diff options
| author | Kristof Provost <kp@FreeBSD.org> | 2026-01-12 17:08:35 +0100 |
|---|---|---|
| committer | Kristof Provost <kp@FreeBSD.org> | 2026-01-14 07:44:42 +0100 |
| commit | 393243a38d742e54d93c9c9ddb6c8f95fc0cb72e (patch) | |
| tree | 3c2a72511d050dec37285ea543acdffbdf0bcf84 /source/Plugins/ScriptInterpreter/Python/PythonDataObjects.cpp | |
| parent | 95ee802f410f9b8afec2c3e66e524ec8ca861dae (diff) | |
pfctl: ifa_load() in pfctl_parser.c may attempt to read beyond the buffer.
The current ifa_load() is not paranoid enough when it deals with
information which comes from kernel. The function just ignores
sa_len member in socket address returned getifaddrs().
The issue has been reported by anton@. The idea for fix here comes
fromy claudio@.
OK @claudio, @deraadt
Obtained from: OpenBSD, sashan <sashan@openbsd.org>, a48d060175
Sponsored by: Rubicon Communications, LLC ("Netgate")
Diffstat (limited to 'source/Plugins/ScriptInterpreter/Python/PythonDataObjects.cpp')
0 files changed, 0 insertions, 0 deletions
