xref: /openbmc/linux/fs/eventfd.c (revision 133890103b9de08904f909995973e4b5c08a780e)
1e1ad7468SDavide Libenzi /*
2e1ad7468SDavide Libenzi  *  fs/eventfd.c
3e1ad7468SDavide Libenzi  *
4e1ad7468SDavide Libenzi  *  Copyright (C) 2007  Davide Libenzi <davidel@xmailserver.org>
5e1ad7468SDavide Libenzi  *
6e1ad7468SDavide Libenzi  */
7e1ad7468SDavide Libenzi 
8e1ad7468SDavide Libenzi #include <linux/file.h>
9e1ad7468SDavide Libenzi #include <linux/poll.h>
10e1ad7468SDavide Libenzi #include <linux/init.h>
11e1ad7468SDavide Libenzi #include <linux/fs.h>
12e1ad7468SDavide Libenzi #include <linux/sched.h>
13e1ad7468SDavide Libenzi #include <linux/kernel.h>
14e1ad7468SDavide Libenzi #include <linux/list.h>
15e1ad7468SDavide Libenzi #include <linux/spinlock.h>
16e1ad7468SDavide Libenzi #include <linux/anon_inodes.h>
177747cdb2SAdrian Bunk #include <linux/syscalls.h>
185718607bSRusty Russell #include <linux/module.h>
19*13389010SDavide Libenzi #include <linux/kref.h>
20*13389010SDavide Libenzi #include <linux/eventfd.h>
21e1ad7468SDavide Libenzi 
22e1ad7468SDavide Libenzi struct eventfd_ctx {
23*13389010SDavide Libenzi 	struct kref kref;
24e1ad7468SDavide Libenzi 	wait_queue_head_t wqh;
25e1ad7468SDavide Libenzi 	/*
26e1ad7468SDavide Libenzi 	 * Every time that a write(2) is performed on an eventfd, the
27e1ad7468SDavide Libenzi 	 * value of the __u64 being written is added to "count" and a
28e1ad7468SDavide Libenzi 	 * wakeup is performed on "wqh". A read(2) will return the "count"
29e1ad7468SDavide Libenzi 	 * value to userspace, and will reset "count" to zero. The kernel
30*13389010SDavide Libenzi 	 * side eventfd_signal() also, adds to the "count" counter and
31e1ad7468SDavide Libenzi 	 * issue a wakeup.
32e1ad7468SDavide Libenzi 	 */
33e1ad7468SDavide Libenzi 	__u64 count;
34bcd0b235SDavide Libenzi 	unsigned int flags;
35e1ad7468SDavide Libenzi };
36e1ad7468SDavide Libenzi 
37*13389010SDavide Libenzi /**
38*13389010SDavide Libenzi  * eventfd_signal - Adds @n to the eventfd counter.
39*13389010SDavide Libenzi  * @ctx: [in] Pointer to the eventfd context.
40*13389010SDavide Libenzi  * @n: [in] Value of the counter to be added to the eventfd internal counter.
41*13389010SDavide Libenzi  *          The value cannot be negative.
42*13389010SDavide Libenzi  *
43*13389010SDavide Libenzi  * This function is supposed to be called by the kernel in paths that do not
44*13389010SDavide Libenzi  * allow sleeping. In this function we allow the counter to reach the ULLONG_MAX
45*13389010SDavide Libenzi  * value, and we signal this as overflow condition by returining a POLLERR
46*13389010SDavide Libenzi  * to poll(2).
47*13389010SDavide Libenzi  *
48*13389010SDavide Libenzi  * Returns @n in case of success, a non-negative number lower than @n in case
49*13389010SDavide Libenzi  * of overflow, or the following error codes:
50*13389010SDavide Libenzi  *
51*13389010SDavide Libenzi  * -EINVAL    : The value of @n is negative.
52e1ad7468SDavide Libenzi  */
53*13389010SDavide Libenzi int eventfd_signal(struct eventfd_ctx *ctx, int n)
54e1ad7468SDavide Libenzi {
55e1ad7468SDavide Libenzi 	unsigned long flags;
56e1ad7468SDavide Libenzi 
57e1ad7468SDavide Libenzi 	if (n < 0)
58e1ad7468SDavide Libenzi 		return -EINVAL;
59d48eb233SDavide Libenzi 	spin_lock_irqsave(&ctx->wqh.lock, flags);
60e1ad7468SDavide Libenzi 	if (ULLONG_MAX - ctx->count < n)
61e1ad7468SDavide Libenzi 		n = (int) (ULLONG_MAX - ctx->count);
62e1ad7468SDavide Libenzi 	ctx->count += n;
63e1ad7468SDavide Libenzi 	if (waitqueue_active(&ctx->wqh))
6439510888SDavide Libenzi 		wake_up_locked_poll(&ctx->wqh, POLLIN);
65d48eb233SDavide Libenzi 	spin_unlock_irqrestore(&ctx->wqh.lock, flags);
66e1ad7468SDavide Libenzi 
67e1ad7468SDavide Libenzi 	return n;
68e1ad7468SDavide Libenzi }
695718607bSRusty Russell EXPORT_SYMBOL_GPL(eventfd_signal);
70e1ad7468SDavide Libenzi 
71*13389010SDavide Libenzi static void eventfd_free(struct kref *kref)
72*13389010SDavide Libenzi {
73*13389010SDavide Libenzi 	struct eventfd_ctx *ctx = container_of(kref, struct eventfd_ctx, kref);
74*13389010SDavide Libenzi 
75*13389010SDavide Libenzi 	kfree(ctx);
76*13389010SDavide Libenzi }
77*13389010SDavide Libenzi 
78*13389010SDavide Libenzi /**
79*13389010SDavide Libenzi  * eventfd_ctx_get - Acquires a reference to the internal eventfd context.
80*13389010SDavide Libenzi  * @ctx: [in] Pointer to the eventfd context.
81*13389010SDavide Libenzi  *
82*13389010SDavide Libenzi  * Returns: In case of success, returns a pointer to the eventfd context.
83*13389010SDavide Libenzi  */
84*13389010SDavide Libenzi struct eventfd_ctx *eventfd_ctx_get(struct eventfd_ctx *ctx)
85*13389010SDavide Libenzi {
86*13389010SDavide Libenzi 	kref_get(&ctx->kref);
87*13389010SDavide Libenzi 	return ctx;
88*13389010SDavide Libenzi }
89*13389010SDavide Libenzi EXPORT_SYMBOL_GPL(eventfd_ctx_get);
90*13389010SDavide Libenzi 
91*13389010SDavide Libenzi /**
92*13389010SDavide Libenzi  * eventfd_ctx_put - Releases a reference to the internal eventfd context.
93*13389010SDavide Libenzi  * @ctx: [in] Pointer to eventfd context.
94*13389010SDavide Libenzi  *
95*13389010SDavide Libenzi  * The eventfd context reference must have been previously acquired either
96*13389010SDavide Libenzi  * with eventfd_ctx_get() or eventfd_ctx_fdget()).
97*13389010SDavide Libenzi  */
98*13389010SDavide Libenzi void eventfd_ctx_put(struct eventfd_ctx *ctx)
99*13389010SDavide Libenzi {
100*13389010SDavide Libenzi 	kref_put(&ctx->kref, eventfd_free);
101*13389010SDavide Libenzi }
102*13389010SDavide Libenzi EXPORT_SYMBOL_GPL(eventfd_ctx_put);
103*13389010SDavide Libenzi 
104e1ad7468SDavide Libenzi static int eventfd_release(struct inode *inode, struct file *file)
105e1ad7468SDavide Libenzi {
106*13389010SDavide Libenzi 	struct eventfd_ctx *ctx = file->private_data;
107*13389010SDavide Libenzi 
108*13389010SDavide Libenzi 	wake_up_poll(&ctx->wqh, POLLHUP);
109*13389010SDavide Libenzi 	eventfd_ctx_put(ctx);
110e1ad7468SDavide Libenzi 	return 0;
111e1ad7468SDavide Libenzi }
112e1ad7468SDavide Libenzi 
113e1ad7468SDavide Libenzi static unsigned int eventfd_poll(struct file *file, poll_table *wait)
114e1ad7468SDavide Libenzi {
115e1ad7468SDavide Libenzi 	struct eventfd_ctx *ctx = file->private_data;
116e1ad7468SDavide Libenzi 	unsigned int events = 0;
117e1ad7468SDavide Libenzi 	unsigned long flags;
118e1ad7468SDavide Libenzi 
119e1ad7468SDavide Libenzi 	poll_wait(file, &ctx->wqh, wait);
120e1ad7468SDavide Libenzi 
121d48eb233SDavide Libenzi 	spin_lock_irqsave(&ctx->wqh.lock, flags);
122e1ad7468SDavide Libenzi 	if (ctx->count > 0)
123e1ad7468SDavide Libenzi 		events |= POLLIN;
124e1ad7468SDavide Libenzi 	if (ctx->count == ULLONG_MAX)
125e1ad7468SDavide Libenzi 		events |= POLLERR;
126e1ad7468SDavide Libenzi 	if (ULLONG_MAX - 1 > ctx->count)
127e1ad7468SDavide Libenzi 		events |= POLLOUT;
128d48eb233SDavide Libenzi 	spin_unlock_irqrestore(&ctx->wqh.lock, flags);
129e1ad7468SDavide Libenzi 
130e1ad7468SDavide Libenzi 	return events;
131e1ad7468SDavide Libenzi }
132e1ad7468SDavide Libenzi 
133e1ad7468SDavide Libenzi static ssize_t eventfd_read(struct file *file, char __user *buf, size_t count,
134e1ad7468SDavide Libenzi 			    loff_t *ppos)
135e1ad7468SDavide Libenzi {
136e1ad7468SDavide Libenzi 	struct eventfd_ctx *ctx = file->private_data;
137e1ad7468SDavide Libenzi 	ssize_t res;
138bcd0b235SDavide Libenzi 	__u64 ucnt = 0;
139e1ad7468SDavide Libenzi 	DECLARE_WAITQUEUE(wait, current);
140e1ad7468SDavide Libenzi 
141e1ad7468SDavide Libenzi 	if (count < sizeof(ucnt))
142e1ad7468SDavide Libenzi 		return -EINVAL;
143d48eb233SDavide Libenzi 	spin_lock_irq(&ctx->wqh.lock);
144e1ad7468SDavide Libenzi 	res = -EAGAIN;
145bcd0b235SDavide Libenzi 	if (ctx->count > 0)
146e1ad7468SDavide Libenzi 		res = sizeof(ucnt);
147e1ad7468SDavide Libenzi 	else if (!(file->f_flags & O_NONBLOCK)) {
148e1ad7468SDavide Libenzi 		__add_wait_queue(&ctx->wqh, &wait);
149e1ad7468SDavide Libenzi 		for (res = 0;;) {
150e1ad7468SDavide Libenzi 			set_current_state(TASK_INTERRUPTIBLE);
151e1ad7468SDavide Libenzi 			if (ctx->count > 0) {
152e1ad7468SDavide Libenzi 				res = sizeof(ucnt);
153e1ad7468SDavide Libenzi 				break;
154e1ad7468SDavide Libenzi 			}
155e1ad7468SDavide Libenzi 			if (signal_pending(current)) {
156e1ad7468SDavide Libenzi 				res = -ERESTARTSYS;
157e1ad7468SDavide Libenzi 				break;
158e1ad7468SDavide Libenzi 			}
159d48eb233SDavide Libenzi 			spin_unlock_irq(&ctx->wqh.lock);
160e1ad7468SDavide Libenzi 			schedule();
161d48eb233SDavide Libenzi 			spin_lock_irq(&ctx->wqh.lock);
162e1ad7468SDavide Libenzi 		}
163e1ad7468SDavide Libenzi 		__remove_wait_queue(&ctx->wqh, &wait);
164e1ad7468SDavide Libenzi 		__set_current_state(TASK_RUNNING);
165e1ad7468SDavide Libenzi 	}
166bcd0b235SDavide Libenzi 	if (likely(res > 0)) {
167bcd0b235SDavide Libenzi 		ucnt = (ctx->flags & EFD_SEMAPHORE) ? 1 : ctx->count;
168bcd0b235SDavide Libenzi 		ctx->count -= ucnt;
169e1ad7468SDavide Libenzi 		if (waitqueue_active(&ctx->wqh))
17039510888SDavide Libenzi 			wake_up_locked_poll(&ctx->wqh, POLLOUT);
171e1ad7468SDavide Libenzi 	}
172d48eb233SDavide Libenzi 	spin_unlock_irq(&ctx->wqh.lock);
173e1ad7468SDavide Libenzi 	if (res > 0 && put_user(ucnt, (__u64 __user *) buf))
174e1ad7468SDavide Libenzi 		return -EFAULT;
175e1ad7468SDavide Libenzi 
176e1ad7468SDavide Libenzi 	return res;
177e1ad7468SDavide Libenzi }
178e1ad7468SDavide Libenzi 
179e1ad7468SDavide Libenzi static ssize_t eventfd_write(struct file *file, const char __user *buf, size_t count,
180e1ad7468SDavide Libenzi 			     loff_t *ppos)
181e1ad7468SDavide Libenzi {
182e1ad7468SDavide Libenzi 	struct eventfd_ctx *ctx = file->private_data;
183e1ad7468SDavide Libenzi 	ssize_t res;
184e1ad7468SDavide Libenzi 	__u64 ucnt;
185e1ad7468SDavide Libenzi 	DECLARE_WAITQUEUE(wait, current);
186e1ad7468SDavide Libenzi 
187e1ad7468SDavide Libenzi 	if (count < sizeof(ucnt))
188e1ad7468SDavide Libenzi 		return -EINVAL;
189e1ad7468SDavide Libenzi 	if (copy_from_user(&ucnt, buf, sizeof(ucnt)))
190e1ad7468SDavide Libenzi 		return -EFAULT;
191e1ad7468SDavide Libenzi 	if (ucnt == ULLONG_MAX)
192e1ad7468SDavide Libenzi 		return -EINVAL;
193d48eb233SDavide Libenzi 	spin_lock_irq(&ctx->wqh.lock);
194e1ad7468SDavide Libenzi 	res = -EAGAIN;
195e1ad7468SDavide Libenzi 	if (ULLONG_MAX - ctx->count > ucnt)
196e1ad7468SDavide Libenzi 		res = sizeof(ucnt);
197e1ad7468SDavide Libenzi 	else if (!(file->f_flags & O_NONBLOCK)) {
198e1ad7468SDavide Libenzi 		__add_wait_queue(&ctx->wqh, &wait);
199e1ad7468SDavide Libenzi 		for (res = 0;;) {
200e1ad7468SDavide Libenzi 			set_current_state(TASK_INTERRUPTIBLE);
201e1ad7468SDavide Libenzi 			if (ULLONG_MAX - ctx->count > ucnt) {
202e1ad7468SDavide Libenzi 				res = sizeof(ucnt);
203e1ad7468SDavide Libenzi 				break;
204e1ad7468SDavide Libenzi 			}
205e1ad7468SDavide Libenzi 			if (signal_pending(current)) {
206e1ad7468SDavide Libenzi 				res = -ERESTARTSYS;
207e1ad7468SDavide Libenzi 				break;
208e1ad7468SDavide Libenzi 			}
209d48eb233SDavide Libenzi 			spin_unlock_irq(&ctx->wqh.lock);
210e1ad7468SDavide Libenzi 			schedule();
211d48eb233SDavide Libenzi 			spin_lock_irq(&ctx->wqh.lock);
212e1ad7468SDavide Libenzi 		}
213e1ad7468SDavide Libenzi 		__remove_wait_queue(&ctx->wqh, &wait);
214e1ad7468SDavide Libenzi 		__set_current_state(TASK_RUNNING);
215e1ad7468SDavide Libenzi 	}
216bcd0b235SDavide Libenzi 	if (likely(res > 0)) {
217e1ad7468SDavide Libenzi 		ctx->count += ucnt;
218e1ad7468SDavide Libenzi 		if (waitqueue_active(&ctx->wqh))
21939510888SDavide Libenzi 			wake_up_locked_poll(&ctx->wqh, POLLIN);
220e1ad7468SDavide Libenzi 	}
221d48eb233SDavide Libenzi 	spin_unlock_irq(&ctx->wqh.lock);
222e1ad7468SDavide Libenzi 
223e1ad7468SDavide Libenzi 	return res;
224e1ad7468SDavide Libenzi }
225e1ad7468SDavide Libenzi 
226e1ad7468SDavide Libenzi static const struct file_operations eventfd_fops = {
227e1ad7468SDavide Libenzi 	.release	= eventfd_release,
228e1ad7468SDavide Libenzi 	.poll		= eventfd_poll,
229e1ad7468SDavide Libenzi 	.read		= eventfd_read,
230e1ad7468SDavide Libenzi 	.write		= eventfd_write,
231e1ad7468SDavide Libenzi };
232e1ad7468SDavide Libenzi 
233*13389010SDavide Libenzi /**
234*13389010SDavide Libenzi  * eventfd_fget - Acquire a reference of an eventfd file descriptor.
235*13389010SDavide Libenzi  * @fd: [in] Eventfd file descriptor.
236*13389010SDavide Libenzi  *
237*13389010SDavide Libenzi  * Returns a pointer to the eventfd file structure in case of success, or the
238*13389010SDavide Libenzi  * following error pointer:
239*13389010SDavide Libenzi  *
240*13389010SDavide Libenzi  * -EBADF    : Invalid @fd file descriptor.
241*13389010SDavide Libenzi  * -EINVAL   : The @fd file descriptor is not an eventfd file.
242*13389010SDavide Libenzi  */
243e1ad7468SDavide Libenzi struct file *eventfd_fget(int fd)
244e1ad7468SDavide Libenzi {
245e1ad7468SDavide Libenzi 	struct file *file;
246e1ad7468SDavide Libenzi 
247e1ad7468SDavide Libenzi 	file = fget(fd);
248e1ad7468SDavide Libenzi 	if (!file)
249e1ad7468SDavide Libenzi 		return ERR_PTR(-EBADF);
250e1ad7468SDavide Libenzi 	if (file->f_op != &eventfd_fops) {
251e1ad7468SDavide Libenzi 		fput(file);
252e1ad7468SDavide Libenzi 		return ERR_PTR(-EINVAL);
253e1ad7468SDavide Libenzi 	}
254e1ad7468SDavide Libenzi 
255e1ad7468SDavide Libenzi 	return file;
256e1ad7468SDavide Libenzi }
2575718607bSRusty Russell EXPORT_SYMBOL_GPL(eventfd_fget);
258e1ad7468SDavide Libenzi 
259*13389010SDavide Libenzi /**
260*13389010SDavide Libenzi  * eventfd_ctx_fdget - Acquires a reference to the internal eventfd context.
261*13389010SDavide Libenzi  * @fd: [in] Eventfd file descriptor.
262*13389010SDavide Libenzi  *
263*13389010SDavide Libenzi  * Returns a pointer to the internal eventfd context, otherwise the error
264*13389010SDavide Libenzi  * pointers returned by the following functions:
265*13389010SDavide Libenzi  *
266*13389010SDavide Libenzi  * eventfd_fget
267*13389010SDavide Libenzi  */
268*13389010SDavide Libenzi struct eventfd_ctx *eventfd_ctx_fdget(int fd)
269*13389010SDavide Libenzi {
270*13389010SDavide Libenzi 	struct file *file;
271*13389010SDavide Libenzi 	struct eventfd_ctx *ctx;
272*13389010SDavide Libenzi 
273*13389010SDavide Libenzi 	file = eventfd_fget(fd);
274*13389010SDavide Libenzi 	if (IS_ERR(file))
275*13389010SDavide Libenzi 		return (struct eventfd_ctx *) file;
276*13389010SDavide Libenzi 	ctx = eventfd_ctx_get(file->private_data);
277*13389010SDavide Libenzi 	fput(file);
278*13389010SDavide Libenzi 
279*13389010SDavide Libenzi 	return ctx;
280*13389010SDavide Libenzi }
281*13389010SDavide Libenzi EXPORT_SYMBOL_GPL(eventfd_ctx_fdget);
282*13389010SDavide Libenzi 
283*13389010SDavide Libenzi /**
284*13389010SDavide Libenzi  * eventfd_ctx_fileget - Acquires a reference to the internal eventfd context.
285*13389010SDavide Libenzi  * @file: [in] Eventfd file pointer.
286*13389010SDavide Libenzi  *
287*13389010SDavide Libenzi  * Returns a pointer to the internal eventfd context, otherwise the error
288*13389010SDavide Libenzi  * pointer:
289*13389010SDavide Libenzi  *
290*13389010SDavide Libenzi  * -EINVAL   : The @fd file descriptor is not an eventfd file.
291*13389010SDavide Libenzi  */
292*13389010SDavide Libenzi struct eventfd_ctx *eventfd_ctx_fileget(struct file *file)
293*13389010SDavide Libenzi {
294*13389010SDavide Libenzi 	if (file->f_op != &eventfd_fops)
295*13389010SDavide Libenzi 		return ERR_PTR(-EINVAL);
296*13389010SDavide Libenzi 
297*13389010SDavide Libenzi 	return eventfd_ctx_get(file->private_data);
298*13389010SDavide Libenzi }
299*13389010SDavide Libenzi EXPORT_SYMBOL_GPL(eventfd_ctx_fileget);
300*13389010SDavide Libenzi 
301d4e82042SHeiko Carstens SYSCALL_DEFINE2(eventfd2, unsigned int, count, int, flags)
302e1ad7468SDavide Libenzi {
3032030a42cSAl Viro 	int fd;
304e1ad7468SDavide Libenzi 	struct eventfd_ctx *ctx;
305e1ad7468SDavide Libenzi 
306e38b36f3SUlrich Drepper 	/* Check the EFD_* constants for consistency.  */
307e38b36f3SUlrich Drepper 	BUILD_BUG_ON(EFD_CLOEXEC != O_CLOEXEC);
308e38b36f3SUlrich Drepper 	BUILD_BUG_ON(EFD_NONBLOCK != O_NONBLOCK);
309e38b36f3SUlrich Drepper 
310bcd0b235SDavide Libenzi 	if (flags & ~EFD_FLAGS_SET)
311b087498eSUlrich Drepper 		return -EINVAL;
312b087498eSUlrich Drepper 
313e1ad7468SDavide Libenzi 	ctx = kmalloc(sizeof(*ctx), GFP_KERNEL);
314e1ad7468SDavide Libenzi 	if (!ctx)
315e1ad7468SDavide Libenzi 		return -ENOMEM;
316e1ad7468SDavide Libenzi 
317*13389010SDavide Libenzi 	kref_init(&ctx->kref);
318e1ad7468SDavide Libenzi 	init_waitqueue_head(&ctx->wqh);
319e1ad7468SDavide Libenzi 	ctx->count = count;
320bcd0b235SDavide Libenzi 	ctx->flags = flags;
321e1ad7468SDavide Libenzi 
322e1ad7468SDavide Libenzi 	/*
323e1ad7468SDavide Libenzi 	 * When we call this, the initialization must be complete, since
324e1ad7468SDavide Libenzi 	 * anon_inode_getfd() will install the fd.
325e1ad7468SDavide Libenzi 	 */
326b087498eSUlrich Drepper 	fd = anon_inode_getfd("[eventfd]", &eventfd_fops, ctx,
327bcd0b235SDavide Libenzi 			      flags & EFD_SHARED_FCNTL_FLAGS);
3282030a42cSAl Viro 	if (fd < 0)
329e1ad7468SDavide Libenzi 		kfree(ctx);
3302030a42cSAl Viro 	return fd;
331e1ad7468SDavide Libenzi }
332e1ad7468SDavide Libenzi 
333d4e82042SHeiko Carstens SYSCALL_DEFINE1(eventfd, unsigned int, count)
334b087498eSUlrich Drepper {
335b087498eSUlrich Drepper 	return sys_eventfd2(count, 0);
336b087498eSUlrich Drepper }
337bcd0b235SDavide Libenzi 
338