[Bug 297264] Exploitable bug in PF_KEY?

[email protected]
Newsgroups gmane.os.freebsd.devel.pf4freebsd
Message-ID <[email protected]/bugzilla/>
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=297264

--- Comment #8 from [email protected] ---
A commit in branch releng/14.5 references this bug:

URL:
https://cgit.FreeBSD.org/src/commit/?id=feecef8df3d8bddf5842f937e93d19e918674a65

commit feecef8df3d8bddf5842f937e93d19e918674a65
Author:     Konstantin Belousov <[email protected]>
AuthorDate: 2026-08-04 15:52:53 +0000
Commit:     Colin Percival <[email protected]>
CommitDate: 2026-08-18 01:27:38 +0000

    PF_KEY socket: limit the length of copied socket address

    Approved by:    re (cperciva)
    PR:     297264

    (cherry picked from commit cba481a7bff2fcf31420ee8b2714660e2666452b)
    (cherry picked from commit 022f935a1fbc75d39a055eee0a327cb2062a4596)

 sys/netipsec/key.c | 128 +++++++++++++++++++++++++++++------------------------
 1 file changed, 69 insertions(+), 59 deletions(-)

-- 
You are receiving this mail because:
You are on the CC list for the bug.
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.