Skip to content

Conversation

@Rot127
Copy link
Collaborator

@Rot127 Rot127 commented Dec 17, 2025

Your checklist for this pull request

  • I've documented or updated the documentation of every API function and struct this PR changes.
  • I've added tests that prove my fix is effective or that my feature works (if possible)

Detailed description

Backports the fixes for CVE-2025-68114 and CVE-2025-67873 reported by @Finder16.

2c77971
cbef767

Test plan

All green

Closing issues

...

* Check return value of cs_vsnprintf for negative values.

This prevents underflow of SStream.index.
This bug was reported by Github user Finder16.

* Add overflow check before adding cs_vsnprintf return value.
The overflow was reported by Github user Finder16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant