public inbox for linux-media@vger.kernel.org
 help / color / mirror / Atom feed
* [PATCH v2] staging: media: atomisp: replace sprintf() with strscpy()
       [not found] <20260226085510.65038-1-tomasz.unger.ref@yahoo.pl>
@ 2026-02-26  8:55 ` tomasz.unger
  2026-02-26  9:49   ` Andy Shevchenko
  0 siblings, 1 reply; 2+ messages in thread
From: tomasz.unger @ 2026-02-26  8:55 UTC (permalink / raw)
  To: Hans de Goede, Mauro Carvalho Chehab
  Cc: linux-media, Andy Shevchenko, Greg Kroah-Hartman, Tomasz Unger

From: Tomasz Unger <tomasz.unger@yahoo.pl>

Auditing calls to sprintf(). This code is fine because we are
copying 9 characters into a 52 character buffer. But it would
be cleaner to use strscpy() instead.

Signed-off-by: Tomasz Unger <tomasz.unger@yahoo.pl>
---
Changes since v1 (requested by Dan Carpenter <dan.carpenter@linaro.org>):
- Rewrite commit message to avoid misleading buffer overflow claims
- Testing information moved under --- as requested
    
Testing:
- make drivers/staging/media/atomisp/: compiled successfully, 0 errors, 0 warnings

 drivers/staging/media/atomisp/pci/atomisp_subdev.c | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

diff --git a/drivers/staging/media/atomisp/pci/atomisp_subdev.c b/drivers/staging/media/atomisp/pci/atomisp_subdev.c
index 3d56ca83ecb7..cef44ec9ebde 100644
--- a/drivers/staging/media/atomisp/pci/atomisp_subdev.c
+++ b/drivers/staging/media/atomisp/pci/atomisp_subdev.c
@@ -808,7 +808,7 @@ static int isp_subdev_init_entities(struct atomisp_sub_device *asd)
 	int ret;
 
 	v4l2_subdev_init(sd, &isp_subdev_v4l2_ops);
-	sprintf(sd->name, "Atom ISP");
+	strscpy(sd->name, "Atom ISP");
 	v4l2_set_subdevdata(sd, asd);
 	sd->flags |= V4L2_SUBDEV_FL_HAS_EVENTS | V4L2_SUBDEV_FL_HAS_DEVNODE;
 
-- 
2.53.0


^ permalink raw reply related	[flat|nested] 2+ messages in thread

* Re: [PATCH v2] staging: media: atomisp: replace sprintf() with strscpy()
  2026-02-26  8:55 ` [PATCH v2] staging: media: atomisp: replace sprintf() with strscpy() tomasz.unger
@ 2026-02-26  9:49   ` Andy Shevchenko
  0 siblings, 0 replies; 2+ messages in thread
From: Andy Shevchenko @ 2026-02-26  9:49 UTC (permalink / raw)
  To: tomasz.unger
  Cc: Hans de Goede, Mauro Carvalho Chehab, linux-media,
	Andy Shevchenko, Greg Kroah-Hartman

On Thu, Feb 26, 2026 at 09:55:10AM +0100, tomasz.unger@yahoo.pl wrote:

> Auditing calls to sprintf(). This code is fine because we are
> copying 9 characters into a 52 character buffer. But it would
> be cleaner to use strscpy() instead.

Not only cleaner, the strscpy() 2-argument version has an additional check for
dst to be an array.

Is it the only place in the whole driver like this?

-- 
With Best Regards,
Andy Shevchenko



^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2026-02-26  9:49 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
     [not found] <20260226085510.65038-1-tomasz.unger.ref@yahoo.pl>
2026-02-26  8:55 ` [PATCH v2] staging: media: atomisp: replace sprintf() with strscpy() tomasz.unger
2026-02-26  9:49   ` Andy Shevchenko

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox