From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail.linuxfoundation.org ([140.211.169.12]:58920 "EHLO mail.linuxfoundation.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S932467AbeBVNsb (ORCPT ); Thu, 22 Feb 2018 08:48:31 -0500 Date: Thu, 22 Feb 2018 14:48:32 +0100 From: Greg Kroah-Hartman To: Joel Fernandes Cc: linux-kernel@vger.kernel.org, Todd Kjos , Arve Hjonnevag , Greg Hackmann , stable@vger.kernel.org Subject: Re: [PATCH v2] staging: android: ashmem: Fix lockdep issue during llseek Message-ID: <20180222134832.GA1400@kroah.com> References: <20180216190201.59572-1-joelaf@google.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20180216190201.59572-1-joelaf@google.com> Sender: stable-owner@vger.kernel.org List-ID: On Fri, Feb 16, 2018 at 11:02:01AM -0800, Joel Fernandes wrote: > ashmem_mutex create a chain of dependencies like so: > > (1) > mmap syscall -> > mmap_sem -> (acquired) > ashmem_mmap > ashmem_mutex (try to acquire) > (block) > > (2) > llseek syscall -> > ashmem_llseek -> > ashmem_mutex -> (acquired) > inode_lock -> > inode->i_rwsem (try to acquire) > (block) > > (3) > getdents -> > iterate_dir -> > inode_lock -> > inode->i_rwsem (acquired) > copy_to_user -> > mmap_sem (try to acquire) > > There is a lock ordering created between mmap_sem and inode->i_rwsem > causing a lockdep splat [2] during a syzcaller test, this patch fixes > the issue by unlocking the mutex earlier. Functionally that's Ok since > we don't need to protect vfs_llseek. > > [1] https://patchwork.kernel.org/patch/10185031/ > [2] https://lkml.org/lkml/2018/1/10/48 > > Cc: Todd Kjos > Cc: Arve Hjonnevag > Cc: Greg Hackmann > Cc: Greg Kroah-Hartman > Cc: stable@vger.kernel.org > Reported-by: syzbot+8ec30bb7bf1a981a2012@syzkaller.appspotmail.com > Signed-off-by: Joel Fernandes > --- > Changes since first version: > Don't relock after vfs call since its not needed. Only reason we lock is > to protect races with asma->file. > https://patchwork.kernel.org/patch/10185031/ I'd like some acks from others before I take this patch. Joel, did the original reporter say this patch solved their issue or not? For some reason I didn't think it worked properly... thanks, greg k-h