netdev
[Top] [All Lists]

Re: [IPSEC] Verify key payload in verify_one_algo

To: herbert@xxxxxxxxxxxxxxxxxxx
Subject: Re: [IPSEC] Verify key payload in verify_one_algo
From: "David S. Miller" <davem@xxxxxxxxxxxxx>
Date: Thu, 19 May 2005 12:40:59 -0700 (PDT)
Cc: netdev@xxxxxxxxxxx
In-reply-to: <20050519021505.GA20703@gondor.apana.org.au>
References: <20050519020302.GA20285@gondor.apana.org.au> <20050519021505.GA20703@gondor.apana.org.au>
Sender: netdev-bounce@xxxxxxxxxxx
From: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
Date: Thu, 19 May 2005 12:15:05 +1000

> We need to verify that the payload contains enough data so that
> attach_one_algo can copy alg_key_len bits from the payload.
> 
> Signed-off-by: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>

Also applied, thanks again.

I gather from these two patches that once you found the
first problem you went around auditing alg_key_len usage
and these were the only two bugs you spotted.  Right?

<Prev in Thread] Current Thread [Next in Thread>