)]}'
{
  "commit": "090507157f3bc43dd925fda50f8aca7d03b616b6",
  "tree": "9663be82ffcdfb6036c9138a94bc966e63d077af",
  "parents": [
    "597136ab70a6dccba5c40ee6eed88e881412429b"
  ],
  "author": {
    "name": "Mark Salyzyn",
    "email": "Mark_Salyzyn@adaptec.com",
    "time": "Wed May 28 15:32:55 2008 -0400"
  },
  "committer": {
    "name": "James Bottomley",
    "email": "James.Bottomley@HansenPartnership.com",
    "time": "Sat Jul 12 08:22:24 2008 -0500"
  },
  "message": "[SCSI] aacraid: prevent copy_from_user() BUG!\n\nSeen:\n\n\tkernel BUG at arch/i386/lib/usercopy.c:872\n\nunder a 2.6.18-8.el5 kernel. Traced it to a garbage-in/garbage-out\nioctl condition in the aacraid driver.\n\nAdaptec\u0027s special ioctl scb passthrough needs to check the validity of\nthe individual scatter gather count fields to the maximum the adapter\nsupports. Doing so will have the side effect of preventing\ncopy_from_user() from bugging out while populating the dma buffers.\nThis is a hardening effort, issue was triggered by an errant version\nof the management tools and thus the BUG should not be seen in the\nfield.\n\n[jejb: fixed up compile failure]\nSigned-off-by: Mark Salyzyn \u003caacraid@adaptec.com\u003e\nSigned-off-by: James Bottomley \u003cJames.Bottomley@HansenPartnership.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "5fd83deab36ca6f1bf0834c83e4714fae63b124a",
      "old_mode": 33188,
      "old_path": "drivers/scsi/aacraid/commctrl.c",
      "new_id": "a7355260cfcfc4d15b0354ab07dc90ad41761407",
      "new_mode": 33188,
      "new_path": "drivers/scsi/aacraid/commctrl.c"
    }
  ]
}
