Please sign in to comment.
The length check for AF_ALG salg_name and salg_type had a off-by-one error. The code assumed that both values are not necessarily NULL terminated. However the Kernel code for alg_bind() ensures that the last byte of both strings are NULL terminated. Signed-off-by: Christian Heimes <firstname.lastname@example.org> (cherry picked from commit 2eb6ad8)
- Loading branch information
Showing with 26 additions and 3 deletions.
|@@ -0,0 +1 @@|
|:mod:`socket`: Fix off-by-one bug in length check for ``AF_ALG`` name and type.|