Commit Graph
3371 Commits
Author SHA1 Message Date
Greg Kroah-Hartman 9b773bfbba USB: input: gtco.c: fix up dev_* messages
Previously I had made the struct device point to the input device, but
after talking with Dmitry, he said that the USB device would make more
sense for this driver to point to.  So converted it to use that instead.

CC: Dmitry Torokhov <dmitry.torokhov@gmail.com>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
2019-08-08 11:51:26 +02:00
Vevek Venkatesan eebc5790a6 input: touchscreen: gt9xx: fix memory corruption in Goodix driver
Fix memory corruption in Goodix touchscreen driver, by resetting
the global structure cmd_head to zero (except *data and wr flag)
in goodix_tool_write handler on error case.

CAF-Change-Id: I4f7f8f464b93571627b922b10c10a65826228e42
Signed-off-by: Vevek Venkatesan <vevekv@codeaurora.org>
CVE-2017-0622

Change-Id: I19c78864f8734b68bc6ae1de3e4853de624c7c03
Signed-off-by: Kevin F. Haggerty <haggertk@lineageos.org>
2019-08-06 12:26:27 +02:00
Vladis Dronov 5e0aaed929 Input: gtco - fix crash on detecting device without endpoints
commit 162f98dea487206d9ab79fc12ed64700667a894d upstream.

The gtco driver expects at least one valid endpoint. If given malicious
descriptors that specify 0 for the number of endpoints, it will crash in
the probe function. Ensure there is at least one endpoint on the interface
before using it.

Also let's fix a minor coding style issue.

The full correct report of this issue can be found in the public
Red Hat Bugzilla:

https://bugzilla.redhat.com/show_bug.cgi?id=1283385

Reported-by: Ralf Spenneberg <ralf@spenneberg.net>
Signed-off-by: Vladis Dronov <vdronov@redhat.com>
Cc: stable@vger.kernel.org
Signed-off-by: Dmitry Torokhov <dmitry.torokhov@gmail.com>
Signed-off-by: Willy Tarreau <w@1wt.eu>
CVE-2016-2187
Signed-off-by: Kevin F. Haggerty <haggertk@lineageos.org>

Change-Id: I99b9af4d1bf2df3845a6fac7caa3443da8ffb294
2019-08-06 12:17:41 +02:00
Josh Boyer a64bb0c26c Input: powermate - fix oops with malicious USB descriptors
[ Upstream commit 9c6ba456711687b794dcf285856fc14e2c76074f ]

The powermate driver expects at least one valid USB endpoint in its
probe function.  If given malicious descriptors that specify 0 for
the number of endpoints, it will crash.  Validate the number of
endpoints on the interface before using them.

The full report for this issue can be found here:
http://seclists.org/bugtraq/2016/Mar/85

Reported-by: Ralf Spenneberg <ralf@spenneberg.net>
Cc: stable <stable@vger.kernel.org>
Signed-off-by: Josh Boyer <jwboyer@fedoraproject.org>
Signed-off-by: Dmitry Torokhov <dmitry.torokhov@gmail.com>
Signed-off-by: Sasha Levin <sasha.levin@oracle.com>
CVE-2016-2186
Signed-off-by: Kevin F. Haggerty <haggertk@lineageos.org>

Change-Id: Ib8a42fc7e0ca5d095c36b34ea328f19d28fe83cc
2019-08-06 12:17:40 +02:00
Vladis Dronov 4990546f1e Input: ati_remote2 - fix crashes on detecting device with invalid descriptor
[ Upstream commit 950336ba3e4a1ffd2ca60d29f6ef386dd2c7351d ]

The ati_remote2 driver expects at least two interfaces with one
endpoint each. If given malicious descriptor that specify one
interface or no endpoints, it will crash in the probe function.
Ensure there is at least two interfaces and one endpoint for each
interface before using it.

The full disclosure: http://seclists.org/bugtraq/2016/Mar/90

Reported-by: Ralf Spenneberg <ralf@spenneberg.net>
Signed-off-by: Vladis Dronov <vdronov@redhat.com>
Cc: stable@vger.kernel.org
Signed-off-by: Dmitry Torokhov <dmitry.torokhov@gmail.com>
Signed-off-by: Sasha Levin <sasha.levin@oracle.com>
CVE-2016-2185
Signed-off-by: Kevin F. Haggerty <haggertk@lineageos.org>

Change-Id: I9274b674d6aa90617a22930618ab571910444d29
2019-08-06 12:17:40 +02:00
Vladis Dronov 77a5689da2 Input: aiptek - fix crash on detecting device without endpoints
commit 8e20cf2bce122ce9262d6034ee5d5b76fbb92f96 upstream.

The aiptek driver crashes in aiptek_probe() when a specially crafted USB
device without endpoints is detected. This fix adds a check that the device
has proper configuration expected by the driver. Also an error return value
is changed to more matching one in one of the error paths.

Reported-by: Ralf Spenneberg <ralf@spenneberg.net>
Signed-off-by: Vladis Dronov <vdronov@redhat.com>
Signed-off-by: Dmitry Torokhov <dmitry.torokhov@gmail.com>
[bwh: Backported to 3.2: adjust context]
Signed-off-by: Ben Hutchings <ben@decadent.org.uk>
CVE-2015-7515
Signed-off-by: Kevin F. Haggerty <haggertk@lineageos.org>

Change-Id: I3cdae8dd87a002409a5ab9190cfad7d3faa237d4
2019-08-06 11:48:15 +02:00
Kevin F. Haggerty 0fdd45c3ac Merge remote-tracking branch 'google-common/deprecated/android-3.4' into lineage-16.0
Change-Id: I363f9d4d0623906eaffffb3747a162ccbc92ccb0
Signed-off-by: Kevin F. Haggerty <haggertk@lineageos.org>
2019-08-06 11:41:21 +02:00
Kevin F. Haggerty 238a0fb5ad Merge tag 'v3.4.113' into lineage-16.0
This is the 3.4.113 stable release

Change-Id: I80791430656359c5447a675cbff4431362d18df0
Signed-off-by: Kevin F. Haggerty <haggertk@lineageos.org>
2019-08-05 14:20:47 +02:00
Francescodario Cuzzocrea e20e6a0613 Merge tag 'LA.BF.1.1.3-02310-8x26.0' into lineage-16.0 2019-08-05 11:18:51 +02:00
ninez 38f1006d11 misc: Fix system_rev type mismatch
* Samsung sources have type mismatches in 3 of their drivers. This was
  uncovered using linaro's toolchain for kernel compilation.

Change-Id: If3a083ffcb2a15185ff208b22976509ffd8af5e8
Signed-off-by: Kevin F. Haggerty <haggertk@lineageos.org>
2019-08-05 09:13:25 +02:00
Robert Rozic 841dff7d51 input: cypress-touchkey - Add keydisabler 2019-08-05 09:06:04 +02:00
zeroblade1984 761db8f8c5 drivers: input: Fix DVFS Errors
Signed-off-by: zeroblade1984 <zeroblade1984@gmail.com>
Signed-off-by: Jackeagle <jackeagle102@gmail.com>

Change-Id: I0fa8531917d09cfb08d19d27ac912a9723a92d44
2019-08-03 12:24:42 +02:00
Robert Rozic e8357f64b9 touchscreen: mms114: Fix build when DVFS is disabled
Signed-off-by: Robert Rozic <r.rozic97@gmail.com>
2019-08-03 12:23:57 +02:00
xXPR0T0TYPEXx a3a97f9639 drivers: input: touchscreen: cyttsp4: resolved missing separator on
makefile
2019-08-03 12:21:20 +02:00
Francescodario Cuzzocrea 85baa390bf misc: Import SM-G900H kernel source code
* Samsung Package Version: G800HXXU1CRJ1
    * CAF Tag: LA.BF.1.1.3-00110-8x26.0
2019-08-02 15:14:10 +02:00
Andrew Chant 55158d2c50 Input: synaptics: check input, prevent sysfs races
concurrent sysfs calls on the fw updater can cause
ugly race conditions.  Return EBUSY on concurrent sysfs calls.

For sysfs calls which generate deferred work, prevent
the deferred work from running concurrently with other
sysfs calls.

Also check that ext_data_source is appropriately sized
and allocated, based on a patch by
Gengjia Chen (chengjia4574@gmail.com).

Signed-off-by: Andrew Chant <achant@google.com>
Change-Id:I5bbe4992f3fd2d23db288296eaeb61f5831098e9
Bug: 30799828
Bug: 31252388
Git-repo: https://android.googlesource.com/kernel/msm.git
Git-commit: 287ce2ccfefe68067c1f9f5175b6664bf7397fe6
Signed-off-by: Srinivasa Rao Kuppala <srkupp@codeaurora.org>
2016-12-20 15:06:25 +05:30
chengengjia 6192d9c11e input: synaptics: Add checks of user input data
Add checks of the user input count to avoid possible heap overflow

Bug: 30799828
Change-Id: I896492b18c4ace6565fb9edd5cbf51f363ce157b
Signed-off-by: chengengjia <chengjia4574@gmail.com>
Signed-off-by: Andrew Chant <achant@google.com>
Git-repo: https://android.googlesource.com/kernel/msm.git
Git-commit: f549796fb9da58586c5cfc31d07b243c87dcfbd5
Signed-off-by: Dennis Cagle <d-cagle@codeaurora.org>
2016-11-29 03:25:40 -08:00
Sahil Kataria a110fa2087 input: misc: Kconfig: Fix misplaced endif
This patch fixes the misplaced endif that could cause some misc input
drivers not being listed when running the kernel configurator.

CRs-Fixed: 663748
Change-Id: I31cb24bd3fa5559b197bc227789c325edda736b0
Signed-off-by: Sahil Kataria <sahilk@codeaurora.org>
2014-05-27 11:37:02 -07:00
Bingzhe Cai 24401c06c1 input: sensors: fix accelerometer output data rate issue
Accelerometer data output rate is limited by device ODR register,
no need to configure this register in polling mode.

CRs-Fixed: 641705
Change-Id: If59900b244b31f813dd17e72b19c7fd2ca4b4ba1
Signed-off-by: Bingzhe Cai <bingzhec@codeaurora.org>
2014-04-09 17:19:44 +08:00
Mao Li 8ee872fd14 input: touchscreen: change linking order of synaptics_i2c_rmi4
On some hardware when synaptics_rmi4_detection_work() is called,
exp_fn_list is still empty because module_init of synaptics_fw_update
is called later. As a result of this sysfs files required for firmware
update are not created. This patch changes the link order to ensure
that exp_fn_list is properly initialized before
synaptics_rmi4_detection_work() is called when all Synaptics modules
i.e. synaptics_fw_update, synaptics_rmi_dev and synaptics_i2c_rmi4 are
statically linked into the kernel.

CRs-fixed: 634135
Change-Id: Ib0b8e82ed569ecb18788b8aec6e1c9771e74fd2d
Signed-off-by: maol <maol@codeaurora.org>
2014-04-07 14:04:42 +05:30
Linux Build Service Account 164f4b8f32 Merge "input: touchscreen: change the focaltech firmware upgrade method" 2014-03-28 08:18:35 -07:00
Bingzhe Cai 1e18e7d0ca input: sensors: fix deadlock issue during accelerometer disabling.
Accelerometer mma8x5x driver may struck in disabling procedure due
to deadlock on workqueue flush.

Change-Id: Ibcd6ebe92bc2fece459fde5f76e5bfe1f90586a0
Signed-off-by: Bingzhe Cai <bingzhec@codeaurora.org>
2014-03-25 21:25:55 +08:00
Sarada Prasanna Garnayak 7674c5911b input: touchscreen: change the focaltech firmware upgrade method
Upgarde firmware on the touch controller when the new firmware
version is geater than the current firmware version. Update the
version id after successful firmware update. skip firmware
update process when device is in suspend state.

CRs-Fixed: 623803
Change-Id: Ic462f6483887a3654665852e58ae9891de9f5eff
Signed-off-by: Sarada Prasanna Garnayak <c_sgarna@codeaurora.org>
2014-03-25 11:46:33 +05:30
Keith Fallows f0655aa6ee input: atmel_mxt_ts: Synchronous PM request starting Secure Touch
Maintain I2C adapter clocks on when starting Secure Touch
using the synchronous version of pm_runtime_get.

Change-Id: Ie30ea56af9e045239099652124740565428518f8
Acked-by: Christian Bolis <cbolis@qti.qualcomm.com>
Signed-off-by: Keith Fallows <keithf@codeaurora.org>
2014-03-20 10:13:33 +00:00
Linux Build Service Account f9afab15d9 Merge "input: sensors: fix mma8x5x interrupt mode output rate issue" 2014-03-05 02:53:31 -08:00
Bingzhe Cai 067bf04977 input: sensors: fix mma8x5x interrupt mode output rate issue
Accelerometer mma8x5x cannot change data output rate correctly in
interrupt due to wrong configuration value has been used.

Change-Id: I010cdf992267119cc8c54a855a33206920fc08e2
Signed-off-by: Bingzhe Cai <bingzhec@codeaurora.org>
2014-02-24 16:18:41 +08:00
Bingzhe Cai 393801906b input: sensors: use work queue for mma8x5x data polling
Accelerometer mma8x5x driver register polling device for data
polling, but polling device only update polling interval on
new polling cycle, this will cause delay on change polling
interval in some case.

Change-Id: I391dc5507a40e6bfc7e8127a0db89cb685eaf192
Signed-off-by: Bingzhe Cai <bingzhec@codeaurora.org>
2014-02-20 11:17:09 +08:00
Shantanu Jain 76c037f49b input: touchscreen: Replace macros used inside the functions
Replace the macros that are used inside the driver function
with dtsi entries.
Remove hrtimer calls which is not being used in the current
driver code.

Change-Id: I29b9ea41df467d0092be8005733016843dc26f60
Signed-off-by: Shantanu Jain <shjain@codeaurora.org>
2014-02-06 19:37:39 +05:30
Linux Build Service Account 0b4e92519e Merge "input: touchscreen: Add force fw_update support via sysfs entry" 2014-02-04 03:44:20 -08:00
Jing Lin e45d040883 input: misc: add input driver for HBTP
This driver provides service to Host Based Touch Processing
in three aspects:
- It serves as an input device driver to send touch events from user
  space to the kernel input core.
- It monitors LCD on/off and sends uevent accordingly.
- It performs power management for the touch AFE (Analog Front End).

Change-Id: Ibfb7c6a8d2c895ea0a277b8f0bf810e0263260e6
Signed-off-by: Jing Lin <jinglin@codeaurora.org>
2014-01-31 11:31:36 -08:00
Linux Build Service Account 51474dd1b1 Merge "input: synaptics_fw_update: fix insufficient bounds checking" 2014-01-30 03:55:35 -08:00
Shantanu Jain 3720edea7a input: touchscreen: Add force fw_update support via sysfs entry
Add sysfs entry for force fw_update support in Goodix
driver.
Change the usage of kstrtoul to sscanf in driver to avoid
portability issues.

CRs-fixed: 579806
Change-Id: I147a3e465170dda7af415ade29c04257d9b11a6b
Signed-off-by: Shantanu Jain <shjain@codeaurora.org>
2014-01-29 17:34:38 +05:30
Abinaya P 3a59368aee input: synaptics_i2c_rmi4: Reorganize the code
Reorganize the code related to debugfs that allows driver to compile
for different build environments. Remove dead code and also define
dummy functions that are needed when CONFIG_PM is not enabled in defconfig.

Change-Id: I385d194c7463cd06322f1b5124f1dc0ce72fc8a1
Signed-off-by: Abinaya P <abinayap@codeaurora.org>
2014-01-27 18:05:40 +05:30
Abinaya P 9642997b70 input: synaptics_fw_update: fix insufficient bounds checking
Possible values of config_area are between 0 and 3. The patch
adds bounds checking in fwu_sysfs_config_area_store() function.
Also use kstrtou16() for parsing the config_area.

Change-Id: Ia0b58f1b5a359c67f420012876431dac920ecfbd
Signed-off-by: Abinaya P <abinayap@codeaurora.org>
2014-01-27 17:42:37 +05:30
Linux Build Service Account c94baa834f Merge "input: touchscreen: Add firmware upgrade via sysfs entry" 2014-01-25 16:27:17 -08:00
Linux Build Service Account 9110801293 Merge "input: touchscreen: Add debufs entries for GTP controller" 2014-01-24 21:12:18 -08:00
Shantanu Jain 2309496836 input: touchscreen: Add firmware upgrade via sysfs entry
Add sysfs entry for firmware upgrade support in Goodix
driver.

CRs-fixed: 575618
Change-Id: If71d4020223547e0db425c9fd37819c6166efcab
Signed-off-by: Shantanu Jain <shjain@codeaurora.org>
2014-01-24 19:01:52 +05:30
Shantanu Jain 358e4d08a9 input: touchscreen: Add debufs entries for GTP controller
Add debugfs entries for address and data to read the registers
of Goodix controller.

Change-Id: I6543d523e39771615d0e1b684780141e108a2aa4
Signed-off-by: Shantanu Jain <shjain@codeaurora.org>
2014-01-23 19:56:48 +05:30
Himanshu Aggarwal 27f7356fc4 input: synaptics_fw_update: fix print statements
%zu is the correct printk format specifier when printing size_t types.

Update printks to use %zu for size_t type variables.

Change-Id: Ie556fd14293ecd36143353e575fd5ef22fab20f7
Signed-off-by: Himanshu Aggarwal <haggarwa@codeaurora.org>
2014-01-21 17:07:46 -08:00
Amy Maloche 0e854fb46a input: atmel_mxt_ts: Allow driver to compile in all scenarios
Driver needs dummy functions defined for cases when CONFIG_PM
is not enabled.

Change-Id: I4e9f0885eb9f7a45589b2362e468335a3ca57cba
Signed-off-by: Amy Maloche <amaloche@codeaurora.org>
2014-01-20 15:46:50 -08:00
Linux Build Service Account a547a76567 Merge "input: touchscreen: Remove redundant code from Goodix driver" 2014-01-19 22:26:58 -08:00
Bingzhe Cai 43bed2b931 input: misc: enable mma8x5x interrupt mode
Allow mma8x5x accelerometer work on interrupt mode and issue
interrupt to wake up application processor when data is ready.

Change-Id: Iadecfa9aeaa8e225098d049659802dcd7f976f48
Signed-off-by: Bingzhe Cai <bingzhec@codeaurora.org>
2014-01-18 17:45:52 -08:00
Himanshu Aggarwal c03bab16c8 input: touchscreen: Remove redundant code from Goodix driver
Remove code that reads firmware from the header file, since
we don't plan to support this feature.

CRs-fixed: 591376
Change-Id: I6c18e153ddf18667ca83d47df20c71bce6dbfa21
Signed-off-by: Himanshu Aggarwal <haggarwa@codeaurora.org>
2014-01-15 16:18:28 +05:30
Chun Zhang 7ba20f3209 input: atmel_mxt_ts: amend finger status check
Touch screen driver checks finger status when releasing unwanted touch
events. Current status check does not cover an unwanted finger status.
This introduces extraneous events when device goes to suspend.

CRs-Fixed: 595019
Change-Id: I3c230cb98d5866edf2bc2f433765f787e518ac93
Signed-off-by: Chun Zhang <chunz@codeaurora.org>
2014-01-14 02:46:42 -08:00
Linux Build Service Account 46892cdf20 Merge "input: sensors: fix the bmp18x driver request regulator multiple times" 2014-01-10 01:29:55 -08:00
Oliver Wang 2f1fbdaa1c input: sensors: fix the bmp18x driver request regulator multiple times
The bmp18x driver may call regulator_get in resume routine. However,
regulator_get will call the sysfs APIs to create duplicated files
in sysfs. This will trigger the kernel warnings and backtrace.

Change-Id: I758f2866adae69fd8f8a9477c12aa714303ab6f2
Signed-off-by: Oliver Wang <mengmeng@codeaurora.org>
2014-01-10 09:40:53 +08:00
Linux Build Service Account b777ff4fda Merge "input: sensors: correct the min_delay of mpu3050" 2014-01-09 06:24:30 -08:00
Oliver Wang c8e39270f2 input: sensors: correct the min_delay of mpu3050
The unit of min_delay should be in us rather than ms.

Change-Id: I07a0c37232cf8e8b36c30e8be41690e379ad56b1
Signed-off-by: Oliver Wang <mengmeng@codeaurora.org>
2014-01-08 19:03:08 -08:00
Linux Build Service Account 8e94bcc00f Merge "input: touchscreen: Remove irq polling from Goodix driver" 2014-01-08 18:30:43 -08:00
Linux Build Service Account 92d3ed0de9 Merge "input: touchscreen: Add debugfs support for suspend/resume." 2014-01-08 18:30:42 -08:00