net: convert fib_treeref from int to refcount_t
refcount_t type should be used instead of int when fib_treeref is used as a reference counter,and avoid use-after-free risks. Signed-off-by: Yajun Deng <yajun.deng@linux.dev> Reviewed-by: David Ahern <dsahern@kernel.org> Link: https://lore.kernel.org/r/20210729071350.28919-1-yajun.deng@linux.dev Signed-off-by: Jakub Kicinski <kuba@kernel.org>
This commit is contained in:
committed by
Jakub Kicinski
parent
3e12361b6d
commit
79976892f7
@@ -29,7 +29,7 @@ struct dn_fib_nh {
|
||||
struct dn_fib_info {
|
||||
struct dn_fib_info *fib_next;
|
||||
struct dn_fib_info *fib_prev;
|
||||
int fib_treeref;
|
||||
refcount_t fib_treeref;
|
||||
refcount_t fib_clntref;
|
||||
int fib_dead;
|
||||
unsigned int fib_flags;
|
||||
|
||||
@@ -133,7 +133,7 @@ struct fib_info {
|
||||
struct hlist_node fib_lhash;
|
||||
struct list_head nh_list;
|
||||
struct net *fib_net;
|
||||
int fib_treeref;
|
||||
refcount_t fib_treeref;
|
||||
refcount_t fib_clntref;
|
||||
unsigned int fib_flags;
|
||||
unsigned char fib_dead;
|
||||
|
||||
Reference in New Issue
Block a user