Re: out of bounds strscpy from seccomp_actions_logged_handler

From: Dave Jones
Date: Tue Oct 24 2017 - 20:18:39 EST


On Tue, Oct 24, 2017 at 06:54:25PM -0500, Tyler Hicks wrote:
> On 10/24/2017 06:46 PM, Dave Jones wrote:
> > (Triggered with trinity, but it seems just a 'cat
> > /proc/sys/kernel/seccomp/actions_logged' reproduces just as easily).
>
> Hi Dave - Thanks for the report. This is a false positive that was
> previously discussed here:
>
> https://lkml.kernel.org/r/<20171010182805.52b9b2af@xxxxxxxxxxxxxxxxxxxx>

Bah, I thought this smelled familiar. I'll just roll Andrey's
workaround diff into my builds for fuzzing runs until someone figures
out something better.

Dave