diff options
author | Jan Kara <jack@suse.cz> | 2025-01-06 12:08:42 +0100 |
---|---|---|
committer | Jan Kara <jack@suse.cz> | 2025-01-06 12:08:42 +0100 |
commit | 0c0214df28f0dba8de084cb4dedc0c459dfbc083 (patch) | |
tree | 3f5e8fd9f5e1f1be6cd1784bbd05b724459df008 /security | |
parent | 0357ef03c94ef835bd44a0658b8edb672a9dbf51 (diff) | |
download | linux-0c0214df28f0dba8de084cb4dedc0c459dfbc083.tar.gz linux-0c0214df28f0dba8de084cb4dedc0c459dfbc083.tar.bz2 linux-0c0214df28f0dba8de084cb4dedc0c459dfbc083.zip |
fanotify: Fix crash in fanotify_init(2)
The rrror handling in fanotify_init(2) is buggy and overwrites 'fd'
before calling put_unused_fd() leading to possible access beyond the end
of fd bitmap. Fix it.
Reported-by: syzbot+6a3aa63412255587b21b@syzkaller.appspotmail.com
Fixes: ebe559609d78 ("fs: get rid of __FMODE_NONOTIFY kludge")
Signed-off-by: Jan Kara <jack@suse.cz>
Diffstat (limited to 'security')
0 files changed, 0 insertions, 0 deletions