mirror of
https://github.com/torvalds/linux.git
synced 2026-07-27 17:47:41 +02:00
mptcp: decrement subflows counter on failed passive join
mptcp_pm_allow_new_subflow() increments extra_subflows before
__mptcp_finish_join() on the passive MP_JOIN path.
In case of race conditions, the subflow is dropped without calling
mptcp_close_ssk(), so the counter is not rolled back.
Call mptcp_pm_close_subflow() when the join completion fails to
decrement the subflows counter.
Fixes: 10f6d46c94 ("mptcp: fix race between MP_JOIN and close")
Cc: stable@vger.kernel.org
Signed-off-by: Chenguang Zhao <zhaochenguang@kylinos.cn>
Reviewed-by: Matthieu Baerts (NGI0) <matttbe@kernel.org>
Signed-off-by: Matthieu Baerts (NGI0) <matttbe@kernel.org>
Link: https://patch.msgid.link/20260722-net-mptcp-misc-fixes-7-2-rc5-v1-1-6fb595bc86ef@kernel.org
Signed-off-by: Jakub Kicinski <kuba@kernel.org>
This commit is contained in:
parent
234e5e898b
commit
f3ca0ee2cc
|
|
@ -3907,6 +3907,7 @@ bool mptcp_finish_join(struct sock *ssk)
|
|||
mptcp_data_unlock(parent);
|
||||
|
||||
if (!ret) {
|
||||
mptcp_pm_close_subflow(msk);
|
||||
err_prohibited:
|
||||
subflow->reset_reason = MPTCP_RST_EPROHIBIT;
|
||||
return false;
|
||||
|
|
|
|||
Loading…
Reference in New Issue
Block a user