From mboxrd@z Thu Jan 1 00:00:00 1970 From: John Daley Subject: [PATCH 1/2] net/enic: fix crash on MTU update or rxq reconfigure Date: Wed, 12 Oct 2016 14:12:02 -0700 Message-ID: <20161012211203.23250-1-johndale@cisco.com> Cc: dev@dpdk.org, John Daley To: bruce.richardson@intel.com Return-path: Received: from alln-iport-4.cisco.com (alln-iport-4.cisco.com [173.37.142.91]) by dpdk.org (Postfix) with ESMTP id 068332BCE for ; Wed, 12 Oct 2016 23:12:16 +0200 (CEST) List-Id: patches and discussions about DPDK List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: dev-bounces@dpdk.org Sender: "dev" The incorrect completion queue corresponding to an RQ would be freed if multiple Rx queues are in use and the MTU is changed, or an Rx queue is released. This could lead to a segmentation fault when the device is disabled or even in the Rx or Tx paths. The index of the completion queue corresponding to a RQ needed to be adjusted after Rx scatter was introduced. Fixes: 856d7ba7ed22 ("net/enic: support scattered Rx") Signed-off-by: John Daley Reviewed-by: Nelson Escobar --- drivers/net/enic/enic.h | 5 +++++ drivers/net/enic/enic_main.c | 2 +- 2 files changed, 6 insertions(+), 1 deletion(-) diff --git a/drivers/net/enic/enic.h b/drivers/net/enic/enic.h index 4ea4e4a..13a4b31 100644 --- a/drivers/net/enic/enic.h +++ b/drivers/net/enic/enic.h @@ -170,6 +170,11 @@ struct enic { }; +/* Get the CQ index from a Start of Packet(SOP) RQ index */ +static inline unsigned int enic_sop_rq_idx_to_cq_idx(unsigned int sop_idx) +{ + return sop_idx / 2; +} static inline unsigned int enic_rq_sop(unsigned int sop_rq) { return sop_rq / 2; diff --git a/drivers/net/enic/enic_main.c b/drivers/net/enic/enic_main.c index 622b317..65a8307 100644 --- a/drivers/net/enic/enic_main.c +++ b/drivers/net/enic/enic_main.c @@ -541,7 +541,7 @@ void enic_free_rq(void *rxq) if (rq_data->in_use) vnic_rq_free(rq_data); - vnic_cq_free(&enic->cq[rq_sop->index]); + vnic_cq_free(&enic->cq[enic_sop_rq_idx_to_cq_idx(rq_sop->index)]); rq_sop->in_use = 0; rq_data->in_use = 0; -- 2.10.0