Stanislav Sedov
6760b335c6
- Prevent buffer overflow in IPFilter's load_http function used to load
...
ipfilter tables via http by the user-level ippool utility. Previously
the 1024-byte buffer used to store a http request coudld easily overflow
if the length of the hostname part of the url passes exceeded 496 bytes. [1]
- Use snprintf to prevent possieble buffer overflows in future. [2]
- Do not try to close the descriptor twice on failure. [2]
Reported by: Maksymilian Arciemowicz <cxib@securityreason.com> [1]
Obtained from: NetBSD CVS [2]
MFC after: 2 weeks
2009-05-29 16:24:23 +00:00
..
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2009-03-21 23:00:40 +00:00
2008-12-11 08:22:20 +00:00
2009-02-18 19:59:27 +00:00
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2009-03-25 20:15:48 +00:00
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2009-05-28 04:25:38 +00:00
2008-10-19 08:41:10 +00:00
2009-05-18 22:34:33 +00:00
2009-03-25 05:10:32 +00:00
2008-10-19 08:41:10 +00:00
2009-04-07 20:15:51 +00:00
2009-03-04 03:45:02 +00:00
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2009-05-21 17:56:00 +00:00
2009-05-29 16:24:23 +00:00
2009-05-09 01:35:27 +00:00
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2009-04-11 17:36:11 +00:00
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2009-01-07 20:17:55 +00:00
2008-11-15 09:30:09 +00:00
2009-05-29 07:18:31 +00:00
2008-10-19 08:41:10 +00:00
2009-04-20 09:59:08 +00:00
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2009-04-19 16:17:13 +00:00
2009-02-17 16:35:19 +00:00
2009-01-30 15:43:55 +00:00
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2008-10-19 08:41:10 +00:00
2008-11-15 04:43:54 +00:00
2009-01-22 08:29:39 +00:00
2008-10-19 08:41:10 +00:00
2009-03-21 21:56:23 +00:00
2008-10-20 08:44:14 +00:00
2009-02-26 21:43:15 +00:00
2008-10-19 08:41:10 +00:00
2009-03-10 11:46:41 +00:00
2008-10-19 08:41:10 +00:00
2009-03-16 23:56:28 +00:00