Skip to content

Conversation

@destro4evr-rgb
Copy link

@destro4evr-rgb destro4evr-rgb commented Jan 22, 2026

Safer bounds-checked memcpy in xmlcatalog.c:108 prevents OOB.

Before: memcpy (ret, buf, len + 1); (overrun risk)
After: memcpy(ret, buf, len); ret[len] = 0;

Rel: Google Patch Rewards Tier 2 OSS-Fuzz https://bughunters.google.com/open-source-security/patch-rewards

CC @xml @Oss-fuzz

@destro4evr-rgb
Copy link
Author

Submitted for Google Patch Rewards Program (Tier 2 OSS-Fuzz libxml2).
Prevents memcpy OOB in xmlcatalog parsing.

Thanks for review!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant