Page MenuHomeFreeBSD

OpenSSL: Cleanup record length checks for KTLS
ClosedPublic

Authored by jhb on Apr 19 2022, 9:33 PM.
Tags
None
Referenced Files
Unknown Object (File)
Mon, Nov 24, 8:32 PM
Unknown Object (File)
Mon, Nov 24, 8:32 PM
Unknown Object (File)
Mon, Nov 24, 8:32 PM
Unknown Object (File)
Mon, Nov 24, 8:31 PM
Unknown Object (File)
Sun, Nov 16, 4:33 AM
Unknown Object (File)
Wed, Nov 5, 7:44 AM
Unknown Object (File)
Oct 18 2025, 11:43 PM
Unknown Object (File)
Oct 12 2025, 10:21 PM
Subscribers

Details

Summary

In some corner cases the check for packets
which exceed the allowed record length was missing
when KTLS is initially enabled, when some
unprocessed packets are still pending.

Obtained from: OpenSSL commit 8fff986d52606e1a33f9404504535e2e2aee3e8b
MFC after: 1 week
Sponsored by: Netflix

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable