+16
−7
+26
−22
Loading
mainline inclusion from mainline-v6.9-rc1 commit c6cd2e8d2d9aa7ee35b1fa6a668e32a22a9753da category: bugfix bugzilla: https://gitee.com/src-openeuler/kernel/issues/I9L5L1 CVE: CVE-2024-26952 Reference: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=c6cd2e8d2d9aa7ee35b1fa6a668e32a22a9753da -------------------------------- I found potencial out-of-bounds when buffer offset fields of a few requests is invalid. This patch set the minimum value of buffer offset field to ->Buffer offset to validate buffer length. Cc: stable@vger.kernel.org Signed-off-by:Namjae Jeon <linkinjeon@kernel.org> Signed-off-by:
Steve French <stfrench@microsoft.com> Signed-off-by:
Wang Zhaolong <wangzhaolong1@huawei.com>