commit | dc26e040625c616c5359991613232929c640d458 | [log] [tgz] |
---|---|---|
author | Alan Chen <alache@codeaurora.org> | Tue Dec 10 16:44:56 2019 -0800 |
committer | nshrivas <nshrivas@codeaurora.org> | Mon Dec 16 19:45:32 2019 -0800 |
tree | b36268e8a8bb60ffa6c1fae49b099f253c64bcc4 | |
parent | b1e993f96a906ac25b4829bda69a5babed612944 [diff] |
qcacld-3.0: Sanitize fils_erp_rrk_len before doing memcpy Currently, the hdd_update_connect_params_fils_info() function blindly trusts the size and copies into the fils_info->r_rk buffer, putting it at risk of buffer overflow. Add a check to make sure the buffer passed in to be copied to fils_info->r_rk is of the proper length. Change-Id: I9ad2405ca1acd83591bea2aa43406909ad1c58e4 CRs-Fixed: 2580776