commit | a8d6aa08dd3e004df6a6e63a61698d834a191ad3 | [log] [tgz] |
---|---|---|
author | Axel Lin <axel.lin@gmail.com> | Wed Oct 13 10:44:39 2010 +0800 |
committer | Samuel Ortiz <sameo@linux.intel.com> | Fri Oct 29 00:30:29 2010 +0200 |
tree | aaad867dccdf9d2b7e04c6bd73834882428b5a41 | |
parent | 7745cc8c3b977203c1b7483c09d05b58c8e88728 [diff] |
mfd: Fix off-by-one value range checking for tps6507x If bytes == (TPS6507X_MAX_REGISTER + 1), we have a buffer overflow when doing memcpy(&msg[1], src, bytes). Signed-off-by: Axel Lin <axel.lin@gmail.com> Signed-off-by: Samuel Ortiz <sameo@linux.intel.com>