drm/msm: fix potential NULL dereference in cleanup
authorDan Carpenter <dan.carpenter@oracle.com>
Wed, 13 Oct 2021 08:11:33 +0000 (11:11 +0300)
committerRob Clark <robdclark@chromium.org>
Fri, 15 Oct 2021 23:56:07 +0000 (16:56 -0700)
The "msm_obj->node" list needs to be initialized earlier so that the
list_del() in msm_gem_free_object() doesn't experience a NULL pointer
dereference.

Fixes: 6ed0897cd800 ("drm/msm: Fix debugfs deadlock")
Signed-off-by: Dan Carpenter <dan.carpenter@oracle.com>
Link: https://lore.kernel.org/r/20211013081133.GF6010@kili
Signed-off-by: Rob Clark <robdclark@chromium.org>
drivers/gpu/drm/msm/msm_gem.c

index 22308a1..fd398a4 100644 (file)
@@ -1132,6 +1132,7 @@ static int msm_gem_new_impl(struct drm_device *dev,
        msm_obj->flags = flags;
        msm_obj->madv = MSM_MADV_WILLNEED;
 
+       INIT_LIST_HEAD(&msm_obj->node);
        INIT_LIST_HEAD(&msm_obj->vmas);
 
        *obj = &msm_obj->base;