1 // SPDX-License-Identifier: GPL-2.0-only
2 #include <linux/types.h>
3 #include <linux/spinlock.h>
4 #include <linux/sock_diag.h>
5 #include <linux/unix_diag.h>
6 #include <linux/skbuff.h>
7 #include <linux/module.h>
8 #include <linux/uidgid.h>
9 #include <net/netlink.h>
10 #include <net/af_unix.h>
11 #include <net/tcp_states.h>
14 static int sk_diag_dump_name(struct sock
*sk
, struct sk_buff
*nlskb
)
16 /* might or might not have unix_table_lock */
17 struct unix_address
*addr
= smp_load_acquire(&unix_sk(sk
)->addr
);
22 return nla_put(nlskb
, UNIX_DIAG_NAME
, addr
->len
- sizeof(short),
23 addr
->name
->sun_path
);
26 static int sk_diag_dump_vfs(struct sock
*sk
, struct sk_buff
*nlskb
)
28 struct dentry
*dentry
= unix_sk(sk
)->path
.dentry
;
31 struct unix_diag_vfs uv
= {
32 .udiag_vfs_ino
= d_backing_inode(dentry
)->i_ino
,
33 .udiag_vfs_dev
= dentry
->d_sb
->s_dev
,
36 return nla_put(nlskb
, UNIX_DIAG_VFS
, sizeof(uv
), &uv
);
42 static int sk_diag_dump_peer(struct sock
*sk
, struct sk_buff
*nlskb
)
47 peer
= unix_peer_get(sk
);
49 unix_state_lock(peer
);
50 ino
= sock_i_ino(peer
);
51 unix_state_unlock(peer
);
54 return nla_put_u32(nlskb
, UNIX_DIAG_PEER
, ino
);
60 static int sk_diag_dump_icons(struct sock
*sk
, struct sk_buff
*nlskb
)
67 if (sk
->sk_state
== TCP_LISTEN
) {
68 spin_lock(&sk
->sk_receive_queue
.lock
);
70 attr
= nla_reserve(nlskb
, UNIX_DIAG_ICONS
,
71 sk
->sk_receive_queue
.qlen
* sizeof(u32
));
77 skb_queue_walk(&sk
->sk_receive_queue
, skb
) {
78 struct sock
*req
, *peer
;
82 * The state lock is outer for the same sk's
83 * queue lock. With the other's queue locked it's
84 * OK to lock the state.
86 unix_state_lock_nested(req
);
87 peer
= unix_sk(req
)->peer
;
88 buf
[i
++] = (peer
? sock_i_ino(peer
) : 0);
89 unix_state_unlock(req
);
91 spin_unlock(&sk
->sk_receive_queue
.lock
);
97 spin_unlock(&sk
->sk_receive_queue
.lock
);
101 static int sk_diag_show_rqlen(struct sock
*sk
, struct sk_buff
*nlskb
)
103 struct unix_diag_rqlen rql
;
105 if (sk
->sk_state
== TCP_LISTEN
) {
106 rql
.udiag_rqueue
= sk
->sk_receive_queue
.qlen
;
107 rql
.udiag_wqueue
= sk
->sk_max_ack_backlog
;
109 rql
.udiag_rqueue
= (u32
) unix_inq_len(sk
);
110 rql
.udiag_wqueue
= (u32
) unix_outq_len(sk
);
113 return nla_put(nlskb
, UNIX_DIAG_RQLEN
, sizeof(rql
), &rql
);
116 static int sk_diag_dump_uid(struct sock
*sk
, struct sk_buff
*nlskb
)
118 uid_t uid
= from_kuid_munged(sk_user_ns(nlskb
->sk
), sock_i_uid(sk
));
119 return nla_put(nlskb
, UNIX_DIAG_UID
, sizeof(uid_t
), &uid
);
122 static int sk_diag_fill(struct sock
*sk
, struct sk_buff
*skb
, struct unix_diag_req
*req
,
123 u32 portid
, u32 seq
, u32 flags
, int sk_ino
)
125 struct nlmsghdr
*nlh
;
126 struct unix_diag_msg
*rep
;
128 nlh
= nlmsg_put(skb
, portid
, seq
, SOCK_DIAG_BY_FAMILY
, sizeof(*rep
),
133 rep
= nlmsg_data(nlh
);
134 rep
->udiag_family
= AF_UNIX
;
135 rep
->udiag_type
= sk
->sk_type
;
136 rep
->udiag_state
= sk
->sk_state
;
138 rep
->udiag_ino
= sk_ino
;
139 sock_diag_save_cookie(sk
, rep
->udiag_cookie
);
141 if ((req
->udiag_show
& UDIAG_SHOW_NAME
) &&
142 sk_diag_dump_name(sk
, skb
))
145 if ((req
->udiag_show
& UDIAG_SHOW_VFS
) &&
146 sk_diag_dump_vfs(sk
, skb
))
149 if ((req
->udiag_show
& UDIAG_SHOW_PEER
) &&
150 sk_diag_dump_peer(sk
, skb
))
153 if ((req
->udiag_show
& UDIAG_SHOW_ICONS
) &&
154 sk_diag_dump_icons(sk
, skb
))
157 if ((req
->udiag_show
& UDIAG_SHOW_RQLEN
) &&
158 sk_diag_show_rqlen(sk
, skb
))
161 if ((req
->udiag_show
& UDIAG_SHOW_MEMINFO
) &&
162 sock_diag_put_meminfo(sk
, skb
, UNIX_DIAG_MEMINFO
))
165 if (nla_put_u8(skb
, UNIX_DIAG_SHUTDOWN
, sk
->sk_shutdown
))
168 if ((req
->udiag_show
& UDIAG_SHOW_UID
) &&
169 sk_diag_dump_uid(sk
, skb
))
176 nlmsg_cancel(skb
, nlh
);
180 static int sk_diag_dump(struct sock
*sk
, struct sk_buff
*skb
, struct unix_diag_req
*req
,
181 u32 portid
, u32 seq
, u32 flags
)
186 sk_ino
= sock_i_ino(sk
);
187 unix_state_unlock(sk
);
192 return sk_diag_fill(sk
, skb
, req
, portid
, seq
, flags
, sk_ino
);
195 static int unix_diag_dump(struct sk_buff
*skb
, struct netlink_callback
*cb
)
197 struct unix_diag_req
*req
;
198 int num
, s_num
, slot
, s_slot
;
199 struct net
*net
= sock_net(skb
->sk
);
201 req
= nlmsg_data(cb
->nlh
);
203 s_slot
= cb
->args
[0];
204 num
= s_num
= cb
->args
[1];
206 spin_lock(&unix_table_lock
);
208 slot
< ARRAY_SIZE(unix_socket_table
);
213 sk_for_each(sk
, &unix_socket_table
[slot
]) {
214 if (!net_eq(sock_net(sk
), net
))
218 if (!(req
->udiag_states
& (1 << sk
->sk_state
)))
220 if (sk_diag_dump(sk
, skb
, req
,
221 NETLINK_CB(cb
->skb
).portid
,
230 spin_unlock(&unix_table_lock
);
237 static struct sock
*unix_lookup_by_ino(unsigned int ino
)
242 spin_lock(&unix_table_lock
);
243 for (i
= 0; i
< ARRAY_SIZE(unix_socket_table
); i
++) {
244 sk_for_each(sk
, &unix_socket_table
[i
])
245 if (ino
== sock_i_ino(sk
)) {
247 spin_unlock(&unix_table_lock
);
253 spin_unlock(&unix_table_lock
);
257 static int unix_diag_get_exact(struct sk_buff
*in_skb
,
258 const struct nlmsghdr
*nlh
,
259 struct unix_diag_req
*req
)
264 unsigned int extra_len
;
265 struct net
*net
= sock_net(in_skb
->sk
);
267 if (req
->udiag_ino
== 0)
270 sk
= unix_lookup_by_ino(req
->udiag_ino
);
274 if (!net_eq(sock_net(sk
), net
))
277 err
= sock_diag_check_cookie(sk
, req
->udiag_cookie
);
284 rep
= nlmsg_new(sizeof(struct unix_diag_msg
) + extra_len
, GFP_KERNEL
);
288 err
= sk_diag_fill(sk
, rep
, req
, NETLINK_CB(in_skb
).portid
,
289 nlh
->nlmsg_seq
, 0, req
->udiag_ino
);
293 if (extra_len
>= PAGE_SIZE
)
298 err
= netlink_unicast(net
->diag_nlsk
, rep
, NETLINK_CB(in_skb
).portid
,
309 static int unix_diag_handler_dump(struct sk_buff
*skb
, struct nlmsghdr
*h
)
311 int hdrlen
= sizeof(struct unix_diag_req
);
312 struct net
*net
= sock_net(skb
->sk
);
314 if (nlmsg_len(h
) < hdrlen
)
317 if (h
->nlmsg_flags
& NLM_F_DUMP
) {
318 struct netlink_dump_control c
= {
319 .dump
= unix_diag_dump
,
321 return netlink_dump_start(net
->diag_nlsk
, skb
, h
, &c
);
323 return unix_diag_get_exact(skb
, h
, nlmsg_data(h
));
326 static const struct sock_diag_handler unix_diag_handler
= {
328 .dump
= unix_diag_handler_dump
,
331 static int __init
unix_diag_init(void)
333 return sock_diag_register(&unix_diag_handler
);
336 static void __exit
unix_diag_exit(void)
338 sock_diag_unregister(&unix_diag_handler
);
341 module_init(unix_diag_init
);
342 module_exit(unix_diag_exit
);
343 MODULE_LICENSE("GPL");
344 MODULE_ALIAS_NET_PF_PROTO_TYPE(PF_NETLINK
, NETLINK_SOCK_DIAG
, 1 /* AF_LOCAL */);