<!-- 
RSS generated by JIRA (9.4.14#940014-sha1:734e6822bbf0d45eff9af51f82432957f73aa32c) at Sat Feb 10 02:15:59 UTC 2024

It is possible to restrict the fields that are returned in this document by specifying the 'field' parameter in your request.
For example, to request only the issue key and summary append 'field=key&field=summary' to the URL of your request.
-->
<rss version="0.92" >
<channel>
    <title>Whamcloud Community JIRA</title>
    <link>https://jira.whamcloud.com</link>
    <description>This file is an XML representation of an issue</description>
    <language>en-us</language>    <build-info>
        <version>9.4.14</version>
        <build-number>940014</build-number>
        <build-date>05-12-2023</build-date>
    </build-info>


<item>
            <title>[LU-8258] Unsafe userspace address access from proc handler in nodemap code</title>
                <link>https://jira.whamcloud.com/browse/LU-8258</link>
                <project id="10000" key="LU">Lustre</project>
                    <description>&lt;p&gt;Patch &lt;a href=&quot;http://review.whamcloud.com/18783&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;http://review.whamcloud.com/18783&lt;/a&gt; added this bit of code:&lt;/p&gt;

&lt;div class=&quot;code panel&quot; style=&quot;border-width: 1px;&quot;&gt;&lt;div class=&quot;codeContent panelContent&quot;&gt;
&lt;pre class=&quot;code-java&quot;&gt;nodemap_fileset_seq_write(struct file *file,
                                      &lt;span class=&quot;code-keyword&quot;&gt;const&lt;/span&gt; &lt;span class=&quot;code-object&quot;&gt;char&lt;/span&gt; __user *buffer,
                                      size_t count, loff_t *off)
{
        struct seq_file *m = file-&amp;gt;private_data;
        &lt;span class=&quot;code-object&quot;&gt;int&lt;/span&gt; rc = 0;

        &lt;span class=&quot;code-keyword&quot;&gt;if&lt;/span&gt; (count &amp;gt; 0)
                rc = nodemap_set_fileset(m-&amp;gt;&lt;span class=&quot;code-keyword&quot;&gt;private&lt;/span&gt;, buffer);

        &lt;span class=&quot;code-keyword&quot;&gt;if&lt;/span&gt; (rc != 0)
                &lt;span class=&quot;code-keyword&quot;&gt;return&lt;/span&gt; -EINVAL;

        &lt;span class=&quot;code-keyword&quot;&gt;return&lt;/span&gt; count;
}
&lt;/pre&gt;
&lt;/div&gt;&lt;/div&gt;

&lt;p&gt;Now the problem is - buffer is in userspace, so we cannot just pass it like this to nodemap_set_fileset where it would get dereferenced.&lt;br/&gt;
We need to properly copy it to kernelspace first.&lt;/p&gt;</description>
                <environment></environment>
        <key id="37528">LU-8258</key>
            <summary>Unsafe userspace address access from proc handler in nodemap code</summary>
                <type id="1" iconUrl="https://jira.whamcloud.com/secure/viewavatar?size=xsmall&amp;avatarId=11303&amp;avatarType=issuetype">Bug</type>
                                            <priority id="2" iconUrl="https://jira.whamcloud.com/images/icons/priorities/critical.svg">Critical</priority>
                        <status id="5" iconUrl="https://jira.whamcloud.com/images/icons/statuses/resolved.png" description="A resolution has been taken, and it is awaiting verification by reporter. From here issues are either reopened, or are closed.">Resolved</status>
                    <statusCategory id="3" key="done" colorName="success"/>
                                    <resolution id="1">Fixed</resolution>
                                        <assignee username="kit.westneat">Kit Westneat</assignee>
                                    <reporter username="green">Oleg Drokin</reporter>
                        <labels>
                    </labels>
                <created>Sat, 11 Jun 2016 02:28:33 +0000</created>
                <updated>Thu, 18 Aug 2016 17:24:39 +0000</updated>
                            <resolved>Thu, 18 Aug 2016 17:24:39 +0000</resolved>
                                                    <fixVersion>Lustre 2.9.0</fixVersion>
                                        <due></due>
                            <votes>0</votes>
                                    <watches>4</watches>
                                                                            <comments>
                            <comment id="160995" author="pjones" created="Fri, 5 Aug 2016 21:58:43 +0000"  >&lt;p&gt;Kit&lt;/p&gt;

&lt;p&gt;Are you able to help with this one?&lt;/p&gt;

&lt;p&gt;Peter&lt;/p&gt;</comment>
                            <comment id="161441" author="gerrit" created="Wed, 10 Aug 2016 16:53:47 +0000"  >&lt;p&gt;Kit Westneat (kit.westneat@gmail.com) uploaded a new patch: &lt;a href=&quot;http://review.whamcloud.com/21857&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;http://review.whamcloud.com/21857&lt;/a&gt;&lt;br/&gt;
Subject: &lt;a href=&quot;https://jira.whamcloud.com/browse/LU-8258&quot; title=&quot;Unsafe userspace address access from proc handler in nodemap code&quot; class=&quot;issue-link&quot; data-issue-key=&quot;LU-8258&quot;&gt;&lt;del&gt;LU-8258&lt;/del&gt;&lt;/a&gt; nodemap: fix userspace address access in proc code&lt;br/&gt;
Project: fs/lustre-release&lt;br/&gt;
Branch: master&lt;br/&gt;
Current Patch Set: 1&lt;br/&gt;
Commit: 001098168e33dbd856537725fc2dca1b3135cab7&lt;/p&gt;</comment>
                            <comment id="161949" author="gerrit" created="Mon, 15 Aug 2016 21:12:46 +0000"  >&lt;p&gt;Oleg Drokin (oleg.drokin@intel.com) merged in patch &lt;a href=&quot;http://review.whamcloud.com/21857/&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;http://review.whamcloud.com/21857/&lt;/a&gt;&lt;br/&gt;
Subject: &lt;a href=&quot;https://jira.whamcloud.com/browse/LU-8258&quot; title=&quot;Unsafe userspace address access from proc handler in nodemap code&quot; class=&quot;issue-link&quot; data-issue-key=&quot;LU-8258&quot;&gt;&lt;del&gt;LU-8258&lt;/del&gt;&lt;/a&gt; nodemap: fix userspace address access in proc code&lt;br/&gt;
Project: fs/lustre-release&lt;br/&gt;
Branch: master&lt;br/&gt;
Current Patch Set: &lt;br/&gt;
Commit: 288e55b8a38222af843a71a89df90234a72d8e0d&lt;/p&gt;</comment>
                            <comment id="162401" author="jgmitter" created="Thu, 18 Aug 2016 17:24:39 +0000"  >&lt;p&gt;Landed to master for 2.9.0&lt;/p&gt;</comment>
                    </comments>
                    <attachments>
                    </attachments>
                <subtasks>
                    </subtasks>
                <customfields>
                                                                                                                                                                                            <customfield id="customfield_10890" key="com.atlassian.jira.plugins.jira-development-integration-plugin:devsummary">
                        <customfieldname>Development</customfieldname>
                        <customfieldvalues>
                            
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                        <customfield id="customfield_10390" key="com.pyxis.greenhopper.jira:gh-lexo-rank">
                        <customfieldname>Rank</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>1|hzyecf:</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_10090" key="com.pyxis.greenhopper.jira:gh-global-rank">
                        <customfieldname>Rank (Obsolete)</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>9223372036854775807</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                                            <customfield id="customfield_10060" key="com.atlassian.jira.plugin.system.customfieldtypes:select">
                        <customfieldname>Severity</customfieldname>
                        <customfieldvalues>
                                <customfieldvalue key="10022"><![CDATA[3]]></customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                        </customfields>
    </item>
</channel>
</rss>