[ldv-project] [PATCH v2] usb: gadget: mv_u3d: request_irq() after initializing UDC

Felipe Balbi balbi at kernel.org
Wed Aug 18 17:33:16 MSK 2021


Nadezda Lutovinova <lutovinova at ispras.ru> writes:

> If IRQ occurs between calling  request_irq() and  mv_u3d_eps_init(),
> then null pointer dereference occurs since u3d->eps[] wasn't
> initialized yet but used in mv_u3d_nuke().
>
> The patch puts registration of the interrupt handler after
> initializing of neccesery data.
>
> Found by Linux Driver Verification project (linuxtesting.org).
>
> Fixes: 90fccb529d24 ("usb: gadget: Gadget directory cleanup - group UDC drivers")
> Signed-off-by: Nadezda Lutovinova <lutovinova at ispras.ru>

Thanks for updating so quickly:

Acked-by: Felipe Balbi <balbi at kernel.org>

-- 
balbi



More information about the ldv-project mailing list