diff options
| author | Eric Huang <jinhuieric.huang@amd.com> | 2026-05-12 10:19:52 -0400 |
|---|---|---|
| committer | Alex Deucher <alexander.deucher@amd.com> | 2026-05-27 12:01:13 -0400 |
| commit | 93f5534b35a05ef8a0109c1eefa800062fee810a (patch) | |
| tree | 2b32b7970905f1cab31910d0c28596a148b0de65 /kernel | |
| parent | ca8e7a119a2e4045324cffb8f9f58bedcc3dc928 (diff) | |
drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger
get_queue_ids() computes array_size = num_queues * sizeof(uint32_t),
which could overflow on 32-bit size_t build. using array_size()
instead, it saturates to SIZE_MAX on overflow.
Signed-off-by: Eric Huang <jinhuieric.huang@amd.com>
Acked-by: Alex Deucher <alexander.deucher@amd.com>
Signed-off-by: Alex Deucher <alexander.deucher@amd.com>
(cherry picked from commit 2d57a0475f085c08b49312dfd8edcb461845f285)
Cc: stable@vger.kernel.org
Diffstat (limited to 'kernel')
0 files changed, 0 insertions, 0 deletions
