]> git.proxmox.com Git - mirror_edk2.git/commit
IntelFrameworkModulePkg: Add more checker in UefiTianoDecompressLib (CVE FIX)
authorLiming Gao <liming.gao@intel.com>
Tue, 16 Oct 2018 02:06:12 +0000 (10:06 +0800)
committerLiming Gao <liming.gao@intel.com>
Wed, 24 Oct 2018 00:24:14 +0000 (08:24 +0800)
commit684db6da64bc7b5faee4e1174e801c245f563b5c
treef6b94286ae55aea6ce72d90c1e3aa37251062e1b
parent2ec7953d49677142c5f7552e9e3d96fb406ba0c4
IntelFrameworkModulePkg: Add more checker in UefiTianoDecompressLib (CVE FIX)

Fix CVE-2017-5731,CVE-2017-5732,CVE-2017-5733,CVE-2017-5734,CVE-2017-5735
https://bugzilla.tianocore.org/show_bug.cgi?id=686
To make sure the valid buffer be accessed only.

Contributed-under: TianoCore Contribution Agreement 1.1
Signed-off-by: Holtsclaw Brent <brent.holtsclaw@intel.com>
Signed-off-by: Liming Gao <liming.gao@intel.com>
Reviewed-by: Star Zeng <star.zeng@intel.com>
Acked-by: Laszlo Ersek <lersek@redhat.com>
IntelFrameworkModulePkg/Library/BaseUefiTianoCustomDecompressLib/BaseUefiTianoCustomDecompressLib.c