}
int retval = SSLv3ParseHandshakeType(ssl_state, input, input_len, direction);
- if (retval < 0 || (uint32_t)retval > input_len) {
+ if (retval < 0 || retval > (int)input_len) {
+ DEBUG_VALIDATE_BUG_ON(retval > (int)input_len);
return retval;
}
input += retval;
if (ssl_state->curr_connp->bytes_processed <
(ssl_state->curr_connp->record_lengths_length + 1)) {
retval = SSLv2ParseRecord(direction, ssl_state, input, input_len);
- if (retval < 0 || (uint32_t)retval > input_len) {
+ if (retval < 0 || retval > (int)input_len) {
+ DEBUG_VALIDATE_BUG_ON(retval > (int)input_len);
SSLSetEvent(ssl_state, TLS_DECODER_EVENT_INVALID_SSLV2_HEADER);
return -1;
}
if (ssl_state->curr_connp->bytes_processed < SSLV3_RECORD_HDR_LEN) {
int retval = SSLv3ParseRecord(direction, ssl_state, input, input_len);
- if (retval < 0 || (uint32_t)retval > input_len) {
+ if (retval < 0 || retval > (int)input_len) {
+ DEBUG_VALIDATE_BUG_ON(retval > (int)input_len);
SCLogDebug("SSLv3ParseRecord returned %d", retval);
SSLSetEvent(ssl_state, TLS_DECODER_EVENT_INVALID_TLS_HEADER);
return -1;
int retval = SSLv3ParseHandshakeProtocol(ssl_state, input + parsed,
input_len, direction);
- if (retval < 0 || (uint32_t)retval > input_len) {
+ if (retval < 0 || retval > (int)input_len) {
+ DEBUG_VALIDATE_BUG_ON(retval > (int)input_len);
SSLSetEvent(ssl_state,
TLS_DECODER_EVENT_INVALID_HANDSHAKE_MESSAGE);
SSLSetEvent(ssl_state,
int retval = SSLv2Decode(direction, ssl_state, pstate, input,
input_len);
if (retval < 0 || retval > input_len) {
+ DEBUG_VALIDATE_BUG_ON(retval > input_len);
SCLogDebug("Error parsing SSLv2. Reseting parser "
"state. Let's get outta here");
SSLParserReset(ssl_state);
int retval = SSLv3Decode(direction, ssl_state, pstate, input,
input_len);
if (retval < 0 || retval > input_len) {
+ DEBUG_VALIDATE_BUG_ON(retval > input_len);
SCLogDebug("Error parsing TLS. Reseting parser "
"state. Let's get outta here");
SSLParserReset(ssl_state);