Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get (v3)
From: Andrey Wagin <hidden>
Date: 2014-01-14 11:10:53
Also in:
lkml, netfilter-devel
From: Andrey Wagin <hidden>
Date: 2014-01-14 11:10:53
Also in:
lkml, netfilter-devel
Eh, looks like this path is incomplete too:(
I think we can't set a reference counter for objects which is allocated
from a SLAB_DESTROY_BY_RCU cache. Look at the following backtrace.
cpu1 cpu2
ct = ____nf_conntrack_find()
destroy_conntrack
atomic_inc_not_zero(ct)ct->ct_general.use is zero after destroy_conntrack(). Sorry for the noise.