Defined in 1 files as a prototype:
Defined in 1 files as a function:
Referenced in 6 files:
- include/net/ipv6_frag.h, line 78
- net/ieee802154/6lowpan/reassembly.c
- net/ipv4/inet_fragment.c, line 286
- net/ipv4/ip_fragment.c
- net/ipv6/netfilter/nf_conntrack_reasm.c
- net/ipv6/reassembly.c
Smatch caller information:
net/ieee802154/6lowpan/reassembly.c lowpan_frag_expire() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 1 | refs | 6199228516786483200 |
| PARAM_VALUE | 1 | *refs | 1 |
| PREEMPT_ADD | <- disables preempt | ||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| LOCK2 | &fq->q.lock | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ieee802154/6lowpan/reassembly.c lowpan_frag_reasm() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->flags | 3 |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fragments_tail | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->last_run_head | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->rb_fragments.rb_node | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->tstamp_type | 0-3 |
| PARAM_VALUE | 1 | refs | 8351490378526392320 |
| PARAM_VALUE | 1 | *refs | 0 |
| DATA_SOURCE | 1 | refs | $4 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| HOST_DATA | 0 | fq->stamp | 500000002-4294967299794967295[c] |
| NO_OVERFLOW_SIMPLE | 0 | fq->meat | |
| LOCK2 | &fq->q.lock | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv6/reassembly.c ip6_frag_queue() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 1 | refs | 8892168173906886656 |
| PARAM_VALUE | 1 | *refs | 0 |
| DATA_SOURCE | 1 | refs | $6 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| LOCK2 | &fq->q.lock | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv6/reassembly.c ip6_frag_queue() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 1 | refs | 8892168173906886656 |
| PARAM_VALUE | 1 | *refs | 0 |
| DATA_SOURCE | 1 | refs | $6 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| LOCK2 | &fq->q.lock | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv6/reassembly.c ip6_frag_queue() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fragments_tail | 4096-ptr_max |
| PARAM_VALUE | 1 | refs | 8892168173906886656 |
| PARAM_VALUE | 1 | *refs | 0 |
| DATA_SOURCE | 1 | refs | $6 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | fq->len | 0-u16max[c] |
| LOCK2 | &fq->q.lock | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv6/reassembly.c ip6_frag_reasm() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->flags | 3 |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fragments_tail | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->last_run_head | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->len | 0-s32max |
| PARAM_VALUE | 0 | fq->meat | 0-s32max |
| PARAM_VALUE | 0 | fq->rb_fragments.rb_node | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->tstamp_type | 0-3 |
| PARAM_VALUE | 1 | refs | 8892168173906886656 |
| PARAM_VALUE | 1 | *refs | 0 |
| DATA_SOURCE | 1 | refs | $5 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| HOST_DATA | 0 | fq->stamp | 500000002-4294967299794967295[c] |
| NO_OVERFLOW_SIMPLE | 0 | fq->meat | |
| LOCK2 | &fq->q.lock | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv6/reassembly.c ip6_frag_reasm() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fragments_tail | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->last_run_head | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->len | 0-s32max |
| PARAM_VALUE | 0 | fq->meat | 0-s32max |
| PARAM_VALUE | 0 | fq->rb_fragments.rb_node | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->timer.entry.pprev | 0 |
| PARAM_VALUE | 0 | fq->timer.flags | 0-4194302 |
| PARAM_VALUE | 0 | fq->timer.function | 0 |
| PARAM_VALUE | 0 | fq->tstamp_type | 0-3 |
| PARAM_VALUE | 1 | refs | 8892168173906886656 |
| DATA_SOURCE | 1 | refs | $5 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| HOST_DATA | 0 | fq->stamp | 500000002-4294967299794967295[c] |
| NO_OVERFLOW_SIMPLE | 0 | fq->meat | |
| LOCK2 | &fq->q.lock | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv6/reassembly.c ip6frag_expire_frag_queue() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 1 | refs | 6750681100454137856 |
| PARAM_VALUE | 1 | *refs | 1 |
| PREEMPT_ADD | <- disables preempt | ||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| LOCK2 | &fq->q.lock | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv4/ip_fragment.c ip_expire() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 1 | refs | 2980531656590876672 |
| PARAM_VALUE | 1 | *refs | 1 |
| PREEMPT_ADD | <- disables preempt | ||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| LOCK2 | &qp->q.lock | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv4/ip_fragment.c ip_frag_queue() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fragments_tail | 1-u64max |
| PARAM_VALUE | 1 | refs | 4849202836454916096 |
| PARAM_VALUE | 1 | *refs | 0 |
| DATA_SOURCE | 1 | refs | $2 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| LOCK2 | &qp->q.lock | ||
| LOCK2 | rcu_read | ||
| HALF_LOCKED2 | bh | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv4/ip_fragment.c ip_frag_queue() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fragments_tail | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->last_run_head | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->rb_fragments.rb_node | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->timer.entry.pprev | 0 |
| PARAM_VALUE | 0 | fq->timer.flags | 0-4194302 |
| PARAM_VALUE | 0 | fq->timer.function | 0 |
| PARAM_VALUE | 0 | fq->tstamp_type | 0-3 |
| PARAM_VALUE | 1 | refs | 4849202836454916096 |
| DATA_SOURCE | 1 | refs | $2 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| HOST_DATA | 0 | fq->stamp | 500000002-4294967299794967295[c] |
| NO_OVERFLOW_SIMPLE | 0 | fq->meat | |
| LOCK2 | &qp->q.lock | ||
| LOCK2 | rcu_read | ||
| HALF_LOCKED2 | bh | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv4/ip_fragment.c ip_frag_queue() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fragments_tail | 1-u64max |
| PARAM_VALUE | 1 | refs | 4849202836454916096 |
| PARAM_VALUE | 1 | *refs | 0 |
| DATA_SOURCE | 1 | refs | $2 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| LOCK2 | &qp->q.lock | ||
| LOCK2 | rcu_read | ||
| HALF_LOCKED2 | bh | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv4/ip_fragment.c ip_frag_reasm() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->flags | 3 |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fragments_tail | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->last_run_head | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->rb_fragments.rb_node | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->tstamp_type | 0-3 |
| PARAM_VALUE | 1 | refs | 4849202836454916096 |
| PARAM_VALUE | 1 | *refs | 0 |
| DATA_SOURCE | 1 | refs | $4 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| HOST_DATA | 0 | fq->stamp | 500000002-4294967299794967295[c] |
| NO_OVERFLOW_SIMPLE | 0 | fq->meat | |
| LOCK2 | &qp->q.lock | ||
| LOCK2 | rcu_read | ||
| HALF_LOCKED2 | bh | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv6/netfilter/nf_conntrack_reasm.c ip6frag_expire_frag_queue() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 1 | refs | 46005664973365248 |
| PARAM_VALUE | 1 | *refs | 1 |
| PREEMPT_ADD | <- disables preempt | ||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| LOCK2 | &fq->q.lock | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv6/netfilter/nf_conntrack_reasm.c nf_ct_frag6_queue() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 1 | refs | 7930248937378709504 |
| PARAM_VALUE | 1 | *refs | 0 |
| DATA_SOURCE | 1 | refs | $4 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| LOCK2 | &fq->q.lock | ||
| LOCK2 | bh | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv6/netfilter/nf_conntrack_reasm.c nf_ct_frag6_queue() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fragments_tail | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->len | 0-s32max |
| PARAM_VALUE | 1 | refs | 7930248937378709504 |
| PARAM_VALUE | 1 | *refs | 0 |
| DATA_SOURCE | 1 | refs | $4 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| USER_DATA | 0 | fq->len | 0-u16max[c] |
| LOCK2 | &fq->q.lock | ||
| LOCK2 | bh | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv6/netfilter/nf_conntrack_reasm.c nf_ct_frag6_reasm() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->flags | 3 |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fragments_tail | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->last_run_head | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->len | 0-s32max |
| PARAM_VALUE | 0 | fq->meat | 0-s32max |
| PARAM_VALUE | 0 | fq->rb_fragments.rb_node | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->tstamp_type | 0-3 |
| PARAM_VALUE | 1 | refs | 7930248937378709504 |
| PARAM_VALUE | 1 | *refs | 0 |
| DATA_SOURCE | 1 | refs | $4 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| HOST_DATA | 0 | fq->stamp | 500000002-4294967299794967295[c] |
| USER_DATA | 0 | fq->max_size | 1-u16max[c] |
| NO_OVERFLOW_SIMPLE | 0 | fq->meat | |
| LOCK2 | &fq->q.lock | ||
| LOCK2 | bh | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |
net/ipv6/netfilter/nf_conntrack_reasm.c nf_ct_frag6_reasm() -> inet_frag_kill()
| Type | Parameter | Key | Value |
|---|---|---|---|
| PARAM_VALUE | 0 | fq | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fqdir | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->fragments_tail | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->last_run_head | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->len | 0-s32max |
| PARAM_VALUE | 0 | fq->meat | 0-s32max |
| PARAM_VALUE | 0 | fq->rb_fragments.rb_node | 4096-ptr_max |
| PARAM_VALUE | 0 | fq->timer.entry.pprev | 0 |
| PARAM_VALUE | 0 | fq->timer.flags | 0-4194302 |
| PARAM_VALUE | 0 | fq->timer.function | 0 |
| PARAM_VALUE | 0 | fq->tstamp_type | 0-3 |
| PARAM_VALUE | 1 | refs | 7930248937378709504 |
| DATA_SOURCE | 1 | refs | $4 |
| PREEMPT_ADD | |||
| RX_PATH | |||
| TASK_NOT_RUNNING | |||
| NOCHECK_CALL | |||
| HOST_DATA | 0 | fq->stamp | 500000002-4294967299794967295[c] |
| USER_DATA | 0 | fq->max_size | 1-u16max[c] |
| NO_OVERFLOW_SIMPLE | 0 | fq->meat | |
| LOCK2 | &fq->q.lock | ||
| LOCK2 | bh | ||
| LOCK2 | rcu_read | ||
| TYPE_LOCK | (struct inet_frag_queue)->lock |