|
From: | Max Reitz |
Subject: | Re: [Qemu-devel] [PATCH 1/4] block: Make qiov match the request size until EOF |
Date: | Sat, 05 Jul 2014 21:19:25 +0200 |
User-agent: | Mozilla/5.0 (X11; Linux x86_64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 |
On 04.07.2014 17:55, Kevin Wolf wrote:
If a read request goes across EOF, the block driver sees a shortened request that stops at EOF (the rest is memsetted in block.c), however the original qiov was used for this request. This patch makes the qiov size match the request size, avoiding a potential buffer overflow in raw-posix. Signed-off-by: Kevin Wolf <address@hidden> --- block.c | 11 ++++++++++- 1 file changed, 10 insertions(+), 1 deletion(-)
Reviewed-by: Max Reitz <address@hidden>
[Prev in Thread] | Current Thread | [Next in Thread] |