National Institute of Standards and Technology
Package illustrating a test case

Test case 1300

Description

Gecos Overflow: CVE-1999-0131.
Patched version.
From MIT benchmarks (models/sendmail/s2)
A buffer overflow in the code that handles user"s gecos field (real name
field) which is found in the password file.
Patched file: recipient-ok.c
Patched line numbers: 184, 308
Patched file: util-ok.c
Patched line numbers: 154, 168, 176

Flaws

Test Suites

Have any comments on this test case? Please, send us an email.