xfs: fix finobt btree block recovery ordering
authorDave Chinner <dchinner@redhat.com>
Wed, 30 Sep 2020 14:28:52 +0000 (07:28 -0700)
committerDarrick J. Wong <darrick.wong@oracle.com>
Wed, 30 Sep 2020 14:28:52 +0000 (07:28 -0700)
Nathan popped up on #xfs and pointed out that we fail to handle
finobt btree blocks in xlog_recover_get_buf_lsn(). This means they
always fall through the entire magic number matching code to "recover
immediately". Whilst most of the time this is the correct behaviour,
occasionally it will be incorrect and could potentially overwrite
more recent metadata because we don't check the LSN in the on disk
metadata at all.

This bug has been present since the finobt was first introduced, and
is a potential cause of the occasional xfs_iget_check_free_state()
failures we see that indicate that the inode btree state does not
match the on disk inode state.

Fixes: aafc3c246529 ("xfs: support the XFS_BTNUM_FINOBT free inode btree type")
Reported-by: Nathan Scott <nathans@redhat.com>
Signed-off-by: Dave Chinner <dchinner@redhat.com>
Reviewed-by: Darrick J. Wong <darrick.wong@oracle.com>
Signed-off-by: Darrick J. Wong <darrick.wong@oracle.com>
Reviewed-by: Brian Foster <bfoster@redhat.com>
fs/xfs/xfs_buf_item_recover.c

index 24c7a8d11e1a84f8446b9ee6f16c60b27390bb7d..d44e8b4a33919d68ca9b58f2766da865e10b6829 100644 (file)
@@ -719,6 +719,8 @@ xlog_recover_get_buf_lsn(
        case XFS_ABTC_MAGIC:
        case XFS_RMAP_CRC_MAGIC:
        case XFS_REFC_CRC_MAGIC:
+       case XFS_FIBT_CRC_MAGIC:
+       case XFS_FIBT_MAGIC:
        case XFS_IBT_CRC_MAGIC:
        case XFS_IBT_MAGIC: {
                struct xfs_btree_block *btb = blk;