Author serhiy.storchaka
Recipients mark.dickinson, serhiy.storchaka
Date 2012-09-30.18:34:09
SpamBayes Score -1.0
Marked as misclassified Yes
Message-id <>
In several places such dungerous code used to check the integer overflow:

  size = n * itemsize;
  if (size / itemsize != n) raise exception...

Because these values are signed, this results in undefined behavior.

The proposed patches replace similar unsafe code to safe one. Note that the patches for the different versions are substantially different.
Date User Action Args
2012-09-30 18:34:11serhiy.storchakasetrecipients: + serhiy.storchaka, mark.dickinson
2012-09-30 18:34:11serhiy.storchakasetmessageid: <>
2012-09-30 18:34:11serhiy.storchakalinkissue16096 messages
2012-09-30 18:34:10serhiy.storchakacreate