Defined in 1 files as a prototype:
Defined in 1 files as a function:
Referenced in 1 files:
Smatch caller information:
mm/kfence/core.c check_canary_byte() -> kfence_report_error()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | address | 4096-18446744073709547520 |
| PARAM_VALUE | 1 | is_write | 0 |
| PARAM_VALUE | 2 | regs | 0 |
| PARAM_VALUE | 3 | meta | 4096-ptr_max |
| PARAM_VALUE | 3 | meta->lock.dep_map->name | 0-255 |
| PARAM_VALUE | 3 | meta->lock.owner_cpu | 0 |
| PARAM_VALUE | 3 | meta->lock.raw_lock.val.counter | 0-s32max |
| PARAM_VALUE | 4 | type | 2 |
| CAPPED_DATA | 0 | address | 1 |
| DATA_SOURCE | 0 | address | $0 |
| DATA_SOURCE | 3 | meta | r addr_to_metadata |
| PREEMPT_ADD | <- disables preempt | ||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| UNITS | 0 | address | unit_byte |
| LOCK2 | flags | ||
| LOCK2 | 3 | &meta->lock | |
| TYPE_LOCK | (struct kfence_metadata)->lock |
mm/kfence/core.c kfence_guarded_free() -> kfence_report_error()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 1 | is_write | 0 |
| PARAM_VALUE | 2 | regs | 0 |
| PARAM_VALUE | 3 | meta | 4096-ptr_max |
| PARAM_VALUE | 3 | meta->lock.dep_map->name | 0-255 |
| PARAM_VALUE | 3 | meta->lock.owner_cpu | 0 |
| PARAM_VALUE | 3 | meta->lock.raw_lock.val.counter | 0-s32max |
| PARAM_VALUE | 4 | type | 4 |
| BUF_SIZE | 0 | address | (-1),1-s32max |
| DATA_SOURCE | 0 | address | $0 |
| DATA_SOURCE | 3 | meta | $1 |
| PREEMPT_ADD | <- disables preempt | ||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | flags | ||
| LOCK2 | 3 | &meta->lock | |
| TYPE_LOCK | (struct kfence_metadata)->lock |
mm/kfence/core.c kfence_handle_page_fault() -> kfence_report_error()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 2 | regs | 4096-ptr_max |
| PARAM_VALUE | 3 | meta | 4096-ptr_max |
| PARAM_VALUE | 3 | meta->lock.dep_map->name | 0-255 |
| PARAM_VALUE | 3 | meta->lock.owner_cpu | 0 |
| PARAM_VALUE | 3 | meta->lock.raw_lock.val.counter | 0-s32max |
| PARAM_VALUE | 4 | type | 0-1 |
| CAPPED_DATA | 2 | regs | 1 |
| DATA_SOURCE | 0 | address | $0 |
| DATA_SOURCE | 1 | is_write | $1 |
| DATA_SOURCE | 2 | regs | $2 |
| FUZZY_MAX | 4 | type | 1 |
| BIT_INFO | 1 | is_write | 0x0,0x0 |
| HARD_MAX | 4 | type | 1 |
| PREEMPT_ADD | <- disables preempt | ||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| UNITS | 0 | address | unit_byte |
| LOCK2 | flags | ||
| LOCK2 | 3 | &meta->lock | |
| TYPE_LOCK | (struct kfence_metadata)->lock |
mm/kfence/core.c kfence_handle_page_fault() -> kfence_report_error()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 2 | regs | 4096-ptr_max |
| PARAM_VALUE | 3 | meta | 0 |
| PARAM_VALUE | 4 | type | 3 |
| CAPPED_DATA | 2 | regs | 1 |
| DATA_SOURCE | 0 | address | $0 |
| DATA_SOURCE | 1 | is_write | $1 |
| DATA_SOURCE | 2 | regs | $2 |
| BIT_INFO | 1 | is_write | 0x0,0x0 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| UNITS | 0 | address | unit_byte |