msgutil.c 3.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184
  1. /*
  2. * linux/ipc/msgutil.c
  3. * Copyright (C) 1999, 2004 Manfred Spraul
  4. *
  5. * This file is released under GNU General Public Licence version 2 or
  6. * (at your option) any later version.
  7. *
  8. * See the file COPYING for more details.
  9. */
  10. #include <linux/spinlock.h>
  11. #include <linux/init.h>
  12. #include <linux/security.h>
  13. #include <linux/slab.h>
  14. #include <linux/ipc.h>
  15. #include <linux/msg.h>
  16. #include <linux/ipc_namespace.h>
  17. #include <linux/utsname.h>
  18. #include <linux/proc_ns.h>
  19. #include <linux/uaccess.h>
  20. #include "util.h"
  21. DEFINE_SPINLOCK(mq_lock);
  22. /*
  23. * The next 2 defines are here bc this is the only file
  24. * compiled when either CONFIG_SYSVIPC and CONFIG_POSIX_MQUEUE
  25. * and not CONFIG_IPC_NS.
  26. */
  27. struct ipc_namespace init_ipc_ns = {
  28. .count = ATOMIC_INIT(1),
  29. .user_ns = &init_user_ns,
  30. .ns.inum = PROC_IPC_INIT_INO,
  31. #ifdef CONFIG_IPC_NS
  32. .ns.ops = &ipcns_operations,
  33. #endif
  34. };
  35. atomic_t nr_ipc_ns = ATOMIC_INIT(1);
  36. struct msg_msgseg {
  37. struct msg_msgseg *next;
  38. /* the next part of the message follows immediately */
  39. };
  40. #define DATALEN_MSG ((size_t)PAGE_SIZE-sizeof(struct msg_msg))
  41. #define DATALEN_SEG ((size_t)PAGE_SIZE-sizeof(struct msg_msgseg))
  42. static struct msg_msg *alloc_msg(size_t len)
  43. {
  44. struct msg_msg *msg;
  45. struct msg_msgseg **pseg;
  46. size_t alen;
  47. alen = min(len, DATALEN_MSG);
  48. msg = kmalloc(sizeof(*msg) + alen, GFP_KERNEL);
  49. if (msg == NULL)
  50. return NULL;
  51. msg->next = NULL;
  52. msg->security = NULL;
  53. len -= alen;
  54. pseg = &msg->next;
  55. while (len > 0) {
  56. struct msg_msgseg *seg;
  57. alen = min(len, DATALEN_SEG);
  58. seg = kmalloc(sizeof(*seg) + alen, GFP_KERNEL);
  59. if (seg == NULL)
  60. goto out_err;
  61. *pseg = seg;
  62. seg->next = NULL;
  63. pseg = &seg->next;
  64. len -= alen;
  65. }
  66. return msg;
  67. out_err:
  68. free_msg(msg);
  69. return NULL;
  70. }
  71. struct msg_msg *load_msg(const void __user *src, size_t len)
  72. {
  73. struct msg_msg *msg;
  74. struct msg_msgseg *seg;
  75. int err = -EFAULT;
  76. size_t alen;
  77. msg = alloc_msg(len);
  78. if (msg == NULL)
  79. return ERR_PTR(-ENOMEM);
  80. alen = min(len, DATALEN_MSG);
  81. if (copy_from_user(msg + 1, src, alen))
  82. goto out_err;
  83. for (seg = msg->next; seg != NULL; seg = seg->next) {
  84. len -= alen;
  85. src = (char __user *)src + alen;
  86. alen = min(len, DATALEN_SEG);
  87. if (copy_from_user(seg + 1, src, alen))
  88. goto out_err;
  89. }
  90. err = security_msg_msg_alloc(msg);
  91. if (err)
  92. goto out_err;
  93. return msg;
  94. out_err:
  95. free_msg(msg);
  96. return ERR_PTR(err);
  97. }
  98. #ifdef CONFIG_CHECKPOINT_RESTORE
  99. struct msg_msg *copy_msg(struct msg_msg *src, struct msg_msg *dst)
  100. {
  101. struct msg_msgseg *dst_pseg, *src_pseg;
  102. size_t len = src->m_ts;
  103. size_t alen;
  104. if (src->m_ts > dst->m_ts)
  105. return ERR_PTR(-EINVAL);
  106. alen = min(len, DATALEN_MSG);
  107. memcpy(dst + 1, src + 1, alen);
  108. for (dst_pseg = dst->next, src_pseg = src->next;
  109. src_pseg != NULL;
  110. dst_pseg = dst_pseg->next, src_pseg = src_pseg->next) {
  111. len -= alen;
  112. alen = min(len, DATALEN_SEG);
  113. memcpy(dst_pseg + 1, src_pseg + 1, alen);
  114. }
  115. dst->m_type = src->m_type;
  116. dst->m_ts = src->m_ts;
  117. return dst;
  118. }
  119. #else
  120. struct msg_msg *copy_msg(struct msg_msg *src, struct msg_msg *dst)
  121. {
  122. return ERR_PTR(-ENOSYS);
  123. }
  124. #endif
  125. int store_msg(void __user *dest, struct msg_msg *msg, size_t len)
  126. {
  127. size_t alen;
  128. struct msg_msgseg *seg;
  129. alen = min(len, DATALEN_MSG);
  130. if (copy_to_user(dest, msg + 1, alen))
  131. return -1;
  132. for (seg = msg->next; seg != NULL; seg = seg->next) {
  133. len -= alen;
  134. dest = (char __user *)dest + alen;
  135. alen = min(len, DATALEN_SEG);
  136. if (copy_to_user(dest, seg + 1, alen))
  137. return -1;
  138. }
  139. return 0;
  140. }
  141. void free_msg(struct msg_msg *msg)
  142. {
  143. struct msg_msgseg *seg;
  144. security_msg_msg_free(msg);
  145. seg = msg->next;
  146. kfree(msg);
  147. while (seg != NULL) {
  148. struct msg_msgseg *tmp = seg->next;
  149. kfree(seg);
  150. seg = tmp;
  151. }
  152. }