Pablo Greco 40546a
From abf1be5d4639ca4b58d56633129a7cf1389b97f3 Mon Sep 17 00:00:00 2001
Pablo Greco 40546a
Message-Id: <abf1be5d4639ca4b58d56633129a7cf1389b97f3@dist-git>
Pablo Greco 40546a
From: John Ferlan <jferlan@redhat.com>
Pablo Greco 40546a
Date: Tue, 30 Jul 2019 16:04:52 +0200
Pablo Greco 40546a
Subject: [PATCH] util: Avoid possible error in virCommandMassClose
Pablo Greco 40546a
MIME-Version: 1.0
Pablo Greco 40546a
Content-Type: text/plain; charset=UTF-8
Pablo Greco 40546a
Content-Transfer-Encoding: 8bit
Pablo Greco 40546a
Pablo Greco 40546a
Avoid the chance that sysconf(_SC_OPEN_MAX) returns -1 and thus
Pablo Greco 40546a
would cause virBitmapNew would attempt to allocate a very large
Pablo Greco 40546a
bitmap.
Pablo Greco 40546a
Pablo Greco 40546a
Found by Coverity
Pablo Greco 40546a
Pablo Greco 40546a
Signed-off-by: John Ferlan <jferlan@redhat.com>
Pablo Greco 40546a
ACKed-by: Peter Krempa <pkrempa@redhat.com>
Pablo Greco 40546a
(cherry picked from commit 6ae4f4a4ceb123417b732e869d53099983ae8d3f)
Pablo Greco 40546a
Pablo Greco 40546a
Resolves: https://bugzilla.redhat.com/show_bug.cgi?id=1721434
Pablo Greco 40546a
Pablo Greco 40546a
Signed-off-by: Michal Privoznik <mprivozn@redhat.com>
Pablo Greco 40546a
Message-Id: <e17edd9e1f50630c019ec7206a0f15cd8c3e474a.1564495366.git.mprivozn@redhat.com>
Pablo Greco 40546a
Reviewed-by: Ján Tomko <jtomko@redhat.com>
Pablo Greco 40546a
---
Pablo Greco 40546a
 src/util/vircommand.c | 5 +++++
Pablo Greco 40546a
 1 file changed, 5 insertions(+)
Pablo Greco 40546a
Pablo Greco 40546a
diff --git a/src/util/vircommand.c b/src/util/vircommand.c
Pablo Greco 40546a
index dfc7e5428b..c53e3f47db 100644
Pablo Greco 40546a
--- a/src/util/vircommand.c
Pablo Greco 40546a
+++ b/src/util/vircommand.c
Pablo Greco 40546a
@@ -560,6 +560,11 @@ virCommandMassClose(virCommandPtr cmd,
Pablo Greco 40546a
      * Therefore we can safely allocate memory here (and transitively call
Pablo Greco 40546a
      * opendir/readdir) without a deadlock. */
Pablo Greco 40546a
 
Pablo Greco 40546a
+    if (openmax < 0) {
Pablo Greco 40546a
+        virReportSystemError(errno, "%s", _("sysconf(_SC_OPEN_MAX) failed"));
Pablo Greco 40546a
+        return -1;
Pablo Greco 40546a
+    }
Pablo Greco 40546a
+
Pablo Greco 40546a
     if (!(fds = virBitmapNew(openmax)))
Pablo Greco 40546a
         return -1;
Pablo Greco 40546a
 
Pablo Greco 40546a
-- 
Pablo Greco 40546a
2.22.0
Pablo Greco 40546a