Skip to content

Fix #971: Add length validation for CFE_TIME_DATA_CMD_MID to prevent OOB read#977

Open
linerfan5114 wants to merge 1 commit into
nasa:mainfrom
linerfan5114:fix-971-cfe-time-data-length-validation
Open

Fix #971: Add length validation for CFE_TIME_DATA_CMD_MID to prevent OOB read#977
linerfan5114 wants to merge 1 commit into
nasa:mainfrom
linerfan5114:fix-971-cfe-time-data-length-validation

Conversation

@linerfan5114
Copy link
Copy Markdown

Closes #971

  • Added CFE_TIME_VerifyCmdLength check before processing CFE_TIME_DATA_CMD_MID
  • Prevents OOB read when malformed/truncated packet is received
  • Uses existing VerifyCmdLength helper, consistent with other command handlers

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Missing length validation for CFE_TIME_DATA_CMD_MID can cause out-of-bounds read

1 participant