Project

General

Profile

Actions

Bug #7887

open

detect/tls: zero characters in keywords such as alt name are mishandled

Added by Philippe Antoine 4 months ago. Updated 3 days ago.

Status:
In Review
Priority:
Normal
Target version:
Affected Versions:
Effort:
Difficulty:
medium
Label:

Description

See #7881 and SV test to come associated with it

Rust Cstring new fails and returns NULL ptr

solution would be to store the connp->cert0_sans_len length of each connp->cert0_sans


Subtasks 2 (0 open2 closed)

Bug #7996: tls: certificate SAN is freed in case of any errorClosedShivani BhardwajActions
Bug #8020: tls: certificate SAN is freed in case of any error (8.0.x backport)ClosedShivani BhardwajActions

Related issues 1 (0 open1 closed)

Copied from Suricata - Security #7881: detect/tls: keyword tls.subjectaltname leads to NULL Deref if tls.subjectaltname contains zeroClosedPhilippe AntoineActions
Actions

Also available in: Atom PDF