From: Phil Carmody <ext-phil.2.carmody@nokia.com>
To: ext Cornelia Huck <cornelia.huck@de.ibm.com>
Cc: "gregkh@suse.de" <gregkh@suse.de>,
"linux-kernel@vger.kernel.org" <linux-kernel@vger.kernel.org>
Subject: Re: [PATCH 1/1] Kobject: bail early if no new_parent in kobject_move()
Date: Tue, 06 Oct 2009 11:52:09 +0300 [thread overview]
Message-ID: <1254819129.23533.27.camel@pcarmody-desktop> (raw)
In-Reply-To: <20091005183753.4d77afcb@gondolin>
On Mon, 2009-10-05 at 18:37 +0200, ext Cornelia Huck wrote:
> On Thu, 1 Oct 2009 17:50:48 +0300,
> Phil Carmody <ext-phil.2.carmody@nokia.com> wrote:
>
> > From: Phil Carmody <ext-phil.2.carmody@nokia.com>
> >
> > In the absense of kobj->kset, new_parent would remain NULL.
> > NULL-dereference shenanighans then ensues in the subsequent
> > sysfs_move_dir(..., new_parent) call. Bail early instead.
>
> But sysfs_move_dir(..., NULL) should work and fall back to the sysfs
> root...
I guess there are two schools of thought - the strict and the
accommodating. I was contemplating resending an even stricter patch, but
there's nothing wrong with adopting sane safe fallbacks instead.
> <looks at code>
>
> It seems that has been broken for some time. Should probably be
> something like this instead (uncompiled); I can send it with proper
> description and s-o-b once I gave it a test.
>
> ---
> fs/sysfs/dir.c | 3 ++-
> 1 file changed, 2 insertions(+), 1 deletion(-)
>
> --- linux-2.6.orig/fs/sysfs/dir.c
> +++ linux-2.6/fs/sysfs/dir.c
> @@ -894,7 +894,8 @@ int sysfs_move_dir(struct kobject *kobj,
>
> mutex_lock(&sysfs_rename_mutex);
> BUG_ON(!sd->s_parent);
> - new_parent_sd = new_parent_kobj->sd ? new_parent_kobj->sd : &sysfs_root;
> + new_parent_sd = (new_parent_kobj && new_parent_kobj->sd) ?
> + new_parent_kobj->sd : &sysfs_root;
>
> error = 0;
> if (sd->s_parent == new_parent_sd)
Looks like it knocks the NULL dereference squarely on the head. Yup.
Phil
--
"They weren't designed to run on a computer, they were designed
to run on a Powerpoint slide projector." -- Peter Gutmann
next prev parent reply other threads:[~2009-10-06 8:50 UTC|newest]
Thread overview: 8+ messages / expand[flat|nested] mbox.gz Atom feed top
2009-10-01 14:50 [PATCH 1/1] Kobject: bail early if no new_parent in kobject_move() Phil Carmody
2009-10-01 14:49 ` Greg KH
2009-10-01 15:01 ` Phil Carmody
2009-10-01 15:01 ` Greg KH
2009-10-05 16:37 ` Cornelia Huck
2009-10-06 8:52 ` Phil Carmody [this message]
2009-10-06 13:33 ` Cornelia Huck
2009-10-06 13:33 ` [PATCH] sysfs: Allow sysfs_move_dir(..., NULL) again Cornelia Huck
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=1254819129.23533.27.camel@pcarmody-desktop \
--to=ext-phil.2.carmody@nokia.com \
--cc=cornelia.huck@de.ibm.com \
--cc=gregkh@suse.de \
--cc=linux-kernel@vger.kernel.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.