Page MenuHomeFreeBSD

netlink: Fully clear parser state between messages
ClosedPublic

Authored by des on Jul 30 2025, 1:36 PM.
Tags
None
Referenced Files
F144559554: D51634.diff
Mon, Feb 9, 2:10 PM
Unknown Object (File)
Thu, Jan 29, 10:54 PM
Unknown Object (File)
Jan 1 2026, 4:15 AM
Unknown Object (File)
Dec 22 2025, 5:35 AM
Unknown Object (File)
Dec 15 2025, 2:22 PM
Unknown Object (File)
Nov 22 2025, 11:22 PM
Unknown Object (File)
Nov 7 2025, 10:21 PM
Unknown Object (File)
Nov 4 2025, 10:37 PM
Subscribers

Details

Summary

Failing to reset the cookie between messages can lead to an attempt
to interpret a zeroed buffer as a struct nlattr, causing a length
calculation to underflow, resulting in a memcpy() call where the
length exceeds the actual size of the buffer.

MFC after: 1 week
PR: 283797

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable