public inbox for linux-kernel@vger.kernel.org
 help / color / mirror / Atom feed
* [PATCH 1/2] tracing/filters: strloc should be unsigned short
@ 2009-05-29  8:41 Li Zefan
  2009-05-29 13:28 ` Frédéric Weisbecker
  0 siblings, 1 reply; 2+ messages in thread
From: Li Zefan @ 2009-05-29  8:41 UTC (permalink / raw)
  To: Steven Rostedt, Frederic Weisbecker; +Cc: Ingo Molnar, Tom Zanussi, LKML

I forgot to update filter code accordingly in
"tracing/events: change the type of __str_loc_item to unsigned short"
(commt b0aae68cc5508f3c2fbf728988c954db4c8b8a53)

It can cause system crash:

 # echo 1 > tracing/events/irq/irq_handler_entry/enable
 # echo 'name == eth0' > /mnt/tracing/events/irq/irq_handler_entry/filter

[ Impact: fix system crash while filtering on __string() field ]

Signed-off-by: Li Zefan <lizf@cn.fujitsu.com>
---
 kernel/trace/trace_events_filter.c |    2 +-
 1 files changed, 1 insertions(+), 1 deletions(-)

diff --git a/kernel/trace/trace_events_filter.c b/kernel/trace/trace_events_filter.c
index a7430b1..a854eed 100644
--- a/kernel/trace/trace_events_filter.c
+++ b/kernel/trace/trace_events_filter.c
@@ -178,7 +178,7 @@ static int filter_pred_string(struct filter_pred *pred, void *event,
 static int filter_pred_strloc(struct filter_pred *pred, void *event,
 			      int val1, int val2)
 {
-	int str_loc = *(int *)(event + pred->offset);
+	unsigned short str_loc = *(unsigned short *)(event + pred->offset);
 	char *addr = (char *)(event + str_loc);
 	int cmp, match;
 
-- 
1.5.4.rc3


^ permalink raw reply related	[flat|nested] 2+ messages in thread

* Re: [PATCH 1/2] tracing/filters: strloc should be unsigned short
  2009-05-29  8:41 [PATCH 1/2] tracing/filters: strloc should be unsigned short Li Zefan
@ 2009-05-29 13:28 ` Frédéric Weisbecker
  0 siblings, 0 replies; 2+ messages in thread
From: Frédéric Weisbecker @ 2009-05-29 13:28 UTC (permalink / raw)
  To: Li Zefan; +Cc: Steven Rostedt, Ingo Molnar, Tom Zanussi, LKML

2009/5/29 Li Zefan <lizf@cn.fujitsu.com>:
> I forgot to update filter code accordingly in
> "tracing/events: change the type of __str_loc_item to unsigned short"
> (commt b0aae68cc5508f3c2fbf728988c954db4c8b8a53)
>
> It can cause system crash:
>
>  # echo 1 > tracing/events/irq/irq_handler_entry/enable
>  # echo 'name == eth0' > /mnt/tracing/events/irq/irq_handler_entry/filter
>
> [ Impact: fix system crash while filtering on __string() field ]
>
> Signed-off-by: Li Zefan <lizf@cn.fujitsu.com>
> ---
>  kernel/trace/trace_events_filter.c |    2 +-
>  1 files changed, 1 insertions(+), 1 deletions(-)
>
> diff --git a/kernel/trace/trace_events_filter.c b/kernel/trace/trace_events_filter.c
> index a7430b1..a854eed 100644
> --- a/kernel/trace/trace_events_filter.c
> +++ b/kernel/trace/trace_events_filter.c
> @@ -178,7 +178,7 @@ static int filter_pred_string(struct filter_pred *pred, void *event,
>  static int filter_pred_strloc(struct filter_pred *pred, void *event,
>                              int val1, int val2)
>  {
> -       int str_loc = *(int *)(event + pred->offset);
> +       unsigned short str_loc = *(unsigned short *)(event + pred->offset);


Ouch, indeed :-)

I will apply this one and send it to Ingo, thanks!


>        char *addr = (char *)(event + str_loc);
>        int cmp, match;
>
> --
> 1.5.4.rc3
>
>

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2009-05-29 13:28 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2009-05-29  8:41 [PATCH 1/2] tracing/filters: strloc should be unsigned short Li Zefan
2009-05-29 13:28 ` Frédéric Weisbecker

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox