[PATCH] NETFILTER: Fix small information leak in SO_ORIGINAL_DST (CVE-2006-1343)
commit11091f6a4a11feb5794aef9307c428838129ea02
authorMarcel Holtmann <marcel@holtmann.org>
Fri, 26 May 2006 11:50:46 +0000 (26 13:50 +0200)
committerChris Wright <chrisw@sous-sol.org>
Wed, 31 May 2006 00:31:35 +0000 (30 17:31 -0700)
tree24fe6ac74a39eeafc6d9c5ec772698a21b468bff
parentb7d061792b4c09fe7c290ddccae3f998d5b513c0
[PATCH] NETFILTER: Fix small information leak in SO_ORIGINAL_DST (CVE-2006-1343)

It appears that sockaddr_in.sin_zero is not zeroed during
getsockopt(...SO_ORIGINAL_DST...) operation. This can lead
to an information leak (CVE-2006-1343).

Signed-off-by: Marcel Holtmann <marcel@holtmann.org>
Signed-off-by: Chris Wright <chrisw@sous-sol.org>
net/ipv4/netfilter/ip_conntrack_core.c
net/ipv4/netfilter/nf_conntrack_l3proto_ipv4.c