[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Xen-devel] [PATCH] libxc: restore: bounds check for start_info.{store_mfn, console.domU.mfn}



Ian Campbell writes ("[PATCH] libxc: restore: bounds check for 
start_info.{store_mfn, console.domU.mfn}"):
> libxc: restore: bounds check for start_info.{store_mfn,console.domU.mfn}
> 
> These fields are canonicalised by the guest on suspend and therefore must be
> valid pfns during restore.
> 
> Reported-by: Jonathan Ludlam <Jonathan.Ludlam@xxxxxxxxxxxxx>
> Signed-off-by: Ian Campbell <ian.campbell@xxxxxxxxxx>

Does this mean that a malicious restore file can take over the
toolstack ?

Ian.

_______________________________________________
Xen-devel mailing list
Xen-devel@xxxxxxxxxxxxx
http://lists.xen.org/xen-devel


 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.