Commit 602e4f2da1 for qemu.org

commit 602e4f2da10ef642581cfcd5caf5d1534808caa2
Merge: 9e486201f8 0c2f2309cd
Author: Richard Henderson <richard.henderson@linaro.org>
Date:   Fri Oct 9 14:29:49 2026 +0200

    Merge tag 'pull-tpm-2026-10-08-1' of https://github.com/stefanberger/qemu-tpm into staging

    Merge tpm 2026/10/08 v1

    # -----BEGIN PGP SIGNATURE-----
    #
    # iQEzBAABCgAdFiEEuBi5yt+QicLVzsZrda1lgCoLQhEFAmrICMUACgkQda1lgCoL
    # QhHw8ggA1Jzzq9X3SkCigq6SgHVazZqv16V33DL6mRIPo3Pt7s39Mt8uD6h30L+0
    # LIzsL7o9lrH0hUiRHU/r6eGnQ0qs0bmAYWwVU8I3kOhyFW/qU5lH1ppkYvMY3hWQ
    # /XPk1V5Aq/Kv737MoS/JVV22VbInhQqjgU1OkdkO2pe95MLPWTP6B72tyd3FeuB6
    # 5gAyiDRRGZ0t+VTd5xZwMxN8olU7LXdhBVRqklPnVyKGb883A7A6GDQc5Ie4ijGt
    # YeCrmswgPdGB3JuAU7eas0VUUVm6fHoWn9lrcOu6R+mDyuJnDNz9487p0FE+AO2s
    # HPOmlC/KJb0vyg5x4lujF6tooycopw==
    # =4pQB
    # -----END PGP SIGNATURE-----
    # gpg: Signature made Thu 08 Oct 2026 11:19:01 PM CEST
    # gpg:                using RSA key B818B9CADF9089C2D5CEC66B75AD65802A0B4211
    # gpg: Good signature from "Stefan Berger <stefanb@linux.vnet.ibm.com>" [unknown]
    # gpg: WARNING: This key is not certified with a trusted signature!
    # gpg:          There is no indication that the signature belongs to the owner.
    # Primary key fingerprint: B818 B9CA DF90 89C2 D5CE  C66B 75AD 6580 2A0B 4211

    * tag 'pull-tpm-2026-10-08-1' of https://github.com/stefanberger/qemu-tpm:
      tests: Add tests with commands with bad length
      hw/tpm: crb: Consider response_buffer->len of received response
      hw/tpm: crb: Implement tpm_ppi_uninit and use it in tpm_crb_unrealize
      hw/tpm: crb: Avoid potential integer underflow
      hw/tpm: crb: Do not clear internal buffers when backend is busy
      hw/tpm: tis: Use uint32_t for len to avoid truncating size of command
      hw/tpm: tis: Only read from response buffer if rw_offset < len
      tpm_emulator: Reject sending commands smaller than the request header
      tpm_emulator: Reject TPM responses whose size is too small
      tpm_util: Pass TPMVersion to function writing fatal error response

    Signed-off-by: Richard Henderson <richard.henderson@linaro.org>