]> git.karo-electronics.de Git - linux-beck.git/commit
ath6kl: Fix invalid pointer access on fuzz testing with AP mode
authorMohammed Shafi Shajakhan <mohammed@qca.qualcomm.com>
Mon, 5 Aug 2013 04:49:22 +0000 (10:19 +0530)
committerKalle Valo <kvalo@qca.qualcomm.com>
Wed, 7 Aug 2013 07:58:59 +0000 (10:58 +0300)
commit9d0e2f0772d394060bf3b17cd1f3a35574365103
tree6a0276c9109aa553efa59ab9a81f8578cc47e2ab
parentf32036e823c45cb4974aab1d0ae66d716bfc9aa6
ath6kl: Fix invalid pointer access on fuzz testing with AP mode

In our Fuz testing, reference client corrupts the dest mac to "00:00:00:00:00:00"
in the WPA2 handshake no 2. During driver init the sta_list entries mac
addresses are by default "00:00:00:00:00:00". Driver returns an invalid
pointer (conn) and the drver shall crash, if rxtids (aggr_conn)
skb queues are accessed, since they would not be initialized.

Signed-off-by: Mohammed Shafi Shajakhan <mohammed@qca.qualcomm.com>
Signed-off-by: Kalle Valo <kvalo@qca.qualcomm.com>
drivers/net/wireless/ath/ath6kl/main.c