mirror of
https://gitlab.com/buildroot.org/buildroot.git
synced 2026-09-29 21:41:43 -09:00
Backport the fix for CVE-2026-66033. The OpenSSL AES-GCM cipher path lacks runtime bounds checks around the input block size. A malformed packet can therefore lead to an out-of-bounds read or write. Use Debian's libssh2 1.11.1 backport of the upstream fix. Signed-off-by: Stefan Müller <stefan.mueller@rey-technology.com> [Julien: add links to Debian patches] Signed-off-by: Julien Olivain <ju.o@free.fr>
46 lines
1.5 KiB
Diff
46 lines
1.5 KiB
Diff
From a2ed82d40964bbc0d64cd717aa0a5a892117d2e6 Mon Sep 17 00:00:00 2001
|
|
From: Viktor Szakats <commit@vsz.me>
|
|
Date: Thu, 23 Jul 2026 10:32:04 +0200
|
|
Subject: [PATCH] openssl: fix potential OOB read/write with AES-GCM in
|
|
`ssh2_cipher_crypt()`
|
|
|
|
By applying two bounds checks to non-debug builds.
|
|
|
|
Reported-by: Vladimir Eli Tokarev
|
|
Fixes GHSA-c4f7-cvfc-33j7
|
|
Follow-up to 3c953c05d67eb1ebcfd3316f279f12c4b1d600b4 #797
|
|
|
|
Closes #2401
|
|
Forwarded: not-needed
|
|
|
|
CVE: CVE-2026-66033
|
|
Upstream: https://sources.debian.org/patches/libssh2/1.11.1-6/CVE-2026-66033.patch/
|
|
Upstream: https://github.com/libssh2/libssh2/commit/a2ed82d40964bbc0d64cd717aa0a5a892117d2e6
|
|
Signed-off-by: Stefan Müller <stefan.mueller@rey-technology.com>
|
|
---
|
|
src/openssl.c | 10 ++++++----
|
|
1 file changed, 6 insertions(+), 4 deletions(-)
|
|
|
|
--- a/src/openssl.c
|
|
+++ b/src/openssl.c
|
|
@@ -1042,13 +1042,15 @@
|
|
const int aadlen = (is_aesgcm && IS_FIRST(firstlast)) ? 4 : 0;
|
|
/* size of AT, if present */
|
|
const int authenticationtag = IS_LAST(firstlast) ? authlen : 0;
|
|
- /* length to encrypt */
|
|
- const int cryptlen = (unsigned int)blocksize - aadlen - authenticationtag;
|
|
+ unsigned int cryptlen; /* length to encrypt */
|
|
|
|
(void)algo;
|
|
|
|
- assert(blocksize <= sizeof(buf));
|
|
- assert(cryptlen >= 0);
|
|
+ if(blocksize > sizeof(buf) ||
|
|
+ blocksize < (size_t)(aadlen + authenticationtag))
|
|
+ return 1;
|
|
+
|
|
+ cryptlen = (unsigned int)blocksize - aadlen - authenticationtag;
|
|
|
|
#if LIBSSH2_AES_GCM
|
|
/* First block */
|