[Linux-kernel-mentees] [PATCH net] ipvs: Fix uninit-value in do_ip_vs_set_ctl()

Cong Wang xiyou.wangcong at gmail.com
Tue Aug 11 03:57:19 UTC 2020

On Mon, Aug 10, 2020 at 3:10 PM Peilin Ye <yepeilin.cs at gmail.com> wrote:
> do_ip_vs_set_ctl() is referencing uninitialized stack value when `len` is
> zero. Fix it.

Which exact 'cmd' is it here?

I _guess_ it is one of those uninitialized in set_arglen[], which is 0.
But if that is the case, should it be initialized to
sizeof(struct ip_vs_service_user) instead because ip_vs_copy_usvc_compat()
is called anyway. Or, maybe we should just ban len==0 case.

In either case, it does not look like you fix it correctly.


More information about the Linux-kernel-mentees mailing list