Defined in 1 files as a function:
Referenced in 14 files:
- crypto/af_alg.c, line 294
- drivers/md/dm-crypt.c, line 2441
- drivers/md/dm-inlinecrypt.c, line 93
- drivers/md/dm-verity-verify-sig.c, line 52
- fs/crypto/keysetup_v1.c, line 61
- fs/ecryptfs/ecryptfs_kernel.h, line 123
- fs/smb/client/connect.c, line 2239
- fs/ubifs/auth.c, line 294
- kernel/crash_dump_dm_crypt.c, line 163
- lib/digsig.c, line 81
- net/dns_resolver/dns_query.c, line 116
- security/keys/dh.c, line 41
- security/keys/encrypted-keys/encrypted.c, line 314
- security/keys/user_defined.c
Smatch caller information:
security/keys/user_defined.c user_read() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->expiry | (-9223372036854775807)-s64max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->handoff_set | 0-1 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| PARAM_VALUE | 0 | key->type | 4096-ptr_max |
| CAPPED_DATA | 0 | key->expiry | 1 |
| DATA_SOURCE | 0 | key | $0 |
| LOCK2 | 0 | &key->sem | |
| TYPE_LOCK | (struct key)->sem |
security/keys/user_defined.c user_revoke() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.first_waiter->handoff_set | 0-1 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2624917664208203776 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2624917664208203776 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| PARAM_VALUE | 0 | key->type | 4096-ptr_max |
| PARAM_VALUE | 0 | key->type->revoke | 1-u64max |
| BUF_SIZE | 0 | key | (-1),1-s32max |
| BUF_SIZE | 0 | key | (-1),1-s32max |
| DATA_SOURCE | 0 | key | $0 |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NO_OVERFLOW_SIMPLE | 0 | key->quotalen | |
| NO_OVERFLOW_SIMPLE | 0 | key->user->qnbytes | |
| LOCK2 | 0 | &key->sem | |
| HALF_LOCKED2 | &pool->lock | ||
| HALF_LOCKED2 | global &afs_key_lock | ||
| TYPE_LOCK | (struct key)->sem |
security/keys/dh.c dh_data_from_key() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->expiry | (-9223372036854775807)-s64max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| PARAM_VALUE | 0 | key->type | 7296958975019053056 |
| CAPPED_DATA | 0 | key->expiry | 1 |
| CAPPED_DATA | 0 | &key->sem | 1 |
| DATA_SOURCE | 0 | key | r key_ref_to_ptr |
| LOCK2 | 0 | &key->sem | |
| TYPE_LOCK | (struct key)->sem |
fs/ecryptfs/keystore.c ecryptfs_get_key_payload_data() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| BUF_SIZE | 0 | key | (-1)-s32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| DATA_SOURCE | 0 | key | $0 |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| HALF_LOCKED2 | &(*auth_tok_key)->sem | ||
| HALF_LOCKED2 | &mount_crypt_stat->global_auth_tok_list_mutex | ||
| HALF_LOCKED2 | 0 | &key->sem |
lib/digsig.c digsig_verify_rsa() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| CAPPED_DATA | 0 | &key->sem | 1 |
| DATA_SOURCE | 0 | key | $0 |
| LOCK2 | 0 | &key->sem | |
| HALF_LOCKED2 | &iint->mutex | ||
| HALF_LOCKED2 | &inode->i_rwsem | ||
| TYPE_LOCK | (struct key)->sem |
fs/crypto/keysetup_v1.c find_and_lock_process_key() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| CAPPED_DATA | 0 | key->expiry | 1 |
| CAPPED_DATA | 0 | &key->sem | 1 |
| DATA_SOURCE | 0 | key | r request_key |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | 0 | &key->sem | |
| TYPE_LOCK | (struct key)->sem |
fs/ubifs/auth.c ubifs_init_authentication() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| PARAM_VALUE | 0 | key->type | 877235514405789696 |
| BUF_SIZE | 0 | key | (-1)-s32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| CAPPED_DATA | 0 | key->expiry | 1 |
| CAPPED_DATA | 0 | &key->sem | 1 |
| DATA_SOURCE | 0 | key | r request_key |
| LOCK2 | 0 | &key->sem | |
| TYPE_LOCK | (struct key)->sem |
kernel/crash_dump_dm_crypt.c read_key_from_user_keyring() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| CAPPED_DATA | 0 | key->expiry | 1 |
| CAPPED_DATA | 0 | &key->sem | 1 |
| DATA_SOURCE | 0 | key | r request_key |
| LOCK2 | 0 | &key->sem | |
| TYPE_LOCK | (struct key)->sem |
security/keys/encrypted-keys/encrypted.c request_user_key() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| CAPPED_DATA | 0 | key->expiry | 1 |
| CAPPED_DATA | 0 | &key->sem | 1 |
| DATA_SOURCE | 0 | key | r request_key |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | 0 | &key->sem | |
| HALF_LOCKED2 | &key->sem | ||
| HALF_LOCKED2 | global &key_construction_mutex | ||
| TYPE_LOCK | (struct key)->sem |
net/dns_resolver/dns_query.c dns_query() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->expiry | (-9223372036854775807)-s64max |
| PARAM_VALUE | 0 | key->payload.data | 4096-ptr_max |
| PARAM_VALUE | 0 | key->perm | 0,65536-u32max |
| PARAM_VALUE | 0 | key->revoked_at | (-9223372036854775807)-s64max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->handoff_set | 0-1 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| PARAM_VALUE | 0 | key->state | 0-s16max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| CAPPED_DATA | 0 | key->expiry | 1 |
| CAPPED_DATA | 0 | &key->sem | 1 |
| DATA_SOURCE | 0 | key | r request_key_tag |
| BIT_INFO | 0 | key->perm | 0x10000,0xffffffff |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NO_OVERFLOW_SIMPLE | 0 | key->quotalen | |
| LOCK2 | 0 | &key->sem | |
| HALF_LOCKED2 | &pool->lock | ||
| TYPE_LOCK | (struct key)->sem |
crypto/af_alg.c key_data_ptr_user() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| PARAM_VALUE | 0 | key->type | 4096-ptr_max |
| DATA_SOURCE | 0 | key | $0 |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | sk | ||
| LOCK2 | 0 | &key->sem | |
| HALF_LOCKED2 | &smc->clcsock_release_lock | ||
| TYPE_LOCK | (struct key)->sem |
drivers/md/dm-crypt.c set_key_user() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| CAPPED_DATA | 0 | key->expiry | 1 |
| DATA_SOURCE | 0 | key | $1 |
| LOCK2 | 0 | &key->sem | |
| HALF_LOCKED2 | &md->io_barrier | ||
| TYPE_LOCK | (struct key)->sem |
fs/smb/client/connect.c cifs_set_cifscreds() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| CAPPED_DATA | 0 | key->expiry | 1 |
| CAPPED_DATA | 0 | &key->sem | 1 |
| DATA_SOURCE | 0 | key | r request_key |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| LOCK2 | 0 | &key->sem | |
| HALF_LOCKED2 | &inode->i_rwsem | ||
| HALF_LOCKED2 | &pool->lock | ||
| TYPE_LOCK | (struct key)->sem |
drivers/md/dm-inlinecrypt.c set_key_user() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| CAPPED_DATA | 0 | key->expiry | 1 |
| DATA_SOURCE | 0 | key | $0 |
| LOCK2 | 0 | &key->sem | |
| TYPE_LOCK | (struct key)->sem |
drivers/md/dm-verity-verify-sig.c verity_verify_get_sig_from_key() -> user_key_payload_locked()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | key | 4096-ptr_max |
| PARAM_VALUE | 0 | key->sem.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.next | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->list.prev | 2212933610777083904 |
| PARAM_VALUE | 0 | key->sem.first_waiter->type | 0-1 |
| PARAM_VALUE | 0 | key->sem.wait_lock.dep_map->name | 0-255 |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner | (-1) |
| PARAM_VALUE | 0 | key->sem.wait_lock.owner_cpu | u32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| BUF_SIZE | 0 | key | (-1)-s32max |
| CAPPED_DATA | 0 | key->expiry | 1 |
| CAPPED_DATA | 0 | &key->sem | 1 |
| DATA_SOURCE | 0 | key | r request_key |
| LOCK2 | 0 | &key->sem | |
| TYPE_LOCK | (struct key)->sem |