On Sun, 9 Dec 2018 at 13:46, Simon Goldschmidt <simon.k.r.goldschm...@gmail.com> wrote: > > This fixes CVE-2018-18440 ("insufficient boundary checks in filesystem > image load") by using lmb to check the load size of a file against > reserved memory addresses. > > Signed-off-by: Simon Goldschmidt <simon.k.r.goldschm...@gmail.com> > --- > > Changes in v5: None > Changes in v4: None > Changes in v2: None > > fs/fs.c | 56 ++++++++++++++++++++++++++++++++++++++++++++++++--- > include/lmb.h | 2 ++ > lib/lmb.c | 13 ++++++++++++ > 3 files changed, 68 insertions(+), 3 deletions(-) >
Reviewed-by: Simon Glass <s...@chromium.org> _______________________________________________ U-Boot mailing list U-Boot@lists.denx.de https://lists.denx.de/listinfo/u-boot