Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1 | /* |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 2 | * Copyright (C) 2002 - 2007 Jeff Dike (jdike@{addtoit,linux.intel}.com) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 3 | * Licensed under the GPL |
| 4 | */ |
| 5 | |
Jeff Dike | 8192ab4 | 2008-02-04 22:30:53 -0800 | [diff] [blame^] | 6 | #include <linux/err.h> |
| 7 | #include <linux/highmem.h> |
| 8 | #include <linux/mm.h> |
| 9 | #include <linux/sched.h> |
| 10 | #include <asm/current.h> |
| 11 | #include <asm/page.h> |
| 12 | #include <asm/pgtable.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 13 | #include "kern_util.h" |
Gennady Sharapov | 4fef0c1 | 2006-01-18 17:42:41 -0800 | [diff] [blame] | 14 | #include "os.h" |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 15 | |
Jeff Dike | 9157f90 | 2008-02-04 22:30:52 -0800 | [diff] [blame] | 16 | static void *um_virt_to_phys(struct task_struct *task, unsigned long addr, |
| 17 | pte_t *pte_out) |
| 18 | { |
| 19 | pgd_t *pgd; |
| 20 | pud_t *pud; |
| 21 | pmd_t *pmd; |
| 22 | pte_t *pte; |
| 23 | pte_t ptent; |
| 24 | |
| 25 | if (task->mm == NULL) |
| 26 | return ERR_PTR(-EINVAL); |
| 27 | pgd = pgd_offset(task->mm, addr); |
| 28 | if (!pgd_present(*pgd)) |
| 29 | return ERR_PTR(-EINVAL); |
| 30 | |
| 31 | pud = pud_offset(pgd, addr); |
| 32 | if (!pud_present(*pud)) |
| 33 | return ERR_PTR(-EINVAL); |
| 34 | |
| 35 | pmd = pmd_offset(pud, addr); |
| 36 | if (!pmd_present(*pmd)) |
| 37 | return ERR_PTR(-EINVAL); |
| 38 | |
| 39 | pte = pte_offset_kernel(pmd, addr); |
| 40 | ptent = *pte; |
| 41 | if (!pte_present(ptent)) |
| 42 | return ERR_PTR(-EINVAL); |
| 43 | |
| 44 | if (pte_out != NULL) |
| 45 | *pte_out = ptent; |
| 46 | return (void *) (pte_val(ptent) & PAGE_MASK) + (addr & ~PAGE_MASK); |
| 47 | } |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 48 | |
| 49 | static unsigned long maybe_map(unsigned long virt, int is_write) |
| 50 | { |
| 51 | pte_t pte; |
| 52 | int err; |
| 53 | |
| 54 | void *phys = um_virt_to_phys(current, virt, &pte); |
| 55 | int dummy_code; |
| 56 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 57 | if (IS_ERR(phys) || (is_write && !pte_write(pte))) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 58 | err = handle_page_fault(virt, 0, is_write, 1, &dummy_code); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 59 | if (err) |
| 60 | return -1UL; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 61 | phys = um_virt_to_phys(current, virt, NULL); |
| 62 | } |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 63 | if (IS_ERR(phys)) |
| 64 | phys = (void *) -1; |
Jeff Dike | 2d58cc9 | 2005-05-06 21:30:55 -0700 | [diff] [blame] | 65 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 66 | return (unsigned long) phys; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 67 | } |
| 68 | |
Paolo 'Blaisorblade' Giarrusso | 47e5243 | 2006-07-01 04:36:19 -0700 | [diff] [blame] | 69 | static int do_op_one_page(unsigned long addr, int len, int is_write, |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 70 | int (*op)(unsigned long addr, int len, void *arg), void *arg) |
| 71 | { |
| 72 | struct page *page; |
| 73 | int n; |
| 74 | |
| 75 | addr = maybe_map(addr, is_write); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 76 | if (addr == -1UL) |
| 77 | return -1; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 78 | |
| 79 | page = phys_to_page(addr); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 80 | addr = (unsigned long) kmap_atomic(page, KM_UML_USERCOPY) + |
| 81 | (addr & ~PAGE_MASK); |
Paolo 'Blaisorblade' Giarrusso | 47e5243 | 2006-07-01 04:36:19 -0700 | [diff] [blame] | 82 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 83 | n = (*op)(addr, len, arg); |
Paolo 'Blaisorblade' Giarrusso | 47e5243 | 2006-07-01 04:36:19 -0700 | [diff] [blame] | 84 | |
| 85 | kunmap_atomic(page, KM_UML_USERCOPY); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 86 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 87 | return n; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 88 | } |
| 89 | |
| 90 | static void do_buffer_op(void *jmpbuf, void *arg_ptr) |
| 91 | { |
| 92 | va_list args; |
| 93 | unsigned long addr; |
| 94 | int len, is_write, size, remain, n; |
| 95 | int (*op)(unsigned long, int, void *); |
| 96 | void *arg; |
| 97 | int *res; |
| 98 | |
Paolo 'Blaisorblade' Giarrusso | e9c5271 | 2005-05-01 08:58:54 -0700 | [diff] [blame] | 99 | va_copy(args, *(va_list *)arg_ptr); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 100 | addr = va_arg(args, unsigned long); |
| 101 | len = va_arg(args, int); |
| 102 | is_write = va_arg(args, int); |
| 103 | op = va_arg(args, void *); |
| 104 | arg = va_arg(args, void *); |
| 105 | res = va_arg(args, int *); |
| 106 | va_end(args); |
| 107 | size = min(PAGE_ALIGN(addr) - addr, (unsigned long) len); |
| 108 | remain = len; |
| 109 | |
| 110 | current->thread.fault_catcher = jmpbuf; |
Paolo 'Blaisorblade' Giarrusso | 47e5243 | 2006-07-01 04:36:19 -0700 | [diff] [blame] | 111 | n = do_op_one_page(addr, size, is_write, op, arg); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 112 | if (n != 0) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 113 | *res = (n < 0 ? remain : 0); |
| 114 | goto out; |
| 115 | } |
| 116 | |
| 117 | addr += size; |
| 118 | remain -= size; |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 119 | if (remain == 0) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 120 | *res = 0; |
| 121 | goto out; |
| 122 | } |
| 123 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 124 | while(addr < ((addr + remain) & PAGE_MASK)) { |
Paolo 'Blaisorblade' Giarrusso | 47e5243 | 2006-07-01 04:36:19 -0700 | [diff] [blame] | 125 | n = do_op_one_page(addr, PAGE_SIZE, is_write, op, arg); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 126 | if (n != 0) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 127 | *res = (n < 0 ? remain : 0); |
| 128 | goto out; |
| 129 | } |
| 130 | |
| 131 | addr += PAGE_SIZE; |
| 132 | remain -= PAGE_SIZE; |
| 133 | } |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 134 | if (remain == 0) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 135 | *res = 0; |
| 136 | goto out; |
| 137 | } |
| 138 | |
Paolo 'Blaisorblade' Giarrusso | 47e5243 | 2006-07-01 04:36:19 -0700 | [diff] [blame] | 139 | n = do_op_one_page(addr, remain, is_write, op, arg); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 140 | if (n != 0) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 141 | *res = (n < 0 ? remain : 0); |
| 142 | else *res = 0; |
| 143 | out: |
| 144 | current->thread.fault_catcher = NULL; |
| 145 | } |
| 146 | |
| 147 | static int buffer_op(unsigned long addr, int len, int is_write, |
| 148 | int (*op)(unsigned long addr, int len, void *arg), |
| 149 | void *arg) |
| 150 | { |
| 151 | int faulted, res; |
| 152 | |
| 153 | faulted = setjmp_wrapper(do_buffer_op, addr, len, is_write, op, arg, |
| 154 | &res); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 155 | if (!faulted) |
| 156 | return res; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 157 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 158 | return addr + len - (unsigned long) current->thread.fault_addr; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 159 | } |
| 160 | |
| 161 | static int copy_chunk_from_user(unsigned long from, int len, void *arg) |
| 162 | { |
| 163 | unsigned long *to_ptr = arg, to = *to_ptr; |
| 164 | |
| 165 | memcpy((void *) to, (void *) from, len); |
| 166 | *to_ptr += len; |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 167 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 168 | } |
| 169 | |
Jeff Dike | 6aa802c | 2007-10-16 01:26:56 -0700 | [diff] [blame] | 170 | int copy_from_user(void *to, const void __user *from, int n) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 171 | { |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 172 | if (segment_eq(get_fs(), KERNEL_DS)) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 173 | memcpy(to, (__force void*)from, n); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 174 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 175 | } |
| 176 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 177 | return access_ok(VERIFY_READ, from, n) ? |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 178 | buffer_op((unsigned long) from, n, 0, copy_chunk_from_user, &to): |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 179 | n; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 180 | } |
| 181 | |
| 182 | static int copy_chunk_to_user(unsigned long to, int len, void *arg) |
| 183 | { |
| 184 | unsigned long *from_ptr = arg, from = *from_ptr; |
| 185 | |
| 186 | memcpy((void *) to, (void *) from, len); |
| 187 | *from_ptr += len; |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 188 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 189 | } |
| 190 | |
Jeff Dike | 6aa802c | 2007-10-16 01:26:56 -0700 | [diff] [blame] | 191 | int copy_to_user(void __user *to, const void *from, int n) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 192 | { |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 193 | if (segment_eq(get_fs(), KERNEL_DS)) { |
| 194 | memcpy((__force void *) to, from, n); |
| 195 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 196 | } |
| 197 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 198 | return access_ok(VERIFY_WRITE, to, n) ? |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 199 | buffer_op((unsigned long) to, n, 1, copy_chunk_to_user, &from) : |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 200 | n; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 201 | } |
| 202 | |
| 203 | static int strncpy_chunk_from_user(unsigned long from, int len, void *arg) |
| 204 | { |
| 205 | char **to_ptr = arg, *to = *to_ptr; |
| 206 | int n; |
| 207 | |
| 208 | strncpy(to, (void *) from, len); |
| 209 | n = strnlen(to, len); |
| 210 | *to_ptr += n; |
| 211 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 212 | if (n < len) |
| 213 | return 1; |
| 214 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 215 | } |
| 216 | |
Jeff Dike | 6aa802c | 2007-10-16 01:26:56 -0700 | [diff] [blame] | 217 | int strncpy_from_user(char *dst, const char __user *src, int count) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 218 | { |
| 219 | int n; |
| 220 | char *ptr = dst; |
| 221 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 222 | if (segment_eq(get_fs(), KERNEL_DS)) { |
| 223 | strncpy(dst, (__force void *) src, count); |
| 224 | return strnlen(dst, count); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 225 | } |
| 226 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 227 | if (!access_ok(VERIFY_READ, src, 1)) |
| 228 | return -EFAULT; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 229 | |
| 230 | n = buffer_op((unsigned long) src, count, 0, strncpy_chunk_from_user, |
| 231 | &ptr); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 232 | if (n != 0) |
| 233 | return -EFAULT; |
| 234 | return strnlen(dst, count); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 235 | } |
| 236 | |
| 237 | static int clear_chunk(unsigned long addr, int len, void *unused) |
| 238 | { |
| 239 | memset((void *) addr, 0, len); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 240 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 241 | } |
| 242 | |
Jeff Dike | 6aa802c | 2007-10-16 01:26:56 -0700 | [diff] [blame] | 243 | int __clear_user(void __user *mem, int len) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 244 | { |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 245 | return buffer_op((unsigned long) mem, len, 1, clear_chunk, NULL); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 246 | } |
| 247 | |
Jeff Dike | 6aa802c | 2007-10-16 01:26:56 -0700 | [diff] [blame] | 248 | int clear_user(void __user *mem, int len) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 249 | { |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 250 | if (segment_eq(get_fs(), KERNEL_DS)) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 251 | memset((__force void*)mem, 0, len); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 252 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 253 | } |
| 254 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 255 | return access_ok(VERIFY_WRITE, mem, len) ? |
| 256 | buffer_op((unsigned long) mem, len, 1, clear_chunk, NULL) : len; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 257 | } |
| 258 | |
| 259 | static int strnlen_chunk(unsigned long str, int len, void *arg) |
| 260 | { |
| 261 | int *len_ptr = arg, n; |
| 262 | |
| 263 | n = strnlen((void *) str, len); |
| 264 | *len_ptr += n; |
| 265 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 266 | if (n < len) |
| 267 | return 1; |
| 268 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 269 | } |
| 270 | |
Jeff Dike | 6aa802c | 2007-10-16 01:26:56 -0700 | [diff] [blame] | 271 | int strnlen_user(const void __user *str, int len) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 272 | { |
| 273 | int count = 0, n; |
| 274 | |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 275 | if (segment_eq(get_fs(), KERNEL_DS)) |
| 276 | return strnlen((__force char*)str, len) + 1; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 277 | |
| 278 | n = buffer_op((unsigned long) str, len, 0, strnlen_chunk, &count); |
Jeff Dike | 8ca842c | 2007-10-16 01:27:08 -0700 | [diff] [blame] | 279 | if (n == 0) |
| 280 | return count + 1; |
| 281 | return -EFAULT; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 282 | } |