Re: Prior report for the nvmet-tcp unbounded SGL length fix in 7.3

Shivam Kumar <[email protected]>
Newsgroups org.infradead.lists.linux-nvme
Message-ID <CA+ysrSJrZYi=QgdA5Ami160RegtNfODLcSrfN+EgDRU3JpcvUQ@mail.gmail.com>
On Mon, Aug 24, 2026 at 11:42 AM Shivam Kumar
<[email protected]> wrote:
>
> Hi all,
>
> I originally reported this issue to [email protected] on 2026-03-17
> (Cc Sagi), Message-ID:
> <CA+ysrSJUFi8cHzU8g9Nrbbkcuo0F7vh8CMn3ht15gSk3BbK45A@mail.gmail.com>
> and posted the first patch for it in this thread,
> "[PATCH] nvmet-tcp: bound sgl->length check in nvmet_tcp_map_data()"
> (2026-03-19).
>
> Commit 4a3f002 ("nvmet-tcp: bound SGL data length before allocating
> command buffers"), merged for 7.3, adds the same NVMET_TCP_MAXH2CDATA
> bound with the same status code.
>
> These things happen independently, and I'm glad the issue is fixed.
> Would it be possible to get some acknowledgement for the original
> report?
>
> Thanks,
> Shivam

Adding Maurizio and Christoph, who reviewed the original patch.

To be clear, "this thread" above refers to the March thread, not this
one, I meant to send this as a reply there. Link for reference:

https://lore.kernel.org/all/CA+ysrS+fsJQ+4x7jHoSEX_tiYRQJC8LEhuH2stKA6Q4qSK-MWA@mail.gmail.com/
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.