]> git.baikalelectronics.ru Git - kernel.git/commit
fix "netfilter: xt_bpf: Fix XT_BPF_MODE_FD_PINNED mode of 'xt_bpf_info_v1'"
authorAl Viro <viro@zeniv.linux.org.uk>
Sun, 3 Dec 2017 01:20:38 +0000 (20:20 -0500)
committerAl Viro <viro@zeniv.linux.org.uk>
Fri, 5 Jan 2018 16:43:39 +0000 (11:43 -0500)
commit38d923ac0443411b3926075764156e4c5cd58026
tree225bf6fb67c3597b9def19f3412b476db1d6d4fa
parentd1bf851ee741c88ab78d3e2576efc8184964ab44
fix "netfilter: xt_bpf: Fix XT_BPF_MODE_FD_PINNED mode of 'xt_bpf_info_v1'"

Descriptor table is a shared object; it's not a place where you can
stick temporary references to files, especially when we don't need
an opened file at all.

Cc: stable@vger.kernel.org # v4.14
Fixes: 99ab14d875b6 ("netfilter: xt_bpf: Fix XT_BPF_MODE_FD_PINNED mode of 'xt_bpf_info_v1'")
Signed-off-by: Al Viro <viro@zeniv.linux.org.uk>
include/linux/bpf.h
kernel/bpf/inode.c
kernel/bpf/syscall.c
net/netfilter/xt_bpf.c