Defined in 1 files as a function:
Referenced in 28 files:
- block/ioprio.c
- drivers/gpu/drm/drm_ioctl.c, line 199
- drivers/gpu/drm/i915/display/intel_display_driver.c
- drivers/hv/mshv_vtl_main.c, line 1215
- drivers/infiniband/core/nldev.c, line 526
- fs/binfmt_elf.c
- fs/binfmt_elf_fdpic.c
- fs/coredump.c, line 379
- fs/ext4/sysfs.c, line 169
- fs/nsfs.c, line 273
- fs/pidfs.c, line 476
- fs/resctrl/rdtgroup.c, line 832
- kernel/capability.c
- kernel/cgroup/cgroup-v1.c, line 367
- kernel/cgroup/cgroup.c, line 5406
- kernel/cgroup/debug.c
- kernel/exit.c
- kernel/fork.c, line 1832
- kernel/futex/core.c, line 1057
- kernel/futex/pi.c
- kernel/ptrace.c, line 186
- kernel/sched/core.c, line 5442
- kernel/seccomp.c
- kernel/signal.c
- kernel/sys.c
- kernel/time/posix-cpu-timers.c, line 1644
- lib/dynamic_debug.c, line 835
- mm/userfaultfd.c, line 2637
Smatch caller information:
kernel/exit.c wait_task_continued() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->exit_state | s32min-15,17-47,49-s32max |
| PARAM_VALUE | 0 | tsk->sighand | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->sighand->siglock.rlock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | tsk->signal | 4096-ptr_max |
| DATA_SOURCE | 0 | tsk | $1 |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| HALF_LOCKED2 | global &tasklist_lock |
kernel/exit.c wait_task_stopped() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->exit_state | s32min-15,17-47,49-s32max |
| PARAM_VALUE | 0 | tsk->sighand | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->sighand->siglock.rlock.dep_map->name | 0-255 |
| DATA_SOURCE | 0 | tsk | $2 |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| HALF_LOCKED2 | global &tasklist_lock |
kernel/exit.c wait_task_zombie() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->exit_state | 32 |
| DATA_SOURCE | 0 | tsk | $1 |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| HALF_LOCKED2 | global &tasklist_lock |
fs/coredump.c coredump_parse() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| RX_PATH | |||
| TASK_NOT_RUNNING |
kernel/fork.c __do_sys_set_tid_address() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
kernel/fork.c __do_sys_set_tid_address() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
fs/pidfs.c pidfd_info() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->real_cred | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->real_cred->non_rcu | 0 |
| PARAM_VALUE | 0 | tsk->real_cred->process_keyring->user->lock.rlock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | tsk->real_cred->process_keyring->user->qnbytes | s32min-s32max |
| PARAM_VALUE | 0 | tsk->real_cred->process_keyring->user->qnkeys | s32min-s32max |
| PARAM_VALUE | 0 | tsk->real_cred->rcu.func | 1-u64max |
| PARAM_VALUE | 0 | tsk->real_cred->rcu.next | 0 |
| PARAM_VALUE | 0 | tsk->real_cred->request_key_auth->user->lock.rlock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | tsk->real_cred->request_key_auth->user->qnbytes | s32min-s32max |
| PARAM_VALUE | 0 | tsk->real_cred->request_key_auth->user->qnkeys | s32min-s32max |
| PARAM_VALUE | 0 | tsk->real_cred->session_keyring->user->lock.rlock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | tsk->real_cred->session_keyring->user->qnbytes | s32min-s32max |
| PARAM_VALUE | 0 | tsk->real_cred->session_keyring->user->qnkeys | s32min-s32max |
| PARAM_VALUE | 0 | tsk->real_cred->thread_keyring->user->lock.rlock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | tsk->real_cred->thread_keyring->user->qnbytes | s32min-s32max |
| PARAM_VALUE | 0 | tsk->real_cred->thread_keyring->user->qnkeys | s32min-s32max |
| PARAM_VALUE | 0 | tsk->real_cred->ucounts->ns->work.entry.next | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->real_cred->ucounts->ns->work.entry.next->prev | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->real_cred->user->uidhash_node->next->pprev | 1-u64max |
| PARAM_VALUE | 0 | tsk->real_cred->user->uidhash_node.next->pprev | 1-u64max |
| PARAM_VALUE | 0 | tsk->real_cred->user_ns->work.entry.next->prev | 4096-ptr_max |
| DATA_SOURCE | 0 | tsk | r get_pid_task |
kernel/capability.c __do_sys_capset() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
kernel/capability.c __do_sys_capset() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
kernel/capability.c cap_get_target_pid() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
kernel/futex/core.c handle_futex_death() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->futex.exit_mutex.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | tsk->futex.exit_mutex.first_waiter | 0,4096-ptr_max |
| PARAM_VALUE | 0 | tsk->futex.exit_mutex.first_waiter->list.prev->next | 5159360019465732096 |
| PARAM_VALUE | 0 | tsk->futex.exit_mutex.first_waiter->list.prev->prev | 5159360019465732096 |
| PARAM_VALUE | 0 | tsk->futex.exit_mutex.osq.tail.counter | 0-s32max |
| PARAM_VALUE | 0 | tsk->futex.state | 1 |
| PARAM_VALUE | 0 | tsk->pi_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | tsk->pi_lock.owner | (-1) |
| PARAM_VALUE | 0 | tsk->pi_lock.owner_cpu | u32max |
| DATA_SOURCE | 0 | tsk | $1 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | 0 | &tsk->futex.exit_mutex | |
| TYPE_LOCK | (struct futex_sched_data)->exit_mutex |
mm/userfaultfd.c userfault_msg() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING |
kernel/time/posix-cpu-timers.c posix_cpu_nsleep() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
kernel/ptrace.c looks_like_a_spurious_pid() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->exit_code | 1029 |
| PARAM_VALUE | 0 | tsk->ptrace | 1-u32max |
| PARAM_VALUE | 0 | tsk->sighand | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->sighand->siglock.rlock.dep_map->name | 0-255 |
| CAPPED_DATA | 0 | tsk->parent | 1 |
| DATA_SOURCE | 0 | tsk | $0 |
| BIT_INFO | 0 | tsk->jobctl | 0x0,0xffffffffffbfffff |
| PREEMPT_ADD | |||
| LOCK2 | global &tasklist_lock | ||
| LOCK2 | irq | ||
| LOCK2 | 0 | &tsk->sighand->siglock | |
| TYPE_LOCK | (struct sighand_struct)->siglock |
drivers/gpu/drm/drm_ioctl.c drm_getclient() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
fs/binfmt_elf.c fill_prstatus() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | rcu_read |
fs/binfmt_elf.c fill_prstatus() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->blocked.sig | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->pending.signal.sig | 4096-ptr_max |
| DATA_SOURCE | 0 | tsk | $1 |
| RX_PATH | |||
| TASK_NOT_RUNNING |
fs/binfmt_elf.c fill_psinfo() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | rcu_read |
fs/binfmt_elf.c fill_psinfo() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| DATA_SOURCE | 0 | tsk | $1 |
| RX_PATH | |||
| TASK_NOT_RUNNING |
fs/ext4/sysfs.c journal_task_show() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | &of->mutex | ||
| HALF_LOCKED2 | &of->prealloc_mutex | ||
| HALF_LOCKED2 | &pool->lock | ||
| TYPE_LOCK | (struct kernfs_open_file)->mutex |
drivers/infiniband/core/nldev.c fill_res_name_pid() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| RX_PATH | |||
| TASK_NOT_RUNNING |
fs/resctrl/rdtgroup.c show_rdt_tasks() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | &s->lock | ||
| LOCK2 | global &rdtgroup_mutex | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct seq_file)->lock |
block/ioprio.c __do_sys_ioprio_get() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
block/ioprio.c __do_sys_ioprio_get() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
block/ioprio.c __do_sys_ioprio_set() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| USER_DATA | 0 | tsk->io_context->ioprio | 0-u16max |
block/ioprio.c __do_sys_ioprio_set() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| USER_DATA | 0 | tsk->io_context->ioprio | 0-u16max |
kernel/cgroup/cgroup.c cgroup_procs_show() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 1-ptr_max |
| DATA_SOURCE | 0 | tsk | $1 |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | &s->lock | ||
| TYPE_LOCK | (struct seq_file)->lock |
kernel/cgroup/cgroup-v1.c pidlist_array_load() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| DATA_SOURCE | 0 | tsk | r css_task_iter_next |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | &cgrp->pidlist_mutex | ||
| LOCK2 | &of->mutex | ||
| LOCK2 | &s->lock | ||
| TYPE_LOCK | (struct cgroup)->pidlist_mutex | ||
| TYPE_LOCK | (struct kernfs_open_file)->mutex | ||
| TYPE_LOCK | (struct seq_file)->lock |
fs/nsfs.c ns_ioctl() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 1-u64max |
| DATA_SOURCE | 0 | tsk | r find_task_by_pid_ns |
| LOCK2 | rcu_read |
kernel/cgroup/debug.c cgroup_css_links_read() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| CAPPED_DATA | 0 | &tsk->cg_list | 1 |
| PREEMPT_ADD | <- disables preempt | ||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | &seq->lock | ||
| LOCK2 | global &css_set_lock | ||
| LOCK2 | irq | ||
| TYPE_LOCK | (struct seq_file)->lock |
kernel/cgroup/debug.c cgroup_css_links_read() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| CAPPED_DATA | 0 | &tsk->cg_list | 1 |
| PREEMPT_ADD | <- disables preempt | ||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | &seq->lock | ||
| LOCK2 | global &css_set_lock | ||
| LOCK2 | irq | ||
| TYPE_LOCK | (struct seq_file)->lock |
kernel/futex/pi.c __fixup_pi_state_owner() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 1-u64max |
| RX_PATH | |||
| LOCK2 | &pi_state->pi_mutex.wait_lock | ||
| LOCK2 | irq | ||
| HALF_LOCKED2 | &hb->lock | ||
| HALF_LOCKED2 | &pi_state->pi_mutex.wait_lock | ||
| TYPE_LOCK | (struct rt_mutex_base)->wait_lock |
kernel/futex/pi.c __futex_unlock_pi() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| RX_PATH |
kernel/futex/pi.c attach_to_pi_state() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 1-u64max |
| PREEMPT_ADD | <- disables preempt | ||
| RX_PATH | |||
| LOCK2 | &pi_state->pi_mutex.wait_lock | ||
| LOCK2 | irq | ||
| HALF_LOCKED2 | &hb->lock | ||
| TYPE_LOCK | (struct rt_mutex_base)->wait_lock |
kernel/futex/pi.c futex_lock_pi_atomic() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| DATA_SOURCE | 0 | tsk | $4 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| HALF_LOCKED2 | &hb->lock |
kernel/futex/pi.c wake_futex_pi() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| RX_PATH | |||
| LOCK2 | &pi_state->pi_mutex.wait_lock | ||
| LOCK2 | irq | ||
| TYPE_LOCK | (struct rt_mutex_base)->wait_lock |
kernel/signal.c do_rt_sigqueueinfo() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
kernel/signal.c do_rt_tgsigqueueinfo() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
kernel/signal.c kill_something_info() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-4931338248183341055,4931338248183341057-ptr_max |
| LOCK2 | global &tasklist_lock |
kernel/signal.c ptrace_do_notify() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | irq | ||
| HALF_LOCKED2 | &sighand->siglock |
kernel/signal.c ptrace_signal() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| UNITS | 0 | tsk | unit_byte |
| LOCK2 | &sighand->siglock | ||
| LOCK2 | irq | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct sighand_struct)->siglock |
kernel/sys.c __do_sys_getpriority() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
kernel/sys.c __do_sys_getpriority() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
kernel/sys.c __do_sys_gettid() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
kernel/sys.c __do_sys_setpgid() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
kernel/sys.c __do_sys_setpgid() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
kernel/sys.c __do_sys_setpriority() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
kernel/sys.c __do_sys_setpriority() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
fs/compat_binfmt_elf.c fill_prstatus() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | rcu_read |
fs/compat_binfmt_elf.c fill_prstatus() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->blocked.sig | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->pending.signal.sig | 4096-ptr_max |
| DATA_SOURCE | 0 | tsk | $1 |
| RX_PATH | |||
| TASK_NOT_RUNNING |
fs/compat_binfmt_elf.c fill_psinfo() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | rcu_read |
fs/compat_binfmt_elf.c fill_psinfo() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| DATA_SOURCE | 0 | tsk | $1 |
| RX_PATH | |||
| TASK_NOT_RUNNING |
drivers/gpu/drm/i915/display/intel_display_driver.c intel_display_driver_check_access() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| RX_PATH | |||
| TASK_NOT_RUNNING |
drivers/gpu/drm/i915/display/intel_display_driver.c intel_display_driver_check_access() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| RX_PATH | |||
| TASK_NOT_RUNNING |
kernel/sched/core.c schedule_tail() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|
kernel/seccomp.c seccomp_can_sync_threads() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | tsk | 4096-ptr_max |
| PARAM_VALUE | 0 | tsk->seccomp.mode | s32min-(-1),1-s32max |
| BIT_INFO | 0 | tsk->flags | 0x0,0xfffffffb |
| PREEMPT_ADD | |||
| LOCK2 | irq |
kernel/seccomp.c seccomp_notify_recv() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|---|---|---|
| LOCK2 | &filter->notify_lock | ||
| TYPE_LOCK | (struct seccomp_filter)->notify_lock |
lib/dynamic_debug.c __dynamic_emit_prefix() -> task_pid_vnr()
| Type | Parameter | Key | Value |
|---|