Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.kernel > #1286916

Re: [PATCH 1/2] drm: make drm_dev_set_unique() not use a format string

From Emil Velikov <emil.l.velikov@gmail.com>
Newsgroups linux.kernel
Subject Re: [PATCH 1/2] drm: make drm_dev_set_unique() not use a format string
Date 2015-12-09 00:30 +0100
Message-ID <qDzRM-nl-21@gated-at.bofh.it> (permalink)
References <qDyVI-8dx-3@gated-at.bofh.it>
Organization linux.* mail to news gateway

Show all headers | View raw


On 8 December 2015 at 22:12, Nicolas Iooss <nicolas.iooss_linux@m4x.org> wrote:
> drm_dev_set_unique() uses a format string to define the unique name of a
> device.  This feature is not used as currently all the calls to this
> function either use "%s" as a format string or directly use
> dev_name().
>
> Even though this second kind of call does not introduce security
> problems, because there cannot be "%" characters in dev_name() results,
> gcc issues a warning when building with -Wformat-security flag
> ("warning: format string is not a string literal (potentially
> insecure)").  This warning is useful to find real bugs like the one
> fixed by commit 3958b79266b1 ("configfs: fix kernel infoleak through
> user-controlled format string").  False positives which do not bring
> an extra value make the work of finding real bugs harder.
>
> Therefore remove the format-string feature from drm_dev_set_unique().
>
> Signed-off-by: Nicolas Iooss <nicolas.iooss_linux@m4x.org>
> ---
>  drivers/gpu/drm/drm_drv.c                   | 11 +++--------
>  drivers/gpu/drm/nouveau/nouveau_drm.c       |  2 +-
>  drivers/gpu/drm/rockchip/rockchip_drm_drv.c |  2 +-
>  include/drm/drmP.h                          |  2 +-
>  4 files changed, 6 insertions(+), 11 deletions(-)
>
> diff --git a/drivers/gpu/drm/drm_drv.c b/drivers/gpu/drm/drm_drv.c
> index 7dd6728dd092..20eaa0aae205 100644
> --- a/drivers/gpu/drm/drm_drv.c
> +++ b/drivers/gpu/drm/drm_drv.c
> @@ -797,7 +797,7 @@ EXPORT_SYMBOL(drm_dev_unregister);
>  /**
>   * drm_dev_set_unique - Set the unique name of a DRM device
>   * @dev: device of which to set the unique name
> - * @fmt: format string for unique name
> + * @name: unique name
>   *
>   * Sets the unique name of a DRM device using the specified format string and
>   * a variable list of arguments. Drivers can use this at driver probe time if
You might want to also update the above hunk :-)

-Emil
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/

Back to linux.kernel | Previous | NextPrevious in thread | Next in thread | Find similar | Unroll thread


Thread

[PATCH 1/2] drm: make drm_dev_set_unique() not use a format string Nicolas Iooss <nicolas.iooss_linux@m4x.org> - 2015-12-08 23:30 +0100
  Re: [PATCH 1/2] drm: make drm_dev_set_unique() not use a format string Emil Velikov <emil.l.velikov@gmail.com> - 2015-12-09 00:30 +0100
    Re: [PATCH 1/2] drm: make drm_dev_set_unique() not use a format  string Nicolas Iooss <nicolas.iooss_linux@m4x.org> - 2015-12-09 01:00 +0100
      Re: [PATCH 1/2] drm: make drm_dev_set_unique() not use a format  string Daniel Vetter <daniel@ffwll.ch> - 2015-12-11 09:20 +0100
        [PATCH v2 2/2] drm: use dev_name as default unique name in drm_dev_alloc() Nicolas Iooss <nicolas.iooss_linux@m4x.org> - 2015-12-11 11:30 +0100
        [PATCH v2 1/2] drm: make drm_dev_set_unique() not use a format string Nicolas Iooss <nicolas.iooss_linux@m4x.org> - 2015-12-11 11:30 +0100

csiph-web