Bug#772008: CVE request: mpfr: buffer overflow in mpfr_strtofr

2015-01-03 Thread cve-assign
On Tue, 30 Dec 2014, Moritz Muehlenhoff wrote: On Mon, Dec 08, 2014 at 01:45:12PM +0100, Vasyl Kaigorodov wrote: Hello, A buffer overflow was reported [1] in mpfr. This is due to incorrect GMP documentation for mpn_set_str about the size of a buffer (discussion is at [1]; first fix in the GMP

Bug#772008: CVE request: mpfr: buffer overflow in mpfr_strtofr

2014-12-29 Thread Moritz Muehlenhoff
On Mon, Dec 08, 2014 at 01:45:12PM +0100, Vasyl Kaigorodov wrote: > Hello, > > A buffer overflow was reported [1] in mpfr. > This is due to incorrect GMP documentation for mpn_set_str about the > size of a buffer (discussion is at [1]; first fix in the GMP > documentation is at [2]). This bug is p