root dentries need RCU-delayed freeing
authorAl Viro <viro@zeniv.linux.org.uk>
Mon, 6 Aug 2018 13:03:58 +0000 (09:03 -0400)
committerAl Viro <viro@zeniv.linux.org.uk>
Mon, 6 Aug 2018 13:13:32 +0000 (09:13 -0400)
Since mountpoint crossing can happen without leaving lazy mode,
root dentries do need the same protection against having their
memory freed without RCU delay as everything else in the tree.

It's partially hidden by RCU delay between detaching from the
mount tree and dropping the vfsmount reference, but the starting
point of pathwalk can be on an already detached mount, in which
case umount-caused RCU delay has already passed by the time the
lazy pathwalk grabs rcu_read_lock().  If the starting point
happens to be at the root of that vfsmount *and* that vfsmount
covers the entire filesystem, we get trouble.

Fixes: 48a066e72d97 ("RCU'd vsfmounts")
Cc: stable@vger.kernel.org
Signed-off-by: Al Viro <viro@zeniv.linux.org.uk>
fs/dcache.c

index 0e8e5de3c48a56e24a70b0185932644ba92b93b0..d677290b0acae084149bd7d6a6a4e1bff0bd37d0 100644 (file)
@@ -1932,10 +1932,12 @@ struct dentry *d_make_root(struct inode *root_inode)
 
        if (root_inode) {
                res = d_alloc_anon(root_inode->i_sb);
-               if (res)
+               if (res) {
+                       res->d_flags |= DCACHE_RCUACCESS;
                        d_instantiate(res, root_inode);
-               else
+               } else {
                        iput(root_inode);
+               }
        }
        return res;
 }