gmp-4.1.2 integer overflow

Jason jasonmoxham at btclick.com
Sat Feb 14 17:52:23 CET 2004


line 66 in mpz/root.c

 unb = un * GMP_NUMB_BITS - cnt + GMP_NAIL_BITS;

example is trivial to construct , leading to a buffer overflow



More information about the gmp-bugs mailing list