From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from smtp.kernel.org (aws-us-west-2-korg-mail-1.web.codeaurora.org [10.30.226.201]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id 59B821D432D; Fri, 13 Feb 2026 13:57:57 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=none smtp.client-ip=10.30.226.201 ARC-Seal:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1770991077; cv=none; b=M6XZ5wuOLGS04Cgmp9MZjNjVpIACkr3GNxFpbFzGmlX/3UIUOfz/lkNDTclSNFxtWEJokI0R/R9pp8HVBpTiOOcCTukumm/dE+ci/US/qM/RMcG/TSlgpB5N4Jmm9GjBrmyM8YI3n7UwfSrlslzjC5EdjcYqa8MMHQ8//rMHMYQ= ARC-Message-Signature:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1770991077; c=relaxed/simple; bh=94+ONDTnaNdpKr5lGFesQtgDq7gbPeZA7no4v/d2P5Q=; h=From:To:Cc:Subject:Date:Message-ID:In-Reply-To:References: MIME-Version; b=D19fsrnpqMA6AxS1hzdrDNlIoLVXw6q1uc/Uj4XPuZyNWys9pHOhDcThe6r0BjUr5WJ/SSbSPA/lPGQxVG6Ir3UD96yd7BH64B2faNnCDYPBrRHxXMC5aTYuc+wO8MTSAC3Zytp7ut5PXEZrI/W2s4i43VQyftgk5qZelUtL94s= ARC-Authentication-Results:i=1; smtp.subspace.kernel.org; dkim=pass (1024-bit key) header.d=linuxfoundation.org header.i=@linuxfoundation.org header.b=hWVvGi+Q; arc=none smtp.client-ip=10.30.226.201 Authentication-Results: smtp.subspace.kernel.org; dkim=pass (1024-bit key) header.d=linuxfoundation.org header.i=@linuxfoundation.org header.b="hWVvGi+Q" Received: by smtp.kernel.org (Postfix) with ESMTPSA id D2146C116C6; Fri, 13 Feb 2026 13:57:56 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=linuxfoundation.org; s=korg; t=1770991077; bh=94+ONDTnaNdpKr5lGFesQtgDq7gbPeZA7no4v/d2P5Q=; h=From:To:Cc:Subject:Date:In-Reply-To:References:From; b=hWVvGi+QYumK/sgjn+nYkzupBogs+6qJqoEG3bkbHI43tFf0D0TIHNSYp+MqncLcP fwtffG6DILIQ5jxurXu3CgJN0uz4+XUeMMSrNCQ7pb/N3sj5mugOWff0e5ojVhCkfv RDWZm2BIad11WNsvFOEiUTLKZ2jTDsgZ5o3OlSRw= From: Greg Kroah-Hartman To: stable@vger.kernel.org Cc: Greg Kroah-Hartman , patches@lists.linux.dev, Kees Cook , Herbert Xu , Linus Torvalds Subject: [PATCH 6.6 07/25] crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scatterlists correctly Date: Fri, 13 Feb 2026 14:48:33 +0100 Message-ID: <20260213134704.154853942@linuxfoundation.org> X-Mailer: git-send-email 2.53.0 In-Reply-To: <20260213134703.882698935@linuxfoundation.org> References: <20260213134703.882698935@linuxfoundation.org> User-Agent: quilt/0.69 X-stable: review X-Patchwork-Hint: ignore Precedence: bulk X-Mailing-List: stable@vger.kernel.org List-Id: List-Subscribe: List-Unsubscribe: MIME-Version: 1.0 Content-Transfer-Encoding: 8bit 6.6-stable review patch. If anyone has any objections, please let me know. ------------------ From: Kees Cook commit 1562b1fb7e17c1b3addb15e125c718b2be7f5512 upstream. The existing allocation of scatterlists in omap_crypto_copy_sg_lists() was allocating an array of scatterlist pointers, not scatterlist objects, resulting in a 4x too small allocation. Use sizeof(*new_sg) to get the correct object size. Fixes: 74ed87e7e7f7 ("crypto: omap - add base support library for common routines") Signed-off-by: Kees Cook Acked-by: Herbert Xu Signed-off-by: Linus Torvalds Signed-off-by: Greg Kroah-Hartman --- drivers/crypto/omap-crypto.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) --- a/drivers/crypto/omap-crypto.c +++ b/drivers/crypto/omap-crypto.c @@ -21,7 +21,7 @@ static int omap_crypto_copy_sg_lists(int struct scatterlist *tmp; if (!(flags & OMAP_CRYPTO_FORCE_SINGLE_ENTRY)) { - new_sg = kmalloc_array(n, sizeof(*sg), GFP_KERNEL); + new_sg = kmalloc_array(n, sizeof(*new_sg), GFP_KERNEL); if (!new_sg) return -ENOMEM;