intel.c 22.4 KB
Newer Older
1
// SPDX-License-Identifier: GPL-2.0-or-later
L
Linus Torvalds 已提交
2
/*
3
 * Intel CPU Microcode Update Driver for Linux
L
Linus Torvalds 已提交
4
 *
A
Andrew Morton 已提交
5
 * Copyright (C) 2000-2006 Tigran Aivazian <aivazian.tigran@gmail.com>
6
 *		 2006 Shaohua Li <shaohua.li@intel.com>
L
Linus Torvalds 已提交
7
 *
8 9 10 11
 * Intel CPU microcode early update for Linux
 *
 * Copyright (C) 2012 Fenghua Yu <fenghua.yu@intel.com>
 *		      H Peter Anvin" <hpa@zytor.com>
L
Linus Torvalds 已提交
12
 */
13

14 15 16 17 18 19
/*
 * This needs to be before all headers so that pr_debug in printk.h doesn't turn
 * printk calls into no_printk().
 *
 *#define DEBUG
 */
20
#define pr_fmt(fmt) "microcode: " fmt
21

22
#include <linux/earlycpio.h>
I
Ingo Molnar 已提交
23 24
#include <linux/firmware.h>
#include <linux/uaccess.h>
25 26
#include <linux/vmalloc.h>
#include <linux/initrd.h>
I
Ingo Molnar 已提交
27
#include <linux/kernel.h>
28 29
#include <linux/slab.h>
#include <linux/cpu.h>
30
#include <linux/uio.h>
31
#include <linux/mm.h>
L
Linus Torvalds 已提交
32

33
#include <asm/microcode_intel.h>
34
#include <asm/intel-family.h>
I
Ingo Molnar 已提交
35
#include <asm/processor.h>
36 37
#include <asm/tlbflush.h>
#include <asm/setup.h>
I
Ingo Molnar 已提交
38
#include <asm/msr.h>
L
Linus Torvalds 已提交
39

40
static const char ucode_path[] = "kernel/x86/microcode/GenuineIntel.bin";
41

42
/* Current microcode patch used in early patching on the APs. */
43
static struct microcode_intel *intel_ucode_patch;
44

45 46 47
/* last level cache size per core */
static int llc_size_per_core;

48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102
static inline bool cpu_signatures_match(unsigned int s1, unsigned int p1,
					unsigned int s2, unsigned int p2)
{
	if (s1 != s2)
		return false;

	/* Processor flags are either both 0 ... */
	if (!p1 && !p2)
		return true;

	/* ... or they intersect. */
	return p1 & p2;
}

/*
 * Returns 1 if update has been found, 0 otherwise.
 */
static int find_matching_signature(void *mc, unsigned int csig, int cpf)
{
	struct microcode_header_intel *mc_hdr = mc;
	struct extended_sigtable *ext_hdr;
	struct extended_signature *ext_sig;
	int i;

	if (cpu_signatures_match(csig, cpf, mc_hdr->sig, mc_hdr->pf))
		return 1;

	/* Look for ext. headers: */
	if (get_totalsize(mc_hdr) <= get_datasize(mc_hdr) + MC_HEADER_SIZE)
		return 0;

	ext_hdr = mc + get_datasize(mc_hdr) + MC_HEADER_SIZE;
	ext_sig = (void *)ext_hdr + EXT_HEADER_SIZE;

	for (i = 0; i < ext_hdr->count; i++) {
		if (cpu_signatures_match(csig, cpf, ext_sig->sig, ext_sig->pf))
			return 1;
		ext_sig++;
	}
	return 0;
}

/*
 * Returns 1 if update has been found, 0 otherwise.
 */
static int has_newer_microcode(void *mc, unsigned int csig, int cpf, int new_rev)
{
	struct microcode_header_intel *mc_hdr = mc;

	if (mc_hdr->rev <= new_rev)
		return 0;

	return find_matching_signature(mc, csig, cpf);
}

103
static struct ucode_patch *memdup_patch(void *data, unsigned int size)
104
{
105
	struct ucode_patch *p;
106

107
	p = kzalloc(sizeof(struct ucode_patch), GFP_KERNEL);
108
	if (!p)
109
		return NULL;
110

111 112 113
	p->data = kmemdup(data, size, GFP_KERNEL);
	if (!p->data) {
		kfree(p);
114
		return NULL;
115 116
	}

117
	return p;
118 119
}

120
static void save_microcode_patch(struct ucode_cpu_info *uci, void *data, unsigned int size)
121 122
{
	struct microcode_header_intel *mc_hdr, *mc_saved_hdr;
123
	struct ucode_patch *iter, *tmp, *p = NULL;
124
	bool prev_found = false;
125 126
	unsigned int sig, pf;

127
	mc_hdr = (struct microcode_header_intel *)data;
128

129 130
	list_for_each_entry_safe(iter, tmp, &microcode_cache, plist) {
		mc_saved_hdr = (struct microcode_header_intel *)iter->data;
131 132 133
		sig	     = mc_saved_hdr->sig;
		pf	     = mc_saved_hdr->pf;

134 135
		if (find_matching_signature(data, sig, pf)) {
			prev_found = true;
136

137 138
			if (mc_hdr->rev <= mc_saved_hdr->rev)
				continue;
139

140 141
			p = memdup_patch(data, size);
			if (!p)
142
				pr_err("Error allocating buffer %p\n", data);
143
			else {
144
				list_replace(&iter->plist, &p->plist);
145 146 147
				kfree(iter->data);
				kfree(iter);
			}
148
		}
149 150
	}

151 152 153 154 155
	/*
	 * There weren't any previous patches found in the list cache; save the
	 * newly found.
	 */
	if (!prev_found) {
156 157
		p = memdup_patch(data, size);
		if (!p)
158 159 160 161
			pr_err("Error allocating buffer for %p\n", data);
		else
			list_add_tail(&p->plist, &microcode_cache);
	}
162

163 164 165
	if (!p)
		return;

166 167 168
	if (!find_matching_signature(p->data, uci->cpu_sig.sig, uci->cpu_sig.pf))
		return;

169 170 171 172 173
	/*
	 * Save for early loading. On 32-bit, that needs to be a physical
	 * address as the APs are running from physical addresses, before
	 * paging has been enabled.
	 */
174 175 176 177
	if (IS_ENABLED(CONFIG_X86_32))
		intel_ucode_patch = (struct microcode_intel *)__pa_nodebug(p->data);
	else
		intel_ucode_patch = p->data;
178 179
}

180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277
static int microcode_sanity_check(void *mc, int print_err)
{
	unsigned long total_size, data_size, ext_table_size;
	struct microcode_header_intel *mc_header = mc;
	struct extended_sigtable *ext_header = NULL;
	u32 sum, orig_sum, ext_sigcount = 0, i;
	struct extended_signature *ext_sig;

	total_size = get_totalsize(mc_header);
	data_size = get_datasize(mc_header);

	if (data_size + MC_HEADER_SIZE > total_size) {
		if (print_err)
			pr_err("Error: bad microcode data file size.\n");
		return -EINVAL;
	}

	if (mc_header->ldrver != 1 || mc_header->hdrver != 1) {
		if (print_err)
			pr_err("Error: invalid/unknown microcode update format.\n");
		return -EINVAL;
	}

	ext_table_size = total_size - (MC_HEADER_SIZE + data_size);
	if (ext_table_size) {
		u32 ext_table_sum = 0;
		u32 *ext_tablep;

		if ((ext_table_size < EXT_HEADER_SIZE)
		 || ((ext_table_size - EXT_HEADER_SIZE) % EXT_SIGNATURE_SIZE)) {
			if (print_err)
				pr_err("Error: truncated extended signature table.\n");
			return -EINVAL;
		}

		ext_header = mc + MC_HEADER_SIZE + data_size;
		if (ext_table_size != exttable_size(ext_header)) {
			if (print_err)
				pr_err("Error: extended signature table size mismatch.\n");
			return -EFAULT;
		}

		ext_sigcount = ext_header->count;

		/*
		 * Check extended table checksum: the sum of all dwords that
		 * comprise a valid table must be 0.
		 */
		ext_tablep = (u32 *)ext_header;

		i = ext_table_size / sizeof(u32);
		while (i--)
			ext_table_sum += ext_tablep[i];

		if (ext_table_sum) {
			if (print_err)
				pr_warn("Bad extended signature table checksum, aborting.\n");
			return -EINVAL;
		}
	}

	/*
	 * Calculate the checksum of update data and header. The checksum of
	 * valid update data and header including the extended signature table
	 * must be 0.
	 */
	orig_sum = 0;
	i = (MC_HEADER_SIZE + data_size) / sizeof(u32);
	while (i--)
		orig_sum += ((u32 *)mc)[i];

	if (orig_sum) {
		if (print_err)
			pr_err("Bad microcode data checksum, aborting.\n");
		return -EINVAL;
	}

	if (!ext_table_size)
		return 0;

	/*
	 * Check extended signature checksum: 0 => valid.
	 */
	for (i = 0; i < ext_sigcount; i++) {
		ext_sig = (void *)ext_header + EXT_HEADER_SIZE +
			  EXT_SIGNATURE_SIZE * i;

		sum = (mc_header->sig + mc_header->pf + mc_header->cksum) -
		      (ext_sig->sig + ext_sig->pf + ext_sig->cksum);
		if (sum) {
			if (print_err)
				pr_err("Bad extended signature checksum, aborting.\n");
			return -EINVAL;
		}
	}
	return 0;
}

278 279 280 281
/*
 * Get microcode matching with BSP's model. Only CPUs with the same model as
 * BSP can stay in the platform.
 */
282 283
static struct microcode_intel *
scan_microcode(void *data, size_t size, struct ucode_cpu_info *uci, bool save)
284
{
285
	struct microcode_header_intel *mc_header;
286
	struct microcode_intel *patch = NULL;
287
	unsigned int mc_size;
288

289 290
	while (size) {
		if (size < sizeof(struct microcode_header_intel))
291 292
			break;

293
		mc_header = (struct microcode_header_intel *)data;
294 295

		mc_size = get_totalsize(mc_header);
296 297 298
		if (!mc_size ||
		    mc_size > size ||
		    microcode_sanity_check(data, 0) < 0)
299 300
			break;

301
		size -= mc_size;
302

303 304
		if (!find_matching_signature(data, uci->cpu_sig.sig,
					     uci->cpu_sig.pf)) {
305
			data += mc_size;
306 307 308
			continue;
		}

309
		if (save) {
310
			save_microcode_patch(uci, data, mc_size);
311 312
			goto next;
		}
313 314


315 316 317 318 319 320
		if (!patch) {
			if (!has_newer_microcode(data,
						 uci->cpu_sig.sig,
						 uci->cpu_sig.pf,
						 uci->cpu_sig.rev))
				goto next;
321

322 323 324 325 326 327 328 329 330
		} else {
			struct microcode_header_intel *phdr = &patch->hdr;

			if (!has_newer_microcode(data,
						 phdr->sig,
						 phdr->pf,
						 phdr->rev))
				goto next;
		}
331

332 333
		/* We have a newer patch, save it. */
		patch = data;
334

335 336 337
next:
		data += mc_size;
	}
338

339 340 341 342
	if (size)
		return NULL;

	return patch;
343 344 345 346 347 348
}

static int collect_cpu_info_early(struct ucode_cpu_info *uci)
{
	unsigned int val[2];
	unsigned int family, model;
349
	struct cpu_signature csig = { 0 };
350 351 352 353 354 355 356 357 358
	unsigned int eax, ebx, ecx, edx;

	memset(uci, 0, sizeof(*uci));

	eax = 0x00000001;
	ecx = 0;
	native_cpuid(&eax, &ebx, &ecx, &edx);
	csig.sig = eax;

359 360
	family = x86_family(eax);
	model  = x86_model(eax);
361 362 363 364 365 366 367

	if ((model >= 5) || (family > 6)) {
		/* get processor flags from MSR 0x17 */
		native_rdmsr(MSR_IA32_PLATFORM_ID, val[0], val[1]);
		csig.pf = 1 << ((val[1] >> 18) & 7);
	}

368
	csig.rev = intel_get_microcode_revision();
369 370 371 372 373 374 375 376 377

	uci->cpu_sig = csig;
	uci->valid = 1;

	return 0;
}

static void show_saved_mc(void)
{
378
#ifdef DEBUG
379
	int i = 0, j;
380 381
	unsigned int sig, pf, rev, total_size, data_size, date;
	struct ucode_cpu_info uci;
382
	struct ucode_patch *p;
383

384
	if (list_empty(&microcode_cache)) {
385 386 387 388 389 390
		pr_debug("no microcode data saved.\n");
		return;
	}

	collect_cpu_info_early(&uci);

391 392 393
	sig	= uci.cpu_sig.sig;
	pf	= uci.cpu_sig.pf;
	rev	= uci.cpu_sig.rev;
394 395
	pr_debug("CPU: sig=0x%x, pf=0x%x, rev=0x%x\n", sig, pf, rev);

396
	list_for_each_entry(p, &microcode_cache, plist) {
397 398 399
		struct microcode_header_intel *mc_saved_header;
		struct extended_sigtable *ext_header;
		struct extended_signature *ext_sig;
400 401 402 403 404 405 406 407
		int ext_sigcount;

		mc_saved_header = (struct microcode_header_intel *)p->data;

		sig	= mc_saved_header->sig;
		pf	= mc_saved_header->pf;
		rev	= mc_saved_header->rev;
		date	= mc_saved_header->date;
408

409 410
		total_size	= get_totalsize(mc_saved_header);
		data_size	= get_datasize(mc_saved_header);
411

M
Masanari Iida 已提交
412
		pr_debug("mc_saved[%d]: sig=0x%x, pf=0x%x, rev=0x%x, total size=0x%x, date = %04x-%02x-%02x\n",
413
			 i++, sig, pf, rev, total_size,
414 415 416 417 418 419 420 421
			 date & 0xffff,
			 date >> 24,
			 (date >> 16) & 0xff);

		/* Look for ext. headers: */
		if (total_size <= data_size + MC_HEADER_SIZE)
			continue;

422
		ext_header = (void *)mc_saved_header + data_size + MC_HEADER_SIZE;
423 424 425 426 427 428 429 430 431 432 433 434 435 436
		ext_sigcount = ext_header->count;
		ext_sig = (void *)ext_header + EXT_HEADER_SIZE;

		for (j = 0; j < ext_sigcount; j++) {
			sig = ext_sig->sig;
			pf = ext_sig->pf;

			pr_debug("\tExtended[%d]: sig=0x%x, pf=0x%x\n",
				 j, sig, pf);

			ext_sig++;
		}
	}
#endif
437
}
438 439

/*
440 441
 * Save this microcode patch. It will be loaded early when a CPU is
 * hot-added or resumes.
442
 */
443
static void save_mc_for_early(struct ucode_cpu_info *uci, u8 *mc, unsigned int size)
444
{
445
	/* Synchronization during CPU hotplug. */
446 447
	static DEFINE_MUTEX(x86_cpu_microcode_mutex);

448 449
	mutex_lock(&x86_cpu_microcode_mutex);

450
	save_microcode_patch(uci, mc, size);
451 452 453
	show_saved_mc();

	mutex_unlock(&x86_cpu_microcode_mutex);
454
}
455

456
static bool load_builtin_intel_microcode(struct cpio_data *cp)
457
{
458
	unsigned int eax = 1, ebx, ecx = 0, edx;
459 460
	char name[30];

461 462 463
	if (IS_ENABLED(CONFIG_X86_32))
		return false;

464 465
	native_cpuid(&eax, &ebx, &ecx, &edx);

466 467
	sprintf(name, "intel-ucode/%02x-%02x-%02x",
		      x86_family(eax), x86_model(eax), x86_stepping(eax));
468 469 470 471 472 473 474 475 476 477

	return get_builtin_firmware(cp, name);
}

/*
 * Print ucode update info.
 */
static void
print_ucode_info(struct ucode_cpu_info *uci, unsigned int date)
{
478 479 480 481 482
	pr_info_once("microcode updated early to revision 0x%x, date = %04x-%02x-%02x\n",
		     uci->cpu_sig.rev,
		     date & 0xffff,
		     date >> 24,
		     (date >> 16) & 0xff);
483 484 485 486 487 488 489 490 491 492 493 494 495 496 497 498 499 500 501 502 503 504
}

#ifdef CONFIG_X86_32

static int delay_ucode_info;
static int current_mc_date;

/*
 * Print early updated ucode info after printk works. This is delayed info dump.
 */
void show_ucode_info_early(void)
{
	struct ucode_cpu_info uci;

	if (delay_ucode_info) {
		collect_cpu_info_early(&uci);
		print_ucode_info(&uci, current_mc_date);
		delay_ucode_info = 0;
	}
}

/*
505
 * At this point, we can not call printk() yet. Delay printing microcode info in
506 507 508 509
 * show_ucode_info_early() until printk() works.
 */
static void print_ucode(struct ucode_cpu_info *uci)
{
510
	struct microcode_intel *mc;
511 512 513
	int *delay_ucode_info_p;
	int *current_mc_date_p;

514 515
	mc = uci->mc;
	if (!mc)
516 517 518 519 520 521
		return;

	delay_ucode_info_p = (int *)__pa_nodebug(&delay_ucode_info);
	current_mc_date_p = (int *)__pa_nodebug(&current_mc_date);

	*delay_ucode_info_p = 1;
522
	*current_mc_date_p = mc->hdr.date;
523 524 525 526 527
}
#else

static inline void print_ucode(struct ucode_cpu_info *uci)
{
528
	struct microcode_intel *mc;
529

530 531
	mc = uci->mc;
	if (!mc)
532 533
		return;

534
	print_ucode_info(uci, mc->hdr.date);
535 536 537 538 539
}
#endif

static int apply_microcode_early(struct ucode_cpu_info *uci, bool early)
{
540
	struct microcode_intel *mc;
541
	u32 rev;
542

543 544
	mc = uci->mc;
	if (!mc)
545 546
		return 0;

547 548 549 550 551 552 553 554 555 556 557
	/*
	 * Save us the MSR write below - which is a particular expensive
	 * operation - when the other hyperthread has updated the microcode
	 * already.
	 */
	rev = intel_get_microcode_revision();
	if (rev >= mc->hdr.rev) {
		uci->cpu_sig.rev = rev;
		return UCODE_OK;
	}

558 559 560 561 562 563
	/*
	 * Writeback and invalidate caches before updating microcode to avoid
	 * internal issues depending on what the microcode is updating.
	 */
	native_wbinvd();

564
	/* write microcode via MSR 0x79 */
565
	native_wrmsrl(MSR_IA32_UCODE_WRITE, (unsigned long)mc->bits);
566

567 568
	rev = intel_get_microcode_revision();
	if (rev != mc->hdr.rev)
569 570
		return -1;

571
	uci->cpu_sig.rev = rev;
572 573 574 575

	if (early)
		print_ucode(uci);
	else
576
		print_ucode_info(uci, mc->hdr.date);
577 578 579 580 581 582

	return 0;
}

int __init save_microcode_in_initrd_intel(void)
{
583 584
	struct ucode_cpu_info uci;
	struct cpio_data cp;
585

586 587 588 589 590 591 592 593
	/*
	 * initrd is going away, clear patch ptr. We will scan the microcode one
	 * last time before jettisoning and save a patch, if found. Then we will
	 * update that pointer too, with a stable patch address to use when
	 * resuming the cores.
	 */
	intel_ucode_patch = NULL;

594 595
	if (!load_builtin_intel_microcode(&cp))
		cp = find_microcode_in_initrd(ucode_path, false);
596

597 598
	if (!(cp.data && cp.size))
		return 0;
599

600
	collect_cpu_info_early(&uci);
601

602
	scan_microcode(cp.data, cp.size, &uci, true);
603

604
	show_saved_mc();
605

606 607
	return 0;
}
608

609 610 611 612 613 614 615 616
/*
 * @res_patch, output: a pointer to the patch we found.
 */
static struct microcode_intel *__load_ucode_intel(struct ucode_cpu_info *uci)
{
	static const char *path;
	struct cpio_data cp;
	bool use_pa;
617

618 619 620 621 622 623
	if (IS_ENABLED(CONFIG_X86_32)) {
		path	  = (const char *)__pa_nodebug(ucode_path);
		use_pa	  = true;
	} else {
		path	  = ucode_path;
		use_pa	  = false;
624 625
	}

626 627 628
	/* try built-in microcode first */
	if (!load_builtin_intel_microcode(&cp))
		cp = find_microcode_in_initrd(path, use_pa);
629

630 631
	if (!(cp.data && cp.size))
		return NULL;
632

633
	collect_cpu_info_early(uci);
634

635
	return scan_microcode(cp.data, cp.size, uci, false);
636 637
}

638
void __init load_ucode_intel_bsp(void)
639
{
640
	struct microcode_intel *patch;
641 642
	struct ucode_cpu_info uci;

643 644
	patch = __load_ucode_intel(&uci);
	if (!patch)
645 646
		return;

647
	uci.mc = patch;
648 649 650 651

	apply_microcode_early(&uci, true);
}

652
void load_ucode_intel_ap(void)
653
{
654 655
	struct microcode_intel *patch, **iup;
	struct ucode_cpu_info uci;
656

657 658 659 660 661 662 663 664 665 666
	if (IS_ENABLED(CONFIG_X86_32))
		iup = (struct microcode_intel **) __pa_nodebug(&intel_ucode_patch);
	else
		iup = &intel_ucode_patch;

reget:
	if (!*iup) {
		patch = __load_ucode_intel(&uci);
		if (!patch)
			return;
667

668 669 670 671 672 673 674 675 676 677 678
		*iup = patch;
	}

	uci.mc = *iup;

	if (apply_microcode_early(&uci, true)) {
		/* Mixed-silicon system? Try to refetch the proper patch: */
		*iup = NULL;

		goto reget;
	}
679 680
}

681
static struct microcode_intel *find_patch(struct ucode_cpu_info *uci)
682
{
683 684
	struct microcode_header_intel *phdr;
	struct ucode_patch *iter, *tmp;
685

686
	list_for_each_entry_safe(iter, tmp, &microcode_cache, plist) {
687

688
		phdr = (struct microcode_header_intel *)iter->data;
689

690 691
		if (phdr->rev <= uci->cpu_sig.rev)
			continue;
692

693 694 695 696
		if (!find_matching_signature(phdr,
					     uci->cpu_sig.sig,
					     uci->cpu_sig.pf))
			continue;
697

698 699 700
		return iter->data;
	}
	return NULL;
701 702 703 704
}

void reload_ucode_intel(void)
{
705
	struct microcode_intel *p;
706 707 708 709
	struct ucode_cpu_info uci;

	collect_cpu_info_early(&uci);

710 711
	p = find_patch(&uci);
	if (!p)
712 713
		return;

714 715
	uci.mc = p;

716 717 718
	apply_microcode_early(&uci, false);
}

719
static int collect_cpu_info(int cpu_num, struct cpu_signature *csig)
L
Linus Torvalds 已提交
720
{
721
	static struct cpu_signature prev;
722
	struct cpuinfo_x86 *c = &cpu_data(cpu_num);
L
Linus Torvalds 已提交
723 724
	unsigned int val[2];

725
	memset(csig, 0, sizeof(*csig));
L
Linus Torvalds 已提交
726

727
	csig->sig = cpuid_eax(0x00000001);
728 729 730 731

	if ((c->x86_model >= 5) || (c->x86 > 6)) {
		/* get processor flags from MSR 0x17 */
		rdmsr(MSR_IA32_PLATFORM_ID, val[0], val[1]);
732
		csig->pf = 1 << ((val[1] >> 18) & 7);
L
Linus Torvalds 已提交
733 734
	}

735
	csig->rev = c->microcode;
736 737 738 739 740 741 742

	/* No extra locking on prev, races are harmless. */
	if (csig->sig != prev.sig || csig->pf != prev.pf || csig->rev != prev.rev) {
		pr_info("sig=0x%x, pf=0x%x, revision=0x%x\n",
			csig->sig, csig->pf, csig->rev);
		prev = *csig;
	}
743 744

	return 0;
L
Linus Torvalds 已提交
745 746
}

747
static enum ucode_state apply_microcode_intel(int cpu)
L
Linus Torvalds 已提交
748
{
749
	struct ucode_cpu_info *uci = ucode_cpu_info + cpu;
750
	struct cpuinfo_x86 *c = &cpu_data(cpu);
751
	bool bsp = c->cpu_index == boot_cpu_data.cpu_index;
752
	struct microcode_intel *mc;
753
	enum ucode_state ret;
754
	static int prev_rev;
755
	u32 rev;
I
Ingo Molnar 已提交
756

757
	/* We should bind the task to the CPU */
758
	if (WARN_ON(raw_smp_processor_id() != cpu))
759
		return UCODE_ERROR;
760

761 762
	/* Look for a newer patch in our cache: */
	mc = find_patch(uci);
763
	if (!mc) {
764
		mc = uci->mc;
765
		if (!mc)
766
			return UCODE_NFOUND;
767
	}
768

769 770 771 772 773 774 775
	/*
	 * Save us the MSR write below - which is a particular expensive
	 * operation - when the other hyperthread has updated the microcode
	 * already.
	 */
	rev = intel_get_microcode_revision();
	if (rev >= mc->hdr.rev) {
776 777
		ret = UCODE_OK;
		goto out;
778 779
	}

780 781 782 783 784 785
	/*
	 * Writeback and invalidate caches before updating microcode to avoid
	 * internal issues depending on what the microcode is updating.
	 */
	native_wbinvd();

L
Linus Torvalds 已提交
786
	/* write microcode via MSR 0x79 */
787
	wrmsrl(MSR_IA32_UCODE_WRITE, (unsigned long)mc->bits);
788

789
	rev = intel_get_microcode_revision();
L
Linus Torvalds 已提交
790

791
	if (rev != mc->hdr.rev) {
792
		pr_err("CPU%d update to revision 0x%x failed\n",
793
		       cpu, mc->hdr.rev);
794
		return UCODE_ERROR;
795
	}
796

797
	if (bsp && rev != prev_rev) {
798
		pr_info("updated to revision 0x%x, date = %04x-%02x-%02x\n",
799
			rev,
800 801 802
			mc->hdr.date & 0xffff,
			mc->hdr.date >> 24,
			(mc->hdr.date >> 16) & 0xff);
803
		prev_rev = rev;
804
	}
I
Ingo Molnar 已提交
805

806 807 808
	ret = UCODE_UPDATED;

out:
809
	uci->cpu_sig.rev = rev;
810
	c->microcode	 = rev;
811

812
	/* Update boot_cpu_data's revision too, if we're on the BSP: */
813
	if (bsp)
814 815
		boot_cpu_data.microcode = rev;

816
	return ret;
L
Linus Torvalds 已提交
817 818
}

819
static enum ucode_state generic_load_microcode(int cpu, struct iov_iter *iter)
820
{
D
Dmitry Adamushko 已提交
821
	struct ucode_cpu_info *uci = ucode_cpu_info + cpu;
822
	unsigned int curr_mc_size = 0, new_mc_size = 0;
823
	enum ucode_state ret = UCODE_OK;
824 825 826
	int new_rev = uci->cpu_sig.rev;
	u8 *new_mc = NULL, *mc = NULL;
	unsigned int csig, cpf;
827

828
	while (iov_iter_count(iter)) {
D
Dmitry Adamushko 已提交
829
		struct microcode_header_intel mc_header;
830 831
		unsigned int mc_size, data_size;
		u8 *data;
832

833 834
		if (!copy_from_iter_full(&mc_header, sizeof(mc_header), iter)) {
			pr_err("error! Truncated or inaccessible header in microcode data file\n");
835 836 837
			break;
		}

D
Dmitry Adamushko 已提交
838
		mc_size = get_totalsize(&mc_header);
839 840 841 842 843 844 845
		if (mc_size < sizeof(mc_header)) {
			pr_err("error! Bad data in microcode data file (totalsize too small)\n");
			break;
		}
		data_size = mc_size - sizeof(mc_header);
		if (data_size > iov_iter_count(iter)) {
			pr_err("error! Bad data in microcode data file (truncated file?)\n");
D
Dmitry Adamushko 已提交
846 847
			break;
		}
848

849 850
		/* For performance reasons, reuse mc area when possible */
		if (!mc || mc_size > curr_mc_size) {
851
			vfree(mc);
852 853 854 855 856
			mc = vmalloc(mc_size);
			if (!mc)
				break;
			curr_mc_size = mc_size;
		}
D
Dmitry Adamushko 已提交
857

858 859 860
		memcpy(mc, &mc_header, sizeof(mc_header));
		data = mc + sizeof(mc_header);
		if (!copy_from_iter_full(data, data_size, iter) ||
861
		    microcode_sanity_check(mc, 1) < 0) {
D
Dmitry Adamushko 已提交
862 863 864
			break;
		}

865 866
		csig = uci->cpu_sig.sig;
		cpf = uci->cpu_sig.pf;
867
		if (has_newer_microcode(mc, csig, cpf, new_rev)) {
868
			vfree(new_mc);
D
Dmitry Adamushko 已提交
869 870
			new_rev = mc_header.rev;
			new_mc  = mc;
871
			new_mc_size = mc_size;
872
			mc = NULL;	/* trigger new vmalloc */
873
			ret = UCODE_NEW;
874
		}
875 876
	}

877
	vfree(mc);
878

879
	if (iov_iter_count(iter)) {
880
		vfree(new_mc);
881
		return UCODE_ERROR;
882
	}
I
Ingo Molnar 已提交
883

884 885
	if (!new_mc)
		return UCODE_NFOUND;
D
Dmitry Adamushko 已提交
886

887
	vfree(uci->mc);
I
Ingo Molnar 已提交
888 889
	uci->mc = (struct microcode_intel *)new_mc;

890 891 892 893 894
	/*
	 * If early loading microcode is supported, save this mc into
	 * permanent memory. So it will be loaded early when a CPU is hot added
	 * or resumes.
	 */
895
	save_mc_for_early(uci, new_mc, new_mc_size);
896

897 898
	pr_debug("CPU%d found a matching microcode update with version 0x%x (current=0x%x)\n",
		 cpu, new_rev, uci->cpu_sig.rev);
899

900
	return ret;
901 902
}

903 904 905 906
static bool is_blacklisted(unsigned int cpu)
{
	struct cpuinfo_x86 *c = &cpu_data(cpu);

907 908
	/*
	 * Late loading on model 79 with microcode revision less than 0x0b000021
909 910 911
	 * and LLC size per core bigger than 2.5MB may result in a system hang.
	 * This behavior is documented in item BDF90, #334165 (Intel Xeon
	 * Processor E7-8800/4800 v4 Product Family).
912 913 914
	 */
	if (c->x86 == 6 &&
	    c->x86_model == INTEL_FAM6_BROADWELL_X &&
915
	    c->x86_stepping == 0x01 &&
916
	    llc_size_per_core > 2621440 &&
917 918 919
	    c->microcode < 0x0b000021) {
		pr_err_once("Erratum BDF90: late loading with revision < 0x0b000021 (0x%x) disabled.\n", c->microcode);
		pr_err_once("Please consider either early loading through initrd/built-in or a potential BIOS update.\n");
920 921 922 923 924 925
		return true;
	}

	return false;
}

926 927
static enum ucode_state request_microcode_fw(int cpu, struct device *device,
					     bool refresh_fw)
928
{
929
	struct cpuinfo_x86 *c = &cpu_data(cpu);
930
	const struct firmware *firmware;
931
	struct iov_iter iter;
932
	enum ucode_state ret;
933 934
	struct kvec kvec;
	char name[30];
935

936 937 938
	if (is_blacklisted(cpu))
		return UCODE_NFOUND;

P
Peter Oruba 已提交
939
	sprintf(name, "intel-ucode/%02x-%02x-%02x",
940
		c->x86, c->x86_model, c->x86_stepping);
941

942
	if (request_firmware_direct(&firmware, name, device)) {
943
		pr_debug("data file %s load failed\n", name);
944
		return UCODE_NFOUND;
945
	}
D
Dmitry Adamushko 已提交
946

947 948 949 950
	kvec.iov_base = (void *)firmware->data;
	kvec.iov_len = firmware->size;
	iov_iter_kvec(&iter, WRITE, &kvec, 1, firmware->size);
	ret = generic_load_microcode(cpu, &iter);
D
Dmitry Adamushko 已提交
951

952 953
	release_firmware(firmware);

D
Dmitry Adamushko 已提交
954 955 956
	return ret;
}

957 958
static enum ucode_state
request_microcode_user(int cpu, const void __user *buf, size_t size)
D
Dmitry Adamushko 已提交
959
{
960 961 962
	struct iov_iter iter;
	struct iovec iov;

963 964 965
	if (is_blacklisted(cpu))
		return UCODE_NFOUND;

966 967 968 969 970
	iov.iov_base = (void __user *)buf;
	iov.iov_len = size;
	iov_iter_init(&iter, WRITE, &iov, 1, size);

	return generic_load_microcode(cpu, &iter);
971 972
}

H
Hannes Eder 已提交
973
static struct microcode_ops microcode_intel_ops = {
D
Dmitry Adamushko 已提交
974 975
	.request_microcode_user		  = request_microcode_user,
	.request_microcode_fw             = request_microcode_fw,
P
Peter Oruba 已提交
976
	.collect_cpu_info                 = collect_cpu_info,
977
	.apply_microcode                  = apply_microcode_intel,
P
Peter Oruba 已提交
978 979
};

980 981
static int __init calc_llc_size_per_core(struct cpuinfo_x86 *c)
{
982
	u64 llc_size = c->x86_cache_size * 1024ULL;
983 984 985 986 987 988

	do_div(llc_size, c->x86_max_cores);

	return (int)llc_size;
}

989
struct microcode_ops * __init init_intel_microcode(void)
P
Peter Oruba 已提交
990
{
991
	struct cpuinfo_x86 *c = &boot_cpu_data;
992 993 994 995 996 997 998

	if (c->x86_vendor != X86_VENDOR_INTEL || c->x86 < 6 ||
	    cpu_has(c, X86_FEATURE_IA64)) {
		pr_err("Intel CPU family 0x%x not supported\n", c->x86);
		return NULL;
	}

999 1000
	llc_size_per_core = calc_llc_size_per_core(c);

1001
	return &microcode_intel_ops;
P
Peter Oruba 已提交
1002
}