]> www.infradead.org Git - users/dwmw2/linux.git/commitdiff
staging: wfx: fix potential deadlock in wfx_tx_flush()
authorJérôme Pouiller <jerome.pouiller@silabs.com>
Wed, 1 Apr 2020 11:04:03 +0000 (13:04 +0200)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Wed, 24 Jun 2020 15:48:16 +0000 (17:48 +0200)
[ Upstream commit a39e761aa4fefa2a8aaf549217329933b91da7c9 ]

wfx_tx_flush() wait there are no more frame in device buffer. However,
this event may never happens since wfx_tx_flush() don't forbid to
enqueue new frames.

Note that wfx_tx_flush() should only ensure that all frames currently in
hardware queues are sent. So the current code is more restrictive that
it should.

Note that wfx_tx_flush() release the lock before to return while
wfx_tx_lock_flush() keep the lock.

Reviewed-by: Dan Carpenter <dan.carpenter@oracle.com>
Signed-off-by: Jérôme Pouiller <jerome.pouiller@silabs.com>
Link: https://lore.kernel.org/r/20200401110405.80282-31-Jerome.Pouiller@silabs.com
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
Signed-off-by: Sasha Levin <sashal@kernel.org>
drivers/staging/wfx/queue.c

index 39d9127ce4b9fb2ae07f0beeda5bcadcf4e0fd61..8ae23681e29bc8000b0e057dbca8d3d0c27cc15f 100644 (file)
@@ -35,6 +35,7 @@ void wfx_tx_flush(struct wfx_dev *wdev)
        if (wdev->chip_frozen)
                return;
 
+       wfx_tx_lock(wdev);
        mutex_lock(&wdev->hif_cmd.lock);
        ret = wait_event_timeout(wdev->hif.tx_buffers_empty,
                                 !wdev->hif.tx_buffers_used,
@@ -47,6 +48,7 @@ void wfx_tx_flush(struct wfx_dev *wdev)
                wdev->chip_frozen = 1;
        }
        mutex_unlock(&wdev->hif_cmd.lock);
+       wfx_tx_unlock(wdev);
 }
 
 void wfx_tx_lock_flush(struct wfx_dev *wdev)