rad_recv: verify length field in received auth_hdr_t before using it.
authormillert <millert@openbsd.org>
Thu, 2 Mar 2023 16:13:57 +0000 (16:13 +0000)
committermillert <millert@openbsd.org>
Thu, 2 Mar 2023 16:13:57 +0000 (16:13 +0000)
commitd103d2f2f37e2efa614b31052a9d4e51900a82bd
treeebbc9ca4906cbeac53ed6914009e7b208188e10d
parent9eb800025fd282d4de031f639293e70d528e0d9b
rad_recv: verify length field in received auth_hdr_t before using it.
Reported by Peter J. Philipp.  OK deraadt@
libexec/login_radius/raddauth.c