CVE-2024-1305: Windows TAP driver: Fix potential integer overflow in TapSharedSendPacket
This could lead to an integer overflow, resulting in the allocation of a smaller memory size, which may then cause a buffer overflow and a bug check.
The fix involves checking for overflow conditions and failing the IRP if an overflow occurs.
References
- Release notes: https://www.mail-archive.com/openvpn-users@lists.sourceforge.net/msg07534.html
- CVE record: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-1305
- Reported by: Vladimir Tokarev vtokarev@microsoft.com
