Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.kernel > #1649053 > unrolled thread

Re: [PATCH] csiostor: Avoid content leaks and casts

Started by"Martin K. Petersen" <martin.petersen@oracle.com>
First post2017-05-24 03:50 +0200
Last post2017-05-24 03:50 +0200
Articles 1 — 1 participant

Back to article view | Back to linux.kernel

This discussion starts older than the indexed window; earlier articles aren't shown. The article labeled Started by below is the oldest one visible, not the original post.


Contents

  Re: [PATCH] csiostor: Avoid content leaks and casts "Martin K. Petersen" <martin.petersen@oracle.com> - 2017-05-24 03:50 +0200

#1649053 — Re: [PATCH] csiostor: Avoid content leaks and casts

From"Martin K. Petersen" <martin.petersen@oracle.com>
Date2017-05-24 03:50 +0200
SubjectRe: [PATCH] csiostor: Avoid content leaks and casts
Message-ID<tKtAZ-3u6-5@gated-at.bofh.it>
Kees,

> When copying attributes, the len argument was padded out and the
> resulting memcpy() would copy beyond the end of the source buffer.
> Avoid this, and use size_t for val_len to avoid all the
> casts. Similarly, avoid source buffer casts and use void *.
>
> Additionally enforces val_len can be represented by u16 and that the
> DMA buffer was not overflowed. Fixes the size of mfa, which is not
> FC_FDMI_PORT_ATTR_MAXFRAMESIZE_LEN (but it will be padded up to
> 4). This was noticed by the future CONFIG_FORTIFY_SOURCE checks.

Applied to 4.13/scsi-queue, thanks!

-- 
Martin K. Petersen	Oracle Linux Engineering

[toc] | [standalone]


Back to top | Article view | linux.kernel


csiph-web