[ldv-project] [PATCH v2] usb: gadget: mv_u3d: request_irq() after initializing UDC
Felipe Balbi
balbi at kernel.org
Wed Aug 18 17:33:16 MSK 2021
Nadezda Lutovinova <lutovinova at ispras.ru> writes:
> If IRQ occurs between calling request_irq() and mv_u3d_eps_init(),
> then null pointer dereference occurs since u3d->eps[] wasn't
> initialized yet but used in mv_u3d_nuke().
>
> The patch puts registration of the interrupt handler after
> initializing of neccesery data.
>
> Found by Linux Driver Verification project (linuxtesting.org).
>
> Fixes: 90fccb529d24 ("usb: gadget: Gadget directory cleanup - group UDC drivers")
> Signed-off-by: Nadezda Lutovinova <lutovinova at ispras.ru>
Thanks for updating so quickly:
Acked-by: Felipe Balbi <balbi at kernel.org>
--
balbi
More information about the ldv-project
mailing list