diff options
author | Eric Dumazet <edumazet@google.com> | 2012-10-18 09:14:12 +0000 |
---|---|---|
committer | Greg Kroah-Hartman <gregkh@linuxfoundation.org> | 2012-11-17 13:14:24 -0800 |
commit | 3297d60d4ebc83a4dc6c44abad18d181c6680b9e (patch) | |
tree | 425973894dfadfc12e134adbea06131f9ae69054 | |
parent | fdc00abab6858f9da6a40e03c831c252b4f419bd (diff) | |
download | kernel_samsung_smdk4412-3297d60d4ebc83a4dc6c44abad18d181c6680b9e.tar.gz kernel_samsung_smdk4412-3297d60d4ebc83a4dc6c44abad18d181c6680b9e.tar.bz2 kernel_samsung_smdk4412-3297d60d4ebc83a4dc6c44abad18d181c6680b9e.zip |
tcp: fix FIONREAD/SIOCINQ
[ Upstream commit a3374c42aa5f7237e87ff3b0622018636b0c847e ]
tcp_ioctl() tries to take into account if tcp socket received a FIN
to report correct number bytes in receive queue.
But its flaky because if the application ate the last skb,
we return 1 instead of 0.
Correct way to detect that FIN was received is to test SOCK_DONE.
Reported-by: Elliot Hughes <enh@google.com>
Signed-off-by: Eric Dumazet <edumazet@google.com>
Cc: Neal Cardwell <ncardwell@google.com>
Cc: Tom Herbert <therbert@google.com>
Signed-off-by: David S. Miller <davem@davemloft.net>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
-rw-r--r-- | net/ipv4/tcp.c | 8 |
1 files changed, 3 insertions, 5 deletions
diff --git a/net/ipv4/tcp.c b/net/ipv4/tcp.c index dd3af6c6ee0..2c423b660e5 100644 --- a/net/ipv4/tcp.c +++ b/net/ipv4/tcp.c @@ -481,14 +481,12 @@ int tcp_ioctl(struct sock *sk, int cmd, unsigned long arg) !tp->urg_data || before(tp->urg_seq, tp->copied_seq) || !before(tp->urg_seq, tp->rcv_nxt)) { - struct sk_buff *skb; answ = tp->rcv_nxt - tp->copied_seq; - /* Subtract 1, if FIN is in queue. */ - skb = skb_peek_tail(&sk->sk_receive_queue); - if (answ && skb) - answ -= tcp_hdr(skb)->fin; + /* Subtract 1, if FIN was received */ + if (answ && sock_flag(sk, SOCK_DONE)) + answ--; } else answ = tp->urg_seq - tp->copied_seq; release_sock(sk); |