[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [QEMU-SECURITY] Out-of-bounds read in xlnx_dp_read
From: |
Qiang Liu |
Subject: |
Re: [QEMU-SECURITY] Out-of-bounds read in xlnx_dp_read |
Date: |
Mon, 12 Jul 2021 14:45:42 +0800 |
On Mon, Jul 12, 2021 at 1:33 PM P J P <pjp@fedoraproject.org> wrote:
>
> Hello Qiang, Alistair
>
> On Sun, Jul 11, 2021, at 6:17 PM, Qiang Liu wrote:
> > On Fri, Jul 9, 2021 at 1:47 PM P J P <pjp@fedoraproject.org> wrote:
> >>> * Is it reproducible with the KVM virtualization support?
> >
> > No, it is not. I got an aarch64 host yesterday and tested this
> > machine. The answer is no.
>
> * Okay. Thank you for the confirmation.
>
> On Monday, 12 July, 2021, 08:21:49 am IST, Alistair <alistair@alistair23.me>
> wrote:
> >As it doesn't effect KVM I don't think we need a CVE or to merge the patch
> >quietly,
> >so it should be ok to just send to the list. Someone let me know if they
> >think otherwise though.
>
> * Right. Since it does not affect KVM virtualization use case, it is not
> treated as a security issue.
> No CVE requried.
>
> * Nonetheless, we should fix it as a regular bug. It is okay to send the
> proposed patch
> to the qemu-devel list for further review.
I can do this as soon as possible.
Best,
Qiang