Skip to content

Commit

Permalink
net sched: fix encoding to use real length
Browse files Browse the repository at this point in the history
Encoding of the metadata was using the padded length as opposed to
the real length of the data which is a bug per specification.
This has not been an issue todate because all metadatum specified
so far has been 32 bit where aligned and data length are the same width.
This also includes a bug fix for validating the length of a u16 field.
But since there is no metadata of size u16 yes we are fine to include it
here.

While at it get rid of magic numbers.

Fixes: ef6980b ("net sched: introduce IFE action")
Signed-off-by: Jamal Hadi Salim <[email protected]>
Signed-off-by: David S. Miller <[email protected]>
  • Loading branch information
jhsmt authored and davem330 committed Aug 23, 2016
1 parent 4870e70 commit 28a10c4
Showing 1 changed file with 10 additions and 8 deletions.
18 changes: 10 additions & 8 deletions net/sched/act_ife.c
Original file line number Diff line number Diff line change
Expand Up @@ -53,7 +53,7 @@ int ife_tlv_meta_encode(void *skbdata, u16 attrtype, u16 dlen, const void *dval)
u32 *tlv = (u32 *)(skbdata);
u16 totlen = nla_total_size(dlen); /*alignment + hdr */
char *dptr = (char *)tlv + NLA_HDRLEN;
u32 htlv = attrtype << 16 | totlen;
u32 htlv = attrtype << 16 | dlen;

*tlv = htonl(htlv);
memset(dptr, 0, totlen - NLA_HDRLEN);
Expand Down Expand Up @@ -135,7 +135,7 @@ EXPORT_SYMBOL_GPL(ife_release_meta_gen);

int ife_validate_meta_u32(void *val, int len)
{
if (len == 4)
if (len == sizeof(u32))
return 0;

return -EINVAL;
Expand All @@ -144,8 +144,8 @@ EXPORT_SYMBOL_GPL(ife_validate_meta_u32);

int ife_validate_meta_u16(void *val, int len)
{
/* length will include padding */
if (len == NLA_ALIGN(2))
/* length will not include padding */
if (len == sizeof(u16))
return 0;

return -EINVAL;
Expand Down Expand Up @@ -652,12 +652,14 @@ static int tcf_ife_decode(struct sk_buff *skb, const struct tc_action *a,
u8 *tlvdata = (u8 *)tlv;
u16 mtype = tlv->type;
u16 mlen = tlv->len;
u16 alen;

mtype = ntohs(mtype);
mlen = ntohs(mlen);
alen = NLA_ALIGN(mlen);

if (find_decode_metaid(skb, ife, mtype, (mlen - 4),
(void *)(tlvdata + 4))) {
if (find_decode_metaid(skb, ife, mtype, (mlen - NLA_HDRLEN),
(void *)(tlvdata + NLA_HDRLEN))) {
/* abuse overlimits to count when we receive metadata
* but dont have an ops for it
*/
Expand All @@ -666,8 +668,8 @@ static int tcf_ife_decode(struct sk_buff *skb, const struct tc_action *a,
ife->tcf_qstats.overlimits++;
}

tlvdata += mlen;
ifehdrln -= mlen;
tlvdata += alen;
ifehdrln -= alen;
tlv = (struct meta_tlvhdr *)tlvdata;
}

Expand Down

0 comments on commit 28a10c4

Please sign in to comment.