|
Description
|
system may crash with following stack because svc_run can pass a NULL pointer to putnext.
> $c
putnext+0x60(0, 305c6f8ba80, 20, 1, 2, 3)
svc_run+0x1f4(300087abcc0, 3080118ff00, 4, 0, 1, 88)
nfssys+0xfc(e, fefe1f9c, 0, 0, 0, 0)
loadable_syscall+0x80(30000078568, 14640f0, 0, 0, 0, 0)
syscall_trap32+0xa8(e, fefe1f9c, 0, 0, 0, 0)
|