From: Dan Carpenter Date: Tue, 12 Jun 2012 07:37:08 +0000 (+0300) Subject: NFSv4.1: integer overflow in decode_cb_sequence_args() X-Git-Tag: v3.2.51~100 X-Git-Url: http://git.openpandora.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=70bea7f2c038f04b5bc2e84f12615f79ed394d13;p=pandora-kernel.git NFSv4.1: integer overflow in decode_cb_sequence_args() commit 0439f31c35d1da0b28988b308ea455e38e6a350d upstream. This seems like it could overflow on 32 bits. Use kmalloc_array() which has overflow protection built in. Signed-off-by: Dan Carpenter Signed-off-by: Trond Myklebust Signed-off-by: Ben Hutchings --- Reading git-diff-tree failed