xref: /openbmc/linux/fs/proc/base.c (revision 0bc58a91)
11da177e4SLinus Torvalds /*
21da177e4SLinus Torvalds  *  linux/fs/proc/base.c
31da177e4SLinus Torvalds  *
41da177e4SLinus Torvalds  *  Copyright (C) 1991, 1992 Linus Torvalds
51da177e4SLinus Torvalds  *
61da177e4SLinus Torvalds  *  proc base directory handling functions
71da177e4SLinus Torvalds  *
81da177e4SLinus Torvalds  *  1999, Al Viro. Rewritten. Now it covers the whole per-process part.
91da177e4SLinus Torvalds  *  Instead of using magical inumbers to determine the kind of object
101da177e4SLinus Torvalds  *  we allocate and fill in-core inodes upon lookup. They don't even
111da177e4SLinus Torvalds  *  go into icache. We cache the reference to task_struct upon lookup too.
121da177e4SLinus Torvalds  *  Eventually it should become a filesystem in its own. We don't use the
131da177e4SLinus Torvalds  *  rest of procfs anymore.
14e070ad49SMauricio Lin  *
15e070ad49SMauricio Lin  *
16e070ad49SMauricio Lin  *  Changelog:
17e070ad49SMauricio Lin  *  17-Jan-2005
18e070ad49SMauricio Lin  *  Allan Bezerra
19e070ad49SMauricio Lin  *  Bruna Moreira <bruna.moreira@indt.org.br>
20e070ad49SMauricio Lin  *  Edjard Mota <edjard.mota@indt.org.br>
21e070ad49SMauricio Lin  *  Ilias Biris <ilias.biris@indt.org.br>
22e070ad49SMauricio Lin  *  Mauricio Lin <mauricio.lin@indt.org.br>
23e070ad49SMauricio Lin  *
24e070ad49SMauricio Lin  *  Embedded Linux Lab - 10LE Instituto Nokia de Tecnologia - INdT
25e070ad49SMauricio Lin  *
26e070ad49SMauricio Lin  *  A new process specific entry (smaps) included in /proc. It shows the
27e070ad49SMauricio Lin  *  size of rss for each memory area. The maps entry lacks information
28e070ad49SMauricio Lin  *  about physical memory size (rss) for each mapped file, i.e.,
29e070ad49SMauricio Lin  *  rss information for executables and library files.
30e070ad49SMauricio Lin  *  This additional information is useful for any tools that need to know
31e070ad49SMauricio Lin  *  about physical memory consumption for a process specific library.
32e070ad49SMauricio Lin  *
33e070ad49SMauricio Lin  *  Changelog:
34e070ad49SMauricio Lin  *  21-Feb-2005
35e070ad49SMauricio Lin  *  Embedded Linux Lab - 10LE Instituto Nokia de Tecnologia - INdT
36e070ad49SMauricio Lin  *  Pud inclusion in the page table walking.
37e070ad49SMauricio Lin  *
38e070ad49SMauricio Lin  *  ChangeLog:
39e070ad49SMauricio Lin  *  10-Mar-2005
40e070ad49SMauricio Lin  *  10LE Instituto Nokia de Tecnologia - INdT:
41e070ad49SMauricio Lin  *  A better way to walks through the page table as suggested by Hugh Dickins.
42e070ad49SMauricio Lin  *
43e070ad49SMauricio Lin  *  Simo Piiroinen <simo.piiroinen@nokia.com>:
44e070ad49SMauricio Lin  *  Smaps information related to shared, private, clean and dirty pages.
45e070ad49SMauricio Lin  *
46e070ad49SMauricio Lin  *  Paul Mundt <paul.mundt@nokia.com>:
47e070ad49SMauricio Lin  *  Overall revision about smaps.
481da177e4SLinus Torvalds  */
491da177e4SLinus Torvalds 
501da177e4SLinus Torvalds #include <asm/uaccess.h>
511da177e4SLinus Torvalds 
521da177e4SLinus Torvalds #include <linux/config.h>
531da177e4SLinus Torvalds #include <linux/errno.h>
541da177e4SLinus Torvalds #include <linux/time.h>
551da177e4SLinus Torvalds #include <linux/proc_fs.h>
561da177e4SLinus Torvalds #include <linux/stat.h>
571da177e4SLinus Torvalds #include <linux/init.h>
5816f7e0feSRandy Dunlap #include <linux/capability.h>
591da177e4SLinus Torvalds #include <linux/file.h>
601da177e4SLinus Torvalds #include <linux/string.h>
611da177e4SLinus Torvalds #include <linux/seq_file.h>
621da177e4SLinus Torvalds #include <linux/namei.h>
631da177e4SLinus Torvalds #include <linux/namespace.h>
641da177e4SLinus Torvalds #include <linux/mm.h>
651da177e4SLinus Torvalds #include <linux/smp_lock.h>
66b835996fSDipankar Sarma #include <linux/rcupdate.h>
671da177e4SLinus Torvalds #include <linux/kallsyms.h>
681da177e4SLinus Torvalds #include <linux/mount.h>
691da177e4SLinus Torvalds #include <linux/security.h>
701da177e4SLinus Torvalds #include <linux/ptrace.h>
711da177e4SLinus Torvalds #include <linux/seccomp.h>
721da177e4SLinus Torvalds #include <linux/cpuset.h>
731da177e4SLinus Torvalds #include <linux/audit.h>
745addc5ddSAl Viro #include <linux/poll.h>
751da177e4SLinus Torvalds #include "internal.h"
761da177e4SLinus Torvalds 
770f2fe20fSEric W. Biederman /* NOTE:
780f2fe20fSEric W. Biederman  *	Implementing inode permission operations in /proc is almost
790f2fe20fSEric W. Biederman  *	certainly an error.  Permission checks need to happen during
800f2fe20fSEric W. Biederman  *	each system call not at open time.  The reason is that most of
810f2fe20fSEric W. Biederman  *	what we wish to check for permissions in /proc varies at runtime.
820f2fe20fSEric W. Biederman  *
830f2fe20fSEric W. Biederman  *	The classic example of a problem is opening file descriptors
840f2fe20fSEric W. Biederman  *	in /proc for a task before it execs a suid executable.
850f2fe20fSEric W. Biederman  */
860f2fe20fSEric W. Biederman 
871da177e4SLinus Torvalds /*
881da177e4SLinus Torvalds  * For hysterical raisins we keep the same inumbers as in the old procfs.
891da177e4SLinus Torvalds  * Feel free to change the macro below - just keep the range distinct from
901da177e4SLinus Torvalds  * inumbers of the rest of procfs (currently those are in 0x0000--0xffff).
911da177e4SLinus Torvalds  * As soon as we'll get a separate superblock we will be able to forget
921da177e4SLinus Torvalds  * about magical ranges too.
931da177e4SLinus Torvalds  */
941da177e4SLinus Torvalds 
951da177e4SLinus Torvalds #define fake_ino(pid,ino) (((pid)<<16)|(ino))
961da177e4SLinus Torvalds 
971da177e4SLinus Torvalds enum pid_directory_inos {
981da177e4SLinus Torvalds 	PROC_TGID_INO = 2,
991da177e4SLinus Torvalds 	PROC_TGID_TASK,
1001da177e4SLinus Torvalds 	PROC_TGID_STATUS,
1011da177e4SLinus Torvalds 	PROC_TGID_MEM,
1021da177e4SLinus Torvalds #ifdef CONFIG_SECCOMP
1031da177e4SLinus Torvalds 	PROC_TGID_SECCOMP,
1041da177e4SLinus Torvalds #endif
1051da177e4SLinus Torvalds 	PROC_TGID_CWD,
1061da177e4SLinus Torvalds 	PROC_TGID_ROOT,
1071da177e4SLinus Torvalds 	PROC_TGID_EXE,
1081da177e4SLinus Torvalds 	PROC_TGID_FD,
1091da177e4SLinus Torvalds 	PROC_TGID_ENVIRON,
1101da177e4SLinus Torvalds 	PROC_TGID_AUXV,
1111da177e4SLinus Torvalds 	PROC_TGID_CMDLINE,
1121da177e4SLinus Torvalds 	PROC_TGID_STAT,
1131da177e4SLinus Torvalds 	PROC_TGID_STATM,
1141da177e4SLinus Torvalds 	PROC_TGID_MAPS,
1156e21c8f1SChristoph Lameter 	PROC_TGID_NUMA_MAPS,
1161da177e4SLinus Torvalds 	PROC_TGID_MOUNTS,
117b4629fe2SChuck Lever 	PROC_TGID_MOUNTSTATS,
1181da177e4SLinus Torvalds 	PROC_TGID_WCHAN,
11963c6764cSYoshinori Sato #ifdef CONFIG_MMU
120e070ad49SMauricio Lin 	PROC_TGID_SMAPS,
12163c6764cSYoshinori Sato #endif
1221da177e4SLinus Torvalds #ifdef CONFIG_SCHEDSTATS
1231da177e4SLinus Torvalds 	PROC_TGID_SCHEDSTAT,
1241da177e4SLinus Torvalds #endif
1251da177e4SLinus Torvalds #ifdef CONFIG_CPUSETS
1261da177e4SLinus Torvalds 	PROC_TGID_CPUSET,
1271da177e4SLinus Torvalds #endif
1281da177e4SLinus Torvalds #ifdef CONFIG_SECURITY
1291da177e4SLinus Torvalds 	PROC_TGID_ATTR,
1301da177e4SLinus Torvalds 	PROC_TGID_ATTR_CURRENT,
1311da177e4SLinus Torvalds 	PROC_TGID_ATTR_PREV,
1321da177e4SLinus Torvalds 	PROC_TGID_ATTR_EXEC,
1331da177e4SLinus Torvalds 	PROC_TGID_ATTR_FSCREATE,
1344eb582cfSMichael LeMay 	PROC_TGID_ATTR_KEYCREATE,
1351da177e4SLinus Torvalds #endif
1361da177e4SLinus Torvalds #ifdef CONFIG_AUDITSYSCALL
1371da177e4SLinus Torvalds 	PROC_TGID_LOGINUID,
1381da177e4SLinus Torvalds #endif
1391da177e4SLinus Torvalds 	PROC_TGID_OOM_SCORE,
1401da177e4SLinus Torvalds 	PROC_TGID_OOM_ADJUST,
1411da177e4SLinus Torvalds 	PROC_TID_INO,
1421da177e4SLinus Torvalds 	PROC_TID_STATUS,
1431da177e4SLinus Torvalds 	PROC_TID_MEM,
1441da177e4SLinus Torvalds #ifdef CONFIG_SECCOMP
1451da177e4SLinus Torvalds 	PROC_TID_SECCOMP,
1461da177e4SLinus Torvalds #endif
1471da177e4SLinus Torvalds 	PROC_TID_CWD,
1481da177e4SLinus Torvalds 	PROC_TID_ROOT,
1491da177e4SLinus Torvalds 	PROC_TID_EXE,
1501da177e4SLinus Torvalds 	PROC_TID_FD,
1511da177e4SLinus Torvalds 	PROC_TID_ENVIRON,
1521da177e4SLinus Torvalds 	PROC_TID_AUXV,
1531da177e4SLinus Torvalds 	PROC_TID_CMDLINE,
1541da177e4SLinus Torvalds 	PROC_TID_STAT,
1551da177e4SLinus Torvalds 	PROC_TID_STATM,
1561da177e4SLinus Torvalds 	PROC_TID_MAPS,
1576e21c8f1SChristoph Lameter 	PROC_TID_NUMA_MAPS,
1581da177e4SLinus Torvalds 	PROC_TID_MOUNTS,
159b4629fe2SChuck Lever 	PROC_TID_MOUNTSTATS,
1601da177e4SLinus Torvalds 	PROC_TID_WCHAN,
16163c6764cSYoshinori Sato #ifdef CONFIG_MMU
162e070ad49SMauricio Lin 	PROC_TID_SMAPS,
16363c6764cSYoshinori Sato #endif
1641da177e4SLinus Torvalds #ifdef CONFIG_SCHEDSTATS
1651da177e4SLinus Torvalds 	PROC_TID_SCHEDSTAT,
1661da177e4SLinus Torvalds #endif
1671da177e4SLinus Torvalds #ifdef CONFIG_CPUSETS
1681da177e4SLinus Torvalds 	PROC_TID_CPUSET,
1691da177e4SLinus Torvalds #endif
1701da177e4SLinus Torvalds #ifdef CONFIG_SECURITY
1711da177e4SLinus Torvalds 	PROC_TID_ATTR,
1721da177e4SLinus Torvalds 	PROC_TID_ATTR_CURRENT,
1731da177e4SLinus Torvalds 	PROC_TID_ATTR_PREV,
1741da177e4SLinus Torvalds 	PROC_TID_ATTR_EXEC,
1751da177e4SLinus Torvalds 	PROC_TID_ATTR_FSCREATE,
1764eb582cfSMichael LeMay 	PROC_TID_ATTR_KEYCREATE,
1771da177e4SLinus Torvalds #endif
1781da177e4SLinus Torvalds #ifdef CONFIG_AUDITSYSCALL
1791da177e4SLinus Torvalds 	PROC_TID_LOGINUID,
1801da177e4SLinus Torvalds #endif
1811da177e4SLinus Torvalds 	PROC_TID_OOM_SCORE,
1821da177e4SLinus Torvalds 	PROC_TID_OOM_ADJUST,
1835e21ccb1SMiklos Szeredi 
1845e21ccb1SMiklos Szeredi 	/* Add new entries before this */
1855e21ccb1SMiklos Szeredi 	PROC_TID_FD_DIR = 0x8000,	/* 0x8000-0xffff */
1861da177e4SLinus Torvalds };
1871da177e4SLinus Torvalds 
1881da177e4SLinus Torvalds struct pid_entry {
1891da177e4SLinus Torvalds 	int type;
1901da177e4SLinus Torvalds 	int len;
1911da177e4SLinus Torvalds 	char *name;
1921da177e4SLinus Torvalds 	mode_t mode;
1931da177e4SLinus Torvalds };
1941da177e4SLinus Torvalds 
1951da177e4SLinus Torvalds #define E(type,name,mode) {(type),sizeof(name)-1,(name),(mode)}
1961da177e4SLinus Torvalds 
1971da177e4SLinus Torvalds static struct pid_entry tgid_base_stuff[] = {
1981da177e4SLinus Torvalds 	E(PROC_TGID_TASK,      "task",    S_IFDIR|S_IRUGO|S_IXUGO),
1991da177e4SLinus Torvalds 	E(PROC_TGID_FD,        "fd",      S_IFDIR|S_IRUSR|S_IXUSR),
2001da177e4SLinus Torvalds 	E(PROC_TGID_ENVIRON,   "environ", S_IFREG|S_IRUSR),
2011da177e4SLinus Torvalds 	E(PROC_TGID_AUXV,      "auxv",	  S_IFREG|S_IRUSR),
2021da177e4SLinus Torvalds 	E(PROC_TGID_STATUS,    "status",  S_IFREG|S_IRUGO),
2031da177e4SLinus Torvalds 	E(PROC_TGID_CMDLINE,   "cmdline", S_IFREG|S_IRUGO),
2041da177e4SLinus Torvalds 	E(PROC_TGID_STAT,      "stat",    S_IFREG|S_IRUGO),
2051da177e4SLinus Torvalds 	E(PROC_TGID_STATM,     "statm",   S_IFREG|S_IRUGO),
2061da177e4SLinus Torvalds 	E(PROC_TGID_MAPS,      "maps",    S_IFREG|S_IRUGO),
2076e21c8f1SChristoph Lameter #ifdef CONFIG_NUMA
2086e21c8f1SChristoph Lameter 	E(PROC_TGID_NUMA_MAPS, "numa_maps", S_IFREG|S_IRUGO),
2096e21c8f1SChristoph Lameter #endif
2101da177e4SLinus Torvalds 	E(PROC_TGID_MEM,       "mem",     S_IFREG|S_IRUSR|S_IWUSR),
2111da177e4SLinus Torvalds #ifdef CONFIG_SECCOMP
2121da177e4SLinus Torvalds 	E(PROC_TGID_SECCOMP,   "seccomp", S_IFREG|S_IRUSR|S_IWUSR),
2131da177e4SLinus Torvalds #endif
2141da177e4SLinus Torvalds 	E(PROC_TGID_CWD,       "cwd",     S_IFLNK|S_IRWXUGO),
2151da177e4SLinus Torvalds 	E(PROC_TGID_ROOT,      "root",    S_IFLNK|S_IRWXUGO),
2161da177e4SLinus Torvalds 	E(PROC_TGID_EXE,       "exe",     S_IFLNK|S_IRWXUGO),
2171da177e4SLinus Torvalds 	E(PROC_TGID_MOUNTS,    "mounts",  S_IFREG|S_IRUGO),
218b4629fe2SChuck Lever 	E(PROC_TGID_MOUNTSTATS, "mountstats", S_IFREG|S_IRUSR),
21963c6764cSYoshinori Sato #ifdef CONFIG_MMU
220e070ad49SMauricio Lin 	E(PROC_TGID_SMAPS,     "smaps",   S_IFREG|S_IRUGO),
22163c6764cSYoshinori Sato #endif
2221da177e4SLinus Torvalds #ifdef CONFIG_SECURITY
2231da177e4SLinus Torvalds 	E(PROC_TGID_ATTR,      "attr",    S_IFDIR|S_IRUGO|S_IXUGO),
2241da177e4SLinus Torvalds #endif
2251da177e4SLinus Torvalds #ifdef CONFIG_KALLSYMS
2261da177e4SLinus Torvalds 	E(PROC_TGID_WCHAN,     "wchan",   S_IFREG|S_IRUGO),
2271da177e4SLinus Torvalds #endif
2281da177e4SLinus Torvalds #ifdef CONFIG_SCHEDSTATS
2291da177e4SLinus Torvalds 	E(PROC_TGID_SCHEDSTAT, "schedstat", S_IFREG|S_IRUGO),
2301da177e4SLinus Torvalds #endif
2311da177e4SLinus Torvalds #ifdef CONFIG_CPUSETS
2321da177e4SLinus Torvalds 	E(PROC_TGID_CPUSET,    "cpuset",  S_IFREG|S_IRUGO),
2331da177e4SLinus Torvalds #endif
2341da177e4SLinus Torvalds 	E(PROC_TGID_OOM_SCORE, "oom_score",S_IFREG|S_IRUGO),
2351da177e4SLinus Torvalds 	E(PROC_TGID_OOM_ADJUST,"oom_adj", S_IFREG|S_IRUGO|S_IWUSR),
2361da177e4SLinus Torvalds #ifdef CONFIG_AUDITSYSCALL
2371da177e4SLinus Torvalds 	E(PROC_TGID_LOGINUID, "loginuid", S_IFREG|S_IWUSR|S_IRUGO),
2381da177e4SLinus Torvalds #endif
2391da177e4SLinus Torvalds 	{0,0,NULL,0}
2401da177e4SLinus Torvalds };
2411da177e4SLinus Torvalds static struct pid_entry tid_base_stuff[] = {
2421da177e4SLinus Torvalds 	E(PROC_TID_FD,         "fd",      S_IFDIR|S_IRUSR|S_IXUSR),
2431da177e4SLinus Torvalds 	E(PROC_TID_ENVIRON,    "environ", S_IFREG|S_IRUSR),
2441da177e4SLinus Torvalds 	E(PROC_TID_AUXV,       "auxv",	  S_IFREG|S_IRUSR),
2451da177e4SLinus Torvalds 	E(PROC_TID_STATUS,     "status",  S_IFREG|S_IRUGO),
2461da177e4SLinus Torvalds 	E(PROC_TID_CMDLINE,    "cmdline", S_IFREG|S_IRUGO),
2471da177e4SLinus Torvalds 	E(PROC_TID_STAT,       "stat",    S_IFREG|S_IRUGO),
2481da177e4SLinus Torvalds 	E(PROC_TID_STATM,      "statm",   S_IFREG|S_IRUGO),
2491da177e4SLinus Torvalds 	E(PROC_TID_MAPS,       "maps",    S_IFREG|S_IRUGO),
2506e21c8f1SChristoph Lameter #ifdef CONFIG_NUMA
2516e21c8f1SChristoph Lameter 	E(PROC_TID_NUMA_MAPS,  "numa_maps",    S_IFREG|S_IRUGO),
2526e21c8f1SChristoph Lameter #endif
2531da177e4SLinus Torvalds 	E(PROC_TID_MEM,        "mem",     S_IFREG|S_IRUSR|S_IWUSR),
2541da177e4SLinus Torvalds #ifdef CONFIG_SECCOMP
2551da177e4SLinus Torvalds 	E(PROC_TID_SECCOMP,    "seccomp", S_IFREG|S_IRUSR|S_IWUSR),
2561da177e4SLinus Torvalds #endif
2571da177e4SLinus Torvalds 	E(PROC_TID_CWD,        "cwd",     S_IFLNK|S_IRWXUGO),
2581da177e4SLinus Torvalds 	E(PROC_TID_ROOT,       "root",    S_IFLNK|S_IRWXUGO),
2591da177e4SLinus Torvalds 	E(PROC_TID_EXE,        "exe",     S_IFLNK|S_IRWXUGO),
2601da177e4SLinus Torvalds 	E(PROC_TID_MOUNTS,     "mounts",  S_IFREG|S_IRUGO),
26163c6764cSYoshinori Sato #ifdef CONFIG_MMU
262e070ad49SMauricio Lin 	E(PROC_TID_SMAPS,      "smaps",   S_IFREG|S_IRUGO),
26363c6764cSYoshinori Sato #endif
2641da177e4SLinus Torvalds #ifdef CONFIG_SECURITY
2651da177e4SLinus Torvalds 	E(PROC_TID_ATTR,       "attr",    S_IFDIR|S_IRUGO|S_IXUGO),
2661da177e4SLinus Torvalds #endif
2671da177e4SLinus Torvalds #ifdef CONFIG_KALLSYMS
2681da177e4SLinus Torvalds 	E(PROC_TID_WCHAN,      "wchan",   S_IFREG|S_IRUGO),
2691da177e4SLinus Torvalds #endif
2701da177e4SLinus Torvalds #ifdef CONFIG_SCHEDSTATS
2711da177e4SLinus Torvalds 	E(PROC_TID_SCHEDSTAT, "schedstat",S_IFREG|S_IRUGO),
2721da177e4SLinus Torvalds #endif
2731da177e4SLinus Torvalds #ifdef CONFIG_CPUSETS
2741da177e4SLinus Torvalds 	E(PROC_TID_CPUSET,     "cpuset",  S_IFREG|S_IRUGO),
2751da177e4SLinus Torvalds #endif
2761da177e4SLinus Torvalds 	E(PROC_TID_OOM_SCORE,  "oom_score",S_IFREG|S_IRUGO),
2771da177e4SLinus Torvalds 	E(PROC_TID_OOM_ADJUST, "oom_adj", S_IFREG|S_IRUGO|S_IWUSR),
2781da177e4SLinus Torvalds #ifdef CONFIG_AUDITSYSCALL
2791da177e4SLinus Torvalds 	E(PROC_TID_LOGINUID, "loginuid", S_IFREG|S_IWUSR|S_IRUGO),
2801da177e4SLinus Torvalds #endif
2811da177e4SLinus Torvalds 	{0,0,NULL,0}
2821da177e4SLinus Torvalds };
2831da177e4SLinus Torvalds 
2841da177e4SLinus Torvalds #ifdef CONFIG_SECURITY
2851da177e4SLinus Torvalds static struct pid_entry tgid_attr_stuff[] = {
2861da177e4SLinus Torvalds 	E(PROC_TGID_ATTR_CURRENT,  "current",  S_IFREG|S_IRUGO|S_IWUGO),
2871da177e4SLinus Torvalds 	E(PROC_TGID_ATTR_PREV,     "prev",     S_IFREG|S_IRUGO),
2881da177e4SLinus Torvalds 	E(PROC_TGID_ATTR_EXEC,     "exec",     S_IFREG|S_IRUGO|S_IWUGO),
2891da177e4SLinus Torvalds 	E(PROC_TGID_ATTR_FSCREATE, "fscreate", S_IFREG|S_IRUGO|S_IWUGO),
2904eb582cfSMichael LeMay 	E(PROC_TGID_ATTR_KEYCREATE, "keycreate", S_IFREG|S_IRUGO|S_IWUGO),
2911da177e4SLinus Torvalds 	{0,0,NULL,0}
2921da177e4SLinus Torvalds };
2931da177e4SLinus Torvalds static struct pid_entry tid_attr_stuff[] = {
2941da177e4SLinus Torvalds 	E(PROC_TID_ATTR_CURRENT,   "current",  S_IFREG|S_IRUGO|S_IWUGO),
2951da177e4SLinus Torvalds 	E(PROC_TID_ATTR_PREV,      "prev",     S_IFREG|S_IRUGO),
2961da177e4SLinus Torvalds 	E(PROC_TID_ATTR_EXEC,      "exec",     S_IFREG|S_IRUGO|S_IWUGO),
2971da177e4SLinus Torvalds 	E(PROC_TID_ATTR_FSCREATE,  "fscreate", S_IFREG|S_IRUGO|S_IWUGO),
2984eb582cfSMichael LeMay 	E(PROC_TID_ATTR_KEYCREATE, "keycreate", S_IFREG|S_IRUGO|S_IWUGO),
2991da177e4SLinus Torvalds 	{0,0,NULL,0}
3001da177e4SLinus Torvalds };
3011da177e4SLinus Torvalds #endif
3021da177e4SLinus Torvalds 
3031da177e4SLinus Torvalds #undef E
3041da177e4SLinus Torvalds 
3051da177e4SLinus Torvalds static int proc_fd_link(struct inode *inode, struct dentry **dentry, struct vfsmount **mnt)
3061da177e4SLinus Torvalds {
3071da177e4SLinus Torvalds 	struct task_struct *task = proc_task(inode);
3081da177e4SLinus Torvalds 	struct files_struct *files;
3091da177e4SLinus Torvalds 	struct file *file;
310aed7a6c4SEric W. Biederman 	int fd = proc_fd(inode);
3111da177e4SLinus Torvalds 
3121da177e4SLinus Torvalds 	files = get_files_struct(task);
3131da177e4SLinus Torvalds 	if (files) {
314ca99c1daSDipankar Sarma 		/*
315ca99c1daSDipankar Sarma 		 * We are not taking a ref to the file structure, so we must
316ca99c1daSDipankar Sarma 		 * hold ->file_lock.
317ca99c1daSDipankar Sarma 		 */
318ca99c1daSDipankar Sarma 		spin_lock(&files->file_lock);
3191da177e4SLinus Torvalds 		file = fcheck_files(files, fd);
3201da177e4SLinus Torvalds 		if (file) {
3211da177e4SLinus Torvalds 			*mnt = mntget(file->f_vfsmnt);
3221da177e4SLinus Torvalds 			*dentry = dget(file->f_dentry);
323ca99c1daSDipankar Sarma 			spin_unlock(&files->file_lock);
3241da177e4SLinus Torvalds 			put_files_struct(files);
3251da177e4SLinus Torvalds 			return 0;
3261da177e4SLinus Torvalds 		}
327ca99c1daSDipankar Sarma 		spin_unlock(&files->file_lock);
3281da177e4SLinus Torvalds 		put_files_struct(files);
3291da177e4SLinus Torvalds 	}
3301da177e4SLinus Torvalds 	return -ENOENT;
3311da177e4SLinus Torvalds }
3321da177e4SLinus Torvalds 
3330494f6ecSMiklos Szeredi static struct fs_struct *get_fs_struct(struct task_struct *task)
3341da177e4SLinus Torvalds {
3351da177e4SLinus Torvalds 	struct fs_struct *fs;
3360494f6ecSMiklos Szeredi 	task_lock(task);
3370494f6ecSMiklos Szeredi 	fs = task->fs;
3381da177e4SLinus Torvalds 	if(fs)
3391da177e4SLinus Torvalds 		atomic_inc(&fs->count);
3400494f6ecSMiklos Szeredi 	task_unlock(task);
3410494f6ecSMiklos Szeredi 	return fs;
3420494f6ecSMiklos Szeredi }
3430494f6ecSMiklos Szeredi 
3440494f6ecSMiklos Szeredi static int proc_cwd_link(struct inode *inode, struct dentry **dentry, struct vfsmount **mnt)
3450494f6ecSMiklos Szeredi {
3460494f6ecSMiklos Szeredi 	struct fs_struct *fs = get_fs_struct(proc_task(inode));
3470494f6ecSMiklos Szeredi 	int result = -ENOENT;
3481da177e4SLinus Torvalds 	if (fs) {
3491da177e4SLinus Torvalds 		read_lock(&fs->lock);
3501da177e4SLinus Torvalds 		*mnt = mntget(fs->pwdmnt);
3511da177e4SLinus Torvalds 		*dentry = dget(fs->pwd);
3521da177e4SLinus Torvalds 		read_unlock(&fs->lock);
3531da177e4SLinus Torvalds 		result = 0;
3541da177e4SLinus Torvalds 		put_fs_struct(fs);
3551da177e4SLinus Torvalds 	}
3561da177e4SLinus Torvalds 	return result;
3571da177e4SLinus Torvalds }
3581da177e4SLinus Torvalds 
3591da177e4SLinus Torvalds static int proc_root_link(struct inode *inode, struct dentry **dentry, struct vfsmount **mnt)
3601da177e4SLinus Torvalds {
3610494f6ecSMiklos Szeredi 	struct fs_struct *fs = get_fs_struct(proc_task(inode));
3621da177e4SLinus Torvalds 	int result = -ENOENT;
3631da177e4SLinus Torvalds 	if (fs) {
3641da177e4SLinus Torvalds 		read_lock(&fs->lock);
3651da177e4SLinus Torvalds 		*mnt = mntget(fs->rootmnt);
3661da177e4SLinus Torvalds 		*dentry = dget(fs->root);
3671da177e4SLinus Torvalds 		read_unlock(&fs->lock);
3681da177e4SLinus Torvalds 		result = 0;
3691da177e4SLinus Torvalds 		put_fs_struct(fs);
3701da177e4SLinus Torvalds 	}
3711da177e4SLinus Torvalds 	return result;
3721da177e4SLinus Torvalds }
3731da177e4SLinus Torvalds 
3741da177e4SLinus Torvalds #define MAY_PTRACE(task) \
3751da177e4SLinus Torvalds 	(task == current || \
3761da177e4SLinus Torvalds 	(task->parent == current && \
3771da177e4SLinus Torvalds 	(task->ptrace & PT_PTRACED) && \
3781da177e4SLinus Torvalds 	 (task->state == TASK_STOPPED || task->state == TASK_TRACED) && \
3791da177e4SLinus Torvalds 	 security_ptrace(current,task) == 0))
3801da177e4SLinus Torvalds 
3811da177e4SLinus Torvalds static int proc_pid_environ(struct task_struct *task, char * buffer)
3821da177e4SLinus Torvalds {
3831da177e4SLinus Torvalds 	int res = 0;
3841da177e4SLinus Torvalds 	struct mm_struct *mm = get_task_mm(task);
3851da177e4SLinus Torvalds 	if (mm) {
3861da177e4SLinus Torvalds 		unsigned int len = mm->env_end - mm->env_start;
3871da177e4SLinus Torvalds 		if (len > PAGE_SIZE)
3881da177e4SLinus Torvalds 			len = PAGE_SIZE;
3891da177e4SLinus Torvalds 		res = access_process_vm(task, mm->env_start, buffer, len, 0);
390ab8d11beSMiklos Szeredi 		if (!ptrace_may_attach(task))
3911da177e4SLinus Torvalds 			res = -ESRCH;
3921da177e4SLinus Torvalds 		mmput(mm);
3931da177e4SLinus Torvalds 	}
3941da177e4SLinus Torvalds 	return res;
3951da177e4SLinus Torvalds }
3961da177e4SLinus Torvalds 
3971da177e4SLinus Torvalds static int proc_pid_cmdline(struct task_struct *task, char * buffer)
3981da177e4SLinus Torvalds {
3991da177e4SLinus Torvalds 	int res = 0;
4001da177e4SLinus Torvalds 	unsigned int len;
4011da177e4SLinus Torvalds 	struct mm_struct *mm = get_task_mm(task);
4021da177e4SLinus Torvalds 	if (!mm)
4031da177e4SLinus Torvalds 		goto out;
4041da177e4SLinus Torvalds 	if (!mm->arg_end)
4051da177e4SLinus Torvalds 		goto out_mm;	/* Shh! No looking before we're done */
4061da177e4SLinus Torvalds 
4071da177e4SLinus Torvalds  	len = mm->arg_end - mm->arg_start;
4081da177e4SLinus Torvalds 
4091da177e4SLinus Torvalds 	if (len > PAGE_SIZE)
4101da177e4SLinus Torvalds 		len = PAGE_SIZE;
4111da177e4SLinus Torvalds 
4121da177e4SLinus Torvalds 	res = access_process_vm(task, mm->arg_start, buffer, len, 0);
4131da177e4SLinus Torvalds 
4141da177e4SLinus Torvalds 	// If the nul at the end of args has been overwritten, then
4151da177e4SLinus Torvalds 	// assume application is using setproctitle(3).
4161da177e4SLinus Torvalds 	if (res > 0 && buffer[res-1] != '\0' && len < PAGE_SIZE) {
4171da177e4SLinus Torvalds 		len = strnlen(buffer, res);
4181da177e4SLinus Torvalds 		if (len < res) {
4191da177e4SLinus Torvalds 		    res = len;
4201da177e4SLinus Torvalds 		} else {
4211da177e4SLinus Torvalds 			len = mm->env_end - mm->env_start;
4221da177e4SLinus Torvalds 			if (len > PAGE_SIZE - res)
4231da177e4SLinus Torvalds 				len = PAGE_SIZE - res;
4241da177e4SLinus Torvalds 			res += access_process_vm(task, mm->env_start, buffer+res, len, 0);
4251da177e4SLinus Torvalds 			res = strnlen(buffer, res);
4261da177e4SLinus Torvalds 		}
4271da177e4SLinus Torvalds 	}
4281da177e4SLinus Torvalds out_mm:
4291da177e4SLinus Torvalds 	mmput(mm);
4301da177e4SLinus Torvalds out:
4311da177e4SLinus Torvalds 	return res;
4321da177e4SLinus Torvalds }
4331da177e4SLinus Torvalds 
4341da177e4SLinus Torvalds static int proc_pid_auxv(struct task_struct *task, char *buffer)
4351da177e4SLinus Torvalds {
4361da177e4SLinus Torvalds 	int res = 0;
4371da177e4SLinus Torvalds 	struct mm_struct *mm = get_task_mm(task);
4381da177e4SLinus Torvalds 	if (mm) {
4391da177e4SLinus Torvalds 		unsigned int nwords = 0;
4401da177e4SLinus Torvalds 		do
4411da177e4SLinus Torvalds 			nwords += 2;
4421da177e4SLinus Torvalds 		while (mm->saved_auxv[nwords - 2] != 0); /* AT_NULL */
4431da177e4SLinus Torvalds 		res = nwords * sizeof(mm->saved_auxv[0]);
4441da177e4SLinus Torvalds 		if (res > PAGE_SIZE)
4451da177e4SLinus Torvalds 			res = PAGE_SIZE;
4461da177e4SLinus Torvalds 		memcpy(buffer, mm->saved_auxv, res);
4471da177e4SLinus Torvalds 		mmput(mm);
4481da177e4SLinus Torvalds 	}
4491da177e4SLinus Torvalds 	return res;
4501da177e4SLinus Torvalds }
4511da177e4SLinus Torvalds 
4521da177e4SLinus Torvalds 
4531da177e4SLinus Torvalds #ifdef CONFIG_KALLSYMS
4541da177e4SLinus Torvalds /*
4551da177e4SLinus Torvalds  * Provides a wchan file via kallsyms in a proper one-value-per-file format.
4561da177e4SLinus Torvalds  * Returns the resolved symbol.  If that fails, simply return the address.
4571da177e4SLinus Torvalds  */
4581da177e4SLinus Torvalds static int proc_pid_wchan(struct task_struct *task, char *buffer)
4591da177e4SLinus Torvalds {
4601da177e4SLinus Torvalds 	char *modname;
4611da177e4SLinus Torvalds 	const char *sym_name;
4621da177e4SLinus Torvalds 	unsigned long wchan, size, offset;
4631da177e4SLinus Torvalds 	char namebuf[KSYM_NAME_LEN+1];
4641da177e4SLinus Torvalds 
4651da177e4SLinus Torvalds 	wchan = get_wchan(task);
4661da177e4SLinus Torvalds 
4671da177e4SLinus Torvalds 	sym_name = kallsyms_lookup(wchan, &size, &offset, &modname, namebuf);
4681da177e4SLinus Torvalds 	if (sym_name)
4691da177e4SLinus Torvalds 		return sprintf(buffer, "%s", sym_name);
4701da177e4SLinus Torvalds 	return sprintf(buffer, "%lu", wchan);
4711da177e4SLinus Torvalds }
4721da177e4SLinus Torvalds #endif /* CONFIG_KALLSYMS */
4731da177e4SLinus Torvalds 
4741da177e4SLinus Torvalds #ifdef CONFIG_SCHEDSTATS
4751da177e4SLinus Torvalds /*
4761da177e4SLinus Torvalds  * Provides /proc/PID/schedstat
4771da177e4SLinus Torvalds  */
4781da177e4SLinus Torvalds static int proc_pid_schedstat(struct task_struct *task, char *buffer)
4791da177e4SLinus Torvalds {
4801da177e4SLinus Torvalds 	return sprintf(buffer, "%lu %lu %lu\n",
4811da177e4SLinus Torvalds 			task->sched_info.cpu_time,
4821da177e4SLinus Torvalds 			task->sched_info.run_delay,
4831da177e4SLinus Torvalds 			task->sched_info.pcnt);
4841da177e4SLinus Torvalds }
4851da177e4SLinus Torvalds #endif
4861da177e4SLinus Torvalds 
4871da177e4SLinus Torvalds /* The badness from the OOM killer */
4881da177e4SLinus Torvalds unsigned long badness(struct task_struct *p, unsigned long uptime);
4891da177e4SLinus Torvalds static int proc_oom_score(struct task_struct *task, char *buffer)
4901da177e4SLinus Torvalds {
4911da177e4SLinus Torvalds 	unsigned long points;
4921da177e4SLinus Torvalds 	struct timespec uptime;
4931da177e4SLinus Torvalds 
4941da177e4SLinus Torvalds 	do_posix_clock_monotonic_gettime(&uptime);
4951da177e4SLinus Torvalds 	points = badness(task, uptime.tv_sec);
4961da177e4SLinus Torvalds 	return sprintf(buffer, "%lu\n", points);
4971da177e4SLinus Torvalds }
4981da177e4SLinus Torvalds 
4991da177e4SLinus Torvalds /************************************************************************/
5001da177e4SLinus Torvalds /*                       Here the fs part begins                        */
5011da177e4SLinus Torvalds /************************************************************************/
5021da177e4SLinus Torvalds 
5031da177e4SLinus Torvalds /* permission checks */
5041da177e4SLinus Torvalds 
50566dcca06SSripathi Kodi /* If the process being read is separated by chroot from the reading process,
50666dcca06SSripathi Kodi  * don't let the reader access the threads.
50766dcca06SSripathi Kodi  */
5080f2fe20fSEric W. Biederman static int proc_check_chroot(struct dentry *de, struct vfsmount *mnt)
5091da177e4SLinus Torvalds {
5100f2fe20fSEric W. Biederman 	struct dentry *base;
5110f2fe20fSEric W. Biederman 	struct vfsmount *our_vfsmnt;
5121da177e4SLinus Torvalds 	int res = 0;
513e4e5d3fcSHerbert Poetzl 
5141da177e4SLinus Torvalds 	read_lock(&current->fs->lock);
5151da177e4SLinus Torvalds 	our_vfsmnt = mntget(current->fs->rootmnt);
5161da177e4SLinus Torvalds 	base = dget(current->fs->root);
5171da177e4SLinus Torvalds 	read_unlock(&current->fs->lock);
5181da177e4SLinus Torvalds 
5191da177e4SLinus Torvalds 	spin_lock(&vfsmount_lock);
5201da177e4SLinus Torvalds 
521e4e5d3fcSHerbert Poetzl 	while (mnt != our_vfsmnt) {
522e4e5d3fcSHerbert Poetzl 		if (mnt == mnt->mnt_parent)
5231da177e4SLinus Torvalds 			goto out;
524e4e5d3fcSHerbert Poetzl 		de = mnt->mnt_mountpoint;
525e4e5d3fcSHerbert Poetzl 		mnt = mnt->mnt_parent;
5261da177e4SLinus Torvalds 	}
5271da177e4SLinus Torvalds 
5281da177e4SLinus Torvalds 	if (!is_subdir(de, base))
5291da177e4SLinus Torvalds 		goto out;
5301da177e4SLinus Torvalds 	spin_unlock(&vfsmount_lock);
5311da177e4SLinus Torvalds 
5321da177e4SLinus Torvalds exit:
5331da177e4SLinus Torvalds 	dput(base);
5341da177e4SLinus Torvalds 	mntput(our_vfsmnt);
5351da177e4SLinus Torvalds 	return res;
5361da177e4SLinus Torvalds out:
5371da177e4SLinus Torvalds 	spin_unlock(&vfsmount_lock);
5381da177e4SLinus Torvalds 	res = -EACCES;
5391da177e4SLinus Torvalds 	goto exit;
5401da177e4SLinus Torvalds }
5411da177e4SLinus Torvalds 
5421da177e4SLinus Torvalds extern struct seq_operations mounts_op;
5435addc5ddSAl Viro struct proc_mounts {
5445addc5ddSAl Viro 	struct seq_file m;
5455addc5ddSAl Viro 	int event;
5465addc5ddSAl Viro };
5475addc5ddSAl Viro 
5481da177e4SLinus Torvalds static int mounts_open(struct inode *inode, struct file *file)
5491da177e4SLinus Torvalds {
5501da177e4SLinus Torvalds 	struct task_struct *task = proc_task(inode);
5511da177e4SLinus Torvalds 	struct namespace *namespace;
5525addc5ddSAl Viro 	struct proc_mounts *p;
5535addc5ddSAl Viro 	int ret = -EINVAL;
5545addc5ddSAl Viro 
5551da177e4SLinus Torvalds 	task_lock(task);
5561da177e4SLinus Torvalds 	namespace = task->namespace;
5571da177e4SLinus Torvalds 	if (namespace)
5581da177e4SLinus Torvalds 		get_namespace(namespace);
5591da177e4SLinus Torvalds 	task_unlock(task);
5601da177e4SLinus Torvalds 
5615addc5ddSAl Viro 	if (namespace) {
5625addc5ddSAl Viro 		ret = -ENOMEM;
5635addc5ddSAl Viro 		p = kmalloc(sizeof(struct proc_mounts), GFP_KERNEL);
5645addc5ddSAl Viro 		if (p) {
5655addc5ddSAl Viro 			file->private_data = &p->m;
5665addc5ddSAl Viro 			ret = seq_open(file, &mounts_op);
5675addc5ddSAl Viro 			if (!ret) {
5685addc5ddSAl Viro 				p->m.private = namespace;
5695addc5ddSAl Viro 				p->event = namespace->event;
5705addc5ddSAl Viro 				return 0;
5711da177e4SLinus Torvalds 			}
5725addc5ddSAl Viro 			kfree(p);
5735addc5ddSAl Viro 		}
5745addc5ddSAl Viro 		put_namespace(namespace);
5751da177e4SLinus Torvalds 	}
5761da177e4SLinus Torvalds 	return ret;
5771da177e4SLinus Torvalds }
5781da177e4SLinus Torvalds 
5791da177e4SLinus Torvalds static int mounts_release(struct inode *inode, struct file *file)
5801da177e4SLinus Torvalds {
5811da177e4SLinus Torvalds 	struct seq_file *m = file->private_data;
5821da177e4SLinus Torvalds 	struct namespace *namespace = m->private;
5831da177e4SLinus Torvalds 	put_namespace(namespace);
5841da177e4SLinus Torvalds 	return seq_release(inode, file);
5851da177e4SLinus Torvalds }
5861da177e4SLinus Torvalds 
5875addc5ddSAl Viro static unsigned mounts_poll(struct file *file, poll_table *wait)
5885addc5ddSAl Viro {
5895addc5ddSAl Viro 	struct proc_mounts *p = file->private_data;
5905addc5ddSAl Viro 	struct namespace *ns = p->m.private;
5915addc5ddSAl Viro 	unsigned res = 0;
5925addc5ddSAl Viro 
5935addc5ddSAl Viro 	poll_wait(file, &ns->poll, wait);
5945addc5ddSAl Viro 
5955addc5ddSAl Viro 	spin_lock(&vfsmount_lock);
5965addc5ddSAl Viro 	if (p->event != ns->event) {
5975addc5ddSAl Viro 		p->event = ns->event;
5985addc5ddSAl Viro 		res = POLLERR;
5995addc5ddSAl Viro 	}
6005addc5ddSAl Viro 	spin_unlock(&vfsmount_lock);
6015addc5ddSAl Viro 
6025addc5ddSAl Viro 	return res;
6035addc5ddSAl Viro }
6045addc5ddSAl Viro 
6051da177e4SLinus Torvalds static struct file_operations proc_mounts_operations = {
6061da177e4SLinus Torvalds 	.open		= mounts_open,
6071da177e4SLinus Torvalds 	.read		= seq_read,
6081da177e4SLinus Torvalds 	.llseek		= seq_lseek,
6091da177e4SLinus Torvalds 	.release	= mounts_release,
6105addc5ddSAl Viro 	.poll		= mounts_poll,
6111da177e4SLinus Torvalds };
6121da177e4SLinus Torvalds 
613b4629fe2SChuck Lever extern struct seq_operations mountstats_op;
614b4629fe2SChuck Lever static int mountstats_open(struct inode *inode, struct file *file)
615b4629fe2SChuck Lever {
616b4629fe2SChuck Lever 	struct task_struct *task = proc_task(inode);
617b4629fe2SChuck Lever 	int ret = seq_open(file, &mountstats_op);
618b4629fe2SChuck Lever 
619b4629fe2SChuck Lever 	if (!ret) {
620b4629fe2SChuck Lever 		struct seq_file *m = file->private_data;
621b4629fe2SChuck Lever 		struct namespace *namespace;
622b4629fe2SChuck Lever 		task_lock(task);
623b4629fe2SChuck Lever 		namespace = task->namespace;
624b4629fe2SChuck Lever 		if (namespace)
625b4629fe2SChuck Lever 			get_namespace(namespace);
626b4629fe2SChuck Lever 		task_unlock(task);
627b4629fe2SChuck Lever 
628b4629fe2SChuck Lever 		if (namespace)
629b4629fe2SChuck Lever 			m->private = namespace;
630b4629fe2SChuck Lever 		else {
631b4629fe2SChuck Lever 			seq_release(inode, file);
632b4629fe2SChuck Lever 			ret = -EINVAL;
633b4629fe2SChuck Lever 		}
634b4629fe2SChuck Lever 	}
635b4629fe2SChuck Lever 	return ret;
636b4629fe2SChuck Lever }
637b4629fe2SChuck Lever 
638b4629fe2SChuck Lever static struct file_operations proc_mountstats_operations = {
639b4629fe2SChuck Lever 	.open		= mountstats_open,
640b4629fe2SChuck Lever 	.read		= seq_read,
641b4629fe2SChuck Lever 	.llseek		= seq_lseek,
642b4629fe2SChuck Lever 	.release	= mounts_release,
643b4629fe2SChuck Lever };
644b4629fe2SChuck Lever 
6451da177e4SLinus Torvalds #define PROC_BLOCK_SIZE	(3*1024)		/* 4K page size but our output routines use some slack for overruns */
6461da177e4SLinus Torvalds 
6471da177e4SLinus Torvalds static ssize_t proc_info_read(struct file * file, char __user * buf,
6481da177e4SLinus Torvalds 			  size_t count, loff_t *ppos)
6491da177e4SLinus Torvalds {
6501da177e4SLinus Torvalds 	struct inode * inode = file->f_dentry->d_inode;
6511da177e4SLinus Torvalds 	unsigned long page;
6521da177e4SLinus Torvalds 	ssize_t length;
6531da177e4SLinus Torvalds 	struct task_struct *task = proc_task(inode);
6541da177e4SLinus Torvalds 
6551da177e4SLinus Torvalds 	if (count > PROC_BLOCK_SIZE)
6561da177e4SLinus Torvalds 		count = PROC_BLOCK_SIZE;
6571da177e4SLinus Torvalds 	if (!(page = __get_free_page(GFP_KERNEL)))
6581da177e4SLinus Torvalds 		return -ENOMEM;
6591da177e4SLinus Torvalds 
6601da177e4SLinus Torvalds 	length = PROC_I(inode)->op.proc_read(task, (char*)page);
6611da177e4SLinus Torvalds 
6621da177e4SLinus Torvalds 	if (length >= 0)
6631da177e4SLinus Torvalds 		length = simple_read_from_buffer(buf, count, ppos, (char *)page, length);
6641da177e4SLinus Torvalds 	free_page(page);
6651da177e4SLinus Torvalds 	return length;
6661da177e4SLinus Torvalds }
6671da177e4SLinus Torvalds 
6681da177e4SLinus Torvalds static struct file_operations proc_info_file_operations = {
6691da177e4SLinus Torvalds 	.read		= proc_info_read,
6701da177e4SLinus Torvalds };
6711da177e4SLinus Torvalds 
6721da177e4SLinus Torvalds static int mem_open(struct inode* inode, struct file* file)
6731da177e4SLinus Torvalds {
6741da177e4SLinus Torvalds 	file->private_data = (void*)((long)current->self_exec_id);
6751da177e4SLinus Torvalds 	return 0;
6761da177e4SLinus Torvalds }
6771da177e4SLinus Torvalds 
6781da177e4SLinus Torvalds static ssize_t mem_read(struct file * file, char __user * buf,
6791da177e4SLinus Torvalds 			size_t count, loff_t *ppos)
6801da177e4SLinus Torvalds {
6811da177e4SLinus Torvalds 	struct task_struct *task = proc_task(file->f_dentry->d_inode);
6821da177e4SLinus Torvalds 	char *page;
6831da177e4SLinus Torvalds 	unsigned long src = *ppos;
6841da177e4SLinus Torvalds 	int ret = -ESRCH;
6851da177e4SLinus Torvalds 	struct mm_struct *mm;
6861da177e4SLinus Torvalds 
687ab8d11beSMiklos Szeredi 	if (!MAY_PTRACE(task) || !ptrace_may_attach(task))
6881da177e4SLinus Torvalds 		goto out;
6891da177e4SLinus Torvalds 
6901da177e4SLinus Torvalds 	ret = -ENOMEM;
6911da177e4SLinus Torvalds 	page = (char *)__get_free_page(GFP_USER);
6921da177e4SLinus Torvalds 	if (!page)
6931da177e4SLinus Torvalds 		goto out;
6941da177e4SLinus Torvalds 
6951da177e4SLinus Torvalds 	ret = 0;
6961da177e4SLinus Torvalds 
6971da177e4SLinus Torvalds 	mm = get_task_mm(task);
6981da177e4SLinus Torvalds 	if (!mm)
6991da177e4SLinus Torvalds 		goto out_free;
7001da177e4SLinus Torvalds 
7011da177e4SLinus Torvalds 	ret = -EIO;
7021da177e4SLinus Torvalds 
7031da177e4SLinus Torvalds 	if (file->private_data != (void*)((long)current->self_exec_id))
7041da177e4SLinus Torvalds 		goto out_put;
7051da177e4SLinus Torvalds 
7061da177e4SLinus Torvalds 	ret = 0;
7071da177e4SLinus Torvalds 
7081da177e4SLinus Torvalds 	while (count > 0) {
7091da177e4SLinus Torvalds 		int this_len, retval;
7101da177e4SLinus Torvalds 
7111da177e4SLinus Torvalds 		this_len = (count > PAGE_SIZE) ? PAGE_SIZE : count;
7121da177e4SLinus Torvalds 		retval = access_process_vm(task, src, page, this_len, 0);
713ab8d11beSMiklos Szeredi 		if (!retval || !MAY_PTRACE(task) || !ptrace_may_attach(task)) {
7141da177e4SLinus Torvalds 			if (!ret)
7151da177e4SLinus Torvalds 				ret = -EIO;
7161da177e4SLinus Torvalds 			break;
7171da177e4SLinus Torvalds 		}
7181da177e4SLinus Torvalds 
7191da177e4SLinus Torvalds 		if (copy_to_user(buf, page, retval)) {
7201da177e4SLinus Torvalds 			ret = -EFAULT;
7211da177e4SLinus Torvalds 			break;
7221da177e4SLinus Torvalds 		}
7231da177e4SLinus Torvalds 
7241da177e4SLinus Torvalds 		ret += retval;
7251da177e4SLinus Torvalds 		src += retval;
7261da177e4SLinus Torvalds 		buf += retval;
7271da177e4SLinus Torvalds 		count -= retval;
7281da177e4SLinus Torvalds 	}
7291da177e4SLinus Torvalds 	*ppos = src;
7301da177e4SLinus Torvalds 
7311da177e4SLinus Torvalds out_put:
7321da177e4SLinus Torvalds 	mmput(mm);
7331da177e4SLinus Torvalds out_free:
7341da177e4SLinus Torvalds 	free_page((unsigned long) page);
7351da177e4SLinus Torvalds out:
7361da177e4SLinus Torvalds 	return ret;
7371da177e4SLinus Torvalds }
7381da177e4SLinus Torvalds 
7391da177e4SLinus Torvalds #define mem_write NULL
7401da177e4SLinus Torvalds 
7411da177e4SLinus Torvalds #ifndef mem_write
7421da177e4SLinus Torvalds /* This is a security hazard */
7431da177e4SLinus Torvalds static ssize_t mem_write(struct file * file, const char * buf,
7441da177e4SLinus Torvalds 			 size_t count, loff_t *ppos)
7451da177e4SLinus Torvalds {
7461da177e4SLinus Torvalds 	int copied = 0;
7471da177e4SLinus Torvalds 	char *page;
7481da177e4SLinus Torvalds 	struct task_struct *task = proc_task(file->f_dentry->d_inode);
7491da177e4SLinus Torvalds 	unsigned long dst = *ppos;
7501da177e4SLinus Torvalds 
751ab8d11beSMiklos Szeredi 	if (!MAY_PTRACE(task) || !ptrace_may_attach(task))
7521da177e4SLinus Torvalds 		return -ESRCH;
7531da177e4SLinus Torvalds 
7541da177e4SLinus Torvalds 	page = (char *)__get_free_page(GFP_USER);
7551da177e4SLinus Torvalds 	if (!page)
7561da177e4SLinus Torvalds 		return -ENOMEM;
7571da177e4SLinus Torvalds 
7581da177e4SLinus Torvalds 	while (count > 0) {
7591da177e4SLinus Torvalds 		int this_len, retval;
7601da177e4SLinus Torvalds 
7611da177e4SLinus Torvalds 		this_len = (count > PAGE_SIZE) ? PAGE_SIZE : count;
7621da177e4SLinus Torvalds 		if (copy_from_user(page, buf, this_len)) {
7631da177e4SLinus Torvalds 			copied = -EFAULT;
7641da177e4SLinus Torvalds 			break;
7651da177e4SLinus Torvalds 		}
7661da177e4SLinus Torvalds 		retval = access_process_vm(task, dst, page, this_len, 1);
7671da177e4SLinus Torvalds 		if (!retval) {
7681da177e4SLinus Torvalds 			if (!copied)
7691da177e4SLinus Torvalds 				copied = -EIO;
7701da177e4SLinus Torvalds 			break;
7711da177e4SLinus Torvalds 		}
7721da177e4SLinus Torvalds 		copied += retval;
7731da177e4SLinus Torvalds 		buf += retval;
7741da177e4SLinus Torvalds 		dst += retval;
7751da177e4SLinus Torvalds 		count -= retval;
7761da177e4SLinus Torvalds 	}
7771da177e4SLinus Torvalds 	*ppos = dst;
7781da177e4SLinus Torvalds 	free_page((unsigned long) page);
7791da177e4SLinus Torvalds 	return copied;
7801da177e4SLinus Torvalds }
7811da177e4SLinus Torvalds #endif
7821da177e4SLinus Torvalds 
7831da177e4SLinus Torvalds static loff_t mem_lseek(struct file * file, loff_t offset, int orig)
7841da177e4SLinus Torvalds {
7851da177e4SLinus Torvalds 	switch (orig) {
7861da177e4SLinus Torvalds 	case 0:
7871da177e4SLinus Torvalds 		file->f_pos = offset;
7881da177e4SLinus Torvalds 		break;
7891da177e4SLinus Torvalds 	case 1:
7901da177e4SLinus Torvalds 		file->f_pos += offset;
7911da177e4SLinus Torvalds 		break;
7921da177e4SLinus Torvalds 	default:
7931da177e4SLinus Torvalds 		return -EINVAL;
7941da177e4SLinus Torvalds 	}
7951da177e4SLinus Torvalds 	force_successful_syscall_return();
7961da177e4SLinus Torvalds 	return file->f_pos;
7971da177e4SLinus Torvalds }
7981da177e4SLinus Torvalds 
7991da177e4SLinus Torvalds static struct file_operations proc_mem_operations = {
8001da177e4SLinus Torvalds 	.llseek		= mem_lseek,
8011da177e4SLinus Torvalds 	.read		= mem_read,
8021da177e4SLinus Torvalds 	.write		= mem_write,
8031da177e4SLinus Torvalds 	.open		= mem_open,
8041da177e4SLinus Torvalds };
8051da177e4SLinus Torvalds 
8061da177e4SLinus Torvalds static ssize_t oom_adjust_read(struct file *file, char __user *buf,
8071da177e4SLinus Torvalds 				size_t count, loff_t *ppos)
8081da177e4SLinus Torvalds {
8091da177e4SLinus Torvalds 	struct task_struct *task = proc_task(file->f_dentry->d_inode);
8101da177e4SLinus Torvalds 	char buffer[8];
8111da177e4SLinus Torvalds 	size_t len;
8121da177e4SLinus Torvalds 	int oom_adjust = task->oomkilladj;
8131da177e4SLinus Torvalds 	loff_t __ppos = *ppos;
8141da177e4SLinus Torvalds 
8151da177e4SLinus Torvalds 	len = sprintf(buffer, "%i\n", oom_adjust);
8161da177e4SLinus Torvalds 	if (__ppos >= len)
8171da177e4SLinus Torvalds 		return 0;
8181da177e4SLinus Torvalds 	if (count > len-__ppos)
8191da177e4SLinus Torvalds 		count = len-__ppos;
8201da177e4SLinus Torvalds 	if (copy_to_user(buf, buffer + __ppos, count))
8211da177e4SLinus Torvalds 		return -EFAULT;
8221da177e4SLinus Torvalds 	*ppos = __ppos + count;
8231da177e4SLinus Torvalds 	return count;
8241da177e4SLinus Torvalds }
8251da177e4SLinus Torvalds 
8261da177e4SLinus Torvalds static ssize_t oom_adjust_write(struct file *file, const char __user *buf,
8271da177e4SLinus Torvalds 				size_t count, loff_t *ppos)
8281da177e4SLinus Torvalds {
8291da177e4SLinus Torvalds 	struct task_struct *task = proc_task(file->f_dentry->d_inode);
8301da177e4SLinus Torvalds 	char buffer[8], *end;
8311da177e4SLinus Torvalds 	int oom_adjust;
8321da177e4SLinus Torvalds 
8331da177e4SLinus Torvalds 	if (!capable(CAP_SYS_RESOURCE))
8341da177e4SLinus Torvalds 		return -EPERM;
8351da177e4SLinus Torvalds 	memset(buffer, 0, 8);
8361da177e4SLinus Torvalds 	if (count > 6)
8371da177e4SLinus Torvalds 		count = 6;
8381da177e4SLinus Torvalds 	if (copy_from_user(buffer, buf, count))
8391da177e4SLinus Torvalds 		return -EFAULT;
8401da177e4SLinus Torvalds 	oom_adjust = simple_strtol(buffer, &end, 0);
84179befd0cSAndrea Arcangeli 	if ((oom_adjust < -16 || oom_adjust > 15) && oom_adjust != OOM_DISABLE)
8421da177e4SLinus Torvalds 		return -EINVAL;
8431da177e4SLinus Torvalds 	if (*end == '\n')
8441da177e4SLinus Torvalds 		end++;
8451da177e4SLinus Torvalds 	task->oomkilladj = oom_adjust;
8461da177e4SLinus Torvalds 	if (end - buffer == 0)
8471da177e4SLinus Torvalds 		return -EIO;
8481da177e4SLinus Torvalds 	return end - buffer;
8491da177e4SLinus Torvalds }
8501da177e4SLinus Torvalds 
8511da177e4SLinus Torvalds static struct file_operations proc_oom_adjust_operations = {
8521da177e4SLinus Torvalds 	.read		= oom_adjust_read,
8531da177e4SLinus Torvalds 	.write		= oom_adjust_write,
8541da177e4SLinus Torvalds };
8551da177e4SLinus Torvalds 
8561da177e4SLinus Torvalds #ifdef CONFIG_AUDITSYSCALL
8571da177e4SLinus Torvalds #define TMPBUFLEN 21
8581da177e4SLinus Torvalds static ssize_t proc_loginuid_read(struct file * file, char __user * buf,
8591da177e4SLinus Torvalds 				  size_t count, loff_t *ppos)
8601da177e4SLinus Torvalds {
8611da177e4SLinus Torvalds 	struct inode * inode = file->f_dentry->d_inode;
8621da177e4SLinus Torvalds 	struct task_struct *task = proc_task(inode);
8631da177e4SLinus Torvalds 	ssize_t length;
8641da177e4SLinus Torvalds 	char tmpbuf[TMPBUFLEN];
8651da177e4SLinus Torvalds 
8661da177e4SLinus Torvalds 	length = scnprintf(tmpbuf, TMPBUFLEN, "%u",
8671da177e4SLinus Torvalds 				audit_get_loginuid(task->audit_context));
8681da177e4SLinus Torvalds 	return simple_read_from_buffer(buf, count, ppos, tmpbuf, length);
8691da177e4SLinus Torvalds }
8701da177e4SLinus Torvalds 
8711da177e4SLinus Torvalds static ssize_t proc_loginuid_write(struct file * file, const char __user * buf,
8721da177e4SLinus Torvalds 				   size_t count, loff_t *ppos)
8731da177e4SLinus Torvalds {
8741da177e4SLinus Torvalds 	struct inode * inode = file->f_dentry->d_inode;
8751da177e4SLinus Torvalds 	char *page, *tmp;
8761da177e4SLinus Torvalds 	ssize_t length;
8771da177e4SLinus Torvalds 	struct task_struct *task = proc_task(inode);
8781da177e4SLinus Torvalds 	uid_t loginuid;
8791da177e4SLinus Torvalds 
8801da177e4SLinus Torvalds 	if (!capable(CAP_AUDIT_CONTROL))
8811da177e4SLinus Torvalds 		return -EPERM;
8821da177e4SLinus Torvalds 
8831da177e4SLinus Torvalds 	if (current != task)
8841da177e4SLinus Torvalds 		return -EPERM;
8851da177e4SLinus Torvalds 
886e0182909SAl Viro 	if (count >= PAGE_SIZE)
887e0182909SAl Viro 		count = PAGE_SIZE - 1;
8881da177e4SLinus Torvalds 
8891da177e4SLinus Torvalds 	if (*ppos != 0) {
8901da177e4SLinus Torvalds 		/* No partial writes. */
8911da177e4SLinus Torvalds 		return -EINVAL;
8921da177e4SLinus Torvalds 	}
8931da177e4SLinus Torvalds 	page = (char*)__get_free_page(GFP_USER);
8941da177e4SLinus Torvalds 	if (!page)
8951da177e4SLinus Torvalds 		return -ENOMEM;
8961da177e4SLinus Torvalds 	length = -EFAULT;
8971da177e4SLinus Torvalds 	if (copy_from_user(page, buf, count))
8981da177e4SLinus Torvalds 		goto out_free_page;
8991da177e4SLinus Torvalds 
900e0182909SAl Viro 	page[count] = '\0';
9011da177e4SLinus Torvalds 	loginuid = simple_strtoul(page, &tmp, 10);
9021da177e4SLinus Torvalds 	if (tmp == page) {
9031da177e4SLinus Torvalds 		length = -EINVAL;
9041da177e4SLinus Torvalds 		goto out_free_page;
9051da177e4SLinus Torvalds 
9061da177e4SLinus Torvalds 	}
907456be6cdSSteve Grubb 	length = audit_set_loginuid(task, loginuid);
9081da177e4SLinus Torvalds 	if (likely(length == 0))
9091da177e4SLinus Torvalds 		length = count;
9101da177e4SLinus Torvalds 
9111da177e4SLinus Torvalds out_free_page:
9121da177e4SLinus Torvalds 	free_page((unsigned long) page);
9131da177e4SLinus Torvalds 	return length;
9141da177e4SLinus Torvalds }
9151da177e4SLinus Torvalds 
9161da177e4SLinus Torvalds static struct file_operations proc_loginuid_operations = {
9171da177e4SLinus Torvalds 	.read		= proc_loginuid_read,
9181da177e4SLinus Torvalds 	.write		= proc_loginuid_write,
9191da177e4SLinus Torvalds };
9201da177e4SLinus Torvalds #endif
9211da177e4SLinus Torvalds 
9221da177e4SLinus Torvalds #ifdef CONFIG_SECCOMP
9231da177e4SLinus Torvalds static ssize_t seccomp_read(struct file *file, char __user *buf,
9241da177e4SLinus Torvalds 			    size_t count, loff_t *ppos)
9251da177e4SLinus Torvalds {
9261da177e4SLinus Torvalds 	struct task_struct *tsk = proc_task(file->f_dentry->d_inode);
9271da177e4SLinus Torvalds 	char __buf[20];
9281da177e4SLinus Torvalds 	loff_t __ppos = *ppos;
9291da177e4SLinus Torvalds 	size_t len;
9301da177e4SLinus Torvalds 
9311da177e4SLinus Torvalds 	/* no need to print the trailing zero, so use only len */
9321da177e4SLinus Torvalds 	len = sprintf(__buf, "%u\n", tsk->seccomp.mode);
9331da177e4SLinus Torvalds 	if (__ppos >= len)
9341da177e4SLinus Torvalds 		return 0;
9351da177e4SLinus Torvalds 	if (count > len - __ppos)
9361da177e4SLinus Torvalds 		count = len - __ppos;
9371da177e4SLinus Torvalds 	if (copy_to_user(buf, __buf + __ppos, count))
9381da177e4SLinus Torvalds 		return -EFAULT;
9391da177e4SLinus Torvalds 	*ppos = __ppos + count;
9401da177e4SLinus Torvalds 	return count;
9411da177e4SLinus Torvalds }
9421da177e4SLinus Torvalds 
9431da177e4SLinus Torvalds static ssize_t seccomp_write(struct file *file, const char __user *buf,
9441da177e4SLinus Torvalds 			     size_t count, loff_t *ppos)
9451da177e4SLinus Torvalds {
9461da177e4SLinus Torvalds 	struct task_struct *tsk = proc_task(file->f_dentry->d_inode);
9471da177e4SLinus Torvalds 	char __buf[20], *end;
9481da177e4SLinus Torvalds 	unsigned int seccomp_mode;
9491da177e4SLinus Torvalds 
9501da177e4SLinus Torvalds 	/* can set it only once to be even more secure */
9511da177e4SLinus Torvalds 	if (unlikely(tsk->seccomp.mode))
9521da177e4SLinus Torvalds 		return -EPERM;
9531da177e4SLinus Torvalds 
9541da177e4SLinus Torvalds 	memset(__buf, 0, sizeof(__buf));
9551da177e4SLinus Torvalds 	count = min(count, sizeof(__buf) - 1);
9561da177e4SLinus Torvalds 	if (copy_from_user(__buf, buf, count))
9571da177e4SLinus Torvalds 		return -EFAULT;
9581da177e4SLinus Torvalds 	seccomp_mode = simple_strtoul(__buf, &end, 0);
9591da177e4SLinus Torvalds 	if (*end == '\n')
9601da177e4SLinus Torvalds 		end++;
9611da177e4SLinus Torvalds 	if (seccomp_mode && seccomp_mode <= NR_SECCOMP_MODES) {
9621da177e4SLinus Torvalds 		tsk->seccomp.mode = seccomp_mode;
9631da177e4SLinus Torvalds 		set_tsk_thread_flag(tsk, TIF_SECCOMP);
9641da177e4SLinus Torvalds 	} else
9651da177e4SLinus Torvalds 		return -EINVAL;
9661da177e4SLinus Torvalds 	if (unlikely(!(end - __buf)))
9671da177e4SLinus Torvalds 		return -EIO;
9681da177e4SLinus Torvalds 	return end - __buf;
9691da177e4SLinus Torvalds }
9701da177e4SLinus Torvalds 
9711da177e4SLinus Torvalds static struct file_operations proc_seccomp_operations = {
9721da177e4SLinus Torvalds 	.read		= seccomp_read,
9731da177e4SLinus Torvalds 	.write		= seccomp_write,
9741da177e4SLinus Torvalds };
9751da177e4SLinus Torvalds #endif /* CONFIG_SECCOMP */
9761da177e4SLinus Torvalds 
9770f2fe20fSEric W. Biederman static int proc_check_dentry_visible(struct inode *inode,
9780f2fe20fSEric W. Biederman 	struct dentry *dentry, struct vfsmount *mnt)
9790f2fe20fSEric W. Biederman {
9800f2fe20fSEric W. Biederman 	/* Verify that the current process can already see the
9810f2fe20fSEric W. Biederman 	 * file pointed at by the file descriptor.
9820f2fe20fSEric W. Biederman 	 * This prevents /proc from being an accidental information leak.
9830f2fe20fSEric W. Biederman 	 *
9840f2fe20fSEric W. Biederman 	 * This prevents access to files that are not visible do to
9850f2fe20fSEric W. Biederman 	 * being on the otherside of a chroot, in a different
9860f2fe20fSEric W. Biederman 	 * namespace, or are simply process local (like pipes).
9870f2fe20fSEric W. Biederman 	 */
9880f2fe20fSEric W. Biederman 	struct task_struct *task;
9890f2fe20fSEric W. Biederman 	struct files_struct *task_files, *files;
9900f2fe20fSEric W. Biederman 	int error = -EACCES;
9910f2fe20fSEric W. Biederman 
9920f2fe20fSEric W. Biederman 	/* See if the the two tasks share a commone set of
9930f2fe20fSEric W. Biederman 	 * file descriptors.  If so everything is visible.
9940f2fe20fSEric W. Biederman 	 */
9950f2fe20fSEric W. Biederman 	task = proc_task(inode);
9960f2fe20fSEric W. Biederman 	if (!task)
9970f2fe20fSEric W. Biederman 		goto out;
9980f2fe20fSEric W. Biederman 	files = get_files_struct(current);
9990f2fe20fSEric W. Biederman 	task_files = get_files_struct(task);
10000f2fe20fSEric W. Biederman 	if (files && task_files && (files == task_files))
10010f2fe20fSEric W. Biederman 		error = 0;
10020f2fe20fSEric W. Biederman 	if (task_files)
10030f2fe20fSEric W. Biederman 		put_files_struct(task_files);
10040f2fe20fSEric W. Biederman 	if (files)
10050f2fe20fSEric W. Biederman 		put_files_struct(files);
10060f2fe20fSEric W. Biederman 	if (!error)
10070f2fe20fSEric W. Biederman 		goto out;
10080f2fe20fSEric W. Biederman 
10090f2fe20fSEric W. Biederman 	/* If the two tasks don't share a common set of file
10100f2fe20fSEric W. Biederman 	 * descriptors see if the destination dentry is already
10110f2fe20fSEric W. Biederman 	 * visible in the current tasks filesystem namespace.
10120f2fe20fSEric W. Biederman 	 */
10130f2fe20fSEric W. Biederman 	error = proc_check_chroot(dentry, mnt);
10140f2fe20fSEric W. Biederman out:
10150f2fe20fSEric W. Biederman 	return error;
10160f2fe20fSEric W. Biederman 
10170f2fe20fSEric W. Biederman }
10180f2fe20fSEric W. Biederman 
1019008b150aSAl Viro static void *proc_pid_follow_link(struct dentry *dentry, struct nameidata *nd)
10201da177e4SLinus Torvalds {
10211da177e4SLinus Torvalds 	struct inode *inode = dentry->d_inode;
10221da177e4SLinus Torvalds 	int error = -EACCES;
10231da177e4SLinus Torvalds 
10241da177e4SLinus Torvalds 	/* We don't need a base pointer in the /proc filesystem */
10251da177e4SLinus Torvalds 	path_release(nd);
10261da177e4SLinus Torvalds 
10271da177e4SLinus Torvalds 	if (current->fsuid != inode->i_uid && !capable(CAP_DAC_OVERRIDE))
10281da177e4SLinus Torvalds 		goto out;
10291da177e4SLinus Torvalds 
10301da177e4SLinus Torvalds 	error = PROC_I(inode)->op.proc_get_link(inode, &nd->dentry, &nd->mnt);
10311da177e4SLinus Torvalds 	nd->last_type = LAST_BIND;
10320f2fe20fSEric W. Biederman 	if (error)
10330f2fe20fSEric W. Biederman 		goto out;
10340f2fe20fSEric W. Biederman 
10350f2fe20fSEric W. Biederman 	/* Only return files this task can already see */
10360f2fe20fSEric W. Biederman 	error = proc_check_dentry_visible(inode, nd->dentry, nd->mnt);
10370f2fe20fSEric W. Biederman 	if (error)
10380f2fe20fSEric W. Biederman 		path_release(nd);
10391da177e4SLinus Torvalds out:
1040008b150aSAl Viro 	return ERR_PTR(error);
10411da177e4SLinus Torvalds }
10421da177e4SLinus Torvalds 
10431da177e4SLinus Torvalds static int do_proc_readlink(struct dentry *dentry, struct vfsmount *mnt,
10441da177e4SLinus Torvalds 			    char __user *buffer, int buflen)
10451da177e4SLinus Torvalds {
10461da177e4SLinus Torvalds 	struct inode * inode;
10471da177e4SLinus Torvalds 	char *tmp = (char*)__get_free_page(GFP_KERNEL), *path;
10481da177e4SLinus Torvalds 	int len;
10491da177e4SLinus Torvalds 
10501da177e4SLinus Torvalds 	if (!tmp)
10511da177e4SLinus Torvalds 		return -ENOMEM;
10521da177e4SLinus Torvalds 
10531da177e4SLinus Torvalds 	inode = dentry->d_inode;
10541da177e4SLinus Torvalds 	path = d_path(dentry, mnt, tmp, PAGE_SIZE);
10551da177e4SLinus Torvalds 	len = PTR_ERR(path);
10561da177e4SLinus Torvalds 	if (IS_ERR(path))
10571da177e4SLinus Torvalds 		goto out;
10581da177e4SLinus Torvalds 	len = tmp + PAGE_SIZE - 1 - path;
10591da177e4SLinus Torvalds 
10601da177e4SLinus Torvalds 	if (len > buflen)
10611da177e4SLinus Torvalds 		len = buflen;
10621da177e4SLinus Torvalds 	if (copy_to_user(buffer, path, len))
10631da177e4SLinus Torvalds 		len = -EFAULT;
10641da177e4SLinus Torvalds  out:
10651da177e4SLinus Torvalds 	free_page((unsigned long)tmp);
10661da177e4SLinus Torvalds 	return len;
10671da177e4SLinus Torvalds }
10681da177e4SLinus Torvalds 
10691da177e4SLinus Torvalds static int proc_pid_readlink(struct dentry * dentry, char __user * buffer, int buflen)
10701da177e4SLinus Torvalds {
10711da177e4SLinus Torvalds 	int error = -EACCES;
10721da177e4SLinus Torvalds 	struct inode *inode = dentry->d_inode;
10731da177e4SLinus Torvalds 	struct dentry *de;
10741da177e4SLinus Torvalds 	struct vfsmount *mnt = NULL;
10751da177e4SLinus Torvalds 
10761da177e4SLinus Torvalds 
10771da177e4SLinus Torvalds 	if (current->fsuid != inode->i_uid && !capable(CAP_DAC_OVERRIDE))
10781da177e4SLinus Torvalds 		goto out;
10791da177e4SLinus Torvalds 
10801da177e4SLinus Torvalds 	error = PROC_I(inode)->op.proc_get_link(inode, &de, &mnt);
10811da177e4SLinus Torvalds 	if (error)
10821da177e4SLinus Torvalds 		goto out;
10831da177e4SLinus Torvalds 
10840f2fe20fSEric W. Biederman 	/* Only return files this task can already see */
10850f2fe20fSEric W. Biederman 	error = proc_check_dentry_visible(inode, de, mnt);
10860f2fe20fSEric W. Biederman 	if (error)
10870f2fe20fSEric W. Biederman 		goto out_put;
10880f2fe20fSEric W. Biederman 
10891da177e4SLinus Torvalds 	error = do_proc_readlink(de, mnt, buffer, buflen);
10900f2fe20fSEric W. Biederman out_put:
10911da177e4SLinus Torvalds 	dput(de);
10921da177e4SLinus Torvalds 	mntput(mnt);
10931da177e4SLinus Torvalds out:
10941da177e4SLinus Torvalds 	return error;
10951da177e4SLinus Torvalds }
10961da177e4SLinus Torvalds 
10971da177e4SLinus Torvalds static struct inode_operations proc_pid_link_inode_operations = {
10981da177e4SLinus Torvalds 	.readlink	= proc_pid_readlink,
10991da177e4SLinus Torvalds 	.follow_link	= proc_pid_follow_link
11001da177e4SLinus Torvalds };
11011da177e4SLinus Torvalds 
11021da177e4SLinus Torvalds #define NUMBUF 10
11031da177e4SLinus Torvalds 
11041da177e4SLinus Torvalds static int proc_readfd(struct file * filp, void * dirent, filldir_t filldir)
11051da177e4SLinus Torvalds {
11065634708bSEric W. Biederman 	struct dentry *dentry = filp->f_dentry;
11075634708bSEric W. Biederman 	struct inode *inode = dentry->d_inode;
11081da177e4SLinus Torvalds 	struct task_struct *p = proc_task(inode);
11091da177e4SLinus Torvalds 	unsigned int fd, tid, ino;
11101da177e4SLinus Torvalds 	int retval;
11111da177e4SLinus Torvalds 	char buf[NUMBUF];
11121da177e4SLinus Torvalds 	struct files_struct * files;
1113badf1662SDipankar Sarma 	struct fdtable *fdt;
11141da177e4SLinus Torvalds 
11151da177e4SLinus Torvalds 	retval = -ENOENT;
11161da177e4SLinus Torvalds 	if (!pid_alive(p))
11171da177e4SLinus Torvalds 		goto out;
11181da177e4SLinus Torvalds 	retval = 0;
11191da177e4SLinus Torvalds 	tid = p->pid;
11201da177e4SLinus Torvalds 
11211da177e4SLinus Torvalds 	fd = filp->f_pos;
11221da177e4SLinus Torvalds 	switch (fd) {
11231da177e4SLinus Torvalds 		case 0:
11241da177e4SLinus Torvalds 			if (filldir(dirent, ".", 1, 0, inode->i_ino, DT_DIR) < 0)
11251da177e4SLinus Torvalds 				goto out;
11261da177e4SLinus Torvalds 			filp->f_pos++;
11271da177e4SLinus Torvalds 		case 1:
11285634708bSEric W. Biederman 			ino = parent_ino(dentry);
11291da177e4SLinus Torvalds 			if (filldir(dirent, "..", 2, 1, ino, DT_DIR) < 0)
11301da177e4SLinus Torvalds 				goto out;
11311da177e4SLinus Torvalds 			filp->f_pos++;
11321da177e4SLinus Torvalds 		default:
11331da177e4SLinus Torvalds 			files = get_files_struct(p);
11341da177e4SLinus Torvalds 			if (!files)
11351da177e4SLinus Torvalds 				goto out;
1136b835996fSDipankar Sarma 			rcu_read_lock();
1137badf1662SDipankar Sarma 			fdt = files_fdtable(files);
11381da177e4SLinus Torvalds 			for (fd = filp->f_pos-2;
1139badf1662SDipankar Sarma 			     fd < fdt->max_fds;
11401da177e4SLinus Torvalds 			     fd++, filp->f_pos++) {
11411da177e4SLinus Torvalds 				unsigned int i,j;
11421da177e4SLinus Torvalds 
11431da177e4SLinus Torvalds 				if (!fcheck_files(files, fd))
11441da177e4SLinus Torvalds 					continue;
1145b835996fSDipankar Sarma 				rcu_read_unlock();
11461da177e4SLinus Torvalds 
11471da177e4SLinus Torvalds 				j = NUMBUF;
11481da177e4SLinus Torvalds 				i = fd;
11491da177e4SLinus Torvalds 				do {
11501da177e4SLinus Torvalds 					j--;
11511da177e4SLinus Torvalds 					buf[j] = '0' + (i % 10);
11521da177e4SLinus Torvalds 					i /= 10;
11531da177e4SLinus Torvalds 				} while (i);
11541da177e4SLinus Torvalds 
11551da177e4SLinus Torvalds 				ino = fake_ino(tid, PROC_TID_FD_DIR + fd);
11561da177e4SLinus Torvalds 				if (filldir(dirent, buf+j, NUMBUF-j, fd+2, ino, DT_LNK) < 0) {
1157b835996fSDipankar Sarma 					rcu_read_lock();
11581da177e4SLinus Torvalds 					break;
11591da177e4SLinus Torvalds 				}
1160b835996fSDipankar Sarma 				rcu_read_lock();
11611da177e4SLinus Torvalds 			}
1162b835996fSDipankar Sarma 			rcu_read_unlock();
11631da177e4SLinus Torvalds 			put_files_struct(files);
11641da177e4SLinus Torvalds 	}
11651da177e4SLinus Torvalds out:
11661da177e4SLinus Torvalds 	return retval;
11671da177e4SLinus Torvalds }
11681da177e4SLinus Torvalds 
11691da177e4SLinus Torvalds static int proc_pident_readdir(struct file *filp,
11701da177e4SLinus Torvalds 		void *dirent, filldir_t filldir,
11711da177e4SLinus Torvalds 		struct pid_entry *ents, unsigned int nents)
11721da177e4SLinus Torvalds {
11731da177e4SLinus Torvalds 	int i;
11741da177e4SLinus Torvalds 	int pid;
11751da177e4SLinus Torvalds 	struct dentry *dentry = filp->f_dentry;
11761da177e4SLinus Torvalds 	struct inode *inode = dentry->d_inode;
11771da177e4SLinus Torvalds 	struct pid_entry *p;
11781da177e4SLinus Torvalds 	ino_t ino;
11791da177e4SLinus Torvalds 	int ret;
11801da177e4SLinus Torvalds 
11811da177e4SLinus Torvalds 	ret = -ENOENT;
11821da177e4SLinus Torvalds 	if (!pid_alive(proc_task(inode)))
11831da177e4SLinus Torvalds 		goto out;
11841da177e4SLinus Torvalds 
11851da177e4SLinus Torvalds 	ret = 0;
11861da177e4SLinus Torvalds 	pid = proc_task(inode)->pid;
11871da177e4SLinus Torvalds 	i = filp->f_pos;
11881da177e4SLinus Torvalds 	switch (i) {
11891da177e4SLinus Torvalds 	case 0:
11901da177e4SLinus Torvalds 		ino = inode->i_ino;
11911da177e4SLinus Torvalds 		if (filldir(dirent, ".", 1, i, ino, DT_DIR) < 0)
11921da177e4SLinus Torvalds 			goto out;
11931da177e4SLinus Torvalds 		i++;
11941da177e4SLinus Torvalds 		filp->f_pos++;
11951da177e4SLinus Torvalds 		/* fall through */
11961da177e4SLinus Torvalds 	case 1:
11971da177e4SLinus Torvalds 		ino = parent_ino(dentry);
11981da177e4SLinus Torvalds 		if (filldir(dirent, "..", 2, i, ino, DT_DIR) < 0)
11991da177e4SLinus Torvalds 			goto out;
12001da177e4SLinus Torvalds 		i++;
12011da177e4SLinus Torvalds 		filp->f_pos++;
12021da177e4SLinus Torvalds 		/* fall through */
12031da177e4SLinus Torvalds 	default:
12041da177e4SLinus Torvalds 		i -= 2;
12051da177e4SLinus Torvalds 		if (i >= nents) {
12061da177e4SLinus Torvalds 			ret = 1;
12071da177e4SLinus Torvalds 			goto out;
12081da177e4SLinus Torvalds 		}
12091da177e4SLinus Torvalds 		p = ents + i;
12101da177e4SLinus Torvalds 		while (p->name) {
12111da177e4SLinus Torvalds 			if (filldir(dirent, p->name, p->len, filp->f_pos,
12121da177e4SLinus Torvalds 				    fake_ino(pid, p->type), p->mode >> 12) < 0)
12131da177e4SLinus Torvalds 				goto out;
12141da177e4SLinus Torvalds 			filp->f_pos++;
12151da177e4SLinus Torvalds 			p++;
12161da177e4SLinus Torvalds 		}
12171da177e4SLinus Torvalds 	}
12181da177e4SLinus Torvalds 
12191da177e4SLinus Torvalds 	ret = 1;
12201da177e4SLinus Torvalds out:
12211da177e4SLinus Torvalds 	return ret;
12221da177e4SLinus Torvalds }
12231da177e4SLinus Torvalds 
12241da177e4SLinus Torvalds static int proc_tgid_base_readdir(struct file * filp,
12251da177e4SLinus Torvalds 			     void * dirent, filldir_t filldir)
12261da177e4SLinus Torvalds {
12271da177e4SLinus Torvalds 	return proc_pident_readdir(filp,dirent,filldir,
12281da177e4SLinus Torvalds 				   tgid_base_stuff,ARRAY_SIZE(tgid_base_stuff));
12291da177e4SLinus Torvalds }
12301da177e4SLinus Torvalds 
12311da177e4SLinus Torvalds static int proc_tid_base_readdir(struct file * filp,
12321da177e4SLinus Torvalds 			     void * dirent, filldir_t filldir)
12331da177e4SLinus Torvalds {
12341da177e4SLinus Torvalds 	return proc_pident_readdir(filp,dirent,filldir,
12351da177e4SLinus Torvalds 				   tid_base_stuff,ARRAY_SIZE(tid_base_stuff));
12361da177e4SLinus Torvalds }
12371da177e4SLinus Torvalds 
12381da177e4SLinus Torvalds /* building an inode */
12391da177e4SLinus Torvalds 
12401da177e4SLinus Torvalds static int task_dumpable(struct task_struct *task)
12411da177e4SLinus Torvalds {
12421da177e4SLinus Torvalds 	int dumpable = 0;
12431da177e4SLinus Torvalds 	struct mm_struct *mm;
12441da177e4SLinus Torvalds 
12451da177e4SLinus Torvalds 	task_lock(task);
12461da177e4SLinus Torvalds 	mm = task->mm;
12471da177e4SLinus Torvalds 	if (mm)
12481da177e4SLinus Torvalds 		dumpable = mm->dumpable;
12491da177e4SLinus Torvalds 	task_unlock(task);
1250d6e71144SAlan Cox 	if(dumpable == 1)
1251d6e71144SAlan Cox 		return 1;
1252d6e71144SAlan Cox 	return 0;
12531da177e4SLinus Torvalds }
12541da177e4SLinus Torvalds 
12551da177e4SLinus Torvalds 
12561da177e4SLinus Torvalds static struct inode *proc_pid_make_inode(struct super_block * sb, struct task_struct *task, int ino)
12571da177e4SLinus Torvalds {
12581da177e4SLinus Torvalds 	struct inode * inode;
12591da177e4SLinus Torvalds 	struct proc_inode *ei;
12601da177e4SLinus Torvalds 
12611da177e4SLinus Torvalds 	/* We need a new inode */
12621da177e4SLinus Torvalds 
12631da177e4SLinus Torvalds 	inode = new_inode(sb);
12641da177e4SLinus Torvalds 	if (!inode)
12651da177e4SLinus Torvalds 		goto out;
12661da177e4SLinus Torvalds 
12671da177e4SLinus Torvalds 	/* Common stuff */
12681da177e4SLinus Torvalds 	ei = PROC_I(inode);
12691da177e4SLinus Torvalds 	inode->i_mtime = inode->i_atime = inode->i_ctime = CURRENT_TIME;
12701da177e4SLinus Torvalds 	inode->i_ino = fake_ino(task->pid, ino);
12711da177e4SLinus Torvalds 
12721da177e4SLinus Torvalds 	if (!pid_alive(task))
12731da177e4SLinus Torvalds 		goto out_unlock;
12741da177e4SLinus Torvalds 
12751da177e4SLinus Torvalds 	/*
12761da177e4SLinus Torvalds 	 * grab the reference to task.
12771da177e4SLinus Torvalds 	 */
12781da177e4SLinus Torvalds 	get_task_struct(task);
12791da177e4SLinus Torvalds 	ei->task = task;
12801da177e4SLinus Torvalds 	inode->i_uid = 0;
12811da177e4SLinus Torvalds 	inode->i_gid = 0;
128287bfbf67SEric W. Biederman 	if (task_dumpable(task)) {
12831da177e4SLinus Torvalds 		inode->i_uid = task->euid;
12841da177e4SLinus Torvalds 		inode->i_gid = task->egid;
12851da177e4SLinus Torvalds 	}
12861da177e4SLinus Torvalds 	security_task_to_inode(task, inode);
12871da177e4SLinus Torvalds 
12881da177e4SLinus Torvalds out:
12891da177e4SLinus Torvalds 	return inode;
12901da177e4SLinus Torvalds 
12911da177e4SLinus Torvalds out_unlock:
12921da177e4SLinus Torvalds 	iput(inode);
12931da177e4SLinus Torvalds 	return NULL;
12941da177e4SLinus Torvalds }
12951da177e4SLinus Torvalds 
12961da177e4SLinus Torvalds /* dentry stuff */
12971da177e4SLinus Torvalds 
12981da177e4SLinus Torvalds /*
12991da177e4SLinus Torvalds  *	Exceptional case: normally we are not allowed to unhash a busy
13001da177e4SLinus Torvalds  * directory. In this case, however, we can do it - no aliasing problems
13011da177e4SLinus Torvalds  * due to the way we treat inodes.
13021da177e4SLinus Torvalds  *
13031da177e4SLinus Torvalds  * Rewrite the inode's ownerships here because the owning task may have
13041da177e4SLinus Torvalds  * performed a setuid(), etc.
13051da177e4SLinus Torvalds  */
13061da177e4SLinus Torvalds static int pid_revalidate(struct dentry *dentry, struct nameidata *nd)
13071da177e4SLinus Torvalds {
13081da177e4SLinus Torvalds 	struct inode *inode = dentry->d_inode;
13091da177e4SLinus Torvalds 	struct task_struct *task = proc_task(inode);
13101da177e4SLinus Torvalds 	if (pid_alive(task)) {
131187bfbf67SEric W. Biederman 		if (task_dumpable(task)) {
13121da177e4SLinus Torvalds 			inode->i_uid = task->euid;
13131da177e4SLinus Torvalds 			inode->i_gid = task->egid;
13141da177e4SLinus Torvalds 		} else {
13151da177e4SLinus Torvalds 			inode->i_uid = 0;
13161da177e4SLinus Torvalds 			inode->i_gid = 0;
13171da177e4SLinus Torvalds 		}
13181da177e4SLinus Torvalds 		security_task_to_inode(task, inode);
13191da177e4SLinus Torvalds 		return 1;
13201da177e4SLinus Torvalds 	}
13211da177e4SLinus Torvalds 	d_drop(dentry);
13221da177e4SLinus Torvalds 	return 0;
13231da177e4SLinus Torvalds }
13241da177e4SLinus Torvalds 
13251da177e4SLinus Torvalds static int tid_fd_revalidate(struct dentry *dentry, struct nameidata *nd)
13261da177e4SLinus Torvalds {
13271da177e4SLinus Torvalds 	struct inode *inode = dentry->d_inode;
13281da177e4SLinus Torvalds 	struct task_struct *task = proc_task(inode);
1329aed7a6c4SEric W. Biederman 	int fd = proc_fd(inode);
13301da177e4SLinus Torvalds 	struct files_struct *files;
13311da177e4SLinus Torvalds 
13321da177e4SLinus Torvalds 	files = get_files_struct(task);
13331da177e4SLinus Torvalds 	if (files) {
1334b835996fSDipankar Sarma 		rcu_read_lock();
13351da177e4SLinus Torvalds 		if (fcheck_files(files, fd)) {
1336b835996fSDipankar Sarma 			rcu_read_unlock();
13371da177e4SLinus Torvalds 			put_files_struct(files);
13381da177e4SLinus Torvalds 			if (task_dumpable(task)) {
13391da177e4SLinus Torvalds 				inode->i_uid = task->euid;
13401da177e4SLinus Torvalds 				inode->i_gid = task->egid;
13411da177e4SLinus Torvalds 			} else {
13421da177e4SLinus Torvalds 				inode->i_uid = 0;
13431da177e4SLinus Torvalds 				inode->i_gid = 0;
13441da177e4SLinus Torvalds 			}
13451da177e4SLinus Torvalds 			security_task_to_inode(task, inode);
13461da177e4SLinus Torvalds 			return 1;
13471da177e4SLinus Torvalds 		}
1348b835996fSDipankar Sarma 		rcu_read_unlock();
13491da177e4SLinus Torvalds 		put_files_struct(files);
13501da177e4SLinus Torvalds 	}
13511da177e4SLinus Torvalds 	d_drop(dentry);
13521da177e4SLinus Torvalds 	return 0;
13531da177e4SLinus Torvalds }
13541da177e4SLinus Torvalds 
13551da177e4SLinus Torvalds static int pid_delete_dentry(struct dentry * dentry)
13561da177e4SLinus Torvalds {
13571da177e4SLinus Torvalds 	/* Is the task we represent dead?
13581da177e4SLinus Torvalds 	 * If so, then don't put the dentry on the lru list,
13591da177e4SLinus Torvalds 	 * kill it immediately.
13601da177e4SLinus Torvalds 	 */
13611da177e4SLinus Torvalds 	return !pid_alive(proc_task(dentry->d_inode));
13621da177e4SLinus Torvalds }
13631da177e4SLinus Torvalds 
13641da177e4SLinus Torvalds static struct dentry_operations tid_fd_dentry_operations =
13651da177e4SLinus Torvalds {
13661da177e4SLinus Torvalds 	.d_revalidate	= tid_fd_revalidate,
13671da177e4SLinus Torvalds 	.d_delete	= pid_delete_dentry,
13681da177e4SLinus Torvalds };
13691da177e4SLinus Torvalds 
13701da177e4SLinus Torvalds static struct dentry_operations pid_dentry_operations =
13711da177e4SLinus Torvalds {
13721da177e4SLinus Torvalds 	.d_revalidate	= pid_revalidate,
13731da177e4SLinus Torvalds 	.d_delete	= pid_delete_dentry,
13741da177e4SLinus Torvalds };
13751da177e4SLinus Torvalds 
13761da177e4SLinus Torvalds /* Lookups */
13771da177e4SLinus Torvalds 
13781da177e4SLinus Torvalds static unsigned name_to_int(struct dentry *dentry)
13791da177e4SLinus Torvalds {
13801da177e4SLinus Torvalds 	const char *name = dentry->d_name.name;
13811da177e4SLinus Torvalds 	int len = dentry->d_name.len;
13821da177e4SLinus Torvalds 	unsigned n = 0;
13831da177e4SLinus Torvalds 
13841da177e4SLinus Torvalds 	if (len > 1 && *name == '0')
13851da177e4SLinus Torvalds 		goto out;
13861da177e4SLinus Torvalds 	while (len-- > 0) {
13871da177e4SLinus Torvalds 		unsigned c = *name++ - '0';
13881da177e4SLinus Torvalds 		if (c > 9)
13891da177e4SLinus Torvalds 			goto out;
13901da177e4SLinus Torvalds 		if (n >= (~0U-9)/10)
13911da177e4SLinus Torvalds 			goto out;
13921da177e4SLinus Torvalds 		n *= 10;
13931da177e4SLinus Torvalds 		n += c;
13941da177e4SLinus Torvalds 	}
13951da177e4SLinus Torvalds 	return n;
13961da177e4SLinus Torvalds out:
13971da177e4SLinus Torvalds 	return ~0U;
13981da177e4SLinus Torvalds }
13991da177e4SLinus Torvalds 
14001da177e4SLinus Torvalds /* SMP-safe */
14011da177e4SLinus Torvalds static struct dentry *proc_lookupfd(struct inode * dir, struct dentry * dentry, struct nameidata *nd)
14021da177e4SLinus Torvalds {
14031da177e4SLinus Torvalds 	struct task_struct *task = proc_task(dir);
14041da177e4SLinus Torvalds 	unsigned fd = name_to_int(dentry);
1405cd6a3ce9SEric W. Biederman 	struct dentry *result = ERR_PTR(-ENOENT);
14061da177e4SLinus Torvalds 	struct file * file;
14071da177e4SLinus Torvalds 	struct files_struct * files;
14081da177e4SLinus Torvalds 	struct inode *inode;
14091da177e4SLinus Torvalds 	struct proc_inode *ei;
14101da177e4SLinus Torvalds 
14111da177e4SLinus Torvalds 	if (fd == ~0U)
14121da177e4SLinus Torvalds 		goto out;
14131da177e4SLinus Torvalds 	if (!pid_alive(task))
14141da177e4SLinus Torvalds 		goto out;
14151da177e4SLinus Torvalds 
14161da177e4SLinus Torvalds 	inode = proc_pid_make_inode(dir->i_sb, task, PROC_TID_FD_DIR+fd);
14171da177e4SLinus Torvalds 	if (!inode)
14181da177e4SLinus Torvalds 		goto out;
14191da177e4SLinus Torvalds 	ei = PROC_I(inode);
1420aed7a6c4SEric W. Biederman 	ei->fd = fd;
14211da177e4SLinus Torvalds 	files = get_files_struct(task);
14221da177e4SLinus Torvalds 	if (!files)
14231da177e4SLinus Torvalds 		goto out_unlock;
14241da177e4SLinus Torvalds 	inode->i_mode = S_IFLNK;
1425ca99c1daSDipankar Sarma 
1426ca99c1daSDipankar Sarma 	/*
1427ca99c1daSDipankar Sarma 	 * We are not taking a ref to the file structure, so we must
1428ca99c1daSDipankar Sarma 	 * hold ->file_lock.
1429ca99c1daSDipankar Sarma 	 */
1430ca99c1daSDipankar Sarma 	spin_lock(&files->file_lock);
14311da177e4SLinus Torvalds 	file = fcheck_files(files, fd);
14321da177e4SLinus Torvalds 	if (!file)
14331da177e4SLinus Torvalds 		goto out_unlock2;
14341da177e4SLinus Torvalds 	if (file->f_mode & 1)
14351da177e4SLinus Torvalds 		inode->i_mode |= S_IRUSR | S_IXUSR;
14361da177e4SLinus Torvalds 	if (file->f_mode & 2)
14371da177e4SLinus Torvalds 		inode->i_mode |= S_IWUSR | S_IXUSR;
1438ca99c1daSDipankar Sarma 	spin_unlock(&files->file_lock);
14391da177e4SLinus Torvalds 	put_files_struct(files);
14401da177e4SLinus Torvalds 	inode->i_op = &proc_pid_link_inode_operations;
14411da177e4SLinus Torvalds 	inode->i_size = 64;
14421da177e4SLinus Torvalds 	ei->op.proc_get_link = proc_fd_link;
14431da177e4SLinus Torvalds 	dentry->d_op = &tid_fd_dentry_operations;
14441da177e4SLinus Torvalds 	d_add(dentry, inode);
1445cd6a3ce9SEric W. Biederman 	/* Close the race of the process dying before we return the dentry */
1446cd6a3ce9SEric W. Biederman 	if (tid_fd_revalidate(dentry, NULL))
1447cd6a3ce9SEric W. Biederman 		result = NULL;
1448cd6a3ce9SEric W. Biederman out:
1449cd6a3ce9SEric W. Biederman 	return result;
14501da177e4SLinus Torvalds 
14511da177e4SLinus Torvalds out_unlock2:
1452ca99c1daSDipankar Sarma 	spin_unlock(&files->file_lock);
14531da177e4SLinus Torvalds 	put_files_struct(files);
14541da177e4SLinus Torvalds out_unlock:
14551da177e4SLinus Torvalds 	iput(inode);
1456cd6a3ce9SEric W. Biederman 	goto out;
14571da177e4SLinus Torvalds }
14581da177e4SLinus Torvalds 
14591da177e4SLinus Torvalds static int proc_task_readdir(struct file * filp, void * dirent, filldir_t filldir);
14601da177e4SLinus Torvalds static struct dentry *proc_task_lookup(struct inode *dir, struct dentry * dentry, struct nameidata *nd);
14616e66b52bSEric W. Biederman static int proc_task_getattr(struct vfsmount *mnt, struct dentry *dentry, struct kstat *stat);
14621da177e4SLinus Torvalds 
14631da177e4SLinus Torvalds static struct file_operations proc_fd_operations = {
14641da177e4SLinus Torvalds 	.read		= generic_read_dir,
14651da177e4SLinus Torvalds 	.readdir	= proc_readfd,
14661da177e4SLinus Torvalds };
14671da177e4SLinus Torvalds 
14681da177e4SLinus Torvalds static struct file_operations proc_task_operations = {
14691da177e4SLinus Torvalds 	.read		= generic_read_dir,
14701da177e4SLinus Torvalds 	.readdir	= proc_task_readdir,
14711da177e4SLinus Torvalds };
14721da177e4SLinus Torvalds 
14731da177e4SLinus Torvalds /*
14741da177e4SLinus Torvalds  * proc directories can do almost nothing..
14751da177e4SLinus Torvalds  */
14761da177e4SLinus Torvalds static struct inode_operations proc_fd_inode_operations = {
14771da177e4SLinus Torvalds 	.lookup		= proc_lookupfd,
14781da177e4SLinus Torvalds };
14791da177e4SLinus Torvalds 
14801da177e4SLinus Torvalds static struct inode_operations proc_task_inode_operations = {
14811da177e4SLinus Torvalds 	.lookup		= proc_task_lookup,
14826e66b52bSEric W. Biederman 	.getattr	= proc_task_getattr,
14831da177e4SLinus Torvalds };
14841da177e4SLinus Torvalds 
14851da177e4SLinus Torvalds #ifdef CONFIG_SECURITY
14861da177e4SLinus Torvalds static ssize_t proc_pid_attr_read(struct file * file, char __user * buf,
14871da177e4SLinus Torvalds 				  size_t count, loff_t *ppos)
14881da177e4SLinus Torvalds {
14891da177e4SLinus Torvalds 	struct inode * inode = file->f_dentry->d_inode;
14901da177e4SLinus Torvalds 	unsigned long page;
14911da177e4SLinus Torvalds 	ssize_t length;
14921da177e4SLinus Torvalds 	struct task_struct *task = proc_task(inode);
14931da177e4SLinus Torvalds 
14941da177e4SLinus Torvalds 	if (count > PAGE_SIZE)
14951da177e4SLinus Torvalds 		count = PAGE_SIZE;
14961da177e4SLinus Torvalds 	if (!(page = __get_free_page(GFP_KERNEL)))
14971da177e4SLinus Torvalds 		return -ENOMEM;
14981da177e4SLinus Torvalds 
14991da177e4SLinus Torvalds 	length = security_getprocattr(task,
15001da177e4SLinus Torvalds 				      (char*)file->f_dentry->d_name.name,
15011da177e4SLinus Torvalds 				      (void*)page, count);
15021da177e4SLinus Torvalds 	if (length >= 0)
15031da177e4SLinus Torvalds 		length = simple_read_from_buffer(buf, count, ppos, (char *)page, length);
15041da177e4SLinus Torvalds 	free_page(page);
15051da177e4SLinus Torvalds 	return length;
15061da177e4SLinus Torvalds }
15071da177e4SLinus Torvalds 
15081da177e4SLinus Torvalds static ssize_t proc_pid_attr_write(struct file * file, const char __user * buf,
15091da177e4SLinus Torvalds 				   size_t count, loff_t *ppos)
15101da177e4SLinus Torvalds {
15111da177e4SLinus Torvalds 	struct inode * inode = file->f_dentry->d_inode;
15121da177e4SLinus Torvalds 	char *page;
15131da177e4SLinus Torvalds 	ssize_t length;
15141da177e4SLinus Torvalds 	struct task_struct *task = proc_task(inode);
15151da177e4SLinus Torvalds 
15161da177e4SLinus Torvalds 	if (count > PAGE_SIZE)
15171da177e4SLinus Torvalds 		count = PAGE_SIZE;
15181da177e4SLinus Torvalds 	if (*ppos != 0) {
15191da177e4SLinus Torvalds 		/* No partial writes. */
15201da177e4SLinus Torvalds 		return -EINVAL;
15211da177e4SLinus Torvalds 	}
15221da177e4SLinus Torvalds 	page = (char*)__get_free_page(GFP_USER);
15231da177e4SLinus Torvalds 	if (!page)
15241da177e4SLinus Torvalds 		return -ENOMEM;
15251da177e4SLinus Torvalds 	length = -EFAULT;
15261da177e4SLinus Torvalds 	if (copy_from_user(page, buf, count))
15271da177e4SLinus Torvalds 		goto out;
15281da177e4SLinus Torvalds 
15291da177e4SLinus Torvalds 	length = security_setprocattr(task,
15301da177e4SLinus Torvalds 				      (char*)file->f_dentry->d_name.name,
15311da177e4SLinus Torvalds 				      (void*)page, count);
15321da177e4SLinus Torvalds out:
15331da177e4SLinus Torvalds 	free_page((unsigned long) page);
15341da177e4SLinus Torvalds 	return length;
15351da177e4SLinus Torvalds }
15361da177e4SLinus Torvalds 
15371da177e4SLinus Torvalds static struct file_operations proc_pid_attr_operations = {
15381da177e4SLinus Torvalds 	.read		= proc_pid_attr_read,
15391da177e4SLinus Torvalds 	.write		= proc_pid_attr_write,
15401da177e4SLinus Torvalds };
15411da177e4SLinus Torvalds 
15421da177e4SLinus Torvalds static struct file_operations proc_tid_attr_operations;
15431da177e4SLinus Torvalds static struct inode_operations proc_tid_attr_inode_operations;
15441da177e4SLinus Torvalds static struct file_operations proc_tgid_attr_operations;
15451da177e4SLinus Torvalds static struct inode_operations proc_tgid_attr_inode_operations;
15461da177e4SLinus Torvalds #endif
15471da177e4SLinus Torvalds 
15481da177e4SLinus Torvalds /* SMP-safe */
15491da177e4SLinus Torvalds static struct dentry *proc_pident_lookup(struct inode *dir,
15501da177e4SLinus Torvalds 					 struct dentry *dentry,
15511da177e4SLinus Torvalds 					 struct pid_entry *ents)
15521da177e4SLinus Torvalds {
15531da177e4SLinus Torvalds 	struct inode *inode;
1554cd6a3ce9SEric W. Biederman 	struct dentry *error;
15551da177e4SLinus Torvalds 	struct task_struct *task = proc_task(dir);
15561da177e4SLinus Torvalds 	struct pid_entry *p;
15571da177e4SLinus Torvalds 	struct proc_inode *ei;
15581da177e4SLinus Torvalds 
1559cd6a3ce9SEric W. Biederman 	error = ERR_PTR(-ENOENT);
15601da177e4SLinus Torvalds 	inode = NULL;
15611da177e4SLinus Torvalds 
15621da177e4SLinus Torvalds 	if (!pid_alive(task))
15631da177e4SLinus Torvalds 		goto out;
15641da177e4SLinus Torvalds 
15651da177e4SLinus Torvalds 	for (p = ents; p->name; p++) {
15661da177e4SLinus Torvalds 		if (p->len != dentry->d_name.len)
15671da177e4SLinus Torvalds 			continue;
15681da177e4SLinus Torvalds 		if (!memcmp(dentry->d_name.name, p->name, p->len))
15691da177e4SLinus Torvalds 			break;
15701da177e4SLinus Torvalds 	}
15711da177e4SLinus Torvalds 	if (!p->name)
15721da177e4SLinus Torvalds 		goto out;
15731da177e4SLinus Torvalds 
1574cd6a3ce9SEric W. Biederman 	error = ERR_PTR(-EINVAL);
15751da177e4SLinus Torvalds 	inode = proc_pid_make_inode(dir->i_sb, task, p->type);
15761da177e4SLinus Torvalds 	if (!inode)
15771da177e4SLinus Torvalds 		goto out;
15781da177e4SLinus Torvalds 
15791da177e4SLinus Torvalds 	ei = PROC_I(inode);
15801da177e4SLinus Torvalds 	inode->i_mode = p->mode;
15811da177e4SLinus Torvalds 	/*
15821da177e4SLinus Torvalds 	 * Yes, it does not scale. And it should not. Don't add
15831da177e4SLinus Torvalds 	 * new entries into /proc/<tgid>/ without very good reasons.
15841da177e4SLinus Torvalds 	 */
15851da177e4SLinus Torvalds 	switch(p->type) {
15861da177e4SLinus Torvalds 		case PROC_TGID_TASK:
15876e66b52bSEric W. Biederman 			inode->i_nlink = 2;
15881da177e4SLinus Torvalds 			inode->i_op = &proc_task_inode_operations;
15891da177e4SLinus Torvalds 			inode->i_fop = &proc_task_operations;
15901da177e4SLinus Torvalds 			break;
15911da177e4SLinus Torvalds 		case PROC_TID_FD:
15921da177e4SLinus Torvalds 		case PROC_TGID_FD:
15931da177e4SLinus Torvalds 			inode->i_nlink = 2;
15941da177e4SLinus Torvalds 			inode->i_op = &proc_fd_inode_operations;
15951da177e4SLinus Torvalds 			inode->i_fop = &proc_fd_operations;
15961da177e4SLinus Torvalds 			break;
15971da177e4SLinus Torvalds 		case PROC_TID_EXE:
15981da177e4SLinus Torvalds 		case PROC_TGID_EXE:
15991da177e4SLinus Torvalds 			inode->i_op = &proc_pid_link_inode_operations;
16001da177e4SLinus Torvalds 			ei->op.proc_get_link = proc_exe_link;
16011da177e4SLinus Torvalds 			break;
16021da177e4SLinus Torvalds 		case PROC_TID_CWD:
16031da177e4SLinus Torvalds 		case PROC_TGID_CWD:
16041da177e4SLinus Torvalds 			inode->i_op = &proc_pid_link_inode_operations;
16051da177e4SLinus Torvalds 			ei->op.proc_get_link = proc_cwd_link;
16061da177e4SLinus Torvalds 			break;
16071da177e4SLinus Torvalds 		case PROC_TID_ROOT:
16081da177e4SLinus Torvalds 		case PROC_TGID_ROOT:
16091da177e4SLinus Torvalds 			inode->i_op = &proc_pid_link_inode_operations;
16101da177e4SLinus Torvalds 			ei->op.proc_get_link = proc_root_link;
16111da177e4SLinus Torvalds 			break;
16121da177e4SLinus Torvalds 		case PROC_TID_ENVIRON:
16131da177e4SLinus Torvalds 		case PROC_TGID_ENVIRON:
16141da177e4SLinus Torvalds 			inode->i_fop = &proc_info_file_operations;
16151da177e4SLinus Torvalds 			ei->op.proc_read = proc_pid_environ;
16161da177e4SLinus Torvalds 			break;
16171da177e4SLinus Torvalds 		case PROC_TID_AUXV:
16181da177e4SLinus Torvalds 		case PROC_TGID_AUXV:
16191da177e4SLinus Torvalds 			inode->i_fop = &proc_info_file_operations;
16201da177e4SLinus Torvalds 			ei->op.proc_read = proc_pid_auxv;
16211da177e4SLinus Torvalds 			break;
16221da177e4SLinus Torvalds 		case PROC_TID_STATUS:
16231da177e4SLinus Torvalds 		case PROC_TGID_STATUS:
16241da177e4SLinus Torvalds 			inode->i_fop = &proc_info_file_operations;
16251da177e4SLinus Torvalds 			ei->op.proc_read = proc_pid_status;
16261da177e4SLinus Torvalds 			break;
16271da177e4SLinus Torvalds 		case PROC_TID_STAT:
16281da177e4SLinus Torvalds 			inode->i_fop = &proc_info_file_operations;
16291da177e4SLinus Torvalds 			ei->op.proc_read = proc_tid_stat;
16301da177e4SLinus Torvalds 			break;
16311da177e4SLinus Torvalds 		case PROC_TGID_STAT:
16321da177e4SLinus Torvalds 			inode->i_fop = &proc_info_file_operations;
16331da177e4SLinus Torvalds 			ei->op.proc_read = proc_tgid_stat;
16341da177e4SLinus Torvalds 			break;
16351da177e4SLinus Torvalds 		case PROC_TID_CMDLINE:
16361da177e4SLinus Torvalds 		case PROC_TGID_CMDLINE:
16371da177e4SLinus Torvalds 			inode->i_fop = &proc_info_file_operations;
16381da177e4SLinus Torvalds 			ei->op.proc_read = proc_pid_cmdline;
16391da177e4SLinus Torvalds 			break;
16401da177e4SLinus Torvalds 		case PROC_TID_STATM:
16411da177e4SLinus Torvalds 		case PROC_TGID_STATM:
16421da177e4SLinus Torvalds 			inode->i_fop = &proc_info_file_operations;
16431da177e4SLinus Torvalds 			ei->op.proc_read = proc_pid_statm;
16441da177e4SLinus Torvalds 			break;
16451da177e4SLinus Torvalds 		case PROC_TID_MAPS:
16461da177e4SLinus Torvalds 		case PROC_TGID_MAPS:
16471da177e4SLinus Torvalds 			inode->i_fop = &proc_maps_operations;
16481da177e4SLinus Torvalds 			break;
16496e21c8f1SChristoph Lameter #ifdef CONFIG_NUMA
16506e21c8f1SChristoph Lameter 		case PROC_TID_NUMA_MAPS:
16516e21c8f1SChristoph Lameter 		case PROC_TGID_NUMA_MAPS:
16526e21c8f1SChristoph Lameter 			inode->i_fop = &proc_numa_maps_operations;
16536e21c8f1SChristoph Lameter 			break;
16546e21c8f1SChristoph Lameter #endif
16551da177e4SLinus Torvalds 		case PROC_TID_MEM:
16561da177e4SLinus Torvalds 		case PROC_TGID_MEM:
16571da177e4SLinus Torvalds 			inode->i_fop = &proc_mem_operations;
16581da177e4SLinus Torvalds 			break;
16591da177e4SLinus Torvalds #ifdef CONFIG_SECCOMP
16601da177e4SLinus Torvalds 		case PROC_TID_SECCOMP:
16611da177e4SLinus Torvalds 		case PROC_TGID_SECCOMP:
16621da177e4SLinus Torvalds 			inode->i_fop = &proc_seccomp_operations;
16631da177e4SLinus Torvalds 			break;
16641da177e4SLinus Torvalds #endif /* CONFIG_SECCOMP */
16651da177e4SLinus Torvalds 		case PROC_TID_MOUNTS:
16661da177e4SLinus Torvalds 		case PROC_TGID_MOUNTS:
16671da177e4SLinus Torvalds 			inode->i_fop = &proc_mounts_operations;
16681da177e4SLinus Torvalds 			break;
166963c6764cSYoshinori Sato #ifdef CONFIG_MMU
1670e070ad49SMauricio Lin 		case PROC_TID_SMAPS:
1671e070ad49SMauricio Lin 		case PROC_TGID_SMAPS:
1672e070ad49SMauricio Lin 			inode->i_fop = &proc_smaps_operations;
1673e070ad49SMauricio Lin 			break;
167463c6764cSYoshinori Sato #endif
1675b4629fe2SChuck Lever 		case PROC_TID_MOUNTSTATS:
1676b4629fe2SChuck Lever 		case PROC_TGID_MOUNTSTATS:
1677b4629fe2SChuck Lever 			inode->i_fop = &proc_mountstats_operations;
1678b4629fe2SChuck Lever 			break;
16791da177e4SLinus Torvalds #ifdef CONFIG_SECURITY
16801da177e4SLinus Torvalds 		case PROC_TID_ATTR:
16811da177e4SLinus Torvalds 			inode->i_nlink = 2;
16821da177e4SLinus Torvalds 			inode->i_op = &proc_tid_attr_inode_operations;
16831da177e4SLinus Torvalds 			inode->i_fop = &proc_tid_attr_operations;
16841da177e4SLinus Torvalds 			break;
16851da177e4SLinus Torvalds 		case PROC_TGID_ATTR:
16861da177e4SLinus Torvalds 			inode->i_nlink = 2;
16871da177e4SLinus Torvalds 			inode->i_op = &proc_tgid_attr_inode_operations;
16881da177e4SLinus Torvalds 			inode->i_fop = &proc_tgid_attr_operations;
16891da177e4SLinus Torvalds 			break;
16901da177e4SLinus Torvalds 		case PROC_TID_ATTR_CURRENT:
16911da177e4SLinus Torvalds 		case PROC_TGID_ATTR_CURRENT:
16921da177e4SLinus Torvalds 		case PROC_TID_ATTR_PREV:
16931da177e4SLinus Torvalds 		case PROC_TGID_ATTR_PREV:
16941da177e4SLinus Torvalds 		case PROC_TID_ATTR_EXEC:
16951da177e4SLinus Torvalds 		case PROC_TGID_ATTR_EXEC:
16961da177e4SLinus Torvalds 		case PROC_TID_ATTR_FSCREATE:
16971da177e4SLinus Torvalds 		case PROC_TGID_ATTR_FSCREATE:
16984eb582cfSMichael LeMay 		case PROC_TID_ATTR_KEYCREATE:
16994eb582cfSMichael LeMay 		case PROC_TGID_ATTR_KEYCREATE:
17001da177e4SLinus Torvalds 			inode->i_fop = &proc_pid_attr_operations;
17011da177e4SLinus Torvalds 			break;
17021da177e4SLinus Torvalds #endif
17031da177e4SLinus Torvalds #ifdef CONFIG_KALLSYMS
17041da177e4SLinus Torvalds 		case PROC_TID_WCHAN:
17051da177e4SLinus Torvalds 		case PROC_TGID_WCHAN:
17061da177e4SLinus Torvalds 			inode->i_fop = &proc_info_file_operations;
17071da177e4SLinus Torvalds 			ei->op.proc_read = proc_pid_wchan;
17081da177e4SLinus Torvalds 			break;
17091da177e4SLinus Torvalds #endif
17101da177e4SLinus Torvalds #ifdef CONFIG_SCHEDSTATS
17111da177e4SLinus Torvalds 		case PROC_TID_SCHEDSTAT:
17121da177e4SLinus Torvalds 		case PROC_TGID_SCHEDSTAT:
17131da177e4SLinus Torvalds 			inode->i_fop = &proc_info_file_operations;
17141da177e4SLinus Torvalds 			ei->op.proc_read = proc_pid_schedstat;
17151da177e4SLinus Torvalds 			break;
17161da177e4SLinus Torvalds #endif
17171da177e4SLinus Torvalds #ifdef CONFIG_CPUSETS
17181da177e4SLinus Torvalds 		case PROC_TID_CPUSET:
17191da177e4SLinus Torvalds 		case PROC_TGID_CPUSET:
17201da177e4SLinus Torvalds 			inode->i_fop = &proc_cpuset_operations;
17211da177e4SLinus Torvalds 			break;
17221da177e4SLinus Torvalds #endif
17231da177e4SLinus Torvalds 		case PROC_TID_OOM_SCORE:
17241da177e4SLinus Torvalds 		case PROC_TGID_OOM_SCORE:
17251da177e4SLinus Torvalds 			inode->i_fop = &proc_info_file_operations;
17261da177e4SLinus Torvalds 			ei->op.proc_read = proc_oom_score;
17271da177e4SLinus Torvalds 			break;
17281da177e4SLinus Torvalds 		case PROC_TID_OOM_ADJUST:
17291da177e4SLinus Torvalds 		case PROC_TGID_OOM_ADJUST:
17301da177e4SLinus Torvalds 			inode->i_fop = &proc_oom_adjust_operations;
17311da177e4SLinus Torvalds 			break;
17321da177e4SLinus Torvalds #ifdef CONFIG_AUDITSYSCALL
17331da177e4SLinus Torvalds 		case PROC_TID_LOGINUID:
17341da177e4SLinus Torvalds 		case PROC_TGID_LOGINUID:
17351da177e4SLinus Torvalds 			inode->i_fop = &proc_loginuid_operations;
17361da177e4SLinus Torvalds 			break;
17371da177e4SLinus Torvalds #endif
17381da177e4SLinus Torvalds 		default:
17391da177e4SLinus Torvalds 			printk("procfs: impossible type (%d)",p->type);
17401da177e4SLinus Torvalds 			iput(inode);
1741cd6a3ce9SEric W. Biederman 			error = ERR_PTR(-EINVAL);
1742cd6a3ce9SEric W. Biederman 			goto out;
17431da177e4SLinus Torvalds 	}
17441da177e4SLinus Torvalds 	dentry->d_op = &pid_dentry_operations;
17451da177e4SLinus Torvalds 	d_add(dentry, inode);
1746cd6a3ce9SEric W. Biederman 	/* Close the race of the process dying before we return the dentry */
1747cd6a3ce9SEric W. Biederman 	if (pid_revalidate(dentry, NULL))
1748cd6a3ce9SEric W. Biederman 		error = NULL;
17491da177e4SLinus Torvalds out:
1750cd6a3ce9SEric W. Biederman 	return error;
17511da177e4SLinus Torvalds }
17521da177e4SLinus Torvalds 
17531da177e4SLinus Torvalds static struct dentry *proc_tgid_base_lookup(struct inode *dir, struct dentry *dentry, struct nameidata *nd){
17541da177e4SLinus Torvalds 	return proc_pident_lookup(dir, dentry, tgid_base_stuff);
17551da177e4SLinus Torvalds }
17561da177e4SLinus Torvalds 
17571da177e4SLinus Torvalds static struct dentry *proc_tid_base_lookup(struct inode *dir, struct dentry *dentry, struct nameidata *nd){
17581da177e4SLinus Torvalds 	return proc_pident_lookup(dir, dentry, tid_base_stuff);
17591da177e4SLinus Torvalds }
17601da177e4SLinus Torvalds 
17611da177e4SLinus Torvalds static struct file_operations proc_tgid_base_operations = {
17621da177e4SLinus Torvalds 	.read		= generic_read_dir,
17631da177e4SLinus Torvalds 	.readdir	= proc_tgid_base_readdir,
17641da177e4SLinus Torvalds };
17651da177e4SLinus Torvalds 
17661da177e4SLinus Torvalds static struct file_operations proc_tid_base_operations = {
17671da177e4SLinus Torvalds 	.read		= generic_read_dir,
17681da177e4SLinus Torvalds 	.readdir	= proc_tid_base_readdir,
17691da177e4SLinus Torvalds };
17701da177e4SLinus Torvalds 
17711da177e4SLinus Torvalds static struct inode_operations proc_tgid_base_inode_operations = {
17721da177e4SLinus Torvalds 	.lookup		= proc_tgid_base_lookup,
17731da177e4SLinus Torvalds };
17741da177e4SLinus Torvalds 
17751da177e4SLinus Torvalds static struct inode_operations proc_tid_base_inode_operations = {
17761da177e4SLinus Torvalds 	.lookup		= proc_tid_base_lookup,
17771da177e4SLinus Torvalds };
17781da177e4SLinus Torvalds 
17791da177e4SLinus Torvalds #ifdef CONFIG_SECURITY
17801da177e4SLinus Torvalds static int proc_tgid_attr_readdir(struct file * filp,
17811da177e4SLinus Torvalds 			     void * dirent, filldir_t filldir)
17821da177e4SLinus Torvalds {
17831da177e4SLinus Torvalds 	return proc_pident_readdir(filp,dirent,filldir,
17841da177e4SLinus Torvalds 				   tgid_attr_stuff,ARRAY_SIZE(tgid_attr_stuff));
17851da177e4SLinus Torvalds }
17861da177e4SLinus Torvalds 
17871da177e4SLinus Torvalds static int proc_tid_attr_readdir(struct file * filp,
17881da177e4SLinus Torvalds 			     void * dirent, filldir_t filldir)
17891da177e4SLinus Torvalds {
17901da177e4SLinus Torvalds 	return proc_pident_readdir(filp,dirent,filldir,
17911da177e4SLinus Torvalds 				   tid_attr_stuff,ARRAY_SIZE(tid_attr_stuff));
17921da177e4SLinus Torvalds }
17931da177e4SLinus Torvalds 
17941da177e4SLinus Torvalds static struct file_operations proc_tgid_attr_operations = {
17951da177e4SLinus Torvalds 	.read		= generic_read_dir,
17961da177e4SLinus Torvalds 	.readdir	= proc_tgid_attr_readdir,
17971da177e4SLinus Torvalds };
17981da177e4SLinus Torvalds 
17991da177e4SLinus Torvalds static struct file_operations proc_tid_attr_operations = {
18001da177e4SLinus Torvalds 	.read		= generic_read_dir,
18011da177e4SLinus Torvalds 	.readdir	= proc_tid_attr_readdir,
18021da177e4SLinus Torvalds };
18031da177e4SLinus Torvalds 
18041da177e4SLinus Torvalds static struct dentry *proc_tgid_attr_lookup(struct inode *dir,
18051da177e4SLinus Torvalds 				struct dentry *dentry, struct nameidata *nd)
18061da177e4SLinus Torvalds {
18071da177e4SLinus Torvalds 	return proc_pident_lookup(dir, dentry, tgid_attr_stuff);
18081da177e4SLinus Torvalds }
18091da177e4SLinus Torvalds 
18101da177e4SLinus Torvalds static struct dentry *proc_tid_attr_lookup(struct inode *dir,
18111da177e4SLinus Torvalds 				struct dentry *dentry, struct nameidata *nd)
18121da177e4SLinus Torvalds {
18131da177e4SLinus Torvalds 	return proc_pident_lookup(dir, dentry, tid_attr_stuff);
18141da177e4SLinus Torvalds }
18151da177e4SLinus Torvalds 
18161da177e4SLinus Torvalds static struct inode_operations proc_tgid_attr_inode_operations = {
18171da177e4SLinus Torvalds 	.lookup		= proc_tgid_attr_lookup,
18181da177e4SLinus Torvalds };
18191da177e4SLinus Torvalds 
18201da177e4SLinus Torvalds static struct inode_operations proc_tid_attr_inode_operations = {
18211da177e4SLinus Torvalds 	.lookup		= proc_tid_attr_lookup,
18221da177e4SLinus Torvalds };
18231da177e4SLinus Torvalds #endif
18241da177e4SLinus Torvalds 
18251da177e4SLinus Torvalds /*
18261da177e4SLinus Torvalds  * /proc/self:
18271da177e4SLinus Torvalds  */
18281da177e4SLinus Torvalds static int proc_self_readlink(struct dentry *dentry, char __user *buffer,
18291da177e4SLinus Torvalds 			      int buflen)
18301da177e4SLinus Torvalds {
18311da177e4SLinus Torvalds 	char tmp[30];
18321da177e4SLinus Torvalds 	sprintf(tmp, "%d", current->tgid);
18331da177e4SLinus Torvalds 	return vfs_readlink(dentry,buffer,buflen,tmp);
18341da177e4SLinus Torvalds }
18351da177e4SLinus Torvalds 
1836008b150aSAl Viro static void *proc_self_follow_link(struct dentry *dentry, struct nameidata *nd)
18371da177e4SLinus Torvalds {
18381da177e4SLinus Torvalds 	char tmp[30];
18391da177e4SLinus Torvalds 	sprintf(tmp, "%d", current->tgid);
1840008b150aSAl Viro 	return ERR_PTR(vfs_follow_link(nd,tmp));
18411da177e4SLinus Torvalds }
18421da177e4SLinus Torvalds 
18431da177e4SLinus Torvalds static struct inode_operations proc_self_inode_operations = {
18441da177e4SLinus Torvalds 	.readlink	= proc_self_readlink,
18451da177e4SLinus Torvalds 	.follow_link	= proc_self_follow_link,
18461da177e4SLinus Torvalds };
18471da177e4SLinus Torvalds 
18481da177e4SLinus Torvalds /**
184948e6484dSEric W. Biederman  * proc_flush_task -  Remove dcache entries for @task from the /proc dcache.
18501da177e4SLinus Torvalds  *
185148e6484dSEric W. Biederman  * @task: task that should be flushed.
18521da177e4SLinus Torvalds  *
185348e6484dSEric W. Biederman  * Looks in the dcache for
185448e6484dSEric W. Biederman  * /proc/@pid
185548e6484dSEric W. Biederman  * /proc/@tgid/task/@pid
185648e6484dSEric W. Biederman  * if either directory is present flushes it and all of it'ts children
185748e6484dSEric W. Biederman  * from the dcache.
185848e6484dSEric W. Biederman  *
185948e6484dSEric W. Biederman  * It is safe and reasonable to cache /proc entries for a task until
186048e6484dSEric W. Biederman  * that task exits.  After that they just clog up the dcache with
186148e6484dSEric W. Biederman  * useless entries, possibly causing useful dcache entries to be
186248e6484dSEric W. Biederman  * flushed instead.  This routine is proved to flush those useless
186348e6484dSEric W. Biederman  * dcache entries at process exit time.
186448e6484dSEric W. Biederman  *
186548e6484dSEric W. Biederman  * NOTE: This routine is just an optimization so it does not guarantee
186648e6484dSEric W. Biederman  *       that no dcache entries will exist at process exit time it
186748e6484dSEric W. Biederman  *       just makes it very unlikely that any will persist.
18681da177e4SLinus Torvalds  */
186948e6484dSEric W. Biederman void proc_flush_task(struct task_struct *task)
18701da177e4SLinus Torvalds {
187148e6484dSEric W. Biederman 	struct dentry *dentry, *leader, *dir;
187248e6484dSEric W. Biederman 	char buf[30];
187348e6484dSEric W. Biederman 	struct qstr name;
18741da177e4SLinus Torvalds 
187548e6484dSEric W. Biederman 	name.name = buf;
187648e6484dSEric W. Biederman 	name.len = snprintf(buf, sizeof(buf), "%d", task->pid);
187748e6484dSEric W. Biederman 	dentry = d_hash_and_lookup(proc_mnt->mnt_root, &name);
187848e6484dSEric W. Biederman 	if (dentry) {
187948e6484dSEric W. Biederman 		shrink_dcache_parent(dentry);
188048e6484dSEric W. Biederman 		d_drop(dentry);
188148e6484dSEric W. Biederman 		dput(dentry);
18821da177e4SLinus Torvalds 	}
18831da177e4SLinus Torvalds 
188448e6484dSEric W. Biederman 	if (thread_group_leader(task))
188548e6484dSEric W. Biederman 		goto out;
18861da177e4SLinus Torvalds 
188748e6484dSEric W. Biederman 	name.name = buf;
188848e6484dSEric W. Biederman 	name.len = snprintf(buf, sizeof(buf), "%d", task->tgid);
188948e6484dSEric W. Biederman 	leader = d_hash_and_lookup(proc_mnt->mnt_root, &name);
189048e6484dSEric W. Biederman 	if (!leader)
189148e6484dSEric W. Biederman 		goto out;
189248e6484dSEric W. Biederman 
189348e6484dSEric W. Biederman 	name.name = "task";
189448e6484dSEric W. Biederman 	name.len = strlen(name.name);
189548e6484dSEric W. Biederman 	dir = d_hash_and_lookup(leader, &name);
189648e6484dSEric W. Biederman 	if (!dir)
189748e6484dSEric W. Biederman 		goto out_put_leader;
189848e6484dSEric W. Biederman 
189948e6484dSEric W. Biederman 	name.name = buf;
190048e6484dSEric W. Biederman 	name.len = snprintf(buf, sizeof(buf), "%d", task->pid);
190148e6484dSEric W. Biederman 	dentry = d_hash_and_lookup(dir, &name);
190248e6484dSEric W. Biederman 	if (dentry) {
190348e6484dSEric W. Biederman 		shrink_dcache_parent(dentry);
190448e6484dSEric W. Biederman 		d_drop(dentry);
190548e6484dSEric W. Biederman 		dput(dentry);
19061da177e4SLinus Torvalds 	}
190748e6484dSEric W. Biederman 
190848e6484dSEric W. Biederman 	dput(dir);
190948e6484dSEric W. Biederman out_put_leader:
191048e6484dSEric W. Biederman 	dput(leader);
191148e6484dSEric W. Biederman out:
191248e6484dSEric W. Biederman 	return;
19131da177e4SLinus Torvalds }
19141da177e4SLinus Torvalds 
19151da177e4SLinus Torvalds /* SMP-safe */
19161da177e4SLinus Torvalds struct dentry *proc_pid_lookup(struct inode *dir, struct dentry * dentry, struct nameidata *nd)
19171da177e4SLinus Torvalds {
1918cd6a3ce9SEric W. Biederman 	struct dentry *result = ERR_PTR(-ENOENT);
19191da177e4SLinus Torvalds 	struct task_struct *task;
19201da177e4SLinus Torvalds 	struct inode *inode;
19211da177e4SLinus Torvalds 	struct proc_inode *ei;
19221da177e4SLinus Torvalds 	unsigned tgid;
19231da177e4SLinus Torvalds 
19241da177e4SLinus Torvalds 	if (dentry->d_name.len == 4 && !memcmp(dentry->d_name.name,"self",4)) {
19251da177e4SLinus Torvalds 		inode = new_inode(dir->i_sb);
19261da177e4SLinus Torvalds 		if (!inode)
19271da177e4SLinus Torvalds 			return ERR_PTR(-ENOMEM);
19281da177e4SLinus Torvalds 		ei = PROC_I(inode);
19291da177e4SLinus Torvalds 		inode->i_mtime = inode->i_atime = inode->i_ctime = CURRENT_TIME;
19301da177e4SLinus Torvalds 		inode->i_ino = fake_ino(0, PROC_TGID_INO);
19311da177e4SLinus Torvalds 		ei->pde = NULL;
19321da177e4SLinus Torvalds 		inode->i_mode = S_IFLNK|S_IRWXUGO;
19331da177e4SLinus Torvalds 		inode->i_uid = inode->i_gid = 0;
19341da177e4SLinus Torvalds 		inode->i_size = 64;
19351da177e4SLinus Torvalds 		inode->i_op = &proc_self_inode_operations;
19361da177e4SLinus Torvalds 		d_add(dentry, inode);
19371da177e4SLinus Torvalds 		return NULL;
19381da177e4SLinus Torvalds 	}
19391da177e4SLinus Torvalds 	tgid = name_to_int(dentry);
19401da177e4SLinus Torvalds 	if (tgid == ~0U)
19411da177e4SLinus Torvalds 		goto out;
19421da177e4SLinus Torvalds 
19431da177e4SLinus Torvalds 	read_lock(&tasklist_lock);
19441da177e4SLinus Torvalds 	task = find_task_by_pid(tgid);
19451da177e4SLinus Torvalds 	if (task)
19461da177e4SLinus Torvalds 		get_task_struct(task);
19471da177e4SLinus Torvalds 	read_unlock(&tasklist_lock);
19481da177e4SLinus Torvalds 	if (!task)
19491da177e4SLinus Torvalds 		goto out;
19501da177e4SLinus Torvalds 
19511da177e4SLinus Torvalds 	inode = proc_pid_make_inode(dir->i_sb, task, PROC_TGID_INO);
1952cd6a3ce9SEric W. Biederman 	if (!inode)
1953cd6a3ce9SEric W. Biederman 		goto out_put_task;
19541da177e4SLinus Torvalds 
19551da177e4SLinus Torvalds 	inode->i_mode = S_IFDIR|S_IRUGO|S_IXUGO;
19561da177e4SLinus Torvalds 	inode->i_op = &proc_tgid_base_inode_operations;
19571da177e4SLinus Torvalds 	inode->i_fop = &proc_tgid_base_operations;
19581da177e4SLinus Torvalds 	inode->i_flags|=S_IMMUTABLE;
1959bcf88e11SDaniel Drake #ifdef CONFIG_SECURITY
1960bcf88e11SDaniel Drake 	inode->i_nlink = 5;
1961bcf88e11SDaniel Drake #else
1962bcf88e11SDaniel Drake 	inode->i_nlink = 4;
1963bcf88e11SDaniel Drake #endif
19641da177e4SLinus Torvalds 
196548e6484dSEric W. Biederman 	dentry->d_op = &pid_dentry_operations;
19661da177e4SLinus Torvalds 
19671da177e4SLinus Torvalds 	d_add(dentry, inode);
1968cd6a3ce9SEric W. Biederman 	/* Close the race of the process dying before we return the dentry */
1969cd6a3ce9SEric W. Biederman 	if (pid_revalidate(dentry, NULL))
1970cd6a3ce9SEric W. Biederman 		result = NULL;
197148e6484dSEric W. Biederman 
1972cd6a3ce9SEric W. Biederman out_put_task:
197348e6484dSEric W. Biederman 	put_task_struct(task);
19741da177e4SLinus Torvalds out:
1975cd6a3ce9SEric W. Biederman 	return result;
19761da177e4SLinus Torvalds }
19771da177e4SLinus Torvalds 
19781da177e4SLinus Torvalds /* SMP-safe */
19791da177e4SLinus Torvalds static struct dentry *proc_task_lookup(struct inode *dir, struct dentry * dentry, struct nameidata *nd)
19801da177e4SLinus Torvalds {
1981cd6a3ce9SEric W. Biederman 	struct dentry *result = ERR_PTR(-ENOENT);
19821da177e4SLinus Torvalds 	struct task_struct *task;
19831da177e4SLinus Torvalds 	struct task_struct *leader = proc_task(dir);
19841da177e4SLinus Torvalds 	struct inode *inode;
19851da177e4SLinus Torvalds 	unsigned tid;
19861da177e4SLinus Torvalds 
19871da177e4SLinus Torvalds 	tid = name_to_int(dentry);
19881da177e4SLinus Torvalds 	if (tid == ~0U)
19891da177e4SLinus Torvalds 		goto out;
19901da177e4SLinus Torvalds 
19911da177e4SLinus Torvalds 	read_lock(&tasklist_lock);
19921da177e4SLinus Torvalds 	task = find_task_by_pid(tid);
19931da177e4SLinus Torvalds 	if (task)
19941da177e4SLinus Torvalds 		get_task_struct(task);
19951da177e4SLinus Torvalds 	read_unlock(&tasklist_lock);
19961da177e4SLinus Torvalds 	if (!task)
19971da177e4SLinus Torvalds 		goto out;
19981da177e4SLinus Torvalds 	if (leader->tgid != task->tgid)
19991da177e4SLinus Torvalds 		goto out_drop_task;
20001da177e4SLinus Torvalds 
20011da177e4SLinus Torvalds 	inode = proc_pid_make_inode(dir->i_sb, task, PROC_TID_INO);
20021da177e4SLinus Torvalds 
20031da177e4SLinus Torvalds 
20041da177e4SLinus Torvalds 	if (!inode)
20051da177e4SLinus Torvalds 		goto out_drop_task;
20061da177e4SLinus Torvalds 	inode->i_mode = S_IFDIR|S_IRUGO|S_IXUGO;
20071da177e4SLinus Torvalds 	inode->i_op = &proc_tid_base_inode_operations;
20081da177e4SLinus Torvalds 	inode->i_fop = &proc_tid_base_operations;
20091da177e4SLinus Torvalds 	inode->i_flags|=S_IMMUTABLE;
2010bcf88e11SDaniel Drake #ifdef CONFIG_SECURITY
2011bcf88e11SDaniel Drake 	inode->i_nlink = 4;
2012bcf88e11SDaniel Drake #else
2013bcf88e11SDaniel Drake 	inode->i_nlink = 3;
2014bcf88e11SDaniel Drake #endif
20151da177e4SLinus Torvalds 
201648e6484dSEric W. Biederman 	dentry->d_op = &pid_dentry_operations;
20171da177e4SLinus Torvalds 
20181da177e4SLinus Torvalds 	d_add(dentry, inode);
2019cd6a3ce9SEric W. Biederman 	/* Close the race of the process dying before we return the dentry */
2020cd6a3ce9SEric W. Biederman 	if (pid_revalidate(dentry, NULL))
2021cd6a3ce9SEric W. Biederman 		result = NULL;
20221da177e4SLinus Torvalds 
20231da177e4SLinus Torvalds out_drop_task:
20241da177e4SLinus Torvalds 	put_task_struct(task);
20251da177e4SLinus Torvalds out:
2026cd6a3ce9SEric W. Biederman 	return result;
20271da177e4SLinus Torvalds }
20281da177e4SLinus Torvalds 
20291da177e4SLinus Torvalds #define PROC_NUMBUF 10
20301da177e4SLinus Torvalds 
20311da177e4SLinus Torvalds /*
20320bc58a91SEric W. Biederman  * Find the first tgid to return to user space.
20330bc58a91SEric W. Biederman  *
20340bc58a91SEric W. Biederman  * Usually this is just whatever follows &init_task, but if the users
20350bc58a91SEric W. Biederman  * buffer was too small to hold the full list or there was a seek into
20360bc58a91SEric W. Biederman  * the middle of the directory we have more work to do.
20370bc58a91SEric W. Biederman  *
20380bc58a91SEric W. Biederman  * In the case of a short read we start with find_task_by_pid.
20390bc58a91SEric W. Biederman  *
20400bc58a91SEric W. Biederman  * In the case of a seek we start with &init_task and walk nr
20410bc58a91SEric W. Biederman  * threads past it.
20421da177e4SLinus Torvalds  */
20430bc58a91SEric W. Biederman static struct task_struct *first_tgid(int tgid, int nr)
20441da177e4SLinus Torvalds {
20450bc58a91SEric W. Biederman 	struct task_struct *pos = NULL;
20461da177e4SLinus Torvalds 	read_lock(&tasklist_lock);
20470bc58a91SEric W. Biederman 	if (tgid && nr) {
20480bc58a91SEric W. Biederman 		pos = find_task_by_pid(tgid);
20490bc58a91SEric W. Biederman 		if (pos && !thread_group_leader(pos))
20500bc58a91SEric W. Biederman 			pos = NULL;
20510bc58a91SEric W. Biederman 		if (pos)
20520bc58a91SEric W. Biederman 			nr = 0;
20531da177e4SLinus Torvalds 	}
20540bc58a91SEric W. Biederman 	/* If nr exceeds the number of processes get out quickly */
20550bc58a91SEric W. Biederman 	if (nr && nr >= nr_processes())
20560bc58a91SEric W. Biederman 		goto done;
20571da177e4SLinus Torvalds 
20580bc58a91SEric W. Biederman 	/* If we haven't found our starting place yet start with
20590bc58a91SEric W. Biederman 	 * the init_task and walk nr tasks forward.
20600bc58a91SEric W. Biederman 	 */
20610bc58a91SEric W. Biederman 	if (!pos && (nr >= 0))
20620bc58a91SEric W. Biederman 		pos = next_task(&init_task);
20631da177e4SLinus Torvalds 
20640bc58a91SEric W. Biederman 	for (; pos && pid_alive(pos); pos = next_task(pos)) {
20650bc58a91SEric W. Biederman 		if (--nr > 0)
20661da177e4SLinus Torvalds 			continue;
20670bc58a91SEric W. Biederman 		get_task_struct(pos);
20680bc58a91SEric W. Biederman 		goto done;
20691da177e4SLinus Torvalds 	}
20700bc58a91SEric W. Biederman 	pos = NULL;
20710bc58a91SEric W. Biederman done:
20721da177e4SLinus Torvalds 	read_unlock(&tasklist_lock);
20730bc58a91SEric W. Biederman 	return pos;
20741da177e4SLinus Torvalds }
20751da177e4SLinus Torvalds 
20761da177e4SLinus Torvalds /*
20770bc58a91SEric W. Biederman  * Find the next task in the task list.
20780bc58a91SEric W. Biederman  * Return NULL if we loop or there is any error.
20790bc58a91SEric W. Biederman  *
20800bc58a91SEric W. Biederman  * The reference to the input task_struct is released.
20811da177e4SLinus Torvalds  */
20820bc58a91SEric W. Biederman static struct task_struct *next_tgid(struct task_struct *start)
20831da177e4SLinus Torvalds {
20840bc58a91SEric W. Biederman 	struct task_struct *pos;
20851da177e4SLinus Torvalds 	read_lock(&tasklist_lock);
20860bc58a91SEric W. Biederman 	pos = start;
20870bc58a91SEric W. Biederman 	if (pid_alive(start))
20880bc58a91SEric W. Biederman 		pos = next_task(start);
20890bc58a91SEric W. Biederman 	if (pid_alive(pos) && (pos != &init_task)) {
20900bc58a91SEric W. Biederman 		get_task_struct(pos);
20910bc58a91SEric W. Biederman 		goto done;
20920bc58a91SEric W. Biederman 	}
20930bc58a91SEric W. Biederman 	pos = NULL;
20940bc58a91SEric W. Biederman done:
20951da177e4SLinus Torvalds 	read_unlock(&tasklist_lock);
20960bc58a91SEric W. Biederman 	put_task_struct(start);
20970bc58a91SEric W. Biederman 	return pos;
20981da177e4SLinus Torvalds }
20991da177e4SLinus Torvalds 
21001da177e4SLinus Torvalds /* for the /proc/ directory itself, after non-process stuff has been done */
21011da177e4SLinus Torvalds int proc_pid_readdir(struct file * filp, void * dirent, filldir_t filldir)
21021da177e4SLinus Torvalds {
21031da177e4SLinus Torvalds 	char buf[PROC_NUMBUF];
21041da177e4SLinus Torvalds 	unsigned int nr = filp->f_pos - FIRST_PROCESS_ENTRY;
21050bc58a91SEric W. Biederman 	struct task_struct *task;
21060bc58a91SEric W. Biederman 	int tgid;
21071da177e4SLinus Torvalds 
21081da177e4SLinus Torvalds 	if (!nr) {
21091da177e4SLinus Torvalds 		ino_t ino = fake_ino(0,PROC_TGID_INO);
21101da177e4SLinus Torvalds 		if (filldir(dirent, "self", 4, filp->f_pos, ino, DT_LNK) < 0)
21111da177e4SLinus Torvalds 			return 0;
21121da177e4SLinus Torvalds 		filp->f_pos++;
21131da177e4SLinus Torvalds 		nr++;
21141da177e4SLinus Torvalds 	}
21150bc58a91SEric W. Biederman 	nr -= 1;
21161da177e4SLinus Torvalds 
21171da177e4SLinus Torvalds 	/* f_version caches the tgid value that the last readdir call couldn't
21181da177e4SLinus Torvalds 	 * return. lseek aka telldir automagically resets f_version to 0.
21191da177e4SLinus Torvalds 	 */
21200bc58a91SEric W. Biederman 	tgid = filp->f_version;
21211da177e4SLinus Torvalds 	filp->f_version = 0;
21220bc58a91SEric W. Biederman 	for (task = first_tgid(tgid, nr);
21230bc58a91SEric W. Biederman 	     task;
21240bc58a91SEric W. Biederman 	     task = next_tgid(task), filp->f_pos++) {
21250bc58a91SEric W. Biederman 		int len;
21260bc58a91SEric W. Biederman 		ino_t ino;
21270bc58a91SEric W. Biederman 		tgid = task->pid;
21280bc58a91SEric W. Biederman 		len = snprintf(buf, sizeof(buf), "%d", tgid);
21290bc58a91SEric W. Biederman 		ino = fake_ino(tgid, PROC_TGID_INO);
21300bc58a91SEric W. Biederman 		if (filldir(dirent, buf, len, filp->f_pos, ino, DT_DIR) < 0) {
21311da177e4SLinus Torvalds 			/* returning this tgid failed, save it as the first
21321da177e4SLinus Torvalds 			 * pid for the next readir call */
21330bc58a91SEric W. Biederman 			filp->f_version = tgid;
21340bc58a91SEric W. Biederman 			put_task_struct(task);
21350bc58a91SEric W. Biederman 			break;
21361da177e4SLinus Torvalds 		}
21371da177e4SLinus Torvalds 	}
21381da177e4SLinus Torvalds 	return 0;
21391da177e4SLinus Torvalds }
21401da177e4SLinus Torvalds 
21410bc58a91SEric W. Biederman /*
21420bc58a91SEric W. Biederman  * Find the first tid of a thread group to return to user space.
21430bc58a91SEric W. Biederman  *
21440bc58a91SEric W. Biederman  * Usually this is just the thread group leader, but if the users
21450bc58a91SEric W. Biederman  * buffer was too small or there was a seek into the middle of the
21460bc58a91SEric W. Biederman  * directory we have more work todo.
21470bc58a91SEric W. Biederman  *
21480bc58a91SEric W. Biederman  * In the case of a short read we start with find_task_by_pid.
21490bc58a91SEric W. Biederman  *
21500bc58a91SEric W. Biederman  * In the case of a seek we start with the leader and walk nr
21510bc58a91SEric W. Biederman  * threads past it.
21520bc58a91SEric W. Biederman  */
21530bc58a91SEric W. Biederman static struct task_struct *first_tid(struct task_struct *leader, int tid, int nr)
21540bc58a91SEric W. Biederman {
21550bc58a91SEric W. Biederman 	struct task_struct *pos = NULL;
21560bc58a91SEric W. Biederman 	read_lock(&tasklist_lock);
21570bc58a91SEric W. Biederman 
21580bc58a91SEric W. Biederman 	/* Attempt to start with the pid of a thread */
21590bc58a91SEric W. Biederman 	if (tid && (nr > 0)) {
21600bc58a91SEric W. Biederman 		pos = find_task_by_pid(tid);
21610bc58a91SEric W. Biederman 		if (pos && (pos->group_leader != leader))
21620bc58a91SEric W. Biederman 			pos = NULL;
21630bc58a91SEric W. Biederman 		if (pos)
21640bc58a91SEric W. Biederman 			nr = 0;
21650bc58a91SEric W. Biederman 	}
21660bc58a91SEric W. Biederman 
21670bc58a91SEric W. Biederman 	/* If nr exceeds the number of threads there is nothing todo */
21680bc58a91SEric W. Biederman 	if (nr) {
21690bc58a91SEric W. Biederman 		int threads = 0;
21700bc58a91SEric W. Biederman 		task_lock(leader);
21710bc58a91SEric W. Biederman 		if (leader->signal)
21720bc58a91SEric W. Biederman 			threads = atomic_read(&leader->signal->count);
21730bc58a91SEric W. Biederman 		task_unlock(leader);
21740bc58a91SEric W. Biederman 		if (nr >= threads)
21750bc58a91SEric W. Biederman 			goto done;
21760bc58a91SEric W. Biederman 	}
21770bc58a91SEric W. Biederman 
21780bc58a91SEric W. Biederman 	/* If we haven't found our starting place yet start with the
21790bc58a91SEric W. Biederman 	 * leader and walk nr threads forward.
21800bc58a91SEric W. Biederman 	 */
21810bc58a91SEric W. Biederman 	if (!pos && (nr >= 0))
21820bc58a91SEric W. Biederman 		pos = leader;
21830bc58a91SEric W. Biederman 
21840bc58a91SEric W. Biederman 	for (; pos && pid_alive(pos); pos = next_thread(pos)) {
21850bc58a91SEric W. Biederman 		if (--nr > 0)
21860bc58a91SEric W. Biederman 			continue;
21870bc58a91SEric W. Biederman 		get_task_struct(pos);
21880bc58a91SEric W. Biederman 		goto done;
21890bc58a91SEric W. Biederman 	}
21900bc58a91SEric W. Biederman 	pos = NULL;
21910bc58a91SEric W. Biederman done:
21920bc58a91SEric W. Biederman 	read_unlock(&tasklist_lock);
21930bc58a91SEric W. Biederman 	return pos;
21940bc58a91SEric W. Biederman }
21950bc58a91SEric W. Biederman 
21960bc58a91SEric W. Biederman /*
21970bc58a91SEric W. Biederman  * Find the next thread in the thread list.
21980bc58a91SEric W. Biederman  * Return NULL if there is an error or no next thread.
21990bc58a91SEric W. Biederman  *
22000bc58a91SEric W. Biederman  * The reference to the input task_struct is released.
22010bc58a91SEric W. Biederman  */
22020bc58a91SEric W. Biederman static struct task_struct *next_tid(struct task_struct *start)
22030bc58a91SEric W. Biederman {
22040bc58a91SEric W. Biederman 	struct task_struct *pos;
22050bc58a91SEric W. Biederman 	read_lock(&tasklist_lock);
22060bc58a91SEric W. Biederman 	pos = start;
22070bc58a91SEric W. Biederman 	if (pid_alive(start))
22080bc58a91SEric W. Biederman 		pos = next_thread(start);
22090bc58a91SEric W. Biederman 	if (pid_alive(pos) && (pos != start->group_leader))
22100bc58a91SEric W. Biederman 		get_task_struct(pos);
22110bc58a91SEric W. Biederman 	else
22120bc58a91SEric W. Biederman 		pos = NULL;
22130bc58a91SEric W. Biederman 	read_unlock(&tasklist_lock);
22140bc58a91SEric W. Biederman 	put_task_struct(start);
22150bc58a91SEric W. Biederman 	return pos;
22160bc58a91SEric W. Biederman }
22170bc58a91SEric W. Biederman 
22181da177e4SLinus Torvalds /* for the /proc/TGID/task/ directories */
22191da177e4SLinus Torvalds static int proc_task_readdir(struct file * filp, void * dirent, filldir_t filldir)
22201da177e4SLinus Torvalds {
22211da177e4SLinus Torvalds 	char buf[PROC_NUMBUF];
22221da177e4SLinus Torvalds 	struct dentry *dentry = filp->f_dentry;
22231da177e4SLinus Torvalds 	struct inode *inode = dentry->d_inode;
22240bc58a91SEric W. Biederman 	struct task_struct *leader = proc_task(inode);
22250bc58a91SEric W. Biederman 	struct task_struct *task;
22261da177e4SLinus Torvalds 	int retval = -ENOENT;
22271da177e4SLinus Torvalds 	ino_t ino;
22280bc58a91SEric W. Biederman 	int tid;
22291da177e4SLinus Torvalds 	unsigned long pos = filp->f_pos;  /* avoiding "long long" filp->f_pos */
22301da177e4SLinus Torvalds 
22310bc58a91SEric W. Biederman 	if (!pid_alive(leader))
22321da177e4SLinus Torvalds 		goto out;
22331da177e4SLinus Torvalds 	retval = 0;
22341da177e4SLinus Torvalds 
22351da177e4SLinus Torvalds 	switch (pos) {
22361da177e4SLinus Torvalds 	case 0:
22371da177e4SLinus Torvalds 		ino = inode->i_ino;
22381da177e4SLinus Torvalds 		if (filldir(dirent, ".", 1, pos, ino, DT_DIR) < 0)
22391da177e4SLinus Torvalds 			goto out;
22401da177e4SLinus Torvalds 		pos++;
22411da177e4SLinus Torvalds 		/* fall through */
22421da177e4SLinus Torvalds 	case 1:
22431da177e4SLinus Torvalds 		ino = parent_ino(dentry);
22441da177e4SLinus Torvalds 		if (filldir(dirent, "..", 2, pos, ino, DT_DIR) < 0)
22451da177e4SLinus Torvalds 			goto out;
22461da177e4SLinus Torvalds 		pos++;
22471da177e4SLinus Torvalds 		/* fall through */
22481da177e4SLinus Torvalds 	}
22491da177e4SLinus Torvalds 
22500bc58a91SEric W. Biederman 	/* f_version caches the tgid value that the last readdir call couldn't
22510bc58a91SEric W. Biederman 	 * return. lseek aka telldir automagically resets f_version to 0.
22520bc58a91SEric W. Biederman 	 */
22530bc58a91SEric W. Biederman 	tid = filp->f_version;
22540bc58a91SEric W. Biederman 	filp->f_version = 0;
22550bc58a91SEric W. Biederman 	for (task = first_tid(leader, tid, pos - 2);
22560bc58a91SEric W. Biederman 	     task;
22570bc58a91SEric W. Biederman 	     task = next_tid(task), pos++) {
22580bc58a91SEric W. Biederman 		int len;
22590bc58a91SEric W. Biederman 		tid = task->pid;
22600bc58a91SEric W. Biederman 		len = snprintf(buf, sizeof(buf), "%d", tid);
22611da177e4SLinus Torvalds 		ino = fake_ino(tid, PROC_TID_INO);
22620bc58a91SEric W. Biederman 		if (filldir(dirent, buf, len, pos, ino, DT_DIR < 0)) {
22630bc58a91SEric W. Biederman 			/* returning this tgid failed, save it as the first
22640bc58a91SEric W. Biederman 			 * pid for the next readir call */
22650bc58a91SEric W. Biederman 			filp->f_version = tid;
22660bc58a91SEric W. Biederman 			put_task_struct(task);
22671da177e4SLinus Torvalds 			break;
22680bc58a91SEric W. Biederman 		}
22691da177e4SLinus Torvalds 	}
22701da177e4SLinus Torvalds out:
22711da177e4SLinus Torvalds 	filp->f_pos = pos;
22721da177e4SLinus Torvalds 	return retval;
22731da177e4SLinus Torvalds }
22746e66b52bSEric W. Biederman 
22756e66b52bSEric W. Biederman static int proc_task_getattr(struct vfsmount *mnt, struct dentry *dentry, struct kstat *stat)
22766e66b52bSEric W. Biederman {
22776e66b52bSEric W. Biederman 	struct inode *inode = dentry->d_inode;
22786e66b52bSEric W. Biederman 	struct task_struct *p = proc_task(inode);
22796e66b52bSEric W. Biederman 	generic_fillattr(inode, stat);
22806e66b52bSEric W. Biederman 
22816e66b52bSEric W. Biederman 	if (pid_alive(p)) {
22826e66b52bSEric W. Biederman 		task_lock(p);
22836e66b52bSEric W. Biederman 		if (p->signal)
22846e66b52bSEric W. Biederman 			stat->nlink += atomic_read(&p->signal->count);
22856e66b52bSEric W. Biederman 		task_unlock(p);
22866e66b52bSEric W. Biederman 	}
22876e66b52bSEric W. Biederman 
22886e66b52bSEric W. Biederman 	return 0;
22896e66b52bSEric W. Biederman }
2290