Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-10-19 Thread Greg Kroah-Hartman
On Thu, Oct 19, 2017 at 01:19:13PM +0200, Andrey Konovalov wrote: > On Wed, Oct 4, 2017 at 4:40 PM, Greg Kroah-Hartman > wrote: > > On Tue, Oct 03, 2017 at 11:29:40AM +0200, Johan Hovold wrote: > >> On Fri, Sep 29, 2017 at 10:37:55AM +0200, Greg Kroah-Hartman wrote: >

Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-10-19 Thread Greg Kroah-Hartman
On Thu, Oct 19, 2017 at 01:19:13PM +0200, Andrey Konovalov wrote: > On Wed, Oct 4, 2017 at 4:40 PM, Greg Kroah-Hartman > wrote: > > On Tue, Oct 03, 2017 at 11:29:40AM +0200, Johan Hovold wrote: > >> On Fri, Sep 29, 2017 at 10:37:55AM +0200, Greg Kroah-Hartman wrote: > >> > On Thu, Sep 28, 2017 at

Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-10-19 Thread Andrey Konovalov
On Wed, Oct 4, 2017 at 4:40 PM, Greg Kroah-Hartman wrote: > On Tue, Oct 03, 2017 at 11:29:40AM +0200, Johan Hovold wrote: >> On Fri, Sep 29, 2017 at 10:37:55AM +0200, Greg Kroah-Hartman wrote: >> > On Thu, Sep 28, 2017 at 07:57:46PM +0200, Andrey Konovalov wrote: >> >

Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-10-19 Thread Andrey Konovalov
On Wed, Oct 4, 2017 at 4:40 PM, Greg Kroah-Hartman wrote: > On Tue, Oct 03, 2017 at 11:29:40AM +0200, Johan Hovold wrote: >> On Fri, Sep 29, 2017 at 10:37:55AM +0200, Greg Kroah-Hartman wrote: >> > On Thu, Sep 28, 2017 at 07:57:46PM +0200, Andrey Konovalov wrote: >> > > Hi! >> > > >> > > I've got

Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-10-04 Thread Greg Kroah-Hartman
On Tue, Oct 03, 2017 at 11:29:40AM +0200, Johan Hovold wrote: > On Fri, Sep 29, 2017 at 10:37:55AM +0200, Greg Kroah-Hartman wrote: > > On Thu, Sep 28, 2017 at 07:57:46PM +0200, Andrey Konovalov wrote: > > > Hi! > > > > > > I've got the following report while fuzzing the kernel with syzkaller. >

Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-10-04 Thread Greg Kroah-Hartman
On Tue, Oct 03, 2017 at 11:29:40AM +0200, Johan Hovold wrote: > On Fri, Sep 29, 2017 at 10:37:55AM +0200, Greg Kroah-Hartman wrote: > > On Thu, Sep 28, 2017 at 07:57:46PM +0200, Andrey Konovalov wrote: > > > Hi! > > > > > > I've got the following report while fuzzing the kernel with syzkaller. >

Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-10-03 Thread Johan Hovold
On Fri, Sep 29, 2017 at 10:37:55AM +0200, Greg Kroah-Hartman wrote: > On Thu, Sep 28, 2017 at 07:57:46PM +0200, Andrey Konovalov wrote: > > Hi! > > > > I've got the following report while fuzzing the kernel with syzkaller. > > > > On commit dc972a67cc54585bd83ad811c4e9b6ab3dcd427e (4.14-rc2+). >

Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-10-03 Thread Johan Hovold
On Fri, Sep 29, 2017 at 10:37:55AM +0200, Greg Kroah-Hartman wrote: > On Thu, Sep 28, 2017 at 07:57:46PM +0200, Andrey Konovalov wrote: > > Hi! > > > > I've got the following report while fuzzing the kernel with syzkaller. > > > > On commit dc972a67cc54585bd83ad811c4e9b6ab3dcd427e (4.14-rc2+). >

Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-09-29 Thread Andrey Konovalov
On Fri, Sep 29, 2017 at 10:37 AM, Greg Kroah-Hartman wrote: > On Thu, Sep 28, 2017 at 07:57:46PM +0200, Andrey Konovalov wrote: >> Hi! >> >> I've got the following report while fuzzing the kernel with syzkaller. >> >> On commit dc972a67cc54585bd83ad811c4e9b6ab3dcd427e

Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-09-29 Thread Andrey Konovalov
On Fri, Sep 29, 2017 at 10:37 AM, Greg Kroah-Hartman wrote: > On Thu, Sep 28, 2017 at 07:57:46PM +0200, Andrey Konovalov wrote: >> Hi! >> >> I've got the following report while fuzzing the kernel with syzkaller. >> >> On commit dc972a67cc54585bd83ad811c4e9b6ab3dcd427e (4.14-rc2+). >> >> There's

Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-09-29 Thread Greg Kroah-Hartman
On Thu, Sep 28, 2017 at 07:57:46PM +0200, Andrey Konovalov wrote: > Hi! > > I've got the following report while fuzzing the kernel with syzkaller. > > On commit dc972a67cc54585bd83ad811c4e9b6ab3dcd427e (4.14-rc2+). > > There's no check on the connection_info->num_ports value when > iterating

Re: usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-09-29 Thread Greg Kroah-Hartman
On Thu, Sep 28, 2017 at 07:57:46PM +0200, Andrey Konovalov wrote: > Hi! > > I've got the following report while fuzzing the kernel with syzkaller. > > On commit dc972a67cc54585bd83ad811c4e9b6ab3dcd427e (4.14-rc2+). > > There's no check on the connection_info->num_ports value when > iterating

usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-09-28 Thread Andrey Konovalov
Hi! I've got the following report while fuzzing the kernel with syzkaller. On commit dc972a67cc54585bd83ad811c4e9b6ab3dcd427e (4.14-rc2+). There's no check on the connection_info->num_ports value when iterating over ports. usb 1-1: Handspring Visor / Palm OS: port 162, is for unknown use usb

usb/serial/visor: slab-out-of-bounds in palm_os_3_probe

2017-09-28 Thread Andrey Konovalov
Hi! I've got the following report while fuzzing the kernel with syzkaller. On commit dc972a67cc54585bd83ad811c4e9b6ab3dcd427e (4.14-rc2+). There's no check on the connection_info->num_ports value when iterating over ports. usb 1-1: Handspring Visor / Palm OS: port 162, is for unknown use usb