Received: by 2002:ac0:da4c:0:0:0:0:0 with SMTP id a12csp1204518imi; Fri, 22 Jul 2022 21:12:35 -0700 (PDT) X-Google-Smtp-Source: AGRyM1vrY00Vxt42IiW3JXdrzZNsjdXiy7hpg8zi4JbZBK7gIq0RH9fq0tdT2tN4FgS0PkMiOM+s X-Received: by 2002:a17:902:7fc3:b0:16c:78aa:88b0 with SMTP id t3-20020a1709027fc300b0016c78aa88b0mr2685187plb.81.1658549555295; Fri, 22 Jul 2022 21:12:35 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1658549555; cv=none; d=google.com; s=arc-20160816; b=zDXFko2dqMkchZwmMovCLeXLUtdeksjFkuGrQI/gbzMDuDlt6gSUzurj+ihfibIlaU HFffZPsCRpZPQcHpWqyob8tXeCNrIVetMhqrqvRmX+q14G4hdaDGPmQRUewFpJ4snhPh d5GzLEdRw1rgzanDdo3ctIYkHG5EZ1QpJ1CSmYsLm4aTLsmOh0LLWGhLPilGtSw2NxAn qvv6autVQL6udbZBIxOl6VqfRyhkZEIHCiLMNyzwfp2rL63yf1b5mOEv7S8A/Ex6voow UQ3VwqhmgRZ4b7JViiHyPukhVGXMugL+bhU8+Uj0T5Zcs1sLCoyRJWWXXDSntwfB2ybI eCiw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:message-id:date:subject:cc:to:from; bh=BI5DvHIFxv8DJlqCMMJWYMyMrPioKbcGwl2ZW/7Xw6o=; b=AhiSIF29U+rT3Yce8d/EkK8DZ3FbfLNXYH4CxQHf3qGcYGueSXkqdzqvgvZ+6fbAyD XAgpRuz3homNimncu039ZTxizlhNvbY/9UAsRnTiJrr+VWlHQ5ll+TJ1uzk0dhQ+py1o zmjRp5EsTZLmV4bhDX3/EUkXEzr7wny0LgpwrVFeRjiP/GHLdSijnzmncrXDwKxS1iD0 6nK+6OSjNt8ql1DkKjbUBz4nfUkpJWdoIyhrDNBHEoJS9ai1aSAjOuWTfETBAo4wGFBf T/08oWKTeIt7v4TSxrVmvjayTCLeWbU/rhwf2bHLtlt6uK7+ZxH5Z8EKa2alch/iBvTb Xgkg== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from out1.vger.email (out1.vger.email. [2620:137:e000::1:20]) by mx.google.com with ESMTP id w18-20020a63c112000000b00419a4c764d3si8016348pgf.176.2022.07.22.21.12.17; Fri, 22 Jul 2022 21:12:35 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) client-ip=2620:137:e000::1:20; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S235769AbiGWD5Q (ORCPT + 99 others); Fri, 22 Jul 2022 23:57:16 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:55636 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S229469AbiGWD5P (ORCPT ); Fri, 22 Jul 2022 23:57:15 -0400 Received: from zg8tmtyylji0my4xnjqunzqa.icoremail.net (zg8tmtyylji0my4xnjqunzqa.icoremail.net [162.243.164.74]) by lindbergh.monkeyblade.net (Postfix) with SMTP id B43AC74DDA; Fri, 22 Jul 2022 20:57:12 -0700 (PDT) Received: from ubuntu.localdomain (unknown [106.117.76.127]) by mail-app3 (Coremail) with SMTP id cC_KCgCHbah+cdtiivhQAQ--.2627S2; Sat, 23 Jul 2022 11:56:57 +0800 (CST) From: Duoming Zhou To: linux-hams@vger.kernel.org Cc: ralf@linux-mips.org, davem@davemloft.net, edumazet@google.com, kuba@kernel.org, pabeni@redhat.com, netdev@vger.kernel.org, linux-kernel@vger.kernel.org, Duoming Zhou Subject: [PATCH net] netrom: fix sleep in atomic context bugs in timer handlers Date: Sat, 23 Jul 2022 11:56:46 +0800 Message-Id: <20220723035646.29857-1-duoming@zju.edu.cn> X-Mailer: git-send-email 2.17.1 X-CM-TRANSID: cC_KCgCHbah+cdtiivhQAQ--.2627S2 X-Coremail-Antispam: 1UD129KBjvJXoW7CrW5AFW8AF4kuFWxKw17ZFb_yoW8GrWfpF WxKF9IyF4qqw1UA3ykGw48u34Yvw1rJF4UC34v9r4Fy3s0qryDJFWjkFWjqF4v9rWxWayY qFs0vw1UJF12yFJanT9S1TB71UUUUUUqnTZGkaVYY2UrUUUUjbIjqfuFe4nvWSU5nxnvy2 9KBjDU0xBIdaVrnRJUUUkq14x267AKxVW8JVW5JwAFc2x0x2IEx4CE42xK8VAvwI8IcIk0 rVWrJVCq3wAFIxvE14AKwVWUJVWUGwA2ocxC64kIII0Yj41l84x0c7CEw4AK67xGY2AK02 1l84ACjcxK6xIIjxv20xvE14v26w1j6s0DM28EF7xvwVC0I7IYx2IY6xkF7I0E14v26r4U JVWxJr1l84ACjcxK6I8E87Iv67AKxVW0oVCq3wA2z4x0Y4vEx4A2jsIEc7CjxVAFwI0_Gc CE3s1le2I262IYc4CY6c8Ij28IcVAaY2xG8wAqx4xG64xvF2IEw4CE5I8CrVC2j2WlYx0E 2Ix0cI8IcVAFwI0_JrI_JrylYx0Ex4A2jsIE14v26r1j6r4UMcvjeVCFs4IE7xkEbVWUJV W8JwACjcxG0xvY0x0EwIxGrwACjI8F5VA0II8E6IAqYI8I648v4I1lc2xSY4AK67AK6r48 MxAIw28IcxkI7VAKI48JMxC20s026xCaFVCjc4AY6r1j6r4UMI8I3I0E5I8CrVAFwI0_Jr 0_Jr4lx2IqxVCjr7xvwVAFwI0_JrI_JrWlx4CE17CEb7AF67AKxVWUtVW8ZwCIc40Y0x0E wIxGrwCI42IY6xIIjxv20xvE14v26r1j6r1xMIIF0xvE2Ix0cI8IcVCY1x0267AKxVWUJV W8JwCI42IY6xAIw20EY4v20xvaj40_Jr0_JF4lIxAIcVC2z280aVAFwI0_Jr0_Gr1lIxAI cVC2z280aVCY1x0267AKxVW8JVW8JrUvcSsGvfC2KfnxnUUI43ZEXa7VUb2g4DUUUUU== X-CM-SenderInfo: qssqjiasttq6lmxovvfxof0/1tbiAgkAAVZdtay7fgACsf X-Spam-Status: No, score=-2.6 required=5.0 tests=BAYES_00,RCVD_IN_DNSWL_LOW, RCVD_IN_MSPIKE_H2,SPF_HELO_NONE,SPF_PASS autolearn=ham autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org There are sleep in atomic context bugs in timer handlers of netrom such as nr_t1timer_expiry(), nr_t2timer_expiry(), nr_heartbeat_expiry(), nr_idletimer_expiry() and so on. The root cause is kmemdup() with GFP_KERNEL parameter that may sleep could be called by different timer handlers which is in interrupt context. One of the call paths that could trigger bug is shown below: (interrupt context) nr_heartbeat_expiry nr_write_internal nr_transmit_buffer nr_route_frame nr_add_node kmemdup(..,GFP_KERNEL) //may sleep This patch changes gfp_t parameter of kmemdup in nr_add_node() from GFP_KERNEL to GFP_ATOMIC in order to prevent sleep in atomic context bugs. Fixes: eafff86d3bd8 ("[NETROM]: Use kmemdup") Signed-off-by: Duoming Zhou --- net/netrom/nr_route.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/net/netrom/nr_route.c b/net/netrom/nr_route.c index baea3cbd76c..1ddcf13de6a 100644 --- a/net/netrom/nr_route.c +++ b/net/netrom/nr_route.c @@ -163,7 +163,7 @@ static int __must_check nr_add_node(ax25_address *nr, const char *mnemonic, if (ax25_digi != NULL && ax25_digi->ndigi > 0) { nr_neigh->digipeat = kmemdup(ax25_digi, sizeof(*ax25_digi), - GFP_KERNEL); + GFP_ATOMIC); if (nr_neigh->digipeat == NULL) { kfree(nr_neigh); if (nr_node) -- 2.17.1