summaryrefslogtreecommitdiff
path: root/tools/perf/scripts/python
diff options
context:
space:
mode:
authorSourav Mohapatra <mohapatr@codeaurora.org>2019-09-05 14:34:19 +0530
committernshrivas <nshrivas@codeaurora.org>2019-10-15 22:52:34 -0700
commitfc1186cfcb3647633bb76afa9b7fd6ef7b317c2c (patch)
tree9fe6bfc0025a45afe69629dca855e8cc291ebe9f /tools/perf/scripts/python
parentd5c2ff6edbe9ebc7e4d3f486a9a30dd865ba65c1 (diff)
qcacld-3.0: Prevent possible OOB access in hdd_sendactionframe
In the function hdd_sendactionframe, the parameters passed include the payload and the corresponding payload length; payload being generic pointer. The payload is then typecasted into the destination structure of type tpSirMacVendorSpecificFrameHdr. If the size of the payload specified in payload_len is less than the size of the destination structure, there is possiblility of OOB read while accessing the same. To prevent this security vulnerability, add a sanity check for the payload_len against the size of the destination structure. Change-Id: Ib0e7b7bfcf78412d81f18cf887e5296d80272598 CRs-Fixed: 2517858
Diffstat (limited to 'tools/perf/scripts/python')
0 files changed, 0 insertions, 0 deletions