+12
−0
Loading
CVE-2013-4539 s->precision, nextprecision, function and nextfunction come from wire and are used as idx into resolution[] in TSC_CUT_RESOLUTION. Validate after load to avoid buffer overrun. Cc: Andreas Färber <afaerber@suse.de> Signed-off-by:Michael S. Tsirkin <mst@redhat.com> Signed-off-by:
Juan Quintela <quintela@redhat.com>