Menu

#20 SADB_EXPIRE IKE daemon segfault

open
nobody
None
5
2009-04-15
2009-04-15
No

When we receive SADB_EXPIRE from kernel IKE segfaults.

In state machine code when we parsing SADB_EXPIRE pfkey_msg msg from PF_KEYv2 module IKE uses wrong type of msg (msg->pfkey_msg.acquire.daddr).
It should be msg->pfkey_msg.expire.daddr

sm.c:7531
case SADB_EXPIRE:
session = sm_sessions_search_by_daddr(
msg->pfkey_msg.acquire.daddr);

Discussion


Log in to post a comment.

MongoDB Logo MongoDB