From: Mark Rutland <mark.rutland-5wv7dgnIgG8@public.gmane.org>
To: Jan Beulich <JBeulich-IBi9RG/b67k@public.gmane.org>
Cc: Jiri Slaby <jslaby-AlSwsSmVLrQ@public.gmane.org>,
matt-mF/unelCI9GS6iBeEJttW/XRex20P6io@public.gmane.org,
Vitaly Kuznetsov
<vkuznets-H+wXaHxf7aLQT0dZR+AlfA@public.gmane.org>,
linux-efi-u79uwXL29TY76Z2rM5mHXA@public.gmane.org
Subject: Re: [PATCH] EFI: make for_each_efi_memory_desc_in_map() cope with running on Xen
Date: Tue, 9 Aug 2016 14:49:35 +0100 [thread overview]
Message-ID: <20160809134935.GE1183@leverpostej> (raw)
In-Reply-To: <57A9F94E0200007800104477-rw/UEucdPrvD8XXLLHKrIiOjQekVJEpY@public.gmane.org>
On Tue, Aug 09, 2016 at 07:39:58AM -0600, Jan Beulich wrote:
> >>> On 09.08.16 at 15:03, <jslaby-AlSwsSmVLrQ@public.gmane.org> wrote:
> > On 08/09/2016, 12:16 PM, Jan Beulich wrote:
> >> While commit 55f1ea15216 ("efi: Fix for_each_efi_memory_desc_in_map()
> >> for empty memmaps") made an attempt to deal with empty memory maps, it
> >> didn't address the case where the desc_size field never gets set, as is
> >> apparently the case when running under Xen.
> >>
> >> Reported-by: <lists-Ilq5uHa1fWNWk0Htik3J/w@public.gmane.org>
> >> Cc: Vitaly Kuznetsov <vkuznets-H+wXaHxf7aLQT0dZR+AlfA@public.gmane.org>
> >> Cc: Jiri Slaby <jslaby-AlSwsSmVLrQ@public.gmane.org>
> >> Signed-off-by: Jan Beulich <jbeulich-IBi9RG/b67k@public.gmane.org>
> >> Tested-by: <lists-Ilq5uHa1fWNWk0Htik3J/w@public.gmane.org>
> >> ---
> >> include/linux/efi.h | 2 +-
> >> 1 file changed, 1 insertion(+), 1 deletion(-)
> >>
> >> --- 4.8-rc1/include/linux/efi.h
> >> +++ 4.8-rc1-EFI-memdesc-iterator-Xen/include/linux/efi.h
> >> @@ -946,7 +946,7 @@ extern int efi_memattr_apply_permissions
> >> /* Iterate through an efi_memory_map */
> >> #define for_each_efi_memory_desc_in_map(m, md) \
> >> for ((md) = (m)->map; \
> >> - ((void *)(md) + (m)->desc_size) <= (m)->map_end; \
> >> + ((void *)(md) + (m)->desc_size - 1) < (m)->map_end; \
> >
> > Is there any specific reason you change both the size and the comparator?
> >
> > IMO, either (readable)
> > ((void *)(md) + (m)->desc_size) < (m)->map_end;
> > or (mindfuck version)
> > ((void *)(md) + (m)->desc_size - 1) <= (m)->map_end;
> > is correct, not their mix.
>
> We're not talking about an off-by-one getting fixed here: map_end
> points past the valid range. The adjustment leverages overflow (or
> underflow, to be precise) to produce correct behavior when
> (m)->desc_size is zero.
That deserves a comment in the code, given the Xen case is not
particularly obvious, and it's caught out at least one reviewer.
What is map_end initialised to in the Xen case? Is that Xen with an
empty map, of Xen generally?
Thanks,
Mark.
next prev parent reply other threads:[~2016-08-09 13:49 UTC|newest]
Thread overview: 7+ messages / expand[flat|nested] mbox.gz Atom feed top
2016-08-09 10:16 [PATCH] EFI: make for_each_efi_memory_desc_in_map() cope with running on Xen Jan Beulich
[not found] ` <57A9C9A60200007800104268-rw/UEucdPrvD8XXLLHKrIiOjQekVJEpY@public.gmane.org>
2016-08-09 13:03 ` Jiri Slaby
[not found] ` <c5dc2cae-1189-f2dd-6c6b-2c310a9d829f-AlSwsSmVLrQ@public.gmane.org>
2016-08-09 13:39 ` Jan Beulich
[not found] ` <57A9F94E0200007800104477-rw/UEucdPrvD8XXLLHKrIiOjQekVJEpY@public.gmane.org>
2016-08-09 13:49 ` Mark Rutland [this message]
2016-08-09 14:07 ` Jan Beulich
2016-08-09 13:51 ` Jiri Slaby
[not found] ` <97e96c16-09dc-773f-3beb-4fefc589921a-AlSwsSmVLrQ@public.gmane.org>
2016-08-09 14:09 ` Jan Beulich
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20160809134935.GE1183@leverpostej \
--to=mark.rutland-5wv7dgnigg8@public.gmane.org \
--cc=JBeulich-IBi9RG/b67k@public.gmane.org \
--cc=jslaby-AlSwsSmVLrQ@public.gmane.org \
--cc=linux-efi-u79uwXL29TY76Z2rM5mHXA@public.gmane.org \
--cc=matt-mF/unelCI9GS6iBeEJttW/XRex20P6io@public.gmane.org \
--cc=vkuznets-H+wXaHxf7aLQT0dZR+AlfA@public.gmane.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox