Dan Carpenter bc704e31ed Staging: sst: more dereferencing user pointers
This is another patch about making a copy of the data into kernel space
before using it.  It is easy to trigger a kernel oops in the original
code.  If you passed a NULL to SNDRV_SST_SET_TARGET_DEVICE then it
called BUG_ON().  And SNDRV_SST_DRIVER_INFO would let you write the
information to arbitrary memory locations which is a security violation.

Signed-off-by: Dan Carpenter <error27@gmail.com>
Acked-by: Vinod Koul <vinod.koul@intel.com>
Signed-off-by: Greg Kroah-Hartman <gregkh@suse.de>
2010-11-09 13:30:48 -08:00
..
2010-10-29 04:16:31 -04:00
2010-10-30 12:12:50 +02:00
2010-10-28 09:44:56 -07:00
2010-10-28 09:44:56 -07:00
2010-10-30 12:12:50 +02:00
2010-10-29 04:16:31 -04:00
2010-10-30 12:12:50 +02:00
2010-10-28 09:44:56 -07:00