From: Sasha Levin <sasha.levin@oracle.com>
To: davem@davemloft.net
Cc: hannes@stressinduktion.org, dborkman@redhat.com, tytso@mit.edu,
linux-kernel@vger.kernel.org, eric.dumazet@gmail.com,
Sasha Levin <sasha.levin@oracle.com>
Subject: [PATCH] random32: avoid attempt to late reseed if in the middle of seeding
Date: Wed, 26 Mar 2014 13:12:38 -0400 [thread overview]
Message-ID: <1395853958-5083-1-git-send-email-sasha.levin@oracle.com> (raw)
Commit 4af712e8df ("random32: add prandom_reseed_late() and call when
nonblocking pool becomes initialized") has added a late reseed stage
that happens as soon as the nonblocking pool is marked as initialized.
This fails in the case that the nonblocking pool gets initialized
during __prandom_reseed()'s call to get_random_bytes(). In that case
we'd double back into __prandom_reseed() in an attempt to do a late
reseed - deadlocking on 'lock' early on in the boot process.
Instead, just avoid even waiting to do a reseed if a reseed is already
occuring.
Signed-off-by: Sasha Levin <sasha.levin@oracle.com>
---
lib/random32.c | 16 +++++++++++++++-
1 file changed, 15 insertions(+), 1 deletion(-)
diff --git a/lib/random32.c b/lib/random32.c
index 1e5b2df..b59da12 100644
--- a/lib/random32.c
+++ b/lib/random32.c
@@ -241,14 +241,27 @@ static void __prandom_reseed(bool late)
{
int i;
unsigned long flags;
- static bool latch = false;
+ static bool latch = false, reseeding = false;
static DEFINE_SPINLOCK(lock);
+ /*
+ * Asking for random bytes might result in bytes getting
+ * moved into the nonblocking pool and thus marking it
+ * as initialized. In this case we would double back into
+ * this function and attempt to do a late reseed.
+ * Ignore the pointless attempt to reseed again if we're
+ * already waiting for bytes when the nonblocking pool
+ * got initialized
+ */
+ if (reseeding)
+ return;
+
/* only allow initial seeding (late == false) once */
spin_lock_irqsave(&lock, flags);
if (latch && !late)
goto out;
latch = true;
+ reseeding = true;
for_each_possible_cpu(i) {
struct rnd_state *state = &per_cpu(net_rand_state,i);
@@ -263,6 +276,7 @@ static void __prandom_reseed(bool late)
prandom_warmup(state);
}
out:
+ reseeding = false;
spin_unlock_irqrestore(&lock, flags);
}
--
1.8.3.2
next reply other threads:[~2014-03-26 17:12 UTC|newest]
Thread overview: 9+ messages / expand[flat|nested] mbox.gz Atom feed top
2014-03-26 17:12 Sasha Levin [this message]
2014-03-26 17:53 ` Hannes Frederic Sowa
2014-03-26 23:18 ` Daniel Borkmann
2014-03-26 23:35 ` Sasha Levin
2014-03-26 23:40 ` Daniel Borkmann
2014-03-27 2:21 ` Hannes Frederic Sowa
2014-03-27 9:04 ` Daniel Borkmann
2014-03-27 9:18 ` Hannes Frederic Sowa
2014-03-27 12:50 ` Daniel Borkmann
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=1395853958-5083-1-git-send-email-sasha.levin@oracle.com \
--to=sasha.levin@oracle.com \
--cc=davem@davemloft.net \
--cc=dborkman@redhat.com \
--cc=eric.dumazet@gmail.com \
--cc=hannes@stressinduktion.org \
--cc=linux-kernel@vger.kernel.org \
--cc=tytso@mit.edu \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
all inboxes | Powered by JetHome®