Re: [PATCH] netfilter: per netns nf_conntrack_cachep
From: Alexey Dobriyan <hidden>
Date: 2010-02-04 12:36:00
Also in:
lkml, netfilter-devel
From: Alexey Dobriyan <hidden>
Date: 2010-02-04 12:36:00
Also in:
lkml, netfilter-devel
On Thu, Feb 4, 2010 at 2:30 PM, Patrick McHardy [off-list ref] wrote:
Alexey Dobriyan wrote:quoted
On Thu, Feb 4, 2010 at 2:25 PM, Patrick McHardy [off-list ref] wrote:quoted
Jon Masters wrote:quoted
On Wed, 2010-02-03 at 21:09 +0200, Alexey Dobriyan wrote:quoted
On Wed, Feb 03, 2010 at 01:38:09PM -0500, Jon Masters wrote:quoted
*). Per namespace cacheing allocation (the cachep bits). We know it's still possible for weirdness to happen in the SLAB cache here.Tiny race, needs reproducer.Maybe. I think it's worth fixing anyway.Absolutely, I'll also apply Eric's patch with the %p fix for the slab name.This would show kernel pointers in userspace ;-) So, net->id is required.I don't see the problem. But yes, it would be nicer to have an ID.
This is done (or rather, not done) to not show attackers where data structures are.