Search
SailfishOS Open Build Service
>
Projects
>
home:tigeli
>
gnutls
> _service:tar_git:CVE-2014-3466.patch
Log In
Username
Password
Cancel
Overview
Repositories
Revisions
Requests
Users
Advanced
Attributes
Meta
File _service:tar_git:CVE-2014-3466.patch of Package gnutls
--- lib/gnutls_handshake.c.orig 2014-06-01 23:21:55.534838576 +0300 +++ lib/gnutls_handshake.c 2014-06-01 23:24:12.298832781 +0300 @@ -1797,7 +1797,7 @@ DECR_LEN (len, 1); session_id_len = data[pos++]; - if (len < session_id_len) + if (len < session_id_len || session_id_len > TLS_MAX_SESSION_ID_SIZE) { gnutls_assert (); return GNUTLS_E_UNSUPPORTED_VERSION_PACKET;