1 /*-
2  * SPDX-License-Identifier: BSD-3-Clause
3  *
4  * Copyright (c) 2008 David E. O'Brien
5  * All rights reserved.
6  *
7  * Redistribution and use in source and binary forms, with or without
8  * modification, are permitted provided that the following conditions
9  * are met:
10  * 1. Redistributions of source code must retain the above copyright
11  *    notice, this list of conditions and the following disclaimer.
12  * 2. Redistributions in binary form must reproduce the above copyright
13  *    notice, this list of conditions and the following disclaimer in the
14  *    documentation and/or other materials provided with the distribution.
15  * 3. Neither the name of the author nor the names of its contributors
16  *    may be used to endorse or promote products derived from this software
17  *    without specific prior written permission.
18  *
19  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
20  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
21  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
22  * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
23  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
24  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
25  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
26  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
27  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
28  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
29  * SUCH DAMAGE.
30  */
31 
32 #include <sys/cdefs.h>
33 #include <sys/param.h>
34 #include <sys/capsicum.h>
35 #include <sys/cdio.h>
36 #include <sys/fcntl.h>
37 #include <sys/filio.h>
38 #include <sys/file.h>
39 #include <sys/ioccom.h>
40 #include <sys/malloc.h>
41 #include <sys/memrange.h>
42 #include <sys/pciio.h>
43 #include <sys/proc.h>
44 #include <sys/syscall.h>
45 #include <sys/syscallsubr.h>
46 #include <sys/sysctl.h>
47 #include <sys/sysproto.h>
48 #include <sys/systm.h>
49 #include <sys/uio.h>
50 
51 #include <compat/freebsd32/freebsd32.h>
52 #include <compat/freebsd32/freebsd32_ioctl.h>
53 #include <compat/freebsd32/freebsd32_misc.h>
54 #include <compat/freebsd32/freebsd32_proto.h>
55 
56 CTASSERT(sizeof(struct mem_range_op32) == 12);
57 
58 static int
59 freebsd32_ioctl_memrange(struct thread *td,
60     struct freebsd32_ioctl_args *uap, struct file *fp)
61 {
62 	struct mem_range_op mro;
63 	struct mem_range_op32 mro32;
64 	int error;
65 	u_long com;
66 
67 	if ((error = copyin(uap->data, &mro32, sizeof(mro32))) != 0)
68 		return (error);
69 
70 	PTRIN_CP(mro32, mro, mo_desc);
71 	CP(mro32, mro, mo_arg[0]);
72 	CP(mro32, mro, mo_arg[1]);
73 
74 	com = _IOC_NEWTYPE(uap->com, struct mem_range_op);
75 
76 	if ((error = fo_ioctl(fp, com, (caddr_t)&mro, td->td_ucred, td)) != 0)
77 		return (error);
78 
79 	if ( (com & IOC_OUT) ) {
80 		CP(mro, mro32, mo_arg[0]);
81 		CP(mro, mro32, mo_arg[1]);
82 
83 		error = copyout(&mro32, uap->data, sizeof(mro32));
84 	}
85 
86 	return (error);
87 }
88 
89 static int
90 freebsd32_ioctl_barmmap(struct thread *td,
91     struct freebsd32_ioctl_args *uap, struct file *fp)
92 {
93 	struct pci_bar_mmap32 pbm32;
94 	struct pci_bar_mmap pbm;
95 	int error;
96 
97 	error = copyin(uap->data, &pbm32, sizeof(pbm32));
98 	if (error != 0)
99 		return (error);
100 	PTRIN_CP(pbm32, pbm, pbm_map_base);
101 	CP(pbm32, pbm, pbm_sel);
102 	CP(pbm32, pbm, pbm_reg);
103 	CP(pbm32, pbm, pbm_flags);
104 	CP(pbm32, pbm, pbm_memattr);
105 	pbm.pbm_bar_length = PAIR32TO64(uint64_t, pbm32.pbm_bar_length);
106 	error = fo_ioctl(fp, PCIOCBARMMAP, (caddr_t)&pbm, td->td_ucred, td);
107 	if (error == 0) {
108 		PTROUT_CP(pbm, pbm32, pbm_map_base);
109 		CP(pbm, pbm32, pbm_map_length);
110 #if BYTE_ORDER == LITTLE_ENDIAN
111 		pbm32.pbm_bar_length1 = pbm.pbm_bar_length;
112 		pbm32.pbm_bar_length2 = pbm.pbm_bar_length >> 32;
113 #else
114 		pbm32.pbm_bar_length1 = pbm.pbm_bar_length >> 32;
115 		pbm32.pbm_bar_length2 = pbm.pbm_bar_length;
116 #endif
117 		CP(pbm, pbm32, pbm_bar_off);
118 		error = copyout(&pbm32, uap->data, sizeof(pbm32));
119 	}
120 	return (error);
121 }
122 
123 static int
124 freebsd32_ioctl_sg(struct thread *td,
125     struct freebsd32_ioctl_args *uap, struct file *fp)
126 {
127 	struct sg_io_hdr io;
128 	struct sg_io_hdr32 io32;
129 	int error;
130 
131 	if ((error = copyin(uap->data, &io32, sizeof(io32))) != 0)
132 		return (error);
133 
134 	CP(io32, io, interface_id);
135 	CP(io32, io, dxfer_direction);
136 	CP(io32, io, cmd_len);
137 	CP(io32, io, mx_sb_len);
138 	CP(io32, io, iovec_count);
139 	CP(io32, io, dxfer_len);
140 	PTRIN_CP(io32, io, dxferp);
141 	PTRIN_CP(io32, io, cmdp);
142 	PTRIN_CP(io32, io, sbp);
143 	CP(io32, io, timeout);
144 	CP(io32, io, flags);
145 	CP(io32, io, pack_id);
146 	PTRIN_CP(io32, io, usr_ptr);
147 	CP(io32, io, status);
148 	CP(io32, io, masked_status);
149 	CP(io32, io, msg_status);
150 	CP(io32, io, sb_len_wr);
151 	CP(io32, io, host_status);
152 	CP(io32, io, driver_status);
153 	CP(io32, io, resid);
154 	CP(io32, io, duration);
155 	CP(io32, io, info);
156 
157 	if ((error = fo_ioctl(fp, SG_IO, (caddr_t)&io, td->td_ucred, td)) != 0)
158 		return (error);
159 
160 	CP(io, io32, interface_id);
161 	CP(io, io32, dxfer_direction);
162 	CP(io, io32, cmd_len);
163 	CP(io, io32, mx_sb_len);
164 	CP(io, io32, iovec_count);
165 	CP(io, io32, dxfer_len);
166 	PTROUT_CP(io, io32, dxferp);
167 	PTROUT_CP(io, io32, cmdp);
168 	PTROUT_CP(io, io32, sbp);
169 	CP(io, io32, timeout);
170 	CP(io, io32, flags);
171 	CP(io, io32, pack_id);
172 	PTROUT_CP(io, io32, usr_ptr);
173 	CP(io, io32, status);
174 	CP(io, io32, masked_status);
175 	CP(io, io32, msg_status);
176 	CP(io, io32, sb_len_wr);
177 	CP(io, io32, host_status);
178 	CP(io, io32, driver_status);
179 	CP(io, io32, resid);
180 	CP(io, io32, duration);
181 	CP(io, io32, info);
182 
183 	error = copyout(&io32, uap->data, sizeof(io32));
184 
185 	return (error);
186 }
187 
188 int
189 freebsd32_ioctl(struct thread *td, struct freebsd32_ioctl_args *uap)
190 {
191 	struct ioctl_args ap /*{
192 		int	fd;
193 		u_long	com;
194 		caddr_t	data;
195 	}*/ ;
196 	struct file *fp;
197 	cap_rights_t rights;
198 	int error;
199 
200 	error = fget(td, uap->fd, cap_rights_init_one(&rights, CAP_IOCTL), &fp);
201 	if (error != 0)
202 		return (error);
203 	if ((fp->f_flag & (FREAD | FWRITE)) == 0) {
204 		fdrop(fp, td);
205 		return (EBADF);
206 	}
207 
208 	switch (uap->com) {
209 	case MEMRANGE_GET32:	/* FALLTHROUGH */
210 	case MEMRANGE_SET32:
211 		error = freebsd32_ioctl_memrange(td, uap, fp);
212 		break;
213 
214 	case SG_IO_32:
215 		error = freebsd32_ioctl_sg(td, uap, fp);
216 		break;
217 
218 	case PCIOCBARMMAP_32:
219 		error = freebsd32_ioctl_barmmap(td, uap, fp);
220 		break;
221 
222 	default:
223 		fdrop(fp, td);
224 		ap.fd = uap->fd;
225 		ap.com = uap->com;
226 		PTRIN_CP(*uap, ap, data);
227 		return sys_ioctl(td, &ap);
228 	}
229 
230 	fdrop(fp, td);
231 	return (error);
232 }
233