Core::getpassword
calls ::getline
which calls ::getdelim
which realloc
s as it sees fit.
However, since this "vulnerability" only occurs when the user's password exceeds #define BUFSIZ 1024
bytes, I'm going to assume that doesn't ever happen.
Pay now to fund the work behind this issue.
Get updates on progress being made.
Maintainer is rewarded once the issue is completed.
You're funding impactful open source efforts
You want to contribute to this effort
You want to get funding like this too