commit | 5dab2faddc8eaa1fb1abdbe2f502001fc13a1b21 | [log] [tgz] |
---|---|---|
author | Kevin Wolf <kwolf@redhat.com> | Wed Mar 26 13:05:43 2014 +0100 |
committer | Stefan Hajnoczi <stefanha@redhat.com> | Tue Apr 01 14:19:09 2014 +0200 |
tree | 675dd5f26040c117c2f2fb040b5ea9dfb623ecf6 | |
parent | a1b3955c9415b1e767c130a2f59fee6aa28e575b [diff] |
qcow2: Check refcount table size (CVE-2014-0144) Limit the in-memory reference count table size to 8 MB, it's enough in practice. This fixes an unbounded allocation as well as a buffer overflow in qcow2_refcount_init(). Signed-off-by: Kevin Wolf <kwolf@redhat.com> Reviewed-by: Max Reitz <mreitz@redhat.com> Signed-off-by: Stefan Hajnoczi <stefanha@redhat.com>