Commit a969ca5c authored by Dr. Stephen Henson's avatar Dr. Stephen Henson
Browse files

Sanity check record length before skipping explicit IV in DTLS

to fix DoS attack.

Thanks to Codenomicon for discovering this issue using Fuzz-o-Matic
fuzzing as a service testing platform.
(CVE-2012-2333)
parent 1e4406a8
Supports Markdown
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment