Blame SOURCES/freeradius-FR-GV-206-decode-option-60-string-not-63-octets-and-.patch

16502d
From 46aa2d51f137ca34842dd744d17321ed7c11b386 Mon Sep 17 00:00:00 2001
16502d
From: "Alan T. DeKok" <aland@freeradius.org>
16502d
Date: Mon, 3 Jul 2017 11:36:13 -0400
16502d
Subject: [PATCH] FR-GV-206 - decode option 60 (string) not 63 (octets), and
16502d
 check length
16502d
16502d
---
16502d
 src/modules/proto_dhcp/dhcp.c | 4 ++--
16502d
 1 file changed, 2 insertions(+), 2 deletions(-)
16502d
16502d
diff --git a/src/modules/proto_dhcp/dhcp.c b/src/modules/proto_dhcp/dhcp.c
16502d
index 98d87509d..a66a931cb 100644
16502d
--- a/src/modules/proto_dhcp/dhcp.c
16502d
+++ b/src/modules/proto_dhcp/dhcp.c
16502d
@@ -1097,8 +1097,8 @@ int fr_dhcp_decode(RADIUS_PACKET *packet)
16502d
 			/*
16502d
 			 *	Vendor is "MSFT 98"
16502d
 			 */
16502d
-			vp = fr_pair_find_by_num(head, 63, DHCP_MAGIC_VENDOR, TAG_ANY);
16502d
-			if (vp && (strcmp(vp->vp_strvalue, "MSFT 98") == 0)) {
16502d
+			vp = fr_pair_find_by_num(head, 60, DHCP_MAGIC_VENDOR, TAG_ANY);
16502d
+			if (vp && (vp->vp_length >= 7) && (memcmp(vp->vp_octets, "MSFT 98", 7) == 0)) {
16502d
 				vp = fr_pair_find_by_num(head, 262, DHCP_MAGIC_VENDOR, TAG_ANY);
16502d
 
16502d
 				/*
16502d
-- 
16502d
2.13.2
16502d