1 // SPDX-License-Identifier: GPL-2.0 1 // SPDX-License-Identifier: GPL-2.0 2 /* 2 /* 3 * fs/proc_namespace.c - handling of /proc/<pi 3 * fs/proc_namespace.c - handling of /proc/<pid>/{mounts,mountinfo,mountstats} 4 * 4 * 5 * In fact, that's a piece of procfs; it's *al 5 * In fact, that's a piece of procfs; it's *almost* isolated from 6 * the rest of fs/proc, but has rather close r 6 * the rest of fs/proc, but has rather close relationships with 7 * fs/namespace.c, thus here instead of fs/pro 7 * fs/namespace.c, thus here instead of fs/proc 8 * 8 * 9 */ 9 */ 10 #include <linux/mnt_namespace.h> 10 #include <linux/mnt_namespace.h> 11 #include <linux/nsproxy.h> 11 #include <linux/nsproxy.h> 12 #include <linux/security.h> 12 #include <linux/security.h> 13 #include <linux/fs_struct.h> 13 #include <linux/fs_struct.h> 14 #include <linux/sched/task.h> 14 #include <linux/sched/task.h> 15 15 16 #include "<proc/internal.h" /* only for get_pro 16 #include "<proc/internal.h" /* only for get_proc_task() in -?v=linux-4.20.17">a href="source/fs/proc/internal.h?v=linux-4.20.17">proc/internal.h" /* only for get_proc_task() in ->open() */ 17 17 18 #include "pnode.h" 18 #include "pnode.h" 19 #include "internal.h" 19 #include "internal.h" 20 20 21 static __poll_t mounts_poll(struct file *file, 21 static __poll_t mounts_poll(struct file *file, poll_table *wait) 22 { 22 { 23 struct seq_file *m = file->private_dat 23 struct seq_file *m = file->private_data; 24 struct proc_mounts *p = m->private; 24 struct proc_mounts *p = m->private; 25 struct mnt_namespace *ns = p->ns; 25 struct mnt_namespace *ns = p->ns; 26 __poll_t res = EPOLLIN | EPOLLRDNORM; 26 __poll_t res = EPOLLIN | EPOLLRDNORM; 27 int event; 27 int event; 28 28 29 poll_wait(file, &p->ns->poll, wait); 29 poll_wait(file, &p->ns->poll, wait); 30 30 31 event = READ_ONCE(ns->event); 31 event = READ_ONCE(ns->event); 32 if (m->poll_event != event) { 32 if (m->poll_event != event) { 33 m->poll_event = event; 33 m->poll_event = event; 34 res |= EPOLLERR | EPOLLPRI; 34 res |= EPOLLERR | EPOLLPRI; 35 } 35 } 36 36 37 return res; 37 return res; 38 } 38 } 39 39 40 struct proc_fs_opts { !! 40 struct proc_fs_info { 41 int flag; 41 int flag; 42 const char *str; 42 const char *str; 43 }; 43 }; 44 44 45 static int show_sb_opts(struct seq_file *m, st 45 static int show_sb_opts(struct seq_file *m, struct super_block *sb) 46 { 46 { 47 static const struct proc_fs_opts fs_op !! 47 static const struct proc_fs_info fs_info[] = { 48 { SB_SYNCHRONOUS, ",sync" }, 48 { SB_SYNCHRONOUS, ",sync" }, 49 { SB_DIRSYNC, ",dirsync" }, 49 { SB_DIRSYNC, ",dirsync" }, 50 { SB_MANDLOCK, ",mand" }, 50 { SB_MANDLOCK, ",mand" }, 51 { SB_LAZYTIME, ",lazytime" }, 51 { SB_LAZYTIME, ",lazytime" }, 52 { 0, NULL } 52 { 0, NULL } 53 }; 53 }; 54 const struct proc_fs_opts *fs_infop; !! 54 const struct proc_fs_info *fs_infop; 55 55 56 for (fs_infop = fs_opts; fs_infop->fla !! 56 for (fs_infop = fs_info; fs_infop->flag; fs_infop++) { 57 if (sb->s_flags & fs_infop->fl 57 if (sb->s_flags & fs_infop->flag) 58 seq_puts(m, fs_infop-> 58 seq_puts(m, fs_infop->str); 59 } 59 } 60 60 61 return security_sb_show_options(m, sb) 61 return security_sb_show_options(m, sb); 62 } 62 } 63 63 64 static void show_vfsmnt_opts(struct seq_file * !! 64 static void show_mnt_opts(struct seq_file *m, struct vfsmount *mnt) 65 { 65 { 66 static const struct proc_fs_opts mnt_o !! 66 static const struct proc_fs_info mnt_info[] = { 67 { MNT_NOSUID, ",nosuid" }, 67 { MNT_NOSUID, ",nosuid" }, 68 { MNT_NODEV, ",nodev" }, 68 { MNT_NODEV, ",nodev" }, 69 { MNT_NOEXEC, ",noexec" }, 69 { MNT_NOEXEC, ",noexec" }, 70 { MNT_NOATIME, ",noatime" }, 70 { MNT_NOATIME, ",noatime" }, 71 { MNT_NODIRATIME, ",nodiratime 71 { MNT_NODIRATIME, ",nodiratime" }, 72 { MNT_RELATIME, ",relatime" }, 72 { MNT_RELATIME, ",relatime" }, 73 { MNT_NOSYMFOLLOW, ",nosymfoll << 74 { 0, NULL } 73 { 0, NULL } 75 }; 74 }; 76 const struct proc_fs_opts *fs_infop; !! 75 const struct proc_fs_info *fs_infop; 77 76 78 for (fs_infop = mnt_opts; fs_infop->fl !! 77 for (fs_infop = mnt_info; fs_infop->flag; fs_infop++) { 79 if (mnt->mnt_flags & fs_infop- 78 if (mnt->mnt_flags & fs_infop->flag) 80 seq_puts(m, fs_infop-> 79 seq_puts(m, fs_infop->str); 81 } 80 } 82 << 83 if (is_idmapped_mnt(mnt)) << 84 seq_puts(m, ",idmapped"); << 85 } 81 } 86 82 87 static inline void mangle(struct seq_file *m, 83 static inline void mangle(struct seq_file *m, const char *s) 88 { 84 { 89 seq_escape(m, s, " \t\n\\#"); !! 85 seq_escape(m, s, " \t\n\\"); 90 } 86 } 91 87 92 static void show_type(struct seq_file *m, stru 88 static void show_type(struct seq_file *m, struct super_block *sb) 93 { 89 { 94 mangle(m, sb->s_type->name); 90 mangle(m, sb->s_type->name); 95 if (sb->s_subtype) { !! 91 if (sb->s_subtype && sb->s_subtype[0]) { 96 seq_putc(m, '.'); 92 seq_putc(m, '.'); 97 mangle(m, sb->s_subtype); 93 mangle(m, sb->s_subtype); 98 } 94 } 99 } 95 } 100 96 101 static int show_vfsmnt(struct seq_file *m, str 97 static int show_vfsmnt(struct seq_file *m, struct vfsmount *mnt) 102 { 98 { 103 struct proc_mounts *p = m->private; 99 struct proc_mounts *p = m->private; 104 struct mount *r = real_mount(mnt); 100 struct mount *r = real_mount(mnt); 105 struct path mnt_path = { .dentry = mnt 101 struct path mnt_path = { .dentry = mnt->mnt_root, .mnt = mnt }; 106 struct super_block *sb = mnt_path.dent 102 struct super_block *sb = mnt_path.dentry->d_sb; 107 int err; 103 int err; 108 104 109 if (sb->s_op->show_devname) { 105 if (sb->s_op->show_devname) { 110 err = sb->s_op->show_devname(m 106 err = sb->s_op->show_devname(m, mnt_path.dentry); 111 if (err) 107 if (err) 112 goto out; 108 goto out; 113 } else { 109 } else { 114 mangle(m, r->mnt_devname ? r-> 110 mangle(m, r->mnt_devname ? r->mnt_devname : "none"); 115 } 111 } 116 seq_putc(m, ' '); 112 seq_putc(m, ' '); 117 /* mountpoints outside of chroot jail 113 /* mountpoints outside of chroot jail will give SEQ_SKIP on this */ 118 err = seq_path_root(m, &mnt_path, &p-> 114 err = seq_path_root(m, &mnt_path, &p->root, " \t\n\\"); 119 if (err) 115 if (err) 120 goto out; 116 goto out; 121 seq_putc(m, ' '); 117 seq_putc(m, ' '); 122 show_type(m, sb); 118 show_type(m, sb); 123 seq_puts(m, __mnt_is_readonly(mnt) ? " 119 seq_puts(m, __mnt_is_readonly(mnt) ? " ro" : " rw"); 124 err = show_sb_opts(m, sb); 120 err = show_sb_opts(m, sb); 125 if (err) 121 if (err) 126 goto out; 122 goto out; 127 show_vfsmnt_opts(m, mnt); !! 123 show_mnt_opts(m, mnt); 128 if (sb->s_op->show_options) 124 if (sb->s_op->show_options) 129 err = sb->s_op->show_options(m 125 err = sb->s_op->show_options(m, mnt_path.dentry); 130 seq_puts(m, " 0 0\n"); 126 seq_puts(m, " 0 0\n"); 131 out: 127 out: 132 return err; 128 return err; 133 } 129 } 134 130 135 static int show_mountinfo(struct seq_file *m, 131 static int show_mountinfo(struct seq_file *m, struct vfsmount *mnt) 136 { 132 { 137 struct proc_mounts *p = m->private; 133 struct proc_mounts *p = m->private; 138 struct mount *r = real_mount(mnt); 134 struct mount *r = real_mount(mnt); 139 struct super_block *sb = mnt->mnt_sb; 135 struct super_block *sb = mnt->mnt_sb; 140 struct path mnt_path = { .dentry = mnt 136 struct path mnt_path = { .dentry = mnt->mnt_root, .mnt = mnt }; 141 int err; 137 int err; 142 138 143 seq_printf(m, "%i %i %u:%u ", r->mnt_i 139 seq_printf(m, "%i %i %u:%u ", r->mnt_id, r->mnt_parent->mnt_id, 144 MAJOR(sb->s_dev), MINOR(sb- 140 MAJOR(sb->s_dev), MINOR(sb->s_dev)); 145 err = show_path(m, mnt->mnt_root); !! 141 if (sb->s_op->show_path) { 146 if (err) !! 142 err = sb->s_op->show_path(m, mnt->mnt_root); 147 goto out; !! 143 if (err) >> 144 goto out; >> 145 } else { >> 146 seq_dentry(m, mnt->mnt_root, " \t\n\\"); >> 147 } 148 seq_putc(m, ' '); 148 seq_putc(m, ' '); 149 149 150 /* mountpoints outside of chroot jail 150 /* mountpoints outside of chroot jail will give SEQ_SKIP on this */ 151 err = seq_path_root(m, &mnt_path, &p-> 151 err = seq_path_root(m, &mnt_path, &p->root, " \t\n\\"); 152 if (err) 152 if (err) 153 goto out; 153 goto out; 154 154 155 seq_puts(m, mnt->mnt_flags & MNT_READO 155 seq_puts(m, mnt->mnt_flags & MNT_READONLY ? " ro" : " rw"); 156 show_vfsmnt_opts(m, mnt); !! 156 show_mnt_opts(m, mnt); 157 157 158 /* Tagged fields ("foo:X" or "bar") */ 158 /* Tagged fields ("foo:X" or "bar") */ 159 if (IS_MNT_SHARED(r)) 159 if (IS_MNT_SHARED(r)) 160 seq_printf(m, " shared:%i", r- 160 seq_printf(m, " shared:%i", r->mnt_group_id); 161 if (IS_MNT_SLAVE(r)) { 161 if (IS_MNT_SLAVE(r)) { 162 int master = r->mnt_master->mn 162 int master = r->mnt_master->mnt_group_id; 163 int dom = get_dominating_id(r, 163 int dom = get_dominating_id(r, &p->root); 164 seq_printf(m, " master:%i", ma 164 seq_printf(m, " master:%i", master); 165 if (dom && dom != master) 165 if (dom && dom != master) 166 seq_printf(m, " propag 166 seq_printf(m, " propagate_from:%i", dom); 167 } 167 } 168 if (IS_MNT_UNBINDABLE(r)) 168 if (IS_MNT_UNBINDABLE(r)) 169 seq_puts(m, " unbindable"); 169 seq_puts(m, " unbindable"); 170 170 171 /* Filesystem specific data */ 171 /* Filesystem specific data */ 172 seq_puts(m, " - "); 172 seq_puts(m, " - "); 173 show_type(m, sb); 173 show_type(m, sb); 174 seq_putc(m, ' '); 174 seq_putc(m, ' '); 175 if (sb->s_op->show_devname) { 175 if (sb->s_op->show_devname) { 176 err = sb->s_op->show_devname(m 176 err = sb->s_op->show_devname(m, mnt->mnt_root); 177 if (err) 177 if (err) 178 goto out; 178 goto out; 179 } else { 179 } else { 180 mangle(m, r->mnt_devname ? r-> 180 mangle(m, r->mnt_devname ? r->mnt_devname : "none"); 181 } 181 } 182 seq_puts(m, sb_rdonly(sb) ? " ro" : " 182 seq_puts(m, sb_rdonly(sb) ? " ro" : " rw"); 183 err = show_sb_opts(m, sb); 183 err = show_sb_opts(m, sb); 184 if (err) 184 if (err) 185 goto out; 185 goto out; 186 if (sb->s_op->show_options) 186 if (sb->s_op->show_options) 187 err = sb->s_op->show_options(m 187 err = sb->s_op->show_options(m, mnt->mnt_root); 188 seq_putc(m, '\n'); 188 seq_putc(m, '\n'); 189 out: 189 out: 190 return err; 190 return err; 191 } 191 } 192 192 193 static int show_vfsstat(struct seq_file *m, st 193 static int show_vfsstat(struct seq_file *m, struct vfsmount *mnt) 194 { 194 { 195 struct proc_mounts *p = m->private; 195 struct proc_mounts *p = m->private; 196 struct mount *r = real_mount(mnt); 196 struct mount *r = real_mount(mnt); 197 struct path mnt_path = { .dentry = mnt 197 struct path mnt_path = { .dentry = mnt->mnt_root, .mnt = mnt }; 198 struct super_block *sb = mnt_path.dent 198 struct super_block *sb = mnt_path.dentry->d_sb; 199 int err; 199 int err; 200 200 201 /* device */ 201 /* device */ 202 if (sb->s_op->show_devname) { 202 if (sb->s_op->show_devname) { 203 seq_puts(m, "device "); 203 seq_puts(m, "device "); 204 err = sb->s_op->show_devname(m 204 err = sb->s_op->show_devname(m, mnt_path.dentry); 205 if (err) 205 if (err) 206 goto out; 206 goto out; 207 } else { 207 } else { 208 if (r->mnt_devname) { 208 if (r->mnt_devname) { 209 seq_puts(m, "device ") 209 seq_puts(m, "device "); 210 mangle(m, r->mnt_devna 210 mangle(m, r->mnt_devname); 211 } else 211 } else 212 seq_puts(m, "no device 212 seq_puts(m, "no device"); 213 } 213 } 214 214 215 /* mount point */ 215 /* mount point */ 216 seq_puts(m, " mounted on "); 216 seq_puts(m, " mounted on "); 217 /* mountpoints outside of chroot jail 217 /* mountpoints outside of chroot jail will give SEQ_SKIP on this */ 218 err = seq_path_root(m, &mnt_path, &p-> 218 err = seq_path_root(m, &mnt_path, &p->root, " \t\n\\"); 219 if (err) 219 if (err) 220 goto out; 220 goto out; 221 seq_putc(m, ' '); 221 seq_putc(m, ' '); 222 222 223 /* file system type */ 223 /* file system type */ 224 seq_puts(m, "with fstype "); 224 seq_puts(m, "with fstype "); 225 show_type(m, sb); 225 show_type(m, sb); 226 226 227 /* optional statistics */ 227 /* optional statistics */ 228 if (sb->s_op->show_stats) { 228 if (sb->s_op->show_stats) { 229 seq_putc(m, ' '); 229 seq_putc(m, ' '); 230 err = sb->s_op->show_stats(m, 230 err = sb->s_op->show_stats(m, mnt_path.dentry); 231 } 231 } 232 232 233 seq_putc(m, '\n'); 233 seq_putc(m, '\n'); 234 out: 234 out: 235 return err; 235 return err; 236 } 236 } 237 237 238 static int mounts_open_common(struct inode *in 238 static int mounts_open_common(struct inode *inode, struct file *file, 239 int (*show)(stru 239 int (*show)(struct seq_file *, struct vfsmount *)) 240 { 240 { 241 struct task_struct *task = get_proc_ta 241 struct task_struct *task = get_proc_task(inode); 242 struct nsproxy *nsp; 242 struct nsproxy *nsp; 243 struct mnt_namespace *ns = NULL; 243 struct mnt_namespace *ns = NULL; 244 struct path root; 244 struct path root; 245 struct proc_mounts *p; 245 struct proc_mounts *p; 246 struct seq_file *m; 246 struct seq_file *m; 247 int ret = -EINVAL; 247 int ret = -EINVAL; 248 248 249 if (!task) 249 if (!task) 250 goto err; 250 goto err; 251 251 252 task_lock(task); 252 task_lock(task); 253 nsp = task->nsproxy; 253 nsp = task->nsproxy; 254 if (!nsp || !nsp->mnt_ns) { 254 if (!nsp || !nsp->mnt_ns) { 255 task_unlock(task); 255 task_unlock(task); 256 put_task_struct(task); 256 put_task_struct(task); 257 goto err; 257 goto err; 258 } 258 } 259 ns = nsp->mnt_ns; 259 ns = nsp->mnt_ns; 260 get_mnt_ns(ns); 260 get_mnt_ns(ns); 261 if (!task->fs) { 261 if (!task->fs) { 262 task_unlock(task); 262 task_unlock(task); 263 put_task_struct(task); 263 put_task_struct(task); 264 ret = -ENOENT; 264 ret = -ENOENT; 265 goto err_put_ns; 265 goto err_put_ns; 266 } 266 } 267 get_fs_root(task->fs, &root); 267 get_fs_root(task->fs, &root); 268 task_unlock(task); 268 task_unlock(task); 269 put_task_struct(task); 269 put_task_struct(task); 270 270 271 ret = seq_open_private(file, &mounts_o 271 ret = seq_open_private(file, &mounts_op, sizeof(struct proc_mounts)); 272 if (ret) 272 if (ret) 273 goto err_put_path; 273 goto err_put_path; 274 274 275 m = file->private_data; 275 m = file->private_data; 276 m->poll_event = ns->event; 276 m->poll_event = ns->event; 277 277 278 p = m->private; 278 p = m->private; 279 p->ns = ns; 279 p->ns = ns; 280 p->root = root; 280 p->root = root; 281 p->show = show; 281 p->show = show; >> 282 p->cached_event = ~0ULL; 282 283 283 return 0; 284 return 0; 284 285 285 err_put_path: 286 err_put_path: 286 path_put(&root); 287 path_put(&root); 287 err_put_ns: 288 err_put_ns: 288 put_mnt_ns(ns); 289 put_mnt_ns(ns); 289 err: 290 err: 290 return ret; 291 return ret; 291 } 292 } 292 293 293 static int mounts_release(struct inode *inode, 294 static int mounts_release(struct inode *inode, struct file *file) 294 { 295 { 295 struct seq_file *m = file->private_dat 296 struct seq_file *m = file->private_data; 296 struct proc_mounts *p = m->private; 297 struct proc_mounts *p = m->private; 297 path_put(&p->root); 298 path_put(&p->root); 298 put_mnt_ns(p->ns); 299 put_mnt_ns(p->ns); 299 return seq_release_private(inode, file 300 return seq_release_private(inode, file); 300 } 301 } 301 302 302 static int mounts_open(struct inode *inode, st 303 static int mounts_open(struct inode *inode, struct file *file) 303 { 304 { 304 return mounts_open_common(inode, file, 305 return mounts_open_common(inode, file, show_vfsmnt); 305 } 306 } 306 307 307 static int mountinfo_open(struct inode *inode, 308 static int mountinfo_open(struct inode *inode, struct file *file) 308 { 309 { 309 return mounts_open_common(inode, file, 310 return mounts_open_common(inode, file, show_mountinfo); 310 } 311 } 311 312 312 static int mountstats_open(struct inode *inode 313 static int mountstats_open(struct inode *inode, struct file *file) 313 { 314 { 314 return mounts_open_common(inode, file, 315 return mounts_open_common(inode, file, show_vfsstat); 315 } 316 } 316 317 317 const struct file_operations proc_mounts_opera 318 const struct file_operations proc_mounts_operations = { 318 .open = mounts_open, 319 .open = mounts_open, 319 .read_iter = seq_read_iter, !! 320 .read = seq_read, 320 .splice_read = copy_splice_read, << 321 .llseek = seq_lseek, 321 .llseek = seq_lseek, 322 .release = mounts_release, 322 .release = mounts_release, 323 .poll = mounts_poll, 323 .poll = mounts_poll, 324 }; 324 }; 325 325 326 const struct file_operations proc_mountinfo_op 326 const struct file_operations proc_mountinfo_operations = { 327 .open = mountinfo_open, 327 .open = mountinfo_open, 328 .read_iter = seq_read_iter, !! 328 .read = seq_read, 329 .splice_read = copy_splice_read, << 330 .llseek = seq_lseek, 329 .llseek = seq_lseek, 331 .release = mounts_release, 330 .release = mounts_release, 332 .poll = mounts_poll, 331 .poll = mounts_poll, 333 }; 332 }; 334 333 335 const struct file_operations proc_mountstats_o 334 const struct file_operations proc_mountstats_operations = { 336 .open = mountstats_open, 335 .open = mountstats_open, 337 .read_iter = seq_read_iter, !! 336 .read = seq_read, 338 .splice_read = copy_splice_read, << 339 .llseek = seq_lseek, 337 .llseek = seq_lseek, 340 .release = mounts_release, 338 .release = mounts_release, 341 }; 339 }; 342 340
Linux® is a registered trademark of Linus Torvalds in the United States and other countries.
TOMOYO® is a registered trademark of NTT DATA CORPORATION.