Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.kernel > #1365572

[PATCH] platform/x86: panasonic-laptop: set pcc after null device check to avoid null pointer dereference

From Colin King <colin.king@canonical.com>
Newsgroups linux.kernel
Subject [PATCH] platform/x86: panasonic-laptop: set pcc after null device check to avoid null pointer dereference
Date 2016-03-28 18:30 +0200
Message-ID <rhIdc-17a-7@gated-at.bofh.it> (permalink)
Organization linux.* mail to news gateway

Show all headers | View raw


From: Colin Ian King <colin.king@canonical.com>

acpi_pcc_hotkey_remove sanity checks to see if device is null, however,
this check is performed after we have already passed device into a call
to acpi_driver_data.  If device is null, then acpi_driver_data will produce
a null pointer dereference on device. The correct action is to sanity check
device, then assign pcc, then check if pcc is null.

Signed-off-by: Colin Ian King <colin.king@canonical.com>
---
 drivers/platform/x86/panasonic-laptop.c | 8 ++++++--
 1 file changed, 6 insertions(+), 2 deletions(-)

diff --git a/drivers/platform/x86/panasonic-laptop.c b/drivers/platform/x86/panasonic-laptop.c
index 3f87097..39c1ebc 100644
--- a/drivers/platform/x86/panasonic-laptop.c
+++ b/drivers/platform/x86/panasonic-laptop.c
@@ -651,9 +651,13 @@ out_hotkey:
 
 static int acpi_pcc_hotkey_remove(struct acpi_device *device)
 {
-	struct pcc_acpi *pcc = acpi_driver_data(device);
+	struct pcc_acpi *pcc;
+
+	if (!device)
+		return -EINVAL;
 
-	if (!device || !pcc)
+	pcc = acpi_driver_data(device);
+	if (!pcc)
 		return -EINVAL;
 
 	sysfs_remove_group(&device->dev.kobj, &pcc_attr_group);
-- 
2.7.4

Back to linux.kernel | Previous | NextNext in thread | Find similar | Unroll thread


Thread

[PATCH] platform/x86: panasonic-laptop: set pcc after null device check to avoid null pointer dereference Colin King <colin.king@canonical.com> - 2016-03-28 18:30 +0200
  Re: [PATCH] platform/x86: panasonic-laptop: set pcc after null  device check to avoid null pointer dereference Harald Welte <laforge@gnumonks.org> - 2016-03-28 23:40 +0200

csiph-web