[PATCH 0/5] s390/vfio-ap: Fix bugs in vfio_ap device driver callback functions

From: Anthony Krowiak

Date: Sat Aug 08 2026 - 13:07:34 EST


Patches 2/5 and 5/5 in this series were previously posted as individual
fixes upstream. During review of those patches, the reviewer identified
several pre-existing problems in the same code paths that are addressed
by the remaining three patches. All five patches are fixes for
pre-existing bugs and are tagged for stable.

Patches 1/5, 3/5 and 4/5 fix bugs in the call trees of the two
callback functions implemented by the vfio_ap device
driver -- vfio_ap_on_cfg_changed and vfio_ap_on_scan_complete:

* Patch 1/5 fixes a stale do_remove flag in vfio_ap_mdev_cfg_remove
that causes spurious hot-unplug operations on mdevs that have no
assigned adapters, domains or control domains in common with those
removed from the host AP configuration.

* Patch 3/5 fixes the use of the wrong lock to protect the addition of
a newly created ap_matrix_mdev object to the mdev_list in the
vfio_ap_mdev_probe function.

* Patch 4/5 fixes the missing mdevs_lock while updating the apm_add,
aqm_add and adm_add fields of an ap_matrix_mdev object in
vfio_ap_mdev_cfg_add.

Anthony Krowiak (5):
s390/vfio-ap: Fix stale do_remove flag across iterations in
vfio_ap_mdev_cfg_remove
s390/vfio-ap: Fix dereference matrix_mdev->kvm without checking for
NULL
s390/vfio-ap: Fix use of wrong lock in mdev probe function
s390/vfio-ap: Fix required lock not held during update of
ap_matrix_mdev object
s390/vfio-ap: Fix control domain removal in vfio_ap_mdev_cfg_remove

drivers/s390/crypto/vfio_ap_ops.c | 59 +++++++++++++++++++++----------
1 file changed, 41 insertions(+), 18 deletions(-)

--
2.53.0