Kernel Tree For Xiaomi 11 Lite NE 5G
In the API sir_validate_and_rectify_ies, the driver rectifies the RSN IE, if the AP hasnt filled the RSN capabilities in the beacon/probe response, but has filled the length of IE as extra 2 bytes meant for the RSN capabilities.The driver tries to repair these kind of frames and fills the last 2 bytes of RSN IE with default RSN capabilities, to prevent the failure of unpacking the IEs in unpack-core. But, the driver may write these default RSN capabilities into some other allocated memory, because the allocated memory is only the frame length, which would result in OOB write. Fix is to allocate some reserve bytes in the frame for these type of issues. Change-Id: I46c7301f3e40f84d2c68ec9ba38702baa6926306 CRs-Fixed: 2232542 |
||
---|---|---|
components | ||
core | ||
uapi/linux | ||
Android.mk | ||
Kbuild | ||
Kconfig | ||
Makefile | ||
README.txt |
This is CNSS WLAN Host Driver for products starting from iHelium