On Thu, Aug 07, 2025 at 03:34:18PM +0530, Ling Xu wrote: > Fastrpc driver creates maps for user allocated fd buffers. Before > creating a new map, the map list is checked for any already existing > maps using map fd. Checking with just map fd is not sufficient as the > user can pass offsetted buffer with less size when the map is created > and then a larger size the next time which could result in memory > issues. Check for dma_buf object also when looking up for the map. > > Fixes: c68cfb718c8f ("misc: fastrpc: Add support for context Invoke method") > Cc: sta...@kernel.org > Co-developed-by: Ekansh Gupta <ekansh.gu...@oss.qualcomm.com> > Signed-off-by: Ekansh Gupta <ekansh.gu...@oss.qualcomm.com> > Signed-off-by: Ling Xu <quic_l...@quicinc.com> > --- > drivers/misc/fastrpc.c | 7 ++++++- > 1 file changed, 6 insertions(+), 1 deletion(-) >
Reviewed-by: Dmitry Baryshkov <dmitry.barysh...@oss.qualcomm.com> -- With best wishes Dmitry