1
2
3
4
5
6
7
8
9
10
11
12#include <linux/cred.h>
13#include <linux/file.h>
14#include <linux/poll.h>
15#include <linux/sched.h>
16#include <linux/init.h>
17#include <linux/fs.h>
18#include <linux/mount.h>
19#include <linux/module.h>
20#include <linux/kernel.h>
21#include <linux/magic.h>
22#include <linux/anon_inodes.h>
23#include <linux/pseudo_fs.h>
24
25#include <linux/uaccess.h>
26
27static struct vfsmount *anon_inode_mnt __read_mostly;
28static struct inode *anon_inode_inode;
29
30
31
32
33static char *anon_inodefs_dname(struct dentry *dentry, char *buffer, int buflen)
34{
35 return dynamic_dname(dentry, buffer, buflen, "anon_inode:%s",
36 dentry->d_name.name);
37}
38
39static const struct dentry_operations anon_inodefs_dentry_operations = {
40 .d_dname = anon_inodefs_dname,
41};
42
43static int anon_inodefs_init_fs_context(struct fs_context *fc)
44{
45 struct pseudo_fs_context *ctx = init_pseudo(fc, ANON_INODE_FS_MAGIC);
46 if (!ctx)
47 return -ENOMEM;
48 ctx->dops = &anon_inodefs_dentry_operations;
49 return 0;
50}
51
52static struct file_system_type anon_inode_fs_type = {
53 .name = "anon_inodefs",
54 .init_fs_context = anon_inodefs_init_fs_context,
55 .kill_sb = kill_anon_super,
56};
57
58static struct inode *anon_inode_make_secure_inode(
59 const char *name,
60 const struct inode *context_inode)
61{
62 struct inode *inode;
63 const struct qstr qname = QSTR_INIT(name, strlen(name));
64 int error;
65
66 inode = alloc_anon_inode(anon_inode_mnt->mnt_sb);
67 if (IS_ERR(inode))
68 return inode;
69 inode->i_flags &= ~S_PRIVATE;
70 error = security_inode_init_security_anon(inode, &qname, context_inode);
71 if (error) {
72 iput(inode);
73 return ERR_PTR(error);
74 }
75 return inode;
76}
77
78static struct file *__anon_inode_getfile(const char *name,
79 const struct file_operations *fops,
80 void *priv, int flags,
81 const struct inode *context_inode,
82 bool secure)
83{
84 struct inode *inode;
85 struct file *file;
86
87 if (fops->owner && !try_module_get(fops->owner))
88 return ERR_PTR(-ENOENT);
89
90 if (secure) {
91 inode = anon_inode_make_secure_inode(name, context_inode);
92 if (IS_ERR(inode)) {
93 file = ERR_CAST(inode);
94 goto err;
95 }
96 } else {
97 inode = anon_inode_inode;
98 if (IS_ERR(inode)) {
99 file = ERR_PTR(-ENODEV);
100 goto err;
101 }
102
103
104
105
106 ihold(inode);
107 }
108
109 file = alloc_file_pseudo(inode, anon_inode_mnt, name,
110 flags & (O_ACCMODE | O_NONBLOCK), fops);
111 if (IS_ERR(file))
112 goto err_iput;
113
114 file->f_mapping = inode->i_mapping;
115
116 file->private_data = priv;
117
118 return file;
119
120err_iput:
121 iput(inode);
122err:
123 module_put(fops->owner);
124 return file;
125}
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143struct file *anon_inode_getfile(const char *name,
144 const struct file_operations *fops,
145 void *priv, int flags)
146{
147 return __anon_inode_getfile(name, fops, priv, flags, NULL, false);
148}
149EXPORT_SYMBOL_GPL(anon_inode_getfile);
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171struct file *anon_inode_getfile_secure(const char *name,
172 const struct file_operations *fops,
173 void *priv, int flags,
174 const struct inode *context_inode)
175{
176 return __anon_inode_getfile(name, fops, priv, flags,
177 context_inode, true);
178}
179
180static int __anon_inode_getfd(const char *name,
181 const struct file_operations *fops,
182 void *priv, int flags,
183 const struct inode *context_inode,
184 bool secure)
185{
186 int error, fd;
187 struct file *file;
188
189 error = get_unused_fd_flags(flags);
190 if (error < 0)
191 return error;
192 fd = error;
193
194 file = __anon_inode_getfile(name, fops, priv, flags, context_inode,
195 secure);
196 if (IS_ERR(file)) {
197 error = PTR_ERR(file);
198 goto err_put_unused_fd;
199 }
200 fd_install(fd, file);
201
202 return fd;
203
204err_put_unused_fd:
205 put_unused_fd(fd);
206 return error;
207}
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226int anon_inode_getfd(const char *name, const struct file_operations *fops,
227 void *priv, int flags)
228{
229 return __anon_inode_getfd(name, fops, priv, flags, NULL, false);
230}
231EXPORT_SYMBOL_GPL(anon_inode_getfd);
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249int anon_inode_getfd_secure(const char *name, const struct file_operations *fops,
250 void *priv, int flags,
251 const struct inode *context_inode)
252{
253 return __anon_inode_getfd(name, fops, priv, flags, context_inode, true);
254}
255EXPORT_SYMBOL_GPL(anon_inode_getfd_secure);
256
257static int __init anon_inode_init(void)
258{
259 anon_inode_mnt = kern_mount(&anon_inode_fs_type);
260 if (IS_ERR(anon_inode_mnt))
261 panic("anon_inode_init() kernel mount failed (%ld)\n", PTR_ERR(anon_inode_mnt));
262
263 anon_inode_inode = alloc_anon_inode(anon_inode_mnt->mnt_sb);
264 if (IS_ERR(anon_inode_inode))
265 panic("anon_inode_init() inode allocation failed (%ld)\n", PTR_ERR(anon_inode_inode));
266
267 return 0;
268}
269
270fs_initcall(anon_inode_init);
271
272