]> git.proxmox.com Git - mirror_edk2.git/commit - MdeModulePkg/Core/PiSmmCore/PiSmmCore.h
MdeModulePkg/PiSmmCore: SmmEntryPoint underflow (CVE-2021-38578)
authorMiki Demeter <miki.demeter@intel.com>
Thu, 27 Oct 2022 23:20:54 +0000 (16:20 -0700)
committermergify[bot] <37929162+mergify[bot]@users.noreply.github.com>
Fri, 4 Nov 2022 01:58:20 +0000 (01:58 +0000)
commitcab1f02565d3b29081dd21afb074f35fdb4e1fd6
treee6dbe57aa48dccaccb62ce8ebe1606ce9b9cc2d8
parentc46204e25f5b929fae2b336c03c73fada632d4f4
MdeModulePkg/PiSmmCore: SmmEntryPoint underflow (CVE-2021-38578)

REF:https://bugzilla.tianocore.org/show_bug.cgi?id=3387

Added use of SafeIntLib to validate values are not causing overflows or
underflows in user controlled values when calculating buffer sizes.

Signed-off-by: Miki Demeter <miki.demeter@intel.com>
Reviewed-by: Michael D Kinney <michael.d.kinney@intel.com>
Cc: Jian J Wang <jian.j.wang@intel.com>
Cc: Liming Gao <gaoliming@byosoft.com.cn>
Reviewed-by: Liming Gao <gaoliming@byosoft.com.cn>
MdeModulePkg/Core/PiSmmCore/PiSmmCore.c
MdeModulePkg/Core/PiSmmCore/PiSmmCore.h
MdeModulePkg/Core/PiSmmCore/PiSmmCore.inf
MdeModulePkg/Core/PiSmmCore/PiSmmIpl.c
MdeModulePkg/Core/PiSmmCore/PiSmmIpl.inf