From 9a08a370f68266f92df5a6037bd722041703df27 Mon Sep 17 00:00:00 2001 From: Jakub Jelen Date: Tue, 22 Apr 2025 21:18:44 +0200 Subject: [PATCH] CVE-2025-5318: sftpserver: Fix possible buffer overrun Signed-off-by: Jakub Jelen Reviewed-by: Andreas Schneider --- src/sftpserver.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/sftpserver.c b/src/sftpserver.c index 9117f155..b3349e16 100644 --- a/src/sftpserver.c +++ b/src/sftpserver.c @@ -538,7 +538,7 @@ void *sftp_handle(sftp_session sftp, ssh_string handle){ memcpy(&val, ssh_string_data(handle), sizeof(uint32_t)); - if (val > SFTP_HANDLES) { + if (val >= SFTP_HANDLES) { return NULL; } -- 2.50.1