Defined in 1 files as a prototype:
Defined in 2 files as a function:
- drivers/char/ipmi/ipmi_si_intf.c, line 302 (as a function)
- drivers/char/ipmi/ipmi_ssif.c, line 338 (as a function)
Referenced in 2 files:
Smatch caller information:
drivers/char/ipmi/ipmi_ssif.c deliver_recv_msg() -> return_hosed_msg()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | ssif_info | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->client | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->client->adapter | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->client->adapter->bus_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | ssif_info->client->adapter->dev.driver_data->adev->pm.bus_locked | 0-1 |
| PARAM_VALUE | 0 | ssif_info->client->adapter->dev.driver_data->mutex->wait_lock.owner | (-4611686018427387904)-4611686018427387903 |
| PARAM_VALUE | 0 | ssif_info->client->adapter->lock_ops | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->curr_msg | 0,4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->curr_msg->rsp_size | 0-272 |
| PARAM_VALUE | 0 | ssif_info->lock.rlock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | ssif_info->ssif_state | 0,2-4 |
| PARAM_VALUE | 0 | ssif_info->stats | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.next | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.next->next | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.prev | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.prev->next | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.prev->next->next | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.prev->prev | 4096-ptr_max |
| PARAM_VALUE | 1 | msg | 4096-ptr_max |
| PARAM_VALUE | 1 | msg->rsp_size | s32min-(-1) |
| BUF_SIZE | 0 | ssif_info | 128 |
| BUF_SIZE | 0 | ssif_info | 128 |
| DATA_SOURCE | 0 | ssif_info | $0 |
| DATA_SOURCE | 1 | msg | $1 |
| BIT_INFO | 1 | msg->rsp_size | 0x0,0x1ff |
| NOCHECK_CALL | |||
| HALF_LOCKED2 | *flags |
drivers/char/ipmi/ipmi_ssif.c msg_done_handler() -> return_hosed_msg()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | ssif_info | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->client | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->client->adapter | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->client->adapter->bus_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | ssif_info->client->adapter->dev.driver_data->adev->pm.bus_locked | 0-1 |
| PARAM_VALUE | 0 | ssif_info->client->adapter->lock_ops | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->curr_msg | 0 |
| PARAM_VALUE | 0 | ssif_info->curr_msg->rsp_size | 0-272 |
| PARAM_VALUE | 0 | ssif_info->lock.rlock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | ssif_info->ssif_state | 0 |
| PARAM_VALUE | 0 | ssif_info->stats | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.done | 0 |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.lock.magic | 3735899821 |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.lock.owner | (-1) |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.lock.owner_cpu | u32max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.next | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.next->next | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.prev | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.prev->next | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.prev->next->next | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->wake_thread.wait.task_list.prev->prev | 4096-ptr_max |
| PARAM_VALUE | 1 | msg | 4096-ptr_max |
| BUF_SIZE | 0 | ssif_info | 128 |
| BUF_SIZE | 0 | ssif_info | 128 |
| DATA_SOURCE | 0 | ssif_info | $0 |
| BIT_INFO | 1 | msg->rsp_size | 0x0,0x1ff |
| NOCHECK_CALL |
drivers/char/ipmi/ipmi_ssif.c start_next_msg() -> return_hosed_msg()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | ssif_info | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->curr_msg | 0 |
| PARAM_VALUE | 0 | ssif_info->lock.rlock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | ssif_info->ssif_state | 0 |
| PARAM_VALUE | 0 | ssif_info->waiting_msg | 0 |
| PARAM_VALUE | 1 | msg | 4096-ptr_max |
| BUF_SIZE | 0 | ssif_info | (-1),128,984,1000 |
| BUF_SIZE | 0 | ssif_info | (-1),128,984,1000 |
| BUF_SIZE | 1 | msg | (-1),600 |
| BUF_SIZE | 1 | msg | (-1),600 |
| DATA_SOURCE | 0 | ssif_info | $0 |
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | ssif_info->curr_msg->msgid | s64min-s64max |
| USER_DATA | 0 | ssif_info->waiting_msg->msgid | s64min-s64max |
| USER_DATA | 1 | msg->msgid | s64min-s64max |
drivers/char/ipmi/ipmi_si_intf.c smi_event_handler() -> return_hosed_msg()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | ssif_info | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->curr_msg | 1-u64max |
| PARAM_VALUE | 0 | ssif_info->handlers | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->handlers->start_transaction | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->si_sm->error_retries | s32min-4294967295 |
| PARAM_VALUE | 0 | ssif_info->si_sm->nonzero_status | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->orig_write_count | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->read_count | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->read_pos | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->seq | 0-255 |
| PARAM_VALUE | 0 | ssif_info->si_sm->state | 0-4294967295 |
| PARAM_VALUE | 0 | ssif_info->si_sm->truncated | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->write_count | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->write_pos | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_state | 7 |
| PARAM_VALUE | 0 | ssif_info->stats | 4096-ptr_max |
| PARAM_VALUE | 1 | msg | 130 |
| BUF_SIZE | 0 | ssif_info | (-1),128,984,1000 |
| BUF_SIZE | 0 | ssif_info | (-1),128,984,1000 |
| BUF_SIZE | 0 | ssif_info->curr_msg | (-1),600 |
| BUF_SIZE | 0 | ssif_info->waiting_msg | (-1),600 |
| DATA_SOURCE | 0 | ssif_info | $0 |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | ssif_info->curr_msg->msgid | s64min-s64max |
| USER_DATA | 0 | ssif_info->si_sm->orig_write_count | 3-272[c] |
| USER_DATA | 0 | ssif_info->si_sm->write_count | 3-274[c] |
| USER_DATA | 0 | ssif_info->waiting_msg->data_size | 2-283[c] |
| USER_DATA | 0 | ssif_info->waiting_msg->msgid | s64min-s64max |
| HALF_LOCKED2 | flags | ||
| HALF_LOCKED2 | 0 | &ssif_info->si_lock |
drivers/char/ipmi/ipmi_si_intf.c smi_event_handler() -> return_hosed_msg()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | ssif_info | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->curr_msg | 1-u64max |
| PARAM_VALUE | 0 | ssif_info->handlers | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->handlers->start_transaction | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->si_sm->error_retries | s32min-4294967295 |
| PARAM_VALUE | 0 | ssif_info->si_sm->nonzero_status | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->orig_write_count | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->read_count | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->read_pos | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->seq | 0-255 |
| PARAM_VALUE | 0 | ssif_info->si_sm->state | 0-4294967295 |
| PARAM_VALUE | 0 | ssif_info->si_sm->truncated | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->write_count | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->write_pos | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_state | 7 |
| PARAM_VALUE | 0 | ssif_info->stats | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->waiting_msg | 0 |
| PARAM_VALUE | 1 | msg | 130 |
| BUF_SIZE | 0 | ssif_info | (-1),128,984,1000 |
| BUF_SIZE | 0 | ssif_info | (-1),128,984,1000 |
| BUF_SIZE | 0 | ssif_info->curr_msg | (-1),600 |
| DATA_SOURCE | 0 | ssif_info | $0 |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | ssif_info->curr_msg->msgid | s64min-s64max |
| USER_DATA | 0 | ssif_info->waiting_msg->msgid | s64min-s64max |
| HALF_LOCKED2 | flags | ||
| HALF_LOCKED2 | 0 | &ssif_info->si_lock |
drivers/char/ipmi/ipmi_si_intf.c start_next_msg() -> return_hosed_msg()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | ssif_info | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->curr_msg | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->handlers | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->handlers->start_transaction | 4096-ptr_max |
| PARAM_VALUE | 0 | ssif_info->si_sm->error_retries | s32min-4294967295 |
| PARAM_VALUE | 0 | ssif_info->si_sm->nonzero_status | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->orig_write_count | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->read_count | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->read_pos | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->seq | 0-255 |
| PARAM_VALUE | 0 | ssif_info->si_sm->state | 0-4294967295 |
| PARAM_VALUE | 0 | ssif_info->si_sm->truncated | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->write_count | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_sm->write_pos | s32min-s32max |
| PARAM_VALUE | 0 | ssif_info->si_state | 0-6,8-u32max |
| PARAM_VALUE | 0 | ssif_info->waiting_msg | 0 |
| PARAM_VALUE | 1 | msg | 192,199-200,213 |
| BUF_SIZE | 0 | ssif_info | (-1),128,208,272,512,608,624,984,1000 |
| BUF_SIZE | 0 | ssif_info | (-1),128,208,272,512,608,624,984,1000 |
| BUF_SIZE | 0 | ssif_info->curr_msg | (-1),600 |
| CAPPED_DATA | 0 | ssif_info->si_sm->orig_write_count | 1 |
| CAPPED_DATA | 0 | ssif_info->si_sm->write_count | 1 |
| DATA_SOURCE | 0 | ssif_info | $0 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | ssif_info->curr_msg->data_size | 2-283[c] |
| USER_DATA | 0 | ssif_info->curr_msg->msgid | s64min-s64max |
| USER_DATA | 0 | ssif_info->waiting_msg->data_size | 2-283[c] |
| USER_DATA | 0 | ssif_info->waiting_msg->msgid | s64min-s64max |
| HALF_LOCKED2 | flags | ||
| HALF_LOCKED2 | 0 | &ssif_info->si_lock |