diff options
Diffstat (limited to 'results/scraper/launchpad-without-comments/786211')
| -rw-r--r-- | results/scraper/launchpad-without-comments/786211 | 3 |
1 files changed, 3 insertions, 0 deletions
diff --git a/results/scraper/launchpad-without-comments/786211 b/results/scraper/launchpad-without-comments/786211 new file mode 100644 index 000000000..0fd6aa282 --- /dev/null +++ b/results/scraper/launchpad-without-comments/786211 @@ -0,0 +1,3 @@ +Missing checks for valid, writable, firmware in fw_cfg_write + +The `fw_cfg_write` function in the firmware emulation is missing checks to ensure that the firmware being written is (a) a valid index, and (b) writable. This can lead to a segmentation fault and potentially (in the case of writing to FW_CFG_INVALID), memory corruption, although the attacker has fairly limited control over whether and what corruption is possible. \ No newline at end of file |