Thread (10 messages) 10 messages, 4 authors, 2020-07-23

Re: [PATCH net] AX.25: Prevent integer overflows in connect and sendmsg

From: David Miller <davem@davemloft.net>
Date: 2020-07-23 19:10:40
Also in: linux-hams, linux-kernel-mentees

From: Dan Carpenter <redacted>
Date: Thu, 23 Jul 2020 17:49:57 +0300
We recently added some bounds checking in ax25_connect() and
ax25_sendmsg() and we so we removed the AX25_MAX_DIGIS checks because
they were no longer required.

Unfortunately, I believe they are required to prevent integer overflows
so I have added them back.

Fixes: 8885bb0621f0 ("AX.25: Prevent out-of-bounds read in ax25_sendmsg()")
Fixes: 2f2a7ffad5c6 ("AX.25: Fix out-of-bounds read in ax25_connect()")
Signed-off-by: Dan Carpenter <redacted>
Applied, thanks Dan.
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help