Merge rev 1.96 of NetBSD's net/if_spppsubr.c:
commit48df58955bdfbaec3014b1609774189291b0ce06
authorJoerg Sonnenberger <joerg@dragonflybsd.org>
Wed, 23 Aug 2006 20:43:17 +0000 (23 20:43 +0000)
committerJoerg Sonnenberger <joerg@dragonflybsd.org>
Wed, 23 Aug 2006 20:43:17 +0000 (23 20:43 +0000)
treea9d473017c35c42c8f11faf5a0b1365b7bc099d9
parentc1ec9ff89ebefb68db7a12802fa23f3e75e03c62
Merge rev 1.96 of NetBSD's net/if_spppsubr.c:
  A problem has been identified in the in-kernel PPP code shared by ISDN PPP
  interfaces ippp(4) and pppoe(4). Insufficient checking of options presented
  by the peer may cause writing of copies of the malicious input beyond the
  end of a buffer allocated for that purpose.

  Issue found by pavel@
  Fix from martin@

  This is SA2006-019 (CVE-2006-4304)
sys/net/sppp/if_spppsubr.c