ext4: fix crash during online resizing
authorJan Kara <jack@suse.cz>
Mon, 11 Feb 2019 18:30:32 +0000 (13:30 -0500)
committerTheodore Ts'o <tytso@mit.edu>
Mon, 11 Feb 2019 18:30:32 +0000 (13:30 -0500)
When computing maximum size of filesystem possible with given number of
group descriptor blocks, we forget to include s_first_data_block into
the number of blocks. Thus for filesystems with non-zero
s_first_data_block it can happen that computed maximum filesystem size
is actually lower than current filesystem size which confuses the code
and eventually leads to a BUG_ON in ext4_alloc_group_tables() hitting on
flex_gd->count == 0. The problem can be reproduced like:

truncate -s 100g /tmp/image
mkfs.ext4 -b 1024 -E resize=262144 /tmp/image 32768
mount -t ext4 -o loop /tmp/image /mnt
resize2fs /dev/loop0 262145
resize2fs /dev/loop0 300000

Fix the problem by properly including s_first_data_block into the
computed number of filesystem blocks.

Fixes: 1c6bd7173d66 "ext4: convert file system to meta_bg if needed..."
Signed-off-by: Jan Kara <jack@suse.cz>
Signed-off-by: Theodore Ts'o <tytso@mit.edu>
Cc: stable@vger.kernel.org
fs/ext4/resize.c

index 48421de803b7bf237450c43ea369e7abe25c69e8..3d9b18505c0c799b272553d0adf81fa26e6a6833 100644 (file)
@@ -1960,7 +1960,8 @@ retry:
                                le16_to_cpu(es->s_reserved_gdt_blocks);
                        n_group = n_desc_blocks * EXT4_DESC_PER_BLOCK(sb);
                        n_blocks_count = (ext4_fsblk_t)n_group *
-                               EXT4_BLOCKS_PER_GROUP(sb);
+                               EXT4_BLOCKS_PER_GROUP(sb) +
+                               le32_to_cpu(es->s_first_data_block);
                        n_group--; /* set to last group number */
                }