HomeFreeBSD

DRM2: fix off-by-one overflow in ioctl processing

Description

DRM2: fix off-by-one overflow in ioctl processing

Call to the driver-specific ioctl used to process ioctl number
that will lead to the out-of-bounds access to the ioctl handler
array.

PR: 193367
Approved by: kib
MFC after: 1 week

Details

Provenance
reaAuthored on
Parents
rS275208: Some device tree configurations place the generic timer under the root
Branches
Unknown
Tags
Unknown

Event Timeline