diff options
| author | Hajime Tazaki <thehajime@gmail.com> | 2024-11-09 07:28:34 +0900 |
|---|---|---|
| committer | Greg Kroah-Hartman <gregkh@linuxfoundation.org> | 2024-11-22 15:39:52 +0100 |
| commit | aceaf33b7666b72dfb86e0aa977be81e3bcbc727 (patch) | |
| tree | c07b0a8cbb53eb10780be5888825d4aa8d814b64 | |
| parent | 77e47f89d32c2d72eb33d0becbce7abe14d061f4 (diff) | |
| download | linux-aceaf33b7666b72dfb86e0aa977be81e3bcbc727.tar.gz linux-aceaf33b7666b72dfb86e0aa977be81e3bcbc727.tar.bz2 linux-aceaf33b7666b72dfb86e0aa977be81e3bcbc727.zip | |
nommu: pass NULL argument to vma_iter_prealloc()
commit 247d720b2c5d22f7281437fd6054a138256986ba upstream.
When deleting a vma entry from a maple tree, it has to pass NULL to
vma_iter_prealloc() in order to calculate internal state of the tree, but
it passed a wrong argument. As a result, nommu kernels crashed upon
accessing a vma iterator, such as acct_collect() reading the size of vma
entries after do_munmap().
This commit fixes this issue by passing a right argument to the
preallocation call.
Link: https://lkml.kernel.org/r/20241108222834.3625217-1-thehajime@gmail.com
Fixes: b5df09226450 ("mm: set up vma iterator for vma_iter_prealloc() calls")
Signed-off-by: Hajime Tazaki <thehajime@gmail.com>
Reviewed-by: Liam R. Howlett <Liam.Howlett@Oracle.com>
Cc: <stable@vger.kernel.org>
Signed-off-by: Andrew Morton <akpm@linux-foundation.org>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
| -rw-r--r-- | mm/nommu.c | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/mm/nommu.c b/mm/nommu.c index 7296e775e04e..7e018da8574e 100644 --- a/mm/nommu.c +++ b/mm/nommu.c @@ -568,7 +568,7 @@ static int delete_vma_from_mm(struct vm_area_struct *vma) VMA_ITERATOR(vmi, vma->vm_mm, vma->vm_start); vma_iter_config(&vmi, vma->vm_start, vma->vm_end); - if (vma_iter_prealloc(&vmi, vma)) { + if (vma_iter_prealloc(&vmi, NULL)) { pr_warn("Allocation of vma tree for process %d failed\n", current->pid); return -ENOMEM; |
