Defined in 1 files as a function:
Referenced in 1 files:
Smatch caller information:
drivers/net/wireless/broadcom/b43/dma.c dma_rx() -> b43_poison_rx_buffer()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | ring | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->dev | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->dev->dev | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->get_current_rxslot | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->idx2desc | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->set_current_rxslot | 4096-ptr_max |
| PARAM_VALUE | 1 | skb | 4096-ptr_max |
| CAPPED_DATA | 0 | ring->rx_buffersize | 1 |
| DATA_SOURCE | 0 | ring | $0 |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| HALF_LOCKED2 | &dev->wl->mutex | ||
| HALF_LOCKED2 | &wl->mutex | ||
| TYPE_LOCK | (struct b43_wl)->mutex |
drivers/net/wireless/broadcom/b43/dma.c dma_rx() -> b43_poison_rx_buffer()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | ring | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->dev | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->dev->dev | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->get_current_rxslot | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->idx2desc | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->set_current_rxslot | 4096-ptr_max |
| PARAM_VALUE | 1 | skb | 4096-ptr_max |
| PARAM_VALUE | 1 | skb->data | 4096-ptr_max |
| DATA_SOURCE | 0 | ring | $0 |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| HALF_LOCKED2 | &dev->wl->mutex | ||
| HALF_LOCKED2 | &wl->mutex | ||
| TYPE_LOCK | (struct b43_wl)->mutex |
drivers/net/wireless/broadcom/b43/dma.c setup_rx_descbuffer() -> b43_poison_rx_buffer()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | ring | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->dev | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->dev->dev | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->get_current_rxslot | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->idx2desc | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->set_current_rxslot | 4096-ptr_max |
| PARAM_VALUE | 1 | skb | 4096-ptr_max |
| BUF_SIZE | 0 | ring | (-1),6264 |
| BUF_SIZE | 0 | ring | (-1),6264 |
| BUF_SIZE | 0 | ring->ops | (-1),56 |
| BUF_SIZE | 0 | ring->txhdr_cache | (-1),106,110,118 |
| BUF_SIZE | 1 | skb | (-1)-s32max |
| BUF_SIZE | 1 | skb | (-1)-s32max |
| DATA_SOURCE | 0 | ring | $0 |
| DATA_SOURCE | 1 | skb | r __dev_alloc_skb |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| HOST_DATA | 0 | ring->dev->fw.patch | 0-u16max |
| HOST_DATA | 0 | ring->dev->phy.analog | 0-15[c] |
| HOST_DATA | 0 | ring->dev->phy.gmode | 0-1 |
| HOST_DATA | 0 | ring->dev->phy.radio_rev | 0-255 |
| HOST_DATA | 0 | ring->dev->phy.radio_ver | 0-u16max |
| HOST_DATA | 0 | ring->dev->phy.supports_2ghz | 0-1 |
| HOST_DATA | 0 | ring->dev->phy.supports_5ghz | 0-1 |
| HOST_DATA | 0 | ring->dev->phy.type | 2,4-5,7[c] |
| HALF_LOCKED2 | &wl->mutex | ||
| TYPE_LOCK | (struct b43_wl)->mutex |
drivers/net/wireless/broadcom/b43/dma.c setup_rx_descbuffer() -> b43_poison_rx_buffer()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | ring | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->dev | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->dev->dev | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->get_current_rxslot | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->idx2desc | 4096-ptr_max |
| PARAM_VALUE | 0 | ring->ops->set_current_rxslot | 4096-ptr_max |
| PARAM_VALUE | 1 | skb | 4096-ptr_max |
| PARAM_VALUE | 1 | skb->data->frame_len | 0 |
| PARAM_VALUE | 1 | *skb->sk->sk_callback_lock.owner | (-4611686018427387904)-4611686018427387903 |
| BUF_SIZE | 0 | ring | (-1),6264 |
| BUF_SIZE | 0 | ring | (-1),6264 |
| BUF_SIZE | 0 | ring->ops | (-1),56 |
| BUF_SIZE | 0 | ring->txhdr_cache | (-1),106,110,118 |
| BUF_SIZE | 1 | skb | (-1)-s32max |
| BUF_SIZE | 1 | skb | (-1)-s32max |
| CAPPED_DATA | 0 | ring->rx_buffersize | 1 |
| DATA_SOURCE | 0 | ring | $0 |
| DATA_SOURCE | 1 | skb | r __dev_alloc_skb |
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| HOST_DATA | 0 | ring->dev->fw.patch | 0-u16max |
| HOST_DATA | 0 | ring->dev->phy.analog | 0-15[c] |
| HOST_DATA | 0 | ring->dev->phy.gmode | 0-1 |
| HOST_DATA | 0 | ring->dev->phy.radio_rev | 0-255 |
| HOST_DATA | 0 | ring->dev->phy.radio_ver | 0-u16max |
| HOST_DATA | 0 | ring->dev->phy.supports_2ghz | 0-1 |
| HOST_DATA | 0 | ring->dev->phy.supports_5ghz | 0-1 |
| HOST_DATA | 0 | ring->dev->phy.type | 2,4-5,7[c] |
| HALF_LOCKED2 | &wl->mutex | ||
| TYPE_LOCK | (struct b43_wl)->mutex |