2ebd481b31
Changes in 5.10.221 tracing/selftests: Fix kprobe event name test for .isra. functions null_blk: Print correct max open zones limit in null_init_zoned_dev() wifi: mac80211: mesh: Fix leak of mesh_preq_queue objects wifi: mac80211: Fix deadlock in ieee80211_sta_ps_deliver_wakeup() wifi: cfg80211: pmsr: use correct nla_get_uX functions wifi: iwlwifi: mvm: revert gen2 TX A-MPDU size to 64 wifi: iwlwifi: dbg_ini: move iwl_dbg_tlv_free outside of debugfs ifdef wifi: iwlwifi: mvm: check n_ssids before accessing the ssids wifi: iwlwifi: mvm: don't read past the mfuart notifcation wifi: mac80211: correctly parse Spatial Reuse Parameter Set element net/ncsi: add NCSI Intel OEM command to keep PHY up net/ncsi: Simplify Kconfig/dts control flow net/ncsi: Fix the multi thread manner of NCSI driver ipv6: sr: block BH in seg6_output_core() and seg6_input_core() net: sched: sch_multiq: fix possible OOB write in multiq_tune() vxlan: Fix regression when dropping packets due to invalid src addresses tcp: count CLOSE-WAIT sockets for TCP_MIB_CURRESTAB net/sched: taprio: always validate TCA_TAPRIO_ATTR_PRIOMAP ptp: Fix error message on failed pin verification af_unix: Annotate data-race of sk->sk_state in unix_inq_len(). af_unix: Annotate data-races around sk->sk_state in unix_write_space() and poll(). af_unix: Annotate data-races around sk->sk_state in sendmsg() and recvmsg(). af_unix: Annotate data-races around sk->sk_state in UNIX_DIAG. af_unix: Annotate data-race of net->unx.sysctl_max_dgram_qlen. af_unix: Use unix_recvq_full_lockless() in unix_stream_connect(). af_unix: Use skb_queue_len_lockless() in sk_diag_show_rqlen(). af_unix: Annotate data-race of sk->sk_shutdown in sk_diag_fill(). ipv6: fix possible race in __fib6_drop_pcpu_from() usb: gadget: f_fs: Fix race between aio_cancel() and AIO request complete drm/amd/display: Handle Y carry-over in VCP X.Y calculation serial: sc16is7xx: replace hardcoded divisor value with BIT() macro serial: sc16is7xx: fix bug in sc16is7xx_set_baud() when using prescaler mmc: davinci: Don't strip remove function when driver is builtin selftests/mm: compaction_test: fix incorrect write of zero to nr_hugepages selftests/mm: conform test to TAP format output selftests/mm: compaction_test: fix bogus test success on Aarch64 btrfs: fix leak of qgroup extent records after transaction abort nilfs2: Remove check for PageError nilfs2: return the mapped address from nilfs_get_page() nilfs2: fix nilfs_empty_dir() misjudgment and long loop on I/O errors USB: class: cdc-wdm: Fix CPU lockup caused by excessive log messages mei: me: release irq in mei_me_pci_resume error path jfs: xattr: fix buffer overflow for invalid xattr xhci: Set correct transferred length for cancelled bulk transfers xhci: Apply reset resume quirk to Etron EJ188 xHCI host xhci: Apply broken streams quirk to Etron EJ188 xHCI host scsi: mpt3sas: Avoid test/set_bit() operating in non-allocated memory powerpc/uaccess: Fix build errors seen with GCC 13/14 Input: try trimming too long modalias strings SUNRPC: return proper error from gss_wrap_req_priv gpio: tqmx86: fix typo in Kconfig label HID: core: remove unnecessary WARN_ON() in implement() gpio: tqmx86: store IRQ trigger type and unmask status separately iommu/amd: Introduce pci segment structure iommu/amd: Fix sysfs leak in iommu init iommu: Return right value in iommu_sva_bind_device() HID: logitech-dj: Fix memory leak in logi_dj_recv_switch_to_dj_mode() drm/vmwgfx: 3D disabled should not effect STDU memory limits net: sfp: Always call `sfp_sm_mod_remove()` on remove net: hns3: add cond_resched() to hns3 ring buffer init process liquidio: Adjust a NULL pointer handling path in lio_vf_rep_copy_packet drm/komeda: check for error-valued pointer drm/bridge/panel: Fix runtime warning on panel bridge release tcp: fix race in tcp_v6_syn_recv_sock() net/mlx5e: Fix features validation check for tunneled UDP (non-VXLAN) packets Bluetooth: L2CAP: Fix rejecting L2CAP_CONN_PARAM_UPDATE_REQ netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type net: stmmac: replace priv->speed with the portTransmitRate from the tc-cbs parameters net/ipv6: Fix the RT cache flush via sysctl using a previous delay ionic: fix use after netif_napi_del() iio: adc: ad9467: fix scan type sign iio: dac: ad5592r: fix temperature channel scaling value iio: imu: inv_icm42600: delete unneeded update watermark call drivers: core: synchronize really_probe() and dev_uevent() drm/exynos/vidi: fix memory leak in .get_modes() drm/exynos: hdmi: report safe 640x480 mode as a fallback when no EDID found vmci: prevent speculation leaks by sanitizing event in event_deliver() fs/proc: fix softlockup in __read_vmcore ocfs2: use coarse time for new created files ocfs2: fix races between hole punching and AIO+DIO PCI: rockchip-ep: Remove wrong mask on subsys_vendor_id dmaengine: axi-dmac: fix possible race in remove() remoteproc: k3-r5: Do not allow core1 to power up before core0 via sysfs intel_th: pci: Add Granite Rapids support intel_th: pci: Add Granite Rapids SOC support intel_th: pci: Add Sapphire Rapids SOC support intel_th: pci: Add Meteor Lake-S support intel_th: pci: Add Lunar Lake support nilfs2: fix potential kernel bug due to lack of writeback flag waiting tick/nohz_full: Don't abuse smp_call_function_single() in tick_setup_device() serial: 8250_pxa: Configure tx_loadsz to match FIFO IRQ level hugetlb_encode.h: fix undefined behaviour (34 << 26) mptcp: ensure snd_una is properly initialized on connect mptcp: pm: inc RmAddr MIB counter once per RM_ADDR ID mptcp: pm: update add_addr counters after connect remoteproc: k3-r5: Jump to error handling labels in start/stop errors greybus: Fix use-after-free bug in gb_interface_release due to race condition. usb-storage: alauda: Check whether the media is initialized i2c: at91: Fix the functionality flags of the slave-only interface i2c: designware: Fix the functionality flags of the slave-only interface zap_pid_ns_processes: clear TIF_NOTIFY_SIGNAL along with TIF_SIGPENDING padata: Disable BH when taking works lock on MT path rcutorture: Fix rcu_torture_one_read() pipe_count overflow comment rcutorture: Fix invalid context warning when enable srcu barrier testing block/ioctl: prefer different overflow check selftests/bpf: Prevent client connect before server bind in test_tc_tunnel.sh selftests/bpf: Fix flaky test btf_map_in_map/lookup_update batman-adv: bypass empty buckets in batadv_purge_orig_ref() wifi: ath9k: work around memset overflow warning af_packet: avoid a false positive warning in packet_setsockopt() drop_monitor: replace spin_lock by raw_spin_lock scsi: qedi: Fix crash while reading debugfs attribute kselftest: arm64: Add a null pointer check netpoll: Fix race condition in netpoll_owner_active HID: Add quirk for Logitech Casa touchpad ACPI: video: Add backlight=native quirk for Lenovo Slim 7 16ARH7 Bluetooth: ath3k: Fix multiple issues reported by checkpatch.pl drm/amd/display: Exit idle optimizations before HDCP execution ASoC: Intel: sof_sdw: add JD2 quirk for HP Omen 14 drm/lima: add mask irq callback to gp and pp drm/lima: mask irqs in timeout path before hard reset powerpc/pseries: Enforce hcall result buffer validity and size powerpc/io: Avoid clang null pointer arithmetic warnings power: supply: cros_usbpd: provide ID table for avoiding fallback match iommu/arm-smmu-v3: Free MSIs in case of ENOMEM f2fs: remove clear SB_INLINECRYPT flag in default_options usb: misc: uss720: check for incompatible versions of the Belkin F5U002 udf: udftime: prevent overflow in udf_disk_stamp_to_time() PCI/PM: Avoid D3cold for HP Pavilion 17 PC/1972 PCIe Ports MIPS: Octeon: Add PCIe link status check serial: exar: adding missing CTI and Exar PCI ids MIPS: Routerboard 532: Fix vendor retry check code mips: bmips: BCM6358: make sure CBR is correctly set tracing: Build event generation tests only as modules cipso: fix total option length computation netrom: Fix a memory leak in nr_heartbeat_expiry() ipv6: prevent possible NULL deref in fib6_nh_init() ipv6: prevent possible NULL dereference in rt6_probe() xfrm6: check ip6_dst_idev() return value in xfrm6_get_saddr() netns: Make get_net_ns() handle zero refcount net qca_spi: Make interrupt remembering atomic net/sched: act_api: rely on rcu in tcf_idr_check_alloc net/sched: act_api: fix possible infinite loop in tcf_idr_check_alloc() tipc: force a dst refcount before doing decryption net/sched: act_ct: set 'net' pointer when creating new nf_flow_table sched: act_ct: add netns into the key of tcf_ct_flow_table net: stmmac: No need to calculate speed divider when offload is disabled virtio_net: checksum offloading handling fix netfilter: ipset: Fix suspicious rcu_dereference_protected() net: usb: rtl8150 fix unintiatilzed variables in rtl8150_get_link_ksettings regulator: core: Fix modpost error "regulator_get_regmap" undefined dmaengine: ioat: switch from 'pci_' to 'dma_' API dmaengine: ioat: Drop redundant pci_enable_pcie_error_reporting() dmaengine: ioatdma: Fix leaking on version mismatch dmaengine: ioat: use PCI core macros for PCIe Capability dmaengine: ioatdma: Fix error path in ioat3_dma_probe() dmaengine: ioatdma: Fix kmemleak in ioat_pci_probe() dmaengine: ioatdma: Fix missing kmem_cache_destroy() ACPICA: Revert "ACPICA: avoid Info: mapping multiple BARs. Your kernel is fine." RDMA/mlx5: Add check for srq max_sge attribute ALSA: hda/realtek: Limit mic boost on N14AP7 drm/radeon: fix UBSAN warning in kv_dpm.c gcov: add support for GCC 14 kcov: don't lose track of remote references during softirqs i2c: ocores: set IACK bit after core is enabled dt-bindings: i2c: google,cros-ec-i2c-tunnel: correct path to i2c-controller schema drm/amd/display: revert Exit idle optimizations before HDCP execution ARM: dts: samsung: smdkv310: fix keypad no-autorepeat ARM: dts: samsung: exynos4412-origen: fix keypad no-autorepeat ARM: dts: samsung: smdk4412: fix keypad no-autorepeat rtlwifi: rtl8192de: Style clean-ups wifi: rtlwifi: rtl8192de: Fix 5 GHz TX power pmdomain: ti-sci: Fix duplicate PD referrals knfsd: LOOKUP can return an illegal error value spmi: hisi-spmi-controller: Do not override device identifier bcache: fix variable length array abuse in btree_iter tracing: Add MODULE_DESCRIPTION() to preemptirq_delay_test x86/cpu/vfm: Add new macros to work with (vendor/family/model) values x86/cpu: Fix x86_match_cpu() to match just X86_VENDOR_INTEL r8169: remove unneeded memory barrier in rtl_tx r8169: improve rtl_tx r8169: improve rtl8169_start_xmit r8169: remove nr_frags argument from rtl_tx_slots_avail r8169: remove not needed check in rtl8169_start_xmit r8169: Fix possible ring buffer corruption on fragmented Tx packets. Revert "kheaders: substituting --sort in archive creation" kheaders: explicitly define file modes for archived headers perf/core: Fix missing wakeup when waiting for context reference PCI: Add PCI_ERROR_RESPONSE and related definitions x86/amd_nb: Check for invalid SMN reads cifs: missed ref-counting smb session in find smb: client: fix deadlock in smb2_find_smb_tcon() ACPI: Add quirks for AMD Renoir/Lucienne CPUs to force the D3 hint ACPI: x86: Add a quirk for Dell Inspiron 14 2-in-1 for StorageD3Enable ACPI: x86: Add another system to quirk list for forcing StorageD3Enable ACPI: x86: utils: Add Cezanne to the list for forcing StorageD3Enable ACPI: x86: utils: Add Picasso to the list for forcing StorageD3Enable ACPI: x86: Force StorageD3Enable on more products Input: ili210x - fix ili251x_read_touch_data() return value pinctrl: fix deadlock in create_pinctrl() when handling -EPROBE_DEFER pinctrl: rockchip: fix pinmux bits for RK3328 GPIO2-B pins pinctrl: rockchip: fix pinmux bits for RK3328 GPIO3-B pins pinctrl/rockchip: separate struct rockchip_pin_bank to a head file pinctrl: rockchip: use dedicated pinctrl type for RK3328 pinctrl: rockchip: fix pinmux reset in rockchip_pmx_set drm/amdgpu: fix UBSAN warning in kv_dpm.c netfilter: nf_tables: validate family when identifying table via handle SUNRPC: Fix null pointer dereference in svc_rqst_free() SUNRPC: Fix a NULL pointer deref in trace_svc_stats_latency() SUNRPC: Fix svcxdr_init_decode's end-of-buffer calculation SUNRPC: Fix svcxdr_init_encode's buflen calculation nfsd: hold a lighter-weight client reference over CB_RECALL_ANY ASoC: fsl-asoc-card: set priv->pdev before using it net: dsa: microchip: fix initial port flush problem net: phy: micrel: add Microchip KSZ 9477 to the device table xdp: Move the rxq_info.mem clearing to unreg_mem_model() xdp: Allow registering memory model without rxq reference xdp: Remove WARN() from __xdp_reg_mem_model() sparc: fix old compat_sys_select() sparc: fix compat recv/recvfrom syscalls parisc: use correct compat recv/recvfrom syscalls netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers drm/panel: ilitek-ili9881c: Fix warning with GPIO controllers that sleep mtd: partitions: redboot: Added conversion of operands to a larger type bpf: Add a check for struct bpf_fib_lookup size net/iucv: Avoid explicit cpumask var allocation on stack net/dpaa2: Avoid explicit cpumask var allocation on stack ALSA: emux: improve patch ioctl data validation media: dvbdev: Initialize sbuf soc: ti: wkup_m3_ipc: Send NULL dummy message instead of pointer message drm/radeon/radeon_display: Decrease the size of allocated memory nvme: fixup comment for nvme RDMA Provider Type drm/panel: simple: Add missing display timing flags for KOE TX26D202VM0BWA gpio: davinci: Validate the obtained number of IRQs gpiolib: cdev: Disallow reconfiguration without direction (uAPI v1) x86: stop playing stack games in profile_pc() ocfs2: fix DIO failure due to insufficient transaction credits mmc: sdhci-pci: Convert PCIBIOS_* return codes to errnos mmc: sdhci: Do not invert write-protect twice mmc: sdhci: Do not lock spinlock around mmc_gpio_get_ro() counter: ti-eqep: enable clock at probe iio: adc: ad7266: Fix variable checking bug iio: chemical: bme680: Fix pressure value output iio: chemical: bme680: Fix calibration data variable iio: chemical: bme680: Fix overflows in compensate() functions iio: chemical: bme680: Fix sensor data read operation net: usb: ax88179_178a: improve link status logs usb: gadget: printer: SS+ support usb: gadget: printer: fix races against disable usb: musb: da8xx: fix a resource leak in probe() usb: atm: cxacru: fix endpoint checking in cxacru_bind() serial: 8250_omap: Implementation of Errata i2310 tty: mcf: MCF54418 has 10 UARTS net: can: j1939: Initialize unused data in j1939_send_one() net: can: j1939: recover socket queue on CAN bus error during BAM transmission net: can: j1939: enhanced error handling for tightly received RTS messages in xtp_rx_rts_session_new kbuild: Install dtb files as 0644 in Makefile.dtbinst csky, hexagon: fix broken sys_sync_file_range hexagon: fix fadvise64_64 calling conventions drm/nouveau/dispnv04: fix null pointer dereference in nv17_tv_get_ld_modes drm/i915/gt: Fix potential UAF by revoke of fence registers drm/nouveau/dispnv04: fix null pointer dereference in nv17_tv_get_hd_modes batman-adv: Don't accept TT entries for out-of-spec VIDs ata: ahci: Clean up sysfs file on error ata: libata-core: Fix double free on error ftruncate: pass a signed offset syscalls: fix compat_sys_io_pgetevents_time64 usage mtd: spinand: macronix: Add support for serial NAND flash pwm: stm32: Refuse too small period requests nfs: Leave pages in the pagecache if readpage failed ipv6: annotate some data-races around sk->sk_prot ipv6: Fix data races around sk->sk_prot. tcp: Fix data races around icsk->icsk_af_ops. drivers: fix typo in firmware/efi/memmap.c efi: Correct comment on efi_memmap_alloc efi: memmap: Move manipulation routines into x86 arch tree efi: xen: Set EFI_PARAVIRT for Xen dom0 boot on all architectures efi/x86: Free EFI memory map only when installing a new one. KVM: arm64: vgic-v4: Make the doorbell request robust w.r.t preemption ARM: dts: rockchip: rk3066a: add #sound-dai-cells to hdmi node arm64: dts: rockchip: Add sound-dai-cells for RK3368 xdp: xdp_mem_allocator can be NULL in trace_mem_connect(). serial: 8250_omap: Fix Errata i2310 with RX FIFO level check tracing/net_sched: NULL pointer dereference in perf_trace_qdisc_reset() Linux 5.10.221 Change-Id: Icac1c62fcbda5102be7ea031121f28d6fee36875 Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
711 lines
17 KiB
C
711 lines
17 KiB
C
// SPDX-License-Identifier: GPL-2.0
|
|
#include <linux/capability.h>
|
|
#include <linux/compat.h>
|
|
#include <linux/blkdev.h>
|
|
#include <linux/export.h>
|
|
#include <linux/gfp.h>
|
|
#include <linux/blkpg.h>
|
|
#include <linux/hdreg.h>
|
|
#include <linux/backing-dev.h>
|
|
#include <linux/fs.h>
|
|
#include <linux/blktrace_api.h>
|
|
#include <linux/pr.h>
|
|
#include <linux/uaccess.h>
|
|
#include "blk.h"
|
|
|
|
static int blkpg_do_ioctl(struct block_device *bdev,
|
|
struct blkpg_partition __user *upart, int op)
|
|
{
|
|
struct blkpg_partition p;
|
|
sector_t start, length;
|
|
|
|
if (!capable(CAP_SYS_ADMIN))
|
|
return -EACCES;
|
|
if (copy_from_user(&p, upart, sizeof(struct blkpg_partition)))
|
|
return -EFAULT;
|
|
if (bdev_is_partition(bdev))
|
|
return -EINVAL;
|
|
|
|
if (p.pno <= 0)
|
|
return -EINVAL;
|
|
|
|
if (op == BLKPG_DEL_PARTITION)
|
|
return bdev_del_partition(bdev, p.pno);
|
|
|
|
if (p.start < 0 || p.length <= 0 || LLONG_MAX - p.length < p.start)
|
|
return -EINVAL;
|
|
/* Check that the partition is aligned to the block size */
|
|
if (!IS_ALIGNED(p.start | p.length, bdev_logical_block_size(bdev)))
|
|
return -EINVAL;
|
|
|
|
start = p.start >> SECTOR_SHIFT;
|
|
length = p.length >> SECTOR_SHIFT;
|
|
|
|
/* check for fit in a hd_struct */
|
|
if (sizeof(sector_t) < sizeof(long long)) {
|
|
long pstart = start, plength = length;
|
|
|
|
if (pstart != start || plength != length || pstart < 0 ||
|
|
plength < 0 || p.pno > 65535)
|
|
return -EINVAL;
|
|
}
|
|
|
|
switch (op) {
|
|
case BLKPG_ADD_PARTITION:
|
|
return bdev_add_partition(bdev, p.pno, start, length);
|
|
case BLKPG_RESIZE_PARTITION:
|
|
return bdev_resize_partition(bdev, p.pno, start, length);
|
|
default:
|
|
return -EINVAL;
|
|
}
|
|
}
|
|
|
|
static int blkpg_ioctl(struct block_device *bdev,
|
|
struct blkpg_ioctl_arg __user *arg)
|
|
{
|
|
struct blkpg_partition __user *udata;
|
|
int op;
|
|
|
|
if (get_user(op, &arg->op) || get_user(udata, &arg->data))
|
|
return -EFAULT;
|
|
|
|
return blkpg_do_ioctl(bdev, udata, op);
|
|
}
|
|
|
|
#ifdef CONFIG_COMPAT
|
|
struct compat_blkpg_ioctl_arg {
|
|
compat_int_t op;
|
|
compat_int_t flags;
|
|
compat_int_t datalen;
|
|
compat_caddr_t data;
|
|
};
|
|
|
|
static int compat_blkpg_ioctl(struct block_device *bdev,
|
|
struct compat_blkpg_ioctl_arg __user *arg)
|
|
{
|
|
compat_caddr_t udata;
|
|
int op;
|
|
|
|
if (get_user(op, &arg->op) || get_user(udata, &arg->data))
|
|
return -EFAULT;
|
|
|
|
return blkpg_do_ioctl(bdev, compat_ptr(udata), op);
|
|
}
|
|
#endif
|
|
|
|
static int blkdev_reread_part(struct block_device *bdev, fmode_t mode)
|
|
{
|
|
struct block_device *tmp;
|
|
|
|
if (!disk_part_scan_enabled(bdev->bd_disk) || bdev_is_partition(bdev))
|
|
return -EINVAL;
|
|
if (!capable(CAP_SYS_ADMIN))
|
|
return -EACCES;
|
|
if (bdev->bd_part_count)
|
|
return -EBUSY;
|
|
|
|
/*
|
|
* Reopen the device to revalidate the driver state and force a
|
|
* partition rescan.
|
|
*/
|
|
mode &= ~FMODE_EXCL;
|
|
set_bit(GD_NEED_PART_SCAN, &bdev->bd_disk->state);
|
|
|
|
tmp = blkdev_get_by_dev(bdev->bd_dev, mode, NULL);
|
|
if (IS_ERR(tmp))
|
|
return PTR_ERR(tmp);
|
|
blkdev_put(tmp, mode);
|
|
return 0;
|
|
}
|
|
|
|
static int blk_ioctl_discard(struct block_device *bdev, fmode_t mode,
|
|
unsigned long arg, unsigned long flags)
|
|
{
|
|
uint64_t range[2];
|
|
uint64_t start, len;
|
|
struct request_queue *q = bdev_get_queue(bdev);
|
|
int err;
|
|
|
|
if (!(mode & FMODE_WRITE))
|
|
return -EBADF;
|
|
|
|
if (!blk_queue_discard(q))
|
|
return -EOPNOTSUPP;
|
|
|
|
if (copy_from_user(range, (void __user *)arg, sizeof(range)))
|
|
return -EFAULT;
|
|
|
|
start = range[0];
|
|
len = range[1];
|
|
|
|
if (start & 511)
|
|
return -EINVAL;
|
|
if (len & 511)
|
|
return -EINVAL;
|
|
|
|
if (start + len > i_size_read(bdev->bd_inode))
|
|
return -EINVAL;
|
|
|
|
err = truncate_bdev_range(bdev, mode, start, start + len - 1);
|
|
if (err)
|
|
return err;
|
|
|
|
return blkdev_issue_discard(bdev, start >> 9, len >> 9,
|
|
GFP_KERNEL, flags);
|
|
}
|
|
|
|
static int blk_ioctl_zeroout(struct block_device *bdev, fmode_t mode,
|
|
unsigned long arg)
|
|
{
|
|
uint64_t range[2];
|
|
uint64_t start, end, len;
|
|
int err;
|
|
|
|
if (!(mode & FMODE_WRITE))
|
|
return -EBADF;
|
|
|
|
if (copy_from_user(range, (void __user *)arg, sizeof(range)))
|
|
return -EFAULT;
|
|
|
|
start = range[0];
|
|
len = range[1];
|
|
end = start + len - 1;
|
|
|
|
if (start & 511)
|
|
return -EINVAL;
|
|
if (len & 511)
|
|
return -EINVAL;
|
|
if (end >= (uint64_t)i_size_read(bdev->bd_inode))
|
|
return -EINVAL;
|
|
if (end < start)
|
|
return -EINVAL;
|
|
|
|
/* Invalidate the page cache, including dirty pages */
|
|
err = truncate_bdev_range(bdev, mode, start, end);
|
|
if (err)
|
|
return err;
|
|
|
|
return blkdev_issue_zeroout(bdev, start >> 9, len >> 9, GFP_KERNEL,
|
|
BLKDEV_ZERO_NOUNMAP);
|
|
}
|
|
|
|
static int put_ushort(unsigned short __user *argp, unsigned short val)
|
|
{
|
|
return put_user(val, argp);
|
|
}
|
|
|
|
static int put_int(int __user *argp, int val)
|
|
{
|
|
return put_user(val, argp);
|
|
}
|
|
|
|
static int put_uint(unsigned int __user *argp, unsigned int val)
|
|
{
|
|
return put_user(val, argp);
|
|
}
|
|
|
|
static int put_long(long __user *argp, long val)
|
|
{
|
|
return put_user(val, argp);
|
|
}
|
|
|
|
static int put_ulong(unsigned long __user *argp, unsigned long val)
|
|
{
|
|
return put_user(val, argp);
|
|
}
|
|
|
|
static int put_u64(u64 __user *argp, u64 val)
|
|
{
|
|
return put_user(val, argp);
|
|
}
|
|
|
|
#ifdef CONFIG_COMPAT
|
|
static int compat_put_long(compat_long_t __user *argp, long val)
|
|
{
|
|
return put_user(val, argp);
|
|
}
|
|
|
|
static int compat_put_ulong(compat_ulong_t __user *argp, compat_ulong_t val)
|
|
{
|
|
return put_user(val, argp);
|
|
}
|
|
#endif
|
|
|
|
int __blkdev_driver_ioctl(struct block_device *bdev, fmode_t mode,
|
|
unsigned cmd, unsigned long arg)
|
|
{
|
|
struct gendisk *disk = bdev->bd_disk;
|
|
|
|
if (disk->fops->ioctl)
|
|
return disk->fops->ioctl(bdev, mode, cmd, arg);
|
|
|
|
return -ENOTTY;
|
|
}
|
|
/*
|
|
* For the record: _GPL here is only because somebody decided to slap it
|
|
* on the previous export. Sheer idiocy, since it wasn't copyrightable
|
|
* at all and could be open-coded without any exports by anybody who cares.
|
|
*/
|
|
EXPORT_SYMBOL_GPL(__blkdev_driver_ioctl);
|
|
|
|
#ifdef CONFIG_COMPAT
|
|
/*
|
|
* This is the equivalent of compat_ptr_ioctl(), to be used by block
|
|
* drivers that implement only commands that are completely compatible
|
|
* between 32-bit and 64-bit user space
|
|
*/
|
|
int blkdev_compat_ptr_ioctl(struct block_device *bdev, fmode_t mode,
|
|
unsigned cmd, unsigned long arg)
|
|
{
|
|
struct gendisk *disk = bdev->bd_disk;
|
|
|
|
if (disk->fops->ioctl)
|
|
return disk->fops->ioctl(bdev, mode, cmd,
|
|
(unsigned long)compat_ptr(arg));
|
|
|
|
return -ENOIOCTLCMD;
|
|
}
|
|
EXPORT_SYMBOL(blkdev_compat_ptr_ioctl);
|
|
#endif
|
|
|
|
static int blkdev_pr_register(struct block_device *bdev,
|
|
struct pr_registration __user *arg)
|
|
{
|
|
const struct pr_ops *ops = bdev->bd_disk->fops->pr_ops;
|
|
struct pr_registration reg;
|
|
|
|
if (!capable(CAP_SYS_ADMIN))
|
|
return -EPERM;
|
|
if (!ops || !ops->pr_register)
|
|
return -EOPNOTSUPP;
|
|
if (copy_from_user(®, arg, sizeof(reg)))
|
|
return -EFAULT;
|
|
|
|
if (reg.flags & ~PR_FL_IGNORE_KEY)
|
|
return -EOPNOTSUPP;
|
|
return ops->pr_register(bdev, reg.old_key, reg.new_key, reg.flags);
|
|
}
|
|
|
|
static int blkdev_pr_reserve(struct block_device *bdev,
|
|
struct pr_reservation __user *arg)
|
|
{
|
|
const struct pr_ops *ops = bdev->bd_disk->fops->pr_ops;
|
|
struct pr_reservation rsv;
|
|
|
|
if (!capable(CAP_SYS_ADMIN))
|
|
return -EPERM;
|
|
if (!ops || !ops->pr_reserve)
|
|
return -EOPNOTSUPP;
|
|
if (copy_from_user(&rsv, arg, sizeof(rsv)))
|
|
return -EFAULT;
|
|
|
|
if (rsv.flags & ~PR_FL_IGNORE_KEY)
|
|
return -EOPNOTSUPP;
|
|
return ops->pr_reserve(bdev, rsv.key, rsv.type, rsv.flags);
|
|
}
|
|
|
|
static int blkdev_pr_release(struct block_device *bdev,
|
|
struct pr_reservation __user *arg)
|
|
{
|
|
const struct pr_ops *ops = bdev->bd_disk->fops->pr_ops;
|
|
struct pr_reservation rsv;
|
|
|
|
if (!capable(CAP_SYS_ADMIN))
|
|
return -EPERM;
|
|
if (!ops || !ops->pr_release)
|
|
return -EOPNOTSUPP;
|
|
if (copy_from_user(&rsv, arg, sizeof(rsv)))
|
|
return -EFAULT;
|
|
|
|
if (rsv.flags)
|
|
return -EOPNOTSUPP;
|
|
return ops->pr_release(bdev, rsv.key, rsv.type);
|
|
}
|
|
|
|
static int blkdev_pr_preempt(struct block_device *bdev,
|
|
struct pr_preempt __user *arg, bool abort)
|
|
{
|
|
const struct pr_ops *ops = bdev->bd_disk->fops->pr_ops;
|
|
struct pr_preempt p;
|
|
|
|
if (!capable(CAP_SYS_ADMIN))
|
|
return -EPERM;
|
|
if (!ops || !ops->pr_preempt)
|
|
return -EOPNOTSUPP;
|
|
if (copy_from_user(&p, arg, sizeof(p)))
|
|
return -EFAULT;
|
|
|
|
if (p.flags)
|
|
return -EOPNOTSUPP;
|
|
return ops->pr_preempt(bdev, p.old_key, p.new_key, p.type, abort);
|
|
}
|
|
|
|
static int blkdev_pr_clear(struct block_device *bdev,
|
|
struct pr_clear __user *arg)
|
|
{
|
|
const struct pr_ops *ops = bdev->bd_disk->fops->pr_ops;
|
|
struct pr_clear c;
|
|
|
|
if (!capable(CAP_SYS_ADMIN))
|
|
return -EPERM;
|
|
if (!ops || !ops->pr_clear)
|
|
return -EOPNOTSUPP;
|
|
if (copy_from_user(&c, arg, sizeof(c)))
|
|
return -EFAULT;
|
|
|
|
if (c.flags)
|
|
return -EOPNOTSUPP;
|
|
return ops->pr_clear(bdev, c.key);
|
|
}
|
|
|
|
/*
|
|
* Is it an unrecognized ioctl? The correct returns are either
|
|
* ENOTTY (final) or ENOIOCTLCMD ("I don't know this one, try a
|
|
* fallback"). ENOIOCTLCMD gets turned into ENOTTY by the ioctl
|
|
* code before returning.
|
|
*
|
|
* Confused drivers sometimes return EINVAL, which is wrong. It
|
|
* means "I understood the ioctl command, but the parameters to
|
|
* it were wrong".
|
|
*
|
|
* We should aim to just fix the broken drivers, the EINVAL case
|
|
* should go away.
|
|
*/
|
|
static inline int is_unrecognized_ioctl(int ret)
|
|
{
|
|
return ret == -EINVAL ||
|
|
ret == -ENOTTY ||
|
|
ret == -ENOIOCTLCMD;
|
|
}
|
|
|
|
static int blkdev_flushbuf(struct block_device *bdev, fmode_t mode,
|
|
unsigned cmd, unsigned long arg)
|
|
{
|
|
int ret;
|
|
|
|
if (!capable(CAP_SYS_ADMIN))
|
|
return -EACCES;
|
|
|
|
ret = __blkdev_driver_ioctl(bdev, mode, cmd, arg);
|
|
if (!is_unrecognized_ioctl(ret))
|
|
return ret;
|
|
|
|
fsync_bdev(bdev);
|
|
invalidate_bdev(bdev);
|
|
return 0;
|
|
}
|
|
|
|
static int blkdev_roset(struct block_device *bdev, fmode_t mode,
|
|
unsigned cmd, unsigned long arg)
|
|
{
|
|
int ret, n;
|
|
|
|
if (!capable(CAP_SYS_ADMIN))
|
|
return -EACCES;
|
|
|
|
ret = __blkdev_driver_ioctl(bdev, mode, cmd, arg);
|
|
if (!is_unrecognized_ioctl(ret))
|
|
return ret;
|
|
if (get_user(n, (int __user *)arg))
|
|
return -EFAULT;
|
|
set_device_ro(bdev, n);
|
|
return 0;
|
|
}
|
|
|
|
static int blkdev_getgeo(struct block_device *bdev,
|
|
struct hd_geometry __user *argp)
|
|
{
|
|
struct gendisk *disk = bdev->bd_disk;
|
|
struct hd_geometry geo;
|
|
int ret;
|
|
|
|
if (!argp)
|
|
return -EINVAL;
|
|
if (!disk->fops->getgeo)
|
|
return -ENOTTY;
|
|
|
|
/*
|
|
* We need to set the startsect first, the driver may
|
|
* want to override it.
|
|
*/
|
|
memset(&geo, 0, sizeof(geo));
|
|
geo.start = get_start_sect(bdev);
|
|
ret = disk->fops->getgeo(bdev, &geo);
|
|
if (ret)
|
|
return ret;
|
|
if (copy_to_user(argp, &geo, sizeof(geo)))
|
|
return -EFAULT;
|
|
return 0;
|
|
}
|
|
|
|
#ifdef CONFIG_COMPAT
|
|
struct compat_hd_geometry {
|
|
unsigned char heads;
|
|
unsigned char sectors;
|
|
unsigned short cylinders;
|
|
u32 start;
|
|
};
|
|
|
|
static int compat_hdio_getgeo(struct block_device *bdev,
|
|
struct compat_hd_geometry __user *ugeo)
|
|
{
|
|
struct gendisk *disk = bdev->bd_disk;
|
|
struct hd_geometry geo;
|
|
int ret;
|
|
|
|
if (!ugeo)
|
|
return -EINVAL;
|
|
if (!disk->fops->getgeo)
|
|
return -ENOTTY;
|
|
|
|
memset(&geo, 0, sizeof(geo));
|
|
/*
|
|
* We need to set the startsect first, the driver may
|
|
* want to override it.
|
|
*/
|
|
geo.start = get_start_sect(bdev);
|
|
ret = disk->fops->getgeo(bdev, &geo);
|
|
if (ret)
|
|
return ret;
|
|
|
|
ret = copy_to_user(ugeo, &geo, 4);
|
|
ret |= put_user(geo.start, &ugeo->start);
|
|
if (ret)
|
|
ret = -EFAULT;
|
|
|
|
return ret;
|
|
}
|
|
#endif
|
|
|
|
/* set the logical block size */
|
|
static int blkdev_bszset(struct block_device *bdev, fmode_t mode,
|
|
int __user *argp)
|
|
{
|
|
int ret, n;
|
|
|
|
if (!capable(CAP_SYS_ADMIN))
|
|
return -EACCES;
|
|
if (!argp)
|
|
return -EINVAL;
|
|
if (get_user(n, argp))
|
|
return -EFAULT;
|
|
|
|
if (mode & FMODE_EXCL)
|
|
return set_blocksize(bdev, n);
|
|
|
|
if (IS_ERR(blkdev_get_by_dev(bdev->bd_dev, mode | FMODE_EXCL, &bdev)))
|
|
return -EBUSY;
|
|
ret = set_blocksize(bdev, n);
|
|
blkdev_put(bdev, mode | FMODE_EXCL);
|
|
|
|
return ret;
|
|
}
|
|
|
|
/*
|
|
* Common commands that are handled the same way on native and compat
|
|
* user space. Note the separate arg/argp parameters that are needed
|
|
* to deal with the compat_ptr() conversion.
|
|
*/
|
|
static int blkdev_common_ioctl(struct block_device *bdev, fmode_t mode,
|
|
unsigned cmd, unsigned long arg, void __user *argp)
|
|
{
|
|
unsigned int max_sectors;
|
|
|
|
switch (cmd) {
|
|
case BLKFLSBUF:
|
|
return blkdev_flushbuf(bdev, mode, cmd, arg);
|
|
case BLKROSET:
|
|
return blkdev_roset(bdev, mode, cmd, arg);
|
|
case BLKDISCARD:
|
|
return blk_ioctl_discard(bdev, mode, arg, 0);
|
|
case BLKSECDISCARD:
|
|
return blk_ioctl_discard(bdev, mode, arg,
|
|
BLKDEV_DISCARD_SECURE);
|
|
case BLKZEROOUT:
|
|
return blk_ioctl_zeroout(bdev, mode, arg);
|
|
case BLKREPORTZONE:
|
|
return blkdev_report_zones_ioctl(bdev, mode, cmd, arg);
|
|
case BLKRESETZONE:
|
|
case BLKOPENZONE:
|
|
case BLKCLOSEZONE:
|
|
case BLKFINISHZONE:
|
|
return blkdev_zone_mgmt_ioctl(bdev, mode, cmd, arg);
|
|
case BLKGETZONESZ:
|
|
return put_uint(argp, bdev_zone_sectors(bdev));
|
|
case BLKGETNRZONES:
|
|
return put_uint(argp, blkdev_nr_zones(bdev->bd_disk));
|
|
case BLKROGET:
|
|
return put_int(argp, bdev_read_only(bdev) != 0);
|
|
case BLKSSZGET: /* get block device logical block size */
|
|
return put_int(argp, bdev_logical_block_size(bdev));
|
|
case BLKPBSZGET: /* get block device physical block size */
|
|
return put_uint(argp, bdev_physical_block_size(bdev));
|
|
case BLKIOMIN:
|
|
return put_uint(argp, bdev_io_min(bdev));
|
|
case BLKIOOPT:
|
|
return put_uint(argp, bdev_io_opt(bdev));
|
|
case BLKALIGNOFF:
|
|
return put_int(argp, bdev_alignment_offset(bdev));
|
|
case BLKDISCARDZEROES:
|
|
return put_uint(argp, 0);
|
|
case BLKSECTGET:
|
|
max_sectors = min_t(unsigned int, USHRT_MAX,
|
|
queue_max_sectors(bdev_get_queue(bdev)));
|
|
return put_ushort(argp, max_sectors);
|
|
case BLKROTATIONAL:
|
|
return put_ushort(argp, !blk_queue_nonrot(bdev_get_queue(bdev)));
|
|
case BLKRASET:
|
|
case BLKFRASET:
|
|
if(!capable(CAP_SYS_ADMIN))
|
|
return -EACCES;
|
|
bdev->bd_bdi->ra_pages = (arg * 512) / PAGE_SIZE;
|
|
return 0;
|
|
case BLKRRPART:
|
|
return blkdev_reread_part(bdev, mode);
|
|
case BLKTRACESTART:
|
|
case BLKTRACESTOP:
|
|
case BLKTRACETEARDOWN:
|
|
return blk_trace_ioctl(bdev, cmd, argp);
|
|
case IOC_PR_REGISTER:
|
|
return blkdev_pr_register(bdev, argp);
|
|
case IOC_PR_RESERVE:
|
|
return blkdev_pr_reserve(bdev, argp);
|
|
case IOC_PR_RELEASE:
|
|
return blkdev_pr_release(bdev, argp);
|
|
case IOC_PR_PREEMPT:
|
|
return blkdev_pr_preempt(bdev, argp, false);
|
|
case IOC_PR_PREEMPT_ABORT:
|
|
return blkdev_pr_preempt(bdev, argp, true);
|
|
case IOC_PR_CLEAR:
|
|
return blkdev_pr_clear(bdev, argp);
|
|
default:
|
|
return -ENOIOCTLCMD;
|
|
}
|
|
}
|
|
|
|
/*
|
|
* Always keep this in sync with compat_blkdev_ioctl()
|
|
* to handle all incompatible commands in both functions.
|
|
*
|
|
* New commands must be compatible and go into blkdev_common_ioctl
|
|
*/
|
|
int blkdev_ioctl(struct block_device *bdev, fmode_t mode, unsigned cmd,
|
|
unsigned long arg)
|
|
{
|
|
int ret;
|
|
loff_t size;
|
|
void __user *argp = (void __user *)arg;
|
|
|
|
switch (cmd) {
|
|
/* These need separate implementations for the data structure */
|
|
case HDIO_GETGEO:
|
|
return blkdev_getgeo(bdev, argp);
|
|
case BLKPG:
|
|
return blkpg_ioctl(bdev, argp);
|
|
|
|
/* Compat mode returns 32-bit data instead of 'long' */
|
|
case BLKRAGET:
|
|
case BLKFRAGET:
|
|
if (!argp)
|
|
return -EINVAL;
|
|
return put_long(argp, (bdev->bd_bdi->ra_pages*PAGE_SIZE) / 512);
|
|
case BLKGETSIZE:
|
|
size = i_size_read(bdev->bd_inode);
|
|
if ((size >> 9) > ~0UL)
|
|
return -EFBIG;
|
|
return put_ulong(argp, size >> 9);
|
|
|
|
/* The data is compatible, but the command number is different */
|
|
case BLKBSZGET: /* get block device soft block size (cf. BLKSSZGET) */
|
|
return put_int(argp, block_size(bdev));
|
|
case BLKBSZSET:
|
|
return blkdev_bszset(bdev, mode, argp);
|
|
case BLKGETSIZE64:
|
|
return put_u64(argp, i_size_read(bdev->bd_inode));
|
|
|
|
/* Incompatible alignment on i386 */
|
|
case BLKTRACESETUP:
|
|
return blk_trace_ioctl(bdev, cmd, argp);
|
|
default:
|
|
break;
|
|
}
|
|
|
|
ret = blkdev_common_ioctl(bdev, mode, cmd, arg, argp);
|
|
if (ret == -ENOIOCTLCMD)
|
|
return __blkdev_driver_ioctl(bdev, mode, cmd, arg);
|
|
|
|
return ret;
|
|
}
|
|
EXPORT_SYMBOL_GPL(blkdev_ioctl); /* for /dev/raw */
|
|
|
|
#ifdef CONFIG_COMPAT
|
|
|
|
#define BLKBSZGET_32 _IOR(0x12, 112, int)
|
|
#define BLKBSZSET_32 _IOW(0x12, 113, int)
|
|
#define BLKGETSIZE64_32 _IOR(0x12, 114, int)
|
|
|
|
/* Most of the generic ioctls are handled in the normal fallback path.
|
|
This assumes the blkdev's low level compat_ioctl always returns
|
|
ENOIOCTLCMD for unknown ioctls. */
|
|
long compat_blkdev_ioctl(struct file *file, unsigned cmd, unsigned long arg)
|
|
{
|
|
int ret;
|
|
void __user *argp = compat_ptr(arg);
|
|
struct inode *inode = file->f_mapping->host;
|
|
struct block_device *bdev = inode->i_bdev;
|
|
struct gendisk *disk = bdev->bd_disk;
|
|
fmode_t mode = file->f_mode;
|
|
loff_t size;
|
|
|
|
/*
|
|
* O_NDELAY can be altered using fcntl(.., F_SETFL, ..), so we have
|
|
* to updated it before every ioctl.
|
|
*/
|
|
if (file->f_flags & O_NDELAY)
|
|
mode |= FMODE_NDELAY;
|
|
else
|
|
mode &= ~FMODE_NDELAY;
|
|
|
|
switch (cmd) {
|
|
/* These need separate implementations for the data structure */
|
|
case HDIO_GETGEO:
|
|
return compat_hdio_getgeo(bdev, argp);
|
|
case BLKPG:
|
|
return compat_blkpg_ioctl(bdev, argp);
|
|
|
|
/* Compat mode returns 32-bit data instead of 'long' */
|
|
case BLKRAGET:
|
|
case BLKFRAGET:
|
|
if (!argp)
|
|
return -EINVAL;
|
|
return compat_put_long(argp,
|
|
(bdev->bd_bdi->ra_pages * PAGE_SIZE) / 512);
|
|
case BLKGETSIZE:
|
|
size = i_size_read(bdev->bd_inode);
|
|
if ((size >> 9) > ~(compat_ulong_t)0)
|
|
return -EFBIG;
|
|
return compat_put_ulong(argp, size >> 9);
|
|
|
|
/* The data is compatible, but the command number is different */
|
|
case BLKBSZGET_32: /* get the logical block size (cf. BLKSSZGET) */
|
|
return put_int(argp, bdev_logical_block_size(bdev));
|
|
case BLKBSZSET_32:
|
|
return blkdev_bszset(bdev, mode, argp);
|
|
case BLKGETSIZE64_32:
|
|
return put_u64(argp, i_size_read(bdev->bd_inode));
|
|
|
|
/* Incompatible alignment on i386 */
|
|
case BLKTRACESETUP32:
|
|
return blk_trace_ioctl(bdev, cmd, argp);
|
|
default:
|
|
break;
|
|
}
|
|
|
|
ret = blkdev_common_ioctl(bdev, mode, cmd, arg, argp);
|
|
if (ret == -ENOIOCTLCMD && disk->fops->compat_ioctl)
|
|
ret = disk->fops->compat_ioctl(bdev, mode, cmd, arg);
|
|
|
|
return ret;
|
|
}
|
|
#endif
|