cifs: integer overflow in parse_dacl()
authorDan Carpenter <dan.carpenter@oracle.com>
Wed, 11 Jan 2012 07:46:27 +0000 (10:46 +0300)
committerSteve French <smfrench@gmail.com>
Thu, 12 Jan 2012 19:17:36 +0000 (13:17 -0600)
commit7250170c9ed00f3b74b11b98afefab45020672dd
tree5e79741f1865a3aef840e68d7db9e7ed4d685b5a
parenta429638cac1e5c656818a45aaff78df7b743004e
cifs: integer overflow in parse_dacl()

On 32 bit systems num_aces * sizeof(struct cifs_ace *) could overflow
leading to a smaller ppace buffer than we expected.

Signed-off-by: Dan Carpenter <dan.carpenter@oracle.com>
Acked-by: Jeff Layton <jlayton@samba.org>
Signed-off-by: Steve French <smfrench@gmail.com>
fs/cifs/cifsacl.c