NetBSD Problem Report #20426
Received: (qmail 21744 invoked by uid 605); 19 Feb 2003 10:10:23 -0000
Message-Id: <20030219101004.352F1791@starfruit.itojun.org>
Date: Wed, 19 Feb 2003 19:10:04 +0900 (JST)
From: itojun@itojun.org
Sender: gnats-bugs-owner@netbsd.org
Reply-To: itojun@itojun.org
To: gnats-bugs@gnats.netbsd.org
Cc: yshimizu@iij.ad.jp, masanobu@iij.ad.jp
Subject: accesses to ifindex2ifnet[] has to be protected
X-Send-Pr-Version: 3.95
>Number: 20426
>Category: kern
>Synopsis: accesses to ifindex2ifnet[] has to be protected
>Confidential: no
>Severity: serious
>Priority: medium
>Responsible: kern-bug-people
>State: open
>Class: sw-bug
>Submitter-Id: net
>Arrival-Date: Wed Feb 19 10:11:00 +0000 2003
>Closed-Date:
>Last-Modified: Wed Feb 19 12:21:00 +0000 2003
>Originator: Jun-ichiro itojun Hagino
>Release: NetBSD 1.6O
>Organization:
>Environment:
System: NetBSD starfruit.itojun.org 1.6O NetBSD 1.6O (STARFRUIT) #45: Wed Feb 19 17:51:54 JST 2003 itojun@starfruit.itojun.org:/home/itojun/NetBSD/src/sys/arch/i386/compile/STARFRUIT i386
Architecture: i386
Machine: i386
>Description:
"ifconfig destroy" sometimes panic the system. possible cause
seems to be attempts to access struct ifnet from ifindex2ifnet[]
(i'm guessing).
>How-To-Repeat:
>Fix:
on "ifconfig destroy" do not remove pointer to struct ifnet from
ifindex2ifnet[].
>Release-Note:
>Audit-Trail:
From: Jun-ichiro itojun Hagino <itojun@iijlab.net>
To: gnats-bugs@netbsd.org
Cc:
Subject: Re: kern/20426
Date: Wed, 19 Feb 2003 21:20:20 +0900
it could be multicast forwarding code that touches dangling pointer.
itojun
>Unformatted:
(Contact us)
$NetBSD: query-full-pr,v 1.39 2013/11/01 18:47:49 spz Exp $
$NetBSD: gnats_config.sh,v 1.8 2006/05/07 09:23:38 tsutsui Exp $
Copyright © 1994-2007
The NetBSD Foundation, Inc. ALL RIGHTS RESERVED.