Skip to content

Commit 8d82557

Browse files
azeemshaikh38kees
authored andcommitted
scsi: bnx2i: Replace all non-returning strlcpy with strscpy
strlcpy() reads the entire source buffer first. This read may exceed the destination size limit. This is both inefficient and can lead to linear read overflows if a source string is not NUL-terminated [1]. In an effort to remove strlcpy() completely [2], replace strlcpy() here with strscpy(). No return values were used, so direct replacement is safe. [1] https://www.kernel.org/doc/html/latest/process/deprecated.html#strlcpy [2] KSPP#89 Signed-off-by: Azeem Shaikh <azeemshaikh38@gmail.com> Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> Link: https://lore.kernel.org/r/20230517143130.1519941-1-azeemshaikh38@gmail.com
1 parent 2f4113b commit 8d82557

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

drivers/scsi/bnx2i/bnx2i_init.c

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -383,7 +383,7 @@ int bnx2i_get_stats(void *handle)
383383
if (!stats)
384384
return -ENOMEM;
385385

386-
strlcpy(stats->version, DRV_MODULE_VERSION, sizeof(stats->version));
386+
strscpy(stats->version, DRV_MODULE_VERSION, sizeof(stats->version));
387387
memcpy(stats->mac_add1 + 2, hba->cnic->mac_addr, ETH_ALEN);
388388

389389
stats->max_frame_size = hba->netdev->mtu;

0 commit comments

Comments
 (0)