Page MenuHomeFreeBSD

Return error code if no matching SA was found
ClosedPublic

Authored by wma on Jul 2 2021, 4:41 AM.
Tags
None
Referenced Files
Unknown Object (File)
Sun, Mar 16, 3:55 PM
Unknown Object (File)
Feb 22 2025, 11:04 AM
Unknown Object (File)
Feb 21 2025, 10:09 AM
Unknown Object (File)
Jan 24 2025, 1:24 PM
Unknown Object (File)
Jan 15 2025, 5:05 AM
Unknown Object (File)
Jan 15 2025, 4:57 AM
Unknown Object (File)
Jan 14 2025, 10:33 PM
Unknown Object (File)
Dec 5 2024, 12:34 AM
Subscribers

Details

Summary

If we matched SP to a packet, but no associated SA was found
ipsec4_allocsa will return NULL while setting error=0.
This resulted in use after free and potential kernel panic.
Return EINPROGRESS if the case described above instead.

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

wma requested review of this revision.Jul 2 2021, 4:41 AM
This revision was not accepted when it landed; it landed in state Needs Review.Aug 13 2021, 7:37 AM
This revision was automatically updated to reflect the committed changes.