blob: b717134ebe1700808ed56415eb7a8ed25da4ec6e [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
Luis R. Rodriguez23558692017-09-08 16:17:00 -07002 * kmod - the kernel module loader
3 */
Linus Torvalds1da177e2005-04-16 15:20:36 -07004#include <linux/module.h>
5#include <linux/sched.h>
Ingo Molnar29930022017-02-08 18:51:36 +01006#include <linux/sched/task.h>
Ingo Molnar5c2c5c52017-02-05 14:24:31 +01007#include <linux/binfmts.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -07008#include <linux/syscalls.h>
9#include <linux/unistd.h>
10#include <linux/kmod.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070011#include <linux/slab.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070012#include <linux/completion.h>
Eric Paris17f60a72011-04-01 17:07:50 -040013#include <linux/cred.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070014#include <linux/file.h>
Al Viro9f3acc32008-04-24 07:44:08 -040015#include <linux/fdtable.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070016#include <linux/workqueue.h>
17#include <linux/security.h>
18#include <linux/mount.h>
19#include <linux/kernel.h>
20#include <linux/init.h>
Andi Kleend025c9d2006-09-30 23:29:28 -070021#include <linux/resource.h>
Rafael J. Wysocki8cdd4932007-07-19 01:47:36 -070022#include <linux/notifier.h>
23#include <linux/suspend.h>
Srivatsa S. Bhatb298d282011-12-09 23:36:36 +010024#include <linux/rwsem.h>
Al Viroa74fb732012-10-10 21:28:25 -040025#include <linux/ptrace.h>
Tejun Heo0fdff3e2013-01-22 16:48:03 -080026#include <linux/async.h>
Linus Torvalds7c0f6ba2016-12-24 11:46:01 -080027#include <linux/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070028
Li Zefan7ead8b82009-08-17 16:56:28 +080029#include <trace/events/module.h>
30
Luis R. Rodriguez165d1cc2017-06-23 12:19:12 -070031/*
32 * Assuming:
33 *
34 * threads = div64_u64((u64) totalram_pages * (u64) PAGE_SIZE,
35 * (u64) THREAD_SIZE * 8UL);
36 *
37 * If you need less than 50 threads would mean we're dealing with systems
Qiujun Huang06d4f812020-04-06 20:11:49 -070038 * smaller than 3200 pages. This assumes you are capable of having ~13M memory,
Tiezhu Yang6f9e1482020-08-11 18:36:12 -070039 * and this would only be an upper limit, after which the OOM killer would take
40 * effect. Systems like these are very unlikely if modules are enabled.
Luis R. Rodriguez165d1cc2017-06-23 12:19:12 -070041 */
42#define MAX_KMOD_CONCURRENT 50
43static atomic_t kmod_concurrent_max = ATOMIC_INIT(MAX_KMOD_CONCURRENT);
Luis R. Rodriguez6d7964a2017-07-14 14:50:11 -070044static DECLARE_WAIT_QUEUE_HEAD(kmod_wq);
Linus Torvalds1da177e2005-04-16 15:20:36 -070045
46/*
Luis R. Rodriguez2ba293c2017-08-18 15:15:58 -070047 * This is a restriction on having *all* MAX_KMOD_CONCURRENT threads
48 * running at the same time without returning. When this happens we
49 * believe you've somehow ended up with a recursive module dependency
50 * creating a loop.
51 *
52 * We have no option but to fail.
53 *
54 * Userspace should proactively try to detect and prevent these.
55 */
56#define MAX_KMOD_ALL_BUSY_TIMEOUT 5
57
58/*
Linus Torvalds1da177e2005-04-16 15:20:36 -070059 modprobe_path is set via /proc/sys.
60*/
Rasmus Villemoes17652f42021-05-06 18:05:45 -070061char modprobe_path[KMOD_PATH_LEN] = CONFIG_MODPROBE_PATH;
Linus Torvalds1da177e2005-04-16 15:20:36 -070062
Oleg Nesterov1cc684a2012-03-23 15:02:50 -070063static void free_modprobe_argv(struct subprocess_info *info)
64{
65 kfree(info->argv[3]); /* check call_modprobe() */
66 kfree(info->argv);
67}
68
Oleg Nesterov3e63a932012-03-23 15:02:49 -070069static int call_modprobe(char *module_name, int wait)
70{
Lucas De Marchif6344602013-04-30 15:28:03 -070071 struct subprocess_info *info;
Oleg Nesterov3e63a932012-03-23 15:02:49 -070072 static char *envp[] = {
73 "HOME=/",
74 "TERM=linux",
75 "PATH=/sbin:/usr/sbin:/bin:/usr/bin",
76 NULL
77 };
78
Oleg Nesterov1cc684a2012-03-23 15:02:50 -070079 char **argv = kmalloc(sizeof(char *[5]), GFP_KERNEL);
80 if (!argv)
81 goto out;
82
83 module_name = kstrdup(module_name, GFP_KERNEL);
84 if (!module_name)
85 goto free_argv;
86
87 argv[0] = modprobe_path;
88 argv[1] = "-q";
89 argv[2] = "--";
90 argv[3] = module_name; /* check free_modprobe_argv() */
91 argv[4] = NULL;
Oleg Nesterov3e63a932012-03-23 15:02:49 -070092
Lucas De Marchif6344602013-04-30 15:28:03 -070093 info = call_usermodehelper_setup(modprobe_path, argv, envp, GFP_KERNEL,
94 NULL, free_modprobe_argv, NULL);
95 if (!info)
96 goto free_module_name;
97
98 return call_usermodehelper_exec(info, wait | UMH_KILLABLE);
99
100free_module_name:
101 kfree(module_name);
Oleg Nesterov1cc684a2012-03-23 15:02:50 -0700102free_argv:
103 kfree(argv);
104out:
105 return -ENOMEM;
Oleg Nesterov3e63a932012-03-23 15:02:49 -0700106}
107
Linus Torvalds1da177e2005-04-16 15:20:36 -0700108/**
Arjan van de Venacae0512009-02-08 10:42:01 -0800109 * __request_module - try to load a kernel module
110 * @wait: wait (or not) for the operation to complete
Randy Dunlapbd4207c2009-01-06 14:42:39 -0800111 * @fmt: printf style format string for the name of the module
112 * @...: arguments as specified in the format string
Linus Torvalds1da177e2005-04-16 15:20:36 -0700113 *
114 * Load a module using the user mode module loader. The function returns
NeilBrown60b61a62015-09-09 15:38:10 -0700115 * zero on success or a negative errno code or positive exit code from
116 * "modprobe" on failure. Note that a successful module load does not mean
117 * the module did not then unload and exit on an error of its own. Callers
118 * must check that the service they requested is now available not blindly
119 * invoke it.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700120 *
121 * If module auto-loading support is disabled then this function
Eric Biggersd7d27cf2020-04-10 14:33:43 -0700122 * simply returns -ENOENT.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700123 */
Arjan van de Venacae0512009-02-08 10:42:01 -0800124int __request_module(bool wait, const char *fmt, ...)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700125{
126 va_list args;
127 char module_name[MODULE_NAME_LEN];
Linus Torvalds1da177e2005-04-16 15:20:36 -0700128 int ret;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700129
Tejun Heo0fdff3e2013-01-22 16:48:03 -0800130 /*
131 * We don't allow synchronous module loading from async. Module
132 * init may invoke async_synchronize_full() which will end up
133 * waiting for this task which already is waiting for the module
134 * loading to complete, leading to a deadlock.
135 */
136 WARN_ON_ONCE(wait && current_is_async());
137
Oleg Nesterov7f57cfa2013-07-03 15:08:15 -0700138 if (!modprobe_path[0])
Eric Biggersd7d27cf2020-04-10 14:33:43 -0700139 return -ENOENT;
Oleg Nesterov7f57cfa2013-07-03 15:08:15 -0700140
Linus Torvalds1da177e2005-04-16 15:20:36 -0700141 va_start(args, fmt);
142 ret = vsnprintf(module_name, MODULE_NAME_LEN, fmt, args);
143 va_end(args);
144 if (ret >= MODULE_NAME_LEN)
145 return -ENAMETOOLONG;
146
Eric Parisdd8dbf22009-11-03 16:35:32 +1100147 ret = security_kernel_module_request(module_name);
148 if (ret)
149 return ret;
150
Luis R. Rodriguez165d1cc2017-06-23 12:19:12 -0700151 if (atomic_dec_if_positive(&kmod_concurrent_max) < 0) {
Luis R. Rodriguez6d7964a2017-07-14 14:50:11 -0700152 pr_warn_ratelimited("request_module: kmod_concurrent_max (%u) close to 0 (max_modprobes: %u), for module %s, throttling...",
153 atomic_read(&kmod_concurrent_max),
154 MAX_KMOD_CONCURRENT, module_name);
Luis R. Rodriguez2ba293c2017-08-18 15:15:58 -0700155 ret = wait_event_killable_timeout(kmod_wq,
156 atomic_dec_if_positive(&kmod_concurrent_max) >= 0,
157 MAX_KMOD_ALL_BUSY_TIMEOUT * HZ);
158 if (!ret) {
159 pr_warn_ratelimited("request_module: modprobe %s cannot be processed, kmod busy with %d threads for more than %d seconds now",
160 module_name, MAX_KMOD_CONCURRENT, MAX_KMOD_ALL_BUSY_TIMEOUT);
161 return -ETIME;
162 } else if (ret == -ERESTARTSYS) {
163 pr_warn_ratelimited("request_module: sigkill sent for modprobe %s, giving up", module_name);
164 return ret;
165 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700166 }
167
Li Zefan7ead8b82009-08-17 16:56:28 +0800168 trace_module_request(module_name, wait, _RET_IP_);
169
Oleg Nesterov3e63a932012-03-23 15:02:49 -0700170 ret = call_modprobe(module_name, wait ? UMH_WAIT_PROC : UMH_WAIT_EXEC);
Neil Hormana06a4dc2010-05-26 14:42:58 -0700171
Luis R. Rodriguez165d1cc2017-06-23 12:19:12 -0700172 atomic_inc(&kmod_concurrent_max);
Luis R. Rodriguez6d7964a2017-07-14 14:50:11 -0700173 wake_up(&kmod_wq);
Luis R. Rodriguez165d1cc2017-06-23 12:19:12 -0700174
Linus Torvalds1da177e2005-04-16 15:20:36 -0700175 return ret;
176}
Arjan van de Venacae0512009-02-08 10:42:01 -0800177EXPORT_SYMBOL(__request_module);