[Date Prev][Date Next]
(ITS#5692) literal constant 8192 used instead of SLAP_LDAPDN_MAXLEN
Full_Name: Andreas Moroder
OS: Suse Linux 10.2
Submission from: (NULL) (126.96.36.199)
the literal value 8192 is used for array sizes instead of SLAP_LDAPDN_MAXLEN
defined in /servers/slapd/slap.h
I think this could become a problem if SLAP_LDAPDN_MAXLEN grows in a future
A question from a newbie:
What happens in a mixed environment with a never version with bigger
SLAP_LDAPDN_MAXLEN that replicates his entries to a version with
SLAP_LDAPDN_MAXLEN at 8192 ?
Isn't it wrong not to check for a buffer owerflow when strings are concantenated
and suppose that the data we use does not exceed the limit ?