Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
[topology_hiding] fix vulnerability in TH decoding
Extra checks were added to prevent buffer overflow/underflow when decoding the TH information (in non-dialog module) extracted from the Contact hdr. This information may be subject to malicious changes from an external attacker. Credits for reporting and for the fix go to @wdoekes. The suggested fix was re-worked a bit, but the idea is the same. Fixes #2338 (cherry picked from commit 78909c3)
- Loading branch information