]> CyberLeo.Net >> Repos - FreeBSD/FreeBSD.git/commit
MFC r342227: bootpd: validate hardware type
authoremaste <emaste@FreeBSD.org>
Wed, 19 Dec 2018 18:19:15 +0000 (18:19 +0000)
committeremaste <emaste@FreeBSD.org>
Wed, 19 Dec 2018 18:19:15 +0000 (18:19 +0000)
commitdc1918c7f951e0c048665e5428f341e1cccad25a
tree7ba608b03abf9d264e5ef0edf6bcc4929a0be777
parentd25080f90aa90faee263ddc43fde5a2472435816
MFC r342227: bootpd: validate hardware type

Due to insufficient validation of network-provided data it may have been
possible for a malicious actor to craft a bootp packet which could cause
a stack buffer overflow.

admbugs: 850
Reported by: Reno Robert
Reviewed by: markj
Approved by: so
Security: FreeBSD-SA-18:15.bootpd
Sponsored by: The FreeBSD Foundation
libexec/bootpd/bootpd.c