diff options
author | Daniel Borkmann <daniel@iogearbox.net> | 2016-11-19 01:45:00 +0100 |
---|---|---|
committer | David S. Miller <davem@davemloft.net> | 2016-11-21 17:25:57 +0100 |
commit | 97bc402db7821259f6a722cb38e060aa9b35b6e8 (patch) | |
tree | 47fd432ccb666cf167358f005b47d1e2abe5e6bf /kernel/bpf | |
parent | Merge branch 'mV88e6xxx-interrupt-fixes' (diff) | |
download | linux-97bc402db7821259f6a722cb38e060aa9b35b6e8.tar.xz linux-97bc402db7821259f6a722cb38e060aa9b35b6e8.zip |
bpf, mlx5: fix mlx5e_create_rq taking reference on prog
In mlx5e_create_rq(), when creating a new queue, we call bpf_prog_add() but
without checking the return value. bpf_prog_add() can fail since 92117d8443bc
("bpf: fix refcnt overflow"), so we really must check it. Take the reference
right when we assign it to the rq from priv->xdp_prog, and just drop the
reference on error path. Destruction in mlx5e_destroy_rq() looks good, though.
Fixes: 86994156c736 ("net/mlx5e: XDP fast RX drop bpf programs support")
Signed-off-by: Daniel Borkmann <daniel@iogearbox.net>
Acked-by: Saeed Mahameed <saeedm@mellanox.com>
Signed-off-by: David S. Miller <davem@davemloft.net>
Diffstat (limited to 'kernel/bpf')
-rw-r--r-- | kernel/bpf/syscall.c | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/kernel/bpf/syscall.c b/kernel/bpf/syscall.c index ce1b7de7d72c..eb15498b8d55 100644 --- a/kernel/bpf/syscall.c +++ b/kernel/bpf/syscall.c @@ -696,6 +696,7 @@ struct bpf_prog *bpf_prog_inc(struct bpf_prog *prog) { return bpf_prog_add(prog, 1); } +EXPORT_SYMBOL_GPL(bpf_prog_inc); static struct bpf_prog *__bpf_prog_get(u32 ufd, enum bpf_prog_type *type) { |