Re: [PATCH v4 3/6] iio: fix potential out-of-bound write

2025-05-25 Thread Jonathan Cameron
On Thu, 8 May 2025 15:06:09 +0200 Markus Burri wrote: > The buffer is set to 20 characters. If a caller write more characters, > count is truncated to the max available space in "simple_write_to_buffer". > To protect from OoB access, check that the input size fit into buffer and > add a zero ter

Re: [PATCH v4 3/6] iio: fix potential out-of-bound write

2025-05-25 Thread Jonathan Cameron
On Thu, 8 May 2025 15:06:09 +0200 Markus Burri wrote: > The buffer is set to 20 characters. If a caller write more characters, > count is truncated to the max available space in "simple_write_to_buffer". > To protect from OoB access, check that the input size fit into buffer and > add a zero ter

[PATCH v4 3/6] iio: fix potential out-of-bound write

2025-05-08 Thread Markus Burri
The buffer is set to 20 characters. If a caller write more characters, count is truncated to the max available space in "simple_write_to_buffer". To protect from OoB access, check that the input size fit into buffer and add a zero terminator after copy to the end of the copied data. Signed-off-by: