On Wed, May 28, 2008 at 02:45:10PM +0900, Masatake YAMATO wrote:
> Hi,
>
> I found a way to let linux dereference NULL pointer
> in gfs2-2.6-nmw/fs/dlm/user.c.
>
> If `device_write' method is called via "dlm-control",
> file->private_data is NULL. (See ctl_device_open() in
> user.c. ) Through
Hi,
I found a way to let linux dereference NULL pointer
in gfs2-2.6-nmw/fs/dlm/user.c.
If `device_write' method is called via "dlm-control",
file->private_data is NULL. (See ctl_device_open() in
user.c. ) Through proc->flags is read:
if ((kbuf->cmd == DLM_USER_LOCK || kbuf->cmd == DLM