summaryrefslogtreecommitdiffstats
path: root/lib/libcrypto/arc4random/getentropy_solaris.c
diff options
context:
space:
mode:
authorschwarze <schwarze@openbsd.org>2014-07-19 13:15:07 +0000
committerschwarze <schwarze@openbsd.org>2014-07-19 13:15:07 +0000
commit631ce2c6d6043f2c2f0c8a27faa369ce71f89756 (patch)
treee693f9aed27e16e497061b91180ee68b75bd3478 /lib/libcrypto/arc4random/getentropy_solaris.c
parentfixup typos (diff)
downloadwireguard-openbsd-631ce2c6d6043f2c2f0c8a27faa369ce71f89756.tar.xz
wireguard-openbsd-631ce2c6d6043f2c2f0c8a27faa369ce71f89756.zip
Security fix:
Validate the manpath up front and report a Bad Request if it is not listed in manpath.conf, such that clients can't probe which directories exist on the server. In case of configuration errors, consistently report Internal Server Error without disclosing any further information. Partially based on a patch from Sebastien Marie <semarie-openbsd at latrappe dot fr>, but avoiding a couple of issues with that patch and approaching the issue in a somewhat more rigorous way.
Diffstat (limited to 'lib/libcrypto/arc4random/getentropy_solaris.c')
0 files changed, 0 insertions, 0 deletions