Bug#15912213: BUFFER OVERFLOW IN ACL_GET()
Description: A very large database name causes buffer overflow in functions acl_get() and check_grant_db() in sql_acl.cc. It happens due to an unguarded string copy operation. This puts required sanity checks before copying db string to destination buffer.
Showing
Please register or sign in to comment