selinux: use GFP_ATOMIC under spin_lock

The call tree here is:

sk_clone_lock()              <- takes bh_lock_sock(newsk);
xfrm_sk_clone_policy()
__xfrm_sk_clone_policy()
clone_policy()               <- uses GFP_ATOMIC for allocations
security_xfrm_policy_clone()
security_ops->xfrm_policy_clone_security()
selinux_xfrm_policy_clone()

Signed-off-by: Dan Carpenter <[email protected]>
Cc: [email protected]
Signed-off-by: James Morris <[email protected]>
This commit is contained in:
Dan Carpenter authored and James Morris committed 2013-03-19 00:33:09 +11:00
1 parent a937536b86
commit 4502403dcf
1 file changed
+1 -1
+1 -1
View File
@@ -310,7 +310,7 @@ int selinux_xfrm_policy_clone(struct xfrm_sec_ctx *old_ctx,
if (old_ctx) {
new_ctx = kmalloc(sizeof(*old_ctx) + old_ctx->ctx_len,
GFP_KERNEL);
GFP_ATOMIC);
if (!new_ctx)
return -ENOMEM;