intel.c 23.6 KB
Newer Older
L
Linus Torvalds 已提交
1
/*
2
 * Intel CPU Microcode Update Driver for Linux
L
Linus Torvalds 已提交
3
 *
A
Andrew Morton 已提交
4
 * Copyright (C) 2000-2006 Tigran Aivazian <aivazian.tigran@gmail.com>
5
 *		 2006 Shaohua Li <shaohua.li@intel.com>
L
Linus Torvalds 已提交
6
 *
7 8 9 10 11
 * Intel CPU microcode early update for Linux
 *
 * Copyright (C) 2012 Fenghua Yu <fenghua.yu@intel.com>
 *		      H Peter Anvin" <hpa@zytor.com>
 *
12 13 14 15
 * This program is free software; you can redistribute it and/or
 * modify it under the terms of the GNU General Public License
 * as published by the Free Software Foundation; either version
 * 2 of the License, or (at your option) any later version.
L
Linus Torvalds 已提交
16
 */
17

18 19 20 21 22 23
/*
 * This needs to be before all headers so that pr_debug in printk.h doesn't turn
 * printk calls into no_printk().
 *
 *#define DEBUG
 */
24
#define pr_fmt(fmt) "microcode: " fmt
25

26
#include <linux/earlycpio.h>
I
Ingo Molnar 已提交
27 28
#include <linux/firmware.h>
#include <linux/uaccess.h>
29 30
#include <linux/vmalloc.h>
#include <linux/initrd.h>
I
Ingo Molnar 已提交
31
#include <linux/kernel.h>
32 33
#include <linux/slab.h>
#include <linux/cpu.h>
34
#include <linux/uio.h>
35
#include <linux/mm.h>
L
Linus Torvalds 已提交
36

37
#include <asm/microcode_intel.h>
38
#include <asm/intel-family.h>
I
Ingo Molnar 已提交
39
#include <asm/processor.h>
40 41
#include <asm/tlbflush.h>
#include <asm/setup.h>
I
Ingo Molnar 已提交
42
#include <asm/msr.h>
L
Linus Torvalds 已提交
43

44
static const char ucode_path[] = "kernel/x86/microcode/GenuineIntel.bin";
45

46
/* Current microcode patch used in early patching on the APs. */
47
static struct microcode_intel *intel_ucode_patch;
48

49 50 51
/* last level cache size per core */
static int llc_size_per_core;

52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106
static inline bool cpu_signatures_match(unsigned int s1, unsigned int p1,
					unsigned int s2, unsigned int p2)
{
	if (s1 != s2)
		return false;

	/* Processor flags are either both 0 ... */
	if (!p1 && !p2)
		return true;

	/* ... or they intersect. */
	return p1 & p2;
}

/*
 * Returns 1 if update has been found, 0 otherwise.
 */
static int find_matching_signature(void *mc, unsigned int csig, int cpf)
{
	struct microcode_header_intel *mc_hdr = mc;
	struct extended_sigtable *ext_hdr;
	struct extended_signature *ext_sig;
	int i;

	if (cpu_signatures_match(csig, cpf, mc_hdr->sig, mc_hdr->pf))
		return 1;

	/* Look for ext. headers: */
	if (get_totalsize(mc_hdr) <= get_datasize(mc_hdr) + MC_HEADER_SIZE)
		return 0;

	ext_hdr = mc + get_datasize(mc_hdr) + MC_HEADER_SIZE;
	ext_sig = (void *)ext_hdr + EXT_HEADER_SIZE;

	for (i = 0; i < ext_hdr->count; i++) {
		if (cpu_signatures_match(csig, cpf, ext_sig->sig, ext_sig->pf))
			return 1;
		ext_sig++;
	}
	return 0;
}

/*
 * Returns 1 if update has been found, 0 otherwise.
 */
static int has_newer_microcode(void *mc, unsigned int csig, int cpf, int new_rev)
{
	struct microcode_header_intel *mc_hdr = mc;

	if (mc_hdr->rev <= new_rev)
		return 0;

	return find_matching_signature(mc, csig, cpf);
}

107 108 109
/*
 * Given CPU signature and a microcode patch, this function finds if the
 * microcode patch has matching family and model with the CPU.
110 111 112
 *
 * %true - if there's a match
 * %false - otherwise
113
 */
114 115
static bool microcode_matches(struct microcode_header_intel *mc_header,
			      unsigned long sig)
116 117 118
{
	unsigned long total_size = get_totalsize(mc_header);
	unsigned long data_size = get_datasize(mc_header);
119 120
	struct extended_sigtable *ext_header;
	unsigned int fam_ucode, model_ucode;
121
	struct extended_signature *ext_sig;
122 123
	unsigned int fam, model;
	int ext_sigcount, i;
124

125
	fam   = x86_family(sig);
126 127
	model = x86_model(sig);

128
	fam_ucode   = x86_family(mc_header->sig);
129 130 131
	model_ucode = x86_model(mc_header->sig);

	if (fam == fam_ucode && model == model_ucode)
132
		return true;
133 134 135

	/* Look for ext. headers: */
	if (total_size <= data_size + MC_HEADER_SIZE)
136
		return false;
137 138 139 140 141 142

	ext_header   = (void *) mc_header + data_size + MC_HEADER_SIZE;
	ext_sig      = (void *)ext_header + EXT_HEADER_SIZE;
	ext_sigcount = ext_header->count;

	for (i = 0; i < ext_sigcount; i++) {
143
		fam_ucode   = x86_family(ext_sig->sig);
144 145 146
		model_ucode = x86_model(ext_sig->sig);

		if (fam == fam_ucode && model == model_ucode)
147
			return true;
148 149 150

		ext_sig++;
	}
151
	return false;
152 153
}

154
static struct ucode_patch *memdup_patch(void *data, unsigned int size)
155
{
156
	struct ucode_patch *p;
157

158
	p = kzalloc(sizeof(struct ucode_patch), GFP_KERNEL);
159
	if (!p)
160
		return NULL;
161

162 163 164
	p->data = kmemdup(data, size, GFP_KERNEL);
	if (!p->data) {
		kfree(p);
165
		return NULL;
166 167
	}

168
	return p;
169 170
}

171
static void save_microcode_patch(void *data, unsigned int size)
172 173
{
	struct microcode_header_intel *mc_hdr, *mc_saved_hdr;
174
	struct ucode_patch *iter, *tmp, *p = NULL;
175
	bool prev_found = false;
176 177
	unsigned int sig, pf;

178
	mc_hdr = (struct microcode_header_intel *)data;
179

180 181
	list_for_each_entry_safe(iter, tmp, &microcode_cache, plist) {
		mc_saved_hdr = (struct microcode_header_intel *)iter->data;
182 183 184
		sig	     = mc_saved_hdr->sig;
		pf	     = mc_saved_hdr->pf;

185 186
		if (find_matching_signature(data, sig, pf)) {
			prev_found = true;
187

188 189
			if (mc_hdr->rev <= mc_saved_hdr->rev)
				continue;
190

191 192
			p = memdup_patch(data, size);
			if (!p)
193
				pr_err("Error allocating buffer %p\n", data);
194
			else {
195
				list_replace(&iter->plist, &p->plist);
196 197 198
				kfree(iter->data);
				kfree(iter);
			}
199
		}
200 201
	}

202 203 204 205 206
	/*
	 * There weren't any previous patches found in the list cache; save the
	 * newly found.
	 */
	if (!prev_found) {
207 208
		p = memdup_patch(data, size);
		if (!p)
209 210 211 212
			pr_err("Error allocating buffer for %p\n", data);
		else
			list_add_tail(&p->plist, &microcode_cache);
	}
213

214 215 216
	if (!p)
		return;

217 218 219 220 221
	/*
	 * Save for early loading. On 32-bit, that needs to be a physical
	 * address as the APs are running from physical addresses, before
	 * paging has been enabled.
	 */
222 223 224 225
	if (IS_ENABLED(CONFIG_X86_32))
		intel_ucode_patch = (struct microcode_intel *)__pa_nodebug(p->data);
	else
		intel_ucode_patch = p->data;
226 227
}

228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325
static int microcode_sanity_check(void *mc, int print_err)
{
	unsigned long total_size, data_size, ext_table_size;
	struct microcode_header_intel *mc_header = mc;
	struct extended_sigtable *ext_header = NULL;
	u32 sum, orig_sum, ext_sigcount = 0, i;
	struct extended_signature *ext_sig;

	total_size = get_totalsize(mc_header);
	data_size = get_datasize(mc_header);

	if (data_size + MC_HEADER_SIZE > total_size) {
		if (print_err)
			pr_err("Error: bad microcode data file size.\n");
		return -EINVAL;
	}

	if (mc_header->ldrver != 1 || mc_header->hdrver != 1) {
		if (print_err)
			pr_err("Error: invalid/unknown microcode update format.\n");
		return -EINVAL;
	}

	ext_table_size = total_size - (MC_HEADER_SIZE + data_size);
	if (ext_table_size) {
		u32 ext_table_sum = 0;
		u32 *ext_tablep;

		if ((ext_table_size < EXT_HEADER_SIZE)
		 || ((ext_table_size - EXT_HEADER_SIZE) % EXT_SIGNATURE_SIZE)) {
			if (print_err)
				pr_err("Error: truncated extended signature table.\n");
			return -EINVAL;
		}

		ext_header = mc + MC_HEADER_SIZE + data_size;
		if (ext_table_size != exttable_size(ext_header)) {
			if (print_err)
				pr_err("Error: extended signature table size mismatch.\n");
			return -EFAULT;
		}

		ext_sigcount = ext_header->count;

		/*
		 * Check extended table checksum: the sum of all dwords that
		 * comprise a valid table must be 0.
		 */
		ext_tablep = (u32 *)ext_header;

		i = ext_table_size / sizeof(u32);
		while (i--)
			ext_table_sum += ext_tablep[i];

		if (ext_table_sum) {
			if (print_err)
				pr_warn("Bad extended signature table checksum, aborting.\n");
			return -EINVAL;
		}
	}

	/*
	 * Calculate the checksum of update data and header. The checksum of
	 * valid update data and header including the extended signature table
	 * must be 0.
	 */
	orig_sum = 0;
	i = (MC_HEADER_SIZE + data_size) / sizeof(u32);
	while (i--)
		orig_sum += ((u32 *)mc)[i];

	if (orig_sum) {
		if (print_err)
			pr_err("Bad microcode data checksum, aborting.\n");
		return -EINVAL;
	}

	if (!ext_table_size)
		return 0;

	/*
	 * Check extended signature checksum: 0 => valid.
	 */
	for (i = 0; i < ext_sigcount; i++) {
		ext_sig = (void *)ext_header + EXT_HEADER_SIZE +
			  EXT_SIGNATURE_SIZE * i;

		sum = (mc_header->sig + mc_header->pf + mc_header->cksum) -
		      (ext_sig->sig + ext_sig->pf + ext_sig->cksum);
		if (sum) {
			if (print_err)
				pr_err("Bad extended signature checksum, aborting.\n");
			return -EINVAL;
		}
	}
	return 0;
}

326 327 328 329
/*
 * Get microcode matching with BSP's model. Only CPUs with the same model as
 * BSP can stay in the platform.
 */
330 331
static struct microcode_intel *
scan_microcode(void *data, size_t size, struct ucode_cpu_info *uci, bool save)
332
{
333
	struct microcode_header_intel *mc_header;
334
	struct microcode_intel *patch = NULL;
335
	unsigned int mc_size;
336

337 338
	while (size) {
		if (size < sizeof(struct microcode_header_intel))
339 340
			break;

341
		mc_header = (struct microcode_header_intel *)data;
342 343

		mc_size = get_totalsize(mc_header);
344 345 346
		if (!mc_size ||
		    mc_size > size ||
		    microcode_sanity_check(data, 0) < 0)
347 348
			break;

349
		size -= mc_size;
350

351 352
		if (!microcode_matches(mc_header, uci->cpu_sig.sig)) {
			data += mc_size;
353 354 355
			continue;
		}

356 357 358 359
		if (save) {
			save_microcode_patch(data, mc_size);
			goto next;
		}
360 361


362 363 364 365 366 367
		if (!patch) {
			if (!has_newer_microcode(data,
						 uci->cpu_sig.sig,
						 uci->cpu_sig.pf,
						 uci->cpu_sig.rev))
				goto next;
368

369 370 371 372 373 374 375 376 377
		} else {
			struct microcode_header_intel *phdr = &patch->hdr;

			if (!has_newer_microcode(data,
						 phdr->sig,
						 phdr->pf,
						 phdr->rev))
				goto next;
		}
378

379 380
		/* We have a newer patch, save it. */
		patch = data;
381

382 383 384
next:
		data += mc_size;
	}
385

386 387 388 389
	if (size)
		return NULL;

	return patch;
390 391 392 393 394 395
}

static int collect_cpu_info_early(struct ucode_cpu_info *uci)
{
	unsigned int val[2];
	unsigned int family, model;
396
	struct cpu_signature csig = { 0 };
397 398 399 400 401 402 403 404 405
	unsigned int eax, ebx, ecx, edx;

	memset(uci, 0, sizeof(*uci));

	eax = 0x00000001;
	ecx = 0;
	native_cpuid(&eax, &ebx, &ecx, &edx);
	csig.sig = eax;

406 407
	family = x86_family(eax);
	model  = x86_model(eax);
408 409 410 411 412 413 414

	if ((model >= 5) || (family > 6)) {
		/* get processor flags from MSR 0x17 */
		native_rdmsr(MSR_IA32_PLATFORM_ID, val[0], val[1]);
		csig.pf = 1 << ((val[1] >> 18) & 7);
	}

415
	csig.rev = intel_get_microcode_revision();
416 417 418 419 420 421 422 423 424

	uci->cpu_sig = csig;
	uci->valid = 1;

	return 0;
}

static void show_saved_mc(void)
{
425
#ifdef DEBUG
426
	int i = 0, j;
427 428
	unsigned int sig, pf, rev, total_size, data_size, date;
	struct ucode_cpu_info uci;
429
	struct ucode_patch *p;
430

431
	if (list_empty(&microcode_cache)) {
432 433 434 435 436 437
		pr_debug("no microcode data saved.\n");
		return;
	}

	collect_cpu_info_early(&uci);

438 439 440
	sig	= uci.cpu_sig.sig;
	pf	= uci.cpu_sig.pf;
	rev	= uci.cpu_sig.rev;
441 442
	pr_debug("CPU: sig=0x%x, pf=0x%x, rev=0x%x\n", sig, pf, rev);

443
	list_for_each_entry(p, &microcode_cache, plist) {
444 445 446
		struct microcode_header_intel *mc_saved_header;
		struct extended_sigtable *ext_header;
		struct extended_signature *ext_sig;
447 448 449 450 451 452 453 454
		int ext_sigcount;

		mc_saved_header = (struct microcode_header_intel *)p->data;

		sig	= mc_saved_header->sig;
		pf	= mc_saved_header->pf;
		rev	= mc_saved_header->rev;
		date	= mc_saved_header->date;
455

456 457
		total_size	= get_totalsize(mc_saved_header);
		data_size	= get_datasize(mc_saved_header);
458

M
Masanari Iida 已提交
459
		pr_debug("mc_saved[%d]: sig=0x%x, pf=0x%x, rev=0x%x, total size=0x%x, date = %04x-%02x-%02x\n",
460
			 i++, sig, pf, rev, total_size,
461 462 463 464 465 466 467 468
			 date & 0xffff,
			 date >> 24,
			 (date >> 16) & 0xff);

		/* Look for ext. headers: */
		if (total_size <= data_size + MC_HEADER_SIZE)
			continue;

469
		ext_header = (void *)mc_saved_header + data_size + MC_HEADER_SIZE;
470 471 472 473 474 475 476 477 478 479 480 481 482 483
		ext_sigcount = ext_header->count;
		ext_sig = (void *)ext_header + EXT_HEADER_SIZE;

		for (j = 0; j < ext_sigcount; j++) {
			sig = ext_sig->sig;
			pf = ext_sig->pf;

			pr_debug("\tExtended[%d]: sig=0x%x, pf=0x%x\n",
				 j, sig, pf);

			ext_sig++;
		}
	}
#endif
484
}
485 486

/*
487 488
 * Save this microcode patch. It will be loaded early when a CPU is
 * hot-added or resumes.
489
 */
490
static void save_mc_for_early(u8 *mc, unsigned int size)
491
{
492
	/* Synchronization during CPU hotplug. */
493 494
	static DEFINE_MUTEX(x86_cpu_microcode_mutex);

495 496
	mutex_lock(&x86_cpu_microcode_mutex);

497
	save_microcode_patch(mc, size);
498 499 500
	show_saved_mc();

	mutex_unlock(&x86_cpu_microcode_mutex);
501
}
502

503
static bool load_builtin_intel_microcode(struct cpio_data *cp)
504
{
505
	unsigned int eax = 1, ebx, ecx = 0, edx;
506 507
	char name[30];

508 509 510
	if (IS_ENABLED(CONFIG_X86_32))
		return false;

511 512
	native_cpuid(&eax, &ebx, &ecx, &edx);

513 514
	sprintf(name, "intel-ucode/%02x-%02x-%02x",
		      x86_family(eax), x86_model(eax), x86_stepping(eax));
515 516 517 518 519 520 521 522 523 524

	return get_builtin_firmware(cp, name);
}

/*
 * Print ucode update info.
 */
static void
print_ucode_info(struct ucode_cpu_info *uci, unsigned int date)
{
525 526 527 528 529
	pr_info_once("microcode updated early to revision 0x%x, date = %04x-%02x-%02x\n",
		     uci->cpu_sig.rev,
		     date & 0xffff,
		     date >> 24,
		     (date >> 16) & 0xff);
530 531 532 533 534 535 536 537 538 539 540 541 542 543 544 545 546 547 548 549 550 551
}

#ifdef CONFIG_X86_32

static int delay_ucode_info;
static int current_mc_date;

/*
 * Print early updated ucode info after printk works. This is delayed info dump.
 */
void show_ucode_info_early(void)
{
	struct ucode_cpu_info uci;

	if (delay_ucode_info) {
		collect_cpu_info_early(&uci);
		print_ucode_info(&uci, current_mc_date);
		delay_ucode_info = 0;
	}
}

/*
552
 * At this point, we can not call printk() yet. Delay printing microcode info in
553 554 555 556
 * show_ucode_info_early() until printk() works.
 */
static void print_ucode(struct ucode_cpu_info *uci)
{
557
	struct microcode_intel *mc;
558 559 560
	int *delay_ucode_info_p;
	int *current_mc_date_p;

561 562
	mc = uci->mc;
	if (!mc)
563 564 565 566 567 568
		return;

	delay_ucode_info_p = (int *)__pa_nodebug(&delay_ucode_info);
	current_mc_date_p = (int *)__pa_nodebug(&current_mc_date);

	*delay_ucode_info_p = 1;
569
	*current_mc_date_p = mc->hdr.date;
570 571 572 573 574
}
#else

static inline void print_ucode(struct ucode_cpu_info *uci)
{
575
	struct microcode_intel *mc;
576

577 578
	mc = uci->mc;
	if (!mc)
579 580
		return;

581
	print_ucode_info(uci, mc->hdr.date);
582 583 584 585 586
}
#endif

static int apply_microcode_early(struct ucode_cpu_info *uci, bool early)
{
587
	struct microcode_intel *mc;
588
	u32 rev;
589

590 591
	mc = uci->mc;
	if (!mc)
592 593
		return 0;

594 595 596 597 598 599 600 601 602 603 604
	/*
	 * Save us the MSR write below - which is a particular expensive
	 * operation - when the other hyperthread has updated the microcode
	 * already.
	 */
	rev = intel_get_microcode_revision();
	if (rev >= mc->hdr.rev) {
		uci->cpu_sig.rev = rev;
		return UCODE_OK;
	}

605 606 607 608 609 610
	/*
	 * Writeback and invalidate caches before updating microcode to avoid
	 * internal issues depending on what the microcode is updating.
	 */
	native_wbinvd();

611
	/* write microcode via MSR 0x79 */
612
	native_wrmsrl(MSR_IA32_UCODE_WRITE, (unsigned long)mc->bits);
613

614 615
	rev = intel_get_microcode_revision();
	if (rev != mc->hdr.rev)
616 617
		return -1;

618
	uci->cpu_sig.rev = rev;
619 620 621 622

	if (early)
		print_ucode(uci);
	else
623
		print_ucode_info(uci, mc->hdr.date);
624 625 626 627 628 629

	return 0;
}

int __init save_microcode_in_initrd_intel(void)
{
630 631
	struct ucode_cpu_info uci;
	struct cpio_data cp;
632

633 634 635 636 637 638 639 640
	/*
	 * initrd is going away, clear patch ptr. We will scan the microcode one
	 * last time before jettisoning and save a patch, if found. Then we will
	 * update that pointer too, with a stable patch address to use when
	 * resuming the cores.
	 */
	intel_ucode_patch = NULL;

641 642
	if (!load_builtin_intel_microcode(&cp))
		cp = find_microcode_in_initrd(ucode_path, false);
643

644 645
	if (!(cp.data && cp.size))
		return 0;
646

647
	collect_cpu_info_early(&uci);
648

649
	scan_microcode(cp.data, cp.size, &uci, true);
650

651
	show_saved_mc();
652

653 654
	return 0;
}
655

656 657 658 659 660 661 662 663
/*
 * @res_patch, output: a pointer to the patch we found.
 */
static struct microcode_intel *__load_ucode_intel(struct ucode_cpu_info *uci)
{
	static const char *path;
	struct cpio_data cp;
	bool use_pa;
664

665 666 667 668 669 670
	if (IS_ENABLED(CONFIG_X86_32)) {
		path	  = (const char *)__pa_nodebug(ucode_path);
		use_pa	  = true;
	} else {
		path	  = ucode_path;
		use_pa	  = false;
671 672
	}

673 674 675
	/* try built-in microcode first */
	if (!load_builtin_intel_microcode(&cp))
		cp = find_microcode_in_initrd(path, use_pa);
676

677 678
	if (!(cp.data && cp.size))
		return NULL;
679

680
	collect_cpu_info_early(uci);
681

682
	return scan_microcode(cp.data, cp.size, uci, false);
683 684
}

685
void __init load_ucode_intel_bsp(void)
686
{
687
	struct microcode_intel *patch;
688 689
	struct ucode_cpu_info uci;

690 691
	patch = __load_ucode_intel(&uci);
	if (!patch)
692 693
		return;

694
	uci.mc = patch;
695 696 697 698

	apply_microcode_early(&uci, true);
}

699
void load_ucode_intel_ap(void)
700
{
701 702
	struct microcode_intel *patch, **iup;
	struct ucode_cpu_info uci;
703

704 705 706 707 708 709 710 711 712 713
	if (IS_ENABLED(CONFIG_X86_32))
		iup = (struct microcode_intel **) __pa_nodebug(&intel_ucode_patch);
	else
		iup = &intel_ucode_patch;

reget:
	if (!*iup) {
		patch = __load_ucode_intel(&uci);
		if (!patch)
			return;
714

715 716 717 718 719 720 721 722 723 724 725
		*iup = patch;
	}

	uci.mc = *iup;

	if (apply_microcode_early(&uci, true)) {
		/* Mixed-silicon system? Try to refetch the proper patch: */
		*iup = NULL;

		goto reget;
	}
726 727
}

728
static struct microcode_intel *find_patch(struct ucode_cpu_info *uci)
729
{
730 731
	struct microcode_header_intel *phdr;
	struct ucode_patch *iter, *tmp;
732

733
	list_for_each_entry_safe(iter, tmp, &microcode_cache, plist) {
734

735
		phdr = (struct microcode_header_intel *)iter->data;
736

737 738
		if (phdr->rev <= uci->cpu_sig.rev)
			continue;
739

740 741 742 743
		if (!find_matching_signature(phdr,
					     uci->cpu_sig.sig,
					     uci->cpu_sig.pf))
			continue;
744

745 746 747
		return iter->data;
	}
	return NULL;
748 749 750 751
}

void reload_ucode_intel(void)
{
752
	struct microcode_intel *p;
753 754 755 756
	struct ucode_cpu_info uci;

	collect_cpu_info_early(&uci);

757 758
	p = find_patch(&uci);
	if (!p)
759 760
		return;

761 762
	uci.mc = p;

763 764 765
	apply_microcode_early(&uci, false);
}

766
static int collect_cpu_info(int cpu_num, struct cpu_signature *csig)
L
Linus Torvalds 已提交
767
{
768
	static struct cpu_signature prev;
769
	struct cpuinfo_x86 *c = &cpu_data(cpu_num);
L
Linus Torvalds 已提交
770 771
	unsigned int val[2];

772
	memset(csig, 0, sizeof(*csig));
L
Linus Torvalds 已提交
773

774
	csig->sig = cpuid_eax(0x00000001);
775 776 777 778

	if ((c->x86_model >= 5) || (c->x86 > 6)) {
		/* get processor flags from MSR 0x17 */
		rdmsr(MSR_IA32_PLATFORM_ID, val[0], val[1]);
779
		csig->pf = 1 << ((val[1] >> 18) & 7);
L
Linus Torvalds 已提交
780 781
	}

782
	csig->rev = c->microcode;
783 784 785 786 787 788 789

	/* No extra locking on prev, races are harmless. */
	if (csig->sig != prev.sig || csig->pf != prev.pf || csig->rev != prev.rev) {
		pr_info("sig=0x%x, pf=0x%x, revision=0x%x\n",
			csig->sig, csig->pf, csig->rev);
		prev = *csig;
	}
790 791

	return 0;
L
Linus Torvalds 已提交
792 793
}

794
static enum ucode_state apply_microcode_intel(int cpu)
L
Linus Torvalds 已提交
795
{
796
	struct ucode_cpu_info *uci = ucode_cpu_info + cpu;
797
	struct cpuinfo_x86 *c = &cpu_data(cpu);
798
	struct microcode_intel *mc;
799
	enum ucode_state ret;
800
	static int prev_rev;
801
	u32 rev;
I
Ingo Molnar 已提交
802

803
	/* We should bind the task to the CPU */
804
	if (WARN_ON(raw_smp_processor_id() != cpu))
805
		return UCODE_ERROR;
806

807 808
	/* Look for a newer patch in our cache: */
	mc = find_patch(uci);
809
	if (!mc) {
810
		mc = uci->mc;
811
		if (!mc)
812
			return UCODE_NFOUND;
813
	}
814

815 816 817 818 819 820 821
	/*
	 * Save us the MSR write below - which is a particular expensive
	 * operation - when the other hyperthread has updated the microcode
	 * already.
	 */
	rev = intel_get_microcode_revision();
	if (rev >= mc->hdr.rev) {
822 823
		ret = UCODE_OK;
		goto out;
824 825
	}

826 827 828 829 830 831
	/*
	 * Writeback and invalidate caches before updating microcode to avoid
	 * internal issues depending on what the microcode is updating.
	 */
	native_wbinvd();

L
Linus Torvalds 已提交
832
	/* write microcode via MSR 0x79 */
833
	wrmsrl(MSR_IA32_UCODE_WRITE, (unsigned long)mc->bits);
834

835
	rev = intel_get_microcode_revision();
L
Linus Torvalds 已提交
836

837
	if (rev != mc->hdr.rev) {
838
		pr_err("CPU%d update to revision 0x%x failed\n",
839
		       cpu, mc->hdr.rev);
840
		return UCODE_ERROR;
841
	}
842

843
	if (rev != prev_rev) {
844
		pr_info("updated to revision 0x%x, date = %04x-%02x-%02x\n",
845
			rev,
846 847 848
			mc->hdr.date & 0xffff,
			mc->hdr.date >> 24,
			(mc->hdr.date >> 16) & 0xff);
849
		prev_rev = rev;
850
	}
I
Ingo Molnar 已提交
851

852 853 854
	ret = UCODE_UPDATED;

out:
855
	uci->cpu_sig.rev = rev;
856
	c->microcode	 = rev;
857

858 859 860 861
	/* Update boot_cpu_data's revision too, if we're on the BSP: */
	if (c->cpu_index == boot_cpu_data.cpu_index)
		boot_cpu_data.microcode = rev;

862
	return ret;
L
Linus Torvalds 已提交
863 864
}

865
static enum ucode_state generic_load_microcode(int cpu, struct iov_iter *iter)
866
{
D
Dmitry Adamushko 已提交
867
	struct ucode_cpu_info *uci = ucode_cpu_info + cpu;
868
	unsigned int curr_mc_size = 0, new_mc_size = 0;
869
	enum ucode_state ret = UCODE_OK;
870 871 872
	int new_rev = uci->cpu_sig.rev;
	u8 *new_mc = NULL, *mc = NULL;
	unsigned int csig, cpf;
873

874
	while (iov_iter_count(iter)) {
D
Dmitry Adamushko 已提交
875
		struct microcode_header_intel mc_header;
876 877
		unsigned int mc_size, data_size;
		u8 *data;
878

879 880
		if (!copy_from_iter_full(&mc_header, sizeof(mc_header), iter)) {
			pr_err("error! Truncated or inaccessible header in microcode data file\n");
881 882 883
			break;
		}

D
Dmitry Adamushko 已提交
884
		mc_size = get_totalsize(&mc_header);
885 886 887 888 889 890 891
		if (mc_size < sizeof(mc_header)) {
			pr_err("error! Bad data in microcode data file (totalsize too small)\n");
			break;
		}
		data_size = mc_size - sizeof(mc_header);
		if (data_size > iov_iter_count(iter)) {
			pr_err("error! Bad data in microcode data file (truncated file?)\n");
D
Dmitry Adamushko 已提交
892 893
			break;
		}
894

895 896
		/* For performance reasons, reuse mc area when possible */
		if (!mc || mc_size > curr_mc_size) {
897
			vfree(mc);
898 899 900 901 902
			mc = vmalloc(mc_size);
			if (!mc)
				break;
			curr_mc_size = mc_size;
		}
D
Dmitry Adamushko 已提交
903

904 905 906
		memcpy(mc, &mc_header, sizeof(mc_header));
		data = mc + sizeof(mc_header);
		if (!copy_from_iter_full(data, data_size, iter) ||
907
		    microcode_sanity_check(mc, 1) < 0) {
D
Dmitry Adamushko 已提交
908 909 910
			break;
		}

911 912
		csig = uci->cpu_sig.sig;
		cpf = uci->cpu_sig.pf;
913
		if (has_newer_microcode(mc, csig, cpf, new_rev)) {
914
			vfree(new_mc);
D
Dmitry Adamushko 已提交
915 916
			new_rev = mc_header.rev;
			new_mc  = mc;
917
			new_mc_size = mc_size;
918
			mc = NULL;	/* trigger new vmalloc */
919
			ret = UCODE_NEW;
920
		}
921 922
	}

923
	vfree(mc);
924

925
	if (iov_iter_count(iter)) {
926
		vfree(new_mc);
927
		return UCODE_ERROR;
928
	}
I
Ingo Molnar 已提交
929

930 931
	if (!new_mc)
		return UCODE_NFOUND;
D
Dmitry Adamushko 已提交
932

933
	vfree(uci->mc);
I
Ingo Molnar 已提交
934 935
	uci->mc = (struct microcode_intel *)new_mc;

936 937 938 939 940
	/*
	 * If early loading microcode is supported, save this mc into
	 * permanent memory. So it will be loaded early when a CPU is hot added
	 * or resumes.
	 */
941
	save_mc_for_early(new_mc, new_mc_size);
942

943 944
	pr_debug("CPU%d found a matching microcode update with version 0x%x (current=0x%x)\n",
		 cpu, new_rev, uci->cpu_sig.rev);
945

946
	return ret;
947 948
}

949 950 951 952
static bool is_blacklisted(unsigned int cpu)
{
	struct cpuinfo_x86 *c = &cpu_data(cpu);

953 954
	/*
	 * Late loading on model 79 with microcode revision less than 0x0b000021
955 956 957
	 * and LLC size per core bigger than 2.5MB may result in a system hang.
	 * This behavior is documented in item BDF90, #334165 (Intel Xeon
	 * Processor E7-8800/4800 v4 Product Family).
958 959 960
	 */
	if (c->x86 == 6 &&
	    c->x86_model == INTEL_FAM6_BROADWELL_X &&
961
	    c->x86_stepping == 0x01 &&
962
	    llc_size_per_core > 2621440 &&
963 964 965
	    c->microcode < 0x0b000021) {
		pr_err_once("Erratum BDF90: late loading with revision < 0x0b000021 (0x%x) disabled.\n", c->microcode);
		pr_err_once("Please consider either early loading through initrd/built-in or a potential BIOS update.\n");
966 967 968 969 970 971
		return true;
	}

	return false;
}

972 973
static enum ucode_state request_microcode_fw(int cpu, struct device *device,
					     bool refresh_fw)
974
{
975
	struct cpuinfo_x86 *c = &cpu_data(cpu);
976
	const struct firmware *firmware;
977
	struct iov_iter iter;
978
	enum ucode_state ret;
979 980
	struct kvec kvec;
	char name[30];
981

982 983 984
	if (is_blacklisted(cpu))
		return UCODE_NFOUND;

P
Peter Oruba 已提交
985
	sprintf(name, "intel-ucode/%02x-%02x-%02x",
986
		c->x86, c->x86_model, c->x86_stepping);
987

988
	if (request_firmware_direct(&firmware, name, device)) {
989
		pr_debug("data file %s load failed\n", name);
990
		return UCODE_NFOUND;
991
	}
D
Dmitry Adamushko 已提交
992

993 994 995 996
	kvec.iov_base = (void *)firmware->data;
	kvec.iov_len = firmware->size;
	iov_iter_kvec(&iter, WRITE, &kvec, 1, firmware->size);
	ret = generic_load_microcode(cpu, &iter);
D
Dmitry Adamushko 已提交
997

998 999
	release_firmware(firmware);

D
Dmitry Adamushko 已提交
1000 1001 1002
	return ret;
}

1003 1004
static enum ucode_state
request_microcode_user(int cpu, const void __user *buf, size_t size)
D
Dmitry Adamushko 已提交
1005
{
1006 1007 1008
	struct iov_iter iter;
	struct iovec iov;

1009 1010 1011
	if (is_blacklisted(cpu))
		return UCODE_NFOUND;

1012 1013 1014 1015 1016
	iov.iov_base = (void __user *)buf;
	iov.iov_len = size;
	iov_iter_init(&iter, WRITE, &iov, 1, size);

	return generic_load_microcode(cpu, &iter);
1017 1018
}

H
Hannes Eder 已提交
1019
static struct microcode_ops microcode_intel_ops = {
D
Dmitry Adamushko 已提交
1020 1021
	.request_microcode_user		  = request_microcode_user,
	.request_microcode_fw             = request_microcode_fw,
P
Peter Oruba 已提交
1022
	.collect_cpu_info                 = collect_cpu_info,
1023
	.apply_microcode                  = apply_microcode_intel,
P
Peter Oruba 已提交
1024 1025
};

1026 1027
static int __init calc_llc_size_per_core(struct cpuinfo_x86 *c)
{
1028
	u64 llc_size = c->x86_cache_size * 1024ULL;
1029 1030 1031 1032 1033 1034

	do_div(llc_size, c->x86_max_cores);

	return (int)llc_size;
}

1035
struct microcode_ops * __init init_intel_microcode(void)
P
Peter Oruba 已提交
1036
{
1037
	struct cpuinfo_x86 *c = &boot_cpu_data;
1038 1039 1040 1041 1042 1043 1044

	if (c->x86_vendor != X86_VENDOR_INTEL || c->x86 < 6 ||
	    cpu_has(c, X86_FEATURE_IA64)) {
		pr_err("Intel CPU family 0x%x not supported\n", c->x86);
		return NULL;
	}

1045 1046
	llc_size_per_core = calc_llc_size_per_core(c);

1047
	return &microcode_intel_ops;
P
Peter Oruba 已提交
1048
}