https://github.com/torvalds/linux
Revision 7a7003b1da010d2b0d1dc8bf21c10f5c73b389f1 authored by Mark Rutland on 02 November 2017, 16:12:03 UTC, committed by Catalin Marinas on 02 November 2017, 18:33:08 UTC
It's possible for a user to deliberately trigger __dump_instr with a
chosen kernel address.

Let's avoid problems resulting from this by using get_user() rather than
__get_user(), ensuring that we don't erroneously access kernel memory.

Where we use __dump_instr() on kernel text, we already switch to
KERNEL_DS, so this shouldn't adversely affect those cases.

Fixes: 60ffc30d5652810d ("arm64: Exception handling")
Cc: stable@vger.kernel.org
Acked-by: Will Deacon <will.deacon@arm.com>
Signed-off-by: Mark Rutland <mark.rutland@arm.com>
Signed-off-by: Catalin Marinas <catalin.marinas@arm.com>
1 parent 0b07194
History
Tip revision: 7a7003b1da010d2b0d1dc8bf21c10f5c73b389f1 authored by Mark Rutland on 02 November 2017, 16:12:03 UTC
arm64: ensure __dump_instr() checks addr_limit
Tip revision: 7a7003b
File Mode Size
.gitignore -rw-r--r-- 39 bytes
Makefile -rw-r--r-- 2.7 KB

back to top