From: Xiyu Yang <hidden> Date: 2021-08-29 15:58:41
The reference counting issue happens in one exception handling path of
cbq_change_class(). When failing to get tcf_block, the function forgets
to decrease the refcount of "rtab" increased by qdisc_put_rtab(),
causing a refcount leak.
Fix this issue by jumping to "failure" label when get tcf_block failed.
Signed-off-by: Xiyu Yang <redacted>
---
net/sched/sch_cbq.c | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
From: Jakub Kicinski <kuba@kernel.org> Date: 2021-08-30 18:05:55
On Sun, 29 Aug 2021 23:58:01 +0800 Xiyu Yang wrote:
The reference counting issue happens in one exception handling path of
cbq_change_class(). When failing to get tcf_block, the function forgets
to decrease the refcount of "rtab" increased by qdisc_put_rtab(),
causing a refcount leak.
Fix this issue by jumping to "failure" label when get tcf_block failed.
Signed-off-by: Xiyu Yang <redacted>
From: Cong Wang <hidden> Date: 2021-08-31 01:18:48
On Mon, Aug 30, 2021 at 11:05 AM Jakub Kicinski [off-list ref] wrote:
On Sun, 29 Aug 2021 23:58:01 +0800 Xiyu Yang wrote:
quoted
The reference counting issue happens in one exception handling path of
cbq_change_class(). When failing to get tcf_block, the function forgets
to decrease the refcount of "rtab" increased by qdisc_put_rtab(),
causing a refcount leak.
Fix this issue by jumping to "failure" label when get tcf_block failed.
Signed-off-by: Xiyu Yang <redacted>
Hello:
This patch was applied to netdev/net-next.git (refs/heads/master):
On Sun, 29 Aug 2021 23:58:01 +0800 you wrote:
The reference counting issue happens in one exception handling path of
cbq_change_class(). When failing to get tcf_block, the function forgets
to decrease the refcount of "rtab" increased by qdisc_put_rtab(),
causing a refcount leak.
Fix this issue by jumping to "failure" label when get tcf_block failed.
[...]