[PATCH 2/2] i2c: fix stack buffer overflow vulnerability in i2c md command

Tom Rini trini at konsulko.com
Thu Sep 1 01:34:24 CEST 2022


On Fri, Aug 26, 2022 at 11:15:56PM +0200, Marek Vasut wrote:

> This reinstates fix from commit 8f8c04bf1ebbd2f72f1643e7ad9617dafa6e5409
> without the changes unrelated to the actual fix. Avoid the underflow by
> setting only nbytes and linebytes as unsigned integers.
> 
> Signed-off-by: Marek Vasut <marex at denx.de>
> Cc: Heiko Schocher <hs at denx.de>
> Cc: Nicolas Iooss <nicolas.iooss+uboot at ledger.fr>
> Cc: Simon Glass <sjg at chromium.org>
> Cc: Tim Harvey <tharvey at gateworks.com>
> Acked-by: Tim Harvey <tharvey at gateworks.com>

Applied to u-boot/master, thanks!

-- 
Tom
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 659 bytes
Desc: not available
URL: <https://lists.denx.de/pipermail/u-boot/attachments/20220831/76d1ac3d/attachment.sig>


More information about the U-Boot mailing list