Qian Cai
d42e1f7e69
ext4: fix a data race at inode->i_blocks
...
commit 28936b62e71e41600bab319f262ea9f9b1027629 upstream.
inode->i_blocks could be accessed concurrently as noticed by KCSAN,
BUG: KCSAN: data-race in ext4_do_update_inode [ext4] / inode_add_bytes
write to 0xffff9a00d4b982d0 of 8 bytes by task 22100 on cpu 118:
inode_add_bytes+0x65/0xf0
__inode_add_bytes at fs/stat.c:689
(inlined by) inode_add_bytes at fs/stat.c:702
ext4_mb_new_blocks+0x418/0xca0 [ext4]
ext4_ext_map_blocks+0x1a6b/0x27b0 [ext4]
ext4_map_blocks+0x1a9/0x950 [ext4]
_ext4_get_block+0xfc/0x270 [ext4]
ext4_get_block_unwritten+0x33/0x50 [ext4]
__block_write_begin_int+0x22e/0xae0
__block_write_begin+0x39/0x50
ext4_write_begin+0x388/0xb50 [ext4]
ext4_da_write_begin+0x35f/0x8f0 [ext4]
generic_perform_write+0x15d/0x290
ext4_buffered_write_iter+0x11f/0x210 [ext4]
ext4_file_write_iter+0xce/0x9e0 [ext4]
new_sync_write+0x29c/0x3b0
__vfs_write+0x92/0xa0
vfs_write+0x103/0x260
ksys_write+0x9d/0x130
__x64_sys_write+0x4c/0x60
do_syscall_64+0x91/0xb05
entry_SYSCALL_64_after_hwframe+0x49/0xbe
read to 0xffff9a00d4b982d0 of 8 bytes by task 8 on cpu 65:
ext4_do_update_inode+0x4a0/0xf60 [ext4]
ext4_inode_blocks_set at fs/ext4/inode.c:4815
ext4_mark_iloc_dirty+0xaf/0x160 [ext4]
ext4_mark_inode_dirty+0x129/0x3e0 [ext4]
ext4_convert_unwritten_extents+0x253/0x2d0 [ext4]
ext4_convert_unwritten_io_end_vec+0xc5/0x150 [ext4]
ext4_end_io_rsv_work+0x22c/0x350 [ext4]
process_one_work+0x54f/0xb90
worker_thread+0x80/0x5f0
kthread+0x1cd/0x1f0
ret_from_fork+0x27/0x50
4 locks held by kworker/u256:0/8:
#0 : ffff9a025abc4328 ((wq_completion)ext4-rsv-conversion){+.+.}, at: process_one_work+0x443/0xb90
#1 : ffffab5a862dbe20 ((work_completion)(&ei->i_rsv_conversion_work)){+.+.}, at: process_one_work+0x443/0xb90
#2 : ffff9a025a9d0f58 (jbd2_handle){++++}, at: start_this_handle+0x1c1/0x9d0 [jbd2]
#3 : ffff9a00d4b985d8 (&(&ei->i_raw_lock)->rlock){+.+.}, at: ext4_do_update_inode+0xaa/0xf60 [ext4]
irq event stamp: 3009267
hardirqs last enabled at (3009267): [<ffffffff980da9b7>] __find_get_block+0x107/0x790
hardirqs last disabled at (3009266): [<ffffffff980da8f9>] __find_get_block+0x49/0x790
softirqs last enabled at (3009230): [<ffffffff98a0034c>] __do_softirq+0x34c/0x57c
softirqs last disabled at (3009223): [<ffffffff97cc67a2>] irq_exit+0xa2/0xc0
Reported by Kernel Concurrency Sanitizer on:
CPU: 65 PID: 8 Comm: kworker/u256:0 Tainted: G L 5.6.0-rc2-next-20200221+ #7
Hardware name: HPE ProLiant DL385 Gen10/ProLiant DL385 Gen10, BIOS A40 07/10/2019
Workqueue: ext4-rsv-conversion ext4_end_io_rsv_work [ext4]
The plain read is outside of inode->i_lock critical section which
results in a data race. Fix it by adding READ_ONCE() there.
Link: https://lore.kernel.org/r/20200222043258.2279-1-cai@lca.pw
Signed-off-by: Qian Cai <cai@lca.pw>
Signed-off-by: Theodore Ts'o <tytso@mit.edu>
Cc: stable@kernel.org
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
2020-04-24 07:57:15 +02:00
..
2019-10-17 13:40:54 -07:00
2019-08-06 18:28:26 +02:00
2018-05-30 07:48:51 +02:00
2017-12-20 10:04:56 +01:00
2019-12-21 10:34:21 +01:00
2018-12-01 09:46:33 +01:00
2020-04-24 07:57:14 +02:00
2018-12-17 21:55:12 +01:00
2019-11-28 18:25:48 +01:00
2020-03-11 07:51:17 +01:00
2019-08-06 18:28:27 +02:00
2019-11-12 19:13:24 +01:00
2018-11-21 09:27:37 +01:00
2019-05-16 19:45:01 +02:00
2016-08-16 09:30:49 +02:00
2019-12-21 10:34:44 +01:00
2020-03-11 07:51:14 +01:00
2016-03-03 15:07:09 -08:00
2018-11-27 16:08:00 +01:00
2020-01-29 10:21:36 +01:00
2020-02-14 16:29:58 -05:00
2020-04-24 07:57:15 +02:00
2019-11-25 15:54:27 +01:00
2020-03-11 07:51:17 +01:00
2018-12-17 21:55:11 +01:00
2020-03-11 07:51:15 +01:00
2020-04-24 07:57:07 +02:00
2019-11-28 18:25:57 +01:00
2019-11-28 18:25:56 +01:00
2016-09-30 10:18:39 +02:00
2016-06-01 12:15:54 -07:00
2019-06-11 12:23:52 +02:00
2017-11-30 08:37:20 +00:00
2020-03-20 09:06:34 +01:00
2019-05-16 19:45:01 +02:00
2020-01-29 10:21:41 +01:00
2019-11-25 15:53:59 +01:00
2018-11-21 09:27:36 +01:00
2015-11-06 17:50:42 -08:00
2019-03-23 08:44:21 +01:00
2020-03-20 09:06:18 +01:00
2018-02-03 17:04:28 +01:00
2019-12-21 10:34:45 +01:00
2018-05-30 07:48:52 +02:00
2018-04-24 09:32:11 +02:00
2015-11-06 17:50:42 -08:00
2020-02-28 15:39:08 +01:00
2020-02-14 16:29:56 -05:00
2020-01-23 08:18:35 +01:00
2020-01-12 11:22:46 +01:00
2020-01-04 13:34:32 +01:00
2015-10-16 11:42:28 -07:00
2020-02-28 15:39:09 +01:00
2017-06-17 06:39:38 +02:00
2018-08-06 16:24:42 +02:00
2018-09-05 09:18:40 +02:00
2018-12-17 21:55:09 +01:00
2015-11-04 22:13:45 -05:00
2020-02-28 15:38:48 +01:00
2019-07-21 09:07:08 +02:00
2019-06-11 12:23:49 +02:00
2020-01-29 10:21:35 +01:00
2018-12-21 14:09:50 +01:00
2016-10-22 12:26:56 +02:00
2015-11-10 12:07:22 -08:00
2019-04-27 09:33:53 +02:00
2019-07-10 09:56:30 +02:00
2018-07-03 11:21:26 +02:00
2019-11-06 12:09:12 +01:00
2017-05-20 14:27:01 +02:00
2019-04-27 09:33:49 +02:00
2020-01-14 20:03:00 +01:00
2018-02-25 11:03:51 +01:00
2019-08-11 12:20:46 +02:00
2017-07-05 14:37:20 +02:00
2015-11-16 23:54:45 -08:00
2019-11-10 11:21:39 +01:00
2017-10-18 09:20:42 +02:00
2019-03-23 08:44:26 +01:00
2019-02-20 10:13:14 +01:00
2020-04-24 07:57:12 +02:00
2018-01-31 12:06:11 +01:00
2016-04-12 09:08:58 -07:00
2019-04-27 09:33:49 +02:00
2019-11-12 19:13:31 +01:00
2020-04-02 19:02:31 +02:00
2015-11-16 23:54:45 -08:00
2020-04-02 19:02:38 +02:00
2020-01-12 11:22:41 +01:00
2015-10-15 10:33:21 -04:00
2017-07-21 07:44:57 +02:00
2017-06-14 13:16:24 +02:00
2020-03-11 07:51:14 +01:00
2018-11-21 09:27:44 +01:00
2018-02-16 20:09:43 +01:00
2019-08-04 09:35:01 +02:00
2020-03-11 07:51:15 +01:00
2017-07-21 07:44:58 +02:00
2017-04-30 05:49:28 +02:00
2017-01-26 08:23:47 +01:00
2016-04-12 09:08:55 -07:00
2019-06-11 12:24:13 +02:00
2020-01-04 13:34:37 +01:00
2018-01-31 12:06:09 +01:00
2017-08-06 19:19:42 -07:00
2020-03-11 07:51:15 +01:00
2017-06-14 13:16:24 +02:00
2019-02-06 19:43:08 +01:00
2015-11-06 17:50:42 -08:00
2017-05-08 07:46:01 +02:00
2019-09-06 10:18:09 +02:00
2016-10-22 12:26:56 +02:00
2018-09-09 20:04:36 +02:00