All of lore.kernel.org
 help / color / mirror / Atom feed
* Prior report for the nvmet-tcp unbounded SGL length fix in 7.3
@ 2026-08-24 15:42 Shivam Kumar
  2026-08-24 15:50 ` Shivam Kumar
                   ` (2 more replies)
  0 siblings, 3 replies; 8+ messages in thread
From: Shivam Kumar @ 2026-08-24 15:42 UTC (permalink / raw)
  To: linux-nvme
  Cc: Sagi Grimberg, Keith Busch, Ibrahim Hashimov, Greg Kroah-Hartman

Hi all,

I originally reported this issue to security@kernel.org on 2026-03-17
(Cc Sagi), Message-ID:
<CA+ysrSJUFi8cHzU8g9Nrbbkcuo0F7vh8CMn3ht15gSk3BbK45A@mail.gmail.com>
and posted the first patch for it in this thread,
"[PATCH] nvmet-tcp: bound sgl->length check in nvmet_tcp_map_data()"
(2026-03-19).

Commit 4a3f002 ("nvmet-tcp: bound SGL data length before allocating
command buffers"), merged for 7.3, adds the same NVMET_TCP_MAXH2CDATA
bound with the same status code.

These things happen independently, and I'm glad the issue is fixed.
Would it be possible to get some acknowledgement for the original
report?

Thanks,
Shivam


^ permalink raw reply	[flat|nested] 8+ messages in thread

end of thread, other threads:[~2026-08-25  8:13 UTC | newest]

Thread overview: 8+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2026-08-24 15:42 Prior report for the nvmet-tcp unbounded SGL length fix in 7.3 Shivam Kumar
2026-08-24 15:50 ` Shivam Kumar
2026-08-24 16:01 ` Greg Kroah-Hartman
2026-08-24 16:07   ` Shivam Kumar
2026-08-24 16:54     ` Greg Kroah-Hartman
2026-08-24 18:18       ` Shivam Kumar
2026-08-25  8:13         ` Greg Kroah-Hartman
2026-08-24 16:31 ` Maurizio Lombardi

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.