Please sign in to comment.
CVE-2017-13000/IEEE 802.15.4: Fix bug introduced two fixes prior.
We've already advanced the pointer past the PAN ID, if present; it now points to the address, so don't add 2 to it. This fixes a buffer over-read discovered by Forcepoint's security researchers Otto Airamo & Antti Levomäki. Add a test using the capture file supplied by the reporter(s).
- Loading branch information...
Showing with 3 additions and 1 deletion.
|@@ -0,0 +1 @@|
|IEEE 802.15.4 Beacon packet seq cd ffab:cdff < [|802.15.4]|
BIN +79 Bytes tests/802_15_4_beacon.pcap
Binary file not shown.