Unregister KVM's posted interrupt wakeup handler during unsetup so that a
spurious interrupt that arrives after kvm_intel.ko is unloaded doesn't
call into freed memory.
Fixes: bf9f6ac8d749 ("KVM: Update Posted-Interrupts Descriptor when vCPU is blocked")
Cc: stable@vger.kernel.org
Signed-off-by: Sean Christopherson <seanjc@google.com>
Message-Id: <
20211009001107.
3936588-3-seanjc@google.com>
Signed-off-by: Paolo Bonzini <pbonzini@redhat.com>
 
 
 static void hardware_unsetup(void)
 {
+       kvm_set_posted_intr_wakeup_handler(NULL);
+
        if (nested)
                nested_vmx_hardware_unsetup();
 
                vmx_x86_ops.request_immediate_exit = __kvm_request_immediate_exit;
        }
 
-       kvm_set_posted_intr_wakeup_handler(pi_wakeup_handler);
-
        kvm_mce_cap_supported |= MCG_LMCE_P;
 
        if (pt_mode != PT_MODE_SYSTEM && pt_mode != PT_MODE_HOST_GUEST)
        r = alloc_kvm_area();
        if (r)
                nested_vmx_hardware_unsetup();
+
+       kvm_set_posted_intr_wakeup_handler(pi_wakeup_handler);
+
        return r;
 }