Commit e5b74135 authored by Xiubo Li's avatar Xiubo Li Committed by Zefan Li

ASoC: core: fix possible ZERO_SIZE_PTR pointer dereferencing error.

commit 6596aa04 upstream.

Since we cannot make sure the 'params->num_regs' will always be none
zero here, and then if it equals to zero, the kmemdup() will return
ZERO_SIZE_PTR, which equals to ((void *)16).

So this patch fix this with just doing the zero check before calling
kmemdup().
Signed-off-by: default avatarXiubo Li <Li.Xiubo@freescale.com>
Signed-off-by: default avatarMark Brown <broonie@kernel.org>
[lizf: Backported to 3.4: adjust context]
Signed-off-by: default avatarZefan Li <lizefan@huawei.com>
parent 3efcfa54
......@@ -2799,7 +2799,7 @@ int snd_soc_bytes_put(struct snd_kcontrol *kcontrol,
unsigned int val;
void *data;
if (!codec->using_regmap)
if (!codec->using_regmap || !params->num_regs)
return -EINVAL;
data = ucontrol->value.bytes.data;
......
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment