mirror of https://lore.kernel.org/lkml/
 help / color / mirror / Atom feed
* [PATCH] ata: sata_mv: Fix incorrect string length computation in mv_dump_mem()
@ 2023-09-04 19:54 Christophe JAILLET
  2023-09-05  5:04 ` Damien Le Moal
  2023-09-11  6:14 ` Damien Le Moal
  0 siblings, 2 replies; 6+ messages in thread
From: Christophe JAILLET @ 2023-09-04 19:54 UTC (permalink / raw)
  To: Damien Le Moal
  Cc: linux-kernel, kernel-janitors, Christophe JAILLET, linux-ide

snprintf() returns the "number of characters which *would* be generated for
the given input", not the size *really* generated.

In order to avoid too large values for 'o' (and potential negative values
for "sizeof(linebuf) o") use scnprintf() instead of snprintf().

Note that given the "w < 4" in the for loop, the buffer can NOT
overflow, but using the *right* function is always better.

Signed-off-by: Christophe JAILLET <christophe.jaillet@wanadoo.fr>
---
 drivers/ata/sata_mv.c | 4 ++--
 1 file changed, 2 insertions(+), 2 deletions(-)

diff --git a/drivers/ata/sata_mv.c b/drivers/ata/sata_mv.c
index d105db5c7d81..45e48d653c60 100644
--- a/drivers/ata/sata_mv.c
+++ b/drivers/ata/sata_mv.c
@@ -1255,8 +1255,8 @@ static void mv_dump_mem(struct device *dev, void __iomem *start, unsigned bytes)
 
 	for (b = 0; b < bytes; ) {
 		for (w = 0, o = 0; b < bytes && w < 4; w++) {
-			o += snprintf(linebuf + o, sizeof(linebuf) - o,
-				      "%08x ", readl(start + b));
+			o += scnprintf(linebuf + o, sizeof(linebuf) - o,
+				       "%08x ", readl(start + b));
 			b += sizeof(u32);
 		}
 		dev_dbg(dev, "%s: %p: %s\n",
-- 
2.34.1


^ permalink raw reply	[flat|nested] 6+ messages in thread

end of thread, other threads:[~2023-09-11  6:14 UTC | newest]

Thread overview: 6+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2023-09-04 19:54 [PATCH] ata: sata_mv: Fix incorrect string length computation in mv_dump_mem() Christophe JAILLET
2023-09-05  5:04 ` Damien Le Moal
2023-09-05 15:28   ` Christophe JAILLET
2023-09-06  1:11     ` Damien Le Moal
2023-09-08  5:18       ` Christophe JAILLET
2023-09-11  6:14 ` Damien Le Moal

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox

all inboxes | Powered by JetHome®