Re: [PATCH] 2.6.20.4 fix kernel panic on corrupted reiserfs directory

2007-04-05 Thread lepton
Yes, you are right. I need more work on my trival patch. On Thu, Apr 05, 2007 at 01:34:42PM +0600, Alexander E. Patrakov wrote: > lepton wrote: > >Hi, > > When reading corrupted reiserfs directory data, d_reclen > > could be a negative number, then memcpy will overflow > > kernel stack. This

Re: [PATCH] 2.6.20.4 fix kernel panic on corrupted reiserfs directory

2007-04-05 Thread Alexander E. Patrakov
lepton wrote: Hi, When reading corrupted reiserfs directory data, d_reclen could be a negative number, then memcpy will overflow kernel stack. This can lead to kernel panic. The following patch adds a sanity check. (against 2.6.20.4) Is it possible to get a large positive number here

[PATCH] 2.6.20.4 fix kernel panic on corrupted reiserfs directory

2007-04-05 Thread lepton
Hi, When reading corrupted reiserfs directory data, d_reclen could be a negative number, then memcpy will overflow kernel stack. This can lead to kernel panic. The following patch adds a sanity check. (against 2.6.20.4) Signed-off-by: Lepton Wu <[EMAIL PROTECTED]> diff -pru

[PATCH] 2.6.20.4 fix kernel panic on corrupted reiserfs directory

2007-04-05 Thread lepton
Hi, When reading corrupted reiserfs directory data, d_reclen could be a negative number, then memcpy will overflow kernel stack. This can lead to kernel panic. The following patch adds a sanity check. (against 2.6.20.4) Signed-off-by: Lepton Wu [EMAIL PROTECTED] diff -pru

Re: [PATCH] 2.6.20.4 fix kernel panic on corrupted reiserfs directory

2007-04-05 Thread Alexander E. Patrakov
lepton wrote: Hi, When reading corrupted reiserfs directory data, d_reclen could be a negative number, then memcpy will overflow kernel stack. This can lead to kernel panic. The following patch adds a sanity check. (against 2.6.20.4) Is it possible to get a large positive number here

Re: [PATCH] 2.6.20.4 fix kernel panic on corrupted reiserfs directory

2007-04-05 Thread lepton
Yes, you are right. I need more work on my trival patch. On Thu, Apr 05, 2007 at 01:34:42PM +0600, Alexander E. Patrakov wrote: lepton wrote: Hi, When reading corrupted reiserfs directory data, d_reclen could be a negative number, then memcpy will overflow kernel stack. This can lead