Received: by 2002:a05:7412:31a9:b0:e2:908c:2ebd with SMTP id et41csp4850236rdb; Fri, 15 Sep 2023 14:28:28 -0700 (PDT) X-Google-Smtp-Source: AGHT+IEyPqGVWVlpu7FEGFrHUpP7bdybe4nwt0S0rK1TMJAzWT7Rte2eOun6NcQkW4tnqDIi9baY X-Received: by 2002:a05:6a00:1daa:b0:68e:3eff:e93a with SMTP id z42-20020a056a001daa00b0068e3effe93amr3056465pfw.2.1694813307754; Fri, 15 Sep 2023 14:28:27 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1694813307; cv=none; d=google.com; s=arc-20160816; b=s2WVXTT/fYp1XufJv5hrVeQK+h1k8ul8H+wfU8EC8cDcN/QiSN6fHa3BmAjiBOdejJ 3U+FGM6UamCM3rpOJSQCLS1I37JQXTr/4wnafi+AY9lJqDf3N/HR7yTrf605tRb/gQ53 4wW9ciqbQmEkVTO8JS+m7UVak7ALP/LxYa9kWRK2GqJsvBaBaNQoz2sBeNwPs88/lMS8 ARgHajHWVbkPer4Xzw56s9L6J7WVQtY2DdkcO51d+bGdcH1j2fus4un5KALYy/nscmve aq5YwQ/9asQlSJmJlYtuCLs0hUNayTCoK7JqxRx4YSovZ326MQVIvd1qUkVD7bLb3k6u NW1w== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:in-reply-to:content-disposition:mime-version :references:message-id:subject:cc:to:from:date:dkim-signature; bh=CERIXMszobECCcmTb35olIeJedTz3jO0YWogNpKALzc=; fh=v2GWUb1VqwFrxHNP4KuF3LsQaI74uAiMD8cEVu+ZB4o=; b=vsUoHjgY1RruZ0WTNAFOHnXlf3t0Qkg2jt4shAGZcrxnZpvySMLAnXqPsck2EjVb6m 8pFAbbG94QlT7Zdoo4ttkGI6uvQcP0ufuQR4dznnxolFMMnZQnoaCiS++yQZP9SGYq2W LxxGSXC9P8tlBen44LM4yQ8gNX/rbbn8qv88oA5I86Y11mtfsmM02IvRcp1omZn5V+7m /5qCDf+wtPT6u1bYIeKX/M593BuHEDEqIjeVMargWJ7U/Do+D2ks/FEN/45vxT30q2eH XebYVa3bwhoGFU+srNe3KNtxGaThJdaltrL9OR0W5BBcGgcFQ9ITxFVlvJy71ho4bU2t bHSQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@chromium.org header.s=google header.b=k0XG+2ao; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.35 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=chromium.org Return-Path: Received: from groat.vger.email (groat.vger.email. [23.128.96.35]) by mx.google.com with ESMTPS id l127-20020a632585000000b0057763d820d7si3813379pgl.835.2023.09.15.14.28.27 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Fri, 15 Sep 2023 14:28:27 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.35 as permitted sender) client-ip=23.128.96.35; Authentication-Results: mx.google.com; dkim=pass header.i=@chromium.org header.s=google header.b=k0XG+2ao; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.35 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=chromium.org Received: from out1.vger.email (depot.vger.email [IPv6:2620:137:e000::3:0]) by groat.vger.email (Postfix) with ESMTP id 6218780BE3D5; Fri, 15 Sep 2023 12:54:24 -0700 (PDT) X-Virus-Status: Clean X-Virus-Scanned: clamav-milter 0.103.10 at groat.vger.email Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S230046AbjIOTxo (ORCPT + 99 others); Fri, 15 Sep 2023 15:53:44 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:37670 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S230424AbjIOTx2 (ORCPT ); Fri, 15 Sep 2023 15:53:28 -0400 Received: from mail-pf1-x435.google.com (mail-pf1-x435.google.com [IPv6:2607:f8b0:4864:20::435]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 3BF1B1738 for ; Fri, 15 Sep 2023 12:53:22 -0700 (PDT) Received: by mail-pf1-x435.google.com with SMTP id d2e1a72fcca58-68fdd5c1bbbso1850792b3a.1 for ; Fri, 15 Sep 2023 12:53:22 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=chromium.org; s=google; t=1694807602; x=1695412402; darn=vger.kernel.org; h=in-reply-to:content-disposition:mime-version:references:message-id :subject:cc:to:from:date:from:to:cc:subject:date:message-id:reply-to; bh=CERIXMszobECCcmTb35olIeJedTz3jO0YWogNpKALzc=; b=k0XG+2aoqM+iN/MfW6LcKsFc1Iofq/lBwx3qPRLKj8qZ8eedBy5PZVuts7KdPhew/3 nfPin5P6gPOoLJD3dJKjeumHylWN1FRu+2mfI4nQ3ceYLUrI1W9UiY3+d7DJpxFzgBOz mo94Et0y6Kj/mnHO6zc/aMTjM/um9IBEvOK3s= X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1694807602; x=1695412402; h=in-reply-to:content-disposition:mime-version:references:message-id :subject:cc:to:from:date:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=CERIXMszobECCcmTb35olIeJedTz3jO0YWogNpKALzc=; b=RWvyaRAqV4/4iI/BWMLi9i5lMxpgC76f27U5Yync5Sv0BE5fSZsUCpGu9z5pMXmDil wEjpOJmsN3htkKDNQZC4F3mzK3Wz4f4tDOckVKxdz0+X59A6gWboFL9n4hC/avH/1If1 2Yd6utKdY0QW0DHcoJWVRzAsQpXmclGPnZa21InLnvTO2mYrLZazWnCTavfmtaxIEEzF 378dbDeqfPsnC/grY1VpBCdNMm0Vzg6WjpaceTtwPsaTcV5FJnlBLVF1py2oM73EM+VK P34Iq+Z3pMjA2thSlt0TBAgMTO7CX3XwqeHPb0cQFyIE1+o924dfuaV7OsNrBKqV9YfI FX0g== X-Gm-Message-State: AOJu0YwJ12HauUoimf80IVHGP/3kQ1YgHgKxiQOz8YjzLdZaj18qtMzr lp5SqXWHtsGFrn7fDlBdU4jh1Q== X-Received: by 2002:a05:6a00:1a11:b0:68e:2c2a:5172 with SMTP id g17-20020a056a001a1100b0068e2c2a5172mr3314996pfv.6.1694807601720; Fri, 15 Sep 2023 12:53:21 -0700 (PDT) Received: from www.outflux.net (198-0-35-241-static.hfc.comcastbusiness.net. [198.0.35.241]) by smtp.gmail.com with ESMTPSA id y17-20020aa78551000000b006878cc942f1sm3307731pfn.54.2023.09.15.12.53.21 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Fri, 15 Sep 2023 12:53:21 -0700 (PDT) Date: Fri, 15 Sep 2023 12:53:20 -0700 From: Kees Cook To: "Gustavo A. R. Silva" Cc: Ishizaki Kou , Geoff Levand , "David S. Miller" , Eric Dumazet , Jakub Kicinski , Paolo Abeni , "Gustavo A. R. Silva" , netdev@vger.kernel.org, linuxppc-dev@lists.ozlabs.org, linux-kernel@vger.kernel.org, linux-hardening@vger.kernel.org Subject: Re: [PATCH][next] net: spider_net: Use size_add() in call to struct_size() Message-ID: <202309151253.844C8BFCA3@keescook> References: MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: X-Spam-Status: No, score=-0.9 required=5.0 tests=DKIMWL_WL_HIGH,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,HEADER_FROM_DIFFERENT_DOMAINS, MAILING_LIST_MULTI,SPF_HELO_NONE,SPF_PASS autolearn=unavailable autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on groat.vger.email Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org X-Greylist: Sender passed SPF test, not delayed by milter-greylist-4.6.4 (groat.vger.email [0.0.0.0]); Fri, 15 Sep 2023 12:54:24 -0700 (PDT) On Fri, Sep 15, 2023 at 01:25:36PM -0600, Gustavo A. R. Silva wrote: > If, for any reason, the open-coded arithmetic causes a wraparound, > the protection that `struct_size()` adds against potential integer > overflows is defeated. Fix this by hardening call to `struct_size()` > with `size_add()`. > > Fixes: 3f1071ec39f7 ("net: spider_net: Use struct_size() helper") > Signed-off-by: Gustavo A. R. Silva Reviewed-by: Kees Cook -- Kees Cook