From: Maurizio Lombardi Date: Tue, 31 Jan 2023 16:38:42 +0000 (+0100) Subject: nvme: clear the request_queue pointers on failure in nvme_alloc_io_tag_set X-Git-Url: http://git.maquefel.me/?a=commitdiff_plain;h=6fbf13c0e24fd86ab2e4477cd8484a485b687421;p=linux.git nvme: clear the request_queue pointers on failure in nvme_alloc_io_tag_set In nvme_alloc_io_tag_set(), the connect_q pointer should be set to NULL in case of error to avoid potential invalid pointer dereferences. Signed-off-by: Maurizio Lombardi Reviewed-by: Chaitanya Kulkarni Signed-off-by: Christoph Hellwig --- diff --git a/drivers/nvme/host/core.c b/drivers/nvme/host/core.c index 1c333ce64bd44..c777f56a9e74f 100644 --- a/drivers/nvme/host/core.c +++ b/drivers/nvme/host/core.c @@ -4956,6 +4956,7 @@ int nvme_alloc_io_tag_set(struct nvme_ctrl *ctrl, struct blk_mq_tag_set *set, out_free_tag_set: blk_mq_free_tag_set(set); + ctrl->connect_q = NULL; return ret; } EXPORT_SYMBOL_GPL(nvme_alloc_io_tag_set);