Title: Crash in marshal.load() with bad reader
Type: crash Stage: resolved
Components: Interpreter Core Versions: Python 3.3, Python 3.4
Status: closed Resolution: fixed
Dependencies: Superseder:
Assigned To: serhiy.storchaka Nosy List: barry, dmi.baranov, python-dev, serhiy.storchaka
Priority: normal Keywords: patch

Created on 2013-04-29 21:29 by serhiy.storchaka

File name Uploaded Description Edit serhiy.storchaka, 2013-04-29 21:29
marshal_bad_reader.patch serhiy.storchaka, 2013-05-20 20:33 review
Messages (4)
msg188107 - (view) Author: Serhiy Storchaka (serhiy.storchaka) * (Python committer) Date: 2013-04-29 21:29
There is a buffer overflow in marshal.load() when len(read(n)) > n.

Here is a sample.
msg189690 - (view) Author: Serhiy Storchaka (serhiy.storchaka) * (Python committer) Date: 2013-05-20 20:33
And here is a fix.
msg190210 - (view) Author: Serhiy Storchaka (serhiy.storchaka) * (Python committer) Date: 2013-05-28 13:45
Could anyone review a patch please?
msg192889 - (view) Author: Roundup Robot (python-dev) (Python triager) Date: 2013-07-11 19:31
New changeset fc7bab8a8618 by Serhiy Storchaka in branch '3.3':
Issue #17872: Fix a segfault in marshal.load() when input stream returns

New changeset 5fa793ae36cc by Serhiy Storchaka in branch 'default':
Issue #17872: Fix a segfault in marshal.load() when input stream returns
