Received: by 10.192.165.148 with SMTP id m20csp3520807imm; Mon, 7 May 2018 13:50:50 -0700 (PDT) X-Google-Smtp-Source: AB8JxZoABvviCuvl5rILjehdYpzBCiPAuYAzE+UtTYUWoRcCcQV7dkPKrJ7tSrtaIt1gHlc6zm+h X-Received: by 2002:a6b:35c1:: with SMTP id k62-v6mr33441723ioo.128.1525726250033; Mon, 07 May 2018 13:50:50 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1525726249; cv=none; d=google.com; s=arc-20160816; b=JS5jKz/Ztn6OLivh6Y9iHX3hxcvyJnLqz7d1wLdiCuyOYeqOC+siezYbR5ruXLnsDp G1PNcLkMVjSxtjuGBisa1NJu5V0lLQD5xF1fstEeG5zCmXx5gHqxndMGBChxUdeKUMXT fP2ZBVr2SP9KeProxakITb31mR8GVa4jFIANVVujqlV3aCUKrmhJZg+TspoJ/y+yROXL Hq3DrD2YZpCJceN1RlgD1Xs2mZmHrtn6vX8OvsRUd2YQqc+NwI/G70zGlrApYauMlxQg xVtfcTD56/+icixyEfSDTlJ9oZBHV2bFMAF1LTxi/zOjXs1GUFEkJ3Y8SOYl2KMznBu7 U4VQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:cc:to:subject:message-id:date:from :references:in-reply-to:mime-version:dkim-signature :arc-authentication-results; bh=+XrQKrfnwxbonVD8KTMKsW9gCFSosKlocDu01LqWoTE=; b=jTHnqIeAQ6/PUUaZCoVk+QgnZ5iDmr7F2inyPm5GG/OXRtnyyOw7g8FKeRPQHyk/rK SzSzmKTos5k/8R02UM4/tdW+drxYMUKM/vsRXUKaJNmzI3g2/VK2JUjDgt7iQN1TGm17 BXt8WSkpAI+hHDT1EFUu8AD2gW7MyfrmGFgWyFvPj+EAmoXOESwlVW7lPlE3cg8MyMD5 6vcSCJdXYztgiz9z6qwppY8p7jyvCIDtvMcwX2nB8JxPTiyEU4safkHJGWLQ3GlcSqKJ 1dO2Y6gqmi4M52DrXmswe2e7muwM/KWdBkORRIzU1Dz1dkY5PPlNHYZA88tJoKt9fELt M9Ow== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@gmail.com header.s=20161025 header.b=vCc127kf; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id 16-v6si2927964ita.49.2018.05.07.13.50.36; Mon, 07 May 2018 13:50:49 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@gmail.com header.s=20161025 header.b=vCc127kf; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1753262AbeEGUuG (ORCPT + 99 others); Mon, 7 May 2018 16:50:06 -0400 Received: from mail-pl0-f53.google.com ([209.85.160.53]:42314 "EHLO mail-pl0-f53.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1752934AbeEGUuE (ORCPT ); Mon, 7 May 2018 16:50:04 -0400 Received: by mail-pl0-f53.google.com with SMTP id u6-v6so779860pls.9; Mon, 07 May 2018 13:50:03 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=+XrQKrfnwxbonVD8KTMKsW9gCFSosKlocDu01LqWoTE=; b=vCc127kfiuEqGT1YoB8zavPhIYGkL+IWA5NwzYUyBA26qXRAEGGZWtEzeO7wywSxOO U4ok74HzOQ1O8vKWZt65yRHXX5GyGqx0XaxgzJ358jxdav8bxQgapHwQ/qNGxO0hxPrj CfoedcDldKwI3IhleKEbgxvy0PjQdRCF/o6/uwYRe5SFiLF4Y/Xn0IgYCEJ7wC8/jfG2 rlU8oOZYjfWVSuuO951PkU10DFbAftOqSXzdUmwuQmJ+gmmtwkWMhTVel6R+t0VFIBnC Y0F5rNbYWptOfQReRS6R0ia5esO8Atr0rX/5gQ1O/4MqX5bvPYfVgqClrIxniybvAo5V zzgA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=+XrQKrfnwxbonVD8KTMKsW9gCFSosKlocDu01LqWoTE=; b=tB7h0P7vo69stvPsUlQ1wTZsh8/Vi8iZpcizA/8pat7zb5kA0E8cNmvOVYK0dtNHnT eXfmJDCp8UJrs9HjETC9w2xdGEauq4urU4bsUYGeCHwyumfrfBo1x9ZI8LBV4FbeSNu7 CnI1421ZA9IWJcPXIhBUFF/Qbu8XxJ7vBh+o+D8Y6wA1QH7SGkabuorKaMqXbcu3Y2us T1pXT7PK+5Hm0ug1g+awRSf15f1iatlRrMRI0uZCDIVPSefwTppZLmCtIOkzcGpKH3yl UKOI83LdlaMyJCGSXREyufwr2/hT1Sko+JhlkhuC0rs3JAdUn1pGyo7jWluTOu7eMN98 NEvg== X-Gm-Message-State: ALQs6tAqKXVf4GKt18qusz+LkNP6dDtQNFVAouhMy3Ea0xeYYD6WWNGP s9+b8gP64waQ5k/pIpBgtbML41cd+xN9CWoHQPM= X-Received: by 2002:a17:902:6bc1:: with SMTP id m1-v6mr38778206plt.91.1525726203661; Mon, 07 May 2018 13:50:03 -0700 (PDT) MIME-Version: 1.0 Received: by 10.100.164.135 with HTTP; Mon, 7 May 2018 13:50:03 -0700 (PDT) In-Reply-To: <4217788.NhxQeTpgEt@merkaba> References: <20180425154602.GA8546@bombadil.infradead.org> <20180507021554.GN30522@ZenIV.linux.org.uk> <4217788.NhxQeTpgEt@merkaba> From: Michael Schmitz Date: Tue, 8 May 2018 08:50:03 +1200 Message-ID: Subject: Re: moving affs + RDB partition support to staging? To: Martin Steigerwald Cc: Al Viro , John Paul Adrian Glaubitz , Matthew Wilcox , David Sterba , Linux FS Devel , Linux Kernel Development , Jens Axboe , "Linux/m68k" , Debian m68k Content-Type: text/plain; charset="UTF-8" Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Martin, On Mon, May 7, 2018 at 7:08 PM, Martin Steigerwald wrote: > Michael Schmitz - 07.05.18, 04:40: >> Al, >> >> I don't think there is USB sticks with affs on them as yet. There >> isn't even USB host controller support for Amiga hardware (yet). >> >> Last I tried USB on m68k (Atari, 060 accelerator) the desktop >> experience was such that I'd rather not repeat that in a hurry (and >> that was a simple FAT USB stick). > > There is USB support available on Amiga since a long time. Good to hear that. I stand corrected. > On "Classic" Amigas AmigaOS 3.x with Poseidon USB stack + some USB card. Haven't seen a Linux driver for that 'some USB card' yet. > On AmigaOS 4.x built-in. AmigaOS 4.x hardware like Sam boards from Acube > Systems have USB controllers that work out of the bux. Forgot about the new (non-m68k) hardware. My focus is somewhat narrow, on m68k and Linux. > And I am pretty sure, you can also tell it to use Amiga Fast Filesystem > (on Linux affs) on an USB stick. Also you can plug in an external > harddisk with RDB partitions and whatever filesystems you wish. I already conceded that's possible. So our problem with the bug Al spotted, and AFFS on USB media are twtofold: AmigaOS: Exploitable: yes (unless the AmigaOS AFFS driver detects and mitigates this). Likelihood: low (as Joanne said there are easier ways to do harm to these systems) Linux: Exploitable: yes, except on hardware that doesn't have USB hardware support. Likelihood: high Can we blacklist affs from being autoloaded through udev on USB storage media discovery? Cheers, Michael