Received: by 2002:a05:6358:3188:b0:123:57c1:9b43 with SMTP id q8csp3932308rwd; Sat, 10 Jun 2023 19:10:11 -0700 (PDT) X-Google-Smtp-Source: ACHHUZ5vycCHOAfn579Fod+AUa/+Lqk5x9DIM/r6lNSknASt3g4Kko1aZkINHwNoH7S0HIycRg0b X-Received: by 2002:a05:6a21:328e:b0:10e:d4fb:b034 with SMTP id yt14-20020a056a21328e00b0010ed4fbb034mr6416092pzb.28.1686449410750; Sat, 10 Jun 2023 19:10:10 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1686449410; cv=none; d=google.com; s=arc-20160816; b=BmjHtX/4Mi2YfAX4sp7L20hAMLqREpxBbvtZ2WbVRp8pqj0FUv91fI40S1T6b0ghAY 7QM5qw7c93Jey/ghCVi4dSU8J9kKBfAUCGJfi6I5OmAgJMHB69ky62bd9o9VrF8h0Sho SjJr4KE56k6C2wOotfNFewEYkBE9+RyJkLIddRVnQkF+rbNdebDF3UuQUx7qwF8e9Jy4 f5pvls3koOjPJNZb2VxbU9WXcf8u0SsO/MHE5+/4Hk8+oyc36fyOrupXanI/vSEgQc7J /npAZONIl0N0JaOGachkwudkZp5mkdJLqipZm7XwwhgzihEPFcN0uWl23A8ohbs3XPtP Fdog== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:cc:to:subject:message-id:date:from:mime-version :dkim-signature; bh=LYs5rPa9oP57vlaop+owTExqq9+WAq3Isnwpx5mzptM=; b=wtKQa43f14a1tUNaACLhP4CEBE2SgWwzy1+qv+JZyAZd7i42odwRIKEhAKO29/Tj+k KEYDlKn6RQgRG8O9Fuutoydscn3lrA66X1FOMINbk03JbWlafwqRR0Tm3QRXY+7Lz8kC VU6N2Js+MOW7b+sPnIF6buOHcfL+mBM5F4ZiQYJdJ8fzDRKYo/9aA8nQKbs6SX0rCKpG ITDp0HmZa3uJ5FOqZS3fe9HtEZJY8bO4fvQi7jeVZsrsFRbwBx69ySgfg7c7Cu6hwrHg NtSs8fNvf85tzn0mEpsRUWWg+wyZLUwE1kinQNVRzMcEtyGhzeim+RjTtiZ1NJk+7Lfv 0thg== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@gmail.com header.s=20221208 header.b=HW0T0k3X; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com Return-Path: Received: from out1.vger.email (out1.vger.email. [2620:137:e000::1:20]) by mx.google.com with ESMTP id j68-20020a636e47000000b005443c85156bsi1148430pgc.222.2023.06.10.19.09.57; Sat, 10 Jun 2023 19:10:10 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) client-ip=2620:137:e000::1:20; Authentication-Results: mx.google.com; dkim=pass header.i=@gmail.com header.s=20221208 header.b=HW0T0k3X; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S230515AbjFKB7V (ORCPT + 99 others); Sat, 10 Jun 2023 21:59:21 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:56802 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S229677AbjFKB7U (ORCPT ); Sat, 10 Jun 2023 21:59:20 -0400 Received: from mail-lj1-x234.google.com (mail-lj1-x234.google.com [IPv6:2a00:1450:4864:20::234]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id D087CD9; Sat, 10 Jun 2023 18:59:18 -0700 (PDT) Received: by mail-lj1-x234.google.com with SMTP id 38308e7fff4ca-2b1afe57bdfso35244661fa.0; Sat, 10 Jun 2023 18:59:18 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20221208; t=1686448757; x=1689040757; h=cc:to:subject:message-id:date:from:mime-version:from:to:cc:subject :date:message-id:reply-to; bh=LYs5rPa9oP57vlaop+owTExqq9+WAq3Isnwpx5mzptM=; b=HW0T0k3XyB/TIhFtLRhqSaarGDJoXGHAAgFtPMcBHbX7mvZTEufbs6azhF0h9s7Uss uuWsjOeMEaYoTDBuiAtUyPsMg4PigUKVoDolYpGWM+eZB9jnjOVas7Xoah331Xh4tcuH 0+W5BiDS9wbYzilMO+Gb7yehs+0k55hTMSLqnO7WNh1yqPn5yZYQKdVBO3D0nd6mEe+c hLB02V2VKyevA/cV/se2m706JIdTZN1WJaXqXTYmN5ReARxhV0JtqzBRXjtjBc6a9pv/ HnFoSdhXK/4Bmdxq9L0VRyMMam1sPY6gbDwlPjBpQ5QaRh89bPw6Xq78zRBNKRragbpn SSzg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1686448757; x=1689040757; h=cc:to:subject:message-id:date:from:mime-version:x-gm-message-state :from:to:cc:subject:date:message-id:reply-to; bh=LYs5rPa9oP57vlaop+owTExqq9+WAq3Isnwpx5mzptM=; b=T3D6zMc0IsM2fSdc0kviumLdOXW8zv/mlBa7w1PiYHX16x6eq8UGZfE696sjz9KBfH 1ZYCSGoCrA4p56cMwDsvAIcvRq0LhbFeF21SXtmdpgnvv2G03tvDCWS100jaVuVSd438 jUEOzgFNlx7h7aJ2kAgghL0PCloatyu9q6pkY4920Ru/o26boSfzE3COtiNSwgzWAMMx nh2dI41N4XqsjvVisaICLSdRtEOsTXHM+N08Qnqk1a7+usnelV9aUIqovZplZjeYLFEc EpDUIAKpo/b+wRHkYA93TEsdKPrzmTpNXmMXLokGY28Bk/no4mSRWqrjwTg8NNtuJiP4 LgGQ== X-Gm-Message-State: AC+VfDyTyxO/4WfLIUs0C4NQmgCPiGvtMMdUrqyYzMKycw41jjeidKVe 8pbacbIH1uE8uwylNmCyUmm5LpzNbBYlF92q0KPnfGUvrTaqKA== X-Received: by 2002:ac2:4985:0:b0:4f3:a485:919a with SMTP id f5-20020ac24985000000b004f3a485919amr2188425lfl.57.1686448756747; Sat, 10 Jun 2023 18:59:16 -0700 (PDT) MIME-Version: 1.0 From: Steve French Date: Sat, 10 Jun 2023 20:59:05 -0500 Message-ID: Subject: [GIT PULL] ksmbd server fixes To: Linus Torvalds Cc: Namjae Jeon , LKML , CIFS Content-Type: text/plain; charset="UTF-8" X-Spam-Status: No, score=-2.1 required=5.0 tests=BAYES_00,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,FREEMAIL_FROM, RCVD_IN_DNSWL_NONE,SPF_HELO_NONE,SPF_PASS,T_SCC_BODY_TEXT_LINE autolearn=ham autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Please pull the following changes since commit 8828003759391029fc45c15ac346622cdae19b6d: Merge tag '6.4-rc4-smb3-server-fixes' of git://git.samba.org/ksmbd (2023-06-01 08:27:34 -0400) are available in the Git repository at: git://git.samba.org/ksmbd.git tags/6.4-rc5-smb3-server-fixes for you to fetch changes up to 1c1bcf2d3ea061613119b534f57507c377df20f9: ksmbd: validate smb request protocol id (2023-06-02 12:30:57 -0500) ---------------------------------------------------------------- Five smb3 server fixes, all also for stable - Fix four slab out of bounds warnings: improve checks for protocol id, and for small packet length, and for create context parsing, and for negotiate context parsing - Fix for incorrect dereferencing POSIX ACLs ---------------------------------------------------------------- Namjae Jeon (5): ksmbd: fix out-of-bound read in deassemble_neg_contexts() ksmbd: fix out-of-bound read in parse_lease_state() ksmbd: fix posix_acls and acls dereferencing possible ERR_PTR() ksmbd: check the validation of pdu_size in ksmbd_conn_handler_loop ksmbd: validate smb request protocol id fs/smb/server/connection.c | 17 +++++++++++++++-- fs/smb/server/oplock.c | 66 ++++++++++++++++++++++++------------------------------------------ fs/smb/server/smb2pdu.c | 13 ++++++------- fs/smb/server/smb_common.c | 14 +++++++++++++- fs/smb/server/smbacl.c | 4 ++-- fs/smb/server/vfs.c | 4 ++-- 6 files changed, 62 insertions(+), 56 deletions(-) -- Thanks, Steve