Thread (18 messages) flat view 18 messages, 6 authors, 2017-03-07

Re: net/dccp: use-after-free in dccp_feat_activate_values

From: Eric Dumazet <hidden>
Date: 2017-03-03 15:20:39
Also in: lkml

On Fri, 2017-03-03 at 16:06 +0100, Dmitry Vyukov wrote:
Something that compiles is definitely better :)
Reapplied.
Just to be clear : This is not the proper patch. This only reduces the
race.

bh_lock_sock() does not prevent a user process from owning the socket.

We need another protection, probably RCU based, or another spinlock
protecting the fields needed at SYNACK generation.
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help