]> git.ipfire.org Git - thirdparty/linux.git/commit
drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger
authorEric Huang <jinhuieric.huang@amd.com>
Tue, 12 May 2026 14:19:52 +0000 (10:19 -0400)
committerAlex Deucher <alexander.deucher@amd.com>
Wed, 27 May 2026 14:48:39 +0000 (10:48 -0400)
commit2d57a0475f085c08b49312dfd8edcb461845f285
tree60c7450af9fbec45ef11268d9a51f7c48eae4fd8
parenteb53125a7ad99c7fc2f249bffdc561afa002a46c
drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger

get_queue_ids() computes array_size = num_queues * sizeof(uint32_t),
which could overflow on 32-bit size_t build. using array_size()
instead, it saturates to SIZE_MAX on overflow.

Signed-off-by: Eric Huang <jinhuieric.huang@amd.com>
Acked-by: Alex Deucher <alexander.deucher@amd.com>
Signed-off-by: Alex Deucher <alexander.deucher@amd.com>
drivers/gpu/drm/amd/amdkfd/kfd_device_queue_manager.c