Mercurial > vim
view src/proto/textobject.pro @ 33778:06ad070cda83 v9.0.2109
patch 9.0.2109: [security]: overflow in nv_z_get_count
Commit: https://github.com/vim/vim/commit/58f9befca1fa172068effad7f2ea5a9d6a7b0cca
Author: Christian Brabandt <cb@256bit.org>
Date: Tue Nov 14 21:02:30 2023 +0100
patch 9.0.2109: [security]: overflow in nv_z_get_count
Problem: [security]: overflow in nv_z_get_count
Solution: break out, if count is too large
When getting the count for a normal z command, it may overflow for large
counts given. So verify, that we can safely store the result in a long.
Signed-off-by: Christian Brabandt <cb@256bit.org>
author | Christian Brabandt <cb@256bit.org> |
---|---|
date | Thu, 16 Nov 2023 22:15:11 +0100 |
parents | f103da6ba95f |
children |
line wrap: on
line source
/* textobject.c */ int findsent(int dir, long count); int findpar(int *pincl, int dir, long count, int what, int both); int startPS(linenr_T lnum, int para, int both); int fwd_word(long count, int bigword, int eol); int bck_word(long count, int bigword, int stop); int end_word(long count, int bigword, int stop, int empty); int bckend_word(long count, int bigword, int eol); int current_word(oparg_T *oap, long count, int include, int bigword); int current_sent(oparg_T *oap, long count, int include); int current_block(oparg_T *oap, long count, int include, int what, int other); int current_tagblock(oparg_T *oap, long count_arg, int include); int current_par(oparg_T *oap, long count, int include, int type); int current_quote(oparg_T *oap, long count, int include, int quotechar); /* vim: set ft=c : */