# CVE-2024-1305: Windows TAP driver: Fix potential integer overflow in TapSharedSendPacket

Could cause integer overflow, which will result in allocation of smaller size of memory, which later causes buffer overflow and a bug check.

Fix by checking overflow condition and fail the IRP in case of overflow.

### References
* Release notes: https://www.mail-archive.com/openvpn-users@lists.sourceforge.net/msg07534.html
* CVE record: https://www.cve.org/CVERecord?id=CVE-2024-1305
* Reported by: Vladimir Tokarev <​vtokarev@microsoft.com>
0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9