traps.c 30.5 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25
/*
 *  linux/arch/x86-64/traps.c
 *
 *  Copyright (C) 1991, 1992  Linus Torvalds
 *  Copyright (C) 2000, 2001, 2002 Andi Kleen, SuSE Labs
 *
 *  Pentium III FXSR, SSE support
 *	Gareth Hughes <gareth@valinux.com>, May 2000
 */

/*
 * 'Traps.c' handles hardware traps and faults after we have saved some
 * state in 'entry.S'.
 */
#include <linux/sched.h>
#include <linux/kernel.h>
#include <linux/string.h>
#include <linux/errno.h>
#include <linux/ptrace.h>
#include <linux/timer.h>
#include <linux/mm.h>
#include <linux/init.h>
#include <linux/delay.h>
#include <linux/spinlock.h>
#include <linux/interrupt.h>
26
#include <linux/kallsyms.h>
L
Linus Torvalds 已提交
27 28
#include <linux/module.h>
#include <linux/moduleparam.h>
29
#include <linux/nmi.h>
30
#include <linux/kprobes.h>
31
#include <linux/kexec.h>
32
#include <linux/unwind.h>
33
#include <linux/uaccess.h>
L
Linus Torvalds 已提交
34 35 36 37 38 39 40 41 42

#include <asm/system.h>
#include <asm/io.h>
#include <asm/atomic.h>
#include <asm/debugreg.h>
#include <asm/desc.h>
#include <asm/i387.h>
#include <asm/kdebug.h>
#include <asm/processor.h>
43
#include <asm/unwind.h>
L
Linus Torvalds 已提交
44 45 46 47 48
#include <asm/smp.h>
#include <asm/pgalloc.h>
#include <asm/pda.h>
#include <asm/proto.h>
#include <asm/nmi.h>
49
#include <asm/stacktrace.h>
L
Linus Torvalds 已提交
50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72

asmlinkage void divide_error(void);
asmlinkage void debug(void);
asmlinkage void nmi(void);
asmlinkage void int3(void);
asmlinkage void overflow(void);
asmlinkage void bounds(void);
asmlinkage void invalid_op(void);
asmlinkage void device_not_available(void);
asmlinkage void double_fault(void);
asmlinkage void coprocessor_segment_overrun(void);
asmlinkage void invalid_TSS(void);
asmlinkage void segment_not_present(void);
asmlinkage void stack_segment(void);
asmlinkage void general_protection(void);
asmlinkage void page_fault(void);
asmlinkage void coprocessor_error(void);
asmlinkage void simd_coprocessor_error(void);
asmlinkage void reserved(void);
asmlinkage void alignment_check(void);
asmlinkage void machine_check(void);
asmlinkage void spurious_interrupt_bug(void);

73
ATOMIC_NOTIFIER_HEAD(die_chain);
74
EXPORT_SYMBOL(die_chain);
L
Linus Torvalds 已提交
75 76 77

int register_die_notifier(struct notifier_block *nb)
{
78
	vmalloc_sync_all();
79 80
	return atomic_notifier_chain_register(&die_chain, nb);
}
81
EXPORT_SYMBOL(register_die_notifier); /* used modular by kdb */
82 83 84 85

int unregister_die_notifier(struct notifier_block *nb)
{
	return atomic_notifier_chain_unregister(&die_chain, nb);
L
Linus Torvalds 已提交
86
}
87
EXPORT_SYMBOL(unregister_die_notifier); /* used modular by kdb */
L
Linus Torvalds 已提交
88 89 90 91 92 93 94

static inline void conditional_sti(struct pt_regs *regs)
{
	if (regs->eflags & X86_EFLAGS_IF)
		local_irq_enable();
}

95 96 97 98 99 100 101 102 103 104 105
static inline void preempt_conditional_sti(struct pt_regs *regs)
{
	preempt_disable();
	if (regs->eflags & X86_EFLAGS_IF)
		local_irq_enable();
}

static inline void preempt_conditional_cli(struct pt_regs *regs)
{
	if (regs->eflags & X86_EFLAGS_IF)
		local_irq_disable();
106 107
	/* Make sure to not schedule here because we could be running
	   on an exception stack. */
108 109 110
	preempt_enable_no_resched();
}

111
int kstack_depth_to_print = 12;
112
#ifdef CONFIG_STACK_UNWIND
113
static int call_trace = 1;
114 115 116
#else
#define call_trace (-1)
#endif
L
Linus Torvalds 已提交
117 118

#ifdef CONFIG_KALLSYMS
119 120
void printk_address(unsigned long address)
{
L
Linus Torvalds 已提交
121 122 123
	unsigned long offset = 0, symsize;
	const char *symname;
	char *modname;
124
	char *delim = ":";
L
Linus Torvalds 已提交
125 126
	char namebuf[128];

127 128 129 130 131 132 133
	symname = kallsyms_lookup(address, &symsize, &offset,
					&modname, namebuf);
	if (!symname) {
		printk(" [<%016lx>]\n", address);
		return;
	}
	if (!modname)
L
Linus Torvalds 已提交
134
		modname = delim = ""; 		
135 136 137
	printk(" [<%016lx>] %s%s%s%s+0x%lx/0x%lx\n",
		address, delim, modname, delim, symname, offset, symsize);
}
L
Linus Torvalds 已提交
138
#else
139 140 141 142
void printk_address(unsigned long address)
{
	printk(" [<%016lx>]\n", address);
}
L
Linus Torvalds 已提交
143 144
#endif

145
static unsigned long *in_exception_stack(unsigned cpu, unsigned long stack,
146
					unsigned *usedp, char **idp)
147
{
148
	static char ids[][8] = {
149 150 151 152 153
		[DEBUG_STACK - 1] = "#DB",
		[NMI_STACK - 1] = "NMI",
		[DOUBLEFAULT_STACK - 1] = "#DF",
		[STACKFAULT_STACK - 1] = "#SS",
		[MCE_STACK - 1] = "#MC",
154 155 156
#if DEBUG_STKSZ > EXCEPTION_STKSZ
		[N_EXCEPTION_STACKS ... N_EXCEPTION_STACKS + DEBUG_STKSZ / EXCEPTION_STKSZ - 2] = "#DB[?]"
#endif
157 158
	};
	unsigned k;
L
Linus Torvalds 已提交
159

160 161 162 163
	/*
	 * Iterate over all exception stacks, and figure out whether
	 * 'stack' is in one of them:
	 */
164
	for (k = 0; k < N_EXCEPTION_STACKS; k++) {
165
		unsigned long end = per_cpu(orig_ist, cpu).ist[k];
166 167 168 169
		/*
		 * Is 'stack' above this exception frame's end?
		 * If yes then skip to the next frame.
		 */
170 171
		if (stack >= end)
			continue;
172 173 174 175
		/*
		 * Is 'stack' above this exception frame's start address?
		 * If yes then we found the right frame.
		 */
176
		if (stack >= end - EXCEPTION_STKSZ) {
177 178 179 180 181 182
			/*
			 * Make sure we only iterate through an exception
			 * stack once. If it comes up for the second time
			 * then there's something wrong going on - just
			 * break out and return NULL:
			 */
183 184 185 186 187 188
			if (*usedp & (1U << k))
				break;
			*usedp |= 1U << k;
			*idp = ids[k];
			return (unsigned long *)end;
		}
189 190 191 192 193
		/*
		 * If this is a debug stack, and if it has a larger size than
		 * the usual exception stacks, then 'stack' might still
		 * be within the lower portion of the debug stack:
		 */
194 195 196 197
#if DEBUG_STKSZ > EXCEPTION_STKSZ
		if (k == DEBUG_STACK - 1 && stack >= end - DEBUG_STKSZ) {
			unsigned j = N_EXCEPTION_STACKS - 1;

198 199 200 201 202
			/*
			 * Black magic. A large debug stack is composed of
			 * multiple exception stack entries, which we
			 * iterate through now. Dont look:
			 */
203 204 205 206 207 208 209 210 211 212 213 214
			do {
				++j;
				end -= EXCEPTION_STKSZ;
				ids[j][4] = '1' + (j - N_EXCEPTION_STACKS);
			} while (stack < end - EXCEPTION_STKSZ);
			if (*usedp & (1U << j))
				break;
			*usedp |= 1U << j;
			*idp = ids[j];
			return (unsigned long *)end;
		}
#endif
L
Linus Torvalds 已提交
215 216
	}
	return NULL;
217
}
L
Linus Torvalds 已提交
218

219 220 221 222 223 224
struct ops_and_data {
	struct stacktrace_ops *ops;
	void *data;
};

static int dump_trace_unwind(struct unwind_frame_info *info, void *context)
225
{
226
	struct ops_and_data *oad = (struct ops_and_data *)context;
227
	int n = 0;
228
	unsigned long sp = UNW_SP(info);
229

230 231
	if (arch_unw_user_mode(info))
		return -1;
232
	while (unwind(info) == 0 && UNW_PC(info)) {
233
		n++;
234
		oad->ops->address(oad->data, UNW_PC(info));
235 236
		if (arch_unw_user_mode(info))
			break;
237 238 239 240
		if ((sp & ~(PAGE_SIZE - 1)) == (UNW_SP(info) & ~(PAGE_SIZE - 1))
		    && sp > UNW_SP(info))
			break;
		sp = UNW_SP(info);
241
	}
242
	return n;
243 244
}

245 246
#define MSG(txt) ops->warning(data, txt)

L
Linus Torvalds 已提交
247 248 249 250
/*
 * x86-64 can have upto three kernel stacks: 
 * process stack
 * interrupt stack
251
 * severe exception (double fault, nmi, stack fault, debug, mce) hardware stack
L
Linus Torvalds 已提交
252 253
 */

254 255 256 257 258 259
static inline int valid_stack_ptr(struct thread_info *tinfo, void *p)
{
	void *t = (void *)tinfo;
        return p > t && p < t + THREAD_SIZE - 3;
}

260 261
void dump_trace(struct task_struct *tsk, struct pt_regs *regs,
		unsigned long *stack,
262
		struct stacktrace_ops *ops, void *data)
L
Linus Torvalds 已提交
263
{
264
	const unsigned cpu = get_cpu();
265
	unsigned long *irqstack_end = (unsigned long*)cpu_pda(cpu)->irqstackptr;
266
	unsigned used = 0;
267
	struct thread_info *tinfo;
L
Linus Torvalds 已提交
268

269 270 271
	if (!tsk)
		tsk = current;

272 273 274
	if (call_trace >= 0) {
		int unw_ret = 0;
		struct unwind_frame_info info;
275
		struct ops_and_data oad = { .ops = ops, .data = data };
276 277 278

		if (regs) {
			if (unwind_init_frame_info(&info, tsk, regs) == 0)
279
				unw_ret = dump_trace_unwind(&info, &oad);
280
		} else if (tsk == current)
281 282
			unw_ret = unwind_init_running(&info, dump_trace_unwind,
						      &oad);
283 284
		else {
			if (unwind_init_blocked(&info, tsk) == 0)
285
				unw_ret = dump_trace_unwind(&info, &oad);
286
		}
287 288
		if (unw_ret > 0) {
			if (call_trace == 1 && !arch_unw_user_mode(&info)) {
289
				ops->warning_symbol(data,
290
					     "DWARF2 unwinder stuck at %s",
291 292
					     UNW_PC(&info));
				if ((long)UNW_SP(&info) < 0) {
293
					MSG("Leftover inexact backtrace:");
294
					stack = (unsigned long *)UNW_SP(&info);
295
					if (!stack)
296
						goto out;
297
				} else
298
					MSG("Full inexact backtrace again:");
299
			} else if (call_trace >= 1)
300
				goto out;
301
			else
302
				MSG("Full inexact backtrace again:");
303
		} else
304
			MSG("Inexact backtrace:");
305 306 307 308 309 310
	}
	if (!stack) {
		unsigned long dummy;
		stack = &dummy;
		if (tsk && tsk != current)
			stack = (unsigned long *)tsk->thread.rsp;
311 312
	}

313 314 315 316 317
	/*
	 * Print function call entries within a stack. 'cond' is the
	 * "end of stackframe" condition, that the 'stack++'
	 * iteration will eventually trigger.
	 */
318 319
#define HANDLE_STACK(cond) \
	do while (cond) { \
320
		unsigned long addr = *stack++; \
321 322 323
		/* Use unlocked access here because except for NMIs	\
		   we should be already protected against module unloads */ \
		if (__kernel_text_address(addr)) { \
324 325 326 327 328 329 330 331
			/* \
			 * If the address is either in the text segment of the \
			 * kernel, or in the region which contains vmalloc'ed \
			 * memory, it *may* be the address of a calling \
			 * routine; if so, print it so that someone tracing \
			 * down the cause of the crash will be able to figure \
			 * out the call path that was taken. \
			 */ \
332
			ops->address(data, addr);   \
333 334 335
		} \
	} while (0)

336 337 338 339 340
	/*
	 * Print function call entries in all stacks, starting at the
	 * current stack address. If the stacks consist of nested
	 * exceptions
	 */
341 342
	for (;;) {
		char *id;
343 344 345 346 347
		unsigned long *estack_end;
		estack_end = in_exception_stack(cpu, (unsigned long)stack,
						&used, &id);

		if (estack_end) {
348 349
			if (ops->stack(data, id) < 0)
				break;
350
			HANDLE_STACK (stack < estack_end);
351
			ops->stack(data, "<EOE>");
352 353 354 355 356
			/*
			 * We link to the next stack via the
			 * second-to-last pointer (index -2 to end) in the
			 * exception stack:
			 */
357 358
			stack = (unsigned long *) estack_end[-2];
			continue;
L
Linus Torvalds 已提交
359
		}
360 361 362 363 364 365
		if (irqstack_end) {
			unsigned long *irqstack;
			irqstack = irqstack_end -
				(IRQSTACKSIZE - 64) / sizeof(*irqstack);

			if (stack >= irqstack && stack < irqstack_end) {
366 367
				if (ops->stack(data, "IRQ") < 0)
					break;
368
				HANDLE_STACK (stack < irqstack_end);
369 370 371 372 373
				/*
				 * We link to the next stack (which would be
				 * the process stack normally) the last
				 * pointer (index -1 to end) in the IRQ stack:
				 */
374 375
				stack = (unsigned long *) (irqstack_end[-1]);
				irqstack_end = NULL;
376
				ops->stack(data, "EOI");
377
				continue;
L
Linus Torvalds 已提交
378 379
			}
		}
380
		break;
L
Linus Torvalds 已提交
381
	}
382

383
	/*
384
	 * This handles the process stack:
385
	 */
386 387
	tinfo = current_thread_info();
	HANDLE_STACK (valid_stack_ptr(tinfo, stack));
388
#undef HANDLE_STACK
389 390
out:
	put_cpu();
391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410
}
EXPORT_SYMBOL(dump_trace);

static void
print_trace_warning_symbol(void *data, char *msg, unsigned long symbol)
{
	print_symbol(msg, symbol);
	printk("\n");
}

static void print_trace_warning(void *data, char *msg)
{
	printk("%s\n", msg);
}

static int print_trace_stack(void *data, char *name)
{
	printk(" <%s> ", name);
	return 0;
}
411

412 413 414 415 416 417 418 419 420 421 422 423 424 425 426 427 428
static void print_trace_address(void *data, unsigned long addr)
{
	printk_address(addr);
}

static struct stacktrace_ops print_trace_ops = {
	.warning = print_trace_warning,
	.warning_symbol = print_trace_warning_symbol,
	.stack = print_trace_stack,
	.address = print_trace_address,
};

void
show_trace(struct task_struct *tsk, struct pt_regs *regs, unsigned long *stack)
{
	printk("\nCall Trace:\n");
	dump_trace(tsk, regs, stack, &print_trace_ops, NULL);
L
Linus Torvalds 已提交
429 430 431
	printk("\n");
}

432 433
static void
_show_stack(struct task_struct *tsk, struct pt_regs *regs, unsigned long *rsp)
L
Linus Torvalds 已提交
434 435 436
{
	unsigned long *stack;
	int i;
437
	const int cpu = smp_processor_id();
438 439
	unsigned long *irqstack_end = (unsigned long *) (cpu_pda(cpu)->irqstackptr);
	unsigned long *irqstack = (unsigned long *) (cpu_pda(cpu)->irqstackptr - IRQSTACKSIZE);
L
Linus Torvalds 已提交
440 441 442 443 444 445 446 447 448 449 450 451 452 453 454 455 456 457 458 459 460 461 462

	// debugging aid: "show_stack(NULL, NULL);" prints the
	// back trace for this cpu.

	if (rsp == NULL) {
		if (tsk)
			rsp = (unsigned long *)tsk->thread.rsp;
		else
			rsp = (unsigned long *)&rsp;
	}

	stack = rsp;
	for(i=0; i < kstack_depth_to_print; i++) {
		if (stack >= irqstack && stack <= irqstack_end) {
			if (stack == irqstack_end) {
				stack = (unsigned long *) (irqstack_end[-1]);
				printk(" <EOI> ");
			}
		} else {
		if (((long) stack & (THREAD_SIZE-1)) == 0)
			break;
		}
		if (i && ((i % 4) == 0))
463 464
			printk("\n");
		printk(" %016lx", *stack++);
465
		touch_nmi_watchdog();
L
Linus Torvalds 已提交
466
	}
467 468 469 470 471 472
	show_trace(tsk, regs, rsp);
}

void show_stack(struct task_struct *tsk, unsigned long * rsp)
{
	_show_stack(tsk, NULL, rsp);
L
Linus Torvalds 已提交
473 474 475 476 477 478 479 480
}

/*
 * The architecture-independent dump_stack generator
 */
void dump_stack(void)
{
	unsigned long dummy;
481
	show_trace(NULL, NULL, &dummy);
L
Linus Torvalds 已提交
482 483 484 485 486 487 488
}

EXPORT_SYMBOL(dump_stack);

void show_registers(struct pt_regs *regs)
{
	int i;
489
	int in_kernel = !user_mode(regs);
L
Linus Torvalds 已提交
490
	unsigned long rsp;
491
	const int cpu = smp_processor_id();
492
	struct task_struct *cur = cpu_pda(cpu)->pcurrent;
L
Linus Torvalds 已提交
493 494 495 496 497 498

		rsp = regs->rsp;

	printk("CPU %d ", cpu);
	__show_regs(regs);
	printk("Process %s (pid: %d, threadinfo %p, task %p)\n",
A
Al Viro 已提交
499
		cur->comm, cur->pid, task_thread_info(cur), cur);
L
Linus Torvalds 已提交
500 501 502 503 504 505 506 507

	/*
	 * When in-kernel, we also print out the stack and code at the
	 * time of the fault..
	 */
	if (in_kernel) {

		printk("Stack: ");
508
		_show_stack(NULL, regs, (unsigned long*)rsp);
L
Linus Torvalds 已提交
509 510

		printk("\nCode: ");
511
		if (regs->rip < PAGE_OFFSET)
L
Linus Torvalds 已提交
512 513
			goto bad;

514
		for (i=0; i<20; i++) {
L
Linus Torvalds 已提交
515
			unsigned char c;
516
			if (__get_user(c, &((unsigned char*)regs->rip)[i])) {
L
Linus Torvalds 已提交
517 518 519 520 521 522 523 524 525 526 527 528 529
bad:
				printk(" Bad RIP value.");
				break;
			}
			printk("%02x ", c);
		}
	}
	printk("\n");
}	

void handle_BUG(struct pt_regs *regs)
{ 
	struct bug_frame f;
530 531
	long len;
	const char *prefix = "";
L
Linus Torvalds 已提交
532

533
	if (user_mode(regs))
L
Linus Torvalds 已提交
534
		return; 
535
	if (__copy_from_user(&f, (const void __user *) regs->rip,
L
Linus Torvalds 已提交
536 537
			     sizeof(struct bug_frame)))
		return; 
538
	if (f.filename >= 0 ||
L
Linus Torvalds 已提交
539 540
	    f.ud2[0] != 0x0f || f.ud2[1] != 0x0b) 
		return;
541 542
	len = __strnlen_user((char *)(long)f.filename, PATH_MAX) - 1;
	if (len < 0 || len >= PATH_MAX)
543
		f.filename = (int)(long)"unmapped filename";
544 545 546 547
	else if (len > 50) {
		f.filename += len - 50;
		prefix = "...";
	}
L
Linus Torvalds 已提交
548
	printk("----------- [cut here ] --------- [please bite here ] ---------\n");
549
	printk(KERN_ALERT "Kernel BUG at %s%.50s:%d\n", prefix, (char *)(long)f.filename, f.line);
L
Linus Torvalds 已提交
550 551
} 

552
#ifdef CONFIG_BUG
L
Linus Torvalds 已提交
553 554 555 556
void out_of_line_bug(void)
{ 
	BUG(); 
} 
557
EXPORT_SYMBOL(out_of_line_bug);
558
#endif
L
Linus Torvalds 已提交
559 560 561

static DEFINE_SPINLOCK(die_lock);
static int die_owner = -1;
562
static unsigned int die_nest_count;
L
Linus Torvalds 已提交
563

564
unsigned __kprobes long oops_begin(void)
L
Linus Torvalds 已提交
565
{
566
	int cpu = smp_processor_id();
567 568
	unsigned long flags;

569 570
	oops_enter();

571 572
	/* racy, but better than risking deadlock. */
	local_irq_save(flags);
L
Linus Torvalds 已提交
573 574 575 576
	if (!spin_trylock(&die_lock)) { 
		if (cpu == die_owner) 
			/* nested oops. should stop eventually */;
		else
577
			spin_lock(&die_lock);
L
Linus Torvalds 已提交
578
	}
579
	die_nest_count++;
580
	die_owner = cpu;
L
Linus Torvalds 已提交
581
	console_verbose();
582 583
	bust_spinlocks(1);
	return flags;
L
Linus Torvalds 已提交
584 585
}

586
void __kprobes oops_end(unsigned long flags)
L
Linus Torvalds 已提交
587 588
{ 
	die_owner = -1;
589
	bust_spinlocks(0);
590 591 592 593 594 595 596
	die_nest_count--;
	if (die_nest_count)
		/* We still own the lock */
		local_irq_restore(flags);
	else
		/* Nest count reaches zero, release the lock. */
		spin_unlock_irqrestore(&die_lock, flags);
L
Linus Torvalds 已提交
597
	if (panic_on_oops)
598
		panic("Fatal exception");
599
	oops_exit();
600
}
L
Linus Torvalds 已提交
601

602
void __kprobes __die(const char * str, struct pt_regs * regs, long err)
L
Linus Torvalds 已提交
603 604 605 606 607 608 609 610 611 612 613 614 615
{
	static int die_counter;
	printk(KERN_EMERG "%s: %04lx [%u] ", str, err & 0xffff,++die_counter);
#ifdef CONFIG_PREEMPT
	printk("PREEMPT ");
#endif
#ifdef CONFIG_SMP
	printk("SMP ");
#endif
#ifdef CONFIG_DEBUG_PAGEALLOC
	printk("DEBUG_PAGEALLOC");
#endif
	printk("\n");
616
	notify_die(DIE_OOPS, str, regs, err, current->thread.trap_no, SIGSEGV);
L
Linus Torvalds 已提交
617 618 619 620 621
	show_registers(regs);
	/* Executive summary in case the oops scrolled away */
	printk(KERN_ALERT "RIP ");
	printk_address(regs->rip); 
	printk(" RSP <%016lx>\n", regs->rsp); 
622 623
	if (kexec_should_crash(current))
		crash_kexec(regs);
L
Linus Torvalds 已提交
624 625 626 627
}

void die(const char * str, struct pt_regs * regs, long err)
{
628 629
	unsigned long flags = oops_begin();

L
Linus Torvalds 已提交
630 631
	handle_BUG(regs);
	__die(str, regs, err);
632
	oops_end(flags);
L
Linus Torvalds 已提交
633 634 635
	do_exit(SIGSEGV); 
}

636
void __kprobes die_nmi(char *str, struct pt_regs *regs, int do_panic)
L
Linus Torvalds 已提交
637
{
638 639
	unsigned long flags = oops_begin();

L
Linus Torvalds 已提交
640 641 642 643
	/*
	 * We are in trouble anyway, lets at least try
	 * to get a message out.
	 */
644
	printk(str, smp_processor_id());
L
Linus Torvalds 已提交
645
	show_registers(regs);
646 647
	if (kexec_should_crash(current))
		crash_kexec(regs);
648 649
	if (do_panic || panic_on_oops)
		panic("Non maskable interrupt");
650
	oops_end(flags);
651 652
	nmi_exit();
	local_irq_enable();
L
Linus Torvalds 已提交
653 654 655
	do_exit(SIGSEGV);
}

656 657 658
static void __kprobes do_trap(int trapnr, int signr, char *str,
			      struct pt_regs * regs, long error_code,
			      siginfo_t *info)
L
Linus Torvalds 已提交
659
{
660 661 662 663
	struct task_struct *tsk = current;

	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = trapnr;
L
Linus Torvalds 已提交
664

665
	if (user_mode(regs)) {
L
Linus Torvalds 已提交
666 667 668 669
		if (exception_trace && unhandled_signal(tsk, signr))
			printk(KERN_INFO
			       "%s[%d] trap %s rip:%lx rsp:%lx error:%lx\n",
			       tsk->comm, tsk->pid, str,
670
			       regs->rip, regs->rsp, error_code); 
L
Linus Torvalds 已提交
671 672 673 674 675 676 677 678 679 680 681 682 683

		if (info)
			force_sig_info(signr, info, tsk);
		else
			force_sig(signr, tsk);
		return;
	}


	/* kernel trap */ 
	{	     
		const struct exception_table_entry *fixup;
		fixup = search_exception_tables(regs->rip);
684
		if (fixup)
L
Linus Torvalds 已提交
685
			regs->rip = fixup->fixup;
686
		else	
L
Linus Torvalds 已提交
687 688 689 690 691 692 693 694 695 696 697
			die(str, regs, error_code);
		return;
	}
}

#define DO_ERROR(trapnr, signr, str, name) \
asmlinkage void do_##name(struct pt_regs * regs, long error_code) \
{ \
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr) \
							== NOTIFY_STOP) \
		return; \
698
	conditional_sti(regs);						\
L
Linus Torvalds 已提交
699 700 701 702 703 704 705 706 707 708 709 710 711 712
	do_trap(trapnr, signr, str, regs, error_code, NULL); \
}

#define DO_ERROR_INFO(trapnr, signr, str, name, sicode, siaddr) \
asmlinkage void do_##name(struct pt_regs * regs, long error_code) \
{ \
	siginfo_t info; \
	info.si_signo = signr; \
	info.si_errno = 0; \
	info.si_code = sicode; \
	info.si_addr = (void __user *)siaddr; \
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr) \
							== NOTIFY_STOP) \
		return; \
713
	conditional_sti(regs);						\
L
Linus Torvalds 已提交
714 715 716 717 718 719
	do_trap(trapnr, signr, str, regs, error_code, &info); \
}

DO_ERROR_INFO( 0, SIGFPE,  "divide error", divide_error, FPE_INTDIV, regs->rip)
DO_ERROR( 4, SIGSEGV, "overflow", overflow)
DO_ERROR( 5, SIGSEGV, "bounds", bounds)
720
DO_ERROR_INFO( 6, SIGILL,  "invalid opcode", invalid_op, ILL_ILLOPN, regs->rip)
L
Linus Torvalds 已提交
721 722 723 724 725 726
DO_ERROR( 7, SIGSEGV, "device not available", device_not_available)
DO_ERROR( 9, SIGFPE,  "coprocessor segment overrun", coprocessor_segment_overrun)
DO_ERROR(10, SIGSEGV, "invalid TSS", invalid_TSS)
DO_ERROR(11, SIGBUS,  "segment not present", segment_not_present)
DO_ERROR_INFO(17, SIGBUS, "alignment check", alignment_check, BUS_ADRALN, 0)
DO_ERROR(18, SIGSEGV, "reserved", reserved)
727 728 729 730 731 732 733 734 735 736 737

/* Runs on IST stack */
asmlinkage void do_stack_segment(struct pt_regs *regs, long error_code)
{
	if (notify_die(DIE_TRAP, "stack segment", regs, error_code,
			12, SIGBUS) == NOTIFY_STOP)
		return;
	preempt_conditional_sti(regs);
	do_trap(12, SIGBUS, "stack segment", regs, error_code, NULL);
	preempt_conditional_cli(regs);
}
738 739 740 741 742 743 744 745 746 747 748 749 750 751 752 753 754

asmlinkage void do_double_fault(struct pt_regs * regs, long error_code)
{
	static const char str[] = "double fault";
	struct task_struct *tsk = current;

	/* Return not checked because double check cannot be ignored */
	notify_die(DIE_TRAP, str, regs, error_code, 8, SIGSEGV);

	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = 8;

	/* This is always a kernel trap and never fixable (and thus must
	   never return). */
	for (;;)
		die(str, regs, error_code);
}
L
Linus Torvalds 已提交
755

756 757
asmlinkage void __kprobes do_general_protection(struct pt_regs * regs,
						long error_code)
L
Linus Torvalds 已提交
758
{
759 760
	struct task_struct *tsk = current;

L
Linus Torvalds 已提交
761 762
	conditional_sti(regs);

763 764
	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = 13;
L
Linus Torvalds 已提交
765

766
	if (user_mode(regs)) {
L
Linus Torvalds 已提交
767 768 769 770
		if (exception_trace && unhandled_signal(tsk, SIGSEGV))
			printk(KERN_INFO
		       "%s[%d] general protection rip:%lx rsp:%lx error:%lx\n",
			       tsk->comm, tsk->pid,
771
			       regs->rip, regs->rsp, error_code); 
L
Linus Torvalds 已提交
772 773 774 775 776 777 778 779 780 781 782 783 784 785 786 787 788 789 790 791

		force_sig(SIGSEGV, tsk);
		return;
	} 

	/* kernel gp */
	{
		const struct exception_table_entry *fixup;
		fixup = search_exception_tables(regs->rip);
		if (fixup) {
			regs->rip = fixup->fixup;
			return;
		}
		if (notify_die(DIE_GPF, "general protection fault", regs,
					error_code, 13, SIGSEGV) == NOTIFY_STOP)
			return;
		die("general protection fault", regs, error_code);
	}
}

792 793
static __kprobes void
mem_parity_error(unsigned char reason, struct pt_regs * regs)
L
Linus Torvalds 已提交
794
{
795 796
	printk(KERN_EMERG "Uhhuh. NMI received for unknown reason %02x.\n",
		reason);
797
	printk(KERN_EMERG "You have some hardware problem, likely on the PCI bus.\n");
798

799
	if (panic_on_unrecovered_nmi)
800 801 802
		panic("NMI: Not continuing");

	printk(KERN_EMERG "Dazed and confused, but trying to continue\n");
L
Linus Torvalds 已提交
803 804 805 806 807 808

	/* Clear and disable the memory parity error line. */
	reason = (reason & 0xf) | 4;
	outb(reason, 0x61);
}

809 810
static __kprobes void
io_check_error(unsigned char reason, struct pt_regs * regs)
L
Linus Torvalds 已提交
811 812 813 814 815 816 817 818 819 820 821 822
{
	printk("NMI: IOCK error (debug interrupt?)\n");
	show_registers(regs);

	/* Re-enable the IOCK line, wait for a few seconds */
	reason = (reason & 0xf) | 8;
	outb(reason, 0x61);
	mdelay(2000);
	reason &= ~8;
	outb(reason, 0x61);
}

823 824
static __kprobes void
unknown_nmi_error(unsigned char reason, struct pt_regs * regs)
825 826 827 828
{
	printk(KERN_EMERG "Uhhuh. NMI received for unknown reason %02x.\n",
		reason);
	printk(KERN_EMERG "Do you have a strange power saving mode enabled?\n");
829 830

	if (panic_on_unrecovered_nmi)
831
		panic("NMI: Not continuing");
832

833
	printk(KERN_EMERG "Dazed and confused, but trying to continue\n");
L
Linus Torvalds 已提交
834 835
}

836 837
/* Runs on IST stack. This code must keep interrupts off all the time.
   Nested NMIs are prevented by the CPU. */
838
asmlinkage __kprobes void default_do_nmi(struct pt_regs *regs)
L
Linus Torvalds 已提交
839 840
{
	unsigned char reason = 0;
A
Ashok Raj 已提交
841 842 843
	int cpu;

	cpu = smp_processor_id();
L
Linus Torvalds 已提交
844 845

	/* Only the BSP gets external NMIs from the system.  */
A
Ashok Raj 已提交
846
	if (!cpu)
L
Linus Torvalds 已提交
847 848 849
		reason = get_nmi_reason();

	if (!(reason & 0xc0)) {
850
		if (notify_die(DIE_NMI_IPI, "nmi_ipi", regs, reason, 2, SIGINT)
L
Linus Torvalds 已提交
851 852 853 854 855 856
								== NOTIFY_STOP)
			return;
		/*
		 * Ok, so this is none of the documented NMI sources,
		 * so it must be the NMI watchdog.
		 */
857
		if (nmi_watchdog_tick(regs,reason))
L
Linus Torvalds 已提交
858
			return;
859 860 861
		if (!do_nmi_callback(regs,cpu))
			unknown_nmi_error(reason, regs);

L
Linus Torvalds 已提交
862 863
		return;
	}
864
	if (notify_die(DIE_NMI, "nmi", regs, reason, 2, SIGINT) == NOTIFY_STOP)
L
Linus Torvalds 已提交
865 866 867 868 869 870 871 872 873 874
		return; 

	/* AK: following checks seem to be broken on modern chipsets. FIXME */

	if (reason & 0x80)
		mem_parity_error(reason, regs);
	if (reason & 0x40)
		io_check_error(reason, regs);
}

875
/* runs on IST stack. */
876
asmlinkage void __kprobes do_int3(struct pt_regs * regs, long error_code)
L
Linus Torvalds 已提交
877 878 879 880
{
	if (notify_die(DIE_INT3, "int3", regs, error_code, 3, SIGTRAP) == NOTIFY_STOP) {
		return;
	}
881
	preempt_conditional_sti(regs);
L
Linus Torvalds 已提交
882
	do_trap(3, SIGTRAP, "int3", regs, error_code, NULL);
883
	preempt_conditional_cli(regs);
L
Linus Torvalds 已提交
884 885
}

886 887 888
/* Help handler running on IST stack to switch back to user stack
   for scheduling or signal handling. The actual stack switch is done in
   entry.S */
889
asmlinkage __kprobes struct pt_regs *sync_regs(struct pt_regs *eregs)
890 891 892 893 894 895
{
	struct pt_regs *regs = eregs;
	/* Did already sync */
	if (eregs == (struct pt_regs *)eregs->rsp)
		;
	/* Exception from user space */
896
	else if (user_mode(eregs))
A
Al Viro 已提交
897
		regs = task_pt_regs(current);
898 899 900 901 902 903 904 905 906
	/* Exception from kernel and interrupts are enabled. Move to
 	   kernel process stack. */
	else if (eregs->eflags & X86_EFLAGS_IF)
		regs = (struct pt_regs *)(eregs->rsp -= sizeof(struct pt_regs));
	if (eregs != regs)
		*regs = *eregs;
	return regs;
}

L
Linus Torvalds 已提交
907
/* runs on IST stack. */
908 909
asmlinkage void __kprobes do_debug(struct pt_regs * regs,
				   unsigned long error_code)
L
Linus Torvalds 已提交
910 911 912 913 914
{
	unsigned long condition;
	struct task_struct *tsk = current;
	siginfo_t info;

915
	get_debugreg(condition, 6);
L
Linus Torvalds 已提交
916 917

	if (notify_die(DIE_DEBUG, "debug", regs, condition, error_code,
918
						SIGTRAP) == NOTIFY_STOP)
919
		return;
920

921
	preempt_conditional_sti(regs);
L
Linus Torvalds 已提交
922 923 924 925 926 927 928 929 930 931 932

	/* Mask out spurious debug traps due to lazy DR7 setting */
	if (condition & (DR_TRAP0|DR_TRAP1|DR_TRAP2|DR_TRAP3)) {
		if (!tsk->thread.debugreg7) { 
			goto clear_dr7;
		}
	}

	tsk->thread.debugreg6 = condition;

	/* Mask out spurious TF errors due to lazy TF clearing */
933
	if (condition & DR_STEP) {
L
Linus Torvalds 已提交
934 935 936 937 938 939 940 941 942
		/*
		 * The TF error should be masked out only if the current
		 * process is not traced and if the TRAP flag has been set
		 * previously by a tracing process (condition detected by
		 * the PT_DTRACE flag); remember that the i386 TRAP flag
		 * can be modified by the process itself in user mode,
		 * allowing programs to debug themselves without the ptrace()
		 * interface.
		 */
943
                if (!user_mode(regs))
L
Linus Torvalds 已提交
944
                       goto clear_TF_reenable;
945 946 947 948 949 950 951 952
		/*
		 * Was the TF flag set by a debugger? If so, clear it now,
		 * so that register information is correct.
		 */
		if (tsk->ptrace & PT_DTRACE) {
			regs->eflags &= ~TF_MASK;
			tsk->ptrace &= ~PT_DTRACE;
		}
L
Linus Torvalds 已提交
953 954 955 956 957 958 959 960
	}

	/* Ok, finally something we can handle */
	tsk->thread.trap_no = 1;
	tsk->thread.error_code = error_code;
	info.si_signo = SIGTRAP;
	info.si_errno = 0;
	info.si_code = TRAP_BRKPT;
961 962
	info.si_addr = user_mode(regs) ? (void __user *)regs->rip : NULL;
	force_sig_info(SIGTRAP, &info, tsk);
L
Linus Torvalds 已提交
963 964

clear_dr7:
965
	set_debugreg(0UL, 7);
966
	preempt_conditional_cli(regs);
967
	return;
L
Linus Torvalds 已提交
968 969 970 971

clear_TF_reenable:
	set_tsk_thread_flag(tsk, TIF_SINGLESTEP);
	regs->eflags &= ~TF_MASK;
972
	preempt_conditional_cli(regs);
L
Linus Torvalds 已提交
973 974
}

975
static int kernel_math_error(struct pt_regs *regs, const char *str, int trapnr)
L
Linus Torvalds 已提交
976 977 978 979 980 981 982
{
	const struct exception_table_entry *fixup;
	fixup = search_exception_tables(regs->rip);
	if (fixup) {
		regs->rip = fixup->fixup;
		return 1;
	}
983
	notify_die(DIE_GPF, str, regs, 0, trapnr, SIGFPE);
984
	/* Illegal floating point operation in the kernel */
985
	current->thread.trap_no = trapnr;
L
Linus Torvalds 已提交
986 987 988 989 990 991 992 993 994 995 996 997 998 999 1000 1001 1002
	die(str, regs, 0);
	return 0;
}

/*
 * Note that we play around with the 'TS' bit in an attempt to get
 * the correct behaviour even in the presence of the asynchronous
 * IRQ13 behaviour
 */
asmlinkage void do_coprocessor_error(struct pt_regs *regs)
{
	void __user *rip = (void __user *)(regs->rip);
	struct task_struct * task;
	siginfo_t info;
	unsigned short cwd, swd;

	conditional_sti(regs);
1003
	if (!user_mode(regs) &&
1004
	    kernel_math_error(regs, "kernel x87 math error", 16))
L
Linus Torvalds 已提交
1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016 1017 1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028 1029
		return;

	/*
	 * Save the info for the exception handler and clear the error.
	 */
	task = current;
	save_init_fpu(task);
	task->thread.trap_no = 16;
	task->thread.error_code = 0;
	info.si_signo = SIGFPE;
	info.si_errno = 0;
	info.si_code = __SI_FAULT;
	info.si_addr = rip;
	/*
	 * (~cwd & swd) will mask out exceptions that are not set to unmasked
	 * status.  0x3f is the exception bits in these regs, 0x200 is the
	 * C1 reg you need in case of a stack fault, 0x040 is the stack
	 * fault bit.  We should only be taking one exception at a time,
	 * so if this combination doesn't produce any single exception,
	 * then we have a bad program that isn't synchronizing its FPU usage
	 * and it will suffer the consequences since we won't be able to
	 * fully reproduce the context of the exception
	 */
	cwd = get_fpu_cwd(task);
	swd = get_fpu_swd(task);
1030
	switch (swd & ~cwd & 0x3f) {
L
Linus Torvalds 已提交
1031 1032 1033 1034
		case 0x000:
		default:
			break;
		case 0x001: /* Invalid Op */
1035 1036 1037 1038 1039
			/*
			 * swd & 0x240 == 0x040: Stack Underflow
			 * swd & 0x240 == 0x240: Stack Overflow
			 * User must clear the SF bit (0x40) if set
			 */
L
Linus Torvalds 已提交
1040 1041 1042 1043 1044 1045 1046 1047 1048 1049 1050 1051 1052 1053 1054 1055 1056 1057 1058 1059 1060 1061 1062 1063 1064 1065 1066 1067 1068 1069 1070 1071
			info.si_code = FPE_FLTINV;
			break;
		case 0x002: /* Denormalize */
		case 0x010: /* Underflow */
			info.si_code = FPE_FLTUND;
			break;
		case 0x004: /* Zero Divide */
			info.si_code = FPE_FLTDIV;
			break;
		case 0x008: /* Overflow */
			info.si_code = FPE_FLTOVF;
			break;
		case 0x020: /* Precision */
			info.si_code = FPE_FLTRES;
			break;
	}
	force_sig_info(SIGFPE, &info, task);
}

asmlinkage void bad_intr(void)
{
	printk("bad interrupt"); 
}

asmlinkage void do_simd_coprocessor_error(struct pt_regs *regs)
{
	void __user *rip = (void __user *)(regs->rip);
	struct task_struct * task;
	siginfo_t info;
	unsigned short mxcsr;

	conditional_sti(regs);
1072
	if (!user_mode(regs) &&
1073
        	kernel_math_error(regs, "kernel simd math error", 19))
L
Linus Torvalds 已提交
1074 1075 1076 1077 1078 1079 1080 1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093 1094 1095 1096 1097 1098 1099 1100 1101 1102 1103 1104 1105 1106 1107 1108 1109 1110 1111 1112 1113 1114 1115 1116 1117 1118 1119 1120 1121 1122
		return;

	/*
	 * Save the info for the exception handler and clear the error.
	 */
	task = current;
	save_init_fpu(task);
	task->thread.trap_no = 19;
	task->thread.error_code = 0;
	info.si_signo = SIGFPE;
	info.si_errno = 0;
	info.si_code = __SI_FAULT;
	info.si_addr = rip;
	/*
	 * The SIMD FPU exceptions are handled a little differently, as there
	 * is only a single status/control register.  Thus, to determine which
	 * unmasked exception was caught we must mask the exception mask bits
	 * at 0x1f80, and then use these to mask the exception bits at 0x3f.
	 */
	mxcsr = get_fpu_mxcsr(task);
	switch (~((mxcsr & 0x1f80) >> 7) & (mxcsr & 0x3f)) {
		case 0x000:
		default:
			break;
		case 0x001: /* Invalid Op */
			info.si_code = FPE_FLTINV;
			break;
		case 0x002: /* Denormalize */
		case 0x010: /* Underflow */
			info.si_code = FPE_FLTUND;
			break;
		case 0x004: /* Zero Divide */
			info.si_code = FPE_FLTDIV;
			break;
		case 0x008: /* Overflow */
			info.si_code = FPE_FLTOVF;
			break;
		case 0x020: /* Precision */
			info.si_code = FPE_FLTRES;
			break;
	}
	force_sig_info(SIGFPE, &info, task);
}

asmlinkage void do_spurious_interrupt_bug(struct pt_regs * regs)
{
}

asmlinkage void __attribute__((weak)) smp_thermal_interrupt(void)
1123 1124 1125 1126
{
}

asmlinkage void __attribute__((weak)) mce_threshold_interrupt(void)
L
Linus Torvalds 已提交
1127 1128 1129 1130 1131 1132 1133 1134 1135 1136 1137 1138 1139 1140 1141 1142 1143 1144
{
}

/*
 *  'math_state_restore()' saves the current math information in the
 * old math state array, and gets the new ones from the current task
 *
 * Careful.. There are problems with IBM-designed IRQ13 behaviour.
 * Don't touch unless you *really* know how it works.
 */
asmlinkage void math_state_restore(void)
{
	struct task_struct *me = current;
	clts();			/* Allow maths ops (or we recurse) */

	if (!used_math())
		init_fpu(me);
	restore_fpu_checking(&me->thread.i387.fxsave);
A
Al Viro 已提交
1145
	task_thread_info(me)->status |= TS_USEDFPU;
1146
	me->fpu_counter++;
L
Linus Torvalds 已提交
1147 1148 1149 1150 1151 1152 1153
}

void __init trap_init(void)
{
	set_intr_gate(0,&divide_error);
	set_intr_gate_ist(1,&debug,DEBUG_STACK);
	set_intr_gate_ist(2,&nmi,NMI_STACK);
1154
 	set_system_gate_ist(3,&int3,DEBUG_STACK); /* int3 can be called from all */
1155 1156
	set_system_gate(4,&overflow);	/* int4 can be called from all */
	set_intr_gate(5,&bounds);
L
Linus Torvalds 已提交
1157 1158 1159 1160 1161 1162 1163 1164 1165 1166 1167 1168 1169 1170 1171 1172 1173 1174 1175 1176 1177 1178 1179 1180 1181 1182 1183 1184
	set_intr_gate(6,&invalid_op);
	set_intr_gate(7,&device_not_available);
	set_intr_gate_ist(8,&double_fault, DOUBLEFAULT_STACK);
	set_intr_gate(9,&coprocessor_segment_overrun);
	set_intr_gate(10,&invalid_TSS);
	set_intr_gate(11,&segment_not_present);
	set_intr_gate_ist(12,&stack_segment,STACKFAULT_STACK);
	set_intr_gate(13,&general_protection);
	set_intr_gate(14,&page_fault);
	set_intr_gate(15,&spurious_interrupt_bug);
	set_intr_gate(16,&coprocessor_error);
	set_intr_gate(17,&alignment_check);
#ifdef CONFIG_X86_MCE
	set_intr_gate_ist(18,&machine_check, MCE_STACK); 
#endif
	set_intr_gate(19,&simd_coprocessor_error);

#ifdef CONFIG_IA32_EMULATION
	set_system_gate(IA32_SYSCALL_VECTOR, ia32_syscall);
#endif
       
	/*
	 * Should be a barrier for any external CPU state.
	 */
	cpu_init();
}


1185
static int __init oops_setup(char *s)
L
Linus Torvalds 已提交
1186
{ 
1187 1188 1189 1190 1191
	if (!s)
		return -EINVAL;
	if (!strcmp(s, "panic"))
		panic_on_oops = 1;
	return 0;
L
Linus Torvalds 已提交
1192
} 
1193
early_param("oops", oops_setup);
L
Linus Torvalds 已提交
1194 1195 1196

static int __init kstack_setup(char *s)
{
1197 1198
	if (!s)
		return -EINVAL;
L
Linus Torvalds 已提交
1199
	kstack_depth_to_print = simple_strtoul(s,NULL,0);
1200
	return 0;
L
Linus Torvalds 已提交
1201
}
1202
early_param("kstack", kstack_setup);
L
Linus Torvalds 已提交
1203

1204
#ifdef CONFIG_STACK_UNWIND
1205 1206
static int __init call_trace_setup(char *s)
{
1207 1208
	if (!s)
		return -EINVAL;
1209 1210 1211 1212
	if (strcmp(s, "old") == 0)
		call_trace = -1;
	else if (strcmp(s, "both") == 0)
		call_trace = 0;
1213
	else if (strcmp(s, "newfallback") == 0)
1214
		call_trace = 1;
1215 1216
	else if (strcmp(s, "new") == 0)
		call_trace = 2;
1217
	return 0;
1218
}
1219
early_param("call_trace", call_trace_setup);
1220
#endif