On 9/26/2018 3:20 PM, Greg KH wrote: > On Mon, Sep 24, 2018 at 10:38:52AM -0700, Steve Wise wrote: >> commit 308aa2b8f7b7db3332a7d41099fd37851fb793b2 upstream >> >> Once the qp has been flushed, it cannot be flushed again. The user qp >> flush logic wasn't enforcing it however. The bug can cause >> touch-after-free crashes like: > > I've applied the 4.14 and 4.18 patch. > > What about 4.9.y? huh. Guess I missed that. :( I'll send it out soon. Sorry! Steve.