From: Mark Gross <markgross@kernel.org>
To: Alex Williamson <alex.williamson@redhat.com>
Cc: markpearson@lenovo.com, hdegoede@redhat.com,
markgross@kernel.org, platform-driver-x86@vger.kernel.org,
linux-kernel@vger.kernel.org
Subject: Re: [PATCH] platform/x86: think-lmi: Abort probe on analyze failure
Date: Mon, 8 Nov 2021 11:38:09 -0800 [thread overview]
Message-ID: <20211108193809.GH61200@T470> (raw)
In-Reply-To: <163639463588.1330483.15850167112490200219.stgit@omen>
On Mon, Nov 08, 2021 at 11:03:57AM -0700, Alex Williamson wrote:
> A Lenovo ThinkStation S20 (4157CTO BIOS 60KT41AUS) fails to boot on
> recent kernels including the think-lmi driver, due to the fact that
> errors returned by the tlmi_analyze() function are ignored by
> tlmi_probe(), where tlmi_sysfs_init() is called unconditionally.
> This results in making use of an array of already freed, non-null
> pointers and other uninitialized globals, causing all sorts of nasty
> kobject and memory faults.
>
> Make use of the analyze function return value, free a couple leaked
> allocations, and remove the settings_count field, which is incremented
> but never consumed.
part of me would like to see this split into 2 patches, one to fix the memory
leaks, and one to fix the boot issue. But, its so small its hard to argue for
splitting up.
Looks good enough to me:
Reviewed-by: Mark Gross <markgross@kernel.org>
>
> Fixes: a40cd7ef22fb ("platform/x86: think-lmi: Add WMI interface support on Lenovo platforms")
> Signed-off-by: Alex Williamson <alex.williamson@redhat.com>
> ---
> drivers/platform/x86/think-lmi.c | 13 ++++++++++---
> drivers/platform/x86/think-lmi.h | 1 -
> 2 files changed, 10 insertions(+), 4 deletions(-)
>
> diff --git a/drivers/platform/x86/think-lmi.c b/drivers/platform/x86/think-lmi.c
> index 9472aae72df2..c4d9c45350f7 100644
> --- a/drivers/platform/x86/think-lmi.c
> +++ b/drivers/platform/x86/think-lmi.c
> @@ -888,8 +888,10 @@ static int tlmi_analyze(void)
> break;
> if (!item)
> break;
> - if (!*item)
> + if (!*item) {
> + kfree(item);
> continue;
> + }
>
> /* It is not allowed to have '/' for file name. Convert it into '\'. */
> strreplace(item, '/', '\\');
> @@ -902,6 +904,7 @@ static int tlmi_analyze(void)
> setting = kzalloc(sizeof(*setting), GFP_KERNEL);
> if (!setting) {
> ret = -ENOMEM;
> + kfree(item);
> goto fail_clear_attr;
> }
> setting->index = i;
> @@ -916,7 +919,6 @@ static int tlmi_analyze(void)
> }
> kobject_init(&setting->kobj, &tlmi_attr_setting_ktype);
> tlmi_priv.setting[i] = setting;
> - tlmi_priv.settings_count++;
> kfree(item);
> }
>
> @@ -983,7 +985,12 @@ static void tlmi_remove(struct wmi_device *wdev)
>
> static int tlmi_probe(struct wmi_device *wdev, const void *context)
> {
> - tlmi_analyze();
> + int ret;
> +
> + ret = tlmi_analyze();
> + if (ret)
> + return ret;
> +
> return tlmi_sysfs_init();
> }
>
> diff --git a/drivers/platform/x86/think-lmi.h b/drivers/platform/x86/think-lmi.h
> index f8e26823075f..2ce5086a5af2 100644
> --- a/drivers/platform/x86/think-lmi.h
> +++ b/drivers/platform/x86/think-lmi.h
> @@ -55,7 +55,6 @@ struct tlmi_attr_setting {
> struct think_lmi {
> struct wmi_device *wmi_device;
>
> - int settings_count;
> bool can_set_bios_settings;
> bool can_get_bios_selections;
> bool can_set_bios_password;
>
>
next prev parent reply other threads:[~2021-11-08 19:38 UTC|newest]
Thread overview: 4+ messages / expand[flat|nested] mbox.gz Atom feed top
2021-11-08 18:03 Alex Williamson
2021-11-08 18:24 ` [External] " Mark Pearson
2021-11-08 19:38 ` Mark Gross [this message]
2021-11-09 9:26 ` Hans de Goede
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20211108193809.GH61200@T470 \
--to=markgross@kernel.org \
--cc=alex.williamson@redhat.com \
--cc=hdegoede@redhat.com \
--cc=linux-kernel@vger.kernel.org \
--cc=markpearson@lenovo.com \
--cc=platform-driver-x86@vger.kernel.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
all inboxes | Powered by JetHome®