Page MenuHomeFreeBSD

rtsock: fix buffer overrun (sockaddr misuse)
ClosedPublic

Authored by takahiro.kurosawa_gmail.com on May 12 2022, 11:24 PM.
Tags
None
Referenced Files
F114891195: D35188.diff
Fri, Apr 18, 5:04 AM
Unknown Object (File)
Sat, Apr 12, 8:31 PM
Unknown Object (File)
Mar 17 2025, 7:15 AM
Unknown Object (File)
Mar 8 2025, 6:49 AM
Unknown Object (File)
Mar 6 2025, 11:56 AM
Unknown Object (File)
Feb 21 2025, 9:49 PM
Unknown Object (File)
Feb 17 2025, 3:09 AM
Unknown Object (File)
Feb 11 2025, 8:55 AM

Details

Summary

struct sockaddr is not sufficient for buffer that can hold any
sockaddr_* structure. struct sockaddr_storage should be used.

Test Plan

ifconfig epair create
ifconfig epair0a inet6 add 2001:db8::1 up
ndp -s 2001:db8::2 02:86:98:2e:96:0b proxy # this triggers kernel stack overflow

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable