* RE: [PATCH net v3 1/1] net: ethernet: lantiq_etop: fix memory disclosure
2024-09-23 21:49 ` [PATCH net v3 1/1] " Aleksander Jan Bajkowski
@ 2024-09-23 21:54 ` Keller, Jacob E
2024-09-23 22:22 ` Florian Fainelli
2024-10-01 8:57 ` Paolo Abeni
2 siblings, 0 replies; 6+ messages in thread
From: Keller, Jacob E @ 2024-09-23 21:54 UTC (permalink / raw)
To: Aleksander Jan Bajkowski, davem@davemloft.net,
edumazet@google.com, kuba@kernel.org, pabeni@redhat.com,
horms@kernel.org, john@phrozen.org, ralf@linux-mips.org,
ralph.hempel@lantiq.com, netdev@vger.kernel.org,
linux-kernel@vger.kernel.org
> -----Original Message-----
> From: Aleksander Jan Bajkowski <olek2@wp.pl>
> Sent: Monday, September 23, 2024 2:50 PM
> To: davem@davemloft.net; edumazet@google.com; kuba@kernel.org;
> pabeni@redhat.com; olek2@wp.pl; horms@kernel.org; Keller, Jacob E
> <jacob.e.keller@intel.com>; john@phrozen.org; ralf@linux-mips.org;
> ralph.hempel@lantiq.com; netdev@vger.kernel.org; linux-kernel@vger.kernel.org
> Subject: [PATCH net v3 1/1] net: ethernet: lantiq_etop: fix memory disclosure
>
> When applying padding, the buffer is not zeroed, which results in memory
> disclosure. The mentioned data is observed on the wire. This patch uses
> skb_put_padto() to pad Ethernet frames properly. The mentioned function
> zeroes the expanded buffer.
>
> In case the packet cannot be padded it is silently dropped. Statistics
> are also not incremented. This driver does not support statistics in the
> old 32-bit format or the new 64-bit format. These will be added in the
> future. In its current form, the patch should be easily backported to
> stable versions.
>
> Ethernet MACs on Amazon-SE and Danube cannot do padding of the packets
> in hardware, so software padding must be applied.
>
> Fixes: 504d4721ee8e ("MIPS: Lantiq: Add ethernet driver")
> Signed-off-by: Aleksander Jan Bajkowski <olek2@wp.pl>
> ---
Reviewed-by: Jacob Keller <jacob.e.keller@intel.com>
^ permalink raw reply [flat|nested] 6+ messages in thread* Re: [PATCH net v3 1/1] net: ethernet: lantiq_etop: fix memory disclosure
2024-09-23 21:49 ` [PATCH net v3 1/1] " Aleksander Jan Bajkowski
2024-09-23 21:54 ` Keller, Jacob E
@ 2024-09-23 22:22 ` Florian Fainelli
2024-10-01 8:57 ` Paolo Abeni
2 siblings, 0 replies; 6+ messages in thread
From: Florian Fainelli @ 2024-09-23 22:22 UTC (permalink / raw)
To: Aleksander Jan Bajkowski, davem, edumazet, kuba, pabeni, horms,
jacob.e.keller, john, ralf, ralph.hempel, netdev, linux-kernel
On 9/23/24 14:49, Aleksander Jan Bajkowski wrote:
> When applying padding, the buffer is not zeroed, which results in memory
> disclosure. The mentioned data is observed on the wire. This patch uses
> skb_put_padto() to pad Ethernet frames properly. The mentioned function
> zeroes the expanded buffer.
>
> In case the packet cannot be padded it is silently dropped. Statistics
> are also not incremented. This driver does not support statistics in the
> old 32-bit format or the new 64-bit format. These will be added in the
> future. In its current form, the patch should be easily backported to
> stable versions.
>
> Ethernet MACs on Amazon-SE and Danube cannot do padding of the packets
> in hardware, so software padding must be applied.
>
> Fixes: 504d4721ee8e ("MIPS: Lantiq: Add ethernet driver")
> Signed-off-by: Aleksander Jan Bajkowski <olek2@wp.pl>
Reviewed-by: Florian Fainelli <florian.fainelli@broadcom.com>
Thanks for taking in the suggsetion!
--
Florian
^ permalink raw reply [flat|nested] 6+ messages in thread* Re: [PATCH net v3 1/1] net: ethernet: lantiq_etop: fix memory disclosure
2024-09-23 21:49 ` [PATCH net v3 1/1] " Aleksander Jan Bajkowski
2024-09-23 21:54 ` Keller, Jacob E
2024-09-23 22:22 ` Florian Fainelli
@ 2024-10-01 8:57 ` Paolo Abeni
2 siblings, 0 replies; 6+ messages in thread
From: Paolo Abeni @ 2024-10-01 8:57 UTC (permalink / raw)
To: Aleksander Jan Bajkowski, davem, edumazet, kuba, horms,
jacob.e.keller, john, ralf, ralph.hempel, netdev, linux-kernel
On 9/23/24 23:49, Aleksander Jan Bajkowski wrote:
> When applying padding, the buffer is not zeroed, which results in memory
> disclosure. The mentioned data is observed on the wire. This patch uses
> skb_put_padto() to pad Ethernet frames properly. The mentioned function
> zeroes the expanded buffer.
>
> In case the packet cannot be padded it is silently dropped. Statistics
> are also not incremented. This driver does not support statistics in the
> old 32-bit format or the new 64-bit format. These will be added in the
> future. In its current form, the patch should be easily backported to
> stable versions.
>
> Ethernet MACs on Amazon-SE and Danube cannot do padding of the packets
> in hardware, so software padding must be applied.
>
> Fixes: 504d4721ee8e ("MIPS: Lantiq: Add ethernet driver")
> Signed-off-by: Aleksander Jan Bajkowski <olek2@wp.pl>
For future submissions, please avoid adding the cover letter in case of
a single patch.
Thanks,
Paolo
^ permalink raw reply [flat|nested] 6+ messages in thread