blob: aa8fc4371e9305b79d91805df7d15a19a956b1b1 [file] [log] [blame]
Greg Kroah-Hartmanb2441312017-11-01 15:07:57 +01001// SPDX-License-Identifier: GPL-2.0
Thomas Grafbfa83a92005-11-10 02:25:51 +01002/*
3 * NETLINK Netlink attributes
4 *
5 * Authors: Thomas Graf <tgraf@suug.ch>
6 * Alexey Kuznetsov <kuznet@ms2.inr.ac.ru>
7 */
8
Paul Gortmaker8bc3bcc2011-11-16 21:29:17 -05009#include <linux/export.h>
Thomas Grafbfa83a92005-11-10 02:25:51 +010010#include <linux/kernel.h>
11#include <linux/errno.h>
12#include <linux/jiffies.h>
Eric Dumazet539ca5d2023-01-19 11:01:50 +000013#include <linux/nospec.h>
Thomas Grafbfa83a92005-11-10 02:25:51 +010014#include <linux/skbuff.h>
15#include <linux/string.h>
16#include <linux/types.h>
17#include <net/netlink.h>
18
David Ahern6e237d02017-12-06 20:09:12 -080019/* For these data types, attribute length should be exactly the given
20 * size. However, to maintain compatibility with broken commands, if the
21 * attribute length does not match the expected size a warning is emitted
22 * to the user that the command is sending invalid data and needs to be fixed.
23 */
David Ahern28033ae2017-11-07 21:59:40 -080024static const u8 nla_attr_len[NLA_TYPE_MAX+1] = {
Thomas Grafbfa83a92005-11-10 02:25:51 +010025 [NLA_U8] = sizeof(u8),
26 [NLA_U16] = sizeof(u16),
27 [NLA_U32] = sizeof(u32),
28 [NLA_U64] = sizeof(u64),
Julian Anastasov9eca2eb2012-08-25 22:47:57 +000029 [NLA_S8] = sizeof(s8),
30 [NLA_S16] = sizeof(s16),
31 [NLA_S32] = sizeof(s32),
32 [NLA_S64] = sizeof(s64),
Thomas Grafbfa83a92005-11-10 02:25:51 +010033};
34
David Ahern28033ae2017-11-07 21:59:40 -080035static const u8 nla_attr_minlen[NLA_TYPE_MAX+1] = {
David Ahern6e237d02017-12-06 20:09:12 -080036 [NLA_U8] = sizeof(u8),
37 [NLA_U16] = sizeof(u16),
38 [NLA_U32] = sizeof(u32),
39 [NLA_U64] = sizeof(u64),
David Ahern28033ae2017-11-07 21:59:40 -080040 [NLA_MSECS] = sizeof(u64),
41 [NLA_NESTED] = NLA_HDRLEN,
David Ahern6e237d02017-12-06 20:09:12 -080042 [NLA_S8] = sizeof(s8),
43 [NLA_S16] = sizeof(s16),
44 [NLA_S32] = sizeof(s32),
45 [NLA_S64] = sizeof(s64),
David Ahern28033ae2017-11-07 21:59:40 -080046};
47
Johannes Berg7690aa12020-04-30 22:13:06 +020048/*
49 * Nested policies might refer back to the original
50 * policy in some cases, and userspace could try to
51 * abuse that and recurse by nesting in the right
52 * ways. Limit recursion to avoid this problem.
53 */
54#define MAX_POLICY_RECURSION_DEPTH 10
55
56static int __nla_validate_parse(const struct nlattr *head, int len, int maxtype,
57 const struct nla_policy *policy,
58 unsigned int validate,
59 struct netlink_ext_ack *extack,
60 struct nlattr **tb, unsigned int depth);
61
Jamal Hadi Salim64c83d82017-07-30 13:24:49 -040062static int validate_nla_bitfield32(const struct nlattr *nla,
Johannes Berg47a14942020-04-30 22:13:05 +020063 const u32 valid_flags_mask)
Jamal Hadi Salim64c83d82017-07-30 13:24:49 -040064{
65 const struct nla_bitfield32 *bf = nla_data(nla);
Jamal Hadi Salim64c83d82017-07-30 13:24:49 -040066
Johannes Berg48fde902018-09-26 11:15:31 +020067 if (!valid_flags_mask)
Jamal Hadi Salim64c83d82017-07-30 13:24:49 -040068 return -EINVAL;
69
70 /*disallow invalid bit selector */
Johannes Berg47a14942020-04-30 22:13:05 +020071 if (bf->selector & ~valid_flags_mask)
Jamal Hadi Salim64c83d82017-07-30 13:24:49 -040072 return -EINVAL;
73
74 /*disallow invalid bit values */
Johannes Berg47a14942020-04-30 22:13:05 +020075 if (bf->value & ~valid_flags_mask)
Jamal Hadi Salim64c83d82017-07-30 13:24:49 -040076 return -EINVAL;
77
78 /*disallow valid bit values that are not selected*/
79 if (bf->value & ~bf->selector)
80 return -EINVAL;
81
82 return 0;
83}
84
Johannes Berg1501d132018-09-26 11:15:34 +020085static int nla_validate_array(const struct nlattr *head, int len, int maxtype,
86 const struct nla_policy *policy,
Johannes Berg8cb08172019-04-26 14:07:28 +020087 struct netlink_ext_ack *extack,
Johannes Berg7690aa12020-04-30 22:13:06 +020088 unsigned int validate, unsigned int depth)
Johannes Berg1501d132018-09-26 11:15:34 +020089{
90 const struct nlattr *entry;
91 int rem;
92
93 nla_for_each_attr(entry, head, len, rem) {
94 int ret;
95
96 if (nla_len(entry) == 0)
97 continue;
98
99 if (nla_len(entry) < NLA_HDRLEN) {
Johannes Berg44f36252020-10-08 12:45:17 +0200100 NL_SET_ERR_MSG_ATTR_POL(extack, entry, policy,
101 "Array element too short");
Johannes Berg1501d132018-09-26 11:15:34 +0200102 return -ERANGE;
103 }
104
Johannes Berg7690aa12020-04-30 22:13:06 +0200105 ret = __nla_validate_parse(nla_data(entry), nla_len(entry),
106 maxtype, policy, validate, extack,
107 NULL, depth + 1);
Johannes Berg1501d132018-09-26 11:15:34 +0200108 if (ret < 0)
109 return ret;
110 }
111
112 return 0;
113}
114
Johannes Berg2c28ae42020-04-30 22:13:11 +0200115void nla_get_range_unsigned(const struct nla_policy *pt,
116 struct netlink_range_validation *range)
Johannes Berg3e48be02018-09-27 11:28:35 +0200117{
Johannes Bergd06a09b2020-04-30 22:13:08 +0200118 WARN_ON_ONCE(pt->validation_type != NLA_VALIDATE_RANGE_PTR &&
119 (pt->min < 0 || pt->max < 0));
120
Johannes Berg2c28ae42020-04-30 22:13:11 +0200121 range->min = 0;
122
123 switch (pt->type) {
124 case NLA_U8:
125 range->max = U8_MAX;
126 break;
127 case NLA_U16:
Johannes Berg8aa26c52020-08-18 10:17:33 +0200128 case NLA_BINARY:
Johannes Berg2c28ae42020-04-30 22:13:11 +0200129 range->max = U16_MAX;
130 break;
131 case NLA_U32:
132 range->max = U32_MAX;
133 break;
134 case NLA_U64:
135 case NLA_MSECS:
136 range->max = U64_MAX;
137 break;
138 default:
139 WARN_ON_ONCE(1);
140 return;
141 }
142
Johannes Bergd06a09b2020-04-30 22:13:08 +0200143 switch (pt->validation_type) {
144 case NLA_VALIDATE_RANGE:
Johannes Berg8aa26c52020-08-18 10:17:33 +0200145 case NLA_VALIDATE_RANGE_WARN_TOO_LONG:
Johannes Bergd06a09b2020-04-30 22:13:08 +0200146 range->min = pt->min;
147 range->max = pt->max;
148 break;
149 case NLA_VALIDATE_RANGE_PTR:
Johannes Berg2c28ae42020-04-30 22:13:11 +0200150 *range = *pt->range;
Johannes Bergd06a09b2020-04-30 22:13:08 +0200151 break;
152 case NLA_VALIDATE_MIN:
153 range->min = pt->min;
154 break;
155 case NLA_VALIDATE_MAX:
156 range->max = pt->max;
157 break;
Johannes Berg2c28ae42020-04-30 22:13:11 +0200158 default:
159 break;
Johannes Bergd06a09b2020-04-30 22:13:08 +0200160 }
Johannes Berg2c28ae42020-04-30 22:13:11 +0200161}
162
Johannes Berg8aa26c52020-08-18 10:17:33 +0200163static int nla_validate_range_unsigned(const struct nla_policy *pt,
164 const struct nlattr *nla,
165 struct netlink_ext_ack *extack,
166 unsigned int validate)
Johannes Berg2c28ae42020-04-30 22:13:11 +0200167{
168 struct netlink_range_validation range;
169 u64 value;
Johannes Berg3e48be02018-09-27 11:28:35 +0200170
171 switch (pt->type) {
172 case NLA_U8:
173 value = nla_get_u8(nla);
174 break;
175 case NLA_U16:
176 value = nla_get_u16(nla);
177 break;
178 case NLA_U32:
179 value = nla_get_u32(nla);
180 break;
Johannes Bergd06a09b2020-04-30 22:13:08 +0200181 case NLA_U64:
Johannes Bergda4063b2020-04-30 22:13:09 +0200182 case NLA_MSECS:
Johannes Bergd06a09b2020-04-30 22:13:08 +0200183 value = nla_get_u64(nla);
184 break;
Johannes Berg8aa26c52020-08-18 10:17:33 +0200185 case NLA_BINARY:
186 value = nla_len(nla);
187 break;
Johannes Bergd06a09b2020-04-30 22:13:08 +0200188 default:
189 return -EINVAL;
190 }
191
Johannes Berg2c28ae42020-04-30 22:13:11 +0200192 nla_get_range_unsigned(pt, &range);
193
Johannes Berg8aa26c52020-08-18 10:17:33 +0200194 if (pt->validation_type == NLA_VALIDATE_RANGE_WARN_TOO_LONG &&
195 pt->type == NLA_BINARY && value > range.max) {
196 pr_warn_ratelimited("netlink: '%s': attribute type %d has an invalid length.\n",
197 current->comm, pt->type);
198 if (validate & NL_VALIDATE_STRICT_ATTRS) {
Johannes Berg44f36252020-10-08 12:45:17 +0200199 NL_SET_ERR_MSG_ATTR_POL(extack, nla, pt,
200 "invalid attribute length");
Johannes Berg8aa26c52020-08-18 10:17:33 +0200201 return -EINVAL;
202 }
203
204 /* this assumes min <= max (don't validate against min) */
205 return 0;
206 }
207
Johannes Berg2c28ae42020-04-30 22:13:11 +0200208 if (value < range.min || value > range.max) {
Johannes Berg8aa26c52020-08-18 10:17:33 +0200209 bool binary = pt->type == NLA_BINARY;
210
211 if (binary)
Johannes Berg44f36252020-10-08 12:45:17 +0200212 NL_SET_ERR_MSG_ATTR_POL(extack, nla, pt,
213 "binary attribute size out of range");
Johannes Berg8aa26c52020-08-18 10:17:33 +0200214 else
Johannes Berg44f36252020-10-08 12:45:17 +0200215 NL_SET_ERR_MSG_ATTR_POL(extack, nla, pt,
216 "integer out of range");
Johannes Berg8aa26c52020-08-18 10:17:33 +0200217
Johannes Bergd06a09b2020-04-30 22:13:08 +0200218 return -ERANGE;
219 }
220
221 return 0;
222}
223
Johannes Berg2c28ae42020-04-30 22:13:11 +0200224void nla_get_range_signed(const struct nla_policy *pt,
225 struct netlink_range_validation_signed *range)
Johannes Bergd06a09b2020-04-30 22:13:08 +0200226{
Johannes Berg2c28ae42020-04-30 22:13:11 +0200227 switch (pt->type) {
228 case NLA_S8:
229 range->min = S8_MIN;
230 range->max = S8_MAX;
231 break;
232 case NLA_S16:
233 range->min = S16_MIN;
234 range->max = S16_MAX;
235 break;
236 case NLA_S32:
237 range->min = S32_MIN;
238 range->max = S32_MAX;
239 break;
240 case NLA_S64:
241 range->min = S64_MIN;
242 range->max = S64_MAX;
243 break;
244 default:
245 WARN_ON_ONCE(1);
246 return;
247 }
Johannes Bergd06a09b2020-04-30 22:13:08 +0200248
249 switch (pt->validation_type) {
250 case NLA_VALIDATE_RANGE:
251 range->min = pt->min;
252 range->max = pt->max;
253 break;
254 case NLA_VALIDATE_RANGE_PTR:
Johannes Berg2c28ae42020-04-30 22:13:11 +0200255 *range = *pt->range_signed;
Johannes Bergd06a09b2020-04-30 22:13:08 +0200256 break;
257 case NLA_VALIDATE_MIN:
258 range->min = pt->min;
259 break;
260 case NLA_VALIDATE_MAX:
261 range->max = pt->max;
262 break;
Johannes Berg2c28ae42020-04-30 22:13:11 +0200263 default:
264 break;
Johannes Bergd06a09b2020-04-30 22:13:08 +0200265 }
Johannes Berg2c28ae42020-04-30 22:13:11 +0200266}
267
268static int nla_validate_int_range_signed(const struct nla_policy *pt,
269 const struct nlattr *nla,
270 struct netlink_ext_ack *extack)
271{
272 struct netlink_range_validation_signed range;
273 s64 value;
Johannes Bergd06a09b2020-04-30 22:13:08 +0200274
275 switch (pt->type) {
Johannes Berg3e48be02018-09-27 11:28:35 +0200276 case NLA_S8:
277 value = nla_get_s8(nla);
278 break;
279 case NLA_S16:
280 value = nla_get_s16(nla);
281 break;
282 case NLA_S32:
283 value = nla_get_s32(nla);
284 break;
285 case NLA_S64:
286 value = nla_get_s64(nla);
287 break;
Johannes Berg3e48be02018-09-27 11:28:35 +0200288 default:
Johannes Berg3e48be02018-09-27 11:28:35 +0200289 return -EINVAL;
290 }
291
Johannes Berg2c28ae42020-04-30 22:13:11 +0200292 nla_get_range_signed(pt, &range);
293
294 if (value < range.min || value > range.max) {
Johannes Berg44f36252020-10-08 12:45:17 +0200295 NL_SET_ERR_MSG_ATTR_POL(extack, nla, pt,
296 "integer out of range");
Johannes Berg3e48be02018-09-27 11:28:35 +0200297 return -ERANGE;
298 }
299
300 return 0;
301}
302
Johannes Bergd06a09b2020-04-30 22:13:08 +0200303static int nla_validate_int_range(const struct nla_policy *pt,
304 const struct nlattr *nla,
Johannes Berg8aa26c52020-08-18 10:17:33 +0200305 struct netlink_ext_ack *extack,
306 unsigned int validate)
Johannes Bergd06a09b2020-04-30 22:13:08 +0200307{
308 switch (pt->type) {
309 case NLA_U8:
310 case NLA_U16:
311 case NLA_U32:
312 case NLA_U64:
Johannes Bergda4063b2020-04-30 22:13:09 +0200313 case NLA_MSECS:
Johannes Berg8aa26c52020-08-18 10:17:33 +0200314 case NLA_BINARY:
315 return nla_validate_range_unsigned(pt, nla, extack, validate);
Johannes Bergd06a09b2020-04-30 22:13:08 +0200316 case NLA_S8:
317 case NLA_S16:
318 case NLA_S32:
319 case NLA_S64:
320 return nla_validate_int_range_signed(pt, nla, extack);
321 default:
322 WARN_ON(1);
323 return -EINVAL;
324 }
325}
326
Jakub Kicinskibdbb4e22020-10-05 15:07:38 -0700327static int nla_validate_mask(const struct nla_policy *pt,
328 const struct nlattr *nla,
329 struct netlink_ext_ack *extack)
330{
331 u64 value;
332
333 switch (pt->type) {
334 case NLA_U8:
335 value = nla_get_u8(nla);
336 break;
337 case NLA_U16:
338 value = nla_get_u16(nla);
339 break;
340 case NLA_U32:
341 value = nla_get_u32(nla);
342 break;
343 case NLA_U64:
344 value = nla_get_u64(nla);
345 break;
346 default:
347 return -EINVAL;
348 }
349
350 if (value & ~(u64)pt->mask) {
351 NL_SET_ERR_MSG_ATTR(extack, nla, "reserved bit set");
352 return -EINVAL;
353 }
354
355 return 0;
356}
357
Jan Engelhardt36546542010-11-16 09:52:32 -0800358static int validate_nla(const struct nlattr *nla, int maxtype,
Johannes Berg8cb08172019-04-26 14:07:28 +0200359 const struct nla_policy *policy, unsigned int validate,
Johannes Berg7690aa12020-04-30 22:13:06 +0200360 struct netlink_ext_ack *extack, unsigned int depth)
Thomas Grafbfa83a92005-11-10 02:25:51 +0100361{
Johannes Berg56738f42019-04-26 14:07:30 +0200362 u16 strict_start_type = policy[0].strict_start_type;
Patrick McHardyef7c79e2007-06-05 12:38:30 -0700363 const struct nla_policy *pt;
Thomas Graf8f4c1f92007-09-12 14:44:36 +0200364 int minlen = 0, attrlen = nla_len(nla), type = nla_type(nla);
Johannes Bergc29f1842018-09-26 11:15:32 +0200365 int err = -ERANGE;
Thomas Grafbfa83a92005-11-10 02:25:51 +0100366
Johannes Berg56738f42019-04-26 14:07:30 +0200367 if (strict_start_type && type >= strict_start_type)
368 validate |= NL_VALIDATE_STRICT;
369
Thomas Graf8f4c1f92007-09-12 14:44:36 +0200370 if (type <= 0 || type > maxtype)
Thomas Grafbfa83a92005-11-10 02:25:51 +0100371 return 0;
372
Eric Dumazet539ca5d2023-01-19 11:01:50 +0000373 type = array_index_nospec(type, maxtype + 1);
Thomas Graf8f4c1f92007-09-12 14:44:36 +0200374 pt = &policy[type];
Thomas Grafbfa83a92005-11-10 02:25:51 +0100375
376 BUG_ON(pt->type > NLA_TYPE_MAX);
377
Johannes Berg8aa26c52020-08-18 10:17:33 +0200378 if (nla_attr_len[pt->type] && attrlen != nla_attr_len[pt->type]) {
David Ahern6e237d02017-12-06 20:09:12 -0800379 pr_warn_ratelimited("netlink: '%s': attribute type %d has an invalid length.\n",
380 current->comm, type);
Johannes Berg8cb08172019-04-26 14:07:28 +0200381 if (validate & NL_VALIDATE_STRICT_ATTRS) {
Johannes Berg44f36252020-10-08 12:45:17 +0200382 NL_SET_ERR_MSG_ATTR_POL(extack, nla, pt,
383 "invalid attribute length");
Johannes Berg8cb08172019-04-26 14:07:28 +0200384 return -EINVAL;
385 }
David Ahern28033ae2017-11-07 21:59:40 -0800386 }
387
Michal Kubecekb424e432019-05-02 16:15:10 +0200388 if (validate & NL_VALIDATE_NESTED) {
389 if ((pt->type == NLA_NESTED || pt->type == NLA_NESTED_ARRAY) &&
390 !(nla->nla_type & NLA_F_NESTED)) {
Johannes Berg44f36252020-10-08 12:45:17 +0200391 NL_SET_ERR_MSG_ATTR_POL(extack, nla, pt,
392 "NLA_F_NESTED is missing");
Michal Kubecekb424e432019-05-02 16:15:10 +0200393 return -EINVAL;
394 }
395 if (pt->type != NLA_NESTED && pt->type != NLA_NESTED_ARRAY &&
396 pt->type != NLA_UNSPEC && (nla->nla_type & NLA_F_NESTED)) {
Johannes Berg44f36252020-10-08 12:45:17 +0200397 NL_SET_ERR_MSG_ATTR_POL(extack, nla, pt,
398 "NLA_F_NESTED not expected");
Michal Kubecekb424e432019-05-02 16:15:10 +0200399 return -EINVAL;
400 }
401 }
402
Thomas Grafa5531a52006-08-26 20:11:47 -0700403 switch (pt->type) {
Johannes Berg568b7422018-09-17 11:57:28 +0200404 case NLA_REJECT:
Johannes Berg47a14942020-04-30 22:13:05 +0200405 if (extack && pt->reject_message) {
Johannes Bergc29f1842018-09-26 11:15:32 +0200406 NL_SET_BAD_ATTR(extack, nla);
Johannes Berg47a14942020-04-30 22:13:05 +0200407 extack->_msg = pt->reject_message;
Johannes Bergc29f1842018-09-26 11:15:32 +0200408 return -EINVAL;
409 }
410 err = -EINVAL;
411 goto out_err;
Johannes Berg568b7422018-09-17 11:57:28 +0200412
Thomas Grafa5531a52006-08-26 20:11:47 -0700413 case NLA_FLAG:
414 if (attrlen > 0)
Johannes Bergc29f1842018-09-26 11:15:32 +0200415 goto out_err;
Thomas Grafa5531a52006-08-26 20:11:47 -0700416 break;
Thomas Grafbfa83a92005-11-10 02:25:51 +0100417
Jamal Hadi Salim64c83d82017-07-30 13:24:49 -0400418 case NLA_BITFIELD32:
419 if (attrlen != sizeof(struct nla_bitfield32))
Johannes Bergc29f1842018-09-26 11:15:32 +0200420 goto out_err;
Jamal Hadi Salim64c83d82017-07-30 13:24:49 -0400421
Johannes Berg47a14942020-04-30 22:13:05 +0200422 err = validate_nla_bitfield32(nla, pt->bitfield32_valid);
Johannes Bergc29f1842018-09-26 11:15:32 +0200423 if (err)
424 goto out_err;
425 break;
Jamal Hadi Salim64c83d82017-07-30 13:24:49 -0400426
Thomas Grafa5531a52006-08-26 20:11:47 -0700427 case NLA_NUL_STRING:
428 if (pt->len)
429 minlen = min_t(int, attrlen, pt->len + 1);
430 else
431 minlen = attrlen;
Thomas Grafbfa83a92005-11-10 02:25:51 +0100432
Johannes Bergc29f1842018-09-26 11:15:32 +0200433 if (!minlen || memchr(nla_data(nla), '\0', minlen) == NULL) {
434 err = -EINVAL;
435 goto out_err;
436 }
Thomas Grafa5531a52006-08-26 20:11:47 -0700437 /* fall through */
438
439 case NLA_STRING:
440 if (attrlen < 1)
Johannes Bergc29f1842018-09-26 11:15:32 +0200441 goto out_err;
Thomas Grafa5531a52006-08-26 20:11:47 -0700442
443 if (pt->len) {
444 char *buf = nla_data(nla);
445
446 if (buf[attrlen - 1] == '\0')
447 attrlen--;
448
449 if (attrlen > pt->len)
Johannes Bergc29f1842018-09-26 11:15:32 +0200450 goto out_err;
Thomas Grafa5531a52006-08-26 20:11:47 -0700451 }
452 break;
453
Johannes Bergd30045a2007-03-23 11:37:48 -0700454 case NLA_BINARY:
455 if (pt->len && attrlen > pt->len)
Johannes Bergc29f1842018-09-26 11:15:32 +0200456 goto out_err;
Johannes Bergd30045a2007-03-23 11:37:48 -0700457 break;
458
Patrick McHardyea5693c2008-11-28 03:05:19 -0800459 case NLA_NESTED:
460 /* a nested attributes is allowed to be empty; if its not,
461 * it must have a size of at least NLA_HDRLEN.
462 */
463 if (attrlen == 0)
464 break;
Johannes Berg9a659a32018-09-26 11:15:33 +0200465 if (attrlen < NLA_HDRLEN)
466 goto out_err;
Johannes Berg47a14942020-04-30 22:13:05 +0200467 if (pt->nested_policy) {
Johannes Berg7690aa12020-04-30 22:13:06 +0200468 err = __nla_validate_parse(nla_data(nla), nla_len(nla),
469 pt->len, pt->nested_policy,
470 validate, extack, NULL,
471 depth + 1);
Johannes Berg9a659a32018-09-26 11:15:33 +0200472 if (err < 0) {
473 /*
474 * return directly to preserve the inner
475 * error message/attribute pointer
476 */
477 return err;
478 }
479 }
480 break;
Johannes Berg1501d132018-09-26 11:15:34 +0200481 case NLA_NESTED_ARRAY:
482 /* a nested array attribute is allowed to be empty; if its not,
483 * it must have a size of at least NLA_HDRLEN.
484 */
485 if (attrlen == 0)
486 break;
487 if (attrlen < NLA_HDRLEN)
488 goto out_err;
Johannes Berg47a14942020-04-30 22:13:05 +0200489 if (pt->nested_policy) {
Johannes Berg1501d132018-09-26 11:15:34 +0200490 int err;
491
492 err = nla_validate_array(nla_data(nla), nla_len(nla),
Johannes Berg47a14942020-04-30 22:13:05 +0200493 pt->len, pt->nested_policy,
Johannes Berg7690aa12020-04-30 22:13:06 +0200494 extack, validate, depth);
Johannes Berg1501d132018-09-26 11:15:34 +0200495 if (err < 0) {
496 /*
497 * return directly to preserve the inner
498 * error message/attribute pointer
499 */
500 return err;
501 }
502 }
503 break;
Johannes Berg6f455f52019-04-26 14:07:27 +0200504
505 case NLA_UNSPEC:
Johannes Berg8cb08172019-04-26 14:07:28 +0200506 if (validate & NL_VALIDATE_UNSPEC) {
507 NL_SET_ERR_MSG_ATTR(extack, nla,
508 "Unsupported attribute");
509 return -EINVAL;
510 }
Johannes Berg6f455f52019-04-26 14:07:27 +0200511 if (attrlen < pt->len)
512 goto out_err;
513 break;
514
Thomas Grafa5531a52006-08-26 20:11:47 -0700515 default:
516 if (pt->len)
517 minlen = pt->len;
Johannes Berg6f455f52019-04-26 14:07:27 +0200518 else
Thomas Grafa5531a52006-08-26 20:11:47 -0700519 minlen = nla_attr_minlen[pt->type];
520
521 if (attrlen < minlen)
Johannes Bergc29f1842018-09-26 11:15:32 +0200522 goto out_err;
Thomas Grafa5531a52006-08-26 20:11:47 -0700523 }
Thomas Grafbfa83a92005-11-10 02:25:51 +0100524
Johannes Berg3e48be02018-09-27 11:28:35 +0200525 /* further validation */
526 switch (pt->validation_type) {
527 case NLA_VALIDATE_NONE:
528 /* nothing to do */
529 break;
Johannes Bergd06a09b2020-04-30 22:13:08 +0200530 case NLA_VALIDATE_RANGE_PTR:
Johannes Berg3e48be02018-09-27 11:28:35 +0200531 case NLA_VALIDATE_RANGE:
Johannes Berg8aa26c52020-08-18 10:17:33 +0200532 case NLA_VALIDATE_RANGE_WARN_TOO_LONG:
Johannes Berg3e48be02018-09-27 11:28:35 +0200533 case NLA_VALIDATE_MIN:
534 case NLA_VALIDATE_MAX:
Johannes Berg8aa26c52020-08-18 10:17:33 +0200535 err = nla_validate_int_range(pt, nla, extack, validate);
Johannes Berg3e48be02018-09-27 11:28:35 +0200536 if (err)
537 return err;
538 break;
Jakub Kicinskibdbb4e22020-10-05 15:07:38 -0700539 case NLA_VALIDATE_MASK:
540 err = nla_validate_mask(pt, nla, extack);
541 if (err)
542 return err;
543 break;
Johannes Berg33188bd2018-09-27 11:28:36 +0200544 case NLA_VALIDATE_FUNCTION:
545 if (pt->validate) {
546 err = pt->validate(nla, extack);
547 if (err)
548 return err;
549 }
550 break;
Johannes Berg3e48be02018-09-27 11:28:35 +0200551 }
552
Thomas Grafbfa83a92005-11-10 02:25:51 +0100553 return 0;
Johannes Bergc29f1842018-09-26 11:15:32 +0200554out_err:
Johannes Berg44f36252020-10-08 12:45:17 +0200555 NL_SET_ERR_MSG_ATTR_POL(extack, nla, pt,
556 "Attribute failed policy validation");
Johannes Bergc29f1842018-09-26 11:15:32 +0200557 return err;
Thomas Grafbfa83a92005-11-10 02:25:51 +0100558}
559
Johannes Berg8cb08172019-04-26 14:07:28 +0200560static int __nla_validate_parse(const struct nlattr *head, int len, int maxtype,
561 const struct nla_policy *policy,
562 unsigned int validate,
563 struct netlink_ext_ack *extack,
Johannes Berg7690aa12020-04-30 22:13:06 +0200564 struct nlattr **tb, unsigned int depth)
Thomas Grafbfa83a92005-11-10 02:25:51 +0100565{
Jan Engelhardt36546542010-11-16 09:52:32 -0800566 const struct nlattr *nla;
Johannes Bergfceb6432017-04-12 14:34:07 +0200567 int rem;
Thomas Grafbfa83a92005-11-10 02:25:51 +0100568
Johannes Berg7690aa12020-04-30 22:13:06 +0200569 if (depth >= MAX_POLICY_RECURSION_DEPTH) {
570 NL_SET_ERR_MSG(extack,
571 "allowed policy recursion depth exceeded");
572 return -EINVAL;
573 }
574
Johannes Berg8cb08172019-04-26 14:07:28 +0200575 if (tb)
576 memset(tb, 0, sizeof(struct nlattr *) * (maxtype + 1));
Johannes Bergfceb6432017-04-12 14:34:07 +0200577
Johannes Berg8cb08172019-04-26 14:07:28 +0200578 nla_for_each_attr(nla, head, len, rem) {
579 u16 type = nla_type(nla);
580
581 if (type == 0 || type > maxtype) {
582 if (validate & NL_VALIDATE_MAXTYPE) {
Michal Kubecekd54a16b2019-05-02 16:15:10 +0200583 NL_SET_ERR_MSG_ATTR(extack, nla,
584 "Unknown attribute type");
Johannes Berg8cb08172019-04-26 14:07:28 +0200585 return -EINVAL;
586 }
587 continue;
588 }
Eric Dumazet539ca5d2023-01-19 11:01:50 +0000589 type = array_index_nospec(type, maxtype + 1);
Johannes Berg8cb08172019-04-26 14:07:28 +0200590 if (policy) {
591 int err = validate_nla(nla, maxtype, policy,
Johannes Berg7690aa12020-04-30 22:13:06 +0200592 validate, extack, depth);
Johannes Berg8cb08172019-04-26 14:07:28 +0200593
594 if (err < 0)
595 return err;
596 }
597
598 if (tb)
599 tb[type] = (struct nlattr *)nla;
600 }
601
602 if (unlikely(rem > 0)) {
603 pr_warn_ratelimited("netlink: %d bytes leftover after parsing attributes in process `%s'.\n",
604 rem, current->comm);
605 NL_SET_ERR_MSG(extack, "bytes leftover after parsing attributes");
606 if (validate & NL_VALIDATE_TRAILING)
607 return -EINVAL;
Thomas Grafbfa83a92005-11-10 02:25:51 +0100608 }
609
Johannes Bergfceb6432017-04-12 14:34:07 +0200610 return 0;
Thomas Grafbfa83a92005-11-10 02:25:51 +0100611}
Johannes Berg8cb08172019-04-26 14:07:28 +0200612
613/**
614 * __nla_validate - Validate a stream of attributes
615 * @head: head of attribute stream
616 * @len: length of attribute stream
617 * @maxtype: maximum attribute type to be expected
618 * @policy: validation policy
619 * @validate: validation strictness
620 * @extack: extended ACK report struct
621 *
622 * Validates all attributes in the specified attribute stream against the
623 * specified policy. Validation depends on the validate flags passed, see
624 * &enum netlink_validation for more details on that.
625 * See documenation of struct nla_policy for more details.
626 *
627 * Returns 0 on success or a negative error code.
628 */
629int __nla_validate(const struct nlattr *head, int len, int maxtype,
630 const struct nla_policy *policy, unsigned int validate,
631 struct netlink_ext_ack *extack)
632{
633 return __nla_validate_parse(head, len, maxtype, policy, validate,
Johannes Berg7690aa12020-04-30 22:13:06 +0200634 extack, NULL, 0);
Johannes Berg8cb08172019-04-26 14:07:28 +0200635}
636EXPORT_SYMBOL(__nla_validate);
Thomas Grafbfa83a92005-11-10 02:25:51 +0100637
638/**
Holger Eitzenbergere487eb992009-03-25 18:26:30 +0100639 * nla_policy_len - Determin the max. length of a policy
640 * @policy: policy to use
641 * @n: number of policies
642 *
643 * Determines the max. length of the policy. It is currently used
644 * to allocated Netlink buffers roughly the size of the actual
645 * message.
646 *
647 * Returns 0 on success or a negative error code.
648 */
649int
650nla_policy_len(const struct nla_policy *p, int n)
651{
652 int i, len = 0;
653
Lars Ellenberge3fa3af2011-02-28 12:38:25 -0800654 for (i = 0; i < n; i++, p++) {
Holger Eitzenbergere487eb992009-03-25 18:26:30 +0100655 if (p->len)
656 len += nla_total_size(p->len);
David Ahern28033ae2017-11-07 21:59:40 -0800657 else if (nla_attr_len[p->type])
658 len += nla_total_size(nla_attr_len[p->type]);
Holger Eitzenbergere487eb992009-03-25 18:26:30 +0100659 else if (nla_attr_minlen[p->type])
660 len += nla_total_size(nla_attr_minlen[p->type]);
661 }
662
663 return len;
664}
Fabian Frederick6d6a1382014-06-04 16:11:57 -0700665EXPORT_SYMBOL(nla_policy_len);
Holger Eitzenbergere487eb992009-03-25 18:26:30 +0100666
667/**
Johannes Berg8cb08172019-04-26 14:07:28 +0200668 * __nla_parse - Parse a stream of attributes into a tb buffer
Thomas Grafbfa83a92005-11-10 02:25:51 +0100669 * @tb: destination array with maxtype+1 elements
670 * @maxtype: maximum attribute type to be expected
671 * @head: head of attribute stream
672 * @len: length of attribute stream
Julius Volz10b595a2008-06-27 20:02:14 -0700673 * @policy: validation policy
Johannes Berg8cb08172019-04-26 14:07:28 +0200674 * @validate: validation strictness
675 * @extack: extended ACK pointer
Thomas Grafbfa83a92005-11-10 02:25:51 +0100676 *
677 * Parses a stream of attributes and stores a pointer to each attribute in
Johannes Berg8cb08172019-04-26 14:07:28 +0200678 * the tb array accessible via the attribute type.
679 * Validation is controlled by the @validate parameter.
Thomas Grafbfa83a92005-11-10 02:25:51 +0100680 *
681 * Returns 0 on success or a negative error code.
682 */
Johannes Berg8cb08172019-04-26 14:07:28 +0200683int __nla_parse(struct nlattr **tb, int maxtype,
684 const struct nlattr *head, int len,
685 const struct nla_policy *policy, unsigned int validate,
686 struct netlink_ext_ack *extack)
Thomas Grafbfa83a92005-11-10 02:25:51 +0100687{
Johannes Berg8cb08172019-04-26 14:07:28 +0200688 return __nla_validate_parse(head, len, maxtype, policy, validate,
Johannes Berg7690aa12020-04-30 22:13:06 +0200689 extack, tb, 0);
Thomas Grafbfa83a92005-11-10 02:25:51 +0100690}
Johannes Berg8cb08172019-04-26 14:07:28 +0200691EXPORT_SYMBOL(__nla_parse);
David Aherna5f6cba2018-10-07 20:16:25 -0700692
Thomas Grafbfa83a92005-11-10 02:25:51 +0100693/**
694 * nla_find - Find a specific attribute in a stream of attributes
695 * @head: head of attribute stream
696 * @len: length of attribute stream
697 * @attrtype: type of attribute to look for
698 *
699 * Returns the first attribute in the stream matching the specified type.
700 */
Jan Engelhardt36546542010-11-16 09:52:32 -0800701struct nlattr *nla_find(const struct nlattr *head, int len, int attrtype)
Thomas Grafbfa83a92005-11-10 02:25:51 +0100702{
Jan Engelhardt36546542010-11-16 09:52:32 -0800703 const struct nlattr *nla;
Thomas Grafbfa83a92005-11-10 02:25:51 +0100704 int rem;
705
706 nla_for_each_attr(nla, head, len, rem)
Thomas Graf8f4c1f92007-09-12 14:44:36 +0200707 if (nla_type(nla) == attrtype)
Jan Engelhardt36546542010-11-16 09:52:32 -0800708 return (struct nlattr *)nla;
Thomas Grafbfa83a92005-11-10 02:25:51 +0100709
710 return NULL;
711}
Fabian Frederick6d6a1382014-06-04 16:11:57 -0700712EXPORT_SYMBOL(nla_find);
Thomas Grafbfa83a92005-11-10 02:25:51 +0100713
714/**
715 * nla_strlcpy - Copy string attribute payload into a sized buffer
716 * @dst: where to copy the string to
Julius Volz10b595a2008-06-27 20:02:14 -0700717 * @nla: attribute to copy the string from
Thomas Grafbfa83a92005-11-10 02:25:51 +0100718 * @dstsize: size of destination buffer
719 *
720 * Copies at most dstsize - 1 bytes into the destination buffer.
721 * The result is always a valid NUL-terminated string. Unlike
722 * strlcpy the destination buffer is always padded out.
723 *
724 * Returns the length of the source buffer.
725 */
726size_t nla_strlcpy(char *dst, const struct nlattr *nla, size_t dstsize)
727{
728 size_t srclen = nla_len(nla);
729 char *src = nla_data(nla);
730
731 if (srclen > 0 && src[srclen - 1] == '\0')
732 srclen--;
733
734 if (dstsize > 0) {
735 size_t len = (srclen >= dstsize) ? dstsize - 1 : srclen;
736
737 memset(dst, 0, dstsize);
738 memcpy(dst, src, len);
739 }
740
741 return srclen;
742}
Fabian Frederick6d6a1382014-06-04 16:11:57 -0700743EXPORT_SYMBOL(nla_strlcpy);
Thomas Grafbfa83a92005-11-10 02:25:51 +0100744
745/**
Phil Sutter2cf0c8b2017-07-27 16:56:40 +0200746 * nla_strdup - Copy string attribute payload into a newly allocated buffer
747 * @nla: attribute to copy the string from
748 * @flags: the type of memory to allocate (see kmalloc).
749 *
750 * Returns a pointer to the allocated buffer or NULL on error.
751 */
752char *nla_strdup(const struct nlattr *nla, gfp_t flags)
753{
754 size_t srclen = nla_len(nla);
755 char *src = nla_data(nla), *dst;
756
757 if (srclen > 0 && src[srclen - 1] == '\0')
758 srclen--;
759
760 dst = kmalloc(srclen + 1, flags);
761 if (dst != NULL) {
762 memcpy(dst, src, srclen);
763 dst[srclen] = '\0';
764 }
765 return dst;
766}
767EXPORT_SYMBOL(nla_strdup);
768
769/**
Thomas Grafbfa83a92005-11-10 02:25:51 +0100770 * nla_memcpy - Copy a netlink attribute into another memory area
771 * @dest: where to copy to memcpy
772 * @src: netlink attribute to copy from
773 * @count: size of the destination area
774 *
775 * Note: The number of bytes copied is limited by the length of
776 * attribute's payload. memcpy
777 *
778 * Returns the number of bytes copied.
779 */
Patrick McHardyb057efd2008-10-28 11:59:11 -0700780int nla_memcpy(void *dest, const struct nlattr *src, int count)
Thomas Grafbfa83a92005-11-10 02:25:51 +0100781{
782 int minlen = min_t(int, count, nla_len(src));
783
784 memcpy(dest, nla_data(src), minlen);
Jiri Benc5899f042015-03-29 16:05:28 +0200785 if (count > minlen)
786 memset(dest + minlen, 0, count - minlen);
Thomas Grafbfa83a92005-11-10 02:25:51 +0100787
788 return minlen;
789}
Fabian Frederick6d6a1382014-06-04 16:11:57 -0700790EXPORT_SYMBOL(nla_memcpy);
Thomas Grafbfa83a92005-11-10 02:25:51 +0100791
792/**
793 * nla_memcmp - Compare an attribute with sized memory area
794 * @nla: netlink attribute
795 * @data: memory area
796 * @size: size of memory area
797 */
798int nla_memcmp(const struct nlattr *nla, const void *data,
799 size_t size)
800{
801 int d = nla_len(nla) - size;
802
803 if (d == 0)
804 d = memcmp(nla_data(nla), data, size);
805
806 return d;
807}
Fabian Frederick6d6a1382014-06-04 16:11:57 -0700808EXPORT_SYMBOL(nla_memcmp);
Thomas Grafbfa83a92005-11-10 02:25:51 +0100809
810/**
811 * nla_strcmp - Compare a string attribute against a string
812 * @nla: netlink string attribute
813 * @str: another string
814 */
815int nla_strcmp(const struct nlattr *nla, const char *str)
816{
Pablo Neira8b7b9322014-04-01 19:38:44 +0200817 int len = strlen(str);
818 char *buf = nla_data(nla);
819 int attrlen = nla_len(nla);
820 int d;
Thomas Grafbfa83a92005-11-10 02:25:51 +0100821
Maciej Żenczykowskid6c635a2021-05-05 09:58:31 -0700822 while (attrlen > 0 && buf[attrlen - 1] == '\0')
Pablo Neira8b7b9322014-04-01 19:38:44 +0200823 attrlen--;
824
825 d = attrlen - len;
Thomas Grafbfa83a92005-11-10 02:25:51 +0100826 if (d == 0)
827 d = memcmp(nla_data(nla), str, len);
828
829 return d;
830}
Fabian Frederick6d6a1382014-06-04 16:11:57 -0700831EXPORT_SYMBOL(nla_strcmp);
Thomas Grafbfa83a92005-11-10 02:25:51 +0100832
Herbert Xu90800212009-03-11 23:18:32 +0800833#ifdef CONFIG_NET
Thomas Grafbfa83a92005-11-10 02:25:51 +0100834/**
835 * __nla_reserve - reserve room for attribute on the skb
836 * @skb: socket buffer to reserve room on
837 * @attrtype: attribute type
838 * @attrlen: length of attribute payload
839 *
840 * Adds a netlink attribute header to a socket buffer and reserves
841 * room for the payload but does not copy it.
842 *
843 * The caller is responsible to ensure that the skb provides enough
844 * tailroom for the attribute header and payload.
845 */
846struct nlattr *__nla_reserve(struct sk_buff *skb, int attrtype, int attrlen)
847{
848 struct nlattr *nla;
849
Johannes Berg4df864c2017-06-16 14:29:21 +0200850 nla = skb_put(skb, nla_total_size(attrlen));
Thomas Grafbfa83a92005-11-10 02:25:51 +0100851 nla->nla_type = attrtype;
852 nla->nla_len = nla_attr_size(attrlen);
853
854 memset((unsigned char *) nla + nla->nla_len, 0, nla_padlen(attrlen));
855
856 return nla;
857}
Herbert Xu90800212009-03-11 23:18:32 +0800858EXPORT_SYMBOL(__nla_reserve);
Thomas Grafbfa83a92005-11-10 02:25:51 +0100859
860/**
Nicolas Dichtel089bf1a2016-04-21 18:58:24 +0200861 * __nla_reserve_64bit - reserve room for attribute on the skb and align it
862 * @skb: socket buffer to reserve room on
863 * @attrtype: attribute type
864 * @attrlen: length of attribute payload
Nicolas Dichtel11a99572016-04-22 17:31:16 +0200865 * @padattr: attribute type for the padding
Nicolas Dichtel089bf1a2016-04-21 18:58:24 +0200866 *
867 * Adds a netlink attribute header to a socket buffer and reserves
868 * room for the payload but does not copy it. It also ensure that this
Nicolas Dichtel11a99572016-04-22 17:31:16 +0200869 * attribute will have a 64-bit aligned nla_data() area.
Nicolas Dichtel089bf1a2016-04-21 18:58:24 +0200870 *
871 * The caller is responsible to ensure that the skb provides enough
872 * tailroom for the attribute header and payload.
873 */
874struct nlattr *__nla_reserve_64bit(struct sk_buff *skb, int attrtype,
875 int attrlen, int padattr)
876{
Miaohe Lin4718a472020-08-24 23:25:17 -0400877 nla_align_64bit(skb, padattr);
Nicolas Dichtel089bf1a2016-04-21 18:58:24 +0200878
879 return __nla_reserve(skb, attrtype, attrlen);
880}
881EXPORT_SYMBOL(__nla_reserve_64bit);
882
883/**
Thomas Graffe4944e2006-08-04 23:03:05 -0700884 * __nla_reserve_nohdr - reserve room for attribute without header
885 * @skb: socket buffer to reserve room on
886 * @attrlen: length of attribute payload
887 *
888 * Reserves room for attribute payload without a header.
889 *
890 * The caller is responsible to ensure that the skb provides enough
891 * tailroom for the payload.
892 */
893void *__nla_reserve_nohdr(struct sk_buff *skb, int attrlen)
894{
yuan linyub952f4d2017-06-18 22:52:04 +0800895 return skb_put_zero(skb, NLA_ALIGN(attrlen));
Thomas Graffe4944e2006-08-04 23:03:05 -0700896}
Herbert Xu90800212009-03-11 23:18:32 +0800897EXPORT_SYMBOL(__nla_reserve_nohdr);
Thomas Graffe4944e2006-08-04 23:03:05 -0700898
899/**
Thomas Grafbfa83a92005-11-10 02:25:51 +0100900 * nla_reserve - reserve room for attribute on the skb
901 * @skb: socket buffer to reserve room on
902 * @attrtype: attribute type
903 * @attrlen: length of attribute payload
904 *
905 * Adds a netlink attribute header to a socket buffer and reserves
906 * room for the payload but does not copy it.
907 *
908 * Returns NULL if the tailroom of the skb is insufficient to store
909 * the attribute header and payload.
910 */
911struct nlattr *nla_reserve(struct sk_buff *skb, int attrtype, int attrlen)
912{
913 if (unlikely(skb_tailroom(skb) < nla_total_size(attrlen)))
914 return NULL;
915
916 return __nla_reserve(skb, attrtype, attrlen);
917}
Herbert Xu90800212009-03-11 23:18:32 +0800918EXPORT_SYMBOL(nla_reserve);
Thomas Grafbfa83a92005-11-10 02:25:51 +0100919
920/**
Nicolas Dichtel089bf1a2016-04-21 18:58:24 +0200921 * nla_reserve_64bit - reserve room for attribute on the skb and align it
922 * @skb: socket buffer to reserve room on
923 * @attrtype: attribute type
924 * @attrlen: length of attribute payload
Nicolas Dichtel11a99572016-04-22 17:31:16 +0200925 * @padattr: attribute type for the padding
Nicolas Dichtel089bf1a2016-04-21 18:58:24 +0200926 *
927 * Adds a netlink attribute header to a socket buffer and reserves
928 * room for the payload but does not copy it. It also ensure that this
Nicolas Dichtel11a99572016-04-22 17:31:16 +0200929 * attribute will have a 64-bit aligned nla_data() area.
Nicolas Dichtel089bf1a2016-04-21 18:58:24 +0200930 *
931 * Returns NULL if the tailroom of the skb is insufficient to store
932 * the attribute header and payload.
933 */
934struct nlattr *nla_reserve_64bit(struct sk_buff *skb, int attrtype, int attrlen,
935 int padattr)
936{
937 size_t len;
938
939 if (nla_need_padding_for_64bit(skb))
940 len = nla_total_size_64bit(attrlen);
941 else
942 len = nla_total_size(attrlen);
943 if (unlikely(skb_tailroom(skb) < len))
944 return NULL;
945
946 return __nla_reserve_64bit(skb, attrtype, attrlen, padattr);
947}
948EXPORT_SYMBOL(nla_reserve_64bit);
949
950/**
Julius Volz10b595a2008-06-27 20:02:14 -0700951 * nla_reserve_nohdr - reserve room for attribute without header
Thomas Graffe4944e2006-08-04 23:03:05 -0700952 * @skb: socket buffer to reserve room on
Julius Volz10b595a2008-06-27 20:02:14 -0700953 * @attrlen: length of attribute payload
Thomas Graffe4944e2006-08-04 23:03:05 -0700954 *
955 * Reserves room for attribute payload without a header.
956 *
957 * Returns NULL if the tailroom of the skb is insufficient to store
958 * the attribute payload.
959 */
960void *nla_reserve_nohdr(struct sk_buff *skb, int attrlen)
961{
962 if (unlikely(skb_tailroom(skb) < NLA_ALIGN(attrlen)))
963 return NULL;
964
965 return __nla_reserve_nohdr(skb, attrlen);
966}
Herbert Xu90800212009-03-11 23:18:32 +0800967EXPORT_SYMBOL(nla_reserve_nohdr);
Thomas Graffe4944e2006-08-04 23:03:05 -0700968
969/**
Thomas Grafbfa83a92005-11-10 02:25:51 +0100970 * __nla_put - Add a netlink attribute to a socket buffer
971 * @skb: socket buffer to add attribute to
972 * @attrtype: attribute type
973 * @attrlen: length of attribute payload
974 * @data: head of attribute payload
975 *
976 * The caller is responsible to ensure that the skb provides enough
977 * tailroom for the attribute header and payload.
978 */
979void __nla_put(struct sk_buff *skb, int attrtype, int attrlen,
980 const void *data)
981{
982 struct nlattr *nla;
983
984 nla = __nla_reserve(skb, attrtype, attrlen);
985 memcpy(nla_data(nla), data, attrlen);
986}
Herbert Xu90800212009-03-11 23:18:32 +0800987EXPORT_SYMBOL(__nla_put);
Thomas Grafbfa83a92005-11-10 02:25:51 +0100988
Thomas Graffe4944e2006-08-04 23:03:05 -0700989/**
Nicolas Dichtel089bf1a2016-04-21 18:58:24 +0200990 * __nla_put_64bit - Add a netlink attribute to a socket buffer and align it
991 * @skb: socket buffer to add attribute to
992 * @attrtype: attribute type
993 * @attrlen: length of attribute payload
994 * @data: head of attribute payload
Nicolas Dichtel11a99572016-04-22 17:31:16 +0200995 * @padattr: attribute type for the padding
Nicolas Dichtel089bf1a2016-04-21 18:58:24 +0200996 *
997 * The caller is responsible to ensure that the skb provides enough
998 * tailroom for the attribute header and payload.
999 */
1000void __nla_put_64bit(struct sk_buff *skb, int attrtype, int attrlen,
1001 const void *data, int padattr)
1002{
1003 struct nlattr *nla;
1004
1005 nla = __nla_reserve_64bit(skb, attrtype, attrlen, padattr);
1006 memcpy(nla_data(nla), data, attrlen);
1007}
1008EXPORT_SYMBOL(__nla_put_64bit);
1009
1010/**
Thomas Graffe4944e2006-08-04 23:03:05 -07001011 * __nla_put_nohdr - Add a netlink attribute without header
1012 * @skb: socket buffer to add attribute to
1013 * @attrlen: length of attribute payload
1014 * @data: head of attribute payload
1015 *
1016 * The caller is responsible to ensure that the skb provides enough
1017 * tailroom for the attribute payload.
1018 */
1019void __nla_put_nohdr(struct sk_buff *skb, int attrlen, const void *data)
1020{
1021 void *start;
1022
1023 start = __nla_reserve_nohdr(skb, attrlen);
1024 memcpy(start, data, attrlen);
1025}
Herbert Xu90800212009-03-11 23:18:32 +08001026EXPORT_SYMBOL(__nla_put_nohdr);
Thomas Grafbfa83a92005-11-10 02:25:51 +01001027
1028/**
1029 * nla_put - Add a netlink attribute to a socket buffer
1030 * @skb: socket buffer to add attribute to
1031 * @attrtype: attribute type
1032 * @attrlen: length of attribute payload
1033 * @data: head of attribute payload
1034 *
Thomas Grafbc3ed282008-06-03 16:36:54 -07001035 * Returns -EMSGSIZE if the tailroom of the skb is insufficient to store
Thomas Grafbfa83a92005-11-10 02:25:51 +01001036 * the attribute header and payload.
1037 */
1038int nla_put(struct sk_buff *skb, int attrtype, int attrlen, const void *data)
1039{
1040 if (unlikely(skb_tailroom(skb) < nla_total_size(attrlen)))
Thomas Grafbc3ed282008-06-03 16:36:54 -07001041 return -EMSGSIZE;
Thomas Grafbfa83a92005-11-10 02:25:51 +01001042
1043 __nla_put(skb, attrtype, attrlen, data);
1044 return 0;
1045}
Herbert Xu90800212009-03-11 23:18:32 +08001046EXPORT_SYMBOL(nla_put);
Thomas Grafbfa83a92005-11-10 02:25:51 +01001047
Thomas Graffe4944e2006-08-04 23:03:05 -07001048/**
Nicolas Dichtel089bf1a2016-04-21 18:58:24 +02001049 * nla_put_64bit - Add a netlink attribute to a socket buffer and align it
1050 * @skb: socket buffer to add attribute to
1051 * @attrtype: attribute type
1052 * @attrlen: length of attribute payload
1053 * @data: head of attribute payload
Nicolas Dichtel11a99572016-04-22 17:31:16 +02001054 * @padattr: attribute type for the padding
Nicolas Dichtel089bf1a2016-04-21 18:58:24 +02001055 *
1056 * Returns -EMSGSIZE if the tailroom of the skb is insufficient to store
1057 * the attribute header and payload.
1058 */
1059int nla_put_64bit(struct sk_buff *skb, int attrtype, int attrlen,
1060 const void *data, int padattr)
1061{
1062 size_t len;
1063
1064 if (nla_need_padding_for_64bit(skb))
1065 len = nla_total_size_64bit(attrlen);
1066 else
1067 len = nla_total_size(attrlen);
1068 if (unlikely(skb_tailroom(skb) < len))
1069 return -EMSGSIZE;
1070
1071 __nla_put_64bit(skb, attrtype, attrlen, data, padattr);
1072 return 0;
1073}
1074EXPORT_SYMBOL(nla_put_64bit);
1075
1076/**
Thomas Graffe4944e2006-08-04 23:03:05 -07001077 * nla_put_nohdr - Add a netlink attribute without header
1078 * @skb: socket buffer to add attribute to
1079 * @attrlen: length of attribute payload
1080 * @data: head of attribute payload
1081 *
Thomas Grafbc3ed282008-06-03 16:36:54 -07001082 * Returns -EMSGSIZE if the tailroom of the skb is insufficient to store
Thomas Graffe4944e2006-08-04 23:03:05 -07001083 * the attribute payload.
1084 */
1085int nla_put_nohdr(struct sk_buff *skb, int attrlen, const void *data)
1086{
1087 if (unlikely(skb_tailroom(skb) < NLA_ALIGN(attrlen)))
Thomas Grafbc3ed282008-06-03 16:36:54 -07001088 return -EMSGSIZE;
Thomas Graffe4944e2006-08-04 23:03:05 -07001089
1090 __nla_put_nohdr(skb, attrlen, data);
1091 return 0;
1092}
Herbert Xu90800212009-03-11 23:18:32 +08001093EXPORT_SYMBOL(nla_put_nohdr);
Thomas Grafbfa83a92005-11-10 02:25:51 +01001094
Patrick McHardy01480e12008-01-22 22:10:59 -08001095/**
1096 * nla_append - Add a netlink attribute without header or padding
1097 * @skb: socket buffer to add attribute to
1098 * @attrlen: length of attribute payload
1099 * @data: head of attribute payload
1100 *
Thomas Grafbc3ed282008-06-03 16:36:54 -07001101 * Returns -EMSGSIZE if the tailroom of the skb is insufficient to store
Patrick McHardy01480e12008-01-22 22:10:59 -08001102 * the attribute payload.
1103 */
1104int nla_append(struct sk_buff *skb, int attrlen, const void *data)
1105{
1106 if (unlikely(skb_tailroom(skb) < NLA_ALIGN(attrlen)))
Thomas Grafbc3ed282008-06-03 16:36:54 -07001107 return -EMSGSIZE;
Patrick McHardy01480e12008-01-22 22:10:59 -08001108
Johannes Berg59ae1d12017-06-16 14:29:20 +02001109 skb_put_data(skb, data, attrlen);
Patrick McHardy01480e12008-01-22 22:10:59 -08001110 return 0;
1111}
Herbert Xu90800212009-03-11 23:18:32 +08001112EXPORT_SYMBOL(nla_append);
1113#endif