]> git.proxmox.com Git - mirror_ubuntu-bionic-kernel.git/blame - net/sunrpc/xdr.c
NFS: Let xdr_read_pages() check for buffer overflows
[mirror_ubuntu-bionic-kernel.git] / net / sunrpc / xdr.c
CommitLineData
1da177e4
LT
1/*
2 * linux/net/sunrpc/xdr.c
3 *
4 * Generic XDR support.
5 *
6 * Copyright (C) 1995, 1996 Olaf Kirch <okir@monad.swb.de>
7 */
8
a246b010 9#include <linux/module.h>
5a0e3ad6 10#include <linux/slab.h>
1da177e4 11#include <linux/types.h>
1da177e4
LT
12#include <linux/string.h>
13#include <linux/kernel.h>
14#include <linux/pagemap.h>
15#include <linux/errno.h>
1da177e4
LT
16#include <linux/sunrpc/xdr.h>
17#include <linux/sunrpc/msg_prot.h>
18
19/*
20 * XDR functions for basic NFS types
21 */
d8ed029d
AD
22__be32 *
23xdr_encode_netobj(__be32 *p, const struct xdr_netobj *obj)
1da177e4
LT
24{
25 unsigned int quadlen = XDR_QUADLEN(obj->len);
26
27 p[quadlen] = 0; /* zero trailing bytes */
9f162d2a 28 *p++ = cpu_to_be32(obj->len);
1da177e4
LT
29 memcpy(p, obj->data, obj->len);
30 return p + XDR_QUADLEN(obj->len);
31}
468039ee 32EXPORT_SYMBOL_GPL(xdr_encode_netobj);
1da177e4 33
d8ed029d
AD
34__be32 *
35xdr_decode_netobj(__be32 *p, struct xdr_netobj *obj)
1da177e4
LT
36{
37 unsigned int len;
38
98866b5a 39 if ((len = be32_to_cpu(*p++)) > XDR_MAX_NETOBJ)
1da177e4
LT
40 return NULL;
41 obj->len = len;
42 obj->data = (u8 *) p;
43 return p + XDR_QUADLEN(len);
44}
468039ee 45EXPORT_SYMBOL_GPL(xdr_decode_netobj);
1da177e4
LT
46
47/**
48 * xdr_encode_opaque_fixed - Encode fixed length opaque data
4dc3b16b
PP
49 * @p: pointer to current position in XDR buffer.
50 * @ptr: pointer to data to encode (or NULL)
51 * @nbytes: size of data.
1da177e4
LT
52 *
53 * Copy the array of data of length nbytes at ptr to the XDR buffer
54 * at position p, then align to the next 32-bit boundary by padding
55 * with zero bytes (see RFC1832).
56 * Note: if ptr is NULL, only the padding is performed.
57 *
58 * Returns the updated current XDR buffer position
59 *
60 */
d8ed029d 61__be32 *xdr_encode_opaque_fixed(__be32 *p, const void *ptr, unsigned int nbytes)
1da177e4
LT
62{
63 if (likely(nbytes != 0)) {
64 unsigned int quadlen = XDR_QUADLEN(nbytes);
65 unsigned int padding = (quadlen << 2) - nbytes;
66
67 if (ptr != NULL)
68 memcpy(p, ptr, nbytes);
69 if (padding != 0)
70 memset((char *)p + nbytes, 0, padding);
71 p += quadlen;
72 }
73 return p;
74}
468039ee 75EXPORT_SYMBOL_GPL(xdr_encode_opaque_fixed);
1da177e4
LT
76
77/**
78 * xdr_encode_opaque - Encode variable length opaque data
4dc3b16b
PP
79 * @p: pointer to current position in XDR buffer.
80 * @ptr: pointer to data to encode (or NULL)
81 * @nbytes: size of data.
1da177e4
LT
82 *
83 * Returns the updated current XDR buffer position
84 */
d8ed029d 85__be32 *xdr_encode_opaque(__be32 *p, const void *ptr, unsigned int nbytes)
1da177e4 86{
9f162d2a 87 *p++ = cpu_to_be32(nbytes);
1da177e4
LT
88 return xdr_encode_opaque_fixed(p, ptr, nbytes);
89}
468039ee 90EXPORT_SYMBOL_GPL(xdr_encode_opaque);
1da177e4 91
d8ed029d
AD
92__be32 *
93xdr_encode_string(__be32 *p, const char *string)
1da177e4
LT
94{
95 return xdr_encode_array(p, string, strlen(string));
96}
468039ee 97EXPORT_SYMBOL_GPL(xdr_encode_string);
1da177e4 98
d8ed029d 99__be32 *
e5cff482
CL
100xdr_decode_string_inplace(__be32 *p, char **sp,
101 unsigned int *lenp, unsigned int maxlen)
1da177e4 102{
e5cff482 103 u32 len;
1da177e4 104
98866b5a 105 len = be32_to_cpu(*p++);
e5cff482 106 if (len > maxlen)
1da177e4
LT
107 return NULL;
108 *lenp = len;
109 *sp = (char *) p;
110 return p + XDR_QUADLEN(len);
111}
468039ee 112EXPORT_SYMBOL_GPL(xdr_decode_string_inplace);
1da177e4 113
b4687da7
CL
114/**
115 * xdr_terminate_string - '\0'-terminate a string residing in an xdr_buf
116 * @buf: XDR buffer where string resides
117 * @len: length of string, in bytes
118 *
119 */
120void
121xdr_terminate_string(struct xdr_buf *buf, const u32 len)
122{
123 char *kaddr;
124
b8541786 125 kaddr = kmap_atomic(buf->pages[0]);
b4687da7 126 kaddr[buf->page_base + len] = '\0';
b8541786 127 kunmap_atomic(kaddr);
b4687da7 128}
0d961aa9 129EXPORT_SYMBOL_GPL(xdr_terminate_string);
b4687da7 130
1da177e4
LT
131void
132xdr_encode_pages(struct xdr_buf *xdr, struct page **pages, unsigned int base,
133 unsigned int len)
134{
135 struct kvec *tail = xdr->tail;
136 u32 *p;
137
138 xdr->pages = pages;
139 xdr->page_base = base;
140 xdr->page_len = len;
141
142 p = (u32 *)xdr->head[0].iov_base + XDR_QUADLEN(xdr->head[0].iov_len);
143 tail->iov_base = p;
144 tail->iov_len = 0;
145
146 if (len & 3) {
147 unsigned int pad = 4 - (len & 3);
148
149 *p = 0;
150 tail->iov_base = (char *)p + (len & 3);
151 tail->iov_len = pad;
152 len += pad;
153 }
154 xdr->buflen += len;
155 xdr->len += len;
156}
468039ee 157EXPORT_SYMBOL_GPL(xdr_encode_pages);
1da177e4
LT
158
159void
160xdr_inline_pages(struct xdr_buf *xdr, unsigned int offset,
161 struct page **pages, unsigned int base, unsigned int len)
162{
163 struct kvec *head = xdr->head;
164 struct kvec *tail = xdr->tail;
165 char *buf = (char *)head->iov_base;
166 unsigned int buflen = head->iov_len;
167
168 head->iov_len = offset;
169
170 xdr->pages = pages;
171 xdr->page_base = base;
172 xdr->page_len = len;
173
174 tail->iov_base = buf + offset;
175 tail->iov_len = buflen - offset;
176
177 xdr->buflen += len;
178}
468039ee 179EXPORT_SYMBOL_GPL(xdr_inline_pages);
1da177e4 180
1da177e4
LT
181/*
182 * Helper routines for doing 'memmove' like operations on a struct xdr_buf
183 *
184 * _shift_data_right_pages
185 * @pages: vector of pages containing both the source and dest memory area.
186 * @pgto_base: page vector address of destination
187 * @pgfrom_base: page vector address of source
188 * @len: number of bytes to copy
189 *
190 * Note: the addresses pgto_base and pgfrom_base are both calculated in
191 * the same way:
192 * if a memory area starts at byte 'base' in page 'pages[i]',
193 * then its address is given as (i << PAGE_CACHE_SHIFT) + base
194 * Also note: pgfrom_base must be < pgto_base, but the memory areas
195 * they point to may overlap.
196 */
197static void
198_shift_data_right_pages(struct page **pages, size_t pgto_base,
199 size_t pgfrom_base, size_t len)
200{
201 struct page **pgfrom, **pgto;
202 char *vfrom, *vto;
203 size_t copy;
204
205 BUG_ON(pgto_base <= pgfrom_base);
206
207 pgto_base += len;
208 pgfrom_base += len;
209
210 pgto = pages + (pgto_base >> PAGE_CACHE_SHIFT);
211 pgfrom = pages + (pgfrom_base >> PAGE_CACHE_SHIFT);
212
213 pgto_base &= ~PAGE_CACHE_MASK;
214 pgfrom_base &= ~PAGE_CACHE_MASK;
215
216 do {
217 /* Are any pointers crossing a page boundary? */
218 if (pgto_base == 0) {
1da177e4
LT
219 pgto_base = PAGE_CACHE_SIZE;
220 pgto--;
221 }
222 if (pgfrom_base == 0) {
223 pgfrom_base = PAGE_CACHE_SIZE;
224 pgfrom--;
225 }
226
227 copy = len;
228 if (copy > pgto_base)
229 copy = pgto_base;
230 if (copy > pgfrom_base)
231 copy = pgfrom_base;
232 pgto_base -= copy;
233 pgfrom_base -= copy;
234
b8541786
CW
235 vto = kmap_atomic(*pgto);
236 vfrom = kmap_atomic(*pgfrom);
1da177e4 237 memmove(vto + pgto_base, vfrom + pgfrom_base, copy);
bce3481c 238 flush_dcache_page(*pgto);
b8541786
CW
239 kunmap_atomic(vfrom);
240 kunmap_atomic(vto);
1da177e4
LT
241
242 } while ((len -= copy) != 0);
1da177e4
LT
243}
244
245/*
246 * _copy_to_pages
247 * @pages: array of pages
248 * @pgbase: page vector address of destination
249 * @p: pointer to source data
250 * @len: length
251 *
252 * Copies data from an arbitrary memory location into an array of pages
253 * The copy is assumed to be non-overlapping.
254 */
255static void
256_copy_to_pages(struct page **pages, size_t pgbase, const char *p, size_t len)
257{
258 struct page **pgto;
259 char *vto;
260 size_t copy;
261
262 pgto = pages + (pgbase >> PAGE_CACHE_SHIFT);
263 pgbase &= ~PAGE_CACHE_MASK;
264
daeba89d 265 for (;;) {
1da177e4
LT
266 copy = PAGE_CACHE_SIZE - pgbase;
267 if (copy > len)
268 copy = len;
269
b8541786 270 vto = kmap_atomic(*pgto);
1da177e4 271 memcpy(vto + pgbase, p, copy);
b8541786 272 kunmap_atomic(vto);
1da177e4 273
daeba89d
TM
274 len -= copy;
275 if (len == 0)
276 break;
277
1da177e4
LT
278 pgbase += copy;
279 if (pgbase == PAGE_CACHE_SIZE) {
280 flush_dcache_page(*pgto);
281 pgbase = 0;
282 pgto++;
283 }
284 p += copy;
daeba89d 285 }
1da177e4
LT
286 flush_dcache_page(*pgto);
287}
288
289/*
290 * _copy_from_pages
291 * @p: pointer to destination
292 * @pages: array of pages
293 * @pgbase: offset of source data
294 * @len: length
295 *
296 * Copies data into an arbitrary memory location from an array of pages
297 * The copy is assumed to be non-overlapping.
298 */
bf118a34 299void
1da177e4
LT
300_copy_from_pages(char *p, struct page **pages, size_t pgbase, size_t len)
301{
302 struct page **pgfrom;
303 char *vfrom;
304 size_t copy;
305
306 pgfrom = pages + (pgbase >> PAGE_CACHE_SHIFT);
307 pgbase &= ~PAGE_CACHE_MASK;
308
309 do {
310 copy = PAGE_CACHE_SIZE - pgbase;
311 if (copy > len)
312 copy = len;
313
b8541786 314 vfrom = kmap_atomic(*pgfrom);
1da177e4 315 memcpy(p, vfrom + pgbase, copy);
b8541786 316 kunmap_atomic(vfrom);
1da177e4
LT
317
318 pgbase += copy;
319 if (pgbase == PAGE_CACHE_SIZE) {
320 pgbase = 0;
321 pgfrom++;
322 }
323 p += copy;
324
325 } while ((len -= copy) != 0);
326}
bf118a34 327EXPORT_SYMBOL_GPL(_copy_from_pages);
1da177e4
LT
328
329/*
330 * xdr_shrink_bufhead
331 * @buf: xdr_buf
332 * @len: bytes to remove from buf->head[0]
333 *
cca5172a 334 * Shrinks XDR buffer's header kvec buf->head[0] by
1da177e4
LT
335 * 'len' bytes. The extra data is not lost, but is instead
336 * moved into the inlined pages and/or the tail.
337 */
338static void
339xdr_shrink_bufhead(struct xdr_buf *buf, size_t len)
340{
341 struct kvec *head, *tail;
342 size_t copy, offs;
343 unsigned int pglen = buf->page_len;
344
345 tail = buf->tail;
346 head = buf->head;
347 BUG_ON (len > head->iov_len);
348
349 /* Shift the tail first */
350 if (tail->iov_len != 0) {
351 if (tail->iov_len > len) {
352 copy = tail->iov_len - len;
353 memmove((char *)tail->iov_base + len,
354 tail->iov_base, copy);
355 }
356 /* Copy from the inlined pages into the tail */
357 copy = len;
358 if (copy > pglen)
359 copy = pglen;
360 offs = len - copy;
361 if (offs >= tail->iov_len)
362 copy = 0;
363 else if (copy > tail->iov_len - offs)
364 copy = tail->iov_len - offs;
365 if (copy != 0)
366 _copy_from_pages((char *)tail->iov_base + offs,
367 buf->pages,
368 buf->page_base + pglen + offs - len,
369 copy);
370 /* Do we also need to copy data from the head into the tail ? */
371 if (len > pglen) {
372 offs = copy = len - pglen;
373 if (copy > tail->iov_len)
374 copy = tail->iov_len;
375 memcpy(tail->iov_base,
376 (char *)head->iov_base +
377 head->iov_len - offs,
378 copy);
379 }
380 }
381 /* Now handle pages */
382 if (pglen != 0) {
383 if (pglen > len)
384 _shift_data_right_pages(buf->pages,
385 buf->page_base + len,
386 buf->page_base,
387 pglen - len);
388 copy = len;
389 if (len > pglen)
390 copy = pglen;
391 _copy_to_pages(buf->pages, buf->page_base,
392 (char *)head->iov_base + head->iov_len - len,
393 copy);
394 }
395 head->iov_len -= len;
396 buf->buflen -= len;
397 /* Have we truncated the message? */
398 if (buf->len > buf->buflen)
399 buf->len = buf->buflen;
400}
401
402/*
403 * xdr_shrink_pagelen
404 * @buf: xdr_buf
405 * @len: bytes to remove from buf->pages
406 *
cca5172a 407 * Shrinks XDR buffer's page array buf->pages by
1da177e4
LT
408 * 'len' bytes. The extra data is not lost, but is instead
409 * moved into the tail.
410 */
411static void
412xdr_shrink_pagelen(struct xdr_buf *buf, size_t len)
413{
414 struct kvec *tail;
415 size_t copy;
1da177e4 416 unsigned int pglen = buf->page_len;
cf187c2d 417 unsigned int tailbuf_len;
1da177e4
LT
418
419 tail = buf->tail;
420 BUG_ON (len > pglen);
421
cf187c2d
TM
422 tailbuf_len = buf->buflen - buf->head->iov_len - buf->page_len;
423
1da177e4 424 /* Shift the tail first */
cf187c2d
TM
425 if (tailbuf_len != 0) {
426 unsigned int free_space = tailbuf_len - tail->iov_len;
427
428 if (len < free_space)
429 free_space = len;
430 tail->iov_len += free_space;
431
42d6d8ab 432 copy = len;
1da177e4 433 if (tail->iov_len > len) {
0fe62a35 434 char *p = (char *)tail->iov_base + len;
2e29ebb8 435 memmove(p, tail->iov_base, tail->iov_len - len);
42d6d8ab 436 } else
1da177e4 437 copy = tail->iov_len;
42d6d8ab 438 /* Copy from the inlined pages into the tail */
1da177e4
LT
439 _copy_from_pages((char *)tail->iov_base,
440 buf->pages, buf->page_base + pglen - len,
441 copy);
442 }
443 buf->page_len -= len;
444 buf->buflen -= len;
445 /* Have we truncated the message? */
446 if (buf->len > buf->buflen)
447 buf->len = buf->buflen;
448}
449
450void
451xdr_shift_buf(struct xdr_buf *buf, size_t len)
452{
453 xdr_shrink_bufhead(buf, len);
454}
468039ee 455EXPORT_SYMBOL_GPL(xdr_shift_buf);
1da177e4
LT
456
457/**
458 * xdr_init_encode - Initialize a struct xdr_stream for sending data.
459 * @xdr: pointer to xdr_stream struct
460 * @buf: pointer to XDR buffer in which to encode data
461 * @p: current pointer inside XDR buffer
462 *
463 * Note: at the moment the RPC client only passes the length of our
464 * scratch buffer in the xdr_buf's header kvec. Previously this
465 * meant we needed to call xdr_adjust_iovec() after encoding the
466 * data. With the new scheme, the xdr_stream manages the details
467 * of the buffer length, and takes care of adjusting the kvec
468 * length for us.
469 */
d8ed029d 470void xdr_init_encode(struct xdr_stream *xdr, struct xdr_buf *buf, __be32 *p)
1da177e4
LT
471{
472 struct kvec *iov = buf->head;
334ccfd5 473 int scratch_len = buf->buflen - buf->page_len - buf->tail[0].iov_len;
1da177e4 474
334ccfd5 475 BUG_ON(scratch_len < 0);
1da177e4
LT
476 xdr->buf = buf;
477 xdr->iov = iov;
d8ed029d
AD
478 xdr->p = (__be32 *)((char *)iov->iov_base + iov->iov_len);
479 xdr->end = (__be32 *)((char *)iov->iov_base + scratch_len);
334ccfd5
TM
480 BUG_ON(iov->iov_len > scratch_len);
481
482 if (p != xdr->p && p != NULL) {
483 size_t len;
484
485 BUG_ON(p < xdr->p || p > xdr->end);
486 len = (char *)p - (char *)xdr->p;
487 xdr->p = p;
488 buf->len += len;
489 iov->iov_len += len;
490 }
1da177e4 491}
468039ee 492EXPORT_SYMBOL_GPL(xdr_init_encode);
1da177e4
LT
493
494/**
495 * xdr_reserve_space - Reserve buffer space for sending
496 * @xdr: pointer to xdr_stream
497 * @nbytes: number of bytes to reserve
498 *
499 * Checks that we have enough buffer space to encode 'nbytes' more
500 * bytes of data. If so, update the total xdr_buf length, and
501 * adjust the length of the current kvec.
502 */
d8ed029d 503__be32 * xdr_reserve_space(struct xdr_stream *xdr, size_t nbytes)
1da177e4 504{
d8ed029d
AD
505 __be32 *p = xdr->p;
506 __be32 *q;
1da177e4
LT
507
508 /* align nbytes on the next 32-bit boundary */
509 nbytes += 3;
510 nbytes &= ~3;
511 q = p + (nbytes >> 2);
512 if (unlikely(q > xdr->end || q < p))
513 return NULL;
514 xdr->p = q;
515 xdr->iov->iov_len += nbytes;
516 xdr->buf->len += nbytes;
517 return p;
518}
468039ee 519EXPORT_SYMBOL_GPL(xdr_reserve_space);
1da177e4
LT
520
521/**
522 * xdr_write_pages - Insert a list of pages into an XDR buffer for sending
523 * @xdr: pointer to xdr_stream
524 * @pages: list of pages
525 * @base: offset of first byte
526 * @len: length of data in bytes
527 *
528 */
529void xdr_write_pages(struct xdr_stream *xdr, struct page **pages, unsigned int base,
530 unsigned int len)
531{
532 struct xdr_buf *buf = xdr->buf;
533 struct kvec *iov = buf->tail;
534 buf->pages = pages;
535 buf->page_base = base;
536 buf->page_len = len;
537
538 iov->iov_base = (char *)xdr->p;
539 iov->iov_len = 0;
540 xdr->iov = iov;
541
542 if (len & 3) {
543 unsigned int pad = 4 - (len & 3);
544
545 BUG_ON(xdr->p >= xdr->end);
546 iov->iov_base = (char *)xdr->p + (len & 3);
547 iov->iov_len += pad;
548 len += pad;
549 *xdr->p++ = 0;
550 }
551 buf->buflen += len;
552 buf->len += len;
553}
468039ee 554EXPORT_SYMBOL_GPL(xdr_write_pages);
1da177e4 555
6650239a 556static void xdr_set_iov(struct xdr_stream *xdr, struct kvec *iov,
1537693c 557 unsigned int len)
6650239a
TM
558{
559 if (len > iov->iov_len)
560 len = iov->iov_len;
1537693c 561 xdr->p = (__be32*)iov->iov_base;
6650239a
TM
562 xdr->end = (__be32*)(iov->iov_base + len);
563 xdr->iov = iov;
564 xdr->page_ptr = NULL;
565}
566
567static int xdr_set_page_base(struct xdr_stream *xdr,
568 unsigned int base, unsigned int len)
569{
570 unsigned int pgnr;
571 unsigned int maxlen;
572 unsigned int pgoff;
573 unsigned int pgend;
574 void *kaddr;
575
576 maxlen = xdr->buf->page_len;
577 if (base >= maxlen)
578 return -EINVAL;
579 maxlen -= base;
580 if (len > maxlen)
581 len = maxlen;
582
583 base += xdr->buf->page_base;
584
585 pgnr = base >> PAGE_SHIFT;
586 xdr->page_ptr = &xdr->buf->pages[pgnr];
587 kaddr = page_address(*xdr->page_ptr);
588
589 pgoff = base & ~PAGE_MASK;
590 xdr->p = (__be32*)(kaddr + pgoff);
591
592 pgend = pgoff + len;
593 if (pgend > PAGE_SIZE)
594 pgend = PAGE_SIZE;
595 xdr->end = (__be32*)(kaddr + pgend);
596 xdr->iov = NULL;
597 return 0;
598}
599
600static void xdr_set_next_page(struct xdr_stream *xdr)
601{
602 unsigned int newbase;
603
604 newbase = (1 + xdr->page_ptr - xdr->buf->pages) << PAGE_SHIFT;
605 newbase -= xdr->buf->page_base;
606
607 if (xdr_set_page_base(xdr, newbase, PAGE_SIZE) < 0)
1537693c 608 xdr_set_iov(xdr, xdr->buf->tail, xdr->buf->len);
6650239a
TM
609}
610
611static bool xdr_set_next_buffer(struct xdr_stream *xdr)
612{
613 if (xdr->page_ptr != NULL)
614 xdr_set_next_page(xdr);
615 else if (xdr->iov == xdr->buf->head) {
616 if (xdr_set_page_base(xdr, 0, PAGE_SIZE) < 0)
1537693c 617 xdr_set_iov(xdr, xdr->buf->tail, xdr->buf->len);
6650239a
TM
618 }
619 return xdr->p != xdr->end;
620}
621
1da177e4
LT
622/**
623 * xdr_init_decode - Initialize an xdr_stream for decoding data.
624 * @xdr: pointer to xdr_stream struct
625 * @buf: pointer to XDR buffer from which to decode data
626 * @p: current pointer inside XDR buffer
627 */
d8ed029d 628void xdr_init_decode(struct xdr_stream *xdr, struct xdr_buf *buf, __be32 *p)
1da177e4 629{
1da177e4 630 xdr->buf = buf;
6650239a
TM
631 xdr->scratch.iov_base = NULL;
632 xdr->scratch.iov_len = 0;
bfeea1dc 633 xdr->nwords = XDR_QUADLEN(buf->len);
6650239a 634 if (buf->head[0].iov_len != 0)
1537693c 635 xdr_set_iov(xdr, buf->head, buf->len);
6650239a
TM
636 else if (buf->page_len != 0)
637 xdr_set_page_base(xdr, 0, buf->len);
bfeea1dc
TM
638 if (p != NULL && p > xdr->p && xdr->end >= p) {
639 xdr->nwords -= p - xdr->p;
1537693c 640 xdr->p = p;
bfeea1dc 641 }
1da177e4 642}
468039ee 643EXPORT_SYMBOL_GPL(xdr_init_decode);
1da177e4 644
f7da7a12
BH
645/**
646 * xdr_init_decode - Initialize an xdr_stream for decoding data.
647 * @xdr: pointer to xdr_stream struct
648 * @buf: pointer to XDR buffer from which to decode data
649 * @pages: list of pages to decode into
650 * @len: length in bytes of buffer in pages
651 */
652void xdr_init_decode_pages(struct xdr_stream *xdr, struct xdr_buf *buf,
653 struct page **pages, unsigned int len)
654{
655 memset(buf, 0, sizeof(*buf));
656 buf->pages = pages;
657 buf->page_len = len;
658 buf->buflen = len;
659 buf->len = len;
660 xdr_init_decode(xdr, buf, NULL);
661}
662EXPORT_SYMBOL_GPL(xdr_init_decode_pages);
663
6650239a 664static __be32 * __xdr_inline_decode(struct xdr_stream *xdr, size_t nbytes)
ba8e452a 665{
bfeea1dc 666 unsigned int nwords = XDR_QUADLEN(nbytes);
ba8e452a 667 __be32 *p = xdr->p;
bfeea1dc 668 __be32 *q = p + nwords;
ba8e452a 669
bfeea1dc 670 if (unlikely(nwords > xdr->nwords || q > xdr->end || q < p))
ba8e452a 671 return NULL;
6650239a 672 xdr->p = q;
bfeea1dc 673 xdr->nwords -= nwords;
ba8e452a
TM
674 return p;
675}
ba8e452a 676
1da177e4 677/**
6650239a
TM
678 * xdr_set_scratch_buffer - Attach a scratch buffer for decoding data.
679 * @xdr: pointer to xdr_stream struct
680 * @buf: pointer to an empty buffer
681 * @buflen: size of 'buf'
682 *
683 * The scratch buffer is used when decoding from an array of pages.
684 * If an xdr_inline_decode() call spans across page boundaries, then
685 * we copy the data into the scratch buffer in order to allow linear
686 * access.
687 */
688void xdr_set_scratch_buffer(struct xdr_stream *xdr, void *buf, size_t buflen)
689{
690 xdr->scratch.iov_base = buf;
691 xdr->scratch.iov_len = buflen;
692}
693EXPORT_SYMBOL_GPL(xdr_set_scratch_buffer);
694
695static __be32 *xdr_copy_to_scratch(struct xdr_stream *xdr, size_t nbytes)
696{
697 __be32 *p;
698 void *cpdest = xdr->scratch.iov_base;
699 size_t cplen = (char *)xdr->end - (char *)xdr->p;
700
701 if (nbytes > xdr->scratch.iov_len)
702 return NULL;
703 memcpy(cpdest, xdr->p, cplen);
704 cpdest += cplen;
705 nbytes -= cplen;
706 if (!xdr_set_next_buffer(xdr))
707 return NULL;
708 p = __xdr_inline_decode(xdr, nbytes);
709 if (p == NULL)
710 return NULL;
711 memcpy(cpdest, p, nbytes);
712 return xdr->scratch.iov_base;
713}
714
715/**
716 * xdr_inline_decode - Retrieve XDR data to decode
1da177e4
LT
717 * @xdr: pointer to xdr_stream struct
718 * @nbytes: number of bytes of data to decode
719 *
720 * Check if the input buffer is long enough to enable us to decode
721 * 'nbytes' more bytes of data starting at the current position.
722 * If so return the current pointer, then update the current
723 * pointer position.
724 */
d8ed029d 725__be32 * xdr_inline_decode(struct xdr_stream *xdr, size_t nbytes)
1da177e4 726{
6650239a 727 __be32 *p;
1da177e4 728
6650239a
TM
729 if (nbytes == 0)
730 return xdr->p;
731 if (xdr->p == xdr->end && !xdr_set_next_buffer(xdr))
1da177e4 732 return NULL;
6650239a
TM
733 p = __xdr_inline_decode(xdr, nbytes);
734 if (p != NULL)
735 return p;
736 return xdr_copy_to_scratch(xdr, nbytes);
1da177e4 737}
468039ee 738EXPORT_SYMBOL_GPL(xdr_inline_decode);
1da177e4
LT
739
740/**
741 * xdr_read_pages - Ensure page-based XDR data to decode is aligned at current pointer position
742 * @xdr: pointer to xdr_stream struct
743 * @len: number of bytes of page data
744 *
745 * Moves data beyond the current pointer position from the XDR head[] buffer
746 * into the page list. Any data that lies beyond current position + "len"
8b23ea7b 747 * bytes is moved into the XDR tail[].
c337d365
TM
748 *
749 * Returns the number of XDR encoded bytes now contained in the pages
1da177e4 750 */
c337d365 751unsigned int xdr_read_pages(struct xdr_stream *xdr, unsigned int len)
1da177e4
LT
752{
753 struct xdr_buf *buf = xdr->buf;
754 struct kvec *iov;
755 ssize_t shift;
bfeea1dc 756 unsigned int nwords = XDR_QUADLEN(len);
1da177e4
LT
757 unsigned int end;
758 int padding;
759
bfeea1dc 760 if (xdr->nwords == 0)
c337d365 761 return 0;
bfeea1dc
TM
762 if (nwords > xdr->nwords) {
763 nwords = xdr->nwords;
764 len = nwords << 2;
765 }
1da177e4
LT
766 /* Realign pages to current pointer position */
767 iov = buf->head;
768 shift = iov->iov_len + (char *)iov->iov_base - (char *)xdr->p;
769 if (shift > 0)
770 xdr_shrink_bufhead(buf, shift);
771
772 /* Truncate page data and move it into the tail */
773 if (buf->page_len > len)
774 xdr_shrink_pagelen(buf, buf->page_len - len);
bfeea1dc 775 padding = (nwords << 2) - len;
1da177e4
LT
776 xdr->iov = iov = buf->tail;
777 /* Compute remaining message length. */
778 end = iov->iov_len;
779 shift = buf->buflen - buf->len;
bfeea1dc 780 if (end > shift + padding)
1da177e4 781 end -= shift;
bfeea1dc
TM
782 else
783 end = padding;
1da177e4
LT
784 /*
785 * Position current pointer at beginning of tail, and
786 * set remaining message length.
787 */
d8ed029d
AD
788 xdr->p = (__be32 *)((char *)iov->iov_base + padding);
789 xdr->end = (__be32 *)((char *)iov->iov_base + end);
76cacaab 790 xdr->page_ptr = NULL;
bfeea1dc 791 xdr->nwords = XDR_QUADLEN(end - padding);
c337d365 792 return len;
1da177e4 793}
468039ee 794EXPORT_SYMBOL_GPL(xdr_read_pages);
1da177e4 795
8b23ea7b
TM
796/**
797 * xdr_enter_page - decode data from the XDR page
798 * @xdr: pointer to xdr_stream struct
799 * @len: number of bytes of page data
800 *
801 * Moves data beyond the current pointer position from the XDR head[] buffer
802 * into the page list. Any data that lies beyond current position + "len"
803 * bytes is moved into the XDR tail[]. The current pointer is then
804 * repositioned at the beginning of the first XDR page.
805 */
806void xdr_enter_page(struct xdr_stream *xdr, unsigned int len)
807{
c337d365 808 len = xdr_read_pages(xdr, len);
8b23ea7b
TM
809 /*
810 * Position current pointer at beginning of tail, and
811 * set remaining message length.
812 */
6650239a 813 xdr_set_page_base(xdr, 0, len);
bfeea1dc 814 xdr->nwords += XDR_QUADLEN(xdr->buf->page_len);
8b23ea7b 815}
468039ee 816EXPORT_SYMBOL_GPL(xdr_enter_page);
8b23ea7b 817
1da177e4
LT
818static struct kvec empty_iov = {.iov_base = NULL, .iov_len = 0};
819
820void
821xdr_buf_from_iov(struct kvec *iov, struct xdr_buf *buf)
822{
823 buf->head[0] = *iov;
824 buf->tail[0] = empty_iov;
825 buf->page_len = 0;
826 buf->buflen = buf->len = iov->iov_len;
827}
468039ee 828EXPORT_SYMBOL_GPL(xdr_buf_from_iov);
1da177e4 829
1da177e4
LT
830/* Sets subbuf to the portion of buf of length len beginning base bytes
831 * from the start of buf. Returns -1 if base of length are out of bounds. */
832int
833xdr_buf_subsegment(struct xdr_buf *buf, struct xdr_buf *subbuf,
1e78957e 834 unsigned int base, unsigned int len)
1da177e4 835{
1da177e4 836 subbuf->buflen = subbuf->len = len;
1e78957e
TM
837 if (base < buf->head[0].iov_len) {
838 subbuf->head[0].iov_base = buf->head[0].iov_base + base;
839 subbuf->head[0].iov_len = min_t(unsigned int, len,
840 buf->head[0].iov_len - base);
841 len -= subbuf->head[0].iov_len;
842 base = 0;
843 } else {
844 subbuf->head[0].iov_base = NULL;
845 subbuf->head[0].iov_len = 0;
846 base -= buf->head[0].iov_len;
847 }
1da177e4
LT
848
849 if (base < buf->page_len) {
1e78957e
TM
850 subbuf->page_len = min(buf->page_len - base, len);
851 base += buf->page_base;
852 subbuf->page_base = base & ~PAGE_CACHE_MASK;
853 subbuf->pages = &buf->pages[base >> PAGE_CACHE_SHIFT];
1da177e4
LT
854 len -= subbuf->page_len;
855 base = 0;
856 } else {
857 base -= buf->page_len;
858 subbuf->page_len = 0;
859 }
860
1e78957e
TM
861 if (base < buf->tail[0].iov_len) {
862 subbuf->tail[0].iov_base = buf->tail[0].iov_base + base;
863 subbuf->tail[0].iov_len = min_t(unsigned int, len,
864 buf->tail[0].iov_len - base);
865 len -= subbuf->tail[0].iov_len;
866 base = 0;
867 } else {
868 subbuf->tail[0].iov_base = NULL;
869 subbuf->tail[0].iov_len = 0;
870 base -= buf->tail[0].iov_len;
871 }
872
1da177e4
LT
873 if (base || len)
874 return -1;
875 return 0;
876}
468039ee 877EXPORT_SYMBOL_GPL(xdr_buf_subsegment);
1da177e4 878
4e3e43ad 879static void __read_bytes_from_xdr_buf(struct xdr_buf *subbuf, void *obj, unsigned int len)
1da177e4 880{
1e78957e 881 unsigned int this_len;
1da177e4 882
4e3e43ad
TM
883 this_len = min_t(unsigned int, len, subbuf->head[0].iov_len);
884 memcpy(obj, subbuf->head[0].iov_base, this_len);
1da177e4
LT
885 len -= this_len;
886 obj += this_len;
4e3e43ad 887 this_len = min_t(unsigned int, len, subbuf->page_len);
1da177e4 888 if (this_len)
4e3e43ad 889 _copy_from_pages(obj, subbuf->pages, subbuf->page_base, this_len);
1da177e4
LT
890 len -= this_len;
891 obj += this_len;
4e3e43ad
TM
892 this_len = min_t(unsigned int, len, subbuf->tail[0].iov_len);
893 memcpy(obj, subbuf->tail[0].iov_base, this_len);
1da177e4
LT
894}
895
bd8100e7 896/* obj is assumed to point to allocated memory of size at least len: */
4e3e43ad 897int read_bytes_from_xdr_buf(struct xdr_buf *buf, unsigned int base, void *obj, unsigned int len)
bd8100e7
AG
898{
899 struct xdr_buf subbuf;
bd8100e7
AG
900 int status;
901
902 status = xdr_buf_subsegment(buf, &subbuf, base, len);
4e3e43ad
TM
903 if (status != 0)
904 return status;
905 __read_bytes_from_xdr_buf(&subbuf, obj, len);
906 return 0;
907}
468039ee 908EXPORT_SYMBOL_GPL(read_bytes_from_xdr_buf);
4e3e43ad
TM
909
910static void __write_bytes_to_xdr_buf(struct xdr_buf *subbuf, void *obj, unsigned int len)
911{
912 unsigned int this_len;
913
914 this_len = min_t(unsigned int, len, subbuf->head[0].iov_len);
915 memcpy(subbuf->head[0].iov_base, obj, this_len);
bd8100e7
AG
916 len -= this_len;
917 obj += this_len;
4e3e43ad 918 this_len = min_t(unsigned int, len, subbuf->page_len);
bd8100e7 919 if (this_len)
4e3e43ad 920 _copy_to_pages(subbuf->pages, subbuf->page_base, obj, this_len);
bd8100e7
AG
921 len -= this_len;
922 obj += this_len;
4e3e43ad
TM
923 this_len = min_t(unsigned int, len, subbuf->tail[0].iov_len);
924 memcpy(subbuf->tail[0].iov_base, obj, this_len);
925}
926
927/* obj is assumed to point to allocated memory of size at least len: */
928int write_bytes_to_xdr_buf(struct xdr_buf *buf, unsigned int base, void *obj, unsigned int len)
929{
930 struct xdr_buf subbuf;
931 int status;
932
933 status = xdr_buf_subsegment(buf, &subbuf, base, len);
934 if (status != 0)
935 return status;
936 __write_bytes_to_xdr_buf(&subbuf, obj, len);
937 return 0;
bd8100e7 938}
c43abaed 939EXPORT_SYMBOL_GPL(write_bytes_to_xdr_buf);
bd8100e7
AG
940
941int
1e78957e 942xdr_decode_word(struct xdr_buf *buf, unsigned int base, u32 *obj)
1da177e4 943{
d8ed029d 944 __be32 raw;
1da177e4
LT
945 int status;
946
947 status = read_bytes_from_xdr_buf(buf, base, &raw, sizeof(*obj));
948 if (status)
949 return status;
98866b5a 950 *obj = be32_to_cpu(raw);
1da177e4
LT
951 return 0;
952}
468039ee 953EXPORT_SYMBOL_GPL(xdr_decode_word);
1da177e4 954
bd8100e7 955int
1e78957e 956xdr_encode_word(struct xdr_buf *buf, unsigned int base, u32 obj)
bd8100e7 957{
9f162d2a 958 __be32 raw = cpu_to_be32(obj);
bd8100e7
AG
959
960 return write_bytes_to_xdr_buf(buf, base, &raw, sizeof(obj));
961}
468039ee 962EXPORT_SYMBOL_GPL(xdr_encode_word);
bd8100e7 963
1da177e4
LT
964/* If the netobj starting offset bytes from the start of xdr_buf is contained
965 * entirely in the head or the tail, set object to point to it; otherwise
966 * try to find space for it at the end of the tail, copy it there, and
967 * set obj to point to it. */
bee57c99 968int xdr_buf_read_netobj(struct xdr_buf *buf, struct xdr_netobj *obj, unsigned int offset)
1da177e4 969{
bee57c99 970 struct xdr_buf subbuf;
1da177e4 971
bd8100e7 972 if (xdr_decode_word(buf, offset, &obj->len))
bee57c99
TM
973 return -EFAULT;
974 if (xdr_buf_subsegment(buf, &subbuf, offset + 4, obj->len))
975 return -EFAULT;
976
977 /* Is the obj contained entirely in the head? */
978 obj->data = subbuf.head[0].iov_base;
979 if (subbuf.head[0].iov_len == obj->len)
980 return 0;
981 /* ..or is the obj contained entirely in the tail? */
982 obj->data = subbuf.tail[0].iov_base;
983 if (subbuf.tail[0].iov_len == obj->len)
984 return 0;
985
986 /* use end of tail as storage for obj:
987 * (We don't copy to the beginning because then we'd have
988 * to worry about doing a potentially overlapping copy.
989 * This assumes the object is at most half the length of the
990 * tail.) */
991 if (obj->len > buf->buflen - buf->len)
992 return -ENOMEM;
993 if (buf->tail[0].iov_len != 0)
994 obj->data = buf->tail[0].iov_base + buf->tail[0].iov_len;
995 else
996 obj->data = buf->head[0].iov_base + buf->head[0].iov_len;
997 __read_bytes_from_xdr_buf(&subbuf, obj->data, obj->len);
1da177e4 998 return 0;
1da177e4 999}
468039ee 1000EXPORT_SYMBOL_GPL(xdr_buf_read_netobj);
bd8100e7
AG
1001
1002/* Returns 0 on success, or else a negative error code. */
1003static int
1004xdr_xcode_array2(struct xdr_buf *buf, unsigned int base,
1005 struct xdr_array2_desc *desc, int encode)
1006{
1007 char *elem = NULL, *c;
1008 unsigned int copied = 0, todo, avail_here;
1009 struct page **ppages = NULL;
1010 int err;
1011
1012 if (encode) {
1013 if (xdr_encode_word(buf, base, desc->array_len) != 0)
1014 return -EINVAL;
1015 } else {
1016 if (xdr_decode_word(buf, base, &desc->array_len) != 0 ||
58fcb8df 1017 desc->array_len > desc->array_maxlen ||
bd8100e7
AG
1018 (unsigned long) base + 4 + desc->array_len *
1019 desc->elem_size > buf->len)
1020 return -EINVAL;
1021 }
1022 base += 4;
1023
1024 if (!desc->xcode)
1025 return 0;
1026
1027 todo = desc->array_len * desc->elem_size;
1028
1029 /* process head */
1030 if (todo && base < buf->head->iov_len) {
1031 c = buf->head->iov_base + base;
1032 avail_here = min_t(unsigned int, todo,
1033 buf->head->iov_len - base);
1034 todo -= avail_here;
1035
1036 while (avail_here >= desc->elem_size) {
1037 err = desc->xcode(desc, c);
1038 if (err)
1039 goto out;
1040 c += desc->elem_size;
1041 avail_here -= desc->elem_size;
1042 }
1043 if (avail_here) {
1044 if (!elem) {
1045 elem = kmalloc(desc->elem_size, GFP_KERNEL);
1046 err = -ENOMEM;
1047 if (!elem)
1048 goto out;
1049 }
1050 if (encode) {
1051 err = desc->xcode(desc, elem);
1052 if (err)
1053 goto out;
1054 memcpy(c, elem, avail_here);
1055 } else
1056 memcpy(elem, c, avail_here);
1057 copied = avail_here;
1058 }
1059 base = buf->head->iov_len; /* align to start of pages */
1060 }
1061
1062 /* process pages array */
1063 base -= buf->head->iov_len;
1064 if (todo && base < buf->page_len) {
1065 unsigned int avail_page;
1066
1067 avail_here = min(todo, buf->page_len - base);
1068 todo -= avail_here;
1069
1070 base += buf->page_base;
1071 ppages = buf->pages + (base >> PAGE_CACHE_SHIFT);
1072 base &= ~PAGE_CACHE_MASK;
1073 avail_page = min_t(unsigned int, PAGE_CACHE_SIZE - base,
1074 avail_here);
1075 c = kmap(*ppages) + base;
1076
1077 while (avail_here) {
1078 avail_here -= avail_page;
1079 if (copied || avail_page < desc->elem_size) {
1080 unsigned int l = min(avail_page,
1081 desc->elem_size - copied);
1082 if (!elem) {
1083 elem = kmalloc(desc->elem_size,
1084 GFP_KERNEL);
1085 err = -ENOMEM;
1086 if (!elem)
1087 goto out;
1088 }
1089 if (encode) {
1090 if (!copied) {
1091 err = desc->xcode(desc, elem);
1092 if (err)
1093 goto out;
1094 }
1095 memcpy(c, elem + copied, l);
1096 copied += l;
1097 if (copied == desc->elem_size)
1098 copied = 0;
1099 } else {
1100 memcpy(elem + copied, c, l);
1101 copied += l;
1102 if (copied == desc->elem_size) {
1103 err = desc->xcode(desc, elem);
1104 if (err)
1105 goto out;
1106 copied = 0;
1107 }
1108 }
1109 avail_page -= l;
1110 c += l;
1111 }
1112 while (avail_page >= desc->elem_size) {
1113 err = desc->xcode(desc, c);
1114 if (err)
1115 goto out;
1116 c += desc->elem_size;
1117 avail_page -= desc->elem_size;
1118 }
1119 if (avail_page) {
1120 unsigned int l = min(avail_page,
1121 desc->elem_size - copied);
1122 if (!elem) {
1123 elem = kmalloc(desc->elem_size,
1124 GFP_KERNEL);
1125 err = -ENOMEM;
1126 if (!elem)
1127 goto out;
1128 }
1129 if (encode) {
1130 if (!copied) {
1131 err = desc->xcode(desc, elem);
1132 if (err)
1133 goto out;
1134 }
1135 memcpy(c, elem + copied, l);
1136 copied += l;
1137 if (copied == desc->elem_size)
1138 copied = 0;
1139 } else {
1140 memcpy(elem + copied, c, l);
1141 copied += l;
1142 if (copied == desc->elem_size) {
1143 err = desc->xcode(desc, elem);
1144 if (err)
1145 goto out;
1146 copied = 0;
1147 }
1148 }
1149 }
1150 if (avail_here) {
1151 kunmap(*ppages);
1152 ppages++;
1153 c = kmap(*ppages);
1154 }
1155
1156 avail_page = min(avail_here,
1157 (unsigned int) PAGE_CACHE_SIZE);
1158 }
1159 base = buf->page_len; /* align to start of tail */
1160 }
1161
1162 /* process tail */
1163 base -= buf->page_len;
1164 if (todo) {
1165 c = buf->tail->iov_base + base;
1166 if (copied) {
1167 unsigned int l = desc->elem_size - copied;
1168
1169 if (encode)
1170 memcpy(c, elem + copied, l);
1171 else {
1172 memcpy(elem + copied, c, l);
1173 err = desc->xcode(desc, elem);
1174 if (err)
1175 goto out;
1176 }
1177 todo -= l;
1178 c += l;
1179 }
1180 while (todo) {
1181 err = desc->xcode(desc, c);
1182 if (err)
1183 goto out;
1184 c += desc->elem_size;
1185 todo -= desc->elem_size;
1186 }
1187 }
1188 err = 0;
1189
1190out:
a51482bd 1191 kfree(elem);
bd8100e7
AG
1192 if (ppages)
1193 kunmap(*ppages);
1194 return err;
1195}
1196
1197int
1198xdr_decode_array2(struct xdr_buf *buf, unsigned int base,
1199 struct xdr_array2_desc *desc)
1200{
1201 if (base >= buf->len)
1202 return -EINVAL;
1203
1204 return xdr_xcode_array2(buf, base, desc, 0);
1205}
468039ee 1206EXPORT_SYMBOL_GPL(xdr_decode_array2);
bd8100e7
AG
1207
1208int
1209xdr_encode_array2(struct xdr_buf *buf, unsigned int base,
1210 struct xdr_array2_desc *desc)
1211{
1212 if ((unsigned long) base + 4 + desc->array_len * desc->elem_size >
1213 buf->head->iov_len + buf->page_len + buf->tail->iov_len)
1214 return -EINVAL;
1215
1216 return xdr_xcode_array2(buf, base, desc, 1);
1217}
468039ee 1218EXPORT_SYMBOL_GPL(xdr_encode_array2);
37a4e6cb
OK
1219
1220int
1221xdr_process_buf(struct xdr_buf *buf, unsigned int offset, unsigned int len,
cca5172a 1222 int (*actor)(struct scatterlist *, void *), void *data)
37a4e6cb
OK
1223{
1224 int i, ret = 0;
95c96174 1225 unsigned int page_len, thislen, page_offset;
37a4e6cb
OK
1226 struct scatterlist sg[1];
1227
68e3f5dd
HX
1228 sg_init_table(sg, 1);
1229
37a4e6cb
OK
1230 if (offset >= buf->head[0].iov_len) {
1231 offset -= buf->head[0].iov_len;
1232 } else {
1233 thislen = buf->head[0].iov_len - offset;
1234 if (thislen > len)
1235 thislen = len;
1236 sg_set_buf(sg, buf->head[0].iov_base + offset, thislen);
1237 ret = actor(sg, data);
1238 if (ret)
1239 goto out;
1240 offset = 0;
1241 len -= thislen;
1242 }
1243 if (len == 0)
1244 goto out;
1245
1246 if (offset >= buf->page_len) {
1247 offset -= buf->page_len;
1248 } else {
1249 page_len = buf->page_len - offset;
1250 if (page_len > len)
1251 page_len = len;
1252 len -= page_len;
1253 page_offset = (offset + buf->page_base) & (PAGE_CACHE_SIZE - 1);
1254 i = (offset + buf->page_base) >> PAGE_CACHE_SHIFT;
1255 thislen = PAGE_CACHE_SIZE - page_offset;
1256 do {
1257 if (thislen > page_len)
1258 thislen = page_len;
642f1490 1259 sg_set_page(sg, buf->pages[i], thislen, page_offset);
37a4e6cb
OK
1260 ret = actor(sg, data);
1261 if (ret)
1262 goto out;
1263 page_len -= thislen;
1264 i++;
1265 page_offset = 0;
1266 thislen = PAGE_CACHE_SIZE;
1267 } while (page_len != 0);
1268 offset = 0;
1269 }
1270 if (len == 0)
1271 goto out;
1272 if (offset < buf->tail[0].iov_len) {
1273 thislen = buf->tail[0].iov_len - offset;
1274 if (thislen > len)
1275 thislen = len;
1276 sg_set_buf(sg, buf->tail[0].iov_base + offset, thislen);
1277 ret = actor(sg, data);
1278 len -= thislen;
1279 }
1280 if (len != 0)
1281 ret = -EINVAL;
1282out:
1283 return ret;
1284}
468039ee 1285EXPORT_SYMBOL_GPL(xdr_process_buf);
37a4e6cb 1286