Received: by 2002:a05:6a10:5bc5:0:0:0:0 with SMTP id os5csp53204pxb; Wed, 20 Oct 2021 16:20:29 -0700 (PDT) X-Google-Smtp-Source: ABdhPJx6l61D2+U2de0umaTxcRPfmPmPWgG/Hs2lK4haCOEBuqvu2jSJRTKtVApzGGR1PLHhLzto X-Received: by 2002:aa7:88c5:0:b0:44e:20c:1f26 with SMTP id k5-20020aa788c5000000b0044e020c1f26mr2252573pff.22.1634772029210; Wed, 20 Oct 2021 16:20:29 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1634772029; cv=none; d=google.com; s=arc-20160816; b=0e1yLvAFnE3bHlNK8N/L0c8+qagPxEBJ1O6Ip8kuG9ODGI0wDF/7nyk7Gljv1Fd6Yj QYX37ApYqSCHv872dmF5etG5Y9lArUjQxJShAoAdTnZLlqYOpuB72a8qvCKF9J4EEbyE pmPuwiicwrXd2jqneO5mNo7ajzVkffMv9q9YvXqvJWzRBX4xvGsLQ/DPpSGlyoQor61x +J8EQQir0neEamSdS/QXRMeImURegDuoI/ztQ8aQ5qJm5HWSy+o6ObzMk2wT2MFeLRsW xSvqK+fjNsGcwHQVOMQONtp4ILwi8e+O55RqkAk96fCNY3AKqMJUe4VhAy2I0sp7Munf k+VA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:in-reply-to:content-disposition:mime-version :references:message-id:subject:cc:to:from:date:dkim-signature; bh=gxh8YS7tlFUrfNPIjNNevltYesLMoamD3TdisxMF9DM=; b=YiwAR1KXM2vnqksMVX81FCFsuHY6lRX1RARZqSzxnQvaZ1q9i8p6YO+4QLvPxwk59U dBD3TqZUCThAHOERQd/Zud5NSO3WOHPmFSBXnOgNaa2NWg1wcFK6mg4rXL9Wbebi2G3V xa36uhLjnhpVXxBZSmyy4Q7mQwd5XBIfBw1yyvb95Vo5Ybpixf3ijl3AsFpCsYke4OdH +GDQ7b+BXmFr94ZtVSzEBTB8VWAHF/iAl78CZ+JJr+MBRro/1L9IsHKGT2sEeWl7wkQq gXn0cxgshYtRWRlGgPbfMsCa9HpOUm1djGgbwEcyLakbYJZnxsZl2vKPuenR7AU4m68q YTGQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=k20201202 header.b=M3a8pK8k; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id s51si1826886pfw.245.2021.10.20.16.20.15; Wed, 20 Oct 2021 16:20:29 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=k20201202 header.b=M3a8pK8k; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S231199AbhJTXUu (ORCPT + 99 others); Wed, 20 Oct 2021 19:20:50 -0400 Received: from mail.kernel.org ([198.145.29.99]:52384 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S229702AbhJTXUt (ORCPT ); Wed, 20 Oct 2021 19:20:49 -0400 Received: by mail.kernel.org (Postfix) with ESMTPSA id 2820560EFE; Wed, 20 Oct 2021 23:18:34 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=k20201202; t=1634771914; bh=TWlR7qXBnj3Vsm8mAM/r2TdcOX5UhJFd1hVGZd99xyA=; h=Date:From:To:Cc:Subject:References:In-Reply-To:From; b=M3a8pK8kYSmQLGb6ZHur3eUUUg4KO8gqcz7stt2rlKGzA5S8Aq6tWc5pnzpSDFM1m LQA1MqBbHVoYgewjAQyrxIU/jGNxx5JfLUOyhz75TnACayJyNfo9MLsQdrbmXrB87p iI1bUt/vLXdqSKB8KRjmnVa7D07h7vlcbPV7tedNwTRibOuaIZB/shNklNq/ZlaLL6 HYtRX4cK7I5VRBddpEXaubQlNX/SAyXrKjj7GSQulzjW8sAKBcvtHtMInZnK+uUYpa /sVe78yxxgYyvlrRk4HKvsT9mAJ1W6/P23UOiA098H21yuMrfM00ct3m+X98UE5+xP 10gBr3gQq30+w== Date: Wed, 20 Oct 2021 18:23:14 -0500 From: "Gustavo A. R. Silva" To: "Gustavo A. R. Silva" Cc: Len Baker , Benjamin LaHaise , Alexander Viro , Kees Cook , linux-aio@kvack.org, linux-fsdevel@vger.kernel.org, linux-hardening@vger.kernel.org, linux-kernel@vger.kernel.org Subject: Re: [PATCH] aio: Prefer struct_size over open coded arithmetic Message-ID: <20211020232314.GA1314273@embeddedor> References: <20210919094539.30589-1-len.baker@gmx.com> <6cd35222-cc17-b3f5-dad4-ed540e0df79b@embeddedor.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <6cd35222-cc17-b3f5-dad4-ed540e0df79b@embeddedor.com> Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Mon, Sep 20, 2021 at 07:11:17PM -0500, Gustavo A. R. Silva wrote: > > > On 9/19/21 04:45, Len Baker wrote: > > As noted in the "Deprecated Interfaces, Language Features, Attributes, > > and Conventions" documentation [1], size calculations (especially > > multiplication) should not be performed in memory allocator (or similar) > > function arguments due to the risk of them overflowing. This could lead > > to values wrapping around and a smaller allocation being made than the > > caller was expecting. Using those allocations could lead to linear > > overflows of heap memory and other misbehaviors. > > > > So, use the struct_size() helper to do the arithmetic instead of the > > argument "size + size * count" in the kzalloc() function. > > > > [1] https://www.kernel.org/doc/html/latest/process/deprecated.html#open-coded-arithmetic-in-allocator-arguments > > > > Signed-off-by: Len Baker > > Reviewed-by: Gustavo A. R. Silva I'm taking this in my -next tree. Thanks, Len. -- Gustavo