diff options
author | Andrea zi0Black Cappa <zi0Black@protonmail.com> | 2022-05-18 16:30:08 +0000 |
---|---|---|
committer | Tom Rini <trini@konsulko.com> | 2022-05-26 10:32:06 -0400 |
commit | bdbf7a05e26f3c5fd437c99e2755ffde186ddc80 (patch) | |
tree | ed0772cd40b66157b9c6a007d995b707f3941ef1 /test/py/tests/test_fpga.py | |
parent | 9e892ac27670e094ce4bade5a13b4d0e3a7c4da3 (diff) |
net: nfs: Fix CVE-2022-30767 (old CVE-2019-14196)
This patch mitigates the vulnerability identified via CVE-2019-14196.
The previous patch was bypassed/ineffective, and now the vulnerability
is identified via CVE-2022-30767. The patch removes the sanity check
introduced to mitigate CVE-2019-14196 since it's ineffective.
filefh3_length is changed to unsigned type integer, preventing negative
numbers from being used during comparison with positive values during
size sanity checks.
Signed-off-by: Andrea zi0Black Cappa <zi0Black@protonmail.com>
Diffstat (limited to 'test/py/tests/test_fpga.py')
0 files changed, 0 insertions, 0 deletions