diff options
Diffstat (limited to 'verifier.cpp')
-rw-r--r-- | verifier.cpp | 6 |
1 files changed, 6 insertions, 0 deletions
diff --git a/verifier.cpp b/verifier.cpp index e9d540cdb..8be6da09f 100644 --- a/verifier.cpp +++ b/verifier.cpp @@ -153,6 +153,12 @@ int verify_file(const unsigned char* addr, size_t length, const std::vector<Cert LOG(INFO) << "comment is " << comment_size << " bytes; signature is " << signature_start << " bytes from end"; + if (signature_start > comment_size) { + LOG(ERROR) << "signature start: " << signature_start << " is larger than comment size: " + << comment_size; + return VERIFY_FAILURE; + } + if (signature_start <= FOOTER_SIZE) { LOG(ERROR) << "Signature start is in the footer"; return VERIFY_FAILURE; |