]> Git Repo - qemu.git/commitdiff
qcow2: Check backing_file_offset (CVE-2014-0144)
authorKevin Wolf <[email protected]>
Wed, 26 Mar 2014 12:05:42 +0000 (13:05 +0100)
committerStefan Hajnoczi <[email protected]>
Tue, 1 Apr 2014 12:19:09 +0000 (14:19 +0200)
Header, header extension and the backing file name must all be stored in
the first cluster. Setting the backing file to a much higher value
allowed header extensions to become much bigger than we want them to be
(unbounded allocation).

Signed-off-by: Kevin Wolf <[email protected]>
Reviewed-by: Max Reitz <[email protected]>
Signed-off-by: Stefan Hajnoczi <[email protected]>

No differences found
This page took 0.024861 seconds and 4 git commands to generate.