Re: Possible race condition in conntracking

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Patrick McHardy
Date: Tuesday, January 27, 2009 - 6:48 am

Tobias Klausmann wrote:

Fixing this requires some rather intrusive changes. We need
to perform a lookup on the unconfirmed list when a conntrack
is not found in the hash and use the one we find there, if any.
The entries on that list are not reference counted and there
are a lot of assumptions in the code that an unconfirmed conntrack
is exclusively associated with a single packet. This needs to
be audited and fixed, but it looks quite hard.

--
To unsubscribe from this list: send the line "unsubscribe netdev" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Possible race condition in conntracking, Tobias Klausmann, (Tue Jan 27, 12:57 am)
Re: Possible race condition in conntracking, Patrick McHardy, (Tue Jan 27, 2:20 am)
Re: Possible race condition in conntracking, Tobias Klausmann, (Tue Jan 27, 6:06 am)
Re: Possible race condition in conntracking, Patrick McHardy, (Tue Jan 27, 6:14 am)
Re: Possible race condition in conntracking, Tobias Klausmann, (Tue Jan 27, 6:28 am)
Re: Possible race condition in conntracking, Patrick McHardy, (Tue Jan 27, 6:48 am)