When your buffer overflow fix introduces a NULL deref bug: github.com/madler/zlib/commit/

Reminder: it's not possible at all to map at the zero address in #HardenedBSD. We outright removed the toggle that #FreeBSD provides, which was already disabled by default.

#infosec

Follow

@lattera I remember in Irix the zero address was actually used for something important.. and it's like.. COME ON MAN, that's an important sentinel value!

· · Web · 0 · 0 · 1
Sign in to participate in the conversation
Cross Family's Mastodon

The social network of the future: No ads, no corporate surveillance, ethical design, and decentralization! Own your data with Mastodon!