debug_core.c 27.4 KB
Newer Older
J
Jason Wessel 已提交
1
/*
2
 * Kernel Debug Core
J
Jason Wessel 已提交
3 4 5 6 7 8
 *
 * Maintainer: Jason Wessel <jason.wessel@windriver.com>
 *
 * Copyright (C) 2000-2001 VERITAS Software Corporation.
 * Copyright (C) 2002-2004 Timesys Corporation
 * Copyright (C) 2003-2004 Amit S. Kale <amitkale@linsyssoft.com>
P
Pavel Machek 已提交
9
 * Copyright (C) 2004 Pavel Machek <pavel@ucw.cz>
J
Jason Wessel 已提交
10 11
 * Copyright (C) 2004-2006 Tom Rini <trini@kernel.crashing.org>
 * Copyright (C) 2004-2006 LinSysSoft Technologies Pvt. Ltd.
12
 * Copyright (C) 2005-2009 Wind River Systems, Inc.
J
Jason Wessel 已提交
13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29
 * Copyright (C) 2007 MontaVista Software, Inc.
 * Copyright (C) 2008 Red Hat, Inc., Ingo Molnar <mingo@redhat.com>
 *
 * Contributors at various stages not listed above:
 *  Jason Wessel ( jason.wessel@windriver.com )
 *  George Anzinger <george@mvista.com>
 *  Anurekh Saxena (anurekh.saxena@timesys.com)
 *  Lake Stevens Instrument Division (Glenn Engel)
 *  Jim Kingdon, Cygnus Support.
 *
 * Original KGDB stub: David Grothe <dave@gcom.com>,
 * Tigran Aivazian <tigran@sco.com>
 *
 * This file is licensed under the terms of the GNU General Public License
 * version 2. This program is licensed "as is" without any warranty of any
 * kind, whether express or implied.
 */
30 31 32

#define pr_fmt(fmt) "KGDB: " fmt

J
Jason Wessel 已提交
33
#include <linux/pid_namespace.h>
J
Jason Wessel 已提交
34
#include <linux/clocksource.h>
35
#include <linux/serial_core.h>
J
Jason Wessel 已提交
36 37 38 39 40 41 42 43 44 45 46 47
#include <linux/interrupt.h>
#include <linux/spinlock.h>
#include <linux/console.h>
#include <linux/threads.h>
#include <linux/uaccess.h>
#include <linux/kernel.h>
#include <linux/module.h>
#include <linux/ptrace.h>
#include <linux/string.h>
#include <linux/delay.h>
#include <linux/sched.h>
#include <linux/sysrq.h>
48
#include <linux/reboot.h>
J
Jason Wessel 已提交
49 50
#include <linux/init.h>
#include <linux/kgdb.h>
J
Jason Wessel 已提交
51
#include <linux/kdb.h>
52
#include <linux/nmi.h>
J
Jason Wessel 已提交
53 54 55
#include <linux/pid.h>
#include <linux/smp.h>
#include <linux/mm.h>
D
Davidlohr Bueso 已提交
56
#include <linux/vmacache.h>
57
#include <linux/rcupdate.h>
58
#include <linux/irq.h>
J
Jason Wessel 已提交
59 60 61

#include <asm/cacheflush.h>
#include <asm/byteorder.h>
A
Arun Sharma 已提交
62
#include <linux/atomic.h>
J
Jason Wessel 已提交
63

64
#include "debug_core.h"
J
Jason Wessel 已提交
65

66
static int kgdb_break_asap;
67

68
struct debuggerinfo_struct kgdb_info[NR_CPUS];
J
Jason Wessel 已提交
69

70
/* kgdb_connected - Is a host GDB connected to us? */
J
Jason Wessel 已提交
71 72 73 74
int				kgdb_connected;
EXPORT_SYMBOL_GPL(kgdb_connected);

/* All the KGDB handlers are installed */
75
int			kgdb_io_module_registered;
J
Jason Wessel 已提交
76 77 78 79

/* Guard for recursive entry */
static int			exception_level;

80
struct kgdb_io		*dbg_io_ops;
J
Jason Wessel 已提交
81 82
static DEFINE_SPINLOCK(kgdb_registration_lock);

83 84
/* Action for the reboot notifiter, a global allow kdb to change it */
static int kgdbreboot;
J
Jason Wessel 已提交
85 86 87 88
/* kgdb console driver is loaded */
static int kgdb_con_registered;
/* determine if kgdb console output should be used */
static int kgdb_use_con;
89 90
/* Flag for alternate operations for early debugging */
bool dbg_is_early = true;
J
Jason Wessel 已提交
91 92 93 94
/* Next cpu to become the master debug core */
int dbg_switch_cpu;

/* Use kdb or gdbserver mode */
95
int dbg_kdb_mode = 1;
J
Jason Wessel 已提交
96 97 98 99 100 101 102 103 104 105

static int __init opt_kgdb_con(char *str)
{
	kgdb_use_con = 1;
	return 0;
}

early_param("kgdbcon", opt_kgdb_con);

module_param(kgdb_use_con, int, 0644);
106
module_param(kgdbreboot, int, 0644);
J
Jason Wessel 已提交
107 108 109 110 111 112 113 114 115 116 117 118 119

/*
 * Holds information about breakpoints in a kernel. These breakpoints are
 * added and removed by gdb.
 */
static struct kgdb_bkpt		kgdb_break[KGDB_MAX_BREAKPOINTS] = {
	[0 ... KGDB_MAX_BREAKPOINTS-1] = { .state = BP_UNDEFINED }
};

/*
 * The CPU# of the active CPU, or -1 if none:
 */
atomic_t			kgdb_active = ATOMIC_INIT(-1);
J
Jason Wessel 已提交
120
EXPORT_SYMBOL_GPL(kgdb_active);
121 122
static DEFINE_RAW_SPINLOCK(dbg_master_lock);
static DEFINE_RAW_SPINLOCK(dbg_slave_lock);
J
Jason Wessel 已提交
123 124 125 126 127

/*
 * We use NR_CPUs not PERCPU, in case kgdb is used to debug early
 * bootup code (which might not have percpu set up yet):
 */
128 129
static atomic_t			masters_in_kgdb;
static atomic_t			slaves_in_kgdb;
130
static atomic_t			kgdb_break_tasklet_var;
J
Jason Wessel 已提交
131 132 133 134 135 136
atomic_t			kgdb_setting_breakpoint;

struct task_struct		*kgdb_usethread;
struct task_struct		*kgdb_contthread;

int				kgdb_single_step;
137
static pid_t			kgdb_sstep_pid;
J
Jason Wessel 已提交
138 139 140 141 142 143 144 145 146 147 148

/* to keep track of the CPU which is doing the single stepping*/
atomic_t			kgdb_cpu_doing_single_step = ATOMIC_INIT(-1);

/*
 * If you are debugging a problem where roundup (the collection of
 * all other CPUs) is a problem [this should be extremely rare],
 * then use the nokgdbroundup option to avoid roundup. In that case
 * the other CPUs might interfere with your debugging context, so
 * use this with care:
 */
149
static int kgdb_do_roundup = 1;
J
Jason Wessel 已提交
150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167

static int __init opt_nokgdbroundup(char *str)
{
	kgdb_do_roundup = 0;

	return 0;
}

early_param("nokgdbroundup", opt_nokgdbroundup);

/*
 * Finally, some KGDB code :-)
 */

/*
 * Weak aliases for breakpoint management,
 * can be overriden by architectures when needed:
 */
168
int __weak kgdb_arch_set_breakpoint(struct kgdb_bkpt *bpt)
J
Jason Wessel 已提交
169 170 171
{
	int err;

172 173
	err = probe_kernel_read(bpt->saved_instr, (char *)bpt->bpt_addr,
				BREAK_INSTR_SIZE);
J
Jason Wessel 已提交
174 175
	if (err)
		return err;
176 177 178
	err = probe_kernel_write((char *)bpt->bpt_addr,
				 arch_kgdb_ops.gdb_bpt_instr, BREAK_INSTR_SIZE);
	return err;
J
Jason Wessel 已提交
179 180
}

181
int __weak kgdb_arch_remove_breakpoint(struct kgdb_bkpt *bpt)
J
Jason Wessel 已提交
182
{
183 184
	return probe_kernel_write((char *)bpt->bpt_addr,
				  (char *)bpt->saved_instr, BREAK_INSTR_SIZE);
J
Jason Wessel 已提交
185 186
}

187 188
int __weak kgdb_validate_break_address(unsigned long addr)
{
189
	struct kgdb_bkpt tmp;
190
	int err;
191
	/* Validate setting the breakpoint and then removing it.  If the
192 193 194 195
	 * remove fails, the kernel needs to emit a bad message because we
	 * are deep trouble not being able to put things back the way we
	 * found them.
	 */
196 197
	tmp.bpt_addr = addr;
	err = kgdb_arch_set_breakpoint(&tmp);
198 199
	if (err)
		return err;
200
	err = kgdb_arch_remove_breakpoint(&tmp);
201
	if (err)
202 203
		pr_err("Critical breakpoint error, kernel memory destroyed at: %lx\n",
		       addr);
204 205 206
	return err;
}

J
Jason Wessel 已提交
207 208 209 210 211 212 213 214 215 216
unsigned long __weak kgdb_arch_pc(int exception, struct pt_regs *regs)
{
	return instruction_pointer(regs);
}

int __weak kgdb_arch_init(void)
{
	return 0;
}

217 218 219 220 221
int __weak kgdb_skipexception(int exception, struct pt_regs *regs)
{
	return 0;
}

222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247
#ifdef CONFIG_SMP

/*
 * Default (weak) implementation for kgdb_roundup_cpus
 */

static DEFINE_PER_CPU(call_single_data_t, kgdb_roundup_csd);

void __weak kgdb_call_nmi_hook(void *ignored)
{
	/*
	 * NOTE: get_irq_regs() is supposed to get the registers from
	 * before the IPI interrupt happened and so is supposed to
	 * show where the processor was.  In some situations it's
	 * possible we might be called without an IPI, so it might be
	 * safer to figure out how to make kgdb_breakpoint() work
	 * properly here.
	 */
	kgdb_nmicallback(raw_smp_processor_id(), get_irq_regs());
}

void __weak kgdb_roundup_cpus(void)
{
	call_single_data_t *csd;
	int this_cpu = raw_smp_processor_id();
	int cpu;
248
	int ret;
249 250 251 252 253 254 255

	for_each_online_cpu(cpu) {
		/* No need to roundup ourselves */
		if (cpu == this_cpu)
			continue;

		csd = &per_cpu(kgdb_roundup_csd, cpu);
256 257 258 259 260 261 262 263 264 265 266 267 268

		/*
		 * If it didn't round up last time, don't try again
		 * since smp_call_function_single_async() will block.
		 *
		 * If rounding_up is false then we know that the
		 * previous call must have at least started and that
		 * means smp_call_function_single_async() won't block.
		 */
		if (kgdb_info[cpu].rounding_up)
			continue;
		kgdb_info[cpu].rounding_up = true;

269
		csd->func = kgdb_call_nmi_hook;
270 271 272
		ret = smp_call_function_single_async(cpu, csd);
		if (ret)
			kgdb_info[cpu].rounding_up = false;
273 274 275 276 277
	}
}

#endif

J
Jason Wessel 已提交
278 279 280 281 282 283 284 285 286
/*
 * Some architectures need cache flushes when we set/clear a
 * breakpoint:
 */
static void kgdb_flush_swbreak_addr(unsigned long addr)
{
	if (!CACHE_FLUSH_IS_SAFE)
		return;

D
Davidlohr Bueso 已提交
287 288 289 290
	if (current->mm) {
		int i;

		for (i = 0; i < VMACACHE_SIZE; i++) {
291
			if (!current->vmacache.vmas[i])
D
Davidlohr Bueso 已提交
292
				continue;
293
			flush_cache_range(current->vmacache.vmas[i],
D
Davidlohr Bueso 已提交
294 295
					  addr, addr + BREAK_INSTR_SIZE);
		}
J
Jason Wessel 已提交
296
	}
D
Davidlohr Bueso 已提交
297

298 299
	/* Force flush instruction cache if it was outside the mm */
	flush_icache_range(addr, addr + BREAK_INSTR_SIZE);
J
Jason Wessel 已提交
300 301 302 303 304
}

/*
 * SW breakpoint management:
 */
305
int dbg_activate_sw_breakpoints(void)
J
Jason Wessel 已提交
306
{
307 308
	int error;
	int ret = 0;
J
Jason Wessel 已提交
309 310 311 312 313 314
	int i;

	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if (kgdb_break[i].state != BP_SET)
			continue;

315
		error = kgdb_arch_set_breakpoint(&kgdb_break[i]);
316 317
		if (error) {
			ret = error;
318 319
			pr_info("BP install failed: %lx\n",
				kgdb_break[i].bpt_addr);
320 321
			continue;
		}
J
Jason Wessel 已提交
322

323
		kgdb_flush_swbreak_addr(kgdb_break[i].bpt_addr);
J
Jason Wessel 已提交
324 325
		kgdb_break[i].state = BP_ACTIVE;
	}
326
	return ret;
J
Jason Wessel 已提交
327 328
}

329
int dbg_set_sw_break(unsigned long addr)
J
Jason Wessel 已提交
330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369
{
	int err = kgdb_validate_break_address(addr);
	int breakno = -1;
	int i;

	if (err)
		return err;

	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if ((kgdb_break[i].state == BP_SET) &&
					(kgdb_break[i].bpt_addr == addr))
			return -EEXIST;
	}
	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if (kgdb_break[i].state == BP_REMOVED &&
					kgdb_break[i].bpt_addr == addr) {
			breakno = i;
			break;
		}
	}

	if (breakno == -1) {
		for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
			if (kgdb_break[i].state == BP_UNDEFINED) {
				breakno = i;
				break;
			}
		}
	}

	if (breakno == -1)
		return -E2BIG;

	kgdb_break[breakno].state = BP_SET;
	kgdb_break[breakno].type = BP_BREAKPOINT;
	kgdb_break[breakno].bpt_addr = addr;

	return 0;
}

J
Jason Wessel 已提交
370
int dbg_deactivate_sw_breakpoints(void)
J
Jason Wessel 已提交
371
{
372 373
	int error;
	int ret = 0;
J
Jason Wessel 已提交
374 375 376 377 378
	int i;

	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if (kgdb_break[i].state != BP_ACTIVE)
			continue;
379
		error = kgdb_arch_remove_breakpoint(&kgdb_break[i]);
380
		if (error) {
381 382
			pr_info("BP remove failed: %lx\n",
				kgdb_break[i].bpt_addr);
383 384
			ret = error;
		}
J
Jason Wessel 已提交
385

386
		kgdb_flush_swbreak_addr(kgdb_break[i].bpt_addr);
J
Jason Wessel 已提交
387 388
		kgdb_break[i].state = BP_SET;
	}
389
	return ret;
J
Jason Wessel 已提交
390 391
}

392
int dbg_remove_sw_break(unsigned long addr)
J
Jason Wessel 已提交
393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417
{
	int i;

	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if ((kgdb_break[i].state == BP_SET) &&
				(kgdb_break[i].bpt_addr == addr)) {
			kgdb_break[i].state = BP_REMOVED;
			return 0;
		}
	}
	return -ENOENT;
}

int kgdb_isremovedbreak(unsigned long addr)
{
	int i;

	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
		if ((kgdb_break[i].state == BP_REMOVED) &&
					(kgdb_break[i].bpt_addr == addr))
			return 1;
	}
	return 0;
}

418
int dbg_remove_all_break(void)
J
Jason Wessel 已提交
419 420 421 422 423 424
{
	int error;
	int i;

	/* Clear memory breakpoints. */
	for (i = 0; i < KGDB_MAX_BREAKPOINTS; i++) {
425 426
		if (kgdb_break[i].state != BP_ACTIVE)
			goto setundefined;
427
		error = kgdb_arch_remove_breakpoint(&kgdb_break[i]);
J
Jason Wessel 已提交
428
		if (error)
429
			pr_err("breakpoint remove failed: %lx\n",
430
			       kgdb_break[i].bpt_addr);
431 432
setundefined:
		kgdb_break[i].state = BP_UNDEFINED;
J
Jason Wessel 已提交
433 434 435 436 437 438 439 440 441
	}

	/* Clear hardware breakpoints. */
	if (arch_kgdb_ops.remove_all_hw_break)
		arch_kgdb_ops.remove_all_hw_break();

	return 0;
}

442 443 444
#ifdef CONFIG_KGDB_KDB
void kdb_dump_stack_on_cpu(int cpu)
{
445
	if (cpu == raw_smp_processor_id() || !IS_ENABLED(CONFIG_SMP)) {
446 447 448 449 450 451 452 453 454 455 456 457 458 459 460 461 462 463 464 465 466 467 468 469 470 471 472
		dump_stack();
		return;
	}

	if (!(kgdb_info[cpu].exception_state & DCPU_IS_SLAVE)) {
		kdb_printf("ERROR: Task on cpu %d didn't stop in the debugger\n",
			   cpu);
		return;
	}

	/*
	 * In general, architectures don't support dumping the stack of a
	 * "running" process that's not the current one.  From the point of
	 * view of the Linux, kernel processes that are looping in the kgdb
	 * slave loop are still "running".  There's also no API (that actually
	 * works across all architectures) that can do a stack crawl based
	 * on registers passed as a parameter.
	 *
	 * Solve this conundrum by asking slave CPUs to do the backtrace
	 * themselves.
	 */
	kgdb_info[cpu].exception_state |= DCPU_WANT_BT;
	while (kgdb_info[cpu].exception_state & DCPU_WANT_BT)
		cpu_relax();
}
#endif

J
Jason Wessel 已提交
473 474 475 476 477 478 479 480 481 482 483
/*
 * Return true if there is a valid kgdb I/O module.  Also if no
 * debugger is attached a message can be printed to the console about
 * waiting for the debugger to attach.
 *
 * The print_wait argument is only to be true when called from inside
 * the core kgdb_handle_exception, because it will wait for the
 * debugger to attach.
 */
static int kgdb_io_ready(int print_wait)
{
484
	if (!dbg_io_ops)
J
Jason Wessel 已提交
485 486 487 488 489
		return 0;
	if (kgdb_connected)
		return 1;
	if (atomic_read(&kgdb_setting_breakpoint))
		return 1;
J
Jason Wessel 已提交
490 491 492
	if (print_wait) {
#ifdef CONFIG_KGDB_KDB
		if (!dbg_kdb_mode)
493
			pr_crit("waiting... or $3#33 for KDB\n");
J
Jason Wessel 已提交
494
#else
495
		pr_crit("Waiting for remote debugger\n");
J
Jason Wessel 已提交
496 497
#endif
	}
J
Jason Wessel 已提交
498 499 500 501 502 503 504 505 506 507 508 509 510
	return 1;
}

static int kgdb_reenter_check(struct kgdb_state *ks)
{
	unsigned long addr;

	if (atomic_read(&kgdb_active) != raw_smp_processor_id())
		return 0;

	/* Panic on recursive debugger calls: */
	exception_level++;
	addr = kgdb_arch_pc(ks->ex_vector, ks->linux_regs);
J
Jason Wessel 已提交
511
	dbg_deactivate_sw_breakpoints();
J
Jason Wessel 已提交
512 513 514 515 516 517 518

	/*
	 * If the break point removed ok at the place exception
	 * occurred, try to recover and print a warning to the end
	 * user because the user planted a breakpoint in a place that
	 * KGDB needs in order to function.
	 */
519
	if (dbg_remove_sw_break(addr) == 0) {
J
Jason Wessel 已提交
520 521
		exception_level = 0;
		kgdb_skipexception(ks->ex_vector, ks->linux_regs);
522
		dbg_activate_sw_breakpoints();
523
		pr_crit("re-enter error: breakpoint removed %lx\n", addr);
J
Jason Wessel 已提交
524 525 526 527
		WARN_ON_ONCE(1);

		return 1;
	}
528
	dbg_remove_all_break();
J
Jason Wessel 已提交
529 530 531 532 533 534 535
	kgdb_skipexception(ks->ex_vector, ks->linux_regs);

	if (exception_level > 1) {
		dump_stack();
		panic("Recursive entry to debugger");
	}

536
	pr_crit("re-enter exception: ALL breakpoints killed\n");
537 538 539 540
#ifdef CONFIG_KGDB_KDB
	/* Allow kdb to debug itself one level */
	return 0;
#endif
J
Jason Wessel 已提交
541 542 543 544 545 546
	dump_stack();
	panic("Recursive entry to debugger");

	return 1;
}

547 548 549 550
static void dbg_touch_watchdogs(void)
{
	touch_softlockup_watchdog_sync();
	clocksource_touch_watchdog();
551
	rcu_cpu_stall_reset();
552 553
}

554 555
static int kgdb_cpu_enter(struct kgdb_state *ks, struct pt_regs *regs,
		int exception_state)
J
Jason Wessel 已提交
556 557
{
	unsigned long flags;
558
	int sstep_tries = 100;
J
Jason Wessel 已提交
559
	int error;
560
	int cpu;
561
	int trace_on = 0;
562
	int online_cpus = num_online_cpus();
563
	u64 time_left;
564

565 566 567 568 569 570 571
	kgdb_info[ks->cpu].enter_kgdb++;
	kgdb_info[ks->cpu].exception_state |= exception_state;

	if (exception_state == DCPU_WANT_MASTER)
		atomic_inc(&masters_in_kgdb);
	else
		atomic_inc(&slaves_in_kgdb);
572 573 574

	if (arch_kgdb_ops.disable_hw_break)
		arch_kgdb_ops.disable_hw_break(regs);
575

J
Jason Wessel 已提交
576 577 578 579 580 581 582
acquirelock:
	/*
	 * Interrupts will be restored by the 'trap return' code, except when
	 * single stepping.
	 */
	local_irq_save(flags);

583 584 585
	cpu = ks->cpu;
	kgdb_info[cpu].debuggerinfo = regs;
	kgdb_info[cpu].task = current;
J
Jason Wessel 已提交
586 587
	kgdb_info[cpu].ret_state = 0;
	kgdb_info[cpu].irq_depth = hardirq_count() >> HARDIRQ_SHIFT;
J
Jason Wessel 已提交
588

589 590 591 592 593 594
	/* Make sure the above info reaches the primary CPU */
	smp_mb();

	if (exception_level == 1) {
		if (raw_spin_trylock(&dbg_master_lock))
			atomic_xchg(&kgdb_active, cpu);
595
		goto cpu_master_loop;
596
	}
597

J
Jason Wessel 已提交
598
	/*
599 600
	 * CPU will loop if it is a slave or request to become a kgdb
	 * master cpu and acquire the kgdb_active lock:
J
Jason Wessel 已提交
601
	 */
602
	while (1) {
J
Jason Wessel 已提交
603 604 605 606 607
cpu_loop:
		if (kgdb_info[cpu].exception_state & DCPU_NEXT_MASTER) {
			kgdb_info[cpu].exception_state &= ~DCPU_NEXT_MASTER;
			goto cpu_master_loop;
		} else if (kgdb_info[cpu].exception_state & DCPU_WANT_MASTER) {
608 609
			if (raw_spin_trylock(&dbg_master_lock)) {
				atomic_xchg(&kgdb_active, cpu);
610
				break;
611
			}
612 613 614
		} else if (kgdb_info[cpu].exception_state & DCPU_WANT_BT) {
			dump_stack();
			kgdb_info[cpu].exception_state &= ~DCPU_WANT_BT;
615
		} else if (kgdb_info[cpu].exception_state & DCPU_IS_SLAVE) {
616
			if (!raw_spin_is_locked(&dbg_slave_lock))
617 618 619 620 621 622 623 624
				goto return_normal;
		} else {
return_normal:
			/* Return to normal operation by executing any
			 * hw breakpoint fixup.
			 */
			if (arch_kgdb_ops.correct_hw_break)
				arch_kgdb_ops.correct_hw_break();
625 626
			if (trace_on)
				tracing_on();
627 628
			kgdb_info[cpu].debuggerinfo = NULL;
			kgdb_info[cpu].task = NULL;
629 630 631
			kgdb_info[cpu].exception_state &=
				~(DCPU_WANT_MASTER | DCPU_IS_SLAVE);
			kgdb_info[cpu].enter_kgdb--;
632
			smp_mb__before_atomic();
633
			atomic_dec(&slaves_in_kgdb);
634
			dbg_touch_watchdogs();
635 636 637
			local_irq_restore(flags);
			return 0;
		}
J
Jason Wessel 已提交
638
		cpu_relax();
639
	}
J
Jason Wessel 已提交
640 641

	/*
642
	 * For single stepping, try to only enter on the processor
L
Lucas De Marchi 已提交
643
	 * that was single stepping.  To guard against a deadlock, the
644 645
	 * kernel will only try for the value of sstep_tries before
	 * giving up and continuing on.
J
Jason Wessel 已提交
646 647
	 */
	if (atomic_read(&kgdb_cpu_doing_single_step) != -1 &&
648 649
	    (kgdb_info[cpu].task &&
	     kgdb_info[cpu].task->pid != kgdb_sstep_pid) && --sstep_tries) {
J
Jason Wessel 已提交
650
		atomic_set(&kgdb_active, -1);
651
		raw_spin_unlock(&dbg_master_lock);
652
		dbg_touch_watchdogs();
J
Jason Wessel 已提交
653 654 655 656 657 658
		local_irq_restore(flags);

		goto acquirelock;
	}

	if (!kgdb_io_ready(1)) {
J
Jason Wessel 已提交
659
		kgdb_info[cpu].ret_state = 1;
660
		goto kgdb_restore; /* No I/O connection, resume the system */
J
Jason Wessel 已提交
661 662 663 664 665 666 667 668
	}

	/*
	 * Don't enter if we have hit a removed breakpoint.
	 */
	if (kgdb_skipexception(ks->ex_vector, ks->linux_regs))
		goto kgdb_restore;

669 670
	atomic_inc(&ignore_console_lock_warning);

J
Jason Wessel 已提交
671
	/* Call the I/O driver's pre_exception routine */
672 673
	if (dbg_io_ops->pre_exception)
		dbg_io_ops->pre_exception();
J
Jason Wessel 已提交
674 675 676 677 678

	/*
	 * Get the passive CPU lock which will hold all the non-primary
	 * CPU in a spin state while the debugger is active
	 */
679 680
	if (!kgdb_single_step)
		raw_spin_lock(&dbg_slave_lock);
J
Jason Wessel 已提交
681

682
#ifdef CONFIG_SMP
683 684 685 686
	/* If send_ready set, slaves are already waiting */
	if (ks->send_ready)
		atomic_set(ks->send_ready, 1);

687
	/* Signal the other CPUs to enter kgdb_wait() */
688
	else if ((!kgdb_single_step) && kgdb_do_roundup)
689
		kgdb_roundup_cpus();
690 691
#endif

J
Jason Wessel 已提交
692 693 694
	/*
	 * Wait for the other CPUs to be notified and be waiting for us:
	 */
695
	time_left = MSEC_PER_SEC;
696 697 698
	while (kgdb_do_roundup && --time_left &&
	       (atomic_read(&masters_in_kgdb) + atomic_read(&slaves_in_kgdb)) !=
		   online_cpus)
699
		udelay(1000);
700
	if (!time_left)
701
		pr_crit("Timed out waiting for secondary CPUs.\n");
J
Jason Wessel 已提交
702 703 704 705 706

	/*
	 * At this point the primary processor is completely
	 * in the debugger and all secondary CPUs are quiescent
	 */
J
Jason Wessel 已提交
707
	dbg_deactivate_sw_breakpoints();
J
Jason Wessel 已提交
708
	kgdb_single_step = 0;
709
	kgdb_contthread = current;
J
Jason Wessel 已提交
710
	exception_level = 0;
711 712 713
	trace_on = tracing_is_on();
	if (trace_on)
		tracing_off();
J
Jason Wessel 已提交
714

J
Jason Wessel 已提交
715 716 717 718 719
	while (1) {
cpu_master_loop:
		if (dbg_kdb_mode) {
			kgdb_connected = 1;
			error = kdb_stub(ks);
720 721
			if (error == -1)
				continue;
722
			kgdb_connected = 0;
J
Jason Wessel 已提交
723 724 725 726 727 728 729
		} else {
			error = gdb_serial_stub(ks);
		}

		if (error == DBG_PASS_EVENT) {
			dbg_kdb_mode = !dbg_kdb_mode;
		} else if (error == DBG_SWITCH_CPU_EVENT) {
730 731
			kgdb_info[dbg_switch_cpu].exception_state |=
				DCPU_NEXT_MASTER;
J
Jason Wessel 已提交
732 733 734 735 736 737
			goto cpu_loop;
		} else {
			kgdb_info[cpu].ret_state = error;
			break;
		}
	}
J
Jason Wessel 已提交
738 739

	/* Call the I/O driver's post_exception routine */
740 741
	if (dbg_io_ops->post_exception)
		dbg_io_ops->post_exception();
J
Jason Wessel 已提交
742

743 744
	atomic_dec(&ignore_console_lock_warning);

745
	if (!kgdb_single_step) {
746 747 748 749
		raw_spin_unlock(&dbg_slave_lock);
		/* Wait till all the CPUs have quit from the debugger. */
		while (kgdb_do_roundup && atomic_read(&slaves_in_kgdb))
			cpu_relax();
J
Jason Wessel 已提交
750 751 752
	}

kgdb_restore:
753 754 755 756 757 758 759
	if (atomic_read(&kgdb_cpu_doing_single_step) != -1) {
		int sstep_cpu = atomic_read(&kgdb_cpu_doing_single_step);
		if (kgdb_info[sstep_cpu].task)
			kgdb_sstep_pid = kgdb_info[sstep_cpu].task->pid;
		else
			kgdb_sstep_pid = 0;
	}
760 761
	if (arch_kgdb_ops.correct_hw_break)
		arch_kgdb_ops.correct_hw_break();
762 763
	if (trace_on)
		tracing_on();
764

765 766
	kgdb_info[cpu].debuggerinfo = NULL;
	kgdb_info[cpu].task = NULL;
767 768 769
	kgdb_info[cpu].exception_state &=
		~(DCPU_WANT_MASTER | DCPU_IS_SLAVE);
	kgdb_info[cpu].enter_kgdb--;
770
	smp_mb__before_atomic();
771
	atomic_dec(&masters_in_kgdb);
J
Jason Wessel 已提交
772 773
	/* Free kgdb_active */
	atomic_set(&kgdb_active, -1);
774
	raw_spin_unlock(&dbg_master_lock);
775
	dbg_touch_watchdogs();
J
Jason Wessel 已提交
776 777
	local_irq_restore(flags);

J
Jason Wessel 已提交
778
	return kgdb_info[cpu].ret_state;
J
Jason Wessel 已提交
779 780
}

781 782 783 784 785 786 787 788 789 790 791 792
/*
 * kgdb_handle_exception() - main entry point from a kernel exception
 *
 * Locking hierarchy:
 *	interface locks, if any (begin_session)
 *	kgdb lock (kgdb_active)
 */
int
kgdb_handle_exception(int evector, int signo, int ecode, struct pt_regs *regs)
{
	struct kgdb_state kgdb_var;
	struct kgdb_state *ks = &kgdb_var;
793 794 795 796
	int ret = 0;

	if (arch_kgdb_ops.enable_nmi)
		arch_kgdb_ops.enable_nmi(0);
797 798 799 800 801 802 803 804
	/*
	 * Avoid entering the debugger if we were triggered due to an oops
	 * but panic_timeout indicates the system should automatically
	 * reboot on panic. We don't want to get stuck waiting for input
	 * on such systems, especially if its "just" an oops.
	 */
	if (signo != SIGTRAP && panic_timeout)
		return 1;
805

806
	memset(ks, 0, sizeof(struct kgdb_state));
807 808 809 810 811 812 813
	ks->cpu			= raw_smp_processor_id();
	ks->ex_vector		= evector;
	ks->signo		= signo;
	ks->err_code		= ecode;
	ks->linux_regs		= regs;

	if (kgdb_reenter_check(ks))
814
		goto out; /* Ouch, double exception ! */
815
	if (kgdb_info[ks->cpu].enter_kgdb != 0)
816
		goto out;
817

818 819 820 821 822
	ret = kgdb_cpu_enter(ks, regs, DCPU_WANT_MASTER);
out:
	if (arch_kgdb_ops.enable_nmi)
		arch_kgdb_ops.enable_nmi(1);
	return ret;
823 824
}

J
Jason Wessel 已提交
825
/*
826
 * GDB places a breakpoint at this function to know dynamically loaded objects.
J
Jason Wessel 已提交
827 828 829 830 831 832 833 834 835 836 837
 */
static int module_event(struct notifier_block *self, unsigned long val,
	void *data)
{
	return 0;
}

static struct notifier_block dbg_module_load_nb = {
	.notifier_call	= module_event,
};

J
Jason Wessel 已提交
838 839 840
int kgdb_nmicallback(int cpu, void *regs)
{
#ifdef CONFIG_SMP
841 842 843
	struct kgdb_state kgdb_var;
	struct kgdb_state *ks = &kgdb_var;

844 845
	kgdb_info[cpu].rounding_up = false;

846 847 848 849
	memset(ks, 0, sizeof(struct kgdb_state));
	ks->cpu			= cpu;
	ks->linux_regs		= regs;

850 851 852
	if (kgdb_info[ks->cpu].enter_kgdb == 0 &&
			raw_spin_is_locked(&dbg_master_lock)) {
		kgdb_cpu_enter(ks, regs, DCPU_IS_SLAVE);
J
Jason Wessel 已提交
853 854 855 856 857 858
		return 0;
	}
#endif
	return 1;
}

859 860
int kgdb_nmicallin(int cpu, int trapnr, void *regs, int err_code,
							atomic_t *send_ready)
861 862 863 864 865 866 867 868 869 870 871 872 873
{
#ifdef CONFIG_SMP
	if (!kgdb_io_ready(0) || !send_ready)
		return 1;

	if (kgdb_info[cpu].enter_kgdb == 0) {
		struct kgdb_state kgdb_var;
		struct kgdb_state *ks = &kgdb_var;

		memset(ks, 0, sizeof(struct kgdb_state));
		ks->cpu			= cpu;
		ks->ex_vector		= trapnr;
		ks->signo		= SIGTRAP;
874
		ks->err_code		= err_code;
875 876 877 878 879 880 881 882 883
		ks->linux_regs		= regs;
		ks->send_ready		= send_ready;
		kgdb_cpu_enter(ks, regs, DCPU_WANT_MASTER);
		return 0;
	}
#endif
	return 1;
}

J
Jason Wessel 已提交
884 885
static void kgdb_console_write(struct console *co, const char *s,
   unsigned count)
J
Jason Wessel 已提交
886 887 888 889 890
{
	unsigned long flags;

	/* If we're debugging, or KGDB has not connected, don't try
	 * and print. */
J
Jason Wessel 已提交
891
	if (!kgdb_connected || atomic_read(&kgdb_active) != -1 || dbg_kdb_mode)
J
Jason Wessel 已提交
892 893 894
		return;

	local_irq_save(flags);
895
	gdbstub_msg_write(s, count);
J
Jason Wessel 已提交
896 897 898 899 900 901 902 903 904 905 906
	local_irq_restore(flags);
}

static struct console kgdbcons = {
	.name		= "kgdb",
	.write		= kgdb_console_write,
	.flags		= CON_PRINTBUFFER | CON_ENABLED,
	.index		= -1,
};

#ifdef CONFIG_MAGIC_SYSRQ
907
static void sysrq_handle_dbg(int key)
J
Jason Wessel 已提交
908
{
909
	if (!dbg_io_ops) {
910
		pr_crit("ERROR: No KGDB I/O module available\n");
J
Jason Wessel 已提交
911 912
		return;
	}
J
Jason Wessel 已提交
913 914 915
	if (!kgdb_connected) {
#ifdef CONFIG_KGDB_KDB
		if (!dbg_kdb_mode)
916
			pr_crit("KGDB or $3#33 for KDB\n");
J
Jason Wessel 已提交
917
#else
918
		pr_crit("Entering KGDB\n");
J
Jason Wessel 已提交
919 920
#endif
	}
J
Jason Wessel 已提交
921 922 923 924

	kgdb_breakpoint();
}

925 926
static struct sysrq_key_op sysrq_dbg_op = {
	.handler	= sysrq_handle_dbg,
927
	.help_msg	= "debug(g)",
928
	.action_msg	= "DEBUG",
J
Jason Wessel 已提交
929 930 931
};
#endif

932
void kgdb_panic(const char *msg)
933
{
934 935 936
	if (!kgdb_io_module_registered)
		return;

937
	/*
938 939
	 * We don't want to get stuck waiting for input from user if
	 * "panic_timeout" indicates the system should automatically
940 941 942
	 * reboot on panic.
	 */
	if (panic_timeout)
943
		return;
944

945
	if (dbg_kdb_mode)
946 947
		kdb_printf("PANIC: %s\n", msg);

948 949 950
	kgdb_breakpoint();
}

951 952 953 954 955 956 957 958 959 960 961 962
void __weak kgdb_arch_late(void)
{
}

void __init dbg_late_init(void)
{
	dbg_is_early = false;
	if (kgdb_io_module_registered)
		kgdb_arch_late();
	kdb_init(KDB_INIT_FULL);
}

963 964 965
static int
dbg_notify_reboot(struct notifier_block *this, unsigned long code, void *x)
{
966 967 968 969 970 971 972 973 974 975 976 977
	/*
	 * Take the following action on reboot notify depending on value:
	 *    1 == Enter debugger
	 *    0 == [the default] detatch debug client
	 *   -1 == Do nothing... and use this until the board resets
	 */
	switch (kgdbreboot) {
	case 1:
		kgdb_breakpoint();
	case -1:
		goto done;
	}
978 979
	if (!dbg_kdb_mode)
		gdbstub_exit(code);
980
done:
981 982 983 984 985 986 987 988 989
	return NOTIFY_DONE;
}

static struct notifier_block dbg_reboot_notifier = {
	.notifier_call		= dbg_notify_reboot,
	.next			= NULL,
	.priority		= INT_MAX,
};

J
Jason Wessel 已提交
990 991 992 993 994
static void kgdb_register_callbacks(void)
{
	if (!kgdb_io_module_registered) {
		kgdb_io_module_registered = 1;
		kgdb_arch_init();
995 996
		if (!dbg_is_early)
			kgdb_arch_late();
J
Jason Wessel 已提交
997
		register_module_notifier(&dbg_module_load_nb);
998
		register_reboot_notifier(&dbg_reboot_notifier);
J
Jason Wessel 已提交
999
#ifdef CONFIG_MAGIC_SYSRQ
1000
		register_sysrq_key('g', &sysrq_dbg_op);
J
Jason Wessel 已提交
1001 1002 1003 1004 1005 1006 1007 1008 1009 1010 1011
#endif
		if (kgdb_use_con && !kgdb_con_registered) {
			register_console(&kgdbcons);
			kgdb_con_registered = 1;
		}
	}
}

static void kgdb_unregister_callbacks(void)
{
	/*
1012 1013
	 * When this routine is called KGDB should unregister from
	 * handlers and clean up, making sure it is not handling any
J
Jason Wessel 已提交
1014 1015 1016 1017
	 * break exceptions at the time.
	 */
	if (kgdb_io_module_registered) {
		kgdb_io_module_registered = 0;
1018
		unregister_reboot_notifier(&dbg_reboot_notifier);
J
Jason Wessel 已提交
1019
		unregister_module_notifier(&dbg_module_load_nb);
J
Jason Wessel 已提交
1020 1021
		kgdb_arch_exit();
#ifdef CONFIG_MAGIC_SYSRQ
1022
		unregister_sysrq_key('g', &sysrq_dbg_op);
J
Jason Wessel 已提交
1023 1024 1025 1026 1027 1028 1029 1030
#endif
		if (kgdb_con_registered) {
			unregister_console(&kgdbcons);
			kgdb_con_registered = 0;
		}
	}
}

1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043 1044 1045 1046 1047 1048 1049 1050 1051 1052 1053 1054 1055
/*
 * There are times a tasklet needs to be used vs a compiled in
 * break point so as to cause an exception outside a kgdb I/O module,
 * such as is the case with kgdboe, where calling a breakpoint in the
 * I/O driver itself would be fatal.
 */
static void kgdb_tasklet_bpt(unsigned long ing)
{
	kgdb_breakpoint();
	atomic_set(&kgdb_break_tasklet_var, 0);
}

static DECLARE_TASKLET(kgdb_tasklet_breakpoint, kgdb_tasklet_bpt, 0);

void kgdb_schedule_breakpoint(void)
{
	if (atomic_read(&kgdb_break_tasklet_var) ||
		atomic_read(&kgdb_active) != -1 ||
		atomic_read(&kgdb_setting_breakpoint))
		return;
	atomic_inc(&kgdb_break_tasklet_var);
	tasklet_schedule(&kgdb_tasklet_breakpoint);
}
EXPORT_SYMBOL_GPL(kgdb_schedule_breakpoint);

J
Jason Wessel 已提交
1056 1057 1058 1059
static void kgdb_initial_breakpoint(void)
{
	kgdb_break_asap = 0;

1060
	pr_crit("Waiting for connection from remote gdb...\n");
J
Jason Wessel 已提交
1061 1062 1063 1064
	kgdb_breakpoint();
}

/**
1065
 *	kgdb_register_io_module - register KGDB IO module
1066
 *	@new_dbg_io_ops: the io ops vector
J
Jason Wessel 已提交
1067 1068 1069
 *
 *	Register it with the KGDB core.
 */
1070
int kgdb_register_io_module(struct kgdb_io *new_dbg_io_ops)
J
Jason Wessel 已提交
1071 1072 1073 1074 1075
{
	int err;

	spin_lock(&kgdb_registration_lock);

1076
	if (dbg_io_ops) {
J
Jason Wessel 已提交
1077 1078
		spin_unlock(&kgdb_registration_lock);

1079
		pr_err("Another I/O driver is already registered with KGDB\n");
J
Jason Wessel 已提交
1080 1081 1082
		return -EBUSY;
	}

1083 1084
	if (new_dbg_io_ops->init) {
		err = new_dbg_io_ops->init();
J
Jason Wessel 已提交
1085 1086 1087 1088 1089 1090
		if (err) {
			spin_unlock(&kgdb_registration_lock);
			return err;
		}
	}

1091
	dbg_io_ops = new_dbg_io_ops;
J
Jason Wessel 已提交
1092 1093 1094

	spin_unlock(&kgdb_registration_lock);

1095
	pr_info("Registered I/O driver %s\n", new_dbg_io_ops->name);
J
Jason Wessel 已提交
1096 1097 1098 1099 1100 1101 1102 1103 1104 1105 1106 1107 1108

	/* Arm KGDB now. */
	kgdb_register_callbacks();

	if (kgdb_break_asap)
		kgdb_initial_breakpoint();

	return 0;
}
EXPORT_SYMBOL_GPL(kgdb_register_io_module);

/**
 *	kkgdb_unregister_io_module - unregister KGDB IO module
1109
 *	@old_dbg_io_ops: the io ops vector
J
Jason Wessel 已提交
1110 1111 1112
 *
 *	Unregister it with the KGDB core.
 */
1113
void kgdb_unregister_io_module(struct kgdb_io *old_dbg_io_ops)
J
Jason Wessel 已提交
1114 1115 1116 1117 1118 1119 1120 1121 1122 1123 1124
{
	BUG_ON(kgdb_connected);

	/*
	 * KGDB is no longer able to communicate out, so
	 * unregister our callbacks and reset state.
	 */
	kgdb_unregister_callbacks();

	spin_lock(&kgdb_registration_lock);

1125 1126
	WARN_ON_ONCE(dbg_io_ops != old_dbg_io_ops);
	dbg_io_ops = NULL;
J
Jason Wessel 已提交
1127 1128 1129

	spin_unlock(&kgdb_registration_lock);

1130
	pr_info("Unregistered I/O driver %s, debugger disabled\n",
1131
		old_dbg_io_ops->name);
J
Jason Wessel 已提交
1132 1133 1134
}
EXPORT_SYMBOL_GPL(kgdb_unregister_io_module);

J
Jason Wessel 已提交
1135 1136 1137
int dbg_io_get_char(void)
{
	int ret = dbg_io_ops->read_char();
1138 1139
	if (ret == NO_POLL_CHAR)
		return -1;
J
Jason Wessel 已提交
1140 1141 1142 1143 1144 1145 1146
	if (!dbg_kdb_mode)
		return ret;
	if (ret == 127)
		return 8;
	return ret;
}

J
Jason Wessel 已提交
1147 1148 1149 1150 1151 1152 1153 1154
/**
 * kgdb_breakpoint - generate breakpoint exception
 *
 * This function will generate a breakpoint exception.  It is used at the
 * beginning of a program to sync up with a debugger and can be used
 * otherwise as a quick means to stop program execution and "break" into
 * the debugger.
 */
1155
noinline void kgdb_breakpoint(void)
J
Jason Wessel 已提交
1156
{
1157
	atomic_inc(&kgdb_setting_breakpoint);
J
Jason Wessel 已提交
1158 1159 1160
	wmb(); /* Sync point before breakpoint */
	arch_kgdb_breakpoint();
	wmb(); /* Sync point after breakpoint */
1161
	atomic_dec(&kgdb_setting_breakpoint);
J
Jason Wessel 已提交
1162 1163 1164 1165 1166 1167 1168
}
EXPORT_SYMBOL_GPL(kgdb_breakpoint);

static int __init opt_kgdb_wait(char *str)
{
	kgdb_break_asap = 1;

J
Jason Wessel 已提交
1169
	kdb_init(KDB_INIT_EARLY);
J
Jason Wessel 已提交
1170 1171 1172 1173 1174 1175 1176
	if (kgdb_io_module_registered)
		kgdb_initial_breakpoint();

	return 0;
}

early_param("kgdbwait", opt_kgdb_wait);