]> CyberLeo.Net >> Repos - FreeBSD/FreeBSD.git/commit
MFS11 r342229: bootpd: validate hardware type
authoremaste <emaste@FreeBSD.org>
Wed, 19 Dec 2018 18:22:25 +0000 (18:22 +0000)
committeremaste <emaste@FreeBSD.org>
Wed, 19 Dec 2018 18:22:25 +0000 (18:22 +0000)
commitbe441713e5ebf6f70a54f9773e770fdffec494f7
treebf416af2baec103605bebafbb2034092b5f78daa
parenta3da8d3cae6ff49fc79f222c1874ee28c23a01bf
MFS11 r342229: bootpd: validate hardware type

Due to insufficient validation of network-provided data it may have been
possible for a malicious actor to craft a bootp packet which could cause
a stack buffer overflow.

admbugs: 850
Reported by: Reno Robert
Reviewed by: markj
Approved by: so
Security: FreeBSD-SA-18:15.bootpd
Sponsored by: The FreeBSD Foundation
libexec/bootpd/bootpd.c