ipv6_sockglue: Fix a missing-check bug in ip6_ra_control()
mainline inclusion from mainline-5.2-rc4 commit 95baa60a category: bugfix bugzilla: 13690 CVE: CVE-2019-12378 ------------------------------------------------- In function ip6_ra_control(), the pointer new_ra is allocated a memory space via kmalloc(). And it is used in the following codes. However, when there is a memory allocation error, kmalloc() fails. Thus null pointer dereference may happen. And it will cause the kernel to crash. Therefore, we should check the return value and handle the error. Signed-off-by:Gen Zhang <blackgod016574@gmail.com> Signed-off-by:
David S. Miller <davem@davemloft.net> Signed-off-by:
Yang Yingliang <yangyingliang@huawei.com> Reviewed-by:
Yue Haibing <yuehaibing@huawei.com> Signed-off-by:
Yang Yingliang <yangyingliang@huawei.com>
Loading
Please sign in to comment