Blame SOURCES/edk2-CryptoPkg-Crt-satisfy-inet_pton.c-dependencies-CVE-2.patch

1dc609
From 1ab1024f94401300fe9a1d5cdce6c15a2b091e02 Mon Sep 17 00:00:00 2001
1dc609
From: Laszlo Ersek <lersek@redhat.com>
1dc609
Date: Mon, 2 Dec 2019 12:31:50 +0100
1dc609
Subject: [PATCH 4/9] CryptoPkg/Crt: satisfy "inet_pton.c" dependencies
1dc609
 (CVE-2019-14553)
1dc609
MIME-Version: 1.0
1dc609
Content-Type: text/plain; charset=UTF-8
1dc609
Content-Transfer-Encoding: 8bit
1dc609
1dc609
RH-Author: Laszlo Ersek <lersek@redhat.com>
1dc609
Message-id: <20191117220052.15700-5-lersek@redhat.com>
1dc609
Patchwork-id: 92453
1dc609
O-Subject: [RHEL-8.2.0 edk2 PATCH 4/9] CryptoPkg/Crt: satisfy "inet_pton.c" dependencies (CVE-2019-14553)
1dc609
Bugzilla: 1536624
1dc609
RH-Acked-by: Philippe Mathieu-Daudé <philmd@redhat.com>
1dc609
RH-Acked-by: Vitaly Kuznetsov <vkuznets@redhat.com>
1dc609
1dc609
In a later patch in this series, we're going to resurrect "inet_pton.c"
1dc609
(originally from the StdLib package). That source file has a number of
1dc609
standard C and BSD socket dependencies. Provide those dependencies here:
1dc609
1dc609
- The header files below will simply #include <CrtLibSupport.h>:
1dc609
1dc609
  - arpa/inet.h
1dc609
  - arpa/nameser.h
1dc609
  - netinet/in.h
1dc609
  - sys/param.h
1dc609
  - sys/socket.h
1dc609
1dc609
- EAFNOSUPPORT comes from "StdLib/Include/errno.h", at commit
1dc609
  e2d3a25f1a31; which is the commit immediately preceding the removal of
1dc609
  StdLib from edk2 (964f432b9b0a).
1dc609
1dc609
  Note that the other error macro, which we alread #define, namely EINVAL,
1dc609
  has a value (22) that also matches "StdLib/Include/errno.h".
1dc609
1dc609
- The AF_INET and AF_INET6 address family macros come from
1dc609
  "StdLib/Include/sys/socket.h".
1dc609
1dc609
- The NS_INT16SZ, NS_INADDRSZ and NS_IN6ADDRSZ macros come from
1dc609
  "StdLib/Include/arpa/nameser.h".
1dc609
1dc609
- The "u_int" and "u_char" types come from "StdLib/Include/sys/types.h".
1dc609
1dc609
Cc: David Woodhouse <dwmw2@infradead.org>
1dc609
Cc: Jian J Wang <jian.j.wang@intel.com>
1dc609
Cc: Jiaxin Wu <jiaxin.wu@intel.com>
1dc609
Cc: Sivaraman Nainar <sivaramann@amiindia.co.in>
1dc609
Cc: Xiaoyu Lu <xiaoyux.lu@intel.com>
1dc609
Ref: https://bugzilla.tianocore.org/show_bug.cgi?id=960
1dc609
CVE: CVE-2019-14553
1dc609
Signed-off-by: Laszlo Ersek <lersek@redhat.com>
1dc609
Reviewed-by: Jian J Wang <jian.j.wang@intel.com>
1dc609
Reviewed-by: Jiaxin Wu <jiaxin.wu@intel.com>
1dc609
(cherry picked from commit 2ac41c12c0d4b3d3ee8f905ab80da019e784de00)
1dc609
---
1dc609
 CryptoPkg/Library/Include/CrtLibSupport.h | 16 ++++++++++++++++
1dc609
 CryptoPkg/Library/Include/arpa/inet.h     |  9 +++++++++
1dc609
 CryptoPkg/Library/Include/arpa/nameser.h  |  9 +++++++++
1dc609
 CryptoPkg/Library/Include/netinet/in.h    |  9 +++++++++
1dc609
 CryptoPkg/Library/Include/sys/param.h     |  9 +++++++++
1dc609
 CryptoPkg/Library/Include/sys/socket.h    |  9 +++++++++
1dc609
 6 files changed, 61 insertions(+)
1dc609
 create mode 100644 CryptoPkg/Library/Include/arpa/inet.h
1dc609
 create mode 100644 CryptoPkg/Library/Include/arpa/nameser.h
1dc609
 create mode 100644 CryptoPkg/Library/Include/netinet/in.h
1dc609
 create mode 100644 CryptoPkg/Library/Include/sys/param.h
1dc609
 create mode 100644 CryptoPkg/Library/Include/sys/socket.h
1dc609
1dc609
diff --git a/CryptoPkg/Library/Include/CrtLibSupport.h b/CryptoPkg/Library/Include/CrtLibSupport.h
1dc609
index b90da20..e603fad 100644
1dc609
--- a/CryptoPkg/Library/Include/CrtLibSupport.h
1dc609
+++ b/CryptoPkg/Library/Include/CrtLibSupport.h
1dc609
@@ -74,6 +74,7 @@ SPDX-License-Identifier: BSD-2-Clause-Patent
1dc609
 // Definitions for global constants used by CRT library routines
1dc609
 //
1dc609
 #define EINVAL       22               /* Invalid argument */
1dc609
+#define EAFNOSUPPORT 47               /* Address family not supported by protocol family */
1dc609
 #define INT_MAX      0x7FFFFFFF       /* Maximum (signed) int value */
1dc609
 #define LONG_MAX     0X7FFFFFFFL      /* max value for a long */
1dc609
 #define LONG_MIN     (-LONG_MAX-1)    /* min value for a long */
1dc609
@@ -81,13 +82,28 @@ SPDX-License-Identifier: BSD-2-Clause-Patent
1dc609
 #define CHAR_BIT     8                /* Number of bits in a char */
1dc609
 
1dc609
 //
1dc609
+// Address families.
1dc609
+//
1dc609
+#define AF_INET   2     /* internetwork: UDP, TCP, etc. */
1dc609
+#define AF_INET6  24    /* IP version 6 */
1dc609
+
1dc609
+//
1dc609
+// Define constants based on RFC0883, RFC1034, RFC 1035
1dc609
+//
1dc609
+#define NS_INT16SZ    2   /*%< #/bytes of data in a u_int16_t */
1dc609
+#define NS_INADDRSZ   4   /*%< IPv4 T_A */
1dc609
+#define NS_IN6ADDRSZ  16  /*%< IPv6 T_AAAA */
1dc609
+
1dc609
+//
1dc609
 // Basic types mapping
1dc609
 //
1dc609
 typedef UINTN          size_t;
1dc609
+typedef UINTN          u_int;
1dc609
 typedef INTN           ssize_t;
1dc609
 typedef INT32          time_t;
1dc609
 typedef UINT8          __uint8_t;
1dc609
 typedef UINT8          sa_family_t;
1dc609
+typedef UINT8          u_char;
1dc609
 typedef UINT32         uid_t;
1dc609
 typedef UINT32         gid_t;
1dc609
 
1dc609
diff --git a/CryptoPkg/Library/Include/arpa/inet.h b/CryptoPkg/Library/Include/arpa/inet.h
1dc609
new file mode 100644
1dc609
index 0000000..988e4e0
1dc609
--- /dev/null
1dc609
+++ b/CryptoPkg/Library/Include/arpa/inet.h
1dc609
@@ -0,0 +1,9 @@
1dc609
+/** @file
1dc609
+  Include file to support building third-party standard C / BSD sockets code.
1dc609
+
1dc609
+  Copyright (C) 2019, Red Hat, Inc.
1dc609
+
1dc609
+  SPDX-License-Identifier: BSD-2-Clause-Patent
1dc609
+**/
1dc609
+
1dc609
+#include <CrtLibSupport.h>
1dc609
diff --git a/CryptoPkg/Library/Include/arpa/nameser.h b/CryptoPkg/Library/Include/arpa/nameser.h
1dc609
new file mode 100644
1dc609
index 0000000..988e4e0
1dc609
--- /dev/null
1dc609
+++ b/CryptoPkg/Library/Include/arpa/nameser.h
1dc609
@@ -0,0 +1,9 @@
1dc609
+/** @file
1dc609
+  Include file to support building third-party standard C / BSD sockets code.
1dc609
+
1dc609
+  Copyright (C) 2019, Red Hat, Inc.
1dc609
+
1dc609
+  SPDX-License-Identifier: BSD-2-Clause-Patent
1dc609
+**/
1dc609
+
1dc609
+#include <CrtLibSupport.h>
1dc609
diff --git a/CryptoPkg/Library/Include/netinet/in.h b/CryptoPkg/Library/Include/netinet/in.h
1dc609
new file mode 100644
1dc609
index 0000000..988e4e0
1dc609
--- /dev/null
1dc609
+++ b/CryptoPkg/Library/Include/netinet/in.h
1dc609
@@ -0,0 +1,9 @@
1dc609
+/** @file
1dc609
+  Include file to support building third-party standard C / BSD sockets code.
1dc609
+
1dc609
+  Copyright (C) 2019, Red Hat, Inc.
1dc609
+
1dc609
+  SPDX-License-Identifier: BSD-2-Clause-Patent
1dc609
+**/
1dc609
+
1dc609
+#include <CrtLibSupport.h>
1dc609
diff --git a/CryptoPkg/Library/Include/sys/param.h b/CryptoPkg/Library/Include/sys/param.h
1dc609
new file mode 100644
1dc609
index 0000000..988e4e0
1dc609
--- /dev/null
1dc609
+++ b/CryptoPkg/Library/Include/sys/param.h
1dc609
@@ -0,0 +1,9 @@
1dc609
+/** @file
1dc609
+  Include file to support building third-party standard C / BSD sockets code.
1dc609
+
1dc609
+  Copyright (C) 2019, Red Hat, Inc.
1dc609
+
1dc609
+  SPDX-License-Identifier: BSD-2-Clause-Patent
1dc609
+**/
1dc609
+
1dc609
+#include <CrtLibSupport.h>
1dc609
diff --git a/CryptoPkg/Library/Include/sys/socket.h b/CryptoPkg/Library/Include/sys/socket.h
1dc609
new file mode 100644
1dc609
index 0000000..988e4e0
1dc609
--- /dev/null
1dc609
+++ b/CryptoPkg/Library/Include/sys/socket.h
1dc609
@@ -0,0 +1,9 @@
1dc609
+/** @file
1dc609
+  Include file to support building third-party standard C / BSD sockets code.
1dc609
+
1dc609
+  Copyright (C) 2019, Red Hat, Inc.
1dc609
+
1dc609
+  SPDX-License-Identifier: BSD-2-Clause-Patent
1dc609
+**/
1dc609
+
1dc609
+#include <CrtLibSupport.h>
1dc609
-- 
1dc609
1.8.3.1
1dc609