Skip to content
  • Gerd Hoffmann's avatar
    05a40b17
    usb: limit combined packets to 1 MiB (CVE-2021-3527) · 05a40b17
    Gerd Hoffmann authored
    
    
    usb-host and usb-redirect try to batch bulk transfers by combining many
    small usb packets into a single, large transfer request, to reduce the
    overhead and improve performance.
    
    This patch adds a size limit of 1 MiB for those combined packets to
    restrict the host resources the guest can bind that way.
    
    Signed-off-by: default avatarGerd Hoffmann <kraxel@redhat.com>
    Message-Id: <20210503132915.2335822-6-kraxel@redhat.com>
    05a40b17
    usb: limit combined packets to 1 MiB (CVE-2021-3527)
    Gerd Hoffmann authored
    
    
    usb-host and usb-redirect try to batch bulk transfers by combining many
    small usb packets into a single, large transfer request, to reduce the
    overhead and improve performance.
    
    This patch adds a size limit of 1 MiB for those combined packets to
    restrict the host resources the guest can bind that way.
    
    Signed-off-by: default avatarGerd Hoffmann <kraxel@redhat.com>
    Message-Id: <20210503132915.2335822-6-kraxel@redhat.com>
Loading