1 // SPDX-License-Identifier: GPL-2.0
3 * Copyright (c) 2004-2005 Silicon Graphics, Inc.
6 #include <linux/compat.h>
7 #include <linux/ioctl.h>
8 #include <linux/mount.h>
9 #include <linux/slab.h>
10 #include <linux/uaccess.h>
11 #include <linux/fsmap.h>
14 #include "xfs_format.h"
15 #include "xfs_log_format.h"
16 #include "xfs_trans_resv.h"
17 #include "xfs_mount.h"
18 #include "xfs_inode.h"
19 #include "xfs_itable.h"
20 #include "xfs_error.h"
21 #include "xfs_fsops.h"
22 #include "xfs_alloc.h"
23 #include "xfs_rtalloc.h"
25 #include "xfs_ioctl.h"
26 #include "xfs_ioctl32.h"
27 #include "xfs_trace.h"
30 #define _NATIVE_IOC(cmd, type) \
31 _IOC(_IOC_DIR(cmd), _IOC_TYPE(cmd), _IOC_NR(cmd), sizeof(type))
33 #ifdef BROKEN_X86_ALIGNMENT
35 xfs_compat_flock64_copyin(
37 compat_xfs_flock64_t __user *arg32)
39 if (get_user(bf->l_type, &arg32->l_type) ||
40 get_user(bf->l_whence, &arg32->l_whence) ||
41 get_user(bf->l_start, &arg32->l_start) ||
42 get_user(bf->l_len, &arg32->l_len) ||
43 get_user(bf->l_sysid, &arg32->l_sysid) ||
44 get_user(bf->l_pid, &arg32->l_pid) ||
45 copy_from_user(bf->l_pad, &arg32->l_pad, 4*sizeof(u32)))
51 xfs_compat_ioc_fsgeometry_v1(
53 compat_xfs_fsop_geom_v1_t __user *arg32)
55 xfs_fsop_geom_t fsgeo;
58 error = xfs_fs_geometry(&mp->m_sb, &fsgeo, 3);
61 /* The 32-bit variant simply has some padding at the end */
62 if (copy_to_user(arg32, &fsgeo, sizeof(struct compat_xfs_fsop_geom_v1)))
68 xfs_compat_growfs_data_copyin(
69 struct xfs_growfs_data *in,
70 compat_xfs_growfs_data_t __user *arg32)
72 if (get_user(in->newblocks, &arg32->newblocks) ||
73 get_user(in->imaxpct, &arg32->imaxpct))
79 xfs_compat_growfs_rt_copyin(
80 struct xfs_growfs_rt *in,
81 compat_xfs_growfs_rt_t __user *arg32)
83 if (get_user(in->newblocks, &arg32->newblocks) ||
84 get_user(in->extsize, &arg32->extsize))
90 xfs_inumbers_fmt_compat(
92 const struct xfs_inogrp *buffer,
96 compat_xfs_inogrp_t __user *p32 = ubuffer;
99 for (i = 0; i < count; i++) {
100 if (put_user(buffer[i].xi_startino, &p32[i].xi_startino) ||
101 put_user(buffer[i].xi_alloccount, &p32[i].xi_alloccount) ||
102 put_user(buffer[i].xi_allocmask, &p32[i].xi_allocmask))
105 *written = count * sizeof(*p32);
110 #define xfs_inumbers_fmt_compat xfs_inumbers_fmt
111 #endif /* BROKEN_X86_ALIGNMENT */
114 xfs_ioctl32_bstime_copyin(
115 xfs_bstime_t *bstime,
116 compat_xfs_bstime_t __user *bstime32)
118 compat_time_t sec32; /* tv_sec differs on 64 vs. 32 */
120 if (get_user(sec32, &bstime32->tv_sec) ||
121 get_user(bstime->tv_nsec, &bstime32->tv_nsec))
123 bstime->tv_sec = sec32;
127 /* xfs_bstat_t has differing alignment on intel, & bstime_t sizes everywhere */
129 xfs_ioctl32_bstat_copyin(
131 compat_xfs_bstat_t __user *bstat32)
133 if (get_user(bstat->bs_ino, &bstat32->bs_ino) ||
134 get_user(bstat->bs_mode, &bstat32->bs_mode) ||
135 get_user(bstat->bs_nlink, &bstat32->bs_nlink) ||
136 get_user(bstat->bs_uid, &bstat32->bs_uid) ||
137 get_user(bstat->bs_gid, &bstat32->bs_gid) ||
138 get_user(bstat->bs_rdev, &bstat32->bs_rdev) ||
139 get_user(bstat->bs_blksize, &bstat32->bs_blksize) ||
140 get_user(bstat->bs_size, &bstat32->bs_size) ||
141 xfs_ioctl32_bstime_copyin(&bstat->bs_atime, &bstat32->bs_atime) ||
142 xfs_ioctl32_bstime_copyin(&bstat->bs_mtime, &bstat32->bs_mtime) ||
143 xfs_ioctl32_bstime_copyin(&bstat->bs_ctime, &bstat32->bs_ctime) ||
144 get_user(bstat->bs_blocks, &bstat32->bs_size) ||
145 get_user(bstat->bs_xflags, &bstat32->bs_size) ||
146 get_user(bstat->bs_extsize, &bstat32->bs_extsize) ||
147 get_user(bstat->bs_extents, &bstat32->bs_extents) ||
148 get_user(bstat->bs_gen, &bstat32->bs_gen) ||
149 get_user(bstat->bs_projid_lo, &bstat32->bs_projid_lo) ||
150 get_user(bstat->bs_projid_hi, &bstat32->bs_projid_hi) ||
151 get_user(bstat->bs_forkoff, &bstat32->bs_forkoff) ||
152 get_user(bstat->bs_dmevmask, &bstat32->bs_dmevmask) ||
153 get_user(bstat->bs_dmstate, &bstat32->bs_dmstate) ||
154 get_user(bstat->bs_aextents, &bstat32->bs_aextents))
159 /* XFS_IOC_FSBULKSTAT and friends */
162 xfs_bstime_store_compat(
163 compat_xfs_bstime_t __user *p32,
164 const xfs_bstime_t *p)
169 if (put_user(sec32, &p32->tv_sec) ||
170 put_user(p->tv_nsec, &p32->tv_nsec))
175 /* Return 0 on success or positive error (to xfs_bulkstat()) */
177 xfs_bulkstat_one_fmt_compat(
178 void __user *ubuffer,
181 const xfs_bstat_t *buffer)
183 compat_xfs_bstat_t __user *p32 = ubuffer;
185 if (ubsize < sizeof(*p32))
188 if (put_user(buffer->bs_ino, &p32->bs_ino) ||
189 put_user(buffer->bs_mode, &p32->bs_mode) ||
190 put_user(buffer->bs_nlink, &p32->bs_nlink) ||
191 put_user(buffer->bs_uid, &p32->bs_uid) ||
192 put_user(buffer->bs_gid, &p32->bs_gid) ||
193 put_user(buffer->bs_rdev, &p32->bs_rdev) ||
194 put_user(buffer->bs_blksize, &p32->bs_blksize) ||
195 put_user(buffer->bs_size, &p32->bs_size) ||
196 xfs_bstime_store_compat(&p32->bs_atime, &buffer->bs_atime) ||
197 xfs_bstime_store_compat(&p32->bs_mtime, &buffer->bs_mtime) ||
198 xfs_bstime_store_compat(&p32->bs_ctime, &buffer->bs_ctime) ||
199 put_user(buffer->bs_blocks, &p32->bs_blocks) ||
200 put_user(buffer->bs_xflags, &p32->bs_xflags) ||
201 put_user(buffer->bs_extsize, &p32->bs_extsize) ||
202 put_user(buffer->bs_extents, &p32->bs_extents) ||
203 put_user(buffer->bs_gen, &p32->bs_gen) ||
204 put_user(buffer->bs_projid, &p32->bs_projid) ||
205 put_user(buffer->bs_projid_hi, &p32->bs_projid_hi) ||
206 put_user(buffer->bs_forkoff, &p32->bs_forkoff) ||
207 put_user(buffer->bs_dmevmask, &p32->bs_dmevmask) ||
208 put_user(buffer->bs_dmstate, &p32->bs_dmstate) ||
209 put_user(buffer->bs_aextents, &p32->bs_aextents))
212 *ubused = sizeof(*p32);
217 xfs_bulkstat_one_compat(
218 xfs_mount_t *mp, /* mount point for filesystem */
219 xfs_ino_t ino, /* inode number to get data for */
220 void __user *buffer, /* buffer to place output in */
221 int ubsize, /* size of buffer */
222 int *ubused, /* bytes used by me */
223 int *stat) /* BULKSTAT_RV_... */
225 return xfs_bulkstat_one_int(mp, ino, buffer, ubsize,
226 xfs_bulkstat_one_fmt_compat,
230 /* copied from xfs_ioctl.c */
232 xfs_compat_ioc_bulkstat(
235 compat_xfs_fsop_bulkreq_t __user *p32)
238 xfs_fsop_bulkreq_t bulkreq;
239 int count; /* # of records returned */
240 xfs_ino_t inlast; /* last inode number */
245 * Output structure handling functions. Depending on the command,
246 * either the xfs_bstat and xfs_inogrp structures are written out
247 * to userpace memory via bulkreq.ubuffer. Normally the compat
248 * functions and structure size are the correct ones to use ...
250 inumbers_fmt_pf inumbers_func = xfs_inumbers_fmt_compat;
251 bulkstat_one_pf bs_one_func = xfs_bulkstat_one_compat;
252 size_t bs_one_size = sizeof(struct compat_xfs_bstat);
254 #ifdef CONFIG_X86_X32
255 if (in_x32_syscall()) {
257 * ... but on x32 the input xfs_fsop_bulkreq has pointers
258 * which must be handled in the "compat" (32-bit) way, while
259 * the xfs_bstat and xfs_inogrp structures follow native 64-
260 * bit layout convention. So adjust accordingly, otherwise
261 * the data written out in compat layout will not match what
262 * x32 userspace expects.
264 inumbers_func = xfs_inumbers_fmt;
265 bs_one_func = xfs_bulkstat_one;
266 bs_one_size = sizeof(struct xfs_bstat);
270 /* done = 1 if there are more stats to get and if bulkstat */
271 /* should be called again (unused here, but used in dmapi) */
273 if (!capable(CAP_SYS_ADMIN))
276 if (XFS_FORCED_SHUTDOWN(mp))
279 if (get_user(addr, &p32->lastip))
281 bulkreq.lastip = compat_ptr(addr);
282 if (get_user(bulkreq.icount, &p32->icount) ||
283 get_user(addr, &p32->ubuffer))
285 bulkreq.ubuffer = compat_ptr(addr);
286 if (get_user(addr, &p32->ocount))
288 bulkreq.ocount = compat_ptr(addr);
290 if (copy_from_user(&inlast, bulkreq.lastip, sizeof(__s64)))
293 if ((count = bulkreq.icount) <= 0)
296 if (bulkreq.ubuffer == NULL)
299 if (cmd == XFS_IOC_FSINUMBERS_32) {
300 error = xfs_inumbers(mp, &inlast, &count,
301 bulkreq.ubuffer, inumbers_func);
302 } else if (cmd == XFS_IOC_FSBULKSTAT_SINGLE_32) {
305 error = bs_one_func(mp, inlast, bulkreq.ubuffer,
306 bs_one_size, NULL, &res);
307 } else if (cmd == XFS_IOC_FSBULKSTAT_32) {
308 error = xfs_bulkstat(mp, &inlast, &count,
309 bs_one_func, bs_one_size,
310 bulkreq.ubuffer, &done);
316 if (bulkreq.ocount != NULL) {
317 if (copy_to_user(bulkreq.lastip, &inlast,
321 if (copy_to_user(bulkreq.ocount, &count, sizeof(count)))
329 xfs_compat_handlereq_copyin(
330 xfs_fsop_handlereq_t *hreq,
331 compat_xfs_fsop_handlereq_t __user *arg32)
333 compat_xfs_fsop_handlereq_t hreq32;
335 if (copy_from_user(&hreq32, arg32, sizeof(compat_xfs_fsop_handlereq_t)))
338 hreq->fd = hreq32.fd;
339 hreq->path = compat_ptr(hreq32.path);
340 hreq->oflags = hreq32.oflags;
341 hreq->ihandle = compat_ptr(hreq32.ihandle);
342 hreq->ihandlen = hreq32.ihandlen;
343 hreq->ohandle = compat_ptr(hreq32.ohandle);
344 hreq->ohandlen = compat_ptr(hreq32.ohandlen);
349 STATIC struct dentry *
350 xfs_compat_handlereq_to_dentry(
351 struct file *parfilp,
352 compat_xfs_fsop_handlereq_t *hreq)
354 return xfs_handle_to_dentry(parfilp,
355 compat_ptr(hreq->ihandle), hreq->ihandlen);
359 xfs_compat_attrlist_by_handle(
360 struct file *parfilp,
364 attrlist_cursor_kern_t *cursor;
365 compat_xfs_fsop_attrlist_handlereq_t __user *p = arg;
366 compat_xfs_fsop_attrlist_handlereq_t al_hreq;
367 struct dentry *dentry;
370 if (!capable(CAP_SYS_ADMIN))
372 if (copy_from_user(&al_hreq, arg,
373 sizeof(compat_xfs_fsop_attrlist_handlereq_t)))
375 if (al_hreq.buflen < sizeof(struct attrlist) ||
376 al_hreq.buflen > XFS_XATTR_LIST_MAX)
380 * Reject flags, only allow namespaces.
382 if (al_hreq.flags & ~(ATTR_ROOT | ATTR_SECURE))
385 dentry = xfs_compat_handlereq_to_dentry(parfilp, &al_hreq.hreq);
387 return PTR_ERR(dentry);
390 kbuf = kmem_zalloc_large(al_hreq.buflen, KM_SLEEP);
394 cursor = (attrlist_cursor_kern_t *)&al_hreq.pos;
395 error = xfs_attr_list(XFS_I(d_inode(dentry)), kbuf, al_hreq.buflen,
396 al_hreq.flags, cursor);
400 if (copy_to_user(&p->pos, cursor, sizeof(attrlist_cursor_kern_t))) {
405 if (copy_to_user(compat_ptr(al_hreq.buffer), kbuf, al_hreq.buflen))
416 xfs_compat_attrmulti_by_handle(
417 struct file *parfilp,
421 compat_xfs_attr_multiop_t *ops;
422 compat_xfs_fsop_attrmulti_handlereq_t am_hreq;
423 struct dentry *dentry;
424 unsigned int i, size;
425 unsigned char *attr_name;
427 if (!capable(CAP_SYS_ADMIN))
429 if (copy_from_user(&am_hreq, arg,
430 sizeof(compat_xfs_fsop_attrmulti_handlereq_t)))
434 if (am_hreq.opcount >= INT_MAX / sizeof(compat_xfs_attr_multiop_t))
437 dentry = xfs_compat_handlereq_to_dentry(parfilp, &am_hreq.hreq);
439 return PTR_ERR(dentry);
442 size = am_hreq.opcount * sizeof(compat_xfs_attr_multiop_t);
443 if (!size || size > 16 * PAGE_SIZE)
446 ops = memdup_user(compat_ptr(am_hreq.ops), size);
448 error = PTR_ERR(ops);
453 attr_name = kmalloc(MAXNAMELEN, GFP_KERNEL);
458 for (i = 0; i < am_hreq.opcount; i++) {
459 ops[i].am_error = strncpy_from_user((char *)attr_name,
460 compat_ptr(ops[i].am_attrname),
462 if (ops[i].am_error == 0 || ops[i].am_error == MAXNAMELEN)
464 if (ops[i].am_error < 0)
467 switch (ops[i].am_opcode) {
469 ops[i].am_error = xfs_attrmulti_attr_get(
470 d_inode(dentry), attr_name,
471 compat_ptr(ops[i].am_attrvalue),
472 &ops[i].am_length, ops[i].am_flags);
475 ops[i].am_error = mnt_want_write_file(parfilp);
478 ops[i].am_error = xfs_attrmulti_attr_set(
479 d_inode(dentry), attr_name,
480 compat_ptr(ops[i].am_attrvalue),
481 ops[i].am_length, ops[i].am_flags);
482 mnt_drop_write_file(parfilp);
485 ops[i].am_error = mnt_want_write_file(parfilp);
488 ops[i].am_error = xfs_attrmulti_attr_remove(
489 d_inode(dentry), attr_name,
491 mnt_drop_write_file(parfilp);
494 ops[i].am_error = -EINVAL;
498 if (copy_to_user(compat_ptr(am_hreq.ops), ops, size))
510 xfs_compat_fssetdm_by_handle(
511 struct file *parfilp,
515 struct fsdmidata fsd;
516 compat_xfs_fsop_setdm_handlereq_t dmhreq;
517 struct dentry *dentry;
519 if (!capable(CAP_MKNOD))
521 if (copy_from_user(&dmhreq, arg,
522 sizeof(compat_xfs_fsop_setdm_handlereq_t)))
525 dentry = xfs_compat_handlereq_to_dentry(parfilp, &dmhreq.hreq);
527 return PTR_ERR(dentry);
529 if (IS_IMMUTABLE(d_inode(dentry)) || IS_APPEND(d_inode(dentry))) {
534 if (copy_from_user(&fsd, compat_ptr(dmhreq.data), sizeof(fsd))) {
539 error = xfs_set_dmattrs(XFS_I(d_inode(dentry)), fsd.fsd_dmevmask,
548 xfs_file_compat_ioctl(
553 struct inode *inode = file_inode(filp);
554 struct xfs_inode *ip = XFS_I(inode);
555 struct xfs_mount *mp = ip->i_mount;
556 void __user *arg = (void __user *)p;
559 trace_xfs_file_compat_ioctl(ip);
562 /* No size or alignment issues on any arch */
563 case XFS_IOC_DIOINFO:
564 case XFS_IOC_FSGEOMETRY:
565 case XFS_IOC_FSGETXATTR:
566 case XFS_IOC_FSSETXATTR:
567 case XFS_IOC_FSGETXATTRA:
568 case XFS_IOC_FSSETDM:
569 case XFS_IOC_GETBMAP:
570 case XFS_IOC_GETBMAPA:
571 case XFS_IOC_GETBMAPX:
572 case XFS_IOC_FSCOUNTS:
573 case XFS_IOC_SET_RESBLKS:
574 case XFS_IOC_GET_RESBLKS:
575 case XFS_IOC_FSGROWFSLOG:
576 case XFS_IOC_GOINGDOWN:
577 case XFS_IOC_ERROR_INJECTION:
578 case XFS_IOC_ERROR_CLEARALL:
579 case FS_IOC_GETFSMAP:
580 case XFS_IOC_SCRUB_METADATA:
581 return xfs_file_ioctl(filp, cmd, p);
582 #if !defined(BROKEN_X86_ALIGNMENT) || defined(CONFIG_X86_X32)
584 * These are handled fine if no alignment issues. To support x32
585 * which uses native 64-bit alignment we must emit these cases in
586 * addition to the ia-32 compat set below.
588 case XFS_IOC_ALLOCSP:
591 case XFS_IOC_UNRESVSP:
592 case XFS_IOC_ALLOCSP64:
593 case XFS_IOC_FREESP64:
594 case XFS_IOC_RESVSP64:
595 case XFS_IOC_UNRESVSP64:
596 case XFS_IOC_FSGEOMETRY_V1:
597 case XFS_IOC_FSGROWFSDATA:
598 case XFS_IOC_FSGROWFSRT:
599 case XFS_IOC_ZERO_RANGE:
600 #ifdef CONFIG_X86_X32
602 * x32 special: this gets a different cmd number from the ia-32 compat
603 * case below; the associated data will match native 64-bit alignment.
605 case XFS_IOC_SWAPEXT:
607 return xfs_file_ioctl(filp, cmd, p);
609 #if defined(BROKEN_X86_ALIGNMENT)
610 case XFS_IOC_ALLOCSP_32:
611 case XFS_IOC_FREESP_32:
612 case XFS_IOC_ALLOCSP64_32:
613 case XFS_IOC_FREESP64_32:
614 case XFS_IOC_RESVSP_32:
615 case XFS_IOC_UNRESVSP_32:
616 case XFS_IOC_RESVSP64_32:
617 case XFS_IOC_UNRESVSP64_32:
618 case XFS_IOC_ZERO_RANGE_32: {
619 struct xfs_flock64 bf;
621 if (xfs_compat_flock64_copyin(&bf, arg))
623 cmd = _NATIVE_IOC(cmd, struct xfs_flock64);
624 return xfs_ioc_space(filp, cmd, &bf);
626 case XFS_IOC_FSGEOMETRY_V1_32:
627 return xfs_compat_ioc_fsgeometry_v1(mp, arg);
628 case XFS_IOC_FSGROWFSDATA_32: {
629 struct xfs_growfs_data in;
631 if (xfs_compat_growfs_data_copyin(&in, arg))
633 error = mnt_want_write_file(filp);
636 error = xfs_growfs_data(mp, &in);
637 mnt_drop_write_file(filp);
640 case XFS_IOC_FSGROWFSRT_32: {
641 struct xfs_growfs_rt in;
643 if (xfs_compat_growfs_rt_copyin(&in, arg))
645 error = mnt_want_write_file(filp);
648 error = xfs_growfs_rt(mp, &in);
649 mnt_drop_write_file(filp);
653 /* long changes size, but xfs only copiese out 32 bits */
654 case XFS_IOC_GETXFLAGS_32:
655 case XFS_IOC_SETXFLAGS_32:
656 case XFS_IOC_GETVERSION_32:
657 cmd = _NATIVE_IOC(cmd, long);
658 return xfs_file_ioctl(filp, cmd, p);
659 case XFS_IOC_SWAPEXT_32: {
660 struct xfs_swapext sxp;
661 struct compat_xfs_swapext __user *sxu = arg;
663 /* Bulk copy in up to the sx_stat field, then copy bstat */
664 if (copy_from_user(&sxp, sxu,
665 offsetof(struct xfs_swapext, sx_stat)) ||
666 xfs_ioctl32_bstat_copyin(&sxp.sx_stat, &sxu->sx_stat))
668 error = mnt_want_write_file(filp);
671 error = xfs_ioc_swapext(&sxp);
672 mnt_drop_write_file(filp);
675 case XFS_IOC_FSBULKSTAT_32:
676 case XFS_IOC_FSBULKSTAT_SINGLE_32:
677 case XFS_IOC_FSINUMBERS_32:
678 return xfs_compat_ioc_bulkstat(mp, cmd, arg);
679 case XFS_IOC_FD_TO_HANDLE_32:
680 case XFS_IOC_PATH_TO_HANDLE_32:
681 case XFS_IOC_PATH_TO_FSHANDLE_32: {
682 struct xfs_fsop_handlereq hreq;
684 if (xfs_compat_handlereq_copyin(&hreq, arg))
686 cmd = _NATIVE_IOC(cmd, struct xfs_fsop_handlereq);
687 return xfs_find_handle(cmd, &hreq);
689 case XFS_IOC_OPEN_BY_HANDLE_32: {
690 struct xfs_fsop_handlereq hreq;
692 if (xfs_compat_handlereq_copyin(&hreq, arg))
694 return xfs_open_by_handle(filp, &hreq);
696 case XFS_IOC_READLINK_BY_HANDLE_32: {
697 struct xfs_fsop_handlereq hreq;
699 if (xfs_compat_handlereq_copyin(&hreq, arg))
701 return xfs_readlink_by_handle(filp, &hreq);
703 case XFS_IOC_ATTRLIST_BY_HANDLE_32:
704 return xfs_compat_attrlist_by_handle(filp, arg);
705 case XFS_IOC_ATTRMULTI_BY_HANDLE_32:
706 return xfs_compat_attrmulti_by_handle(filp, arg);
707 case XFS_IOC_FSSETDM_BY_HANDLE_32:
708 return xfs_compat_fssetdm_by_handle(filp, arg);