diff options
author | aurel32 <aurel32@c046a42c-6fe2-441c-8c8c-71466251a162> | 2008-12-07 18:15:23 +0000 |
---|---|---|
committer | aurel32 <aurel32@c046a42c-6fe2-441c-8c8c-71466251a162> | 2008-12-07 18:15:23 +0000 |
commit | 383589c12e3f2e0e34058be7901ba080dd73722c (patch) | |
tree | c1df90c4b1f78f224c8cff561df203a4ba75601a /tcp_subr.c | |
parent | 4919b468daeb191d424f09b80871aa118356954a (diff) | |
download | slirp-383589c12e3f2e0e34058be7901ba080dd73722c.zip slirp-383589c12e3f2e0e34058be7901ba080dd73722c.tar.gz slirp-383589c12e3f2e0e34058be7901ba080dd73722c.tar.bz2 |
slirp: fix CVE 2007-5729
The emulated network cards in QEMU allows local users to execute arbitrary
code by writing Ethernet frames with a size larger than the slirp's default
MTU, which triggers a heap-based buffer overflow in the slirp library.
Signed-off-by: Aurelien Jarno <aurelien@aurel32.net>
git-svn-id: svn://svn.savannah.nongnu.org/qemu/trunk@5920 c046a42c-6fe2-441c-8c8c-71466251a162
Diffstat (limited to 'tcp_subr.c')
0 files changed, 0 insertions, 0 deletions