Documented in 1 files:

Defined in 1 files as a prototype:

Defined in 1 files as a function:

Referenced in 6 files:

Smatch caller information:

fs/kernfs/file.c kernfs_vma_access() -> (struct vm_operations_struct)->access()

Type Parameter Key Value
PARAM_VALUE 0 vma 4096-ptr_max
PARAM_VALUE 0 vma->vm_file 4096-ptr_max
PARAM_VALUE 0 vma->vm_file->private_data 4096-ptr_max
BUF_SIZE 2 buf (-1),4,8,15,24,64,128,168-s32max
BUF_SIZE 2 buf (-1),4,8,15,24,64,128,168-s32max
DATA_SOURCE 0 vma $0
DATA_SOURCE 1 addr $1
DATA_SOURCE 2 buf $2
DATA_SOURCE 3 len $3
DATA_SOURCE 4 write $4
NOSPEC 1 addr
NOSPEC 1 addr
RX_PATH
TASK_NOT_RUNNING
HOST_DATA 2 *buf s64min-s64max
USER_DATA 1 addr 0[c]
USER_DATA 3 len (-4094)-(-1),1-4096
NO_OVERFLOW_SIMPLE 2 buf
USER_PTR 2 buf
HALF_LOCKED2 &mm->mmap_lock

mm/memory.c __access_remote_vm() -> (struct vm_operations_struct)->access()

Type Parameter Key Value
PARAM_VALUE 0 vma 4096-ptr_max
PARAM_VALUE 0 vma->vm_ops 4096-ptr_max
PARAM_VALUE 0 vma->vm_ops->access 1-u64max
PARAM_VALUE 1 addr 0
PARAM_VALUE 3 len s32min-(-1),1-s32max
PARAM_VALUE 4 write 0-1
BUF_SIZE 2 buf (-1),4,8,15,128,256,4096
BUF_SIZE 2 buf (-1),4,8,15,128,256,4096
DATA_SOURCE 0 vma r vma_lookup
DATA_SOURCE 1 addr r __untagged_addr_remote
DATA_SOURCE 2 buf $2
DATA_SOURCE 3 len $3
FUZZY_MAX 3 len 128
CONTAINER 0 -96-72+0 $(-1)
NOSPEC 1 addr
NOSPEC 1 addr
RX_PATH
TASK_NOT_RUNNING
USER_DATA 1 addr 0[c]
USER_DATA 3 len (-4094)-(-1),1-4096
USER_PTR 2 buf
LOCK2 &mm->mmap_lock
TYPE_LOCK (struct mm_struct)->mmap_lock