* Re: [dpdk-stable] [PATCH] net/virtio: do not gso when no header is present
[not found] <20170124203603.3887-1-emmanuel.roullit@gmail.com>
@ 2017-01-30 12:42 ` Yuanhan Liu
0 siblings, 0 replies; only message in thread
From: Yuanhan Liu @ 2017-01-30 12:42 UTC (permalink / raw)
To: Emmanuel Roullit; +Cc: huawei.xie, dev, Thomas Monjalon, stable
On Tue, Jan 24, 2017 at 09:36:03PM +0100, Emmanuel Roullit wrote:
> Found with clang static analysis:
> lib/librte_vhost/virtio_net.c:723:17: warning:
> Access to field 'data_off' results in a dereference of a null pointer
> (loaded from variable 'tcp_hdr')
> m->l4_len = (tcp_hdr->data_off & 0xf0) >> 2;
> ^~~~~~~~~~~~~~~~~
This is a good fix, thanks. But there are few minor nits. Firstly,
prefix is wrong: it should be "vhost" but not "net/virtio".
> Fixes: 2a51b1091cb5 ("vhost: support indirect descriptor in non-mergeable Rx")
That's not the original commit introduced such issue, d0cf91303d73
("vhost: add Tx offload capabilities") is.
I actually saw you have made this kind of mistakes (referencing the
wrong culprit commit) few times. I'm wondering how did you get that.
Besides those, I think it's a good candidate for a stable release:
thinking that a malicious guest might forge some invalid virtio net
headers, which would make this potential NULL dereference become real.
So, Cc: stable@dpdk.org,
And Applied to dpdk-next-virtio.
--yliu
^ permalink raw reply [flat|nested] only message in thread
only message in thread, other threads:[~2017-01-30 12:40 UTC | newest]
Thread overview: (only message) (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
[not found] <20170124203603.3887-1-emmanuel.roullit@gmail.com>
2017-01-30 12:42 ` [dpdk-stable] [PATCH] net/virtio: do not gso when no header is present Yuanhan Liu
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).