ext4: fix undefined behavior in ext4_fill_flex_info()
[profile/ivi/kernel-adaptation-intel-automotive.git] / fs / ext4 / ioctl.c
1 /*
2  * linux/fs/ext4/ioctl.c
3  *
4  * Copyright (C) 1993, 1994, 1995
5  * Remy Card (card@masi.ibp.fr)
6  * Laboratoire MASI - Institut Blaise Pascal
7  * Universite Pierre et Marie Curie (Paris VI)
8  */
9
10 #include <linux/fs.h>
11 #include <linux/jbd2.h>
12 #include <linux/capability.h>
13 #include <linux/time.h>
14 #include <linux/compat.h>
15 #include <linux/mount.h>
16 #include <linux/file.h>
17 #include <asm/uaccess.h>
18 #include "ext4_jbd2.h"
19 #include "ext4.h"
20
21 #define MAX_32_NUM ((((unsigned long long) 1) << 32) - 1)
22
23 long ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg)
24 {
25         struct inode *inode = filp->f_dentry->d_inode;
26         struct super_block *sb = inode->i_sb;
27         struct ext4_inode_info *ei = EXT4_I(inode);
28         unsigned int flags;
29
30         ext4_debug("cmd = %u, arg = %lu\n", cmd, arg);
31
32         switch (cmd) {
33         case EXT4_IOC_GETFLAGS:
34                 ext4_get_inode_flags(ei);
35                 flags = ei->i_flags & EXT4_FL_USER_VISIBLE;
36                 return put_user(flags, (int __user *) arg);
37         case EXT4_IOC_SETFLAGS: {
38                 handle_t *handle = NULL;
39                 int err, migrate = 0;
40                 struct ext4_iloc iloc;
41                 unsigned int oldflags;
42                 unsigned int jflag;
43
44                 if (!inode_owner_or_capable(inode))
45                         return -EACCES;
46
47                 if (get_user(flags, (int __user *) arg))
48                         return -EFAULT;
49
50                 err = mnt_want_write(filp->f_path.mnt);
51                 if (err)
52                         return err;
53
54                 flags = ext4_mask_flags(inode->i_mode, flags);
55
56                 err = -EPERM;
57                 mutex_lock(&inode->i_mutex);
58                 /* Is it quota file? Do not allow user to mess with it */
59                 if (IS_NOQUOTA(inode))
60                         goto flags_out;
61
62                 oldflags = ei->i_flags;
63
64                 /* The JOURNAL_DATA flag is modifiable only by root */
65                 jflag = flags & EXT4_JOURNAL_DATA_FL;
66
67                 /*
68                  * The IMMUTABLE and APPEND_ONLY flags can only be changed by
69                  * the relevant capability.
70                  *
71                  * This test looks nicer. Thanks to Pauline Middelink
72                  */
73                 if ((flags ^ oldflags) & (EXT4_APPEND_FL | EXT4_IMMUTABLE_FL)) {
74                         if (!capable(CAP_LINUX_IMMUTABLE))
75                                 goto flags_out;
76                 }
77
78                 /*
79                  * The JOURNAL_DATA flag can only be changed by
80                  * the relevant capability.
81                  */
82                 if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) {
83                         if (!capable(CAP_SYS_RESOURCE))
84                                 goto flags_out;
85                 }
86                 if (oldflags & EXT4_EXTENTS_FL) {
87                         /* We don't support clearning extent flags */
88                         if (!(flags & EXT4_EXTENTS_FL)) {
89                                 err = -EOPNOTSUPP;
90                                 goto flags_out;
91                         }
92                 } else if (flags & EXT4_EXTENTS_FL) {
93                         /* migrate the file */
94                         migrate = 1;
95                         flags &= ~EXT4_EXTENTS_FL;
96                 }
97
98                 if (flags & EXT4_EOFBLOCKS_FL) {
99                         /* we don't support adding EOFBLOCKS flag */
100                         if (!(oldflags & EXT4_EOFBLOCKS_FL)) {
101                                 err = -EOPNOTSUPP;
102                                 goto flags_out;
103                         }
104                 } else if (oldflags & EXT4_EOFBLOCKS_FL)
105                         ext4_truncate(inode);
106
107                 handle = ext4_journal_start(inode, 1);
108                 if (IS_ERR(handle)) {
109                         err = PTR_ERR(handle);
110                         goto flags_out;
111                 }
112                 if (IS_SYNC(inode))
113                         ext4_handle_sync(handle);
114                 err = ext4_reserve_inode_write(handle, inode, &iloc);
115                 if (err)
116                         goto flags_err;
117
118                 flags = flags & EXT4_FL_USER_MODIFIABLE;
119                 flags |= oldflags & ~EXT4_FL_USER_MODIFIABLE;
120                 ei->i_flags = flags;
121
122                 ext4_set_inode_flags(inode);
123                 inode->i_ctime = ext4_current_time(inode);
124
125                 err = ext4_mark_iloc_dirty(handle, inode, &iloc);
126 flags_err:
127                 ext4_journal_stop(handle);
128                 if (err)
129                         goto flags_out;
130
131                 if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL))
132                         err = ext4_change_inode_journal_flag(inode, jflag);
133                 if (err)
134                         goto flags_out;
135                 if (migrate)
136                         err = ext4_ext_migrate(inode);
137 flags_out:
138                 mutex_unlock(&inode->i_mutex);
139                 mnt_drop_write(filp->f_path.mnt);
140                 return err;
141         }
142         case EXT4_IOC_GETVERSION:
143         case EXT4_IOC_GETVERSION_OLD:
144                 return put_user(inode->i_generation, (int __user *) arg);
145         case EXT4_IOC_SETVERSION:
146         case EXT4_IOC_SETVERSION_OLD: {
147                 handle_t *handle;
148                 struct ext4_iloc iloc;
149                 __u32 generation;
150                 int err;
151
152                 if (!inode_owner_or_capable(inode))
153                         return -EPERM;
154
155                 err = mnt_want_write(filp->f_path.mnt);
156                 if (err)
157                         return err;
158                 if (get_user(generation, (int __user *) arg)) {
159                         err = -EFAULT;
160                         goto setversion_out;
161                 }
162
163                 handle = ext4_journal_start(inode, 1);
164                 if (IS_ERR(handle)) {
165                         err = PTR_ERR(handle);
166                         goto setversion_out;
167                 }
168                 err = ext4_reserve_inode_write(handle, inode, &iloc);
169                 if (err == 0) {
170                         inode->i_ctime = ext4_current_time(inode);
171                         inode->i_generation = generation;
172                         err = ext4_mark_iloc_dirty(handle, inode, &iloc);
173                 }
174                 ext4_journal_stop(handle);
175 setversion_out:
176                 mnt_drop_write(filp->f_path.mnt);
177                 return err;
178         }
179         case EXT4_IOC_GROUP_EXTEND: {
180                 ext4_fsblk_t n_blocks_count;
181                 int err, err2=0;
182
183                 err = ext4_resize_begin(sb);
184                 if (err)
185                         return err;
186
187                 if (get_user(n_blocks_count, (__u32 __user *)arg)) {
188                         err = -EFAULT;
189                         goto group_extend_out;
190                 }
191
192                 if (EXT4_HAS_RO_COMPAT_FEATURE(sb,
193                                EXT4_FEATURE_RO_COMPAT_BIGALLOC)) {
194                         ext4_msg(sb, KERN_ERR,
195                                  "Online resizing not supported with bigalloc");
196                         err = -EOPNOTSUPP;
197                         goto group_extend_out;
198                 }
199
200                 err = mnt_want_write(filp->f_path.mnt);
201                 if (err)
202                         goto group_extend_out;
203
204                 err = ext4_group_extend(sb, EXT4_SB(sb)->s_es, n_blocks_count);
205                 if (EXT4_SB(sb)->s_journal) {
206                         jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
207                         err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
208                         jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
209                 }
210                 if (err == 0)
211                         err = err2;
212
213                 mnt_drop_write(filp->f_path.mnt);
214 group_extend_out:
215                 ext4_resize_end(sb);
216                 return err;
217         }
218
219         case EXT4_IOC_MOVE_EXT: {
220                 struct move_extent me;
221                 struct file *donor_filp;
222                 int err;
223
224                 if (!(filp->f_mode & FMODE_READ) ||
225                     !(filp->f_mode & FMODE_WRITE))
226                         return -EBADF;
227
228                 if (copy_from_user(&me,
229                         (struct move_extent __user *)arg, sizeof(me)))
230                         return -EFAULT;
231                 me.moved_len = 0;
232
233                 donor_filp = fget(me.donor_fd);
234                 if (!donor_filp)
235                         return -EBADF;
236
237                 if (!(donor_filp->f_mode & FMODE_WRITE)) {
238                         err = -EBADF;
239                         goto mext_out;
240                 }
241
242                 if (EXT4_HAS_RO_COMPAT_FEATURE(sb,
243                                EXT4_FEATURE_RO_COMPAT_BIGALLOC)) {
244                         ext4_msg(sb, KERN_ERR,
245                                  "Online defrag not supported with bigalloc");
246                         return -EOPNOTSUPP;
247                 }
248
249                 err = mnt_want_write(filp->f_path.mnt);
250                 if (err)
251                         goto mext_out;
252
253                 err = ext4_move_extents(filp, donor_filp, me.orig_start,
254                                         me.donor_start, me.len, &me.moved_len);
255                 mnt_drop_write(filp->f_path.mnt);
256
257                 if (copy_to_user((struct move_extent __user *)arg,
258                                  &me, sizeof(me)))
259                         err = -EFAULT;
260 mext_out:
261                 fput(donor_filp);
262                 return err;
263         }
264
265         case EXT4_IOC_GROUP_ADD: {
266                 struct ext4_new_group_data input;
267                 int err, err2=0;
268
269                 err = ext4_resize_begin(sb);
270                 if (err)
271                         return err;
272
273                 if (copy_from_user(&input, (struct ext4_new_group_input __user *)arg,
274                                 sizeof(input))) {
275                         err = -EFAULT;
276                         goto group_add_out;
277                 }
278
279                 if (EXT4_HAS_RO_COMPAT_FEATURE(sb,
280                                EXT4_FEATURE_RO_COMPAT_BIGALLOC)) {
281                         ext4_msg(sb, KERN_ERR,
282                                  "Online resizing not supported with bigalloc");
283                         err = -EOPNOTSUPP;
284                         goto group_add_out;
285                 }
286
287                 err = mnt_want_write(filp->f_path.mnt);
288                 if (err)
289                         goto group_add_out;
290
291                 err = ext4_group_add(sb, &input);
292                 if (EXT4_SB(sb)->s_journal) {
293                         jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
294                         err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
295                         jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
296                 }
297                 if (err == 0)
298                         err = err2;
299
300                 mnt_drop_write(filp->f_path.mnt);
301 group_add_out:
302                 ext4_resize_end(sb);
303                 return err;
304         }
305
306         case EXT4_IOC_MIGRATE:
307         {
308                 int err;
309                 if (!inode_owner_or_capable(inode))
310                         return -EACCES;
311
312                 err = mnt_want_write(filp->f_path.mnt);
313                 if (err)
314                         return err;
315                 /*
316                  * inode_mutex prevent write and truncate on the file.
317                  * Read still goes through. We take i_data_sem in
318                  * ext4_ext_swap_inode_data before we switch the
319                  * inode format to prevent read.
320                  */
321                 mutex_lock(&(inode->i_mutex));
322                 err = ext4_ext_migrate(inode);
323                 mutex_unlock(&(inode->i_mutex));
324                 mnt_drop_write(filp->f_path.mnt);
325                 return err;
326         }
327
328         case EXT4_IOC_ALLOC_DA_BLKS:
329         {
330                 int err;
331                 if (!inode_owner_or_capable(inode))
332                         return -EACCES;
333
334                 err = mnt_want_write(filp->f_path.mnt);
335                 if (err)
336                         return err;
337                 err = ext4_alloc_da_blocks(inode);
338                 mnt_drop_write(filp->f_path.mnt);
339                 return err;
340         }
341
342         case EXT4_IOC_RESIZE_FS: {
343                 ext4_fsblk_t n_blocks_count;
344                 struct super_block *sb = inode->i_sb;
345                 int err = 0, err2 = 0;
346
347                 if (EXT4_HAS_RO_COMPAT_FEATURE(sb,
348                                EXT4_FEATURE_RO_COMPAT_BIGALLOC)) {
349                         ext4_msg(sb, KERN_ERR,
350                                  "Online resizing not (yet) supported with bigalloc");
351                         return -EOPNOTSUPP;
352                 }
353
354                 if (EXT4_HAS_INCOMPAT_FEATURE(sb,
355                                EXT4_FEATURE_INCOMPAT_META_BG)) {
356                         ext4_msg(sb, KERN_ERR,
357                                  "Online resizing not (yet) supported with meta_bg");
358                         return -EOPNOTSUPP;
359                 }
360
361                 if (copy_from_user(&n_blocks_count, (__u64 __user *)arg,
362                                    sizeof(__u64))) {
363                         return -EFAULT;
364                 }
365
366                 if (n_blocks_count > MAX_32_NUM &&
367                     !EXT4_HAS_INCOMPAT_FEATURE(sb,
368                                                EXT4_FEATURE_INCOMPAT_64BIT)) {
369                         ext4_msg(sb, KERN_ERR,
370                                  "File system only supports 32-bit block numbers");
371                         return -EOPNOTSUPP;
372                 }
373
374                 err = ext4_resize_begin(sb);
375                 if (err)
376                         return err;
377
378                 err = mnt_want_write(filp->f_path.mnt);
379                 if (err)
380                         goto resizefs_out;
381
382                 err = ext4_resize_fs(sb, n_blocks_count);
383                 if (EXT4_SB(sb)->s_journal) {
384                         jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
385                         err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
386                         jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
387                 }
388                 if (err == 0)
389                         err = err2;
390                 mnt_drop_write(filp->f_path.mnt);
391 resizefs_out:
392                 ext4_resize_end(sb);
393                 return err;
394         }
395
396         case FITRIM:
397         {
398                 struct request_queue *q = bdev_get_queue(sb->s_bdev);
399                 struct fstrim_range range;
400                 int ret = 0;
401
402                 if (!capable(CAP_SYS_ADMIN))
403                         return -EPERM;
404
405                 if (!blk_queue_discard(q))
406                         return -EOPNOTSUPP;
407
408                 if (EXT4_HAS_RO_COMPAT_FEATURE(sb,
409                                EXT4_FEATURE_RO_COMPAT_BIGALLOC)) {
410                         ext4_msg(sb, KERN_ERR,
411                                  "FITRIM not supported with bigalloc");
412                         return -EOPNOTSUPP;
413                 }
414
415                 if (copy_from_user(&range, (struct fstrim_range __user *)arg,
416                     sizeof(range)))
417                         return -EFAULT;
418
419                 range.minlen = max((unsigned int)range.minlen,
420                                    q->limits.discard_granularity);
421                 ret = ext4_trim_fs(sb, &range);
422                 if (ret < 0)
423                         return ret;
424
425                 if (copy_to_user((struct fstrim_range __user *)arg, &range,
426                     sizeof(range)))
427                         return -EFAULT;
428
429                 return 0;
430         }
431
432         default:
433                 return -ENOTTY;
434         }
435 }
436
437 #ifdef CONFIG_COMPAT
438 long ext4_compat_ioctl(struct file *file, unsigned int cmd, unsigned long arg)
439 {
440         /* These are just misnamed, they actually get/put from/to user an int */
441         switch (cmd) {
442         case EXT4_IOC32_GETFLAGS:
443                 cmd = EXT4_IOC_GETFLAGS;
444                 break;
445         case EXT4_IOC32_SETFLAGS:
446                 cmd = EXT4_IOC_SETFLAGS;
447                 break;
448         case EXT4_IOC32_GETVERSION:
449                 cmd = EXT4_IOC_GETVERSION;
450                 break;
451         case EXT4_IOC32_SETVERSION:
452                 cmd = EXT4_IOC_SETVERSION;
453                 break;
454         case EXT4_IOC32_GROUP_EXTEND:
455                 cmd = EXT4_IOC_GROUP_EXTEND;
456                 break;
457         case EXT4_IOC32_GETVERSION_OLD:
458                 cmd = EXT4_IOC_GETVERSION_OLD;
459                 break;
460         case EXT4_IOC32_SETVERSION_OLD:
461                 cmd = EXT4_IOC_SETVERSION_OLD;
462                 break;
463         case EXT4_IOC32_GETRSVSZ:
464                 cmd = EXT4_IOC_GETRSVSZ;
465                 break;
466         case EXT4_IOC32_SETRSVSZ:
467                 cmd = EXT4_IOC_SETRSVSZ;
468                 break;
469         case EXT4_IOC32_GROUP_ADD: {
470                 struct compat_ext4_new_group_input __user *uinput;
471                 struct ext4_new_group_input input;
472                 mm_segment_t old_fs;
473                 int err;
474
475                 uinput = compat_ptr(arg);
476                 err = get_user(input.group, &uinput->group);
477                 err |= get_user(input.block_bitmap, &uinput->block_bitmap);
478                 err |= get_user(input.inode_bitmap, &uinput->inode_bitmap);
479                 err |= get_user(input.inode_table, &uinput->inode_table);
480                 err |= get_user(input.blocks_count, &uinput->blocks_count);
481                 err |= get_user(input.reserved_blocks,
482                                 &uinput->reserved_blocks);
483                 if (err)
484                         return -EFAULT;
485                 old_fs = get_fs();
486                 set_fs(KERNEL_DS);
487                 err = ext4_ioctl(file, EXT4_IOC_GROUP_ADD,
488                                  (unsigned long) &input);
489                 set_fs(old_fs);
490                 return err;
491         }
492         case EXT4_IOC_MOVE_EXT:
493         case FITRIM:
494         case EXT4_IOC_RESIZE_FS:
495                 break;
496         default:
497                 return -ENOIOCTLCMD;
498         }
499         return ext4_ioctl(file, cmd, (unsigned long) compat_ptr(arg));
500 }
501 #endif