potential out-of-bounds memory write in afs_alloc_cell()

David Howells dhowells at redhat.com
Wed Jun 24 07:51:23 EDT 2020


Colin Ian King <colin.king at canonical.com> wrote:

> however we may be indexing beyond this. I was unsure if name should be
> AFS_MAXCELLNAME + 1 instead of the hard coded size here, or if this
> situation can't happen and the 65 char limit is intentional.

Yeah - I used the volume name length by accident.

David




More information about the linux-afs mailing list