Blame view

ipc/compat.c 17 KB
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
  /*
   * 32 bit compatibility code for System V IPC
   *
   * Copyright (C) 1997,1998	Jakub Jelinek (jj@sunsite.mff.cuni.cz)
   * Copyright (C) 1997		David S. Miller (davem@caip.rutgers.edu)
   * Copyright (C) 1999		Arun Sharma <arun.sharma@intel.com>
   * Copyright (C) 2000		VA Linux Co
   * Copyright (C) 2000		Don Dugger <n0ano@valinux.com>
   * Copyright (C) 2000           Hewlett-Packard Co.
   * Copyright (C) 2000           David Mosberger-Tang <davidm@hpl.hp.com>
   * Copyright (C) 2000           Gerhard Tonn (ton@de.ibm.com)
   * Copyright (C) 2000-2002      Andi Kleen, SuSE Labs (x86-64 port)
   * Copyright (C) 2000		Silicon Graphics, Inc.
   * Copyright (C) 2001		IBM
   * Copyright (C) 2004		IBM Deutschland Entwicklung GmbH, IBM Corporation
   * Copyright (C) 2004		Arnd Bergmann (arnd@arndb.de)
   *
   * This code is collected from the versions for sparc64, mips64, s390x, ia64,
   * ppc64 and x86_64, all of which are based on the original sparc64 version
   * by Jakub Jelinek.
   *
   */
  #include <linux/compat.h>
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
24
25
26
27
28
  #include <linux/errno.h>
  #include <linux/highuid.h>
  #include <linux/init.h>
  #include <linux/msg.h>
  #include <linux/shm.h>
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
29
  #include <linux/syscalls.h>
5f921ae96   Ingo Molnar   [PATCH] sem2mutex...
30
  #include <linux/mutex.h>
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
31
32
33
34
35
36
37
38
39
40
41
  #include <asm/uaccess.h>
  
  #include "util.h"
  
  struct compat_msgbuf {
  	compat_long_t mtype;
  	char mtext[1];
  };
  
  struct compat_ipc_perm {
  	key_t key;
202e5979a   Stephen Rothwell   [PATCH] compat: b...
42
43
44
45
  	__compat_uid_t uid;
  	__compat_gid_t gid;
  	__compat_uid_t cuid;
  	__compat_gid_t cgid;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
  	compat_mode_t mode;
  	unsigned short seq;
  };
  
  struct compat_semid_ds {
  	struct compat_ipc_perm sem_perm;
  	compat_time_t sem_otime;
  	compat_time_t sem_ctime;
  	compat_uptr_t sem_base;
  	compat_uptr_t sem_pending;
  	compat_uptr_t sem_pending_last;
  	compat_uptr_t undo;
  	unsigned short sem_nsems;
  };
  
  struct compat_msqid_ds {
  	struct compat_ipc_perm msg_perm;
  	compat_uptr_t msg_first;
  	compat_uptr_t msg_last;
  	compat_time_t msg_stime;
  	compat_time_t msg_rtime;
  	compat_time_t msg_ctime;
  	compat_ulong_t msg_lcbytes;
  	compat_ulong_t msg_lqbytes;
  	unsigned short msg_cbytes;
  	unsigned short msg_qnum;
  	unsigned short msg_qbytes;
  	compat_ipc_pid_t msg_lspid;
  	compat_ipc_pid_t msg_lrpid;
  };
  
  struct compat_shmid_ds {
  	struct compat_ipc_perm shm_perm;
  	int shm_segsz;
  	compat_time_t shm_atime;
  	compat_time_t shm_dtime;
  	compat_time_t shm_ctime;
  	compat_ipc_pid_t shm_cpid;
  	compat_ipc_pid_t shm_lpid;
  	unsigned short shm_nattch;
  	unsigned short shm_unused;
  	compat_uptr_t shm_unused2;
  	compat_uptr_t shm_unused3;
  };
  
  struct compat_ipc_kludge {
  	compat_uptr_t msgp;
  	compat_long_t msgtyp;
  };
  
  struct compat_shminfo64 {
  	compat_ulong_t shmmax;
  	compat_ulong_t shmmin;
  	compat_ulong_t shmmni;
  	compat_ulong_t shmseg;
  	compat_ulong_t shmall;
  	compat_ulong_t __unused1;
  	compat_ulong_t __unused2;
  	compat_ulong_t __unused3;
  	compat_ulong_t __unused4;
  };
  
  struct compat_shm_info {
  	compat_int_t used_ids;
  	compat_ulong_t shm_tot, shm_rss, shm_swp;
  	compat_ulong_t swap_attempts, swap_successes;
  };
  
  extern int sem_ctls[];
  #define sc_semopm	(sem_ctls[2])
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
  
  static inline int compat_ipc_parse_version(int *cmd)
  {
  	int version = *cmd & IPC_64;
  
  	/* this is tricky: architectures that have support for the old
  	 * ipc structures in 64 bit binaries need to have IPC_64 set
  	 * in cmd, the others need to have it cleared */
  #ifndef ipc_parse_version
  	*cmd |= IPC_64;
  #else
  	*cmd &= ~IPC_64;
  #endif
  	return version;
  }
  
  static inline int __get_compat_ipc64_perm(struct ipc64_perm *p64,
  					  struct compat_ipc64_perm __user *up64)
  {
  	int err;
  
  	err  = __get_user(p64->uid, &up64->uid);
  	err |= __get_user(p64->gid, &up64->gid);
  	err |= __get_user(p64->mode, &up64->mode);
  	return err;
  }
  
  static inline int __get_compat_ipc_perm(struct ipc64_perm *p,
  					struct compat_ipc_perm __user *up)
  {
  	int err;
  
  	err  = __get_user(p->uid, &up->uid);
  	err |= __get_user(p->gid, &up->gid);
  	err |= __get_user(p->mode, &up->mode);
  	return err;
  }
  
  static inline int __put_compat_ipc64_perm(struct ipc64_perm *p64,
  					  struct compat_ipc64_perm __user *up64)
  {
  	int err;
  
  	err  = __put_user(p64->key, &up64->key);
  	err |= __put_user(p64->uid, &up64->uid);
  	err |= __put_user(p64->gid, &up64->gid);
  	err |= __put_user(p64->cuid, &up64->cuid);
  	err |= __put_user(p64->cgid, &up64->cgid);
  	err |= __put_user(p64->mode, &up64->mode);
  	err |= __put_user(p64->seq, &up64->seq);
  	return err;
  }
  
  static inline int __put_compat_ipc_perm(struct ipc64_perm *p,
  					struct compat_ipc_perm __user *up)
  {
  	int err;
202e5979a   Stephen Rothwell   [PATCH] compat: b...
173
174
  	__compat_uid_t u;
  	__compat_gid_t g;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
  
  	err  = __put_user(p->key, &up->key);
  	SET_UID(u, p->uid);
  	err |= __put_user(u, &up->uid);
  	SET_GID(g, p->gid);
  	err |= __put_user(g, &up->gid);
  	SET_UID(u, p->cuid);
  	err |= __put_user(u, &up->cuid);
  	SET_GID(g, p->cgid);
  	err |= __put_user(g, &up->cgid);
  	err |= __put_user(p->mode, &up->mode);
  	err |= __put_user(p->seq, &up->seq);
  	return err;
  }
  
  static inline int get_compat_semid64_ds(struct semid64_ds *s64,
  					struct compat_semid64_ds __user *up64)
  {
  	if (!access_ok (VERIFY_READ, up64, sizeof(*up64)))
  		return -EFAULT;
  	return __get_compat_ipc64_perm(&s64->sem_perm, &up64->sem_perm);
  }
  
  static inline int get_compat_semid_ds(struct semid64_ds *s,
  				      struct compat_semid_ds __user *up)
  {
  	if (!access_ok (VERIFY_READ, up, sizeof(*up)))
  		return -EFAULT;
  	return __get_compat_ipc_perm(&s->sem_perm, &up->sem_perm);
  }
  
  static inline int put_compat_semid64_ds(struct semid64_ds *s64,
  					struct compat_semid64_ds __user *up64)
  {
  	int err;
  
  	if (!access_ok (VERIFY_WRITE, up64, sizeof(*up64)))
  		return -EFAULT;
  	err  = __put_compat_ipc64_perm(&s64->sem_perm, &up64->sem_perm);
  	err |= __put_user(s64->sem_otime, &up64->sem_otime);
  	err |= __put_user(s64->sem_ctime, &up64->sem_ctime);
  	err |= __put_user(s64->sem_nsems, &up64->sem_nsems);
  	return err;
  }
  
  static inline int put_compat_semid_ds(struct semid64_ds *s,
  				      struct compat_semid_ds __user *up)
  {
  	int err;
  
  	if (!access_ok (VERIFY_WRITE, up, sizeof(*up)))
d57d97310   Alexander Graf   fix logic error i...
226
  		return -EFAULT;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
  	err  = __put_compat_ipc_perm(&s->sem_perm, &up->sem_perm);
  	err |= __put_user(s->sem_otime, &up->sem_otime);
  	err |= __put_user(s->sem_ctime, &up->sem_ctime);
  	err |= __put_user(s->sem_nsems, &up->sem_nsems);
  	return err;
  }
  
  long compat_sys_semctl(int first, int second, int third, void __user *uptr)
  {
  	union semun fourth;
  	u32 pad;
  	int err, err2;
  	struct semid64_ds s64;
  	struct semid64_ds __user *up64;
  	int version = compat_ipc_parse_version(&third);
03145beb4   Dan Rosenberg   ipc: initialize s...
242
  	memset(&s64, 0, sizeof(s64));
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
  	if (!uptr)
  		return -EINVAL;
  	if (get_user(pad, (u32 __user *) uptr))
  		return -EFAULT;
  	if ((third & (~IPC_64)) == SETVAL)
  		fourth.val = (int) pad;
  	else
  		fourth.__pad = compat_ptr(pad);
  	switch (third & (~IPC_64)) {
  	case IPC_INFO:
  	case IPC_RMID:
  	case SEM_INFO:
  	case GETVAL:
  	case GETPID:
  	case GETNCNT:
  	case GETZCNT:
  	case GETALL:
  	case SETVAL:
  	case SETALL:
  		err = sys_semctl(first, second, third, fourth);
  		break;
  
  	case IPC_STAT:
  	case SEM_STAT:
  		up64 = compat_alloc_user_space(sizeof(s64));
  		fourth.__pad = up64;
  		err = sys_semctl(first, second, third, fourth);
  		if (err < 0)
  			break;
  		if (copy_from_user(&s64, up64, sizeof(s64)))
  			err2 = -EFAULT;
  		else if (version == IPC_64)
  			err2 = put_compat_semid64_ds(&s64, compat_ptr(pad));
  		else
  			err2 = put_compat_semid_ds(&s64, compat_ptr(pad));
  		if (err2)
  			err = -EFAULT;
  		break;
  
  	case IPC_SET:
  		if (version == IPC_64) {
  			err = get_compat_semid64_ds(&s64, compat_ptr(pad));
  		} else {
  			err = get_compat_semid_ds(&s64, compat_ptr(pad));
  		}
  		up64 = compat_alloc_user_space(sizeof(s64));
  		if (copy_to_user(up64, &s64, sizeof(s64)))
  			err = -EFAULT;
  		if (err)
  			break;
  
  		fourth.__pad = up64;
  		err = sys_semctl(first, second, third, fourth);
  		break;
  
  	default:
  		err = -EINVAL;
  		break;
  	}
  	return err;
  }
  
  long compat_sys_msgsnd(int first, int second, int third, void __user *uptr)
  {
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
307
308
309
310
311
  	struct compat_msgbuf __user *up = uptr;
  	long type;
  
  	if (first < 0)
  		return -EINVAL;
651971cb7   suzuki   [PATCH] Fix the s...
312
  	if (second < 0)
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
313
  		return -EINVAL;
651971cb7   suzuki   [PATCH] Fix the s...
314
  	if (get_user(type, &up->mtype))
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
315
  		return -EFAULT;
651971cb7   suzuki   [PATCH] Fix the s...
316
  	return do_msgsnd(first, type, up->mtext, second, third);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
317
318
319
320
321
  }
  
  long compat_sys_msgrcv(int first, int second, int msgtyp, int third,
  			   int version, void __user *uptr)
  {
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
322
323
324
325
326
327
  	struct compat_msgbuf __user *up;
  	long type;
  	int err;
  
  	if (first < 0)
  		return -EINVAL;
651971cb7   suzuki   [PATCH] Fix the s...
328
  	if (second < 0)
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
329
330
331
332
333
334
335
336
337
338
339
340
341
  		return -EINVAL;
  
  	if (!version) {
  		struct compat_ipc_kludge ipck;
  		err = -EINVAL;
  		if (!uptr)
  			goto out;
  		err = -EFAULT;
  		if (copy_from_user (&ipck, uptr, sizeof(ipck)))
  			goto out;
  		uptr = compat_ptr(ipck.msgp);
  		msgtyp = ipck.msgtyp;
  	}
651971cb7   suzuki   [PATCH] Fix the s...
342
343
  	up = uptr;
  	err = do_msgrcv(first, &type, up->mtext, second, msgtyp, third);
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
344
345
  	if (err < 0)
  		goto out;
651971cb7   suzuki   [PATCH] Fix the s...
346
  	if (put_user(type, &up->mtype))
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
  		err = -EFAULT;
  out:
  	return err;
  }
  
  static inline int get_compat_msqid64(struct msqid64_ds *m64,
  				     struct compat_msqid64_ds __user *up64)
  {
  	int err;
  
  	if (!access_ok(VERIFY_READ, up64, sizeof(*up64)))
  		return -EFAULT;
  	err  = __get_compat_ipc64_perm(&m64->msg_perm, &up64->msg_perm);
  	err |= __get_user(m64->msg_qbytes, &up64->msg_qbytes);
  	return err;
  }
  
  static inline int get_compat_msqid(struct msqid64_ds *m,
  				   struct compat_msqid_ds __user *up)
  {
  	int err;
  
  	if (!access_ok(VERIFY_READ, up, sizeof(*up)))
  		return -EFAULT;
  	err  = __get_compat_ipc_perm(&m->msg_perm, &up->msg_perm);
  	err |= __get_user(m->msg_qbytes, &up->msg_qbytes);
  	return err;
  }
  
  static inline int put_compat_msqid64_ds(struct msqid64_ds *m64,
  				 struct compat_msqid64_ds __user *up64)
  {
  	int err;
  
  	if (!access_ok(VERIFY_WRITE, up64, sizeof(*up64)))
  		return -EFAULT;
  	err  = __put_compat_ipc64_perm(&m64->msg_perm, &up64->msg_perm);
  	err |= __put_user(m64->msg_stime, &up64->msg_stime);
  	err |= __put_user(m64->msg_rtime, &up64->msg_rtime);
  	err |= __put_user(m64->msg_ctime, &up64->msg_ctime);
  	err |= __put_user(m64->msg_cbytes, &up64->msg_cbytes);
  	err |= __put_user(m64->msg_qnum, &up64->msg_qnum);
  	err |= __put_user(m64->msg_qbytes, &up64->msg_qbytes);
  	err |= __put_user(m64->msg_lspid, &up64->msg_lspid);
  	err |= __put_user(m64->msg_lrpid, &up64->msg_lrpid);
  	return err;
  }
  
  static inline int put_compat_msqid_ds(struct msqid64_ds *m,
  				      struct compat_msqid_ds __user *up)
  {
  	int err;
  
  	if (!access_ok(VERIFY_WRITE, up, sizeof(*up)))
  		return -EFAULT;
  	err  = __put_compat_ipc_perm(&m->msg_perm, &up->msg_perm);
  	err |= __put_user(m->msg_stime, &up->msg_stime);
  	err |= __put_user(m->msg_rtime, &up->msg_rtime);
  	err |= __put_user(m->msg_ctime, &up->msg_ctime);
  	err |= __put_user(m->msg_cbytes, &up->msg_cbytes);
  	err |= __put_user(m->msg_qnum, &up->msg_qnum);
  	err |= __put_user(m->msg_qbytes, &up->msg_qbytes);
  	err |= __put_user(m->msg_lspid, &up->msg_lspid);
  	err |= __put_user(m->msg_lrpid, &up->msg_lrpid);
  	return err;
  }
  
  long compat_sys_msgctl(int first, int second, void __user *uptr)
  {
  	int err, err2;
  	struct msqid64_ds m64;
  	int version = compat_ipc_parse_version(&second);
  	void __user *p;
03145beb4   Dan Rosenberg   ipc: initialize s...
420
  	memset(&m64, 0, sizeof(m64));
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
  	switch (second & (~IPC_64)) {
  	case IPC_INFO:
  	case IPC_RMID:
  	case MSG_INFO:
  		err = sys_msgctl(first, second, uptr);
  		break;
  
  	case IPC_SET:
  		if (version == IPC_64) {
  			err = get_compat_msqid64(&m64, uptr);
  		} else {
  			err = get_compat_msqid(&m64, uptr);
  		}
  		if (err)
  			break;
  		p = compat_alloc_user_space(sizeof(m64));
  		if (copy_to_user(p, &m64, sizeof(m64)))
  			err = -EFAULT;
  		else
  			err = sys_msgctl(first, second, p);
  		break;
  
  	case IPC_STAT:
  	case MSG_STAT:
  		p = compat_alloc_user_space(sizeof(m64));
  		err = sys_msgctl(first, second, p);
  		if (err < 0)
  			break;
  		if (copy_from_user(&m64, p, sizeof(m64)))
  			err2 = -EFAULT;
  		else if (version == IPC_64)
  			err2 = put_compat_msqid64_ds(&m64, uptr);
  		else
  			err2 = put_compat_msqid_ds(&m64, uptr);
  		if (err2)
  			err = -EFAULT;
  		break;
  
  	default:
  		err = -EINVAL;
  		break;
  	}
  	return err;
  }
  
  long compat_sys_shmat(int first, int second, compat_uptr_t third, int version,
  			void __user *uptr)
  {
  	int err;
  	unsigned long raddr;
  	compat_ulong_t __user *uaddr;
  
  	if (version == 1)
  		return -EINVAL;
  	err = do_shmat(first, uptr, second, &raddr);
  	if (err < 0)
  		return err;
  	uaddr = compat_ptr(third);
  	return put_user(raddr, uaddr);
  }
  
  static inline int get_compat_shmid64_ds(struct shmid64_ds *s64,
  					struct compat_shmid64_ds __user *up64)
  {
  	if (!access_ok(VERIFY_READ, up64, sizeof(*up64)))
  		return -EFAULT;
  	return __get_compat_ipc64_perm(&s64->shm_perm, &up64->shm_perm);
  }
  
  static inline int get_compat_shmid_ds(struct shmid64_ds *s,
  				      struct compat_shmid_ds __user *up)
  {
  	if (!access_ok(VERIFY_READ, up, sizeof(*up)))
  		return -EFAULT;
  	return __get_compat_ipc_perm(&s->shm_perm, &up->shm_perm);
  }
  
  static inline int put_compat_shmid64_ds(struct shmid64_ds *s64,
  					struct compat_shmid64_ds __user *up64)
  {
  	int err;
  
  	if (!access_ok(VERIFY_WRITE, up64, sizeof(*up64)))
  		return -EFAULT;
  	err  = __put_compat_ipc64_perm(&s64->shm_perm, &up64->shm_perm);
  	err |= __put_user(s64->shm_atime, &up64->shm_atime);
  	err |= __put_user(s64->shm_dtime, &up64->shm_dtime);
  	err |= __put_user(s64->shm_ctime, &up64->shm_ctime);
  	err |= __put_user(s64->shm_segsz, &up64->shm_segsz);
  	err |= __put_user(s64->shm_nattch, &up64->shm_nattch);
  	err |= __put_user(s64->shm_cpid, &up64->shm_cpid);
  	err |= __put_user(s64->shm_lpid, &up64->shm_lpid);
  	return err;
  }
  
  static inline int put_compat_shmid_ds(struct shmid64_ds *s,
  				      struct compat_shmid_ds __user *up)
  {
  	int err;
  
  	if (!access_ok(VERIFY_WRITE, up, sizeof(*up)))
  		return -EFAULT;
  	err  = __put_compat_ipc_perm(&s->shm_perm, &up->shm_perm);
  	err |= __put_user(s->shm_atime, &up->shm_atime);
  	err |= __put_user(s->shm_dtime, &up->shm_dtime);
  	err |= __put_user(s->shm_ctime, &up->shm_ctime);
  	err |= __put_user(s->shm_segsz, &up->shm_segsz);
  	err |= __put_user(s->shm_nattch, &up->shm_nattch);
  	err |= __put_user(s->shm_cpid, &up->shm_cpid);
  	err |= __put_user(s->shm_lpid, &up->shm_lpid);
  	return err;
  }
  
  static inline int put_compat_shminfo64(struct shminfo64 *smi,
  				       struct compat_shminfo64 __user *up64)
  {
  	int err;
  
  	if (!access_ok(VERIFY_WRITE, up64, sizeof(*up64)))
  		return -EFAULT;
af7c693f1   Guy Streeter   Cap shmmax at INT...
541
542
  	if (smi->shmmax > INT_MAX)
  		smi->shmmax = INT_MAX;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
  	err  = __put_user(smi->shmmax, &up64->shmmax);
  	err |= __put_user(smi->shmmin, &up64->shmmin);
  	err |= __put_user(smi->shmmni, &up64->shmmni);
  	err |= __put_user(smi->shmseg, &up64->shmseg);
  	err |= __put_user(smi->shmall, &up64->shmall);
  	return err;
  }
  
  static inline int put_compat_shminfo(struct shminfo64 *smi,
  				     struct shminfo __user *up)
  {
  	int err;
  
  	if (!access_ok(VERIFY_WRITE, up, sizeof(*up)))
  		return -EFAULT;
af7c693f1   Guy Streeter   Cap shmmax at INT...
558
559
  	if (smi->shmmax > INT_MAX)
  		smi->shmmax = INT_MAX;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
560
561
562
563
564
  	err  = __put_user(smi->shmmax, &up->shmmax);
  	err |= __put_user(smi->shmmin, &up->shmmin);
  	err |= __put_user(smi->shmmni, &up->shmmni);
  	err |= __put_user(smi->shmseg, &up->shmseg);
  	err |= __put_user(smi->shmall, &up->shmall);
214a627cb   Jesse Millan   [PATCH] put_compa...
565
  	return err;
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
589
590
591
592
  }
  
  static inline int put_compat_shm_info(struct shm_info __user *ip,
  				      struct compat_shm_info __user *uip)
  {
  	int err;
  	struct shm_info si;
  
  	if (!access_ok(VERIFY_WRITE, uip, sizeof(*uip)) ||
  	    copy_from_user(&si, ip, sizeof(si)))
  		return -EFAULT;
  	err  = __put_user(si.used_ids, &uip->used_ids);
  	err |= __put_user(si.shm_tot, &uip->shm_tot);
  	err |= __put_user(si.shm_rss, &uip->shm_rss);
  	err |= __put_user(si.shm_swp, &uip->shm_swp);
  	err |= __put_user(si.swap_attempts, &uip->swap_attempts);
  	err |= __put_user(si.swap_successes, &uip->swap_successes);
  	return err;
  }
  
  long compat_sys_shmctl(int first, int second, void __user *uptr)
  {
  	void __user *p;
  	struct shmid64_ds s64;
  	struct shminfo64 smi;
  	int err, err2;
  	int version = compat_ipc_parse_version(&second);
03145beb4   Dan Rosenberg   ipc: initialize s...
593
  	memset(&s64, 0, sizeof(s64));
1da177e4c   Linus Torvalds   Linux-2.6.12-rc2
594
595
596
597
598
599
600
601
602
603
604
605
606
607
608
609
610
611
612
613
614
615
616
617
618
619
620
621
622
623
624
625
626
627
628
629
630
631
632
633
634
635
636
637
638
639
640
641
642
643
644
645
646
647
648
649
650
651
652
653
654
655
656
657
658
659
660
661
662
663
664
665
666
667
668
669
670
671
672
673
674
675
676
677
678
  	switch (second & (~IPC_64)) {
  	case IPC_RMID:
  	case SHM_LOCK:
  	case SHM_UNLOCK:
  		err = sys_shmctl(first, second, uptr);
  		break;
  
  	case IPC_INFO:
  		p = compat_alloc_user_space(sizeof(smi));
  		err = sys_shmctl(first, second, p);
  		if (err < 0)
  			break;
  		if (copy_from_user(&smi, p, sizeof(smi)))
  			err2 = -EFAULT;
  		else if (version == IPC_64)
  			err2 = put_compat_shminfo64(&smi, uptr);
  		else
  			err2 = put_compat_shminfo(&smi, uptr);
  		if (err2)
  			err = -EFAULT;
  		break;
  
  
  	case IPC_SET:
  		if (version == IPC_64) {
  			err = get_compat_shmid64_ds(&s64, uptr);
  		} else {
  			err = get_compat_shmid_ds(&s64, uptr);
  		}
  		if (err)
  			break;
  		p = compat_alloc_user_space(sizeof(s64));
  		if (copy_to_user(p, &s64, sizeof(s64)))
  			err = -EFAULT;
  		else
  			err = sys_shmctl(first, second, p);
  		break;
  
  	case IPC_STAT:
  	case SHM_STAT:
  		p = compat_alloc_user_space(sizeof(s64));
  		err = sys_shmctl(first, second, p);
  		if (err < 0)
  			break;
  		if (copy_from_user(&s64, p, sizeof(s64)))
  			err2 = -EFAULT;
  		else if (version == IPC_64)
  			err2 = put_compat_shmid64_ds(&s64, uptr);
  		else
  			err2 = put_compat_shmid_ds(&s64, uptr);
  		if (err2)
  			err = -EFAULT;
  		break;
  
  	case SHM_INFO:
  		p = compat_alloc_user_space(sizeof(struct shm_info));
  		err = sys_shmctl(first, second, p);
  		if (err < 0)
  			break;
  		err2 = put_compat_shm_info(p, uptr);
  		if (err2)
  			err = -EFAULT;
  		break;
  
  	default:
  		err = -EINVAL;
  		break;
  	}
  	return err;
  }
  
  long compat_sys_semtimedop(int semid, struct sembuf __user *tsems,
  		unsigned nsops, const struct compat_timespec __user *timeout)
  {
  	struct timespec __user *ts64 = NULL;
  	if (timeout) {
  		struct timespec ts;
  		ts64 = compat_alloc_user_space(sizeof(*ts64));
  		if (get_compat_timespec(&ts, timeout))
  			return -EFAULT;
  		if (copy_to_user(ts64, &ts, sizeof(ts)))
  			return -EFAULT;
  	}
  	return sys_semtimedop(semid, tsems, nsops, ts64);
  }