@bagder if from is zero and to is 2^63. size should turn out to be zero. Curl wont download anything, afaict. Isn't this more of a bug than a vulnerability?
Top-level
@bagder if from is zero and to is 2^63. size should turn out to be zero. Curl wont download anything, afaict. Isn't this more of a bug than a vulnerability? 2 comments
|
@CodingThunder
Not necessarily. Signed integer overflow can cause all manner of weird stuff to happen. http://blog.llvm.org/2011/05/what-every-c-programmer-should-know.html#signed_overflow