162306a36Sopenharmony_ci// SPDX-License-Identifier: GPL-2.0
262306a36Sopenharmony_ci#include <linux/kernel.h>
362306a36Sopenharmony_ci#include <linux/errno.h>
462306a36Sopenharmony_ci#include <linux/file.h>
562306a36Sopenharmony_ci#include <linux/slab.h>
662306a36Sopenharmony_ci#include <linux/net.h>
762306a36Sopenharmony_ci#include <linux/compat.h>
862306a36Sopenharmony_ci#include <net/compat.h>
962306a36Sopenharmony_ci#include <linux/io_uring.h>
1062306a36Sopenharmony_ci
1162306a36Sopenharmony_ci#include <uapi/linux/io_uring.h>
1262306a36Sopenharmony_ci
1362306a36Sopenharmony_ci#include "io_uring.h"
1462306a36Sopenharmony_ci#include "kbuf.h"
1562306a36Sopenharmony_ci#include "alloc_cache.h"
1662306a36Sopenharmony_ci#include "net.h"
1762306a36Sopenharmony_ci#include "notif.h"
1862306a36Sopenharmony_ci#include "rsrc.h"
1962306a36Sopenharmony_ci
2062306a36Sopenharmony_ci#if defined(CONFIG_NET)
2162306a36Sopenharmony_cistruct io_shutdown {
2262306a36Sopenharmony_ci	struct file			*file;
2362306a36Sopenharmony_ci	int				how;
2462306a36Sopenharmony_ci};
2562306a36Sopenharmony_ci
2662306a36Sopenharmony_cistruct io_accept {
2762306a36Sopenharmony_ci	struct file			*file;
2862306a36Sopenharmony_ci	struct sockaddr __user		*addr;
2962306a36Sopenharmony_ci	int __user			*addr_len;
3062306a36Sopenharmony_ci	int				flags;
3162306a36Sopenharmony_ci	u32				file_slot;
3262306a36Sopenharmony_ci	unsigned long			nofile;
3362306a36Sopenharmony_ci};
3462306a36Sopenharmony_ci
3562306a36Sopenharmony_cistruct io_socket {
3662306a36Sopenharmony_ci	struct file			*file;
3762306a36Sopenharmony_ci	int				domain;
3862306a36Sopenharmony_ci	int				type;
3962306a36Sopenharmony_ci	int				protocol;
4062306a36Sopenharmony_ci	int				flags;
4162306a36Sopenharmony_ci	u32				file_slot;
4262306a36Sopenharmony_ci	unsigned long			nofile;
4362306a36Sopenharmony_ci};
4462306a36Sopenharmony_ci
4562306a36Sopenharmony_cistruct io_connect {
4662306a36Sopenharmony_ci	struct file			*file;
4762306a36Sopenharmony_ci	struct sockaddr __user		*addr;
4862306a36Sopenharmony_ci	int				addr_len;
4962306a36Sopenharmony_ci	bool				in_progress;
5062306a36Sopenharmony_ci	bool				seen_econnaborted;
5162306a36Sopenharmony_ci};
5262306a36Sopenharmony_ci
5362306a36Sopenharmony_cistruct io_sr_msg {
5462306a36Sopenharmony_ci	struct file			*file;
5562306a36Sopenharmony_ci	union {
5662306a36Sopenharmony_ci		struct compat_msghdr __user	*umsg_compat;
5762306a36Sopenharmony_ci		struct user_msghdr __user	*umsg;
5862306a36Sopenharmony_ci		void __user			*buf;
5962306a36Sopenharmony_ci	};
6062306a36Sopenharmony_ci	unsigned			len;
6162306a36Sopenharmony_ci	unsigned			done_io;
6262306a36Sopenharmony_ci	unsigned			msg_flags;
6362306a36Sopenharmony_ci	unsigned			nr_multishot_loops;
6462306a36Sopenharmony_ci	u16				flags;
6562306a36Sopenharmony_ci	/* initialised and used only by !msg send variants */
6662306a36Sopenharmony_ci	u16				addr_len;
6762306a36Sopenharmony_ci	u16				buf_group;
6862306a36Sopenharmony_ci	void __user			*addr;
6962306a36Sopenharmony_ci	void __user			*msg_control;
7062306a36Sopenharmony_ci	/* used only for send zerocopy */
7162306a36Sopenharmony_ci	struct io_kiocb 		*notif;
7262306a36Sopenharmony_ci};
7362306a36Sopenharmony_ci
7462306a36Sopenharmony_ci/*
7562306a36Sopenharmony_ci * Number of times we'll try and do receives if there's more data. If we
7662306a36Sopenharmony_ci * exceed this limit, then add us to the back of the queue and retry from
7762306a36Sopenharmony_ci * there. This helps fairness between flooding clients.
7862306a36Sopenharmony_ci */
7962306a36Sopenharmony_ci#define MULTISHOT_MAX_RETRY	32
8062306a36Sopenharmony_ci
8162306a36Sopenharmony_cistatic inline bool io_check_multishot(struct io_kiocb *req,
8262306a36Sopenharmony_ci				      unsigned int issue_flags)
8362306a36Sopenharmony_ci{
8462306a36Sopenharmony_ci	/*
8562306a36Sopenharmony_ci	 * When ->locked_cq is set we only allow to post CQEs from the original
8662306a36Sopenharmony_ci	 * task context. Usual request completions will be handled in other
8762306a36Sopenharmony_ci	 * generic paths but multipoll may decide to post extra cqes.
8862306a36Sopenharmony_ci	 */
8962306a36Sopenharmony_ci	return !(issue_flags & IO_URING_F_IOWQ) ||
9062306a36Sopenharmony_ci		!(req->flags & REQ_F_APOLL_MULTISHOT) ||
9162306a36Sopenharmony_ci		!req->ctx->task_complete;
9262306a36Sopenharmony_ci}
9362306a36Sopenharmony_ci
9462306a36Sopenharmony_ciint io_shutdown_prep(struct io_kiocb *req, const struct io_uring_sqe *sqe)
9562306a36Sopenharmony_ci{
9662306a36Sopenharmony_ci	struct io_shutdown *shutdown = io_kiocb_to_cmd(req, struct io_shutdown);
9762306a36Sopenharmony_ci
9862306a36Sopenharmony_ci	if (unlikely(sqe->off || sqe->addr || sqe->rw_flags ||
9962306a36Sopenharmony_ci		     sqe->buf_index || sqe->splice_fd_in))
10062306a36Sopenharmony_ci		return -EINVAL;
10162306a36Sopenharmony_ci
10262306a36Sopenharmony_ci	shutdown->how = READ_ONCE(sqe->len);
10362306a36Sopenharmony_ci	req->flags |= REQ_F_FORCE_ASYNC;
10462306a36Sopenharmony_ci	return 0;
10562306a36Sopenharmony_ci}
10662306a36Sopenharmony_ci
10762306a36Sopenharmony_ciint io_shutdown(struct io_kiocb *req, unsigned int issue_flags)
10862306a36Sopenharmony_ci{
10962306a36Sopenharmony_ci	struct io_shutdown *shutdown = io_kiocb_to_cmd(req, struct io_shutdown);
11062306a36Sopenharmony_ci	struct socket *sock;
11162306a36Sopenharmony_ci	int ret;
11262306a36Sopenharmony_ci
11362306a36Sopenharmony_ci	WARN_ON_ONCE(issue_flags & IO_URING_F_NONBLOCK);
11462306a36Sopenharmony_ci
11562306a36Sopenharmony_ci	sock = sock_from_file(req->file);
11662306a36Sopenharmony_ci	if (unlikely(!sock))
11762306a36Sopenharmony_ci		return -ENOTSOCK;
11862306a36Sopenharmony_ci
11962306a36Sopenharmony_ci	ret = __sys_shutdown_sock(sock, shutdown->how);
12062306a36Sopenharmony_ci	io_req_set_res(req, ret, 0);
12162306a36Sopenharmony_ci	return IOU_OK;
12262306a36Sopenharmony_ci}
12362306a36Sopenharmony_ci
12462306a36Sopenharmony_cistatic bool io_net_retry(struct socket *sock, int flags)
12562306a36Sopenharmony_ci{
12662306a36Sopenharmony_ci	if (!(flags & MSG_WAITALL))
12762306a36Sopenharmony_ci		return false;
12862306a36Sopenharmony_ci	return sock->type == SOCK_STREAM || sock->type == SOCK_SEQPACKET;
12962306a36Sopenharmony_ci}
13062306a36Sopenharmony_ci
13162306a36Sopenharmony_cistatic void io_netmsg_recycle(struct io_kiocb *req, unsigned int issue_flags)
13262306a36Sopenharmony_ci{
13362306a36Sopenharmony_ci	struct io_async_msghdr *hdr = req->async_data;
13462306a36Sopenharmony_ci
13562306a36Sopenharmony_ci	if (!req_has_async_data(req) || issue_flags & IO_URING_F_UNLOCKED)
13662306a36Sopenharmony_ci		return;
13762306a36Sopenharmony_ci
13862306a36Sopenharmony_ci	/* Let normal cleanup path reap it if we fail adding to the cache */
13962306a36Sopenharmony_ci	if (io_alloc_cache_put(&req->ctx->netmsg_cache, &hdr->cache)) {
14062306a36Sopenharmony_ci		req->async_data = NULL;
14162306a36Sopenharmony_ci		req->flags &= ~REQ_F_ASYNC_DATA;
14262306a36Sopenharmony_ci	}
14362306a36Sopenharmony_ci}
14462306a36Sopenharmony_ci
14562306a36Sopenharmony_cistatic struct io_async_msghdr *io_msg_alloc_async(struct io_kiocb *req,
14662306a36Sopenharmony_ci						  unsigned int issue_flags)
14762306a36Sopenharmony_ci{
14862306a36Sopenharmony_ci	struct io_ring_ctx *ctx = req->ctx;
14962306a36Sopenharmony_ci	struct io_cache_entry *entry;
15062306a36Sopenharmony_ci	struct io_async_msghdr *hdr;
15162306a36Sopenharmony_ci
15262306a36Sopenharmony_ci	if (!(issue_flags & IO_URING_F_UNLOCKED)) {
15362306a36Sopenharmony_ci		entry = io_alloc_cache_get(&ctx->netmsg_cache);
15462306a36Sopenharmony_ci		if (entry) {
15562306a36Sopenharmony_ci			hdr = container_of(entry, struct io_async_msghdr, cache);
15662306a36Sopenharmony_ci			hdr->free_iov = NULL;
15762306a36Sopenharmony_ci			req->flags |= REQ_F_ASYNC_DATA;
15862306a36Sopenharmony_ci			req->async_data = hdr;
15962306a36Sopenharmony_ci			return hdr;
16062306a36Sopenharmony_ci		}
16162306a36Sopenharmony_ci	}
16262306a36Sopenharmony_ci
16362306a36Sopenharmony_ci	if (!io_alloc_async_data(req)) {
16462306a36Sopenharmony_ci		hdr = req->async_data;
16562306a36Sopenharmony_ci		hdr->free_iov = NULL;
16662306a36Sopenharmony_ci		return hdr;
16762306a36Sopenharmony_ci	}
16862306a36Sopenharmony_ci	return NULL;
16962306a36Sopenharmony_ci}
17062306a36Sopenharmony_ci
17162306a36Sopenharmony_cistatic inline struct io_async_msghdr *io_msg_alloc_async_prep(struct io_kiocb *req)
17262306a36Sopenharmony_ci{
17362306a36Sopenharmony_ci	/* ->prep_async is always called from the submission context */
17462306a36Sopenharmony_ci	return io_msg_alloc_async(req, 0);
17562306a36Sopenharmony_ci}
17662306a36Sopenharmony_ci
17762306a36Sopenharmony_cistatic int io_setup_async_msg(struct io_kiocb *req,
17862306a36Sopenharmony_ci			      struct io_async_msghdr *kmsg,
17962306a36Sopenharmony_ci			      unsigned int issue_flags)
18062306a36Sopenharmony_ci{
18162306a36Sopenharmony_ci	struct io_async_msghdr *async_msg;
18262306a36Sopenharmony_ci
18362306a36Sopenharmony_ci	if (req_has_async_data(req))
18462306a36Sopenharmony_ci		return -EAGAIN;
18562306a36Sopenharmony_ci	async_msg = io_msg_alloc_async(req, issue_flags);
18662306a36Sopenharmony_ci	if (!async_msg) {
18762306a36Sopenharmony_ci		kfree(kmsg->free_iov);
18862306a36Sopenharmony_ci		return -ENOMEM;
18962306a36Sopenharmony_ci	}
19062306a36Sopenharmony_ci	req->flags |= REQ_F_NEED_CLEANUP;
19162306a36Sopenharmony_ci	memcpy(async_msg, kmsg, sizeof(*kmsg));
19262306a36Sopenharmony_ci	if (async_msg->msg.msg_name)
19362306a36Sopenharmony_ci		async_msg->msg.msg_name = &async_msg->addr;
19462306a36Sopenharmony_ci
19562306a36Sopenharmony_ci	if ((req->flags & REQ_F_BUFFER_SELECT) && !async_msg->msg.msg_iter.nr_segs)
19662306a36Sopenharmony_ci		return -EAGAIN;
19762306a36Sopenharmony_ci
19862306a36Sopenharmony_ci	/* if were using fast_iov, set it to the new one */
19962306a36Sopenharmony_ci	if (iter_is_iovec(&kmsg->msg.msg_iter) && !kmsg->free_iov) {
20062306a36Sopenharmony_ci		size_t fast_idx = iter_iov(&kmsg->msg.msg_iter) - kmsg->fast_iov;
20162306a36Sopenharmony_ci		async_msg->msg.msg_iter.__iov = &async_msg->fast_iov[fast_idx];
20262306a36Sopenharmony_ci	}
20362306a36Sopenharmony_ci
20462306a36Sopenharmony_ci	return -EAGAIN;
20562306a36Sopenharmony_ci}
20662306a36Sopenharmony_ci
20762306a36Sopenharmony_ci#ifdef CONFIG_COMPAT
20862306a36Sopenharmony_cistatic int io_compat_msg_copy_hdr(struct io_kiocb *req,
20962306a36Sopenharmony_ci				  struct io_async_msghdr *iomsg,
21062306a36Sopenharmony_ci				  struct compat_msghdr *msg, int ddir)
21162306a36Sopenharmony_ci{
21262306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
21362306a36Sopenharmony_ci	struct compat_iovec __user *uiov;
21462306a36Sopenharmony_ci	int ret;
21562306a36Sopenharmony_ci
21662306a36Sopenharmony_ci	if (copy_from_user(msg, sr->umsg_compat, sizeof(*msg)))
21762306a36Sopenharmony_ci		return -EFAULT;
21862306a36Sopenharmony_ci
21962306a36Sopenharmony_ci	uiov = compat_ptr(msg->msg_iov);
22062306a36Sopenharmony_ci	if (req->flags & REQ_F_BUFFER_SELECT) {
22162306a36Sopenharmony_ci		compat_ssize_t clen;
22262306a36Sopenharmony_ci
22362306a36Sopenharmony_ci		iomsg->free_iov = NULL;
22462306a36Sopenharmony_ci		if (msg->msg_iovlen == 0) {
22562306a36Sopenharmony_ci			sr->len = 0;
22662306a36Sopenharmony_ci		} else if (msg->msg_iovlen > 1) {
22762306a36Sopenharmony_ci			return -EINVAL;
22862306a36Sopenharmony_ci		} else {
22962306a36Sopenharmony_ci			if (!access_ok(uiov, sizeof(*uiov)))
23062306a36Sopenharmony_ci				return -EFAULT;
23162306a36Sopenharmony_ci			if (__get_user(clen, &uiov->iov_len))
23262306a36Sopenharmony_ci				return -EFAULT;
23362306a36Sopenharmony_ci			if (clen < 0)
23462306a36Sopenharmony_ci				return -EINVAL;
23562306a36Sopenharmony_ci			sr->len = clen;
23662306a36Sopenharmony_ci		}
23762306a36Sopenharmony_ci
23862306a36Sopenharmony_ci		return 0;
23962306a36Sopenharmony_ci	}
24062306a36Sopenharmony_ci
24162306a36Sopenharmony_ci	iomsg->free_iov = iomsg->fast_iov;
24262306a36Sopenharmony_ci	ret = __import_iovec(ddir, (struct iovec __user *)uiov, msg->msg_iovlen,
24362306a36Sopenharmony_ci				UIO_FASTIOV, &iomsg->free_iov,
24462306a36Sopenharmony_ci				&iomsg->msg.msg_iter, true);
24562306a36Sopenharmony_ci	if (unlikely(ret < 0))
24662306a36Sopenharmony_ci		return ret;
24762306a36Sopenharmony_ci
24862306a36Sopenharmony_ci	return 0;
24962306a36Sopenharmony_ci}
25062306a36Sopenharmony_ci#endif
25162306a36Sopenharmony_ci
25262306a36Sopenharmony_cistatic int io_msg_copy_hdr(struct io_kiocb *req, struct io_async_msghdr *iomsg,
25362306a36Sopenharmony_ci			   struct user_msghdr *msg, int ddir)
25462306a36Sopenharmony_ci{
25562306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
25662306a36Sopenharmony_ci	int ret;
25762306a36Sopenharmony_ci
25862306a36Sopenharmony_ci	if (copy_from_user(msg, sr->umsg, sizeof(*sr->umsg)))
25962306a36Sopenharmony_ci		return -EFAULT;
26062306a36Sopenharmony_ci
26162306a36Sopenharmony_ci	if (req->flags & REQ_F_BUFFER_SELECT) {
26262306a36Sopenharmony_ci		if (msg->msg_iovlen == 0) {
26362306a36Sopenharmony_ci			sr->len = iomsg->fast_iov[0].iov_len = 0;
26462306a36Sopenharmony_ci			iomsg->fast_iov[0].iov_base = NULL;
26562306a36Sopenharmony_ci			iomsg->free_iov = NULL;
26662306a36Sopenharmony_ci		} else if (msg->msg_iovlen > 1) {
26762306a36Sopenharmony_ci			return -EINVAL;
26862306a36Sopenharmony_ci		} else {
26962306a36Sopenharmony_ci			if (copy_from_user(iomsg->fast_iov, msg->msg_iov,
27062306a36Sopenharmony_ci					   sizeof(*msg->msg_iov)))
27162306a36Sopenharmony_ci				return -EFAULT;
27262306a36Sopenharmony_ci			sr->len = iomsg->fast_iov[0].iov_len;
27362306a36Sopenharmony_ci			iomsg->free_iov = NULL;
27462306a36Sopenharmony_ci		}
27562306a36Sopenharmony_ci
27662306a36Sopenharmony_ci		return 0;
27762306a36Sopenharmony_ci	}
27862306a36Sopenharmony_ci
27962306a36Sopenharmony_ci	iomsg->free_iov = iomsg->fast_iov;
28062306a36Sopenharmony_ci	ret = __import_iovec(ddir, msg->msg_iov, msg->msg_iovlen, UIO_FASTIOV,
28162306a36Sopenharmony_ci				&iomsg->free_iov, &iomsg->msg.msg_iter, false);
28262306a36Sopenharmony_ci	if (unlikely(ret < 0))
28362306a36Sopenharmony_ci		return ret;
28462306a36Sopenharmony_ci
28562306a36Sopenharmony_ci	return 0;
28662306a36Sopenharmony_ci}
28762306a36Sopenharmony_ci
28862306a36Sopenharmony_cistatic int io_sendmsg_copy_hdr(struct io_kiocb *req,
28962306a36Sopenharmony_ci			       struct io_async_msghdr *iomsg)
29062306a36Sopenharmony_ci{
29162306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
29262306a36Sopenharmony_ci	struct user_msghdr msg;
29362306a36Sopenharmony_ci	int ret;
29462306a36Sopenharmony_ci
29562306a36Sopenharmony_ci	iomsg->msg.msg_name = &iomsg->addr;
29662306a36Sopenharmony_ci	iomsg->msg.msg_iter.nr_segs = 0;
29762306a36Sopenharmony_ci
29862306a36Sopenharmony_ci#ifdef CONFIG_COMPAT
29962306a36Sopenharmony_ci	if (unlikely(req->ctx->compat)) {
30062306a36Sopenharmony_ci		struct compat_msghdr cmsg;
30162306a36Sopenharmony_ci
30262306a36Sopenharmony_ci		ret = io_compat_msg_copy_hdr(req, iomsg, &cmsg, ITER_SOURCE);
30362306a36Sopenharmony_ci		if (unlikely(ret))
30462306a36Sopenharmony_ci			return ret;
30562306a36Sopenharmony_ci
30662306a36Sopenharmony_ci		return __get_compat_msghdr(&iomsg->msg, &cmsg, NULL);
30762306a36Sopenharmony_ci	}
30862306a36Sopenharmony_ci#endif
30962306a36Sopenharmony_ci
31062306a36Sopenharmony_ci	ret = io_msg_copy_hdr(req, iomsg, &msg, ITER_SOURCE);
31162306a36Sopenharmony_ci	if (unlikely(ret))
31262306a36Sopenharmony_ci		return ret;
31362306a36Sopenharmony_ci
31462306a36Sopenharmony_ci	ret = __copy_msghdr(&iomsg->msg, &msg, NULL);
31562306a36Sopenharmony_ci
31662306a36Sopenharmony_ci	/* save msg_control as sys_sendmsg() overwrites it */
31762306a36Sopenharmony_ci	sr->msg_control = iomsg->msg.msg_control_user;
31862306a36Sopenharmony_ci	return ret;
31962306a36Sopenharmony_ci}
32062306a36Sopenharmony_ci
32162306a36Sopenharmony_ciint io_send_prep_async(struct io_kiocb *req)
32262306a36Sopenharmony_ci{
32362306a36Sopenharmony_ci	struct io_sr_msg *zc = io_kiocb_to_cmd(req, struct io_sr_msg);
32462306a36Sopenharmony_ci	struct io_async_msghdr *io;
32562306a36Sopenharmony_ci	int ret;
32662306a36Sopenharmony_ci
32762306a36Sopenharmony_ci	if (!zc->addr || req_has_async_data(req))
32862306a36Sopenharmony_ci		return 0;
32962306a36Sopenharmony_ci	io = io_msg_alloc_async_prep(req);
33062306a36Sopenharmony_ci	if (!io)
33162306a36Sopenharmony_ci		return -ENOMEM;
33262306a36Sopenharmony_ci	ret = move_addr_to_kernel(zc->addr, zc->addr_len, &io->addr);
33362306a36Sopenharmony_ci	return ret;
33462306a36Sopenharmony_ci}
33562306a36Sopenharmony_ci
33662306a36Sopenharmony_cistatic int io_setup_async_addr(struct io_kiocb *req,
33762306a36Sopenharmony_ci			      struct sockaddr_storage *addr_storage,
33862306a36Sopenharmony_ci			      unsigned int issue_flags)
33962306a36Sopenharmony_ci{
34062306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
34162306a36Sopenharmony_ci	struct io_async_msghdr *io;
34262306a36Sopenharmony_ci
34362306a36Sopenharmony_ci	if (!sr->addr || req_has_async_data(req))
34462306a36Sopenharmony_ci		return -EAGAIN;
34562306a36Sopenharmony_ci	io = io_msg_alloc_async(req, issue_flags);
34662306a36Sopenharmony_ci	if (!io)
34762306a36Sopenharmony_ci		return -ENOMEM;
34862306a36Sopenharmony_ci	memcpy(&io->addr, addr_storage, sizeof(io->addr));
34962306a36Sopenharmony_ci	return -EAGAIN;
35062306a36Sopenharmony_ci}
35162306a36Sopenharmony_ci
35262306a36Sopenharmony_ciint io_sendmsg_prep_async(struct io_kiocb *req)
35362306a36Sopenharmony_ci{
35462306a36Sopenharmony_ci	int ret;
35562306a36Sopenharmony_ci
35662306a36Sopenharmony_ci	if (!io_msg_alloc_async_prep(req))
35762306a36Sopenharmony_ci		return -ENOMEM;
35862306a36Sopenharmony_ci	ret = io_sendmsg_copy_hdr(req, req->async_data);
35962306a36Sopenharmony_ci	if (!ret)
36062306a36Sopenharmony_ci		req->flags |= REQ_F_NEED_CLEANUP;
36162306a36Sopenharmony_ci	return ret;
36262306a36Sopenharmony_ci}
36362306a36Sopenharmony_ci
36462306a36Sopenharmony_civoid io_sendmsg_recvmsg_cleanup(struct io_kiocb *req)
36562306a36Sopenharmony_ci{
36662306a36Sopenharmony_ci	struct io_async_msghdr *io = req->async_data;
36762306a36Sopenharmony_ci
36862306a36Sopenharmony_ci	kfree(io->free_iov);
36962306a36Sopenharmony_ci}
37062306a36Sopenharmony_ci
37162306a36Sopenharmony_ciint io_sendmsg_prep(struct io_kiocb *req, const struct io_uring_sqe *sqe)
37262306a36Sopenharmony_ci{
37362306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
37462306a36Sopenharmony_ci
37562306a36Sopenharmony_ci	if (req->opcode == IORING_OP_SEND) {
37662306a36Sopenharmony_ci		if (READ_ONCE(sqe->__pad3[0]))
37762306a36Sopenharmony_ci			return -EINVAL;
37862306a36Sopenharmony_ci		sr->addr = u64_to_user_ptr(READ_ONCE(sqe->addr2));
37962306a36Sopenharmony_ci		sr->addr_len = READ_ONCE(sqe->addr_len);
38062306a36Sopenharmony_ci	} else if (sqe->addr2 || sqe->file_index) {
38162306a36Sopenharmony_ci		return -EINVAL;
38262306a36Sopenharmony_ci	}
38362306a36Sopenharmony_ci
38462306a36Sopenharmony_ci	sr->umsg = u64_to_user_ptr(READ_ONCE(sqe->addr));
38562306a36Sopenharmony_ci	sr->len = READ_ONCE(sqe->len);
38662306a36Sopenharmony_ci	sr->flags = READ_ONCE(sqe->ioprio);
38762306a36Sopenharmony_ci	if (sr->flags & ~IORING_RECVSEND_POLL_FIRST)
38862306a36Sopenharmony_ci		return -EINVAL;
38962306a36Sopenharmony_ci	sr->msg_flags = READ_ONCE(sqe->msg_flags) | MSG_NOSIGNAL;
39062306a36Sopenharmony_ci	if (sr->msg_flags & MSG_DONTWAIT)
39162306a36Sopenharmony_ci		req->flags |= REQ_F_NOWAIT;
39262306a36Sopenharmony_ci
39362306a36Sopenharmony_ci#ifdef CONFIG_COMPAT
39462306a36Sopenharmony_ci	if (req->ctx->compat)
39562306a36Sopenharmony_ci		sr->msg_flags |= MSG_CMSG_COMPAT;
39662306a36Sopenharmony_ci#endif
39762306a36Sopenharmony_ci	sr->done_io = 0;
39862306a36Sopenharmony_ci	return 0;
39962306a36Sopenharmony_ci}
40062306a36Sopenharmony_ci
40162306a36Sopenharmony_ciint io_sendmsg(struct io_kiocb *req, unsigned int issue_flags)
40262306a36Sopenharmony_ci{
40362306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
40462306a36Sopenharmony_ci	struct io_async_msghdr iomsg, *kmsg;
40562306a36Sopenharmony_ci	struct socket *sock;
40662306a36Sopenharmony_ci	unsigned flags;
40762306a36Sopenharmony_ci	int min_ret = 0;
40862306a36Sopenharmony_ci	int ret;
40962306a36Sopenharmony_ci
41062306a36Sopenharmony_ci	sock = sock_from_file(req->file);
41162306a36Sopenharmony_ci	if (unlikely(!sock))
41262306a36Sopenharmony_ci		return -ENOTSOCK;
41362306a36Sopenharmony_ci
41462306a36Sopenharmony_ci	if (req_has_async_data(req)) {
41562306a36Sopenharmony_ci		kmsg = req->async_data;
41662306a36Sopenharmony_ci		kmsg->msg.msg_control_user = sr->msg_control;
41762306a36Sopenharmony_ci	} else {
41862306a36Sopenharmony_ci		ret = io_sendmsg_copy_hdr(req, &iomsg);
41962306a36Sopenharmony_ci		if (ret)
42062306a36Sopenharmony_ci			return ret;
42162306a36Sopenharmony_ci		kmsg = &iomsg;
42262306a36Sopenharmony_ci	}
42362306a36Sopenharmony_ci
42462306a36Sopenharmony_ci	if (!(req->flags & REQ_F_POLLED) &&
42562306a36Sopenharmony_ci	    (sr->flags & IORING_RECVSEND_POLL_FIRST))
42662306a36Sopenharmony_ci		return io_setup_async_msg(req, kmsg, issue_flags);
42762306a36Sopenharmony_ci
42862306a36Sopenharmony_ci	flags = sr->msg_flags;
42962306a36Sopenharmony_ci	if (issue_flags & IO_URING_F_NONBLOCK)
43062306a36Sopenharmony_ci		flags |= MSG_DONTWAIT;
43162306a36Sopenharmony_ci	if (flags & MSG_WAITALL)
43262306a36Sopenharmony_ci		min_ret = iov_iter_count(&kmsg->msg.msg_iter);
43362306a36Sopenharmony_ci
43462306a36Sopenharmony_ci	ret = __sys_sendmsg_sock(sock, &kmsg->msg, flags);
43562306a36Sopenharmony_ci
43662306a36Sopenharmony_ci	if (ret < min_ret) {
43762306a36Sopenharmony_ci		if (ret == -EAGAIN && (issue_flags & IO_URING_F_NONBLOCK))
43862306a36Sopenharmony_ci			return io_setup_async_msg(req, kmsg, issue_flags);
43962306a36Sopenharmony_ci		if (ret > 0 && io_net_retry(sock, flags)) {
44062306a36Sopenharmony_ci			kmsg->msg.msg_controllen = 0;
44162306a36Sopenharmony_ci			kmsg->msg.msg_control = NULL;
44262306a36Sopenharmony_ci			sr->done_io += ret;
44362306a36Sopenharmony_ci			req->flags |= REQ_F_PARTIAL_IO;
44462306a36Sopenharmony_ci			return io_setup_async_msg(req, kmsg, issue_flags);
44562306a36Sopenharmony_ci		}
44662306a36Sopenharmony_ci		if (ret == -ERESTARTSYS)
44762306a36Sopenharmony_ci			ret = -EINTR;
44862306a36Sopenharmony_ci		req_set_fail(req);
44962306a36Sopenharmony_ci	}
45062306a36Sopenharmony_ci	/* fast path, check for non-NULL to avoid function call */
45162306a36Sopenharmony_ci	if (kmsg->free_iov)
45262306a36Sopenharmony_ci		kfree(kmsg->free_iov);
45362306a36Sopenharmony_ci	req->flags &= ~REQ_F_NEED_CLEANUP;
45462306a36Sopenharmony_ci	io_netmsg_recycle(req, issue_flags);
45562306a36Sopenharmony_ci	if (ret >= 0)
45662306a36Sopenharmony_ci		ret += sr->done_io;
45762306a36Sopenharmony_ci	else if (sr->done_io)
45862306a36Sopenharmony_ci		ret = sr->done_io;
45962306a36Sopenharmony_ci	io_req_set_res(req, ret, 0);
46062306a36Sopenharmony_ci	return IOU_OK;
46162306a36Sopenharmony_ci}
46262306a36Sopenharmony_ci
46362306a36Sopenharmony_ciint io_send(struct io_kiocb *req, unsigned int issue_flags)
46462306a36Sopenharmony_ci{
46562306a36Sopenharmony_ci	struct sockaddr_storage __address;
46662306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
46762306a36Sopenharmony_ci	struct msghdr msg;
46862306a36Sopenharmony_ci	struct socket *sock;
46962306a36Sopenharmony_ci	unsigned flags;
47062306a36Sopenharmony_ci	int min_ret = 0;
47162306a36Sopenharmony_ci	int ret;
47262306a36Sopenharmony_ci
47362306a36Sopenharmony_ci	msg.msg_name = NULL;
47462306a36Sopenharmony_ci	msg.msg_control = NULL;
47562306a36Sopenharmony_ci	msg.msg_controllen = 0;
47662306a36Sopenharmony_ci	msg.msg_namelen = 0;
47762306a36Sopenharmony_ci	msg.msg_ubuf = NULL;
47862306a36Sopenharmony_ci
47962306a36Sopenharmony_ci	if (sr->addr) {
48062306a36Sopenharmony_ci		if (req_has_async_data(req)) {
48162306a36Sopenharmony_ci			struct io_async_msghdr *io = req->async_data;
48262306a36Sopenharmony_ci
48362306a36Sopenharmony_ci			msg.msg_name = &io->addr;
48462306a36Sopenharmony_ci		} else {
48562306a36Sopenharmony_ci			ret = move_addr_to_kernel(sr->addr, sr->addr_len, &__address);
48662306a36Sopenharmony_ci			if (unlikely(ret < 0))
48762306a36Sopenharmony_ci				return ret;
48862306a36Sopenharmony_ci			msg.msg_name = (struct sockaddr *)&__address;
48962306a36Sopenharmony_ci		}
49062306a36Sopenharmony_ci		msg.msg_namelen = sr->addr_len;
49162306a36Sopenharmony_ci	}
49262306a36Sopenharmony_ci
49362306a36Sopenharmony_ci	if (!(req->flags & REQ_F_POLLED) &&
49462306a36Sopenharmony_ci	    (sr->flags & IORING_RECVSEND_POLL_FIRST))
49562306a36Sopenharmony_ci		return io_setup_async_addr(req, &__address, issue_flags);
49662306a36Sopenharmony_ci
49762306a36Sopenharmony_ci	sock = sock_from_file(req->file);
49862306a36Sopenharmony_ci	if (unlikely(!sock))
49962306a36Sopenharmony_ci		return -ENOTSOCK;
50062306a36Sopenharmony_ci
50162306a36Sopenharmony_ci	ret = import_ubuf(ITER_SOURCE, sr->buf, sr->len, &msg.msg_iter);
50262306a36Sopenharmony_ci	if (unlikely(ret))
50362306a36Sopenharmony_ci		return ret;
50462306a36Sopenharmony_ci
50562306a36Sopenharmony_ci	flags = sr->msg_flags;
50662306a36Sopenharmony_ci	if (issue_flags & IO_URING_F_NONBLOCK)
50762306a36Sopenharmony_ci		flags |= MSG_DONTWAIT;
50862306a36Sopenharmony_ci	if (flags & MSG_WAITALL)
50962306a36Sopenharmony_ci		min_ret = iov_iter_count(&msg.msg_iter);
51062306a36Sopenharmony_ci
51162306a36Sopenharmony_ci	flags &= ~MSG_INTERNAL_SENDMSG_FLAGS;
51262306a36Sopenharmony_ci	msg.msg_flags = flags;
51362306a36Sopenharmony_ci	ret = sock_sendmsg(sock, &msg);
51462306a36Sopenharmony_ci	if (ret < min_ret) {
51562306a36Sopenharmony_ci		if (ret == -EAGAIN && (issue_flags & IO_URING_F_NONBLOCK))
51662306a36Sopenharmony_ci			return io_setup_async_addr(req, &__address, issue_flags);
51762306a36Sopenharmony_ci
51862306a36Sopenharmony_ci		if (ret > 0 && io_net_retry(sock, flags)) {
51962306a36Sopenharmony_ci			sr->len -= ret;
52062306a36Sopenharmony_ci			sr->buf += ret;
52162306a36Sopenharmony_ci			sr->done_io += ret;
52262306a36Sopenharmony_ci			req->flags |= REQ_F_PARTIAL_IO;
52362306a36Sopenharmony_ci			return io_setup_async_addr(req, &__address, issue_flags);
52462306a36Sopenharmony_ci		}
52562306a36Sopenharmony_ci		if (ret == -ERESTARTSYS)
52662306a36Sopenharmony_ci			ret = -EINTR;
52762306a36Sopenharmony_ci		req_set_fail(req);
52862306a36Sopenharmony_ci	}
52962306a36Sopenharmony_ci	if (ret >= 0)
53062306a36Sopenharmony_ci		ret += sr->done_io;
53162306a36Sopenharmony_ci	else if (sr->done_io)
53262306a36Sopenharmony_ci		ret = sr->done_io;
53362306a36Sopenharmony_ci	io_req_set_res(req, ret, 0);
53462306a36Sopenharmony_ci	return IOU_OK;
53562306a36Sopenharmony_ci}
53662306a36Sopenharmony_ci
53762306a36Sopenharmony_cistatic int io_recvmsg_mshot_prep(struct io_kiocb *req,
53862306a36Sopenharmony_ci				 struct io_async_msghdr *iomsg,
53962306a36Sopenharmony_ci				 int namelen, size_t controllen)
54062306a36Sopenharmony_ci{
54162306a36Sopenharmony_ci	if ((req->flags & (REQ_F_APOLL_MULTISHOT|REQ_F_BUFFER_SELECT)) ==
54262306a36Sopenharmony_ci			  (REQ_F_APOLL_MULTISHOT|REQ_F_BUFFER_SELECT)) {
54362306a36Sopenharmony_ci		int hdr;
54462306a36Sopenharmony_ci
54562306a36Sopenharmony_ci		if (unlikely(namelen < 0))
54662306a36Sopenharmony_ci			return -EOVERFLOW;
54762306a36Sopenharmony_ci		if (check_add_overflow(sizeof(struct io_uring_recvmsg_out),
54862306a36Sopenharmony_ci					namelen, &hdr))
54962306a36Sopenharmony_ci			return -EOVERFLOW;
55062306a36Sopenharmony_ci		if (check_add_overflow(hdr, controllen, &hdr))
55162306a36Sopenharmony_ci			return -EOVERFLOW;
55262306a36Sopenharmony_ci
55362306a36Sopenharmony_ci		iomsg->namelen = namelen;
55462306a36Sopenharmony_ci		iomsg->controllen = controllen;
55562306a36Sopenharmony_ci		return 0;
55662306a36Sopenharmony_ci	}
55762306a36Sopenharmony_ci
55862306a36Sopenharmony_ci	return 0;
55962306a36Sopenharmony_ci}
56062306a36Sopenharmony_ci
56162306a36Sopenharmony_cistatic int io_recvmsg_copy_hdr(struct io_kiocb *req,
56262306a36Sopenharmony_ci			       struct io_async_msghdr *iomsg)
56362306a36Sopenharmony_ci{
56462306a36Sopenharmony_ci	struct user_msghdr msg;
56562306a36Sopenharmony_ci	int ret;
56662306a36Sopenharmony_ci
56762306a36Sopenharmony_ci	iomsg->msg.msg_name = &iomsg->addr;
56862306a36Sopenharmony_ci	iomsg->msg.msg_iter.nr_segs = 0;
56962306a36Sopenharmony_ci
57062306a36Sopenharmony_ci#ifdef CONFIG_COMPAT
57162306a36Sopenharmony_ci	if (unlikely(req->ctx->compat)) {
57262306a36Sopenharmony_ci		struct compat_msghdr cmsg;
57362306a36Sopenharmony_ci
57462306a36Sopenharmony_ci		ret = io_compat_msg_copy_hdr(req, iomsg, &cmsg, ITER_DEST);
57562306a36Sopenharmony_ci		if (unlikely(ret))
57662306a36Sopenharmony_ci			return ret;
57762306a36Sopenharmony_ci
57862306a36Sopenharmony_ci		ret = __get_compat_msghdr(&iomsg->msg, &cmsg, &iomsg->uaddr);
57962306a36Sopenharmony_ci		if (unlikely(ret))
58062306a36Sopenharmony_ci			return ret;
58162306a36Sopenharmony_ci
58262306a36Sopenharmony_ci		return io_recvmsg_mshot_prep(req, iomsg, cmsg.msg_namelen,
58362306a36Sopenharmony_ci						cmsg.msg_controllen);
58462306a36Sopenharmony_ci	}
58562306a36Sopenharmony_ci#endif
58662306a36Sopenharmony_ci
58762306a36Sopenharmony_ci	ret = io_msg_copy_hdr(req, iomsg, &msg, ITER_DEST);
58862306a36Sopenharmony_ci	if (unlikely(ret))
58962306a36Sopenharmony_ci		return ret;
59062306a36Sopenharmony_ci
59162306a36Sopenharmony_ci	ret = __copy_msghdr(&iomsg->msg, &msg, &iomsg->uaddr);
59262306a36Sopenharmony_ci	if (unlikely(ret))
59362306a36Sopenharmony_ci		return ret;
59462306a36Sopenharmony_ci
59562306a36Sopenharmony_ci	return io_recvmsg_mshot_prep(req, iomsg, msg.msg_namelen,
59662306a36Sopenharmony_ci					msg.msg_controllen);
59762306a36Sopenharmony_ci}
59862306a36Sopenharmony_ci
59962306a36Sopenharmony_ciint io_recvmsg_prep_async(struct io_kiocb *req)
60062306a36Sopenharmony_ci{
60162306a36Sopenharmony_ci	struct io_async_msghdr *iomsg;
60262306a36Sopenharmony_ci	int ret;
60362306a36Sopenharmony_ci
60462306a36Sopenharmony_ci	if (!io_msg_alloc_async_prep(req))
60562306a36Sopenharmony_ci		return -ENOMEM;
60662306a36Sopenharmony_ci	iomsg = req->async_data;
60762306a36Sopenharmony_ci	ret = io_recvmsg_copy_hdr(req, iomsg);
60862306a36Sopenharmony_ci	if (!ret)
60962306a36Sopenharmony_ci		req->flags |= REQ_F_NEED_CLEANUP;
61062306a36Sopenharmony_ci	return ret;
61162306a36Sopenharmony_ci}
61262306a36Sopenharmony_ci
61362306a36Sopenharmony_ci#define RECVMSG_FLAGS (IORING_RECVSEND_POLL_FIRST | IORING_RECV_MULTISHOT)
61462306a36Sopenharmony_ci
61562306a36Sopenharmony_ciint io_recvmsg_prep(struct io_kiocb *req, const struct io_uring_sqe *sqe)
61662306a36Sopenharmony_ci{
61762306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
61862306a36Sopenharmony_ci
61962306a36Sopenharmony_ci	if (unlikely(sqe->file_index || sqe->addr2))
62062306a36Sopenharmony_ci		return -EINVAL;
62162306a36Sopenharmony_ci
62262306a36Sopenharmony_ci	sr->umsg = u64_to_user_ptr(READ_ONCE(sqe->addr));
62362306a36Sopenharmony_ci	sr->len = READ_ONCE(sqe->len);
62462306a36Sopenharmony_ci	sr->flags = READ_ONCE(sqe->ioprio);
62562306a36Sopenharmony_ci	if (sr->flags & ~(RECVMSG_FLAGS))
62662306a36Sopenharmony_ci		return -EINVAL;
62762306a36Sopenharmony_ci	sr->msg_flags = READ_ONCE(sqe->msg_flags);
62862306a36Sopenharmony_ci	if (sr->msg_flags & MSG_DONTWAIT)
62962306a36Sopenharmony_ci		req->flags |= REQ_F_NOWAIT;
63062306a36Sopenharmony_ci	if (sr->msg_flags & MSG_ERRQUEUE)
63162306a36Sopenharmony_ci		req->flags |= REQ_F_CLEAR_POLLIN;
63262306a36Sopenharmony_ci	if (sr->flags & IORING_RECV_MULTISHOT) {
63362306a36Sopenharmony_ci		if (!(req->flags & REQ_F_BUFFER_SELECT))
63462306a36Sopenharmony_ci			return -EINVAL;
63562306a36Sopenharmony_ci		if (sr->msg_flags & MSG_WAITALL)
63662306a36Sopenharmony_ci			return -EINVAL;
63762306a36Sopenharmony_ci		if (req->opcode == IORING_OP_RECV && sr->len)
63862306a36Sopenharmony_ci			return -EINVAL;
63962306a36Sopenharmony_ci		req->flags |= REQ_F_APOLL_MULTISHOT;
64062306a36Sopenharmony_ci		/*
64162306a36Sopenharmony_ci		 * Store the buffer group for this multishot receive separately,
64262306a36Sopenharmony_ci		 * as if we end up doing an io-wq based issue that selects a
64362306a36Sopenharmony_ci		 * buffer, it has to be committed immediately and that will
64462306a36Sopenharmony_ci		 * clear ->buf_list. This means we lose the link to the buffer
64562306a36Sopenharmony_ci		 * list, and the eventual buffer put on completion then cannot
64662306a36Sopenharmony_ci		 * restore it.
64762306a36Sopenharmony_ci		 */
64862306a36Sopenharmony_ci		sr->buf_group = req->buf_index;
64962306a36Sopenharmony_ci	}
65062306a36Sopenharmony_ci
65162306a36Sopenharmony_ci#ifdef CONFIG_COMPAT
65262306a36Sopenharmony_ci	if (req->ctx->compat)
65362306a36Sopenharmony_ci		sr->msg_flags |= MSG_CMSG_COMPAT;
65462306a36Sopenharmony_ci#endif
65562306a36Sopenharmony_ci	sr->done_io = 0;
65662306a36Sopenharmony_ci	sr->nr_multishot_loops = 0;
65762306a36Sopenharmony_ci	return 0;
65862306a36Sopenharmony_ci}
65962306a36Sopenharmony_ci
66062306a36Sopenharmony_cistatic inline void io_recv_prep_retry(struct io_kiocb *req)
66162306a36Sopenharmony_ci{
66262306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
66362306a36Sopenharmony_ci
66462306a36Sopenharmony_ci	sr->done_io = 0;
66562306a36Sopenharmony_ci	sr->len = 0; /* get from the provided buffer */
66662306a36Sopenharmony_ci	req->buf_index = sr->buf_group;
66762306a36Sopenharmony_ci}
66862306a36Sopenharmony_ci
66962306a36Sopenharmony_ci/*
67062306a36Sopenharmony_ci * Finishes io_recv and io_recvmsg.
67162306a36Sopenharmony_ci *
67262306a36Sopenharmony_ci * Returns true if it is actually finished, or false if it should run
67362306a36Sopenharmony_ci * again (for multishot).
67462306a36Sopenharmony_ci */
67562306a36Sopenharmony_cistatic inline bool io_recv_finish(struct io_kiocb *req, int *ret,
67662306a36Sopenharmony_ci				  struct msghdr *msg, bool mshot_finished,
67762306a36Sopenharmony_ci				  unsigned issue_flags)
67862306a36Sopenharmony_ci{
67962306a36Sopenharmony_ci	unsigned int cflags;
68062306a36Sopenharmony_ci
68162306a36Sopenharmony_ci	cflags = io_put_kbuf(req, issue_flags);
68262306a36Sopenharmony_ci	if (msg->msg_inq && msg->msg_inq != -1)
68362306a36Sopenharmony_ci		cflags |= IORING_CQE_F_SOCK_NONEMPTY;
68462306a36Sopenharmony_ci
68562306a36Sopenharmony_ci	if (!(req->flags & REQ_F_APOLL_MULTISHOT)) {
68662306a36Sopenharmony_ci		io_req_set_res(req, *ret, cflags);
68762306a36Sopenharmony_ci		*ret = IOU_OK;
68862306a36Sopenharmony_ci		return true;
68962306a36Sopenharmony_ci	}
69062306a36Sopenharmony_ci
69162306a36Sopenharmony_ci	if (mshot_finished)
69262306a36Sopenharmony_ci		goto finish;
69362306a36Sopenharmony_ci
69462306a36Sopenharmony_ci	/*
69562306a36Sopenharmony_ci	 * Fill CQE for this receive and see if we should keep trying to
69662306a36Sopenharmony_ci	 * receive from this socket.
69762306a36Sopenharmony_ci	 */
69862306a36Sopenharmony_ci	if (io_fill_cqe_req_aux(req, issue_flags & IO_URING_F_COMPLETE_DEFER,
69962306a36Sopenharmony_ci				*ret, cflags | IORING_CQE_F_MORE)) {
70062306a36Sopenharmony_ci		struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
70162306a36Sopenharmony_ci		int mshot_retry_ret = IOU_ISSUE_SKIP_COMPLETE;
70262306a36Sopenharmony_ci
70362306a36Sopenharmony_ci		io_recv_prep_retry(req);
70462306a36Sopenharmony_ci		/* Known not-empty or unknown state, retry */
70562306a36Sopenharmony_ci		if (cflags & IORING_CQE_F_SOCK_NONEMPTY || msg->msg_inq == -1) {
70662306a36Sopenharmony_ci			if (sr->nr_multishot_loops++ < MULTISHOT_MAX_RETRY)
70762306a36Sopenharmony_ci				return false;
70862306a36Sopenharmony_ci			/* mshot retries exceeded, force a requeue */
70962306a36Sopenharmony_ci			sr->nr_multishot_loops = 0;
71062306a36Sopenharmony_ci			mshot_retry_ret = IOU_REQUEUE;
71162306a36Sopenharmony_ci		}
71262306a36Sopenharmony_ci		if (issue_flags & IO_URING_F_MULTISHOT)
71362306a36Sopenharmony_ci			*ret = mshot_retry_ret;
71462306a36Sopenharmony_ci		else
71562306a36Sopenharmony_ci			*ret = -EAGAIN;
71662306a36Sopenharmony_ci		return true;
71762306a36Sopenharmony_ci	}
71862306a36Sopenharmony_ci	/* Otherwise stop multishot but use the current result. */
71962306a36Sopenharmony_cifinish:
72062306a36Sopenharmony_ci	io_req_set_res(req, *ret, cflags);
72162306a36Sopenharmony_ci
72262306a36Sopenharmony_ci	if (issue_flags & IO_URING_F_MULTISHOT)
72362306a36Sopenharmony_ci		*ret = IOU_STOP_MULTISHOT;
72462306a36Sopenharmony_ci	else
72562306a36Sopenharmony_ci		*ret = IOU_OK;
72662306a36Sopenharmony_ci	return true;
72762306a36Sopenharmony_ci}
72862306a36Sopenharmony_ci
72962306a36Sopenharmony_cistatic int io_recvmsg_prep_multishot(struct io_async_msghdr *kmsg,
73062306a36Sopenharmony_ci				     struct io_sr_msg *sr, void __user **buf,
73162306a36Sopenharmony_ci				     size_t *len)
73262306a36Sopenharmony_ci{
73362306a36Sopenharmony_ci	unsigned long ubuf = (unsigned long) *buf;
73462306a36Sopenharmony_ci	unsigned long hdr;
73562306a36Sopenharmony_ci
73662306a36Sopenharmony_ci	hdr = sizeof(struct io_uring_recvmsg_out) + kmsg->namelen +
73762306a36Sopenharmony_ci		kmsg->controllen;
73862306a36Sopenharmony_ci	if (*len < hdr)
73962306a36Sopenharmony_ci		return -EFAULT;
74062306a36Sopenharmony_ci
74162306a36Sopenharmony_ci	if (kmsg->controllen) {
74262306a36Sopenharmony_ci		unsigned long control = ubuf + hdr - kmsg->controllen;
74362306a36Sopenharmony_ci
74462306a36Sopenharmony_ci		kmsg->msg.msg_control_user = (void __user *) control;
74562306a36Sopenharmony_ci		kmsg->msg.msg_controllen = kmsg->controllen;
74662306a36Sopenharmony_ci	}
74762306a36Sopenharmony_ci
74862306a36Sopenharmony_ci	sr->buf = *buf; /* stash for later copy */
74962306a36Sopenharmony_ci	*buf = (void __user *) (ubuf + hdr);
75062306a36Sopenharmony_ci	kmsg->payloadlen = *len = *len - hdr;
75162306a36Sopenharmony_ci	return 0;
75262306a36Sopenharmony_ci}
75362306a36Sopenharmony_ci
75462306a36Sopenharmony_cistruct io_recvmsg_multishot_hdr {
75562306a36Sopenharmony_ci	struct io_uring_recvmsg_out msg;
75662306a36Sopenharmony_ci	struct sockaddr_storage addr;
75762306a36Sopenharmony_ci};
75862306a36Sopenharmony_ci
75962306a36Sopenharmony_cistatic int io_recvmsg_multishot(struct socket *sock, struct io_sr_msg *io,
76062306a36Sopenharmony_ci				struct io_async_msghdr *kmsg,
76162306a36Sopenharmony_ci				unsigned int flags, bool *finished)
76262306a36Sopenharmony_ci{
76362306a36Sopenharmony_ci	int err;
76462306a36Sopenharmony_ci	int copy_len;
76562306a36Sopenharmony_ci	struct io_recvmsg_multishot_hdr hdr;
76662306a36Sopenharmony_ci
76762306a36Sopenharmony_ci	if (kmsg->namelen)
76862306a36Sopenharmony_ci		kmsg->msg.msg_name = &hdr.addr;
76962306a36Sopenharmony_ci	kmsg->msg.msg_flags = flags & (MSG_CMSG_CLOEXEC|MSG_CMSG_COMPAT);
77062306a36Sopenharmony_ci	kmsg->msg.msg_namelen = 0;
77162306a36Sopenharmony_ci
77262306a36Sopenharmony_ci	if (sock->file->f_flags & O_NONBLOCK)
77362306a36Sopenharmony_ci		flags |= MSG_DONTWAIT;
77462306a36Sopenharmony_ci
77562306a36Sopenharmony_ci	err = sock_recvmsg(sock, &kmsg->msg, flags);
77662306a36Sopenharmony_ci	*finished = err <= 0;
77762306a36Sopenharmony_ci	if (err < 0)
77862306a36Sopenharmony_ci		return err;
77962306a36Sopenharmony_ci
78062306a36Sopenharmony_ci	hdr.msg = (struct io_uring_recvmsg_out) {
78162306a36Sopenharmony_ci		.controllen = kmsg->controllen - kmsg->msg.msg_controllen,
78262306a36Sopenharmony_ci		.flags = kmsg->msg.msg_flags & ~MSG_CMSG_COMPAT
78362306a36Sopenharmony_ci	};
78462306a36Sopenharmony_ci
78562306a36Sopenharmony_ci	hdr.msg.payloadlen = err;
78662306a36Sopenharmony_ci	if (err > kmsg->payloadlen)
78762306a36Sopenharmony_ci		err = kmsg->payloadlen;
78862306a36Sopenharmony_ci
78962306a36Sopenharmony_ci	copy_len = sizeof(struct io_uring_recvmsg_out);
79062306a36Sopenharmony_ci	if (kmsg->msg.msg_namelen > kmsg->namelen)
79162306a36Sopenharmony_ci		copy_len += kmsg->namelen;
79262306a36Sopenharmony_ci	else
79362306a36Sopenharmony_ci		copy_len += kmsg->msg.msg_namelen;
79462306a36Sopenharmony_ci
79562306a36Sopenharmony_ci	/*
79662306a36Sopenharmony_ci	 *      "fromlen shall refer to the value before truncation.."
79762306a36Sopenharmony_ci	 *                      1003.1g
79862306a36Sopenharmony_ci	 */
79962306a36Sopenharmony_ci	hdr.msg.namelen = kmsg->msg.msg_namelen;
80062306a36Sopenharmony_ci
80162306a36Sopenharmony_ci	/* ensure that there is no gap between hdr and sockaddr_storage */
80262306a36Sopenharmony_ci	BUILD_BUG_ON(offsetof(struct io_recvmsg_multishot_hdr, addr) !=
80362306a36Sopenharmony_ci		     sizeof(struct io_uring_recvmsg_out));
80462306a36Sopenharmony_ci	if (copy_to_user(io->buf, &hdr, copy_len)) {
80562306a36Sopenharmony_ci		*finished = true;
80662306a36Sopenharmony_ci		return -EFAULT;
80762306a36Sopenharmony_ci	}
80862306a36Sopenharmony_ci
80962306a36Sopenharmony_ci	return sizeof(struct io_uring_recvmsg_out) + kmsg->namelen +
81062306a36Sopenharmony_ci			kmsg->controllen + err;
81162306a36Sopenharmony_ci}
81262306a36Sopenharmony_ci
81362306a36Sopenharmony_ciint io_recvmsg(struct io_kiocb *req, unsigned int issue_flags)
81462306a36Sopenharmony_ci{
81562306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
81662306a36Sopenharmony_ci	struct io_async_msghdr iomsg, *kmsg;
81762306a36Sopenharmony_ci	struct socket *sock;
81862306a36Sopenharmony_ci	unsigned flags;
81962306a36Sopenharmony_ci	int ret, min_ret = 0;
82062306a36Sopenharmony_ci	bool force_nonblock = issue_flags & IO_URING_F_NONBLOCK;
82162306a36Sopenharmony_ci	bool mshot_finished = true;
82262306a36Sopenharmony_ci
82362306a36Sopenharmony_ci	sock = sock_from_file(req->file);
82462306a36Sopenharmony_ci	if (unlikely(!sock))
82562306a36Sopenharmony_ci		return -ENOTSOCK;
82662306a36Sopenharmony_ci
82762306a36Sopenharmony_ci	if (req_has_async_data(req)) {
82862306a36Sopenharmony_ci		kmsg = req->async_data;
82962306a36Sopenharmony_ci	} else {
83062306a36Sopenharmony_ci		ret = io_recvmsg_copy_hdr(req, &iomsg);
83162306a36Sopenharmony_ci		if (ret)
83262306a36Sopenharmony_ci			return ret;
83362306a36Sopenharmony_ci		kmsg = &iomsg;
83462306a36Sopenharmony_ci	}
83562306a36Sopenharmony_ci
83662306a36Sopenharmony_ci	if (!(req->flags & REQ_F_POLLED) &&
83762306a36Sopenharmony_ci	    (sr->flags & IORING_RECVSEND_POLL_FIRST))
83862306a36Sopenharmony_ci		return io_setup_async_msg(req, kmsg, issue_flags);
83962306a36Sopenharmony_ci
84062306a36Sopenharmony_ci	if (!io_check_multishot(req, issue_flags))
84162306a36Sopenharmony_ci		return io_setup_async_msg(req, kmsg, issue_flags);
84262306a36Sopenharmony_ci
84362306a36Sopenharmony_ciretry_multishot:
84462306a36Sopenharmony_ci	if (io_do_buffer_select(req)) {
84562306a36Sopenharmony_ci		void __user *buf;
84662306a36Sopenharmony_ci		size_t len = sr->len;
84762306a36Sopenharmony_ci
84862306a36Sopenharmony_ci		buf = io_buffer_select(req, &len, issue_flags);
84962306a36Sopenharmony_ci		if (!buf)
85062306a36Sopenharmony_ci			return -ENOBUFS;
85162306a36Sopenharmony_ci
85262306a36Sopenharmony_ci		if (req->flags & REQ_F_APOLL_MULTISHOT) {
85362306a36Sopenharmony_ci			ret = io_recvmsg_prep_multishot(kmsg, sr, &buf, &len);
85462306a36Sopenharmony_ci			if (ret) {
85562306a36Sopenharmony_ci				io_kbuf_recycle(req, issue_flags);
85662306a36Sopenharmony_ci				return ret;
85762306a36Sopenharmony_ci			}
85862306a36Sopenharmony_ci		}
85962306a36Sopenharmony_ci
86062306a36Sopenharmony_ci		iov_iter_ubuf(&kmsg->msg.msg_iter, ITER_DEST, buf, len);
86162306a36Sopenharmony_ci	}
86262306a36Sopenharmony_ci
86362306a36Sopenharmony_ci	flags = sr->msg_flags;
86462306a36Sopenharmony_ci	if (force_nonblock)
86562306a36Sopenharmony_ci		flags |= MSG_DONTWAIT;
86662306a36Sopenharmony_ci
86762306a36Sopenharmony_ci	kmsg->msg.msg_get_inq = 1;
86862306a36Sopenharmony_ci	kmsg->msg.msg_inq = -1;
86962306a36Sopenharmony_ci	if (req->flags & REQ_F_APOLL_MULTISHOT) {
87062306a36Sopenharmony_ci		ret = io_recvmsg_multishot(sock, sr, kmsg, flags,
87162306a36Sopenharmony_ci					   &mshot_finished);
87262306a36Sopenharmony_ci	} else {
87362306a36Sopenharmony_ci		/* disable partial retry for recvmsg with cmsg attached */
87462306a36Sopenharmony_ci		if (flags & MSG_WAITALL && !kmsg->msg.msg_controllen)
87562306a36Sopenharmony_ci			min_ret = iov_iter_count(&kmsg->msg.msg_iter);
87662306a36Sopenharmony_ci
87762306a36Sopenharmony_ci		ret = __sys_recvmsg_sock(sock, &kmsg->msg, sr->umsg,
87862306a36Sopenharmony_ci					 kmsg->uaddr, flags);
87962306a36Sopenharmony_ci	}
88062306a36Sopenharmony_ci
88162306a36Sopenharmony_ci	if (ret < min_ret) {
88262306a36Sopenharmony_ci		if (ret == -EAGAIN && force_nonblock) {
88362306a36Sopenharmony_ci			ret = io_setup_async_msg(req, kmsg, issue_flags);
88462306a36Sopenharmony_ci			if (ret == -EAGAIN && (issue_flags & IO_URING_F_MULTISHOT)) {
88562306a36Sopenharmony_ci				io_kbuf_recycle(req, issue_flags);
88662306a36Sopenharmony_ci				return IOU_ISSUE_SKIP_COMPLETE;
88762306a36Sopenharmony_ci			}
88862306a36Sopenharmony_ci			return ret;
88962306a36Sopenharmony_ci		}
89062306a36Sopenharmony_ci		if (ret > 0 && io_net_retry(sock, flags)) {
89162306a36Sopenharmony_ci			sr->done_io += ret;
89262306a36Sopenharmony_ci			req->flags |= REQ_F_PARTIAL_IO;
89362306a36Sopenharmony_ci			return io_setup_async_msg(req, kmsg, issue_flags);
89462306a36Sopenharmony_ci		}
89562306a36Sopenharmony_ci		if (ret == -ERESTARTSYS)
89662306a36Sopenharmony_ci			ret = -EINTR;
89762306a36Sopenharmony_ci		req_set_fail(req);
89862306a36Sopenharmony_ci	} else if ((flags & MSG_WAITALL) && (kmsg->msg.msg_flags & (MSG_TRUNC | MSG_CTRUNC))) {
89962306a36Sopenharmony_ci		req_set_fail(req);
90062306a36Sopenharmony_ci	}
90162306a36Sopenharmony_ci
90262306a36Sopenharmony_ci	if (ret > 0)
90362306a36Sopenharmony_ci		ret += sr->done_io;
90462306a36Sopenharmony_ci	else if (sr->done_io)
90562306a36Sopenharmony_ci		ret = sr->done_io;
90662306a36Sopenharmony_ci	else
90762306a36Sopenharmony_ci		io_kbuf_recycle(req, issue_flags);
90862306a36Sopenharmony_ci
90962306a36Sopenharmony_ci	if (!io_recv_finish(req, &ret, &kmsg->msg, mshot_finished, issue_flags))
91062306a36Sopenharmony_ci		goto retry_multishot;
91162306a36Sopenharmony_ci
91262306a36Sopenharmony_ci	if (mshot_finished) {
91362306a36Sopenharmony_ci		/* fast path, check for non-NULL to avoid function call */
91462306a36Sopenharmony_ci		if (kmsg->free_iov)
91562306a36Sopenharmony_ci			kfree(kmsg->free_iov);
91662306a36Sopenharmony_ci		io_netmsg_recycle(req, issue_flags);
91762306a36Sopenharmony_ci		req->flags &= ~REQ_F_NEED_CLEANUP;
91862306a36Sopenharmony_ci	} else if (ret == -EAGAIN)
91962306a36Sopenharmony_ci		return io_setup_async_msg(req, kmsg, issue_flags);
92062306a36Sopenharmony_ci
92162306a36Sopenharmony_ci	return ret;
92262306a36Sopenharmony_ci}
92362306a36Sopenharmony_ci
92462306a36Sopenharmony_ciint io_recv(struct io_kiocb *req, unsigned int issue_flags)
92562306a36Sopenharmony_ci{
92662306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
92762306a36Sopenharmony_ci	struct msghdr msg;
92862306a36Sopenharmony_ci	struct socket *sock;
92962306a36Sopenharmony_ci	unsigned flags;
93062306a36Sopenharmony_ci	int ret, min_ret = 0;
93162306a36Sopenharmony_ci	bool force_nonblock = issue_flags & IO_URING_F_NONBLOCK;
93262306a36Sopenharmony_ci	size_t len = sr->len;
93362306a36Sopenharmony_ci
93462306a36Sopenharmony_ci	if (!(req->flags & REQ_F_POLLED) &&
93562306a36Sopenharmony_ci	    (sr->flags & IORING_RECVSEND_POLL_FIRST))
93662306a36Sopenharmony_ci		return -EAGAIN;
93762306a36Sopenharmony_ci
93862306a36Sopenharmony_ci	if (!io_check_multishot(req, issue_flags))
93962306a36Sopenharmony_ci		return -EAGAIN;
94062306a36Sopenharmony_ci
94162306a36Sopenharmony_ci	sock = sock_from_file(req->file);
94262306a36Sopenharmony_ci	if (unlikely(!sock))
94362306a36Sopenharmony_ci		return -ENOTSOCK;
94462306a36Sopenharmony_ci
94562306a36Sopenharmony_ci	msg.msg_name = NULL;
94662306a36Sopenharmony_ci	msg.msg_namelen = 0;
94762306a36Sopenharmony_ci	msg.msg_control = NULL;
94862306a36Sopenharmony_ci	msg.msg_get_inq = 1;
94962306a36Sopenharmony_ci	msg.msg_controllen = 0;
95062306a36Sopenharmony_ci	msg.msg_iocb = NULL;
95162306a36Sopenharmony_ci	msg.msg_ubuf = NULL;
95262306a36Sopenharmony_ci
95362306a36Sopenharmony_ciretry_multishot:
95462306a36Sopenharmony_ci	if (io_do_buffer_select(req)) {
95562306a36Sopenharmony_ci		void __user *buf;
95662306a36Sopenharmony_ci
95762306a36Sopenharmony_ci		buf = io_buffer_select(req, &len, issue_flags);
95862306a36Sopenharmony_ci		if (!buf)
95962306a36Sopenharmony_ci			return -ENOBUFS;
96062306a36Sopenharmony_ci		sr->buf = buf;
96162306a36Sopenharmony_ci		sr->len = len;
96262306a36Sopenharmony_ci	}
96362306a36Sopenharmony_ci
96462306a36Sopenharmony_ci	ret = import_ubuf(ITER_DEST, sr->buf, len, &msg.msg_iter);
96562306a36Sopenharmony_ci	if (unlikely(ret))
96662306a36Sopenharmony_ci		goto out_free;
96762306a36Sopenharmony_ci
96862306a36Sopenharmony_ci	msg.msg_inq = -1;
96962306a36Sopenharmony_ci	msg.msg_flags = 0;
97062306a36Sopenharmony_ci
97162306a36Sopenharmony_ci	flags = sr->msg_flags;
97262306a36Sopenharmony_ci	if (force_nonblock)
97362306a36Sopenharmony_ci		flags |= MSG_DONTWAIT;
97462306a36Sopenharmony_ci	if (flags & MSG_WAITALL)
97562306a36Sopenharmony_ci		min_ret = iov_iter_count(&msg.msg_iter);
97662306a36Sopenharmony_ci
97762306a36Sopenharmony_ci	ret = sock_recvmsg(sock, &msg, flags);
97862306a36Sopenharmony_ci	if (ret < min_ret) {
97962306a36Sopenharmony_ci		if (ret == -EAGAIN && force_nonblock) {
98062306a36Sopenharmony_ci			if (issue_flags & IO_URING_F_MULTISHOT) {
98162306a36Sopenharmony_ci				io_kbuf_recycle(req, issue_flags);
98262306a36Sopenharmony_ci				return IOU_ISSUE_SKIP_COMPLETE;
98362306a36Sopenharmony_ci			}
98462306a36Sopenharmony_ci
98562306a36Sopenharmony_ci			return -EAGAIN;
98662306a36Sopenharmony_ci		}
98762306a36Sopenharmony_ci		if (ret > 0 && io_net_retry(sock, flags)) {
98862306a36Sopenharmony_ci			sr->len -= ret;
98962306a36Sopenharmony_ci			sr->buf += ret;
99062306a36Sopenharmony_ci			sr->done_io += ret;
99162306a36Sopenharmony_ci			req->flags |= REQ_F_PARTIAL_IO;
99262306a36Sopenharmony_ci			return -EAGAIN;
99362306a36Sopenharmony_ci		}
99462306a36Sopenharmony_ci		if (ret == -ERESTARTSYS)
99562306a36Sopenharmony_ci			ret = -EINTR;
99662306a36Sopenharmony_ci		req_set_fail(req);
99762306a36Sopenharmony_ci	} else if ((flags & MSG_WAITALL) && (msg.msg_flags & (MSG_TRUNC | MSG_CTRUNC))) {
99862306a36Sopenharmony_ciout_free:
99962306a36Sopenharmony_ci		req_set_fail(req);
100062306a36Sopenharmony_ci	}
100162306a36Sopenharmony_ci
100262306a36Sopenharmony_ci	if (ret > 0)
100362306a36Sopenharmony_ci		ret += sr->done_io;
100462306a36Sopenharmony_ci	else if (sr->done_io)
100562306a36Sopenharmony_ci		ret = sr->done_io;
100662306a36Sopenharmony_ci	else
100762306a36Sopenharmony_ci		io_kbuf_recycle(req, issue_flags);
100862306a36Sopenharmony_ci
100962306a36Sopenharmony_ci	if (!io_recv_finish(req, &ret, &msg, ret <= 0, issue_flags))
101062306a36Sopenharmony_ci		goto retry_multishot;
101162306a36Sopenharmony_ci
101262306a36Sopenharmony_ci	return ret;
101362306a36Sopenharmony_ci}
101462306a36Sopenharmony_ci
101562306a36Sopenharmony_civoid io_send_zc_cleanup(struct io_kiocb *req)
101662306a36Sopenharmony_ci{
101762306a36Sopenharmony_ci	struct io_sr_msg *zc = io_kiocb_to_cmd(req, struct io_sr_msg);
101862306a36Sopenharmony_ci	struct io_async_msghdr *io;
101962306a36Sopenharmony_ci
102062306a36Sopenharmony_ci	if (req_has_async_data(req)) {
102162306a36Sopenharmony_ci		io = req->async_data;
102262306a36Sopenharmony_ci		/* might be ->fast_iov if *msg_copy_hdr failed */
102362306a36Sopenharmony_ci		if (io->free_iov != io->fast_iov)
102462306a36Sopenharmony_ci			kfree(io->free_iov);
102562306a36Sopenharmony_ci	}
102662306a36Sopenharmony_ci	if (zc->notif) {
102762306a36Sopenharmony_ci		io_notif_flush(zc->notif);
102862306a36Sopenharmony_ci		zc->notif = NULL;
102962306a36Sopenharmony_ci	}
103062306a36Sopenharmony_ci}
103162306a36Sopenharmony_ci
103262306a36Sopenharmony_ci#define IO_ZC_FLAGS_COMMON (IORING_RECVSEND_POLL_FIRST | IORING_RECVSEND_FIXED_BUF)
103362306a36Sopenharmony_ci#define IO_ZC_FLAGS_VALID  (IO_ZC_FLAGS_COMMON | IORING_SEND_ZC_REPORT_USAGE)
103462306a36Sopenharmony_ci
103562306a36Sopenharmony_ciint io_send_zc_prep(struct io_kiocb *req, const struct io_uring_sqe *sqe)
103662306a36Sopenharmony_ci{
103762306a36Sopenharmony_ci	struct io_sr_msg *zc = io_kiocb_to_cmd(req, struct io_sr_msg);
103862306a36Sopenharmony_ci	struct io_ring_ctx *ctx = req->ctx;
103962306a36Sopenharmony_ci	struct io_kiocb *notif;
104062306a36Sopenharmony_ci
104162306a36Sopenharmony_ci	if (unlikely(READ_ONCE(sqe->__pad2[0]) || READ_ONCE(sqe->addr3)))
104262306a36Sopenharmony_ci		return -EINVAL;
104362306a36Sopenharmony_ci	/* we don't support IOSQE_CQE_SKIP_SUCCESS just yet */
104462306a36Sopenharmony_ci	if (req->flags & REQ_F_CQE_SKIP)
104562306a36Sopenharmony_ci		return -EINVAL;
104662306a36Sopenharmony_ci
104762306a36Sopenharmony_ci	notif = zc->notif = io_alloc_notif(ctx);
104862306a36Sopenharmony_ci	if (!notif)
104962306a36Sopenharmony_ci		return -ENOMEM;
105062306a36Sopenharmony_ci	notif->cqe.user_data = req->cqe.user_data;
105162306a36Sopenharmony_ci	notif->cqe.res = 0;
105262306a36Sopenharmony_ci	notif->cqe.flags = IORING_CQE_F_NOTIF;
105362306a36Sopenharmony_ci	req->flags |= REQ_F_NEED_CLEANUP;
105462306a36Sopenharmony_ci
105562306a36Sopenharmony_ci	zc->flags = READ_ONCE(sqe->ioprio);
105662306a36Sopenharmony_ci	if (unlikely(zc->flags & ~IO_ZC_FLAGS_COMMON)) {
105762306a36Sopenharmony_ci		if (zc->flags & ~IO_ZC_FLAGS_VALID)
105862306a36Sopenharmony_ci			return -EINVAL;
105962306a36Sopenharmony_ci		if (zc->flags & IORING_SEND_ZC_REPORT_USAGE) {
106062306a36Sopenharmony_ci			io_notif_set_extended(notif);
106162306a36Sopenharmony_ci			io_notif_to_data(notif)->zc_report = true;
106262306a36Sopenharmony_ci		}
106362306a36Sopenharmony_ci	}
106462306a36Sopenharmony_ci
106562306a36Sopenharmony_ci	if (zc->flags & IORING_RECVSEND_FIXED_BUF) {
106662306a36Sopenharmony_ci		unsigned idx = READ_ONCE(sqe->buf_index);
106762306a36Sopenharmony_ci
106862306a36Sopenharmony_ci		if (unlikely(idx >= ctx->nr_user_bufs))
106962306a36Sopenharmony_ci			return -EFAULT;
107062306a36Sopenharmony_ci		idx = array_index_nospec(idx, ctx->nr_user_bufs);
107162306a36Sopenharmony_ci		req->imu = READ_ONCE(ctx->user_bufs[idx]);
107262306a36Sopenharmony_ci		io_req_set_rsrc_node(notif, ctx, 0);
107362306a36Sopenharmony_ci	}
107462306a36Sopenharmony_ci
107562306a36Sopenharmony_ci	if (req->opcode == IORING_OP_SEND_ZC) {
107662306a36Sopenharmony_ci		if (READ_ONCE(sqe->__pad3[0]))
107762306a36Sopenharmony_ci			return -EINVAL;
107862306a36Sopenharmony_ci		zc->addr = u64_to_user_ptr(READ_ONCE(sqe->addr2));
107962306a36Sopenharmony_ci		zc->addr_len = READ_ONCE(sqe->addr_len);
108062306a36Sopenharmony_ci	} else {
108162306a36Sopenharmony_ci		if (unlikely(sqe->addr2 || sqe->file_index))
108262306a36Sopenharmony_ci			return -EINVAL;
108362306a36Sopenharmony_ci		if (unlikely(zc->flags & IORING_RECVSEND_FIXED_BUF))
108462306a36Sopenharmony_ci			return -EINVAL;
108562306a36Sopenharmony_ci	}
108662306a36Sopenharmony_ci
108762306a36Sopenharmony_ci	zc->buf = u64_to_user_ptr(READ_ONCE(sqe->addr));
108862306a36Sopenharmony_ci	zc->len = READ_ONCE(sqe->len);
108962306a36Sopenharmony_ci	zc->msg_flags = READ_ONCE(sqe->msg_flags) | MSG_NOSIGNAL;
109062306a36Sopenharmony_ci	if (zc->msg_flags & MSG_DONTWAIT)
109162306a36Sopenharmony_ci		req->flags |= REQ_F_NOWAIT;
109262306a36Sopenharmony_ci
109362306a36Sopenharmony_ci	zc->done_io = 0;
109462306a36Sopenharmony_ci
109562306a36Sopenharmony_ci#ifdef CONFIG_COMPAT
109662306a36Sopenharmony_ci	if (req->ctx->compat)
109762306a36Sopenharmony_ci		zc->msg_flags |= MSG_CMSG_COMPAT;
109862306a36Sopenharmony_ci#endif
109962306a36Sopenharmony_ci	return 0;
110062306a36Sopenharmony_ci}
110162306a36Sopenharmony_ci
110262306a36Sopenharmony_cistatic int io_sg_from_iter_iovec(struct sock *sk, struct sk_buff *skb,
110362306a36Sopenharmony_ci				 struct iov_iter *from, size_t length)
110462306a36Sopenharmony_ci{
110562306a36Sopenharmony_ci	skb_zcopy_downgrade_managed(skb);
110662306a36Sopenharmony_ci	return __zerocopy_sg_from_iter(NULL, sk, skb, from, length);
110762306a36Sopenharmony_ci}
110862306a36Sopenharmony_ci
110962306a36Sopenharmony_cistatic int io_sg_from_iter(struct sock *sk, struct sk_buff *skb,
111062306a36Sopenharmony_ci			   struct iov_iter *from, size_t length)
111162306a36Sopenharmony_ci{
111262306a36Sopenharmony_ci	struct skb_shared_info *shinfo = skb_shinfo(skb);
111362306a36Sopenharmony_ci	int frag = shinfo->nr_frags;
111462306a36Sopenharmony_ci	int ret = 0;
111562306a36Sopenharmony_ci	struct bvec_iter bi;
111662306a36Sopenharmony_ci	ssize_t copied = 0;
111762306a36Sopenharmony_ci	unsigned long truesize = 0;
111862306a36Sopenharmony_ci
111962306a36Sopenharmony_ci	if (!frag)
112062306a36Sopenharmony_ci		shinfo->flags |= SKBFL_MANAGED_FRAG_REFS;
112162306a36Sopenharmony_ci	else if (unlikely(!skb_zcopy_managed(skb)))
112262306a36Sopenharmony_ci		return __zerocopy_sg_from_iter(NULL, sk, skb, from, length);
112362306a36Sopenharmony_ci
112462306a36Sopenharmony_ci	bi.bi_size = min(from->count, length);
112562306a36Sopenharmony_ci	bi.bi_bvec_done = from->iov_offset;
112662306a36Sopenharmony_ci	bi.bi_idx = 0;
112762306a36Sopenharmony_ci
112862306a36Sopenharmony_ci	while (bi.bi_size && frag < MAX_SKB_FRAGS) {
112962306a36Sopenharmony_ci		struct bio_vec v = mp_bvec_iter_bvec(from->bvec, bi);
113062306a36Sopenharmony_ci
113162306a36Sopenharmony_ci		copied += v.bv_len;
113262306a36Sopenharmony_ci		truesize += PAGE_ALIGN(v.bv_len + v.bv_offset);
113362306a36Sopenharmony_ci		__skb_fill_page_desc_noacc(shinfo, frag++, v.bv_page,
113462306a36Sopenharmony_ci					   v.bv_offset, v.bv_len);
113562306a36Sopenharmony_ci		bvec_iter_advance_single(from->bvec, &bi, v.bv_len);
113662306a36Sopenharmony_ci	}
113762306a36Sopenharmony_ci	if (bi.bi_size)
113862306a36Sopenharmony_ci		ret = -EMSGSIZE;
113962306a36Sopenharmony_ci
114062306a36Sopenharmony_ci	shinfo->nr_frags = frag;
114162306a36Sopenharmony_ci	from->bvec += bi.bi_idx;
114262306a36Sopenharmony_ci	from->nr_segs -= bi.bi_idx;
114362306a36Sopenharmony_ci	from->count -= copied;
114462306a36Sopenharmony_ci	from->iov_offset = bi.bi_bvec_done;
114562306a36Sopenharmony_ci
114662306a36Sopenharmony_ci	skb->data_len += copied;
114762306a36Sopenharmony_ci	skb->len += copied;
114862306a36Sopenharmony_ci	skb->truesize += truesize;
114962306a36Sopenharmony_ci
115062306a36Sopenharmony_ci	if (sk && sk->sk_type == SOCK_STREAM) {
115162306a36Sopenharmony_ci		sk_wmem_queued_add(sk, truesize);
115262306a36Sopenharmony_ci		if (!skb_zcopy_pure(skb))
115362306a36Sopenharmony_ci			sk_mem_charge(sk, truesize);
115462306a36Sopenharmony_ci	} else {
115562306a36Sopenharmony_ci		refcount_add(truesize, &skb->sk->sk_wmem_alloc);
115662306a36Sopenharmony_ci	}
115762306a36Sopenharmony_ci	return ret;
115862306a36Sopenharmony_ci}
115962306a36Sopenharmony_ci
116062306a36Sopenharmony_ciint io_send_zc(struct io_kiocb *req, unsigned int issue_flags)
116162306a36Sopenharmony_ci{
116262306a36Sopenharmony_ci	struct sockaddr_storage __address;
116362306a36Sopenharmony_ci	struct io_sr_msg *zc = io_kiocb_to_cmd(req, struct io_sr_msg);
116462306a36Sopenharmony_ci	struct msghdr msg;
116562306a36Sopenharmony_ci	struct socket *sock;
116662306a36Sopenharmony_ci	unsigned msg_flags;
116762306a36Sopenharmony_ci	int ret, min_ret = 0;
116862306a36Sopenharmony_ci
116962306a36Sopenharmony_ci	sock = sock_from_file(req->file);
117062306a36Sopenharmony_ci	if (unlikely(!sock))
117162306a36Sopenharmony_ci		return -ENOTSOCK;
117262306a36Sopenharmony_ci	if (!test_bit(SOCK_SUPPORT_ZC, &sock->flags))
117362306a36Sopenharmony_ci		return -EOPNOTSUPP;
117462306a36Sopenharmony_ci
117562306a36Sopenharmony_ci	msg.msg_name = NULL;
117662306a36Sopenharmony_ci	msg.msg_control = NULL;
117762306a36Sopenharmony_ci	msg.msg_controllen = 0;
117862306a36Sopenharmony_ci	msg.msg_namelen = 0;
117962306a36Sopenharmony_ci
118062306a36Sopenharmony_ci	if (zc->addr) {
118162306a36Sopenharmony_ci		if (req_has_async_data(req)) {
118262306a36Sopenharmony_ci			struct io_async_msghdr *io = req->async_data;
118362306a36Sopenharmony_ci
118462306a36Sopenharmony_ci			msg.msg_name = &io->addr;
118562306a36Sopenharmony_ci		} else {
118662306a36Sopenharmony_ci			ret = move_addr_to_kernel(zc->addr, zc->addr_len, &__address);
118762306a36Sopenharmony_ci			if (unlikely(ret < 0))
118862306a36Sopenharmony_ci				return ret;
118962306a36Sopenharmony_ci			msg.msg_name = (struct sockaddr *)&__address;
119062306a36Sopenharmony_ci		}
119162306a36Sopenharmony_ci		msg.msg_namelen = zc->addr_len;
119262306a36Sopenharmony_ci	}
119362306a36Sopenharmony_ci
119462306a36Sopenharmony_ci	if (!(req->flags & REQ_F_POLLED) &&
119562306a36Sopenharmony_ci	    (zc->flags & IORING_RECVSEND_POLL_FIRST))
119662306a36Sopenharmony_ci		return io_setup_async_addr(req, &__address, issue_flags);
119762306a36Sopenharmony_ci
119862306a36Sopenharmony_ci	if (zc->flags & IORING_RECVSEND_FIXED_BUF) {
119962306a36Sopenharmony_ci		ret = io_import_fixed(ITER_SOURCE, &msg.msg_iter, req->imu,
120062306a36Sopenharmony_ci					(u64)(uintptr_t)zc->buf, zc->len);
120162306a36Sopenharmony_ci		if (unlikely(ret))
120262306a36Sopenharmony_ci			return ret;
120362306a36Sopenharmony_ci		msg.sg_from_iter = io_sg_from_iter;
120462306a36Sopenharmony_ci	} else {
120562306a36Sopenharmony_ci		io_notif_set_extended(zc->notif);
120662306a36Sopenharmony_ci		ret = import_ubuf(ITER_SOURCE, zc->buf, zc->len, &msg.msg_iter);
120762306a36Sopenharmony_ci		if (unlikely(ret))
120862306a36Sopenharmony_ci			return ret;
120962306a36Sopenharmony_ci		ret = io_notif_account_mem(zc->notif, zc->len);
121062306a36Sopenharmony_ci		if (unlikely(ret))
121162306a36Sopenharmony_ci			return ret;
121262306a36Sopenharmony_ci		msg.sg_from_iter = io_sg_from_iter_iovec;
121362306a36Sopenharmony_ci	}
121462306a36Sopenharmony_ci
121562306a36Sopenharmony_ci	msg_flags = zc->msg_flags | MSG_ZEROCOPY;
121662306a36Sopenharmony_ci	if (issue_flags & IO_URING_F_NONBLOCK)
121762306a36Sopenharmony_ci		msg_flags |= MSG_DONTWAIT;
121862306a36Sopenharmony_ci	if (msg_flags & MSG_WAITALL)
121962306a36Sopenharmony_ci		min_ret = iov_iter_count(&msg.msg_iter);
122062306a36Sopenharmony_ci	msg_flags &= ~MSG_INTERNAL_SENDMSG_FLAGS;
122162306a36Sopenharmony_ci
122262306a36Sopenharmony_ci	msg.msg_flags = msg_flags;
122362306a36Sopenharmony_ci	msg.msg_ubuf = &io_notif_to_data(zc->notif)->uarg;
122462306a36Sopenharmony_ci	ret = sock_sendmsg(sock, &msg);
122562306a36Sopenharmony_ci
122662306a36Sopenharmony_ci	if (unlikely(ret < min_ret)) {
122762306a36Sopenharmony_ci		if (ret == -EAGAIN && (issue_flags & IO_URING_F_NONBLOCK))
122862306a36Sopenharmony_ci			return io_setup_async_addr(req, &__address, issue_flags);
122962306a36Sopenharmony_ci
123062306a36Sopenharmony_ci		if (ret > 0 && io_net_retry(sock, msg.msg_flags)) {
123162306a36Sopenharmony_ci			zc->len -= ret;
123262306a36Sopenharmony_ci			zc->buf += ret;
123362306a36Sopenharmony_ci			zc->done_io += ret;
123462306a36Sopenharmony_ci			req->flags |= REQ_F_PARTIAL_IO;
123562306a36Sopenharmony_ci			return io_setup_async_addr(req, &__address, issue_flags);
123662306a36Sopenharmony_ci		}
123762306a36Sopenharmony_ci		if (ret == -ERESTARTSYS)
123862306a36Sopenharmony_ci			ret = -EINTR;
123962306a36Sopenharmony_ci		req_set_fail(req);
124062306a36Sopenharmony_ci	}
124162306a36Sopenharmony_ci
124262306a36Sopenharmony_ci	if (ret >= 0)
124362306a36Sopenharmony_ci		ret += zc->done_io;
124462306a36Sopenharmony_ci	else if (zc->done_io)
124562306a36Sopenharmony_ci		ret = zc->done_io;
124662306a36Sopenharmony_ci
124762306a36Sopenharmony_ci	/*
124862306a36Sopenharmony_ci	 * If we're in io-wq we can't rely on tw ordering guarantees, defer
124962306a36Sopenharmony_ci	 * flushing notif to io_send_zc_cleanup()
125062306a36Sopenharmony_ci	 */
125162306a36Sopenharmony_ci	if (!(issue_flags & IO_URING_F_UNLOCKED)) {
125262306a36Sopenharmony_ci		io_notif_flush(zc->notif);
125362306a36Sopenharmony_ci		req->flags &= ~REQ_F_NEED_CLEANUP;
125462306a36Sopenharmony_ci	}
125562306a36Sopenharmony_ci	io_req_set_res(req, ret, IORING_CQE_F_MORE);
125662306a36Sopenharmony_ci	return IOU_OK;
125762306a36Sopenharmony_ci}
125862306a36Sopenharmony_ci
125962306a36Sopenharmony_ciint io_sendmsg_zc(struct io_kiocb *req, unsigned int issue_flags)
126062306a36Sopenharmony_ci{
126162306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
126262306a36Sopenharmony_ci	struct io_async_msghdr iomsg, *kmsg;
126362306a36Sopenharmony_ci	struct socket *sock;
126462306a36Sopenharmony_ci	unsigned flags;
126562306a36Sopenharmony_ci	int ret, min_ret = 0;
126662306a36Sopenharmony_ci
126762306a36Sopenharmony_ci	io_notif_set_extended(sr->notif);
126862306a36Sopenharmony_ci
126962306a36Sopenharmony_ci	sock = sock_from_file(req->file);
127062306a36Sopenharmony_ci	if (unlikely(!sock))
127162306a36Sopenharmony_ci		return -ENOTSOCK;
127262306a36Sopenharmony_ci	if (!test_bit(SOCK_SUPPORT_ZC, &sock->flags))
127362306a36Sopenharmony_ci		return -EOPNOTSUPP;
127462306a36Sopenharmony_ci
127562306a36Sopenharmony_ci	if (req_has_async_data(req)) {
127662306a36Sopenharmony_ci		kmsg = req->async_data;
127762306a36Sopenharmony_ci	} else {
127862306a36Sopenharmony_ci		ret = io_sendmsg_copy_hdr(req, &iomsg);
127962306a36Sopenharmony_ci		if (ret)
128062306a36Sopenharmony_ci			return ret;
128162306a36Sopenharmony_ci		kmsg = &iomsg;
128262306a36Sopenharmony_ci	}
128362306a36Sopenharmony_ci
128462306a36Sopenharmony_ci	if (!(req->flags & REQ_F_POLLED) &&
128562306a36Sopenharmony_ci	    (sr->flags & IORING_RECVSEND_POLL_FIRST))
128662306a36Sopenharmony_ci		return io_setup_async_msg(req, kmsg, issue_flags);
128762306a36Sopenharmony_ci
128862306a36Sopenharmony_ci	flags = sr->msg_flags | MSG_ZEROCOPY;
128962306a36Sopenharmony_ci	if (issue_flags & IO_URING_F_NONBLOCK)
129062306a36Sopenharmony_ci		flags |= MSG_DONTWAIT;
129162306a36Sopenharmony_ci	if (flags & MSG_WAITALL)
129262306a36Sopenharmony_ci		min_ret = iov_iter_count(&kmsg->msg.msg_iter);
129362306a36Sopenharmony_ci
129462306a36Sopenharmony_ci	kmsg->msg.msg_ubuf = &io_notif_to_data(sr->notif)->uarg;
129562306a36Sopenharmony_ci	kmsg->msg.sg_from_iter = io_sg_from_iter_iovec;
129662306a36Sopenharmony_ci	ret = __sys_sendmsg_sock(sock, &kmsg->msg, flags);
129762306a36Sopenharmony_ci
129862306a36Sopenharmony_ci	if (unlikely(ret < min_ret)) {
129962306a36Sopenharmony_ci		if (ret == -EAGAIN && (issue_flags & IO_URING_F_NONBLOCK))
130062306a36Sopenharmony_ci			return io_setup_async_msg(req, kmsg, issue_flags);
130162306a36Sopenharmony_ci
130262306a36Sopenharmony_ci		if (ret > 0 && io_net_retry(sock, flags)) {
130362306a36Sopenharmony_ci			sr->done_io += ret;
130462306a36Sopenharmony_ci			req->flags |= REQ_F_PARTIAL_IO;
130562306a36Sopenharmony_ci			return io_setup_async_msg(req, kmsg, issue_flags);
130662306a36Sopenharmony_ci		}
130762306a36Sopenharmony_ci		if (ret == -ERESTARTSYS)
130862306a36Sopenharmony_ci			ret = -EINTR;
130962306a36Sopenharmony_ci		req_set_fail(req);
131062306a36Sopenharmony_ci	}
131162306a36Sopenharmony_ci	/* fast path, check for non-NULL to avoid function call */
131262306a36Sopenharmony_ci	if (kmsg->free_iov) {
131362306a36Sopenharmony_ci		kfree(kmsg->free_iov);
131462306a36Sopenharmony_ci		kmsg->free_iov = NULL;
131562306a36Sopenharmony_ci	}
131662306a36Sopenharmony_ci
131762306a36Sopenharmony_ci	io_netmsg_recycle(req, issue_flags);
131862306a36Sopenharmony_ci	if (ret >= 0)
131962306a36Sopenharmony_ci		ret += sr->done_io;
132062306a36Sopenharmony_ci	else if (sr->done_io)
132162306a36Sopenharmony_ci		ret = sr->done_io;
132262306a36Sopenharmony_ci
132362306a36Sopenharmony_ci	/*
132462306a36Sopenharmony_ci	 * If we're in io-wq we can't rely on tw ordering guarantees, defer
132562306a36Sopenharmony_ci	 * flushing notif to io_send_zc_cleanup()
132662306a36Sopenharmony_ci	 */
132762306a36Sopenharmony_ci	if (!(issue_flags & IO_URING_F_UNLOCKED)) {
132862306a36Sopenharmony_ci		io_notif_flush(sr->notif);
132962306a36Sopenharmony_ci		req->flags &= ~REQ_F_NEED_CLEANUP;
133062306a36Sopenharmony_ci	}
133162306a36Sopenharmony_ci	io_req_set_res(req, ret, IORING_CQE_F_MORE);
133262306a36Sopenharmony_ci	return IOU_OK;
133362306a36Sopenharmony_ci}
133462306a36Sopenharmony_ci
133562306a36Sopenharmony_civoid io_sendrecv_fail(struct io_kiocb *req)
133662306a36Sopenharmony_ci{
133762306a36Sopenharmony_ci	struct io_sr_msg *sr = io_kiocb_to_cmd(req, struct io_sr_msg);
133862306a36Sopenharmony_ci
133962306a36Sopenharmony_ci	if (req->flags & REQ_F_PARTIAL_IO)
134062306a36Sopenharmony_ci		req->cqe.res = sr->done_io;
134162306a36Sopenharmony_ci
134262306a36Sopenharmony_ci	if ((req->flags & REQ_F_NEED_CLEANUP) &&
134362306a36Sopenharmony_ci	    (req->opcode == IORING_OP_SEND_ZC || req->opcode == IORING_OP_SENDMSG_ZC))
134462306a36Sopenharmony_ci		req->cqe.flags |= IORING_CQE_F_MORE;
134562306a36Sopenharmony_ci}
134662306a36Sopenharmony_ci
134762306a36Sopenharmony_ciint io_accept_prep(struct io_kiocb *req, const struct io_uring_sqe *sqe)
134862306a36Sopenharmony_ci{
134962306a36Sopenharmony_ci	struct io_accept *accept = io_kiocb_to_cmd(req, struct io_accept);
135062306a36Sopenharmony_ci	unsigned flags;
135162306a36Sopenharmony_ci
135262306a36Sopenharmony_ci	if (sqe->len || sqe->buf_index)
135362306a36Sopenharmony_ci		return -EINVAL;
135462306a36Sopenharmony_ci
135562306a36Sopenharmony_ci	accept->addr = u64_to_user_ptr(READ_ONCE(sqe->addr));
135662306a36Sopenharmony_ci	accept->addr_len = u64_to_user_ptr(READ_ONCE(sqe->addr2));
135762306a36Sopenharmony_ci	accept->flags = READ_ONCE(sqe->accept_flags);
135862306a36Sopenharmony_ci	accept->nofile = rlimit(RLIMIT_NOFILE);
135962306a36Sopenharmony_ci	flags = READ_ONCE(sqe->ioprio);
136062306a36Sopenharmony_ci	if (flags & ~IORING_ACCEPT_MULTISHOT)
136162306a36Sopenharmony_ci		return -EINVAL;
136262306a36Sopenharmony_ci
136362306a36Sopenharmony_ci	accept->file_slot = READ_ONCE(sqe->file_index);
136462306a36Sopenharmony_ci	if (accept->file_slot) {
136562306a36Sopenharmony_ci		if (accept->flags & SOCK_CLOEXEC)
136662306a36Sopenharmony_ci			return -EINVAL;
136762306a36Sopenharmony_ci		if (flags & IORING_ACCEPT_MULTISHOT &&
136862306a36Sopenharmony_ci		    accept->file_slot != IORING_FILE_INDEX_ALLOC)
136962306a36Sopenharmony_ci			return -EINVAL;
137062306a36Sopenharmony_ci	}
137162306a36Sopenharmony_ci	if (accept->flags & ~(SOCK_CLOEXEC | SOCK_NONBLOCK))
137262306a36Sopenharmony_ci		return -EINVAL;
137362306a36Sopenharmony_ci	if (SOCK_NONBLOCK != O_NONBLOCK && (accept->flags & SOCK_NONBLOCK))
137462306a36Sopenharmony_ci		accept->flags = (accept->flags & ~SOCK_NONBLOCK) | O_NONBLOCK;
137562306a36Sopenharmony_ci	if (flags & IORING_ACCEPT_MULTISHOT)
137662306a36Sopenharmony_ci		req->flags |= REQ_F_APOLL_MULTISHOT;
137762306a36Sopenharmony_ci	return 0;
137862306a36Sopenharmony_ci}
137962306a36Sopenharmony_ci
138062306a36Sopenharmony_ciint io_accept(struct io_kiocb *req, unsigned int issue_flags)
138162306a36Sopenharmony_ci{
138262306a36Sopenharmony_ci	struct io_accept *accept = io_kiocb_to_cmd(req, struct io_accept);
138362306a36Sopenharmony_ci	bool force_nonblock = issue_flags & IO_URING_F_NONBLOCK;
138462306a36Sopenharmony_ci	unsigned int file_flags = force_nonblock ? O_NONBLOCK : 0;
138562306a36Sopenharmony_ci	bool fixed = !!accept->file_slot;
138662306a36Sopenharmony_ci	struct file *file;
138762306a36Sopenharmony_ci	int ret, fd;
138862306a36Sopenharmony_ci
138962306a36Sopenharmony_ci	if (!io_check_multishot(req, issue_flags))
139062306a36Sopenharmony_ci		return -EAGAIN;
139162306a36Sopenharmony_ciretry:
139262306a36Sopenharmony_ci	if (!fixed) {
139362306a36Sopenharmony_ci		fd = __get_unused_fd_flags(accept->flags, accept->nofile);
139462306a36Sopenharmony_ci		if (unlikely(fd < 0))
139562306a36Sopenharmony_ci			return fd;
139662306a36Sopenharmony_ci	}
139762306a36Sopenharmony_ci	file = do_accept(req->file, file_flags, accept->addr, accept->addr_len,
139862306a36Sopenharmony_ci			 accept->flags);
139962306a36Sopenharmony_ci	if (IS_ERR(file)) {
140062306a36Sopenharmony_ci		if (!fixed)
140162306a36Sopenharmony_ci			put_unused_fd(fd);
140262306a36Sopenharmony_ci		ret = PTR_ERR(file);
140362306a36Sopenharmony_ci		if (ret == -EAGAIN && force_nonblock) {
140462306a36Sopenharmony_ci			/*
140562306a36Sopenharmony_ci			 * if it's multishot and polled, we don't need to
140662306a36Sopenharmony_ci			 * return EAGAIN to arm the poll infra since it
140762306a36Sopenharmony_ci			 * has already been done
140862306a36Sopenharmony_ci			 */
140962306a36Sopenharmony_ci			if (issue_flags & IO_URING_F_MULTISHOT)
141062306a36Sopenharmony_ci				return IOU_ISSUE_SKIP_COMPLETE;
141162306a36Sopenharmony_ci			return ret;
141262306a36Sopenharmony_ci		}
141362306a36Sopenharmony_ci		if (ret == -ERESTARTSYS)
141462306a36Sopenharmony_ci			ret = -EINTR;
141562306a36Sopenharmony_ci		req_set_fail(req);
141662306a36Sopenharmony_ci	} else if (!fixed) {
141762306a36Sopenharmony_ci		fd_install(fd, file);
141862306a36Sopenharmony_ci		ret = fd;
141962306a36Sopenharmony_ci	} else {
142062306a36Sopenharmony_ci		ret = io_fixed_fd_install(req, issue_flags, file,
142162306a36Sopenharmony_ci						accept->file_slot);
142262306a36Sopenharmony_ci	}
142362306a36Sopenharmony_ci
142462306a36Sopenharmony_ci	if (!(req->flags & REQ_F_APOLL_MULTISHOT)) {
142562306a36Sopenharmony_ci		io_req_set_res(req, ret, 0);
142662306a36Sopenharmony_ci		return IOU_OK;
142762306a36Sopenharmony_ci	}
142862306a36Sopenharmony_ci
142962306a36Sopenharmony_ci	if (ret < 0)
143062306a36Sopenharmony_ci		return ret;
143162306a36Sopenharmony_ci	if (io_fill_cqe_req_aux(req, issue_flags & IO_URING_F_COMPLETE_DEFER,
143262306a36Sopenharmony_ci				ret, IORING_CQE_F_MORE))
143362306a36Sopenharmony_ci		goto retry;
143462306a36Sopenharmony_ci
143562306a36Sopenharmony_ci	io_req_set_res(req, ret, 0);
143662306a36Sopenharmony_ci	return IOU_STOP_MULTISHOT;
143762306a36Sopenharmony_ci}
143862306a36Sopenharmony_ci
143962306a36Sopenharmony_ciint io_socket_prep(struct io_kiocb *req, const struct io_uring_sqe *sqe)
144062306a36Sopenharmony_ci{
144162306a36Sopenharmony_ci	struct io_socket *sock = io_kiocb_to_cmd(req, struct io_socket);
144262306a36Sopenharmony_ci
144362306a36Sopenharmony_ci	if (sqe->addr || sqe->rw_flags || sqe->buf_index)
144462306a36Sopenharmony_ci		return -EINVAL;
144562306a36Sopenharmony_ci
144662306a36Sopenharmony_ci	sock->domain = READ_ONCE(sqe->fd);
144762306a36Sopenharmony_ci	sock->type = READ_ONCE(sqe->off);
144862306a36Sopenharmony_ci	sock->protocol = READ_ONCE(sqe->len);
144962306a36Sopenharmony_ci	sock->file_slot = READ_ONCE(sqe->file_index);
145062306a36Sopenharmony_ci	sock->nofile = rlimit(RLIMIT_NOFILE);
145162306a36Sopenharmony_ci
145262306a36Sopenharmony_ci	sock->flags = sock->type & ~SOCK_TYPE_MASK;
145362306a36Sopenharmony_ci	if (sock->file_slot && (sock->flags & SOCK_CLOEXEC))
145462306a36Sopenharmony_ci		return -EINVAL;
145562306a36Sopenharmony_ci	if (sock->flags & ~(SOCK_CLOEXEC | SOCK_NONBLOCK))
145662306a36Sopenharmony_ci		return -EINVAL;
145762306a36Sopenharmony_ci	return 0;
145862306a36Sopenharmony_ci}
145962306a36Sopenharmony_ci
146062306a36Sopenharmony_ciint io_socket(struct io_kiocb *req, unsigned int issue_flags)
146162306a36Sopenharmony_ci{
146262306a36Sopenharmony_ci	struct io_socket *sock = io_kiocb_to_cmd(req, struct io_socket);
146362306a36Sopenharmony_ci	bool fixed = !!sock->file_slot;
146462306a36Sopenharmony_ci	struct file *file;
146562306a36Sopenharmony_ci	int ret, fd;
146662306a36Sopenharmony_ci
146762306a36Sopenharmony_ci	if (!fixed) {
146862306a36Sopenharmony_ci		fd = __get_unused_fd_flags(sock->flags, sock->nofile);
146962306a36Sopenharmony_ci		if (unlikely(fd < 0))
147062306a36Sopenharmony_ci			return fd;
147162306a36Sopenharmony_ci	}
147262306a36Sopenharmony_ci	file = __sys_socket_file(sock->domain, sock->type, sock->protocol);
147362306a36Sopenharmony_ci	if (IS_ERR(file)) {
147462306a36Sopenharmony_ci		if (!fixed)
147562306a36Sopenharmony_ci			put_unused_fd(fd);
147662306a36Sopenharmony_ci		ret = PTR_ERR(file);
147762306a36Sopenharmony_ci		if (ret == -EAGAIN && (issue_flags & IO_URING_F_NONBLOCK))
147862306a36Sopenharmony_ci			return -EAGAIN;
147962306a36Sopenharmony_ci		if (ret == -ERESTARTSYS)
148062306a36Sopenharmony_ci			ret = -EINTR;
148162306a36Sopenharmony_ci		req_set_fail(req);
148262306a36Sopenharmony_ci	} else if (!fixed) {
148362306a36Sopenharmony_ci		fd_install(fd, file);
148462306a36Sopenharmony_ci		ret = fd;
148562306a36Sopenharmony_ci	} else {
148662306a36Sopenharmony_ci		ret = io_fixed_fd_install(req, issue_flags, file,
148762306a36Sopenharmony_ci					    sock->file_slot);
148862306a36Sopenharmony_ci	}
148962306a36Sopenharmony_ci	io_req_set_res(req, ret, 0);
149062306a36Sopenharmony_ci	return IOU_OK;
149162306a36Sopenharmony_ci}
149262306a36Sopenharmony_ci
149362306a36Sopenharmony_ciint io_connect_prep_async(struct io_kiocb *req)
149462306a36Sopenharmony_ci{
149562306a36Sopenharmony_ci	struct io_async_connect *io = req->async_data;
149662306a36Sopenharmony_ci	struct io_connect *conn = io_kiocb_to_cmd(req, struct io_connect);
149762306a36Sopenharmony_ci
149862306a36Sopenharmony_ci	return move_addr_to_kernel(conn->addr, conn->addr_len, &io->address);
149962306a36Sopenharmony_ci}
150062306a36Sopenharmony_ci
150162306a36Sopenharmony_ciint io_connect_prep(struct io_kiocb *req, const struct io_uring_sqe *sqe)
150262306a36Sopenharmony_ci{
150362306a36Sopenharmony_ci	struct io_connect *conn = io_kiocb_to_cmd(req, struct io_connect);
150462306a36Sopenharmony_ci
150562306a36Sopenharmony_ci	if (sqe->len || sqe->buf_index || sqe->rw_flags || sqe->splice_fd_in)
150662306a36Sopenharmony_ci		return -EINVAL;
150762306a36Sopenharmony_ci
150862306a36Sopenharmony_ci	conn->addr = u64_to_user_ptr(READ_ONCE(sqe->addr));
150962306a36Sopenharmony_ci	conn->addr_len =  READ_ONCE(sqe->addr2);
151062306a36Sopenharmony_ci	conn->in_progress = conn->seen_econnaborted = false;
151162306a36Sopenharmony_ci	return 0;
151262306a36Sopenharmony_ci}
151362306a36Sopenharmony_ci
151462306a36Sopenharmony_ciint io_connect(struct io_kiocb *req, unsigned int issue_flags)
151562306a36Sopenharmony_ci{
151662306a36Sopenharmony_ci	struct io_connect *connect = io_kiocb_to_cmd(req, struct io_connect);
151762306a36Sopenharmony_ci	struct io_async_connect __io, *io;
151862306a36Sopenharmony_ci	unsigned file_flags;
151962306a36Sopenharmony_ci	int ret;
152062306a36Sopenharmony_ci	bool force_nonblock = issue_flags & IO_URING_F_NONBLOCK;
152162306a36Sopenharmony_ci
152262306a36Sopenharmony_ci	if (req_has_async_data(req)) {
152362306a36Sopenharmony_ci		io = req->async_data;
152462306a36Sopenharmony_ci	} else {
152562306a36Sopenharmony_ci		ret = move_addr_to_kernel(connect->addr,
152662306a36Sopenharmony_ci						connect->addr_len,
152762306a36Sopenharmony_ci						&__io.address);
152862306a36Sopenharmony_ci		if (ret)
152962306a36Sopenharmony_ci			goto out;
153062306a36Sopenharmony_ci		io = &__io;
153162306a36Sopenharmony_ci	}
153262306a36Sopenharmony_ci
153362306a36Sopenharmony_ci	file_flags = force_nonblock ? O_NONBLOCK : 0;
153462306a36Sopenharmony_ci
153562306a36Sopenharmony_ci	ret = __sys_connect_file(req->file, &io->address,
153662306a36Sopenharmony_ci					connect->addr_len, file_flags);
153762306a36Sopenharmony_ci	if ((ret == -EAGAIN || ret == -EINPROGRESS || ret == -ECONNABORTED)
153862306a36Sopenharmony_ci	    && force_nonblock) {
153962306a36Sopenharmony_ci		if (ret == -EINPROGRESS) {
154062306a36Sopenharmony_ci			connect->in_progress = true;
154162306a36Sopenharmony_ci		} else if (ret == -ECONNABORTED) {
154262306a36Sopenharmony_ci			if (connect->seen_econnaborted)
154362306a36Sopenharmony_ci				goto out;
154462306a36Sopenharmony_ci			connect->seen_econnaborted = true;
154562306a36Sopenharmony_ci		}
154662306a36Sopenharmony_ci		if (req_has_async_data(req))
154762306a36Sopenharmony_ci			return -EAGAIN;
154862306a36Sopenharmony_ci		if (io_alloc_async_data(req)) {
154962306a36Sopenharmony_ci			ret = -ENOMEM;
155062306a36Sopenharmony_ci			goto out;
155162306a36Sopenharmony_ci		}
155262306a36Sopenharmony_ci		memcpy(req->async_data, &__io, sizeof(__io));
155362306a36Sopenharmony_ci		return -EAGAIN;
155462306a36Sopenharmony_ci	}
155562306a36Sopenharmony_ci	if (connect->in_progress) {
155662306a36Sopenharmony_ci		/*
155762306a36Sopenharmony_ci		 * At least bluetooth will return -EBADFD on a re-connect
155862306a36Sopenharmony_ci		 * attempt, and it's (supposedly) also valid to get -EISCONN
155962306a36Sopenharmony_ci		 * which means the previous result is good. For both of these,
156062306a36Sopenharmony_ci		 * grab the sock_error() and use that for the completion.
156162306a36Sopenharmony_ci		 */
156262306a36Sopenharmony_ci		if (ret == -EBADFD || ret == -EISCONN)
156362306a36Sopenharmony_ci			ret = sock_error(sock_from_file(req->file)->sk);
156462306a36Sopenharmony_ci	}
156562306a36Sopenharmony_ci	if (ret == -ERESTARTSYS)
156662306a36Sopenharmony_ci		ret = -EINTR;
156762306a36Sopenharmony_ciout:
156862306a36Sopenharmony_ci	if (ret < 0)
156962306a36Sopenharmony_ci		req_set_fail(req);
157062306a36Sopenharmony_ci	io_req_set_res(req, ret, 0);
157162306a36Sopenharmony_ci	return IOU_OK;
157262306a36Sopenharmony_ci}
157362306a36Sopenharmony_ci
157462306a36Sopenharmony_civoid io_netmsg_cache_free(struct io_cache_entry *entry)
157562306a36Sopenharmony_ci{
157662306a36Sopenharmony_ci	kfree(container_of(entry, struct io_async_msghdr, cache));
157762306a36Sopenharmony_ci}
157862306a36Sopenharmony_ci#endif
1579