intel.c 24.0 KB
Newer Older
L
Linus Torvalds 已提交
1
/*
2
 * Intel CPU Microcode Update Driver for Linux
L
Linus Torvalds 已提交
3
 *
4 5
 * Copyright (C) 2000-2006 Tigran Aivazian <tigran@aivazian.fsnet.co.uk>
 *		 2006 Shaohua Li <shaohua.li@intel.com>
L
Linus Torvalds 已提交
6
 *
7 8 9 10 11
 * Intel CPU microcode early update for Linux
 *
 * Copyright (C) 2012 Fenghua Yu <fenghua.yu@intel.com>
 *		      H Peter Anvin" <hpa@zytor.com>
 *
12 13 14 15
 * This program is free software; you can redistribute it and/or
 * modify it under the terms of the GNU General Public License
 * as published by the Free Software Foundation; either version
 * 2 of the License, or (at your option) any later version.
L
Linus Torvalds 已提交
16
 */
17

18 19 20 21 22 23
/*
 * This needs to be before all headers so that pr_debug in printk.h doesn't turn
 * printk calls into no_printk().
 *
 *#define DEBUG
 */
24
#define pr_fmt(fmt) "microcode: " fmt
25

26
#include <linux/earlycpio.h>
I
Ingo Molnar 已提交
27 28
#include <linux/firmware.h>
#include <linux/uaccess.h>
29 30
#include <linux/vmalloc.h>
#include <linux/initrd.h>
I
Ingo Molnar 已提交
31
#include <linux/kernel.h>
32 33 34
#include <linux/slab.h>
#include <linux/cpu.h>
#include <linux/mm.h>
L
Linus Torvalds 已提交
35

36
#include <asm/microcode_intel.h>
I
Ingo Molnar 已提交
37
#include <asm/processor.h>
38 39
#include <asm/tlbflush.h>
#include <asm/setup.h>
I
Ingo Molnar 已提交
40
#include <asm/msr.h>
L
Linus Torvalds 已提交
41

42 43
static unsigned long mc_saved_in_initrd[MAX_UCODE_COUNT];
static struct mc_saved_data {
44
	unsigned int num_saved;
45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91
	struct microcode_intel **mc_saved;
} mc_saved_data;

static enum ucode_state
load_microcode_early(struct microcode_intel **saved,
		     unsigned int num_saved, struct ucode_cpu_info *uci)
{
	struct microcode_intel *ucode_ptr, *new_mc = NULL;
	struct microcode_header_intel *mc_hdr;
	int new_rev, ret, i;

	new_rev = uci->cpu_sig.rev;

	for (i = 0; i < num_saved; i++) {
		ucode_ptr = saved[i];
		mc_hdr	  = (struct microcode_header_intel *)ucode_ptr;

		ret = has_newer_microcode(ucode_ptr,
					  uci->cpu_sig.sig,
					  uci->cpu_sig.pf,
					  new_rev);
		if (!ret)
			continue;

		new_rev = mc_hdr->rev;
		new_mc  = ucode_ptr;
	}

	if (!new_mc)
		return UCODE_NFOUND;

	uci->mc = (struct microcode_intel *)new_mc;
	return UCODE_OK;
}

static inline void
copy_initrd_ptrs(struct microcode_intel **mc_saved, unsigned long *initrd,
		  unsigned long off, int num_saved)
{
	int i;

	for (i = 0; i < num_saved; i++)
		mc_saved[i] = (struct microcode_intel *)(initrd[i] + off);
}

#ifdef CONFIG_X86_32
static void
92
microcode_phys(struct microcode_intel **mc_saved_tmp, struct mc_saved_data *mcs)
93 94 95 96
{
	int i;
	struct microcode_intel ***mc_saved;

97 98
	mc_saved = (struct microcode_intel ***)__pa_nodebug(&mcs->mc_saved);

99
	for (i = 0; i < mcs->num_saved; i++) {
100 101
		struct microcode_intel *p;

102
		p = *(struct microcode_intel **)__pa_nodebug(mcs->mc_saved + i);
103 104 105 106 107 108
		mc_saved_tmp[i] = (struct microcode_intel *)__pa_nodebug(p);
	}
}
#endif

static enum ucode_state
109
load_microcode(struct mc_saved_data *mcs, unsigned long *initrd,
110 111 112
	       unsigned long initrd_start, struct ucode_cpu_info *uci)
{
	struct microcode_intel *mc_saved_tmp[MAX_UCODE_COUNT];
113
	unsigned int count = mcs->num_saved;
114

115
	if (!mcs->mc_saved) {
116 117 118 119 120
		copy_initrd_ptrs(mc_saved_tmp, initrd, initrd_start, count);

		return load_microcode_early(mc_saved_tmp, count, uci);
	} else {
#ifdef CONFIG_X86_32
121
		microcode_phys(mc_saved_tmp, mcs);
122 123
		return load_microcode_early(mc_saved_tmp, count, uci);
#else
124
		return load_microcode_early(mcs->mc_saved, count, uci);
125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144
#endif
	}
}

/*
 * Given CPU signature and a microcode patch, this function finds if the
 * microcode patch has matching family and model with the CPU.
 */
static enum ucode_state
matching_model_microcode(struct microcode_header_intel *mc_header,
			unsigned long sig)
{
	unsigned int fam, model;
	unsigned int fam_ucode, model_ucode;
	struct extended_sigtable *ext_header;
	unsigned long total_size = get_totalsize(mc_header);
	unsigned long data_size = get_datasize(mc_header);
	int ext_sigcount, i;
	struct extended_signature *ext_sig;

145
	fam   = x86_family(sig);
146 147
	model = x86_model(sig);

148
	fam_ucode   = x86_family(mc_header->sig);
149 150 151 152 153 154 155 156 157 158 159 160 161 162
	model_ucode = x86_model(mc_header->sig);

	if (fam == fam_ucode && model == model_ucode)
		return UCODE_OK;

	/* Look for ext. headers: */
	if (total_size <= data_size + MC_HEADER_SIZE)
		return UCODE_NFOUND;

	ext_header   = (void *) mc_header + data_size + MC_HEADER_SIZE;
	ext_sig      = (void *)ext_header + EXT_HEADER_SIZE;
	ext_sigcount = ext_header->count;

	for (i = 0; i < ext_sigcount; i++) {
163
		fam_ucode   = x86_family(ext_sig->sig);
164 165 166 167 168 169 170 171 172 173 174
		model_ucode = x86_model(ext_sig->sig);

		if (fam == fam_ucode && model == model_ucode)
			return UCODE_OK;

		ext_sig++;
	}
	return UCODE_NFOUND;
}

static int
175
save_microcode(struct mc_saved_data *mcs,
176
	       struct microcode_intel **mc_saved_src,
177
	       unsigned int num_saved)
178 179 180 181 182
{
	int i, j;
	struct microcode_intel **saved_ptr;
	int ret;

183
	if (!num_saved)
184 185 186 187 188
		return -EINVAL;

	/*
	 * Copy new microcode data.
	 */
189
	saved_ptr = kcalloc(num_saved, sizeof(struct microcode_intel *), GFP_KERNEL);
190 191 192
	if (!saved_ptr)
		return -ENOMEM;

193
	for (i = 0; i < num_saved; i++) {
194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218
		struct microcode_header_intel *mc_hdr;
		struct microcode_intel *mc;
		unsigned long size;

		if (!mc_saved_src[i]) {
			ret = -EINVAL;
			goto err;
		}

		mc     = mc_saved_src[i];
		mc_hdr = &mc->hdr;
		size   = get_totalsize(mc_hdr);

		saved_ptr[i] = kmalloc(size, GFP_KERNEL);
		if (!saved_ptr[i]) {
			ret = -ENOMEM;
			goto err;
		}

		memcpy(saved_ptr[i], mc, size);
	}

	/*
	 * Point to newly saved microcode.
	 */
219 220
	mcs->mc_saved  = saved_ptr;
	mcs->num_saved = num_saved;
221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285

	return 0;

err:
	for (j = 0; j <= i; j++)
		kfree(saved_ptr[j]);
	kfree(saved_ptr);

	return ret;
}

/*
 * A microcode patch in ucode_ptr is saved into mc_saved
 * - if it has matching signature and newer revision compared to an existing
 *   patch mc_saved.
 * - or if it is a newly discovered microcode patch.
 *
 * The microcode patch should have matching model with CPU.
 *
 * Returns: The updated number @num_saved of saved microcode patches.
 */
static unsigned int _save_mc(struct microcode_intel **mc_saved,
			     u8 *ucode_ptr, unsigned int num_saved)
{
	struct microcode_header_intel *mc_hdr, *mc_saved_hdr;
	unsigned int sig, pf;
	int found = 0, i;

	mc_hdr = (struct microcode_header_intel *)ucode_ptr;

	for (i = 0; i < num_saved; i++) {
		mc_saved_hdr = (struct microcode_header_intel *)mc_saved[i];
		sig	     = mc_saved_hdr->sig;
		pf	     = mc_saved_hdr->pf;

		if (!find_matching_signature(ucode_ptr, sig, pf))
			continue;

		found = 1;

		if (mc_hdr->rev <= mc_saved_hdr->rev)
			continue;

		/*
		 * Found an older ucode saved earlier. Replace it with
		 * this newer one.
		 */
		mc_saved[i] = (struct microcode_intel *)ucode_ptr;
		break;
	}

	/* Newly detected microcode, save it to memory. */
	if (i >= num_saved && !found)
		mc_saved[num_saved++] = (struct microcode_intel *)ucode_ptr;

	return num_saved;
}

/*
 * Get microcode matching with BSP's model. Only CPUs with the same model as
 * BSP can stay in the platform.
 */
static enum ucode_state __init
get_matching_model_microcode(int cpu, unsigned long start,
			     void *data, size_t size,
286
			     struct mc_saved_data *mcs,
287 288 289 290 291 292 293 294 295
			     unsigned long *mc_saved_in_initrd,
			     struct ucode_cpu_info *uci)
{
	u8 *ucode_ptr = data;
	unsigned int leftover = size;
	enum ucode_state state = UCODE_OK;
	unsigned int mc_size;
	struct microcode_header_intel *mc_header;
	struct microcode_intel *mc_saved_tmp[MAX_UCODE_COUNT];
296
	unsigned int num_saved = mcs->num_saved;
297 298
	int i;

299
	while (leftover && num_saved < ARRAY_SIZE(mc_saved_tmp)) {
300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323

		if (leftover < sizeof(mc_header))
			break;

		mc_header = (struct microcode_header_intel *)ucode_ptr;

		mc_size = get_totalsize(mc_header);
		if (!mc_size || mc_size > leftover ||
			microcode_sanity_check(ucode_ptr, 0) < 0)
			break;

		leftover -= mc_size;

		/*
		 * Since APs with same family and model as the BSP may boot in
		 * the platform, we need to find and save microcode patches
		 * with the same family and model as the BSP.
		 */
		if (matching_model_microcode(mc_header, uci->cpu_sig.sig) !=
			 UCODE_OK) {
			ucode_ptr += mc_size;
			continue;
		}

324
		num_saved = _save_mc(mc_saved_tmp, ucode_ptr, num_saved);
325 326 327 328 329 330 331 332 333

		ucode_ptr += mc_size;
	}

	if (leftover) {
		state = UCODE_ERROR;
		goto out;
	}

334
	if (!num_saved) {
335 336 337 338
		state = UCODE_NFOUND;
		goto out;
	}

339
	for (i = 0; i < num_saved; i++)
340 341
		mc_saved_in_initrd[i] = (unsigned long)mc_saved_tmp[i] - start;

342
	mcs->num_saved = num_saved;
343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364
out:
	return state;
}

static int collect_cpu_info_early(struct ucode_cpu_info *uci)
{
	unsigned int val[2];
	unsigned int family, model;
	struct cpu_signature csig;
	unsigned int eax, ebx, ecx, edx;

	csig.sig = 0;
	csig.pf = 0;
	csig.rev = 0;

	memset(uci, 0, sizeof(*uci));

	eax = 0x00000001;
	ecx = 0;
	native_cpuid(&eax, &ebx, &ecx, &edx);
	csig.sig = eax;

365
	family = x86_family(csig.sig);
366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381 382 383 384 385 386 387 388 389 390
	model  = x86_model(csig.sig);

	if ((model >= 5) || (family > 6)) {
		/* get processor flags from MSR 0x17 */
		native_rdmsr(MSR_IA32_PLATFORM_ID, val[0], val[1]);
		csig.pf = 1 << ((val[1] >> 18) & 7);
	}
	native_wrmsr(MSR_IA32_UCODE_REV, 0, 0);

	/* As documented in the SDM: Do a CPUID 1 here */
	sync_core();

	/* get the current revision from MSR 0x8B */
	native_rdmsr(MSR_IA32_UCODE_REV, val[0], val[1]);

	csig.rev = val[1];

	uci->cpu_sig = csig;
	uci->valid = 1;

	return 0;
}

static void show_saved_mc(void)
{
391
#ifdef DEBUG
392 393 394 395
	int i, j;
	unsigned int sig, pf, rev, total_size, data_size, date;
	struct ucode_cpu_info uci;

396
	if (!mc_saved_data.num_saved) {
397 398 399
		pr_debug("no microcode data saved.\n");
		return;
	}
400
	pr_debug("Total microcode saved: %d\n", mc_saved_data.num_saved);
401 402 403 404 405 406 407 408

	collect_cpu_info_early(&uci);

	sig = uci.cpu_sig.sig;
	pf = uci.cpu_sig.pf;
	rev = uci.cpu_sig.rev;
	pr_debug("CPU: sig=0x%x, pf=0x%x, rev=0x%x\n", sig, pf, rev);

409
	for (i = 0; i < mc_saved_data.num_saved; i++) {
410 411 412 413 414 415 416 417 418 419 420 421 422 423 424 425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444 445 446 447 448 449
		struct microcode_header_intel *mc_saved_header;
		struct extended_sigtable *ext_header;
		int ext_sigcount;
		struct extended_signature *ext_sig;

		mc_saved_header = (struct microcode_header_intel *)
				  mc_saved_data.mc_saved[i];
		sig = mc_saved_header->sig;
		pf = mc_saved_header->pf;
		rev = mc_saved_header->rev;
		total_size = get_totalsize(mc_saved_header);
		data_size = get_datasize(mc_saved_header);
		date = mc_saved_header->date;

		pr_debug("mc_saved[%d]: sig=0x%x, pf=0x%x, rev=0x%x, toal size=0x%x, date = %04x-%02x-%02x\n",
			 i, sig, pf, rev, total_size,
			 date & 0xffff,
			 date >> 24,
			 (date >> 16) & 0xff);

		/* Look for ext. headers: */
		if (total_size <= data_size + MC_HEADER_SIZE)
			continue;

		ext_header = (void *) mc_saved_header + data_size + MC_HEADER_SIZE;
		ext_sigcount = ext_header->count;
		ext_sig = (void *)ext_header + EXT_HEADER_SIZE;

		for (j = 0; j < ext_sigcount; j++) {
			sig = ext_sig->sig;
			pf = ext_sig->pf;

			pr_debug("\tExtended[%d]: sig=0x%x, pf=0x%x\n",
				 j, sig, pf);

			ext_sig++;
		}

	}
#endif
450
}
451 452 453 454 455 456 457 458 459 460 461 462 463 464

#ifdef CONFIG_HOTPLUG_CPU
static DEFINE_MUTEX(x86_cpu_microcode_mutex);
/*
 * Save this mc into mc_saved_data. So it will be loaded early when a CPU is
 * hot added or resumes.
 *
 * Please make sure this mc should be a valid microcode patch before calling
 * this function.
 */
int save_mc_for_early(u8 *mc)
{
	struct microcode_intel *mc_saved_tmp[MAX_UCODE_COUNT];
	unsigned int mc_saved_count_init;
465
	unsigned int num_saved;
466 467 468 469 470 471 472 473 474 475
	struct microcode_intel **mc_saved;
	int ret = 0;
	int i;

	/*
	 * Hold hotplug lock so mc_saved_data is not accessed by a CPU in
	 * hotplug.
	 */
	mutex_lock(&x86_cpu_microcode_mutex);

476 477
	mc_saved_count_init = mc_saved_data.num_saved;
	num_saved = mc_saved_data.num_saved;
478 479
	mc_saved = mc_saved_data.mc_saved;

480
	if (mc_saved && num_saved)
481
		memcpy(mc_saved_tmp, mc_saved,
482
		       num_saved * sizeof(struct microcode_intel *));
483 484 485 486
	/*
	 * Save the microcode patch mc in mc_save_tmp structure if it's a newer
	 * version.
	 */
487
	num_saved = _save_mc(mc_saved_tmp, mc, num_saved);
488 489 490 491

	/*
	 * Save the mc_save_tmp in global mc_saved_data.
	 */
492
	ret = save_microcode(&mc_saved_data, mc_saved_tmp, num_saved);
493 494 495 496 497 498 499 500 501 502 503 504 505 506 507 508 509 510 511 512 513 514 515 516 517 518 519 520 521 522 523 524
	if (ret) {
		pr_err("Cannot save microcode patch.\n");
		goto out;
	}

	show_saved_mc();

	/*
	 * Free old saved microcode data.
	 */
	if (mc_saved) {
		for (i = 0; i < mc_saved_count_init; i++)
			kfree(mc_saved[i]);
		kfree(mc_saved);
	}

out:
	mutex_unlock(&x86_cpu_microcode_mutex);

	return ret;
}
EXPORT_SYMBOL_GPL(save_mc_for_early);
#endif

static bool __init load_builtin_intel_microcode(struct cpio_data *cp)
{
#ifdef CONFIG_X86_64
	unsigned int eax = 0x00000001, ebx, ecx = 0, edx;
	char name[30];

	native_cpuid(&eax, &ebx, &ecx, &edx);

525 526
	sprintf(name, "intel-ucode/%02x-%02x-%02x",
		      x86_family(eax), x86_model(eax), x86_stepping(eax));
527 528 529 530 531 532 533 534 535

	return get_builtin_firmware(cp, name);
#else
	return false;
#endif
}

static __initdata char ucode_name[] = "kernel/x86/microcode/GenuineIntel.bin";
static __init enum ucode_state
536
scan_microcode(struct mc_saved_data *mcs, unsigned long *initrd,
537 538 539 540 541 542 543 544 545 546 547 548 549 550
	       unsigned long start, unsigned long size,
	       struct ucode_cpu_info *uci)
{
	struct cpio_data cd;
	long offset = 0;
#ifdef CONFIG_X86_32
	char *p = (char *)__pa_nodebug(ucode_name);
#else
	char *p = ucode_name;
#endif

	cd.data = NULL;
	cd.size = 0;

551 552
	/* try built-in microcode if no initrd */
	if (!size) {
553 554
		if (!load_builtin_intel_microcode(&cd))
			return UCODE_ERROR;
555 556 557 558
	} else {
		cd = find_cpio_data(p, (void *)start, size, &offset);
		if (!cd.data)
			return UCODE_ERROR;
559 560 561
	}

	return get_matching_model_microcode(0, start, cd.data, cd.size,
562
					    mcs, initrd, uci);
563 564 565 566 567 568 569 570
}

/*
 * Print ucode update info.
 */
static void
print_ucode_info(struct ucode_cpu_info *uci, unsigned int date)
{
571 572 573 574 575
	pr_info_once("microcode updated early to revision 0x%x, date = %04x-%02x-%02x\n",
		     uci->cpu_sig.rev,
		     date & 0xffff,
		     date >> 24,
		     (date >> 16) & 0xff);
576 577 578 579 580 581 582 583 584 585 586 587 588 589 590 591 592 593 594 595 596 597 598 599 600 601 602 603 604 605 606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621 622 623 624 625 626 627 628 629 630 631 632 633 634 635 636 637 638 639 640 641 642 643 644 645 646 647 648 649 650 651 652 653 654 655 656 657 658 659 660 661 662 663 664 665 666 667 668 669 670 671 672 673 674 675 676 677 678 679 680 681 682 683
}

#ifdef CONFIG_X86_32

static int delay_ucode_info;
static int current_mc_date;

/*
 * Print early updated ucode info after printk works. This is delayed info dump.
 */
void show_ucode_info_early(void)
{
	struct ucode_cpu_info uci;

	if (delay_ucode_info) {
		collect_cpu_info_early(&uci);
		print_ucode_info(&uci, current_mc_date);
		delay_ucode_info = 0;
	}
}

/*
 * At this point, we can not call printk() yet. Keep microcode patch number in
 * mc_saved_data.mc_saved and delay printing microcode info in
 * show_ucode_info_early() until printk() works.
 */
static void print_ucode(struct ucode_cpu_info *uci)
{
	struct microcode_intel *mc_intel;
	int *delay_ucode_info_p;
	int *current_mc_date_p;

	mc_intel = uci->mc;
	if (mc_intel == NULL)
		return;

	delay_ucode_info_p = (int *)__pa_nodebug(&delay_ucode_info);
	current_mc_date_p = (int *)__pa_nodebug(&current_mc_date);

	*delay_ucode_info_p = 1;
	*current_mc_date_p = mc_intel->hdr.date;
}
#else

/*
 * Flush global tlb. We only do this in x86_64 where paging has been enabled
 * already and PGE should be enabled as well.
 */
static inline void flush_tlb_early(void)
{
	__native_flush_tlb_global_irq_disabled();
}

static inline void print_ucode(struct ucode_cpu_info *uci)
{
	struct microcode_intel *mc_intel;

	mc_intel = uci->mc;
	if (mc_intel == NULL)
		return;

	print_ucode_info(uci, mc_intel->hdr.date);
}
#endif

static int apply_microcode_early(struct ucode_cpu_info *uci, bool early)
{
	struct microcode_intel *mc_intel;
	unsigned int val[2];

	mc_intel = uci->mc;
	if (mc_intel == NULL)
		return 0;

	/* write microcode via MSR 0x79 */
	native_wrmsr(MSR_IA32_UCODE_WRITE,
	      (unsigned long) mc_intel->bits,
	      (unsigned long) mc_intel->bits >> 16 >> 16);
	native_wrmsr(MSR_IA32_UCODE_REV, 0, 0);

	/* As documented in the SDM: Do a CPUID 1 here */
	sync_core();

	/* get the current revision from MSR 0x8B */
	native_rdmsr(MSR_IA32_UCODE_REV, val[0], val[1]);
	if (val[1] != mc_intel->hdr.rev)
		return -1;

#ifdef CONFIG_X86_64
	/* Flush global tlb. This is precaution. */
	flush_tlb_early();
#endif
	uci->cpu_sig.rev = val[1];

	if (early)
		print_ucode(uci);
	else
		print_ucode_info(uci, mc_intel->hdr.date);

	return 0;
}

/*
 * This function converts microcode patch offsets previously stored in
 * mc_saved_in_initrd to pointers and stores the pointers in mc_saved_data.
 */
int __init save_microcode_in_initrd_intel(void)
{
684
	unsigned int count = mc_saved_data.num_saved;
685 686 687
	struct microcode_intel *mc_saved[MAX_UCODE_COUNT];
	int ret = 0;

688
	if (!count)
689 690
		return ret;

691
	copy_initrd_ptrs(mc_saved, mc_saved_in_initrd, get_initrd_start(), count);
692

693 694 695 696 697 698 699 700 701 702
	ret = save_microcode(&mc_saved_data, mc_saved, count);
	if (ret)
		pr_err("Cannot save microcode patches from initrd.\n");

	show_saved_mc();

	return ret;
}

static void __init
703
_load_ucode_intel_bsp(struct mc_saved_data *mcs, unsigned long *initrd,
704 705 706 707 708 709 710
		      unsigned long start, unsigned long size)
{
	struct ucode_cpu_info uci;
	enum ucode_state ret;

	collect_cpu_info_early(&uci);

711
	ret = scan_microcode(mcs, initrd, start, size, &uci);
712 713 714
	if (ret != UCODE_OK)
		return;

715
	ret = load_microcode(mcs, initrd, start, &uci);
716 717 718 719 720 721 722 723 724 725 726 727 728 729 730
	if (ret != UCODE_OK)
		return;

	apply_microcode_early(&uci, true);
}

void __init load_ucode_intel_bsp(void)
{
	u64 start, size;
#ifdef CONFIG_X86_32
	struct boot_params *p;

	p	= (struct boot_params *)__pa_nodebug(&boot_params);
	size	= p->hdr.ramdisk_size;

731 732 733 734 735 736 737 738 739
	/*
	 * Set start only if we have an initrd image. We cannot use initrd_start
	 * because it is not set that early yet.
	 */
	start	= (size ? p->hdr.ramdisk_image : 0);

	_load_ucode_intel_bsp((struct mc_saved_data *)__pa_nodebug(&mc_saved_data),
			      (unsigned long *)__pa_nodebug(&mc_saved_in_initrd),
			      start, size);
740 741
#else
	size	= boot_params.hdr.ramdisk_size;
742
	start	= (size ? boot_params.hdr.ramdisk_image + PAGE_OFFSET : 0);
743 744 745 746 747 748 749 750

	_load_ucode_intel_bsp(&mc_saved_data, mc_saved_in_initrd, start, size);
#endif
}

void load_ucode_intel_ap(void)
{
	unsigned long *mc_saved_in_initrd_p;
751 752
	struct mc_saved_data *mcs_p;
	struct ucode_cpu_info uci;
753 754 755
	enum ucode_state ret;
#ifdef CONFIG_X86_32

756
	mc_saved_in_initrd_p = (unsigned long *)__pa_nodebug(mc_saved_in_initrd);
757
	mcs_p = (struct mc_saved_data *)__pa_nodebug(&mc_saved_data);
758 759
#else
	mc_saved_in_initrd_p = mc_saved_in_initrd;
760
	mcs_p = &mc_saved_data;
761 762 763 764 765 766
#endif

	/*
	 * If there is no valid ucode previously saved in memory, no need to
	 * update ucode on this AP.
	 */
767
	if (!mcs_p->num_saved)
768 769 770
		return;

	collect_cpu_info_early(&uci);
771
	ret = load_microcode(mcs_p, mc_saved_in_initrd_p,
772
			     get_initrd_start_addr(), &uci);
773 774 775 776 777 778 779 780 781 782 783 784

	if (ret != UCODE_OK)
		return;

	apply_microcode_early(&uci, true);
}

void reload_ucode_intel(void)
{
	struct ucode_cpu_info uci;
	enum ucode_state ret;

785
	if (!mc_saved_data.num_saved)
786 787 788 789 790
		return;

	collect_cpu_info_early(&uci);

	ret = load_microcode_early(mc_saved_data.mc_saved,
791
				   mc_saved_data.num_saved, &uci);
792 793 794 795 796 797
	if (ret != UCODE_OK)
		return;

	apply_microcode_early(&uci, false);
}

798
static int collect_cpu_info(int cpu_num, struct cpu_signature *csig)
L
Linus Torvalds 已提交
799
{
800
	struct cpuinfo_x86 *c = &cpu_data(cpu_num);
L
Linus Torvalds 已提交
801 802
	unsigned int val[2];

803
	memset(csig, 0, sizeof(*csig));
L
Linus Torvalds 已提交
804

805
	csig->sig = cpuid_eax(0x00000001);
806 807 808 809

	if ((c->x86_model >= 5) || (c->x86 > 6)) {
		/* get processor flags from MSR 0x17 */
		rdmsr(MSR_IA32_PLATFORM_ID, val[0], val[1]);
810
		csig->pf = 1 << ((val[1] >> 18) & 7);
L
Linus Torvalds 已提交
811 812
	}

813
	csig->rev = c->microcode;
814 815
	pr_info("CPU%d sig=0x%x, pf=0x%x, revision=0x%x\n",
		cpu_num, csig->sig, csig->pf, csig->rev);
816 817

	return 0;
L
Linus Torvalds 已提交
818 819
}

820 821 822 823
/*
 * return 0 - no update found
 * return 1 - found update
 */
824
static int get_matching_mc(struct microcode_intel *mc_intel, int cpu)
825
{
826 827
	struct cpu_signature cpu_sig;
	unsigned int csig, cpf, crev;
828

829
	collect_cpu_info(cpu, &cpu_sig);
D
Dmitry Adamushko 已提交
830

831 832 833
	csig = cpu_sig.sig;
	cpf = cpu_sig.pf;
	crev = cpu_sig.rev;
834

835
	return has_newer_microcode(mc_intel, csig, cpf, crev);
L
Linus Torvalds 已提交
836 837
}

838
static int apply_microcode_intel(int cpu)
L
Linus Torvalds 已提交
839
{
I
Ingo Molnar 已提交
840 841
	struct microcode_intel *mc_intel;
	struct ucode_cpu_info *uci;
L
Linus Torvalds 已提交
842
	unsigned int val[2];
843 844
	int cpu_num = raw_smp_processor_id();
	struct cpuinfo_x86 *c = &cpu_data(cpu_num);
I
Ingo Molnar 已提交
845 846 847

	uci = ucode_cpu_info + cpu;
	mc_intel = uci->mc;
L
Linus Torvalds 已提交
848

849 850 851
	/* We should bind the task to the CPU */
	BUG_ON(cpu_num != cpu);

852
	if (mc_intel == NULL)
853
		return 0;
L
Linus Torvalds 已提交
854

855 856 857 858 859 860 861 862
	/*
	 * Microcode on this CPU could be updated earlier. Only apply the
	 * microcode patch in mc_intel when it is newer than the one on this
	 * CPU.
	 */
	if (get_matching_mc(mc_intel, cpu) == 0)
		return 0;

L
Linus Torvalds 已提交
863 864
	/* write microcode via MSR 0x79 */
	wrmsr(MSR_IA32_UCODE_WRITE,
865 866
	      (unsigned long) mc_intel->bits,
	      (unsigned long) mc_intel->bits >> 16 >> 16);
L
Linus Torvalds 已提交
867 868
	wrmsr(MSR_IA32_UCODE_REV, 0, 0);

869
	/* As documented in the SDM: Do a CPUID 1 here */
870
	sync_core();
871

L
Linus Torvalds 已提交
872 873 874
	/* get the current revision from MSR 0x8B */
	rdmsr(MSR_IA32_UCODE_REV, val[0], val[1]);

875
	if (val[1] != mc_intel->hdr.rev) {
876 877
		pr_err("CPU%d update to revision 0x%x failed\n",
		       cpu_num, mc_intel->hdr.rev);
878
		return -1;
879
	}
880
	pr_info("CPU%d updated to revision 0x%x, date = %04x-%02x-%02x\n",
881
		cpu_num, val[1],
882 883 884
		mc_intel->hdr.date & 0xffff,
		mc_intel->hdr.date >> 24,
		(mc_intel->hdr.date >> 16) & 0xff);
I
Ingo Molnar 已提交
885

886
	uci->cpu_sig.rev = val[1];
887
	c->microcode = val[1];
888 889

	return 0;
L
Linus Torvalds 已提交
890 891
}

892 893
static enum ucode_state generic_load_microcode(int cpu, void *data, size_t size,
				int (*get_ucode_data)(void *, const void *, size_t))
894
{
D
Dmitry Adamushko 已提交
895
	struct ucode_cpu_info *uci = ucode_cpu_info + cpu;
896
	u8 *ucode_ptr = data, *new_mc = NULL, *mc = NULL;
D
Dmitry Adamushko 已提交
897 898
	int new_rev = uci->cpu_sig.rev;
	unsigned int leftover = size;
899
	enum ucode_state state = UCODE_OK;
900
	unsigned int curr_mc_size = 0;
901
	unsigned int csig, cpf;
902

D
Dmitry Adamushko 已提交
903 904 905
	while (leftover) {
		struct microcode_header_intel mc_header;
		unsigned int mc_size;
906

907 908 909 910 911
		if (leftover < sizeof(mc_header)) {
			pr_err("error! Truncated header in microcode data file\n");
			break;
		}

D
Dmitry Adamushko 已提交
912 913
		if (get_ucode_data(&mc_header, ucode_ptr, sizeof(mc_header)))
			break;
914

D
Dmitry Adamushko 已提交
915 916
		mc_size = get_totalsize(&mc_header);
		if (!mc_size || mc_size > leftover) {
917
			pr_err("error! Bad data in microcode data file\n");
D
Dmitry Adamushko 已提交
918 919
			break;
		}
920

921 922
		/* For performance reasons, reuse mc area when possible */
		if (!mc || mc_size > curr_mc_size) {
923
			vfree(mc);
924 925 926 927 928
			mc = vmalloc(mc_size);
			if (!mc)
				break;
			curr_mc_size = mc_size;
		}
D
Dmitry Adamushko 已提交
929 930

		if (get_ucode_data(mc, ucode_ptr, mc_size) ||
931
		    microcode_sanity_check(mc, 1) < 0) {
D
Dmitry Adamushko 已提交
932 933 934
			break;
		}

935 936
		csig = uci->cpu_sig.sig;
		cpf = uci->cpu_sig.pf;
937
		if (has_newer_microcode(mc, csig, cpf, new_rev)) {
938
			vfree(new_mc);
D
Dmitry Adamushko 已提交
939 940
			new_rev = mc_header.rev;
			new_mc  = mc;
941 942
			mc = NULL;	/* trigger new vmalloc */
		}
D
Dmitry Adamushko 已提交
943 944 945

		ucode_ptr += mc_size;
		leftover  -= mc_size;
946 947
	}

948
	vfree(mc);
949

950
	if (leftover) {
951
		vfree(new_mc);
952
		state = UCODE_ERROR;
I
Ingo Molnar 已提交
953
		goto out;
954
	}
I
Ingo Molnar 已提交
955

956 957
	if (!new_mc) {
		state = UCODE_NFOUND;
I
Ingo Molnar 已提交
958
		goto out;
959
	}
D
Dmitry Adamushko 已提交
960

961
	vfree(uci->mc);
I
Ingo Molnar 已提交
962 963
	uci->mc = (struct microcode_intel *)new_mc;

964 965 966 967 968 969 970
	/*
	 * If early loading microcode is supported, save this mc into
	 * permanent memory. So it will be loaded early when a CPU is hot added
	 * or resumes.
	 */
	save_mc_for_early(new_mc);

971 972
	pr_debug("CPU%d found a matching microcode update with version 0x%x (current=0x%x)\n",
		 cpu, new_rev, uci->cpu_sig.rev);
973 974
out:
	return state;
975 976
}

D
Dmitry Adamushko 已提交
977 978 979 980 981
static int get_ucode_fw(void *to, const void *from, size_t n)
{
	memcpy(to, from, n);
	return 0;
}
982

983 984
static enum ucode_state request_microcode_fw(int cpu, struct device *device,
					     bool refresh_fw)
985 986
{
	char name[30];
987
	struct cpuinfo_x86 *c = &cpu_data(cpu);
988
	const struct firmware *firmware;
989
	enum ucode_state ret;
990

P
Peter Oruba 已提交
991
	sprintf(name, "intel-ucode/%02x-%02x-%02x",
992
		c->x86, c->x86_model, c->x86_mask);
993

994
	if (request_firmware_direct(&firmware, name, device)) {
995
		pr_debug("data file %s load failed\n", name);
996
		return UCODE_NFOUND;
997
	}
D
Dmitry Adamushko 已提交
998

999 1000
	ret = generic_load_microcode(cpu, (void *)firmware->data,
				     firmware->size, &get_ucode_fw);
D
Dmitry Adamushko 已提交
1001

1002 1003
	release_firmware(firmware);

D
Dmitry Adamushko 已提交
1004 1005 1006 1007 1008 1009 1010 1011
	return ret;
}

static int get_ucode_user(void *to, const void *from, size_t n)
{
	return copy_from_user(to, from, n);
}

1012 1013
static enum ucode_state
request_microcode_user(int cpu, const void __user *buf, size_t size)
D
Dmitry Adamushko 已提交
1014
{
1015
	return generic_load_microcode(cpu, (void *)buf, size, &get_ucode_user);
1016 1017
}

P
Peter Oruba 已提交
1018
static void microcode_fini_cpu(int cpu)
1019 1020 1021
{
	struct ucode_cpu_info *uci = ucode_cpu_info + cpu;

1022 1023
	vfree(uci->mc);
	uci->mc = NULL;
1024
}
P
Peter Oruba 已提交
1025

H
Hannes Eder 已提交
1026
static struct microcode_ops microcode_intel_ops = {
D
Dmitry Adamushko 已提交
1027 1028
	.request_microcode_user		  = request_microcode_user,
	.request_microcode_fw             = request_microcode_fw,
P
Peter Oruba 已提交
1029
	.collect_cpu_info                 = collect_cpu_info,
1030
	.apply_microcode                  = apply_microcode_intel,
P
Peter Oruba 已提交
1031 1032 1033
	.microcode_fini_cpu               = microcode_fini_cpu,
};

1034
struct microcode_ops * __init init_intel_microcode(void)
P
Peter Oruba 已提交
1035
{
1036
	struct cpuinfo_x86 *c = &boot_cpu_data;
1037 1038 1039 1040 1041 1042 1043

	if (c->x86_vendor != X86_VENDOR_INTEL || c->x86 < 6 ||
	    cpu_has(c, X86_FEATURE_IA64)) {
		pr_err("Intel CPU family 0x%x not supported\n", c->x86);
		return NULL;
	}

1044
	return &microcode_intel_ops;
P
Peter Oruba 已提交
1045 1046
}