From: Christoph Hellwig <hch@xxxxxx> commit 86de848403abda05bf9c16dcdb6bef65a8d88c41 upstream. Accessing if_bytes without the ilock is racy. Remove the initial if_bytes == 0 check in xfs_reflink_end_cow_extent and let ext_iext_lookup_extent fail for this case after we've taken the ilock. Signed-off-by: Christoph Hellwig <hch@xxxxxx> Reviewed-by: "Darrick J. Wong" <djwong@xxxxxxxxxx> Signed-off-by: Chandan Babu R <chandanbabu@xxxxxxxxxx> Signed-off-by: Catherine Hoang <catherine.hoang@xxxxxxxxxx> Acked-by: Darrick J. Wong <djwong@xxxxxxxxxx> Signed-off-by: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx> --- fs/xfs/xfs_reflink.c | 6 ------ 1 file changed, 6 deletions(-) --- a/fs/xfs/xfs_reflink.c +++ b/fs/xfs/xfs_reflink.c @@ -716,12 +716,6 @@ xfs_reflink_end_cow_extent( int nmaps; int error; - /* No COW extents? That's easy! */ - if (ifp->if_bytes == 0) { - *offset_fsb = end_fsb; - return 0; - } - resblks = XFS_EXTENTADD_SPACE_RES(mp, XFS_DATA_FORK); error = xfs_trans_alloc(mp, &M_RES(mp)->tr_write, resblks, 0, XFS_TRANS_RESERVE, &tp); Patches currently in stable-queue which might be from catherine.hoang@xxxxxxxxxx are queue-6.6/xfs-enforce-one-namespace-per-attribute.patch queue-6.6/xfs-use-dontcache-for-grabbing-inodes-during-scrub.patch queue-6.6/xfs-revert-commit-44af6c7e59b12.patch queue-6.6/xfs-check-shortform-attr-entry-flags-specifically.patch queue-6.6/xfs-make-the-seq-argument-to-xfs_bmapi_convert_delalloc-optional.patch queue-6.6/xfs-check-opcode-and-iovec-count-match-in-xlog_recover_attri_commit_pass2.patch queue-6.6/xfs-allow-symlinks-with-short-remote-targets.patch queue-6.6/xfs-match-lock-mode-in-xfs_buffered_write_iomap_begin.patch queue-6.6/xfs-require-xfs_sb_feat_incompat_log_xattrs-for-attr-log-intent-item-recovery.patch queue-6.6/xfs-allow-unlinked-symlinks-and-dirs-with-zero-size.patch queue-6.6/xfs-restrict-when-we-try-to-align-cow-fork-delalloc-to-cowextsz-hints.patch queue-6.6/xfs-fix-xfs_bmap_add_extent_delay_real-for-partial-conversions.patch queue-6.6/xfs-fix-missing-check-for-invalid-attr-flags.patch queue-6.6/xfs-validate-recovered-name-buffers-when-recovering-xattr-items.patch queue-6.6/xfs-make-xfs_bmapi_convert_delalloc-to-allocate-the-target-offset.patch queue-6.6/xfs-convert-delayed-extents-to-unwritten-when-zeroing-post-eof-blocks.patch queue-6.6/xfs-fix-freeing-speculative-preallocations-for-preallocated-files.patch queue-6.6/xfs-fix-unlink-vs-cluster-buffer-instantiation-race.patch queue-6.6/xfs-make-sure-sb_fdblocks-is-non-negative.patch queue-6.6/xfs-remove-a-racy-if_bytes-check-in-xfs_reflink_end_cow_extent.patch queue-6.6/xfs-fix-error-returns-from-xfs_bmapi_write.patch