
10 Oct
2023
10 Oct
'23
2:58 p.m.
On Fri, Sep 29, 2023 at 02:47:17AM +0200, Heinrich Schuchardt wrote:
When copying the name of a stdio device we must ensure that it is NUL terminated before passing it to strcmp() to avoid a buffer overrun.
Truncating the name field leads to failure to deregister a stdio device. When copying we must ensure that the name field sizes match.
Addresses-Coverity-ID: 350462 String not null terminated Fixes: 5294e97832a6 ("stdio: extend "name" to 32 symbols") Signed-off-by: Heinrich Schuchardt heinrich.schuchardt@canonical.com Reviewed-by: Simon Glass sjg@chromium.org
Applied to u-boot/master, thanks!
--
Tom