From owner-doc-jp@jp.freebsd.org  Fri Nov  6 11:56:37 1998
Received: (from daemon@localhost)
	by jaz.jp.freebsd.org (8.9.1+3.1W/8.7.3) id LAA11006;
	Fri, 6 Nov 1998 11:56:37 +0900 (JST)
	(envelope-from owner-doc-jp@jp.FreeBSD.org)
Received: from dell01.osb.pb.nttdata.co.jp ([202.158.1.126])
	by jaz.jp.freebsd.org (8.9.1+3.1W/8.7.3) with ESMTP id LAA10934
	for <doc-jp@jp.freebsd.org>; Fri, 6 Nov 1998 11:55:49 +0900 (JST)
	(envelope-from njt@nn.iij4u.or.jp)
Received: from localhost (njt@salix.njt.nn.iij4u.or.jp [172.16.10.3])
	by dell01.osb.pb.nttdata.co.jp (8.8.8/8.8.8) with ESMTP id JAA14208;
	Fri, 6 Nov 1998 09:52:58 +0700 (JAVT)
	(envelope-from njt@nn.iij4u.or.jp)
To: doc-jp@jp.freebsd.org
In-Reply-To: Your message of "Wed, 4 Nov 1998 20:37:28 +0100 (MET)"
	<199811041937.UAA12845@gvr.gvr.org>
References: <199811041937.UAA12845@gvr.gvr.org>
Mime-Version: 1.0
From: "Nakazato J. Takeshi" <njt@nn.iij4u.or.jp>
X-Mailer: Mew version 1.93 on Emacs 19.28 / Mule 2.3 (SUETSUMUHANA)
X-PGP-Sig: 2.6.3ia Subject,From,X-Mailer
	iQCVAwUBNkHVtsVateD//ziZAQGUtwP/Ydyc4VyCR72XOGywZEbUXHKonTNd3zTZ
	bxoxr+VO0QWVp4riJcLE7YBuNhw2OFi/vIDEGGj/iiIthVmf42RAF/phVXmEMSny
	qyo4z8bjjrFgxxpiI3tT5vHPo7UYuhZDSstw3qIc5W2OKC3XFwpvq4YUab6X2NQk
	DRY6lSbCD08=
	=/xsK
Content-Type: Text/Plain; charset=iso-2022-jp
Content-Transfer-Encoding: 7bit
Message-Id: <19981105234339Y.njt@nn.iij4u.or.jp>
Date: Thu, 05 Nov 1998 23:43:39 +0700
X-Dispatcher: imput version 980905(IM100)
Lines: 147
Reply-To: doc-jp@jp.freebsd.org
Precedence: list
X-Distribute: distribute version 2.1 (Alpha) patchlevel 24e+980914
X-Sequence: doc-jp 5468
Subject: [doc-jp 5468] Translation of "ANNOUNCE: FreeBSD Security Advisory: FreeBSD-SA-98:08.fragment"
Errors-To: owner-doc-jp@jp.freebsd.org
Sender: owner-doc-jp@jp.freebsd.org
X-Originator: njt@nn.iij4u.or.jp

$BCfN$$H?=$7$^$9!#(B

Security Advisory $B$NK]Lu$KF|Ln$5$s$H$K$7$+$5$s$N0U8+$rH?1G$7$^$7$?!#(B
$B$R$-$D$E$-::FI4j$$$^$9!#(B

$B$I$N$0$i$$$N>uBV$K$J$C$?$i(B Announce-jp $B$KEj$2$^$7$g$&!)(B handbook $B$J$I(B
$B$O(B committer $B$NJ}$,(B commit $B$NH=CG$r$7$F$/$@$5$k$N$G$9$,!"(BAnnounce $B$N%a!<(B
$B%k$OC/$G$b=P$;$k$N$G(B.... Announce-jp $B$O(B moderated $B$J$N$GLdBj$,$"$l$P;_(B
$B$a$F$b$i$($k$h$&$J5$$b$7$^$9$,!"(BSPAM$B$J$I$G$J$$8B$j!"$=$&$=$&FbMF$^$G%A%'%C(B
$B%/$7$F$$$i$l$J$$!"$H$$$&$3$H$b9M$($i$l$^$9$N$G!"(Bdoc-jp $B$H$7$F$N;X?K$r(B
$B$I$J$?$+<($7$F$$$?$@$1$k$H9,$$$G$9!#$"$k$$$OEj$2$F$$$?$@$1$k$H$$$&$N$G(B
$B$b$&$l$7$$$+$H!#(B
# $B$A$g$C$HL5@UG$$]$/$F$9$_$^$;$s!#(B

$B$d$O$j(B Workaround $B$O!V0l;~E*$J2sHr:v!W$J$$$7!V0l;~E*$J2sHrJ}K!!W$G$7$g(B
$B$&$+!#$=$&$9$k$H(B Solution $B$O!V2r7hK!!W$G$O$J$/$F!V:,K\E*$J2r7hK!!W$H$7(B
$B$?J}$,BP>H$,$O$C$-$j$7$^$9$M!#0ULu$C$]$$$G$9$,!#(B

$BKvHx$N$3$l"-$C$FLu$7$?$[$&$,$$$$$G$9$+$M$'(B

Web Site:                       http://www.freebsd.org/
Confidential contacts:          security-officer@freebsd.org
Security notifications:         security-notifications@freebsd.org
Security public discussion:     freebsd-security@freebsd.org
PGP Key:                ftp://ftp.freebsd.org/pub/FreeBSD/CERT/public_key.asc

$BLu$9$H$9$l$P$3$s$J46$8$G$7$g$&$+!#(B

www$B%5%$%H(B:                      http://www.freebsd.org/
$BHs8x3+$NO"Mm@h(B:                 security-officer@freebsd.org
$B%;%-%e%j%F%#>e$NJs9p(B:           security-notifications@freebsd.org
$B%;%-%e%j%F%#$K4X$9$k8x3+$N5DO@(B: freebsd-security@freebsd.org
PGP$B80(B:                  ftp://ftp.freebsd.org/pub/FreeBSD/CERT/public_key.asc

# confidential contact $B$N(B confidential $B$,Lu$7$K$/$$$G$9!#5!L)>pJs$NO"(B
# $BMm@h!)(B
# notification $B$OJs9p@h$G$J$/$F$*CN$i$;$,N.$l$k$N$+$J!)(B

$B$^$?!"%Q%C%A$b(BPGP$B=pL>$5$l$?86J8$+$i;H$C$F$b$i$&$h$&$K!"LuJ8$+$i$O:o$k(B
$B$H$$$&$3$H$b9M$($i$l$^$9$,!"$=$3$^$G$9$kI,MW$O$J$$$+$H!#(B

---- $B$3$3$+$i(B ----

  $B$3$N%a!<%k$O(B announce-jp $B$KN.$l$?(B

From: FreeBSD Security Officer <security-officer@FreeBSD.ORG> 
Date: Wed, 4 Nov 1998 20:37:28 +0100 (MET)
Message-ID: <199811041937.UAA12845@gvr.gvr.org>
X-Sequence: announce-jp 185
Subject: "ANNOUNCE: FreeBSD Security Advisory: FreeBSD-SA-98:08.fragment"

$B$rF|K\8lLu$7$?$b$N$G$9!#(B

$B86J8$O(BPGP$B=pL>$5$l$F$$$^$9$,!"$3$NF|K\8lLu$O(BPGP$B=pL>$5$l$F$$$^$;$s!#%Q%C(B
$B%AEy$NFbMF$,2~cb$5$l$F$$$J$$$3$H$r3NG'$9$k$?$a$K(BPGP$B$N%A%'%C%/$r9T$J$&(B
$B$K$O86J8$r;2>H$7$F2<$5$$!#(B

  $BF|K\8lLu$K$D$$$F$N$*Ld$$9g$o$;$O(B doc-jp@jp.freebsd.org $B$^$G(B
$B$*4j$$$7$^$9!#(B
                                $BK]Lu(B : $BCfN$Ip;V(B <njt@nn.iij4u.or.jp>
------------------------------------------------------------------------

Subject: "$B$*CN$i$;(B: FreeBSD$B%;%-%e%j%F%#4+9p(B: FreeBSD-SA-98:08.fragment"


=============================================================================
FreeBSD-SA-98:08                                            Security Advisory
                                                                FreeBSD, Inc.

$BFbMF(B:           IP $B%U%i%0%a%s%F!<%7%g%s$K$h$k(B denial of service ($B%5!<(B
                $B%S%9K832(B) $B967b(B

$BJ,N`(B:           $B%+!<%M%kFbIt(B
$B%b%8%e!<%k(B:     $B%+!<%M%k(B
$B8xI=F|(B:         1998-11-04
$B1F6AHO0O(B:       FreeBSD 3.0 $B$*$h$S(B
		$B=$@5F|0JA0$N(B FreeBSD-current.
$B=$@5F|(B:         1998/10/27 $B$N(B FreeBSD-3.0 $B$*$h$S(B FreeBSD-current
FreeBSD$B$N$_$+(B:  $B$O$$(B

$B%Q%C%A$N=j:_(B:   ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-98:08/

I.   $BGX7J(B

IP $B%3%M%/%7%g%s$O(B 2 $BBf$N7W;;5!4V$G<u?.$5$l$k0lO"$N%Q%1%C%H$K$h$j@)8f$5(B
$B$l$^$9!#$"$k%Q%1%C%H$,!"C10l$N(B IP $B%Q%1%C%H$H$7$FAw?.$9$k$K$O(B ($BNc$($P%M%C(B 
$B%H%o!<%/%$%s%?!<%U%'!<%9$N%O!<%I%&%'%"E*@)8BCM$K$h$j(B) $BBg$-$9$.$k>l9g$K(B
$B$O!"(B($B%U%i%0%a%s%H6X;_%U%i%0$K$h$C$F6X;_$5$l$F$$$J$$8B$j(B) $B%U%i%0%a%s%H(B
$B$H$7$FJ,3d$5$l$k$3$H$,$"$j$^$9!#:G=*E*$JAw?.@h$,!"$"$k(B IP $B%Q%1%C%H$NA4(B
$B$F$N%U%i%0%a%s%H$r:F$S$R$H$D$KAH$_N)$F$7$F(B (TCP $B$d(B UDP $B$N$h$&$J(B) $B>e0L(B
$BAX$KEO$7$^$9!#(B

II.  $BLdBj$N>\:Y(B

IP $B%U%i%0%a%s%H$N:FAH$_N)$F%3!<%I$K!"%+!<%M%k%Q%K%C%/$r$R$-$*$3$92DG=(B
$B@-$N$"$k%P%0$,$"$j$^$9!#:FAH$_N)$F$9$k$HIT@5$J(B UDP $B%G!<%?%0%i%`$K$J$k(B
$B$h$&$JIT@5$J7A<0$N(B IP $B%Q%1%C%H$N%Z%"$r@8@.$7!"$=$l$rAw?.$9$k$3$H$G967b(B
$B$9$k$3$H$,2DG=$G$9!#$=$N$h$&$J(B UDP $B%G!<%?%0%i%`$O%5!<%P$r%Q%K%C%/$5$;!"(B
$B%/%i%C%7%e$5$;$^$9!#(B

III. $B1F6A(B

$B$3$N%P%0$rFM$+$l$k$H#O#S$O%7%9%F%`%Q%K%C%/$7!"%j%V!<%H$7$F$7$^$$$^$9!#(B
$B$3$N<eE@$O8x3+$N%;%-%e%j%F%#%U%)!<%i%`$G5DO@$5$l$^$7$?!#$3$N%P%0$rFM$$(B
$B$FMxMQ$7$h$&$H$9$k%W%m%0%i%`$,=P2s$C$F$$$^$9!#(B

IV.  $B0l;~E*$J2sHrJ}K!(B

$B$J$7(B

V.   $B2r7hK!(B

    Index: ip_input.c
    ===================================================================
    RCS file: /home/cvsup/freebsd/CVS/src/sys/netinet/ip_input.c,v
    retrieving revision 1.102
    retrieving revision 1.103
    diff -u -u -r1.102 -r1.103
    --- ip_input.c	1998/10/16 03:55:01	1.102
    +++ ip_input.c	1998/10/27 09:11:41	1.103
    @@ -750,7 +750,7 @@
     	 * if they are completely covered, dequeue them.
     	 */
     	for (; q != NULL && ip->ip_off + ip->ip_len > GETIP(q)->ip_off;
    -	     p = q, q = nq) {
    +	     q = nq) {
     		i = (ip->ip_off + ip->ip_len) -
     		    GETIP(q)->ip_off;
     		if (i < GETIP(q)->ip_len) {

=============================================================================
FreeBSD, Inc.

Web Site:                       http://www.freebsd.org/
Confidential contacts:          security-officer@freebsd.org
Security notifications:         security-notifications@freebsd.org
Security public discussion:     freebsd-security@freebsd.org
PGP Key:                ftp://ftp.freebsd.org/pub/FreeBSD/CERT/public_key.asc

$BCm0U(B: $BK\J8=qCf$K4^$^$l$k%Q%C%A$OEE;R=pL>$dEE;R%a!<%k%=%U%H%&%'%"$K$h$k(B
      $BJQ49$N$?$a!"$&$^$/Ev$F$i$l$J$$$3$H$,$"$j$^$9!#I,MW$G$"$l$P!"K\J8(B
      $B=q$N@hF,$N(BURL$B$K5s$2$i$l$F$$$k%*%j%8%J%k$N%Q%C%A$r;2>H$7$F2<$5$$!#(B
=============================================================================

---- $B$3$3$^$G(B ----

-- NJT
