Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > linux.kernel > #1653498
| From | Andy Shevchenko <andy.shevchenko@gmail.com> |
|---|---|
| Newsgroups | linux.kernel |
| Subject | Re: [PATCH v2 1/7] gpio: mockup: improve the debugfs input sanitization |
| Date | 2017-05-30 21:00 +0200 |
| Message-ID | <tMUx3-2xi-17@gated-at.bofh.it> (permalink) |
| References | <tMLaq-54b-5@gated-at.bofh.it> <tMLaq-54b-15@gated-at.bofh.it> |
| Organization | linux.* mail to news gateway |
On Tue, May 30, 2017 at 11:58 AM, Bartosz Golaszewski <brgl@bgdev.pl> wrote: > We're currently only checking the first character of the input to the > debugfs event files, so a string like '0sdfdsf' is valid and indicates > a falling edge event. > > Be more strict and only allow '0', '1', '0\n' & '1\n'. > > While we're at it: move the sanitization code before the irq_enabled > check so that we indicate an error on invalid input even if nobody is > waiting for events. > - int val; > - char buf; > + int rv, val; > + rv = kstrtoint_from_user(usr_buf, size, 0, &val); > + if (rv) > + return rv; > + if (val != 0 && val != 1) Wouldn't be easier to have u8 rv; ret = kstrtu8_from_user(); if (ret >= 2) return ...; ? > + return -EINVAL; -- With Best Regards, Andy Shevchenko
Back to linux.kernel | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread
[PATCH v2 1/7] gpio: mockup: improve the debugfs input sanitization Bartosz Golaszewski <brgl@bgdev.pl> - 2017-05-30 11:00 +0200
Re: [PATCH v2 1/7] gpio: mockup: improve the debugfs input sanitization Andy Shevchenko <andy.shevchenko@gmail.com> - 2017-05-30 21:00 +0200
Re: [PATCH v2 1/7] gpio: mockup: improve the debugfs input sanitization Bartosz Golaszewski <brgl@bgdev.pl> - 2017-05-31 13:00 +0200
Re: [PATCH v2 1/7] gpio: mockup: improve the debugfs input sanitization Andy Shevchenko <andy.shevchenko@gmail.com> - 2017-05-31 20:10 +0200
csiph-web