mail archive of the barebox mailing list
 help / color / mirror / Atom feed
* [PATCH 1/3] usb: storage: Zero CDB out before sending it
@ 2019-05-22  7:33 Andrey Smirnov
  2019-05-22  7:33 ` [PATCH 2/3] usb: storage: Default to a single LUN Andrey Smirnov
                   ` (2 more replies)
  0 siblings, 3 replies; 4+ messages in thread
From: Andrey Smirnov @ 2019-05-22  7:33 UTC (permalink / raw)
  To: barebox; +Cc: Andrey Smirnov

Since cbw.Length can be less that sizeof(cbw.CDB), add code to zero
the whole struct out to avoid sending random stack data as a part of
payload. There's no known case where this causes a problem, but it's a
reasonable thing to do anyway.

Signed-off-by: Andrey Smirnov <andrew.smirnov@gmail.com>
---
 drivers/usb/storage/transport.c | 1 +
 1 file changed, 1 insertion(+)

diff --git a/drivers/usb/storage/transport.c b/drivers/usb/storage/transport.c
index 48ccee207..5186508ba 100644
--- a/drivers/usb/storage/transport.c
+++ b/drivers/usb/storage/transport.c
@@ -115,6 +115,7 @@ int usb_stor_Bulk_transport(struct us_blk_dev *usb_blkdev,
 	cbw.Length = cmdlen;
 
 	/* copy the command payload */
+	memset(cbw.CDB, 0, sizeof(cbw.CDB));
 	memcpy(cbw.CDB, cmd, cbw.Length);
 
 	/* send it to out endpoint */
-- 
2.21.0


_______________________________________________
barebox mailing list
barebox@lists.infradead.org
http://lists.infradead.org/mailman/listinfo/barebox

^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2019-05-23  7:11 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2019-05-22  7:33 [PATCH 1/3] usb: storage: Zero CDB out before sending it Andrey Smirnov
2019-05-22  7:33 ` [PATCH 2/3] usb: storage: Default to a single LUN Andrey Smirnov
2019-05-22  7:33 ` [PATCH 3/3] usb: storage: Fix TEST_UNIT_READY command size Andrey Smirnov
2019-05-23  7:11 ` [PATCH 1/3] usb: storage: Zero CDB out before sending it Sascha Hauer

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox