vdso32-setup.c 9.9 KB
Newer Older
L
Linus Torvalds 已提交
1 2
/*
 * (C) Copyright 2002 Linus Torvalds
3 4
 * Portions based on the vdso-randomization code from exec-shield:
 * Copyright(C) 2005-2006, Red Hat, Inc., Ingo Molnar
L
Linus Torvalds 已提交
5 6 7 8 9 10 11 12 13 14 15
 *
 * This file contains the needed initializations to support sysenter.
 */

#include <linux/init.h>
#include <linux/smp.h>
#include <linux/thread_info.h>
#include <linux/sched.h>
#include <linux/gfp.h>
#include <linux/string.h>
#include <linux/elf.h>
16
#include <linux/mm.h>
A
Alexey Dobriyan 已提交
17
#include <linux/err.h>
18
#include <linux/module.h>
L
Linus Torvalds 已提交
19 20 21 22 23

#include <asm/cpufeature.h>
#include <asm/msr.h>
#include <asm/pgtable.h>
#include <asm/unistd.h>
24
#include <asm/elf.h>
25
#include <asm/tlbflush.h>
R
Roland McGrath 已提交
26
#include <asm/vdso.h>
R
Roland McGrath 已提交
27
#include <asm/proto.h>
28 29 30 31 32 33 34 35 36 37 38 39

enum {
	VDSO_DISABLED = 0,
	VDSO_ENABLED = 1,
	VDSO_COMPAT = 2,
};

#ifdef CONFIG_COMPAT_VDSO
#define VDSO_DEFAULT	VDSO_COMPAT
#else
#define VDSO_DEFAULT	VDSO_ENABLED
#endif
L
Linus Torvalds 已提交
40

R
Roland McGrath 已提交
41 42 43 44 45 46 47 48 49 50 51 52
#ifdef CONFIG_X86_64
#define vdso_enabled			sysctl_vsyscall32
#define arch_setup_additional_pages	syscall32_setup_pages
#endif

/*
 * This is the difference between the prelinked addresses in the vDSO images
 * and the VDSO_HIGH_BASE address where CONFIG_COMPAT_VDSO places the vDSO
 * in the user address space.
 */
#define VDSO_ADDR_ADJUST	(VDSO_HIGH_BASE - (unsigned long)VDSO32_PRELINK)

53 54 55 56
/*
 * Should the kernel map a VDSO page into processes and pass its
 * address down to glibc upon exec()?
 */
57
unsigned int __read_mostly vdso_enabled = VDSO_DEFAULT;
58 59 60 61 62 63 64 65

static int __init vdso_setup(char *s)
{
	vdso_enabled = simple_strtoul(s, NULL, 0);

	return 1;
}

R
Roland McGrath 已提交
66 67 68 69 70 71
/*
 * For consistency, the argument vdso32=[012] affects the 32-bit vDSO
 * behavior on both 64-bit and 32-bit kernels.
 * On 32-bit kernels, vdso=[012] means the same thing.
 */
__setup("vdso32=", vdso_setup);
72

R
Roland McGrath 已提交
73 74 75 76 77
#ifdef CONFIG_X86_32
__setup_param("vdso=", vdso32_setup, vdso_setup, 0);

EXPORT_SYMBOL_GPL(vdso_enabled);
#endif
L
Linus Torvalds 已提交
78

79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101
static __init void reloc_symtab(Elf32_Ehdr *ehdr,
				unsigned offset, unsigned size)
{
	Elf32_Sym *sym = (void *)ehdr + offset;
	unsigned nsym = size / sizeof(*sym);
	unsigned i;

	for(i = 0; i < nsym; i++, sym++) {
		if (sym->st_shndx == SHN_UNDEF ||
		    sym->st_shndx == SHN_ABS)
			continue;  /* skip */

		if (sym->st_shndx > SHN_LORESERVE) {
			printk(KERN_INFO "VDSO: unexpected st_shndx %x\n",
			       sym->st_shndx);
			continue;
		}

		switch(ELF_ST_TYPE(sym->st_info)) {
		case STT_OBJECT:
		case STT_FUNC:
		case STT_SECTION:
		case STT_FILE:
R
Roland McGrath 已提交
102
			sym->st_value += VDSO_ADDR_ADJUST;
103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127
		}
	}
}

static __init void reloc_dyn(Elf32_Ehdr *ehdr, unsigned offset)
{
	Elf32_Dyn *dyn = (void *)ehdr + offset;

	for(; dyn->d_tag != DT_NULL; dyn++)
		switch(dyn->d_tag) {
		case DT_PLTGOT:
		case DT_HASH:
		case DT_STRTAB:
		case DT_SYMTAB:
		case DT_RELA:
		case DT_INIT:
		case DT_FINI:
		case DT_REL:
		case DT_DEBUG:
		case DT_JMPREL:
		case DT_VERSYM:
		case DT_VERDEF:
		case DT_VERNEED:
		case DT_ADDRRNGLO ... DT_ADDRRNGHI:
			/* definitely pointers needing relocation */
R
Roland McGrath 已提交
128
			dyn->d_un.d_ptr += VDSO_ADDR_ADJUST;
129 130 131 132 133 134 135 136
			break;

		case DT_ENCODING ... OLD_DT_LOOS-1:
		case DT_LOOS ... DT_HIOS-1:
			/* Tags above DT_ENCODING are pointers if
			   they're even */
			if (dyn->d_tag >= DT_ENCODING &&
			    (dyn->d_tag & 1) == 0)
R
Roland McGrath 已提交
137
				dyn->d_un.d_ptr += VDSO_ADDR_ADJUST;
138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164
			break;

		case DT_VERDEFNUM:
		case DT_VERNEEDNUM:
		case DT_FLAGS_1:
		case DT_RELACOUNT:
		case DT_RELCOUNT:
		case DT_VALRNGLO ... DT_VALRNGHI:
			/* definitely not pointers */
			break;

		case OLD_DT_LOOS ... DT_LOOS-1:
		case DT_HIOS ... DT_VALRNGLO-1:
		default:
			if (dyn->d_tag > DT_ENCODING)
				printk(KERN_INFO "VDSO: unexpected DT_tag %x\n",
				       dyn->d_tag);
			break;
		}
}

static __init void relocate_vdso(Elf32_Ehdr *ehdr)
{
	Elf32_Phdr *phdr;
	Elf32_Shdr *shdr;
	int i;

165
	BUG_ON(memcmp(ehdr->e_ident, ELFMAG, SELFMAG) != 0 ||
R
Roland McGrath 已提交
166
	       !elf_check_arch_ia32(ehdr) ||
167 168
	       ehdr->e_type != ET_DYN);

R
Roland McGrath 已提交
169
	ehdr->e_entry += VDSO_ADDR_ADJUST;
170 171 172 173

	/* rebase phdrs */
	phdr = (void *)ehdr + ehdr->e_phoff;
	for (i = 0; i < ehdr->e_phnum; i++) {
R
Roland McGrath 已提交
174
		phdr[i].p_vaddr += VDSO_ADDR_ADJUST;
175 176 177 178 179 180 181 182 183 184 185 186

		/* relocate dynamic stuff */
		if (phdr[i].p_type == PT_DYNAMIC)
			reloc_dyn(ehdr, phdr[i].p_offset);
	}

	/* rebase sections */
	shdr = (void *)ehdr + ehdr->e_shoff;
	for(i = 0; i < ehdr->e_shnum; i++) {
		if (!(shdr[i].sh_flags & SHF_ALLOC))
			continue;

R
Roland McGrath 已提交
187
		shdr[i].sh_addr += VDSO_ADDR_ADJUST;
188 189 190 191 192 193 194 195

		if (shdr[i].sh_type == SHT_SYMTAB ||
		    shdr[i].sh_type == SHT_DYNSYM)
			reloc_symtab(ehdr, shdr[i].sh_offset,
				     shdr[i].sh_size);
	}
}

R
Roland McGrath 已提交
196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212
/*
 * These symbols are defined by vdso32.S to mark the bounds
 * of the ELF DSO images included therein.
 */
extern const char vdso32_default_start, vdso32_default_end;
extern const char vdso32_sysenter_start, vdso32_sysenter_end;
static struct page *vdso32_pages[1];

#ifdef CONFIG_X86_64

static int use_sysenter __read_mostly = -1;

#define	vdso32_sysenter()	(use_sysenter > 0)

/* May not be __init: called during resume */
void syscall32_cpu_init(void)
{
213 214 215 216 217 218
	if (use_sysenter < 0) {
		if (boot_cpu_data.x86_vendor == X86_VENDOR_INTEL)
			use_sysenter = 1;
		if (boot_cpu_data.x86_vendor == X86_VENDOR_CENTAUR)
			use_sysenter = 1;
	}
R
Roland McGrath 已提交
219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238

	/* Load these always in case some future AMD CPU supports
	   SYSENTER from compat mode too. */
	checking_wrmsrl(MSR_IA32_SYSENTER_CS, (u64)__KERNEL_CS);
	checking_wrmsrl(MSR_IA32_SYSENTER_ESP, 0ULL);
	checking_wrmsrl(MSR_IA32_SYSENTER_EIP, (u64)ia32_sysenter_target);

	wrmsrl(MSR_CSTAR, ia32_cstar_target);
}

#define compat_uses_vma		1

static inline void map_compat_vdso(int map)
{
}

#else  /* CONFIG_X86_32 */

#define vdso32_sysenter()	(boot_cpu_has(X86_FEATURE_SEP))

L
Li Shaohua 已提交
239
void enable_sep_cpu(void)
L
Linus Torvalds 已提交
240 241 242 243
{
	int cpu = get_cpu();
	struct tss_struct *tss = &per_cpu(init_tss, cpu);

L
Li Shaohua 已提交
244 245 246 247 248
	if (!boot_cpu_has(X86_FEATURE_SEP)) {
		put_cpu();
		return;
	}

249
	tss->x86_tss.ss1 = __KERNEL_CS;
250
	tss->x86_tss.sp1 = sizeof(struct tss_struct) + (unsigned long) tss;
L
Linus Torvalds 已提交
251
	wrmsr(MSR_IA32_SYSENTER_CS, __KERNEL_CS, 0);
252
	wrmsr(MSR_IA32_SYSENTER_ESP, tss->x86_tss.sp1, 0);
R
Roland McGrath 已提交
253
	wrmsr(MSR_IA32_SYSENTER_EIP, (unsigned long) ia32_sysenter_target, 0);
L
Linus Torvalds 已提交
254 255 256
	put_cpu();	
}

257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275
static struct vm_area_struct gate_vma;

static int __init gate_vma_init(void)
{
	gate_vma.vm_mm = NULL;
	gate_vma.vm_start = FIXADDR_USER_START;
	gate_vma.vm_end = FIXADDR_USER_END;
	gate_vma.vm_flags = VM_READ | VM_MAYREAD | VM_EXEC | VM_MAYEXEC;
	gate_vma.vm_page_prot = __P101;
	/*
	 * Make sure the vDSO gets into every core dump.
	 * Dumping its contents makes post-mortem fully interpretable later
	 * without matching up the same kernel and hardware config to see
	 * what PC values meant.
	 */
	gate_vma.vm_flags |= VM_ALWAYSDUMP;
	return 0;
}

R
Roland McGrath 已提交
276
#define compat_uses_vma		0
L
Linus Torvalds 已提交
277

278 279 280 281 282 283 284 285 286
static void map_compat_vdso(int map)
{
	static int vdso_mapped;

	if (map == vdso_mapped)
		return;

	vdso_mapped = map;

R
Roland McGrath 已提交
287
	__set_fixmap(FIX_VDSO, page_to_pfn(vdso32_pages[0]) << PAGE_SHIFT,
288 289 290 291 292 293
		     map ? PAGE_READONLY_EXEC : PAGE_NONE);

	/* flush stray tlbs */
	flush_tlb_all();
}

R
Roland McGrath 已提交
294 295
#endif	/* CONFIG_X86_64 */

296
int __init sysenter_setup(void)
L
Linus Torvalds 已提交
297
{
298
	void *syscall_page = (void *)get_zeroed_page(GFP_ATOMIC);
299 300 301
	const void *vsyscall;
	size_t vsyscall_len;

R
Roland McGrath 已提交
302
	vdso32_pages[0] = virt_to_page(syscall_page);
L
Linus Torvalds 已提交
303

R
Roland McGrath 已提交
304
#ifdef CONFIG_X86_32
305
	gate_vma_init();
R
Roland McGrath 已提交
306
#endif
L
Linus Torvalds 已提交
307

R
Roland McGrath 已提交
308 309 310
	if (!vdso32_sysenter()) {
		vsyscall = &vdso32_default_start;
		vsyscall_len = &vdso32_default_end - &vdso32_default_start;
311
	} else {
R
Roland McGrath 已提交
312 313
		vsyscall = &vdso32_sysenter_start;
		vsyscall_len = &vdso32_sysenter_end - &vdso32_sysenter_start;
L
Linus Torvalds 已提交
314 315
	}

316 317
	memcpy(syscall_page, vsyscall, vsyscall_len);
	relocate_vdso(syscall_page);
L
Linus Torvalds 已提交
318 319 320

	return 0;
}
321 322 323 324 325 326

/* Setup a VMA at program startup for the vsyscall page */
int arch_setup_additional_pages(struct linux_binprm *bprm, int exstack)
{
	struct mm_struct *mm = current->mm;
	unsigned long addr;
327
	int ret = 0;
328
	bool compat;
329

330 331 332
	if (vdso_enabled == VDSO_DISABLED)
		return 0;

333 334
	down_write(&mm->mmap_sem);

335 336 337 338 339 340 341 342 343 344 345 346 347 348
	/* Test compat mode once here, in case someone
	   changes it via sysctl */
	compat = (vdso_enabled == VDSO_COMPAT);

	map_compat_vdso(compat);

	if (compat)
		addr = VDSO_HIGH_BASE;
	else {
		addr = get_unmapped_area(NULL, 0, PAGE_SIZE, 0, 0);
		if (IS_ERR_VALUE(addr)) {
			ret = addr;
			goto up_fail;
		}
R
Roland McGrath 已提交
349
	}
350

R
Roland McGrath 已提交
351
	if (compat_uses_vma || !compat) {
352 353 354 355 356 357 358 359 360 361 362 363 364
		/*
		 * MAYWRITE to allow gdb to COW and set breakpoints
		 *
		 * Make sure the vDSO gets into every core dump.
		 * Dumping its contents makes post-mortem fully
		 * interpretable later without matching up the same
		 * kernel and hardware config to see what PC values
		 * meant.
		 */
		ret = install_special_mapping(mm, addr, PAGE_SIZE,
					      VM_READ|VM_EXEC|
					      VM_MAYREAD|VM_MAYWRITE|VM_MAYEXEC|
					      VM_ALWAYSDUMP,
R
Roland McGrath 已提交
365
					      vdso32_pages);
366 367 368 369

		if (ret)
			goto up_fail;
	}
370 371 372

	current->mm->context.vdso = (void *)addr;
	current_thread_info()->sysenter_return =
R
Roland McGrath 已提交
373
		VDSO32_SYMBOL(addr, SYSENTER_RETURN);
374 375

  up_fail:
376
	up_write(&mm->mmap_sem);
377

378 379 380
	return ret;
}

R
Roland McGrath 已提交
381 382 383 384
#ifdef CONFIG_X86_64

__initcall(sysenter_setup);

R
Roland McGrath 已提交
385 386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417
#ifdef CONFIG_SYSCTL
/* Register vsyscall32 into the ABI table */
#include <linux/sysctl.h>

static ctl_table abi_table2[] = {
	{
		.procname	= "vsyscall32",
		.data		= &sysctl_vsyscall32,
		.maxlen		= sizeof(int),
		.mode		= 0644,
		.proc_handler	= proc_dointvec
	},
	{}
};

static ctl_table abi_root_table2[] = {
	{
		.ctl_name = CTL_ABI,
		.procname = "abi",
		.mode = 0555,
		.child = abi_table2
	},
	{}
};

static __init int ia32_binfmt_init(void)
{
	register_sysctl_table(abi_root_table2);
	return 0;
}
__initcall(ia32_binfmt_init);
#endif

R
Roland McGrath 已提交
418 419
#else  /* CONFIG_X86_32 */

420 421 422 423 424 425 426 427 428
const char *arch_vma_name(struct vm_area_struct *vma)
{
	if (vma->vm_mm && vma->vm_start == (long)vma->vm_mm->context.vdso)
		return "[vdso]";
	return NULL;
}

struct vm_area_struct *get_gate_vma(struct task_struct *tsk)
{
429 430 431 432 433
	struct mm_struct *mm = tsk->mm;

	/* Check to see if this task was created in compat vdso mode */
	if (mm && mm->context.vdso == (void *)VDSO_HIGH_BASE)
		return &gate_vma;
434 435 436 437 438
	return NULL;
}

int in_gate_area(struct task_struct *task, unsigned long addr)
{
439 440 441
	const struct vm_area_struct *vma = get_gate_vma(task);

	return vma && addr >= vma->vm_start && addr < vma->vm_end;
442 443 444 445 446 447
}

int in_gate_area_no_task(unsigned long addr)
{
	return 0;
}
R
Roland McGrath 已提交
448 449

#endif	/* CONFIG_X86_64 */