Page MenuHomeFreeBSD

rtsock: fix buffer overrun (sockaddr misuse)
ClosedPublic

Authored by takahiro.kurosawa_gmail.com on May 12 2022, 11:24 PM.
Tags
None
Referenced Files
Unknown Object (File)
Fri, Nov 28, 7:05 PM
Unknown Object (File)
Nov 25 2025, 3:36 AM
Unknown Object (File)
Nov 6 2025, 3:50 AM
Unknown Object (File)
Oct 29 2025, 8:27 PM
Unknown Object (File)
Oct 29 2025, 5:19 PM
Unknown Object (File)
Oct 29 2025, 5:17 PM
Unknown Object (File)
Oct 29 2025, 5:14 PM
Unknown Object (File)
Oct 27 2025, 3:42 PM

Details

Summary

struct sockaddr is not sufficient for buffer that can hold any
sockaddr_* structure. struct sockaddr_storage should be used.

Test Plan

ifconfig epair create
ifconfig epair0a inet6 add 2001:db8::1 up
ndp -s 2001:db8::2 02:86:98:2e:96:0b proxy # this triggers kernel stack overflow

Diff Detail

Repository
rS FreeBSD src repository - subversion
Lint
Lint Passed
Unit
No Test Coverage
Build Status
Buildable 45553
Build 42441: arc lint + arc unit