process_64.c 19.2 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5
/*
 *  Copyright (C) 1995  Linus Torvalds
 *
 *  Pentium III FXSR, SSE support
 *	Gareth Hughes <gareth@valinux.com>, May 2000
6
 *
L
Linus Torvalds 已提交
7 8
 *  X86-64 port
 *	Andi Kleen.
A
Ashok Raj 已提交
9 10
 *
 *	CPU hotplug support - ashok.raj@intel.com
L
Linus Torvalds 已提交
11 12 13 14 15 16
 */

/*
 * This file handles the architecture-dependent parts of process handling..
 */

A
Ashok Raj 已提交
17
#include <linux/cpu.h>
L
Linus Torvalds 已提交
18 19
#include <linux/errno.h>
#include <linux/sched.h>
20
#include <linux/sched/task.h>
21
#include <linux/sched/task_stack.h>
22
#include <linux/fs.h>
L
Linus Torvalds 已提交
23 24 25 26 27 28 29 30
#include <linux/kernel.h>
#include <linux/mm.h>
#include <linux/elfcore.h>
#include <linux/smp.h>
#include <linux/slab.h>
#include <linux/user.h>
#include <linux/interrupt.h>
#include <linux/delay.h>
31
#include <linux/export.h>
L
Linus Torvalds 已提交
32
#include <linux/ptrace.h>
A
Andi Kleen 已提交
33
#include <linux/notifier.h>
34
#include <linux/kprobes.h>
35
#include <linux/kdebug.h>
36
#include <linux/prctl.h>
37 38
#include <linux/uaccess.h>
#include <linux/io.h>
39
#include <linux/ftrace.h>
40
#include <linux/syscalls.h>
L
Linus Torvalds 已提交
41 42 43

#include <asm/pgtable.h>
#include <asm/processor.h>
44
#include <asm/fpu/internal.h>
L
Linus Torvalds 已提交
45 46 47 48 49
#include <asm/mmu_context.h>
#include <asm/prctl.h>
#include <asm/desc.h>
#include <asm/proto.h>
#include <asm/ia32.h>
50
#include <asm/syscalls.h>
51
#include <asm/debugreg.h>
52
#include <asm/switch_to.h>
53
#include <asm/xen/hypervisor.h>
54
#include <asm/vdso.h>
55
#include <asm/intel_rdt_sched.h>
56 57 58 59 60
#include <asm/unistd.h>
#ifdef CONFIG_IA32_EMULATION
/* Not included via unistd.h */
#include <asm/unistd_32_ia32.h>
#endif
L
Linus Torvalds 已提交
61

62 63
#include "process.h"

64
__visible DEFINE_PER_CPU(unsigned long, rsp_scratch);
L
Linus Torvalds 已提交
65

66
/* Prints also some state that isn't saved in the pt_regs */
67
void __show_regs(struct pt_regs *regs, enum show_regs_mode mode)
L
Linus Torvalds 已提交
68 69
{
	unsigned long cr0 = 0L, cr2 = 0L, cr3 = 0L, cr4 = 0L, fs, gs, shadowgs;
70
	unsigned long d0, d1, d2, d3, d6, d7;
71 72
	unsigned int fsindex, gsindex;
	unsigned int ds, cs, es;
73

74 75
	show_iret_regs(regs);

76 77 78 79 80
	if (regs->orig_ax != -1)
		pr_cont(" ORIG_RAX: %016lx\n", regs->orig_ax);
	else
		pr_cont("\n");

81
	printk(KERN_DEFAULT "RAX: %016lx RBX: %016lx RCX: %016lx\n",
82
	       regs->ax, regs->bx, regs->cx);
83
	printk(KERN_DEFAULT "RDX: %016lx RSI: %016lx RDI: %016lx\n",
84
	       regs->dx, regs->si, regs->di);
85
	printk(KERN_DEFAULT "RBP: %016lx R08: %016lx R09: %016lx\n",
86
	       regs->bp, regs->r8, regs->r9);
87
	printk(KERN_DEFAULT "R10: %016lx R11: %016lx R12: %016lx\n",
88
	       regs->r10, regs->r11, regs->r12);
89
	printk(KERN_DEFAULT "R13: %016lx R14: %016lx R15: %016lx\n",
90
	       regs->r13, regs->r14, regs->r15);
L
Linus Torvalds 已提交
91

92
	if (mode == SHOW_REGS_SHORT)
93 94
		return;

95 96 97 98 99 100 101 102
	if (mode == SHOW_REGS_USER) {
		rdmsrl(MSR_FS_BASE, fs);
		rdmsrl(MSR_KERNEL_GS_BASE, shadowgs);
		printk(KERN_DEFAULT "FS:  %016lx GS:  %016lx\n",
		       fs, shadowgs);
		return;
	}

103 104 105
	asm("movl %%ds,%0" : "=r" (ds));
	asm("movl %%cs,%0" : "=r" (cs));
	asm("movl %%es,%0" : "=r" (es));
L
Linus Torvalds 已提交
106 107 108 109
	asm("movl %%fs,%0" : "=r" (fsindex));
	asm("movl %%gs,%0" : "=r" (gsindex));

	rdmsrl(MSR_FS_BASE, fs);
110 111
	rdmsrl(MSR_GS_BASE, gs);
	rdmsrl(MSR_KERNEL_GS_BASE, shadowgs);
L
Linus Torvalds 已提交
112

113 114
	cr0 = read_cr0();
	cr2 = read_cr2();
115
	cr3 = __read_cr3();
116
	cr4 = __read_cr4();
L
Linus Torvalds 已提交
117

118
	printk(KERN_DEFAULT "FS:  %016lx(%04x) GS:%016lx(%04x) knlGS:%016lx\n",
119
	       fs, fsindex, gs, gsindex, shadowgs);
120
	printk(KERN_DEFAULT "CS:  %04x DS: %04x ES: %04x CR0: %016lx\n", cs, ds,
121
			es, cr0);
122
	printk(KERN_DEFAULT "CR2: %016lx CR3: %016lx CR4: %016lx\n", cr2, cr3,
123
			cr4);
124 125 126 127 128 129 130

	get_debugreg(d0, 0);
	get_debugreg(d1, 1);
	get_debugreg(d2, 2);
	get_debugreg(d3, 3);
	get_debugreg(d6, 6);
	get_debugreg(d7, 7);
131 132

	/* Only print out debug registers if they are in their non-default state. */
133 134 135 136 137 138 139
	if (!((d0 == 0) && (d1 == 0) && (d2 == 0) && (d3 == 0) &&
	    (d6 == DR6_RESERVED) && (d7 == 0x400))) {
		printk(KERN_DEFAULT "DR0: %016lx DR1: %016lx DR2: %016lx\n",
		       d0, d1, d2);
		printk(KERN_DEFAULT "DR3: %016lx DR6: %016lx DR7: %016lx\n",
		       d3, d6, d7);
	}
140

141 142
	if (boot_cpu_has(X86_FEATURE_OSPKE))
		printk(KERN_DEFAULT "PKRU: %08x\n", read_pkru());
L
Linus Torvalds 已提交
143 144 145 146 147
}

void release_thread(struct task_struct *dead_task)
{
	if (dead_task->mm) {
148
#ifdef CONFIG_MODIFY_LDT_SYSCALL
149
		if (dead_task->mm->context.ldt) {
150
			pr_warn("WARNING: dead process %s still has LDT? <%p/%d>\n",
151
				dead_task->comm,
152
				dead_task->mm->context.ldt->entries,
153
				dead_task->mm->context.ldt->nr_entries);
L
Linus Torvalds 已提交
154 155
			BUG();
		}
156
#endif
L
Linus Torvalds 已提交
157 158 159
	}
}

160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217
enum which_selector {
	FS,
	GS
};

/*
 * Saves the FS or GS base for an outgoing thread if FSGSBASE extensions are
 * not available.  The goal is to be reasonably fast on non-FSGSBASE systems.
 * It's forcibly inlined because it'll generate better code and this function
 * is hot.
 */
static __always_inline void save_base_legacy(struct task_struct *prev_p,
					     unsigned short selector,
					     enum which_selector which)
{
	if (likely(selector == 0)) {
		/*
		 * On Intel (without X86_BUG_NULL_SEG), the segment base could
		 * be the pre-existing saved base or it could be zero.  On AMD
		 * (with X86_BUG_NULL_SEG), the segment base could be almost
		 * anything.
		 *
		 * This branch is very hot (it's hit twice on almost every
		 * context switch between 64-bit programs), and avoiding
		 * the RDMSR helps a lot, so we just assume that whatever
		 * value is already saved is correct.  This matches historical
		 * Linux behavior, so it won't break existing applications.
		 *
		 * To avoid leaking state, on non-X86_BUG_NULL_SEG CPUs, if we
		 * report that the base is zero, it needs to actually be zero:
		 * see the corresponding logic in load_seg_legacy.
		 */
	} else {
		/*
		 * If the selector is 1, 2, or 3, then the base is zero on
		 * !X86_BUG_NULL_SEG CPUs and could be anything on
		 * X86_BUG_NULL_SEG CPUs.  In the latter case, Linux
		 * has never attempted to preserve the base across context
		 * switches.
		 *
		 * If selector > 3, then it refers to a real segment, and
		 * saving the base isn't necessary.
		 */
		if (which == FS)
			prev_p->thread.fsbase = 0;
		else
			prev_p->thread.gsbase = 0;
	}
}

static __always_inline void save_fsgs(struct task_struct *task)
{
	savesegment(fs, task->thread.fsindex);
	savesegment(gs, task->thread.gsindex);
	save_base_legacy(task, task->thread.fsindex, FS);
	save_base_legacy(task, task->thread.gsindex, GS);
}

218 219 220 221 222 223 224 225 226 227 228 229 230 231
#if IS_ENABLED(CONFIG_KVM)
/*
 * While a process is running,current->thread.fsbase and current->thread.gsbase
 * may not match the corresponding CPU registers (see save_base_legacy()). KVM
 * wants an efficient way to save and restore FSBASE and GSBASE.
 * When FSGSBASE extensions are enabled, this will have to use RD{FS,GS}BASE.
 */
void save_fsgs_for_kvm(void)
{
	save_fsgs(current);
}
EXPORT_SYMBOL_GPL(save_fsgs_for_kvm);
#endif

232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290
static __always_inline void loadseg(enum which_selector which,
				    unsigned short sel)
{
	if (which == FS)
		loadsegment(fs, sel);
	else
		load_gs_index(sel);
}

static __always_inline void load_seg_legacy(unsigned short prev_index,
					    unsigned long prev_base,
					    unsigned short next_index,
					    unsigned long next_base,
					    enum which_selector which)
{
	if (likely(next_index <= 3)) {
		/*
		 * The next task is using 64-bit TLS, is not using this
		 * segment at all, or is having fun with arcane CPU features.
		 */
		if (next_base == 0) {
			/*
			 * Nasty case: on AMD CPUs, we need to forcibly zero
			 * the base.
			 */
			if (static_cpu_has_bug(X86_BUG_NULL_SEG)) {
				loadseg(which, __USER_DS);
				loadseg(which, next_index);
			} else {
				/*
				 * We could try to exhaustively detect cases
				 * under which we can skip the segment load,
				 * but there's really only one case that matters
				 * for performance: if both the previous and
				 * next states are fully zeroed, we can skip
				 * the load.
				 *
				 * (This assumes that prev_base == 0 has no
				 * false positives.  This is the case on
				 * Intel-style CPUs.)
				 */
				if (likely(prev_index | next_index | prev_base))
					loadseg(which, next_index);
			}
		} else {
			if (prev_index != next_index)
				loadseg(which, next_index);
			wrmsrl(which == FS ? MSR_FS_BASE : MSR_KERNEL_GS_BASE,
			       next_base);
		}
	} else {
		/*
		 * The next task is using a real segment.  Loading the selector
		 * is sufficient.
		 */
		loadseg(which, next_index);
	}
}

291 292
int copy_thread_tls(unsigned long clone_flags, unsigned long sp,
		unsigned long arg, struct task_struct *p, unsigned long tls)
L
Linus Torvalds 已提交
293 294
{
	int err;
295
	struct pt_regs *childregs;
296 297
	struct fork_frame *fork_frame;
	struct inactive_task_frame *frame;
L
Linus Torvalds 已提交
298 299
	struct task_struct *me = current;

A
Al Viro 已提交
300
	childregs = task_pt_regs(p);
301 302
	fork_frame = container_of(childregs, struct fork_frame, regs);
	frame = &fork_frame->frame;
303 304 305 306 307 308 309 310

	/*
	 * For a new task use the RESET flags value since there is no before.
	 * All the status flags are zero; DF and all the system flags must also
	 * be 0, specifically IF must be 0 because we context switch to the new
	 * task with interrupts disabled.
	 */
	frame->flags = X86_EFLAGS_FIXED;
311 312 313
	frame->bp = 0;
	frame->ret_addr = (unsigned long) ret_from_fork;
	p->thread.sp = (unsigned long) fork_frame;
314
	p->thread.io_bitmap_ptr = NULL;
L
Linus Torvalds 已提交
315

316
	savesegment(gs, p->thread.gsindex);
317
	p->thread.gsbase = p->thread.gsindex ? 0 : me->thread.gsbase;
318
	savesegment(fs, p->thread.fsindex);
319
	p->thread.fsbase = p->thread.fsindex ? 0 : me->thread.fsbase;
320 321
	savesegment(es, p->thread.es);
	savesegment(ds, p->thread.ds);
A
Al Viro 已提交
322 323
	memset(p->thread.ptrace_bps, 0, sizeof(p->thread.ptrace_bps));

324
	if (unlikely(p->flags & PF_KTHREAD)) {
A
Al Viro 已提交
325 326
		/* kernel thread */
		memset(childregs, 0, sizeof(struct pt_regs));
327 328
		frame->bx = sp;		/* function */
		frame->r12 = arg;
A
Al Viro 已提交
329 330
		return 0;
	}
331
	frame->bx = 0;
332
	*childregs = *current_pt_regs();
A
Al Viro 已提交
333 334

	childregs->ax = 0;
335 336
	if (sp)
		childregs->sp = sp;
L
Linus Torvalds 已提交
337

338
	err = -ENOMEM;
339
	if (unlikely(test_tsk_thread_flag(me, TIF_IO_BITMAP))) {
340 341
		p->thread.io_bitmap_ptr = kmemdup(me->thread.io_bitmap_ptr,
						  IO_BITMAP_BYTES, GFP_KERNEL);
L
Linus Torvalds 已提交
342 343 344 345
		if (!p->thread.io_bitmap_ptr) {
			p->thread.io_bitmap_max = 0;
			return -ENOMEM;
		}
346
		set_tsk_thread_flag(p, TIF_IO_BITMAP);
347
	}
L
Linus Torvalds 已提交
348 349 350 351 352 353

	/*
	 * Set a new TLS for the child thread?
	 */
	if (clone_flags & CLONE_SETTLS) {
#ifdef CONFIG_IA32_EMULATION
354
		if (in_ia32_syscall())
R
Roland McGrath 已提交
355
			err = do_set_thread_area(p, -1,
356
				(struct user_desc __user *)tls, 0);
357 358
		else
#endif
359
			err = do_arch_prctl_64(p, ARCH_SET_FS, tls);
360
		if (err)
L
Linus Torvalds 已提交
361 362 363 364 365 366 367 368
			goto out;
	}
	err = 0;
out:
	if (err && p->thread.io_bitmap_ptr) {
		kfree(p->thread.io_bitmap_ptr);
		p->thread.io_bitmap_max = 0;
	}
369

L
Linus Torvalds 已提交
370 371 372
	return err;
}

373 374 375 376
static void
start_thread_common(struct pt_regs *regs, unsigned long new_ip,
		    unsigned long new_sp,
		    unsigned int _cs, unsigned int _ss, unsigned int _ds)
I
Ingo Molnar 已提交
377
{
378 379 380 381 382 383 384 385
	WARN_ON_ONCE(regs != current_pt_regs());

	if (static_cpu_has(X86_BUG_NULL_SEG)) {
		/* Loading zero below won't clear the base. */
		loadsegment(fs, __USER_DS);
		load_gs_index(__USER_DS);
	}

386
	loadsegment(fs, 0);
387 388
	loadsegment(es, _ds);
	loadsegment(ds, _ds);
I
Ingo Molnar 已提交
389
	load_gs_index(0);
390

I
Ingo Molnar 已提交
391 392
	regs->ip		= new_ip;
	regs->sp		= new_sp;
393 394
	regs->cs		= _cs;
	regs->ss		= _ss;
395
	regs->flags		= X86_EFLAGS_IF;
396
	force_iret();
I
Ingo Molnar 已提交
397
}
398 399 400 401 402 403 404

void
start_thread(struct pt_regs *regs, unsigned long new_ip, unsigned long new_sp)
{
	start_thread_common(regs, new_ip, new_sp,
			    __USER_CS, __USER_DS, 0);
}
405
EXPORT_SYMBOL_GPL(start_thread);
I
Ingo Molnar 已提交
406

407 408
#ifdef CONFIG_COMPAT
void compat_start_thread(struct pt_regs *regs, u32 new_ip, u32 new_sp)
409
{
410
	start_thread_common(regs, new_ip, new_sp,
H
H. Peter Anvin 已提交
411 412 413
			    test_thread_flag(TIF_X32)
			    ? __USER_CS : __USER32_CS,
			    __USER_DS, __USER_DS);
414 415
}
#endif
I
Ingo Molnar 已提交
416

L
Linus Torvalds 已提交
417 418 419
/*
 *	switch_to(x,y) should switch tasks from x to y.
 *
420
 * This could still be optimized:
L
Linus Torvalds 已提交
421 422
 * - fold all the options into a flag word and test it with a single test.
 * - could test fs/gs bitsliced
423 424
 *
 * Kprobes not supported here. Set the probe on schedule instead.
425
 * Function graph tracer not supported too.
L
Linus Torvalds 已提交
426
 */
427
__visible __notrace_funcgraph struct task_struct *
428
__switch_to(struct task_struct *prev_p, struct task_struct *next_p)
L
Linus Torvalds 已提交
429
{
430 431
	struct thread_struct *prev = &prev_p->thread;
	struct thread_struct *next = &next_p->thread;
432 433
	struct fpu *prev_fpu = &prev->fpu;
	struct fpu *next_fpu = &next->fpu;
434
	int cpu = smp_processor_id();
435

436 437 438
	WARN_ON_ONCE(IS_ENABLED(CONFIG_DEBUG_ENTRY) &&
		     this_cpu_read(irq_count) != -1);

439
	switch_fpu_prepare(prev_fpu, cpu);
440

441 442 443 444 445
	/* We must save %fs and %gs before load_TLS() because
	 * %fs and %gs may be cleared by load_TLS().
	 *
	 * (e.g. xen_load_tls())
	 */
446
	save_fsgs(prev_p);
447

448 449 450 451
	/*
	 * Load TLS before restoring any segments so that segment loads
	 * reference the correct GDT entries.
	 */
L
Linus Torvalds 已提交
452 453
	load_TLS(next, cpu);

454
	/*
455 456 457
	 * Leave lazy mode, flushing any hypercalls made here.  This
	 * must be done after loading TLS entries in the GDT but before
	 * loading segments that might reference them, and and it must
458
	 * be done before fpu__restore(), so the TS bit is up to
459
	 * date.
460
	 */
461
	arch_end_context_switch(next_p);
462

463 464 465 466 467 468 469 470 471 472 473 474 475 476 477 478 479 480 481 482 483 484
	/* Switch DS and ES.
	 *
	 * Reading them only returns the selectors, but writing them (if
	 * nonzero) loads the full descriptor from the GDT or LDT.  The
	 * LDT for next is loaded in switch_mm, and the GDT is loaded
	 * above.
	 *
	 * We therefore need to write new values to the segment
	 * registers on every context switch unless both the new and old
	 * values are zero.
	 *
	 * Note that we don't need to do anything for CS and SS, as
	 * those are saved and restored as part of pt_regs.
	 */
	savesegment(es, prev->es);
	if (unlikely(next->es | prev->es))
		loadsegment(es, next->es);

	savesegment(ds, prev->ds);
	if (unlikely(next->ds | prev->ds))
		loadsegment(ds, next->ds);

485 486 487 488
	load_seg_legacy(prev->fsindex, prev->fsbase,
			next->fsindex, next->fsbase, FS);
	load_seg_legacy(prev->gsindex, prev->gsbase,
			next->gsindex, next->gsbase, GS);
L
Linus Torvalds 已提交
489

490
	switch_fpu_finish(next_fpu, cpu);
491

492
	/*
493
	 * Switch the PDA and FPU contexts.
L
Linus Torvalds 已提交
494
	 */
495
	this_cpu_write(current_task, next_p);
496
	this_cpu_write(cpu_current_top_of_stack, task_top_of_stack(next_p));
497

498
	/* Reload sp0. */
499
	update_task_stack(next_p);
500

501
	switch_to_extra(prev_p, next_p);
L
Linus Torvalds 已提交
502

503
#ifdef CONFIG_XEN_PV
504 505 506 507 508 509 510 511 512 513
	/*
	 * On Xen PV, IOPL bits in pt_regs->flags have no effect, and
	 * current_pt_regs()->flags may not match the current task's
	 * intended IOPL.  We need to switch it manually.
	 */
	if (unlikely(static_cpu_has(X86_FEATURE_XENPV) &&
		     prev->iopl != next->iopl))
		xen_set_iopl_mask(next->iopl);
#endif

514 515 516 517 518 519 520 521 522 523 524 525 526 527 528 529 530 531 532 533 534 535 536 537 538 539 540 541
	if (static_cpu_has_bug(X86_BUG_SYSRET_SS_ATTRS)) {
		/*
		 * AMD CPUs have a misfeature: SYSRET sets the SS selector but
		 * does not update the cached descriptor.  As a result, if we
		 * do SYSRET while SS is NULL, we'll end up in user mode with
		 * SS apparently equal to __USER_DS but actually unusable.
		 *
		 * The straightforward workaround would be to fix it up just
		 * before SYSRET, but that would slow down the system call
		 * fast paths.  Instead, we ensure that SS is never NULL in
		 * system call context.  We do this by replacing NULL SS
		 * selectors at every context switch.  SYSCALL sets up a valid
		 * SS, so the only way to get NULL is to re-enter the kernel
		 * from CPL 3 through an interrupt.  Since that can't happen
		 * in the same task as a running syscall, we are guaranteed to
		 * context switch between every interrupt vector entry and a
		 * subsequent SYSRET.
		 *
		 * We read SS first because SS reads are much faster than
		 * writes.  Out of caution, we force SS to __KERNEL_DS even if
		 * it previously had a different non-NULL value.
		 */
		unsigned short ss_sel;
		savesegment(ss, ss_sel);
		if (ss_sel != __KERNEL_DS)
			loadsegment(ss, __KERNEL_DS);
	}

F
Fenghua Yu 已提交
542 543 544
	/* Load the Intel cache allocation PQR MSR. */
	intel_rdt_sched_in();

L
Linus Torvalds 已提交
545 546 547 548 549 550 551 552
	return prev_p;
}

void set_personality_64bit(void)
{
	/* inherit personality from parent */

	/* Make sure to be in 64bit mode */
553
	clear_thread_flag(TIF_IA32);
554
	clear_thread_flag(TIF_ADDR32);
555
	clear_thread_flag(TIF_X32);
556 557
	/* Pretend that this comes from a 64bit execve */
	task_pt_regs(current)->orig_ax = __NR_execve;
558
	current_thread_info()->status &= ~TS_COMPAT;
L
Linus Torvalds 已提交
559

560 561 562 563
	/* Ensure the corresponding mm is not marked. */
	if (current->mm)
		current->mm->context.ia32_compat = 0;

L
Linus Torvalds 已提交
564 565 566
	/* TBD: overwrites user setup. Should have two bits.
	   But 64bit processes have always behaved this way,
	   so it's not too bad. The main problem is just that
567
	   32bit childs are affected again. */
L
Linus Torvalds 已提交
568 569 570
	current->personality &= ~READ_IMPLIES_EXEC;
}

571
static void __set_personality_x32(void)
572
{
573 574 575 576 577 578 579 580 581 582 583 584 585 586 587
#ifdef CONFIG_X86_X32
	clear_thread_flag(TIF_IA32);
	set_thread_flag(TIF_X32);
	if (current->mm)
		current->mm->context.ia32_compat = TIF_X32;
	current->personality &= ~READ_IMPLIES_EXEC;
	/*
	 * in_compat_syscall() uses the presence of the x32 syscall bit
	 * flag to determine compat status.  The x86 mmap() code relies on
	 * the syscall bitness so set x32 syscall bit right here to make
	 * in_compat_syscall() work during exec().
	 *
	 * Pretend to come from a x32 execve.
	 */
	task_pt_regs(current)->orig_ax = __NR_x32_execve | __X32_SYSCALL_BIT;
588
	current_thread_info()->status &= ~TS_COMPAT;
589 590
#endif
}
591

592 593 594 595 596 597 598 599 600 601
static void __set_personality_ia32(void)
{
#ifdef CONFIG_IA32_EMULATION
	set_thread_flag(TIF_IA32);
	clear_thread_flag(TIF_X32);
	if (current->mm)
		current->mm->context.ia32_compat = TIF_IA32;
	current->personality |= force_personality32;
	/* Prepare the first "return" to user space */
	task_pt_regs(current)->orig_ax = __NR_ia32_execve;
602
	current_thread_info()->status |= TS_COMPAT;
603 604 605 606 607
#endif
}

void set_personality_ia32(bool x32)
{
608
	/* Make sure to be in 32bit mode */
609
	set_thread_flag(TIF_ADDR32);
610

611 612 613 614
	if (x32)
		__set_personality_x32();
	else
		__set_personality_ia32();
615
}
616
EXPORT_SYMBOL_GPL(set_personality_ia32);
617

618
#ifdef CONFIG_CHECKPOINT_RESTORE
619 620 621 622 623 624 625 626 627 628
static long prctl_map_vdso(const struct vdso_image *image, unsigned long addr)
{
	int ret;

	ret = map_vdso_once(image, addr);
	if (ret)
		return ret;

	return (long)image->size;
}
629
#endif
630

631
long do_arch_prctl_64(struct task_struct *task, int option, unsigned long arg2)
632 633
{
	int ret = 0;
L
Linus Torvalds 已提交
634 635 636
	int doit = task == current;
	int cpu;

637
	switch (option) {
L
Linus Torvalds 已提交
638
	case ARCH_SET_GS:
639
		if (arg2 >= TASK_SIZE_MAX)
640
			return -EPERM;
L
Linus Torvalds 已提交
641
		cpu = get_cpu();
642
		task->thread.gsindex = 0;
643
		task->thread.gsbase = arg2;
644 645
		if (doit) {
			load_gs_index(0);
646
			ret = wrmsrl_safe(MSR_KERNEL_GS_BASE, arg2);
L
Linus Torvalds 已提交
647
		}
648
		put_cpu();
L
Linus Torvalds 已提交
649 650 651 652
		break;
	case ARCH_SET_FS:
		/* Not strictly needed for fs, but do it for symmetry
		   with gs */
653
		if (arg2 >= TASK_SIZE_MAX)
654
			return -EPERM;
L
Linus Torvalds 已提交
655
		cpu = get_cpu();
656
		task->thread.fsindex = 0;
657
		task->thread.fsbase = arg2;
658 659 660
		if (doit) {
			/* set the selector to 0 to not confuse __switch_to */
			loadsegment(fs, 0);
661
			ret = wrmsrl_safe(MSR_FS_BASE, arg2);
L
Linus Torvalds 已提交
662 663 664
		}
		put_cpu();
		break;
665 666
	case ARCH_GET_FS: {
		unsigned long base;
667

668
		if (doit)
L
Linus Torvalds 已提交
669
			rdmsrl(MSR_FS_BASE, base);
670
		else
671
			base = task->thread.fsbase;
672
		ret = put_user(base, (unsigned long __user *)arg2);
673
		break;
L
Linus Torvalds 已提交
674
	}
675
	case ARCH_GET_GS: {
L
Linus Torvalds 已提交
676
		unsigned long base;
677

678 679 680
		if (doit)
			rdmsrl(MSR_KERNEL_GS_BASE, base);
		else
681
			base = task->thread.gsbase;
682
		ret = put_user(base, (unsigned long __user *)arg2);
L
Linus Torvalds 已提交
683 684 685
		break;
	}

686
#ifdef CONFIG_CHECKPOINT_RESTORE
687
# ifdef CONFIG_X86_X32_ABI
688
	case ARCH_MAP_VDSO_X32:
689
		return prctl_map_vdso(&vdso_image_x32, arg2);
690 691
# endif
# if defined CONFIG_X86_32 || defined CONFIG_IA32_EMULATION
692
	case ARCH_MAP_VDSO_32:
693
		return prctl_map_vdso(&vdso_image_32, arg2);
694
# endif
695
	case ARCH_MAP_VDSO_64:
696
		return prctl_map_vdso(&vdso_image_64, arg2);
697 698
#endif

L
Linus Torvalds 已提交
699 700 701
	default:
		ret = -EINVAL;
		break;
702
	}
L
Linus Torvalds 已提交
703

704 705
	return ret;
}
L
Linus Torvalds 已提交
706

707
SYSCALL_DEFINE2(arch_prctl, int, option, unsigned long, arg2)
L
Linus Torvalds 已提交
708
{
709 710 711 712 713 714 715
	long ret;

	ret = do_arch_prctl_64(current, option, arg2);
	if (ret == -EINVAL)
		ret = do_arch_prctl_common(current, option, arg2);

	return ret;
L
Linus Torvalds 已提交
716 717
}

718 719 720 721 722 723 724
#ifdef CONFIG_IA32_EMULATION
COMPAT_SYSCALL_DEFINE2(arch_prctl, int, option, unsigned long, arg2)
{
	return do_arch_prctl_common(current, option, arg2);
}
#endif

725 726
unsigned long KSTK_ESP(struct task_struct *task)
{
727
	return task_pt_regs(task)->sp;
728
}