hostapd/src
Jouni Malinen 5bad612311 WNM: Fix bounds checking in SSID List element matching
The IE header length check was off-by-one and that could allow the loop
to read one octet beyond the end of the buffer before breaking out in
the second check.

Credit to OSS-Fuzz: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=14927
Fixes: 0a66ce3c49 ("WNM: Add support for SSID List element matching")
Signed-off-by: Jouni Malinen <jouni@codeaurora.org>
2019-05-25 01:29:47 +03:00
..
ap WNM: Fix bounds checking in SSID List element matching 2019-05-25 01:29:47 +03:00
common DPP: Fix bootstrapping URI parser to handle channel list for an opclass 2019-05-23 01:34:24 +03:00
crypto OpenSSL: Fix a memory leak in OCSP handling 2019-05-08 21:08:53 +03:00
drivers nl80211: Station airtime weight configuration 2019-05-02 13:28:17 +03:00
eap_common Share common SAE and EAP-pwd functionality: own scalar generation 2019-04-26 17:33:44 +03:00
eap_peer EAP-SAKE: Report hash function failures to callers 2019-04-19 16:52:01 +03:00
eap_server EAP-PAX server: Avoid debug prints of uninitialized memory in error cases 2019-05-08 19:02:19 +03:00
eapol_auth Add hostapd tls_flags parameter 2017-09-18 12:12:48 +03:00
eapol_supp More robust timer_tick_enabled tracking 2019-03-13 23:33:41 +02:00
fst UBSan: Define FST LLT macros without integer overflow 2019-02-25 19:48:49 +02:00
l2_packet wpa_supplicant: Don't reply to EAPOL if pkt_type is PACKET_OTHERHOST 2018-04-02 12:21:27 +03:00
p2p WPS: Add multi_ap_subelem to wps_build_wfa_ext() 2019-02-18 20:30:26 +02:00
pae mka: Avoid memory leak in unexpected case in RECEIVE 2019-04-15 22:50:06 +03:00
radius RADIUS server: Accept ERP keyName-NAI as user identity 2019-04-09 00:10:20 +03:00
rsn_supp FILS: Verify RSNE match between Beacon/Probe Response and (Re)AssocResp 2019-05-23 00:34:43 +03:00
tls TLS: Add support for RFC 5705 TLS exporter context with internal TLS 2019-03-16 18:52:09 +02:00
utils Share a single buf_shift_right() implementation 2019-04-25 23:49:43 +03:00
wps Multi-AP: Avoid memcpy(ptr, NULL, 0) in WPS Registrar initialization 2019-02-23 11:37:20 +02:00
lib.rules tests: TLS fuzzing tool 2019-02-11 02:35:29 +02:00
Makefile FST: Add the Fast Session Transfer (FST) module 2015-07-16 18:26:15 +03:00