Skip to content

Commit

Permalink
net: bridge: vlan: add helpers to check for vlan id/range validity
Browse files Browse the repository at this point in the history
Add helpers to check if a vlan id or range are valid. The range helper
must be called when range start or end are detected.

Signed-off-by: Nikolay Aleksandrov <[email protected]>
Signed-off-by: David S. Miller <[email protected]>
  • Loading branch information
Nikolay Aleksandrov authored and davem330 committed Jan 15, 2020
1 parent f6310b6 commit 5a46fac
Show file tree
Hide file tree
Showing 2 changed files with 34 additions and 10 deletions.
13 changes: 3 additions & 10 deletions net/bridge/br_netlink.c
Original file line number Diff line number Diff line change
Expand Up @@ -568,28 +568,21 @@ static int br_process_vlan_info(struct net_bridge *br,
bool *changed,
struct netlink_ext_ack *extack)
{
if (!vinfo_curr->vid || vinfo_curr->vid >= VLAN_VID_MASK)
if (!br_vlan_valid_id(vinfo_curr->vid))
return -EINVAL;

if (vinfo_curr->flags & BRIDGE_VLAN_INFO_RANGE_BEGIN) {
/* check if we are already processing a range */
if (*vinfo_last)
if (!br_vlan_valid_range(vinfo_curr, *vinfo_last))
return -EINVAL;
*vinfo_last = vinfo_curr;
/* don't allow range of pvids */
if ((*vinfo_last)->flags & BRIDGE_VLAN_INFO_PVID)
return -EINVAL;
return 0;
}

if (*vinfo_last) {
struct bridge_vlan_info tmp_vinfo;
int v, err;

if (!(vinfo_curr->flags & BRIDGE_VLAN_INFO_RANGE_END))
return -EINVAL;

if (vinfo_curr->vid <= (*vinfo_last)->vid)
if (!br_vlan_valid_range(vinfo_curr, *vinfo_last))
return -EINVAL;

memcpy(&tmp_vinfo, *vinfo_last,
Expand Down
31 changes: 31 additions & 0 deletions net/bridge/br_private.h
Original file line number Diff line number Diff line change
Expand Up @@ -507,6 +507,37 @@ static inline bool nbp_state_should_learn(const struct net_bridge_port *p)
return p->state == BR_STATE_LEARNING || p->state == BR_STATE_FORWARDING;
}

static inline bool br_vlan_valid_id(u16 vid)
{
return vid > 0 && vid < VLAN_VID_MASK;
}

static inline bool br_vlan_valid_range(const struct bridge_vlan_info *cur,
const struct bridge_vlan_info *last)
{
/* pvid flag is not allowed in ranges */
if (cur->flags & BRIDGE_VLAN_INFO_PVID)
return false;

/* check for required range flags */
if (!(cur->flags & (BRIDGE_VLAN_INFO_RANGE_BEGIN |
BRIDGE_VLAN_INFO_RANGE_END)))
return false;

/* when cur is the range end, check if:
* - it has range start flag
* - range ids are invalid (end is equal to or before start)
*/
if (last) {
if (cur->flags & BRIDGE_VLAN_INFO_RANGE_BEGIN)
return false;
else if (cur->vid <= last->vid)
return false;
}

return true;
}

static inline int br_opt_get(const struct net_bridge *br,
enum net_bridge_opts opt)
{
Expand Down

0 comments on commit 5a46fac

Please sign in to comment.