fuse: add inode/permission checks to fileattr_get/fileattr_set
authorAlexander Mikhalitsyn <aleksandr.mikhalitsyn@canonical.com>
Thu, 26 Jan 2023 10:23:18 +0000 (11:23 +0100)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Fri, 10 Mar 2023 08:34:24 +0000 (09:34 +0100)
commit 1cc4606d19e3710bfab3f6704b87ff9580493c69 upstream.

It looks like these checks were accidentally lost during the conversion to
fileattr API.

Fixes: 72227eac177d ("fuse: convert to fileattr")
Cc: <stable@vger.kernel.org> # v5.13
Signed-off-by: Alexander Mikhalitsyn <aleksandr.mikhalitsyn@canonical.com>
Signed-off-by: Miklos Szeredi <mszeredi@redhat.com>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
fs/fuse/ioctl.c

index fcce94a..8ba1545 100644 (file)
@@ -419,6 +419,12 @@ static struct fuse_file *fuse_priv_ioctl_prepare(struct inode *inode)
        struct fuse_mount *fm = get_fuse_mount(inode);
        bool isdir = S_ISDIR(inode->i_mode);
 
+       if (!fuse_allow_current_process(fm->fc))
+               return ERR_PTR(-EACCES);
+
+       if (fuse_is_bad(inode))
+               return ERR_PTR(-EIO);
+
        if (!S_ISREG(inode->i_mode) && !isdir)
                return ERR_PTR(-ENOTTY);