Defined in 1 files as a prototype:

Defined in 1 files as a function:

Referenced in 1 files:

Smatch caller information:

mm/kfence/core.c check_canary_byte() -> kfence_report_error()

Type Parameter Key Value
PARAM_VALUE 0 address 4096-18446744073709547520
PARAM_VALUE 1 is_write 0
PARAM_VALUE 2 regs 0
PARAM_VALUE 3 meta 4096-ptr_max
PARAM_VALUE 3 meta->lock.dep_map->name 0-255
PARAM_VALUE 3 meta->lock.owner_cpu 0
PARAM_VALUE 3 meta->lock.raw_lock.val.counter 0-s32max
PARAM_VALUE 4 type 2
CAPPED_DATA 0 address 1
DATA_SOURCE 0 address $0
DATA_SOURCE 3 meta r addr_to_metadata
PREEMPT_ADD <- disables preempt
RX_PATH
TASK_NOT_RUNNING
UNITS 0 address unit_byte
LOCK2 flags
LOCK2 3 &meta->lock
TYPE_LOCK (struct kfence_metadata)->lock

mm/kfence/core.c kfence_guarded_free() -> kfence_report_error()

Type Parameter Key Value
PARAM_VALUE 1 is_write 0
PARAM_VALUE 2 regs 0
PARAM_VALUE 3 meta 4096-ptr_max
PARAM_VALUE 3 meta->lock.dep_map->name 0-255
PARAM_VALUE 3 meta->lock.owner_cpu 0
PARAM_VALUE 3 meta->lock.raw_lock.val.counter 0-s32max
PARAM_VALUE 4 type 4
BUF_SIZE 0 address (-1),1-s32max
DATA_SOURCE 0 address $0
DATA_SOURCE 3 meta $1
PREEMPT_ADD <- disables preempt
RX_PATH
TASK_NOT_RUNNING
LOCK2 flags
LOCK2 3 &meta->lock
TYPE_LOCK (struct kfence_metadata)->lock

mm/kfence/core.c kfence_handle_page_fault() -> kfence_report_error()

Type Parameter Key Value
PARAM_VALUE 2 regs 4096-ptr_max
PARAM_VALUE 3 meta 4096-ptr_max
PARAM_VALUE 3 meta->lock.dep_map->name 0-255
PARAM_VALUE 3 meta->lock.owner_cpu 0
PARAM_VALUE 3 meta->lock.raw_lock.val.counter 0-s32max
PARAM_VALUE 4 type 0-1
CAPPED_DATA 2 regs 1
DATA_SOURCE 0 address $0
DATA_SOURCE 1 is_write $1
DATA_SOURCE 2 regs $2
FUZZY_MAX 4 type 1
BIT_INFO 1 is_write 0x0,0x0
HARD_MAX 4 type 1
PREEMPT_ADD <- disables preempt
RX_PATH
TASK_NOT_RUNNING
UNITS 0 address unit_byte
LOCK2 flags
LOCK2 3 &meta->lock
TYPE_LOCK (struct kfence_metadata)->lock

mm/kfence/core.c kfence_handle_page_fault() -> kfence_report_error()

Type Parameter Key Value
PARAM_VALUE 2 regs 4096-ptr_max
PARAM_VALUE 3 meta 0
PARAM_VALUE 4 type 3
CAPPED_DATA 2 regs 1
DATA_SOURCE 0 address $0
DATA_SOURCE 1 is_write $1
DATA_SOURCE 2 regs $2
BIT_INFO 1 is_write 0x0,0x0
PREEMPT_ADD
RX_PATH
TASK_NOT_RUNNING
UNITS 0 address unit_byte