public inbox for linux-bluetooth@vger.kernel.org
 help / color / mirror / Atom feed
* [bluez/bluez] 04d044: shared/bap: check pac cc and metadata length befor...
@ 2025-10-11 18:54 Pauli Virtanen
  0 siblings, 0 replies; only message in thread
From: Pauli Virtanen @ 2025-10-11 18:54 UTC (permalink / raw)
  To: linux-bluetooth

  Branch: refs/heads/1010380
  Home:   https://github.com/bluez/bluez
  Commit: 04d044e80dc9872c1705703c73df71c79a8560c9
      https://github.com/bluez/bluez/commit/04d044e80dc9872c1705703c73df71c79a8560c9
  Author: Pauli Virtanen <pav@iki.fi>
  Date:   2025-10-11 (Sat, 11 Oct 2025)

  Changed paths:
    M src/shared/bap.c

  Log Message:
  -----------
  shared/bap: check pac cc and metadata length before use

Don't read past buffer end if device provided bogus values for PAC
caps/metadata lengths.

Use iov pull properly, and also check metadata LTV validity.



To unsubscribe from these emails, change your notification settings at https://github.com/bluez/bluez/settings/notifications

^ permalink raw reply	[flat|nested] only message in thread

only message in thread, other threads:[~2025-10-11 18:54 UTC | newest]

Thread overview: (only message) (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2025-10-11 18:54 [bluez/bluez] 04d044: shared/bap: check pac cc and metadata length befor Pauli Virtanen

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox