Skip to content
Commit dac5e624 authored by Oliver Hartkopp's avatar Oliver Hartkopp Committed by Marc Kleine-Budde
Browse files

can: bcm: add missing rcu read protection for procfs content



When the procfs content is generated for a bcm_op which is in the process
to be removed the procfs output might show unreliable data (UAF).

As the removal of bcm_op's is already implemented with rcu handling this
patch adds the missing rcu_read_lock() and makes sure the list entries
are properly removed under rcu protection.

Fixes: f1b4e32a ("can: bcm: use call_rcu() instead of costly synchronize_rcu()")
Reported-by: default avatarAnderson Nascimento <anderson@allelesecurity.com>
Suggested-by: default avatarAnderson Nascimento <anderson@allelesecurity.com>
Tested-by: default avatarAnderson Nascimento <anderson@allelesecurity.com>
Signed-off-by: default avatarOliver Hartkopp <socketcan@hartkopp.net>
Link: https://patch.msgid.link/20250519125027.11900-2-socketcan@hartkopp.net


Cc: stable@vger.kernel.org # >= 5.4
Signed-off-by: default avatarMarc Kleine-Budde <mkl@pengutronix.de>
parent c2aba69d
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment