[lvc-project] [PATCH 0/2] cifs: fix integer overflow in match_server()
Roman Smirnov
r.smirnov at omp.ru
Mon Mar 31 11:22:48 MSK 2025
If a large number is written to echo_interval during mount,
an integer overflow may occur in match_server():
smb3_fs_context_parse_param()
cifs_smb3_do_mount()
sget()
cifs_match_super()
match_server()
Found by Linux Verification Center (linuxtesting.org) with Svace.
Roman Smirnov (2):
cifs: fix integer overflow in match_server()
cifs: remove unreachable code in cifs_get_tcp_session()
fs/smb/client/connect.c | 6 +-----
fs/smb/client/fs_context.c | 5 +++++
2 files changed, 6 insertions(+), 5 deletions(-)
--
2.34.1
More information about the lvc-project
mailing list