summaryrefslogtreecommitdiffstats
path: root/mm/hugetlb.c
diff options
context:
space:
mode:
authorHugh Dickins2016-02-17 22:11:23 +0100
committerLinus Torvalds2016-02-19 01:23:24 +0100
commit457a98b0809fa6cde7aab8c314a59d99772b445e (patch)
tree61fd434ac02707ba73f84db22a802215dd8469cf /mm/hugetlb.c
parentfsnotify: turn fsnotify reaper thread into a workqueue job (diff)
downloadkernel-qcow2-linux-457a98b0809fa6cde7aab8c314a59d99772b445e.tar.gz
kernel-qcow2-linux-457a98b0809fa6cde7aab8c314a59d99772b445e.tar.xz
kernel-qcow2-linux-457a98b0809fa6cde7aab8c314a59d99772b445e.zip
mm, x86: fix pte_page() crash in gup_pte_range()
Commit 3565fce3a659 ("mm, x86: get_user_pages() for dax mappings") has moved up the pte_page(pte) in x86's fast gup_pte_range(), for no discernible reason: put it back where it belongs, after the pte_flags check and the pfn_valid cross-check. That may be the cause of the NULL pointer dereference in gup_pte_range(), seen when vfio called vaddr_get_pfn() when starting a qemu-kvm based VM. Signed-off-by: Hugh Dickins <hughd@google.com> Reported-by: Michael Long <Harn-Solo@gmx.de> Tested-by: Michael Long <Harn-Solo@gmx.de> Acked-by: Dan Williams <dan.j.williams@intel.com> Signed-off-by: Andrew Morton <akpm@linux-foundation.org> Signed-off-by: Linus Torvalds <torvalds@linux-foundation.org>
Diffstat (limited to 'mm/hugetlb.c')
0 files changed, 0 insertions, 0 deletions