Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > linux.kernel > #1628960
| From | Pan Bian <bianpan201602@163.com> |
|---|---|
| Newsgroups | linux.kernel |
| Subject | [PATCH 1/1] wan: pc300too: abort path on failure |
| Date | 2017-04-23 11:40 +0200 |
| Message-ID | <tzm9R-6K4-21@gated-at.bofh.it> (permalink) |
| Organization | linux.* mail to news gateway |
From: Pan Bian <bianpan2016@163.com>
In function pc300_pci_init_one(), on the ioremap error path, function
pc300_pci_remove_one() is called to free the allocated memory. However,
the path is not terminated, and the freed memory will be used later,
resulting in use-after-free bugs. This path fixes the bug.
Signed-off-by: Pan Bian <bianpan2016@163.com>
---
drivers/net/wan/pc300too.c | 1 +
1 file changed, 1 insertion(+)
diff --git a/drivers/net/wan/pc300too.c b/drivers/net/wan/pc300too.c
index e1dd1ec..b9b934b 100644
--- a/drivers/net/wan/pc300too.c
+++ b/drivers/net/wan/pc300too.c
@@ -346,6 +346,7 @@ static int pc300_pci_init_one(struct pci_dev *pdev,
card->rambase == NULL) {
pr_err("ioremap() failed\n");
pc300_pci_remove_one(pdev);
+ return -ENOMEM;
}
/* PLX PCI 9050 workaround for local configuration register read bug */
--
1.9.1
Back to linux.kernel | Previous | Next — Next in thread | Find similar | Unroll thread
[PATCH 1/1] wan: pc300too: abort path on failure Pan Bian <bianpan201602@163.com> - 2017-04-23 11:40 +0200 Re: [PATCH 1/1] wan: pc300too: abort path on failure David Miller <davem@davemloft.net> - 2017-04-24 22:00 +0200
csiph-web