Defined in 1 files as a function:
Referenced in 10 files:
- net/bluetooth/hci_sock.c
- net/core/sock.c, line 3982
- net/ipv4/ip_sockglue.c, line 550
- net/ipv4/ping.c, line 874
- net/ipv6/datagram.c
- net/l2tp/l2tp_ip.c, line 565
- net/l2tp/l2tp_ip6.c, line 710
- net/nfc/llcp_sock.c, line 882
- net/rxrpc/recvmsg.c, line 320
- net/socket.c, line 1131
Smatch caller information:
net/ipv6/datagram.c ipv6_recv_error() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | msg | 4096-ptr_max |
| PARAM_VALUE | 1 | sk | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->sk_callback_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 1 | sk->sk_dst_cache->dev_rcu->rtnl_link_ops->maxtype | 0-6,8-10,15,18,20,22,24,34,50 |
| PARAM_VALUE | 2 | skb | 4096-ptr_max |
| PARAM_VALUE | 2 | skb->next | 0 |
| PARAM_VALUE | 2 | skb->prev | 0 |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,128 |
| DATA_SOURCE | 0 | msg | $1 |
| DATA_SOURCE | 1 | sk | $0 |
| DATA_SOURCE | 2 | skb | r sock_dequeue_err_skb |
| PARAM_COMPARE | 1 | &sk->sk_error_queue | != $1->sk_error_queue.next |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->truesize | |
| UNITS | 1 | sk | unit_byte |
net/ipv6/datagram.c ipv6_recv_rxpmtu() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | msg | 4096-ptr_max |
| PARAM_VALUE | 1 | sk | 4096-ptr_max |
| PARAM_VALUE | 2 | skb | 4096-ptr_max |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,128 |
| DATA_SOURCE | 0 | msg | $1 |
| DATA_SOURCE | 1 | sk | $0 |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->truesize | |
| UNITS | 1 | sk | unit_byte |
net/ipv4/ping.c ping_recvmsg() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 1 | sk | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->alloc_stack_handle | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->dead | 0-1 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->free_stack_handle | 0-4294967295 |
| PARAM_VALUE | 2 | skb | 4096-ptr_max |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,128 |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| DATA_SOURCE | 0 | msg | $1 |
| DATA_SOURCE | 1 | sk | $0 |
| DATA_SOURCE | 2 | skb | r skb_recv_datagram |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->truesize | |
| UNITS | 1 | sk | unit_byte |
net/l2tp/l2tp_ip.c l2tp_ip_recvmsg() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | msg | 4096-ptr_max |
| PARAM_VALUE | 1 | sk | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->alloc_stack_handle | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->dead | 0-1 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->free_stack_handle | 0-4294967295 |
| PARAM_VALUE | 2 | skb | 4096-ptr_max |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,128 |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| DATA_SOURCE | 0 | msg | $1 |
| DATA_SOURCE | 1 | sk | $0 |
| DATA_SOURCE | 2 | skb | r skb_recv_datagram |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->truesize | |
| UNITS | 1 | sk | unit_byte |
net/rxrpc/recvmsg.c rxrpc_recvmsg_data() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | msg | 4096-ptr_max |
| PARAM_VALUE | 2 | skb | 4096-ptr_max |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,128 |
| DATA_SOURCE | 0 | msg | $2 |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->truesize | |
| NO_OVERFLOW_SIMPLE | 2 | skb->data | |
| UNITS | 1 | sk | unit_byte |
| LOCK2 | &call->user_mutex | ||
| HALF_LOCKED2 | &vq->mutex | ||
| TYPE_LOCK | (struct rxrpc_call)->user_mutex |
net/l2tp/l2tp_ip6.c l2tp_ip6_recvmsg() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | msg | 4096-ptr_max |
| PARAM_VALUE | 1 | sk | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->alloc_stack_handle | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->dead | 0-1 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->free_stack_handle | 0-4294967295 |
| PARAM_VALUE | 2 | skb | 4096-ptr_max |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,128 |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| DATA_SOURCE | 0 | msg | $1 |
| DATA_SOURCE | 1 | sk | $0 |
| DATA_SOURCE | 2 | skb | r skb_recv_datagram |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->truesize | |
| UNITS | 1 | sk | unit_byte |
net/bluetooth/hci_sock.c hci_sock_recvmsg() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 1 | sk | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->__sk_common.skc_state | 0-8,10-255 |
| PARAM_VALUE | 1 | sk->channel | 1-2 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->alloc_stack_handle | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->dead | 0-1 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->free_stack_handle | 0-4294967295 |
| PARAM_VALUE | 2 | skb | 4096-ptr_max |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,128 |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| DATA_SOURCE | 0 | msg | $1 |
| DATA_SOURCE | 2 | skb | r skb_recv_datagram |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| UNITS | 1 | sk | unit_byte |
| HALF_LOCKED2 | &vq->mutex | ||
| HALF_LOCKED2 | sk |
net/bluetooth/hci_sock.c hci_sock_recvmsg() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 1 | sk | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->__sk_common.skc_state | 0-8,10-255 |
| PARAM_VALUE | 1 | sk->channel | 3 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->alloc_stack_handle | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->dead | 0-1 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->free_stack_handle | 0-4294967295 |
| PARAM_VALUE | 2 | skb | 4096-ptr_max |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,128 |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| DATA_SOURCE | 0 | msg | $1 |
| DATA_SOURCE | 2 | skb | r skb_recv_datagram |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| UNITS | 1 | sk | unit_byte |
| HALF_LOCKED2 | &vq->mutex | ||
| HALF_LOCKED2 | sk |
net/ipv4/ip_sockglue.c ip_recv_error() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | msg | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->sk_callback_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 1 | sk->sk_dst_cache->dev_rcu->rtnl_link_ops->maxtype | 0-6,8-10,15,18,20,22,24,34,50 |
| PARAM_VALUE | 2 | skb | 4096-ptr_max |
| PARAM_VALUE | 2 | skb->next | 0 |
| PARAM_VALUE | 2 | skb->prev | 0 |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,128 |
| DATA_SOURCE | 0 | msg | $1 |
| DATA_SOURCE | 1 | sk | $0 |
| DATA_SOURCE | 2 | skb | r sock_dequeue_err_skb |
| PARAM_COMPARE | 1 | &sk->sk_error_queue | != $1->sk_error_queue.next |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->truesize | |
| UNITS | 1 | sk | unit_byte |
net/core/sock.c sock_recv_errqueue() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 1 | sk->sk_callback_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 1 | sk->sk_dst_cache->dev_rcu->rtnl_link_ops->maxtype | 0-6,8-10,15,18,20,22,24,34,50 |
| PARAM_VALUE | 2 | skb | 4096-ptr_max |
| PARAM_VALUE | 2 | skb->next | 0 |
| PARAM_VALUE | 2 | skb->prev | 0 |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,128 |
| DATA_SOURCE | 0 | msg | $1 |
| DATA_SOURCE | 1 | sk | $0 |
| DATA_SOURCE | 2 | skb | r sock_dequeue_err_skb |
| PARAM_COMPARE | 1 | &sk->sk_error_queue | != $1->sk_error_queue.next |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->truesize | |
| UNITS | 1 | sk | unit_byte |
net/socket.c __sock_recv_cmsgs() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 1 | sk | 4096-ptr_max |
| PARAM_VALUE | 1 | *sk->sk_backlog.head->dev->name | 0-255 |
| PARAM_VALUE | 2 | skb | 1-u64max |
| PARAM_VALUE | 2 | skb->dev->rtnl_link_ops->priv_size | 0,8,32,48,56,88,112,120,144,160,224,240,256,296,616,624,728,736,744,1056,1128,1336,1616,2176,2240,2272,2560,3296,3544,3720,9688-u64max |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,52,128 |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| CAPPED_DATA | 1 | sk | 1 |
| DATA_SOURCE | 0 | msg | $0 |
| DATA_SOURCE | 1 | sk | $1 |
| DATA_SOURCE | 2 | skb | $2 |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->next->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_receive_queue.prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->end | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->len | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->prev->truesize | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->tail | |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_write_queue.next->truesize | |
| UNITS | 1 | sk | unit_byte |
| UNITS | 2 | skb | unit_byte |
| HALF_LOCKED2 | 1 | sk |
net/nfc/llcp_sock.c llcp_sock_recvmsg() -> sock_recv_timestamp()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 1 | sk | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->__sk_common.skc_net.net->ipv4.fib_main->tb_data->kv->key | 0-4294967295 |
| PARAM_VALUE | 1 | sk->__sk_common.skc_net.net->loopback_dev->refcnt_tracker.list.next->next | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->__sk_common.skc_net.net->mctp.bind_lock.first_waiter->list.prev->prev | 5159360019465732096 |
| PARAM_VALUE | 1 | sk->__sk_common.skc_node.next->pprev | 1-u64max |
| PARAM_VALUE | 1 | sk->__sk_common.skc_prot->owner->refcnt.counter | 0-s32max |
| PARAM_VALUE | 1 | sk->listener->__sk_common.skc_net.net->notrefcnt_tracker.dead | 1 |
| PARAM_VALUE | 1 | sk->listener->__sk_common.skc_net.net->refcnt_tracker.dead | 1 |
| PARAM_VALUE | 1 | sk->listener->sk_bpf_storage->owner_refcnt.refs.counter | s32min-s32max |
| PARAM_VALUE | 1 | sk->listener->sk_callback_lock.raw_lock.cnts.counter | 0-s32max |
| PARAM_VALUE | 1 | sk->listener->sk_lock.owned | 1 |
| PARAM_VALUE | 1 | sk->listener->sk_rcu.next | 0 |
| PARAM_VALUE | 1 | sk->listener->sk_reuseport_cb | 0 |
| PARAM_VALUE | 1 | sk->listener->sk_user_data | 0 |
| PARAM_VALUE | 1 | sk->sk_backlog.head->extensions->refcnt.refs.counter | 1 |
| PARAM_VALUE | 1 | sk->sk_backlog.head->sk->__sk_common.skc_net.net->notrefcnt_tracker.dead | 1 |
| PARAM_VALUE | 1 | sk->sk_backlog.head->sk->__sk_common.skc_net.net->refcnt_tracker.dead | 1 |
| PARAM_VALUE | 1 | sk->sk_backlog.head->sk->__sk_common.skc_prot | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->sk_backlog.head->sk->__sk_common.skc_state | 0-9,11-255 |
| PARAM_VALUE | 1 | sk->sk_backlog.head->sk->sk_callback_lock.owner | (-1) |
| PARAM_VALUE | 1 | sk->sk_backlog.head->sk->sk_callback_lock.owner_cpu | u32max |
| PARAM_VALUE | 1 | sk->sk_backlog.head->sk->sk_callback_lock.raw_lock.cnts.counter | 0-s32max |
| PARAM_VALUE | 1 | sk->sk_backlog.head->sk->sk_owner->refcnt.counter | 0-s32max |
| PARAM_VALUE | 1 | sk->sk_backlog.head->sk->sk_prot_creator->owner->refcnt.counter | 0-s32max |
| PARAM_VALUE | 1 | sk->sk_backlog.head->sk->sk_rcu.func | 1-u64max |
| PARAM_VALUE | 1 | sk->sk_callback_lock.owner | (-1) |
| PARAM_VALUE | 1 | sk->sk_callback_lock.owner_cpu | u32max |
| PARAM_VALUE | 1 | sk->sk_callback_lock.raw_lock.cnts.counter | 0-s32max |
| PARAM_VALUE | 1 | sk->sk_callback_lock.raw_lock.wlocked | 0 |
| PARAM_VALUE | 1 | sk->sk_dst_cache->callback_head.flags | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_dst_cache->callback_head.is_hard | 0-1 |
| PARAM_VALUE | 1 | sk->sk_dst_cache->callback_head.is_lazy | 0-1 |
| PARAM_VALUE | 1 | sk->sk_dst_cache->callback_head.is_queued | 0-1 |
| PARAM_VALUE | 1 | sk->sk_dst_cache->callback_head.is_soft | 0-1 |
| PARAM_VALUE | 1 | sk->sk_dst_cache->ops->pcpuc_entries.lock.owner | (-1) |
| PARAM_VALUE | 1 | sk->sk_dst_cache->ops->pcpuc_entries.lock.owner_cpu | u32max |
| PARAM_VALUE | 1 | sk->sk_dst_cache->ops->pcpuc_entries.lock.raw_lock.val.counter | 0-s32max |
| PARAM_VALUE | 1 | sk->sk_error_queue.next->prev | 2011684551238094848 |
| PARAM_VALUE | 1 | sk->sk_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 1 | sk->sk_lock.owned | 0 |
| PARAM_VALUE | 1 | sk->sk_lock.slock.rlock.dep_map->name | 0-255 |
| PARAM_VALUE | 1 | sk->sk_lock.wq.head.prev->next | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->sk_lock.wq.head.prev->next->next | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->sk_memcg->high_work.entry.next->prev | 4096-ptr_max |
| PARAM_VALUE | 1 | sk->sk_memcg->tcpmem_pressure | 0-1 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->alloc_stack_handle | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->dead | 0-1 |
| PARAM_VALUE | 1 | sk->sk_receive_queue.next->sk->ns_tracker->free_stack_handle | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_reuseport_cb->rcu.next | 0 |
| PARAM_VALUE | 1 | sk->sk_rx_dst->u.dst.__pad | s16min-s16max |
| PARAM_VALUE | 1 | sk->sk_rx_dst->u.dst.__rcuref.refcnt.counter | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_rx_dst->u.dst.__use | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_rx_dst->u.dst.dst_trace_seq.counter | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_rx_dst->u.dst.error | s16min-s16max |
| PARAM_VALUE | 1 | sk->sk_rx_dst->u.dst.header_len | 0-u16max |
| PARAM_VALUE | 1 | sk->sk_rx_dst->u.dst.obsolete | s16min-s16max |
| PARAM_VALUE | 1 | sk->sk_rx_dst->u.dst.tclassid | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_rx_dst->u.dst.trailer_len | 0-u16max |
| PARAM_VALUE | 1 | sk->sk_user_data->connect_cookie | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_conn->c_proposed_version | 769 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_reconnect_jiffies | 0 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_recv_w.cpu | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_recv_w.timer.flags | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_recv_w.timer.is_hard | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_recv_w.timer.is_lazy | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_recv_w.timer.is_queued | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_recv_w.timer.is_soft | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_send_w.cpu | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_send_w.timer.flags | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_send_w.timer.is_hard | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_send_w.timer.is_lazy | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_send_w.timer.is_queued | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_send_w.timer.is_soft | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->cp_state.counter | 0-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->ctrl->ctrl.failfast_work.cpu | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->ctrl->ctrl.failfast_work.timer.flags | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_user_data->ctrl->ctrl.failfast_work.timer.is_hard | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->ctrl->ctrl.failfast_work.timer.is_lazy | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->ctrl->ctrl.failfast_work.timer.is_queued | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->ctrl->ctrl.failfast_work.timer.is_soft | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->ctrl->ctrl.state | 2 |
| PARAM_VALUE | 1 | sk->sk_user_data->dev->carrier_down_count.counter | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->dev->refcnt_tracker.untracked.refs.counter | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->door_bell.done | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_user_data->door_bell.wait.lock.owner | (-1) |
| PARAM_VALUE | 1 | sk->sk_user_data->door_bell.wait.lock.owner_cpu | 4294967295 |
| PARAM_VALUE | 1 | sk->sk_user_data->kref.refcount.refs.counter | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->login_work.cpu | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->login_work.timer.flags | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_user_data->login_work.timer.is_hard | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->login_work.timer.is_lazy | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->login_work.timer.is_queued | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->login_work.timer.is_soft | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->mpa_timer->type | 5,7 |
| PARAM_VALUE | 1 | sk->sk_user_data->private->s_delegated_inos.xa_flags | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_user_data->qp->tx_ctx.tx_suspend | 1 |
| PARAM_VALUE | 1 | sk->sk_user_data->read.counter | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->reestablish_timeout | 0,750 |
| PARAM_VALUE | 1 | sk->sk_user_data->ref.refcount.refs.counter | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->sc_kref.refcount.refs.counter | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->sc_node->nd_item.ci_dentry->d_fsdata->s_dependent_count | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->sc_page->_refcount.counter | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->sc_page->page_type | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_user_data->session->state | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->sock_state.counter | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->work.cpu | s32min-s32max |
| PARAM_VALUE | 1 | sk->sk_user_data->work.flags | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_user_data->work.is_hard | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->work.is_lazy | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->work.is_queued | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->work.is_soft | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->work.node.node.next | 0 |
| PARAM_VALUE | 1 | sk->sk_user_data->work.node.node.prev | 0 |
| PARAM_VALUE | 1 | sk->sk_user_data->work.timer.flags | 0-4294967295 |
| PARAM_VALUE | 1 | sk->sk_user_data->work.timer.is_hard | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->work.timer.is_lazy | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->work.timer.is_queued | 0-1 |
| PARAM_VALUE | 1 | sk->sk_user_data->work.timer.is_soft | 0-1 |
| PARAM_VALUE | 1 | sk->skc_family | 0-u16max |
| PARAM_VALUE | 1 | sk->tcp_retransmit_timer.entry->pprev | 4096-ptr_max |
| PARAM_VALUE | 1 | *sk->sk_backlog.head->dev->name | 0-255 |
| PARAM_VALUE | 1 | *sk->sk_user_data->dev->pcpu_refcnt | s32min-s32max |
| PARAM_VALUE | 1 | *sk->sk_user_data->door_bell.wait.lock.owner | (-4611686018427387904)-4611686018427387903 |
| PARAM_VALUE | 1 | *sk->sk_user_data->private->o_auth.authorizer->session_key.key | (-4611686018427387904)-4611686018427387903 |
| PARAM_VALUE | 1 | *sk->sk_user_data->private->s_auth.authorizer->session_key.key | (-4611686018427387904)-4611686018427387903 |
| PARAM_VALUE | 2 | skb | 4096-ptr_max |
| BUF_SIZE | 0 | msg->msg_control | (-1)-0,16-17,24 |
| BUF_SIZE | 0 | msg->msg_name | (-1)-0,12,128 |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| BUF_SIZE | 2 | skb | (-1),1-s32max |
| CAPPED_DATA | 1 | sk | 1 |
| CAPPED_DATA | 1 | &sk->sk_receive_queue | 1 |
| DATA_SOURCE | 0 | msg | $1 |
| DATA_SOURCE | 2 | skb | r skb_recv_datagram |
| NOSPEC | 0 | msg->msg_iter.count | |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | msg->msg_control | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_control_user | 4096-ptr_max[c][u] |
| USER_DATA | 0 | msg->msg_controllen | 0-u64max |
| USER_DATA | 0 | msg->msg_flags | 0-u32max[c] |
| USER_DATA | 0 | msg->msg_iter.count | 0-u64max |
| USER_DATA | 0 | msg->msg_iter.iov_offset | 0-u64max[c] |
| USER_DATA | 0 | *msg->msg_name | s64min-s64max |
| NO_OVERFLOW_SIMPLE | 1 | sk->sk_backlog.len | |
| UNITS | 1 | sk | unit_byte |
| HALF_LOCKED2 | &vq->mutex | ||
| HALF_LOCKED2 | sk |