提交 4520967e 编写于 作者: J Jens Axboe 提交者: Joseph Qi

io_uring: make sure accept honor rlimit nofile

to #26323588

commit 09952e3e7826119ddd4357c453d54bcc7ef25156 upstream.

Just like commit 4022e7af86be, this fixes the fact that
IORING_OP_ACCEPT ends up using get_unused_fd_flags(), which checks
current->signal->rlim[] for limits.

Add an extra argument to __sys_accept4_file() that allows us to pass
in the proper nofile limit, and grab it at request prep time.
Acked-by: NDavid S. Miller <davem@davemloft.net>
Signed-off-by: NJens Axboe <axboe@kernel.dk>
Signed-off-by: NJoseph Qi <joseph.qi@linux.alibaba.com>
Acked-by: NXiaoguang Wang <xiaoguang.wang@linux.alibaba.com>
上级 4d28e850
...@@ -343,6 +343,7 @@ struct io_accept { ...@@ -343,6 +343,7 @@ struct io_accept {
struct sockaddr __user *addr; struct sockaddr __user *addr;
int __user *addr_len; int __user *addr_len;
int flags; int flags;
unsigned long nofile;
}; };
struct io_sync { struct io_sync {
...@@ -3326,6 +3327,7 @@ static int io_accept_prep(struct io_kiocb *req, const struct io_uring_sqe *sqe) ...@@ -3326,6 +3327,7 @@ static int io_accept_prep(struct io_kiocb *req, const struct io_uring_sqe *sqe)
accept->addr = u64_to_user_ptr(READ_ONCE(sqe->addr)); accept->addr = u64_to_user_ptr(READ_ONCE(sqe->addr));
accept->addr_len = u64_to_user_ptr(READ_ONCE(sqe->addr2)); accept->addr_len = u64_to_user_ptr(READ_ONCE(sqe->addr2));
accept->flags = READ_ONCE(sqe->accept_flags); accept->flags = READ_ONCE(sqe->accept_flags);
accept->nofile = rlimit(RLIMIT_NOFILE);
return 0; return 0;
#else #else
return -EOPNOTSUPP; return -EOPNOTSUPP;
...@@ -3342,7 +3344,8 @@ static int __io_accept(struct io_kiocb *req, struct io_kiocb **nxt, ...@@ -3342,7 +3344,8 @@ static int __io_accept(struct io_kiocb *req, struct io_kiocb **nxt,
file_flags = force_nonblock ? O_NONBLOCK : 0; file_flags = force_nonblock ? O_NONBLOCK : 0;
ret = __sys_accept4_file(req->file, file_flags, accept->addr, ret = __sys_accept4_file(req->file, file_flags, accept->addr,
accept->addr_len, accept->flags); accept->addr_len, accept->flags,
accept->nofile);
if (ret == -EAGAIN && force_nonblock) if (ret == -EAGAIN && force_nonblock)
return -EAGAIN; return -EAGAIN;
if (ret == -ERESTARTSYS) if (ret == -ERESTARTSYS)
......
...@@ -387,7 +387,8 @@ extern int __sys_sendto(int fd, void __user *buff, size_t len, ...@@ -387,7 +387,8 @@ extern int __sys_sendto(int fd, void __user *buff, size_t len,
int addr_len); int addr_len);
extern int __sys_accept4_file(struct file *file, unsigned file_flags, extern int __sys_accept4_file(struct file *file, unsigned file_flags,
struct sockaddr __user *upeer_sockaddr, struct sockaddr __user *upeer_sockaddr,
int __user *upeer_addrlen, int flags); int __user *upeer_addrlen, int flags,
unsigned long nofile);
extern int __sys_accept4(int fd, struct sockaddr __user *upeer_sockaddr, extern int __sys_accept4(int fd, struct sockaddr __user *upeer_sockaddr,
int __user *upeer_addrlen, int flags); int __user *upeer_addrlen, int flags);
extern int __sys_socket(int family, int type, int protocol); extern int __sys_socket(int family, int type, int protocol);
......
...@@ -1527,7 +1527,8 @@ SYSCALL_DEFINE2(listen, int, fd, int, backlog) ...@@ -1527,7 +1527,8 @@ SYSCALL_DEFINE2(listen, int, fd, int, backlog)
int __sys_accept4_file(struct file *file, unsigned file_flags, int __sys_accept4_file(struct file *file, unsigned file_flags,
struct sockaddr __user *upeer_sockaddr, struct sockaddr __user *upeer_sockaddr,
int __user *upeer_addrlen, int flags) int __user *upeer_addrlen, int flags,
unsigned long nofile)
{ {
struct socket *sock, *newsock; struct socket *sock, *newsock;
struct file *newfile; struct file *newfile;
...@@ -1558,7 +1559,7 @@ int __sys_accept4_file(struct file *file, unsigned file_flags, ...@@ -1558,7 +1559,7 @@ int __sys_accept4_file(struct file *file, unsigned file_flags,
*/ */
__module_get(newsock->ops->owner); __module_get(newsock->ops->owner);
newfd = get_unused_fd_flags(flags); newfd = __get_unused_fd_flags(flags, nofile);
if (unlikely(newfd < 0)) { if (unlikely(newfd < 0)) {
err = newfd; err = newfd;
sock_release(newsock); sock_release(newsock);
...@@ -1627,7 +1628,8 @@ int __sys_accept4(int fd, struct sockaddr __user *upeer_sockaddr, ...@@ -1627,7 +1628,8 @@ int __sys_accept4(int fd, struct sockaddr __user *upeer_sockaddr,
f = fdget(fd); f = fdget(fd);
if (f.file) { if (f.file) {
ret = __sys_accept4_file(f.file, 0, upeer_sockaddr, ret = __sys_accept4_file(f.file, 0, upeer_sockaddr,
upeer_addrlen, flags); upeer_addrlen, flags,
rlimit(RLIMIT_NOFILE));
if (f.flags) if (f.flags)
fput(f.file); fput(f.file);
} }
......
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册