1
linux/drivers/staging/hv
Julia Lawall fe3e593601 drivers/staging/hv/blkvsc_drv.c: eliminate NULL pointer dereference
In this code, blkvsc_req is allocated in the cache blkdev->request_pool,
but freed in the first case to the cache blkvsc_req->dev->request_pool.
blkvsc_req->dev is subsequently initialized to blkdev, making these the
same at the second call to kmem_cache_free.  But at the point of the first
call, blkvsc_req->dev is NULL.  The second call is changed too, for
uniformity.

The semantic patch that fixes this problem is as follows:
(http://coccinelle.lip6.fr/)

// <smpl>
@@
expression x,e,e1,e2,e3;
@@

x = \(kmem_cache_alloc\|kmem_cache_zalloc\)(e1,e2)
... when != x = e
(
kmem_cache_free(e1,x);
|
?-kmem_cache_free(e3,x);
+kmem_cache_free(e1,x);
)
// </smpl>

Signed-off-by: Julia Lawall <julia@diku.dk>
Cc: KY Srinivasan <kys@microsoft.com>
Cc: Hank Janssen <hjanssen@microsoft.com>
Cc: Haiyang Zhang <haiyangz@microsoft.com>
Signed-off-by: Greg Kroah-Hartman <gregkh@suse.de>
2011-08-02 16:12:49 -07:00
..
tools treewide: remove duplicate includes 2011-06-20 16:08:19 +02:00
blkvsc_drv.c drivers/staging/hv/blkvsc_drv.c: eliminate NULL pointer dereference 2011-08-02 16:12:49 -07:00
channel_mgmt.c Staging: hv: vmbus: Increase the timeout value in the vmbus driver 2011-07-05 08:59:23 -07:00
channel.c Staging: hv: vmbus: Increase the timeout value in the vmbus driver 2011-07-05 08:59:23 -07:00
connection.c Staging: hv: vmbus: Increase the timeout value in the vmbus driver 2011-07-05 08:59:23 -07:00
hv_kvp.c
hv_kvp.h
hv_mouse.c Merge branch 'staging-next' of git://git.kernel.org/pub/scm/linux/kernel/git/gregkh/staging-2.6 2011-07-25 23:26:34 -07:00
hv_timesource.c Remove unneeded version.h include from drivers/staging/hv/hv_timesource.c 2011-07-05 09:10:47 -07:00
hv_util.c
hv.c
hyperv_net.h
hyperv_storage.h
hyperv_vmbus.h
hyperv.h
Kconfig
Makefile
netvsc_drv.c staging: hv: fix some white spaces in netvsc driver 2011-07-05 09:10:47 -07:00
netvsc.c staging: hv: fix some white spaces in netvsc driver 2011-07-05 09:10:47 -07:00
ring_buffer.c
rndis_filter.c Staging: hv: netvsc: Increase the timeout value in the netvsc driver 2011-07-05 08:59:23 -07:00
storvsc_drv.c Staging: hv: storvsc: Increase the timeout value in the storvsc driver 2011-07-05 08:59:24 -07:00
storvsc.c Staging: hv: storvsc: Increase the timeout value in the storvsc driver 2011-07-05 08:59:24 -07:00
TODO
vmbus_drv.c Staging: hv: vmbus: Properly handle the error in hv_acpi_init() 2011-07-05 08:59:24 -07:00