EAP-FAST server: Fix potential read-after-buffer (by one byte)
authorJouni Malinen <j@w1.fi>
Sat, 26 Jul 2014 18:12:49 +0000 (21:12 +0300)
committerJouni Malinen <j@w1.fi>
Sat, 26 Jul 2014 18:14:05 +0000 (21:14 +0300)
commite8c08c9a363340c45baf8e13c758c99078bc0d8b
tree6606fc73e173965cf43574f9e31b6b5e5a187c5f
parent8b65fefeedd8a448d20e7951f98e9dfa9c8ec8c1
EAP-FAST server: Fix potential read-after-buffer (by one byte)

The special PAC_OPAQUE_TYPE_PAD case did not skip incrementing of the
pos pointer and could result in one octet read-after-buffer when parsing
the PAC-Opaque data.

Signed-off-by: Jouni Malinen <j@w1.fi>
src/eap_server/eap_server_fast.c