linux-mm.kvack.org archive mirror
 help / color / mirror / Atom feed
From: Hugh Dickins <hughd@google.com>
To: Andrew Morton <akpm@linux-foundation.org>
Cc: Bob Liu <lliubbo@gmail.com>,
	linux-mm@kvack.org, viro@zeniv.linux.org.uk, hch@lst.de,
	npiggin@kernel.dk, tj@kernel.org, dhowells@redhat.com,
	lethal@linux-sh.org, magnus.damm@gmail.com
Subject: Re: [PATCH] ramfs: fix memleak on no-mmu arch
Date: Fri, 1 Apr 2011 20:35:41 -0700 (PDT)	[thread overview]
Message-ID: <alpine.LSU.2.00.1104011953350.3340@sister.anvils> (raw)
In-Reply-To: <20110328170220.fc61fb5c.akpm@linux-foundation.org>

On Mon, 28 Mar 2011, Andrew Morton wrote:
> On Mon, 28 Mar 2011 13:32:35 +0800
> Bob Liu <lliubbo@gmail.com> wrote:
> 
> > On no-mmu arch, there is a memleak duirng shmem test.
> > The cause of this memleak is ramfs_nommu_expand_for_mapping() added page
> > refcount to 2 which makes iput() can't free that pages.
> > ...
> > 
> > diff --git a/fs/ramfs/file-nommu.c b/fs/ramfs/file-nommu.c
> > index 9eead2c..fbb0b47 100644
> > --- a/fs/ramfs/file-nommu.c
> > +++ b/fs/ramfs/file-nommu.c
> > @@ -112,6 +112,7 @@ int ramfs_nommu_expand_for_mapping(struct inode *inode, size_t newsize)
> >  		SetPageDirty(page);
> >  
> >  		unlock_page(page);
> > +		put_page(page);
> >  	}
> >  
> >  	return 0;
> 
> Something is still wrong here.

I don't think so.

> 
> A live, in-use page should have a refcount of three.  One for the
> existence of the page, one for its presence on the page LRU and one for
> its existence in the pagecache radix tree.

No, we don't count 1 for the LRU: it always seems a little odd that
we don't, but that's how it is.  I did dive into the debugger to
check that is really still the case.  And it doesn't really matter
here, since of course we don't count -1 when taking off LRU either.

The pages here are not "in-use" as such: we're just priming the
page cache with them, so they will be found shortly afterwards
when they do come into use, when inserted into the address space.

What if memory pressure comes in and frees them before then?
Er, er, that gave me a nasty turn.  But there's a comment
just above the SetPageDirty visible in Bob's patch, saying
/* prevent the page from being discarded on memory pressure */

> 
> So allocation should do:
> 
> 	alloc_pages()

Yes, it did that (along with a split_page we can ignore here).

> 	add_to_page_cache()
> 	add_to_lru()

And those it did in the combined function add_to_page_cache_lru().

> 
> and deallocation should do
> 
> 	remove_from_lru()
> 	remove_from_page_cache()

Nowadays delete_from_page_cache(), which decrements the reference
acquired in add_to_page_cache().

> 	put_page()
> 
> If this protocol is followed correctly, there is no need to do a
> put_page() during the allocation/setup phase!

There is a get_page() when each page is mapped into the address
space, which then matches the final put_page() you show above.

> 
> I suspect that the problem in nommu really lies in the
> deallocation/teardown phase.

Hugh

--
To unsubscribe, send a message with 'unsubscribe linux-mm' in
the body to majordomo@kvack.org.  For more info on Linux MM,
see: http://www.linux-mm.org/ .
Fight unfair telecom internet charges in Canada: sign http://stopthemeter.ca/
Don't email: <a href=mailto:"dont@kvack.org"> email@kvack.org </a>

  parent reply	other threads:[~2011-04-02  3:35 UTC|newest]

Thread overview: 9+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2011-03-28  5:32 Bob Liu
2011-03-29  0:02 ` Andrew Morton
2011-03-29 11:06   ` Bob Liu
2011-04-01  8:25   ` Bob Liu
2011-04-02  3:39     ` Hugh Dickins
2011-04-02  3:35   ` Hugh Dickins [this message]
2011-04-01 15:19 ` David Howells
2011-04-02  2:52 ` Hugh Dickins
2011-04-13 16:45 David Howells

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=alpine.LSU.2.00.1104011953350.3340@sister.anvils \
    --to=hughd@google.com \
    --cc=akpm@linux-foundation.org \
    --cc=dhowells@redhat.com \
    --cc=hch@lst.de \
    --cc=lethal@linux-sh.org \
    --cc=linux-mm@kvack.org \
    --cc=lliubbo@gmail.com \
    --cc=magnus.damm@gmail.com \
    --cc=npiggin@kernel.dk \
    --cc=tj@kernel.org \
    --cc=viro@zeniv.linux.org.uk \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox