From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Date: Mon, 22 Mar 2010 17:47:59 +1100 From: Anton Blanchard To: Christoph Hellwig , Ralf Baechle , Benjamin Herrenschmidt , Paul Mundt , Jeff Dike , Hirokazu Takata , Thomas Gleixner , Ingo Molnar , "H. Peter Anvin" , Al Viro , Arnd Bergmann , Heiko Carstens , Martin Schwidefsky , "Luck, Tony" , James Morris , Andreas Schwab , Jesper Nilsson , Russell King , David Howells , Kyle McMartin , Andrew Morton , Linus Torvalds Subject: ppc64 sys_ipc breakage in 2.6.34-rc2 Message-ID: <20100322064759.GE24064@kryten> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Cc: linuxppc-dev@lists.ozlabs.org List-Id: Linux on PowerPC Developers Mail List List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , I chased down a fail on ppc64 on 2.6.34-rc2 where an application that uses shared memory was getting a SEGV. Commit baed7fc9b580bd3fb8252ff1d9b36eaf1f86b670 (Add generic sys_ipc wrapper) changed the second argument from an unsigned long to an int. When we call shmget the system call wrappers for sys_ipc will sign extend second (ie the size) which truncates it. It took a while to track down because the call succeeds and strace shows the untruncated size :) The patch below changes second from an int to an unsigned long which fixes shmget on ppc64 (and I assume s390, sparc64 and mips64). Signed-off-by: Anton Blanchard -- I assume the function prototypes for the other IPC methods would cause us to sign or zero extend second where appropriate (avoiding any security issues). Come to think of it, the syscall wrappers for each method should do that for us as well. diff --git a/ipc/syscall.c b/ipc/syscall.c index 355a3da..1d6f53f 100644 --- a/ipc/syscall.c +++ b/ipc/syscall.c @@ -13,7 +13,7 @@ #include #include -SYSCALL_DEFINE6(ipc, unsigned int, call, int, first, int, second, +SYSCALL_DEFINE6(ipc, unsigned int, call, int, first, unsigned long, second, unsigned long, third, void __user *, ptr, long, fifth) { int version, ret;