From: Li Zefan Date: Wed, 12 Feb 2014 20:44:57 +0000 (-0800) Subject: jffs2: remove from wait queue after schedule() X-Git-Tag: v3.4.88~2 X-Git-Url: http://review.tizen.org/git/?a=commitdiff_plain;h=371d9bb7dab6293e79aafb5481b842629a60aa5e;p=platform%2Fkernel%2Flinux-stable.git jffs2: remove from wait queue after schedule() commit 3ead9578443b66ddb3d50ed4f53af8a0c0298ec5 upstream. @wait is a local variable, so if we don't remove it from the wait queue list, later wake_up() may end up accessing invalid memory. This was spotted by eyes. Signed-off-by: Li Zefan Cc: David Woodhouse Cc: Artem Bityutskiy Signed-off-by: Andrew Morton Signed-off-by: Brian Norris Signed-off-by: Greg Kroah-Hartman --- diff --git a/fs/jffs2/nodemgmt.c b/fs/jffs2/nodemgmt.c index d2cac51..87044bc 100644 --- a/fs/jffs2/nodemgmt.c +++ b/fs/jffs2/nodemgmt.c @@ -139,6 +139,7 @@ int jffs2_reserve_space(struct jffs2_sb_info *c, uint32_t minsize, spin_unlock(&c->erase_completion_lock); schedule(); + remove_wait_queue(&c->erase_wait, &wait); } else spin_unlock(&c->erase_completion_lock); } else if (ret)