Re: [Qemu-devel] [security bug]code_gen_buffer can be overflowed

2007-12-09 Thread Blue Swirl
On 12/1/07, Blue Swirl [EMAIL PROTECTED] wrote: On 12/1/07, TeLeMan [EMAIL PROTECTED] wrote: Blue Swirl-2 wrote: On 11/28/07, TeLeMan [EMAIL PROTECTED] wrote: dyngen_code() can generate more than CODE_GEN_MAX_SIZE bytes, code_gen_buffer can be overflowed. I hope this

Re: [Qemu-devel] [security bug]code_gen_buffer can be overflowed

2007-12-01 Thread Blue Swirl
On 12/1/07, TeLeMan [EMAIL PROTECTED] wrote: Blue Swirl-2 wrote: On 11/28/07, TeLeMan [EMAIL PROTECTED] wrote: dyngen_code() can generate more than CODE_GEN_MAX_SIZE bytes, code_gen_buffer can be overflowed. I hope this security bug will be fixed soon. Thank you for the

Re: [Qemu-devel] [security bug]code_gen_buffer can be overflowed

2007-11-30 Thread TeLeMan
Blue Swirl-2 wrote: On 11/28/07, TeLeMan [EMAIL PROTECTED] wrote: dyngen_code() can generate more than CODE_GEN_MAX_SIZE bytes, code_gen_buffer can be overflowed. I hope this security bug will be fixed soon. Thank you for the analysis. It's true that cpu_gen_code does not pass

Re: [Qemu-devel] [security bug]code_gen_buffer can be overflowed

2007-11-30 Thread Blue Swirl
On 11/28/07, TeLeMan [EMAIL PROTECTED] wrote: dyngen_code() can generate more than CODE_GEN_MAX_SIZE bytes, code_gen_buffer can be overflowed. I hope this security bug will be fixed soon. Thank you for the analysis. It's true that cpu_gen_code does not pass CODE_GEN_MAX_SIZE (65536) on to

[Qemu-devel] [security bug]code_gen_buffer can be overflowed

2007-11-27 Thread TeLeMan
dyngen_code() can generate more than CODE_GEN_MAX_SIZE bytes, code_gen_buffer can be overflowed. I hope this security bug will be fixed soon. -- View this message in context: http://www.nabble.com/-security-bug-code_gen_buffer-can-be-overflowed-tf4886083.html#a13985284 Sent from the QEMU - Dev