From mboxrd@z Thu Jan 1 00:00:00 1970 From: Andrew Cooper Subject: [PATCH 1/5] x86/hvm: Switch hvm_allow_get_param() to use a whitelist Date: Wed, 5 Sep 2018 19:12:00 +0100 Message-ID: <1536171124-27053-2-git-send-email-andrew.cooper3@citrix.com> References: <1536171124-27053-1-git-send-email-andrew.cooper3@citrix.com> Mime-Version: 1.0 Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: base64 Return-path: In-Reply-To: <1536171124-27053-1-git-send-email-andrew.cooper3@citrix.com> List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Sender: "Xen-devel" To: Xen-devel Cc: Stefano Stabellini , Wei Liu , Andrew Cooper , Julien Grall , Paul Durrant , Jan Beulich , =?UTF-8?q?Roger=20Pau=20Monn=C3=A9?= List-Id: xen-devel@lists.xenproject.org VGhlcmUgYXJlIGhvbGVzIGluIHRoZSBIVk1fUEFSQU0gc3BhY2UsIHNvbWUgb2Ygd2hpY2ggYXJl IGZyb20gZGVwcmVjYXRlZApwYXJhbWV0ZXJzLCBidXQgdG9vbHN0YWNrIGFuZCBkZXZpY2UgbW9k ZWxzIGN1cnJlbnRseSBoYXZlIGJsYW5rZXQgcmVhZAphY2Nlc3MuCgpSZWFycmFuZ2UgaHZtX2Fs bG93X2dldF9wYXJhbSgpIHRvIGhhdmUgYSB3aGl0ZWxpc3Qgb2YgdG9vbHN0YWNrLXJlYWRhYmxl CnBhcmFtZXRlcnMsIHdpdGggdGhlIGRlZmF1bHQgY2FzZSBmYWlsaW5nIHdpdGggLUVJTlZBTCAo d2hpY2ggc3Vic3VtZXMgdGhlCkhWTV9OUl9QQVJBTVMgY2hlY2spLgoKTm8gZXhwZWN0ZWQgY2hh bmdlIGZvciB0aGUgZGVmaW5lZCwgaW4tdXNlIHBhcmFtcy4KClNpZ25lZC1vZmYtYnk6IEFuZHJl dyBDb29wZXIgPGFuZHJldy5jb29wZXIzQGNpdHJpeC5jb20+Ci0tLQpDQzogSmFuIEJldWxpY2gg PEpCZXVsaWNoQHN1c2UuY29tPgpDQzogV2VpIExpdSA8d2VpLmxpdTJAY2l0cml4LmNvbT4KQ0M6 IFJvZ2VyIFBhdSBNb25uw6kgPHJvZ2VyLnBhdUBjaXRyaXguY29tPgpDQzogUGF1bCBEdXJyYW50 IDxwYXVsLmR1cnJhbnRAY2l0cml4LmNvbT4KQ0M6IFN0ZWZhbm8gU3RhYmVsbGluaSA8c3N0YWJl bGxpbmlAa2VybmVsLm9yZz4KQ0M6IEp1bGllbiBHcmFsbCA8anVsaWVuLmdyYWxsQGFybS5jb20+ Ci0tLQogeGVuL2FyY2gveDg2L2h2bS9odm0uYyB8IDM4ICsrKysrKysrKysrKysrKysrKysrKysr KysrKystLS0tLS0tLS0tCiAxIGZpbGUgY2hhbmdlZCwgMjggaW5zZXJ0aW9ucygrKSwgMTAgZGVs ZXRpb25zKC0pCgpkaWZmIC0tZ2l0IGEveGVuL2FyY2gveDg2L2h2bS9odm0uYyBiL3hlbi9hcmNo L3g4Ni9odm0vaHZtLmMKaW5kZXggYzIyYmYwYi4uOTZhNjMyMyAxMDA2NDQKLS0tIGEveGVuL2Fy Y2gveDg2L2h2bS9odm0uYworKysgYi94ZW4vYXJjaC94ODYvaHZtL2h2bS5jCkBAIC00MzUwLDcg KzQzNTAsNyBAQCBzdGF0aWMgaW50IGh2bV9hbGxvd19nZXRfcGFyYW0oc3RydWN0IGRvbWFpbiAq ZCwKIAogICAgIHN3aXRjaCAoIGEtPmluZGV4ICkKICAgICB7Ci0gICAgLyogVGhlIGZvbGxvd2lu ZyBwYXJhbWV0ZXJzIGNhbiBiZSByZWFkIGJ5IHRoZSBndWVzdC4gKi8KKyAgICAgICAgLyogVGhl IGZvbGxvd2luZyBwYXJhbWV0ZXJzIGNhbiBiZSByZWFkIGJ5IHRoZSBndWVzdCBhbmQgdG9vbHN0 YWNrLiAqLwogICAgIGNhc2UgSFZNX1BBUkFNX0NBTExCQUNLX0lSUToKICAgICBjYXNlIEhWTV9Q QVJBTV9WTTg2X1RTUzoKICAgICBjYXNlIEhWTV9QQVJBTV9WTTg2X1RTU19TSVpFRDoKQEAgLTQz NjMsMTggKzQzNjMsMzkgQEAgc3RhdGljIGludCBodm1fYWxsb3dfZ2V0X3BhcmFtKHN0cnVjdCBk b21haW4gKmQsCiAgICAgY2FzZSBIVk1fUEFSQU1fQUxUUDJNOgogICAgIGNhc2UgSFZNX1BBUkFN X1g4N19GSVBfV0lEVEg6CiAgICAgICAgIGJyZWFrOwotICAgIC8qCi0gICAgICogVGhlIGZvbGxv d2luZyBwYXJhbWV0ZXJzIG11c3Qgbm90IGJlIHJlYWQgYnkgdGhlIGd1ZXN0Ci0gICAgICogc2lu Y2UgdGhlIGRvbWFpbiBtYXkgbmVlZCB0byBiZSBwYXVzZWQuCi0gICAgICovCisKKyAgICAgICAg LyoKKyAgICAgICAgICogVGhlIGZvbGxvd2luZyBwYXJhbWV0ZXJzIGFyZSBpbnRlbmRlZCBmb3Ig dG9vbHN0YWNrIHVzYWdlIG9ubHkuCisgICAgICAgICAqIFNvbWUgcmVxdWlyZSB0aGUgZG9tYWlu IHRvIGJlIHBhdXNlZCwgYW5kIHRoZXJlZm9yZSBtYXkgbm90IHJlYWQgYnkKKyAgICAgICAgICog dGhlIGRvbWFpbi4KKyAgICAgICAgICovCisgICAgY2FzZSBIVk1fUEFSQU1fUEFFX0VOQUJMRUQ6 CiAgICAgY2FzZSBIVk1fUEFSQU1fSU9SRVFfUEZOOgogICAgIGNhc2UgSFZNX1BBUkFNX0JVRklP UkVRX1BGTjoKICAgICBjYXNlIEhWTV9QQVJBTV9CVUZJT1JFUV9FVlRDSE46Ci0gICAgLyogVGhl IHJlbWFpbmluZyBwYXJhbWV0ZXJzIHNob3VsZCBub3QgYmUgcmVhZCBieSB0aGUgZ3Vlc3QuICov Ci0gICAgZGVmYXVsdDoKKyAgICBjYXNlIEhWTV9QQVJBTV9WSVJJRElBTjoKKyAgICBjYXNlIEhW TV9QQVJBTV9USU1FUl9NT0RFOgorICAgIGNhc2UgSFZNX1BBUkFNX0hQRVRfRU5BQkxFRDoKKyAg ICBjYXNlIEhWTV9QQVJBTV9JREVOVF9QVDoKKyAgICBjYXNlIEhWTV9QQVJBTV9ETV9ET01BSU46 CisgICAgY2FzZSBIVk1fUEFSQU1fQUNQSV9TX1NUQVRFOgorICAgIGNhc2UgSFZNX1BBUkFNX1ZQ VF9BTElHTjoKKyAgICBjYXNlIEhWTV9QQVJBTV9ORVNURURIVk06CisgICAgY2FzZSBIVk1fUEFS QU1fUEFHSU5HX1JJTkdfUEZOOgorICAgIGNhc2UgSFZNX1BBUkFNX01PTklUT1JfUklOR19QRk46 CisgICAgY2FzZSBIVk1fUEFSQU1fU0hBUklOR19SSU5HX1BGTjoKKyAgICBjYXNlIEhWTV9QQVJB TV9UUklQTEVfRkFVTFRfUkVBU09OOgorICAgIGNhc2UgSFZNX1BBUkFNX0lPUkVRX1NFUlZFUl9Q Rk46CisgICAgY2FzZSBIVk1fUEFSQU1fTlJfSU9SRVFfU0VSVkVSX1BBR0VTOgorICAgIGNhc2Ug SFZNX1BBUkFNX01DQV9DQVA6CiAgICAgICAgIGlmICggZCA9PSBjdXJyZW50LT5kb21haW4gKQog ICAgICAgICAgICAgcmMgPSAtRVBFUk07CiAgICAgICAgIGJyZWFrOworCisgICAgICAgIC8qIEhv bGUsIGRlcHJlY2F0ZWQsIG9yIG91dC1vZi1yYW5nZS4gKi8KKyAgICBkZWZhdWx0OgorICAgICAg ICByYyA9IC1FSU5WQUw7CisgICAgICAgIGJyZWFrOwogICAgIH0KIAogICAgIHJldHVybiByYzsK QEAgLTQzOTAsOSArNDQxMSw2IEBAIHN0YXRpYyBpbnQgaHZtb3BfZ2V0X3BhcmFtKAogICAgIGlm ICggY29weV9mcm9tX2d1ZXN0KCZhLCBhcmcsIDEpICkKICAgICAgICAgcmV0dXJuIC1FRkFVTFQ7 CiAKLSAgICBpZiAoIGEuaW5kZXggPj0gSFZNX05SX1BBUkFNUyApCi0gICAgICAgIHJldHVybiAt RUlOVkFMOwotCiAgICAgZCA9IHJjdV9sb2NrX2RvbWFpbl9ieV9hbnlfaWQoYS5kb21pZCk7CiAg ICAgaWYgKCBkID09IE5VTEwgKQogICAgICAgICByZXR1cm4gLUVTUkNIOwotLSAKMi4xLjQKCgpf X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fXwpYZW4tZGV2ZWwg bWFpbGluZyBsaXN0Clhlbi1kZXZlbEBsaXN0cy54ZW5wcm9qZWN0Lm9yZwpodHRwczovL2xpc3Rz LnhlbnByb2plY3Qub3JnL21haWxtYW4vbGlzdGluZm8veGVuLWRldmVs