> On May 3, 2016, at 1:44 PM, Conrad Meyer <c...@freebsd.org> wrote:
> 
> On Tue, May 3, 2016 at 12:00 PM, Oliver Pinter
> <oliver.pin...@hardenedbsd.org> wrote:
>> strlcpy instead or adjust the p->vendors size?
> 
> Neither.  The buffer is intentionally not nul-terminated.  The
> coverity reports are false positives.

Then wouldn’t memcmp be better?

Warner

Attachment: signature.asc
Description: Message signed with OpenPGP using GPGMail

Reply via email to