[PATCH v7] linux: Add openat2 (BZ 31664)

Carlos O'Donell carlos@redhat.com
Wed Nov 19 12:58:11 GMT 2025


On 11/18/25 3:58 PM, Adhemerval Zanella wrote:
> The openat2 syscall was added on Linux 5.6, as an extension of openat.
> Unlike other open-like functions, the kernel only provides the LFS
> variant (so files larger than 4GB always succeed, unlike other
> functions with an offset larger than off_t).  Also, similar to other
> open functions, the new symbol is a cancellable entrypoint.
> 
> The test case added only stress tests for some of the syscalls' provided
> functionality, and it is based on an existing kernel self-test.
> 
> A fortify wrapper is added to verify the argument size if not larger
> than the current support open_how struct.
> 
> Gnulib added an openat2 module, which uses read-only for the open_how
> argument [1].  There is no clear indication whether the kernel will
> indeed use the argument as in-out, how it would do so, or for which
> kind of functionality [2]. Also, adding a potentially different prototype
> than gnulib only would add extra unnecessary friction and extra
> wrappers to handle it.
> 
> Checked on x86_64-linux-gnu and aarch64-linux-gnu.

Looking forward to a v8.

Caught some more typos.

Noticed that the GLIBC_2.41 for mips is fixed now, didn't catch it before
but Claude Code LLM caught it.

You can keep my RB with the typos fixed.

Reviewed-by: Carlos O'Donell <carlos@redhat.com> 
> [1] https://gitweb.git.savannah.gnu.org/gitweb/?p=gnulib.git;a=commit;h=0b97ffdf32bdab909d02449043447237273df75e
> [2] https://sourceware.org/pipermail/libc-alpha/2025-September/169740.html
> 
> Reviewed-by: Carlos O'Donell <carlos@redhat.com>
> 
> --
> Changes from v6:
> * Add manual suggestions from Paul Eggert.
> * Removed RESOLVE_CACHED documentation.
> * Remove EAGAIN  documentation.
> * Removed __restrict usage.
> * Added fortify wrapper.
> 
> ---
>   NEWS                                          |   4 +
>   manual/llio.texi                              | 100 ++++
>   sysdeps/unix/sysv/linux/Makefile              |  20 +
>   sysdeps/unix/sysv/linux/Versions              |   1 +
>   sysdeps/unix/sysv/linux/aarch64/libc.abilist  |   1 +
>   sysdeps/unix/sysv/linux/alpha/libc.abilist    |   1 +
>   sysdeps/unix/sysv/linux/arc/libc.abilist      |   1 +
>   sysdeps/unix/sysv/linux/arm/be/libc.abilist   |   1 +
>   sysdeps/unix/sysv/linux/arm/le/libc.abilist   |   1 +
>   .../sysv/linux/bits/fcntl-linux-fortify.h     |  49 ++
>   sysdeps/unix/sysv/linux/bits/fcntl-linux.h    |  27 +
>   sysdeps/unix/sysv/linux/bits/openat2.h        |  60 +++
>   sysdeps/unix/sysv/linux/csky/libc.abilist     |   1 +
>   sysdeps/unix/sysv/linux/hppa/libc.abilist     |   1 +
>   sysdeps/unix/sysv/linux/i386/libc.abilist     |   1 +
>   .../sysv/linux/loongarch/lp64/libc.abilist    |   1 +
>   .../sysv/linux/m68k/coldfire/libc.abilist     |   1 +
>   .../unix/sysv/linux/m68k/m680x0/libc.abilist  |   1 +
>   .../sysv/linux/microblaze/be/libc.abilist     |   1 +
>   .../sysv/linux/microblaze/le/libc.abilist     |   1 +
>   .../sysv/linux/mips/mips32/fpu/libc.abilist   |   1 +
>   .../sysv/linux/mips/mips32/nofpu/libc.abilist |   1 +
>   .../sysv/linux/mips/mips64/n32/libc.abilist   |   1 +
>   .../sysv/linux/mips/mips64/n64/libc.abilist   |   1 +
>   sysdeps/unix/sysv/linux/openat2.c             |  29 ++
>   sysdeps/unix/sysv/linux/or1k/libc.abilist     |   1 +
>   .../linux/powerpc/powerpc32/fpu/libc.abilist  |   1 +
>   .../powerpc/powerpc32/nofpu/libc.abilist      |   1 +
>   .../linux/powerpc/powerpc64/be/libc.abilist   |   1 +
>   .../linux/powerpc/powerpc64/le/libc.abilist   |   1 +
>   .../unix/sysv/linux/riscv/rv32/libc.abilist   |   1 +
>   .../unix/sysv/linux/riscv/rv64/libc.abilist   |   1 +
>   .../unix/sysv/linux/s390/s390-32/libc.abilist |   1 +
>   .../unix/sysv/linux/s390/s390-64/libc.abilist |   1 +
>   sysdeps/unix/sysv/linux/sh/be/libc.abilist    |   1 +
>   sysdeps/unix/sysv/linux/sh/le/libc.abilist    |   1 +
>   .../sysv/linux/sparc/sparc32/libc.abilist     |   1 +
>   .../sysv/linux/sparc/sparc64/libc.abilist     |   1 +
>   sysdeps/unix/sysv/linux/tst-openat2-consts.py |  63 +++
>   sysdeps/unix/sysv/linux/tst-openat2-lfs.c     |   1 +
>   sysdeps/unix/sysv/linux/tst-openat2.c         | 482 ++++++++++++++++++
>   .../unix/sysv/linux/x86_64/64/libc.abilist    |   1 +
>   .../unix/sysv/linux/x86_64/x32/libc.abilist   |   1 +
>   43 files changed, 868 insertions(+)
>   create mode 100644 sysdeps/unix/sysv/linux/bits/fcntl-linux-fortify.h
>   create mode 100644 sysdeps/unix/sysv/linux/bits/openat2.h
>   create mode 100644 sysdeps/unix/sysv/linux/openat2.c
>   create mode 100755 sysdeps/unix/sysv/linux/tst-openat2-consts.py
>   create mode 100644 sysdeps/unix/sysv/linux/tst-openat2-lfs.c
>   create mode 100644 sysdeps/unix/sysv/linux/tst-openat2.c
> 
> diff --git a/NEWS b/NEWS
> index a2618545d59..90cd650cf87 100644
> --- a/NEWS
> +++ b/NEWS
> @@ -26,6 +26,10 @@ Major new features:
>     such as changes to protection permissions, unmapping, relocation to
>     another location, or shrinking the size.
>   
> +* On Linux, the openat2 function has been added.  It is an extension of
> +  openat and provides a superset of its functionality.  It is supported only
> +  in LFS mode and it is a cancellable entrypoint.
> +
>   Deprecated and removed features, and other changes affecting compatibility:
>   
>   * Support for dumped heaps has been removed - malloc_set_state() now always
> diff --git a/manual/llio.texi b/manual/llio.texi
> index 806ff0a27d5..baae9866837 100644
> --- a/manual/llio.texi
> +++ b/manual/llio.texi
> @@ -218,6 +218,106 @@ new, extended API using 64 bit file sizes and offsets transparently
>   replaces the old API.
>   @end deftypefun
>   
> +@deftp {Data Type} {struct open_how}
> +@standards{Linux, fcntl.h}
> +The @code{open_how} structure describes how to open a file using @code{openat2}.
> +
> +@strong{Portability note:} In the future, additional fields can be added
> +to @code{struct open_how}, so that the size of this data type increases.
> +Do not use it in places where this matters, such as structure fields in
> +installed header files, where such a change could affect the application
> +binary interface (ABI).
> +
> +The following generic fields are available.
> +
> +@table @code
> +@item flags
> +This field specifies the file creation and file status flags to use when
> +opening the file.
> +All of the @code{O_*} flags defined for @code{openat} are valid.
> +The @code{openat2} is stricter than @code{openat} in rejecting unknown or
> +conflicting values. For example, @code{openat2} rejects a mode that
> +exceeds 07777, whereas @code{openat} silently ignores
> +excess high-order bits.
> +
> +@item mode
> +This field specifies the mode for the new file, similar to @code{mode}
> +argument of @code{openat}. It should be in the range 0..07777.
> +
> +@item resolve
> +This is a bitmask of flags that affect the resolution of file name components.
> +Unlike @code{O_NOFOLLOW}, it affects all file name components, not just the
> +last one. The following flags are available.
> +
> +@table @code
> +@item RESOLVE_NO_XDEV
> +Disallow traversal of mount points during path resolution (including all
> +bind mounts).
> +
> +@item RESOLVE_NO_MAGICLINKS
> +Disallow all @strong{magic-link} resolution during path resolution. Magic
> +links are symbolic link-like objects that are found in @strong{procfs};
> +for example the @code{/proc/pid/exe}.
> +
> +@item RESOLVE_NO_SYMLINKS
> +Disallow resolution of symbolic links during path resolution.
> +This option implies @code{RESOLVE_NO_MAGICLINKS}.
> +
> +@item RESOLVE_BENEATH
> +This rejects absolute pathnames, pathnames containing @file{..}@:
> +components that would be resolved relative to @var{dfd},
> +and symbolic links that resolve to pathnames that would be rejected.
> +The rejection occurs even if @var{dfd} is the root directory.
> +
> +@item RESOLVE_IN_ROOT
> +Treat absolute pathnames as being relative to @var{dfd},
> +treat a @file{..}@: component as being equivalent to @file{.}@:
> +if it is resolved relative to @var{dfd},
> +and treat symbolic link contents consistently with this.
> +
> +@end table
> +@end deftp
> +
> +
> +@deftypefun int openat2 (int @var{dirfd}, const char *@var{pathname}, const struct open_how *@var{how}, size_t @var{size})
> +@standards{Linux, fcntl.h}
> +@safety{@mtsafe{}@assafe{}@acsafe{}}
> +This function is an extension of the @code{openat} and provides a superset of its
> +functionality.  @xref{Descriptor-Relative Access}.
> +
> +The @var{size} argument must equal @code{sizeof *@var{how}}. For portability
> +to future API versions that may extend  @code{struct open_how}, @code{*@var{how}}

Remove double space. s/extend  @code/extend @code/g

> +should be fully initialized,  e.g., by a struct initializer, by @code{memset} to zero,

Remove commas and double spaces. s/,  e.g.,/e.g./g

> +or by having static storage duration.
> +


This whole section is a duplicate of above?
~~~> +For portability
> +to future API versions that extend @code{struct open_how}, @code{*@var{how}}
> +should be initialized either by a struct initializer or by @code{memset} to zero.
~~~
Suggest removing.

> +
> +On failure, @code{openat2} returns @math{-1} and sets @code{errno}. It can
> +fail for any of the reasons @code{openat} fails, plus the following reasons:
> +
> +@table @code
> +@item E2BIG
> +@var{size} is too large for any future extension, @code{*@var{how}} contains
> +non-zero members that are future extensions not supported by this kernel
> +
> +@item EINVAL
> +An unknown flag or invalid value was used on  @code{*@var{how}}; or

Remove double space. s/on  @code/on @code/g

> +@code{@var{how}->mode} is non-zero, but @code{@var{how}->flags} does not contain
> +@code{O_CREAT} or @code{O_TMPFILE}, or @var{size} is smaller than the ones supported
> +by the kernel.
> +@end table
> +
> +It can also return all the errors @code{openat} returns.
> +
> +Similar to @code{openat}, @code{openat2} is a cancellation point.
> +
> +Unlike other @code{open}-like functions, this function ignores
> +@code{_FILE_OFFSET_BITS} and always operates in large file mode.
> +@end deftypefun
> +
> +
>   @deftypefn {Obsolete function} int creat (const char *@var{filename}, mode_t @var{mode})
>   @standards{POSIX.1, fcntl.h}
>   @safety{@prelim{}@mtsafe{}@assafe{}@acsafe{@acsfd{}}}
> diff --git a/sysdeps/unix/sysv/linux/Makefile b/sysdeps/unix/sysv/linux/Makefile
> index 199031da64a..7f622277c7e 100644
> --- a/sysdeps/unix/sysv/linux/Makefile
> +++ b/sysdeps/unix/sysv/linux/Makefile
> @@ -135,6 +135,7 @@ sysdep_headers += \
>     bits/mman-linux.h \
>     bits/mman-map-flags-generic.h \
>     bits/mman-shared.h \
> +  bits/openat2.h \
>     bits/procfs-extra.h \
>     bits/procfs-id.h \
>     bits/procfs-prregset.h \
> @@ -623,6 +624,7 @@ sysdep_routines += \
>     internal_statvfs \
>     open64_nocancel \
>     open_nocancel \
> +  openat2 \
>     openat64_nocancel \
>     openat_nocancel \
>     pread64_nocancel \
> @@ -635,6 +637,7 @@ sysdep_routines += \
>     # sysdep_routines
>   
>   sysdep_headers += \
> +  bits/fcntl-linux-fortify.h \
>     bits/fcntl-linux.h \
>     # sysdep_headers
>   
> @@ -643,7 +646,24 @@ tests += \
>     tst-fallocate64 \
>     tst-getcwd-smallbuff \
>     tst-o_path-locks \
> +  tst-openat2 \
> +  tst-openat2-lfs \
>     # tests
> +
> +tests-special += \
> +  $(objpfx)tst-openat2-consts.out \
> +  # tests-special
> +$(objpfx)tst-openat2-consts.out: ../sysdeps/unix/sysv/linux/tst-openat2-consts.py
> +	$(sysdeps-linux-python) \
> +	  ../sysdeps/unix/sysv/linux/tst-openat2-consts.py \
> +	    $(sysdeps-linux-python-cc) \
> +	  < /dev/null > $@ 2>&1; $(evaluate-test)
> +$(objpfx)tst-openat2-consts.out: $(sysdeps-linux-python-deps)
> +
> +# openat2 only provides LFS support, the tests check if the interface is correctly
> +# provided regardless of the flags.
> +CFLAGS-tst-openat2-lfs.c += -D_FILE_OFFSET_BITS=64 -D_LARGEFILE64_SOURCE
> +
>   endif
>   
>   ifeq ($(subdir),elf)
> diff --git a/sysdeps/unix/sysv/linux/Versions b/sysdeps/unix/sysv/linux/Versions
> index 8f4d71ad7fe..c7f199f13f2 100644
> --- a/sysdeps/unix/sysv/linux/Versions
> +++ b/sysdeps/unix/sysv/linux/Versions
> @@ -341,6 +341,7 @@ libc {
>     }
>     GLIBC_2.43 {
>       mseal;
> +    openat2;
>     }
>     GLIBC_PRIVATE {
>       # functions used in other libraries
> diff --git a/sysdeps/unix/sysv/linux/aarch64/libc.abilist b/sysdeps/unix/sysv/linux/aarch64/libc.abilist
> index 2f049a4b410..0ded7d7a0a2 100644
> --- a/sysdeps/unix/sysv/linux/aarch64/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/aarch64/libc.abilist
> @@ -2771,4 +2771,5 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
> diff --git a/sysdeps/unix/sysv/linux/alpha/libc.abilist b/sysdeps/unix/sysv/linux/alpha/libc.abilist
> index bebfad9de2c..408b3f655d6 100644
> --- a/sysdeps/unix/sysv/linux/alpha/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/alpha/libc.abilist
> @@ -3118,6 +3118,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/arc/libc.abilist b/sysdeps/unix/sysv/linux/arc/libc.abilist
> index d6341e98e7b..58dadbf1965 100644
> --- a/sysdeps/unix/sysv/linux/arc/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/arc/libc.abilist
> @@ -2532,4 +2532,5 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
> diff --git a/sysdeps/unix/sysv/linux/arm/be/libc.abilist b/sysdeps/unix/sysv/linux/arm/be/libc.abilist
> index a9076eb3207..ad6f686928e 100644
> --- a/sysdeps/unix/sysv/linux/arm/be/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/arm/be/libc.abilist
> @@ -2824,6 +2824,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/arm/le/libc.abilist b/sysdeps/unix/sysv/linux/arm/le/libc.abilist
> index d3be53ea257..a6ceb7e6943 100644
> --- a/sysdeps/unix/sysv/linux/arm/le/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/arm/le/libc.abilist
> @@ -2821,6 +2821,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/bits/fcntl-linux-fortify.h b/sysdeps/unix/sysv/linux/bits/fcntl-linux-fortify.h
> new file mode 100644
> index 00000000000..e6b414d7ef0
> --- /dev/null
> +++ b/sysdeps/unix/sysv/linux/bits/fcntl-linux-fortify.h
> @@ -0,0 +1,49 @@
> +/* Checking macros for fcntl functions.  Linux version.
> +   Copyright (C) 2025 Free Software Foundation, Inc.
> +   This file is part of the GNU C Library.
> +
> +   The GNU C Library is free software; you can redistribute it and/or
> +   modify it under the terms of the GNU Lesser General Public
> +   License as published by the Free Software Foundation; either
> +   version 2.1 of the License, or (at your option) any later version.
> +
> +   The GNU C Library is distributed in the hope that it will be useful,
> +   but WITHOUT ANY WARRANTY; without even the implied warranty of
> +   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
> +   Lesser General Public License for more details.
> +
> +   You should have received a copy of the GNU Lesser General Public
> +   License along with the GNU C Library; if not, see
> +   <https://www.gnu.org/licenses/>.  */
> +
> +#ifndef	_FCNTL_H
> +# error "Never include <bits/fcntl-linux-fortify.h> directly; use <fcntl.h> instead."
> +#endif
> +
> +#ifdef __USE_GNU
> +
> +extern int __REDIRECT (__openat2_alias, (int __dfd, const char *__filename,
> +					 const struct open_how *__how,
> +					 size_t __usize), openat2)
> +     __nonnull ((2, 3));
> +
> +#if !__fortify_use_clang
> +__errordecl (__openat2_invalid_size,
> +	     "the specified size is larger than sizeof (struct open_how)");
> +#endif
> +
> +__fortify_function int
> +openat2 (int __dfd, const char *__filename, const struct open_how *__how,
> +	 size_t __usize)
> +     __fortify_clang_warning (__builtin_constant_p (__usize)
> +			      && __usize > sizeof (struct open_how),
> +			      "the specified size is larger than sizeof (struct open_how)")
> +{
> +#if !__fortify_use_clang
> +  if (__builtin_constant_p (__usize) && __usize > sizeof (struct open_how))
> +    __openat2_invalid_size ();
> +#endif
> +  return __openat2_alias (__dfd, __filename, __how, __usize);
> +}
> +
> +#endif /* use GNU */
> diff --git a/sysdeps/unix/sysv/linux/bits/fcntl-linux.h b/sysdeps/unix/sysv/linux/bits/fcntl-linux.h
> index f9b3de11f44..44ea6c4ef63 100644
> --- a/sysdeps/unix/sysv/linux/bits/fcntl-linux.h
> +++ b/sysdeps/unix/sysv/linux/bits/fcntl-linux.h
> @@ -463,6 +463,33 @@ extern int name_to_handle_at (int __dfd, const char *__name,
>   extern int open_by_handle_at (int __mountdirfd, struct file_handle *__handle,
>   			      int __flags);
>   
> +#ifdef __has_include
> +# if __has_include ("linux/openat2.h")
> +#  include "linux/openat2.h"
> +#  define __glibc_has_open_how 1
> +# endif
> +#endif
> +
> +#include <bits/openat2.h>
> +
> +/* Similar to `openat' but the arguments are packed on HOW with the size
> +   USIZE.  If flags and mode from HOW are non-zero, then openat2 operates
> +   like openat.
> +
> +   Unlike openat, unknown or invalid flags result in an error (EINVAL),
> +   rather than being ignored.  The mode must be zero unless one O_CREAT
> +   or O_TMPFILE are set.

s/unless one/unless one of/g

> +
> +   The kernel does not support legacy non-LFS interface.  */
> +extern int openat2 (int __dfd, const char * __filename,
> +		    const struct open_how * __how,
> +		    __SIZE_TYPE__ __usize)
> +     __nonnull ((2, 3));
> +
>   #endif	/* use GNU */
>   
> +#if __USE_FORTIFY_LEVEL > 0 && defined __fortify_function
> +# include <bits/fcntl-linux-fortify.h>
> +#endif
> +
>   __END_DECLS
> diff --git a/sysdeps/unix/sysv/linux/bits/openat2.h b/sysdeps/unix/sysv/linux/bits/openat2.h
> new file mode 100644
> index 00000000000..a3fe858bc22
> --- /dev/null
> +++ b/sysdeps/unix/sysv/linux/bits/openat2.h
> @@ -0,0 +1,60 @@
> +/* openat2 definition.  Linux specific.
> +   Copyright (C) 2025 Free Software Foundation, Inc.
> +   This file is part of the GNU C Library.
> +
> +   The GNU C Library is free software; you can redistribute it and/or
> +   modify it under the terms of the GNU Lesser General Public
> +   License as published by the Free Software Foundation; either
> +   version 2.1 of the License, or (at your option) any later version.
> +
> +   The GNU C Library is distributed in the hope that it will be useful,
> +   but WITHOUT ANY WARRANTY; without even the implied warranty of
> +   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
> +   Lesser General Public License for more details.
> +
> +   You should have received a copy of the GNU Lesser General Public
> +   License along with the GNU C Library; if not, see
> +   <https://www.gnu.org/licenses/>.  */
> +
> +#ifndef _FCNTL_H
> +# error "Never use <bits/openat2.h> directly; include <fcntl.h> instead."
> +#endif
> +
> +#ifndef __glibc_has_open_how
> +/* Arguments for how openat2 should open the target path.  */
> +struct open_how
> +{
> +  __uint64_t flags;
> +  __uint64_t mode;
> +  __uint64_t resolve;
> +};
> +#endif
> +
> +/* how->resolve flags for openat2. */
> +#ifndef RESOLVE_NO_XDEV
> +# define RESOLVE_NO_XDEV	0x01 /* Block mount-point crossings
> +					(includes bind-mounts).  */
> +#endif
> +#ifndef RESOLVE_NO_MAGICLINKS
> +# define RESOLVE_NO_MAGICLINKS	0x02 /* Block traversal through procfs-style
> +					"magic-links".  */
> +#endif
> +#ifndef RESOLVE_NO_SYMLINKS
> +# define RESOLVE_NO_SYMLINKS	0x04 /* Block traversal through all symlinks.  */
> +#endif
> +#ifndef RESOLVE_BENEATH
> +# define RESOLVE_BENEATH	0x08 /* Block "lexical" trickery like
> +					"..", symlinks, and absolute
> +					paths which escape the dirfd.  */
> +#endif
> +#ifndef RESOLVE_IN_ROOT
> +# define RESOLVE_IN_ROOT	0x10 /* Make all jumps to "/" and ".."
> +					be scoped inside the dirfd
> +					(similar to chroot).  */
> +#endif
> +#ifndef RESOLVE_CACHED
> +# define RESOLVE_CACHED		0x20 /* Only complete if resolution can be
> +					completed through cached lookup. May
> +					return -EAGAIN if that's not
> +					possible.  */
> +#endif
> diff --git a/sysdeps/unix/sysv/linux/csky/libc.abilist b/sysdeps/unix/sysv/linux/csky/libc.abilist
> index e1107669767..643d3228222 100644
> --- a/sysdeps/unix/sysv/linux/csky/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/csky/libc.abilist
> @@ -2808,4 +2808,5 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
> diff --git a/sysdeps/unix/sysv/linux/hppa/libc.abilist b/sysdeps/unix/sysv/linux/hppa/libc.abilist
> index a079e7d1a01..0ee1a4fd3f7 100644
> --- a/sysdeps/unix/sysv/linux/hppa/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/hppa/libc.abilist
> @@ -2845,6 +2845,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/i386/libc.abilist b/sysdeps/unix/sysv/linux/i386/libc.abilist
> index 421b3c742be..223f5971ef4 100644
> --- a/sysdeps/unix/sysv/linux/i386/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/i386/libc.abilist
> @@ -3028,6 +3028,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/loongarch/lp64/libc.abilist b/sysdeps/unix/sysv/linux/loongarch/lp64/libc.abilist
> index 1d7a1de570c..4d905a46cb8 100644
> --- a/sysdeps/unix/sysv/linux/loongarch/lp64/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/loongarch/lp64/libc.abilist
> @@ -2292,4 +2292,5 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
> diff --git a/sysdeps/unix/sysv/linux/m68k/coldfire/libc.abilist b/sysdeps/unix/sysv/linux/m68k/coldfire/libc.abilist
> index b512384ed01..024c465bb80 100644
> --- a/sysdeps/unix/sysv/linux/m68k/coldfire/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/m68k/coldfire/libc.abilist
> @@ -2804,6 +2804,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/m68k/m680x0/libc.abilist b/sysdeps/unix/sysv/linux/m68k/m680x0/libc.abilist
> index 223e4825ab2..b7b87a0b6d3 100644
> --- a/sysdeps/unix/sysv/linux/m68k/m680x0/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/m68k/m680x0/libc.abilist
> @@ -2971,6 +2971,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/microblaze/be/libc.abilist b/sysdeps/unix/sysv/linux/microblaze/be/libc.abilist
> index f314f55e1fa..bb8e4d25d63 100644
> --- a/sysdeps/unix/sysv/linux/microblaze/be/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/microblaze/be/libc.abilist
> @@ -2857,4 +2857,5 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
> diff --git a/sysdeps/unix/sysv/linux/microblaze/le/libc.abilist b/sysdeps/unix/sysv/linux/microblaze/le/libc.abilist
> index 8a33db2cb2a..466b4392700 100644
> --- a/sysdeps/unix/sysv/linux/microblaze/le/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/microblaze/le/libc.abilist
> @@ -2854,4 +2854,5 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
> diff --git a/sysdeps/unix/sysv/linux/mips/mips32/fpu/libc.abilist b/sysdeps/unix/sysv/linux/mips/mips32/fpu/libc.abilist
> index 3f704bd87de..ac5062be2a9 100644
> --- a/sysdeps/unix/sysv/linux/mips/mips32/fpu/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/mips/mips32/fpu/libc.abilist
> @@ -2934,6 +2934,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/mips/mips32/nofpu/libc.abilist b/sysdeps/unix/sysv/linux/mips/mips32/nofpu/libc.abilist
> index 633d031c727..8ac8426ae68 100644
> --- a/sysdeps/unix/sysv/linux/mips/mips32/nofpu/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/mips/mips32/nofpu/libc.abilist
> @@ -2932,6 +2932,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/mips/mips64/n32/libc.abilist b/sysdeps/unix/sysv/linux/mips/mips64/n32/libc.abilist
> index 8b8e5af806a..5f7ab3f95d2 100644
> --- a/sysdeps/unix/sysv/linux/mips/mips64/n32/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/mips/mips64/n32/libc.abilist
> @@ -2940,6 +2940,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/mips/mips64/n64/libc.abilist b/sysdeps/unix/sysv/linux/mips/mips64/n64/libc.abilist
> index f45d5075fdf..b6543a8773f 100644
> --- a/sysdeps/unix/sysv/linux/mips/mips64/n64/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/mips/mips64/n64/libc.abilist
> @@ -2842,6 +2842,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/openat2.c b/sysdeps/unix/sysv/linux/openat2.c
> new file mode 100644
> index 00000000000..d45eb05c327
> --- /dev/null
> +++ b/sysdeps/unix/sysv/linux/openat2.c
> @@ -0,0 +1,29 @@
> +/* Linux openat2 syscall implementation.
> +   Copyright (C) 2025 Free Software Foundation, Inc.
> +   This file is part of the GNU C Library.
> +
> +   The GNU C Library is free software; you can redistribute it and/or
> +   modify it under the terms of the GNU Lesser General Public
> +   License as published by the Free Software Foundation; either
> +   version 2.1 of the License, or (at your option) any later version.
> +
> +   The GNU C Library is distributed in the hope that it will be useful,
> +   but WITHOUT ANY WARRANTY; without even the implied warranty of
> +   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
> +   Lesser General Public License for more details.
> +
> +   You should have received a copy of the GNU Lesser General Public
> +   License along with the GNU C Library; if not, see
> +   <https://www.gnu.org/licenses/>.  */
> +
> +#include <fcntl.h>
> +#include <bits/openat2.h>
> +#include <sysdep-cancel.h>
> +
> +int
> +__openat2 (int dfd, const char *filename,
> +	   const struct open_how *how, size_t usize)
> +{
> +  return SYSCALL_CANCEL (openat2, dfd, filename, how, usize);
> +}
> +weak_alias (__openat2, openat2)
> diff --git a/sysdeps/unix/sysv/linux/or1k/libc.abilist b/sysdeps/unix/sysv/linux/or1k/libc.abilist
> index 96b056d14a0..160dff8c79f 100644
> --- a/sysdeps/unix/sysv/linux/or1k/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/or1k/libc.abilist
> @@ -2282,4 +2282,5 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
> diff --git a/sysdeps/unix/sysv/linux/powerpc/powerpc32/fpu/libc.abilist b/sysdeps/unix/sysv/linux/powerpc/powerpc32/fpu/libc.abilist
> index 6420f23d068..16653ba77f3 100644
> --- a/sysdeps/unix/sysv/linux/powerpc/powerpc32/fpu/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/powerpc/powerpc32/fpu/libc.abilist
> @@ -3161,6 +3161,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/powerpc/powerpc32/nofpu/libc.abilist b/sysdeps/unix/sysv/linux/powerpc/powerpc32/nofpu/libc.abilist
> index 9a2a258e024..a453e237446 100644
> --- a/sysdeps/unix/sysv/linux/powerpc/powerpc32/nofpu/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/powerpc/powerpc32/nofpu/libc.abilist
> @@ -3206,6 +3206,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/powerpc/powerpc64/be/libc.abilist b/sysdeps/unix/sysv/linux/powerpc/powerpc64/be/libc.abilist
> index 6a20d8d031a..7d01a4f1cbf 100644
> --- a/sysdeps/unix/sysv/linux/powerpc/powerpc64/be/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/powerpc/powerpc64/be/libc.abilist
> @@ -2915,6 +2915,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/powerpc/powerpc64/le/libc.abilist b/sysdeps/unix/sysv/linux/powerpc/powerpc64/le/libc.abilist
> index c0fa82e6a2a..f5c1927d347 100644
> --- a/sysdeps/unix/sysv/linux/powerpc/powerpc64/le/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/powerpc/powerpc64/le/libc.abilist
> @@ -2991,4 +2991,5 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
> diff --git a/sysdeps/unix/sysv/linux/riscv/rv32/libc.abilist b/sysdeps/unix/sysv/linux/riscv/rv32/libc.abilist
> index 5c46dcacdce..366c7405325 100644
> --- a/sysdeps/unix/sysv/linux/riscv/rv32/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/riscv/rv32/libc.abilist
> @@ -2535,4 +2535,5 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
> diff --git a/sysdeps/unix/sysv/linux/riscv/rv64/libc.abilist b/sysdeps/unix/sysv/linux/riscv/rv64/libc.abilist
> index 4ce2007c56d..7c80ed4bc4a 100644
> --- a/sysdeps/unix/sysv/linux/riscv/rv64/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/riscv/rv64/libc.abilist
> @@ -2735,4 +2735,5 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
> diff --git a/sysdeps/unix/sysv/linux/s390/s390-32/libc.abilist b/sysdeps/unix/sysv/linux/s390/s390-32/libc.abilist
> index 9a672c6a4c3..0aa665c18e9 100644
> --- a/sysdeps/unix/sysv/linux/s390/s390-32/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/s390/s390-32/libc.abilist
> @@ -3159,6 +3159,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/s390/s390-64/libc.abilist b/sysdeps/unix/sysv/linux/s390/s390-64/libc.abilist
> index 1926e675ca9..f2bf32ed957 100644
> --- a/sysdeps/unix/sysv/linux/s390/s390-64/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/s390/s390-64/libc.abilist
> @@ -2952,6 +2952,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/sh/be/libc.abilist b/sysdeps/unix/sysv/linux/sh/be/libc.abilist
> index b3510af9ef7..2b6d77d8ff3 100644
> --- a/sysdeps/unix/sysv/linux/sh/be/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/sh/be/libc.abilist
> @@ -2851,6 +2851,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/sh/le/libc.abilist b/sysdeps/unix/sysv/linux/sh/le/libc.abilist
> index fc1fea412a5..65b990f5ea9 100644
> --- a/sysdeps/unix/sysv/linux/sh/le/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/sh/le/libc.abilist
> @@ -2848,6 +2848,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/sparc/sparc32/libc.abilist b/sysdeps/unix/sysv/linux/sparc/sparc32/libc.abilist
> index fce9f948b79..2fc6479c2c2 100644
> --- a/sysdeps/unix/sysv/linux/sparc/sparc32/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/sparc/sparc32/libc.abilist
> @@ -3182,6 +3182,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/sparc/sparc64/libc.abilist b/sysdeps/unix/sysv/linux/sparc/sparc64/libc.abilist
> index 9d4721c16eb..2446991f288 100644
> --- a/sysdeps/unix/sysv/linux/sparc/sparc64/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/sparc/sparc64/libc.abilist
> @@ -2818,6 +2818,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/tst-openat2-consts.py b/sysdeps/unix/sysv/linux/tst-openat2-consts.py
> new file mode 100755
> index 00000000000..9b65d184d73
> --- /dev/null
> +++ b/sysdeps/unix/sysv/linux/tst-openat2-consts.py
> @@ -0,0 +1,63 @@
> +#!/usr/bin/python3
> +# Test that glibc's sys/openat2.h constants match the kernel's.
> +# Copyright (C) 2025 Free Software Foundation, Inc.
> +# This file is part of the GNU C Library.
> +#
> +# The GNU C Library is free software; you can redistribute it and/or
> +# modify it under the terms of the GNU Lesser General Public
> +# License as published by the Free Software Foundation; either
> +# version 2.1 of the License, or (at your option) any later version.
> +#
> +# The GNU C Library is distributed in the hope that it will be useful,
> +# but WITHOUT ANY WARRANTY; without even the implied warranty of
> +# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
> +# Lesser General Public License for more details.
> +#
> +# You should have received a copy of the GNU Lesser General Public
> +# License along with the GNU C Library; if not, see
> +# <https://www.gnu.org/licenses/>.
> +
> +import argparse
> +import sys
> +
> +import glibcextract
> +import glibcsyscalls
> +
> +
> +def main():
> +    """The main entry point."""
> +    parser = argparse.ArgumentParser(
> +        description="Test that glibc's sys/openat2.h constants "
> +        "match the kernel's.")
> +    parser.add_argument('--cc', metavar='CC',
> +                        help='C compiler (including options) to use')
> +    args = parser.parse_args()
> +
> +    if glibcextract.compile_c_snippet(
> +            '#include <linux/openat2.h>',
> +            args.cc).returncode != 0:
> +        sys.exit (77)
> +
> +    linux_version_headers = glibcsyscalls.linux_kernel_version(args.cc)
> +    # Constants in glibc were updated to match Linux v6.8.  When glibc
> +    # constants are updated this value should be updated to match the
> +    # released kernel version from which the constants were taken.
> +    linux_version_glibc = (6, 8)
> +    def check(cte, exclude=None):
> +        return glibcextract.compare_macro_consts(
> +                '#define _FCNTL_H\n'
> +                '#include <stdint.h>\n'
> +                '#include <bits/openat2.h>\n',
> +                '#include <asm/fcntl.h>\n'
> +                '#include <linux/openat2.h>\n',
> +                args.cc,
> +                cte,
> +                exclude,
> +                linux_version_glibc > linux_version_headers,
> +                linux_version_headers > linux_version_glibc)
> +
> +    status = check('RESOLVE.*')
> +    sys.exit(status)
> +
> +if __name__ == '__main__':
> +    main()
> diff --git a/sysdeps/unix/sysv/linux/tst-openat2-lfs.c b/sysdeps/unix/sysv/linux/tst-openat2-lfs.c
> new file mode 100644
> index 00000000000..85962d30c17
> --- /dev/null
> +++ b/sysdeps/unix/sysv/linux/tst-openat2-lfs.c
> @@ -0,0 +1 @@
> +#include "tst-openat2.c"
> diff --git a/sysdeps/unix/sysv/linux/tst-openat2.c b/sysdeps/unix/sysv/linux/tst-openat2.c
> new file mode 100644
> index 00000000000..e52e3870d04
> --- /dev/null
> +++ b/sysdeps/unix/sysv/linux/tst-openat2.c
> @@ -0,0 +1,482 @@
> +/* Linux openat2 tests.
> +   Copyright (C) 2025 Free Software Foundation, Inc.
> +   This file is part of the GNU C Library.
> +
> +   The GNU C Library is free software; you can redistribute it and/or
> +   modify it under the terms of the GNU Lesser General Public
> +   License as published by the Free Software Foundation; either
> +   version 2.1 of the License, or (at your option) any later version.
> +
> +   The GNU C Library is distributed in the hope that it will be useful,
> +   but WITHOUT ANY WARRANTY; without even the implied warranty of
> +   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
> +   Lesser General Public License for more details.
> +
> +   You should have received a copy of the GNU Lesser General Public
> +   License along with the GNU C Library; if not, see
> +   <https://www.gnu.org/licenses/>.  */
> +
> +#include <array_length.h>
> +#include <errno.h>
> +#include <fcntl.h>
> +#include <libgen.h>
> +#include <stdint.h>
> +
> +#include <support/check.h>
> +#include <support/support.h>
> +#include <support/temp_file.h>
> +#include <support/test-driver.h>
> +#include <support/xunistd.h>
> +
> +static int dir_fd;
> +static char *temp_dir;
> +static char *temp_subdir;
> +static char *temp_some_file;
> +
> +#define TEST_DIR_LINK    "test_dir_link"
> +#define TEST_DIR_LINK_2  "test_dir_link_2"
> +#define TEMP_DIR_LINK    "temp_dir_link"
> +#define INVALID_LINK     "invalid-link"
> +#define VALID_LINK       "valid-link"
> +
> +static void
> +create_symlink (const char *target, const char *linkpath)
> +{
> +  TEST_VERIFY_EXIT (symlinkat (target, dir_fd, linkpath) == 0);
> +  add_temp_file (xasprintf ("%s/%s", temp_dir, linkpath));
> +}
> +
> +static void
> +do_prepare (int argc, char *argv[])
> +{
> +  /*
> +     Construct a test directory with the following structure:
> +
> +     temp_dir/
> +     |- tst-openat2.xxxxxxx
> +        |- test_dir_link -> test_dir (/tmp)
> +        |- test_dir_link_2 -> test_dir_link
> +        |- temp_dir_link -> temp_dir/tst-openat2.xxxxxxx
> +        |- some-file.xxxxxxx
> +        |- invalid_link -> temp_dir/tst-openat2.xxxxxxx/some-file.xxxxxxx
> +        |- valid_link -> some-file.xxxxxxx
> +	|- subdir.xxxxxxx
> +	   |- some-file.xxxxxxx
> +  */
> +
> +  temp_dir = support_create_temp_directory ("tst-openat2.");
> +  dir_fd = xopen (temp_dir, O_RDONLY | O_DIRECTORY, 0);
> +
> +  create_symlink (test_dir, TEST_DIR_LINK);
> +  create_symlink (TEST_DIR_LINK, TEST_DIR_LINK_2);
> +  create_symlink (temp_dir, TEMP_DIR_LINK);
> +
> +  {
> +    char *filename;
> +    int fd = create_temp_file_in_dir ("some-file.", temp_dir, &filename);
> +    TEST_VERIFY_EXIT (fd != -1);
> +
> +    create_symlink (filename, INVALID_LINK);
> +
> +    create_symlink (basename (filename), VALID_LINK);
> +  }
> +
> +  temp_subdir = support_create_temp_directory (xasprintf ("%s/subdir.",
> +							  basename (temp_dir)));
> +  {
> +    int fd = create_temp_file_in_dir ("some-file.", temp_subdir,
> +				      &temp_some_file);
> +    TEST_VERIFY_EXIT (fd != -1);
> +  }
> +}
> +#define PREPARE do_prepare
> +
> +static int
> +do_test_struct (void)
> +{
> +  static struct struct_test
> +  {
> +    struct open_how_ext
> +    {
> +      struct open_how inner;
> +      int extra1;
> +      int extra2;
> +      int extra3;
> +    } arg;
> +    size_t size;
> +    int err;
> +  } tests[] =
> +  {
> +    {
> +      /* Zero size.  */
> +      .arg.inner.flags = O_RDONLY,
> +      .size = 0,
> +      .err = EINVAL,
> +    },
> +    {
> +      /* Normal struct.  */
> +      .arg.inner.flags = O_RDONLY,
> +      .size = sizeof (struct open_how),
> +    },
> +    {
> +      /* Larger struct, zeroed out the unused values.  */
> +      .arg.inner.flags = O_RDONLY,
> +      .size = sizeof (struct open_how_ext),
> +    },
> +    {
> +      /* Larger struct, non-zeroed out the unused values.  */
> +      .arg.inner.flags = O_RDONLY,
> +      .arg.extra1 = 0xdeadbeef,
> +      .size = sizeof (struct open_how_ext),
> +      .err = E2BIG,
> +    },
> +    {
> +      /* Larger struct, non-zeroed out the unused values.  */
> +      .arg.inner.flags = O_RDONLY,
> +      .arg.extra2 = 0xdeadbeef,
> +      .size = sizeof (struct open_how_ext),
> +      .err = E2BIG,
> +    },
> +  };
> +
> +  for (struct struct_test *t = tests; t != array_end (tests); t++)
> +    {
> +      int fd = openat2 (AT_FDCWD, ".", (struct open_how *) &t->arg, t->size);
> +      if (t->err != 0)
> +	{
> +	  TEST_COMPARE (fd, -1);
> +	  TEST_COMPARE (errno, t->err);
> +	}
> +      else
> +	TEST_VERIFY (fd >= 0);
> +    }
> +
> +  return 0;
> +}
> +
> +static int
> +do_test_flags (void)
> +{
> +  static struct flag_test
> +  {
> +    const char *path;
> +    struct open_how how;
> +    int err;
> +  } tests[] =
> +  {
> +    /* O_TMPFILE is incompatible with O_PATH and O_CREAT.  */
> +    {
> +      .how.flags = O_TMPFILE | O_PATH | O_RDWR,
> +      .err = EINVAL },
> +    {
> +      .how.flags = O_TMPFILE | O_CREAT | O_RDWR,
> +      .err = EINVAL },
> +
> +    /* O_PATH only permits certain other flags to be set ...  */
> +    {
> +      .how.flags = O_PATH | O_CLOEXEC
> +    },
> +    {
> +      .how.flags = O_PATH | O_DIRECTORY
> +    },
> +    {
> +      .how.flags = O_PATH | O_NOFOLLOW
> +    },
> +    /* ... and others are absolutely not permitted. */
> +    {
> +      .how.flags = O_PATH | O_RDWR,
> +      .err = EINVAL },
> +    {
> +      .how.flags = O_PATH | O_CREAT,
> +      .err = EINVAL },
> +    {
> +      .how.flags = O_PATH | O_EXCL,
> +      .err = EINVAL },
> +    {
> +      .how.flags = O_PATH | O_NOCTTY,
> +      .err = EINVAL },
> +    {
> +      .how.flags = O_PATH | O_DIRECT,
> +      .err = EINVAL },
> +
> +    /* ->mode must only be set with O_{CREAT,TMPFILE}. */
> +    {
> +      .how.flags = O_RDONLY,
> +      .how.mode = 0600,
> +      .err = EINVAL },
> +    {
> +      .how.flags = O_PATH,
> +      .how.mode = 0600,
> +      .err = EINVAL },
> +    {
> +      .how.flags = O_CREAT,
> +      .how.mode = 0600 },
> +    {
> +      .how.flags = O_TMPFILE | O_RDWR,
> +      .how.mode = 0600 },
> +    /* ->mode must only contain 0777 bits. */
> +    {
> +      .how.flags = O_CREAT, .how.mode = 0xFFFF, .err = EINVAL },
> +    {
> +      .how.flags = O_CREAT, .how.mode = 0xC000000000000000ULL,
> +      .err = EINVAL },
> +    {
> +      .how.flags = O_TMPFILE | O_RDWR, .how.mode = 0x1337,
> +      .err = EINVAL },
> +    {
> +      .how.flags = O_TMPFILE | O_RDWR,
> +      .how.mode = 0x0000A00000000000ULL,
> +      .err = EINVAL
> +    },
> +
> +    /* ->resolve flags must not conflict. */
> +    {
> +      .how.flags = O_RDONLY,
> +      .how.resolve = RESOLVE_BENEATH | RESOLVE_IN_ROOT,
> +      .err = EINVAL
> +    },
> +
> +    /* ->resolve must only contain RESOLVE_* flags.  */
> +    {
> +      .how.flags = O_RDONLY,
> +      .how.resolve = 0x1337,
> +      .err = EINVAL
> +    },
> +    {
> +      .how.flags = O_CREAT,
> +      .how.resolve = 0x1337,
> +      .err = EINVAL
> +    },
> +    {
> +      .how.flags = O_TMPFILE | O_RDWR,
> +      .how.resolve = 0x1337,
> +      .err = EINVAL
> +    },
> +    {
> +      .how.flags = O_PATH,
> +      .how.resolve = 0x1337,
> +      .err = EINVAL
> +    },
> +
> +    /* currently unknown upper 32 bit rejected.  */
> +    {
> +      .how.flags = O_RDONLY | (1ULL << 63),
> +      .how.resolve = 0,
> +      .err = EINVAL
> +    },
> +  };
> +
> +  for (struct flag_test *t = tests; t != array_end (tests); t++)
> +    {
> +      const char *path;
> +      if (t->how.flags & O_CREAT)
> +	{
> +	  char *newfile;
> +	  int temp_fd = create_temp_file ("tst-openat2.", &newfile);
> +	  TEST_VERIFY_EXIT (temp_fd != -1);
> +	  xunlink (newfile);
> +	  path = newfile;
> +	}
> +      else
> +	path = ".";
> +
> +      int fd = openat2 (AT_FDCWD, path, &t->how, sizeof (struct open_how));
> +      if (fd != 0 && errno == EOPNOTSUPP)
> +	{
> +	  /* Skip the testcase if FS does not support the operation (e.g.
> +	     valid O_TMPFILE on NFS).  */
> +	  continue;
> +	}
> +
> +      if (t->err != 0)
> +	{
> +	  TEST_COMPARE (fd, -1);
> +	  TEST_COMPARE (errno, t->err);
> +	}
> +      else
> +	TEST_VERIFY (fd >= 0);
> +    }
> +
> +  return 0;
> +}
> +
> +static void
> +do_test_resolve (void)
> +{
> +  int fd;
> +
> +  /* TEMP_DIR_LINK links to the absolute temp_dir, which escapes the temporary
> +     test directory.  */
> +  fd = openat2 (dir_fd,
> +		TEST_DIR_LINK,
> +		&(struct open_how)
> +		{
> +		  .resolve = RESOLVE_BENEATH,
> +		},
> +		sizeof (struct open_how));
> +  TEST_COMPARE (fd, -1);
> +  TEST_COMPARE (errno, EXDEV);
> +
> +  /* Same as before, TEMP_DIR_LINK_2 links to TEMP_DIR_LINK.  */
> +  fd = openat2 (dir_fd,
> +		TEST_DIR_LINK_2,
> +		&(struct open_how)
> +		{
> +		  .resolve = RESOLVE_BENEATH,
> +		},
> +		sizeof (struct open_how));
> +  TEST_COMPARE (fd, -1);
> +  TEST_COMPARE (errno, EXDEV);
> +
> +  /* TEMP_DIR_LINK links to the temproary directory itself (dir_fd).  */

Fix spelling. s/temproary/temporary/g

> +  fd = openat2 (dir_fd,
> +		TEMP_DIR_LINK,
> +		&(struct open_how)
> +		{
> +		  .resolve = RESOLVE_BENEATH,
> +		},
> +		sizeof (struct open_how));
> +  TEST_COMPARE (fd, -1);
> +  TEST_COMPARE (errno, EXDEV);
> +
> +  /* Although it points to a valid file in same path, the link refers to
> +     an absolute path.  */
> +  fd = openat2 (dir_fd,
> +		INVALID_LINK,
> +		&(struct open_how)
> +		{
> +		  .resolve = RESOLVE_BENEATH,
> +		},
> +		sizeof (struct open_how));
> +  TEST_COMPARE (fd, -1);
> +  TEST_COMPARE (errno, EXDEV);
> +
> +  fd = openat2 (dir_fd,
> +		VALID_LINK,
> +		&(struct open_how)
> +		{
> +		  .resolve = RESOLVE_BENEATH,
> +		},
> +		sizeof (struct open_how));
> +  TEST_VERIFY (fd != -1);
> +  xclose (fd);
> +
> +  /* There is no such file in temp_dir/tst-openat2.xxxxxxx.  */
> +  fd = openat2 (dir_fd,
> +	       "should-not-work",
> +	       &(struct open_how)
> +	       {
> +	         .resolve = RESOLVE_IN_ROOT,
> +	       },
> +	       sizeof (struct open_how));
> +  TEST_COMPARE (fd, -1);
> +  TEST_COMPARE (errno, ENOENT);
> +
> +  {
> +    int subdir_fd = openat2 (dir_fd,
> +			     basename (temp_subdir),
> +			     &(struct open_how)
> +			     {
> +			       .flags = O_RDONLY | O_DIRECTORY,
> +			       .resolve = RESOLVE_IN_ROOT,
> +			     },
> +			     sizeof (struct open_how));
> +    TEST_VERIFY (subdir_fd != -1);
> +
> +    /* Open the file within the subdir.xxxxxx with both tst-openat2.xxxxxxx
> +       and tst-openat2.xxxxxxx/subdir.xxxxxxx file descriptors.  */
> +    fd = openat2 (subdir_fd,
> +		  basename (temp_some_file),
> +		  &(struct open_how)
> +		  {
> +		    .resolve = RESOLVE_IN_ROOT,
> +		  },
> +		  sizeof (struct open_how));
> +    TEST_VERIFY (fd != -1);
> +    xclose (fd);
> +
> +    fd = openat2 (dir_fd,
> +		  xasprintf ("%s/%s",
> +			     basename (temp_subdir),
> +			     basename (temp_some_file)),
> +		  &(struct open_how)
> +		  {
> +		    .resolve = RESOLVE_IN_ROOT,
> +		  },
> +		  sizeof (struct open_how));
> +    TEST_VERIFY (fd != -1);
> +    xclose (fd);
> +  }
> +}
> +
> +static int
> +do_test_basic (void)
> +{
> +  int fd;
> +
> +  fd = openat2 (dir_fd,
> +		"some-file",
> +		&(struct open_how)
> +		{
> +		  .flags = O_CREAT|O_RDWR|O_EXCL,
> +		  .mode = 0666,
> +		},
> +		sizeof (struct open_how));
> +  TEST_VERIFY (fd != -1);
> +
> +  xwrite (fd, "hello", 5);
> +
> +  /* Before closing the file, try using this file descriptor to open
> +     another file.  This must fail.  */
> +  {
> +    int fd2 = openat2 (fd,
> +		       "should-not-work",
> +		       &(struct open_how)
> +		       {
> +			 .flags = O_CREAT|O_RDWR|O_EXCL,
> +			 .mode = 0666,
> +		       },
> +		       sizeof (struct open_how));
> +    TEST_COMPARE (fd2, -1);
> +    TEST_COMPARE (errno, ENOTDIR);
> +  }
> +
> +  /* Remove the created file.  */
> +  int cwdfd = xopen (".", O_RDONLY | O_DIRECTORY, 0);
> +  TEST_COMPARE (fchdir (dir_fd), 0);
> +  xunlink ("some-file");
> +  TEST_COMPARE (fchdir (cwdfd), 0);
> +
> +  xclose (dir_fd);
> +  xclose (cwdfd);
> +
> +  fd = openat2 (dir_fd,
> +		"some-file",
> +		&(struct open_how)
> +		{
> +		  .flags = O_CREAT|O_RDWR|O_EXCL,
> +		  .mode = 0666,
> +		},
> +		sizeof (struct open_how));
> +  TEST_COMPARE (fd, -1);
> +  TEST_COMPARE (errno, EBADF);
> +
> +  return 0;
> +}
> +
> +static int
> +do_test (void)
> +{
> +  if (openat2 (AT_FDCWD, ".", &(struct open_how) {}, sizeof (struct open_how))
> +      == -1 && errno == ENOSYS)
> +    FAIL_UNSUPPORTED ("openat2 is not supported by the kernel");
> +
> +  do_test_struct ();
> +  do_test_flags ();
> +  do_test_resolve ();
> +  do_test_basic ();
> +
> +  return 0;
> +}
> +
> +#include <support/test-driver.c>
> diff --git a/sysdeps/unix/sysv/linux/x86_64/64/libc.abilist b/sysdeps/unix/sysv/linux/x86_64/64/libc.abilist
> index a836a574266..941a4835104 100644
> --- a/sysdeps/unix/sysv/linux/x86_64/64/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/x86_64/64/libc.abilist
> @@ -2767,6 +2767,7 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F
>   GLIBC_2.5 __readlinkat_chk F
>   GLIBC_2.5 inet6_opt_append F
> diff --git a/sysdeps/unix/sysv/linux/x86_64/x32/libc.abilist b/sysdeps/unix/sysv/linux/x86_64/x32/libc.abilist
> index aecce5bbc5e..a5714cf59f5 100644
> --- a/sysdeps/unix/sysv/linux/x86_64/x32/libc.abilist
> +++ b/sysdeps/unix/sysv/linux/x86_64/x32/libc.abilist
> @@ -2786,4 +2786,5 @@ GLIBC_2.43 __memset_explicit_chk F
>   GLIBC_2.43 memalignment F
>   GLIBC_2.43 memset_explicit F
>   GLIBC_2.43 mseal F
> +GLIBC_2.43 openat2 F
>   GLIBC_2.43 umaxabs F


-- 
Cheers,
Carlos.



More information about the Libc-alpha mailing list