along with this program; if not, write to the Free Software
Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
- $Id: net_packet.c,v 1.1.2.40 2003/08/28 21:05:10 guus Exp $
+ $Id: net_packet.c,v 1.1.2.41 2003/09/23 20:59:01 guus Exp $
*/
#include "system.h"
cp();
+ /* Check packet length */
+
+ if(inpkt->len < sizeof(inpkt->seqno) + myself->maclength) {
+ ifdebug(TRAFFIC) logger(LOG_DEBUG, _("Got too short packet from %s (%s)"),
+ n->name, n->hostname);
+ return;
+ }
+
/* Check the message authentication code */
if(myself->digest && myself->maclength) {
inpkt = outpkt;
}
+ if(n->connection)
+ n->connection->last_ping_time = now;
+
receive_packet(n, inpkt);
}
pkt.len = recvfrom(sock, (char *) &pkt.seqno, MAXSIZE, 0, &from.sa, &fromlen);
- if(pkt.len <= 0) {
+ if(pkt.len < 0) {
logger(LOG_ERR, _("Receiving packet failed: %s"), strerror(errno));
return;
}
return;
}
- if(n->connection)
- n->connection->last_ping_time = now;
-
receive_udppacket(n, &pkt);
}
along with this program; if not, write to the Free Software
Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
- $Id: route.c,v 1.1.2.64 2003/08/28 21:05:11 guus Exp $
+ $Id: route.c,v 1.1.2.65 2003/09/23 20:59:01 guus Exp $
*/
#include "system.h"
cp();
+ if(packet->len < 64) {
+ ifdebug(TRAFFIC) logger(LOG_WARNING, _("Read too short packet"));
+ return;
+ }
+
/* FIXME: multicast? */
switch (routing_mode) {
void route_incoming(node_t *source, vpn_packet_t *packet)
{
+ if(packet->len < 64) {
+ ifdebug(TRAFFIC) logger(LOG_WARNING, _("Got too short packet from %s (%s)"),
+ source->name, source->hostname);
+ return;
+ }
+
switch (routing_mode) {
case RMODE_ROUTER:
{