mirror of
https://github.com/torvalds/linux.git
synced 2026-07-27 01:32:21 +02:00
Input: ipaq-micro-keys - add length check in micro_key_receive
The driver accesses the message payload (msg[0]) without checking if the length is greater than zero. The parent MFD driver can produce a payload with a length of 0, in which case msg[0] would be uninitialized or stale. Add a check to return early if len is less than 1. Reported-by: sashiko-bot@kernel.org Assisted-by: Antigravity:gemini-3.5-flash Link: https://patch.msgid.link/aintAvTyw4CVb5hG@google.com Signed-off-by: Dmitry Torokhov <dmitry.torokhov@gmail.com>
This commit is contained in:
parent
ed0428e928
commit
ff25a3b1cd
|
|
@ -43,6 +43,9 @@ static void micro_key_receive(void *data, int len, unsigned char *msg)
|
|||
struct ipaq_micro_keys *keys = data;
|
||||
int key, down;
|
||||
|
||||
if (len < 1)
|
||||
return;
|
||||
|
||||
down = 0x80 & msg[0];
|
||||
key = 0x7f & msg[0];
|
||||
|
||||
|
|
|
|||
Loading…
Reference in New Issue
Block a user