2 * linux/fs/read_write.c
4 * Copyright (C) 1991, 1992 Linus Torvalds
7 #include <linux/slab.h>
8 #include <linux/stat.h>
9 #include <linux/fcntl.h>
10 #include <linux/file.h>
11 #include <linux/uio.h>
12 #include <linux/smp_lock.h>
13 #include <linux/fsnotify.h>
14 #include <linux/security.h>
15 #include <linux/module.h>
16 #include <linux/syscalls.h>
17 #include <linux/pagemap.h>
18 #include <linux/splice.h>
19 #include "read_write.h"
21 #include <asm/uaccess.h>
22 #include <asm/unistd.h>
24 const struct file_operations generic_ro_fops = {
25 .llseek = generic_file_llseek,
27 .aio_read = generic_file_aio_read,
28 .mmap = generic_file_readonly_mmap,
29 .splice_read = generic_file_splice_read,
32 EXPORT_SYMBOL(generic_ro_fops);
35 * generic_file_llseek_unlocked - lockless generic llseek implementation
36 * @file: file structure to seek on
37 * @offset: file offset to seek to
38 * @origin: type of seek
40 * Updates the file offset to the value specified by @offset and @origin.
41 * Locking must be provided by the caller.
44 generic_file_llseek_unlocked(struct file *file, loff_t offset, int origin)
46 struct inode *inode = file->f_mapping->host;
50 offset += inode->i_size;
54 * Here we special-case the lseek(fd, 0, SEEK_CUR)
55 * position-querying operation. Avoid rewriting the "same"
56 * f_pos value back to the file because a concurrent read(),
57 * write() or lseek() might have altered it
61 offset += file->f_pos;
65 if (offset < 0 || offset > inode->i_sb->s_maxbytes)
68 /* Special lock needed here? */
69 if (offset != file->f_pos) {
76 EXPORT_SYMBOL(generic_file_llseek_unlocked);
79 * generic_file_llseek - generic llseek implementation for regular files
80 * @file: file structure to seek on
81 * @offset: file offset to seek to
82 * @origin: type of seek
84 * This is a generic implemenation of ->llseek useable for all normal local
85 * filesystems. It just updates the file offset to the value specified by
86 * @offset and @origin under i_mutex.
88 loff_t generic_file_llseek(struct file *file, loff_t offset, int origin)
92 mutex_lock(&file->f_dentry->d_inode->i_mutex);
93 rval = generic_file_llseek_unlocked(file, offset, origin);
94 mutex_unlock(&file->f_dentry->d_inode->i_mutex);
98 EXPORT_SYMBOL(generic_file_llseek);
100 loff_t no_llseek(struct file *file, loff_t offset, int origin)
104 EXPORT_SYMBOL(no_llseek);
106 loff_t default_llseek(struct file *file, loff_t offset, int origin)
113 offset += i_size_read(file->f_path.dentry->d_inode);
117 retval = file->f_pos;
120 offset += file->f_pos;
124 if (offset != file->f_pos) {
125 file->f_pos = offset;
134 EXPORT_SYMBOL(default_llseek);
136 loff_t vfs_llseek(struct file *file, loff_t offset, int origin)
138 loff_t (*fn)(struct file *, loff_t, int);
141 if (file->f_mode & FMODE_LSEEK) {
143 if (file->f_op && file->f_op->llseek)
144 fn = file->f_op->llseek;
146 return fn(file, offset, origin);
148 EXPORT_SYMBOL(vfs_llseek);
150 asmlinkage off_t sys_lseek(unsigned int fd, off_t offset, unsigned int origin)
157 file = fget_light(fd, &fput_needed);
162 if (origin <= SEEK_MAX) {
163 loff_t res = vfs_llseek(file, offset, origin);
165 if (res != (loff_t)retval)
166 retval = -EOVERFLOW; /* LFS: should only happen on 32 bit platforms */
168 fput_light(file, fput_needed);
173 #ifdef __ARCH_WANT_SYS_LLSEEK
174 asmlinkage long sys_llseek(unsigned int fd, unsigned long offset_high,
175 unsigned long offset_low, loff_t __user * result,
184 file = fget_light(fd, &fput_needed);
189 if (origin > SEEK_MAX)
192 offset = vfs_llseek(file, ((loff_t) offset_high << 32) | offset_low,
195 retval = (int)offset;
198 if (!copy_to_user(result, &offset, sizeof(offset)))
202 fput_light(file, fput_needed);
209 * rw_verify_area doesn't like huge counts. We limit
210 * them to something that fits in "int" so that others
211 * won't have to do range checks all the time.
213 #define MAX_RW_COUNT (INT_MAX & PAGE_CACHE_MASK)
215 int rw_verify_area(int read_write, struct file *file, loff_t *ppos, size_t count)
219 int retval = -EINVAL;
221 inode = file->f_path.dentry->d_inode;
222 if (unlikely((ssize_t) count < 0))
225 if (unlikely((pos < 0) || (loff_t) (pos + count) < 0))
228 if (unlikely(inode->i_flock && mandatory_lock(inode))) {
229 retval = locks_mandatory_area(
230 read_write == READ ? FLOCK_VERIFY_READ : FLOCK_VERIFY_WRITE,
231 inode, file, pos, count);
235 retval = security_file_permission(file,
236 read_write == READ ? MAY_READ : MAY_WRITE);
239 return count > MAX_RW_COUNT ? MAX_RW_COUNT : count;
242 static void wait_on_retry_sync_kiocb(struct kiocb *iocb)
244 set_current_state(TASK_UNINTERRUPTIBLE);
245 if (!kiocbIsKicked(iocb))
248 kiocbClearKicked(iocb);
249 __set_current_state(TASK_RUNNING);
252 ssize_t do_sync_read(struct file *filp, char __user *buf, size_t len, loff_t *ppos)
254 struct iovec iov = { .iov_base = buf, .iov_len = len };
258 init_sync_kiocb(&kiocb, filp);
259 kiocb.ki_pos = *ppos;
263 ret = filp->f_op->aio_read(&kiocb, &iov, 1, kiocb.ki_pos);
264 if (ret != -EIOCBRETRY)
266 wait_on_retry_sync_kiocb(&kiocb);
269 if (-EIOCBQUEUED == ret)
270 ret = wait_on_sync_kiocb(&kiocb);
271 *ppos = kiocb.ki_pos;
275 EXPORT_SYMBOL(do_sync_read);
277 ssize_t vfs_read(struct file *file, char __user *buf, size_t count, loff_t *pos)
281 if (!(file->f_mode & FMODE_READ))
283 if (!file->f_op || (!file->f_op->read && !file->f_op->aio_read))
285 if (unlikely(!access_ok(VERIFY_WRITE, buf, count)))
288 ret = rw_verify_area(READ, file, pos, count);
291 if (file->f_op->read)
292 ret = file->f_op->read(file, buf, count, pos);
294 ret = do_sync_read(file, buf, count, pos);
296 fsnotify_access(file->f_path.dentry);
297 add_rchar(current, ret);
305 EXPORT_SYMBOL(vfs_read);
307 ssize_t do_sync_write(struct file *filp, const char __user *buf, size_t len, loff_t *ppos)
309 struct iovec iov = { .iov_base = (void __user *)buf, .iov_len = len };
313 init_sync_kiocb(&kiocb, filp);
314 kiocb.ki_pos = *ppos;
318 ret = filp->f_op->aio_write(&kiocb, &iov, 1, kiocb.ki_pos);
319 if (ret != -EIOCBRETRY)
321 wait_on_retry_sync_kiocb(&kiocb);
324 if (-EIOCBQUEUED == ret)
325 ret = wait_on_sync_kiocb(&kiocb);
326 *ppos = kiocb.ki_pos;
330 EXPORT_SYMBOL(do_sync_write);
332 ssize_t vfs_write(struct file *file, const char __user *buf, size_t count, loff_t *pos)
336 if (!(file->f_mode & FMODE_WRITE))
338 if (!file->f_op || (!file->f_op->write && !file->f_op->aio_write))
340 if (unlikely(!access_ok(VERIFY_READ, buf, count)))
343 ret = rw_verify_area(WRITE, file, pos, count);
346 if (file->f_op->write)
347 ret = file->f_op->write(file, buf, count, pos);
349 ret = do_sync_write(file, buf, count, pos);
351 fsnotify_modify(file->f_path.dentry);
352 add_wchar(current, ret);
360 EXPORT_SYMBOL(vfs_write);
362 static inline loff_t file_pos_read(struct file *file)
367 static inline void file_pos_write(struct file *file, loff_t pos)
372 asmlinkage ssize_t sys_read(unsigned int fd, char __user * buf, size_t count)
375 ssize_t ret = -EBADF;
378 file = fget_light(fd, &fput_needed);
380 loff_t pos = file_pos_read(file);
381 ret = vfs_read(file, buf, count, &pos);
382 file_pos_write(file, pos);
383 fput_light(file, fput_needed);
389 asmlinkage ssize_t sys_write(unsigned int fd, const char __user * buf, size_t count)
392 ssize_t ret = -EBADF;
395 file = fget_light(fd, &fput_needed);
397 loff_t pos = file_pos_read(file);
398 ret = vfs_write(file, buf, count, &pos);
399 file_pos_write(file, pos);
400 fput_light(file, fput_needed);
406 asmlinkage ssize_t sys_pread64(unsigned int fd, char __user *buf,
407 size_t count, loff_t pos)
410 ssize_t ret = -EBADF;
416 file = fget_light(fd, &fput_needed);
419 if (file->f_mode & FMODE_PREAD)
420 ret = vfs_read(file, buf, count, &pos);
421 fput_light(file, fput_needed);
427 asmlinkage ssize_t sys_pwrite64(unsigned int fd, const char __user *buf,
428 size_t count, loff_t pos)
431 ssize_t ret = -EBADF;
437 file = fget_light(fd, &fput_needed);
440 if (file->f_mode & FMODE_PWRITE)
441 ret = vfs_write(file, buf, count, &pos);
442 fput_light(file, fput_needed);
449 * Reduce an iovec's length in-place. Return the resulting number of segments
451 unsigned long iov_shorten(struct iovec *iov, unsigned long nr_segs, size_t to)
453 unsigned long seg = 0;
456 while (seg < nr_segs) {
458 if (len + iov->iov_len >= to) {
459 iov->iov_len = to - len;
467 EXPORT_SYMBOL(iov_shorten);
469 ssize_t do_sync_readv_writev(struct file *filp, const struct iovec *iov,
470 unsigned long nr_segs, size_t len, loff_t *ppos, iov_fn_t fn)
475 init_sync_kiocb(&kiocb, filp);
476 kiocb.ki_pos = *ppos;
478 kiocb.ki_nbytes = len;
481 ret = fn(&kiocb, iov, nr_segs, kiocb.ki_pos);
482 if (ret != -EIOCBRETRY)
484 wait_on_retry_sync_kiocb(&kiocb);
487 if (ret == -EIOCBQUEUED)
488 ret = wait_on_sync_kiocb(&kiocb);
489 *ppos = kiocb.ki_pos;
493 /* Do it by hand, with file-ops */
494 ssize_t do_loop_readv_writev(struct file *filp, struct iovec *iov,
495 unsigned long nr_segs, loff_t *ppos, io_fn_t fn)
497 struct iovec *vector = iov;
500 while (nr_segs > 0) {
505 base = vector->iov_base;
506 len = vector->iov_len;
510 nr = fn(filp, base, len, ppos);
525 /* A write operation does a read from user space and vice versa */
526 #define vrfy_dir(type) ((type) == READ ? VERIFY_WRITE : VERIFY_READ)
528 ssize_t rw_copy_check_uvector(int type, const struct iovec __user * uvector,
529 unsigned long nr_segs, unsigned long fast_segs,
530 struct iovec *fast_pointer,
531 struct iovec **ret_pointer)
535 struct iovec *iov = fast_pointer;
538 * SuS says "The readv() function *may* fail if the iovcnt argument
539 * was less than or equal to 0, or greater than {IOV_MAX}. Linux has
540 * traditionally returned zero for zero segments, so...
548 * First get the "struct iovec" from user memory and
549 * verify all the pointers
551 if (nr_segs > UIO_MAXIOV) {
555 if (nr_segs > fast_segs) {
556 iov = kmalloc(nr_segs*sizeof(struct iovec), GFP_KERNEL);
562 if (copy_from_user(iov, uvector, nr_segs*sizeof(*uvector))) {
568 * According to the Single Unix Specification we should return EINVAL
569 * if an element length is < 0 when cast to ssize_t or if the
570 * total length would overflow the ssize_t return value of the
574 for (seg = 0; seg < nr_segs; seg++) {
575 void __user *buf = iov[seg].iov_base;
576 ssize_t len = (ssize_t)iov[seg].iov_len;
578 /* see if we we're about to use an invalid len or if
579 * it's about to overflow ssize_t */
580 if (len < 0 || (ret + len < ret)) {
584 if (unlikely(!access_ok(vrfy_dir(type), buf, len))) {
596 static ssize_t do_readv_writev(int type, struct file *file,
597 const struct iovec __user * uvector,
598 unsigned long nr_segs, loff_t *pos)
601 struct iovec iovstack[UIO_FASTIOV];
602 struct iovec *iov = iovstack;
612 ret = rw_copy_check_uvector(type, uvector, nr_segs,
613 ARRAY_SIZE(iovstack), iovstack, &iov);
618 ret = rw_verify_area(type, file, pos, tot_len);
624 fn = file->f_op->read;
625 fnv = file->f_op->aio_read;
627 fn = (io_fn_t)file->f_op->write;
628 fnv = file->f_op->aio_write;
632 ret = do_sync_readv_writev(file, iov, nr_segs, tot_len,
635 ret = do_loop_readv_writev(file, iov, nr_segs, pos, fn);
640 if ((ret + (type == READ)) > 0) {
642 fsnotify_access(file->f_path.dentry);
644 fsnotify_modify(file->f_path.dentry);
649 ssize_t vfs_readv(struct file *file, const struct iovec __user *vec,
650 unsigned long vlen, loff_t *pos)
652 if (!(file->f_mode & FMODE_READ))
654 if (!file->f_op || (!file->f_op->aio_read && !file->f_op->read))
657 return do_readv_writev(READ, file, vec, vlen, pos);
660 EXPORT_SYMBOL(vfs_readv);
662 ssize_t vfs_writev(struct file *file, const struct iovec __user *vec,
663 unsigned long vlen, loff_t *pos)
665 if (!(file->f_mode & FMODE_WRITE))
667 if (!file->f_op || (!file->f_op->aio_write && !file->f_op->write))
670 return do_readv_writev(WRITE, file, vec, vlen, pos);
673 EXPORT_SYMBOL(vfs_writev);
676 sys_readv(unsigned long fd, const struct iovec __user *vec, unsigned long vlen)
679 ssize_t ret = -EBADF;
682 file = fget_light(fd, &fput_needed);
684 loff_t pos = file_pos_read(file);
685 ret = vfs_readv(file, vec, vlen, &pos);
686 file_pos_write(file, pos);
687 fput_light(file, fput_needed);
691 add_rchar(current, ret);
697 sys_writev(unsigned long fd, const struct iovec __user *vec, unsigned long vlen)
700 ssize_t ret = -EBADF;
703 file = fget_light(fd, &fput_needed);
705 loff_t pos = file_pos_read(file);
706 ret = vfs_writev(file, vec, vlen, &pos);
707 file_pos_write(file, pos);
708 fput_light(file, fput_needed);
712 add_wchar(current, ret);
717 static ssize_t do_sendfile(int out_fd, int in_fd, loff_t *ppos,
718 size_t count, loff_t max)
720 struct file * in_file, * out_file;
721 struct inode * in_inode, * out_inode;
724 int fput_needed_in, fput_needed_out, fl;
727 * Get input file, and verify that it is ok..
730 in_file = fget_light(in_fd, &fput_needed_in);
733 if (!(in_file->f_mode & FMODE_READ))
736 in_inode = in_file->f_path.dentry->d_inode;
739 if (!in_file->f_op || !in_file->f_op->splice_read)
743 ppos = &in_file->f_pos;
745 if (!(in_file->f_mode & FMODE_PREAD))
747 retval = rw_verify_area(READ, in_file, ppos, count);
753 * Get output file, and verify that it is ok..
756 out_file = fget_light(out_fd, &fput_needed_out);
759 if (!(out_file->f_mode & FMODE_WRITE))
762 if (!out_file->f_op || !out_file->f_op->sendpage)
764 out_inode = out_file->f_path.dentry->d_inode;
765 retval = rw_verify_area(WRITE, out_file, &out_file->f_pos, count);
771 max = min(in_inode->i_sb->s_maxbytes, out_inode->i_sb->s_maxbytes);
775 if (unlikely(pos < 0))
777 if (unlikely(pos + count > max)) {
787 * We need to debate whether we can enable this or not. The
788 * man page documents EAGAIN return for the output at least,
789 * and the application is arguably buggy if it doesn't expect
790 * EAGAIN on a non-blocking file descriptor.
792 if (in_file->f_flags & O_NONBLOCK)
793 fl = SPLICE_F_NONBLOCK;
795 retval = do_splice_direct(in_file, ppos, out_file, count, fl);
798 add_rchar(current, retval);
799 add_wchar(current, retval);
808 fput_light(out_file, fput_needed_out);
810 fput_light(in_file, fput_needed_in);
815 asmlinkage ssize_t sys_sendfile(int out_fd, int in_fd, off_t __user *offset, size_t count)
822 if (unlikely(get_user(off, offset)))
825 ret = do_sendfile(out_fd, in_fd, &pos, count, MAX_NON_LFS);
826 if (unlikely(put_user(pos, offset)))
831 return do_sendfile(out_fd, in_fd, NULL, count, 0);
834 asmlinkage ssize_t sys_sendfile64(int out_fd, int in_fd, loff_t __user *offset, size_t count)
840 if (unlikely(copy_from_user(&pos, offset, sizeof(loff_t))))
842 ret = do_sendfile(out_fd, in_fd, &pos, count, 0);
843 if (unlikely(put_user(pos, offset)))
848 return do_sendfile(out_fd, in_fd, NULL, count, 0);