Prasad J Pandit
97f4ed3b71
sd: limit 'req.cmd' while using as an array index
...
While processing standard SD commands, the 'req.cmd' value could
lead to OOB read when used as an index into 'sd_cmd_type' or
'sd_cmd_class' arrays. Limit 'req.cmd' value to avoid such an
access.
Reported-by: Qinghao Tang <luodalongde@gmail.com>
Signed-off-by: Prasad J Pandit <pjp@fedoraproject.org>
Reviewed-by: Peter Maydell <peter.maydell@linaro.org>
Message-id: 1453315857-1352-1-git-send-email-ppandit@redhat.com
Signed-off-by: Peter Maydell <peter.maydell@linaro.org>
2016-02-11 11:17:32 +00:00
..
2016-02-06 20:39:07 +02:00
2016-02-08 17:29:56 +01:00
2016-01-29 15:07:23 +00:00
2016-02-08 17:22:00 +01:00
2016-02-03 11:28:58 -05:00
2016-02-08 11:25:31 +00:00
2016-01-29 15:07:25 +00:00
2016-02-06 20:44:08 +02:00
2016-02-08 17:29:57 +01:00
2016-01-29 15:07:25 +00:00
2016-01-29 15:07:24 +00:00
2016-02-06 20:39:07 +02:00
2016-02-03 11:28:58 -05:00
2016-01-29 15:07:25 +00:00
2016-01-29 15:07:25 +00:00
2016-02-08 17:29:56 +01:00
2016-02-08 17:29:56 +01:00
2016-02-06 20:39:07 +02:00
2016-02-08 17:29:56 +01:00
2016-01-29 15:07:25 +00:00
2016-02-09 15:46:54 +01:00
2016-02-08 17:29:56 +01:00
2016-01-29 15:07:22 +00:00
2016-01-29 15:07:24 +00:00
2016-02-08 17:29:56 +01:00
2016-01-28 11:13:13 +00:00
2016-02-03 11:28:57 -05:00
2016-02-08 17:29:56 +01:00
2016-01-29 15:07:25 +00:00
2016-02-08 17:29:56 +01:00
2016-01-29 15:07:25 +00:00
2016-01-29 15:07:24 +00:00
2016-02-06 20:44:10 +02:00
2016-02-06 20:44:08 +02:00
2016-02-08 17:29:56 +01:00
2016-01-29 15:07:25 +00:00
2016-02-08 17:29:57 +01:00
2016-01-29 15:07:22 +00:00
2016-02-09 15:45:26 +01:00
2016-02-11 11:17:32 +00:00
2016-01-29 15:07:24 +00:00
2016-01-29 15:07:25 +00:00
2016-02-03 11:28:58 -05:00
2016-02-03 11:28:58 -05:00
2016-01-29 15:07:25 +00:00
2016-02-03 09:19:10 +00:00
2016-01-29 15:07:25 +00:00
2016-01-29 15:07:25 +00:00
2016-01-29 15:07:22 +00:00
2016-02-08 17:29:56 +01:00
2016-01-29 15:07:24 +00:00
2016-02-08 17:29:57 +01:00
2016-01-29 15:07:25 +00:00
2016-02-06 20:44:10 +02:00
2016-01-29 15:07:23 +00:00
2016-01-29 15:07:24 +00:00
2015-12-22 18:39:19 +02:00