summaryrefslogtreecommitdiff
path: root/drivers/vfio
diff options
context:
space:
mode:
authorQiushi Wu <wu000273@umn.edu>2020-05-27 21:01:09 -0500
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>2020-06-24 17:50:36 +0200
commitf4fbb592d9d72d85bc6a62b0a18a09d3d9a7c4e6 (patch)
tree02190d853774183f6c18be0635e1df9d4d3dd588 /drivers/vfio
parent1957ac8d1b4f10c38aa97f1dc60eb4aeb18d680e (diff)
downloadlinux-f4fbb592d9d72d85bc6a62b0a18a09d3d9a7c4e6.tar.gz
linux-f4fbb592d9d72d85bc6a62b0a18a09d3d9a7c4e6.tar.bz2
linux-f4fbb592d9d72d85bc6a62b0a18a09d3d9a7c4e6.zip
vfio/mdev: Fix reference count leak in add_mdev_supported_type
[ Upstream commit aa8ba13cae3134b8ef1c1b6879f66372531da738 ] kobject_init_and_add() takes reference even when it fails. If this function returns an error, kobject_put() must be called to properly clean up the memory associated with the object. Thus, replace kfree() by kobject_put() to fix this issue. Previous commit "b8eb718348b8" fixed a similar problem. Fixes: 7b96953bc640 ("vfio: Mediated device Core driver") Signed-off-by: Qiushi Wu <wu000273@umn.edu> Reviewed-by: Cornelia Huck <cohuck@redhat.com> Reviewed-by: Kirti Wankhede <kwankhede@nvidia.com> Signed-off-by: Alex Williamson <alex.williamson@redhat.com> Signed-off-by: Sasha Levin <sashal@kernel.org>
Diffstat (limited to 'drivers/vfio')
-rw-r--r--drivers/vfio/mdev/mdev_sysfs.c2
1 files changed, 1 insertions, 1 deletions
diff --git a/drivers/vfio/mdev/mdev_sysfs.c b/drivers/vfio/mdev/mdev_sysfs.c
index 7570c7602ab4..f32c582611eb 100644
--- a/drivers/vfio/mdev/mdev_sysfs.c
+++ b/drivers/vfio/mdev/mdev_sysfs.c
@@ -110,7 +110,7 @@ static struct mdev_type *add_mdev_supported_type(struct mdev_parent *parent,
"%s-%s", dev_driver_string(parent->dev),
group->name);
if (ret) {
- kfree(type);
+ kobject_put(&type->kobj);
return ERR_PTR(ret);
}