HomeFreeBSD

ctl: avoid heap info leak in ctl_request_sense

Description

ctl: avoid heap info leak in ctl_request_sense

Previously 3 bytes of data from the heap could be leaked to ctl
consumers.

Reported by: Synacktiv
Reviewed by: asomers, mav
Sponsored by: The Alpha-Omega Project
Sponsored by: The FreeBSD Foundation
Differential Revision: https://reviews.freebsd.org/D46091

(cherry picked from commit db87c98168b1605f067d283fa36a710369c3849d)
(cherry picked from commit 131b7dcb2fbf8f15815387f60536d9cc16585b0d)

Details

Provenance
emasteAuthored on Tue, Aug 20, 6:12 PM
Reviewer
asomers
Differential Revision
Restricted Differential Revision
Parents
rG6a847b6d1ee8: linux.4: clarify path translation
Branches
Unknown
Tags
Unknown