debug_core.c 27.3 KB
Newer Older
J
Jason Wessel 已提交
1
/*
2
 * Kernel Debug Core
J
Jason Wessel 已提交
3 4 5 6 7 8
 *
 * Maintainer: Jason Wessel <jason.wessel@windriver.com>
 *
 * Copyright (C) 2000-2001 VERITAS Software Corporation.
 * Copyright (C) 2002-2004 Timesys Corporation
 * Copyright (C) 2003-2004 Amit S. Kale <amitkale@linsyssoft.com>
P
Pavel Machek 已提交
9
 * Copyright (C) 2004 Pavel Machek <pavel@ucw.cz>
J
Jason Wessel 已提交
10 11
 * Copyright (C) 2004-2006 Tom Rini <trini@kernel.crashing.org>
 * Copyright (C) 2004-2006 LinSysSoft Technologies Pvt. Ltd.
12
 * Copyright (C) 2005-2009 Wind River Systems, Inc.
J
Jason Wessel 已提交
13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29
 * Copyright (C) 2007 MontaVista Software, Inc.
 * Copyright (C) 2008 Red Hat, Inc., Ingo Molnar <mingo@redhat.com>
 *
 * Contributors at various stages not listed above:
 *  Jason Wessel ( jason.wessel@windriver.com )
 *  George Anzinger <george@mvista.com>
 *  Anurekh Saxena (anurekh.saxena@timesys.com)
 *  Lake Stevens Instrument Division (Glenn Engel)
 *  Jim Kingdon, Cygnus Support.
 *
 * Original KGDB stub: David Grothe <dave@gcom.com>,
 * Tigran Aivazian <tigran@sco.com>
 *
 * This file is licensed under the terms of the GNU General Public License
 * version 2. This program is licensed "as is" without any warranty of any
 * kind, whether express or implied.
 */
30 31 32

#define pr_fmt(fmt) "KGDB: " fmt

J
Jason Wessel 已提交
33
#include <linux/pid_namespace.h>
J
Jason Wessel 已提交
34
#include <linux/clocksource.h>
35
#include <linux/serial_core.h>
J
Jason Wessel 已提交
36 37 38 39 40 41 42 43 44 45 46 47
#include <linux/interrupt.h>
#include <linux/spinlock.h>
#include <linux/console.h>
#include <linux/threads.h>
#include <linux/uaccess.h>
#include <linux/kernel.h>
#include <linux/module.h>
#include <linux/ptrace.h>
#include <linux/string.h>
#include <linux/delay.h>
#include <linux/sched.h>
#include <linux/sysrq.h>
48
#include <linux/reboot.h>
J
Jason Wessel 已提交
49 50
#include <linux/init.h>
#include <linux/kgdb.h>
J
Jason Wessel 已提交
51
#include <linux/kdb.h>
52
#include <linux/nmi.h>
J
Jason Wessel 已提交
53 54 55
#include <linux/pid.h>
#include <linux/smp.h>
#include <linux/mm.h>
D
Davidlohr Bueso 已提交
56
#include <linux/vmacache.h>
57
#include <linux/rcupdate.h>
58
#include <linux/irq.h>
J
Jason Wessel 已提交
59 60 61

#include <asm/cacheflush.h>
#include <asm/byteorder.h>
A
Arun Sharma 已提交
62
#include <linux/atomic.h>
J
Jason Wessel 已提交
63

64
#include "debug_core.h"
J
Jason Wessel 已提交
65

66
static int kgdb_break_asap;
67

68
struct debuggerinfo_struct kgdb_info[NR_CPUS];
J
Jason Wessel 已提交
69 70 71 72 73 74 75 76

/**
 * kgdb_connected - Is a host GDB connected to us?
 */
int				kgdb_connected;
EXPORT_SYMBOL_GPL(kgdb_connected);

/* All the KGDB handlers are installed */
77
int			kgdb_io_module_registered;
J
Jason Wessel 已提交
78 79 80 81

/* Guard for recursive entry */
static int			exception_level;

82
struct kgdb_io		*dbg_io_ops;
J
Jason Wessel 已提交
83 84
static DEFINE_SPINLOCK(kgdb_registration_lock);

85 86
/* Action for the reboot notifiter, a global allow kdb to change it */
static int kgdbreboot;
J
Jason Wessel 已提交
87 88 89 90
/* kgdb console driver is loaded */
static int kgdb_con_registered;
/* determine if kgdb console output should be used */
static int kgdb_use_con;
91 92
/* Flag for alternate operations for early debugging */
bool dbg_is_early = true;
J
Jason Wessel 已提交
93 94 95 96
/* Next cpu to become the master debug core */
int dbg_switch_cpu;

/* Use kdb or gdbserver mode */
97
int dbg_kdb_mode = 1;
J
Jason Wessel 已提交
98 99 100 101 102 103 104 105 106 107

static int __init opt_kgdb_con(char *str)
{
	kgdb_use_con = 1;
	return 0;
}

early_param("kgdbcon", opt_kgdb_con);

module_param(kgdb_use_con, int, 0644);
108
module_param(kgdbreboot, int, 0644);
J
Jason Wessel 已提交
109 110 111 112 113 114 115 116 117 118 119 120 121

/*
 * Holds information about breakpoints in a kernel. These breakpoints are
 * added and removed by gdb.
 */
static struct kgdb_bkpt		kgdb_break[KGDB_MAX_BREAKPOINTS] = {
	[0 ... KGDB_MAX_BREAKPOINTS-1] = { .state = BP_UNDEFINED }
};

/*
 * The CPU# of the active CPU, or -1 if none:
 */
atomic_t			kgdb_active = ATOMIC_INIT(-1);
J
Jason Wessel 已提交
122
EXPORT_SYMBOL_GPL(kgdb_active);
123 124
static DEFINE_RAW_SPINLOCK(dbg_master_lock);
static DEFINE_RAW_SPINLOCK(dbg_slave_lock);
J
Jason Wessel 已提交
125 126 127 128 129

/*
 * We use NR_CPUs not PERCPU, in case kgdb is used to debug early
 * bootup code (which might not have percpu set up yet):
 */
130 131
static atomic_t			masters_in_kgdb;
static atomic_t			slaves_in_kgdb;
132
static atomic_t			kgdb_break_tasklet_var;
J
Jason Wessel 已提交
133 134 135 136 137 138
atomic_t			kgdb_setting_breakpoint;

struct task_struct		*kgdb_usethread;
struct task_struct		*kgdb_contthread;

int				kgdb_single_step;
139
static pid_t			kgdb_sstep_pid;
J
Jason Wessel 已提交
140 141 142 143 144 145 146 147 148 149 150

/* to keep track of the CPU which is doing the single stepping*/
atomic_t			kgdb_cpu_doing_single_step = ATOMIC_INIT(-1);

/*
 * If you are debugging a problem where roundup (the collection of
 * all other CPUs) is a problem [this should be extremely rare],
 * then use the nokgdbroundup option to avoid roundup. In that case
 * the other CPUs might interfere with your debugging context, so
 * use this with care:
 */
151
static int kgdb_do_roundup = 1;
J
Jason Wessel 已提交
152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169

static int __init opt_nokgdbroundup(char *str)
{
	kgdb_do_roundup = 0;

	return 0;
}

early_param("nokgdbroundup", opt_nokgdbroundup);

/*
 * Finally, some KGDB code :-)
 */

/*
 * Weak aliases for breakpoint management,
 * can be overriden by architectures when needed:
 */
170
int __weak kgdb_arch_set_breakpoint(struct kgdb_bkpt *bpt)
J
Jason Wessel 已提交
171 172 173
{
	int err;

174 175
	err = probe_kernel_read(bpt->saved_instr, (char *)bpt->bpt_addr,
				BREAK_INSTR_SIZE);
J
Jason Wessel 已提交
176 177
	if (err)
		return err;
178 179 180
	err = probe_kernel_write((char *)bpt->bpt_addr,
				 arch_kgdb_ops.gdb_bpt_instr, BREAK_INSTR_SIZE);
	return err;
J
Jason Wessel 已提交
181 182
}

183
int __weak kgdb_arch_remove_breakpoint(struct kgdb_bkpt *bpt)
J
Jason Wessel 已提交
184
{
185 186
	return probe_kernel_write((char *)bpt->bpt_addr,
				  (char *)bpt->saved_instr, BREAK_INSTR_SIZE);
J
Jason Wessel 已提交
187 188
}

189 190
int __weak kgdb_validate_break_address(unsigned long addr)
{
191
	struct kgdb_bkpt tmp;
192
	int err;
193
	/* Validate setting the breakpoint and then removing it.  If the
194 195 196 197
	 * remove fails, the kernel needs to emit a bad message because we
	 * are deep trouble not being able to put things back the way we
	 * found them.
	 */
198 199
	tmp.bpt_addr = addr;
	err = kgdb_arch_set_breakpoint(&tmp);
200 201
	if (err)
		return err;
202
	err = kgdb_arch_remove_breakpoint(&tmp);
203
	if (err)
204 205
		pr_err("Critical breakpoint error, kernel memory destroyed at: %lx\n",
		       addr);
206 207 208
	return err;
}

J
Jason Wessel 已提交
209 210 211 212 213 214 215 216 217 218
unsigned long __weak kgdb_arch_pc(int exception, struct pt_regs *regs)
{
	return instruction_pointer(regs);
}

int __weak kgdb_arch_init(void)
{
	return 0;
}

219 220 221 222 223
int __weak kgdb_skipexception(int exception, struct pt_regs *regs)
{
	return 0;
}

224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249
#ifdef CONFIG_SMP

/*
 * Default (weak) implementation for kgdb_roundup_cpus
 */

static DEFINE_PER_CPU(call_single_data_t, kgdb_roundup_csd);

void __weak kgdb_call_nmi_hook(void *ignored)
{
	/*
	 * NOTE: get_irq_regs() is supposed to get the registers from
	 * before the IPI interrupt happened and so is supposed to
	 * show where the processor was.  In some situations it's
	 * possible we might be called without an IPI, so it might be
	 * safer to figure out how to make kgdb_breakpoint() work
	 * properly here.
	 */
	kgdb_nmicallback(raw_smp_processor_id(), get_irq_regs());
}

void __weak kgdb_roundup_cpus(void)
{
	call_single_data_t *csd;
	int this_cpu = raw_smp_processor_id();
	int cpu;
250
	int ret;
251 252 253 254 255 256 257

	for_each_online_cpu(cpu) {
		/* No need to roundup ourselves */
		if (cpu == this_cpu)
			continue;

		csd = &per_cpu(kgdb_roundup_csd, cpu);
258 259 260 261 262 263 264 265 266 267 268 269 270

		/*
		 * If it didn't round up last time, don't try again
		 * since smp_call_function_single_async() will block.
		 *
		 * If rounding_up is false then we know that the
		 * previous call must have at least started and that
		 * means smp_call_function_single_async() won't block.
		 */
		if (kgdb_info[cpu].rounding_up)
			continue;
		kgdb_info[cpu].rounding_up = true;

271
		csd->func = kgdb_call_nmi_hook;
272 273 274
		ret = smp_call_function_single_async(cpu, csd);
		if (ret)
			kgdb_info[cpu].rounding_up = false;
275 276 277 278 279
	}
}

#endif

J
Jason Wessel 已提交
280 281 282 283 284 285 286 287 288
/*
 * Some architectures need cache flushes when we set/clear a
 * breakpoint:
 */
static void kgdb_flush_swbreak_addr(unsigned long addr)
{
	if (!CACHE_FLUSH_IS_SAFE)
		return;

D
Davidlohr Bueso 已提交
289 290 291 292
	if (current->mm) {
		int i;

		for (i = 0; i < VMACACHE_SIZE; i++) {
293
			if (!current->vmacache.vmas[i])
D
Davidlohr Bueso 已提交
294
				continue;
295
			flush_cache_range(current->vmacache.vmas[i],
D
Davidlohr Bueso 已提交
296 297
					  addr, addr + BREAK_INSTR_SIZE);
		}
J
Jason Wessel 已提交
298
	}
D
Davidlohr Bueso 已提交
299

300 301
	/* Force flush instruction cache if it was outside the mm */
	flush_icache_range(addr, addr + BREAK_INSTR_SIZE);
J
Jason Wessel 已提交
302 303 304 305 306
}

/*
 * SW breakpoint management:
 */
307
int dbg_activate_sw_breakpoints(void)
J
Jason Wessel 已提交
308
{
309 310
	int error;
	int ret = 0;
J
Jason Wessel 已提交
311 312 313 314 315 316
	int i;

	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if (kgdb_break[i].state != BP_SET)
			continue;

317
		error = kgdb_arch_set_breakpoint(&kgdb_break[i]);
318 319
		if (error) {
			ret = error;
320 321
			pr_info("BP install failed: %lx\n",
				kgdb_break[i].bpt_addr);
322 323
			continue;
		}
J
Jason Wessel 已提交
324

325
		kgdb_flush_swbreak_addr(kgdb_break[i].bpt_addr);
J
Jason Wessel 已提交
326 327
		kgdb_break[i].state = BP_ACTIVE;
	}
328
	return ret;
J
Jason Wessel 已提交
329 330
}

331
int dbg_set_sw_break(unsigned long addr)
J
Jason Wessel 已提交
332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370 371
{
	int err = kgdb_validate_break_address(addr);
	int breakno = -1;
	int i;

	if (err)
		return err;

	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if ((kgdb_break[i].state == BP_SET) &&
					(kgdb_break[i].bpt_addr == addr))
			return -EEXIST;
	}
	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if (kgdb_break[i].state == BP_REMOVED &&
					kgdb_break[i].bpt_addr == addr) {
			breakno = i;
			break;
		}
	}

	if (breakno == -1) {
		for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
			if (kgdb_break[i].state == BP_UNDEFINED) {
				breakno = i;
				break;
			}
		}
	}

	if (breakno == -1)
		return -E2BIG;

	kgdb_break[breakno].state = BP_SET;
	kgdb_break[breakno].type = BP_BREAKPOINT;
	kgdb_break[breakno].bpt_addr = addr;

	return 0;
}

J
Jason Wessel 已提交
372
int dbg_deactivate_sw_breakpoints(void)
J
Jason Wessel 已提交
373
{
374 375
	int error;
	int ret = 0;
J
Jason Wessel 已提交
376 377 378 379 380
	int i;

	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if (kgdb_break[i].state != BP_ACTIVE)
			continue;
381
		error = kgdb_arch_remove_breakpoint(&kgdb_break[i]);
382
		if (error) {
383 384
			pr_info("BP remove failed: %lx\n",
				kgdb_break[i].bpt_addr);
385 386
			ret = error;
		}
J
Jason Wessel 已提交
387

388
		kgdb_flush_swbreak_addr(kgdb_break[i].bpt_addr);
J
Jason Wessel 已提交
389 390
		kgdb_break[i].state = BP_SET;
	}
391
	return ret;
J
Jason Wessel 已提交
392 393
}

394
int dbg_remove_sw_break(unsigned long addr)
J
Jason Wessel 已提交
395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419
{
	int i;

	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if ((kgdb_break[i].state == BP_SET) &&
				(kgdb_break[i].bpt_addr == addr)) {
			kgdb_break[i].state = BP_REMOVED;
			return 0;
		}
	}
	return -ENOENT;
}

int kgdb_isremovedbreak(unsigned long addr)
{
	int i;

	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if ((kgdb_break[i].state == BP_REMOVED) &&
					(kgdb_break[i].bpt_addr == addr))
			return 1;
	}
	return 0;
}

420
int dbg_remove_all_break(void)
J
Jason Wessel 已提交
421 422 423 424 425 426
{
	int error;
	int i;

	/* Clear memory breakpoints. */
	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
427 428
		if (kgdb_break[i].state != BP_ACTIVE)
			goto setundefined;
429
		error = kgdb_arch_remove_breakpoint(&kgdb_break[i]);
J
Jason Wessel 已提交
430
		if (error)
431
			pr_err("breakpoint remove failed: %lx\n",
432
			       kgdb_break[i].bpt_addr);
433 434
setundefined:
		kgdb_break[i].state = BP_UNDEFINED;
J
Jason Wessel 已提交
435 436 437 438 439 440 441 442 443
	}

	/* Clear hardware breakpoints. */
	if (arch_kgdb_ops.remove_all_hw_break)
		arch_kgdb_ops.remove_all_hw_break();

	return 0;
}

444 445 446
#ifdef CONFIG_KGDB_KDB
void kdb_dump_stack_on_cpu(int cpu)
{
447
	if (cpu == raw_smp_processor_id() || !IS_ENABLED(CONFIG_SMP)) {
448 449 450 451 452 453 454 455 456 457 458 459 460 461 462 463 464 465 466 467 468 469 470 471 472 473 474
		dump_stack();
		return;
	}

	if (!(kgdb_info[cpu].exception_state & DCPU_IS_SLAVE)) {
		kdb_printf("ERROR: Task on cpu %d didn't stop in the debugger\n",
			   cpu);
		return;
	}

	/*
	 * In general, architectures don't support dumping the stack of a
	 * "running" process that's not the current one.  From the point of
	 * view of the Linux, kernel processes that are looping in the kgdb
	 * slave loop are still "running".  There's also no API (that actually
	 * works across all architectures) that can do a stack crawl based
	 * on registers passed as a parameter.
	 *
	 * Solve this conundrum by asking slave CPUs to do the backtrace
	 * themselves.
	 */
	kgdb_info[cpu].exception_state |= DCPU_WANT_BT;
	while (kgdb_info[cpu].exception_state & DCPU_WANT_BT)
		cpu_relax();
}
#endif

J
Jason Wessel 已提交
475 476 477 478 479 480 481 482 483 484 485
/*
 * Return true if there is a valid kgdb I/O module.  Also if no
 * debugger is attached a message can be printed to the console about
 * waiting for the debugger to attach.
 *
 * The print_wait argument is only to be true when called from inside
 * the core kgdb_handle_exception, because it will wait for the
 * debugger to attach.
 */
static int kgdb_io_ready(int print_wait)
{
486
	if (!dbg_io_ops)
J
Jason Wessel 已提交
487 488 489 490 491
		return 0;
	if (kgdb_connected)
		return 1;
	if (atomic_read(&kgdb_setting_breakpoint))
		return 1;
J
Jason Wessel 已提交
492 493 494
	if (print_wait) {
#ifdef CONFIG_KGDB_KDB
		if (!dbg_kdb_mode)
495
			pr_crit("waiting... or $3#33 for KDB\n");
J
Jason Wessel 已提交
496
#else
497
		pr_crit("Waiting for remote debugger\n");
J
Jason Wessel 已提交
498 499
#endif
	}
J
Jason Wessel 已提交
500 501 502 503 504 505 506 507 508 509 510 511 512
	return 1;
}

static int kgdb_reenter_check(struct kgdb_state *ks)
{
	unsigned long addr;

	if (atomic_read(&kgdb_active) != raw_smp_processor_id())
		return 0;

	/* Panic on recursive debugger calls: */
	exception_level++;
	addr = kgdb_arch_pc(ks->ex_vector, ks->linux_regs);
J
Jason Wessel 已提交
513
	dbg_deactivate_sw_breakpoints();
J
Jason Wessel 已提交
514 515 516 517 518 519 520

	/*
	 * If the break point removed ok at the place exception
	 * occurred, try to recover and print a warning to the end
	 * user because the user planted a breakpoint in a place that
	 * KGDB needs in order to function.
	 */
521
	if (dbg_remove_sw_break(addr) == 0) {
J
Jason Wessel 已提交
522 523
		exception_level = 0;
		kgdb_skipexception(ks->ex_vector, ks->linux_regs);
524
		dbg_activate_sw_breakpoints();
525
		pr_crit("re-enter error: breakpoint removed %lx\n", addr);
J
Jason Wessel 已提交
526 527 528 529
		WARN_ON_ONCE(1);

		return 1;
	}
530
	dbg_remove_all_break();
J
Jason Wessel 已提交
531 532 533 534 535 536 537
	kgdb_skipexception(ks->ex_vector, ks->linux_regs);

	if (exception_level > 1) {
		dump_stack();
		panic("Recursive entry to debugger");
	}

538
	pr_crit("re-enter exception: ALL breakpoints killed\n");
539 540 541 542
#ifdef CONFIG_KGDB_KDB
	/* Allow kdb to debug itself one level */
	return 0;
#endif
J
Jason Wessel 已提交
543 544 545 546 547 548
	dump_stack();
	panic("Recursive entry to debugger");

	return 1;
}

549 550 551 552
static void dbg_touch_watchdogs(void)
{
	touch_softlockup_watchdog_sync();
	clocksource_touch_watchdog();
553
	rcu_cpu_stall_reset();
554 555
}

556 557
static int kgdb_cpu_enter(struct kgdb_state *ks, struct pt_regs *regs,
		int exception_state)
J
Jason Wessel 已提交
558 559
{
	unsigned long flags;
560
	int sstep_tries = 100;
J
Jason Wessel 已提交
561
	int error;
562
	int cpu;
563
	int trace_on = 0;
564
	int online_cpus = num_online_cpus();
565
	u64 time_left;
566

567 568 569 570 571 572 573
	kgdb_info[ks->cpu].enter_kgdb++;
	kgdb_info[ks->cpu].exception_state |= exception_state;

	if (exception_state == DCPU_WANT_MASTER)
		atomic_inc(&masters_in_kgdb);
	else
		atomic_inc(&slaves_in_kgdb);
574 575 576

	if (arch_kgdb_ops.disable_hw_break)
		arch_kgdb_ops.disable_hw_break(regs);
577

J
Jason Wessel 已提交
578 579 580 581 582 583 584
acquirelock:
	/*
	 * Interrupts will be restored by the 'trap return' code, except when
	 * single stepping.
	 */
	local_irq_save(flags);

585 586 587
	cpu = ks->cpu;
	kgdb_info[cpu].debuggerinfo = regs;
	kgdb_info[cpu].task = current;
J
Jason Wessel 已提交
588 589
	kgdb_info[cpu].ret_state = 0;
	kgdb_info[cpu].irq_depth = hardirq_count() >> HARDIRQ_SHIFT;
J
Jason Wessel 已提交
590

591 592 593 594 595 596
	/* Make sure the above info reaches the primary CPU */
	smp_mb();

	if (exception_level == 1) {
		if (raw_spin_trylock(&dbg_master_lock))
			atomic_xchg(&kgdb_active, cpu);
597
		goto cpu_master_loop;
598
	}
599

J
Jason Wessel 已提交
600
	/*
601 602
	 * CPU will loop if it is a slave or request to become a kgdb
	 * master cpu and acquire the kgdb_active lock:
J
Jason Wessel 已提交
603
	 */
604
	while (1) {
J
Jason Wessel 已提交
605 606 607 608 609
cpu_loop:
		if (kgdb_info[cpu].exception_state & DCPU_NEXT_MASTER) {
			kgdb_info[cpu].exception_state &= ~DCPU_NEXT_MASTER;
			goto cpu_master_loop;
		} else if (kgdb_info[cpu].exception_state & DCPU_WANT_MASTER) {
610 611
			if (raw_spin_trylock(&dbg_master_lock)) {
				atomic_xchg(&kgdb_active, cpu);
612
				break;
613
			}
614 615 616
		} else if (kgdb_info[cpu].exception_state & DCPU_WANT_BT) {
			dump_stack();
			kgdb_info[cpu].exception_state &= ~DCPU_WANT_BT;
617
		} else if (kgdb_info[cpu].exception_state & DCPU_IS_SLAVE) {
618
			if (!raw_spin_is_locked(&dbg_slave_lock))
619 620 621 622 623 624 625 626
				goto return_normal;
		} else {
return_normal:
			/* Return to normal operation by executing any
			 * hw breakpoint fixup.
			 */
			if (arch_kgdb_ops.correct_hw_break)
				arch_kgdb_ops.correct_hw_break();
627 628
			if (trace_on)
				tracing_on();
629 630
			kgdb_info[cpu].debuggerinfo = NULL;
			kgdb_info[cpu].task = NULL;
631 632 633
			kgdb_info[cpu].exception_state &=
				~(DCPU_WANT_MASTER | DCPU_IS_SLAVE);
			kgdb_info[cpu].enter_kgdb--;
634
			smp_mb__before_atomic();
635
			atomic_dec(&slaves_in_kgdb);
636
			dbg_touch_watchdogs();
637 638 639
			local_irq_restore(flags);
			return 0;
		}
J
Jason Wessel 已提交
640
		cpu_relax();
641
	}
J
Jason Wessel 已提交
642 643

	/*
644
	 * For single stepping, try to only enter on the processor
L
Lucas De Marchi 已提交
645
	 * that was single stepping.  To guard against a deadlock, the
646 647
	 * kernel will only try for the value of sstep_tries before
	 * giving up and continuing on.
J
Jason Wessel 已提交
648 649
	 */
	if (atomic_read(&kgdb_cpu_doing_single_step) != -1 &&
650 651
	    (kgdb_info[cpu].task &&
	     kgdb_info[cpu].task->pid != kgdb_sstep_pid) && --sstep_tries) {
J
Jason Wessel 已提交
652
		atomic_set(&kgdb_active, -1);
653
		raw_spin_unlock(&dbg_master_lock);
654
		dbg_touch_watchdogs();
J
Jason Wessel 已提交
655 656 657 658 659 660
		local_irq_restore(flags);

		goto acquirelock;
	}

	if (!kgdb_io_ready(1)) {
J
Jason Wessel 已提交
661
		kgdb_info[cpu].ret_state = 1;
662
		goto kgdb_restore; /* No I/O connection, resume the system */
J
Jason Wessel 已提交
663 664 665 666 667 668 669 670 671
	}

	/*
	 * Don't enter if we have hit a removed breakpoint.
	 */
	if (kgdb_skipexception(ks->ex_vector, ks->linux_regs))
		goto kgdb_restore;

	/* Call the I/O driver's pre_exception routine */
672 673
	if (dbg_io_ops->pre_exception)
		dbg_io_ops->pre_exception();
J
Jason Wessel 已提交
674 675 676 677 678

	/*
	 * Get the passive CPU lock which will hold all the non-primary
	 * CPU in a spin state while the debugger is active
	 */
679 680
	if (!kgdb_single_step)
		raw_spin_lock(&dbg_slave_lock);
J
Jason Wessel 已提交
681

682
#ifdef CONFIG_SMP
683 684 685 686
	/* If send_ready set, slaves are already waiting */
	if (ks->send_ready)
		atomic_set(ks->send_ready, 1);

687
	/* Signal the other CPUs to enter kgdb_wait() */
688
	else if ((!kgdb_single_step) && kgdb_do_roundup)
689
		kgdb_roundup_cpus();
690 691
#endif

J
Jason Wessel 已提交
692 693 694
	/*
	 * Wait for the other CPUs to be notified and be waiting for us:
	 */
695
	time_left = MSEC_PER_SEC;
696 697 698
	while (kgdb_do_roundup && --time_left &&
	       (atomic_read(&masters_in_kgdb) + atomic_read(&slaves_in_kgdb)) !=
		   online_cpus)
699
		udelay(1000);
700
	if (!time_left)
701
		pr_crit("Timed out waiting for secondary CPUs.\n");
J
Jason Wessel 已提交
702 703 704 705 706

	/*
	 * At this point the primary processor is completely
	 * in the debugger and all secondary CPUs are quiescent
	 */
J
Jason Wessel 已提交
707
	dbg_deactivate_sw_breakpoints();
J
Jason Wessel 已提交
708
	kgdb_single_step = 0;
709
	kgdb_contthread = current;
J
Jason Wessel 已提交
710
	exception_level = 0;
711 712 713
	trace_on = tracing_is_on();
	if (trace_on)
		tracing_off();
J
Jason Wessel 已提交
714

J
Jason Wessel 已提交
715 716 717 718 719
	while (1) {
cpu_master_loop:
		if (dbg_kdb_mode) {
			kgdb_connected = 1;
			error = kdb_stub(ks);
720 721
			if (error == -1)
				continue;
722
			kgdb_connected = 0;
J
Jason Wessel 已提交
723 724 725 726 727 728 729
		} else {
			error = gdb_serial_stub(ks);
		}

		if (error == DBG_PASS_EVENT) {
			dbg_kdb_mode = !dbg_kdb_mode;
		} else if (error == DBG_SWITCH_CPU_EVENT) {
730 731
			kgdb_info[dbg_switch_cpu].exception_state |=
				DCPU_NEXT_MASTER;
J
Jason Wessel 已提交
732 733 734 735 736 737
			goto cpu_loop;
		} else {
			kgdb_info[cpu].ret_state = error;
			break;
		}
	}
J
Jason Wessel 已提交
738 739

	/* Call the I/O driver's post_exception routine */
740 741
	if (dbg_io_ops->post_exception)
		dbg_io_ops->post_exception();
J
Jason Wessel 已提交
742

743
	if (!kgdb_single_step) {
744 745 746 747
		raw_spin_unlock(&dbg_slave_lock);
		/* Wait till all the CPUs have quit from the debugger. */
		while (kgdb_do_roundup && atomic_read(&slaves_in_kgdb))
			cpu_relax();
J
Jason Wessel 已提交
748 749 750
	}

kgdb_restore:
751 752 753 754 755 756 757
	if (atomic_read(&kgdb_cpu_doing_single_step) != -1) {
		int sstep_cpu = atomic_read(&kgdb_cpu_doing_single_step);
		if (kgdb_info[sstep_cpu].task)
			kgdb_sstep_pid = kgdb_info[sstep_cpu].task->pid;
		else
			kgdb_sstep_pid = 0;
	}
758 759
	if (arch_kgdb_ops.correct_hw_break)
		arch_kgdb_ops.correct_hw_break();
760 761
	if (trace_on)
		tracing_on();
762

763 764
	kgdb_info[cpu].debuggerinfo = NULL;
	kgdb_info[cpu].task = NULL;
765 766 767
	kgdb_info[cpu].exception_state &=
		~(DCPU_WANT_MASTER | DCPU_IS_SLAVE);
	kgdb_info[cpu].enter_kgdb--;
768
	smp_mb__before_atomic();
769
	atomic_dec(&masters_in_kgdb);
J
Jason Wessel 已提交
770 771
	/* Free kgdb_active */
	atomic_set(&kgdb_active, -1);
772
	raw_spin_unlock(&dbg_master_lock);
773
	dbg_touch_watchdogs();
J
Jason Wessel 已提交
774 775
	local_irq_restore(flags);

J
Jason Wessel 已提交
776
	return kgdb_info[cpu].ret_state;
J
Jason Wessel 已提交
777 778
}

779 780 781 782 783 784 785 786 787 788 789 790
/*
 * kgdb_handle_exception() - main entry point from a kernel exception
 *
 * Locking hierarchy:
 *	interface locks, if any (begin_session)
 *	kgdb lock (kgdb_active)
 */
int
kgdb_handle_exception(int evector, int signo, int ecode, struct pt_regs *regs)
{
	struct kgdb_state kgdb_var;
	struct kgdb_state *ks = &kgdb_var;
791 792 793 794
	int ret = 0;

	if (arch_kgdb_ops.enable_nmi)
		arch_kgdb_ops.enable_nmi(0);
795 796 797 798 799 800 801 802
	/*
	 * Avoid entering the debugger if we were triggered due to an oops
	 * but panic_timeout indicates the system should automatically
	 * reboot on panic. We don't want to get stuck waiting for input
	 * on such systems, especially if its "just" an oops.
	 */
	if (signo != SIGTRAP && panic_timeout)
		return 1;
803

804
	memset(ks, 0, sizeof(struct kgdb_state));
805 806 807 808 809 810 811
	ks->cpu			= raw_smp_processor_id();
	ks->ex_vector		= evector;
	ks->signo		= signo;
	ks->err_code		= ecode;
	ks->linux_regs		= regs;

	if (kgdb_reenter_check(ks))
812
		goto out; /* Ouch, double exception ! */
813
	if (kgdb_info[ks->cpu].enter_kgdb != 0)
814
		goto out;
815

816 817 818 819 820
	ret = kgdb_cpu_enter(ks, regs, DCPU_WANT_MASTER);
out:
	if (arch_kgdb_ops.enable_nmi)
		arch_kgdb_ops.enable_nmi(1);
	return ret;
821 822
}

J
Jason Wessel 已提交
823
/*
824
 * GDB places a breakpoint at this function to know dynamically loaded objects.
J
Jason Wessel 已提交
825 826 827 828 829 830 831 832 833 834 835
 */
static int module_event(struct notifier_block *self, unsigned long val,
	void *data)
{
	return 0;
}

static struct notifier_block dbg_module_load_nb = {
	.notifier_call	= module_event,
};

J
Jason Wessel 已提交
836 837 838
int kgdb_nmicallback(int cpu, void *regs)
{
#ifdef CONFIG_SMP
839 840 841
	struct kgdb_state kgdb_var;
	struct kgdb_state *ks = &kgdb_var;

842 843
	kgdb_info[cpu].rounding_up = false;

844 845 846 847
	memset(ks, 0, sizeof(struct kgdb_state));
	ks->cpu			= cpu;
	ks->linux_regs		= regs;

848 849 850
	if (kgdb_info[ks->cpu].enter_kgdb == 0 &&
			raw_spin_is_locked(&dbg_master_lock)) {
		kgdb_cpu_enter(ks, regs, DCPU_IS_SLAVE);
J
Jason Wessel 已提交
851 852 853 854 855 856
		return 0;
	}
#endif
	return 1;
}

857 858
int kgdb_nmicallin(int cpu, int trapnr, void *regs, int err_code,
							atomic_t *send_ready)
859 860 861 862 863 864 865 866 867 868 869 870 871
{
#ifdef CONFIG_SMP
	if (!kgdb_io_ready(0) || !send_ready)
		return 1;

	if (kgdb_info[cpu].enter_kgdb == 0) {
		struct kgdb_state kgdb_var;
		struct kgdb_state *ks = &kgdb_var;

		memset(ks, 0, sizeof(struct kgdb_state));
		ks->cpu			= cpu;
		ks->ex_vector		= trapnr;
		ks->signo		= SIGTRAP;
872
		ks->err_code		= err_code;
873 874 875 876 877 878 879 880 881
		ks->linux_regs		= regs;
		ks->send_ready		= send_ready;
		kgdb_cpu_enter(ks, regs, DCPU_WANT_MASTER);
		return 0;
	}
#endif
	return 1;
}

J
Jason Wessel 已提交
882 883
static void kgdb_console_write(struct console *co, const char *s,
   unsigned count)
J
Jason Wessel 已提交
884 885 886 887 888
{
	unsigned long flags;

	/* If we're debugging, or KGDB has not connected, don't try
	 * and print. */
J
Jason Wessel 已提交
889
	if (!kgdb_connected || atomic_read(&kgdb_active) != -1 || dbg_kdb_mode)
J
Jason Wessel 已提交
890 891 892
		return;

	local_irq_save(flags);
893
	gdbstub_msg_write(s, count);
J
Jason Wessel 已提交
894 895 896 897 898 899 900 901 902 903 904
	local_irq_restore(flags);
}

static struct console kgdbcons = {
	.name		= "kgdb",
	.write		= kgdb_console_write,
	.flags		= CON_PRINTBUFFER | CON_ENABLED,
	.index		= -1,
};

#ifdef CONFIG_MAGIC_SYSRQ
905
static void sysrq_handle_dbg(int key)
J
Jason Wessel 已提交
906
{
907
	if (!dbg_io_ops) {
908
		pr_crit("ERROR: No KGDB I/O module available\n");
J
Jason Wessel 已提交
909 910
		return;
	}
J
Jason Wessel 已提交
911 912 913
	if (!kgdb_connected) {
#ifdef CONFIG_KGDB_KDB
		if (!dbg_kdb_mode)
914
			pr_crit("KGDB or $3#33 for KDB\n");
J
Jason Wessel 已提交
915
#else
916
		pr_crit("Entering KGDB\n");
J
Jason Wessel 已提交
917 918
#endif
	}
J
Jason Wessel 已提交
919 920 921 922

	kgdb_breakpoint();
}

923 924
static struct sysrq_key_op sysrq_dbg_op = {
	.handler	= sysrq_handle_dbg,
925
	.help_msg	= "debug(g)",
926
	.action_msg	= "DEBUG",
J
Jason Wessel 已提交
927 928 929
};
#endif

930
void kgdb_panic(const char *msg)
931
{
932 933 934
	if (!kgdb_io_module_registered)
		return;

935
	/*
936 937
	 * We don't want to get stuck waiting for input from user if
	 * "panic_timeout" indicates the system should automatically
938 939 940
	 * reboot on panic.
	 */
	if (panic_timeout)
941
		return;
942

943
	if (dbg_kdb_mode)
944 945
		kdb_printf("PANIC: %s\n", msg);

946 947 948
	kgdb_breakpoint();
}

949 950 951 952 953 954 955 956 957 958 959 960
void __weak kgdb_arch_late(void)
{
}

void __init dbg_late_init(void)
{
	dbg_is_early = false;
	if (kgdb_io_module_registered)
		kgdb_arch_late();
	kdb_init(KDB_INIT_FULL);
}

961 962 963
static int
dbg_notify_reboot(struct notifier_block *this, unsigned long code, void *x)
{
964 965 966 967 968 969 970 971 972 973 974 975
	/*
	 * Take the following action on reboot notify depending on value:
	 *    1 == Enter debugger
	 *    0 == [the default] detatch debug client
	 *   -1 == Do nothing... and use this until the board resets
	 */
	switch (kgdbreboot) {
	case 1:
		kgdb_breakpoint();
	case -1:
		goto done;
	}
976 977
	if (!dbg_kdb_mode)
		gdbstub_exit(code);
978
done:
979 980 981 982 983 984 985 986 987
	return NOTIFY_DONE;
}

static struct notifier_block dbg_reboot_notifier = {
	.notifier_call		= dbg_notify_reboot,
	.next			= NULL,
	.priority		= INT_MAX,
};

J
Jason Wessel 已提交
988 989 990 991 992
static void kgdb_register_callbacks(void)
{
	if (!kgdb_io_module_registered) {
		kgdb_io_module_registered = 1;
		kgdb_arch_init();
993 994
		if (!dbg_is_early)
			kgdb_arch_late();
J
Jason Wessel 已提交
995
		register_module_notifier(&dbg_module_load_nb);
996
		register_reboot_notifier(&dbg_reboot_notifier);
J
Jason Wessel 已提交
997
#ifdef CONFIG_MAGIC_SYSRQ
998
		register_sysrq_key('g', &sysrq_dbg_op);
J
Jason Wessel 已提交
999 1000 1001 1002 1003 1004 1005 1006 1007 1008 1009
#endif
		if (kgdb_use_con && !kgdb_con_registered) {
			register_console(&kgdbcons);
			kgdb_con_registered = 1;
		}
	}
}

static void kgdb_unregister_callbacks(void)
{
	/*
1010 1011
	 * When this routine is called KGDB should unregister from
	 * handlers and clean up, making sure it is not handling any
J
Jason Wessel 已提交
1012 1013 1014 1015
	 * break exceptions at the time.
	 */
	if (kgdb_io_module_registered) {
		kgdb_io_module_registered = 0;
1016
		unregister_reboot_notifier(&dbg_reboot_notifier);
J
Jason Wessel 已提交
1017
		unregister_module_notifier(&dbg_module_load_nb);
J
Jason Wessel 已提交
1018 1019
		kgdb_arch_exit();
#ifdef CONFIG_MAGIC_SYSRQ
1020
		unregister_sysrq_key('g', &sysrq_dbg_op);
J
Jason Wessel 已提交
1021 1022 1023 1024 1025 1026 1027 1028
#endif
		if (kgdb_con_registered) {
			unregister_console(&kgdbcons);
			kgdb_con_registered = 0;
		}
	}
}

1029 1030 1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043 1044 1045 1046 1047 1048 1049 1050 1051 1052 1053
/*
 * There are times a tasklet needs to be used vs a compiled in
 * break point so as to cause an exception outside a kgdb I/O module,
 * such as is the case with kgdboe, where calling a breakpoint in the
 * I/O driver itself would be fatal.
 */
static void kgdb_tasklet_bpt(unsigned long ing)
{
	kgdb_breakpoint();
	atomic_set(&kgdb_break_tasklet_var, 0);
}

static DECLARE_TASKLET(kgdb_tasklet_breakpoint, kgdb_tasklet_bpt, 0);

void kgdb_schedule_breakpoint(void)
{
	if (atomic_read(&kgdb_break_tasklet_var) ||
		atomic_read(&kgdb_active) != -1 ||
		atomic_read(&kgdb_setting_breakpoint))
		return;
	atomic_inc(&kgdb_break_tasklet_var);
	tasklet_schedule(&kgdb_tasklet_breakpoint);
}
EXPORT_SYMBOL_GPL(kgdb_schedule_breakpoint);

J
Jason Wessel 已提交
1054 1055 1056 1057
static void kgdb_initial_breakpoint(void)
{
	kgdb_break_asap = 0;

1058
	pr_crit("Waiting for connection from remote gdb...\n");
J
Jason Wessel 已提交
1059 1060 1061 1062
	kgdb_breakpoint();
}

/**
1063
 *	kgdb_register_io_module - register KGDB IO module
1064
 *	@new_dbg_io_ops: the io ops vector
J
Jason Wessel 已提交
1065 1066 1067
 *
 *	Register it with the KGDB core.
 */
1068
int kgdb_register_io_module(struct kgdb_io *new_dbg_io_ops)
J
Jason Wessel 已提交
1069 1070 1071 1072 1073
{
	int err;

	spin_lock(&kgdb_registration_lock);

1074
	if (dbg_io_ops) {
J
Jason Wessel 已提交
1075 1076
		spin_unlock(&kgdb_registration_lock);

1077
		pr_err("Another I/O driver is already registered with KGDB\n");
J
Jason Wessel 已提交
1078 1079 1080
		return -EBUSY;
	}

1081 1082
	if (new_dbg_io_ops->init) {
		err = new_dbg_io_ops->init();
J
Jason Wessel 已提交
1083 1084 1085 1086 1087 1088
		if (err) {
			spin_unlock(&kgdb_registration_lock);
			return err;
		}
	}

1089
	dbg_io_ops = new_dbg_io_ops;
J
Jason Wessel 已提交
1090 1091 1092

	spin_unlock(&kgdb_registration_lock);

1093
	pr_info("Registered I/O driver %s\n", new_dbg_io_ops->name);
J
Jason Wessel 已提交
1094 1095 1096 1097 1098 1099 1100 1101 1102 1103 1104 1105 1106

	/* Arm KGDB now. */
	kgdb_register_callbacks();

	if (kgdb_break_asap)
		kgdb_initial_breakpoint();

	return 0;
}
EXPORT_SYMBOL_GPL(kgdb_register_io_module);

/**
 *	kkgdb_unregister_io_module - unregister KGDB IO module
1107
 *	@old_dbg_io_ops: the io ops vector
J
Jason Wessel 已提交
1108 1109 1110
 *
 *	Unregister it with the KGDB core.
 */
1111
void kgdb_unregister_io_module(struct kgdb_io *old_dbg_io_ops)
J
Jason Wessel 已提交
1112 1113 1114 1115 1116 1117 1118 1119 1120 1121 1122
{
	BUG_ON(kgdb_connected);

	/*
	 * KGDB is no longer able to communicate out, so
	 * unregister our callbacks and reset state.
	 */
	kgdb_unregister_callbacks();

	spin_lock(&kgdb_registration_lock);

1123 1124
	WARN_ON_ONCE(dbg_io_ops != old_dbg_io_ops);
	dbg_io_ops = NULL;
J
Jason Wessel 已提交
1125 1126 1127

	spin_unlock(&kgdb_registration_lock);

1128
	pr_info("Unregistered I/O driver %s, debugger disabled\n",
1129
		old_dbg_io_ops->name);
J
Jason Wessel 已提交
1130 1131 1132
}
EXPORT_SYMBOL_GPL(kgdb_unregister_io_module);

J
Jason Wessel 已提交
1133 1134 1135
int dbg_io_get_char(void)
{
	int ret = dbg_io_ops->read_char();
1136 1137
	if (ret == NO_POLL_CHAR)
		return -1;
J
Jason Wessel 已提交
1138 1139 1140 1141 1142 1143 1144
	if (!dbg_kdb_mode)
		return ret;
	if (ret == 127)
		return 8;
	return ret;
}

J
Jason Wessel 已提交
1145 1146 1147 1148 1149 1150 1151 1152
/**
 * kgdb_breakpoint - generate breakpoint exception
 *
 * This function will generate a breakpoint exception.  It is used at the
 * beginning of a program to sync up with a debugger and can be used
 * otherwise as a quick means to stop program execution and "break" into
 * the debugger.
 */
1153
noinline void kgdb_breakpoint(void)
J
Jason Wessel 已提交
1154
{
1155
	atomic_inc(&kgdb_setting_breakpoint);
J
Jason Wessel 已提交
1156 1157 1158
	wmb(); /* Sync point before breakpoint */
	arch_kgdb_breakpoint();
	wmb(); /* Sync point after breakpoint */
1159
	atomic_dec(&kgdb_setting_breakpoint);
J
Jason Wessel 已提交
1160 1161 1162 1163 1164 1165 1166
}
EXPORT_SYMBOL_GPL(kgdb_breakpoint);

static int __init opt_kgdb_wait(char *str)
{
	kgdb_break_asap = 1;

J
Jason Wessel 已提交
1167
	kdb_init(KDB_INIT_EARLY);
J
Jason Wessel 已提交
1168 1169 1170 1171 1172 1173 1174
	if (kgdb_io_module_registered)
		kgdb_initial_breakpoint();

	return 0;
}

early_param("kgdbwait", opt_kgdb_wait);