summaryrefslogtreecommitdiffstats
path: root/hw
diff options
context:
space:
mode:
authorJim Meyering2012-10-04 13:09:49 +0200
committerAnthony Liguori2012-10-05 14:58:37 +0200
commita79b5f8b80890b402fdb0733b0a073695a7875b5 (patch)
tree99a6f22f139239defa1cb0b4ea9ca66e142eccf6 /hw
parentvmdk: relative_path: use pstrcpy in place of strncpy (diff)
downloadqemu-a79b5f8b80890b402fdb0733b0a073695a7875b5.tar.gz
qemu-a79b5f8b80890b402fdb0733b0a073695a7875b5.tar.xz
qemu-a79b5f8b80890b402fdb0733b0a073695a7875b5.zip
hw/9pfs: avoid buffer overrun
v9fs_add_dir_node and qemu_v9fs_synth_add_file used strncpy to form node->name, which requires NUL-termination, but strncpy does not ensure NUL-termination. Use pstrcpy, which does. Acked-by: Aneesh Kumar K.V <aneesh.kumar@linux.vnet.ibm.com> Signed-off-by: Jim Meyering <meyering@redhat.com> Signed-off-by: Anthony Liguori <aliguori@us.ibm.com>
Diffstat (limited to 'hw')
-rw-r--r--hw/9pfs/virtio-9p-synth.c4
1 files changed, 2 insertions, 2 deletions
diff --git a/hw/9pfs/virtio-9p-synth.c b/hw/9pfs/virtio-9p-synth.c
index 92e0b09d38..e95a856d25 100644
--- a/hw/9pfs/virtio-9p-synth.c
+++ b/hw/9pfs/virtio-9p-synth.c
@@ -58,7 +58,7 @@ static V9fsSynthNode *v9fs_add_dir_node(V9fsSynthNode *parent, int mode,
node->attr->read = NULL;
}
node->private = node;
- strncpy(node->name, name, sizeof(node->name));
+ pstrcpy(node->name, sizeof(node->name), name);
QLIST_INSERT_HEAD_RCU(&parent->child, node, sibling);
return node;
}
@@ -132,7 +132,7 @@ int qemu_v9fs_synth_add_file(V9fsSynthNode *parent, int mode,
node->attr->write = write;
node->attr->mode = mode;
node->private = arg;
- strncpy(node->name, name, sizeof(node->name));
+ pstrcpy(node->name, sizeof(node->name), name);
QLIST_INSERT_HEAD_RCU(&parent->child, node, sibling);
ret = 0;
err_out: