scsi: iscsi: Fix reference count leak in iscsi_boot_create_kobj
authorQiushi Wu <wu000273@umn.edu>
Thu, 28 May 2020 20:13:53 +0000 (15:13 -0500)
committerSasha Levin <sashal@kernel.org>
Tue, 30 Jun 2020 00:07:53 +0000 (20:07 -0400)
[ Upstream commit 0267ffce562c8bbf9b57ebe0e38445ad04972890 ]

kobject_init_and_add() takes reference even when it fails. If this
function returns an error, kobject_put() must be called to properly
clean up the memory associated with the object.

Link: https://lore.kernel.org/r/20200528201353.14849-1-wu000273@umn.edu
Reviewed-by: Lee Duncan <lduncan@suse.com>
Signed-off-by: Qiushi Wu <wu000273@umn.edu>
Signed-off-by: Martin K. Petersen <martin.petersen@oracle.com>
Signed-off-by: Sasha Levin <sashal@kernel.org>
drivers/scsi/iscsi_boot_sysfs.c

index 680bf6f0ce767143cdaf40528333f0cf8c4d945c..476f46aad54cbb1223271e6d0e4ba51a99a73cea 100644 (file)
@@ -319,7 +319,7 @@ iscsi_boot_create_kobj(struct iscsi_boot_kset *boot_kset,
        boot_kobj->kobj.kset = boot_kset->kset;
        if (kobject_init_and_add(&boot_kobj->kobj, &iscsi_boot_ktype,
                                 NULL, name, index)) {
-               kfree(boot_kobj);
+               kobject_put(&boot_kobj->kobj);
                return NULL;
        }
        boot_kobj->data = data;