From e49bce20251ddcc251bac7a4160956ce9388cc14 Mon Sep 17 00:00:00 2001 From: Dmitry Kovalenko Date: Wed, 3 Sep 2014 15:11:57 +0400 Subject: [PATCH] [FIX] Prevent issue Change-Id: I0b39c2f283a3beb08cbfbb818e301252a40440ca Signed-off-by: Dmitry Kovalenko --- daemon/daemon.c | 2 ++ 1 file changed, 2 insertions(+) diff --git a/daemon/daemon.c b/daemon/daemon.c index e264f74..d232a68 100644 --- a/daemon/daemon.c +++ b/daemon/daemon.c @@ -792,6 +792,8 @@ static int controlSocketHandler(int efd) if (recv_len == -1 || recv_len == 0) return -11; else { + if (msg_head.len > RECV_BUF_MAX) + return -1; msg = malloc(MSG_CMD_HDR_LEN + msg_head.len); if (!msg) { LOGE("Cannot alloc msg\n"); -- 2.7.4