1d879cb83SAl Viro #include <linux/export.h> 2d879cb83SAl Viro #include <linux/uio.h> 3d879cb83SAl Viro #include <linux/pagemap.h> 4d879cb83SAl Viro #include <linux/slab.h> 5d879cb83SAl Viro #include <linux/vmalloc.h> 6241699cdSAl Viro #include <linux/splice.h> 7d879cb83SAl Viro #include <net/checksum.h> 8d879cb83SAl Viro 9241699cdSAl Viro #define PIPE_PARANOIA /* for now */ 10241699cdSAl Viro 11d879cb83SAl Viro #define iterate_iovec(i, n, __v, __p, skip, STEP) { \ 12d879cb83SAl Viro size_t left; \ 13d879cb83SAl Viro size_t wanted = n; \ 14d879cb83SAl Viro __p = i->iov; \ 15d879cb83SAl Viro __v.iov_len = min(n, __p->iov_len - skip); \ 16d879cb83SAl Viro if (likely(__v.iov_len)) { \ 17d879cb83SAl Viro __v.iov_base = __p->iov_base + skip; \ 18d879cb83SAl Viro left = (STEP); \ 19d879cb83SAl Viro __v.iov_len -= left; \ 20d879cb83SAl Viro skip += __v.iov_len; \ 21d879cb83SAl Viro n -= __v.iov_len; \ 22d879cb83SAl Viro } else { \ 23d879cb83SAl Viro left = 0; \ 24d879cb83SAl Viro } \ 25d879cb83SAl Viro while (unlikely(!left && n)) { \ 26d879cb83SAl Viro __p++; \ 27d879cb83SAl Viro __v.iov_len = min(n, __p->iov_len); \ 28d879cb83SAl Viro if (unlikely(!__v.iov_len)) \ 29d879cb83SAl Viro continue; \ 30d879cb83SAl Viro __v.iov_base = __p->iov_base; \ 31d879cb83SAl Viro left = (STEP); \ 32d879cb83SAl Viro __v.iov_len -= left; \ 33d879cb83SAl Viro skip = __v.iov_len; \ 34d879cb83SAl Viro n -= __v.iov_len; \ 35d879cb83SAl Viro } \ 36d879cb83SAl Viro n = wanted - n; \ 37d879cb83SAl Viro } 38d879cb83SAl Viro 39d879cb83SAl Viro #define iterate_kvec(i, n, __v, __p, skip, STEP) { \ 40d879cb83SAl Viro size_t wanted = n; \ 41d879cb83SAl Viro __p = i->kvec; \ 42d879cb83SAl Viro __v.iov_len = min(n, __p->iov_len - skip); \ 43d879cb83SAl Viro if (likely(__v.iov_len)) { \ 44d879cb83SAl Viro __v.iov_base = __p->iov_base + skip; \ 45d879cb83SAl Viro (void)(STEP); \ 46d879cb83SAl Viro skip += __v.iov_len; \ 47d879cb83SAl Viro n -= __v.iov_len; \ 48d879cb83SAl Viro } \ 49d879cb83SAl Viro while (unlikely(n)) { \ 50d879cb83SAl Viro __p++; \ 51d879cb83SAl Viro __v.iov_len = min(n, __p->iov_len); \ 52d879cb83SAl Viro if (unlikely(!__v.iov_len)) \ 53d879cb83SAl Viro continue; \ 54d879cb83SAl Viro __v.iov_base = __p->iov_base; \ 55d879cb83SAl Viro (void)(STEP); \ 56d879cb83SAl Viro skip = __v.iov_len; \ 57d879cb83SAl Viro n -= __v.iov_len; \ 58d879cb83SAl Viro } \ 59d879cb83SAl Viro n = wanted; \ 60d879cb83SAl Viro } 61d879cb83SAl Viro 621bdc76aeSMing Lei #define iterate_bvec(i, n, __v, __bi, skip, STEP) { \ 631bdc76aeSMing Lei struct bvec_iter __start; \ 641bdc76aeSMing Lei __start.bi_size = n; \ 651bdc76aeSMing Lei __start.bi_bvec_done = skip; \ 661bdc76aeSMing Lei __start.bi_idx = 0; \ 671bdc76aeSMing Lei for_each_bvec(__v, i->bvec, __bi, __start) { \ 681bdc76aeSMing Lei if (!__v.bv_len) \ 69d879cb83SAl Viro continue; \ 70d879cb83SAl Viro (void)(STEP); \ 71d879cb83SAl Viro } \ 72d879cb83SAl Viro } 73d879cb83SAl Viro 74d879cb83SAl Viro #define iterate_all_kinds(i, n, v, I, B, K) { \ 75d879cb83SAl Viro size_t skip = i->iov_offset; \ 76d879cb83SAl Viro if (unlikely(i->type & ITER_BVEC)) { \ 77d879cb83SAl Viro struct bio_vec v; \ 781bdc76aeSMing Lei struct bvec_iter __bi; \ 791bdc76aeSMing Lei iterate_bvec(i, n, v, __bi, skip, (B)) \ 80d879cb83SAl Viro } else if (unlikely(i->type & ITER_KVEC)) { \ 81d879cb83SAl Viro const struct kvec *kvec; \ 82d879cb83SAl Viro struct kvec v; \ 83d879cb83SAl Viro iterate_kvec(i, n, v, kvec, skip, (K)) \ 84d879cb83SAl Viro } else { \ 85d879cb83SAl Viro const struct iovec *iov; \ 86d879cb83SAl Viro struct iovec v; \ 87d879cb83SAl Viro iterate_iovec(i, n, v, iov, skip, (I)) \ 88d879cb83SAl Viro } \ 89d879cb83SAl Viro } 90d879cb83SAl Viro 91d879cb83SAl Viro #define iterate_and_advance(i, n, v, I, B, K) { \ 92dd254f5aSAl Viro if (unlikely(i->count < n)) \ 93dd254f5aSAl Viro n = i->count; \ 9419f18459SAl Viro if (i->count) { \ 95d879cb83SAl Viro size_t skip = i->iov_offset; \ 96d879cb83SAl Viro if (unlikely(i->type & ITER_BVEC)) { \ 971bdc76aeSMing Lei const struct bio_vec *bvec = i->bvec; \ 98d879cb83SAl Viro struct bio_vec v; \ 991bdc76aeSMing Lei struct bvec_iter __bi; \ 1001bdc76aeSMing Lei iterate_bvec(i, n, v, __bi, skip, (B)) \ 1011bdc76aeSMing Lei i->bvec = __bvec_iter_bvec(i->bvec, __bi); \ 1021bdc76aeSMing Lei i->nr_segs -= i->bvec - bvec; \ 1031bdc76aeSMing Lei skip = __bi.bi_bvec_done; \ 104d879cb83SAl Viro } else if (unlikely(i->type & ITER_KVEC)) { \ 105d879cb83SAl Viro const struct kvec *kvec; \ 106d879cb83SAl Viro struct kvec v; \ 107d879cb83SAl Viro iterate_kvec(i, n, v, kvec, skip, (K)) \ 108d879cb83SAl Viro if (skip == kvec->iov_len) { \ 109d879cb83SAl Viro kvec++; \ 110d879cb83SAl Viro skip = 0; \ 111d879cb83SAl Viro } \ 112d879cb83SAl Viro i->nr_segs -= kvec - i->kvec; \ 113d879cb83SAl Viro i->kvec = kvec; \ 114d879cb83SAl Viro } else { \ 115d879cb83SAl Viro const struct iovec *iov; \ 116d879cb83SAl Viro struct iovec v; \ 117d879cb83SAl Viro iterate_iovec(i, n, v, iov, skip, (I)) \ 118d879cb83SAl Viro if (skip == iov->iov_len) { \ 119d879cb83SAl Viro iov++; \ 120d879cb83SAl Viro skip = 0; \ 121d879cb83SAl Viro } \ 122d879cb83SAl Viro i->nr_segs -= iov - i->iov; \ 123d879cb83SAl Viro i->iov = iov; \ 124d879cb83SAl Viro } \ 125d879cb83SAl Viro i->count -= n; \ 126d879cb83SAl Viro i->iov_offset = skip; \ 127dd254f5aSAl Viro } \ 128d879cb83SAl Viro } 129d879cb83SAl Viro 130d879cb83SAl Viro static size_t copy_page_to_iter_iovec(struct page *page, size_t offset, size_t bytes, 131d879cb83SAl Viro struct iov_iter *i) 132d879cb83SAl Viro { 133d879cb83SAl Viro size_t skip, copy, left, wanted; 134d879cb83SAl Viro const struct iovec *iov; 135d879cb83SAl Viro char __user *buf; 136d879cb83SAl Viro void *kaddr, *from; 137d879cb83SAl Viro 138d879cb83SAl Viro if (unlikely(bytes > i->count)) 139d879cb83SAl Viro bytes = i->count; 140d879cb83SAl Viro 141d879cb83SAl Viro if (unlikely(!bytes)) 142d879cb83SAl Viro return 0; 143d879cb83SAl Viro 144d879cb83SAl Viro wanted = bytes; 145d879cb83SAl Viro iov = i->iov; 146d879cb83SAl Viro skip = i->iov_offset; 147d879cb83SAl Viro buf = iov->iov_base + skip; 148d879cb83SAl Viro copy = min(bytes, iov->iov_len - skip); 149d879cb83SAl Viro 1503fa6c507SMikulas Patocka if (IS_ENABLED(CONFIG_HIGHMEM) && !fault_in_pages_writeable(buf, copy)) { 151d879cb83SAl Viro kaddr = kmap_atomic(page); 152d879cb83SAl Viro from = kaddr + offset; 153d879cb83SAl Viro 154d879cb83SAl Viro /* first chunk, usually the only one */ 155d879cb83SAl Viro left = __copy_to_user_inatomic(buf, from, copy); 156d879cb83SAl Viro copy -= left; 157d879cb83SAl Viro skip += copy; 158d879cb83SAl Viro from += copy; 159d879cb83SAl Viro bytes -= copy; 160d879cb83SAl Viro 161d879cb83SAl Viro while (unlikely(!left && bytes)) { 162d879cb83SAl Viro iov++; 163d879cb83SAl Viro buf = iov->iov_base; 164d879cb83SAl Viro copy = min(bytes, iov->iov_len); 165d879cb83SAl Viro left = __copy_to_user_inatomic(buf, from, copy); 166d879cb83SAl Viro copy -= left; 167d879cb83SAl Viro skip = copy; 168d879cb83SAl Viro from += copy; 169d879cb83SAl Viro bytes -= copy; 170d879cb83SAl Viro } 171d879cb83SAl Viro if (likely(!bytes)) { 172d879cb83SAl Viro kunmap_atomic(kaddr); 173d879cb83SAl Viro goto done; 174d879cb83SAl Viro } 175d879cb83SAl Viro offset = from - kaddr; 176d879cb83SAl Viro buf += copy; 177d879cb83SAl Viro kunmap_atomic(kaddr); 178d879cb83SAl Viro copy = min(bytes, iov->iov_len - skip); 179d879cb83SAl Viro } 180d879cb83SAl Viro /* Too bad - revert to non-atomic kmap */ 1813fa6c507SMikulas Patocka 182d879cb83SAl Viro kaddr = kmap(page); 183d879cb83SAl Viro from = kaddr + offset; 184d879cb83SAl Viro left = __copy_to_user(buf, from, copy); 185d879cb83SAl Viro copy -= left; 186d879cb83SAl Viro skip += copy; 187d879cb83SAl Viro from += copy; 188d879cb83SAl Viro bytes -= copy; 189d879cb83SAl Viro while (unlikely(!left && bytes)) { 190d879cb83SAl Viro iov++; 191d879cb83SAl Viro buf = iov->iov_base; 192d879cb83SAl Viro copy = min(bytes, iov->iov_len); 193d879cb83SAl Viro left = __copy_to_user(buf, from, copy); 194d879cb83SAl Viro copy -= left; 195d879cb83SAl Viro skip = copy; 196d879cb83SAl Viro from += copy; 197d879cb83SAl Viro bytes -= copy; 198d879cb83SAl Viro } 199d879cb83SAl Viro kunmap(page); 2003fa6c507SMikulas Patocka 201d879cb83SAl Viro done: 202d879cb83SAl Viro if (skip == iov->iov_len) { 203d879cb83SAl Viro iov++; 204d879cb83SAl Viro skip = 0; 205d879cb83SAl Viro } 206d879cb83SAl Viro i->count -= wanted - bytes; 207d879cb83SAl Viro i->nr_segs -= iov - i->iov; 208d879cb83SAl Viro i->iov = iov; 209d879cb83SAl Viro i->iov_offset = skip; 210d879cb83SAl Viro return wanted - bytes; 211d879cb83SAl Viro } 212d879cb83SAl Viro 213d879cb83SAl Viro static size_t copy_page_from_iter_iovec(struct page *page, size_t offset, size_t bytes, 214d879cb83SAl Viro struct iov_iter *i) 215d879cb83SAl Viro { 216d879cb83SAl Viro size_t skip, copy, left, wanted; 217d879cb83SAl Viro const struct iovec *iov; 218d879cb83SAl Viro char __user *buf; 219d879cb83SAl Viro void *kaddr, *to; 220d879cb83SAl Viro 221d879cb83SAl Viro if (unlikely(bytes > i->count)) 222d879cb83SAl Viro bytes = i->count; 223d879cb83SAl Viro 224d879cb83SAl Viro if (unlikely(!bytes)) 225d879cb83SAl Viro return 0; 226d879cb83SAl Viro 227d879cb83SAl Viro wanted = bytes; 228d879cb83SAl Viro iov = i->iov; 229d879cb83SAl Viro skip = i->iov_offset; 230d879cb83SAl Viro buf = iov->iov_base + skip; 231d879cb83SAl Viro copy = min(bytes, iov->iov_len - skip); 232d879cb83SAl Viro 2333fa6c507SMikulas Patocka if (IS_ENABLED(CONFIG_HIGHMEM) && !fault_in_pages_readable(buf, copy)) { 234d879cb83SAl Viro kaddr = kmap_atomic(page); 235d879cb83SAl Viro to = kaddr + offset; 236d879cb83SAl Viro 237d879cb83SAl Viro /* first chunk, usually the only one */ 238d879cb83SAl Viro left = __copy_from_user_inatomic(to, buf, copy); 239d879cb83SAl Viro copy -= left; 240d879cb83SAl Viro skip += copy; 241d879cb83SAl Viro to += copy; 242d879cb83SAl Viro bytes -= copy; 243d879cb83SAl Viro 244d879cb83SAl Viro while (unlikely(!left && bytes)) { 245d879cb83SAl Viro iov++; 246d879cb83SAl Viro buf = iov->iov_base; 247d879cb83SAl Viro copy = min(bytes, iov->iov_len); 248d879cb83SAl Viro left = __copy_from_user_inatomic(to, buf, copy); 249d879cb83SAl Viro copy -= left; 250d879cb83SAl Viro skip = copy; 251d879cb83SAl Viro to += copy; 252d879cb83SAl Viro bytes -= copy; 253d879cb83SAl Viro } 254d879cb83SAl Viro if (likely(!bytes)) { 255d879cb83SAl Viro kunmap_atomic(kaddr); 256d879cb83SAl Viro goto done; 257d879cb83SAl Viro } 258d879cb83SAl Viro offset = to - kaddr; 259d879cb83SAl Viro buf += copy; 260d879cb83SAl Viro kunmap_atomic(kaddr); 261d879cb83SAl Viro copy = min(bytes, iov->iov_len - skip); 262d879cb83SAl Viro } 263d879cb83SAl Viro /* Too bad - revert to non-atomic kmap */ 2643fa6c507SMikulas Patocka 265d879cb83SAl Viro kaddr = kmap(page); 266d879cb83SAl Viro to = kaddr + offset; 267d879cb83SAl Viro left = __copy_from_user(to, buf, copy); 268d879cb83SAl Viro copy -= left; 269d879cb83SAl Viro skip += copy; 270d879cb83SAl Viro to += copy; 271d879cb83SAl Viro bytes -= copy; 272d879cb83SAl Viro while (unlikely(!left && bytes)) { 273d879cb83SAl Viro iov++; 274d879cb83SAl Viro buf = iov->iov_base; 275d879cb83SAl Viro copy = min(bytes, iov->iov_len); 276d879cb83SAl Viro left = __copy_from_user(to, buf, copy); 277d879cb83SAl Viro copy -= left; 278d879cb83SAl Viro skip = copy; 279d879cb83SAl Viro to += copy; 280d879cb83SAl Viro bytes -= copy; 281d879cb83SAl Viro } 282d879cb83SAl Viro kunmap(page); 2833fa6c507SMikulas Patocka 284d879cb83SAl Viro done: 285d879cb83SAl Viro if (skip == iov->iov_len) { 286d879cb83SAl Viro iov++; 287d879cb83SAl Viro skip = 0; 288d879cb83SAl Viro } 289d879cb83SAl Viro i->count -= wanted - bytes; 290d879cb83SAl Viro i->nr_segs -= iov - i->iov; 291d879cb83SAl Viro i->iov = iov; 292d879cb83SAl Viro i->iov_offset = skip; 293d879cb83SAl Viro return wanted - bytes; 294d879cb83SAl Viro } 295d879cb83SAl Viro 296241699cdSAl Viro #ifdef PIPE_PARANOIA 297241699cdSAl Viro static bool sanity(const struct iov_iter *i) 298241699cdSAl Viro { 299241699cdSAl Viro struct pipe_inode_info *pipe = i->pipe; 300241699cdSAl Viro int idx = i->idx; 301241699cdSAl Viro int next = pipe->curbuf + pipe->nrbufs; 302241699cdSAl Viro if (i->iov_offset) { 303241699cdSAl Viro struct pipe_buffer *p; 304241699cdSAl Viro if (unlikely(!pipe->nrbufs)) 305241699cdSAl Viro goto Bad; // pipe must be non-empty 306241699cdSAl Viro if (unlikely(idx != ((next - 1) & (pipe->buffers - 1)))) 307241699cdSAl Viro goto Bad; // must be at the last buffer... 308241699cdSAl Viro 309241699cdSAl Viro p = &pipe->bufs[idx]; 310241699cdSAl Viro if (unlikely(p->offset + p->len != i->iov_offset)) 311241699cdSAl Viro goto Bad; // ... at the end of segment 312241699cdSAl Viro } else { 313241699cdSAl Viro if (idx != (next & (pipe->buffers - 1))) 314241699cdSAl Viro goto Bad; // must be right after the last buffer 315241699cdSAl Viro } 316241699cdSAl Viro return true; 317241699cdSAl Viro Bad: 318241699cdSAl Viro printk(KERN_ERR "idx = %d, offset = %zd\n", i->idx, i->iov_offset); 319241699cdSAl Viro printk(KERN_ERR "curbuf = %d, nrbufs = %d, buffers = %d\n", 320241699cdSAl Viro pipe->curbuf, pipe->nrbufs, pipe->buffers); 321241699cdSAl Viro for (idx = 0; idx < pipe->buffers; idx++) 322241699cdSAl Viro printk(KERN_ERR "[%p %p %d %d]\n", 323241699cdSAl Viro pipe->bufs[idx].ops, 324241699cdSAl Viro pipe->bufs[idx].page, 325241699cdSAl Viro pipe->bufs[idx].offset, 326241699cdSAl Viro pipe->bufs[idx].len); 327241699cdSAl Viro WARN_ON(1); 328241699cdSAl Viro return false; 329241699cdSAl Viro } 330241699cdSAl Viro #else 331241699cdSAl Viro #define sanity(i) true 332241699cdSAl Viro #endif 333241699cdSAl Viro 334241699cdSAl Viro static inline int next_idx(int idx, struct pipe_inode_info *pipe) 335241699cdSAl Viro { 336241699cdSAl Viro return (idx + 1) & (pipe->buffers - 1); 337241699cdSAl Viro } 338241699cdSAl Viro 339241699cdSAl Viro static size_t copy_page_to_iter_pipe(struct page *page, size_t offset, size_t bytes, 340241699cdSAl Viro struct iov_iter *i) 341241699cdSAl Viro { 342241699cdSAl Viro struct pipe_inode_info *pipe = i->pipe; 343241699cdSAl Viro struct pipe_buffer *buf; 344241699cdSAl Viro size_t off; 345241699cdSAl Viro int idx; 346241699cdSAl Viro 347241699cdSAl Viro if (unlikely(bytes > i->count)) 348241699cdSAl Viro bytes = i->count; 349241699cdSAl Viro 350241699cdSAl Viro if (unlikely(!bytes)) 351241699cdSAl Viro return 0; 352241699cdSAl Viro 353241699cdSAl Viro if (!sanity(i)) 354241699cdSAl Viro return 0; 355241699cdSAl Viro 356241699cdSAl Viro off = i->iov_offset; 357241699cdSAl Viro idx = i->idx; 358241699cdSAl Viro buf = &pipe->bufs[idx]; 359241699cdSAl Viro if (off) { 360241699cdSAl Viro if (offset == off && buf->page == page) { 361241699cdSAl Viro /* merge with the last one */ 362241699cdSAl Viro buf->len += bytes; 363241699cdSAl Viro i->iov_offset += bytes; 364241699cdSAl Viro goto out; 365241699cdSAl Viro } 366241699cdSAl Viro idx = next_idx(idx, pipe); 367241699cdSAl Viro buf = &pipe->bufs[idx]; 368241699cdSAl Viro } 369241699cdSAl Viro if (idx == pipe->curbuf && pipe->nrbufs) 370241699cdSAl Viro return 0; 371241699cdSAl Viro pipe->nrbufs++; 372241699cdSAl Viro buf->ops = &page_cache_pipe_buf_ops; 373241699cdSAl Viro get_page(buf->page = page); 374241699cdSAl Viro buf->offset = offset; 375241699cdSAl Viro buf->len = bytes; 376241699cdSAl Viro i->iov_offset = offset + bytes; 377241699cdSAl Viro i->idx = idx; 378241699cdSAl Viro out: 379241699cdSAl Viro i->count -= bytes; 380241699cdSAl Viro return bytes; 381241699cdSAl Viro } 382241699cdSAl Viro 383d879cb83SAl Viro /* 384171a0203SAnton Altaparmakov * Fault in one or more iovecs of the given iov_iter, to a maximum length of 385171a0203SAnton Altaparmakov * bytes. For each iovec, fault in each page that constitutes the iovec. 386171a0203SAnton Altaparmakov * 387171a0203SAnton Altaparmakov * Return 0 on success, or non-zero if the memory could not be accessed (i.e. 388171a0203SAnton Altaparmakov * because it is an invalid address). 389171a0203SAnton Altaparmakov */ 390d4690f1eSAl Viro int iov_iter_fault_in_readable(struct iov_iter *i, size_t bytes) 391171a0203SAnton Altaparmakov { 392171a0203SAnton Altaparmakov size_t skip = i->iov_offset; 393171a0203SAnton Altaparmakov const struct iovec *iov; 394171a0203SAnton Altaparmakov int err; 395171a0203SAnton Altaparmakov struct iovec v; 396171a0203SAnton Altaparmakov 397171a0203SAnton Altaparmakov if (!(i->type & (ITER_BVEC|ITER_KVEC))) { 398171a0203SAnton Altaparmakov iterate_iovec(i, bytes, v, iov, skip, ({ 3994bce9f6eSAl Viro err = fault_in_pages_readable(v.iov_base, v.iov_len); 400171a0203SAnton Altaparmakov if (unlikely(err)) 401171a0203SAnton Altaparmakov return err; 402171a0203SAnton Altaparmakov 0;})) 403171a0203SAnton Altaparmakov } 404171a0203SAnton Altaparmakov return 0; 405171a0203SAnton Altaparmakov } 406d4690f1eSAl Viro EXPORT_SYMBOL(iov_iter_fault_in_readable); 407171a0203SAnton Altaparmakov 408d879cb83SAl Viro void iov_iter_init(struct iov_iter *i, int direction, 409d879cb83SAl Viro const struct iovec *iov, unsigned long nr_segs, 410d879cb83SAl Viro size_t count) 411d879cb83SAl Viro { 412d879cb83SAl Viro /* It will get better. Eventually... */ 413d879cb83SAl Viro if (segment_eq(get_fs(), KERNEL_DS)) { 414d879cb83SAl Viro direction |= ITER_KVEC; 415d879cb83SAl Viro i->type = direction; 416d879cb83SAl Viro i->kvec = (struct kvec *)iov; 417d879cb83SAl Viro } else { 418d879cb83SAl Viro i->type = direction; 419d879cb83SAl Viro i->iov = iov; 420d879cb83SAl Viro } 421d879cb83SAl Viro i->nr_segs = nr_segs; 422d879cb83SAl Viro i->iov_offset = 0; 423d879cb83SAl Viro i->count = count; 424d879cb83SAl Viro } 425d879cb83SAl Viro EXPORT_SYMBOL(iov_iter_init); 426d879cb83SAl Viro 427d879cb83SAl Viro static void memcpy_from_page(char *to, struct page *page, size_t offset, size_t len) 428d879cb83SAl Viro { 429d879cb83SAl Viro char *from = kmap_atomic(page); 430d879cb83SAl Viro memcpy(to, from + offset, len); 431d879cb83SAl Viro kunmap_atomic(from); 432d879cb83SAl Viro } 433d879cb83SAl Viro 43436f7a8a4SAl Viro static void memcpy_to_page(struct page *page, size_t offset, const char *from, size_t len) 435d879cb83SAl Viro { 436d879cb83SAl Viro char *to = kmap_atomic(page); 437d879cb83SAl Viro memcpy(to + offset, from, len); 438d879cb83SAl Viro kunmap_atomic(to); 439d879cb83SAl Viro } 440d879cb83SAl Viro 441d879cb83SAl Viro static void memzero_page(struct page *page, size_t offset, size_t len) 442d879cb83SAl Viro { 443d879cb83SAl Viro char *addr = kmap_atomic(page); 444d879cb83SAl Viro memset(addr + offset, 0, len); 445d879cb83SAl Viro kunmap_atomic(addr); 446d879cb83SAl Viro } 447d879cb83SAl Viro 448241699cdSAl Viro static inline bool allocated(struct pipe_buffer *buf) 449241699cdSAl Viro { 450241699cdSAl Viro return buf->ops == &default_pipe_buf_ops; 451241699cdSAl Viro } 452241699cdSAl Viro 453241699cdSAl Viro static inline void data_start(const struct iov_iter *i, int *idxp, size_t *offp) 454241699cdSAl Viro { 455241699cdSAl Viro size_t off = i->iov_offset; 456241699cdSAl Viro int idx = i->idx; 457241699cdSAl Viro if (off && (!allocated(&i->pipe->bufs[idx]) || off == PAGE_SIZE)) { 458241699cdSAl Viro idx = next_idx(idx, i->pipe); 459241699cdSAl Viro off = 0; 460241699cdSAl Viro } 461241699cdSAl Viro *idxp = idx; 462241699cdSAl Viro *offp = off; 463241699cdSAl Viro } 464241699cdSAl Viro 465241699cdSAl Viro static size_t push_pipe(struct iov_iter *i, size_t size, 466241699cdSAl Viro int *idxp, size_t *offp) 467241699cdSAl Viro { 468241699cdSAl Viro struct pipe_inode_info *pipe = i->pipe; 469241699cdSAl Viro size_t off; 470241699cdSAl Viro int idx; 471241699cdSAl Viro ssize_t left; 472241699cdSAl Viro 473241699cdSAl Viro if (unlikely(size > i->count)) 474241699cdSAl Viro size = i->count; 475241699cdSAl Viro if (unlikely(!size)) 476241699cdSAl Viro return 0; 477241699cdSAl Viro 478241699cdSAl Viro left = size; 479241699cdSAl Viro data_start(i, &idx, &off); 480241699cdSAl Viro *idxp = idx; 481241699cdSAl Viro *offp = off; 482241699cdSAl Viro if (off) { 483241699cdSAl Viro left -= PAGE_SIZE - off; 484241699cdSAl Viro if (left <= 0) { 485241699cdSAl Viro pipe->bufs[idx].len += size; 486241699cdSAl Viro return size; 487241699cdSAl Viro } 488241699cdSAl Viro pipe->bufs[idx].len = PAGE_SIZE; 489241699cdSAl Viro idx = next_idx(idx, pipe); 490241699cdSAl Viro } 491241699cdSAl Viro while (idx != pipe->curbuf || !pipe->nrbufs) { 492241699cdSAl Viro struct page *page = alloc_page(GFP_USER); 493241699cdSAl Viro if (!page) 494241699cdSAl Viro break; 495241699cdSAl Viro pipe->nrbufs++; 496241699cdSAl Viro pipe->bufs[idx].ops = &default_pipe_buf_ops; 497241699cdSAl Viro pipe->bufs[idx].page = page; 498241699cdSAl Viro pipe->bufs[idx].offset = 0; 499241699cdSAl Viro if (left <= PAGE_SIZE) { 500241699cdSAl Viro pipe->bufs[idx].len = left; 501241699cdSAl Viro return size; 502241699cdSAl Viro } 503241699cdSAl Viro pipe->bufs[idx].len = PAGE_SIZE; 504241699cdSAl Viro left -= PAGE_SIZE; 505241699cdSAl Viro idx = next_idx(idx, pipe); 506241699cdSAl Viro } 507241699cdSAl Viro return size - left; 508241699cdSAl Viro } 509241699cdSAl Viro 510241699cdSAl Viro static size_t copy_pipe_to_iter(const void *addr, size_t bytes, 511241699cdSAl Viro struct iov_iter *i) 512241699cdSAl Viro { 513241699cdSAl Viro struct pipe_inode_info *pipe = i->pipe; 514241699cdSAl Viro size_t n, off; 515241699cdSAl Viro int idx; 516241699cdSAl Viro 517241699cdSAl Viro if (!sanity(i)) 518241699cdSAl Viro return 0; 519241699cdSAl Viro 520241699cdSAl Viro bytes = n = push_pipe(i, bytes, &idx, &off); 521241699cdSAl Viro if (unlikely(!n)) 522241699cdSAl Viro return 0; 523241699cdSAl Viro for ( ; n; idx = next_idx(idx, pipe), off = 0) { 524241699cdSAl Viro size_t chunk = min_t(size_t, n, PAGE_SIZE - off); 525241699cdSAl Viro memcpy_to_page(pipe->bufs[idx].page, off, addr, chunk); 526241699cdSAl Viro i->idx = idx; 527241699cdSAl Viro i->iov_offset = off + chunk; 528241699cdSAl Viro n -= chunk; 529241699cdSAl Viro addr += chunk; 530241699cdSAl Viro } 531241699cdSAl Viro i->count -= bytes; 532241699cdSAl Viro return bytes; 533241699cdSAl Viro } 534241699cdSAl Viro 53536f7a8a4SAl Viro size_t copy_to_iter(const void *addr, size_t bytes, struct iov_iter *i) 536d879cb83SAl Viro { 53736f7a8a4SAl Viro const char *from = addr; 538241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) 539241699cdSAl Viro return copy_pipe_to_iter(addr, bytes, i); 540d879cb83SAl Viro iterate_and_advance(i, bytes, v, 541d879cb83SAl Viro __copy_to_user(v.iov_base, (from += v.iov_len) - v.iov_len, 542d879cb83SAl Viro v.iov_len), 543d879cb83SAl Viro memcpy_to_page(v.bv_page, v.bv_offset, 544d879cb83SAl Viro (from += v.bv_len) - v.bv_len, v.bv_len), 545d879cb83SAl Viro memcpy(v.iov_base, (from += v.iov_len) - v.iov_len, v.iov_len) 546d879cb83SAl Viro ) 547d879cb83SAl Viro 548d879cb83SAl Viro return bytes; 549d879cb83SAl Viro } 550d879cb83SAl Viro EXPORT_SYMBOL(copy_to_iter); 551d879cb83SAl Viro 552d879cb83SAl Viro size_t copy_from_iter(void *addr, size_t bytes, struct iov_iter *i) 553d879cb83SAl Viro { 554d879cb83SAl Viro char *to = addr; 555241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) { 556241699cdSAl Viro WARN_ON(1); 557241699cdSAl Viro return 0; 558241699cdSAl Viro } 559d879cb83SAl Viro iterate_and_advance(i, bytes, v, 560d879cb83SAl Viro __copy_from_user((to += v.iov_len) - v.iov_len, v.iov_base, 561d879cb83SAl Viro v.iov_len), 562d879cb83SAl Viro memcpy_from_page((to += v.bv_len) - v.bv_len, v.bv_page, 563d879cb83SAl Viro v.bv_offset, v.bv_len), 564d879cb83SAl Viro memcpy((to += v.iov_len) - v.iov_len, v.iov_base, v.iov_len) 565d879cb83SAl Viro ) 566d879cb83SAl Viro 567d879cb83SAl Viro return bytes; 568d879cb83SAl Viro } 569d879cb83SAl Viro EXPORT_SYMBOL(copy_from_iter); 570d879cb83SAl Viro 571d879cb83SAl Viro size_t copy_from_iter_nocache(void *addr, size_t bytes, struct iov_iter *i) 572d879cb83SAl Viro { 573d879cb83SAl Viro char *to = addr; 574241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) { 575241699cdSAl Viro WARN_ON(1); 576241699cdSAl Viro return 0; 577241699cdSAl Viro } 578d879cb83SAl Viro iterate_and_advance(i, bytes, v, 579d879cb83SAl Viro __copy_from_user_nocache((to += v.iov_len) - v.iov_len, 580d879cb83SAl Viro v.iov_base, v.iov_len), 581d879cb83SAl Viro memcpy_from_page((to += v.bv_len) - v.bv_len, v.bv_page, 582d879cb83SAl Viro v.bv_offset, v.bv_len), 583d879cb83SAl Viro memcpy((to += v.iov_len) - v.iov_len, v.iov_base, v.iov_len) 584d879cb83SAl Viro ) 585d879cb83SAl Viro 586d879cb83SAl Viro return bytes; 587d879cb83SAl Viro } 588d879cb83SAl Viro EXPORT_SYMBOL(copy_from_iter_nocache); 589d879cb83SAl Viro 590d879cb83SAl Viro size_t copy_page_to_iter(struct page *page, size_t offset, size_t bytes, 591d879cb83SAl Viro struct iov_iter *i) 592d879cb83SAl Viro { 593d879cb83SAl Viro if (i->type & (ITER_BVEC|ITER_KVEC)) { 594d879cb83SAl Viro void *kaddr = kmap_atomic(page); 595d879cb83SAl Viro size_t wanted = copy_to_iter(kaddr + offset, bytes, i); 596d879cb83SAl Viro kunmap_atomic(kaddr); 597d879cb83SAl Viro return wanted; 598241699cdSAl Viro } else if (likely(!(i->type & ITER_PIPE))) 599d879cb83SAl Viro return copy_page_to_iter_iovec(page, offset, bytes, i); 600241699cdSAl Viro else 601241699cdSAl Viro return copy_page_to_iter_pipe(page, offset, bytes, i); 602d879cb83SAl Viro } 603d879cb83SAl Viro EXPORT_SYMBOL(copy_page_to_iter); 604d879cb83SAl Viro 605d879cb83SAl Viro size_t copy_page_from_iter(struct page *page, size_t offset, size_t bytes, 606d879cb83SAl Viro struct iov_iter *i) 607d879cb83SAl Viro { 608241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) { 609241699cdSAl Viro WARN_ON(1); 610241699cdSAl Viro return 0; 611241699cdSAl Viro } 612d879cb83SAl Viro if (i->type & (ITER_BVEC|ITER_KVEC)) { 613d879cb83SAl Viro void *kaddr = kmap_atomic(page); 614d879cb83SAl Viro size_t wanted = copy_from_iter(kaddr + offset, bytes, i); 615d879cb83SAl Viro kunmap_atomic(kaddr); 616d879cb83SAl Viro return wanted; 617d879cb83SAl Viro } else 618d879cb83SAl Viro return copy_page_from_iter_iovec(page, offset, bytes, i); 619d879cb83SAl Viro } 620d879cb83SAl Viro EXPORT_SYMBOL(copy_page_from_iter); 621d879cb83SAl Viro 622241699cdSAl Viro static size_t pipe_zero(size_t bytes, struct iov_iter *i) 623241699cdSAl Viro { 624241699cdSAl Viro struct pipe_inode_info *pipe = i->pipe; 625241699cdSAl Viro size_t n, off; 626241699cdSAl Viro int idx; 627241699cdSAl Viro 628241699cdSAl Viro if (!sanity(i)) 629241699cdSAl Viro return 0; 630241699cdSAl Viro 631241699cdSAl Viro bytes = n = push_pipe(i, bytes, &idx, &off); 632241699cdSAl Viro if (unlikely(!n)) 633241699cdSAl Viro return 0; 634241699cdSAl Viro 635241699cdSAl Viro for ( ; n; idx = next_idx(idx, pipe), off = 0) { 636241699cdSAl Viro size_t chunk = min_t(size_t, n, PAGE_SIZE - off); 637241699cdSAl Viro memzero_page(pipe->bufs[idx].page, off, chunk); 638241699cdSAl Viro i->idx = idx; 639241699cdSAl Viro i->iov_offset = off + chunk; 640241699cdSAl Viro n -= chunk; 641241699cdSAl Viro } 642241699cdSAl Viro i->count -= bytes; 643241699cdSAl Viro return bytes; 644241699cdSAl Viro } 645241699cdSAl Viro 646d879cb83SAl Viro size_t iov_iter_zero(size_t bytes, struct iov_iter *i) 647d879cb83SAl Viro { 648241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) 649241699cdSAl Viro return pipe_zero(bytes, i); 650d879cb83SAl Viro iterate_and_advance(i, bytes, v, 651d879cb83SAl Viro __clear_user(v.iov_base, v.iov_len), 652d879cb83SAl Viro memzero_page(v.bv_page, v.bv_offset, v.bv_len), 653d879cb83SAl Viro memset(v.iov_base, 0, v.iov_len) 654d879cb83SAl Viro ) 655d879cb83SAl Viro 656d879cb83SAl Viro return bytes; 657d879cb83SAl Viro } 658d879cb83SAl Viro EXPORT_SYMBOL(iov_iter_zero); 659d879cb83SAl Viro 660d879cb83SAl Viro size_t iov_iter_copy_from_user_atomic(struct page *page, 661d879cb83SAl Viro struct iov_iter *i, unsigned long offset, size_t bytes) 662d879cb83SAl Viro { 663d879cb83SAl Viro char *kaddr = kmap_atomic(page), *p = kaddr + offset; 664241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) { 665241699cdSAl Viro kunmap_atomic(kaddr); 666241699cdSAl Viro WARN_ON(1); 667241699cdSAl Viro return 0; 668241699cdSAl Viro } 669d879cb83SAl Viro iterate_all_kinds(i, bytes, v, 670d879cb83SAl Viro __copy_from_user_inatomic((p += v.iov_len) - v.iov_len, 671d879cb83SAl Viro v.iov_base, v.iov_len), 672d879cb83SAl Viro memcpy_from_page((p += v.bv_len) - v.bv_len, v.bv_page, 673d879cb83SAl Viro v.bv_offset, v.bv_len), 674d879cb83SAl Viro memcpy((p += v.iov_len) - v.iov_len, v.iov_base, v.iov_len) 675d879cb83SAl Viro ) 676d879cb83SAl Viro kunmap_atomic(kaddr); 677d879cb83SAl Viro return bytes; 678d879cb83SAl Viro } 679d879cb83SAl Viro EXPORT_SYMBOL(iov_iter_copy_from_user_atomic); 680d879cb83SAl Viro 681241699cdSAl Viro static void pipe_advance(struct iov_iter *i, size_t size) 682241699cdSAl Viro { 683241699cdSAl Viro struct pipe_inode_info *pipe = i->pipe; 684241699cdSAl Viro struct pipe_buffer *buf; 685241699cdSAl Viro int idx = i->idx; 686680bb946SAbhi Das size_t off = i->iov_offset, orig_sz; 687241699cdSAl Viro 688241699cdSAl Viro if (unlikely(i->count < size)) 689241699cdSAl Viro size = i->count; 690680bb946SAbhi Das orig_sz = size; 691241699cdSAl Viro 692241699cdSAl Viro if (size) { 693241699cdSAl Viro if (off) /* make it relative to the beginning of buffer */ 694241699cdSAl Viro size += off - pipe->bufs[idx].offset; 695241699cdSAl Viro while (1) { 696241699cdSAl Viro buf = &pipe->bufs[idx]; 697241699cdSAl Viro if (size <= buf->len) 698241699cdSAl Viro break; 699241699cdSAl Viro size -= buf->len; 700241699cdSAl Viro idx = next_idx(idx, pipe); 701241699cdSAl Viro } 702241699cdSAl Viro buf->len = size; 703241699cdSAl Viro i->idx = idx; 704241699cdSAl Viro off = i->iov_offset = buf->offset + size; 705241699cdSAl Viro } 706241699cdSAl Viro if (off) 707241699cdSAl Viro idx = next_idx(idx, pipe); 708241699cdSAl Viro if (pipe->nrbufs) { 709241699cdSAl Viro int unused = (pipe->curbuf + pipe->nrbufs) & (pipe->buffers - 1); 710241699cdSAl Viro /* [curbuf,unused) is in use. Free [idx,unused) */ 711241699cdSAl Viro while (idx != unused) { 712a779638cSMiklos Szeredi pipe_buf_release(pipe, &pipe->bufs[idx]); 713241699cdSAl Viro idx = next_idx(idx, pipe); 714241699cdSAl Viro pipe->nrbufs--; 715241699cdSAl Viro } 716241699cdSAl Viro } 717680bb946SAbhi Das i->count -= orig_sz; 718241699cdSAl Viro } 719241699cdSAl Viro 720d879cb83SAl Viro void iov_iter_advance(struct iov_iter *i, size_t size) 721d879cb83SAl Viro { 722241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) { 723241699cdSAl Viro pipe_advance(i, size); 724241699cdSAl Viro return; 725241699cdSAl Viro } 726d879cb83SAl Viro iterate_and_advance(i, size, v, 0, 0, 0) 727d879cb83SAl Viro } 728d879cb83SAl Viro EXPORT_SYMBOL(iov_iter_advance); 729d879cb83SAl Viro 730d879cb83SAl Viro /* 731d879cb83SAl Viro * Return the count of just the current iov_iter segment. 732d879cb83SAl Viro */ 733d879cb83SAl Viro size_t iov_iter_single_seg_count(const struct iov_iter *i) 734d879cb83SAl Viro { 735241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) 736241699cdSAl Viro return i->count; // it is a silly place, anyway 737d879cb83SAl Viro if (i->nr_segs == 1) 738d879cb83SAl Viro return i->count; 739d879cb83SAl Viro else if (i->type & ITER_BVEC) 740d879cb83SAl Viro return min(i->count, i->bvec->bv_len - i->iov_offset); 741d879cb83SAl Viro else 742d879cb83SAl Viro return min(i->count, i->iov->iov_len - i->iov_offset); 743d879cb83SAl Viro } 744d879cb83SAl Viro EXPORT_SYMBOL(iov_iter_single_seg_count); 745d879cb83SAl Viro 746d879cb83SAl Viro void iov_iter_kvec(struct iov_iter *i, int direction, 747d879cb83SAl Viro const struct kvec *kvec, unsigned long nr_segs, 748d879cb83SAl Viro size_t count) 749d879cb83SAl Viro { 750d879cb83SAl Viro BUG_ON(!(direction & ITER_KVEC)); 751d879cb83SAl Viro i->type = direction; 752d879cb83SAl Viro i->kvec = kvec; 753d879cb83SAl Viro i->nr_segs = nr_segs; 754d879cb83SAl Viro i->iov_offset = 0; 755d879cb83SAl Viro i->count = count; 756d879cb83SAl Viro } 757d879cb83SAl Viro EXPORT_SYMBOL(iov_iter_kvec); 758d879cb83SAl Viro 759d879cb83SAl Viro void iov_iter_bvec(struct iov_iter *i, int direction, 760d879cb83SAl Viro const struct bio_vec *bvec, unsigned long nr_segs, 761d879cb83SAl Viro size_t count) 762d879cb83SAl Viro { 763d879cb83SAl Viro BUG_ON(!(direction & ITER_BVEC)); 764d879cb83SAl Viro i->type = direction; 765d879cb83SAl Viro i->bvec = bvec; 766d879cb83SAl Viro i->nr_segs = nr_segs; 767d879cb83SAl Viro i->iov_offset = 0; 768d879cb83SAl Viro i->count = count; 769d879cb83SAl Viro } 770d879cb83SAl Viro EXPORT_SYMBOL(iov_iter_bvec); 771d879cb83SAl Viro 772241699cdSAl Viro void iov_iter_pipe(struct iov_iter *i, int direction, 773241699cdSAl Viro struct pipe_inode_info *pipe, 774241699cdSAl Viro size_t count) 775241699cdSAl Viro { 776241699cdSAl Viro BUG_ON(direction != ITER_PIPE); 777241699cdSAl Viro i->type = direction; 778241699cdSAl Viro i->pipe = pipe; 779241699cdSAl Viro i->idx = (pipe->curbuf + pipe->nrbufs) & (pipe->buffers - 1); 780241699cdSAl Viro i->iov_offset = 0; 781241699cdSAl Viro i->count = count; 782241699cdSAl Viro } 783241699cdSAl Viro EXPORT_SYMBOL(iov_iter_pipe); 784241699cdSAl Viro 785d879cb83SAl Viro unsigned long iov_iter_alignment(const struct iov_iter *i) 786d879cb83SAl Viro { 787d879cb83SAl Viro unsigned long res = 0; 788d879cb83SAl Viro size_t size = i->count; 789d879cb83SAl Viro 790d879cb83SAl Viro if (!size) 791d879cb83SAl Viro return 0; 792d879cb83SAl Viro 793241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) { 794241699cdSAl Viro if (i->iov_offset && allocated(&i->pipe->bufs[i->idx])) 795241699cdSAl Viro return size | i->iov_offset; 796241699cdSAl Viro return size; 797241699cdSAl Viro } 798d879cb83SAl Viro iterate_all_kinds(i, size, v, 799d879cb83SAl Viro (res |= (unsigned long)v.iov_base | v.iov_len, 0), 800d879cb83SAl Viro res |= v.bv_offset | v.bv_len, 801d879cb83SAl Viro res |= (unsigned long)v.iov_base | v.iov_len 802d879cb83SAl Viro ) 803d879cb83SAl Viro return res; 804d879cb83SAl Viro } 805d879cb83SAl Viro EXPORT_SYMBOL(iov_iter_alignment); 806d879cb83SAl Viro 807357f435dSAl Viro unsigned long iov_iter_gap_alignment(const struct iov_iter *i) 808357f435dSAl Viro { 809357f435dSAl Viro unsigned long res = 0; 810357f435dSAl Viro size_t size = i->count; 811357f435dSAl Viro if (!size) 812357f435dSAl Viro return 0; 813357f435dSAl Viro 814241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) { 815241699cdSAl Viro WARN_ON(1); 816241699cdSAl Viro return ~0U; 817241699cdSAl Viro } 818241699cdSAl Viro 819357f435dSAl Viro iterate_all_kinds(i, size, v, 820357f435dSAl Viro (res |= (!res ? 0 : (unsigned long)v.iov_base) | 821357f435dSAl Viro (size != v.iov_len ? size : 0), 0), 822357f435dSAl Viro (res |= (!res ? 0 : (unsigned long)v.bv_offset) | 823357f435dSAl Viro (size != v.bv_len ? size : 0)), 824357f435dSAl Viro (res |= (!res ? 0 : (unsigned long)v.iov_base) | 825357f435dSAl Viro (size != v.iov_len ? size : 0)) 826357f435dSAl Viro ); 827357f435dSAl Viro return res; 828357f435dSAl Viro } 829357f435dSAl Viro EXPORT_SYMBOL(iov_iter_gap_alignment); 830357f435dSAl Viro 831241699cdSAl Viro static inline size_t __pipe_get_pages(struct iov_iter *i, 832241699cdSAl Viro size_t maxsize, 833241699cdSAl Viro struct page **pages, 834241699cdSAl Viro int idx, 835241699cdSAl Viro size_t *start) 836241699cdSAl Viro { 837241699cdSAl Viro struct pipe_inode_info *pipe = i->pipe; 8381689c73aSAl Viro ssize_t n = push_pipe(i, maxsize, &idx, start); 839241699cdSAl Viro if (!n) 840241699cdSAl Viro return -EFAULT; 841241699cdSAl Viro 842241699cdSAl Viro maxsize = n; 843241699cdSAl Viro n += *start; 8441689c73aSAl Viro while (n > 0) { 845241699cdSAl Viro get_page(*pages++ = pipe->bufs[idx].page); 846241699cdSAl Viro idx = next_idx(idx, pipe); 847241699cdSAl Viro n -= PAGE_SIZE; 848241699cdSAl Viro } 849241699cdSAl Viro 850241699cdSAl Viro return maxsize; 851241699cdSAl Viro } 852241699cdSAl Viro 853241699cdSAl Viro static ssize_t pipe_get_pages(struct iov_iter *i, 854241699cdSAl Viro struct page **pages, size_t maxsize, unsigned maxpages, 855241699cdSAl Viro size_t *start) 856241699cdSAl Viro { 857241699cdSAl Viro unsigned npages; 858241699cdSAl Viro size_t capacity; 859241699cdSAl Viro int idx; 860241699cdSAl Viro 861241699cdSAl Viro if (!sanity(i)) 862241699cdSAl Viro return -EFAULT; 863241699cdSAl Viro 864241699cdSAl Viro data_start(i, &idx, start); 865241699cdSAl Viro /* some of this one + all after this one */ 866241699cdSAl Viro npages = ((i->pipe->curbuf - idx - 1) & (i->pipe->buffers - 1)) + 1; 867241699cdSAl Viro capacity = min(npages,maxpages) * PAGE_SIZE - *start; 868241699cdSAl Viro 869241699cdSAl Viro return __pipe_get_pages(i, min(maxsize, capacity), pages, idx, start); 870241699cdSAl Viro } 871241699cdSAl Viro 872d879cb83SAl Viro ssize_t iov_iter_get_pages(struct iov_iter *i, 873d879cb83SAl Viro struct page **pages, size_t maxsize, unsigned maxpages, 874d879cb83SAl Viro size_t *start) 875d879cb83SAl Viro { 876d879cb83SAl Viro if (maxsize > i->count) 877d879cb83SAl Viro maxsize = i->count; 878d879cb83SAl Viro 879d879cb83SAl Viro if (!maxsize) 880d879cb83SAl Viro return 0; 881d879cb83SAl Viro 882241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) 883241699cdSAl Viro return pipe_get_pages(i, pages, maxsize, maxpages, start); 884d879cb83SAl Viro iterate_all_kinds(i, maxsize, v, ({ 885d879cb83SAl Viro unsigned long addr = (unsigned long)v.iov_base; 886d879cb83SAl Viro size_t len = v.iov_len + (*start = addr & (PAGE_SIZE - 1)); 887d879cb83SAl Viro int n; 888d879cb83SAl Viro int res; 889d879cb83SAl Viro 890d879cb83SAl Viro if (len > maxpages * PAGE_SIZE) 891d879cb83SAl Viro len = maxpages * PAGE_SIZE; 892d879cb83SAl Viro addr &= ~(PAGE_SIZE - 1); 893d879cb83SAl Viro n = DIV_ROUND_UP(len, PAGE_SIZE); 894d879cb83SAl Viro res = get_user_pages_fast(addr, n, (i->type & WRITE) != WRITE, pages); 895d879cb83SAl Viro if (unlikely(res < 0)) 896d879cb83SAl Viro return res; 897d879cb83SAl Viro return (res == n ? len : res * PAGE_SIZE) - *start; 898d879cb83SAl Viro 0;}),({ 899d879cb83SAl Viro /* can't be more than PAGE_SIZE */ 900d879cb83SAl Viro *start = v.bv_offset; 901d879cb83SAl Viro get_page(*pages = v.bv_page); 902d879cb83SAl Viro return v.bv_len; 903d879cb83SAl Viro }),({ 904d879cb83SAl Viro return -EFAULT; 905d879cb83SAl Viro }) 906d879cb83SAl Viro ) 907d879cb83SAl Viro return 0; 908d879cb83SAl Viro } 909d879cb83SAl Viro EXPORT_SYMBOL(iov_iter_get_pages); 910d879cb83SAl Viro 911d879cb83SAl Viro static struct page **get_pages_array(size_t n) 912d879cb83SAl Viro { 913d879cb83SAl Viro struct page **p = kmalloc(n * sizeof(struct page *), GFP_KERNEL); 914d879cb83SAl Viro if (!p) 915d879cb83SAl Viro p = vmalloc(n * sizeof(struct page *)); 916d879cb83SAl Viro return p; 917d879cb83SAl Viro } 918d879cb83SAl Viro 919241699cdSAl Viro static ssize_t pipe_get_pages_alloc(struct iov_iter *i, 920241699cdSAl Viro struct page ***pages, size_t maxsize, 921241699cdSAl Viro size_t *start) 922241699cdSAl Viro { 923241699cdSAl Viro struct page **p; 924241699cdSAl Viro size_t n; 925241699cdSAl Viro int idx; 926241699cdSAl Viro int npages; 927241699cdSAl Viro 928241699cdSAl Viro if (!sanity(i)) 929241699cdSAl Viro return -EFAULT; 930241699cdSAl Viro 931241699cdSAl Viro data_start(i, &idx, start); 932241699cdSAl Viro /* some of this one + all after this one */ 933241699cdSAl Viro npages = ((i->pipe->curbuf - idx - 1) & (i->pipe->buffers - 1)) + 1; 934241699cdSAl Viro n = npages * PAGE_SIZE - *start; 935241699cdSAl Viro if (maxsize > n) 936241699cdSAl Viro maxsize = n; 937241699cdSAl Viro else 938241699cdSAl Viro npages = DIV_ROUND_UP(maxsize + *start, PAGE_SIZE); 939241699cdSAl Viro p = get_pages_array(npages); 940241699cdSAl Viro if (!p) 941241699cdSAl Viro return -ENOMEM; 942241699cdSAl Viro n = __pipe_get_pages(i, maxsize, p, idx, start); 943241699cdSAl Viro if (n > 0) 944241699cdSAl Viro *pages = p; 945241699cdSAl Viro else 946241699cdSAl Viro kvfree(p); 947241699cdSAl Viro return n; 948241699cdSAl Viro } 949241699cdSAl Viro 950d879cb83SAl Viro ssize_t iov_iter_get_pages_alloc(struct iov_iter *i, 951d879cb83SAl Viro struct page ***pages, size_t maxsize, 952d879cb83SAl Viro size_t *start) 953d879cb83SAl Viro { 954d879cb83SAl Viro struct page **p; 955d879cb83SAl Viro 956d879cb83SAl Viro if (maxsize > i->count) 957d879cb83SAl Viro maxsize = i->count; 958d879cb83SAl Viro 959d879cb83SAl Viro if (!maxsize) 960d879cb83SAl Viro return 0; 961d879cb83SAl Viro 962241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) 963241699cdSAl Viro return pipe_get_pages_alloc(i, pages, maxsize, start); 964d879cb83SAl Viro iterate_all_kinds(i, maxsize, v, ({ 965d879cb83SAl Viro unsigned long addr = (unsigned long)v.iov_base; 966d879cb83SAl Viro size_t len = v.iov_len + (*start = addr & (PAGE_SIZE - 1)); 967d879cb83SAl Viro int n; 968d879cb83SAl Viro int res; 969d879cb83SAl Viro 970d879cb83SAl Viro addr &= ~(PAGE_SIZE - 1); 971d879cb83SAl Viro n = DIV_ROUND_UP(len, PAGE_SIZE); 972d879cb83SAl Viro p = get_pages_array(n); 973d879cb83SAl Viro if (!p) 974d879cb83SAl Viro return -ENOMEM; 975d879cb83SAl Viro res = get_user_pages_fast(addr, n, (i->type & WRITE) != WRITE, p); 976d879cb83SAl Viro if (unlikely(res < 0)) { 977d879cb83SAl Viro kvfree(p); 978d879cb83SAl Viro return res; 979d879cb83SAl Viro } 980d879cb83SAl Viro *pages = p; 981d879cb83SAl Viro return (res == n ? len : res * PAGE_SIZE) - *start; 982d879cb83SAl Viro 0;}),({ 983d879cb83SAl Viro /* can't be more than PAGE_SIZE */ 984d879cb83SAl Viro *start = v.bv_offset; 985d879cb83SAl Viro *pages = p = get_pages_array(1); 986d879cb83SAl Viro if (!p) 987d879cb83SAl Viro return -ENOMEM; 988d879cb83SAl Viro get_page(*p = v.bv_page); 989d879cb83SAl Viro return v.bv_len; 990d879cb83SAl Viro }),({ 991d879cb83SAl Viro return -EFAULT; 992d879cb83SAl Viro }) 993d879cb83SAl Viro ) 994d879cb83SAl Viro return 0; 995d879cb83SAl Viro } 996d879cb83SAl Viro EXPORT_SYMBOL(iov_iter_get_pages_alloc); 997d879cb83SAl Viro 998d879cb83SAl Viro size_t csum_and_copy_from_iter(void *addr, size_t bytes, __wsum *csum, 999d879cb83SAl Viro struct iov_iter *i) 1000d879cb83SAl Viro { 1001d879cb83SAl Viro char *to = addr; 1002d879cb83SAl Viro __wsum sum, next; 1003d879cb83SAl Viro size_t off = 0; 1004d879cb83SAl Viro sum = *csum; 1005241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) { 1006241699cdSAl Viro WARN_ON(1); 1007241699cdSAl Viro return 0; 1008241699cdSAl Viro } 1009d879cb83SAl Viro iterate_and_advance(i, bytes, v, ({ 1010d879cb83SAl Viro int err = 0; 1011d879cb83SAl Viro next = csum_and_copy_from_user(v.iov_base, 1012d879cb83SAl Viro (to += v.iov_len) - v.iov_len, 1013d879cb83SAl Viro v.iov_len, 0, &err); 1014d879cb83SAl Viro if (!err) { 1015d879cb83SAl Viro sum = csum_block_add(sum, next, off); 1016d879cb83SAl Viro off += v.iov_len; 1017d879cb83SAl Viro } 1018d879cb83SAl Viro err ? v.iov_len : 0; 1019d879cb83SAl Viro }), ({ 1020d879cb83SAl Viro char *p = kmap_atomic(v.bv_page); 1021d879cb83SAl Viro next = csum_partial_copy_nocheck(p + v.bv_offset, 1022d879cb83SAl Viro (to += v.bv_len) - v.bv_len, 1023d879cb83SAl Viro v.bv_len, 0); 1024d879cb83SAl Viro kunmap_atomic(p); 1025d879cb83SAl Viro sum = csum_block_add(sum, next, off); 1026d879cb83SAl Viro off += v.bv_len; 1027d879cb83SAl Viro }),({ 1028d879cb83SAl Viro next = csum_partial_copy_nocheck(v.iov_base, 1029d879cb83SAl Viro (to += v.iov_len) - v.iov_len, 1030d879cb83SAl Viro v.iov_len, 0); 1031d879cb83SAl Viro sum = csum_block_add(sum, next, off); 1032d879cb83SAl Viro off += v.iov_len; 1033d879cb83SAl Viro }) 1034d879cb83SAl Viro ) 1035d879cb83SAl Viro *csum = sum; 1036d879cb83SAl Viro return bytes; 1037d879cb83SAl Viro } 1038d879cb83SAl Viro EXPORT_SYMBOL(csum_and_copy_from_iter); 1039d879cb83SAl Viro 104036f7a8a4SAl Viro size_t csum_and_copy_to_iter(const void *addr, size_t bytes, __wsum *csum, 1041d879cb83SAl Viro struct iov_iter *i) 1042d879cb83SAl Viro { 104336f7a8a4SAl Viro const char *from = addr; 1044d879cb83SAl Viro __wsum sum, next; 1045d879cb83SAl Viro size_t off = 0; 1046d879cb83SAl Viro sum = *csum; 1047241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) { 1048241699cdSAl Viro WARN_ON(1); /* for now */ 1049241699cdSAl Viro return 0; 1050241699cdSAl Viro } 1051d879cb83SAl Viro iterate_and_advance(i, bytes, v, ({ 1052d879cb83SAl Viro int err = 0; 1053d879cb83SAl Viro next = csum_and_copy_to_user((from += v.iov_len) - v.iov_len, 1054d879cb83SAl Viro v.iov_base, 1055d879cb83SAl Viro v.iov_len, 0, &err); 1056d879cb83SAl Viro if (!err) { 1057d879cb83SAl Viro sum = csum_block_add(sum, next, off); 1058d879cb83SAl Viro off += v.iov_len; 1059d879cb83SAl Viro } 1060d879cb83SAl Viro err ? v.iov_len : 0; 1061d879cb83SAl Viro }), ({ 1062d879cb83SAl Viro char *p = kmap_atomic(v.bv_page); 1063d879cb83SAl Viro next = csum_partial_copy_nocheck((from += v.bv_len) - v.bv_len, 1064d879cb83SAl Viro p + v.bv_offset, 1065d879cb83SAl Viro v.bv_len, 0); 1066d879cb83SAl Viro kunmap_atomic(p); 1067d879cb83SAl Viro sum = csum_block_add(sum, next, off); 1068d879cb83SAl Viro off += v.bv_len; 1069d879cb83SAl Viro }),({ 1070d879cb83SAl Viro next = csum_partial_copy_nocheck((from += v.iov_len) - v.iov_len, 1071d879cb83SAl Viro v.iov_base, 1072d879cb83SAl Viro v.iov_len, 0); 1073d879cb83SAl Viro sum = csum_block_add(sum, next, off); 1074d879cb83SAl Viro off += v.iov_len; 1075d879cb83SAl Viro }) 1076d879cb83SAl Viro ) 1077d879cb83SAl Viro *csum = sum; 1078d879cb83SAl Viro return bytes; 1079d879cb83SAl Viro } 1080d879cb83SAl Viro EXPORT_SYMBOL(csum_and_copy_to_iter); 1081d879cb83SAl Viro 1082d879cb83SAl Viro int iov_iter_npages(const struct iov_iter *i, int maxpages) 1083d879cb83SAl Viro { 1084d879cb83SAl Viro size_t size = i->count; 1085d879cb83SAl Viro int npages = 0; 1086d879cb83SAl Viro 1087d879cb83SAl Viro if (!size) 1088d879cb83SAl Viro return 0; 1089d879cb83SAl Viro 1090241699cdSAl Viro if (unlikely(i->type & ITER_PIPE)) { 1091241699cdSAl Viro struct pipe_inode_info *pipe = i->pipe; 1092241699cdSAl Viro size_t off; 1093241699cdSAl Viro int idx; 1094241699cdSAl Viro 1095241699cdSAl Viro if (!sanity(i)) 1096241699cdSAl Viro return 0; 1097241699cdSAl Viro 1098241699cdSAl Viro data_start(i, &idx, &off); 1099241699cdSAl Viro /* some of this one + all after this one */ 1100241699cdSAl Viro npages = ((pipe->curbuf - idx - 1) & (pipe->buffers - 1)) + 1; 1101241699cdSAl Viro if (npages >= maxpages) 1102241699cdSAl Viro return maxpages; 1103241699cdSAl Viro } else iterate_all_kinds(i, size, v, ({ 1104d879cb83SAl Viro unsigned long p = (unsigned long)v.iov_base; 1105d879cb83SAl Viro npages += DIV_ROUND_UP(p + v.iov_len, PAGE_SIZE) 1106d879cb83SAl Viro - p / PAGE_SIZE; 1107d879cb83SAl Viro if (npages >= maxpages) 1108d879cb83SAl Viro return maxpages; 1109d879cb83SAl Viro 0;}),({ 1110d879cb83SAl Viro npages++; 1111d879cb83SAl Viro if (npages >= maxpages) 1112d879cb83SAl Viro return maxpages; 1113d879cb83SAl Viro }),({ 1114d879cb83SAl Viro unsigned long p = (unsigned long)v.iov_base; 1115d879cb83SAl Viro npages += DIV_ROUND_UP(p + v.iov_len, PAGE_SIZE) 1116d879cb83SAl Viro - p / PAGE_SIZE; 1117d879cb83SAl Viro if (npages >= maxpages) 1118d879cb83SAl Viro return maxpages; 1119d879cb83SAl Viro }) 1120d879cb83SAl Viro ) 1121d879cb83SAl Viro return npages; 1122d879cb83SAl Viro } 1123d879cb83SAl Viro EXPORT_SYMBOL(iov_iter_npages); 1124d879cb83SAl Viro 1125d879cb83SAl Viro const void *dup_iter(struct iov_iter *new, struct iov_iter *old, gfp_t flags) 1126d879cb83SAl Viro { 1127d879cb83SAl Viro *new = *old; 1128241699cdSAl Viro if (unlikely(new->type & ITER_PIPE)) { 1129241699cdSAl Viro WARN_ON(1); 1130241699cdSAl Viro return NULL; 1131241699cdSAl Viro } 1132d879cb83SAl Viro if (new->type & ITER_BVEC) 1133d879cb83SAl Viro return new->bvec = kmemdup(new->bvec, 1134d879cb83SAl Viro new->nr_segs * sizeof(struct bio_vec), 1135d879cb83SAl Viro flags); 1136d879cb83SAl Viro else 1137d879cb83SAl Viro /* iovec and kvec have identical layout */ 1138d879cb83SAl Viro return new->iov = kmemdup(new->iov, 1139d879cb83SAl Viro new->nr_segs * sizeof(struct iovec), 1140d879cb83SAl Viro flags); 1141d879cb83SAl Viro } 1142d879cb83SAl Viro EXPORT_SYMBOL(dup_iter); 1143bc917be8SAl Viro 1144ffecee4fSVegard Nossum /** 1145ffecee4fSVegard Nossum * import_iovec() - Copy an array of &struct iovec from userspace 1146ffecee4fSVegard Nossum * into the kernel, check that it is valid, and initialize a new 1147ffecee4fSVegard Nossum * &struct iov_iter iterator to access it. 1148ffecee4fSVegard Nossum * 1149ffecee4fSVegard Nossum * @type: One of %READ or %WRITE. 1150ffecee4fSVegard Nossum * @uvector: Pointer to the userspace array. 1151ffecee4fSVegard Nossum * @nr_segs: Number of elements in userspace array. 1152ffecee4fSVegard Nossum * @fast_segs: Number of elements in @iov. 1153ffecee4fSVegard Nossum * @iov: (input and output parameter) Pointer to pointer to (usually small 1154ffecee4fSVegard Nossum * on-stack) kernel array. 1155ffecee4fSVegard Nossum * @i: Pointer to iterator that will be initialized on success. 1156ffecee4fSVegard Nossum * 1157ffecee4fSVegard Nossum * If the array pointed to by *@iov is large enough to hold all @nr_segs, 1158ffecee4fSVegard Nossum * then this function places %NULL in *@iov on return. Otherwise, a new 1159ffecee4fSVegard Nossum * array will be allocated and the result placed in *@iov. This means that 1160ffecee4fSVegard Nossum * the caller may call kfree() on *@iov regardless of whether the small 1161ffecee4fSVegard Nossum * on-stack array was used or not (and regardless of whether this function 1162ffecee4fSVegard Nossum * returns an error or not). 1163ffecee4fSVegard Nossum * 1164ffecee4fSVegard Nossum * Return: 0 on success or negative error code on error. 1165ffecee4fSVegard Nossum */ 1166bc917be8SAl Viro int import_iovec(int type, const struct iovec __user * uvector, 1167bc917be8SAl Viro unsigned nr_segs, unsigned fast_segs, 1168bc917be8SAl Viro struct iovec **iov, struct iov_iter *i) 1169bc917be8SAl Viro { 1170bc917be8SAl Viro ssize_t n; 1171bc917be8SAl Viro struct iovec *p; 1172bc917be8SAl Viro n = rw_copy_check_uvector(type, uvector, nr_segs, fast_segs, 1173bc917be8SAl Viro *iov, &p); 1174bc917be8SAl Viro if (n < 0) { 1175bc917be8SAl Viro if (p != *iov) 1176bc917be8SAl Viro kfree(p); 1177bc917be8SAl Viro *iov = NULL; 1178bc917be8SAl Viro return n; 1179bc917be8SAl Viro } 1180bc917be8SAl Viro iov_iter_init(i, type, p, nr_segs, n); 1181bc917be8SAl Viro *iov = p == *iov ? NULL : p; 1182bc917be8SAl Viro return 0; 1183bc917be8SAl Viro } 1184bc917be8SAl Viro EXPORT_SYMBOL(import_iovec); 1185bc917be8SAl Viro 1186bc917be8SAl Viro #ifdef CONFIG_COMPAT 1187bc917be8SAl Viro #include <linux/compat.h> 1188bc917be8SAl Viro 1189bc917be8SAl Viro int compat_import_iovec(int type, const struct compat_iovec __user * uvector, 1190bc917be8SAl Viro unsigned nr_segs, unsigned fast_segs, 1191bc917be8SAl Viro struct iovec **iov, struct iov_iter *i) 1192bc917be8SAl Viro { 1193bc917be8SAl Viro ssize_t n; 1194bc917be8SAl Viro struct iovec *p; 1195bc917be8SAl Viro n = compat_rw_copy_check_uvector(type, uvector, nr_segs, fast_segs, 1196bc917be8SAl Viro *iov, &p); 1197bc917be8SAl Viro if (n < 0) { 1198bc917be8SAl Viro if (p != *iov) 1199bc917be8SAl Viro kfree(p); 1200bc917be8SAl Viro *iov = NULL; 1201bc917be8SAl Viro return n; 1202bc917be8SAl Viro } 1203bc917be8SAl Viro iov_iter_init(i, type, p, nr_segs, n); 1204bc917be8SAl Viro *iov = p == *iov ? NULL : p; 1205bc917be8SAl Viro return 0; 1206bc917be8SAl Viro } 1207bc917be8SAl Viro #endif 1208bc917be8SAl Viro 1209bc917be8SAl Viro int import_single_range(int rw, void __user *buf, size_t len, 1210bc917be8SAl Viro struct iovec *iov, struct iov_iter *i) 1211bc917be8SAl Viro { 1212bc917be8SAl Viro if (len > MAX_RW_COUNT) 1213bc917be8SAl Viro len = MAX_RW_COUNT; 1214bc917be8SAl Viro if (unlikely(!access_ok(!rw, buf, len))) 1215bc917be8SAl Viro return -EFAULT; 1216bc917be8SAl Viro 1217bc917be8SAl Viro iov->iov_base = buf; 1218bc917be8SAl Viro iov->iov_len = len; 1219bc917be8SAl Viro iov_iter_init(i, rw, iov, 1, len); 1220bc917be8SAl Viro return 0; 1221bc917be8SAl Viro } 1222e1267585SAl Viro EXPORT_SYMBOL(import_single_range); 1223