1 From 7ea481a6471cdad3a674b767f808357b3c7fc721 Mon Sep 17 00:00:00 2001
2 From: Qualys Security Advisory <qsa@qualys.com>
3 Date: Sun, 21 Feb 2021 21:49:30 -0800
4 Subject: [PATCH 13/29] CVE-2020-28024: Heap buffer underflow in smtp_ungetc()
9 2 files changed, 6 insertions(+)
11 diff --git a/src/smtp_in.c b/src/smtp_in.c
12 index 16c3a3e33..bdcfde65f 100644
15 @@ -805,6 +805,9 @@ Returns: the character
19 +if (smtp_inptr <= smtp_inbuffer)
20 + log_write(0, LOG_MAIN|LOG_PANIC_DIE, "buffer underflow in smtp_ungetc");
25 diff --git a/src/tls.c b/src/tls.c
26 index f79bc3193..2a316fe59 100644
29 @@ -151,6 +151,9 @@ Returns: the character
33 +if (ssl_xfer_buffer_lwm <= 0)
34 + log_write(0, LOG_MAIN|LOG_PANIC_DIE, "buffer underflow in tls_ungetc");
36 ssl_xfer_buffer[--ssl_xfer_buffer_lwm] = ch;