traps_64.c 29.3 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12
/*
 *  Copyright (C) 1991, 1992  Linus Torvalds
 *  Copyright (C) 2000, 2001, 2002 Andi Kleen, SuSE Labs
 *
 *  Pentium III FXSR, SSE support
 *	Gareth Hughes <gareth@valinux.com>, May 2000
 */

/*
 * 'Traps.c' handles hardware traps and faults after we have saved some
 * state in 'entry.S'.
 */
13 14 15 16 17 18 19 20
#include <linux/moduleparam.h>
#include <linux/interrupt.h>
#include <linux/kallsyms.h>
#include <linux/spinlock.h>
#include <linux/kprobes.h>
#include <linux/uaccess.h>
#include <linux/utsname.h>
#include <linux/kdebug.h>
L
Linus Torvalds 已提交
21
#include <linux/kernel.h>
22 23
#include <linux/module.h>
#include <linux/ptrace.h>
L
Linus Torvalds 已提交
24
#include <linux/string.h>
25 26
#include <linux/unwind.h>
#include <linux/delay.h>
L
Linus Torvalds 已提交
27
#include <linux/errno.h>
28 29
#include <linux/kexec.h>
#include <linux/sched.h>
L
Linus Torvalds 已提交
30 31
#include <linux/timer.h>
#include <linux/init.h>
32
#include <linux/bug.h>
33 34
#include <linux/nmi.h>
#include <linux/mm.h>
35

D
Dave Jiang 已提交
36 37 38 39
#if defined(CONFIG_EDAC)
#include <linux/edac.h>
#endif

40 41
#include <asm/stacktrace.h>
#include <asm/processor.h>
L
Linus Torvalds 已提交
42
#include <asm/debugreg.h>
43 44 45
#include <asm/atomic.h>
#include <asm/system.h>
#include <asm/unwind.h>
L
Linus Torvalds 已提交
46 47
#include <asm/desc.h>
#include <asm/i387.h>
48
#include <asm/nmi.h>
L
Linus Torvalds 已提交
49
#include <asm/smp.h>
50
#include <asm/io.h>
L
Linus Torvalds 已提交
51 52
#include <asm/pgalloc.h>
#include <asm/proto.h>
53
#include <asm/pda.h>
54
#include <asm/traps.h>
55 56

#include <mach_traps.h>
L
Linus Torvalds 已提交
57

58
int panic_on_unrecovered_nmi;
59
int kstack_depth_to_print = 12;
60
static unsigned int code_bytes = 64;
61 62
static int ignore_nmis;
static int die_counter;
63

L
Linus Torvalds 已提交
64 65
static inline void conditional_sti(struct pt_regs *regs)
{
66
	if (regs->flags & X86_EFLAGS_IF)
L
Linus Torvalds 已提交
67 68 69
		local_irq_enable();
}

70 71
static inline void preempt_conditional_sti(struct pt_regs *regs)
{
72
	inc_preempt_count();
73
	if (regs->flags & X86_EFLAGS_IF)
74 75 76 77 78
		local_irq_enable();
}

static inline void preempt_conditional_cli(struct pt_regs *regs)
{
79
	if (regs->flags & X86_EFLAGS_IF)
80
		local_irq_disable();
81 82
	/* Make sure to not schedule here because we could be running
	   on an exception stack. */
83
	dec_preempt_count();
84 85
}

86
void printk_address(unsigned long address, int reliable)
87
{
88
	printk(" [<%016lx>] %s%pS\n", address, reliable ? "": "? ", (void *) address);
89
}
L
Linus Torvalds 已提交
90

91
static unsigned long *in_exception_stack(unsigned cpu, unsigned long stack,
92
					unsigned *usedp, char **idp)
93
{
94
	static char ids[][8] = {
95 96 97 98 99
		[DEBUG_STACK - 1] = "#DB",
		[NMI_STACK - 1] = "NMI",
		[DOUBLEFAULT_STACK - 1] = "#DF",
		[STACKFAULT_STACK - 1] = "#SS",
		[MCE_STACK - 1] = "#MC",
100 101 102
#if DEBUG_STKSZ > EXCEPTION_STKSZ
		[N_EXCEPTION_STACKS ... N_EXCEPTION_STACKS + DEBUG_STKSZ / EXCEPTION_STKSZ - 2] = "#DB[?]"
#endif
103 104
	};
	unsigned k;
L
Linus Torvalds 已提交
105

106 107 108 109
	/*
	 * Iterate over all exception stacks, and figure out whether
	 * 'stack' is in one of them:
	 */
110
	for (k = 0; k < N_EXCEPTION_STACKS; k++) {
111
		unsigned long end = per_cpu(orig_ist, cpu).ist[k];
112 113 114 115
		/*
		 * Is 'stack' above this exception frame's end?
		 * If yes then skip to the next frame.
		 */
116 117
		if (stack >= end)
			continue;
118 119 120 121
		/*
		 * Is 'stack' above this exception frame's start address?
		 * If yes then we found the right frame.
		 */
122
		if (stack >= end - EXCEPTION_STKSZ) {
123 124 125 126 127 128
			/*
			 * Make sure we only iterate through an exception
			 * stack once. If it comes up for the second time
			 * then there's something wrong going on - just
			 * break out and return NULL:
			 */
129 130 131 132 133 134
			if (*usedp & (1U << k))
				break;
			*usedp |= 1U << k;
			*idp = ids[k];
			return (unsigned long *)end;
		}
135 136 137 138 139
		/*
		 * If this is a debug stack, and if it has a larger size than
		 * the usual exception stacks, then 'stack' might still
		 * be within the lower portion of the debug stack:
		 */
140 141 142 143
#if DEBUG_STKSZ > EXCEPTION_STKSZ
		if (k == DEBUG_STACK - 1 && stack >= end - DEBUG_STKSZ) {
			unsigned j = N_EXCEPTION_STACKS - 1;

144 145 146 147 148
			/*
			 * Black magic. A large debug stack is composed of
			 * multiple exception stack entries, which we
			 * iterate through now. Dont look:
			 */
149 150 151 152 153 154 155 156 157 158 159 160
			do {
				++j;
				end -= EXCEPTION_STKSZ;
				ids[j][4] = '1' + (j - N_EXCEPTION_STACKS);
			} while (stack < end - EXCEPTION_STKSZ);
			if (*usedp & (1U << j))
				break;
			*usedp |= 1U << j;
			*idp = ids[j];
			return (unsigned long *)end;
		}
#endif
L
Linus Torvalds 已提交
161 162
	}
	return NULL;
163
}
L
Linus Torvalds 已提交
164 165

/*
S
Simon Arlott 已提交
166
 * x86-64 can have up to three kernel stacks: 
L
Linus Torvalds 已提交
167 168
 * process stack
 * interrupt stack
169
 * severe exception (double fault, nmi, stack fault, debug, mce) hardware stack
L
Linus Torvalds 已提交
170 171
 */

172 173
static inline int valid_stack_ptr(struct thread_info *tinfo,
			void *p, unsigned int size, void *end)
174
{
J
Jan Engelhardt 已提交
175
	void *t = tinfo;
176 177 178 179 180 181 182 183 184
	if (end) {
		if (p < end && p >= (end-THREAD_SIZE))
			return 1;
		else
			return 0;
	}
	return p > t && p < t + THREAD_SIZE - size;
}

185 186 187 188 189 190
/* The form of the top of the frame on the stack */
struct stack_frame {
	struct stack_frame *next_frame;
	unsigned long return_address;
};

191 192 193 194 195
static inline unsigned long
print_context_stack(struct thread_info *tinfo,
		unsigned long *stack, unsigned long bp,
		const struct stacktrace_ops *ops, void *data,
		unsigned long *end)
196
{
197 198 199 200 201 202
	struct stack_frame *frame = (struct stack_frame *)bp;

	while (valid_stack_ptr(tinfo, stack, sizeof(*stack), end)) {
		unsigned long addr;

		addr = *stack;
203
		if (__kernel_text_address(addr)) {
204 205 206 207 208 209 210
			if ((unsigned long) stack == bp + 8) {
				ops->address(data, addr, 1);
				frame = frame->next_frame;
				bp = (unsigned long) frame;
			} else {
				ops->address(data, addr, bp == 0);
			}
211
		}
212
		stack++;
213 214
	}
	return bp;
215 216
}

217
void dump_trace(struct task_struct *task, struct pt_regs *regs,
218
		unsigned long *stack, unsigned long bp,
J
Jan Beulich 已提交
219
		const struct stacktrace_ops *ops, void *data)
L
Linus Torvalds 已提交
220
{
221
	const unsigned cpu = get_cpu();
222
	unsigned long *irqstack_end = (unsigned long*)cpu_pda(cpu)->irqstackptr;
223
	unsigned used = 0;
224
	struct thread_info *tinfo;
L
Linus Torvalds 已提交
225

226 227
	if (!task)
		task = current;
228

229 230 231
	if (!stack) {
		unsigned long dummy;
		stack = &dummy;
232 233
		if (task && task != current)
			stack = (unsigned long *)task->thread.sp;
234 235
	}

236 237
#ifdef CONFIG_FRAME_POINTER
	if (!bp) {
238
		if (task == current) {
239
			/* Grab bp right from our regs */
240
			asm("movq %%rbp, %0" : "=r" (bp) :);
241 242
		} else {
			/* bp is the last reg pushed by switch_to */
243
			bp = *(unsigned long *) task->thread.sp;
244 245 246 247
		}
	}
#endif

248 249 250 251 252
	/*
	 * Print function call entries in all stacks, starting at the
	 * current stack address. If the stacks consist of nested
	 * exceptions
	 */
253
	tinfo = task_thread_info(task);
254 255
	for (;;) {
		char *id;
256 257 258 259 260
		unsigned long *estack_end;
		estack_end = in_exception_stack(cpu, (unsigned long)stack,
						&used, &id);

		if (estack_end) {
261 262
			if (ops->stack(data, id) < 0)
				break;
263

264 265
			bp = print_context_stack(tinfo, stack, bp, ops,
							data, estack_end);
266
			ops->stack(data, "<EOE>");
267 268 269 270 271
			/*
			 * We link to the next stack via the
			 * second-to-last pointer (index -2 to end) in the
			 * exception stack:
			 */
272 273
			stack = (unsigned long *) estack_end[-2];
			continue;
L
Linus Torvalds 已提交
274
		}
275 276 277 278 279 280
		if (irqstack_end) {
			unsigned long *irqstack;
			irqstack = irqstack_end -
				(IRQSTACKSIZE - 64) / sizeof(*irqstack);

			if (stack >= irqstack && stack < irqstack_end) {
281 282
				if (ops->stack(data, "IRQ") < 0)
					break;
283 284
				bp = print_context_stack(tinfo, stack, bp,
						ops, data, irqstack_end);
285 286 287 288 289
				/*
				 * We link to the next stack (which would be
				 * the process stack normally) the last
				 * pointer (index -1 to end) in the IRQ stack:
				 */
290 291
				stack = (unsigned long *) (irqstack_end[-1]);
				irqstack_end = NULL;
292
				ops->stack(data, "EOI");
293
				continue;
L
Linus Torvalds 已提交
294 295
			}
		}
296
		break;
L
Linus Torvalds 已提交
297
	}
298

299
	/*
300
	 * This handles the process stack:
301
	 */
302
	bp = print_context_stack(tinfo, stack, bp, ops, data, NULL);
303
	put_cpu();
304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323
}
EXPORT_SYMBOL(dump_trace);

static void
print_trace_warning_symbol(void *data, char *msg, unsigned long symbol)
{
	print_symbol(msg, symbol);
	printk("\n");
}

static void print_trace_warning(void *data, char *msg)
{
	printk("%s\n", msg);
}

static int print_trace_stack(void *data, char *name)
{
	printk(" <%s> ", name);
	return 0;
}
324

325
static void print_trace_address(void *data, unsigned long addr, int reliable)
326
{
327
	touch_nmi_watchdog();
328
	printk_address(addr, reliable);
329 330
}

J
Jan Beulich 已提交
331
static const struct stacktrace_ops print_trace_ops = {
332 333 334 335 336 337
	.warning = print_trace_warning,
	.warning_symbol = print_trace_warning_symbol,
	.stack = print_trace_stack,
	.address = print_trace_address,
};

338 339 340
static void
show_trace_log_lvl(struct task_struct *task, struct pt_regs *regs,
		unsigned long *stack, unsigned long bp, char *log_lvl)
341
{
342
	printk("Call Trace:\n");
343
	dump_trace(task, regs, stack, bp, &print_trace_ops, log_lvl);
L
Linus Torvalds 已提交
344 345
}

346 347 348 349 350 351
void show_trace(struct task_struct *task, struct pt_regs *regs,
		unsigned long *stack, unsigned long bp)
{
	show_trace_log_lvl(task, regs, stack, bp, "");
}

352
static void
353 354
show_stack_log_lvl(struct task_struct *task, struct pt_regs *regs,
		unsigned long *sp, unsigned long bp, char *log_lvl)
L
Linus Torvalds 已提交
355 356 357
{
	unsigned long *stack;
	int i;
358
	const int cpu = smp_processor_id();
359 360
	unsigned long *irqstack_end = (unsigned long *) (cpu_pda(cpu)->irqstackptr);
	unsigned long *irqstack = (unsigned long *) (cpu_pda(cpu)->irqstackptr - IRQSTACKSIZE);
L
Linus Torvalds 已提交
361 362 363 364

	// debugging aid: "show_stack(NULL, NULL);" prints the
	// back trace for this cpu.

365
	if (sp == NULL) {
366 367
		if (task)
			sp = (unsigned long *)task->thread.sp;
L
Linus Torvalds 已提交
368
		else
369
			sp = (unsigned long *)&sp;
L
Linus Torvalds 已提交
370 371
	}

372
	stack = sp;
373
	for (i = 0; i < kstack_depth_to_print; i++) {
L
Linus Torvalds 已提交
374 375 376 377 378 379 380 381 382 383
		if (stack >= irqstack && stack <= irqstack_end) {
			if (stack == irqstack_end) {
				stack = (unsigned long *) (irqstack_end[-1]);
				printk(" <EOI> ");
			}
		} else {
		if (((long) stack & (THREAD_SIZE-1)) == 0)
			break;
		}
		if (i && ((i % 4) == 0))
384 385
			printk("\n");
		printk(" %016lx", *stack++);
386
		touch_nmi_watchdog();
L
Linus Torvalds 已提交
387
	}
388
	printk("\n");
389
	show_trace_log_lvl(task, regs, sp, bp, log_lvl);
390 391
}

392
void show_stack(struct task_struct *task, unsigned long *sp)
393
{
394
	show_stack_log_lvl(task, NULL, sp, 0, "");
L
Linus Torvalds 已提交
395 396 397 398 399 400 401
}

/*
 * The architecture-independent dump_stack generator
 */
void dump_stack(void)
{
402
	unsigned long bp = 0;
403
	unsigned long stack;
404

405 406 407 408 409
#ifdef CONFIG_FRAME_POINTER
	if (!bp)
		asm("movq %%rbp, %0" : "=r" (bp):);
#endif

410 411 412 413 414
	printk("Pid: %d, comm: %.20s %s %s %.*s\n",
		current->pid, current->comm, print_tainted(),
		init_utsname()->release,
		(int)strcspn(init_utsname()->version, " "),
		init_utsname()->version);
415
	show_trace(NULL, NULL, &stack, bp);
L
Linus Torvalds 已提交
416 417 418 419 420 421 422
}

EXPORT_SYMBOL(dump_stack);

void show_registers(struct pt_regs *regs)
{
	int i;
423
	unsigned long sp;
424
	const int cpu = smp_processor_id();
425
	struct task_struct *cur = cpu_pda(cpu)->pcurrent;
L
Linus Torvalds 已提交
426

427
	sp = regs->sp;
L
Linus Torvalds 已提交
428 429 430
	printk("CPU %d ", cpu);
	__show_regs(regs);
	printk("Process %s (pid: %d, threadinfo %p, task %p)\n",
A
Al Viro 已提交
431
		cur->comm, cur->pid, task_thread_info(cur), cur);
L
Linus Torvalds 已提交
432 433 434 435 436

	/*
	 * When in-kernel, we also print out the stack and code at the
	 * time of the fault..
	 */
437
	if (!user_mode(regs)) {
438 439
		unsigned int code_prologue = code_bytes * 43 / 64;
		unsigned int code_len = code_bytes;
440
		unsigned char c;
441 442
		u8 *ip;

L
Linus Torvalds 已提交
443
		printk("Stack: ");
444 445
		show_stack_log_lvl(NULL, regs, (unsigned long *)sp,
				regs->bp, "");
L
Linus Torvalds 已提交
446

447
		printk(KERN_EMERG "Code: ");
448 449

		ip = (u8 *)regs->ip - code_prologue;
450 451
		if (ip < (u8 *)PAGE_OFFSET || probe_kernel_address(ip, c)) {
			/* try starting at RIP */
452
			ip = (u8 *)regs->ip;
453 454 455 456 457
			code_len = code_len - code_prologue + 1;
		}
		for (i = 0; i < code_len; i++, ip++) {
			if (ip < (u8 *)PAGE_OFFSET ||
					probe_kernel_address(ip, c)) {
L
Linus Torvalds 已提交
458 459 460
				printk(" Bad RIP value.");
				break;
			}
461 462 463 464
			if (ip == (u8 *)regs->ip)
				printk("<%02x> ", c);
			else
				printk("%02x ", c);
L
Linus Torvalds 已提交
465 466 467
		}
	}
	printk("\n");
468
}
L
Linus Torvalds 已提交
469

470
int is_valid_bugaddr(unsigned long ip)
471 472 473
{
	unsigned short ud2;

474
	if (__copy_from_user(&ud2, (const void __user *) ip, sizeof(ud2)))
475 476 477 478
		return 0;

	return ud2 == 0x0b0f;
}
L
Linus Torvalds 已提交
479

A
Andi Kleen 已提交
480
static raw_spinlock_t die_lock = __RAW_SPIN_LOCK_UNLOCKED;
L
Linus Torvalds 已提交
481
static int die_owner = -1;
482
static unsigned int die_nest_count;
L
Linus Torvalds 已提交
483

484
unsigned __kprobes long oops_begin(void)
L
Linus Torvalds 已提交
485
{
A
Andrew Morton 已提交
486
	int cpu;
487 488
	unsigned long flags;

489 490
	oops_enter();

491
	/* racy, but better than risking deadlock. */
A
Andi Kleen 已提交
492
	raw_local_irq_save(flags);
A
Andrew Morton 已提交
493
	cpu = smp_processor_id();
A
Andi Kleen 已提交
494
	if (!__raw_spin_trylock(&die_lock)) {
L
Linus Torvalds 已提交
495 496 497
		if (cpu == die_owner) 
			/* nested oops. should stop eventually */;
		else
A
Andi Kleen 已提交
498
			__raw_spin_lock(&die_lock);
L
Linus Torvalds 已提交
499
	}
500
	die_nest_count++;
501
	die_owner = cpu;
L
Linus Torvalds 已提交
502
	console_verbose();
503 504
	bust_spinlocks(1);
	return flags;
L
Linus Torvalds 已提交
505 506
}

507
void __kprobes oops_end(unsigned long flags, struct pt_regs *regs, int signr)
508
{
L
Linus Torvalds 已提交
509
	die_owner = -1;
510
	bust_spinlocks(0);
511
	die_nest_count--;
A
Andi Kleen 已提交
512
	if (!die_nest_count)
513
		/* Nest count reaches zero, release the lock. */
A
Andi Kleen 已提交
514 515
		__raw_spin_unlock(&die_lock);
	raw_local_irq_restore(flags);
516 517 518 519
	if (!regs) {
		oops_exit();
		return;
	}
L
Linus Torvalds 已提交
520
	if (panic_on_oops)
521
		panic("Fatal exception");
522
	oops_exit();
523
	do_exit(signr);
524
}
L
Linus Torvalds 已提交
525

526
int __kprobes __die(const char *str, struct pt_regs *regs, long err)
L
Linus Torvalds 已提交
527
{
528
	printk(KERN_EMERG "%s: %04lx [%u] ", str, err & 0xffff, ++die_counter);
L
Linus Torvalds 已提交
529 530 531 532 533 534 535 536 537 538
#ifdef CONFIG_PREEMPT
	printk("PREEMPT ");
#endif
#ifdef CONFIG_SMP
	printk("SMP ");
#endif
#ifdef CONFIG_DEBUG_PAGEALLOC
	printk("DEBUG_PAGEALLOC");
#endif
	printk("\n");
539 540
	if (notify_die(DIE_OOPS, str, regs, err,
			current->thread.trap_no, SIGSEGV) == NOTIFY_STOP)
541
		return 1;
542

L
Linus Torvalds 已提交
543
	show_registers(regs);
544
	add_taint(TAINT_DIE);
L
Linus Torvalds 已提交
545 546
	/* Executive summary in case the oops scrolled away */
	printk(KERN_ALERT "RIP ");
547
	printk_address(regs->ip, 1);
548
	printk(" RSP <%016lx>\n", regs->sp);
549 550
	if (kexec_should_crash(current))
		crash_kexec(regs);
551
	return 0;
L
Linus Torvalds 已提交
552 553
}

554
void die(const char *str, struct pt_regs *regs, long err)
L
Linus Torvalds 已提交
555
{
556 557
	unsigned long flags = oops_begin();

558
	if (!user_mode(regs))
559
		report_bug(regs->ip, regs);
560

561 562 563
	if (__die(str, regs, err))
		regs = NULL;
	oops_end(flags, regs, SIGSEGV);
L
Linus Torvalds 已提交
564 565
}

566 567
notrace __kprobes void
die_nmi(char *str, struct pt_regs *regs, int do_panic)
L
Linus Torvalds 已提交
568
{
569
	unsigned long flags;
570

571
	if (notify_die(DIE_NMIWATCHDOG, str, regs, 0, 2, SIGINT) == NOTIFY_STOP)
572
		return;
573

574
	flags = oops_begin();
L
Linus Torvalds 已提交
575 576 577 578
	/*
	 * We are in trouble anyway, lets at least try
	 * to get a message out.
	 */
579 580 581
	printk(KERN_EMERG "%s", str);
	printk(" on CPU%d, ip %08lx, registers:\n",
		smp_processor_id(), regs->ip);
L
Linus Torvalds 已提交
582
	show_registers(regs);
583 584
	if (kexec_should_crash(current))
		crash_kexec(regs);
585 586
	if (do_panic || panic_on_oops)
		panic("Non maskable interrupt");
587
	oops_end(flags, NULL, SIGBUS);
588 589
	nmi_exit();
	local_irq_enable();
590
	do_exit(SIGBUS);
L
Linus Torvalds 已提交
591 592
}

593 594 595
static void __kprobes
do_trap(int trapnr, int signr, char *str, struct pt_regs *regs,
	long error_code, siginfo_t *info)
L
Linus Torvalds 已提交
596
{
597 598
	struct task_struct *tsk = current;

599 600
	if (!user_mode(regs))
		goto kernel_trap;
L
Linus Torvalds 已提交
601

602 603 604 605 606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621
	/*
	 * We want error_code and trap_no set for userspace faults and
	 * kernelspace faults which result in die(), but not
	 * kernelspace faults which are fixed up.  die() gives the
	 * process no chance to handle the signal and notice the
	 * kernel fault information, so that won't result in polluting
	 * the information about previously queued, but not yet
	 * delivered, faults.  See also do_general_protection below.
	 */
	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = trapnr;

	if (show_unhandled_signals && unhandled_signal(tsk, signr) &&
	    printk_ratelimit()) {
		printk(KERN_INFO
		       "%s[%d] trap %s ip:%lx sp:%lx error:%lx",
		       tsk->comm, tsk->pid, str,
		       regs->ip, regs->sp, error_code);
		print_vma_addr(" in ", regs->ip);
		printk("\n");
L
Linus Torvalds 已提交
622 623
	}

624 625 626 627 628
	if (info)
		force_sig_info(signr, info, tsk);
	else
		force_sig(signr, tsk);
	return;
L
Linus Torvalds 已提交
629

630
kernel_trap:
631 632 633 634
	if (!fixup_exception(regs)) {
		tsk->thread.error_code = error_code;
		tsk->thread.trap_no = trapnr;
		die(str, regs, error_code);
L
Linus Torvalds 已提交
635
	}
636
	return;
L
Linus Torvalds 已提交
637 638 639
}

#define DO_ERROR(trapnr, signr, str, name) \
640 641 642 643 644
asmlinkage void do_##name(struct pt_regs * regs, long error_code)	\
{									\
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr)	\
							== NOTIFY_STOP)	\
		return;							\
645
	conditional_sti(regs);						\
646
	do_trap(trapnr, signr, str, regs, error_code, NULL);		\
L
Linus Torvalds 已提交
647 648
}

649 650 651 652 653 654 655 656 657 658 659 660
#define DO_ERROR_INFO(trapnr, signr, str, name, sicode, siaddr)		\
asmlinkage void do_##name(struct pt_regs * regs, long error_code)	\
{									\
	siginfo_t info;							\
	info.si_signo = signr;						\
	info.si_errno = 0;						\
	info.si_code = sicode;						\
	info.si_addr = (void __user *)siaddr;				\
	trace_hardirqs_fixup();						\
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr)	\
							== NOTIFY_STOP)	\
		return;							\
661
	conditional_sti(regs);						\
662
	do_trap(trapnr, signr, str, regs, error_code, &info);		\
L
Linus Torvalds 已提交
663 664
}

665 666 667 668 669
DO_ERROR_INFO(0, SIGFPE, "divide error", divide_error, FPE_INTDIV, regs->ip)
DO_ERROR(4, SIGSEGV, "overflow", overflow)
DO_ERROR(5, SIGSEGV, "bounds", bounds)
DO_ERROR_INFO(6, SIGILL, "invalid opcode", invalid_op, ILL_ILLOPN, regs->ip)
DO_ERROR(9, SIGFPE, "coprocessor segment overrun", coprocessor_segment_overrun)
L
Linus Torvalds 已提交
670
DO_ERROR(10, SIGSEGV, "invalid TSS", invalid_TSS)
671
DO_ERROR(11, SIGBUS, "segment not present", segment_not_present)
L
Linus Torvalds 已提交
672
DO_ERROR_INFO(17, SIGBUS, "alignment check", alignment_check, BUS_ADRALN, 0)
673 674 675 676 677 678 679 680 681 682 683

/* Runs on IST stack */
asmlinkage void do_stack_segment(struct pt_regs *regs, long error_code)
{
	if (notify_die(DIE_TRAP, "stack segment", regs, error_code,
			12, SIGBUS) == NOTIFY_STOP)
		return;
	preempt_conditional_sti(regs);
	do_trap(12, SIGBUS, "stack segment", regs, error_code, NULL);
	preempt_conditional_cli(regs);
}
684 685 686 687 688 689 690 691 692 693 694 695 696 697 698 699 700

asmlinkage void do_double_fault(struct pt_regs * regs, long error_code)
{
	static const char str[] = "double fault";
	struct task_struct *tsk = current;

	/* Return not checked because double check cannot be ignored */
	notify_die(DIE_TRAP, str, regs, error_code, 8, SIGSEGV);

	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = 8;

	/* This is always a kernel trap and never fixable (and thus must
	   never return). */
	for (;;)
		die(str, regs, error_code);
}
L
Linus Torvalds 已提交
701

702 703
asmlinkage void __kprobes
do_general_protection(struct pt_regs *regs, long error_code)
L
Linus Torvalds 已提交
704
{
705
	struct task_struct *tsk;
706

L
Linus Torvalds 已提交
707 708
	conditional_sti(regs);

709 710 711
	tsk = current;
	if (!user_mode(regs))
		goto gp_in_kernel;
L
Linus Torvalds 已提交
712

713 714 715 716 717 718 719 720 721 722 723 724 725 726 727
	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = 13;

	if (show_unhandled_signals && unhandled_signal(tsk, SIGSEGV) &&
			printk_ratelimit()) {
		printk(KERN_INFO
			"%s[%d] general protection ip:%lx sp:%lx error:%lx",
			tsk->comm, tsk->pid,
			regs->ip, regs->sp, error_code);
		print_vma_addr(" in ", regs->ip);
		printk("\n");
	}

	force_sig(SIGSEGV, tsk);
	return;
L
Linus Torvalds 已提交
728

729
gp_in_kernel:
730 731
	if (fixup_exception(regs))
		return;
732

733 734 735 736 737 738
	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = 13;
	if (notify_die(DIE_GPF, "general protection fault", regs,
				error_code, 13, SIGSEGV) == NOTIFY_STOP)
		return;
	die("general protection fault", regs, error_code);
L
Linus Torvalds 已提交
739 740
}

741
static notrace __kprobes void
742
mem_parity_error(unsigned char reason, struct pt_regs *regs)
L
Linus Torvalds 已提交
743
{
744 745
	printk(KERN_EMERG "Uhhuh. NMI received for unknown reason %02x.\n",
		reason);
746
	printk(KERN_EMERG "You have some hardware problem, likely on the PCI bus.\n");
747

D
Dave Jiang 已提交
748
#if defined(CONFIG_EDAC)
749
	if (edac_handler_set()) {
D
Dave Jiang 已提交
750 751 752 753 754
		edac_atomic_assert_error();
		return;
	}
#endif

755
	if (panic_on_unrecovered_nmi)
756 757 758
		panic("NMI: Not continuing");

	printk(KERN_EMERG "Dazed and confused, but trying to continue\n");
L
Linus Torvalds 已提交
759 760 761 762 763 764

	/* Clear and disable the memory parity error line. */
	reason = (reason & 0xf) | 4;
	outb(reason, 0x61);
}

765
static notrace __kprobes void
766
io_check_error(unsigned char reason, struct pt_regs *regs)
L
Linus Torvalds 已提交
767 768 769 770 771 772 773 774 775 776 777 778
{
	printk("NMI: IOCK error (debug interrupt?)\n");
	show_registers(regs);

	/* Re-enable the IOCK line, wait for a few seconds */
	reason = (reason & 0xf) | 8;
	outb(reason, 0x61);
	mdelay(2000);
	reason &= ~8;
	outb(reason, 0x61);
}

779
static notrace __kprobes void
780
unknown_nmi_error(unsigned char reason, struct pt_regs * regs)
781
{
J
Jason Wessel 已提交
782 783
	if (notify_die(DIE_NMIUNKNOWN, "nmi", regs, reason, 2, SIGINT) == NOTIFY_STOP)
		return;
784 785 786
	printk(KERN_EMERG "Uhhuh. NMI received for unknown reason %02x.\n",
		reason);
	printk(KERN_EMERG "Do you have a strange power saving mode enabled?\n");
787 788

	if (panic_on_unrecovered_nmi)
789
		panic("NMI: Not continuing");
790

791
	printk(KERN_EMERG "Dazed and confused, but trying to continue\n");
L
Linus Torvalds 已提交
792 793
}

794 795
/* Runs on IST stack. This code must keep interrupts off all the time.
   Nested NMIs are prevented by the CPU. */
796
asmlinkage notrace __kprobes void default_do_nmi(struct pt_regs *regs)
L
Linus Torvalds 已提交
797 798
{
	unsigned char reason = 0;
A
Ashok Raj 已提交
799 800 801
	int cpu;

	cpu = smp_processor_id();
L
Linus Torvalds 已提交
802

803
	/* Only the BSP gets external NMIs from the system. */
A
Ashok Raj 已提交
804
	if (!cpu)
L
Linus Torvalds 已提交
805 806 807
		reason = get_nmi_reason();

	if (!(reason & 0xc0)) {
808
		if (notify_die(DIE_NMI_IPI, "nmi_ipi", regs, reason, 2, SIGINT)
L
Linus Torvalds 已提交
809 810 811 812 813 814
								== NOTIFY_STOP)
			return;
		/*
		 * Ok, so this is none of the documented NMI sources,
		 * so it must be the NMI watchdog.
		 */
815
		if (nmi_watchdog_tick(regs, reason))
L
Linus Torvalds 已提交
816
			return;
817
		if (!do_nmi_callback(regs, cpu))
818 819
			unknown_nmi_error(reason, regs);

L
Linus Torvalds 已提交
820 821
		return;
	}
822
	if (notify_die(DIE_NMI, "nmi", regs, reason, 2, SIGINT) == NOTIFY_STOP)
823
		return;
L
Linus Torvalds 已提交
824 825 826 827 828 829 830 831

	/* AK: following checks seem to be broken on modern chipsets. FIXME */
	if (reason & 0x80)
		mem_parity_error(reason, regs);
	if (reason & 0x40)
		io_check_error(reason, regs);
}

832 833 834 835
asmlinkage notrace __kprobes void
do_nmi(struct pt_regs *regs, long error_code)
{
	nmi_enter();
836

837
	add_pda(__nmi_count, 1);
838

839 840
	if (!ignore_nmis)
		default_do_nmi(regs);
841

842 843 844 845 846 847 848 849 850 851 852 853 854 855 856
	nmi_exit();
}

void stop_nmi(void)
{
	acpi_nmi_disable();
	ignore_nmis++;
}

void restart_nmi(void)
{
	ignore_nmis--;
	acpi_nmi_enable();
}

857
/* runs on IST stack. */
858
asmlinkage void __kprobes do_int3(struct pt_regs *regs, long error_code)
L
Linus Torvalds 已提交
859
{
P
Peter Zijlstra 已提交
860 861
	trace_hardirqs_fixup();

862 863
	if (notify_die(DIE_INT3, "int3", regs, error_code, 3, SIGTRAP)
			== NOTIFY_STOP)
L
Linus Torvalds 已提交
864
		return;
865

866
	preempt_conditional_sti(regs);
L
Linus Torvalds 已提交
867
	do_trap(3, SIGTRAP, "int3", regs, error_code, NULL);
868
	preempt_conditional_cli(regs);
L
Linus Torvalds 已提交
869 870
}

871 872 873
/* Help handler running on IST stack to switch back to user stack
   for scheduling or signal handling. The actual stack switch is done in
   entry.S */
874
asmlinkage __kprobes struct pt_regs *sync_regs(struct pt_regs *eregs)
875 876 877
{
	struct pt_regs *regs = eregs;
	/* Did already sync */
878
	if (eregs == (struct pt_regs *)eregs->sp)
879 880
		;
	/* Exception from user space */
881
	else if (user_mode(eregs))
A
Al Viro 已提交
882
		regs = task_pt_regs(current);
883 884
	/* Exception from kernel and interrupts are enabled. Move to
 	   kernel process stack. */
885 886
	else if (eregs->flags & X86_EFLAGS_IF)
		regs = (struct pt_regs *)(eregs->sp -= sizeof(struct pt_regs));
887 888 889 890 891
	if (eregs != regs)
		*regs = *eregs;
	return regs;
}

L
Linus Torvalds 已提交
892
/* runs on IST stack. */
893 894
asmlinkage void __kprobes do_debug(struct pt_regs * regs,
				   unsigned long error_code)
L
Linus Torvalds 已提交
895 896
{
	struct task_struct *tsk = current;
897
	unsigned long condition;
L
Linus Torvalds 已提交
898 899
	siginfo_t info;

900 901
	trace_hardirqs_fixup();

902
	get_debugreg(condition, 6);
L
Linus Torvalds 已提交
903

904 905 906 907 908 909
	/*
	 * The processor cleared BTF, so don't mark that we need it set.
	 */
	clear_tsk_thread_flag(tsk, TIF_DEBUGCTLMSR);
	tsk->thread.debugctlmsr = 0;

L
Linus Torvalds 已提交
910
	if (notify_die(DIE_DEBUG, "debug", regs, condition, error_code,
911
						SIGTRAP) == NOTIFY_STOP)
912
		return;
913

914
	preempt_conditional_sti(regs);
L
Linus Torvalds 已提交
915 916 917

	/* Mask out spurious debug traps due to lazy DR7 setting */
	if (condition & (DR_TRAP0|DR_TRAP1|DR_TRAP2|DR_TRAP3)) {
918
		if (!tsk->thread.debugreg7)
L
Linus Torvalds 已提交
919 920 921 922 923
			goto clear_dr7;
	}

	tsk->thread.debugreg6 = condition;

R
Roland McGrath 已提交
924 925 926 927
	/*
	 * Single-stepping through TF: make sure we ignore any events in
	 * kernel space (but re-enable TF when returning to user mode).
	 */
928
	if (condition & DR_STEP) {
929 930
		if (!user_mode(regs))
			goto clear_TF_reenable;
L
Linus Torvalds 已提交
931 932 933 934 935 936 937 938
	}

	/* Ok, finally something we can handle */
	tsk->thread.trap_no = 1;
	tsk->thread.error_code = error_code;
	info.si_signo = SIGTRAP;
	info.si_errno = 0;
	info.si_code = TRAP_BRKPT;
939
	info.si_addr = user_mode(regs) ? (void __user *)regs->ip : NULL;
940
	force_sig_info(SIGTRAP, &info, tsk);
L
Linus Torvalds 已提交
941 942

clear_dr7:
943
	set_debugreg(0, 7);
944
	preempt_conditional_cli(regs);
945
	return;
L
Linus Torvalds 已提交
946 947 948

clear_TF_reenable:
	set_tsk_thread_flag(tsk, TIF_SINGLESTEP);
949
	regs->flags &= ~X86_EFLAGS_TF;
950
	preempt_conditional_cli(regs);
951
	return;
L
Linus Torvalds 已提交
952 953
}

954
static int kernel_math_error(struct pt_regs *regs, const char *str, int trapnr)
L
Linus Torvalds 已提交
955
{
956
	if (fixup_exception(regs))
L
Linus Torvalds 已提交
957
		return 1;
958

959
	notify_die(DIE_GPF, str, regs, 0, trapnr, SIGFPE);
960
	/* Illegal floating point operation in the kernel */
961
	current->thread.trap_no = trapnr;
L
Linus Torvalds 已提交
962 963 964 965 966 967 968 969 970 971 972
	die(str, regs, 0);
	return 0;
}

/*
 * Note that we play around with the 'TS' bit in an attempt to get
 * the correct behaviour even in the presence of the asynchronous
 * IRQ13 behaviour
 */
asmlinkage void do_coprocessor_error(struct pt_regs *regs)
{
973
	void __user *ip = (void __user *)(regs->ip);
974
	struct task_struct *task;
L
Linus Torvalds 已提交
975 976 977 978
	siginfo_t info;
	unsigned short cwd, swd;

	conditional_sti(regs);
979
	if (!user_mode(regs) &&
980
	    kernel_math_error(regs, "kernel x87 math error", 16))
L
Linus Torvalds 已提交
981 982 983 984 985 986 987 988 989 990 991 992
		return;

	/*
	 * Save the info for the exception handler and clear the error.
	 */
	task = current;
	save_init_fpu(task);
	task->thread.trap_no = 16;
	task->thread.error_code = 0;
	info.si_signo = SIGFPE;
	info.si_errno = 0;
	info.si_code = __SI_FAULT;
993
	info.si_addr = ip;
L
Linus Torvalds 已提交
994 995 996 997 998 999 1000 1001 1002 1003 1004 1005
	/*
	 * (~cwd & swd) will mask out exceptions that are not set to unmasked
	 * status.  0x3f is the exception bits in these regs, 0x200 is the
	 * C1 reg you need in case of a stack fault, 0x040 is the stack
	 * fault bit.  We should only be taking one exception at a time,
	 * so if this combination doesn't produce any single exception,
	 * then we have a bad program that isn't synchronizing its FPU usage
	 * and it will suffer the consequences since we won't be able to
	 * fully reproduce the context of the exception
	 */
	cwd = get_fpu_cwd(task);
	swd = get_fpu_swd(task);
1006
	switch (swd & ~cwd & 0x3f) {
1007 1008 1009 1010 1011 1012 1013 1014 1015 1016 1017 1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028 1029 1030
	case 0x000: /* No unmasked exception */
	default: /* Multiple exceptions */
		break;
	case 0x001: /* Invalid Op */
		/*
		 * swd & 0x240 == 0x040: Stack Underflow
		 * swd & 0x240 == 0x240: Stack Overflow
		 * User must clear the SF bit (0x40) if set
		 */
		info.si_code = FPE_FLTINV;
		break;
	case 0x002: /* Denormalize */
	case 0x010: /* Underflow */
		info.si_code = FPE_FLTUND;
		break;
	case 0x004: /* Zero Divide */
		info.si_code = FPE_FLTDIV;
		break;
	case 0x008: /* Overflow */
		info.si_code = FPE_FLTOVF;
		break;
	case 0x020: /* Precision */
		info.si_code = FPE_FLTRES;
		break;
L
Linus Torvalds 已提交
1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041
	}
	force_sig_info(SIGFPE, &info, task);
}

asmlinkage void bad_intr(void)
{
	printk("bad interrupt"); 
}

asmlinkage void do_simd_coprocessor_error(struct pt_regs *regs)
{
1042
	void __user *ip = (void __user *)(regs->ip);
1043
	struct task_struct *task;
L
Linus Torvalds 已提交
1044 1045 1046 1047
	siginfo_t info;
	unsigned short mxcsr;

	conditional_sti(regs);
1048
	if (!user_mode(regs) &&
1049
        	kernel_math_error(regs, "kernel simd math error", 19))
L
Linus Torvalds 已提交
1050 1051 1052 1053 1054 1055 1056 1057 1058 1059 1060 1061
		return;

	/*
	 * Save the info for the exception handler and clear the error.
	 */
	task = current;
	save_init_fpu(task);
	task->thread.trap_no = 19;
	task->thread.error_code = 0;
	info.si_signo = SIGFPE;
	info.si_errno = 0;
	info.si_code = __SI_FAULT;
1062
	info.si_addr = ip;
L
Linus Torvalds 已提交
1063 1064 1065 1066 1067 1068 1069 1070
	/*
	 * The SIMD FPU exceptions are handled a little differently, as there
	 * is only a single status/control register.  Thus, to determine which
	 * unmasked exception was caught we must mask the exception mask bits
	 * at 0x1f80, and then use these to mask the exception bits at 0x3f.
	 */
	mxcsr = get_fpu_mxcsr(task);
	switch (~((mxcsr & 0x1f80) >> 7) & (mxcsr & 0x3f)) {
1071 1072 1073 1074 1075 1076 1077 1078 1079 1080 1081 1082 1083 1084 1085 1086 1087 1088 1089
	case 0x000:
	default:
		break;
	case 0x001: /* Invalid Op */
		info.si_code = FPE_FLTINV;
		break;
	case 0x002: /* Denormalize */
	case 0x010: /* Underflow */
		info.si_code = FPE_FLTUND;
		break;
	case 0x004: /* Zero Divide */
		info.si_code = FPE_FLTDIV;
		break;
	case 0x008: /* Overflow */
		info.si_code = FPE_FLTOVF;
		break;
	case 0x020: /* Precision */
		info.si_code = FPE_FLTRES;
		break;
L
Linus Torvalds 已提交
1090 1091 1092 1093 1094 1095 1096 1097 1098
	}
	force_sig_info(SIGFPE, &info, task);
}

asmlinkage void do_spurious_interrupt_bug(struct pt_regs * regs)
{
}

asmlinkage void __attribute__((weak)) smp_thermal_interrupt(void)
1099 1100 1101 1102
{
}

asmlinkage void __attribute__((weak)) mce_threshold_interrupt(void)
L
Linus Torvalds 已提交
1103 1104 1105 1106
{
}

/*
1107
 * 'math_state_restore()' saves the current math information in the
L
Linus Torvalds 已提交
1108 1109 1110 1111 1112 1113 1114 1115 1116
 * old math state array, and gets the new ones from the current task
 *
 * Careful.. There are problems with IBM-designed IRQ13 behaviour.
 * Don't touch unless you *really* know how it works.
 */
asmlinkage void math_state_restore(void)
{
	struct task_struct *me = current;

1117 1118 1119 1120 1121 1122 1123 1124 1125 1126 1127 1128 1129 1130 1131
	if (!used_math()) {
		local_irq_enable();
		/*
		 * does a slab alloc which can sleep
		 */
		if (init_fpu(me)) {
			/*
			 * ran out of memory!
			 */
			do_group_exit(SIGKILL);
			return;
		}
		local_irq_disable();
	}

1132
	clts();				/* Allow maths ops (or we recurse) */
1133 1134 1135 1136 1137 1138 1139 1140
	/*
	 * Paranoid restore. send a SIGSEGV if we fail to restore the state.
	 */
	if (unlikely(restore_fpu_checking(&me->thread.xstate->fxsave))) {
		stts();
		force_sig(SIGSEGV, me);
		return;
	}
A
Al Viro 已提交
1141
	task_thread_info(me)->status |= TS_USEDFPU;
1142
	me->fpu_counter++;
L
Linus Torvalds 已提交
1143
}
1144
EXPORT_SYMBOL_GPL(math_state_restore);
L
Linus Torvalds 已提交
1145 1146 1147

void __init trap_init(void)
{
1148 1149 1150 1151 1152 1153 1154 1155 1156 1157 1158 1159 1160 1161 1162 1163 1164 1165
	set_intr_gate(0, &divide_error);
	set_intr_gate_ist(1, &debug, DEBUG_STACK);
	set_intr_gate_ist(2, &nmi, NMI_STACK);
 	set_system_gate_ist(3, &int3, DEBUG_STACK); /* int3 can be called from all */
	set_system_gate(4, &overflow); /* int4 can be called from all */
	set_intr_gate(5, &bounds);
	set_intr_gate(6, &invalid_op);
	set_intr_gate(7, &device_not_available);
	set_intr_gate_ist(8, &double_fault, DOUBLEFAULT_STACK);
	set_intr_gate(9, &coprocessor_segment_overrun);
	set_intr_gate(10, &invalid_TSS);
	set_intr_gate(11, &segment_not_present);
	set_intr_gate_ist(12, &stack_segment, STACKFAULT_STACK);
	set_intr_gate(13, &general_protection);
	set_intr_gate(14, &page_fault);
	set_intr_gate(15, &spurious_interrupt_bug);
	set_intr_gate(16, &coprocessor_error);
	set_intr_gate(17, &alignment_check);
L
Linus Torvalds 已提交
1166
#ifdef CONFIG_X86_MCE
1167
	set_intr_gate_ist(18, &machine_check, MCE_STACK);
L
Linus Torvalds 已提交
1168
#endif
1169
	set_intr_gate(19, &simd_coprocessor_error);
L
Linus Torvalds 已提交
1170 1171 1172 1173

#ifdef CONFIG_IA32_EMULATION
	set_system_gate(IA32_SYSCALL_VECTOR, ia32_syscall);
#endif
1174 1175 1176
	/*
	 * initialize the per thread extended state:
	 */
1177
	init_thread_xstate();
L
Linus Torvalds 已提交
1178
	/*
1179
	 * Should be a barrier for any external CPU state:
L
Linus Torvalds 已提交
1180 1181 1182 1183
	 */
	cpu_init();
}

1184
static int __init oops_setup(char *s)
1185
{
1186 1187 1188 1189 1190
	if (!s)
		return -EINVAL;
	if (!strcmp(s, "panic"))
		panic_on_oops = 1;
	return 0;
1191
}
1192
early_param("oops", oops_setup);
L
Linus Torvalds 已提交
1193 1194 1195

static int __init kstack_setup(char *s)
{
1196 1197
	if (!s)
		return -EINVAL;
1198
	kstack_depth_to_print = simple_strtoul(s, NULL, 0);
1199
	return 0;
L
Linus Torvalds 已提交
1200
}
1201
early_param("kstack", kstack_setup);
1202 1203 1204 1205 1206 1207 1208 1209 1210 1211

static int __init code_bytes_setup(char *s)
{
	code_bytes = simple_strtoul(s, NULL, 0);
	if (code_bytes > 8192)
		code_bytes = 8192;

	return 1;
}
__setup("code_bytes=", code_bytes_setup);