msgutil.c 3.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196
  1. /*
  2. * linux/ipc/msgutil.c
  3. * Copyright (C) 1999, 2004 Manfred Spraul
  4. *
  5. * This file is released under GNU General Public Licence version 2 or
  6. * (at your option) any later version.
  7. *
  8. * See the file COPYING for more details.
  9. */
  10. #include <linux/spinlock.h>
  11. #include <linux/init.h>
  12. #include <linux/security.h>
  13. #include <linux/slab.h>
  14. #include <linux/ipc.h>
  15. #include <linux/msg.h>
  16. #include <linux/ipc_namespace.h>
  17. #include <linux/utsname.h>
  18. #include <linux/proc_fs.h>
  19. #include <asm/uaccess.h>
  20. #include "util.h"
  21. DEFINE_SPINLOCK(mq_lock);
  22. /*
  23. * The next 2 defines are here bc this is the only file
  24. * compiled when either CONFIG_SYSVIPC and CONFIG_POSIX_MQUEUE
  25. * and not CONFIG_IPC_NS.
  26. */
  27. struct ipc_namespace init_ipc_ns = {
  28. .count = ATOMIC_INIT(1),
  29. .user_ns = &init_user_ns,
  30. .proc_inum = PROC_IPC_INIT_INO,
  31. };
  32. atomic_t nr_ipc_ns = ATOMIC_INIT(1);
  33. struct msg_msgseg {
  34. struct msg_msgseg* next;
  35. /* the next part of the message follows immediately */
  36. };
  37. #define DATALEN_MSG (int)(PAGE_SIZE-sizeof(struct msg_msg))
  38. #define DATALEN_SEG (int)(PAGE_SIZE-sizeof(struct msg_msgseg))
  39. static struct msg_msg *alloc_msg(int len)
  40. {
  41. struct msg_msg *msg;
  42. struct msg_msgseg **pseg;
  43. int alen;
  44. alen = min(len, DATALEN_MSG);
  45. msg = kmalloc(sizeof(*msg) + alen, GFP_KERNEL);
  46. if (msg == NULL)
  47. return NULL;
  48. msg->next = NULL;
  49. msg->security = NULL;
  50. len -= alen;
  51. pseg = &msg->next;
  52. while (len > 0) {
  53. struct msg_msgseg *seg;
  54. alen = min(len, DATALEN_SEG);
  55. seg = kmalloc(sizeof(*seg) + alen, GFP_KERNEL);
  56. if (seg == NULL)
  57. goto out_err;
  58. *pseg = seg;
  59. seg->next = NULL;
  60. pseg = &seg->next;
  61. len -= alen;
  62. }
  63. return msg;
  64. out_err:
  65. free_msg(msg);
  66. return NULL;
  67. }
  68. struct msg_msg *load_msg(const void __user *src, int len)
  69. {
  70. struct msg_msg *msg;
  71. struct msg_msgseg *seg;
  72. int err;
  73. int alen;
  74. msg = alloc_msg(len);
  75. if (msg == NULL)
  76. return ERR_PTR(-ENOMEM);
  77. alen = min(len, DATALEN_MSG);
  78. if (copy_from_user(msg + 1, src, alen)) {
  79. err = -EFAULT;
  80. goto out_err;
  81. }
  82. len -= alen;
  83. src = ((char __user *)src) + alen;
  84. seg = msg->next;
  85. while (len > 0) {
  86. alen = min(len, DATALEN_SEG);
  87. if (copy_from_user(seg + 1, src, alen)) {
  88. err = -EFAULT;
  89. goto out_err;
  90. }
  91. seg = seg->next;
  92. len -= alen;
  93. src = ((char __user *)src) + alen;
  94. }
  95. err = security_msg_msg_alloc(msg);
  96. if (err)
  97. goto out_err;
  98. return msg;
  99. out_err:
  100. free_msg(msg);
  101. return ERR_PTR(err);
  102. }
  103. #ifdef CONFIG_CHECKPOINT_RESTORE
  104. struct msg_msg *copy_msg(struct msg_msg *src, struct msg_msg *dst)
  105. {
  106. struct msg_msgseg *dst_pseg, *src_pseg;
  107. int len = src->m_ts;
  108. int alen;
  109. BUG_ON(dst == NULL);
  110. if (src->m_ts > dst->m_ts)
  111. return ERR_PTR(-EINVAL);
  112. alen = min(len, DATALEN_MSG);
  113. memcpy(dst + 1, src + 1, alen);
  114. len -= alen;
  115. dst_pseg = dst->next;
  116. src_pseg = src->next;
  117. while (len > 0) {
  118. alen = min(len, DATALEN_SEG);
  119. memcpy(dst_pseg + 1, src_pseg + 1, alen);
  120. dst_pseg = dst_pseg->next;
  121. len -= alen;
  122. src_pseg = src_pseg->next;
  123. }
  124. dst->m_type = src->m_type;
  125. dst->m_ts = src->m_ts;
  126. return dst;
  127. }
  128. #else
  129. struct msg_msg *copy_msg(struct msg_msg *src, struct msg_msg *dst)
  130. {
  131. return ERR_PTR(-ENOSYS);
  132. }
  133. #endif
  134. int store_msg(void __user *dest, struct msg_msg *msg, int len)
  135. {
  136. int alen;
  137. struct msg_msgseg *seg;
  138. alen = min(len, DATALEN_MSG);
  139. if (copy_to_user(dest, msg + 1, alen))
  140. return -1;
  141. len -= alen;
  142. dest = ((char __user *)dest) + alen;
  143. seg = msg->next;
  144. while (len > 0) {
  145. alen = min(len, DATALEN_SEG);
  146. if (copy_to_user(dest, seg + 1, alen))
  147. return -1;
  148. len -= alen;
  149. dest = ((char __user *)dest) + alen;
  150. seg = seg->next;
  151. }
  152. return 0;
  153. }
  154. void free_msg(struct msg_msg *msg)
  155. {
  156. struct msg_msgseg *seg;
  157. security_msg_msg_free(msg);
  158. seg = msg->next;
  159. kfree(msg);
  160. while (seg != NULL) {
  161. struct msg_msgseg *tmp = seg->next;
  162. kfree(seg);
  163. seg = tmp;
  164. }
  165. }