• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1 /*
2  * Copyright (c) 2004-2005 Silicon Graphics, Inc.
3  * All Rights Reserved.
4  *
5  * This program is free software; you can redistribute it and/or
6  * modify it under the terms of the GNU General Public License as
7  * published by the Free Software Foundation.
8  *
9  * This program is distributed in the hope that it would be useful,
10  * but WITHOUT ANY WARRANTY; without even the implied warranty of
11  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
12  * GNU General Public License for more details.
13  *
14  * You should have received a copy of the GNU General Public License
15  * along with this program; if not, write the Free Software Foundation,
16  * Inc.,  51 Franklin St, Fifth Floor, Boston, MA  02110-1301  USA
17  */
18 #include <linux/compat.h>
19 #include <linux/ioctl.h>
20 #include <linux/mount.h>
21 #include <linux/slab.h>
22 #include <linux/uaccess.h>
23 #include <linux/fsmap.h>
24 #include "xfs.h"
25 #include "xfs_fs.h"
26 #include "xfs_format.h"
27 #include "xfs_log_format.h"
28 #include "xfs_trans_resv.h"
29 #include "xfs_mount.h"
30 #include "xfs_inode.h"
31 #include "xfs_itable.h"
32 #include "xfs_error.h"
33 #include "xfs_fsops.h"
34 #include "xfs_alloc.h"
35 #include "xfs_rtalloc.h"
36 #include "xfs_attr.h"
37 #include "xfs_ioctl.h"
38 #include "xfs_ioctl32.h"
39 #include "xfs_trace.h"
40 
41 #define  _NATIVE_IOC(cmd, type) \
42 	  _IOC(_IOC_DIR(cmd), _IOC_TYPE(cmd), _IOC_NR(cmd), sizeof(type))
43 
44 #ifdef BROKEN_X86_ALIGNMENT
45 STATIC int
xfs_compat_flock64_copyin(xfs_flock64_t * bf,compat_xfs_flock64_t __user * arg32)46 xfs_compat_flock64_copyin(
47 	xfs_flock64_t		*bf,
48 	compat_xfs_flock64_t	__user *arg32)
49 {
50 	if (get_user(bf->l_type,	&arg32->l_type) ||
51 	    get_user(bf->l_whence,	&arg32->l_whence) ||
52 	    get_user(bf->l_start,	&arg32->l_start) ||
53 	    get_user(bf->l_len,		&arg32->l_len) ||
54 	    get_user(bf->l_sysid,	&arg32->l_sysid) ||
55 	    get_user(bf->l_pid,		&arg32->l_pid) ||
56 	    copy_from_user(bf->l_pad,	&arg32->l_pad,	4*sizeof(u32)))
57 		return -EFAULT;
58 	return 0;
59 }
60 
61 STATIC int
xfs_compat_ioc_fsgeometry_v1(struct xfs_mount * mp,compat_xfs_fsop_geom_v1_t __user * arg32)62 xfs_compat_ioc_fsgeometry_v1(
63 	struct xfs_mount	  *mp,
64 	compat_xfs_fsop_geom_v1_t __user *arg32)
65 {
66 	xfs_fsop_geom_t		  fsgeo;
67 	int			  error;
68 
69 	error = xfs_fs_geometry(mp, &fsgeo, 3);
70 	if (error)
71 		return error;
72 	/* The 32-bit variant simply has some padding at the end */
73 	if (copy_to_user(arg32, &fsgeo, sizeof(struct compat_xfs_fsop_geom_v1)))
74 		return -EFAULT;
75 	return 0;
76 }
77 
78 STATIC int
xfs_compat_growfs_data_copyin(struct xfs_growfs_data * in,compat_xfs_growfs_data_t __user * arg32)79 xfs_compat_growfs_data_copyin(
80 	struct xfs_growfs_data	 *in,
81 	compat_xfs_growfs_data_t __user *arg32)
82 {
83 	if (get_user(in->newblocks, &arg32->newblocks) ||
84 	    get_user(in->imaxpct,   &arg32->imaxpct))
85 		return -EFAULT;
86 	return 0;
87 }
88 
89 STATIC int
xfs_compat_growfs_rt_copyin(struct xfs_growfs_rt * in,compat_xfs_growfs_rt_t __user * arg32)90 xfs_compat_growfs_rt_copyin(
91 	struct xfs_growfs_rt	 *in,
92 	compat_xfs_growfs_rt_t	__user *arg32)
93 {
94 	if (get_user(in->newblocks, &arg32->newblocks) ||
95 	    get_user(in->extsize,   &arg32->extsize))
96 		return -EFAULT;
97 	return 0;
98 }
99 
100 STATIC int
xfs_inumbers_fmt_compat(void __user * ubuffer,const struct xfs_inogrp * buffer,long count,long * written)101 xfs_inumbers_fmt_compat(
102 	void			__user *ubuffer,
103 	const struct xfs_inogrp	*buffer,
104 	long			count,
105 	long			*written)
106 {
107 	compat_xfs_inogrp_t	__user *p32 = ubuffer;
108 	long			i;
109 
110 	for (i = 0; i < count; i++) {
111 		if (put_user(buffer[i].xi_startino,   &p32[i].xi_startino) ||
112 		    put_user(buffer[i].xi_alloccount, &p32[i].xi_alloccount) ||
113 		    put_user(buffer[i].xi_allocmask,  &p32[i].xi_allocmask))
114 			return -EFAULT;
115 	}
116 	*written = count * sizeof(*p32);
117 	return 0;
118 }
119 
120 #else
121 #define xfs_inumbers_fmt_compat xfs_inumbers_fmt
122 #endif	/* BROKEN_X86_ALIGNMENT */
123 
124 STATIC int
xfs_ioctl32_bstime_copyin(xfs_bstime_t * bstime,compat_xfs_bstime_t __user * bstime32)125 xfs_ioctl32_bstime_copyin(
126 	xfs_bstime_t		*bstime,
127 	compat_xfs_bstime_t	__user *bstime32)
128 {
129 	compat_time_t		sec32;	/* tv_sec differs on 64 vs. 32 */
130 
131 	if (get_user(sec32,		&bstime32->tv_sec)	||
132 	    get_user(bstime->tv_nsec,	&bstime32->tv_nsec))
133 		return -EFAULT;
134 	bstime->tv_sec = sec32;
135 	return 0;
136 }
137 
138 /* xfs_bstat_t has differing alignment on intel, & bstime_t sizes everywhere */
139 STATIC int
xfs_ioctl32_bstat_copyin(xfs_bstat_t * bstat,compat_xfs_bstat_t __user * bstat32)140 xfs_ioctl32_bstat_copyin(
141 	xfs_bstat_t		*bstat,
142 	compat_xfs_bstat_t	__user *bstat32)
143 {
144 	if (get_user(bstat->bs_ino,	&bstat32->bs_ino)	||
145 	    get_user(bstat->bs_mode,	&bstat32->bs_mode)	||
146 	    get_user(bstat->bs_nlink,	&bstat32->bs_nlink)	||
147 	    get_user(bstat->bs_uid,	&bstat32->bs_uid)	||
148 	    get_user(bstat->bs_gid,	&bstat32->bs_gid)	||
149 	    get_user(bstat->bs_rdev,	&bstat32->bs_rdev)	||
150 	    get_user(bstat->bs_blksize,	&bstat32->bs_blksize)	||
151 	    get_user(bstat->bs_size,	&bstat32->bs_size)	||
152 	    xfs_ioctl32_bstime_copyin(&bstat->bs_atime, &bstat32->bs_atime) ||
153 	    xfs_ioctl32_bstime_copyin(&bstat->bs_mtime, &bstat32->bs_mtime) ||
154 	    xfs_ioctl32_bstime_copyin(&bstat->bs_ctime, &bstat32->bs_ctime) ||
155 	    get_user(bstat->bs_blocks,	&bstat32->bs_size)	||
156 	    get_user(bstat->bs_xflags,	&bstat32->bs_size)	||
157 	    get_user(bstat->bs_extsize,	&bstat32->bs_extsize)	||
158 	    get_user(bstat->bs_extents,	&bstat32->bs_extents)	||
159 	    get_user(bstat->bs_gen,	&bstat32->bs_gen)	||
160 	    get_user(bstat->bs_projid_lo, &bstat32->bs_projid_lo) ||
161 	    get_user(bstat->bs_projid_hi, &bstat32->bs_projid_hi) ||
162 	    get_user(bstat->bs_forkoff,	&bstat32->bs_forkoff)	||
163 	    get_user(bstat->bs_dmevmask, &bstat32->bs_dmevmask)	||
164 	    get_user(bstat->bs_dmstate,	&bstat32->bs_dmstate)	||
165 	    get_user(bstat->bs_aextents, &bstat32->bs_aextents))
166 		return -EFAULT;
167 	return 0;
168 }
169 
170 /* XFS_IOC_FSBULKSTAT and friends */
171 
172 STATIC int
xfs_bstime_store_compat(compat_xfs_bstime_t __user * p32,const xfs_bstime_t * p)173 xfs_bstime_store_compat(
174 	compat_xfs_bstime_t	__user *p32,
175 	const xfs_bstime_t	*p)
176 {
177 	__s32			sec32;
178 
179 	sec32 = p->tv_sec;
180 	if (put_user(sec32, &p32->tv_sec) ||
181 	    put_user(p->tv_nsec, &p32->tv_nsec))
182 		return -EFAULT;
183 	return 0;
184 }
185 
186 /* Return 0 on success or positive error (to xfs_bulkstat()) */
187 STATIC int
xfs_bulkstat_one_fmt_compat(void __user * ubuffer,int ubsize,int * ubused,const xfs_bstat_t * buffer)188 xfs_bulkstat_one_fmt_compat(
189 	void			__user *ubuffer,
190 	int			ubsize,
191 	int			*ubused,
192 	const xfs_bstat_t	*buffer)
193 {
194 	compat_xfs_bstat_t	__user *p32 = ubuffer;
195 
196 	if (ubsize < sizeof(*p32))
197 		return -ENOMEM;
198 
199 	if (put_user(buffer->bs_ino,	  &p32->bs_ino)		||
200 	    put_user(buffer->bs_mode,	  &p32->bs_mode)	||
201 	    put_user(buffer->bs_nlink,	  &p32->bs_nlink)	||
202 	    put_user(buffer->bs_uid,	  &p32->bs_uid)		||
203 	    put_user(buffer->bs_gid,	  &p32->bs_gid)		||
204 	    put_user(buffer->bs_rdev,	  &p32->bs_rdev)	||
205 	    put_user(buffer->bs_blksize,  &p32->bs_blksize)	||
206 	    put_user(buffer->bs_size,	  &p32->bs_size)	||
207 	    xfs_bstime_store_compat(&p32->bs_atime, &buffer->bs_atime) ||
208 	    xfs_bstime_store_compat(&p32->bs_mtime, &buffer->bs_mtime) ||
209 	    xfs_bstime_store_compat(&p32->bs_ctime, &buffer->bs_ctime) ||
210 	    put_user(buffer->bs_blocks,	  &p32->bs_blocks)	||
211 	    put_user(buffer->bs_xflags,	  &p32->bs_xflags)	||
212 	    put_user(buffer->bs_extsize,  &p32->bs_extsize)	||
213 	    put_user(buffer->bs_extents,  &p32->bs_extents)	||
214 	    put_user(buffer->bs_gen,	  &p32->bs_gen)		||
215 	    put_user(buffer->bs_projid,	  &p32->bs_projid)	||
216 	    put_user(buffer->bs_projid_hi,	&p32->bs_projid_hi)	||
217 	    put_user(buffer->bs_forkoff,  &p32->bs_forkoff)	||
218 	    put_user(buffer->bs_dmevmask, &p32->bs_dmevmask)	||
219 	    put_user(buffer->bs_dmstate,  &p32->bs_dmstate)	||
220 	    put_user(buffer->bs_aextents, &p32->bs_aextents))
221 		return -EFAULT;
222 	if (ubused)
223 		*ubused = sizeof(*p32);
224 	return 0;
225 }
226 
227 STATIC int
xfs_bulkstat_one_compat(xfs_mount_t * mp,xfs_ino_t ino,void __user * buffer,int ubsize,int * ubused,int * stat)228 xfs_bulkstat_one_compat(
229 	xfs_mount_t	*mp,		/* mount point for filesystem */
230 	xfs_ino_t	ino,		/* inode number to get data for */
231 	void		__user *buffer,	/* buffer to place output in */
232 	int		ubsize,		/* size of buffer */
233 	int		*ubused,	/* bytes used by me */
234 	int		*stat)		/* BULKSTAT_RV_... */
235 {
236 	return xfs_bulkstat_one_int(mp, ino, buffer, ubsize,
237 				    xfs_bulkstat_one_fmt_compat,
238 				    ubused, stat);
239 }
240 
241 /* copied from xfs_ioctl.c */
242 STATIC int
xfs_compat_ioc_bulkstat(xfs_mount_t * mp,unsigned int cmd,compat_xfs_fsop_bulkreq_t __user * p32)243 xfs_compat_ioc_bulkstat(
244 	xfs_mount_t		  *mp,
245 	unsigned int		  cmd,
246 	compat_xfs_fsop_bulkreq_t __user *p32)
247 {
248 	u32			addr;
249 	xfs_fsop_bulkreq_t	bulkreq;
250 	int			count;	/* # of records returned */
251 	xfs_ino_t		inlast;	/* last inode number */
252 	int			done;
253 	int			error;
254 
255 	/*
256 	 * Output structure handling functions.  Depending on the command,
257 	 * either the xfs_bstat and xfs_inogrp structures are written out
258 	 * to userpace memory via bulkreq.ubuffer.  Normally the compat
259 	 * functions and structure size are the correct ones to use ...
260 	 */
261 	inumbers_fmt_pf inumbers_func = xfs_inumbers_fmt_compat;
262 	bulkstat_one_pf	bs_one_func = xfs_bulkstat_one_compat;
263 	size_t bs_one_size = sizeof(struct compat_xfs_bstat);
264 
265 #ifdef CONFIG_X86_X32
266 	if (in_x32_syscall()) {
267 		/*
268 		 * ... but on x32 the input xfs_fsop_bulkreq has pointers
269 		 * which must be handled in the "compat" (32-bit) way, while
270 		 * the xfs_bstat and xfs_inogrp structures follow native 64-
271 		 * bit layout convention.  So adjust accordingly, otherwise
272 		 * the data written out in compat layout will not match what
273 		 * x32 userspace expects.
274 		 */
275 		inumbers_func = xfs_inumbers_fmt;
276 		bs_one_func = xfs_bulkstat_one;
277 		bs_one_size = sizeof(struct xfs_bstat);
278 	}
279 #endif
280 
281 	/* done = 1 if there are more stats to get and if bulkstat */
282 	/* should be called again (unused here, but used in dmapi) */
283 
284 	if (!capable(CAP_SYS_ADMIN))
285 		return -EPERM;
286 
287 	if (XFS_FORCED_SHUTDOWN(mp))
288 		return -EIO;
289 
290 	if (get_user(addr, &p32->lastip))
291 		return -EFAULT;
292 	bulkreq.lastip = compat_ptr(addr);
293 	if (get_user(bulkreq.icount, &p32->icount) ||
294 	    get_user(addr, &p32->ubuffer))
295 		return -EFAULT;
296 	bulkreq.ubuffer = compat_ptr(addr);
297 	if (get_user(addr, &p32->ocount))
298 		return -EFAULT;
299 	bulkreq.ocount = compat_ptr(addr);
300 
301 	if (copy_from_user(&inlast, bulkreq.lastip, sizeof(__s64)))
302 		return -EFAULT;
303 
304 	if ((count = bulkreq.icount) <= 0)
305 		return -EINVAL;
306 
307 	if (bulkreq.ubuffer == NULL)
308 		return -EINVAL;
309 
310 	if (cmd == XFS_IOC_FSINUMBERS_32) {
311 		error = xfs_inumbers(mp, &inlast, &count,
312 				bulkreq.ubuffer, inumbers_func);
313 	} else if (cmd == XFS_IOC_FSBULKSTAT_SINGLE_32) {
314 		int res;
315 
316 		error = bs_one_func(mp, inlast, bulkreq.ubuffer,
317 				bs_one_size, NULL, &res);
318 	} else if (cmd == XFS_IOC_FSBULKSTAT_32) {
319 		error = xfs_bulkstat(mp, &inlast, &count,
320 			bs_one_func, bs_one_size,
321 			bulkreq.ubuffer, &done);
322 	} else
323 		error = -EINVAL;
324 	if (error)
325 		return error;
326 
327 	if (bulkreq.ocount != NULL) {
328 		if (copy_to_user(bulkreq.lastip, &inlast,
329 						sizeof(xfs_ino_t)))
330 			return -EFAULT;
331 
332 		if (copy_to_user(bulkreq.ocount, &count, sizeof(count)))
333 			return -EFAULT;
334 	}
335 
336 	return 0;
337 }
338 
339 STATIC int
xfs_compat_handlereq_copyin(xfs_fsop_handlereq_t * hreq,compat_xfs_fsop_handlereq_t __user * arg32)340 xfs_compat_handlereq_copyin(
341 	xfs_fsop_handlereq_t		*hreq,
342 	compat_xfs_fsop_handlereq_t	__user *arg32)
343 {
344 	compat_xfs_fsop_handlereq_t	hreq32;
345 
346 	if (copy_from_user(&hreq32, arg32, sizeof(compat_xfs_fsop_handlereq_t)))
347 		return -EFAULT;
348 
349 	hreq->fd = hreq32.fd;
350 	hreq->path = compat_ptr(hreq32.path);
351 	hreq->oflags = hreq32.oflags;
352 	hreq->ihandle = compat_ptr(hreq32.ihandle);
353 	hreq->ihandlen = hreq32.ihandlen;
354 	hreq->ohandle = compat_ptr(hreq32.ohandle);
355 	hreq->ohandlen = compat_ptr(hreq32.ohandlen);
356 
357 	return 0;
358 }
359 
360 STATIC struct dentry *
xfs_compat_handlereq_to_dentry(struct file * parfilp,compat_xfs_fsop_handlereq_t * hreq)361 xfs_compat_handlereq_to_dentry(
362 	struct file		*parfilp,
363 	compat_xfs_fsop_handlereq_t *hreq)
364 {
365 	return xfs_handle_to_dentry(parfilp,
366 			compat_ptr(hreq->ihandle), hreq->ihandlen);
367 }
368 
369 STATIC int
xfs_compat_attrlist_by_handle(struct file * parfilp,void __user * arg)370 xfs_compat_attrlist_by_handle(
371 	struct file		*parfilp,
372 	void			__user *arg)
373 {
374 	int			error;
375 	attrlist_cursor_kern_t	*cursor;
376 	compat_xfs_fsop_attrlist_handlereq_t __user *p = arg;
377 	compat_xfs_fsop_attrlist_handlereq_t al_hreq;
378 	struct dentry		*dentry;
379 	char			*kbuf;
380 
381 	if (!capable(CAP_SYS_ADMIN))
382 		return -EPERM;
383 	if (copy_from_user(&al_hreq, arg,
384 			   sizeof(compat_xfs_fsop_attrlist_handlereq_t)))
385 		return -EFAULT;
386 	if (al_hreq.buflen < sizeof(struct attrlist) ||
387 	    al_hreq.buflen > XFS_XATTR_LIST_MAX)
388 		return -EINVAL;
389 
390 	/*
391 	 * Reject flags, only allow namespaces.
392 	 */
393 	if (al_hreq.flags & ~(ATTR_ROOT | ATTR_SECURE))
394 		return -EINVAL;
395 
396 	dentry = xfs_compat_handlereq_to_dentry(parfilp, &al_hreq.hreq);
397 	if (IS_ERR(dentry))
398 		return PTR_ERR(dentry);
399 
400 	error = -ENOMEM;
401 	kbuf = kmem_zalloc_large(al_hreq.buflen, KM_SLEEP);
402 	if (!kbuf)
403 		goto out_dput;
404 
405 	cursor = (attrlist_cursor_kern_t *)&al_hreq.pos;
406 	error = xfs_attr_list(XFS_I(d_inode(dentry)), kbuf, al_hreq.buflen,
407 					al_hreq.flags, cursor);
408 	if (error)
409 		goto out_kfree;
410 
411 	if (copy_to_user(&p->pos, cursor, sizeof(attrlist_cursor_kern_t))) {
412 		error = -EFAULT;
413 		goto out_kfree;
414 	}
415 
416 	if (copy_to_user(compat_ptr(al_hreq.buffer), kbuf, al_hreq.buflen))
417 		error = -EFAULT;
418 
419 out_kfree:
420 	kmem_free(kbuf);
421 out_dput:
422 	dput(dentry);
423 	return error;
424 }
425 
426 STATIC int
xfs_compat_attrmulti_by_handle(struct file * parfilp,void __user * arg)427 xfs_compat_attrmulti_by_handle(
428 	struct file				*parfilp,
429 	void					__user *arg)
430 {
431 	int					error;
432 	compat_xfs_attr_multiop_t		*ops;
433 	compat_xfs_fsop_attrmulti_handlereq_t	am_hreq;
434 	struct dentry				*dentry;
435 	unsigned int				i, size;
436 	unsigned char				*attr_name;
437 
438 	if (!capable(CAP_SYS_ADMIN))
439 		return -EPERM;
440 	if (copy_from_user(&am_hreq, arg,
441 			   sizeof(compat_xfs_fsop_attrmulti_handlereq_t)))
442 		return -EFAULT;
443 
444 	/* overflow check */
445 	if (am_hreq.opcount >= INT_MAX / sizeof(compat_xfs_attr_multiop_t))
446 		return -E2BIG;
447 
448 	dentry = xfs_compat_handlereq_to_dentry(parfilp, &am_hreq.hreq);
449 	if (IS_ERR(dentry))
450 		return PTR_ERR(dentry);
451 
452 	error = -E2BIG;
453 	size = am_hreq.opcount * sizeof(compat_xfs_attr_multiop_t);
454 	if (!size || size > 16 * PAGE_SIZE)
455 		goto out_dput;
456 
457 	ops = memdup_user(compat_ptr(am_hreq.ops), size);
458 	if (IS_ERR(ops)) {
459 		error = PTR_ERR(ops);
460 		goto out_dput;
461 	}
462 
463 	error = -ENOMEM;
464 	attr_name = kmalloc(MAXNAMELEN, GFP_KERNEL);
465 	if (!attr_name)
466 		goto out_kfree_ops;
467 
468 	error = 0;
469 	for (i = 0; i < am_hreq.opcount; i++) {
470 		ops[i].am_error = strncpy_from_user((char *)attr_name,
471 				compat_ptr(ops[i].am_attrname),
472 				MAXNAMELEN);
473 		if (ops[i].am_error == 0 || ops[i].am_error == MAXNAMELEN)
474 			error = -ERANGE;
475 		if (ops[i].am_error < 0)
476 			break;
477 
478 		switch (ops[i].am_opcode) {
479 		case ATTR_OP_GET:
480 			ops[i].am_error = xfs_attrmulti_attr_get(
481 					d_inode(dentry), attr_name,
482 					compat_ptr(ops[i].am_attrvalue),
483 					&ops[i].am_length, ops[i].am_flags);
484 			break;
485 		case ATTR_OP_SET:
486 			ops[i].am_error = mnt_want_write_file(parfilp);
487 			if (ops[i].am_error)
488 				break;
489 			ops[i].am_error = xfs_attrmulti_attr_set(
490 					d_inode(dentry), attr_name,
491 					compat_ptr(ops[i].am_attrvalue),
492 					ops[i].am_length, ops[i].am_flags);
493 			mnt_drop_write_file(parfilp);
494 			break;
495 		case ATTR_OP_REMOVE:
496 			ops[i].am_error = mnt_want_write_file(parfilp);
497 			if (ops[i].am_error)
498 				break;
499 			ops[i].am_error = xfs_attrmulti_attr_remove(
500 					d_inode(dentry), attr_name,
501 					ops[i].am_flags);
502 			mnt_drop_write_file(parfilp);
503 			break;
504 		default:
505 			ops[i].am_error = -EINVAL;
506 		}
507 	}
508 
509 	if (copy_to_user(compat_ptr(am_hreq.ops), ops, size))
510 		error = -EFAULT;
511 
512 	kfree(attr_name);
513  out_kfree_ops:
514 	kfree(ops);
515  out_dput:
516 	dput(dentry);
517 	return error;
518 }
519 
520 STATIC int
xfs_compat_fssetdm_by_handle(struct file * parfilp,void __user * arg)521 xfs_compat_fssetdm_by_handle(
522 	struct file		*parfilp,
523 	void			__user *arg)
524 {
525 	int			error;
526 	struct fsdmidata	fsd;
527 	compat_xfs_fsop_setdm_handlereq_t dmhreq;
528 	struct dentry		*dentry;
529 
530 	if (!capable(CAP_MKNOD))
531 		return -EPERM;
532 	if (copy_from_user(&dmhreq, arg,
533 			   sizeof(compat_xfs_fsop_setdm_handlereq_t)))
534 		return -EFAULT;
535 
536 	dentry = xfs_compat_handlereq_to_dentry(parfilp, &dmhreq.hreq);
537 	if (IS_ERR(dentry))
538 		return PTR_ERR(dentry);
539 
540 	if (IS_IMMUTABLE(d_inode(dentry)) || IS_APPEND(d_inode(dentry))) {
541 		error = -EPERM;
542 		goto out;
543 	}
544 
545 	if (copy_from_user(&fsd, compat_ptr(dmhreq.data), sizeof(fsd))) {
546 		error = -EFAULT;
547 		goto out;
548 	}
549 
550 	error = xfs_set_dmattrs(XFS_I(d_inode(dentry)), fsd.fsd_dmevmask,
551 				 fsd.fsd_dmstate);
552 
553 out:
554 	dput(dentry);
555 	return error;
556 }
557 
558 long
xfs_file_compat_ioctl(struct file * filp,unsigned cmd,unsigned long p)559 xfs_file_compat_ioctl(
560 	struct file		*filp,
561 	unsigned		cmd,
562 	unsigned long		p)
563 {
564 	struct inode		*inode = file_inode(filp);
565 	struct xfs_inode	*ip = XFS_I(inode);
566 	struct xfs_mount	*mp = ip->i_mount;
567 	void			__user *arg = (void __user *)p;
568 	int			error;
569 
570 	trace_xfs_file_compat_ioctl(ip);
571 
572 	switch (cmd) {
573 	/* No size or alignment issues on any arch */
574 	case XFS_IOC_DIOINFO:
575 	case XFS_IOC_FSGEOMETRY:
576 	case XFS_IOC_FSGETXATTR:
577 	case XFS_IOC_FSSETXATTR:
578 	case XFS_IOC_FSGETXATTRA:
579 	case XFS_IOC_FSSETDM:
580 	case XFS_IOC_GETBMAP:
581 	case XFS_IOC_GETBMAPA:
582 	case XFS_IOC_GETBMAPX:
583 	case XFS_IOC_FSCOUNTS:
584 	case XFS_IOC_SET_RESBLKS:
585 	case XFS_IOC_GET_RESBLKS:
586 	case XFS_IOC_FSGROWFSLOG:
587 	case XFS_IOC_GOINGDOWN:
588 	case XFS_IOC_ERROR_INJECTION:
589 	case XFS_IOC_ERROR_CLEARALL:
590 	case FS_IOC_GETFSMAP:
591 		return xfs_file_ioctl(filp, cmd, p);
592 #ifndef BROKEN_X86_ALIGNMENT
593 	/* These are handled fine if no alignment issues */
594 	case XFS_IOC_ALLOCSP:
595 	case XFS_IOC_FREESP:
596 	case XFS_IOC_RESVSP:
597 	case XFS_IOC_UNRESVSP:
598 	case XFS_IOC_ALLOCSP64:
599 	case XFS_IOC_FREESP64:
600 	case XFS_IOC_RESVSP64:
601 	case XFS_IOC_UNRESVSP64:
602 	case XFS_IOC_FSGEOMETRY_V1:
603 	case XFS_IOC_FSGROWFSDATA:
604 	case XFS_IOC_FSGROWFSRT:
605 	case XFS_IOC_ZERO_RANGE:
606 		return xfs_file_ioctl(filp, cmd, p);
607 #else
608 	case XFS_IOC_ALLOCSP_32:
609 	case XFS_IOC_FREESP_32:
610 	case XFS_IOC_ALLOCSP64_32:
611 	case XFS_IOC_FREESP64_32:
612 	case XFS_IOC_RESVSP_32:
613 	case XFS_IOC_UNRESVSP_32:
614 	case XFS_IOC_RESVSP64_32:
615 	case XFS_IOC_UNRESVSP64_32:
616 	case XFS_IOC_ZERO_RANGE_32: {
617 		struct xfs_flock64	bf;
618 
619 		if (xfs_compat_flock64_copyin(&bf, arg))
620 			return -EFAULT;
621 		cmd = _NATIVE_IOC(cmd, struct xfs_flock64);
622 		return xfs_ioc_space(filp, cmd, &bf);
623 	}
624 	case XFS_IOC_FSGEOMETRY_V1_32:
625 		return xfs_compat_ioc_fsgeometry_v1(mp, arg);
626 	case XFS_IOC_FSGROWFSDATA_32: {
627 		struct xfs_growfs_data	in;
628 
629 		if (xfs_compat_growfs_data_copyin(&in, arg))
630 			return -EFAULT;
631 		error = mnt_want_write_file(filp);
632 		if (error)
633 			return error;
634 		error = xfs_growfs_data(mp, &in);
635 		mnt_drop_write_file(filp);
636 		return error;
637 	}
638 	case XFS_IOC_FSGROWFSRT_32: {
639 		struct xfs_growfs_rt	in;
640 
641 		if (xfs_compat_growfs_rt_copyin(&in, arg))
642 			return -EFAULT;
643 		error = mnt_want_write_file(filp);
644 		if (error)
645 			return error;
646 		error = xfs_growfs_rt(mp, &in);
647 		mnt_drop_write_file(filp);
648 		return error;
649 	}
650 #endif
651 	/* long changes size, but xfs only copiese out 32 bits */
652 	case XFS_IOC_GETXFLAGS_32:
653 	case XFS_IOC_SETXFLAGS_32:
654 	case XFS_IOC_GETVERSION_32:
655 		cmd = _NATIVE_IOC(cmd, long);
656 		return xfs_file_ioctl(filp, cmd, p);
657 	case XFS_IOC_SWAPEXT_32: {
658 		struct xfs_swapext	  sxp;
659 		struct compat_xfs_swapext __user *sxu = arg;
660 
661 		/* Bulk copy in up to the sx_stat field, then copy bstat */
662 		if (copy_from_user(&sxp, sxu,
663 				   offsetof(struct xfs_swapext, sx_stat)) ||
664 		    xfs_ioctl32_bstat_copyin(&sxp.sx_stat, &sxu->sx_stat))
665 			return -EFAULT;
666 		error = mnt_want_write_file(filp);
667 		if (error)
668 			return error;
669 		error = xfs_ioc_swapext(&sxp);
670 		mnt_drop_write_file(filp);
671 		return error;
672 	}
673 	case XFS_IOC_FSBULKSTAT_32:
674 	case XFS_IOC_FSBULKSTAT_SINGLE_32:
675 	case XFS_IOC_FSINUMBERS_32:
676 		return xfs_compat_ioc_bulkstat(mp, cmd, arg);
677 	case XFS_IOC_FD_TO_HANDLE_32:
678 	case XFS_IOC_PATH_TO_HANDLE_32:
679 	case XFS_IOC_PATH_TO_FSHANDLE_32: {
680 		struct xfs_fsop_handlereq	hreq;
681 
682 		if (xfs_compat_handlereq_copyin(&hreq, arg))
683 			return -EFAULT;
684 		cmd = _NATIVE_IOC(cmd, struct xfs_fsop_handlereq);
685 		return xfs_find_handle(cmd, &hreq);
686 	}
687 	case XFS_IOC_OPEN_BY_HANDLE_32: {
688 		struct xfs_fsop_handlereq	hreq;
689 
690 		if (xfs_compat_handlereq_copyin(&hreq, arg))
691 			return -EFAULT;
692 		return xfs_open_by_handle(filp, &hreq);
693 	}
694 	case XFS_IOC_READLINK_BY_HANDLE_32: {
695 		struct xfs_fsop_handlereq	hreq;
696 
697 		if (xfs_compat_handlereq_copyin(&hreq, arg))
698 			return -EFAULT;
699 		return xfs_readlink_by_handle(filp, &hreq);
700 	}
701 	case XFS_IOC_ATTRLIST_BY_HANDLE_32:
702 		return xfs_compat_attrlist_by_handle(filp, arg);
703 	case XFS_IOC_ATTRMULTI_BY_HANDLE_32:
704 		return xfs_compat_attrmulti_by_handle(filp, arg);
705 	case XFS_IOC_FSSETDM_BY_HANDLE_32:
706 		return xfs_compat_fssetdm_by_handle(filp, arg);
707 	default:
708 		return -ENOIOCTLCMD;
709 	}
710 }
711