[bluez/bluez] 116d0d: lib: Fix out-of-bounds write when concatenating co...

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



  Branch: refs/heads/994977
  Home:   https://github.com/bluez/bluez
  Commit: 116d0d3042099740cfb649d65e5343d4ecdcb5e1
      https://github.com/bluez/bluez/commit/116d0d3042099740cfb649d65e5343d4ecdcb5e1
  Author: Arkadiusz Bokowy <arkadiusz.bokowy@xxxxxxxxx>
  Date:   2025-08-24 (Sun, 24 Aug 2025)

  Changed paths:
    M lib/bluetooth/hci.c
    M lib/bluetooth/hci_lib.h

  Log Message:
  -----------
  lib: Fix out-of-bounds write when concatenating commands

This commit fixes the hci_commandstostr() command by writing new line
character in place of trailing space when wrapping long lines. Previous
approach was to append new line character to existing string, which
caused buffer overflow when there was more than 9 lines in the output
string.

Also, the last trailing space is removed in order to return
trailing-spaces-free string to the caller.


  Commit: fd21dd34497936f7550598b57518cbab32cf78b1
      https://github.com/bluez/bluez/commit/fd21dd34497936f7550598b57518cbab32cf78b1
  Author: Arkadiusz Bokowy <arkadiusz.bokowy@xxxxxxxxx>
  Date:   2025-08-24 (Sun, 24 Aug 2025)

  Changed paths:
    M lib/bluetooth/hci.c

  Log Message:
  -----------
  lib: Synchronize supported commands with Core Spec 6.0

Commands marked as "Previously used" in the Bluetooth Core Specification
Version 6.0 were not updated to keep the library compatible with old HCI
controllers.


Compare: https://github.com/bluez/bluez/compare/116d0d304209%5E...fd21dd344979

To unsubscribe from these emails, change your notification settings at https://github.com/bluez/bluez/settings/notifications




[Index of Archives]     [Bluez Devel]     [Linux Wireless Networking]     [Linux Wireless Personal Area Networking]     [Linux ATH6KL]     [Linux USB Devel]     [Linux Media Drivers]     [Linux Audio Users]     [Linux Kernel]     [Linux SCSI]     [Big List of Linux Books]

  Powered by Linux