]> The Tcpdump Group git mirrors - tcpdump/commit
CVE-2017-13015/EAP: Add more bounds checks.
authorGuy Harris <[email protected]>
Thu, 16 Mar 2017 19:02:20 +0000 (12:02 -0700)
committerDenis Ovsienko <[email protected]>
Sun, 3 Sep 2017 23:08:58 +0000 (00:08 +0100)
commitacfaf25345a2f77707953ee7d3bb0abbdde3b64e
tree19fc1ef5e971f414d9dd3a87b435b8992324856f
parent98da6bf197ae348e9a96486dd38d35b62a4509eb
CVE-2017-13015/EAP: Add more bounds checks.

This fixes a buffer over-read discovered by Bhargava Shastry,
SecT/TU Berlin.

Add a test using the capture file supplied by the reporter(s), modified
so the capture file won't be rejected as an invalid capture.
print-eap.c
tests/TESTLIST
tests/eap_extract_read2_asan.out [new file with mode: 0644]
tests/eap_extract_read2_asan.pcap [new file with mode: 0644]