All of lore.kernel.org
 help / color / mirror / Atom feed
* [PATCH AUTOSEL 5.16 01/30] gfs2: assign rgrp glock before compute_bitstructs
@ 2022-04-07  1:11 ` Sasha Levin
  0 siblings, 0 replies; 44+ messages in thread
From: Sasha Levin @ 2022-04-07  1:11 UTC (permalink / raw)
  To: linux-kernel, stable
  Cc: Bob Peterson, syzbot+c6fd14145e2f62ca0784, Andreas Gruenbacher,
	Sasha Levin, cluster-devel

From: Bob Peterson <rpeterso@redhat.com>

[ Upstream commit 428f651cb80b227af47fc302e4931791f2fb4741 ]

Before this patch, function read_rindex_entry called compute_bitstructs
before it allocated a glock for the rgrp. But if compute_bitstructs found
a problem with the rgrp, it called gfs2_consist_rgrpd, and that called
gfs2_dump_glock for rgd->rd_gl which had not yet been assigned.

read_rindex_entry
   compute_bitstructs
      gfs2_consist_rgrpd
         gfs2_dump_glock <---------rgd->rd_gl was not set.

This patch changes read_rindex_entry so it assigns an rgrp glock before
calling compute_bitstructs so gfs2_dump_glock does not reference an
unassigned pointer. If an error is discovered, the glock must also be
put, so a new goto and label were added.

Reported-by: syzbot+c6fd14145e2f62ca0784@syzkaller.appspotmail.com
Signed-off-by: Bob Peterson <rpeterso@redhat.com>
Signed-off-by: Andreas Gruenbacher <agruenba@redhat.com>
Signed-off-by: Sasha Levin <sashal@kernel.org>
---
 fs/gfs2/rgrp.c | 9 +++++----
 1 file changed, 5 insertions(+), 4 deletions(-)

diff --git a/fs/gfs2/rgrp.c b/fs/gfs2/rgrp.c
index 0fb3c01bc557..9b04a570c582 100644
--- a/fs/gfs2/rgrp.c
+++ b/fs/gfs2/rgrp.c
@@ -922,15 +922,15 @@ static int read_rindex_entry(struct gfs2_inode *ip)
 	spin_lock_init(&rgd->rd_rsspin);
 	mutex_init(&rgd->rd_mutex);
 
-	error = compute_bitstructs(rgd);
-	if (error)
-		goto fail;
-
 	error = gfs2_glock_get(sdp, rgd->rd_addr,
 			       &gfs2_rgrp_glops, CREATE, &rgd->rd_gl);
 	if (error)
 		goto fail;
 
+	error = compute_bitstructs(rgd);
+	if (error)
+		goto fail_glock;
+
 	rgd->rd_rgl = (struct gfs2_rgrp_lvb *)rgd->rd_gl->gl_lksb.sb_lvbptr;
 	rgd->rd_flags &= ~GFS2_RDF_PREFERRED;
 	if (rgd->rd_data > sdp->sd_max_rg_data)
@@ -944,6 +944,7 @@ static int read_rindex_entry(struct gfs2_inode *ip)
 	}
 
 	error = 0; /* someone else read in the rgrp; free it and ignore it */
+fail_glock:
 	gfs2_glock_put(rgd->rd_gl);
 
 fail:
-- 
2.35.1


^ permalink raw reply related	[flat|nested] 44+ messages in thread

end of thread, other threads:[~2022-04-07  1:31 UTC | newest]

Thread overview: 44+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2022-04-07  1:11 [PATCH AUTOSEL 5.16 01/30] gfs2: assign rgrp glock before compute_bitstructs Sasha Levin
2022-04-07  1:11 ` [Cluster-devel] " Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 02/30] gfs2: cancel timed-out glock requests Sasha Levin
2022-04-07  1:11   ` [Cluster-devel] " Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 03/30] gfs2: Switch lock order of inode and iopen glock Sasha Levin
2022-04-07  1:11   ` [Cluster-devel] " Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 04/30] rtc: fix use-after-free on device removal Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 05/30] rtc: pcf2127: fix bug when reading alarm registers Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 06/30] kconfig: add fflush() before ferror() check Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 07/30] um: Cleanup syscall_handler_t definition/cast, fix warning Sasha Levin
2022-04-07  1:11   ` Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 08/30] um: port_user: Improve error handling when port-helper is not found Sasha Levin
2022-04-07  1:11   ` Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 09/30] Input: add bounds checking to input_set_capability() Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 10/30] Input: stmfts - fix reference leak in stmfts_input_open Sasha Levin
2022-04-07  1:11   ` Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 11/30] nvme-pci: add quirks for Samsung X5 SSDs Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 12/30] gfs2: Disable page faults during lockless buffered reads Sasha Levin
2022-04-07  1:11   ` [Cluster-devel] " Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 13/30] rtc: sun6i: Fix time overflow handling Sasha Levin
2022-04-07  1:11   ` Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 14/30] crypto: stm32 - fix reference leak in stm32_crc_remove Sasha Levin
2022-04-07  1:11   ` Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 15/30] crypto: x86/chacha20 - Avoid spurious jumps to other functions Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 16/30] ALSA: hda/realtek: Enable headset mic on Lenovo P360 Sasha Levin
2022-04-07  1:11   ` Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 17/30] s390/traps: improve panic message for translation-specification exception Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 18/30] s390/pci: improve zpci_dev reference counting Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 19/30] vhost_vdpa: don't setup irq offloading when irq_num < 0 Sasha Levin
2022-04-07  1:11   ` Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 20/30] tools/virtio: compile with -pthread Sasha Levin
2022-04-07  1:11   ` Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 21/30] nvmet: use a private workqueue instead of the system workqueue Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 22/30] nvme-multipath: fix hang when disk goes live over reconnect Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 23/30] rtc: mc146818-lib: Fix the AltCentury for AMD platforms Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 24/30] fs: fix an infinite loop in iomap_fiemap Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 25/30] MIPS: lantiq: check the return value of kzalloc() Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 26/30] drbd: remove usage of list iterator variable after loop Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 27/30] platform/chrome: cros_ec_debugfs: detach log reader wq from devm Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 28/30] ARM: 9191/1: arm/stacktrace, kasan: Silence KASAN warnings in unwind_frame() Sasha Levin
2022-04-07  1:11   ` Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 29/30] nilfs2: fix lockdep warnings in page operations for btree nodes Sasha Levin
2022-04-07  1:11 ` [PATCH AUTOSEL 5.16 30/30] nilfs2: fix lockdep warnings during disk space reclamation Sasha Levin
2022-04-07  1:11   ` Sasha Levin

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.