process_64.c 19.0 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5
/*
 *  Copyright (C) 1995  Linus Torvalds
 *
 *  Pentium III FXSR, SSE support
 *	Gareth Hughes <gareth@valinux.com>, May 2000
6
 *
L
Linus Torvalds 已提交
7 8
 *  X86-64 port
 *	Andi Kleen.
A
Ashok Raj 已提交
9 10
 *
 *	CPU hotplug support - ashok.raj@intel.com
L
Linus Torvalds 已提交
11 12 13 14 15 16
 */

/*
 * This file handles the architecture-dependent parts of process handling..
 */

A
Ashok Raj 已提交
17
#include <linux/cpu.h>
L
Linus Torvalds 已提交
18 19
#include <linux/errno.h>
#include <linux/sched.h>
20
#include <linux/sched/task.h>
21
#include <linux/sched/task_stack.h>
22
#include <linux/fs.h>
L
Linus Torvalds 已提交
23 24 25 26 27 28 29 30
#include <linux/kernel.h>
#include <linux/mm.h>
#include <linux/elfcore.h>
#include <linux/smp.h>
#include <linux/slab.h>
#include <linux/user.h>
#include <linux/interrupt.h>
#include <linux/delay.h>
31
#include <linux/export.h>
L
Linus Torvalds 已提交
32
#include <linux/ptrace.h>
A
Andi Kleen 已提交
33
#include <linux/notifier.h>
34
#include <linux/kprobes.h>
35
#include <linux/kdebug.h>
36
#include <linux/prctl.h>
37 38
#include <linux/uaccess.h>
#include <linux/io.h>
39
#include <linux/ftrace.h>
40
#include <linux/syscalls.h>
L
Linus Torvalds 已提交
41 42 43

#include <asm/pgtable.h>
#include <asm/processor.h>
44
#include <asm/fpu/internal.h>
L
Linus Torvalds 已提交
45 46 47 48 49
#include <asm/mmu_context.h>
#include <asm/prctl.h>
#include <asm/desc.h>
#include <asm/proto.h>
#include <asm/ia32.h>
50
#include <asm/syscalls.h>
51
#include <asm/debugreg.h>
52
#include <asm/switch_to.h>
53
#include <asm/xen/hypervisor.h>
54
#include <asm/vdso.h>
55
#include <asm/intel_rdt_sched.h>
56 57 58 59 60
#include <asm/unistd.h>
#ifdef CONFIG_IA32_EMULATION
/* Not included via unistd.h */
#include <asm/unistd_32_ia32.h>
#endif
L
Linus Torvalds 已提交
61

62
__visible DEFINE_PER_CPU(unsigned long, rsp_scratch);
L
Linus Torvalds 已提交
63

64
/* Prints also some state that isn't saved in the pt_regs */
65
void __show_regs(struct pt_regs *regs, int all)
L
Linus Torvalds 已提交
66 67
{
	unsigned long cr0 = 0L, cr2 = 0L, cr3 = 0L, cr4 = 0L, fs, gs, shadowgs;
68
	unsigned long d0, d1, d2, d3, d6, d7;
69 70
	unsigned int fsindex, gsindex;
	unsigned int ds, cs, es;
71

72 73
	show_iret_regs(regs);

74 75 76 77 78
	if (regs->orig_ax != -1)
		pr_cont(" ORIG_RAX: %016lx\n", regs->orig_ax);
	else
		pr_cont("\n");

79
	printk(KERN_DEFAULT "RAX: %016lx RBX: %016lx RCX: %016lx\n",
80
	       regs->ax, regs->bx, regs->cx);
81
	printk(KERN_DEFAULT "RDX: %016lx RSI: %016lx RDI: %016lx\n",
82
	       regs->dx, regs->si, regs->di);
83
	printk(KERN_DEFAULT "RBP: %016lx R08: %016lx R09: %016lx\n",
84
	       regs->bp, regs->r8, regs->r9);
85
	printk(KERN_DEFAULT "R10: %016lx R11: %016lx R12: %016lx\n",
86
	       regs->r10, regs->r11, regs->r12);
87
	printk(KERN_DEFAULT "R13: %016lx R14: %016lx R15: %016lx\n",
88
	       regs->r13, regs->r14, regs->r15);
L
Linus Torvalds 已提交
89

90 91 92
	if (!all)
		return;

93 94 95
	asm("movl %%ds,%0" : "=r" (ds));
	asm("movl %%cs,%0" : "=r" (cs));
	asm("movl %%es,%0" : "=r" (es));
L
Linus Torvalds 已提交
96 97 98 99
	asm("movl %%fs,%0" : "=r" (fsindex));
	asm("movl %%gs,%0" : "=r" (gsindex));

	rdmsrl(MSR_FS_BASE, fs);
100 101
	rdmsrl(MSR_GS_BASE, gs);
	rdmsrl(MSR_KERNEL_GS_BASE, shadowgs);
L
Linus Torvalds 已提交
102

103 104
	cr0 = read_cr0();
	cr2 = read_cr2();
105
	cr3 = __read_cr3();
106
	cr4 = __read_cr4();
L
Linus Torvalds 已提交
107

108
	printk(KERN_DEFAULT "FS:  %016lx(%04x) GS:%016lx(%04x) knlGS:%016lx\n",
109
	       fs, fsindex, gs, gsindex, shadowgs);
110
	printk(KERN_DEFAULT "CS:  %04x DS: %04x ES: %04x CR0: %016lx\n", cs, ds,
111
			es, cr0);
112
	printk(KERN_DEFAULT "CR2: %016lx CR3: %016lx CR4: %016lx\n", cr2, cr3,
113
			cr4);
114 115 116 117 118 119 120

	get_debugreg(d0, 0);
	get_debugreg(d1, 1);
	get_debugreg(d2, 2);
	get_debugreg(d3, 3);
	get_debugreg(d6, 6);
	get_debugreg(d7, 7);
121 122

	/* Only print out debug registers if they are in their non-default state. */
123 124 125 126 127 128 129
	if (!((d0 == 0) && (d1 == 0) && (d2 == 0) && (d3 == 0) &&
	    (d6 == DR6_RESERVED) && (d7 == 0x400))) {
		printk(KERN_DEFAULT "DR0: %016lx DR1: %016lx DR2: %016lx\n",
		       d0, d1, d2);
		printk(KERN_DEFAULT "DR3: %016lx DR6: %016lx DR7: %016lx\n",
		       d3, d6, d7);
	}
130

131 132
	if (boot_cpu_has(X86_FEATURE_OSPKE))
		printk(KERN_DEFAULT "PKRU: %08x\n", read_pkru());
L
Linus Torvalds 已提交
133 134 135 136 137
}

void release_thread(struct task_struct *dead_task)
{
	if (dead_task->mm) {
138
#ifdef CONFIG_MODIFY_LDT_SYSCALL
139
		if (dead_task->mm->context.ldt) {
140
			pr_warn("WARNING: dead process %s still has LDT? <%p/%d>\n",
141
				dead_task->comm,
142
				dead_task->mm->context.ldt->entries,
143
				dead_task->mm->context.ldt->nr_entries);
L
Linus Torvalds 已提交
144 145
			BUG();
		}
146
#endif
L
Linus Torvalds 已提交
147 148 149
	}
}

150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207
enum which_selector {
	FS,
	GS
};

/*
 * Saves the FS or GS base for an outgoing thread if FSGSBASE extensions are
 * not available.  The goal is to be reasonably fast on non-FSGSBASE systems.
 * It's forcibly inlined because it'll generate better code and this function
 * is hot.
 */
static __always_inline void save_base_legacy(struct task_struct *prev_p,
					     unsigned short selector,
					     enum which_selector which)
{
	if (likely(selector == 0)) {
		/*
		 * On Intel (without X86_BUG_NULL_SEG), the segment base could
		 * be the pre-existing saved base or it could be zero.  On AMD
		 * (with X86_BUG_NULL_SEG), the segment base could be almost
		 * anything.
		 *
		 * This branch is very hot (it's hit twice on almost every
		 * context switch between 64-bit programs), and avoiding
		 * the RDMSR helps a lot, so we just assume that whatever
		 * value is already saved is correct.  This matches historical
		 * Linux behavior, so it won't break existing applications.
		 *
		 * To avoid leaking state, on non-X86_BUG_NULL_SEG CPUs, if we
		 * report that the base is zero, it needs to actually be zero:
		 * see the corresponding logic in load_seg_legacy.
		 */
	} else {
		/*
		 * If the selector is 1, 2, or 3, then the base is zero on
		 * !X86_BUG_NULL_SEG CPUs and could be anything on
		 * X86_BUG_NULL_SEG CPUs.  In the latter case, Linux
		 * has never attempted to preserve the base across context
		 * switches.
		 *
		 * If selector > 3, then it refers to a real segment, and
		 * saving the base isn't necessary.
		 */
		if (which == FS)
			prev_p->thread.fsbase = 0;
		else
			prev_p->thread.gsbase = 0;
	}
}

static __always_inline void save_fsgs(struct task_struct *task)
{
	savesegment(fs, task->thread.fsindex);
	savesegment(gs, task->thread.gsindex);
	save_base_legacy(task, task->thread.fsindex, FS);
	save_base_legacy(task, task->thread.gsindex, GS);
}

208 209 210 211 212 213 214 215 216 217 218 219 220 221
#if IS_ENABLED(CONFIG_KVM)
/*
 * While a process is running,current->thread.fsbase and current->thread.gsbase
 * may not match the corresponding CPU registers (see save_base_legacy()). KVM
 * wants an efficient way to save and restore FSBASE and GSBASE.
 * When FSGSBASE extensions are enabled, this will have to use RD{FS,GS}BASE.
 */
void save_fsgs_for_kvm(void)
{
	save_fsgs(current);
}
EXPORT_SYMBOL_GPL(save_fsgs_for_kvm);
#endif

222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280
static __always_inline void loadseg(enum which_selector which,
				    unsigned short sel)
{
	if (which == FS)
		loadsegment(fs, sel);
	else
		load_gs_index(sel);
}

static __always_inline void load_seg_legacy(unsigned short prev_index,
					    unsigned long prev_base,
					    unsigned short next_index,
					    unsigned long next_base,
					    enum which_selector which)
{
	if (likely(next_index <= 3)) {
		/*
		 * The next task is using 64-bit TLS, is not using this
		 * segment at all, or is having fun with arcane CPU features.
		 */
		if (next_base == 0) {
			/*
			 * Nasty case: on AMD CPUs, we need to forcibly zero
			 * the base.
			 */
			if (static_cpu_has_bug(X86_BUG_NULL_SEG)) {
				loadseg(which, __USER_DS);
				loadseg(which, next_index);
			} else {
				/*
				 * We could try to exhaustively detect cases
				 * under which we can skip the segment load,
				 * but there's really only one case that matters
				 * for performance: if both the previous and
				 * next states are fully zeroed, we can skip
				 * the load.
				 *
				 * (This assumes that prev_base == 0 has no
				 * false positives.  This is the case on
				 * Intel-style CPUs.)
				 */
				if (likely(prev_index | next_index | prev_base))
					loadseg(which, next_index);
			}
		} else {
			if (prev_index != next_index)
				loadseg(which, next_index);
			wrmsrl(which == FS ? MSR_FS_BASE : MSR_KERNEL_GS_BASE,
			       next_base);
		}
	} else {
		/*
		 * The next task is using a real segment.  Loading the selector
		 * is sufficient.
		 */
		loadseg(which, next_index);
	}
}

281 282
int copy_thread_tls(unsigned long clone_flags, unsigned long sp,
		unsigned long arg, struct task_struct *p, unsigned long tls)
L
Linus Torvalds 已提交
283 284
{
	int err;
285
	struct pt_regs *childregs;
286 287
	struct fork_frame *fork_frame;
	struct inactive_task_frame *frame;
L
Linus Torvalds 已提交
288 289
	struct task_struct *me = current;

A
Al Viro 已提交
290
	childregs = task_pt_regs(p);
291 292 293 294 295
	fork_frame = container_of(childregs, struct fork_frame, regs);
	frame = &fork_frame->frame;
	frame->bp = 0;
	frame->ret_addr = (unsigned long) ret_from_fork;
	p->thread.sp = (unsigned long) fork_frame;
296
	p->thread.io_bitmap_ptr = NULL;
L
Linus Torvalds 已提交
297

298
	savesegment(gs, p->thread.gsindex);
299
	p->thread.gsbase = p->thread.gsindex ? 0 : me->thread.gsbase;
300
	savesegment(fs, p->thread.fsindex);
301
	p->thread.fsbase = p->thread.fsindex ? 0 : me->thread.fsbase;
302 303
	savesegment(es, p->thread.es);
	savesegment(ds, p->thread.ds);
A
Al Viro 已提交
304 305
	memset(p->thread.ptrace_bps, 0, sizeof(p->thread.ptrace_bps));

306
	if (unlikely(p->flags & PF_KTHREAD)) {
A
Al Viro 已提交
307 308
		/* kernel thread */
		memset(childregs, 0, sizeof(struct pt_regs));
309 310
		frame->bx = sp;		/* function */
		frame->r12 = arg;
A
Al Viro 已提交
311 312
		return 0;
	}
313
	frame->bx = 0;
314
	*childregs = *current_pt_regs();
A
Al Viro 已提交
315 316

	childregs->ax = 0;
317 318
	if (sp)
		childregs->sp = sp;
L
Linus Torvalds 已提交
319

320
	err = -ENOMEM;
321
	if (unlikely(test_tsk_thread_flag(me, TIF_IO_BITMAP))) {
322 323
		p->thread.io_bitmap_ptr = kmemdup(me->thread.io_bitmap_ptr,
						  IO_BITMAP_BYTES, GFP_KERNEL);
L
Linus Torvalds 已提交
324 325 326 327
		if (!p->thread.io_bitmap_ptr) {
			p->thread.io_bitmap_max = 0;
			return -ENOMEM;
		}
328
		set_tsk_thread_flag(p, TIF_IO_BITMAP);
329
	}
L
Linus Torvalds 已提交
330 331 332 333 334 335

	/*
	 * Set a new TLS for the child thread?
	 */
	if (clone_flags & CLONE_SETTLS) {
#ifdef CONFIG_IA32_EMULATION
336
		if (in_ia32_syscall())
R
Roland McGrath 已提交
337
			err = do_set_thread_area(p, -1,
338
				(struct user_desc __user *)tls, 0);
339 340
		else
#endif
341
			err = do_arch_prctl_64(p, ARCH_SET_FS, tls);
342
		if (err)
L
Linus Torvalds 已提交
343 344 345 346 347 348 349 350
			goto out;
	}
	err = 0;
out:
	if (err && p->thread.io_bitmap_ptr) {
		kfree(p->thread.io_bitmap_ptr);
		p->thread.io_bitmap_max = 0;
	}
351

L
Linus Torvalds 已提交
352 353 354
	return err;
}

355 356 357 358
static void
start_thread_common(struct pt_regs *regs, unsigned long new_ip,
		    unsigned long new_sp,
		    unsigned int _cs, unsigned int _ss, unsigned int _ds)
I
Ingo Molnar 已提交
359
{
360 361 362 363 364 365 366 367
	WARN_ON_ONCE(regs != current_pt_regs());

	if (static_cpu_has(X86_BUG_NULL_SEG)) {
		/* Loading zero below won't clear the base. */
		loadsegment(fs, __USER_DS);
		load_gs_index(__USER_DS);
	}

368
	loadsegment(fs, 0);
369 370
	loadsegment(es, _ds);
	loadsegment(ds, _ds);
I
Ingo Molnar 已提交
371
	load_gs_index(0);
372

I
Ingo Molnar 已提交
373 374
	regs->ip		= new_ip;
	regs->sp		= new_sp;
375 376
	regs->cs		= _cs;
	regs->ss		= _ss;
377
	regs->flags		= X86_EFLAGS_IF;
378
	force_iret();
I
Ingo Molnar 已提交
379
}
380 381 382 383 384 385 386

void
start_thread(struct pt_regs *regs, unsigned long new_ip, unsigned long new_sp)
{
	start_thread_common(regs, new_ip, new_sp,
			    __USER_CS, __USER_DS, 0);
}
387
EXPORT_SYMBOL_GPL(start_thread);
I
Ingo Molnar 已提交
388

389 390
#ifdef CONFIG_COMPAT
void compat_start_thread(struct pt_regs *regs, u32 new_ip, u32 new_sp)
391
{
392
	start_thread_common(regs, new_ip, new_sp,
H
H. Peter Anvin 已提交
393 394 395
			    test_thread_flag(TIF_X32)
			    ? __USER_CS : __USER32_CS,
			    __USER_DS, __USER_DS);
396 397
}
#endif
I
Ingo Molnar 已提交
398

L
Linus Torvalds 已提交
399 400 401
/*
 *	switch_to(x,y) should switch tasks from x to y.
 *
402
 * This could still be optimized:
L
Linus Torvalds 已提交
403 404
 * - fold all the options into a flag word and test it with a single test.
 * - could test fs/gs bitsliced
405 406
 *
 * Kprobes not supported here. Set the probe on schedule instead.
407
 * Function graph tracer not supported too.
L
Linus Torvalds 已提交
408
 */
409
__visible __notrace_funcgraph struct task_struct *
410
__switch_to(struct task_struct *prev_p, struct task_struct *next_p)
L
Linus Torvalds 已提交
411
{
412 413
	struct thread_struct *prev = &prev_p->thread;
	struct thread_struct *next = &next_p->thread;
414 415
	struct fpu *prev_fpu = &prev->fpu;
	struct fpu *next_fpu = &next->fpu;
416
	int cpu = smp_processor_id();
417
	struct tss_struct *tss = &per_cpu(cpu_tss_rw, cpu);
418

419 420 421
	WARN_ON_ONCE(IS_ENABLED(CONFIG_DEBUG_ENTRY) &&
		     this_cpu_read(irq_count) != -1);

422
	switch_fpu_prepare(prev_fpu, cpu);
423

424 425 426 427 428
	/* We must save %fs and %gs before load_TLS() because
	 * %fs and %gs may be cleared by load_TLS().
	 *
	 * (e.g. xen_load_tls())
	 */
429
	save_fsgs(prev_p);
430

431 432 433 434
	/*
	 * Load TLS before restoring any segments so that segment loads
	 * reference the correct GDT entries.
	 */
L
Linus Torvalds 已提交
435 436
	load_TLS(next, cpu);

437
	/*
438 439 440
	 * Leave lazy mode, flushing any hypercalls made here.  This
	 * must be done after loading TLS entries in the GDT but before
	 * loading segments that might reference them, and and it must
441
	 * be done before fpu__restore(), so the TS bit is up to
442
	 * date.
443
	 */
444
	arch_end_context_switch(next_p);
445

446 447 448 449 450 451 452 453 454 455 456 457 458 459 460 461 462 463 464 465 466 467
	/* Switch DS and ES.
	 *
	 * Reading them only returns the selectors, but writing them (if
	 * nonzero) loads the full descriptor from the GDT or LDT.  The
	 * LDT for next is loaded in switch_mm, and the GDT is loaded
	 * above.
	 *
	 * We therefore need to write new values to the segment
	 * registers on every context switch unless both the new and old
	 * values are zero.
	 *
	 * Note that we don't need to do anything for CS and SS, as
	 * those are saved and restored as part of pt_regs.
	 */
	savesegment(es, prev->es);
	if (unlikely(next->es | prev->es))
		loadsegment(es, next->es);

	savesegment(ds, prev->ds);
	if (unlikely(next->ds | prev->ds))
		loadsegment(ds, next->ds);

468 469 470 471
	load_seg_legacy(prev->fsindex, prev->fsbase,
			next->fsindex, next->fsbase, FS);
	load_seg_legacy(prev->gsindex, prev->gsbase,
			next->gsindex, next->gsbase, GS);
L
Linus Torvalds 已提交
472

473
	switch_fpu_finish(next_fpu, cpu);
474

475
	/*
476
	 * Switch the PDA and FPU contexts.
L
Linus Torvalds 已提交
477
	 */
478
	this_cpu_write(current_task, next_p);
479
	this_cpu_write(cpu_current_top_of_stack, task_top_of_stack(next_p));
480

481
	/* Reload sp0. */
482
	update_task_stack(next_p);
483

L
Linus Torvalds 已提交
484
	/*
485
	 * Now maybe reload the debug registers and handle I/O bitmaps
L
Linus Torvalds 已提交
486
	 */
487 488
	if (unlikely(task_thread_info(next_p)->flags & _TIF_WORK_CTXSW_NEXT ||
		     task_thread_info(prev_p)->flags & _TIF_WORK_CTXSW_PREV))
489
		__switch_to_xtra(prev_p, next_p, tss);
L
Linus Torvalds 已提交
490

491
#ifdef CONFIG_XEN_PV
492 493 494 495 496 497 498 499 500 501
	/*
	 * On Xen PV, IOPL bits in pt_regs->flags have no effect, and
	 * current_pt_regs()->flags may not match the current task's
	 * intended IOPL.  We need to switch it manually.
	 */
	if (unlikely(static_cpu_has(X86_FEATURE_XENPV) &&
		     prev->iopl != next->iopl))
		xen_set_iopl_mask(next->iopl);
#endif

502 503 504 505 506 507 508 509 510 511 512 513 514 515 516 517 518 519 520 521 522 523 524 525 526 527 528 529
	if (static_cpu_has_bug(X86_BUG_SYSRET_SS_ATTRS)) {
		/*
		 * AMD CPUs have a misfeature: SYSRET sets the SS selector but
		 * does not update the cached descriptor.  As a result, if we
		 * do SYSRET while SS is NULL, we'll end up in user mode with
		 * SS apparently equal to __USER_DS but actually unusable.
		 *
		 * The straightforward workaround would be to fix it up just
		 * before SYSRET, but that would slow down the system call
		 * fast paths.  Instead, we ensure that SS is never NULL in
		 * system call context.  We do this by replacing NULL SS
		 * selectors at every context switch.  SYSCALL sets up a valid
		 * SS, so the only way to get NULL is to re-enter the kernel
		 * from CPL 3 through an interrupt.  Since that can't happen
		 * in the same task as a running syscall, we are guaranteed to
		 * context switch between every interrupt vector entry and a
		 * subsequent SYSRET.
		 *
		 * We read SS first because SS reads are much faster than
		 * writes.  Out of caution, we force SS to __KERNEL_DS even if
		 * it previously had a different non-NULL value.
		 */
		unsigned short ss_sel;
		savesegment(ss, ss_sel);
		if (ss_sel != __KERNEL_DS)
			loadsegment(ss, __KERNEL_DS);
	}

F
Fenghua Yu 已提交
530 531 532
	/* Load the Intel cache allocation PQR MSR. */
	intel_rdt_sched_in();

L
Linus Torvalds 已提交
533 534 535 536 537 538 539 540
	return prev_p;
}

void set_personality_64bit(void)
{
	/* inherit personality from parent */

	/* Make sure to be in 64bit mode */
541
	clear_thread_flag(TIF_IA32);
542
	clear_thread_flag(TIF_ADDR32);
543
	clear_thread_flag(TIF_X32);
544 545
	/* Pretend that this comes from a 64bit execve */
	task_pt_regs(current)->orig_ax = __NR_execve;
546
	current_thread_info()->status &= ~TS_COMPAT;
L
Linus Torvalds 已提交
547

548 549 550 551
	/* Ensure the corresponding mm is not marked. */
	if (current->mm)
		current->mm->context.ia32_compat = 0;

L
Linus Torvalds 已提交
552 553 554
	/* TBD: overwrites user setup. Should have two bits.
	   But 64bit processes have always behaved this way,
	   so it's not too bad. The main problem is just that
555
	   32bit childs are affected again. */
L
Linus Torvalds 已提交
556 557 558
	current->personality &= ~READ_IMPLIES_EXEC;
}

559
static void __set_personality_x32(void)
560
{
561 562 563 564 565 566 567 568 569 570 571 572 573 574 575
#ifdef CONFIG_X86_X32
	clear_thread_flag(TIF_IA32);
	set_thread_flag(TIF_X32);
	if (current->mm)
		current->mm->context.ia32_compat = TIF_X32;
	current->personality &= ~READ_IMPLIES_EXEC;
	/*
	 * in_compat_syscall() uses the presence of the x32 syscall bit
	 * flag to determine compat status.  The x86 mmap() code relies on
	 * the syscall bitness so set x32 syscall bit right here to make
	 * in_compat_syscall() work during exec().
	 *
	 * Pretend to come from a x32 execve.
	 */
	task_pt_regs(current)->orig_ax = __NR_x32_execve | __X32_SYSCALL_BIT;
576
	current_thread_info()->status &= ~TS_COMPAT;
577 578
#endif
}
579

580 581 582 583 584 585 586 587 588 589
static void __set_personality_ia32(void)
{
#ifdef CONFIG_IA32_EMULATION
	set_thread_flag(TIF_IA32);
	clear_thread_flag(TIF_X32);
	if (current->mm)
		current->mm->context.ia32_compat = TIF_IA32;
	current->personality |= force_personality32;
	/* Prepare the first "return" to user space */
	task_pt_regs(current)->orig_ax = __NR_ia32_execve;
590
	current_thread_info()->status |= TS_COMPAT;
591 592 593 594 595
#endif
}

void set_personality_ia32(bool x32)
{
596
	/* Make sure to be in 32bit mode */
597
	set_thread_flag(TIF_ADDR32);
598

599 600 601 602
	if (x32)
		__set_personality_x32();
	else
		__set_personality_ia32();
603
}
604
EXPORT_SYMBOL_GPL(set_personality_ia32);
605

606
#ifdef CONFIG_CHECKPOINT_RESTORE
607 608 609 610 611 612 613 614 615 616
static long prctl_map_vdso(const struct vdso_image *image, unsigned long addr)
{
	int ret;

	ret = map_vdso_once(image, addr);
	if (ret)
		return ret;

	return (long)image->size;
}
617
#endif
618

619
long do_arch_prctl_64(struct task_struct *task, int option, unsigned long arg2)
620 621
{
	int ret = 0;
L
Linus Torvalds 已提交
622 623 624
	int doit = task == current;
	int cpu;

625
	switch (option) {
L
Linus Torvalds 已提交
626
	case ARCH_SET_GS:
627
		if (arg2 >= TASK_SIZE_MAX)
628
			return -EPERM;
L
Linus Torvalds 已提交
629
		cpu = get_cpu();
630
		task->thread.gsindex = 0;
631
		task->thread.gsbase = arg2;
632 633
		if (doit) {
			load_gs_index(0);
634
			ret = wrmsrl_safe(MSR_KERNEL_GS_BASE, arg2);
L
Linus Torvalds 已提交
635
		}
636
		put_cpu();
L
Linus Torvalds 已提交
637 638 639 640
		break;
	case ARCH_SET_FS:
		/* Not strictly needed for fs, but do it for symmetry
		   with gs */
641
		if (arg2 >= TASK_SIZE_MAX)
642
			return -EPERM;
L
Linus Torvalds 已提交
643
		cpu = get_cpu();
644
		task->thread.fsindex = 0;
645
		task->thread.fsbase = arg2;
646 647 648
		if (doit) {
			/* set the selector to 0 to not confuse __switch_to */
			loadsegment(fs, 0);
649
			ret = wrmsrl_safe(MSR_FS_BASE, arg2);
L
Linus Torvalds 已提交
650 651 652
		}
		put_cpu();
		break;
653 654
	case ARCH_GET_FS: {
		unsigned long base;
655

656
		if (doit)
L
Linus Torvalds 已提交
657
			rdmsrl(MSR_FS_BASE, base);
658
		else
659
			base = task->thread.fsbase;
660
		ret = put_user(base, (unsigned long __user *)arg2);
661
		break;
L
Linus Torvalds 已提交
662
	}
663
	case ARCH_GET_GS: {
L
Linus Torvalds 已提交
664
		unsigned long base;
665

666 667 668
		if (doit)
			rdmsrl(MSR_KERNEL_GS_BASE, base);
		else
669
			base = task->thread.gsbase;
670
		ret = put_user(base, (unsigned long __user *)arg2);
L
Linus Torvalds 已提交
671 672 673
		break;
	}

674
#ifdef CONFIG_CHECKPOINT_RESTORE
675
# ifdef CONFIG_X86_X32_ABI
676
	case ARCH_MAP_VDSO_X32:
677
		return prctl_map_vdso(&vdso_image_x32, arg2);
678 679
# endif
# if defined CONFIG_X86_32 || defined CONFIG_IA32_EMULATION
680
	case ARCH_MAP_VDSO_32:
681
		return prctl_map_vdso(&vdso_image_32, arg2);
682
# endif
683
	case ARCH_MAP_VDSO_64:
684
		return prctl_map_vdso(&vdso_image_64, arg2);
685 686
#endif

L
Linus Torvalds 已提交
687 688 689
	default:
		ret = -EINVAL;
		break;
690
	}
L
Linus Torvalds 已提交
691

692 693
	return ret;
}
L
Linus Torvalds 已提交
694

695
SYSCALL_DEFINE2(arch_prctl, int, option, unsigned long, arg2)
L
Linus Torvalds 已提交
696
{
697 698 699 700 701 702 703
	long ret;

	ret = do_arch_prctl_64(current, option, arg2);
	if (ret == -EINVAL)
		ret = do_arch_prctl_common(current, option, arg2);

	return ret;
L
Linus Torvalds 已提交
704 705
}

706 707 708 709 710 711 712
#ifdef CONFIG_IA32_EMULATION
COMPAT_SYSCALL_DEFINE2(arch_prctl, int, option, unsigned long, arg2)
{
	return do_arch_prctl_common(current, option, arg2);
}
#endif

713 714
unsigned long KSTK_ESP(struct task_struct *task)
{
715
	return task_pt_regs(task)->sp;
716
}