xref: /openbmc/linux/fs/proc/fd.c (revision 68eb94f16227336a5773b83ecfa8290f1d6b78ce)
1faf60af1SCyrill Gorcunov #include <linux/sched.h>
2faf60af1SCyrill Gorcunov #include <linux/errno.h>
3faf60af1SCyrill Gorcunov #include <linux/dcache.h>
4faf60af1SCyrill Gorcunov #include <linux/path.h>
5faf60af1SCyrill Gorcunov #include <linux/fdtable.h>
6faf60af1SCyrill Gorcunov #include <linux/namei.h>
7faf60af1SCyrill Gorcunov #include <linux/pid.h>
8faf60af1SCyrill Gorcunov #include <linux/security.h>
9ddd3e077SCyrill Gorcunov #include <linux/file.h>
10ddd3e077SCyrill Gorcunov #include <linux/seq_file.h>
116c8c9031SAndrey Vagin #include <linux/fs.h>
12faf60af1SCyrill Gorcunov 
13faf60af1SCyrill Gorcunov #include <linux/proc_fs.h>
14faf60af1SCyrill Gorcunov 
1549d063cbSAndrey Vagin #include "../mount.h"
16faf60af1SCyrill Gorcunov #include "internal.h"
17faf60af1SCyrill Gorcunov #include "fd.h"
18faf60af1SCyrill Gorcunov 
19ddd3e077SCyrill Gorcunov static int seq_show(struct seq_file *m, void *v)
20faf60af1SCyrill Gorcunov {
21faf60af1SCyrill Gorcunov 	struct files_struct *files = NULL;
22ddd3e077SCyrill Gorcunov 	int f_flags = 0, ret = -ENOENT;
23ddd3e077SCyrill Gorcunov 	struct file *file = NULL;
24ddd3e077SCyrill Gorcunov 	struct task_struct *task;
25faf60af1SCyrill Gorcunov 
26ddd3e077SCyrill Gorcunov 	task = get_proc_task(m->private);
27ddd3e077SCyrill Gorcunov 	if (!task)
28ddd3e077SCyrill Gorcunov 		return -ENOENT;
29ddd3e077SCyrill Gorcunov 
30faf60af1SCyrill Gorcunov 	files = get_files_struct(task);
31faf60af1SCyrill Gorcunov 	put_task_struct(task);
32ddd3e077SCyrill Gorcunov 
33faf60af1SCyrill Gorcunov 	if (files) {
34771187d6SAlexey Dobriyan 		unsigned int fd = proc_fd(m->private);
35ddd3e077SCyrill Gorcunov 
36faf60af1SCyrill Gorcunov 		spin_lock(&files->file_lock);
37faf60af1SCyrill Gorcunov 		file = fcheck_files(files, fd);
38faf60af1SCyrill Gorcunov 		if (file) {
39ddd3e077SCyrill Gorcunov 			struct fdtable *fdt = files_fdtable(files);
40faf60af1SCyrill Gorcunov 
41c6f3d811SAl Viro 			f_flags = file->f_flags;
42faf60af1SCyrill Gorcunov 			if (close_on_exec(fd, fdt))
43faf60af1SCyrill Gorcunov 				f_flags |= O_CLOEXEC;
44faf60af1SCyrill Gorcunov 
45ddd3e077SCyrill Gorcunov 			get_file(file);
46ddd3e077SCyrill Gorcunov 			ret = 0;
47faf60af1SCyrill Gorcunov 		}
48faf60af1SCyrill Gorcunov 		spin_unlock(&files->file_lock);
49faf60af1SCyrill Gorcunov 		put_files_struct(files);
50faf60af1SCyrill Gorcunov 	}
51ddd3e077SCyrill Gorcunov 
526c8c9031SAndrey Vagin 	if (ret)
536c8c9031SAndrey Vagin 		return ret;
546c8c9031SAndrey Vagin 
5549d063cbSAndrey Vagin 	seq_printf(m, "pos:\t%lli\nflags:\t0%o\nmnt_id:\t%i\n",
5649d063cbSAndrey Vagin 		   (long long)file->f_pos, f_flags,
5749d063cbSAndrey Vagin 		   real_mount(file->f_path.mnt)->mnt_id);
586c8c9031SAndrey Vagin 
596c8c9031SAndrey Vagin 	show_fd_locks(m, file, files);
606c8c9031SAndrey Vagin 	if (seq_has_overflowed(m))
616c8c9031SAndrey Vagin 		goto out;
626c8c9031SAndrey Vagin 
6355985dd7SCyrill Gorcunov 	if (file->f_op->show_fdinfo)
64a3816ab0SJoe Perches 		file->f_op->show_fdinfo(m, file);
65faf60af1SCyrill Gorcunov 
666c8c9031SAndrey Vagin out:
676c8c9031SAndrey Vagin 	fput(file);
686c8c9031SAndrey Vagin 	return 0;
69ddd3e077SCyrill Gorcunov }
70ddd3e077SCyrill Gorcunov 
71ddd3e077SCyrill Gorcunov static int seq_fdinfo_open(struct inode *inode, struct file *file)
72ddd3e077SCyrill Gorcunov {
73ddd3e077SCyrill Gorcunov 	return single_open(file, seq_show, inode);
74ddd3e077SCyrill Gorcunov }
75ddd3e077SCyrill Gorcunov 
76ddd3e077SCyrill Gorcunov static const struct file_operations proc_fdinfo_file_operations = {
77ddd3e077SCyrill Gorcunov 	.open		= seq_fdinfo_open,
78ddd3e077SCyrill Gorcunov 	.read		= seq_read,
79ddd3e077SCyrill Gorcunov 	.llseek		= seq_lseek,
80ddd3e077SCyrill Gorcunov 	.release	= single_release,
81ddd3e077SCyrill Gorcunov };
82ddd3e077SCyrill Gorcunov 
83faf60af1SCyrill Gorcunov static int tid_fd_revalidate(struct dentry *dentry, unsigned int flags)
84faf60af1SCyrill Gorcunov {
85faf60af1SCyrill Gorcunov 	struct files_struct *files;
86faf60af1SCyrill Gorcunov 	struct task_struct *task;
87faf60af1SCyrill Gorcunov 	struct inode *inode;
88771187d6SAlexey Dobriyan 	unsigned int fd;
89faf60af1SCyrill Gorcunov 
90faf60af1SCyrill Gorcunov 	if (flags & LOOKUP_RCU)
91faf60af1SCyrill Gorcunov 		return -ECHILD;
92faf60af1SCyrill Gorcunov 
932b0143b5SDavid Howells 	inode = d_inode(dentry);
94faf60af1SCyrill Gorcunov 	task = get_proc_task(inode);
95faf60af1SCyrill Gorcunov 	fd = proc_fd(inode);
96faf60af1SCyrill Gorcunov 
97faf60af1SCyrill Gorcunov 	if (task) {
98faf60af1SCyrill Gorcunov 		files = get_files_struct(task);
99faf60af1SCyrill Gorcunov 		if (files) {
100faf60af1SCyrill Gorcunov 			struct file *file;
101faf60af1SCyrill Gorcunov 
102faf60af1SCyrill Gorcunov 			rcu_read_lock();
103faf60af1SCyrill Gorcunov 			file = fcheck_files(files, fd);
104faf60af1SCyrill Gorcunov 			if (file) {
105faf60af1SCyrill Gorcunov 				unsigned f_mode = file->f_mode;
106faf60af1SCyrill Gorcunov 
107faf60af1SCyrill Gorcunov 				rcu_read_unlock();
108faf60af1SCyrill Gorcunov 				put_files_struct(files);
109faf60af1SCyrill Gorcunov 
110*68eb94f1SEric W. Biederman 				task_dump_owner(task, 0, &inode->i_uid, &inode->i_gid);
111faf60af1SCyrill Gorcunov 
112faf60af1SCyrill Gorcunov 				if (S_ISLNK(inode->i_mode)) {
113faf60af1SCyrill Gorcunov 					unsigned i_mode = S_IFLNK;
114faf60af1SCyrill Gorcunov 					if (f_mode & FMODE_READ)
115faf60af1SCyrill Gorcunov 						i_mode |= S_IRUSR | S_IXUSR;
116faf60af1SCyrill Gorcunov 					if (f_mode & FMODE_WRITE)
117faf60af1SCyrill Gorcunov 						i_mode |= S_IWUSR | S_IXUSR;
118faf60af1SCyrill Gorcunov 					inode->i_mode = i_mode;
119faf60af1SCyrill Gorcunov 				}
120faf60af1SCyrill Gorcunov 
121faf60af1SCyrill Gorcunov 				security_task_to_inode(task, inode);
122faf60af1SCyrill Gorcunov 				put_task_struct(task);
123faf60af1SCyrill Gorcunov 				return 1;
124faf60af1SCyrill Gorcunov 			}
125faf60af1SCyrill Gorcunov 			rcu_read_unlock();
126faf60af1SCyrill Gorcunov 			put_files_struct(files);
127faf60af1SCyrill Gorcunov 		}
128faf60af1SCyrill Gorcunov 		put_task_struct(task);
129faf60af1SCyrill Gorcunov 	}
130faf60af1SCyrill Gorcunov 	return 0;
131faf60af1SCyrill Gorcunov }
132faf60af1SCyrill Gorcunov 
133faf60af1SCyrill Gorcunov static const struct dentry_operations tid_fd_dentry_operations = {
134faf60af1SCyrill Gorcunov 	.d_revalidate	= tid_fd_revalidate,
135faf60af1SCyrill Gorcunov 	.d_delete	= pid_delete_dentry,
136faf60af1SCyrill Gorcunov };
137faf60af1SCyrill Gorcunov 
138faf60af1SCyrill Gorcunov static int proc_fd_link(struct dentry *dentry, struct path *path)
139faf60af1SCyrill Gorcunov {
140ddd3e077SCyrill Gorcunov 	struct files_struct *files = NULL;
141ddd3e077SCyrill Gorcunov 	struct task_struct *task;
142ddd3e077SCyrill Gorcunov 	int ret = -ENOENT;
143ddd3e077SCyrill Gorcunov 
1442b0143b5SDavid Howells 	task = get_proc_task(d_inode(dentry));
145ddd3e077SCyrill Gorcunov 	if (task) {
146ddd3e077SCyrill Gorcunov 		files = get_files_struct(task);
147ddd3e077SCyrill Gorcunov 		put_task_struct(task);
148ddd3e077SCyrill Gorcunov 	}
149ddd3e077SCyrill Gorcunov 
150ddd3e077SCyrill Gorcunov 	if (files) {
151771187d6SAlexey Dobriyan 		unsigned int fd = proc_fd(d_inode(dentry));
152ddd3e077SCyrill Gorcunov 		struct file *fd_file;
153ddd3e077SCyrill Gorcunov 
154ddd3e077SCyrill Gorcunov 		spin_lock(&files->file_lock);
155ddd3e077SCyrill Gorcunov 		fd_file = fcheck_files(files, fd);
156ddd3e077SCyrill Gorcunov 		if (fd_file) {
157ddd3e077SCyrill Gorcunov 			*path = fd_file->f_path;
158ddd3e077SCyrill Gorcunov 			path_get(&fd_file->f_path);
159ddd3e077SCyrill Gorcunov 			ret = 0;
160ddd3e077SCyrill Gorcunov 		}
161ddd3e077SCyrill Gorcunov 		spin_unlock(&files->file_lock);
162ddd3e077SCyrill Gorcunov 		put_files_struct(files);
163ddd3e077SCyrill Gorcunov 	}
164ddd3e077SCyrill Gorcunov 
165ddd3e077SCyrill Gorcunov 	return ret;
166faf60af1SCyrill Gorcunov }
167faf60af1SCyrill Gorcunov 
168c52a47acSAl Viro static int
169faf60af1SCyrill Gorcunov proc_fd_instantiate(struct inode *dir, struct dentry *dentry,
170faf60af1SCyrill Gorcunov 		    struct task_struct *task, const void *ptr)
171faf60af1SCyrill Gorcunov {
172faf60af1SCyrill Gorcunov 	unsigned fd = (unsigned long)ptr;
173faf60af1SCyrill Gorcunov 	struct proc_inode *ei;
174faf60af1SCyrill Gorcunov 	struct inode *inode;
175faf60af1SCyrill Gorcunov 
176db978da8SAndreas Gruenbacher 	inode = proc_pid_make_inode(dir->i_sb, task, S_IFLNK);
177faf60af1SCyrill Gorcunov 	if (!inode)
178faf60af1SCyrill Gorcunov 		goto out;
179faf60af1SCyrill Gorcunov 
180faf60af1SCyrill Gorcunov 	ei = PROC_I(inode);
181faf60af1SCyrill Gorcunov 	ei->fd = fd;
182faf60af1SCyrill Gorcunov 
183faf60af1SCyrill Gorcunov 	inode->i_op = &proc_pid_link_inode_operations;
184faf60af1SCyrill Gorcunov 	inode->i_size = 64;
185faf60af1SCyrill Gorcunov 
186faf60af1SCyrill Gorcunov 	ei->op.proc_get_link = proc_fd_link;
187faf60af1SCyrill Gorcunov 
188faf60af1SCyrill Gorcunov 	d_set_d_op(dentry, &tid_fd_dentry_operations);
189faf60af1SCyrill Gorcunov 	d_add(dentry, inode);
190faf60af1SCyrill Gorcunov 
191faf60af1SCyrill Gorcunov 	/* Close the race of the process dying before we return the dentry */
192faf60af1SCyrill Gorcunov 	if (tid_fd_revalidate(dentry, 0))
193c52a47acSAl Viro 		return 0;
194faf60af1SCyrill Gorcunov  out:
195c52a47acSAl Viro 	return -ENOENT;
196faf60af1SCyrill Gorcunov }
197faf60af1SCyrill Gorcunov 
198faf60af1SCyrill Gorcunov static struct dentry *proc_lookupfd_common(struct inode *dir,
199faf60af1SCyrill Gorcunov 					   struct dentry *dentry,
200faf60af1SCyrill Gorcunov 					   instantiate_t instantiate)
201faf60af1SCyrill Gorcunov {
202faf60af1SCyrill Gorcunov 	struct task_struct *task = get_proc_task(dir);
203c52a47acSAl Viro 	int result = -ENOENT;
204dbcdb504SAlexey Dobriyan 	unsigned fd = name_to_int(&dentry->d_name);
205faf60af1SCyrill Gorcunov 
206faf60af1SCyrill Gorcunov 	if (!task)
207faf60af1SCyrill Gorcunov 		goto out_no_task;
208faf60af1SCyrill Gorcunov 	if (fd == ~0U)
209faf60af1SCyrill Gorcunov 		goto out;
210faf60af1SCyrill Gorcunov 
211faf60af1SCyrill Gorcunov 	result = instantiate(dir, dentry, task, (void *)(unsigned long)fd);
212faf60af1SCyrill Gorcunov out:
213faf60af1SCyrill Gorcunov 	put_task_struct(task);
214faf60af1SCyrill Gorcunov out_no_task:
215c52a47acSAl Viro 	return ERR_PTR(result);
216faf60af1SCyrill Gorcunov }
217faf60af1SCyrill Gorcunov 
218f0c3b509SAl Viro static int proc_readfd_common(struct file *file, struct dir_context *ctx,
219f0c3b509SAl Viro 			      instantiate_t instantiate)
220faf60af1SCyrill Gorcunov {
221f0c3b509SAl Viro 	struct task_struct *p = get_proc_task(file_inode(file));
222faf60af1SCyrill Gorcunov 	struct files_struct *files;
223f0c3b509SAl Viro 	unsigned int fd;
224faf60af1SCyrill Gorcunov 
225faf60af1SCyrill Gorcunov 	if (!p)
226f0c3b509SAl Viro 		return -ENOENT;
227faf60af1SCyrill Gorcunov 
228f0c3b509SAl Viro 	if (!dir_emit_dots(file, ctx))
229faf60af1SCyrill Gorcunov 		goto out;
230faf60af1SCyrill Gorcunov 	files = get_files_struct(p);
231faf60af1SCyrill Gorcunov 	if (!files)
232faf60af1SCyrill Gorcunov 		goto out;
233f0c3b509SAl Viro 
234faf60af1SCyrill Gorcunov 	rcu_read_lock();
235f0c3b509SAl Viro 	for (fd = ctx->pos - 2;
236faf60af1SCyrill Gorcunov 	     fd < files_fdtable(files)->max_fds;
237f0c3b509SAl Viro 	     fd++, ctx->pos++) {
238faf60af1SCyrill Gorcunov 		char name[PROC_NUMBUF];
239faf60af1SCyrill Gorcunov 		int len;
240faf60af1SCyrill Gorcunov 
241faf60af1SCyrill Gorcunov 		if (!fcheck_files(files, fd))
242faf60af1SCyrill Gorcunov 			continue;
243faf60af1SCyrill Gorcunov 		rcu_read_unlock();
244faf60af1SCyrill Gorcunov 
245771187d6SAlexey Dobriyan 		len = snprintf(name, sizeof(name), "%u", fd);
246f0c3b509SAl Viro 		if (!proc_fill_cache(file, ctx,
247faf60af1SCyrill Gorcunov 				     name, len, instantiate, p,
248f0c3b509SAl Viro 				     (void *)(unsigned long)fd))
249faf60af1SCyrill Gorcunov 			goto out_fd_loop;
2503cc4a84eSEric Dumazet 		cond_resched();
251faf60af1SCyrill Gorcunov 		rcu_read_lock();
252faf60af1SCyrill Gorcunov 	}
253faf60af1SCyrill Gorcunov 	rcu_read_unlock();
254faf60af1SCyrill Gorcunov out_fd_loop:
255faf60af1SCyrill Gorcunov 	put_files_struct(files);
256faf60af1SCyrill Gorcunov out:
257faf60af1SCyrill Gorcunov 	put_task_struct(p);
258f0c3b509SAl Viro 	return 0;
259faf60af1SCyrill Gorcunov }
260faf60af1SCyrill Gorcunov 
261f0c3b509SAl Viro static int proc_readfd(struct file *file, struct dir_context *ctx)
262faf60af1SCyrill Gorcunov {
263f0c3b509SAl Viro 	return proc_readfd_common(file, ctx, proc_fd_instantiate);
264faf60af1SCyrill Gorcunov }
265faf60af1SCyrill Gorcunov 
266faf60af1SCyrill Gorcunov const struct file_operations proc_fd_operations = {
267faf60af1SCyrill Gorcunov 	.read		= generic_read_dir,
268f50752eaSAl Viro 	.iterate_shared	= proc_readfd,
269f50752eaSAl Viro 	.llseek		= generic_file_llseek,
270faf60af1SCyrill Gorcunov };
271faf60af1SCyrill Gorcunov 
272faf60af1SCyrill Gorcunov static struct dentry *proc_lookupfd(struct inode *dir, struct dentry *dentry,
273faf60af1SCyrill Gorcunov 				    unsigned int flags)
274faf60af1SCyrill Gorcunov {
275faf60af1SCyrill Gorcunov 	return proc_lookupfd_common(dir, dentry, proc_fd_instantiate);
276faf60af1SCyrill Gorcunov }
277faf60af1SCyrill Gorcunov 
278faf60af1SCyrill Gorcunov /*
279faf60af1SCyrill Gorcunov  * /proc/pid/fd needs a special permission handler so that a process can still
280faf60af1SCyrill Gorcunov  * access /proc/self/fd after it has executed a setuid().
281faf60af1SCyrill Gorcunov  */
282faf60af1SCyrill Gorcunov int proc_fd_permission(struct inode *inode, int mask)
283faf60af1SCyrill Gorcunov {
28454708d28SOleg Nesterov 	struct task_struct *p;
28554708d28SOleg Nesterov 	int rv;
28654708d28SOleg Nesterov 
28754708d28SOleg Nesterov 	rv = generic_permission(inode, mask);
288faf60af1SCyrill Gorcunov 	if (rv == 0)
28954708d28SOleg Nesterov 		return rv;
29054708d28SOleg Nesterov 
29154708d28SOleg Nesterov 	rcu_read_lock();
29254708d28SOleg Nesterov 	p = pid_task(proc_pid(inode), PIDTYPE_PID);
29354708d28SOleg Nesterov 	if (p && same_thread_group(p, current))
294faf60af1SCyrill Gorcunov 		rv = 0;
29554708d28SOleg Nesterov 	rcu_read_unlock();
29654708d28SOleg Nesterov 
297faf60af1SCyrill Gorcunov 	return rv;
298faf60af1SCyrill Gorcunov }
299faf60af1SCyrill Gorcunov 
300faf60af1SCyrill Gorcunov const struct inode_operations proc_fd_inode_operations = {
301faf60af1SCyrill Gorcunov 	.lookup		= proc_lookupfd,
302faf60af1SCyrill Gorcunov 	.permission	= proc_fd_permission,
303faf60af1SCyrill Gorcunov 	.setattr	= proc_setattr,
304faf60af1SCyrill Gorcunov };
305faf60af1SCyrill Gorcunov 
306c52a47acSAl Viro static int
307faf60af1SCyrill Gorcunov proc_fdinfo_instantiate(struct inode *dir, struct dentry *dentry,
308faf60af1SCyrill Gorcunov 			struct task_struct *task, const void *ptr)
309faf60af1SCyrill Gorcunov {
310faf60af1SCyrill Gorcunov 	unsigned fd = (unsigned long)ptr;
311faf60af1SCyrill Gorcunov 	struct proc_inode *ei;
312faf60af1SCyrill Gorcunov 	struct inode *inode;
313faf60af1SCyrill Gorcunov 
314db978da8SAndreas Gruenbacher 	inode = proc_pid_make_inode(dir->i_sb, task, S_IFREG | S_IRUSR);
315faf60af1SCyrill Gorcunov 	if (!inode)
316faf60af1SCyrill Gorcunov 		goto out;
317faf60af1SCyrill Gorcunov 
318faf60af1SCyrill Gorcunov 	ei = PROC_I(inode);
319faf60af1SCyrill Gorcunov 	ei->fd = fd;
320faf60af1SCyrill Gorcunov 
321faf60af1SCyrill Gorcunov 	inode->i_fop = &proc_fdinfo_file_operations;
322faf60af1SCyrill Gorcunov 
323faf60af1SCyrill Gorcunov 	d_set_d_op(dentry, &tid_fd_dentry_operations);
324faf60af1SCyrill Gorcunov 	d_add(dentry, inode);
325faf60af1SCyrill Gorcunov 
326faf60af1SCyrill Gorcunov 	/* Close the race of the process dying before we return the dentry */
327faf60af1SCyrill Gorcunov 	if (tid_fd_revalidate(dentry, 0))
328c52a47acSAl Viro 		return 0;
329faf60af1SCyrill Gorcunov  out:
330c52a47acSAl Viro 	return -ENOENT;
331faf60af1SCyrill Gorcunov }
332faf60af1SCyrill Gorcunov 
333faf60af1SCyrill Gorcunov static struct dentry *
334faf60af1SCyrill Gorcunov proc_lookupfdinfo(struct inode *dir, struct dentry *dentry, unsigned int flags)
335faf60af1SCyrill Gorcunov {
336faf60af1SCyrill Gorcunov 	return proc_lookupfd_common(dir, dentry, proc_fdinfo_instantiate);
337faf60af1SCyrill Gorcunov }
338faf60af1SCyrill Gorcunov 
339f0c3b509SAl Viro static int proc_readfdinfo(struct file *file, struct dir_context *ctx)
340faf60af1SCyrill Gorcunov {
341f0c3b509SAl Viro 	return proc_readfd_common(file, ctx,
342faf60af1SCyrill Gorcunov 				  proc_fdinfo_instantiate);
343faf60af1SCyrill Gorcunov }
344faf60af1SCyrill Gorcunov 
345faf60af1SCyrill Gorcunov const struct inode_operations proc_fdinfo_inode_operations = {
346faf60af1SCyrill Gorcunov 	.lookup		= proc_lookupfdinfo,
347faf60af1SCyrill Gorcunov 	.setattr	= proc_setattr,
348faf60af1SCyrill Gorcunov };
349faf60af1SCyrill Gorcunov 
350faf60af1SCyrill Gorcunov const struct file_operations proc_fdinfo_operations = {
351faf60af1SCyrill Gorcunov 	.read		= generic_read_dir,
352f50752eaSAl Viro 	.iterate_shared	= proc_readfdinfo,
353f50752eaSAl Viro 	.llseek		= generic_file_llseek,
354faf60af1SCyrill Gorcunov };
355