diff mbox series

[4/4] Fix CVE-2024-7546

Message ID 20241203194352.25514-4-ivo.g.dimitrov.75@gmail.com (mailing list archive)
State Accepted
Commit 79ea6677669e50b0bb9c231765adb4f81c375f63
Headers show
Series [1/4] stkutil: Fix CVE-2024-7544 | expand

Commit Message

Ivaylo Dimitrov Dec. 3, 2024, 7:43 p.m. UTC
---
 src/stkutil.c | 4 ++++
 1 file changed, 4 insertions(+)
diff mbox series

Patch

diff --git a/src/stkutil.c b/src/stkutil.c
index b6d4b537..c8497c4c 100644
--- a/src/stkutil.c
+++ b/src/stkutil.c
@@ -1769,6 +1769,10 @@  static bool parse_dataobj_frame_layout(struct comprehension_tlv_iter *iter,
 
 	fl->layout = data[0];
 	fl->len = len - 1;
+
+	if (fl->len > sizeof(fl->size))
+		return false;
+
 	memcpy(fl->size, data + 1, fl->len);
 
 	return true;