Commit Graph

8 Commits

Author SHA1 Message Date
Paul Capron
c546054984 vfs: Fix counting in inode_avail_count
As seen in `inode_del` (and `inode_alloc`), a free (`NOT_INIT`) node can be found anywhere in `g_vfs_dev_nodes`; it’s a “sparse” list.
So when checking for free nodes, the iterating index variable (`e`) shall be used, not the counter (`count`). The code got that wrong.
For instance, if the first node is not available (type is not `VFS_TYPE_NOT_INIT`), then the function previously returned 0, no matter what, and was iterating the node list in vain.
2020-10-31 21:51:30 +08:00
Yafei
bc112954be
Merge pull request #3 from BKPepe/pppd
Fix buffer overflow in EAP
2020-10-30 13:53:17 +08:00
Paul Mackerras
c9ff47b828
pppd: Ignore received EAP messages when not doing EAP
This adds some basic checks to the subroutines of eap_input to check
that we have requested or agreed to doing EAP authentication before
doing any processing on the received packet.  The motivation is to
make it harder for a malicious peer to disrupt the operation of pppd
by sending unsolicited EAP packets.  Note that eap_success() already
has a check that the EAP client state is reasonable, and does nothing
(apart from possibly printing a debug message) if not.

Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2020-10-29 00:12:01 +01:00
Jesus Velazquez
838ff4f832 bl_sys_time.c: adds null pointer checks and extra spaces cleanup
Signed-off-by: Jesus Velazquez <jesus.velazquez@gmail.com>
2020-10-28 11:59:59 -07:00
Josef Schlehofer
87970e63c5
Fix buffer overflow in EAP
Fixes CVE-2020-8597
2020-10-28 19:41:15 +01:00
Jesus Velazquez
143f051b9c web_server.c: remove references to ESP32
Signed-off-by: Jesus Velazquez <jesus.velazquez@gmail.com>
2020-10-28 08:03:53 -07:00
bouffalolab2020
61d60a3dc0
Delete README.md 2020-10-27 10:34:41 +08:00
Rujun Wang
ee4a10b1a1 Initial Commit 2020-10-26 20:35:25 +08:00