diff options
author | Mikhail Maltsev <maltsevm@gmail.com> | 2015-11-28 16:39:29 +0000 |
---|---|---|
committer | Pedro Alves <palves@redhat.com> | 2015-11-28 16:39:29 +0000 |
commit | d81bf7ddc2ad497037fbfde5d15cfa8d81a9e959 (patch) | |
tree | 926b0c2c076cb449874747186878d3da93564104 /libiberty/ChangeLog | |
parent | 6a8796db3691b9a53dc5475eaec5388bc1af115d (diff) | |
download | gdb-d81bf7ddc2ad497037fbfde5d15cfa8d81a9e959.zip gdb-d81bf7ddc2ad497037fbfde5d15cfa8d81a9e959.tar.gz gdb-d81bf7ddc2ad497037fbfde5d15cfa8d81a9e959.tar.bz2 |
Fix several crashes of C++ demangler on fuzzed input.
libiberty/
* cp-demangle.c (d_dump): Fix syntax error.
(d_identifier): Adjust type of len to match d_source_name.
(d_expression_1): Fix out-of-bounds access. Check code variable for
NULL before dereferencing it.
(d_find_pack): Do not recurse for FIXED_TYPE, DEFAULT_ARG and NUMBER.
(d_print_comp_inner): Add NULL pointer check.
* cp-demangle.h (d_peek_next_char): Define as inline function when
CHECK_DEMANGLER is defined.
(d_advance): Likewise.
* testsuite/demangle-expected: Add new testcases.
git-svn-id: svn+ssh://gcc.gnu.org/svn/gcc/trunk@225727 138bc75d-0d04-0410-961f-82ee72b054a4
Diffstat (limited to 'libiberty/ChangeLog')
-rw-r--r-- | libiberty/ChangeLog | 13 |
1 files changed, 13 insertions, 0 deletions
diff --git a/libiberty/ChangeLog b/libiberty/ChangeLog index 65abd11..985e4ae 100644 --- a/libiberty/ChangeLog +++ b/libiberty/ChangeLog @@ -52,6 +52,19 @@ * configure: Regenerated. +2015-07-13 Mikhail Maltsev <maltsevm@gmail.com> + + * cp-demangle.c (d_dump): Fix syntax error. + (d_identifier): Adjust type of len to match d_source_name. + (d_expression_1): Fix out-of-bounds access. Check code variable for + NULL before dereferencing it. + (d_find_pack): Do not recurse for FIXED_TYPE, DEFAULT_ARG and NUMBER. + (d_print_comp_inner): Add NULL pointer check. + * cp-demangle.h (d_peek_next_char): Define as inline function when + CHECK_DEMANGLER is defined. + (d_advance): Likewise. + * testsuite/demangle-expected: Add new testcases. + 2015-07-09 Uros Bizjak <ubizjak@gmail.com> * getruntime.c (RUSAGE_SELF): Define if not already defined. |