From mboxrd@z Thu Jan 1 00:00:00 1970 From: Steven Rostedt Subject: Re: [PATCH 1/4] rtmutex: avoid null derefence in WARN_ON Date: Fri, 09 Jul 2010 20:29:48 -0400 Message-ID: <1278721788.1537.170.camel@gandalf.stny.rr.com> References: <1278714780-788-1-git-send-email-dvhltc@us.ibm.com> <1278714780-788-2-git-send-email-dvhltc@us.ibm.com> Reply-To: rostedt@goodmis.org Mime-Version: 1.0 Content-Type: text/plain; charset="ISO-8859-15" Content-Transfer-Encoding: 7bit Cc: linux-kernel@vger.kernel.org, Thomas Gleixner , Peter Zijlstra , Ingo Molnar , Eric Dumazet , John Kacur , Mike Galbraith , linux-rt-users@vger.kernel.org To: Darren Hart Return-path: Received: from hrndva-omtalb.mail.rr.com ([71.74.56.125]:37289 "EHLO hrndva-omtalb.mail.rr.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1752439Ab0GJA3u (ORCPT ); Fri, 9 Jul 2010 20:29:50 -0400 In-Reply-To: <1278714780-788-2-git-send-email-dvhltc@us.ibm.com> Sender: linux-rt-users-owner@vger.kernel.org List-ID: On Fri, 2010-07-09 at 15:32 -0700, Darren Hart wrote: > If the pi_blocked_on variable is NULL, the subsequent WARN_ON's > will cause an OOPS. Only perform the susequent checks if > pi_blocked_on is valid. > > Signed-off-by: Darren Hart > Cc: Thomas Gleixner > Cc: Peter Zijlstra > Cc: Ingo Molnar > Cc: Eric Dumazet > Cc: John Kacur > Cc: Steven Rostedt > Cc: Mike Galbraith > --- > kernel/rtmutex.c | 7 ++++--- > 1 files changed, 4 insertions(+), 3 deletions(-) > > diff --git a/kernel/rtmutex.c b/kernel/rtmutex.c > index 23dd443..baac7d9 100644 > --- a/kernel/rtmutex.c > +++ b/kernel/rtmutex.c > @@ -579,9 +579,10 @@ static void wakeup_next_waiter(struct rt_mutex *lock, int savestate) > > raw_spin_lock(&pendowner->pi_lock); > > - WARN_ON(!pendowner->pi_blocked_on); > - WARN_ON(pendowner->pi_blocked_on != waiter); > - WARN_ON(pendowner->pi_blocked_on->lock != lock); > + if (!WARN_ON(!pendowner->pi_blocked_on)) { > + WARN_ON(pendowner->pi_blocked_on != waiter); The above actually has no issue if the pi_blocked_on is NULL. The below, well yeah. -- Steve > + WARN_ON(pendowner->pi_blocked_on->lock != lock); > + } > > pendowner->pi_blocked_on = NULL; >