summaryrefslogtreecommitdiff
path: root/Modules/pwdmodule.c
diff options
context:
space:
mode:
authorAlexey Izbyshev <izbyshev@ispras.ru>2018-11-04 18:44:16 +0300
committerSerhiy Storchaka <storchaka@gmail.com>2018-11-04 17:44:16 +0200
commite359bc24b1f3a6ce311b9ef3043d1fdf5f1bf1cd (patch)
tree5c46312b979294f5f52f4545a4869ace6ee67cab /Modules/pwdmodule.c
parent52465e1b8bb7af23d642dbb43c8173d079b7ec30 (diff)
downloadcpython-git-e359bc24b1f3a6ce311b9ef3043d1fdf5f1bf1cd.tar.gz
bpo-35161: Fix stack-use-after-scope in grp.getgr{nam,gid} and pwd.getpw{nam,uid}. (GH-10319)
Reported by ASAN.
Diffstat (limited to 'Modules/pwdmodule.c')
-rw-r--r--Modules/pwdmodule.c6
1 files changed, 4 insertions, 2 deletions
diff --git a/Modules/pwdmodule.c b/Modules/pwdmodule.c
index d15286dc10..1286e7d5ce 100644
--- a/Modules/pwdmodule.c
+++ b/Modules/pwdmodule.c
@@ -131,11 +131,12 @@ pwd_getpwuid(PyObject *module, PyObject *uidobj)
return NULL;
}
#ifdef HAVE_GETPWUID_R
- Py_BEGIN_ALLOW_THREADS
int status;
Py_ssize_t bufsize;
+ /* Note: 'pwd' will be used via pointer 'p' on getpwuid_r success. */
struct passwd pwd;
+ Py_BEGIN_ALLOW_THREADS
bufsize = sysconf(_SC_GETPW_R_SIZE_MAX);
if (bufsize == -1) {
bufsize = DEFAULT_BUFFER_SIZE;
@@ -212,11 +213,12 @@ pwd_getpwnam_impl(PyObject *module, PyObject *name)
if (PyBytes_AsStringAndSize(bytes, &name_chars, NULL) == -1)
goto out;
#ifdef HAVE_GETPWNAM_R
- Py_BEGIN_ALLOW_THREADS
int status;
Py_ssize_t bufsize;
+ /* Note: 'pwd' will be used via pointer 'p' on getpwnam_r success. */
struct passwd pwd;
+ Py_BEGIN_ALLOW_THREADS
bufsize = sysconf(_SC_GETPW_R_SIZE_MAX);
if (bufsize == -1) {
bufsize = DEFAULT_BUFFER_SIZE;