]> asedeno.scripts.mit.edu Git - linux.git/commitdiff
neighbor: Reset gc_entries counter if new entry is released before insert
authorDavid Ahern <dsahern@gmail.com>
Thu, 2 May 2019 01:08:34 +0000 (18:08 -0700)
committerDavid S. Miller <davem@davemloft.net>
Sat, 4 May 2019 04:36:19 +0000 (00:36 -0400)
Ian and Alan both reported seeing overflows after upgrades to 5.x kernels:
  neighbour: arp_cache: neighbor table overflow!

Alan's mpls script helped get to the bottom of this bug. When a new entry
is created the gc_entries counter is bumped in neigh_alloc to check if a
new one is allowed to be created. ___neigh_create then searches for an
existing entry before inserting the just allocated one. If an entry
already exists, the new one is dropped in favor of the existing one. In
this case the cleanup path needs to drop the gc_entries counter. There
is no memory leak, only a counter leak.

Fixes: 58956317c8d ("neighbor: Improve garbage collection")
Reported-by: Ian Kumlien <ian.kumlien@gmail.com>
Reported-by: Alan Maguire <alan.maguire@oracle.com>
Signed-off-by: David Ahern <dsahern@gmail.com>
Tested-by: Alan Maguire <alan.maguire@oracle.com>
Signed-off-by: David S. Miller <davem@davemloft.net>
net/core/neighbour.c

index 30f6fd8f68e0dc42801686ede3886f366ee1732b..aff051e5521dc106479269a8a41a5dc4b9ed5b89 100644 (file)
@@ -663,6 +663,8 @@ static struct neighbour *___neigh_create(struct neigh_table *tbl,
 out_tbl_unlock:
        write_unlock_bh(&tbl->lock);
 out_neigh_release:
+       if (!exempt_from_gc)
+               atomic_dec(&tbl->gc_entries);
        neigh_release(n);
        goto out;
 }