HomeFreeBSD

Improve the input validation and processing of cookies.

Description

Improve the input validation and processing of cookies.
This avoids setting the association in an inconsistent
state, which could result in a use-after-free situation.
This can be triggered by a malicious peer, if the peer
can modify the cookie without the local endpoint recognizing
it.
Thanks to Ned Williamson for reporting the issue.

MFC after: 3 days

Details

Provenance
tuexenAuthored on
Parents
rS366247: cxgbe(4): Avoid unnecessary work in the firmware during netmap tx.
Branches
Unknown
Tags
Unknown