]> git.ipfire.org Git - thirdparty/kernel/stable.git/commit
libceph: prevent potential out-of-bounds reads in handle_auth_done()
authorziming zhang <ezrakiez@gmail.com>
Thu, 11 Dec 2025 08:52:58 +0000 (16:52 +0800)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Sat, 17 Jan 2026 15:31:17 +0000 (16:31 +0100)
commit2802ef3380fa8c4a08cda51ec1f085b1a712e9e2
tree75119da62c243a227498e71e8a3688f297261ec4
parentf94f95b8173605c305e1e33758a34a1dc08d3c8c
libceph: prevent potential out-of-bounds reads in handle_auth_done()

commit 818156caffbf55cb4d368f9c3cac64e458fb49c9 upstream.

Perform an explicit bounds check on payload_len to avoid a possible
out-of-bounds access in the callout.

[ idryomov: changelog ]

Cc: stable@vger.kernel.org
Signed-off-by: ziming zhang <ezrakiez@gmail.com>
Reviewed-by: Ilya Dryomov <idryomov@gmail.com>
Signed-off-by: Ilya Dryomov <idryomov@gmail.com>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
net/ceph/messenger_v2.c