Received: by 2002:a05:6a10:1287:0:0:0:0 with SMTP id d7csp713277pxv; Thu, 15 Jul 2021 14:12:13 -0700 (PDT) X-Google-Smtp-Source: ABdhPJwp5Cmwc9CjNMoSXXCqd+AqYPFdzcejgcNdpCf31x0/5voFGC+w8ZVNERbnM4b/1660j1fw X-Received: by 2002:a17:906:5a98:: with SMTP id l24mr7796819ejq.90.1626383532963; Thu, 15 Jul 2021 14:12:12 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1626383532; cv=none; d=google.com; s=arc-20160816; b=0Cl+wMi+wKM5fAsRlCRB3DU48aXPZD9du3nTkNul6cPRbJmLZ0nvtblGDXMx5YUcjJ Kc/atFKU1DP+xNNa8yyIVIu9aXrUHBRdFO3mTumvFYRoPUmIDkri1z2GcSDUnBmtAMOY f23ivd4mmt0sOpw7rht917HX1OHvQ6lKLCxWt7CSBQ4l0n3d0a3LxPI5vljQqjDMqFnj Z2Yh8Hd01RqA9yuU0a5klVfdbPw1Khman4b/TY4E4FxP06Pxjq18lgmHORVz82IVoODC W++mn6yF2WGkCZ6MzCqwGBGwjBKex3U0dC1pTRYnTb9a1hOnygClJwqfAPULWnidRlqf OWpQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:content-transfer-encoding:mime-version :user-agent:references:in-reply-to:message-id:date:subject:cc:to :from:dkim-signature; bh=00uuY0i6MwTApYEXCg9x3GWsDLwpRD8nNum0nqSHeC0=; b=rPWoFeUS5FiQcYDzhFucuPwig1yZPYLfDjBRWbnem0J5L0sZTXvTZGbz5BLoOPXiQU 0Co8CoLqB5G+HgKvGTuJ5Jl6IZp0RdfRESRfmnpYQZo6aOI0PqhKQEDZ5FaOQ78svc25 En1I4WKXvrlt+PHp/Ck5AguszDlfU4Pe/bmC8jDxHvPzgMPdxMr5WcP1s22MA8nDhqa3 0gMEfIwnUG0TifPu6gGdUWdXsKvW5rdkzYZ3qYa6ks2EMe3w0CBSfu0E6b17xMyMyAod Cfa2MDlwt2z0ZwAPiHvXYlJ0GwuaMbR0tKM1S5+sib/oovjDDgURAPtT2TNqKNcKAdd2 8Wqg== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@linuxfoundation.org header.s=korg header.b=rIZ8WWXH; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=linuxfoundation.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id t1si8205556edr.453.2021.07.15.14.11.49; Thu, 15 Jul 2021 14:12:12 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@linuxfoundation.org header.s=korg header.b=rIZ8WWXH; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=linuxfoundation.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1344924AbhGOTag (ORCPT + 99 others); Thu, 15 Jul 2021 15:30:36 -0400 Received: from mail.kernel.org ([198.145.29.99]:49976 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S244048AbhGOTKg (ORCPT ); Thu, 15 Jul 2021 15:10:36 -0400 Received: by mail.kernel.org (Postfix) with ESMTPSA id 282EE613D1; Thu, 15 Jul 2021 19:07:41 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=linuxfoundation.org; s=korg; t=1626376061; bh=+DqxFN9ITQT8/uYsw9hTN5wttBWimqS6cfsrA3DFqjI=; h=From:To:Cc:Subject:Date:In-Reply-To:References:From; b=rIZ8WWXHFL7iR2/8GJnWUpKh7tWyAD7NVuaTKf78QwHq81DlxYo+L/9l7qK8Mihn9 bABBDlwbJX/XrpTYlNojfx0gF5iiXxfFuHvZm3bG4rMs7ngOEk429oiK9oi1JLw1f7 i4A6FS78w3VepJEAZBvQNMNJmaJglqlgQT7v7pjY= From: Greg Kroah-Hartman To: linux-kernel@vger.kernel.org Cc: Greg Kroah-Hartman , stable@vger.kernel.org, Radim Pavlik , Linus Walleij , Sasha Levin Subject: [PATCH 5.13 073/266] pinctrl: mcp23s08: fix race condition in irq handler Date: Thu, 15 Jul 2021 20:37:08 +0200 Message-Id: <20210715182627.048814039@linuxfoundation.org> X-Mailer: git-send-email 2.32.0 In-Reply-To: <20210715182613.933608881@linuxfoundation.org> References: <20210715182613.933608881@linuxfoundation.org> User-Agent: quilt/0.66 MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org From: Radim Pavlik [ Upstream commit 897120d41e7afd9da435cb00041a142aeeb53c07 ] Checking value of MCP_INTF in mcp23s08_irq suggests that the handler may be called even when there is no interrupt pending. But the actual interrupt could happened between reading MCP_INTF and MCP_GPIO. In this situation we got nothing from MCP_INTF, but the event gets acknowledged on the expander by reading MCP_GPIO. This leads to losing events. Fix the problem by not reading any register until we see something in MCP_INTF. The error was reproduced and fix tested on MCP23017. Signed-off-by: Radim Pavlik Link: https://lore.kernel.org/r/AM7PR06MB6769E1183F68DEBB252F665ABA3E9@AM7PR06MB6769.eurprd06.prod.outlook.com Signed-off-by: Linus Walleij Signed-off-by: Sasha Levin --- drivers/pinctrl/pinctrl-mcp23s08.c | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/drivers/pinctrl/pinctrl-mcp23s08.c b/drivers/pinctrl/pinctrl-mcp23s08.c index ce2d8014b7e0..799d596a1a4b 100644 --- a/drivers/pinctrl/pinctrl-mcp23s08.c +++ b/drivers/pinctrl/pinctrl-mcp23s08.c @@ -351,6 +351,11 @@ static irqreturn_t mcp23s08_irq(int irq, void *data) if (mcp_read(mcp, MCP_INTF, &intf)) goto unlock; + if (intf == 0) { + /* There is no interrupt pending */ + return IRQ_HANDLED; + } + if (mcp_read(mcp, MCP_INTCAP, &intcap)) goto unlock; @@ -368,11 +373,6 @@ static irqreturn_t mcp23s08_irq(int irq, void *data) mcp->cached_gpio = gpio; mutex_unlock(&mcp->lock); - if (intf == 0) { - /* There is no interrupt pending */ - return IRQ_HANDLED; - } - dev_dbg(mcp->chip.parent, "intcap 0x%04X intf 0x%04X gpio_orig 0x%04X gpio 0x%04X\n", intcap, intf, gpio_orig, gpio); -- 2.30.2