Received: by 2002:a05:7412:3784:b0:e2:908c:2ebd with SMTP id jk4csp2277520rdb; Tue, 3 Oct 2023 16:37:12 -0700 (PDT) X-Google-Smtp-Source: AGHT+IGI1c8MRaIv/kHx8DDXijXepHK75kn3XqTHtJQb9jdAwnrDwApyf/9KTi+IfDTIUI/gJXx5 X-Received: by 2002:a05:6870:5493:b0:1d5:a452:488c with SMTP id f19-20020a056870549300b001d5a452488cmr1107917oan.32.1696376232246; Tue, 03 Oct 2023 16:37:12 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1696376232; cv=none; d=google.com; s=arc-20160816; b=TcjBAevd0B4VUIYW7l0oLohNpxDvtszIMjYAwcQMiuPhQaDplzosemAwaSgIF/U+GT g+BwYB7MrrnMOnAmFlZmCWGl0IS90kqiDNLWGH6ulLLQ7ViFr4zcYijvteE3uDF6vVIm NgUTAURXqs2+wjn9ItwbMFEy7FZ0cnLFxOrkTStDOhY8PBlKTIRA4h5VoItQhquBjQ8G mRlK0V+jf0N8kyoa/25Q+eAZM+qc/g3nUAt10UQyNoe6dwVjkvElKscqJmhQHywmetNJ n2KF/6RjExHu9eaIN+sbbwNaxG0j0AjqIHbbF8KrUXpEJI3buDzUaB4U9bZVQHXY2SJv ZKiw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:content-transfer-encoding:in-reply-to:from :references:cc:to:content-language:subject:user-agent:mime-version :date:message-id:dkim-signature; bh=faADj6iiL1M4LbIzfNyCJxmVlkgcB2hHMHA68wI3pNA=; fh=Mjn/bCUrZNzP6bSXAkmsBYeDqIrOc8lrRYgPIqy2Nzw=; b=kQYdWpWjvqhpW6QX4JZI8k2isLLlL6ilMcoFDl4wgzGHX97JFhHvIJ+PAVw8r+ThZ0 6D1DgtIxWJD+Tm+ZN4ZvlZV8RqH8qsydvZc5nccS6iBmnELLWOjBcknoaWzIFR0aOXz+ ZL0h9qXNLNxyGmTDWnV50TsBPxiiUGEwsAVZvXJMxn7hGOWBsPiL51M26g5oBjGnhzTV tEpYwD3rVuCjfHGmeDjobdaqyCqIFVfSMMzQTo6HzQKVyDRa8qh8q2Q9zrI8g0y3t0k1 fi4adOeibbpJL/cb5Qc5EbKarnE6pFauhVkGWlUXw5zf11JG/QBZub8YPMG+vKJeYnzn LzeQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=k20201202 header.b=bfCgu8UO; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::3:4 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from howler.vger.email (howler.vger.email. [2620:137:e000::3:4]) by mx.google.com with ESMTPS id k190-20020a6384c7000000b00577f4d85fd7si2464611pgd.316.2023.10.03.16.37.11 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Tue, 03 Oct 2023 16:37:12 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::3:4 as permitted sender) client-ip=2620:137:e000::3:4; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=k20201202 header.b=bfCgu8UO; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::3:4 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: from out1.vger.email (depot.vger.email [IPv6:2620:137:e000::3:0]) by howler.vger.email (Postfix) with ESMTP id 0DF468055AC6; Tue, 3 Oct 2023 16:36:43 -0700 (PDT) X-Virus-Status: Clean X-Virus-Scanned: clamav-milter 0.103.10 at howler.vger.email Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S236675AbjJCXgi (ORCPT + 99 others); Tue, 3 Oct 2023 19:36:38 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:50838 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S238004AbjJCXg3 (ORCPT ); Tue, 3 Oct 2023 19:36:29 -0400 Received: from smtp.kernel.org (relay.kernel.org [52.25.139.140]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 7E1D1C9 for ; Tue, 3 Oct 2023 16:36:24 -0700 (PDT) Received: by smtp.kernel.org (Postfix) with ESMTPSA id 63DD1C433C7; Tue, 3 Oct 2023 23:36:23 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=k20201202; t=1696376184; bh=fI3/kyfV7jlL4X9PoxBOPNL9WBh1qBNy9eYiQsgGgSQ=; h=Date:Subject:To:Cc:References:From:In-Reply-To:From; b=bfCgu8UOFEbSxlRRSBcr6Mo/IaVwxwXRv3F6KcN3YXgtqFctyCt8UPAnhgJi1CbnP f9RSK5kVCxsirJsJZ78u+sU1E9d6gOgm5EFsw23N6C1rJ3dF8JDoyMXiTFbZOVlRqC uS/SdSy5xvVbDAWyjv02/5ugtze9VRcerFiVvPB+6LGus4GabR/miD+S/72wC0eCqj eStOVGxKzXbVhuT+S40ihgC7vPWe6WADyRQkpt8uPXbQ6vVANpViX6qAs49dAAKoV3 WKdyTrP7kKwAh55Phml/AgN9hBa9RPCCQ0ra1CzxH8aDE7eXk0nEAfClfrcOrsT374 VzxhT4m1C6tSQ== Message-ID: Date: Tue, 3 Oct 2023 17:36:22 -0600 MIME-Version: 1.0 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:102.0) Gecko/20100101 Thunderbird/102.15.1 Subject: Re: [PATCH] nexthop: Annotate struct nh_res_table with __counted_by Content-Language: en-US To: Kees Cook Cc: "David S. Miller" , Eric Dumazet , Jakub Kicinski , Paolo Abeni , netdev@vger.kernel.org, "Gustavo A. R. Silva" , Nathan Chancellor , Nick Desaulniers , Tom Rix , linux-kernel@vger.kernel.org, linux-hardening@vger.kernel.org, llvm@lists.linux.dev References: <20231003231813.work.042-kees@kernel.org> From: David Ahern In-Reply-To: <20231003231813.work.042-kees@kernel.org> Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 7bit X-Spam-Status: No, score=-5.5 required=5.0 tests=BAYES_00,DKIMWL_WL_HIGH, DKIM_SIGNED,DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,NICE_REPLY_A, RCVD_IN_DNSWL_MED,SPF_HELO_NONE,SPF_PASS autolearn=ham autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org X-Greylist: Sender passed SPF test, not delayed by milter-greylist-4.6.4 (howler.vger.email [0.0.0.0]); Tue, 03 Oct 2023 16:36:43 -0700 (PDT) On 10/3/23 5:18 PM, Kees Cook wrote: > Prepare for the coming implementation by GCC and Clang of the __counted_by > attribute. Flexible array members annotated with __counted_by can have > their accesses bounds-checked at run-time via CONFIG_UBSAN_BOUNDS (for > array indexing) and CONFIG_FORTIFY_SOURCE (for strcpy/memcpy-family > functions). > > As found with Coccinelle[1], add __counted_by for struct nh_res_table. > > Cc: David Ahern > Cc: "David S. Miller" > Cc: Eric Dumazet > Cc: Jakub Kicinski > Cc: Paolo Abeni > Cc: netdev@vger.kernel.org > Link: https://github.com/kees/kernel-tools/blob/trunk/coccinelle/examples/counted_by.cocci [1] > Signed-off-by: Kees Cook > --- > include/net/nexthop.h | 2 +- > 1 file changed, 1 insertion(+), 1 deletion(-) > Reviewed-by: David Ahern