ipc/compat_sys_msgrcv: change msgtyp type from long to compat_long_t
[linux-2.6-block.git] / fs / read_write.c
CommitLineData
1da177e4
LT
1/*
2 * linux/fs/read_write.c
3 *
4 * Copyright (C) 1991, 1992 Linus Torvalds
5 */
6
7#include <linux/slab.h>
8#include <linux/stat.h>
9#include <linux/fcntl.h>
10#include <linux/file.h>
11#include <linux/uio.h>
a27bb332 12#include <linux/aio.h>
0eeca283 13#include <linux/fsnotify.h>
1da177e4 14#include <linux/security.h>
630d9c47 15#include <linux/export.h>
1da177e4 16#include <linux/syscalls.h>
e28cc715 17#include <linux/pagemap.h>
d6b29d7c 18#include <linux/splice.h>
561c6731 19#include <linux/compat.h>
06ae43f3 20#include "internal.h"
1da177e4
LT
21
22#include <asm/uaccess.h>
23#include <asm/unistd.h>
24
c0bd14af
AV
25typedef ssize_t (*io_fn_t)(struct file *, char __user *, size_t, loff_t *);
26typedef ssize_t (*iov_fn_t)(struct kiocb *, const struct iovec *,
27 unsigned long, loff_t);
28
4b6f5d20 29const struct file_operations generic_ro_fops = {
1da177e4 30 .llseek = generic_file_llseek,
543ade1f
BP
31 .read = do_sync_read,
32 .aio_read = generic_file_aio_read,
1da177e4 33 .mmap = generic_file_readonly_mmap,
534f2aaa 34 .splice_read = generic_file_splice_read,
1da177e4
LT
35};
36
37EXPORT_SYMBOL(generic_ro_fops);
38
cccb5a1e 39static inline int unsigned_offsets(struct file *file)
4a3956c7 40{
cccb5a1e 41 return file->f_mode & FMODE_UNSIGNED_OFFSET;
4a3956c7
KH
42}
43
46a1c2c7
JL
44/**
45 * vfs_setpos - update the file offset for lseek
46 * @file: file structure in question
47 * @offset: file offset to seek to
48 * @maxsize: maximum file size
49 *
50 * This is a low-level filesystem helper for updating the file offset to
51 * the value specified by @offset if the given offset is valid and it is
52 * not equal to the current file offset.
53 *
54 * Return the specified offset on success and -EINVAL on invalid offset.
55 */
56loff_t vfs_setpos(struct file *file, loff_t offset, loff_t maxsize)
ef3d0fd2
AK
57{
58 if (offset < 0 && !unsigned_offsets(file))
59 return -EINVAL;
60 if (offset > maxsize)
61 return -EINVAL;
62
63 if (offset != file->f_pos) {
64 file->f_pos = offset;
65 file->f_version = 0;
66 }
67 return offset;
68}
46a1c2c7 69EXPORT_SYMBOL(vfs_setpos);
ef3d0fd2 70
3a8cff4f 71/**
5760495a 72 * generic_file_llseek_size - generic llseek implementation for regular files
3a8cff4f
CH
73 * @file: file structure to seek on
74 * @offset: file offset to seek to
965c8e59 75 * @whence: type of seek
e8b96eb5
ES
76 * @size: max size of this file in file system
77 * @eof: offset used for SEEK_END position
3a8cff4f 78 *
5760495a 79 * This is a variant of generic_file_llseek that allows passing in a custom
e8b96eb5 80 * maximum file size and a custom EOF position, for e.g. hashed directories
ef3d0fd2
AK
81 *
82 * Synchronization:
5760495a 83 * SEEK_SET and SEEK_END are unsynchronized (but atomic on 64bit platforms)
ef3d0fd2
AK
84 * SEEK_CUR is synchronized against other SEEK_CURs, but not read/writes.
85 * read/writes behave like SEEK_SET against seeks.
3a8cff4f 86 */
9465efc9 87loff_t
965c8e59 88generic_file_llseek_size(struct file *file, loff_t offset, int whence,
e8b96eb5 89 loff_t maxsize, loff_t eof)
1da177e4 90{
965c8e59 91 switch (whence) {
3a8cff4f 92 case SEEK_END:
e8b96eb5 93 offset += eof;
3a8cff4f
CH
94 break;
95 case SEEK_CUR:
5b6f1eb9
AK
96 /*
97 * Here we special-case the lseek(fd, 0, SEEK_CUR)
98 * position-querying operation. Avoid rewriting the "same"
99 * f_pos value back to the file because a concurrent read(),
100 * write() or lseek() might have altered it
101 */
102 if (offset == 0)
103 return file->f_pos;
ef3d0fd2
AK
104 /*
105 * f_lock protects against read/modify/write race with other
106 * SEEK_CURs. Note that parallel writes and reads behave
107 * like SEEK_SET.
108 */
109 spin_lock(&file->f_lock);
46a1c2c7 110 offset = vfs_setpos(file, file->f_pos + offset, maxsize);
ef3d0fd2
AK
111 spin_unlock(&file->f_lock);
112 return offset;
982d8165
JB
113 case SEEK_DATA:
114 /*
115 * In the generic case the entire file is data, so as long as
116 * offset isn't at the end of the file then the offset is data.
117 */
e8b96eb5 118 if (offset >= eof)
982d8165
JB
119 return -ENXIO;
120 break;
121 case SEEK_HOLE:
122 /*
123 * There is a virtual hole at the end of the file, so as long as
124 * offset isn't i_size or larger, return i_size.
125 */
e8b96eb5 126 if (offset >= eof)
982d8165 127 return -ENXIO;
e8b96eb5 128 offset = eof;
982d8165 129 break;
1da177e4 130 }
3a8cff4f 131
46a1c2c7 132 return vfs_setpos(file, offset, maxsize);
5760495a
AK
133}
134EXPORT_SYMBOL(generic_file_llseek_size);
135
136/**
137 * generic_file_llseek - generic llseek implementation for regular files
138 * @file: file structure to seek on
139 * @offset: file offset to seek to
965c8e59 140 * @whence: type of seek
5760495a
AK
141 *
142 * This is a generic implemenation of ->llseek useable for all normal local
143 * filesystems. It just updates the file offset to the value specified by
546ae2d2 144 * @offset and @whence.
5760495a 145 */
965c8e59 146loff_t generic_file_llseek(struct file *file, loff_t offset, int whence)
5760495a
AK
147{
148 struct inode *inode = file->f_mapping->host;
149
965c8e59 150 return generic_file_llseek_size(file, offset, whence,
e8b96eb5
ES
151 inode->i_sb->s_maxbytes,
152 i_size_read(inode));
1da177e4 153}
9465efc9 154EXPORT_SYMBOL(generic_file_llseek);
1da177e4 155
1bf9d14d
AV
156/**
157 * fixed_size_llseek - llseek implementation for fixed-sized devices
158 * @file: file structure to seek on
159 * @offset: file offset to seek to
160 * @whence: type of seek
161 * @size: size of the file
162 *
163 */
164loff_t fixed_size_llseek(struct file *file, loff_t offset, int whence, loff_t size)
165{
166 switch (whence) {
167 case SEEK_SET: case SEEK_CUR: case SEEK_END:
168 return generic_file_llseek_size(file, offset, whence,
169 size, size);
170 default:
171 return -EINVAL;
172 }
173}
174EXPORT_SYMBOL(fixed_size_llseek);
175
ae6afc3f
B
176/**
177 * noop_llseek - No Operation Performed llseek implementation
178 * @file: file structure to seek on
179 * @offset: file offset to seek to
965c8e59 180 * @whence: type of seek
ae6afc3f
B
181 *
182 * This is an implementation of ->llseek useable for the rare special case when
183 * userspace expects the seek to succeed but the (device) file is actually not
184 * able to perform the seek. In this case you use noop_llseek() instead of
185 * falling back to the default implementation of ->llseek.
186 */
965c8e59 187loff_t noop_llseek(struct file *file, loff_t offset, int whence)
ae6afc3f
B
188{
189 return file->f_pos;
190}
191EXPORT_SYMBOL(noop_llseek);
192
965c8e59 193loff_t no_llseek(struct file *file, loff_t offset, int whence)
1da177e4
LT
194{
195 return -ESPIPE;
196}
197EXPORT_SYMBOL(no_llseek);
198
965c8e59 199loff_t default_llseek(struct file *file, loff_t offset, int whence)
1da177e4 200{
496ad9aa 201 struct inode *inode = file_inode(file);
16abef0e 202 loff_t retval;
1da177e4 203
982d8165 204 mutex_lock(&inode->i_mutex);
965c8e59 205 switch (whence) {
7b8e8924 206 case SEEK_END:
982d8165 207 offset += i_size_read(inode);
1da177e4 208 break;
7b8e8924 209 case SEEK_CUR:
5b6f1eb9
AK
210 if (offset == 0) {
211 retval = file->f_pos;
212 goto out;
213 }
1da177e4 214 offset += file->f_pos;
982d8165
JB
215 break;
216 case SEEK_DATA:
217 /*
218 * In the generic case the entire file is data, so as
219 * long as offset isn't at the end of the file then the
220 * offset is data.
221 */
bacb2d81
DC
222 if (offset >= inode->i_size) {
223 retval = -ENXIO;
224 goto out;
225 }
982d8165
JB
226 break;
227 case SEEK_HOLE:
228 /*
229 * There is a virtual hole at the end of the file, so
230 * as long as offset isn't i_size or larger, return
231 * i_size.
232 */
bacb2d81
DC
233 if (offset >= inode->i_size) {
234 retval = -ENXIO;
235 goto out;
236 }
982d8165
JB
237 offset = inode->i_size;
238 break;
1da177e4
LT
239 }
240 retval = -EINVAL;
cccb5a1e 241 if (offset >= 0 || unsigned_offsets(file)) {
1da177e4
LT
242 if (offset != file->f_pos) {
243 file->f_pos = offset;
244 file->f_version = 0;
245 }
246 retval = offset;
247 }
5b6f1eb9 248out:
982d8165 249 mutex_unlock(&inode->i_mutex);
1da177e4
LT
250 return retval;
251}
252EXPORT_SYMBOL(default_llseek);
253
965c8e59 254loff_t vfs_llseek(struct file *file, loff_t offset, int whence)
1da177e4
LT
255{
256 loff_t (*fn)(struct file *, loff_t, int);
257
258 fn = no_llseek;
259 if (file->f_mode & FMODE_LSEEK) {
72c2d531 260 if (file->f_op->llseek)
1da177e4
LT
261 fn = file->f_op->llseek;
262 }
965c8e59 263 return fn(file, offset, whence);
1da177e4
LT
264}
265EXPORT_SYMBOL(vfs_llseek);
266
965c8e59 267SYSCALL_DEFINE3(lseek, unsigned int, fd, off_t, offset, unsigned int, whence)
1da177e4
LT
268{
269 off_t retval;
2903ff01
AV
270 struct fd f = fdget(fd);
271 if (!f.file)
272 return -EBADF;
1da177e4
LT
273
274 retval = -EINVAL;
965c8e59
AM
275 if (whence <= SEEK_MAX) {
276 loff_t res = vfs_llseek(f.file, offset, whence);
1da177e4
LT
277 retval = res;
278 if (res != (loff_t)retval)
279 retval = -EOVERFLOW; /* LFS: should only happen on 32 bit platforms */
280 }
2903ff01 281 fdput(f);
1da177e4
LT
282 return retval;
283}
284
561c6731
AV
285#ifdef CONFIG_COMPAT
286COMPAT_SYSCALL_DEFINE3(lseek, unsigned int, fd, compat_off_t, offset, unsigned int, whence)
287{
288 return sys_lseek(fd, offset, whence);
289}
290#endif
291
1da177e4 292#ifdef __ARCH_WANT_SYS_LLSEEK
003d7ab4
HC
293SYSCALL_DEFINE5(llseek, unsigned int, fd, unsigned long, offset_high,
294 unsigned long, offset_low, loff_t __user *, result,
965c8e59 295 unsigned int, whence)
1da177e4
LT
296{
297 int retval;
2903ff01 298 struct fd f = fdget(fd);
1da177e4 299 loff_t offset;
1da177e4 300
2903ff01
AV
301 if (!f.file)
302 return -EBADF;
1da177e4
LT
303
304 retval = -EINVAL;
965c8e59 305 if (whence > SEEK_MAX)
1da177e4
LT
306 goto out_putf;
307
2903ff01 308 offset = vfs_llseek(f.file, ((loff_t) offset_high << 32) | offset_low,
965c8e59 309 whence);
1da177e4
LT
310
311 retval = (int)offset;
312 if (offset >= 0) {
313 retval = -EFAULT;
314 if (!copy_to_user(result, &offset, sizeof(offset)))
315 retval = 0;
316 }
317out_putf:
2903ff01 318 fdput(f);
1da177e4
LT
319 return retval;
320}
321#endif
322
e28cc715
LT
323/*
324 * rw_verify_area doesn't like huge counts. We limit
325 * them to something that fits in "int" so that others
326 * won't have to do range checks all the time.
327 */
68d70d03 328int rw_verify_area(int read_write, struct file *file, const loff_t *ppos, size_t count)
1da177e4
LT
329{
330 struct inode *inode;
331 loff_t pos;
c43e259c 332 int retval = -EINVAL;
1da177e4 333
496ad9aa 334 inode = file_inode(file);
e28cc715 335 if (unlikely((ssize_t) count < 0))
c43e259c 336 return retval;
1da177e4 337 pos = *ppos;
cccb5a1e
AV
338 if (unlikely(pos < 0)) {
339 if (!unsigned_offsets(file))
340 return retval;
341 if (count >= -pos) /* both values are in 0..LLONG_MAX */
342 return -EOVERFLOW;
343 } else if (unlikely((loff_t) (pos + count) < 0)) {
344 if (!unsigned_offsets(file))
4a3956c7
KH
345 return retval;
346 }
1da177e4 347
a16877ca 348 if (unlikely(inode->i_flock && mandatory_lock(inode))) {
c43e259c 349 retval = locks_mandatory_area(
e28cc715
LT
350 read_write == READ ? FLOCK_VERIFY_READ : FLOCK_VERIFY_WRITE,
351 inode, file, pos, count);
352 if (retval < 0)
353 return retval;
354 }
c43e259c
JM
355 retval = security_file_permission(file,
356 read_write == READ ? MAY_READ : MAY_WRITE);
357 if (retval)
358 return retval;
e28cc715 359 return count > MAX_RW_COUNT ? MAX_RW_COUNT : count;
1da177e4
LT
360}
361
362ssize_t do_sync_read(struct file *filp, char __user *buf, size_t len, loff_t *ppos)
363{
027445c3 364 struct iovec iov = { .iov_base = buf, .iov_len = len };
1da177e4
LT
365 struct kiocb kiocb;
366 ssize_t ret;
367
368 init_sync_kiocb(&kiocb, filp);
369 kiocb.ki_pos = *ppos;
61964eba 370 kiocb.ki_nbytes = len;
027445c3 371
41003a7b 372 ret = filp->f_op->aio_read(&kiocb, &iov, 1, kiocb.ki_pos);
1da177e4
LT
373 if (-EIOCBQUEUED == ret)
374 ret = wait_on_sync_kiocb(&kiocb);
375 *ppos = kiocb.ki_pos;
376 return ret;
377}
378
379EXPORT_SYMBOL(do_sync_read);
380
381ssize_t vfs_read(struct file *file, char __user *buf, size_t count, loff_t *pos)
382{
383 ssize_t ret;
384
385 if (!(file->f_mode & FMODE_READ))
386 return -EBADF;
72c2d531 387 if (!file->f_op->read && !file->f_op->aio_read)
1da177e4
LT
388 return -EINVAL;
389 if (unlikely(!access_ok(VERIFY_WRITE, buf, count)))
390 return -EFAULT;
391
392 ret = rw_verify_area(READ, file, pos, count);
e28cc715
LT
393 if (ret >= 0) {
394 count = ret;
c43e259c
JM
395 if (file->f_op->read)
396 ret = file->f_op->read(file, buf, count, pos);
397 else
398 ret = do_sync_read(file, buf, count, pos);
399 if (ret > 0) {
2a12a9d7 400 fsnotify_access(file);
c43e259c 401 add_rchar(current, ret);
1da177e4 402 }
c43e259c 403 inc_syscr(current);
1da177e4
LT
404 }
405
406 return ret;
407}
408
409EXPORT_SYMBOL(vfs_read);
410
411ssize_t do_sync_write(struct file *filp, const char __user *buf, size_t len, loff_t *ppos)
412{
027445c3 413 struct iovec iov = { .iov_base = (void __user *)buf, .iov_len = len };
1da177e4
LT
414 struct kiocb kiocb;
415 ssize_t ret;
416
417 init_sync_kiocb(&kiocb, filp);
418 kiocb.ki_pos = *ppos;
61964eba 419 kiocb.ki_nbytes = len;
027445c3 420
41003a7b 421 ret = filp->f_op->aio_write(&kiocb, &iov, 1, kiocb.ki_pos);
1da177e4
LT
422 if (-EIOCBQUEUED == ret)
423 ret = wait_on_sync_kiocb(&kiocb);
424 *ppos = kiocb.ki_pos;
425 return ret;
426}
427
428EXPORT_SYMBOL(do_sync_write);
429
06ae43f3
AV
430ssize_t __kernel_write(struct file *file, const char *buf, size_t count, loff_t *pos)
431{
432 mm_segment_t old_fs;
433 const char __user *p;
434 ssize_t ret;
435
72c2d531 436 if (!file->f_op->write && !file->f_op->aio_write)
3e84f48e
AV
437 return -EINVAL;
438
06ae43f3
AV
439 old_fs = get_fs();
440 set_fs(get_ds());
441 p = (__force const char __user *)buf;
442 if (count > MAX_RW_COUNT)
443 count = MAX_RW_COUNT;
444 if (file->f_op->write)
445 ret = file->f_op->write(file, p, count, pos);
446 else
447 ret = do_sync_write(file, p, count, pos);
448 set_fs(old_fs);
449 if (ret > 0) {
450 fsnotify_modify(file);
451 add_wchar(current, ret);
452 }
453 inc_syscw(current);
454 return ret;
455}
456
1da177e4
LT
457ssize_t vfs_write(struct file *file, const char __user *buf, size_t count, loff_t *pos)
458{
459 ssize_t ret;
460
461 if (!(file->f_mode & FMODE_WRITE))
462 return -EBADF;
72c2d531 463 if (!file->f_op->write && !file->f_op->aio_write)
1da177e4
LT
464 return -EINVAL;
465 if (unlikely(!access_ok(VERIFY_READ, buf, count)))
466 return -EFAULT;
467
468 ret = rw_verify_area(WRITE, file, pos, count);
e28cc715
LT
469 if (ret >= 0) {
470 count = ret;
03d95eb2 471 file_start_write(file);
c43e259c
JM
472 if (file->f_op->write)
473 ret = file->f_op->write(file, buf, count, pos);
474 else
475 ret = do_sync_write(file, buf, count, pos);
476 if (ret > 0) {
2a12a9d7 477 fsnotify_modify(file);
c43e259c 478 add_wchar(current, ret);
1da177e4 479 }
c43e259c 480 inc_syscw(current);
03d95eb2 481 file_end_write(file);
1da177e4
LT
482 }
483
484 return ret;
485}
486
487EXPORT_SYMBOL(vfs_write);
488
489static inline loff_t file_pos_read(struct file *file)
490{
491 return file->f_pos;
492}
493
494static inline void file_pos_write(struct file *file, loff_t pos)
495{
496 file->f_pos = pos;
497}
498
3cdad428 499SYSCALL_DEFINE3(read, unsigned int, fd, char __user *, buf, size_t, count)
1da177e4 500{
2903ff01 501 struct fd f = fdget(fd);
1da177e4 502 ssize_t ret = -EBADF;
1da177e4 503
2903ff01
AV
504 if (f.file) {
505 loff_t pos = file_pos_read(f.file);
506 ret = vfs_read(f.file, buf, count, &pos);
5faf153e
AV
507 if (ret >= 0)
508 file_pos_write(f.file, pos);
2903ff01 509 fdput(f);
1da177e4 510 }
1da177e4
LT
511 return ret;
512}
1da177e4 513
3cdad428
HC
514SYSCALL_DEFINE3(write, unsigned int, fd, const char __user *, buf,
515 size_t, count)
1da177e4 516{
2903ff01 517 struct fd f = fdget(fd);
1da177e4 518 ssize_t ret = -EBADF;
1da177e4 519
2903ff01
AV
520 if (f.file) {
521 loff_t pos = file_pos_read(f.file);
522 ret = vfs_write(f.file, buf, count, &pos);
5faf153e
AV
523 if (ret >= 0)
524 file_pos_write(f.file, pos);
2903ff01 525 fdput(f);
1da177e4
LT
526 }
527
528 return ret;
529}
530
4a0fd5bf
AV
531SYSCALL_DEFINE4(pread64, unsigned int, fd, char __user *, buf,
532 size_t, count, loff_t, pos)
1da177e4 533{
2903ff01 534 struct fd f;
1da177e4 535 ssize_t ret = -EBADF;
1da177e4
LT
536
537 if (pos < 0)
538 return -EINVAL;
539
2903ff01
AV
540 f = fdget(fd);
541 if (f.file) {
1da177e4 542 ret = -ESPIPE;
2903ff01
AV
543 if (f.file->f_mode & FMODE_PREAD)
544 ret = vfs_read(f.file, buf, count, &pos);
545 fdput(f);
1da177e4
LT
546 }
547
548 return ret;
549}
550
4a0fd5bf
AV
551SYSCALL_DEFINE4(pwrite64, unsigned int, fd, const char __user *, buf,
552 size_t, count, loff_t, pos)
1da177e4 553{
2903ff01 554 struct fd f;
1da177e4 555 ssize_t ret = -EBADF;
1da177e4
LT
556
557 if (pos < 0)
558 return -EINVAL;
559
2903ff01
AV
560 f = fdget(fd);
561 if (f.file) {
1da177e4 562 ret = -ESPIPE;
2903ff01
AV
563 if (f.file->f_mode & FMODE_PWRITE)
564 ret = vfs_write(f.file, buf, count, &pos);
565 fdput(f);
1da177e4
LT
566 }
567
568 return ret;
569}
570
571/*
572 * Reduce an iovec's length in-place. Return the resulting number of segments
573 */
574unsigned long iov_shorten(struct iovec *iov, unsigned long nr_segs, size_t to)
575{
576 unsigned long seg = 0;
577 size_t len = 0;
578
579 while (seg < nr_segs) {
580 seg++;
581 if (len + iov->iov_len >= to) {
582 iov->iov_len = to - len;
583 break;
584 }
585 len += iov->iov_len;
586 iov++;
587 }
588 return seg;
589}
19295529 590EXPORT_SYMBOL(iov_shorten);
1da177e4 591
72ec3516 592static ssize_t do_sync_readv_writev(struct file *filp, const struct iovec *iov,
ee0b3e67
BP
593 unsigned long nr_segs, size_t len, loff_t *ppos, iov_fn_t fn)
594{
595 struct kiocb kiocb;
596 ssize_t ret;
597
598 init_sync_kiocb(&kiocb, filp);
599 kiocb.ki_pos = *ppos;
ee0b3e67
BP
600 kiocb.ki_nbytes = len;
601
41003a7b 602 ret = fn(&kiocb, iov, nr_segs, kiocb.ki_pos);
ee0b3e67
BP
603 if (ret == -EIOCBQUEUED)
604 ret = wait_on_sync_kiocb(&kiocb);
605 *ppos = kiocb.ki_pos;
606 return ret;
607}
608
609/* Do it by hand, with file-ops */
72ec3516 610static ssize_t do_loop_readv_writev(struct file *filp, struct iovec *iov,
ee0b3e67
BP
611 unsigned long nr_segs, loff_t *ppos, io_fn_t fn)
612{
613 struct iovec *vector = iov;
614 ssize_t ret = 0;
615
616 while (nr_segs > 0) {
617 void __user *base;
618 size_t len;
619 ssize_t nr;
620
621 base = vector->iov_base;
622 len = vector->iov_len;
623 vector++;
624 nr_segs--;
625
626 nr = fn(filp, base, len, ppos);
627
628 if (nr < 0) {
629 if (!ret)
630 ret = nr;
631 break;
632 }
633 ret += nr;
634 if (nr != len)
635 break;
636 }
637
638 return ret;
639}
640
1da177e4
LT
641/* A write operation does a read from user space and vice versa */
642#define vrfy_dir(type) ((type) == READ ? VERIFY_WRITE : VERIFY_READ)
643
eed4e51f
BP
644ssize_t rw_copy_check_uvector(int type, const struct iovec __user * uvector,
645 unsigned long nr_segs, unsigned long fast_segs,
646 struct iovec *fast_pointer,
ac34ebb3 647 struct iovec **ret_pointer)
435f49a5 648{
eed4e51f 649 unsigned long seg;
435f49a5 650 ssize_t ret;
eed4e51f
BP
651 struct iovec *iov = fast_pointer;
652
435f49a5
LT
653 /*
654 * SuS says "The readv() function *may* fail if the iovcnt argument
655 * was less than or equal to 0, or greater than {IOV_MAX}. Linux has
656 * traditionally returned zero for zero segments, so...
657 */
eed4e51f
BP
658 if (nr_segs == 0) {
659 ret = 0;
435f49a5 660 goto out;
eed4e51f
BP
661 }
662
435f49a5
LT
663 /*
664 * First get the "struct iovec" from user memory and
665 * verify all the pointers
666 */
eed4e51f
BP
667 if (nr_segs > UIO_MAXIOV) {
668 ret = -EINVAL;
435f49a5 669 goto out;
eed4e51f
BP
670 }
671 if (nr_segs > fast_segs) {
435f49a5 672 iov = kmalloc(nr_segs*sizeof(struct iovec), GFP_KERNEL);
eed4e51f
BP
673 if (iov == NULL) {
674 ret = -ENOMEM;
435f49a5 675 goto out;
eed4e51f 676 }
435f49a5 677 }
eed4e51f
BP
678 if (copy_from_user(iov, uvector, nr_segs*sizeof(*uvector))) {
679 ret = -EFAULT;
435f49a5 680 goto out;
eed4e51f
BP
681 }
682
435f49a5 683 /*
eed4e51f
BP
684 * According to the Single Unix Specification we should return EINVAL
685 * if an element length is < 0 when cast to ssize_t or if the
686 * total length would overflow the ssize_t return value of the
687 * system call.
435f49a5
LT
688 *
689 * Linux caps all read/write calls to MAX_RW_COUNT, and avoids the
690 * overflow case.
691 */
eed4e51f 692 ret = 0;
435f49a5
LT
693 for (seg = 0; seg < nr_segs; seg++) {
694 void __user *buf = iov[seg].iov_base;
695 ssize_t len = (ssize_t)iov[seg].iov_len;
eed4e51f
BP
696
697 /* see if we we're about to use an invalid len or if
698 * it's about to overflow ssize_t */
435f49a5 699 if (len < 0) {
eed4e51f 700 ret = -EINVAL;
435f49a5 701 goto out;
eed4e51f 702 }
ac34ebb3 703 if (type >= 0
fcf63409 704 && unlikely(!access_ok(vrfy_dir(type), buf, len))) {
eed4e51f 705 ret = -EFAULT;
435f49a5
LT
706 goto out;
707 }
708 if (len > MAX_RW_COUNT - ret) {
709 len = MAX_RW_COUNT - ret;
710 iov[seg].iov_len = len;
eed4e51f 711 }
eed4e51f 712 ret += len;
435f49a5 713 }
eed4e51f
BP
714out:
715 *ret_pointer = iov;
716 return ret;
717}
718
1da177e4
LT
719static ssize_t do_readv_writev(int type, struct file *file,
720 const struct iovec __user * uvector,
721 unsigned long nr_segs, loff_t *pos)
722{
1da177e4
LT
723 size_t tot_len;
724 struct iovec iovstack[UIO_FASTIOV];
ee0b3e67 725 struct iovec *iov = iovstack;
1da177e4 726 ssize_t ret;
1da177e4
LT
727 io_fn_t fn;
728 iov_fn_t fnv;
729
eed4e51f 730 ret = rw_copy_check_uvector(type, uvector, nr_segs,
ac34ebb3 731 ARRAY_SIZE(iovstack), iovstack, &iov);
eed4e51f 732 if (ret <= 0)
1da177e4 733 goto out;
1da177e4 734
eed4e51f 735 tot_len = ret;
1da177e4 736 ret = rw_verify_area(type, file, pos, tot_len);
e28cc715 737 if (ret < 0)
411b67b4 738 goto out;
1da177e4
LT
739
740 fnv = NULL;
741 if (type == READ) {
742 fn = file->f_op->read;
ee0b3e67 743 fnv = file->f_op->aio_read;
1da177e4
LT
744 } else {
745 fn = (io_fn_t)file->f_op->write;
ee0b3e67 746 fnv = file->f_op->aio_write;
03d95eb2 747 file_start_write(file);
1da177e4
LT
748 }
749
ee0b3e67
BP
750 if (fnv)
751 ret = do_sync_readv_writev(file, iov, nr_segs, tot_len,
752 pos, fnv);
753 else
754 ret = do_loop_readv_writev(file, iov, nr_segs, pos, fn);
1da177e4 755
03d95eb2
AV
756 if (type != READ)
757 file_end_write(file);
758
1da177e4
LT
759out:
760 if (iov != iovstack)
761 kfree(iov);
0eeca283
RL
762 if ((ret + (type == READ)) > 0) {
763 if (type == READ)
2a12a9d7 764 fsnotify_access(file);
0eeca283 765 else
2a12a9d7 766 fsnotify_modify(file);
0eeca283 767 }
1da177e4 768 return ret;
1da177e4
LT
769}
770
771ssize_t vfs_readv(struct file *file, const struct iovec __user *vec,
772 unsigned long vlen, loff_t *pos)
773{
774 if (!(file->f_mode & FMODE_READ))
775 return -EBADF;
72c2d531 776 if (!file->f_op->aio_read && !file->f_op->read)
1da177e4
LT
777 return -EINVAL;
778
779 return do_readv_writev(READ, file, vec, vlen, pos);
780}
781
782EXPORT_SYMBOL(vfs_readv);
783
784ssize_t vfs_writev(struct file *file, const struct iovec __user *vec,
785 unsigned long vlen, loff_t *pos)
786{
787 if (!(file->f_mode & FMODE_WRITE))
788 return -EBADF;
72c2d531 789 if (!file->f_op->aio_write && !file->f_op->write)
1da177e4
LT
790 return -EINVAL;
791
792 return do_readv_writev(WRITE, file, vec, vlen, pos);
793}
794
795EXPORT_SYMBOL(vfs_writev);
796
3cdad428
HC
797SYSCALL_DEFINE3(readv, unsigned long, fd, const struct iovec __user *, vec,
798 unsigned long, vlen)
1da177e4 799{
2903ff01 800 struct fd f = fdget(fd);
1da177e4 801 ssize_t ret = -EBADF;
1da177e4 802
2903ff01
AV
803 if (f.file) {
804 loff_t pos = file_pos_read(f.file);
805 ret = vfs_readv(f.file, vec, vlen, &pos);
5faf153e
AV
806 if (ret >= 0)
807 file_pos_write(f.file, pos);
2903ff01 808 fdput(f);
1da177e4
LT
809 }
810
811 if (ret > 0)
4b98d11b
AD
812 add_rchar(current, ret);
813 inc_syscr(current);
1da177e4
LT
814 return ret;
815}
816
3cdad428
HC
817SYSCALL_DEFINE3(writev, unsigned long, fd, const struct iovec __user *, vec,
818 unsigned long, vlen)
1da177e4 819{
2903ff01 820 struct fd f = fdget(fd);
1da177e4 821 ssize_t ret = -EBADF;
1da177e4 822
2903ff01
AV
823 if (f.file) {
824 loff_t pos = file_pos_read(f.file);
825 ret = vfs_writev(f.file, vec, vlen, &pos);
5faf153e
AV
826 if (ret >= 0)
827 file_pos_write(f.file, pos);
2903ff01 828 fdput(f);
1da177e4
LT
829 }
830
831 if (ret > 0)
4b98d11b
AD
832 add_wchar(current, ret);
833 inc_syscw(current);
1da177e4
LT
834 return ret;
835}
836
601cc11d
LT
837static inline loff_t pos_from_hilo(unsigned long high, unsigned long low)
838{
839#define HALF_LONG_BITS (BITS_PER_LONG / 2)
840 return (((loff_t)high << HALF_LONG_BITS) << HALF_LONG_BITS) | low;
841}
842
f3554f4b 843SYSCALL_DEFINE5(preadv, unsigned long, fd, const struct iovec __user *, vec,
601cc11d 844 unsigned long, vlen, unsigned long, pos_l, unsigned long, pos_h)
f3554f4b 845{
601cc11d 846 loff_t pos = pos_from_hilo(pos_h, pos_l);
2903ff01 847 struct fd f;
f3554f4b 848 ssize_t ret = -EBADF;
f3554f4b
GH
849
850 if (pos < 0)
851 return -EINVAL;
852
2903ff01
AV
853 f = fdget(fd);
854 if (f.file) {
f3554f4b 855 ret = -ESPIPE;
2903ff01
AV
856 if (f.file->f_mode & FMODE_PREAD)
857 ret = vfs_readv(f.file, vec, vlen, &pos);
858 fdput(f);
f3554f4b
GH
859 }
860
861 if (ret > 0)
862 add_rchar(current, ret);
863 inc_syscr(current);
864 return ret;
865}
866
867SYSCALL_DEFINE5(pwritev, unsigned long, fd, const struct iovec __user *, vec,
601cc11d 868 unsigned long, vlen, unsigned long, pos_l, unsigned long, pos_h)
f3554f4b 869{
601cc11d 870 loff_t pos = pos_from_hilo(pos_h, pos_l);
2903ff01 871 struct fd f;
f3554f4b 872 ssize_t ret = -EBADF;
f3554f4b
GH
873
874 if (pos < 0)
875 return -EINVAL;
876
2903ff01
AV
877 f = fdget(fd);
878 if (f.file) {
f3554f4b 879 ret = -ESPIPE;
2903ff01
AV
880 if (f.file->f_mode & FMODE_PWRITE)
881 ret = vfs_writev(f.file, vec, vlen, &pos);
882 fdput(f);
f3554f4b
GH
883 }
884
885 if (ret > 0)
886 add_wchar(current, ret);
887 inc_syscw(current);
888 return ret;
889}
890
72ec3516
AV
891#ifdef CONFIG_COMPAT
892
893static ssize_t compat_do_readv_writev(int type, struct file *file,
894 const struct compat_iovec __user *uvector,
895 unsigned long nr_segs, loff_t *pos)
896{
897 compat_ssize_t tot_len;
898 struct iovec iovstack[UIO_FASTIOV];
899 struct iovec *iov = iovstack;
900 ssize_t ret;
901 io_fn_t fn;
902 iov_fn_t fnv;
903
72ec3516
AV
904 ret = compat_rw_copy_check_uvector(type, uvector, nr_segs,
905 UIO_FASTIOV, iovstack, &iov);
906 if (ret <= 0)
907 goto out;
908
909 tot_len = ret;
910 ret = rw_verify_area(type, file, pos, tot_len);
911 if (ret < 0)
912 goto out;
913
914 fnv = NULL;
915 if (type == READ) {
916 fn = file->f_op->read;
917 fnv = file->f_op->aio_read;
918 } else {
919 fn = (io_fn_t)file->f_op->write;
920 fnv = file->f_op->aio_write;
03d95eb2 921 file_start_write(file);
72ec3516
AV
922 }
923
03d95eb2 924 if (fnv)
72ec3516
AV
925 ret = do_sync_readv_writev(file, iov, nr_segs, tot_len,
926 pos, fnv);
03d95eb2 927 else
72ec3516
AV
928 ret = do_loop_readv_writev(file, iov, nr_segs, pos, fn);
929
03d95eb2
AV
930 if (type != READ)
931 file_end_write(file);
932
72ec3516
AV
933out:
934 if (iov != iovstack)
935 kfree(iov);
936 if ((ret + (type == READ)) > 0) {
937 if (type == READ)
938 fsnotify_access(file);
939 else
940 fsnotify_modify(file);
941 }
942 return ret;
943}
944
945static size_t compat_readv(struct file *file,
946 const struct compat_iovec __user *vec,
947 unsigned long vlen, loff_t *pos)
948{
949 ssize_t ret = -EBADF;
950
951 if (!(file->f_mode & FMODE_READ))
952 goto out;
953
954 ret = -EINVAL;
72c2d531 955 if (!file->f_op->aio_read && !file->f_op->read)
72ec3516
AV
956 goto out;
957
958 ret = compat_do_readv_writev(READ, file, vec, vlen, pos);
959
960out:
961 if (ret > 0)
962 add_rchar(current, ret);
963 inc_syscr(current);
964 return ret;
965}
966
dfd948e3 967COMPAT_SYSCALL_DEFINE3(readv, compat_ulong_t, fd,
72ec3516 968 const struct compat_iovec __user *,vec,
dfd948e3 969 compat_ulong_t, vlen)
72ec3516
AV
970{
971 struct fd f = fdget(fd);
972 ssize_t ret;
973 loff_t pos;
974
975 if (!f.file)
976 return -EBADF;
977 pos = f.file->f_pos;
978 ret = compat_readv(f.file, vec, vlen, &pos);
5faf153e
AV
979 if (ret >= 0)
980 f.file->f_pos = pos;
72ec3516
AV
981 fdput(f);
982 return ret;
983}
984
985COMPAT_SYSCALL_DEFINE4(preadv64, unsigned long, fd,
986 const struct compat_iovec __user *,vec,
987 unsigned long, vlen, loff_t, pos)
988{
989 struct fd f;
990 ssize_t ret;
991
992 if (pos < 0)
993 return -EINVAL;
994 f = fdget(fd);
995 if (!f.file)
996 return -EBADF;
997 ret = -ESPIPE;
998 if (f.file->f_mode & FMODE_PREAD)
999 ret = compat_readv(f.file, vec, vlen, &pos);
1000 fdput(f);
1001 return ret;
1002}
1003
dfd948e3 1004COMPAT_SYSCALL_DEFINE5(preadv, compat_ulong_t, fd,
72ec3516 1005 const struct compat_iovec __user *,vec,
dfd948e3 1006 compat_ulong_t, vlen, u32, pos_low, u32, pos_high)
72ec3516
AV
1007{
1008 loff_t pos = ((loff_t)pos_high << 32) | pos_low;
1009 return compat_sys_preadv64(fd, vec, vlen, pos);
1010}
1011
1012static size_t compat_writev(struct file *file,
1013 const struct compat_iovec __user *vec,
1014 unsigned long vlen, loff_t *pos)
1015{
1016 ssize_t ret = -EBADF;
1017
1018 if (!(file->f_mode & FMODE_WRITE))
1019 goto out;
1020
1021 ret = -EINVAL;
72c2d531 1022 if (!file->f_op->aio_write && !file->f_op->write)
72ec3516
AV
1023 goto out;
1024
1025 ret = compat_do_readv_writev(WRITE, file, vec, vlen, pos);
1026
1027out:
1028 if (ret > 0)
1029 add_wchar(current, ret);
1030 inc_syscw(current);
1031 return ret;
1032}
1033
dfd948e3 1034COMPAT_SYSCALL_DEFINE3(writev, compat_ulong_t, fd,
72ec3516 1035 const struct compat_iovec __user *, vec,
dfd948e3 1036 compat_ulong_t, vlen)
72ec3516
AV
1037{
1038 struct fd f = fdget(fd);
1039 ssize_t ret;
1040 loff_t pos;
1041
1042 if (!f.file)
1043 return -EBADF;
1044 pos = f.file->f_pos;
1045 ret = compat_writev(f.file, vec, vlen, &pos);
5faf153e
AV
1046 if (ret >= 0)
1047 f.file->f_pos = pos;
72ec3516
AV
1048 fdput(f);
1049 return ret;
1050}
1051
1052COMPAT_SYSCALL_DEFINE4(pwritev64, unsigned long, fd,
1053 const struct compat_iovec __user *,vec,
1054 unsigned long, vlen, loff_t, pos)
1055{
1056 struct fd f;
1057 ssize_t ret;
1058
1059 if (pos < 0)
1060 return -EINVAL;
1061 f = fdget(fd);
1062 if (!f.file)
1063 return -EBADF;
1064 ret = -ESPIPE;
1065 if (f.file->f_mode & FMODE_PWRITE)
1066 ret = compat_writev(f.file, vec, vlen, &pos);
1067 fdput(f);
1068 return ret;
1069}
1070
dfd948e3 1071COMPAT_SYSCALL_DEFINE5(pwritev, compat_ulong_t, fd,
72ec3516 1072 const struct compat_iovec __user *,vec,
dfd948e3 1073 compat_ulong_t, vlen, u32, pos_low, u32, pos_high)
72ec3516
AV
1074{
1075 loff_t pos = ((loff_t)pos_high << 32) | pos_low;
1076 return compat_sys_pwritev64(fd, vec, vlen, pos);
1077}
1078#endif
1079
19f4fc3a
AV
1080static ssize_t do_sendfile(int out_fd, int in_fd, loff_t *ppos,
1081 size_t count, loff_t max)
1da177e4 1082{
2903ff01
AV
1083 struct fd in, out;
1084 struct inode *in_inode, *out_inode;
1da177e4 1085 loff_t pos;
7995bd28 1086 loff_t out_pos;
1da177e4 1087 ssize_t retval;
2903ff01 1088 int fl;
1da177e4
LT
1089
1090 /*
1091 * Get input file, and verify that it is ok..
1092 */
1093 retval = -EBADF;
2903ff01
AV
1094 in = fdget(in_fd);
1095 if (!in.file)
1da177e4 1096 goto out;
2903ff01 1097 if (!(in.file->f_mode & FMODE_READ))
1da177e4 1098 goto fput_in;
1da177e4 1099 retval = -ESPIPE;
7995bd28
AV
1100 if (!ppos) {
1101 pos = in.file->f_pos;
1102 } else {
1103 pos = *ppos;
2903ff01 1104 if (!(in.file->f_mode & FMODE_PREAD))
1da177e4 1105 goto fput_in;
7995bd28
AV
1106 }
1107 retval = rw_verify_area(READ, in.file, &pos, count);
e28cc715 1108 if (retval < 0)
1da177e4 1109 goto fput_in;
e28cc715 1110 count = retval;
1da177e4 1111
1da177e4
LT
1112 /*
1113 * Get output file, and verify that it is ok..
1114 */
1115 retval = -EBADF;
2903ff01
AV
1116 out = fdget(out_fd);
1117 if (!out.file)
1da177e4 1118 goto fput_in;
2903ff01 1119 if (!(out.file->f_mode & FMODE_WRITE))
1da177e4
LT
1120 goto fput_out;
1121 retval = -EINVAL;
496ad9aa
AV
1122 in_inode = file_inode(in.file);
1123 out_inode = file_inode(out.file);
7995bd28
AV
1124 out_pos = out.file->f_pos;
1125 retval = rw_verify_area(WRITE, out.file, &out_pos, count);
e28cc715 1126 if (retval < 0)
1da177e4 1127 goto fput_out;
e28cc715 1128 count = retval;
1da177e4 1129
1da177e4
LT
1130 if (!max)
1131 max = min(in_inode->i_sb->s_maxbytes, out_inode->i_sb->s_maxbytes);
1132
1da177e4
LT
1133 if (unlikely(pos + count > max)) {
1134 retval = -EOVERFLOW;
1135 if (pos >= max)
1136 goto fput_out;
1137 count = max - pos;
1138 }
1139
d96e6e71 1140 fl = 0;
534f2aaa 1141#if 0
d96e6e71
JA
1142 /*
1143 * We need to debate whether we can enable this or not. The
1144 * man page documents EAGAIN return for the output at least,
1145 * and the application is arguably buggy if it doesn't expect
1146 * EAGAIN on a non-blocking file descriptor.
1147 */
2903ff01 1148 if (in.file->f_flags & O_NONBLOCK)
d96e6e71 1149 fl = SPLICE_F_NONBLOCK;
534f2aaa 1150#endif
50cd2c57 1151 file_start_write(out.file);
7995bd28 1152 retval = do_splice_direct(in.file, &pos, out.file, &out_pos, count, fl);
50cd2c57 1153 file_end_write(out.file);
1da177e4
LT
1154
1155 if (retval > 0) {
4b98d11b
AD
1156 add_rchar(current, retval);
1157 add_wchar(current, retval);
a68c2f12
SW
1158 fsnotify_access(in.file);
1159 fsnotify_modify(out.file);
7995bd28
AV
1160 out.file->f_pos = out_pos;
1161 if (ppos)
1162 *ppos = pos;
1163 else
1164 in.file->f_pos = pos;
1da177e4 1165 }
1da177e4 1166
4b98d11b
AD
1167 inc_syscr(current);
1168 inc_syscw(current);
7995bd28 1169 if (pos > max)
1da177e4
LT
1170 retval = -EOVERFLOW;
1171
1172fput_out:
2903ff01 1173 fdput(out);
1da177e4 1174fput_in:
2903ff01 1175 fdput(in);
1da177e4
LT
1176out:
1177 return retval;
1178}
1179
002c8976 1180SYSCALL_DEFINE4(sendfile, int, out_fd, int, in_fd, off_t __user *, offset, size_t, count)
1da177e4
LT
1181{
1182 loff_t pos;
1183 off_t off;
1184 ssize_t ret;
1185
1186 if (offset) {
1187 if (unlikely(get_user(off, offset)))
1188 return -EFAULT;
1189 pos = off;
1190 ret = do_sendfile(out_fd, in_fd, &pos, count, MAX_NON_LFS);
1191 if (unlikely(put_user(pos, offset)))
1192 return -EFAULT;
1193 return ret;
1194 }
1195
1196 return do_sendfile(out_fd, in_fd, NULL, count, 0);
1197}
1198
002c8976 1199SYSCALL_DEFINE4(sendfile64, int, out_fd, int, in_fd, loff_t __user *, offset, size_t, count)
1da177e4
LT
1200{
1201 loff_t pos;
1202 ssize_t ret;
1203
1204 if (offset) {
1205 if (unlikely(copy_from_user(&pos, offset, sizeof(loff_t))))
1206 return -EFAULT;
1207 ret = do_sendfile(out_fd, in_fd, &pos, count, 0);
1208 if (unlikely(put_user(pos, offset)))
1209 return -EFAULT;
1210 return ret;
1211 }
1212
1213 return do_sendfile(out_fd, in_fd, NULL, count, 0);
1214}
19f4fc3a
AV
1215
1216#ifdef CONFIG_COMPAT
1217COMPAT_SYSCALL_DEFINE4(sendfile, int, out_fd, int, in_fd,
1218 compat_off_t __user *, offset, compat_size_t, count)
1219{
1220 loff_t pos;
1221 off_t off;
1222 ssize_t ret;
1223
1224 if (offset) {
1225 if (unlikely(get_user(off, offset)))
1226 return -EFAULT;
1227 pos = off;
1228 ret = do_sendfile(out_fd, in_fd, &pos, count, MAX_NON_LFS);
1229 if (unlikely(put_user(pos, offset)))
1230 return -EFAULT;
1231 return ret;
1232 }
1233
1234 return do_sendfile(out_fd, in_fd, NULL, count, 0);
1235}
1236
1237COMPAT_SYSCALL_DEFINE4(sendfile64, int, out_fd, int, in_fd,
1238 compat_loff_t __user *, offset, compat_size_t, count)
1239{
1240 loff_t pos;
1241 ssize_t ret;
1242
1243 if (offset) {
1244 if (unlikely(copy_from_user(&pos, offset, sizeof(loff_t))))
1245 return -EFAULT;
1246 ret = do_sendfile(out_fd, in_fd, &pos, count, 0);
1247 if (unlikely(put_user(pos, offset)))
1248 return -EFAULT;
1249 return ret;
1250 }
1251
1252 return do_sendfile(out_fd, in_fd, NULL, count, 0);
1253}
1254#endif