[Bridge] [PATCH 07/17] net: convert sock.sk_refcnt from atomic_t to refcount_t

David Miller davem at davemloft.net
Thu Mar 16 19:10:32 UTC 2017


From: Kees Cook <keescook at chromium.org>
Date: Thu, 16 Mar 2017 11:38:25 -0600

> I am, of course, biased, but I think the evidence of actual
> refcounting attacks outweighs the theoretical performance cost of
> these changes.

This is not theoretical at all.

We count the nanoseconds that every packet takes to get processed and
you are adding quite a bit.

I understand your point of view, but this is knowingly going to add
performance regressions to the networking code.


More information about the Bridge mailing list