[LU-5832] New static analysis issues in lustre_rsync Created: 31/Oct/14  Updated: 30/Aug/23  Resolved: 24/Nov/14

Status: Resolved
Project: Lustre
Component/s: None
Affects Version/s: None
Fix Version/s: Lustre 2.7.0

Type: Bug Priority: Critical
Reporter: Dmitry Eremin (Inactive) Assignee: Dmitry Eremin (Inactive)
Resolution: Fixed Votes: 0
Labels: MB, kw

Issue Links:
Related
is related to LU-4629 Issues found by static analysis tools Resolved
Severity: 3
Rank (Obsolete): 16354

 Description   

Found 1 new static analysis issues in 2.6.54-45-g8fab48a:

  1. Buffer Overflow in Bound String Copy
    • lustre/utils/lustre_rsync.c: in lustre_rsync.c, function 'strncpy' may incorrectly check buffer boundaries and may overflow buffer 'info->name' of fixed size (256). Also there is one similar error on line 1135.

The list of commits since the previous build 2.6.54-29-g7e41c11:

8fab48a LU-5568 lnet: fix kernel crash when network failed to start
0a18a6a LU-5756 hsm: add missing return code in llapi_hsm_copytool_register
bc23995 LU-5743 build: Update to zfs/spl 0.6.3-1.1
85ba174 LU-5641 tests: ensure user daemon is in group bin
9849f61 LU-5287 export: hold exp_lock when modify exp_flags
acdaca8 LU-5674 test: print spl debug info
b5e911f LU-4942 at: per-export lock callback timeout
38ec486 LU-5626 ldiskfs: update non-htree dotdot in rename
8e3d8b7 LU-5675 quota: correctly set II_FL_NONUNQ in dt_index_read()
2e38757 LU-5519 lfsck: LFSCK code framework adjustment (2)
ad6dd12 LU-5518 lfsck: recover orphans from backend lost+found
9ff2d95 LU-5517 lfsck: repair invalid nlink count
e881286 LU-5727 ldlm: revert changes to ldlm_cancel_aged_policy()
e0d08c0 LU-5777 quota: reserve enough credits for setattr
72ae278 LU-5606 tests: add version check codes to conf-sanity test 41c
0f22e4c LU-1996 lustre: Flexible changelog format.


 Comments   
Comment by Dmitry Eremin (Inactive) [ 31/Oct/14 ]

Patch is http://review.whamcloud.com/12516/

Comment by Dmitry Eremin (Inactive) [ 31/Oct/14 ]

Also patch http://review.whamcloud.com/12474/ is related.

Comment by Gerrit Updater [ 23/Nov/14 ]

Oleg Drokin (oleg.drokin@intel.com) merged in patch http://review.whamcloud.com/12516/
Subject: LU-5832 utils: Fix buffer overflow in bound string copy
Project: fs/lustre-release
Branch: master
Current Patch Set:
Commit: 62a9ad817017d677b1914f0838d4a66ce64d2270

Generated at Sat Feb 10 01:54:55 UTC 2024 using Jira 9.4.14#940014-sha1:734e6822bbf0d45eff9af51f82432957f73aa32c.