diff options
author | A. Wilcox <awilcox@wilcox-tech.com> | 2019-10-04 17:52:08 +0000 |
---|---|---|
committer | A. Wilcox <awilcox@wilcox-tech.com> | 2019-10-04 17:52:08 +0000 |
commit | df8a87faf5691a5b2851541a334bd189501327ce (patch) | |
tree | 373afa6c8208583bef6d6d7de238892de8ee122c /user/tcpdump/CVE-2017-16808.patch | |
parent | 615ba2b4aa4fe28c5fd6357f4b97ed48b9b52e5e (diff) | |
parent | f716c7057e137b586d2b8914346bdc5a486da397 (diff) | |
download | packages-df8a87faf5691a5b2851541a334bd189501327ce.tar.gz packages-df8a87faf5691a5b2851541a334bd189501327ce.tar.bz2 packages-df8a87faf5691a5b2851541a334bd189501327ce.tar.xz packages-df8a87faf5691a5b2851541a334bd189501327ce.zip |
Merge branch 'cves.2019.10.02' into 'master'
CVEs for 2019.10.02
See merge request adelie/packages!350
Diffstat (limited to 'user/tcpdump/CVE-2017-16808.patch')
-rw-r--r-- | user/tcpdump/CVE-2017-16808.patch | 26 |
1 files changed, 0 insertions, 26 deletions
diff --git a/user/tcpdump/CVE-2017-16808.patch b/user/tcpdump/CVE-2017-16808.patch deleted file mode 100644 index 6b41aad8c..000000000 --- a/user/tcpdump/CVE-2017-16808.patch +++ /dev/null @@ -1,26 +0,0 @@ -From 28f610026d901660dd370862b62ec328727446a2 Mon Sep 17 00:00:00 2001 -From: Denis Ovsienko <denis@ovsienko.info> -Date: Thu, 31 Aug 2017 21:15:37 +0100 -Subject: [PATCH] CVE-2017-16808/AoE: Add a missing bounds check. - -In aoev1_reserve_print() check bounds before trying to print an Ethernet -address. - -This fixes a buffer over-read discovered by Bhargava Shastry, -SecT/TU Berlin. ---- - print-aoe.c | 1 + - 1 file changed, 1 insertion(+) - -diff --git a/print-aoe.c b/print-aoe.c -index 97e93df2e..2c78a55d3 100644 ---- a/print-aoe.c -+++ b/print-aoe.c -@@ -325,6 +325,7 @@ aoev1_reserve_print(netdissect_options *ndo, - goto invalid; - /* addresses */ - for (i = 0; i < nmacs; i++) { -+ ND_TCHECK2(*cp, ETHER_ADDR_LEN); - ND_PRINT((ndo, "\n\tEthernet Address %u: %s", i, etheraddr_string(ndo, cp))); - cp += ETHER_ADDR_LEN; - } |