[quagga-dev 1250] Re: authentication length field patch for ripd.c

Paul Jakma paul at clubi.ie
Sun Jun 6 12:30:18 BST 2004


On Fri, 4 Jun 2004, Paul Jakma wrote:

> - check that fromlen and len returned from recvfrom are equal. 
> the function checks for upper bound on len, so this wasnt actually 
> exploitable. pass length to rip_auth_md5.

> +  if (len != fromlen)
> +    {
> +      zlog_warn ("message size %d is not equal to buffer length %d",
> +                 len, fromlen);
> +      return -1;
> +    }

Sigh.. i cant read.

fromlen is sizeof address.

regards,
-- 
Paul Jakma	paul at clubi.ie	paul at jakma.org	Key ID: 64A2FF6A
 	warning: do not ever send email to spam at dishone.st
Fortune:
Santa Claus is watching!



More information about the Quagga-dev mailing list