netfilter: egress: avoid a lockdep splat
authorFlorian Westphal <fw@strlen.de>
Fri, 7 Jan 2022 14:46:16 +0000 (15:46 +0100)
committerPablo Neira Ayuso <pablo@netfilter.org>
Sun, 9 Jan 2022 22:35:16 +0000 (23:35 +0100)
include/linux/netfilter_netdev.h:97 suspicious rcu_dereference_check() usage!
2 locks held by sd-resolve/1100:
 0: ..(rcu_read_lock_bh){1:3}, at: ip_finish_output2
 1: ..(rcu_read_lock_bh){1:3}, at: __dev_queue_xmit
 __dev_queue_xmit+0 ..

The helper has two callers, one uses rcu_read_lock, the other
rcu_read_lock_bh().  Annotate the dereference to reflect this.

Fixes: 42df6e1d221dd ("netfilter: Introduce egress hook")
Signed-off-by: Florian Westphal <fw@strlen.de>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
include/linux/netfilter_netdev.h

index b71b57a..b4dd96e 100644 (file)
@@ -94,7 +94,7 @@ static inline struct sk_buff *nf_hook_egress(struct sk_buff *skb, int *rc,
                return skb;
 #endif
 
-       e = rcu_dereference(dev->nf_hooks_egress);
+       e = rcu_dereference_check(dev->nf_hooks_egress, rcu_read_lock_bh_held());
        if (!e)
                return skb;