Project

General

Profile

Actions

Bug #7546

open

dcerpc: parser does not take fraglen into account

Added by Philippe Antoine 5 months ago. Updated 16 days ago.

Status:
New
Priority:
Normal
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

like &cur_i[parsed as usize..] should be &cur_i[parsed as usize..fraglen]


Related issues 1 (1 open0 closed)

Copied from Suricata - Bug #7254: dcerpc: parser does not support multiple PDUsAssignedShivani BhardwajActions
Actions #1

Updated by Philippe Antoine 5 months ago

  • Copied from Bug #7254: dcerpc: parser does not support multiple PDUs added
Actions #2

Updated by Victor Julien 4 months ago

What this the impact of this?

Actions #3

Updated by Philippe Antoine 4 months ago

What this the impact of this?

I think it is that we accept some invalid input.

We also have #7254 which is a closely related, so not sure in the impact with or without #7254 fixed

Actions #4

Updated by Victor Julien 3 months ago

  • Target version changed from 8.0.0-beta1 to 8.0.0-rc1
Actions #5

Updated by Shivani Bhardwaj 26 days ago

  • Assignee changed from Shivani Bhardwaj to Philippe Antoine

as Philippe has already worked on this that I'll be using.

Actions #6

Updated by Philippe Antoine 25 days ago

@Shivani Bhardwaj do you want me to take on this and do a PR ? (same for #7547 )

Actions #7

Updated by Shivani Bhardwaj 25 days ago

@Philippe Antoine sure! I was anyway going to cherry-pick your work but a latest version would indeed be nice. Thanks a lot! :)

Actions #8

Updated by Philippe Antoine 18 days ago

  • Assignee changed from Philippe Antoine to Shivani Bhardwaj

Reassigning back to you as discussed, right Shivani ?

Actions #9

Updated by Victor Julien 16 days ago

  • Target version changed from 8.0.0-rc1 to 9.0.0-beta1
Actions

Also available in: Atom PDF