      drbd: silence underflow warning in read_in_block() · bf0d6e4a
      My static checker warns that "data_size" could be negative and underflow
      the limit check.  The code looks suspicious but I don't know if it is a
      real bug.
      Dan Carpenter <dan.carpenter@oracle.com>
      Philipp Reisner <philipp.reisner@linbit.com>
      Lars Ellenberg <lars.ellenberg@linbit.com>
      drbd: device->ldev is not guaranteed on an D_ATTACHING disk · 8fe39aac
      Some parts of the code assumed that get_ldev_if_state(device, D_ATTACHING)
      is sufficient to access the ldev member of the device object. That was
      wrong. ldev may not be there or might be freed at any time if the device
      has a disk state of D_ATTACHING.
        Documented that drbd_bm_read() is only called from drbd_adm_attach.
        drbd_bm_write() is only called when a reference is held, and it is
        documented that a caller has to hold a reference before calling
        Use get_ldev() instead of get_ldev_if_state(device, D_ATTACHING)
        No longer use get_ldev_if_state(device, D_ATTACHING). All callers
        hold a reference to ldev now.
        All callers where holding a reference of ldev anyways. Remove the
        misleading get_ldev_if_state(device, D_ATTACHING)
        Removed the get_ldev_if_state(device, D_ATTACHING). All callers
        now pass a struct drbd_backing_dev* when they have a proper
        reference, or a NULL pointer.
        Before this fix, the receiver could trigger a NULL pointer
        deref when in drbd_reconsider_max_bio_size()
        Used get_ldev_if_state(device, D_ATTACHING) with the wrong assumption.
        Remove it, and allow the caller to pass in a struct drbd_backing_dev*
        when the caller knows that accessing this bdev is safe.
      Philipp Reisner <philipp.reisner@linbit.com>
      Lars Ellenberg <lars.ellenberg@linbit.com>
