Received: by 2002:a05:6a10:1a4d:0:0:0:0 with SMTP id nk13csp3919781pxb; Fri, 11 Feb 2022 10:35:58 -0800 (PST) X-Google-Smtp-Source: ABdhPJzY8nh9e2tDaJDj+7l4vhW9+oKkRlZ0fBKt7rSCi1IFuJm+gbDNel+fzQ8joto3DwehSou6 X-Received: by 2002:a63:4d4e:: with SMTP id n14mr2421459pgl.186.1644604558045; Fri, 11 Feb 2022 10:35:58 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1644604558; cv=none; d=google.com; s=arc-20160816; b=Dr7WnKjYnrC2/QTcDLIhJM0Ofs8Uzi/yvsQWo+5IdwOsvf8ZKC4X1vt+CtsQ4q4Tht qGZCmb4I2RV6xawqqWU9MTvqOwuP5eQoqLi5xhHOCegcKcoDX41pVHGeVQnkBOq0GaeD bmwZanSrSIfqiLrVtfhJb1wt0cdwSBqge/jCdach3KYgfOrQXI/Zgs4ljSWl4P8taXR7 Syrs++PZk6N9jHJa3lDr91+ByQBx7OAXg0tEeyOrZrlUnf+IhFkphJVLFFFeQDMxKsfS npOQg6oUBYkBkkj3nOJDsG5caO85Eviq9KutTe9wSqsxx+KXVGSERi7+UZVeHonFOuuu iaow== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:content-transfer-encoding:mime-version :message-id:date:subject:cc:to:from:dkim-signature; bh=6YxyRdWisDBs8NxFScSf04/qfSxkXfn1CQ7qZqMD+ew=; b=TF946SvdQxnnnmuVdEjFg6EjV4VZvqxVYKX1Usku/7xCsIkxrrIOxP5qCwgbMxdvhC lM2RH8NHXz/n93G6gocsXnbNmaogN0jaCpLY/uHglBd3Qij+wAHePxNaE7kgxro6886z PU31wdxv+ncL42quPGpUfTjReLkltw4HRk6yWalUtyCgdO48z2I9O7wIxKgFQjkgceEz HQDmkI48h63+5m6utrFN6bQJoJKOdoXwidtxe1PwR4afUfFlIlFSzEooReN9U/gLQ+Bz SjG5XNLIdX+tBG0rkI5/lkLdecB7vfESNfLwIQYPnefg6z0bsuvO7GV5d+q8rxt+P9g4 fqpg== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@cloudflare.com header.s=google header.b=WrZx4EMt; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=cloudflare.com Return-Path: Received: from out1.vger.email (out1.vger.email. [2620:137:e000::1:20]) by mx.google.com with ESMTP id w62si1973889pgd.556.2022.02.11.10.35.43; Fri, 11 Feb 2022 10:35:58 -0800 (PST) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) client-ip=2620:137:e000::1:20; Authentication-Results: mx.google.com; dkim=pass header.i=@cloudflare.com header.s=google header.b=WrZx4EMt; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=cloudflare.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1352136AbiBKRbi (ORCPT + 99 others); Fri, 11 Feb 2022 12:31:38 -0500 Received: from mxb-00190b01.gslb.pphosted.com ([23.128.96.19]:48924 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1343905AbiBKRbh (ORCPT ); Fri, 11 Feb 2022 12:31:37 -0500 Received: from mail-wr1-x436.google.com (mail-wr1-x436.google.com [IPv6:2a00:1450:4864:20::436]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 78C972C3 for ; Fri, 11 Feb 2022 09:31:35 -0800 (PST) Received: by mail-wr1-x436.google.com with SMTP id u1so2669641wrg.11 for ; Fri, 11 Feb 2022 09:31:35 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cloudflare.com; s=google; h=from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=6YxyRdWisDBs8NxFScSf04/qfSxkXfn1CQ7qZqMD+ew=; b=WrZx4EMt8oIJy8yHa3LeHlivxcjPXtbT/XvLI4YC4C/IkS4KBQ5Tfgav2Z3+rGgofN PfS3NX8pFlXVEbOYYgHNXhUTx6cy7Y1Hqh2KYPjRJW618ZKo7l0UX/iZC1f9QOwJX/ml wCLhSxc01fjSbHWUgtqXOUSaAIs7blK7eeaAU= X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=6YxyRdWisDBs8NxFScSf04/qfSxkXfn1CQ7qZqMD+ew=; b=xr2sHtjpVkbDo7JDO6qwixkO62uCGlB5P6I9GlFhTaqjfIP8j3mBu1mTgZHbSFD+A2 VmaQCkbpSElVyGwrQijoZ9KTHwTvwM45Ou0VTe/T4EtGYfghjrRXmlqZu48KRDXMt+0Y RkJtbM0uInU5UssXsA+FblRcWcGU/yw3st7WB2lBhCdzzXtaICb4kKHVQQYhe9xIgzPS ChvAdBBGiVhVPsTvwAqHnVHXx8hz9A9MMEknZ/rs0ap1rKq4Vf+cKEut2pbvQoha8GQG etCFLZXTlB6eDQyvZoylnRU6rtDdKH8S0YGiRdbqBj9JmoUX+4Wka7dFCL5NwRDfb6hR EJWg== X-Gm-Message-State: AOAM531J1EqsWO1kU3YaLYO6IEWtNidqoz6ex7YEQHLxN4VTEL9YpaOQ usoUawxikaPj/5RuzWV4UQiFKQ== X-Received: by 2002:adf:ab16:: with SMTP id q22mr2161408wrc.436.1644600693951; Fri, 11 Feb 2022 09:31:33 -0800 (PST) Received: from localhost.localdomain ([198.41.152.153]) by smtp.gmail.com with ESMTPSA id 24sm4389498wmf.48.2022.02.11.09.31.33 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Fri, 11 Feb 2022 09:31:33 -0800 (PST) From: Ignat Korchagin To: "David S . Miller" , Hideaki YOSHIFUJI , David Ahern , Jakub Kicinski , netdev@vger.kernel.org, linux-kernel@vger.kernel.org Cc: kernel-team@cloudflare.com, dpini@cloudflare.com, Ignat Korchagin Subject: [PATCH] ipv6: mcast: use rcu-safe version of ipv6_get_lladdr() Date: Fri, 11 Feb 2022 17:30:42 +0000 Message-Id: <20220211173042.112852-1-ignat@cloudflare.com> X-Mailer: git-send-email 2.20.1 MIME-Version: 1.0 Content-Transfer-Encoding: 8bit X-Spam-Status: No, score=-2.1 required=5.0 tests=BAYES_00,DKIMWL_WL_MED, DKIM_SIGNED,DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,RCVD_IN_DNSWL_NONE, SPF_HELO_NONE,SPF_NONE,T_SCC_BODY_TEXT_LINE autolearn=ham autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Some time ago 8965779d2c0e ("ipv6,mcast: always hold idev->lock before mca_lock") switched ipv6_get_lladdr() to __ipv6_get_lladdr(), which is rcu-unsafe version. That was OK, because idev->lock was held for these codepaths. In 88e2ca308094 ("mld: convert ifmcaddr6 to RCU") these external locks were removed, so we probably need to restore the original rcu-safe call. Otherwise, we occasionally get a machine crashed/stalled with the following in dmesg: [ 3405.966610][T230589] general protection fault, probably for non-canonical address 0xdead00000000008c: 0000 [#1] SMP NOPTI [ 3405.982083][T230589] CPU: 44 PID: 230589 Comm: kworker/44:3 Tainted: G O 5.15.19-cloudflare-2022.2.1 #1 [ 3405.998061][T230589] Hardware name: SUPA-COOL-SERV [ 3406.009552][T230589] Workqueue: mld mld_ifc_work [ 3406.017224][T230589] RIP: 0010:__ipv6_get_lladdr+0x34/0x60 [ 3406.025780][T230589] Code: 57 10 48 83 c7 08 48 89 e5 48 39 d7 74 3e 48 8d 82 38 ff ff ff eb 13 48 8b 90 d0 00 00 00 48 8d 82 38 ff ff ff 48 39 d7 74 22 <66> 83 78 32 20 77 1b 75 e4 89 ca 23 50 2c 75 dd 48 8b 50 08 48 8b [ 3406.055748][T230589] RSP: 0018:ffff94e4b3fc3d10 EFLAGS: 00010202 [ 3406.065617][T230589] RAX: dead00000000005a RBX: ffff94e4b3fc3d30 RCX: 0000000000000040 [ 3406.077477][T230589] RDX: dead000000000122 RSI: ffff94e4b3fc3d30 RDI: ffff8c3a31431008 [ 3406.089389][T230589] RBP: ffff94e4b3fc3d10 R08: 0000000000000000 R09: 0000000000000000 [ 3406.101445][T230589] R10: ffff8c3a31430000 R11: 000000000000000b R12: ffff8c2c37887100 [ 3406.113553][T230589] R13: ffff8c3a39537000 R14: 00000000000005dc R15: ffff8c3a31431000 [ 3406.125730][T230589] FS: 0000000000000000(0000) GS:ffff8c3b9fc80000(0000) knlGS:0000000000000000 [ 3406.138992][T230589] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3406.149895][T230589] CR2: 00007f0dfea1db60 CR3: 000000387b5f2000 CR4: 0000000000350ee0 [ 3406.162421][T230589] Call Trace: [ 3406.170235][T230589] [ 3406.177736][T230589] mld_newpack+0xfe/0x1a0 [ 3406.186686][T230589] add_grhead+0x87/0xa0 [ 3406.195498][T230589] add_grec+0x485/0x4e0 [ 3406.204310][T230589] ? newidle_balance+0x126/0x3f0 [ 3406.214024][T230589] mld_ifc_work+0x15d/0x450 [ 3406.223279][T230589] process_one_work+0x1e6/0x380 [ 3406.232982][T230589] worker_thread+0x50/0x3a0 [ 3406.242371][T230589] ? rescuer_thread+0x360/0x360 [ 3406.252175][T230589] kthread+0x127/0x150 [ 3406.261197][T230589] ? set_kthread_struct+0x40/0x40 [ 3406.271287][T230589] ret_from_fork+0x22/0x30 [ 3406.280812][T230589] [ 3406.288937][T230589] Modules linked in: ... [last unloaded: kheaders] [ 3406.476714][T230589] ---[ end trace 3525a7655f2f3b9e ]--- Fixes: 88e2ca308094 ("mld: convert ifmcaddr6 to RCU") Reported-by: David Pinilla Caparros Signed-off-by: Ignat Korchagin --- include/net/addrconf.h | 2 -- net/ipv6/addrconf.c | 4 ++-- net/ipv6/mcast.c | 2 +- 3 files changed, 3 insertions(+), 5 deletions(-) diff --git a/include/net/addrconf.h b/include/net/addrconf.h index e7ce719838b5..59940e230b78 100644 --- a/include/net/addrconf.h +++ b/include/net/addrconf.h @@ -109,8 +109,6 @@ struct inet6_ifaddr *ipv6_get_ifaddr(struct net *net, int ipv6_dev_get_saddr(struct net *net, const struct net_device *dev, const struct in6_addr *daddr, unsigned int srcprefs, struct in6_addr *saddr); -int __ipv6_get_lladdr(struct inet6_dev *idev, struct in6_addr *addr, - u32 banned_flags); int ipv6_get_lladdr(struct net_device *dev, struct in6_addr *addr, u32 banned_flags); bool inet_rcv_saddr_equal(const struct sock *sk, const struct sock *sk2, diff --git a/net/ipv6/addrconf.c b/net/ipv6/addrconf.c index f927c199a93c..3f23da8c0b10 100644 --- a/net/ipv6/addrconf.c +++ b/net/ipv6/addrconf.c @@ -1839,8 +1839,8 @@ int ipv6_dev_get_saddr(struct net *net, const struct net_device *dst_dev, } EXPORT_SYMBOL(ipv6_dev_get_saddr); -int __ipv6_get_lladdr(struct inet6_dev *idev, struct in6_addr *addr, - u32 banned_flags) +static int __ipv6_get_lladdr(struct inet6_dev *idev, struct in6_addr *addr, + u32 banned_flags) { struct inet6_ifaddr *ifp; int err = -EADDRNOTAVAIL; diff --git a/net/ipv6/mcast.c b/net/ipv6/mcast.c index bed8155508c8..a8861db52c18 100644 --- a/net/ipv6/mcast.c +++ b/net/ipv6/mcast.c @@ -1759,7 +1759,7 @@ static struct sk_buff *mld_newpack(struct inet6_dev *idev, unsigned int mtu) skb_reserve(skb, hlen); skb_tailroom_reserve(skb, mtu, tlen); - if (__ipv6_get_lladdr(idev, &addr_buf, IFA_F_TENTATIVE)) { + if (ipv6_get_lladdr(dev, &addr_buf, IFA_F_TENTATIVE)) { /* : * use unspecified address as the source address * when a valid link-local address is not available. -- 2.20.1