]> Pileus Git - ~andy/linux/blob - net/packet/diag.c
packet_diag: disclose uid value
[~andy/linux] / net / packet / diag.c
1 #include <linux/module.h>
2 #include <linux/sock_diag.h>
3 #include <linux/net.h>
4 #include <linux/netdevice.h>
5 #include <linux/packet_diag.h>
6 #include <net/net_namespace.h>
7 #include <net/sock.h>
8
9 #include "internal.h"
10
11 static int pdiag_put_info(const struct packet_sock *po, struct sk_buff *nlskb)
12 {
13         struct packet_diag_info pinfo;
14
15         pinfo.pdi_index = po->ifindex;
16         pinfo.pdi_version = po->tp_version;
17         pinfo.pdi_reserve = po->tp_reserve;
18         pinfo.pdi_copy_thresh = po->copy_thresh;
19         pinfo.pdi_tstamp = po->tp_tstamp;
20
21         pinfo.pdi_flags = 0;
22         if (po->running)
23                 pinfo.pdi_flags |= PDI_RUNNING;
24         if (po->auxdata)
25                 pinfo.pdi_flags |= PDI_AUXDATA;
26         if (po->origdev)
27                 pinfo.pdi_flags |= PDI_ORIGDEV;
28         if (po->has_vnet_hdr)
29                 pinfo.pdi_flags |= PDI_VNETHDR;
30         if (po->tp_loss)
31                 pinfo.pdi_flags |= PDI_LOSS;
32
33         return nla_put(nlskb, PACKET_DIAG_INFO, sizeof(pinfo), &pinfo);
34 }
35
36 static int pdiag_put_mclist(const struct packet_sock *po, struct sk_buff *nlskb)
37 {
38         struct nlattr *mca;
39         struct packet_mclist *ml;
40
41         mca = nla_nest_start(nlskb, PACKET_DIAG_MCLIST);
42         if (!mca)
43                 return -EMSGSIZE;
44
45         rtnl_lock();
46         for (ml = po->mclist; ml; ml = ml->next) {
47                 struct packet_diag_mclist *dml;
48
49                 dml = nla_reserve_nohdr(nlskb, sizeof(*dml));
50                 if (!dml) {
51                         rtnl_unlock();
52                         nla_nest_cancel(nlskb, mca);
53                         return -EMSGSIZE;
54                 }
55
56                 dml->pdmc_index = ml->ifindex;
57                 dml->pdmc_type = ml->type;
58                 dml->pdmc_alen = ml->alen;
59                 dml->pdmc_count = ml->count;
60                 BUILD_BUG_ON(sizeof(dml->pdmc_addr) != sizeof(ml->addr));
61                 memcpy(dml->pdmc_addr, ml->addr, sizeof(ml->addr));
62         }
63
64         rtnl_unlock();
65         nla_nest_end(nlskb, mca);
66
67         return 0;
68 }
69
70 static int pdiag_put_ring(struct packet_ring_buffer *ring, int ver, int nl_type,
71                 struct sk_buff *nlskb)
72 {
73         struct packet_diag_ring pdr;
74
75         if (!ring->pg_vec || ((ver > TPACKET_V2) &&
76                                 (nl_type == PACKET_DIAG_TX_RING)))
77                 return 0;
78
79         pdr.pdr_block_size = ring->pg_vec_pages << PAGE_SHIFT;
80         pdr.pdr_block_nr = ring->pg_vec_len;
81         pdr.pdr_frame_size = ring->frame_size;
82         pdr.pdr_frame_nr = ring->frame_max + 1;
83
84         if (ver > TPACKET_V2) {
85                 pdr.pdr_retire_tmo = ring->prb_bdqc.retire_blk_tov;
86                 pdr.pdr_sizeof_priv = ring->prb_bdqc.blk_sizeof_priv;
87                 pdr.pdr_features = ring->prb_bdqc.feature_req_word;
88         } else {
89                 pdr.pdr_retire_tmo = 0;
90                 pdr.pdr_sizeof_priv = 0;
91                 pdr.pdr_features = 0;
92         }
93
94         return nla_put(nlskb, nl_type, sizeof(pdr), &pdr);
95 }
96
97 static int pdiag_put_rings_cfg(struct packet_sock *po, struct sk_buff *skb)
98 {
99         int ret;
100
101         mutex_lock(&po->pg_vec_lock);
102         ret = pdiag_put_ring(&po->rx_ring, po->tp_version,
103                         PACKET_DIAG_RX_RING, skb);
104         if (!ret)
105                 ret = pdiag_put_ring(&po->tx_ring, po->tp_version,
106                                 PACKET_DIAG_TX_RING, skb);
107         mutex_unlock(&po->pg_vec_lock);
108
109         return ret;
110 }
111
112 static int pdiag_put_fanout(struct packet_sock *po, struct sk_buff *nlskb)
113 {
114         int ret = 0;
115
116         mutex_lock(&fanout_mutex);
117         if (po->fanout) {
118                 u32 val;
119
120                 val = (u32)po->fanout->id | ((u32)po->fanout->type << 16);
121                 ret = nla_put_u32(nlskb, PACKET_DIAG_FANOUT, val);
122         }
123         mutex_unlock(&fanout_mutex);
124
125         return ret;
126 }
127
128 static int sk_diag_fill(struct sock *sk, struct sk_buff *skb,
129                         struct packet_diag_req *req,
130                         struct user_namespace *user_ns,
131                         u32 portid, u32 seq, u32 flags, int sk_ino)
132 {
133         struct nlmsghdr *nlh;
134         struct packet_diag_msg *rp;
135         struct packet_sock *po = pkt_sk(sk);
136
137         nlh = nlmsg_put(skb, portid, seq, SOCK_DIAG_BY_FAMILY, sizeof(*rp), flags);
138         if (!nlh)
139                 return -EMSGSIZE;
140
141         rp = nlmsg_data(nlh);
142         rp->pdiag_family = AF_PACKET;
143         rp->pdiag_type = sk->sk_type;
144         rp->pdiag_num = ntohs(po->num);
145         rp->pdiag_ino = sk_ino;
146         sock_diag_save_cookie(sk, rp->pdiag_cookie);
147
148         if ((req->pdiag_show & PACKET_SHOW_INFO) &&
149                         pdiag_put_info(po, skb))
150                 goto out_nlmsg_trim;
151
152         if ((req->pdiag_show & PACKET_SHOW_INFO) &&
153             nla_put_u32(skb, PACKET_DIAG_UID,
154                         from_kuid_munged(user_ns, sock_i_uid(sk))))
155                 goto out_nlmsg_trim;
156
157         if ((req->pdiag_show & PACKET_SHOW_MCLIST) &&
158                         pdiag_put_mclist(po, skb))
159                 goto out_nlmsg_trim;
160
161         if ((req->pdiag_show & PACKET_SHOW_RING_CFG) &&
162                         pdiag_put_rings_cfg(po, skb))
163                 goto out_nlmsg_trim;
164
165         if ((req->pdiag_show & PACKET_SHOW_FANOUT) &&
166                         pdiag_put_fanout(po, skb))
167                 goto out_nlmsg_trim;
168
169         return nlmsg_end(skb, nlh);
170
171 out_nlmsg_trim:
172         nlmsg_cancel(skb, nlh);
173         return -EMSGSIZE;
174 }
175
176 static int packet_diag_dump(struct sk_buff *skb, struct netlink_callback *cb)
177 {
178         int num = 0, s_num = cb->args[0];
179         struct packet_diag_req *req;
180         struct net *net;
181         struct sock *sk;
182
183         net = sock_net(skb->sk);
184         req = nlmsg_data(cb->nlh);
185
186         mutex_lock(&net->packet.sklist_lock);
187         sk_for_each(sk, &net->packet.sklist) {
188                 if (!net_eq(sock_net(sk), net))
189                         continue;
190                 if (num < s_num)
191                         goto next;
192
193                 if (sk_diag_fill(sk, skb, req,
194                                  sk_user_ns(NETLINK_CB(cb->skb).sk),
195                                  NETLINK_CB(cb->skb).portid,
196                                  cb->nlh->nlmsg_seq, NLM_F_MULTI,
197                                  sock_i_ino(sk)) < 0)
198                         goto done;
199 next:
200                 num++;
201         }
202 done:
203         mutex_unlock(&net->packet.sklist_lock);
204         cb->args[0] = num;
205
206         return skb->len;
207 }
208
209 static int packet_diag_handler_dump(struct sk_buff *skb, struct nlmsghdr *h)
210 {
211         int hdrlen = sizeof(struct packet_diag_req);
212         struct net *net = sock_net(skb->sk);
213         struct packet_diag_req *req;
214
215         if (nlmsg_len(h) < hdrlen)
216                 return -EINVAL;
217
218         req = nlmsg_data(h);
219         /* Make it possible to support protocol filtering later */
220         if (req->sdiag_protocol)
221                 return -EINVAL;
222
223         if (h->nlmsg_flags & NLM_F_DUMP) {
224                 struct netlink_dump_control c = {
225                         .dump = packet_diag_dump,
226                 };
227                 return netlink_dump_start(net->diag_nlsk, skb, h, &c);
228         } else
229                 return -EOPNOTSUPP;
230 }
231
232 static const struct sock_diag_handler packet_diag_handler = {
233         .family = AF_PACKET,
234         .dump = packet_diag_handler_dump,
235 };
236
237 static int __init packet_diag_init(void)
238 {
239         return sock_diag_register(&packet_diag_handler);
240 }
241
242 static void __exit packet_diag_exit(void)
243 {
244         sock_diag_unregister(&packet_diag_handler);
245 }
246
247 module_init(packet_diag_init);
248 module_exit(packet_diag_exit);
249 MODULE_LICENSE("GPL");
250 MODULE_ALIAS_NET_PF_PROTO_TYPE(PF_NETLINK, NETLINK_SOCK_DIAG, 17 /* AF_PACKET */);