summary refs log tree commit diff stats
path: root/results/classifier/accel-gemma3:12b/tcg/786211
blob: d078b9ad9241f8bf94adbe85163fdc84de5aa609 (plain) (blame)
1
2
3
4
Missing checks for valid, writable, firmware in fw_cfg_write

The `fw_cfg_write` function in the firmware emulation is missing checks to ensure that the firmware being written is (a) a valid index, and (b) writable. This can lead to a segmentation fault and potentially (in the case of writing to FW_CFG_INVALID), memory corruption, although the attacker has fairly limited control over whether and what corruption is possible.