mirror of
				git://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git
				synced 2025-09-18 22:14:16 +00:00 
			
		
		
		
	 6724a76cff
			
		
	
	
		6724a76cff
		
			
		
	
	
	
	
		
			
			Use a temporary register to reduce the size of detour code from 16 bytes to 8 bytes. The previous implementation is from 'commitafc76b8b80("riscv: Using PATCHABLE_FUNCTION_ENTRY instead of MCOUNT")'. Before the patch: <func_prolog>: 0: REG_S ra, -SZREG(sp) 4: auipc ra, ? 8: jalr ?(ra) 12: REG_L ra, -SZREG(sp) (func_boddy) After the patch: <func_prolog>: 0: auipc t0, ? 4: jalr t0, ?(t0) (func_boddy) This patch not just reduces the size of detour code, but also fixes an important issue: An Ftrace callback registered with FTRACE_OPS_FL_IPMODIFY flag can actually change the instruction pointer, e.g. to "replace" the given kernel function with a new one, which is needed for livepatching, etc. In this case, the trampoline (ftrace_regs_caller) would not return to <func_prolog+12> but would rather jump to the new function. So, "REG_L ra, -SZREG(sp)" would not run and the original return address would not be restored. The kernel is likely to hang or crash as a result. This can be easily demonstrated if one tries to "replace", say, cmdline_proc_show() with a new function with the same signature using instruction_pointer_set(&fregs->regs, new_func_addr) in the Ftrace callback. Link: https://lore.kernel.org/linux-riscv/20221122075440.1165172-1-suagrfillet@gmail.com/ Link: https://lore.kernel.org/linux-riscv/d7d5730b-ebef-68e5-5046-e763e1ee6164@yadro.com/ Co-developed-by: Song Shuai <suagrfillet@gmail.com> Signed-off-by: Song Shuai <suagrfillet@gmail.com> Signed-off-by: Guo Ren <guoren@linux.alibaba.com> Signed-off-by: Guo Ren <guoren@kernel.org> Cc: Evgenii Shatokhin <e.shatokhin@yadro.com> Reviewed-by: Evgenii Shatokhin <e.shatokhin@yadro.com> Link: https://lore.kernel.org/r/20230112090603.1295340-4-guoren@kernel.org Cc: stable@vger.kernel.org Fixes:10626c32e3("riscv/ftrace: Add basic support") Signed-off-by: Palmer Dabbelt <palmer@rivosinc.com>
		
			
				
	
	
		
			200 lines
		
	
	
	
		
			4.8 KiB
		
	
	
	
		
			C
		
	
	
	
	
	
			
		
		
	
	
			200 lines
		
	
	
	
		
			4.8 KiB
		
	
	
	
		
			C
		
	
	
	
	
	
| // SPDX-License-Identifier: GPL-2.0
 | |
| /*
 | |
|  * Copyright (C) 2013 Linaro Limited
 | |
|  * Author: AKASHI Takahiro <takahiro.akashi@linaro.org>
 | |
|  * Copyright (C) 2017 Andes Technology Corporation
 | |
|  */
 | |
| 
 | |
| #include <linux/ftrace.h>
 | |
| #include <linux/uaccess.h>
 | |
| #include <linux/memory.h>
 | |
| #include <asm/cacheflush.h>
 | |
| #include <asm/patch.h>
 | |
| 
 | |
| #ifdef CONFIG_DYNAMIC_FTRACE
 | |
| void ftrace_arch_code_modify_prepare(void) __acquires(&text_mutex)
 | |
| {
 | |
| 	mutex_lock(&text_mutex);
 | |
| }
 | |
| 
 | |
| void ftrace_arch_code_modify_post_process(void) __releases(&text_mutex)
 | |
| {
 | |
| 	mutex_unlock(&text_mutex);
 | |
| }
 | |
| 
 | |
| static int ftrace_check_current_call(unsigned long hook_pos,
 | |
| 				     unsigned int *expected)
 | |
| {
 | |
| 	unsigned int replaced[2];
 | |
| 	unsigned int nops[2] = {NOP4, NOP4};
 | |
| 
 | |
| 	/* we expect nops at the hook position */
 | |
| 	if (!expected)
 | |
| 		expected = nops;
 | |
| 
 | |
| 	/*
 | |
| 	 * Read the text we want to modify;
 | |
| 	 * return must be -EFAULT on read error
 | |
| 	 */
 | |
| 	if (copy_from_kernel_nofault(replaced, (void *)hook_pos,
 | |
| 			MCOUNT_INSN_SIZE))
 | |
| 		return -EFAULT;
 | |
| 
 | |
| 	/*
 | |
| 	 * Make sure it is what we expect it to be;
 | |
| 	 * return must be -EINVAL on failed comparison
 | |
| 	 */
 | |
| 	if (memcmp(expected, replaced, sizeof(replaced))) {
 | |
| 		pr_err("%p: expected (%08x %08x) but got (%08x %08x)\n",
 | |
| 		       (void *)hook_pos, expected[0], expected[1], replaced[0],
 | |
| 		       replaced[1]);
 | |
| 		return -EINVAL;
 | |
| 	}
 | |
| 
 | |
| 	return 0;
 | |
| }
 | |
| 
 | |
| static int __ftrace_modify_call(unsigned long hook_pos, unsigned long target,
 | |
| 				bool enable, bool ra)
 | |
| {
 | |
| 	unsigned int call[2];
 | |
| 	unsigned int nops[2] = {NOP4, NOP4};
 | |
| 
 | |
| 	if (ra)
 | |
| 		make_call_ra(hook_pos, target, call);
 | |
| 	else
 | |
| 		make_call_t0(hook_pos, target, call);
 | |
| 
 | |
| 	/* Replace the auipc-jalr pair at once. Return -EPERM on write error. */
 | |
| 	if (patch_text_nosync
 | |
| 	    ((void *)hook_pos, enable ? call : nops, MCOUNT_INSN_SIZE))
 | |
| 		return -EPERM;
 | |
| 
 | |
| 	return 0;
 | |
| }
 | |
| 
 | |
| int ftrace_make_call(struct dyn_ftrace *rec, unsigned long addr)
 | |
| {
 | |
| 	unsigned int call[2];
 | |
| 
 | |
| 	make_call_t0(rec->ip, addr, call);
 | |
| 
 | |
| 	if (patch_text_nosync((void *)rec->ip, call, MCOUNT_INSN_SIZE))
 | |
| 		return -EPERM;
 | |
| 
 | |
| 	return 0;
 | |
| }
 | |
| 
 | |
| int ftrace_make_nop(struct module *mod, struct dyn_ftrace *rec,
 | |
| 		    unsigned long addr)
 | |
| {
 | |
| 	unsigned int nops[2] = {NOP4, NOP4};
 | |
| 
 | |
| 	if (patch_text_nosync((void *)rec->ip, nops, MCOUNT_INSN_SIZE))
 | |
| 		return -EPERM;
 | |
| 
 | |
| 	return 0;
 | |
| }
 | |
| 
 | |
| /*
 | |
|  * This is called early on, and isn't wrapped by
 | |
|  * ftrace_arch_code_modify_{prepare,post_process}() and therefor doesn't hold
 | |
|  * text_mutex, which triggers a lockdep failure.  SMP isn't running so we could
 | |
|  * just directly poke the text, but it's simpler to just take the lock
 | |
|  * ourselves.
 | |
|  */
 | |
| int ftrace_init_nop(struct module *mod, struct dyn_ftrace *rec)
 | |
| {
 | |
| 	int out;
 | |
| 
 | |
| 	ftrace_arch_code_modify_prepare();
 | |
| 	out = ftrace_make_nop(mod, rec, MCOUNT_ADDR);
 | |
| 	ftrace_arch_code_modify_post_process();
 | |
| 
 | |
| 	return out;
 | |
| }
 | |
| 
 | |
| int ftrace_update_ftrace_func(ftrace_func_t func)
 | |
| {
 | |
| 	int ret = __ftrace_modify_call((unsigned long)&ftrace_call,
 | |
| 				       (unsigned long)func, true, true);
 | |
| 	if (!ret) {
 | |
| 		ret = __ftrace_modify_call((unsigned long)&ftrace_regs_call,
 | |
| 					   (unsigned long)func, true, true);
 | |
| 	}
 | |
| 
 | |
| 	return ret;
 | |
| }
 | |
| #endif
 | |
| 
 | |
| #ifdef CONFIG_DYNAMIC_FTRACE_WITH_REGS
 | |
| int ftrace_modify_call(struct dyn_ftrace *rec, unsigned long old_addr,
 | |
| 		       unsigned long addr)
 | |
| {
 | |
| 	unsigned int call[2];
 | |
| 	unsigned long caller = rec->ip;
 | |
| 	int ret;
 | |
| 
 | |
| 	make_call_t0(caller, old_addr, call);
 | |
| 	ret = ftrace_check_current_call(caller, call);
 | |
| 
 | |
| 	if (ret)
 | |
| 		return ret;
 | |
| 
 | |
| 	return __ftrace_modify_call(caller, addr, true, false);
 | |
| }
 | |
| #endif
 | |
| 
 | |
| #ifdef CONFIG_FUNCTION_GRAPH_TRACER
 | |
| /*
 | |
|  * Most of this function is copied from arm64.
 | |
|  */
 | |
| void prepare_ftrace_return(unsigned long *parent, unsigned long self_addr,
 | |
| 			   unsigned long frame_pointer)
 | |
| {
 | |
| 	unsigned long return_hooker = (unsigned long)&return_to_handler;
 | |
| 	unsigned long old;
 | |
| 
 | |
| 	if (unlikely(atomic_read(¤t->tracing_graph_pause)))
 | |
| 		return;
 | |
| 
 | |
| 	/*
 | |
| 	 * We don't suffer access faults, so no extra fault-recovery assembly
 | |
| 	 * is needed here.
 | |
| 	 */
 | |
| 	old = *parent;
 | |
| 
 | |
| 	if (!function_graph_enter(old, self_addr, frame_pointer, parent))
 | |
| 		*parent = return_hooker;
 | |
| }
 | |
| 
 | |
| #ifdef CONFIG_DYNAMIC_FTRACE
 | |
| extern void ftrace_graph_call(void);
 | |
| extern void ftrace_graph_regs_call(void);
 | |
| int ftrace_enable_ftrace_graph_caller(void)
 | |
| {
 | |
| 	int ret;
 | |
| 
 | |
| 	ret = __ftrace_modify_call((unsigned long)&ftrace_graph_call,
 | |
| 				    (unsigned long)&prepare_ftrace_return, true, true);
 | |
| 	if (ret)
 | |
| 		return ret;
 | |
| 
 | |
| 	return __ftrace_modify_call((unsigned long)&ftrace_graph_regs_call,
 | |
| 				    (unsigned long)&prepare_ftrace_return, true, true);
 | |
| }
 | |
| 
 | |
| int ftrace_disable_ftrace_graph_caller(void)
 | |
| {
 | |
| 	int ret;
 | |
| 
 | |
| 	ret = __ftrace_modify_call((unsigned long)&ftrace_graph_call,
 | |
| 				    (unsigned long)&prepare_ftrace_return, false, true);
 | |
| 	if (ret)
 | |
| 		return ret;
 | |
| 
 | |
| 	return __ftrace_modify_call((unsigned long)&ftrace_graph_regs_call,
 | |
| 				    (unsigned long)&prepare_ftrace_return, false, true);
 | |
| }
 | |
| #endif /* CONFIG_DYNAMIC_FTRACE */
 | |
| #endif /* CONFIG_FUNCTION_GRAPH_TRACER */
 |