]> CyberLeo.Net >> Repos - FreeBSD/FreeBSD.git/commit
bootpd: validate hardware type
authoremaste <emaste@FreeBSD.org>
Wed, 19 Dec 2018 18:16:29 +0000 (18:16 +0000)
committeremaste <emaste@FreeBSD.org>
Wed, 19 Dec 2018 18:16:29 +0000 (18:16 +0000)
commit2fa3dfd4871b949fe31ca5312e86fb55614a8af9
treee5ae7a3409e9596ef5a2b0abcb56db6ab12b0e7d
parenteee0fc983444505f41feaf9094e5033e54a8db73
bootpd: validate hardware type

Due to insufficient validation of network-provided data it may have been
possible for a malicious actor to craft a bootp packet which could cause
a stack buffer overflow.

admbugs: 850
Reported by: Reno Robert
Reviewed by: markj
Approved by: so
Security: FreeBSD-SA-18:15.bootpd
Sponsored by: The FreeBSD Foundation
libexec/bootpd/bootpd.c