* [PATCH v2] staging: media: atomisp: replace sprintf() with strscpy()
[not found] <20260226085510.65038-1-tomasz.unger.ref@yahoo.pl>
@ 2026-02-26 8:55 ` tomasz.unger
2026-02-26 9:49 ` Andy Shevchenko
0 siblings, 1 reply; 2+ messages in thread
From: tomasz.unger @ 2026-02-26 8:55 UTC (permalink / raw)
To: Hans de Goede, Mauro Carvalho Chehab
Cc: linux-media, Andy Shevchenko, Greg Kroah-Hartman, Tomasz Unger
From: Tomasz Unger <tomasz.unger@yahoo.pl>
Auditing calls to sprintf(). This code is fine because we are
copying 9 characters into a 52 character buffer. But it would
be cleaner to use strscpy() instead.
Signed-off-by: Tomasz Unger <tomasz.unger@yahoo.pl>
---
Changes since v1 (requested by Dan Carpenter <dan.carpenter@linaro.org>):
- Rewrite commit message to avoid misleading buffer overflow claims
- Testing information moved under --- as requested
Testing:
- make drivers/staging/media/atomisp/: compiled successfully, 0 errors, 0 warnings
drivers/staging/media/atomisp/pci/atomisp_subdev.c | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/drivers/staging/media/atomisp/pci/atomisp_subdev.c b/drivers/staging/media/atomisp/pci/atomisp_subdev.c
index 3d56ca83ecb7..cef44ec9ebde 100644
--- a/drivers/staging/media/atomisp/pci/atomisp_subdev.c
+++ b/drivers/staging/media/atomisp/pci/atomisp_subdev.c
@@ -808,7 +808,7 @@ static int isp_subdev_init_entities(struct atomisp_sub_device *asd)
int ret;
v4l2_subdev_init(sd, &isp_subdev_v4l2_ops);
- sprintf(sd->name, "Atom ISP");
+ strscpy(sd->name, "Atom ISP");
v4l2_set_subdevdata(sd, asd);
sd->flags |= V4L2_SUBDEV_FL_HAS_EVENTS | V4L2_SUBDEV_FL_HAS_DEVNODE;
--
2.53.0
^ permalink raw reply related [flat|nested] 2+ messages in thread
* Re: [PATCH v2] staging: media: atomisp: replace sprintf() with strscpy()
2026-02-26 8:55 ` [PATCH v2] staging: media: atomisp: replace sprintf() with strscpy() tomasz.unger
@ 2026-02-26 9:49 ` Andy Shevchenko
0 siblings, 0 replies; 2+ messages in thread
From: Andy Shevchenko @ 2026-02-26 9:49 UTC (permalink / raw)
To: tomasz.unger
Cc: Hans de Goede, Mauro Carvalho Chehab, linux-media,
Andy Shevchenko, Greg Kroah-Hartman
On Thu, Feb 26, 2026 at 09:55:10AM +0100, tomasz.unger@yahoo.pl wrote:
> Auditing calls to sprintf(). This code is fine because we are
> copying 9 characters into a 52 character buffer. But it would
> be cleaner to use strscpy() instead.
Not only cleaner, the strscpy() 2-argument version has an additional check for
dst to be an array.
Is it the only place in the whole driver like this?
--
With Best Regards,
Andy Shevchenko
^ permalink raw reply [flat|nested] 2+ messages in thread
end of thread, other threads:[~2026-02-26 9:49 UTC | newest]
Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
[not found] <20260226085510.65038-1-tomasz.unger.ref@yahoo.pl>
2026-02-26 8:55 ` [PATCH v2] staging: media: atomisp: replace sprintf() with strscpy() tomasz.unger
2026-02-26 9:49 ` Andy Shevchenko
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox