From mboxrd@z Thu Jan 1 00:00:00 1970 From: Johan Hovold Subject: Re: [PATCH 1/2] wireless: ath9k_htc: fix NULL-deref at probe Date: Mon, 3 Apr 2017 10:42:13 +0200 Message-ID: <20170403084213.GE25742@localhost> References: <20170313124421.28587-1-johan@kernel.org> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Cc: QCA ath9k Development , Daniel Drake , Ulrich Kunitz , linux-wireless@vger.kernel.org, netdev@vger.kernel.org, linux-usb@vger.kernel.org, linux-kernel@vger.kernel.org, Johan Hovold , Sujith Manoharan To: Kalle Valo Return-path: Content-Disposition: inline In-Reply-To: <20170313124421.28587-1-johan@kernel.org> Sender: linux-kernel-owner@vger.kernel.org List-Id: netdev.vger.kernel.org On Mon, Mar 13, 2017 at 01:44:20PM +0100, Johan Hovold wrote: > Make sure to check the number of endpoints to avoid dereferencing a > NULL-pointer or accessing memory beyond the endpoint array should a > malicious device lack the expected endpoints. > > Fixes: 36bcce430657 ("ath9k_htc: Handle storage devices") > Cc: Sujith Manoharan > Signed-off-by: Johan Hovold Is this one still in your queue, Kalle? As I mentioned earlier, I should have added a Cc: stable # 2.6.39 but left it out as I mistakingly thought the net recommendations to do so applied also to wireless. Thanks, Johan