-changes@q...
Info: http://www.atdot.net/~ko1/quickml