From 83601f77bcfb4851a3917976732a6f899af0a80e Mon Sep 17 00:00:00 2001 From: Tomasz Zawadzki Date: Mon, 8 Mar 2021 10:09:32 -0500 Subject: [PATCH] CHANGELOG: add entry on iscsi_parse_params fix Add CHANGELOG entry for (f3fd56fc)lib/iscsi: return immediately from iscsi_parse_params if len is 0 Signed-off-by: Tomasz Zawadzki Change-Id: I96500e26dba231b4e5d60ae8f95011b071a78cd0 Reviewed-on: https://review.spdk.io/gerrit/c/spdk/spdk/+/6778 Tested-by: SPDK CI Jenkins Reviewed-by: Shuhei Matsumoto Reviewed-by: Reviewed-by: Jim Harris --- CHANGELOG.md | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/CHANGELOG.md b/CHANGELOG.md index b5358af47..0c1ca3070 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -42,6 +42,13 @@ Removed the `pci_whitelist`, `pci_blacklist` and `master_core` members of struct Removed the `config_file`, `max_delay_us`, `pci_whitelist` and `pci_blacklist` members of struct `spdk_app_opts`. +### iscsi + +A security vulnerability has been identified and fixed in the SPDK iSCSI target. +A TEXT PDU with no data, but CONTINUE flag set, would result in a NULL pointer dereference +and crash the SPDK iSCSI target process. All users of the SPDK iSCSI target +are recommended to update. All SPDK versions <= v21.01 are affected. + ### accel Two new accelerated crc32 functions 'spdk_accel_submit_crc32cv' and