New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
A global-buffer-overflow in hcxpcapngtool.c:3789:4 #155
Comments
Thanks for reporting that issue. It should be fixed by latest commit: Analysis of the attached pcapng file:
By latest commit, hcxpcangtool is able to handle that kind of damaged pcapng files (inclusive detection of all included frames):
Please test and reopen issue, if it doesn't work for you. |
I think this commit has fixed this issue. |
The attached pcapng file is very appreciated and helped to improve hcxtools. |
Glad that it helps. |
CVE-2021-32286 has been assigned for this issue. |
And it was fixed a long time ago.
|
System info
Ubuntu x86_64, clang 6.0, hcxpcapngtool (latest master e6b738)
Configure
CFLAGS="-g -fsanitize=address" LDFLAGS="-fsanitize=address" make
Command line
./hcxpcapngtool --all -o /dev/null @@
AddressSanitizer output
POC
global-overflow-pcapngoptionwalk-hcxpcapngtool-3789.zip
The text was updated successfully, but these errors were encountered: