mirror of
https://github.com/BobTheBlinker/android_kernel_motorola_sm6375.git
synced 2026-10-11 07:03:09 -04:00
qcacmn: Fix static code analysis issues in DP
hdr_ptr is in skb_buffer data, it's assigned with 6B array, use uint8_t point convert to avoid SA overflow warnning. tid has asseration protect, but need to break execute to avoid of SA warnning Fix use-after-free of ast_entry Change-Id: I0835f93291cf3da2b4fd57d8c9a90f20a60c11ee CRs-Fixed: 2751678
This commit is contained in:
parent
44150359c9
commit
a1264e5fea
2 changed files with 2 additions and 1 deletions
|
|
@ -1632,6 +1632,7 @@ dp_rx_defrag_store_fragment(struct dp_soc *soc,
|
|||
if (tid >= DP_MAX_TIDS) {
|
||||
dp_info("TID out of bounds: %d", tid);
|
||||
qdf_assert_always(0);
|
||||
goto discard_frag;
|
||||
}
|
||||
|
||||
pdev = peer->vdev->pdev;
|
||||
|
|
|
|||
|
|
@ -1411,7 +1411,7 @@ static void dp_tx_get_tid(struct dp_vdev *vdev, qdf_nbuf_t nbuf,
|
|||
DP_TX_TID_OVERRIDE(msdu_info, nbuf);
|
||||
if (qdf_likely(vdev->tx_encap_type != htt_cmn_pkt_type_raw)) {
|
||||
eh = (qdf_ether_header_t *)nbuf->data;
|
||||
hdr_ptr = eh->ether_dhost;
|
||||
hdr_ptr = (uint8_t *)(eh->ether_dhost);
|
||||
L3datap = hdr_ptr + sizeof(qdf_ether_header_t);
|
||||
} else {
|
||||
qdf_dot3_qosframe_t *qos_wh =
|
||||
|
|
|
|||
Loading…
Reference in a new issue