nfs3svc_remove_cbk(): if (openfd) { fd_unref (openfd); nfs3_fdcache_remove (nfs3, openfd); } openfd is being accessed after unref() if it is the last unref then it might segfault
(In reply to comment #0) > nfs3svc_remove_cbk(): > if (openfd) { > fd_unref (openfd); > nfs3_fdcache_remove (nfs3, openfd); > } > > openfd is being accessed after unref() if it is the last unref then it might > segfault This is not a bug. NFS has a fd cache which holds the last reference so it is ok for the fdcache code to access fd after it is unref'ed for a remove op.