svn commit: r279262 - head/sys/netinet

Rui Paulo rpaulo at me.com
Thu Feb 26 18:38:21 UTC 2015


On Feb 24, 2015, at 09:43 PM, Xin LI <delphij at FreeBSD.org> wrote:

Author: delphij
Date: Wed Feb 25 05:42:59 2015
New Revision: 279262
URL: https://svnweb.freebsd.org/changeset/base/279262

Log:
Fix integer overflow in IGMP protocol.

Security:    FreeBSD-SA-15:04.igmp
Security:        CVE-2015-1414
Found by:        Mateusz Kocielski, Logicaltrust
Analyzed by:      Marek Kroemeke, Mateusz Kocielski (shm at NetBSD.org) and
           22733db72ab3ed94b5f8a1ffcde850251fe6f466
 
It looks weird to me that a SHA1 hash is capable of analysing code.... Maybe the AI Winter has finally ended?  :-)


More information about the svn-src-head mailing list