Chrostoper Ertl d45572d71e
lanp: Fix buffer overflows in get_lan_param_select
Partial fix for CVE-2020-5208, see
https://github.com/ipmitool/ipmitool/security/advisories/GHSA-g659-9qxw-p7cp

The `get_lan_param_select` function is missing a validation check on the
response’s `data_len`, which it then returns to caller functions, where
stack buffer overflow can occur.
2020-02-04 14:59:55 +03:00
..
2020-02-04 14:59:52 +03:00
2019-06-18 16:43:41 +03:00
2019-03-04 12:22:23 +03:00
2018-08-21 17:30:25 +03:00
2019-06-18 16:43:41 +03:00