From: Josh Law <objecting@objecting.org>
To: "Christian A. Ehrhardt" <lk@c--e.de>,
linux-kernel@vger.kernel.org,
Andrew Morton <akpm@linux-foundation.org>,
David Howells <dhowells@redhat.com>
Cc: Kees Cook <kees@kernel.org>, Petr Mladek <pmladek@suse.com>,
David Gow <davidgow@google.com>
Subject: Re: [PATCH v2 2/3] lib: Fix length calculations in extract_kvec_to_sg
Date: Tue, 24 Mar 2026 20:54:04 +0000 [thread overview]
Message-ID: <C5C81D72-CB33-4714-B3FF-EA2BB1D33166@objecting.org> (raw)
In-Reply-To: <20260324203453.810499-3-lk@c--e.de>
On 24 March 2026 20:34:52 GMT, "Christian A. Ehrhardt" <lk@c--e.de> wrote:
>When extracting from a kvec to a scatterlist, do not
>cross page boundaries. The required length is already
>calculated but not used as intended.
>
>Adjust the copied length if the loop runs out auf
>sglist entries.
Nit: "auf" > of?? (Probably a typo)
>While there return immediately from extract_iter_to_sg
>if there are no sglist entries at all.
Suggestion: You could change it to "While there**,** return immediately from extract_iter_to_sg if there are no sglist entries at all." It is something a bit "silly" so it doesn't matter much
>The changes to the kunit_iov_iter.c in the next commit
>demonstrate that the patch is necessary.
>
>Cc: David Howells <dhowells@redhat.com>
>Cc: Andrew Morton <akpm@linux-foundation.org>
>Cc: stable@vger.kernel.org # v6.5+
>Fixes: 018584697533 ("netfs: Add a function to extract an iterator into a scatterlist")
>Signed-off-by: Christian A. Ehrhardt <lk@c--e.de>
>---
> lib/scatterlist.c | 5 +++--
> 1 file changed, 3 insertions(+), 2 deletions(-)
>
>diff --git a/lib/scatterlist.c b/lib/scatterlist.c
>index d773720d11bf..befdc4b9c11d 100644
>--- a/lib/scatterlist.c
>+++ b/lib/scatterlist.c
>@@ -1247,7 +1247,7 @@ static ssize_t extract_kvec_to_sg(struct iov_iter *iter,
> else
> page = virt_to_page((void *)kaddr);
>
>- sg_set_page(sg, page, len, off);
>+ sg_set_page(sg, page, seg, off);
> sgtable->nents++;
> sg++;
> sg_max--;
>@@ -1256,6 +1256,7 @@ static ssize_t extract_kvec_to_sg(struct iov_iter *iter,
> kaddr += PAGE_SIZE;
> off = 0;
> } while (len > 0 && sg_max > 0);
>+ ret -= len;
>
> if (maxsize <= 0 || sg_max == 0)
> break;
>@@ -1409,7 +1410,7 @@ ssize_t extract_iter_to_sg(struct iov_iter *iter, size_t maxsize,
> struct sg_table *sgtable, unsigned int sg_max,
> iov_iter_extraction_t extraction_flags)
> {
>- if (maxsize == 0)
>+ if (maxsize == 0 || sg_max == 0)
> return 0;
>
> switch (iov_iter_type(iter)) {
This C is absolutely perfect! No nits here
V/R
Josh Law
next prev parent reply other threads:[~2026-03-24 20:54 UTC|newest]
Thread overview: 12+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-03-24 20:34 [PATCH v2 0/3] Fix length calculation bug " Christian A. Ehrhardt
2026-03-24 20:34 ` [PATCH v2 1/3] lib: kunit_iov_iter: Improve error detection Christian A. Ehrhardt
2026-03-24 20:50 ` Josh Law
2026-03-24 23:18 ` David Howells
2026-03-24 23:22 ` Josh Law
2026-03-24 20:34 ` [PATCH v2 2/3] lib: Fix length calculations in extract_kvec_to_sg Christian A. Ehrhardt
2026-03-24 20:54 ` Josh Law [this message]
2026-03-24 20:34 ` [PATCH v2 3/3] lib: kunit_iov_iter: Add tests for extract_iter_to_sg Christian A. Ehrhardt
2026-03-24 20:58 ` Josh Law
2026-03-24 23:14 ` David Howells
2026-03-24 23:17 ` Josh Law
2026-03-24 20:41 ` [PATCH v2 0/3] Fix length calculation bug in extract_kvec_to_sg Josh Law
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=C5C81D72-CB33-4714-B3FF-EA2BB1D33166@objecting.org \
--to=objecting@objecting.org \
--cc=akpm@linux-foundation.org \
--cc=davidgow@google.com \
--cc=dhowells@redhat.com \
--cc=kees@kernel.org \
--cc=linux-kernel@vger.kernel.org \
--cc=lk@c--e.de \
--cc=pmladek@suse.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
all inboxes | Powered by JetHome®