traps_32.c 32.5 KB
Newer Older
L
Linus Torvalds 已提交
1 2
/*
 *  Copyright (C) 1991, 1992  Linus Torvalds
3
 *  Copyright (C) 2000, 2001, 2002 Andi Kleen, SuSE Labs
L
Linus Torvalds 已提交
4 5 6 7 8 9 10 11 12
 *
 *  Pentium III FXSR, SSE support
 *	Gareth Hughes <gareth@valinux.com>, May 2000
 */

/*
 * 'Traps.c' handles hardware traps and faults after we have saved some
 * state in 'asm.s'.
 */
I
Ingo Molnar 已提交
13 14 15 16 17 18 19 20
#include <linux/interrupt.h>
#include <linux/kallsyms.h>
#include <linux/spinlock.h>
#include <linux/highmem.h>
#include <linux/kprobes.h>
#include <linux/uaccess.h>
#include <linux/utsname.h>
#include <linux/kdebug.h>
L
Linus Torvalds 已提交
21
#include <linux/kernel.h>
I
Ingo Molnar 已提交
22 23
#include <linux/module.h>
#include <linux/ptrace.h>
L
Linus Torvalds 已提交
24
#include <linux/string.h>
I
Ingo Molnar 已提交
25 26
#include <linux/unwind.h>
#include <linux/delay.h>
L
Linus Torvalds 已提交
27
#include <linux/errno.h>
I
Ingo Molnar 已提交
28 29
#include <linux/kexec.h>
#include <linux/sched.h>
L
Linus Torvalds 已提交
30 31
#include <linux/timer.h>
#include <linux/init.h>
J
Jeremy Fitzhardinge 已提交
32
#include <linux/bug.h>
I
Ingo Molnar 已提交
33 34
#include <linux/nmi.h>
#include <linux/mm.h>
L
Linus Torvalds 已提交
35 36 37 38 39 40 41 42 43 44

#ifdef CONFIG_EISA
#include <linux/ioport.h>
#include <linux/eisa.h>
#endif

#ifdef CONFIG_MCA
#include <linux/mca.h>
#endif

D
Dave Jiang 已提交
45 46 47 48
#if defined(CONFIG_EDAC)
#include <linux/edac.h>
#endif

49
#include <asm/processor-flags.h>
I
Ingo Molnar 已提交
50 51
#include <asm/arch_hooks.h>
#include <asm/stacktrace.h>
L
Linus Torvalds 已提交
52 53
#include <asm/processor.h>
#include <asm/debugreg.h>
I
Ingo Molnar 已提交
54 55 56
#include <asm/atomic.h>
#include <asm/system.h>
#include <asm/unwind.h>
L
Linus Torvalds 已提交
57 58 59 60
#include <asm/desc.h>
#include <asm/i387.h>
#include <asm/nmi.h>
#include <asm/smp.h>
I
Ingo Molnar 已提交
61
#include <asm/io.h>
62
#include <asm/traps.h>
L
Linus Torvalds 已提交
63 64 65

#include "mach_traps.h"

66 67 68
DECLARE_BITMAP(used_vectors, NR_VECTORS);
EXPORT_SYMBOL_GPL(used_vectors);

L
Linus Torvalds 已提交
69 70 71
asmlinkage int system_call(void);

/* Do we ignore FPU interrupts ? */
I
Ingo Molnar 已提交
72
char ignore_fpu_irq;
L
Linus Torvalds 已提交
73 74 75 76 77 78

/*
 * The IDT has to be page-aligned to simplify the Pentium
 * F0 0F bug workaround.. We have a special link segment
 * for this.
 */
79
gate_desc idt_table[256]
80
	__attribute__((__section__(".data.idt"))) = { { { { 0, 0 } } }, };
L
Linus Torvalds 已提交
81

82
int panic_on_unrecovered_nmi;
83
int kstack_depth_to_print = 24;
84
static unsigned int code_bytes = 64;
85 86
static int ignore_nmis;
static int die_counter;
87

88 89 90 91 92 93
static inline void conditional_sti(struct pt_regs *regs)
{
	if (regs->flags & X86_EFLAGS_IF)
		local_irq_enable();
}

94 95 96
void printk_address(unsigned long address, int reliable)
{
#ifdef CONFIG_KALLSYMS
I
Ingo Molnar 已提交
97 98
	unsigned long offset = 0;
	unsigned long symsize;
99
	const char *symname;
I
Ingo Molnar 已提交
100
	char *modname;
101 102 103
	char *delim = ":";
	char namebuf[KSYM_NAME_LEN];
	char reliab[4] = "";
104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122

	symname = kallsyms_lookup(address, &symsize, &offset,
					&modname, namebuf);
	if (!symname) {
		printk(" [<%08lx>]\n", address);
		return;
	}
	if (!reliable)
		strcpy(reliab, "? ");

	if (!modname)
		modname = delim = "";
	printk(" [<%08lx>] %s%s%s%s%s+0x%lx/0x%lx\n",
		address, reliab, delim, modname, delim, symname, offset, symsize);
#else
	printk(" [<%08lx>]\n", address);
#endif
}

123 124
static inline int valid_stack_ptr(struct thread_info *tinfo,
			void *p, unsigned int size)
L
Linus Torvalds 已提交
125
{
126 127
	void *t = tinfo;
	return	p > t && p <= t + THREAD_SIZE - size;
L
Linus Torvalds 已提交
128 129
}

130 131
/* The form of the top of the frame on the stack */
struct stack_frame {
132 133
	struct stack_frame *next_frame;
	unsigned long return_address;
134 135
};

I
Ingo Molnar 已提交
136 137
static inline unsigned long
print_context_stack(struct thread_info *tinfo,
138 139
		unsigned long *stack, unsigned long bp,
		const struct stacktrace_ops *ops, void *data)
L
Linus Torvalds 已提交
140
{
141
	struct stack_frame *frame = (struct stack_frame *)bp;
142 143 144 145

	while (valid_stack_ptr(tinfo, stack, sizeof(*stack))) {
		unsigned long addr;

146 147 148 149 150 151 152
		addr = *stack;
		if (__kernel_text_address(addr)) {
			if ((unsigned long) stack == bp + 4) {
				ops->address(data, addr, 1);
				frame = frame->next_frame;
				bp = (unsigned long) frame;
			} else {
153
				ops->address(data, addr, bp == 0);
154 155 156
			}
		}
		stack++;
L
Linus Torvalds 已提交
157
	}
158
	return bp;
L
Linus Torvalds 已提交
159 160
}

161
void dump_trace(struct task_struct *task, struct pt_regs *regs,
162
		unsigned long *stack, unsigned long bp,
J
Jan Beulich 已提交
163
		const struct stacktrace_ops *ops, void *data)
L
Linus Torvalds 已提交
164 165 166 167
{
	if (!task)
		task = current;

168
	if (!stack) {
169 170
		unsigned long dummy;
		stack = &dummy;
171
		if (task != current)
172
			stack = (unsigned long *)task->thread.sp;
173 174
	}

175
#ifdef CONFIG_FRAME_POINTER
176
	if (!bp) {
177
		if (task == current) {
178
			/* Grab bp right from our regs */
I
Ingo Molnar 已提交
179
			asm("movl %%ebp, %0" : "=r" (bp) :);
180
		} else {
181
			/* bp is the last reg pushed by switch_to */
182
			bp = *(unsigned long *) task->thread.sp;
183
		}
L
Linus Torvalds 已提交
184
	}
185
#endif
L
Linus Torvalds 已提交
186

187
	for (;;) {
L
Linus Torvalds 已提交
188
		struct thread_info *context;
I
Ingo Molnar 已提交
189

L
Linus Torvalds 已提交
190 191
		context = (struct thread_info *)
			((unsigned long)stack & (~(THREAD_SIZE - 1)));
192
		bp = print_context_stack(context, stack, bp, ops, data);
I
Ingo Molnar 已提交
193 194 195 196 197
		/*
		 * Should be after the line below, but somewhere
		 * in early boot context comes out corrupted and we
		 * can't reference it:
		 */
198 199
		if (ops->stack(data, "IRQ") < 0)
			break;
I
Ingo Molnar 已提交
200
		stack = (unsigned long *)context->previous_esp;
L
Linus Torvalds 已提交
201 202
		if (!stack)
			break;
203
		touch_nmi_watchdog();
L
Linus Torvalds 已提交
204 205
	}
}
206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228
EXPORT_SYMBOL(dump_trace);

static void
print_trace_warning_symbol(void *data, char *msg, unsigned long symbol)
{
	printk(data);
	print_symbol(msg, symbol);
	printk("\n");
}

static void print_trace_warning(void *data, char *msg)
{
	printk("%s%s\n", (char *)data, msg);
}

static int print_trace_stack(void *data, char *name)
{
	return 0;
}

/*
 * Print one address/symbol entries per line.
 */
229
static void print_trace_address(void *data, unsigned long addr, int reliable)
230 231
{
	printk("%s [<%08lx>] ", (char *)data, addr);
232 233
	if (!reliable)
		printk("? ");
234
	print_symbol("%s\n", addr);
235
	touch_nmi_watchdog();
236 237
}

J
Jan Beulich 已提交
238
static const struct stacktrace_ops print_trace_ops = {
239 240 241 242
	.warning = print_trace_warning,
	.warning_symbol = print_trace_warning_symbol,
	.stack = print_trace_stack,
	.address = print_trace_address,
243 244 245 246
};

static void
show_trace_log_lvl(struct task_struct *task, struct pt_regs *regs,
247
		unsigned long *stack, unsigned long bp, char *log_lvl)
248
{
249
	dump_trace(task, regs, stack, bp, &print_trace_ops, log_lvl);
250 251
	printk("%s =======================\n", log_lvl);
}
L
Linus Torvalds 已提交
252

253
void show_trace(struct task_struct *task, struct pt_regs *regs,
254
		unsigned long *stack, unsigned long bp)
255
{
256
	show_trace_log_lvl(task, regs, stack, bp, "");
257 258
}

I
Ingo Molnar 已提交
259 260 261
static void
show_stack_log_lvl(struct task_struct *task, struct pt_regs *regs,
		   unsigned long *sp, unsigned long bp, char *log_lvl)
L
Linus Torvalds 已提交
262 263 264 265
{
	unsigned long *stack;
	int i;

266
	if (sp == NULL) {
L
Linus Torvalds 已提交
267
		if (task)
I
Ingo Molnar 已提交
268
			sp = (unsigned long *)task->thread.sp;
L
Linus Torvalds 已提交
269
		else
270
			sp = (unsigned long *)&sp;
L
Linus Torvalds 已提交
271 272
	}

273
	stack = sp;
I
Ingo Molnar 已提交
274
	for (i = 0; i < kstack_depth_to_print; i++) {
L
Linus Torvalds 已提交
275 276
		if (kstack_end(stack))
			break;
C
Chuck Ebbert 已提交
277 278
		if (i && ((i % 8) == 0))
			printk("\n%s       ", log_lvl);
L
Linus Torvalds 已提交
279 280
		printk("%08lx ", *stack++);
	}
C
Chuck Ebbert 已提交
281
	printk("\n%sCall Trace:\n", log_lvl);
I
Ingo Molnar 已提交
282

283
	show_trace_log_lvl(task, regs, sp, bp, log_lvl);
284 285
}

286
void show_stack(struct task_struct *task, unsigned long *sp)
287
{
C
Chuck Ebbert 已提交
288
	printk("       ");
289
	show_stack_log_lvl(task, NULL, sp, 0, "");
L
Linus Torvalds 已提交
290 291 292 293 294 295 296
}

/*
 * The architecture-independent dump_stack generator
 */
void dump_stack(void)
{
297
	unsigned long bp = 0;
I
Ingo Molnar 已提交
298
	unsigned long stack;
299 300 301 302 303

#ifdef CONFIG_FRAME_POINTER
	if (!bp)
		asm("movl %%ebp, %0" : "=r" (bp):);
#endif
L
Linus Torvalds 已提交
304

305 306 307 308 309
	printk("Pid: %d, comm: %.20s %s %s %.*s\n",
		current->pid, current->comm, print_tainted(),
		init_utsname()->release,
		(int)strcspn(init_utsname()->version, " "),
		init_utsname()->version);
I
Ingo Molnar 已提交
310

311
	show_trace(current, NULL, &stack, bp);
L
Linus Torvalds 已提交
312 313 314 315 316 317 318
}

EXPORT_SYMBOL(dump_stack);

void show_registers(struct pt_regs *regs)
{
	int i;
319

L
Linus Torvalds 已提交
320
	print_modules();
321
	__show_registers(regs, 0);
I
Ingo Molnar 已提交
322

323
	printk(KERN_EMERG "Process %.*s (pid: %d, ti=%p task=%p task.ti=%p)",
324
		TASK_COMM_LEN, current->comm, task_pid_nr(current),
R
Roman Zippel 已提交
325
		current_thread_info(), current, task_thread_info(current));
L
Linus Torvalds 已提交
326 327 328 329
	/*
	 * When in-kernel, we also print out the stack and code at the
	 * time of the fault..
	 */
330
	if (!user_mode_vm(regs)) {
331 332
		unsigned int code_prologue = code_bytes * 43 / 64;
		unsigned int code_len = code_bytes;
333
		unsigned char c;
I
Ingo Molnar 已提交
334
		u8 *ip;
L
Linus Torvalds 已提交
335

336
		printk("\n" KERN_EMERG "Stack: ");
337
		show_stack_log_lvl(NULL, regs, &regs->sp, 0, KERN_EMERG);
L
Linus Torvalds 已提交
338

339
		printk(KERN_EMERG "Code: ");
L
Linus Torvalds 已提交
340

341
		ip = (u8 *)regs->ip - code_prologue;
342
		if (ip < (u8 *)PAGE_OFFSET || probe_kernel_address(ip, c)) {
343
			/* try starting at EIP */
344
			ip = (u8 *)regs->ip;
345
			code_len = code_len - code_prologue + 1;
346
		}
347 348
		for (i = 0; i < code_len; i++, ip++) {
			if (ip < (u8 *)PAGE_OFFSET ||
349
					probe_kernel_address(ip, c)) {
L
Linus Torvalds 已提交
350 351 352
				printk(" Bad EIP value.");
				break;
			}
353
			if (ip == (u8 *)regs->ip)
L
Linus Torvalds 已提交
354 355 356 357 358 359
				printk("<%02x> ", c);
			else
				printk("%02x ", c);
		}
	}
	printk("\n");
I
Ingo Molnar 已提交
360
}
L
Linus Torvalds 已提交
361

362
int is_valid_bugaddr(unsigned long ip)
L
Linus Torvalds 已提交
363 364 365
{
	unsigned short ud2;

366
	if (ip < PAGE_OFFSET)
J
Jeremy Fitzhardinge 已提交
367
		return 0;
368
	if (probe_kernel_address((unsigned short *)ip, ud2))
J
Jeremy Fitzhardinge 已提交
369
		return 0;
L
Linus Torvalds 已提交
370

J
Jeremy Fitzhardinge 已提交
371
	return ud2 == 0x0b0f;
L
Linus Torvalds 已提交
372 373
}

374 375 376 377 378 379 380 381 382 383 384 385 386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419 420 421
static raw_spinlock_t die_lock = __RAW_SPIN_LOCK_UNLOCKED;
static int die_owner = -1;
static unsigned int die_nest_count;

unsigned __kprobes long oops_begin(void)
{
	unsigned long flags;

	oops_enter();

	if (die_owner != raw_smp_processor_id()) {
		console_verbose();
		raw_local_irq_save(flags);
		__raw_spin_lock(&die_lock);
		die_owner = smp_processor_id();
		die_nest_count = 0;
		bust_spinlocks(1);
	} else {
		raw_local_irq_save(flags);
	}
	die_nest_count++;
	return flags;
}

void __kprobes oops_end(unsigned long flags, struct pt_regs *regs, int signr)
{
	bust_spinlocks(0);
	die_owner = -1;
	add_taint(TAINT_DIE);
	__raw_spin_unlock(&die_lock);
	raw_local_irq_restore(flags);

	if (!regs)
		return;

	if (kexec_should_crash(current))
		crash_kexec(regs);

	if (in_interrupt())
		panic("Fatal exception in interrupt");

	if (panic_on_oops)
		panic("Fatal exception");

	oops_exit();
	do_exit(signr);
}

I
Ingo Molnar 已提交
422
int __kprobes __die(const char *str, struct pt_regs *regs, long err)
423 424
{
	unsigned short ss;
I
Ingo Molnar 已提交
425
	unsigned long sp;
426 427 428 429 430 431 432 433 434 435 436 437 438

	printk(KERN_EMERG "%s: %04lx [#%d] ", str, err & 0xffff, ++die_counter);
#ifdef CONFIG_PREEMPT
	printk("PREEMPT ");
#endif
#ifdef CONFIG_SMP
	printk("SMP ");
#endif
#ifdef CONFIG_DEBUG_PAGEALLOC
	printk("DEBUG_PAGEALLOC");
#endif
	printk("\n");
	if (notify_die(DIE_OOPS, str, regs, err,
439 440 441 442 443 444 445 446 447 448
			current->thread.trap_no, SIGSEGV) == NOTIFY_STOP)
		return 1;

	show_registers(regs);
	/* Executive summary in case the oops scrolled away */
	sp = (unsigned long) (&regs->sp);
	savesegment(ss, ss);
	if (user_mode(regs)) {
		sp = regs->sp;
		ss = regs->ss & 0xffff;
449
	}
450 451 452 453
	printk(KERN_EMERG "EIP: [<%08lx>] ", regs->ip);
	print_symbol("%s", regs->ip);
	printk(" SS:ESP %04x:%08lx\n", ss, sp);
	return 0;
454 455
}

J
Jeremy Fitzhardinge 已提交
456
/*
I
Ingo Molnar 已提交
457 458
 * This is gone through when something in the kernel has done something bad
 * and is about to be terminated:
J
Jeremy Fitzhardinge 已提交
459
 */
I
Ingo Molnar 已提交
460
void die(const char *str, struct pt_regs *regs, long err)
L
Linus Torvalds 已提交
461
{
462
	unsigned long flags = oops_begin();
L
Linus Torvalds 已提交
463

464
	if (die_nest_count < 3) {
465
		report_bug(regs->ip, regs);
J
Jeremy Fitzhardinge 已提交
466

467
		if (__die(str, regs, err))
468
			regs = NULL;
469
	} else {
470
		printk(KERN_EMERG "Recursive die() failure, output suppressed\n");
471
	}
L
Linus Torvalds 已提交
472

473
	oops_end(flags, regs, SIGSEGV);
L
Linus Torvalds 已提交
474 475
}

I
Ingo Molnar 已提交
476 477
static inline void
die_if_kernel(const char *str, struct pt_regs *regs, long err)
L
Linus Torvalds 已提交
478
{
479
	if (!user_mode_vm(regs))
L
Linus Torvalds 已提交
480 481 482
		die(str, regs, err);
}

I
Ingo Molnar 已提交
483 484 485
static void __kprobes
do_trap(int trapnr, int signr, char *str, int vm86, struct pt_regs *regs,
	long error_code, siginfo_t *info)
L
Linus Torvalds 已提交
486
{
487 488
	struct task_struct *tsk = current;

489
	if (regs->flags & X86_VM_MASK) {
L
Linus Torvalds 已提交
490 491 492 493 494
		if (vm86)
			goto vm86_trap;
		goto trap_signal;
	}

495
	if (!user_mode(regs))
L
Linus Torvalds 已提交
496 497
		goto kernel_trap;

I
Ingo Molnar 已提交
498 499 500 501 502 503 504 505 506 507 508 509
trap_signal:
	/*
	 * We want error_code and trap_no set for userspace faults and
	 * kernelspace faults which result in die(), but not
	 * kernelspace faults which are fixed up.  die() gives the
	 * process no chance to handle the signal and notice the
	 * kernel fault information, so that won't result in polluting
	 * the information about previously queued, but not yet
	 * delivered, faults.  See also do_general_protection below.
	 */
	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = trapnr;
510

I
Ingo Molnar 已提交
511 512 513 514 515
	if (info)
		force_sig_info(signr, info, tsk);
	else
		force_sig(signr, tsk);
	return;
L
Linus Torvalds 已提交
516

I
Ingo Molnar 已提交
517 518 519 520 521
kernel_trap:
	if (!fixup_exception(regs)) {
		tsk->thread.error_code = error_code;
		tsk->thread.trap_no = trapnr;
		die(str, regs, error_code);
L
Linus Torvalds 已提交
522
	}
I
Ingo Molnar 已提交
523
	return;
L
Linus Torvalds 已提交
524

I
Ingo Molnar 已提交
525 526 527 528 529
vm86_trap:
	if (handle_vm86_trap((struct kernel_vm86_regs *) regs,
						error_code, trapnr))
		goto trap_signal;
	return;
L
Linus Torvalds 已提交
530 531
}

532 533 534 535 536 537 538 539 540 541 542 543 544 545 546 547 548 549 550 551 552 553 554 555 556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574 575 576 577 578 579 580 581
#define DO_TRAP(trapnr, signr, str, name)				\
void do_##name(struct pt_regs *regs, long error_code)			\
{									\
	trace_hardirqs_fixup();						\
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr)	\
							== NOTIFY_STOP)	\
		return;							\
	do_trap(trapnr, signr, str, 0, regs, error_code, NULL);		\
}

#define DO_TRAP_INFO(trapnr, signr, str, name, sicode, siaddr, irq)	\
void do_##name(struct pt_regs *regs, long error_code)			\
{									\
	siginfo_t info;							\
	if (irq)							\
		local_irq_enable();					\
	info.si_signo = signr;						\
	info.si_errno = 0;						\
	info.si_code = sicode;						\
	info.si_addr = (void __user *)siaddr;				\
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr)	\
							== NOTIFY_STOP)	\
		return;							\
	do_trap(trapnr, signr, str, 0, regs, error_code, &info);	\
}

#define DO_VM86_TRAP(trapnr, signr, str, name)				\
void do_##name(struct pt_regs *regs, long error_code)			\
{									\
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr)	\
							== NOTIFY_STOP)	\
		return;							\
	do_trap(trapnr, signr, str, 1, regs, error_code, NULL);		\
}

#define DO_VM86_TRAP_INFO(trapnr, signr, str, name, sicode, siaddr)	\
void do_##name(struct pt_regs *regs, long error_code)			\
{									\
	siginfo_t info;							\
	info.si_signo = signr;						\
	info.si_errno = 0;						\
	info.si_code = sicode;						\
	info.si_addr = (void __user *)siaddr;				\
	trace_hardirqs_fixup();						\
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr)	\
							== NOTIFY_STOP)	\
		return;							\
	do_trap(trapnr, signr, str, 1, regs, error_code, &info);	\
}

I
Ingo Molnar 已提交
582 583 584
#define DO_ERROR(trapnr, signr, str, name)				\
void do_##name(struct pt_regs *regs, long error_code)			\
{									\
585
	trace_hardirqs_fixup();						\
I
Ingo Molnar 已提交
586
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr)	\
587
							== NOTIFY_STOP)	\
I
Ingo Molnar 已提交
588
		return;							\
589
	conditional_sti(regs);						\
I
Ingo Molnar 已提交
590
	do_trap(trapnr, signr, str, 0, regs, error_code, NULL);		\
L
Linus Torvalds 已提交
591 592
}

I
Ingo Molnar 已提交
593 594 595 596 597 598 599 600 601 602 603
#define DO_ERROR_INFO(trapnr, signr, str, name, sicode, siaddr, irq)	\
void do_##name(struct pt_regs *regs, long error_code)			\
{									\
	siginfo_t info;							\
	if (irq)							\
		local_irq_enable();					\
	info.si_signo = signr;						\
	info.si_errno = 0;						\
	info.si_code = sicode;						\
	info.si_addr = (void __user *)siaddr;				\
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr)	\
604
							== NOTIFY_STOP)	\
I
Ingo Molnar 已提交
605
		return;							\
606
	conditional_sti(regs);						\
I
Ingo Molnar 已提交
607
	do_trap(trapnr, signr, str, 0, regs, error_code, &info);	\
L
Linus Torvalds 已提交
608 609
}

I
Ingo Molnar 已提交
610 611 612 613
#define DO_VM86_ERROR(trapnr, signr, str, name)				\
void do_##name(struct pt_regs *regs, long error_code)			\
{									\
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr)	\
614
							== NOTIFY_STOP)	\
I
Ingo Molnar 已提交
615
		return;							\
616
	conditional_sti(regs);						\
I
Ingo Molnar 已提交
617
	do_trap(trapnr, signr, str, 1, regs, error_code, NULL);		\
L
Linus Torvalds 已提交
618 619
}

I
Ingo Molnar 已提交
620 621 622 623 624 625 626 627 628 629
#define DO_VM86_ERROR_INFO(trapnr, signr, str, name, sicode, siaddr)	\
void do_##name(struct pt_regs *regs, long error_code)			\
{									\
	siginfo_t info;							\
	info.si_signo = signr;						\
	info.si_errno = 0;						\
	info.si_code = sicode;						\
	info.si_addr = (void __user *)siaddr;				\
	trace_hardirqs_fixup();						\
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr)	\
630
							== NOTIFY_STOP)	\
I
Ingo Molnar 已提交
631
		return;							\
632
	conditional_sti(regs);						\
I
Ingo Molnar 已提交
633
	do_trap(trapnr, signr, str, 1, regs, error_code, &info);	\
L
Linus Torvalds 已提交
634 635
}

636
DO_VM86_ERROR_INFO(0, SIGFPE, "divide error", divide_error, FPE_INTDIV, regs->ip)
637
DO_VM86_ERROR(4, SIGSEGV, "overflow", overflow)
638
DO_VM86_ERROR(5, SIGSEGV, "bounds", bounds)
639
DO_ERROR_INFO(6, SIGILL, "invalid opcode", invalid_op, ILL_ILLOPN, regs->ip, 0)
640 641 642 643 644 645
DO_TRAP(9, SIGFPE, "coprocessor segment overrun", coprocessor_segment_overrun)
DO_TRAP(10, SIGSEGV, "invalid TSS", invalid_TSS)
DO_TRAP(11, SIGBUS, "segment not present", segment_not_present)
DO_TRAP(12, SIGBUS, "stack segment", stack_segment)
DO_TRAP_INFO(17, SIGBUS, "alignment check", alignment_check, BUS_ADRALN, 0, 0)
DO_TRAP_INFO(32, SIGILL, "iret exception", iret_error, ILL_BADSTK, 0, 1)
L
Linus Torvalds 已提交
646

647 648
void __kprobes
do_general_protection(struct pt_regs *regs, long error_code)
L
Linus Torvalds 已提交
649
{
650
	struct task_struct *tsk;
I
Ingo Molnar 已提交
651 652 653 654 655 656 657
	struct thread_struct *thread;
	struct tss_struct *tss;
	int cpu;

	cpu = get_cpu();
	tss = &per_cpu(init_tss, cpu);
	thread = &current->thread;
L
Linus Torvalds 已提交
658 659 660 661 662 663 664 665

	/*
	 * Perform the lazy TSS's I/O bitmap copy. If the TSS has an
	 * invalid offset set (the LAZY one) and the faulting thread has
	 * a valid I/O bitmap pointer, we copy the I/O bitmap in the TSS
	 * and we set the offset field correctly. Then we let the CPU to
	 * restart the faulting instruction.
	 */
666
	if (tss->x86_tss.io_bitmap_base == INVALID_IO_BITMAP_OFFSET_LAZY &&
L
Linus Torvalds 已提交
667 668 669 670 671 672 673
	    thread->io_bitmap_ptr) {
		memcpy(tss->io_bitmap, thread->io_bitmap_ptr,
		       thread->io_bitmap_max);
		/*
		 * If the previously set map was extending to higher ports
		 * than the current one, pad extra space with 0xff (no access).
		 */
I
Ingo Molnar 已提交
674
		if (thread->io_bitmap_max < tss->io_bitmap_max) {
L
Linus Torvalds 已提交
675 676 677
			memset((char *) tss->io_bitmap +
				thread->io_bitmap_max, 0xff,
				tss->io_bitmap_max - thread->io_bitmap_max);
I
Ingo Molnar 已提交
678
		}
L
Linus Torvalds 已提交
679
		tss->io_bitmap_max = thread->io_bitmap_max;
680
		tss->x86_tss.io_bitmap_base = IO_BITMAP_OFFSET;
681
		tss->io_bitmap_owner = thread;
L
Linus Torvalds 已提交
682
		put_cpu();
I
Ingo Molnar 已提交
683

L
Linus Torvalds 已提交
684 685 686 687
		return;
	}
	put_cpu();

688
	if (regs->flags & X86_VM_MASK)
L
Linus Torvalds 已提交
689 690
		goto gp_in_vm86;

691
	tsk = current;
692
	if (!user_mode(regs))
L
Linus Torvalds 已提交
693 694
		goto gp_in_kernel;

695 696
	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = 13;
I
Ingo Molnar 已提交
697

698 699
	if (show_unhandled_signals && unhandled_signal(tsk, SIGSEGV) &&
			printk_ratelimit()) {
700
		printk(KERN_INFO
701 702 703
			"%s[%d] general protection ip:%lx sp:%lx error:%lx",
			tsk->comm, task_pid_nr(tsk),
			regs->ip, regs->sp, error_code);
704 705 706
		print_vma_addr(" in ", regs->ip);
		printk("\n");
	}
707

708
	force_sig(SIGSEGV, tsk);
L
Linus Torvalds 已提交
709 710 711 712 713 714 715 716
	return;

gp_in_vm86:
	local_irq_enable();
	handle_vm86_fault((struct kernel_vm86_regs *) regs, error_code);
	return;

gp_in_kernel:
717 718 719 720 721 722
	if (fixup_exception(regs))
		return;

	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = 13;
	if (notify_die(DIE_GPF, "general protection fault", regs,
L
Linus Torvalds 已提交
723
				error_code, 13, SIGSEGV) == NOTIFY_STOP)
724 725
		return;
	die("general protection fault", regs, error_code);
L
Linus Torvalds 已提交
726 727
}

728
static notrace __kprobes void
I
Ingo Molnar 已提交
729
mem_parity_error(unsigned char reason, struct pt_regs *regs)
L
Linus Torvalds 已提交
730
{
I
Ingo Molnar 已提交
731 732 733 734 735 736
	printk(KERN_EMERG
		"Uhhuh. NMI received for unknown reason %02x on CPU %d.\n",
			reason, smp_processor_id());

	printk(KERN_EMERG
		"You have some hardware problem, likely on the PCI bus.\n");
D
Dave Jiang 已提交
737 738

#if defined(CONFIG_EDAC)
I
Ingo Molnar 已提交
739
	if (edac_handler_set()) {
D
Dave Jiang 已提交
740 741 742 743 744
		edac_atomic_assert_error();
		return;
	}
#endif

745
	if (panic_on_unrecovered_nmi)
I
Ingo Molnar 已提交
746
		panic("NMI: Not continuing");
L
Linus Torvalds 已提交
747

748
	printk(KERN_EMERG "Dazed and confused, but trying to continue\n");
L
Linus Torvalds 已提交
749 750 751 752 753

	/* Clear and disable the memory parity error line. */
	clear_mem_error(reason);
}

754
static notrace __kprobes void
I
Ingo Molnar 已提交
755
io_check_error(unsigned char reason, struct pt_regs *regs)
L
Linus Torvalds 已提交
756 757 758
{
	unsigned long i;

759
	printk(KERN_EMERG "NMI: IOCK error (debug interrupt?)\n");
L
Linus Torvalds 已提交
760 761 762 763 764
	show_registers(regs);

	/* Re-enable the IOCK line, wait for a few seconds */
	reason = (reason & 0xf) | 8;
	outb(reason, 0x61);
I
Ingo Molnar 已提交
765

L
Linus Torvalds 已提交
766
	i = 2000;
I
Ingo Molnar 已提交
767 768 769
	while (--i)
		udelay(1000);

L
Linus Torvalds 已提交
770 771 772 773
	reason &= ~8;
	outb(reason, 0x61);
}

774
static notrace __kprobes void
I
Ingo Molnar 已提交
775
unknown_nmi_error(unsigned char reason, struct pt_regs *regs)
L
Linus Torvalds 已提交
776
{
J
Jason Wessel 已提交
777 778
	if (notify_die(DIE_NMIUNKNOWN, "nmi", regs, reason, 2, SIGINT) == NOTIFY_STOP)
		return;
L
Linus Torvalds 已提交
779
#ifdef CONFIG_MCA
I
Ingo Molnar 已提交
780 781 782 783 784
	/*
	 * Might actually be able to figure out what the guilty party
	 * is:
	 */
	if (MCA_bus) {
L
Linus Torvalds 已提交
785 786 787 788
		mca_handle_nmi();
		return;
	}
#endif
I
Ingo Molnar 已提交
789 790 791 792
	printk(KERN_EMERG
		"Uhhuh. NMI received for unknown reason %02x on CPU %d.\n",
			reason, smp_processor_id());

793
	printk(KERN_EMERG "Do you have a strange power saving mode enabled?\n");
794
	if (panic_on_unrecovered_nmi)
I
Ingo Molnar 已提交
795
		panic("NMI: Not continuing");
796

797
	printk(KERN_EMERG "Dazed and confused, but trying to continue\n");
L
Linus Torvalds 已提交
798 799 800 801
}

static DEFINE_SPINLOCK(nmi_print_lock);

802
void notrace __kprobes die_nmi(char *str, struct pt_regs *regs, int do_panic)
L
Linus Torvalds 已提交
803
{
804
	if (notify_die(DIE_NMIWATCHDOG, str, regs, 0, 2, SIGINT) == NOTIFY_STOP)
805 806
		return;

L
Linus Torvalds 已提交
807 808 809
	spin_lock(&nmi_print_lock);
	/*
	* We are in trouble anyway, lets at least try
I
Ingo Molnar 已提交
810
	* to get a message out:
L
Linus Torvalds 已提交
811 812
	*/
	bust_spinlocks(1);
813
	printk(KERN_EMERG "%s", str);
814 815
	printk(" on CPU%d, ip %08lx, registers:\n",
		smp_processor_id(), regs->ip);
L
Linus Torvalds 已提交
816
	show_registers(regs);
817 818
	if (do_panic)
		panic("Non maskable interrupt");
L
Linus Torvalds 已提交
819 820 821
	console_silent();
	spin_unlock(&nmi_print_lock);
	bust_spinlocks(0);
822

I
Ingo Molnar 已提交
823 824 825 826
	/*
	 * If we are in kernel we are probably nested up pretty bad
	 * and might aswell get out now while we still can:
	 */
827
	if (!user_mode_vm(regs)) {
828 829 830 831
		current->thread.trap_no = 2;
		crash_kexec(regs);
	}

L
Linus Torvalds 已提交
832 833 834
	do_exit(SIGSEGV);
}

835
static notrace __kprobes void default_do_nmi(struct pt_regs *regs)
L
Linus Torvalds 已提交
836 837
{
	unsigned char reason = 0;
838 839 840
	int cpu;

	cpu = smp_processor_id();
L
Linus Torvalds 已提交
841

842 843
	/* Only the BSP gets external NMIs from the system. */
	if (!cpu)
L
Linus Torvalds 已提交
844
		reason = get_nmi_reason();
I
Ingo Molnar 已提交
845

L
Linus Torvalds 已提交
846
	if (!(reason & 0xc0)) {
847
		if (notify_die(DIE_NMI_IPI, "nmi_ipi", regs, reason, 2, SIGINT)
848
								== NOTIFY_STOP)
L
Linus Torvalds 已提交
849 850 851 852 853 854
			return;
#ifdef CONFIG_X86_LOCAL_APIC
		/*
		 * Ok, so this is none of the documented NMI sources,
		 * so it must be the NMI watchdog.
		 */
855
		if (nmi_watchdog_tick(regs, reason))
L
Linus Torvalds 已提交
856
			return;
857
		if (!do_nmi_callback(regs, cpu))
858
			unknown_nmi_error(reason, regs);
I
Ingo Molnar 已提交
859 860 861
#else
		unknown_nmi_error(reason, regs);
#endif
862

L
Linus Torvalds 已提交
863 864
		return;
	}
865
	if (notify_die(DIE_NMI, "nmi", regs, reason, 2, SIGINT) == NOTIFY_STOP)
L
Linus Torvalds 已提交
866
		return;
867 868

	/* AK: following checks seem to be broken on modern chipsets. FIXME */
L
Linus Torvalds 已提交
869 870 871 872 873 874
	if (reason & 0x80)
		mem_parity_error(reason, regs);
	if (reason & 0x40)
		io_check_error(reason, regs);
	/*
	 * Reassert NMI in case it became active meanwhile
I
Ingo Molnar 已提交
875
	 * as it's edge-triggered:
L
Linus Torvalds 已提交
876 877 878 879
	 */
	reassert_nmi();
}

880
notrace __kprobes void do_nmi(struct pt_regs *regs, long error_code)
L
Linus Torvalds 已提交
881 882 883 884 885 886
{
	int cpu;

	nmi_enter();

	cpu = smp_processor_id();
Z
Zwane Mwaikambo 已提交
887

L
Linus Torvalds 已提交
888 889
	++nmi_count(cpu);

890 891
	if (!ignore_nmis)
		default_do_nmi(regs);
L
Linus Torvalds 已提交
892 893 894 895

	nmi_exit();
}

896 897 898 899 900 901 902 903 904 905 906 907
void stop_nmi(void)
{
	acpi_nmi_disable();
	ignore_nmis++;
}

void restart_nmi(void)
{
	ignore_nmis--;
	acpi_nmi_enable();
}

908
void __kprobes do_int3(struct pt_regs *regs, long error_code)
L
Linus Torvalds 已提交
909
{
910
#ifdef CONFIG_KPROBES
P
Peter Zijlstra 已提交
911 912
	trace_hardirqs_fixup();

L
Linus Torvalds 已提交
913 914
	if (notify_die(DIE_INT3, "int3", regs, error_code, 3, SIGTRAP)
			== NOTIFY_STOP)
915
		return;
I
Ingo Molnar 已提交
916 917 918 919
	/*
	 * This is an interrupt gate, because kprobes wants interrupts
	 * disabled. Normal trap handlers don't.
	 */
920
	conditional_sti(regs);
921 922 923 924 925
#else
	if (notify_die(DIE_TRAP, "int3", regs, error_code, 3, SIGTRAP)
			== NOTIFY_STOP)
		return;
#endif
I
Ingo Molnar 已提交
926

L
Linus Torvalds 已提交
927 928 929 930 931 932 933 934 935 936 937 938 939
	do_trap(3, SIGTRAP, "int3", 1, regs, error_code, NULL);
}

/*
 * Our handling of the processor debug registers is non-trivial.
 * We do not clear them on entry and exit from the kernel. Therefore
 * it is possible to get a watchpoint trap here from inside the kernel.
 * However, the code in ./ptrace.c has ensured that the user can
 * only set watchpoints on userspace addresses. Therefore the in-kernel
 * watchpoint trap can only occur in code which is reading/writing
 * from user space. Such code must not hold kernel locks (since it
 * can equally take a page fault), therefore it is safe to call
 * force_sig_info even though that claims and releases locks.
I
Ingo Molnar 已提交
940
 *
L
Linus Torvalds 已提交
941 942 943 944 945 946 947 948 949 950 951
 * Code in ./signal.c ensures that the debug control register
 * is restored before we deliver any signal, and therefore that
 * user code runs with the correct debug control register even though
 * we clear it here.
 *
 * Being careful here means that we don't have to be as careful in a
 * lot of more complicated places (task switching can be a bit lazy
 * about restoring all the debug state, and ptrace doesn't have to
 * find every occurrence of the TF bit that could be saved away even
 * by user code)
 */
I
Ingo Molnar 已提交
952
void __kprobes do_debug(struct pt_regs *regs, long error_code)
L
Linus Torvalds 已提交
953 954
{
	struct task_struct *tsk = current;
I
Ingo Molnar 已提交
955
	unsigned int condition;
956
	int si_code;
L
Linus Torvalds 已提交
957

958 959
	trace_hardirqs_fixup();

960
	get_debugreg(condition, 6);
L
Linus Torvalds 已提交
961

962 963 964 965 966 967
	/*
	 * The processor cleared BTF, so don't mark that we need it set.
	 */
	clear_tsk_thread_flag(tsk, TIF_DEBUGCTLMSR);
	tsk->thread.debugctlmsr = 0;

L
Linus Torvalds 已提交
968
	if (notify_die(DIE_DEBUG, "debug", regs, condition, error_code,
969
						SIGTRAP) == NOTIFY_STOP)
L
Linus Torvalds 已提交
970 971
		return;
	/* It's safe to allow irq's after DR6 has been saved */
972
	if (regs->flags & X86_EFLAGS_IF)
L
Linus Torvalds 已提交
973 974 975 976
		local_irq_enable();

	/* Mask out spurious debug traps due to lazy DR7 setting */
	if (condition & (DR_TRAP0|DR_TRAP1|DR_TRAP2|DR_TRAP3)) {
977
		if (!tsk->thread.debugreg7)
L
Linus Torvalds 已提交
978 979 980
			goto clear_dr7;
	}

981
	if (regs->flags & X86_VM_MASK)
L
Linus Torvalds 已提交
982 983 984
		goto debug_vm86;

	/* Save debug status register where ptrace can see it */
985
	tsk->thread.debugreg6 = condition;
L
Linus Torvalds 已提交
986 987 988 989 990 991 992 993 994 995 996

	/*
	 * Single-stepping through TF: make sure we ignore any events in
	 * kernel space (but re-enable TF when returning to user mode).
	 */
	if (condition & DR_STEP) {
		/*
		 * We already checked v86 mode above, so we can
		 * check for kernel mode by just checking the CPL
		 * of CS.
		 */
997
		if (!user_mode(regs))
L
Linus Torvalds 已提交
998 999 1000
			goto clear_TF_reenable;
	}

1001
	si_code = get_si_code((unsigned long)condition);
L
Linus Torvalds 已提交
1002
	/* Ok, finally something we can handle */
1003
	send_sigtrap(tsk, regs, error_code, si_code);
L
Linus Torvalds 已提交
1004

I
Ingo Molnar 已提交
1005 1006
	/*
	 * Disable additional traps. They'll be re-enabled when
L
Linus Torvalds 已提交
1007 1008 1009
	 * the signal is delivered.
	 */
clear_dr7:
1010
	set_debugreg(0, 7);
L
Linus Torvalds 已提交
1011 1012 1013 1014 1015 1016 1017 1018
	return;

debug_vm86:
	handle_vm86_trap((struct kernel_vm86_regs *) regs, error_code, 1);
	return;

clear_TF_reenable:
	set_tsk_thread_flag(tsk, TIF_SINGLESTEP);
1019
	regs->flags &= ~X86_EFLAGS_TF;
L
Linus Torvalds 已提交
1020 1021 1022 1023 1024 1025 1026 1027
	return;
}

/*
 * Note that we play around with the 'TS' bit in an attempt to get
 * the correct behaviour even in the presence of the asynchronous
 * IRQ13 behaviour
 */
1028
void math_error(void __user *ip)
L
Linus Torvalds 已提交
1029
{
I
Ingo Molnar 已提交
1030
	struct task_struct *task;
L
Linus Torvalds 已提交
1031
	siginfo_t info;
1032
	unsigned short cwd, swd;
L
Linus Torvalds 已提交
1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043

	/*
	 * Save the info for the exception handler and clear the error.
	 */
	task = current;
	save_init_fpu(task);
	task->thread.trap_no = 16;
	task->thread.error_code = 0;
	info.si_signo = SIGFPE;
	info.si_errno = 0;
	info.si_code = __SI_FAULT;
1044
	info.si_addr = ip;
L
Linus Torvalds 已提交
1045 1046 1047 1048 1049 1050
	/*
	 * (~cwd & swd) will mask out exceptions that are not set to unmasked
	 * status.  0x3f is the exception bits in these regs, 0x200 is the
	 * C1 reg you need in case of a stack fault, 0x040 is the stack
	 * fault bit.  We should only be taking one exception at a time,
	 * so if this combination doesn't produce any single exception,
1051
	 * then we have a bad program that isn't synchronizing its FPU usage
L
Linus Torvalds 已提交
1052 1053 1054 1055 1056
	 * and it will suffer the consequences since we won't be able to
	 * fully reproduce the context of the exception
	 */
	cwd = get_fpu_cwd(task);
	swd = get_fpu_swd(task);
1057
	switch (swd & ~cwd & 0x3f) {
I
Ingo Molnar 已提交
1058 1059
	case 0x000: /* No unmasked exception */
		return;
1060
	default: /* Multiple exceptions */
I
Ingo Molnar 已提交
1061 1062 1063 1064 1065 1066 1067 1068 1069 1070 1071 1072 1073 1074 1075 1076 1077 1078 1079 1080 1081 1082
		break;
	case 0x001: /* Invalid Op */
		/*
		 * swd & 0x240 == 0x040: Stack Underflow
		 * swd & 0x240 == 0x240: Stack Overflow
		 * User must clear the SF bit (0x40) if set
		 */
		info.si_code = FPE_FLTINV;
		break;
	case 0x002: /* Denormalize */
	case 0x010: /* Underflow */
		info.si_code = FPE_FLTUND;
		break;
	case 0x004: /* Zero Divide */
		info.si_code = FPE_FLTDIV;
		break;
	case 0x008: /* Overflow */
		info.si_code = FPE_FLTOVF;
		break;
	case 0x020: /* Precision */
		info.si_code = FPE_FLTRES;
		break;
L
Linus Torvalds 已提交
1083 1084 1085 1086
	}
	force_sig_info(SIGFPE, &info, task);
}

I
Ingo Molnar 已提交
1087
void do_coprocessor_error(struct pt_regs *regs, long error_code)
L
Linus Torvalds 已提交
1088 1089
{
	ignore_fpu_irq = 1;
1090
	math_error((void __user *)regs->ip);
L
Linus Torvalds 已提交
1091 1092
}

1093
static void simd_math_error(void __user *ip)
L
Linus Torvalds 已提交
1094
{
I
Ingo Molnar 已提交
1095 1096
	struct task_struct *task;
	siginfo_t info;
1097
	unsigned short mxcsr;
L
Linus Torvalds 已提交
1098 1099 1100 1101 1102 1103 1104 1105 1106 1107 1108

	/*
	 * Save the info for the exception handler and clear the error.
	 */
	task = current;
	save_init_fpu(task);
	task->thread.trap_no = 19;
	task->thread.error_code = 0;
	info.si_signo = SIGFPE;
	info.si_errno = 0;
	info.si_code = __SI_FAULT;
1109
	info.si_addr = ip;
L
Linus Torvalds 已提交
1110 1111 1112 1113 1114 1115 1116 1117
	/*
	 * The SIMD FPU exceptions are handled a little differently, as there
	 * is only a single status/control register.  Thus, to determine which
	 * unmasked exception was caught we must mask the exception mask bits
	 * at 0x1f80, and then use these to mask the exception bits at 0x3f.
	 */
	mxcsr = get_fpu_mxcsr(task);
	switch (~((mxcsr & 0x1f80) >> 7) & (mxcsr & 0x3f)) {
I
Ingo Molnar 已提交
1118 1119 1120 1121 1122 1123 1124 1125 1126 1127 1128 1129 1130 1131 1132 1133 1134 1135 1136
	case 0x000:
	default:
		break;
	case 0x001: /* Invalid Op */
		info.si_code = FPE_FLTINV;
		break;
	case 0x002: /* Denormalize */
	case 0x010: /* Underflow */
		info.si_code = FPE_FLTUND;
		break;
	case 0x004: /* Zero Divide */
		info.si_code = FPE_FLTDIV;
		break;
	case 0x008: /* Overflow */
		info.si_code = FPE_FLTOVF;
		break;
	case 0x020: /* Precision */
		info.si_code = FPE_FLTRES;
		break;
L
Linus Torvalds 已提交
1137 1138 1139 1140
	}
	force_sig_info(SIGFPE, &info, task);
}

I
Ingo Molnar 已提交
1141
void do_simd_coprocessor_error(struct pt_regs *regs, long error_code)
L
Linus Torvalds 已提交
1142 1143 1144 1145
{
	if (cpu_has_xmm) {
		/* Handle SIMD FPU exceptions on PIII+ processors. */
		ignore_fpu_irq = 1;
1146
		simd_math_error((void __user *)regs->ip);
I
Ingo Molnar 已提交
1147 1148 1149 1150 1151 1152
		return;
	}
	/*
	 * Handle strange cache flush from user space exception
	 * in all other cases.  This is undocumented behaviour.
	 */
1153
	if (regs->flags & X86_VM_MASK) {
I
Ingo Molnar 已提交
1154 1155
		handle_vm86_fault((struct kernel_vm86_regs *)regs, error_code);
		return;
L
Linus Torvalds 已提交
1156
	}
I
Ingo Molnar 已提交
1157 1158 1159 1160
	current->thread.trap_no = 19;
	current->thread.error_code = error_code;
	die_if_kernel("cache flush denied", regs, error_code);
	force_sig(SIGSEGV, current);
L
Linus Torvalds 已提交
1161 1162
}

I
Ingo Molnar 已提交
1163
void do_spurious_interrupt_bug(struct pt_regs *regs, long error_code)
L
Linus Torvalds 已提交
1164 1165 1166
{
#if 0
	/* No need to warn about this any longer. */
I
Ingo Molnar 已提交
1167
	printk(KERN_INFO "Ignoring P6 Local APIC Spurious Interrupt Bug...\n");
L
Linus Torvalds 已提交
1168 1169 1170
#endif
}

I
Ingo Molnar 已提交
1171
unsigned long patch_espfix_desc(unsigned long uesp, unsigned long kesp)
L
Linus Torvalds 已提交
1172
{
G
Glauber Costa 已提交
1173
	struct desc_struct *gdt = get_cpu_gdt_table(smp_processor_id());
S
Stas Sergeev 已提交
1174 1175 1176 1177
	unsigned long base = (kesp - uesp) & -THREAD_SIZE;
	unsigned long new_kesp = kesp - base;
	unsigned long lim_pages = (new_kesp | (THREAD_SIZE - 1)) >> PAGE_SHIFT;
	__u64 desc = *(__u64 *)&gdt[GDT_ENTRY_ESPFIX_SS];
I
Ingo Molnar 已提交
1178

S
Stas Sergeev 已提交
1179
	/* Set up base for espfix segment */
I
Ingo Molnar 已提交
1180 1181
	desc &= 0x00f0ff0000000000ULL;
	desc |=	((((__u64)base) << 16) & 0x000000ffffff0000ULL) |
S
Stas Sergeev 已提交
1182 1183 1184 1185
		((((__u64)base) << 32) & 0xff00000000000000ULL) |
		((((__u64)lim_pages) << 32) & 0x000f000000000000ULL) |
		(lim_pages & 0xffff);
	*(__u64 *)&gdt[GDT_ENTRY_ESPFIX_SS] = desc;
I
Ingo Molnar 已提交
1186

S
Stas Sergeev 已提交
1187
	return new_kesp;
L
Linus Torvalds 已提交
1188 1189 1190
}

/*
I
Ingo Molnar 已提交
1191
 * 'math_state_restore()' saves the current math information in the
L
Linus Torvalds 已提交
1192 1193 1194 1195 1196 1197 1198 1199
 * old math state array, and gets the new ones from the current task
 *
 * Careful.. There are problems with IBM-designed IRQ13 behaviour.
 * Don't touch unless you *really* know how it works.
 *
 * Must be called with kernel preemption disabled (in this case,
 * local interrupts are disabled at the call-site in entry.S).
 */
1200
asmlinkage void math_state_restore(void)
L
Linus Torvalds 已提交
1201 1202 1203 1204
{
	struct thread_info *thread = current_thread_info();
	struct task_struct *tsk = thread->task;

1205 1206 1207 1208 1209 1210 1211 1212 1213 1214 1215 1216 1217 1218 1219
	if (!tsk_used_math(tsk)) {
		local_irq_enable();
		/*
		 * does a slab alloc which can sleep
		 */
		if (init_fpu(tsk)) {
			/*
			 * ran out of memory!
			 */
			do_group_exit(SIGKILL);
			return;
		}
		local_irq_disable();
	}

I
Ingo Molnar 已提交
1220
	clts();				/* Allow maths ops (or we recurse) */
L
Linus Torvalds 已提交
1221 1222
	restore_fpu(tsk);
	thread->status |= TS_USEDFPU;	/* So we fnsave on switch_to() */
1223
	tsk->fpu_counter++;
L
Linus Torvalds 已提交
1224
}
1225
EXPORT_SYMBOL_GPL(math_state_restore);
L
Linus Torvalds 已提交
1226 1227 1228 1229 1230

#ifndef CONFIG_MATH_EMULATION

asmlinkage void math_emulate(long arg)
{
I
Ingo Molnar 已提交
1231 1232 1233 1234
	printk(KERN_EMERG
		"math-emulation not enabled and no coprocessor found.\n");
	printk(KERN_EMERG "killing %s.\n", current->comm);
	force_sig(SIGFPE, current);
L
Linus Torvalds 已提交
1235 1236 1237 1238 1239
	schedule();
}

#endif /* CONFIG_MATH_EMULATION */

1240 1241 1242 1243 1244 1245 1246 1247 1248 1249 1250
void __kprobes do_device_not_available(struct pt_regs *regs, long error)
{
	if (read_cr0() & X86_CR0_EM) {
		conditional_sti(regs);
		math_emulate(0);
	} else {
		math_state_restore(); /* interrupts still off */
		conditional_sti(regs);
	}
}

L
Linus Torvalds 已提交
1251 1252
void __init trap_init(void)
{
1253 1254
	int i;

L
Linus Torvalds 已提交
1255
#ifdef CONFIG_EISA
I
Ingo Molnar 已提交
1256
	void __iomem *p = early_ioremap(0x0FFFD9, 4);
I
Ingo Molnar 已提交
1257 1258

	if (readl(p) == 'E' + ('I'<<8) + ('S'<<16) + ('A'<<24))
L
Linus Torvalds 已提交
1259
		EISA_bus = 1;
I
Ingo Molnar 已提交
1260
	early_iounmap(p, 4);
L
Linus Torvalds 已提交
1261 1262
#endif

1263
	set_intr_gate(0, &divide_error);
1264 1265 1266
	set_intr_gate(1, &debug);
	set_intr_gate(2, &nmi);
	set_system_intr_gate(3, &int3); /* int3 can be called from all */
1267
	set_system_intr_gate(4, &overflow); /* int4 can be called from all */
1268
	set_intr_gate(5, &bounds);
1269
	set_intr_gate(6, &invalid_op);
1270
	set_intr_gate(7, &device_not_available);
1271 1272
	set_task_gate(8, GDT_ENTRY_DOUBLEFAULT_TSS);
	set_trap_gate(9, &coprocessor_segment_overrun);
I
Ingo Molnar 已提交
1273 1274 1275 1276 1277 1278 1279 1280
	set_trap_gate(10, &invalid_TSS);
	set_trap_gate(11, &segment_not_present);
	set_trap_gate(12, &stack_segment);
	set_trap_gate(13, &general_protection);
	set_intr_gate(14, &page_fault);
	set_trap_gate(15, &spurious_interrupt_bug);
	set_trap_gate(16, &coprocessor_error);
	set_trap_gate(17, &alignment_check);
L
Linus Torvalds 已提交
1281
#ifdef CONFIG_X86_MCE
I
Ingo Molnar 已提交
1282
	set_trap_gate(18, &machine_check);
L
Linus Torvalds 已提交
1283
#endif
I
Ingo Molnar 已提交
1284
	set_trap_gate(19, &simd_coprocessor_error);
L
Linus Torvalds 已提交
1285

1286 1287 1288 1289 1290 1291
	if (cpu_has_fxsr) {
		printk(KERN_INFO "Enabling fast FPU save and restore... ");
		set_in_cr4(X86_CR4_OSFXSR);
		printk("done.\n");
	}
	if (cpu_has_xmm) {
I
Ingo Molnar 已提交
1292 1293
		printk(KERN_INFO
			"Enabling unmasked SIMD FPU exception support... ");
1294 1295 1296 1297
		set_in_cr4(X86_CR4_OSXMMEXCPT);
		printk("done.\n");
	}

I
Ingo Molnar 已提交
1298
	set_system_gate(SYSCALL_VECTOR, &system_call);
L
Linus Torvalds 已提交
1299

I
Ingo Molnar 已提交
1300
	/* Reserve all the builtin and the syscall vector: */
1301 1302
	for (i = 0; i < FIRST_EXTERNAL_VECTOR; i++)
		set_bit(i, used_vectors);
I
Ingo Molnar 已提交
1303

1304 1305
	set_bit(SYSCALL_VECTOR, used_vectors);

L
Linus Torvalds 已提交
1306
	/*
I
Ingo Molnar 已提交
1307
	 * Should be a barrier for any external CPU state:
L
Linus Torvalds 已提交
1308 1309 1310 1311 1312 1313 1314 1315 1316
	 */
	cpu_init();

	trap_init_hook();
}

static int __init kstack_setup(char *s)
{
	kstack_depth_to_print = simple_strtoul(s, NULL, 0);
I
Ingo Molnar 已提交
1317

1318
	return 1;
L
Linus Torvalds 已提交
1319 1320
}
__setup("kstack=", kstack_setup);
1321 1322 1323 1324 1325 1326 1327 1328 1329 1330

static int __init code_bytes_setup(char *s)
{
	code_bytes = simple_strtoul(s, NULL, 0);
	if (code_bytes > 8192)
		code_bytes = 8192;

	return 1;
}
__setup("code_bytes=", code_bytes_setup);