sr9700: sanity check for packet length
mainline inclusion from mainline-v5.17-rc4 commit e9da0b56 category: bugfix bugzilla: 186472, https://gitee.com/src-openeuler/kernel/issues/I4ZQIZ CVE: CVE-2022-26966 -------------------------------- A malicious device can leak heap data to user space providing bogus frame lengths. Introduce a sanity check. Signed-off-by: NOliver Neukum <oneukum@suse.com> Reviewed-by: NGrant Grundler <grundler@chromium.org> Signed-off-by: NDavid S. Miller <davem@davemloft.net> Signed-off-by: NZheng Zengkai <zhengzengkai@huawei.com> Reviewed-by: NYue Haibing <yuehaibing@huawei.com> Reviewed-by: NWeilong Chen <chenweilong@huawei.com>
Showing
想要评论请 注册 或 登录