summary refs log tree commit diff stats
path: root/python/qemu
diff options
context:
space:
mode:
authorPaolo Bonzini <pbonzini@redhat.com>2023-05-10 18:15:25 +0200
committerPaolo Bonzini <pbonzini@redhat.com>2023-05-18 08:53:51 +0200
commit9bd634b2f5e2f10fe35d7609eb83f30583f2e15a (patch)
tree658e4afb04d3e529da16f8ba56160bf0b5709d3c /python/qemu
parentc9214c935564775483ee4865857dbef1bd4a7ad9 (diff)
downloadfocaccia-qemu-9bd634b2f5e2f10fe35d7609eb83f30583f2e15a.tar.gz
focaccia-qemu-9bd634b2f5e2f10fe35d7609eb83f30583f2e15a.zip
scsi-generic: fix buffer overflow on block limits inquiry
Using linux 6.x guest, at boot time, an inquiry on a scsi-generic
device makes qemu crash.  This is caused by a buffer overflow when
scsi-generic patches the block limits VPD page.

Do the operations on a temporary on-stack buffer that is guaranteed
to be large enough.

Reported-by: Théo Maillart <tmaillart@freebox.fr>
Analyzed-by: Théo Maillart <tmaillart@freebox.fr>
Cc: qemu-stable@nongnu.org
Signed-off-by: Paolo Bonzini <pbonzini@redhat.com>
Diffstat (limited to 'python/qemu')
0 files changed, 0 insertions, 0 deletions