From a49bef98417bdfe302cfb2dc234cfd8e4bd1e38c Mon Sep 17 00:00:00 2001 From: Jakub Jelen Date: Tue, 22 Apr 2025 21:18:44 +0200 Subject: [PATCH] CVE-2025-5318: sftpserver: Fix possible buffer overrun Signed-off-by: Jakub Jelen Reviewed-by: Andreas Schneider --- src/sftpserver.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/sftpserver.c b/src/sftpserver.c index 9117f155..b3349e16 100644 --- a/src/sftpserver.c +++ b/src/sftpserver.c @@ -538,7 +538,7 @@ void *sftp_handle(sftp_session sftp, ssh_string handle){ memcpy(&val, ssh_string_data(handle), sizeof(uint32_t)); - if (val > SFTP_HANDLES) { + if (val >= SFTP_HANDLES) { return NULL; } -- 2.50.1