Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

libhomekit.when function tlv_parse parse tlv in http body,an infinite loop occurs. #70

Open
haoshanxu opened this issue Apr 21, 2022 · 0 comments

Comments

@haoshanxu
Copy link

haoshanxu commented Apr 21, 2022

截屏2022-04-21 下午1 00 14

If buffer[1] or the “L”of tlv is 0,the while loop will not end.An attacker can construct a malicious packet,which will casue the device to crash.
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant