Commit 24ad9f02 authored by QintaoShen's avatar QintaoShen Committed by Luo Gengkun
Browse files

drm/amdkfd: Check for potential null return of kmalloc_array()

stable inclusion
from stable-v4.19.239
commit 94869bb0de69a812f70231b0eb480bb2f7ae73a6
category: bugfix
bugzilla: https://gitee.com/src-openeuler/kernel/issues/IBP16T
CVE: CVE-2022-49055

Reference: https://git.kernel.org/stable/c/94869bb0de69a812f70231b0eb480bb2f7ae73a6



--------------------------------

[ Upstream commit ebbb7bb9 ]

As the kmalloc_array() may return null, the 'event_waiters[i].wait' would lead to null-pointer dereference.
Therefore, it is better to check the return value of kmalloc_array() to avoid this confusion.

Signed-off-by: default avatarQintaoShen <unSimple1993@163.com>
Signed-off-by: default avatarAlex Deucher <alexander.deucher@amd.com>
Signed-off-by: default avatarSasha Levin <sashal@kernel.org>
Signed-off-by: default avatarLuo Gengkun <luogengkun2@huawei.com>
parent ddf40425
Loading
Loading
Loading
Loading
+2 −0
Original line number Diff line number Diff line
@@ -532,6 +532,8 @@ static struct kfd_event_waiter *alloc_event_waiters(uint32_t num_events)
	event_waiters = kmalloc_array(num_events,
					sizeof(struct kfd_event_waiter),
					GFP_KERNEL);
	if (!event_waiters)
		return NULL;

	for (i = 0; (event_waiters) && (i < num_events) ; i++) {
		init_wait(&event_waiters[i].wait);