Files
poky/meta/recipes-connectivity
Ashish Sharma f5051dae9f connman: Fix CVE-2023-28488 DoS in client.c
Avoid overwriting the read packet length after the initial test. Thus
move all the length checks which depends on the total length first
and do not use the total lenght from the IP packet afterwards.

Fixes CVE-2023-28488

Reported by Polina Smirnova <moe.hwr@gmail.com>

(From OE-Core rev: 47a9ae5592392bd10740e4571b06c8c739705058)

Signed-off-by: Ashish Sharma <asharma@mvista.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
2023-05-16 06:18:21 -10:00
..
2021-08-10 11:14:11 +01:00
2020-06-23 11:40:46 +01:00
2022-05-09 11:52:00 +01:00
2019-11-04 13:39:05 +00:00
2023-05-03 04:09:42 -10:00
2023-01-06 17:33:15 +00:00
2020-02-03 13:03:31 +00:00