zram: fix race between reset and flushing pending work
authorMinchan Kim <minchan@kernel.org>
Thu, 30 Jan 2014 23:45:58 +0000 (15:45 -0800)
committerAlex Shi <alex.shi@linaro.org>
Mon, 11 May 2015 11:31:02 +0000 (19:31 +0800)
commitfbd4d659587f3be893860c57e7b338fe3f45284d
tree902447c6892fb28bd005f90f00e15f910f03d271
parent00cfab35e838986cf72222f981444dab704db687
zram: fix race between reset and flushing pending work

Dan and Sergey reported that there is a racy between reset and flushing
of pending work so that it could make oops by freeing zram->meta in
reset while zram_slot_free can access zram->meta if new request is
adding during the race window.

This patch moves flush after taking init_lock so it prevents new request
so that it closes the race.

Signed-off-by: Minchan Kim <minchan@kernel.org>
Reported-by: Dan Carpenter <dan.carpenter@oracle.com>
Cc: Nitin Gupta <ngupta@vflare.org>
Cc: Jerome Marchand <jmarchan@redhat.com>
Tested-by: Sergey Senozhatsky <sergey.senozhatsky@gmail.com>
Cc: <stable@vger.kernel.org>
Signed-off-by: Andrew Morton <akpm@linux-foundation.org>
Signed-off-by: Linus Torvalds <torvalds@linux-foundation.org>
(cherry picked from commit da4a04126baa3be03bc566d4a2ee0944c5e783d0)
Signed-off-by: Alex Shi <alex.shi@linaro.org>
drivers/block/zram/zram_drv.c