Blame SOURCES/0030-Monitor-use-snprintf-to-fill-device-name.patch

b33395
From 84d969be8f6d8a345b75f558fad26e4f62a558f6 Mon Sep 17 00:00:00 2001
b33395
From: Kinga Tanska <kinga.tanska@intel.com>
b33395
Date: Thu, 14 Jul 2022 09:02:11 +0200
b33395
Subject: [PATCH 30/52] Monitor: use snprintf to fill device name
b33395
b33395
Safe string functions are propagated in Monitor.c.
b33395
b33395
Signed-off-by: Kinga Tanska <kinga.tanska@intel.com>
b33395
Signed-off-by: Jes Sorensen <jsorensen@fb.com>
b33395
---
b33395
 Monitor.c | 37 ++++++++++++++-----------------------
b33395
 1 file changed, 14 insertions(+), 23 deletions(-)
b33395
b33395
diff --git a/Monitor.c b/Monitor.c
b33395
index a5b11ae2..93f36ac0 100644
b33395
--- a/Monitor.c
b33395
+++ b/Monitor.c
b33395
@@ -33,8 +33,8 @@
b33395
 #endif
b33395
 
b33395
 struct state {
b33395
-	char *devname;
b33395
-	char devnm[32];	/* to sync with mdstat info */
b33395
+	char devname[MD_NAME_MAX + sizeof("/dev/md/")];	/* length of "/dev/md/" + device name + terminating byte*/
b33395
+	char devnm[MD_NAME_MAX];	/* to sync with mdstat info */
b33395
 	unsigned int utime;
b33395
 	int err;
b33395
 	char *spare_group;
b33395
@@ -45,9 +45,9 @@ struct state {
b33395
 	int devstate[MAX_DISKS];
b33395
 	dev_t devid[MAX_DISKS];
b33395
 	int percent;
b33395
-	char parent_devnm[32]; /* For subarray, devnm of parent.
b33395
-				* For others, ""
b33395
-				*/
b33395
+	char parent_devnm[MD_NAME_MAX]; /* For subarray, devnm of parent.
b33395
+					* For others, ""
b33395
+					*/
b33395
 	struct supertype *metadata;
b33395
 	struct state *subarray;/* for a container it is a link to first subarray
b33395
 				* for a subarray it is a link to next subarray
b33395
@@ -187,15 +187,8 @@ int Monitor(struct mddev_dev *devlist,
b33395
 				continue;
b33395
 
b33395
 			st = xcalloc(1, sizeof *st);
b33395
-			if (mdlist->devname[0] == '/')
b33395
-				st->devname = xstrdup(mdlist->devname);
b33395
-			else {
b33395
-				/* length of "/dev/md/" + device name + terminating byte */
b33395
-				size_t _len = sizeof("/dev/md/") + strnlen(mdlist->devname, PATH_MAX);
b33395
-
b33395
-				st->devname = xcalloc(_len, sizeof(char));
b33395
-				snprintf(st->devname, _len, "/dev/md/%s", mdlist->devname);
b33395
-			}
b33395
+			snprintf(st->devname, MD_NAME_MAX + sizeof("/dev/md/"),
b33395
+				 "/dev/md/%s", basename(mdlist->devname));
b33395
 			if (!is_mddev(mdlist->devname))
b33395
 				return 1;
b33395
 			st->next = statelist;
b33395
@@ -218,7 +211,7 @@ int Monitor(struct mddev_dev *devlist,
b33395
 
b33395
 			st = xcalloc(1, sizeof *st);
b33395
 			mdlist = conf_get_ident(dv->devname);
b33395
-			st->devname = xstrdup(dv->devname);
b33395
+			snprintf(st->devname, MD_NAME_MAX + sizeof("/dev/md/"), "%s", dv->devname);
b33395
 			st->next = statelist;
b33395
 			st->devnm[0] = 0;
b33395
 			st->percent = RESYNC_UNKNOWN;
b33395
@@ -301,7 +294,6 @@ int Monitor(struct mddev_dev *devlist,
b33395
 		for (stp = &statelist; (st = *stp) != NULL; ) {
b33395
 			if (st->from_auto && st->err > 5) {
b33395
 				*stp = st->next;
b33395
-				free(st->devname);
b33395
 				free(st->spare_group);
b33395
 				free(st);
b33395
 			} else
b33395
@@ -554,7 +546,7 @@ static int check_array(struct state *st, struct mdstat_ent *mdstat,
b33395
 		goto disappeared;
b33395
 
b33395
 	if (st->devnm[0] == 0)
b33395
-		strcpy(st->devnm, fd2devnm(fd));
b33395
+		snprintf(st->devnm, MD_NAME_MAX, "%s", fd2devnm(fd));
b33395
 
b33395
 	for (mse2 = mdstat; mse2; mse2 = mse2->next)
b33395
 		if (strcmp(mse2->devnm, st->devnm) == 0) {
b33395
@@ -684,7 +676,7 @@ static int check_array(struct state *st, struct mdstat_ent *mdstat,
b33395
 	    strncmp(mse->metadata_version, "external:", 9) == 0 &&
b33395
 	    is_subarray(mse->metadata_version+9)) {
b33395
 		char *sl;
b33395
-		strcpy(st->parent_devnm, mse->metadata_version + 10);
b33395
+		snprintf(st->parent_devnm, MD_NAME_MAX, "%s", mse->metadata_version + 10);
b33395
 		sl = strchr(st->parent_devnm, '/');
b33395
 		if (sl)
b33395
 			*sl = 0;
b33395
@@ -772,14 +764,13 @@ static int add_new_arrays(struct mdstat_ent *mdstat, struct state **statelist,
b33395
 				continue;
b33395
 			}
b33395
 
b33395
-			st->devname = xstrdup(name);
b33395
+			snprintf(st->devname, MD_NAME_MAX + sizeof("/dev/md/"), "%s", name);
b33395
 			if ((fd = open(st->devname, O_RDONLY)) < 0 ||
b33395
 			    md_get_array_info(fd, &array) < 0) {
b33395
 				/* no such array */
b33395
 				if (fd >= 0)
b33395
 					close(fd);
b33395
 				put_md_name(st->devname);
b33395
-				free(st->devname);
b33395
 				if (st->metadata) {
b33395
 					st->metadata->ss->free_super(st->metadata);
b33395
 					free(st->metadata);
b33395
@@ -791,7 +782,7 @@ static int add_new_arrays(struct mdstat_ent *mdstat, struct state **statelist,
b33395
 			st->next = *statelist;
b33395
 			st->err = 1;
b33395
 			st->from_auto = 1;
b33395
-			strcpy(st->devnm, mse->devnm);
b33395
+			snprintf(st->devnm, MD_NAME_MAX, "%s", mse->devnm);
b33395
 			st->percent = RESYNC_UNKNOWN;
b33395
 			st->expected_spares = -1;
b33395
 			if (mse->metadata_version &&
b33395
@@ -799,8 +790,8 @@ static int add_new_arrays(struct mdstat_ent *mdstat, struct state **statelist,
b33395
 				    "external:", 9) == 0 &&
b33395
 			    is_subarray(mse->metadata_version+9)) {
b33395
 				char *sl;
b33395
-				strcpy(st->parent_devnm,
b33395
-					mse->metadata_version+10);
b33395
+				snprintf(st->parent_devnm, MD_NAME_MAX,
b33395
+					 "%s", mse->metadata_version + 10);
b33395
 				sl = strchr(st->parent_devnm, '/');
b33395
 				*sl = 0;
b33395
 			} else
b33395
-- 
b33395
2.31.1
b33395