ksmbd: fix infinite loop in ksmbd_conn_handler_loop()
authorNamjae Jeon <linkinjeon@kernel.org>
Sat, 31 Dec 2022 08:32:31 +0000 (17:32 +0900)
committerSteve French <stfrench@microsoft.com>
Mon, 2 Jan 2023 04:49:24 +0000 (22:49 -0600)
commit83dcedd5540d4ac61376ddff5362f7d9f866a6ec
tree4556a7429f37595ad5429cdf01dafdbbb3406c65
parent797805d81baa814f76cf7bdab35f86408a79d707
ksmbd: fix infinite loop in ksmbd_conn_handler_loop()

If kernel_recvmsg() return -EAGAIN in ksmbd_tcp_readv() and go round
again, It will cause infinite loop issue. And all threads from next
connections would be doing that. This patch add max retry count(2) to
avoid it. kernel_recvmsg() will wait during 7sec timeout and try to
retry two time if -EAGAIN is returned. And add flags of kvmalloc to
__GFP_NOWARN and __GFP_NORETRY to disconnect immediately without
retrying on memory alloation failure.

Fixes: 0626e6641f6b ("cifsd: add server handler for central processing and tranport layers")
Cc: stable@vger.kernel.org
Reported-by: zdi-disclosures@trendmicro.com # ZDI-CAN-18259
Reviewed-by: Sergey Senozhatsky <senozhatsky@chromium.org>
Signed-off-by: Namjae Jeon <linkinjeon@kernel.org>
Signed-off-by: Steve French <stfrench@microsoft.com>
fs/ksmbd/connection.c
fs/ksmbd/transport_tcp.c