Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
odp-util: Fix buffer overread in parsing string form of ODP flows.
scan_u128() should return 0 on an error but it actually returned an errno value in some cases, so a command like this: ovs-appctl dpctl/add-flow 'ct_label(1/55555555555555555555555555)' '' could cause a buffer overread. This bug is not as severe as it may sound because the string form of ODP flows is not used over OpenFlow or OVSDB, only through the appctl interface that is normally used just by local system administrators and not exposed over a network. Reported-by: Bhargava Shastry <bshastry@sec.t-labs.tu-berlin.de> Signed-off-by: Ben Pfaff <blp@ovn.org> Acked-by: Joe Stringer <joe@ovn.org>
- Loading branch information