Received: by 2002:a25:4158:0:0:0:0:0 with SMTP id o85csp413984yba; Fri, 5 Apr 2019 09:07:37 -0700 (PDT) X-Google-Smtp-Source: APXvYqyAq5eK/tvlr6gWO0fTR1y5fjoWprYN/Uf9X0gYoIHPB7OWvTdodSvlsCPdVFRdGByJ/arb X-Received: by 2002:a63:ff66:: with SMTP id s38mr13068146pgk.120.1554480457410; Fri, 05 Apr 2019 09:07:37 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1554480457; cv=none; d=google.com; s=arc-20160816; b=i2sW1JHoaRTbr+8jbdGaGiCVY9IZf52MYgGPxKpthhxsl4Y9Rz21DPweIHSqQxRVtE E/E3yEs2dgqQaXeSP6hj5zqcaMY5KsXDn2FoRD7ADXC+KT6EF4cXJJ8QN760JV2UiDd1 RHPiYuG+hpx/+D+jdM1cAEmsM+gvKbl8Y2L6rU++JNZqIUfkLBlxZfa3aL+tVqM9bhv6 1aH+wEfpLt3GejZ445P51W9XtnCQeeN619l8wSbp8RWf6RD0OM0UrqlaOjZL+StQ7cTa yL+O2IJ4c8Qy7TfeGwyKsod8Tl/gvXmUypWnGy1Hm4eEXh8yxg3FUXIMr5zflPSraKrC R1Hw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-language :content-transfer-encoding:in-reply-to:mime-version:user-agent:date :message-id:from:references:cc:to:subject:dmarc-filter :dkim-signature:dkim-signature; bh=Y1SE70BQOG62sCBEE5XpnZHWvxdEoSMiGtihkTwZH28=; b=HB8MDT4vi+dr8EGP4Qsk+zdV4Qx7JiQziDAg2QUgjx6qktgLudas0c+wFzKDNYHo/W E2pDF2ZSqdciDGoTiCyCySUfeFC+KuCr+vuf6JSTjoSR1GwVOSxqMYgC2t72saP/VUvt 24HcsV7HG9+kS4807sw2glijhmfuGo0VwMDOiP0dON32KQGsXqnR3YNGn/jG9LJhfMm6 NHO+hBCm3kqcef8WZAIZoM8T66FTjHLg0nU++OJYo10q1opifdmVcnqG1DEv4L+LeXbR l5zLhE/40MnBFsrejALtu5863oYHr0AfwQDNCKbhJDr3Qdt3UtkLW4g3sAp6izYXuIK0 jSmQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@codeaurora.org header.s=default header.b=FpvK0kZt; dkim=pass header.i=@codeaurora.org header.s=default header.b=IRwKTNdR; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id a15si19261399pgd.166.2019.04.05.09.07.21; Fri, 05 Apr 2019 09:07:37 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@codeaurora.org header.s=default header.b=FpvK0kZt; dkim=pass header.i=@codeaurora.org header.s=default header.b=IRwKTNdR; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1731521AbfDEQGN (ORCPT + 99 others); Fri, 5 Apr 2019 12:06:13 -0400 Received: from smtp.codeaurora.org ([198.145.29.96]:55922 "EHLO smtp.codeaurora.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726135AbfDEQGM (ORCPT ); Fri, 5 Apr 2019 12:06:12 -0400 Received: by smtp.codeaurora.org (Postfix, from userid 1000) id 54A5D61157; Fri, 5 Apr 2019 16:06:10 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=codeaurora.org; s=default; t=1554480371; bh=CkcPhcFBFh7/48bli0XnotAJ4M6miOnul4y2lI16nPc=; h=Subject:To:Cc:References:From:Date:In-Reply-To:From; b=FpvK0kZt39Xwyc8WimYoxB7nVLEhBMUF2XgXMMThChB2th2YNlZzj16u7gPwwpQbb GeCqjxVlU8ifaJoRib6mdpl4DMcaIT7GBU5X8eT4geZt5+N69sL87BU04yU6LkzVdi terrrzp5iPPwPgNZH4bdGrevloDueliwF7zSrNdc= X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on pdx-caf-mail.web.codeaurora.org X-Spam-Level: X-Spam-Status: No, score=-2.7 required=2.0 tests=ALL_TRUSTED,BAYES_00, DKIM_INVALID,DKIM_SIGNED autolearn=no autolearn_force=no version=3.4.0 Received: from [10.204.79.83] (blr-c-bdr-fw-01_globalnat_allzones-outside.qualcomm.com [103.229.19.19]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) (Authenticated sender: mojha@smtp.codeaurora.org) by smtp.codeaurora.org (Postfix) with ESMTPSA id C916560F3E; Fri, 5 Apr 2019 16:06:06 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=codeaurora.org; s=default; t=1554480369; bh=CkcPhcFBFh7/48bli0XnotAJ4M6miOnul4y2lI16nPc=; h=Subject:To:Cc:References:From:Date:In-Reply-To:From; b=IRwKTNdR50/wFPzRwih1V+m9kJwvkYOGvxHTFeG5B7Ce4HgElvpQ5Y6mXm++531A7 p+gZGhP+FfhbeAAqwg1+lDO5+8nwRqP0K2wPoEFBNAddSGLgjchQ41f0prZLIwo//w alLygpFTfLQTD6R5lzUUBjmz73UsNqoUqA8Cga+4= DMARC-Filter: OpenDMARC Filter v1.3.2 smtp.codeaurora.org C916560F3E Authentication-Results: pdx-caf-mail.web.codeaurora.org; dmarc=none (p=none dis=none) header.from=codeaurora.org Authentication-Results: pdx-caf-mail.web.codeaurora.org; spf=none smtp.mailfrom=mojha@codeaurora.org Subject: Re: [PATCH][next] acpi/hmat: fix uninitialized pointer dereference on pointer 'target' To: Colin King , "Rafael J . Wysocki" , Len Brown , Greg Kroah-Hartman , Keith Busch , linux-acpi@vger.kernel.org Cc: kernel-janitors@vger.kernel.org, linux-kernel@vger.kernel.org References: <20190405141215.2079-1-colin.king@canonical.com> From: Mukesh Ojha Message-ID: <3cfa8f02-7fef-72ec-03c3-1acdcc8f0f89@codeaurora.org> Date: Fri, 5 Apr 2019 21:36:04 +0530 User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:60.0) Gecko/20100101 Thunderbird/60.6.1 MIME-Version: 1.0 In-Reply-To: <20190405141215.2079-1-colin.king@canonical.com> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit Content-Language: en-US Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On 4/5/2019 7:42 PM, Colin King wrote: > From: Colin Ian King > > The pointer 'target' is not initialized and is only assigned when the > ACPI_HMAT_MEMORY_PD_VALID bit in p->flags is set. There is a later null > check on target that leads to an uninitialized pointer read and > dereference when assigning target->processor_pxm when target contains a > non-null garbage value. Fix this by initializing targer to null. > > Fixes: 665ac7e92757 ("acpi/hmat: Register processor domain to its memory") > Addresses-Coverity: ("Uninitialized pointer read") > Signed-off-by: Colin Ian King Reviewed-by: Mukesh Ojha Cheers, -Mukesh > --- > drivers/acpi/hmat/hmat.c | 2 +- > 1 file changed, 1 insertion(+), 1 deletion(-) > > diff --git a/drivers/acpi/hmat/hmat.c b/drivers/acpi/hmat/hmat.c > index b7824a0309f7..b275016ff648 100644 > --- a/drivers/acpi/hmat/hmat.c > +++ b/drivers/acpi/hmat/hmat.c > @@ -366,7 +366,7 @@ static int __init hmat_parse_proximity_domain(union acpi_subtable_headers *heade > const unsigned long end) > { > struct acpi_hmat_proximity_domain *p = (void *)header; > - struct memory_target *target; > + struct memory_target *target = NULL; > > if (p->header.length != sizeof(*p)) { > pr_notice("HMAT: Unexpected address range header length: %d\n",