]> The Tcpdump Group git mirrors - tcpdump/commit
CVE-2017-12896/ISAKMP: Do bounds checks in isakmp_rfc3948_print().
authorGuy Harris <[email protected]>
Fri, 3 Feb 2017 19:15:34 +0000 (11:15 -0800)
committerDenis Ovsienko <[email protected]>
Wed, 13 Sep 2017 11:25:44 +0000 (12:25 +0100)
commitf76e7feb41a4327d2b0978449bbdafe98d4a3771
treee746201550d00787a894710773f19fadf768ca48
parenta1eefe986065846b6c69dbc09afd9fa1a02c4a3d
CVE-2017-12896/ISAKMP: Do bounds checks in isakmp_rfc3948_print().

This fixes a buffer over-read discovered by Kamil Frankowicz.

Add a test using the capture file supplied by the reporter(s).
print-isakmp.c
tests/TESTLIST
tests/isakmp-rfc3948-oobr.out [new file with mode: 0644]
tests/isakmp-rfc3948-oobr.pcap [new file with mode: 0644]