diff options
| author | Denys Fedoryshchenko <denys.f@collabora.com> | 2026-08-27 13:34:17 +0300 |
|---|---|---|
| committer | Denys Fedoryshchenko <denys.f@collabora.com> | 2026-10-06 02:18:41 +0300 |
| commit | 2600050acd74bf6cea320e8d5f3c7ae09568b062 (patch) | |
| tree | 7a9c88fe7523e5a69137545eba555cc02d38c22d /accel-pppd/include | |
| parent | d33028de8b8b520dfde12d9d9d01f4cd576f23b3 (diff) | |
| download | accel-ppp-2600050acd74bf6cea320e8d5f3c7ae09568b062.tar.gz accel-ppp-2600050acd74bf6cea320e8d5f3c7ae09568b062.zip | |
ipv6_nd: do not overrun the advertisement buffer with prefix information
The prefix information options are written into a fixed 1024 byte pool
buffer with no bound at all, one 32 byte option per address on the
session. A session carrying more than about thirty addresses therefore
writes past the end of the buffer.
Skip the prefix information of the addresses which no longer fit and warn
about them. The loop also installs the addresses on the interface, so keep
doing that regardless of how much room is left in the advertisement.
Diffstat (limited to 'accel-pppd/include')
0 files changed, 0 insertions, 0 deletions
