..@intel.com;
> >> vladimir.olovyanni...@broadcom.com
> >> Cc: Kinney, Michael D ; Gao, Liming
> >>
> >> Subject: Re: [edk2-devel] [PATCH v2 1/1] MdePkg : UefiFileHandleLib:
> >> fix buffer overrun in FileHandleReadLine()
> >>
> >> On 0
ao, Liming
>>
>> Subject: Re: [edk2-devel] [PATCH v2 1/1] MdePkg : UefiFileHandleLib: fix
>> buffer overrun in FileHandleReadLine()
>>
>> On 08/24/20 18:18, Laszlo Ersek wrote:
>>> On 07/03/20 04:30, Zhiguang Liu wrote:
>>>> Reviewed-by: Zhiguang
ikov via groups.io
> >>> Sent: Thursday, July 2, 2020 10:31 AM
> >>> To: devel@edk2.groups.io
> >>> Cc: Vladimir Olovyannikov ;
> >>> Kinney, Michael D ; Gao, Liming
> >>> ; Liu, Zhiguang
> >>> Subject: [edk2-deve
Olovyannikov via groups.io
>>> Sent: Thursday, July 2, 2020 10:31 AM
>>> To: devel@edk2.groups.io
>>> Cc: Vladimir Olovyannikov ; Kinney,
>>> Michael D ; Gao, Liming
>>> ; Liu, Zhiguang
>>> Subject: [edk2-devel] [PATCH v2 1/1] MdePkg : UefiFileHandleLib
yannikov via groups.io
>> Sent: Thursday, July 2, 2020 10:31 AM
>> To: devel@edk2.groups.io
>> Cc: Vladimir Olovyannikov ; Kinney,
>> Michael D ; Gao, Liming
>> ; Liu, Zhiguang
>> Subject: [edk2-devel] [PATCH v2 1/1] MdePkg : UefiFileHandleLib: fix buffer
>>
Liu, Zhiguang
> Subject: [edk2-devel] [PATCH v2 1/1] MdePkg : UefiFileHandleLib: fix buffer
> overrun in FileHandleReadLine()
>
> If the size of the supplied buffer in FileHandleReadLine(), module
> UefiFileHandleLib.c, was not 0, but was not enough to fit in
> the line,
If the size of the supplied buffer in FileHandleReadLine(), module
UefiFileHandleLib.c, was not 0, but was not enough to fit in
the line, the size is increased, and then the Buffer of the new
size is zeroed. This size is always larger than the supplied buffer size,
causing supplied buffer overrun.