traps_64.c 29.9 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23
/*
 *  Copyright (C) 1991, 1992  Linus Torvalds
 *  Copyright (C) 2000, 2001, 2002 Andi Kleen, SuSE Labs
 *
 *  Pentium III FXSR, SSE support
 *	Gareth Hughes <gareth@valinux.com>, May 2000
 */

/*
 * 'Traps.c' handles hardware traps and faults after we have saved some
 * state in 'entry.S'.
 */
#include <linux/sched.h>
#include <linux/kernel.h>
#include <linux/string.h>
#include <linux/errno.h>
#include <linux/ptrace.h>
#include <linux/timer.h>
#include <linux/mm.h>
#include <linux/init.h>
#include <linux/delay.h>
#include <linux/spinlock.h>
#include <linux/interrupt.h>
24
#include <linux/kallsyms.h>
L
Linus Torvalds 已提交
25 26
#include <linux/module.h>
#include <linux/moduleparam.h>
27
#include <linux/nmi.h>
28
#include <linux/kprobes.h>
29
#include <linux/kexec.h>
30
#include <linux/unwind.h>
31
#include <linux/uaccess.h>
32
#include <linux/bug.h>
33
#include <linux/kdebug.h>
34
#include <linux/utsname.h>
L
Linus Torvalds 已提交
35

36 37
#include <mach_traps.h>

D
Dave Jiang 已提交
38 39 40 41
#if defined(CONFIG_EDAC)
#include <linux/edac.h>
#endif

L
Linus Torvalds 已提交
42 43 44 45 46 47 48
#include <asm/system.h>
#include <asm/io.h>
#include <asm/atomic.h>
#include <asm/debugreg.h>
#include <asm/desc.h>
#include <asm/i387.h>
#include <asm/processor.h>
49
#include <asm/unwind.h>
L
Linus Torvalds 已提交
50 51 52 53 54
#include <asm/smp.h>
#include <asm/pgalloc.h>
#include <asm/pda.h>
#include <asm/proto.h>
#include <asm/nmi.h>
55
#include <asm/stacktrace.h>
L
Linus Torvalds 已提交
56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78

asmlinkage void divide_error(void);
asmlinkage void debug(void);
asmlinkage void nmi(void);
asmlinkage void int3(void);
asmlinkage void overflow(void);
asmlinkage void bounds(void);
asmlinkage void invalid_op(void);
asmlinkage void device_not_available(void);
asmlinkage void double_fault(void);
asmlinkage void coprocessor_segment_overrun(void);
asmlinkage void invalid_TSS(void);
asmlinkage void segment_not_present(void);
asmlinkage void stack_segment(void);
asmlinkage void general_protection(void);
asmlinkage void page_fault(void);
asmlinkage void coprocessor_error(void);
asmlinkage void simd_coprocessor_error(void);
asmlinkage void reserved(void);
asmlinkage void alignment_check(void);
asmlinkage void machine_check(void);
asmlinkage void spurious_interrupt_bug(void);

79 80
static unsigned int code_bytes = 64;

L
Linus Torvalds 已提交
81 82
static inline void conditional_sti(struct pt_regs *regs)
{
83
	if (regs->flags & X86_EFLAGS_IF)
L
Linus Torvalds 已提交
84 85 86
		local_irq_enable();
}

87 88
static inline void preempt_conditional_sti(struct pt_regs *regs)
{
89
	inc_preempt_count();
90
	if (regs->flags & X86_EFLAGS_IF)
91 92 93 94 95
		local_irq_enable();
}

static inline void preempt_conditional_cli(struct pt_regs *regs)
{
96
	if (regs->flags & X86_EFLAGS_IF)
97
		local_irq_disable();
98 99
	/* Make sure to not schedule here because we could be running
	   on an exception stack. */
100
	dec_preempt_count();
101 102
}

103
int kstack_depth_to_print = 12;
L
Linus Torvalds 已提交
104

105
void printk_address(unsigned long address, int reliable)
106
{
107
#ifdef CONFIG_KALLSYMS
L
Linus Torvalds 已提交
108 109 110
	unsigned long offset = 0, symsize;
	const char *symname;
	char *modname;
111
	char *delim = ":";
C
Cyrill Gorcunov 已提交
112
	char namebuf[KSYM_NAME_LEN];
113
	char reliab[4] = "";
L
Linus Torvalds 已提交
114

115 116 117 118 119 120
	symname = kallsyms_lookup(address, &symsize, &offset,
					&modname, namebuf);
	if (!symname) {
		printk(" [<%016lx>]\n", address);
		return;
	}
121 122 123
	if (!reliable)
		strcpy(reliab, "? ");

124
	if (!modname)
125
		modname = delim = "";
126 127
	printk(" [<%016lx>] %s%s%s%s%s+0x%lx/0x%lx\n",
		address, reliab, delim, modname, delim, symname, offset, symsize);
L
Linus Torvalds 已提交
128
#else
129
	printk(" [<%016lx>]\n", address);
L
Linus Torvalds 已提交
130
#endif
131
}
L
Linus Torvalds 已提交
132

133
static unsigned long *in_exception_stack(unsigned cpu, unsigned long stack,
134
					unsigned *usedp, char **idp)
135
{
136
	static char ids[][8] = {
137 138 139 140 141
		[DEBUG_STACK - 1] = "#DB",
		[NMI_STACK - 1] = "NMI",
		[DOUBLEFAULT_STACK - 1] = "#DF",
		[STACKFAULT_STACK - 1] = "#SS",
		[MCE_STACK - 1] = "#MC",
142 143 144
#if DEBUG_STKSZ > EXCEPTION_STKSZ
		[N_EXCEPTION_STACKS ... N_EXCEPTION_STACKS + DEBUG_STKSZ / EXCEPTION_STKSZ - 2] = "#DB[?]"
#endif
145 146
	};
	unsigned k;
L
Linus Torvalds 已提交
147

148 149 150 151
	/*
	 * Iterate over all exception stacks, and figure out whether
	 * 'stack' is in one of them:
	 */
152
	for (k = 0; k < N_EXCEPTION_STACKS; k++) {
153
		unsigned long end = per_cpu(orig_ist, cpu).ist[k];
154 155 156 157
		/*
		 * Is 'stack' above this exception frame's end?
		 * If yes then skip to the next frame.
		 */
158 159
		if (stack >= end)
			continue;
160 161 162 163
		/*
		 * Is 'stack' above this exception frame's start address?
		 * If yes then we found the right frame.
		 */
164
		if (stack >= end - EXCEPTION_STKSZ) {
165 166 167 168 169 170
			/*
			 * Make sure we only iterate through an exception
			 * stack once. If it comes up for the second time
			 * then there's something wrong going on - just
			 * break out and return NULL:
			 */
171 172 173 174 175 176
			if (*usedp & (1U << k))
				break;
			*usedp |= 1U << k;
			*idp = ids[k];
			return (unsigned long *)end;
		}
177 178 179 180 181
		/*
		 * If this is a debug stack, and if it has a larger size than
		 * the usual exception stacks, then 'stack' might still
		 * be within the lower portion of the debug stack:
		 */
182 183 184 185
#if DEBUG_STKSZ > EXCEPTION_STKSZ
		if (k == DEBUG_STACK - 1 && stack >= end - DEBUG_STKSZ) {
			unsigned j = N_EXCEPTION_STACKS - 1;

186 187 188 189 190
			/*
			 * Black magic. A large debug stack is composed of
			 * multiple exception stack entries, which we
			 * iterate through now. Dont look:
			 */
191 192 193 194 195 196 197 198 199 200 201 202
			do {
				++j;
				end -= EXCEPTION_STKSZ;
				ids[j][4] = '1' + (j - N_EXCEPTION_STACKS);
			} while (stack < end - EXCEPTION_STKSZ);
			if (*usedp & (1U << j))
				break;
			*usedp |= 1U << j;
			*idp = ids[j];
			return (unsigned long *)end;
		}
#endif
L
Linus Torvalds 已提交
203 204
	}
	return NULL;
205
}
L
Linus Torvalds 已提交
206

207 208
#define MSG(txt) ops->warning(data, txt)

L
Linus Torvalds 已提交
209
/*
S
Simon Arlott 已提交
210
 * x86-64 can have up to three kernel stacks: 
L
Linus Torvalds 已提交
211 212
 * process stack
 * interrupt stack
213
 * severe exception (double fault, nmi, stack fault, debug, mce) hardware stack
L
Linus Torvalds 已提交
214 215
 */

216 217
static inline int valid_stack_ptr(struct thread_info *tinfo,
			void *p, unsigned int size, void *end)
218
{
J
Jan Engelhardt 已提交
219
	void *t = tinfo;
220 221 222 223 224 225 226 227 228
	if (end) {
		if (p < end && p >= (end-THREAD_SIZE))
			return 1;
		else
			return 0;
	}
	return p > t && p < t + THREAD_SIZE - size;
}

229 230 231 232 233 234 235
/* The form of the top of the frame on the stack */
struct stack_frame {
	struct stack_frame *next_frame;
	unsigned long return_address;
};


236 237 238 239 240
static inline unsigned long print_context_stack(struct thread_info *tinfo,
				unsigned long *stack, unsigned long bp,
				const struct stacktrace_ops *ops, void *data,
				unsigned long *end)
{
241 242 243 244 245 246
	struct stack_frame *frame = (struct stack_frame *)bp;

	while (valid_stack_ptr(tinfo, stack, sizeof(*stack), end)) {
		unsigned long addr;

		addr = *stack;
247
		if (__kernel_text_address(addr)) {
248 249 250 251 252 253 254
			if ((unsigned long) stack == bp + 8) {
				ops->address(data, addr, 1);
				frame = frame->next_frame;
				bp = (unsigned long) frame;
			} else {
				ops->address(data, addr, bp == 0);
			}
255
		}
256
		stack++;
257 258
	}
	return bp;
259 260
}

261
void dump_trace(struct task_struct *tsk, struct pt_regs *regs,
262
		unsigned long *stack, unsigned long bp,
J
Jan Beulich 已提交
263
		const struct stacktrace_ops *ops, void *data)
L
Linus Torvalds 已提交
264
{
265
	const unsigned cpu = get_cpu();
266
	unsigned long *irqstack_end = (unsigned long*)cpu_pda(cpu)->irqstackptr;
267
	unsigned used = 0;
268
	struct thread_info *tinfo;
L
Linus Torvalds 已提交
269

270 271
	if (!tsk)
		tsk = current;
272
	tinfo = task_thread_info(tsk);
273

274 275 276 277
	if (!stack) {
		unsigned long dummy;
		stack = &dummy;
		if (tsk && tsk != current)
278
			stack = (unsigned long *)tsk->thread.sp;
279 280
	}

281 282 283 284 285 286 287 288 289 290 291 292 293
#ifdef CONFIG_FRAME_POINTER
	if (!bp) {
		if (tsk == current) {
			/* Grab bp right from our regs */
			asm("movq %%rbp, %0" : "=r" (bp):);
		} else {
			/* bp is the last reg pushed by switch_to */
			bp = *(unsigned long *) tsk->thread.sp;
		}
	}
#endif


294

295 296 297 298 299
	/*
	 * Print function call entries in all stacks, starting at the
	 * current stack address. If the stacks consist of nested
	 * exceptions
	 */
300 301
	for (;;) {
		char *id;
302 303 304 305 306
		unsigned long *estack_end;
		estack_end = in_exception_stack(cpu, (unsigned long)stack,
						&used, &id);

		if (estack_end) {
307 308
			if (ops->stack(data, id) < 0)
				break;
309

310 311
			bp = print_context_stack(tinfo, stack, bp, ops,
							data, estack_end);
312
			ops->stack(data, "<EOE>");
313 314 315 316 317
			/*
			 * We link to the next stack via the
			 * second-to-last pointer (index -2 to end) in the
			 * exception stack:
			 */
318 319
			stack = (unsigned long *) estack_end[-2];
			continue;
L
Linus Torvalds 已提交
320
		}
321 322 323 324 325 326
		if (irqstack_end) {
			unsigned long *irqstack;
			irqstack = irqstack_end -
				(IRQSTACKSIZE - 64) / sizeof(*irqstack);

			if (stack >= irqstack && stack < irqstack_end) {
327 328
				if (ops->stack(data, "IRQ") < 0)
					break;
329 330
				bp = print_context_stack(tinfo, stack, bp,
						ops, data, irqstack_end);
331 332 333 334 335
				/*
				 * We link to the next stack (which would be
				 * the process stack normally) the last
				 * pointer (index -1 to end) in the IRQ stack:
				 */
336 337
				stack = (unsigned long *) (irqstack_end[-1]);
				irqstack_end = NULL;
338
				ops->stack(data, "EOI");
339
				continue;
L
Linus Torvalds 已提交
340 341
			}
		}
342
		break;
L
Linus Torvalds 已提交
343
	}
344

345
	/*
346
	 * This handles the process stack:
347
	 */
348
	bp = print_context_stack(tinfo, stack, bp, ops, data, NULL);
349
	put_cpu();
350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369
}
EXPORT_SYMBOL(dump_trace);

static void
print_trace_warning_symbol(void *data, char *msg, unsigned long symbol)
{
	print_symbol(msg, symbol);
	printk("\n");
}

static void print_trace_warning(void *data, char *msg)
{
	printk("%s\n", msg);
}

static int print_trace_stack(void *data, char *name)
{
	printk(" <%s> ", name);
	return 0;
}
370

371
static void print_trace_address(void *data, unsigned long addr, int reliable)
372
{
373
	touch_nmi_watchdog();
374
	printk_address(addr, reliable);
375 376
}

J
Jan Beulich 已提交
377
static const struct stacktrace_ops print_trace_ops = {
378 379 380 381 382 383 384
	.warning = print_trace_warning,
	.warning_symbol = print_trace_warning_symbol,
	.stack = print_trace_stack,
	.address = print_trace_address,
};

void
385 386
show_trace(struct task_struct *tsk, struct pt_regs *regs, unsigned long *stack,
		unsigned long bp)
387 388
{
	printk("\nCall Trace:\n");
389
	dump_trace(tsk, regs, stack, bp, &print_trace_ops, NULL);
L
Linus Torvalds 已提交
390 391 392
	printk("\n");
}

393
static void
394 395
_show_stack(struct task_struct *tsk, struct pt_regs *regs, unsigned long *sp,
							unsigned long bp)
L
Linus Torvalds 已提交
396 397 398
{
	unsigned long *stack;
	int i;
399
	const int cpu = smp_processor_id();
400 401
	unsigned long *irqstack_end = (unsigned long *) (cpu_pda(cpu)->irqstackptr);
	unsigned long *irqstack = (unsigned long *) (cpu_pda(cpu)->irqstackptr - IRQSTACKSIZE);
L
Linus Torvalds 已提交
402 403 404 405

	// debugging aid: "show_stack(NULL, NULL);" prints the
	// back trace for this cpu.

406
	if (sp == NULL) {
L
Linus Torvalds 已提交
407
		if (tsk)
408
			sp = (unsigned long *)tsk->thread.sp;
L
Linus Torvalds 已提交
409
		else
410
			sp = (unsigned long *)&sp;
L
Linus Torvalds 已提交
411 412
	}

413
	stack = sp;
L
Linus Torvalds 已提交
414 415 416 417 418 419 420 421 422 423 424
	for(i=0; i < kstack_depth_to_print; i++) {
		if (stack >= irqstack && stack <= irqstack_end) {
			if (stack == irqstack_end) {
				stack = (unsigned long *) (irqstack_end[-1]);
				printk(" <EOI> ");
			}
		} else {
		if (((long) stack & (THREAD_SIZE-1)) == 0)
			break;
		}
		if (i && ((i % 4) == 0))
425 426
			printk("\n");
		printk(" %016lx", *stack++);
427
		touch_nmi_watchdog();
L
Linus Torvalds 已提交
428
	}
429
	show_trace(tsk, regs, sp, bp);
430 431
}

432
void show_stack(struct task_struct *tsk, unsigned long * sp)
433
{
434
	_show_stack(tsk, NULL, sp, 0);
L
Linus Torvalds 已提交
435 436 437 438 439 440 441 442
}

/*
 * The architecture-independent dump_stack generator
 */
void dump_stack(void)
{
	unsigned long dummy;
443
	unsigned long bp = 0;
444

445 446 447 448 449
#ifdef CONFIG_FRAME_POINTER
	if (!bp)
		asm("movq %%rbp, %0" : "=r" (bp):);
#endif

450 451 452 453 454
	printk("Pid: %d, comm: %.20s %s %s %.*s\n",
		current->pid, current->comm, print_tainted(),
		init_utsname()->release,
		(int)strcspn(init_utsname()->version, " "),
		init_utsname()->version);
455
	show_trace(NULL, NULL, &dummy, bp);
L
Linus Torvalds 已提交
456 457 458 459 460 461 462
}

EXPORT_SYMBOL(dump_stack);

void show_registers(struct pt_regs *regs)
{
	int i;
463
	unsigned long sp;
464
	const int cpu = smp_processor_id();
465
	struct task_struct *cur = cpu_pda(cpu)->pcurrent;
466 467 468
	u8 *ip;
	unsigned int code_prologue = code_bytes * 43 / 64;
	unsigned int code_len = code_bytes;
L
Linus Torvalds 已提交
469

470
	sp = regs->sp;
471
	ip = (u8 *) regs->ip - code_prologue;
L
Linus Torvalds 已提交
472 473 474
	printk("CPU %d ", cpu);
	__show_regs(regs);
	printk("Process %s (pid: %d, threadinfo %p, task %p)\n",
A
Al Viro 已提交
475
		cur->comm, cur->pid, task_thread_info(cur), cur);
L
Linus Torvalds 已提交
476 477 478 479 480

	/*
	 * When in-kernel, we also print out the stack and code at the
	 * time of the fault..
	 */
481 482
	if (!user_mode(regs)) {
		unsigned char c;
L
Linus Torvalds 已提交
483
		printk("Stack: ");
484
		_show_stack(NULL, regs, (unsigned long *)sp, regs->bp);
485
		printk("\n");
L
Linus Torvalds 已提交
486

487 488 489 490 491 492 493 494 495
		printk(KERN_EMERG "Code: ");
		if (ip < (u8 *)PAGE_OFFSET || probe_kernel_address(ip, c)) {
			/* try starting at RIP */
			ip = (u8 *) regs->ip;
			code_len = code_len - code_prologue + 1;
		}
		for (i = 0; i < code_len; i++, ip++) {
			if (ip < (u8 *)PAGE_OFFSET ||
					probe_kernel_address(ip, c)) {
L
Linus Torvalds 已提交
496 497 498
				printk(" Bad RIP value.");
				break;
			}
499 500 501 502
			if (ip == (u8 *)regs->ip)
				printk("<%02x> ", c);
			else
				printk("%02x ", c);
L
Linus Torvalds 已提交
503 504 505 506 507
		}
	}
	printk("\n");
}	

508
int is_valid_bugaddr(unsigned long ip)
509 510 511
{
	unsigned short ud2;

512
	if (__copy_from_user(&ud2, (const void __user *) ip, sizeof(ud2)))
513 514 515 516
		return 0;

	return ud2 == 0x0b0f;
}
L
Linus Torvalds 已提交
517

A
Andi Kleen 已提交
518
static raw_spinlock_t die_lock = __RAW_SPIN_LOCK_UNLOCKED;
L
Linus Torvalds 已提交
519
static int die_owner = -1;
520
static unsigned int die_nest_count;
L
Linus Torvalds 已提交
521

522
unsigned __kprobes long oops_begin(void)
L
Linus Torvalds 已提交
523
{
A
Andrew Morton 已提交
524
	int cpu;
525 526
	unsigned long flags;

527 528
	oops_enter();

529
	/* racy, but better than risking deadlock. */
A
Andi Kleen 已提交
530
	raw_local_irq_save(flags);
A
Andrew Morton 已提交
531
	cpu = smp_processor_id();
A
Andi Kleen 已提交
532
	if (!__raw_spin_trylock(&die_lock)) {
L
Linus Torvalds 已提交
533 534 535
		if (cpu == die_owner) 
			/* nested oops. should stop eventually */;
		else
A
Andi Kleen 已提交
536
			__raw_spin_lock(&die_lock);
L
Linus Torvalds 已提交
537
	}
538
	die_nest_count++;
539
	die_owner = cpu;
L
Linus Torvalds 已提交
540
	console_verbose();
541 542
	bust_spinlocks(1);
	return flags;
L
Linus Torvalds 已提交
543 544
}

545
void __kprobes oops_end(unsigned long flags, struct pt_regs *regs, int signr)
L
Linus Torvalds 已提交
546 547
{ 
	die_owner = -1;
548
	bust_spinlocks(0);
549
	die_nest_count--;
A
Andi Kleen 已提交
550
	if (!die_nest_count)
551
		/* Nest count reaches zero, release the lock. */
A
Andi Kleen 已提交
552 553
		__raw_spin_unlock(&die_lock);
	raw_local_irq_restore(flags);
554 555 556 557
	if (!regs) {
		oops_exit();
		return;
	}
L
Linus Torvalds 已提交
558
	if (panic_on_oops)
559
		panic("Fatal exception");
560
	oops_exit();
561
	do_exit(signr);
562
}
L
Linus Torvalds 已提交
563

564
int __kprobes __die(const char * str, struct pt_regs * regs, long err)
L
Linus Torvalds 已提交
565 566 567 568 569 570 571 572 573 574 575 576 577
{
	static int die_counter;
	printk(KERN_EMERG "%s: %04lx [%u] ", str, err & 0xffff,++die_counter);
#ifdef CONFIG_PREEMPT
	printk("PREEMPT ");
#endif
#ifdef CONFIG_SMP
	printk("SMP ");
#endif
#ifdef CONFIG_DEBUG_PAGEALLOC
	printk("DEBUG_PAGEALLOC");
#endif
	printk("\n");
578 579
	if (notify_die(DIE_OOPS, str, regs, err, current->thread.trap_no, SIGSEGV) == NOTIFY_STOP)
		return 1;
L
Linus Torvalds 已提交
580
	show_registers(regs);
581
	add_taint(TAINT_DIE);
L
Linus Torvalds 已提交
582 583
	/* Executive summary in case the oops scrolled away */
	printk(KERN_ALERT "RIP ");
584
	printk_address(regs->ip, 1);
585
	printk(" RSP <%016lx>\n", regs->sp);
586 587
	if (kexec_should_crash(current))
		crash_kexec(regs);
588
	return 0;
L
Linus Torvalds 已提交
589 590 591 592
}

void die(const char * str, struct pt_regs * regs, long err)
{
593 594
	unsigned long flags = oops_begin();

595
	if (!user_mode(regs))
596
		report_bug(regs->ip, regs);
597

598 599 600
	if (__die(str, regs, err))
		regs = NULL;
	oops_end(flags, regs, SIGSEGV);
L
Linus Torvalds 已提交
601 602
}

603 604
notrace __kprobes void
die_nmi(char *str, struct pt_regs *regs, int do_panic)
L
Linus Torvalds 已提交
605
{
606
	unsigned long flags;
607

608 609 610
	if (notify_die(DIE_NMIWATCHDOG, str, regs, 0, 2, SIGINT) ==
	    NOTIFY_STOP)
		return;
611

612
	flags = oops_begin();
L
Linus Torvalds 已提交
613 614 615 616
	/*
	 * We are in trouble anyway, lets at least try
	 * to get a message out.
	 */
617
	printk(str, smp_processor_id());
L
Linus Torvalds 已提交
618
	show_registers(regs);
619 620
	if (kexec_should_crash(current))
		crash_kexec(regs);
621 622
	if (do_panic || panic_on_oops)
		panic("Non maskable interrupt");
623
	oops_end(flags, NULL, SIGBUS);
624 625
	nmi_exit();
	local_irq_enable();
626
	do_exit(SIGBUS);
L
Linus Torvalds 已提交
627 628
}

629 630 631
static void __kprobes do_trap(int trapnr, int signr, char *str,
			      struct pt_regs * regs, long error_code,
			      siginfo_t *info)
L
Linus Torvalds 已提交
632
{
633 634 635
	struct task_struct *tsk = current;

	if (user_mode(regs)) {
636 637 638 639 640 641 642 643 644 645 646 647 648
		/*
		 * We want error_code and trap_no set for userspace
		 * faults and kernelspace faults which result in
		 * die(), but not kernelspace faults which are fixed
		 * up.  die() gives the process no chance to handle
		 * the signal and notice the kernel fault information,
		 * so that won't result in polluting the information
		 * about previously queued, but not yet delivered,
		 * faults.  See also do_general_protection below.
		 */
		tsk->thread.error_code = error_code;
		tsk->thread.trap_no = trapnr;

649
		if (show_unhandled_signals && unhandled_signal(tsk, signr) &&
650
		    printk_ratelimit()) {
L
Linus Torvalds 已提交
651
			printk(KERN_INFO
652
			       "%s[%d] trap %s ip:%lx sp:%lx error:%lx",
L
Linus Torvalds 已提交
653
			       tsk->comm, tsk->pid, str,
654
			       regs->ip, regs->sp, error_code);
655 656 657
			print_vma_addr(" in ", regs->ip);
			printk("\n");
		}
L
Linus Torvalds 已提交
658 659 660 661 662 663 664 665 666

		if (info)
			force_sig_info(signr, info, tsk);
		else
			force_sig(signr, tsk);
		return;
	}


667 668 669 670
	if (!fixup_exception(regs)) {
		tsk->thread.error_code = error_code;
		tsk->thread.trap_no = trapnr;
		die(str, regs, error_code);
L
Linus Torvalds 已提交
671
	}
672
	return;
L
Linus Torvalds 已提交
673 674 675 676 677 678 679 680
}

#define DO_ERROR(trapnr, signr, str, name) \
asmlinkage void do_##name(struct pt_regs * regs, long error_code) \
{ \
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr) \
							== NOTIFY_STOP) \
		return; \
681
	conditional_sti(regs);						\
L
Linus Torvalds 已提交
682 683 684 685 686 687 688 689 690 691 692
	do_trap(trapnr, signr, str, regs, error_code, NULL); \
}

#define DO_ERROR_INFO(trapnr, signr, str, name, sicode, siaddr) \
asmlinkage void do_##name(struct pt_regs * regs, long error_code) \
{ \
	siginfo_t info; \
	info.si_signo = signr; \
	info.si_errno = 0; \
	info.si_code = sicode; \
	info.si_addr = (void __user *)siaddr; \
693
	trace_hardirqs_fixup(); \
L
Linus Torvalds 已提交
694 695 696
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr) \
							== NOTIFY_STOP) \
		return; \
697
	conditional_sti(regs);						\
L
Linus Torvalds 已提交
698 699 700
	do_trap(trapnr, signr, str, regs, error_code, &info); \
}

701
DO_ERROR_INFO( 0, SIGFPE,  "divide error", divide_error, FPE_INTDIV, regs->ip)
L
Linus Torvalds 已提交
702 703
DO_ERROR( 4, SIGSEGV, "overflow", overflow)
DO_ERROR( 5, SIGSEGV, "bounds", bounds)
704
DO_ERROR_INFO( 6, SIGILL,  "invalid opcode", invalid_op, ILL_ILLOPN, regs->ip)
L
Linus Torvalds 已提交
705 706 707 708 709 710
DO_ERROR( 7, SIGSEGV, "device not available", device_not_available)
DO_ERROR( 9, SIGFPE,  "coprocessor segment overrun", coprocessor_segment_overrun)
DO_ERROR(10, SIGSEGV, "invalid TSS", invalid_TSS)
DO_ERROR(11, SIGBUS,  "segment not present", segment_not_present)
DO_ERROR_INFO(17, SIGBUS, "alignment check", alignment_check, BUS_ADRALN, 0)
DO_ERROR(18, SIGSEGV, "reserved", reserved)
711 712 713 714 715 716 717 718 719 720 721

/* Runs on IST stack */
asmlinkage void do_stack_segment(struct pt_regs *regs, long error_code)
{
	if (notify_die(DIE_TRAP, "stack segment", regs, error_code,
			12, SIGBUS) == NOTIFY_STOP)
		return;
	preempt_conditional_sti(regs);
	do_trap(12, SIGBUS, "stack segment", regs, error_code, NULL);
	preempt_conditional_cli(regs);
}
722 723 724 725 726 727 728 729 730 731 732 733 734 735 736 737 738

asmlinkage void do_double_fault(struct pt_regs * regs, long error_code)
{
	static const char str[] = "double fault";
	struct task_struct *tsk = current;

	/* Return not checked because double check cannot be ignored */
	notify_die(DIE_TRAP, str, regs, error_code, 8, SIGSEGV);

	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = 8;

	/* This is always a kernel trap and never fixable (and thus must
	   never return). */
	for (;;)
		die(str, regs, error_code);
}
L
Linus Torvalds 已提交
739

740 741
asmlinkage void __kprobes do_general_protection(struct pt_regs * regs,
						long error_code)
L
Linus Torvalds 已提交
742
{
743 744
	struct task_struct *tsk = current;

L
Linus Torvalds 已提交
745 746
	conditional_sti(regs);

747
	if (user_mode(regs)) {
748 749 750
		tsk->thread.error_code = error_code;
		tsk->thread.trap_no = 13;

751
		if (show_unhandled_signals && unhandled_signal(tsk, SIGSEGV) &&
752
		    printk_ratelimit()) {
L
Linus Torvalds 已提交
753
			printk(KERN_INFO
754
		       "%s[%d] general protection ip:%lx sp:%lx error:%lx",
L
Linus Torvalds 已提交
755
			       tsk->comm, tsk->pid,
756
			       regs->ip, regs->sp, error_code);
757 758 759
			print_vma_addr(" in ", regs->ip);
			printk("\n");
		}
L
Linus Torvalds 已提交
760 761 762 763 764

		force_sig(SIGSEGV, tsk);
		return;
	} 

765 766
	if (fixup_exception(regs))
		return;
767

768 769 770 771 772 773
	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = 13;
	if (notify_die(DIE_GPF, "general protection fault", regs,
				error_code, 13, SIGSEGV) == NOTIFY_STOP)
		return;
	die("general protection fault", regs, error_code);
L
Linus Torvalds 已提交
774 775
}

776
static notrace __kprobes void
777
mem_parity_error(unsigned char reason, struct pt_regs * regs)
L
Linus Torvalds 已提交
778
{
779 780
	printk(KERN_EMERG "Uhhuh. NMI received for unknown reason %02x.\n",
		reason);
781
	printk(KERN_EMERG "You have some hardware problem, likely on the PCI bus.\n");
782

D
Dave Jiang 已提交
783 784 785 786 787 788 789
#if defined(CONFIG_EDAC)
	if(edac_handler_set()) {
		edac_atomic_assert_error();
		return;
	}
#endif

790
	if (panic_on_unrecovered_nmi)
791 792 793
		panic("NMI: Not continuing");

	printk(KERN_EMERG "Dazed and confused, but trying to continue\n");
L
Linus Torvalds 已提交
794 795 796 797 798 799

	/* Clear and disable the memory parity error line. */
	reason = (reason & 0xf) | 4;
	outb(reason, 0x61);
}

800
static notrace __kprobes void
801
io_check_error(unsigned char reason, struct pt_regs * regs)
L
Linus Torvalds 已提交
802 803 804 805 806 807 808 809 810 811 812 813
{
	printk("NMI: IOCK error (debug interrupt?)\n");
	show_registers(regs);

	/* Re-enable the IOCK line, wait for a few seconds */
	reason = (reason & 0xf) | 8;
	outb(reason, 0x61);
	mdelay(2000);
	reason &= ~8;
	outb(reason, 0x61);
}

814
static notrace __kprobes void
815
unknown_nmi_error(unsigned char reason, struct pt_regs * regs)
816
{
J
Jason Wessel 已提交
817 818
	if (notify_die(DIE_NMIUNKNOWN, "nmi", regs, reason, 2, SIGINT) == NOTIFY_STOP)
		return;
819 820 821
	printk(KERN_EMERG "Uhhuh. NMI received for unknown reason %02x.\n",
		reason);
	printk(KERN_EMERG "Do you have a strange power saving mode enabled?\n");
822 823

	if (panic_on_unrecovered_nmi)
824
		panic("NMI: Not continuing");
825

826
	printk(KERN_EMERG "Dazed and confused, but trying to continue\n");
L
Linus Torvalds 已提交
827 828
}

829 830
/* Runs on IST stack. This code must keep interrupts off all the time.
   Nested NMIs are prevented by the CPU. */
831
asmlinkage notrace  __kprobes void default_do_nmi(struct pt_regs *regs)
L
Linus Torvalds 已提交
832 833
{
	unsigned char reason = 0;
A
Ashok Raj 已提交
834 835 836
	int cpu;

	cpu = smp_processor_id();
L
Linus Torvalds 已提交
837 838

	/* Only the BSP gets external NMIs from the system.  */
A
Ashok Raj 已提交
839
	if (!cpu)
L
Linus Torvalds 已提交
840 841 842
		reason = get_nmi_reason();

	if (!(reason & 0xc0)) {
843
		if (notify_die(DIE_NMI_IPI, "nmi_ipi", regs, reason, 2, SIGINT)
L
Linus Torvalds 已提交
844 845 846 847 848 849
								== NOTIFY_STOP)
			return;
		/*
		 * Ok, so this is none of the documented NMI sources,
		 * so it must be the NMI watchdog.
		 */
850
		if (nmi_watchdog_tick(regs,reason))
L
Linus Torvalds 已提交
851
			return;
852 853 854
		if (!do_nmi_callback(regs,cpu))
			unknown_nmi_error(reason, regs);

L
Linus Torvalds 已提交
855 856
		return;
	}
857
	if (notify_die(DIE_NMI, "nmi", regs, reason, 2, SIGINT) == NOTIFY_STOP)
L
Linus Torvalds 已提交
858 859 860 861 862 863 864 865 866 867
		return; 

	/* AK: following checks seem to be broken on modern chipsets. FIXME */

	if (reason & 0x80)
		mem_parity_error(reason, regs);
	if (reason & 0x40)
		io_check_error(reason, regs);
}

868
/* runs on IST stack. */
869
asmlinkage void __kprobes do_int3(struct pt_regs * regs, long error_code)
L
Linus Torvalds 已提交
870
{
P
Peter Zijlstra 已提交
871 872
	trace_hardirqs_fixup();

L
Linus Torvalds 已提交
873 874 875
	if (notify_die(DIE_INT3, "int3", regs, error_code, 3, SIGTRAP) == NOTIFY_STOP) {
		return;
	}
876
	preempt_conditional_sti(regs);
L
Linus Torvalds 已提交
877
	do_trap(3, SIGTRAP, "int3", regs, error_code, NULL);
878
	preempt_conditional_cli(regs);
L
Linus Torvalds 已提交
879 880
}

881 882 883
/* Help handler running on IST stack to switch back to user stack
   for scheduling or signal handling. The actual stack switch is done in
   entry.S */
884
asmlinkage __kprobes struct pt_regs *sync_regs(struct pt_regs *eregs)
885 886 887
{
	struct pt_regs *regs = eregs;
	/* Did already sync */
888
	if (eregs == (struct pt_regs *)eregs->sp)
889 890
		;
	/* Exception from user space */
891
	else if (user_mode(eregs))
A
Al Viro 已提交
892
		regs = task_pt_regs(current);
893 894
	/* Exception from kernel and interrupts are enabled. Move to
 	   kernel process stack. */
895 896
	else if (eregs->flags & X86_EFLAGS_IF)
		regs = (struct pt_regs *)(eregs->sp -= sizeof(struct pt_regs));
897 898 899 900 901
	if (eregs != regs)
		*regs = *eregs;
	return regs;
}

L
Linus Torvalds 已提交
902
/* runs on IST stack. */
903 904
asmlinkage void __kprobes do_debug(struct pt_regs * regs,
				   unsigned long error_code)
L
Linus Torvalds 已提交
905 906 907 908 909
{
	unsigned long condition;
	struct task_struct *tsk = current;
	siginfo_t info;

910 911
	trace_hardirqs_fixup();

912
	get_debugreg(condition, 6);
L
Linus Torvalds 已提交
913

914 915 916 917 918 919
	/*
	 * The processor cleared BTF, so don't mark that we need it set.
	 */
	clear_tsk_thread_flag(tsk, TIF_DEBUGCTLMSR);
	tsk->thread.debugctlmsr = 0;

L
Linus Torvalds 已提交
920
	if (notify_die(DIE_DEBUG, "debug", regs, condition, error_code,
921
						SIGTRAP) == NOTIFY_STOP)
922
		return;
923

924
	preempt_conditional_sti(regs);
L
Linus Torvalds 已提交
925 926 927 928 929 930 931 932 933 934

	/* Mask out spurious debug traps due to lazy DR7 setting */
	if (condition & (DR_TRAP0|DR_TRAP1|DR_TRAP2|DR_TRAP3)) {
		if (!tsk->thread.debugreg7) { 
			goto clear_dr7;
		}
	}

	tsk->thread.debugreg6 = condition;

R
Roland McGrath 已提交
935 936 937 938 939

	/*
	 * Single-stepping through TF: make sure we ignore any events in
	 * kernel space (but re-enable TF when returning to user mode).
	 */
940
	if (condition & DR_STEP) {
941
                if (!user_mode(regs))
L
Linus Torvalds 已提交
942 943 944 945 946 947 948 949 950
                       goto clear_TF_reenable;
	}

	/* Ok, finally something we can handle */
	tsk->thread.trap_no = 1;
	tsk->thread.error_code = error_code;
	info.si_signo = SIGTRAP;
	info.si_errno = 0;
	info.si_code = TRAP_BRKPT;
951
	info.si_addr = user_mode(regs) ? (void __user *)regs->ip : NULL;
952
	force_sig_info(SIGTRAP, &info, tsk);
L
Linus Torvalds 已提交
953 954

clear_dr7:
955
	set_debugreg(0UL, 7);
956
	preempt_conditional_cli(regs);
957
	return;
L
Linus Torvalds 已提交
958 959 960

clear_TF_reenable:
	set_tsk_thread_flag(tsk, TIF_SINGLESTEP);
961
	regs->flags &= ~X86_EFLAGS_TF;
962
	preempt_conditional_cli(regs);
L
Linus Torvalds 已提交
963 964
}

965
static int kernel_math_error(struct pt_regs *regs, const char *str, int trapnr)
L
Linus Torvalds 已提交
966
{
967
	if (fixup_exception(regs))
L
Linus Torvalds 已提交
968
		return 1;
969

970
	notify_die(DIE_GPF, str, regs, 0, trapnr, SIGFPE);
971
	/* Illegal floating point operation in the kernel */
972
	current->thread.trap_no = trapnr;
L
Linus Torvalds 已提交
973 974 975 976 977 978 979 980 981 982 983
	die(str, regs, 0);
	return 0;
}

/*
 * Note that we play around with the 'TS' bit in an attempt to get
 * the correct behaviour even in the presence of the asynchronous
 * IRQ13 behaviour
 */
asmlinkage void do_coprocessor_error(struct pt_regs *regs)
{
984
	void __user *ip = (void __user *)(regs->ip);
L
Linus Torvalds 已提交
985 986 987 988 989
	struct task_struct * task;
	siginfo_t info;
	unsigned short cwd, swd;

	conditional_sti(regs);
990
	if (!user_mode(regs) &&
991
	    kernel_math_error(regs, "kernel x87 math error", 16))
L
Linus Torvalds 已提交
992 993 994 995 996 997 998 999 1000 1001 1002 1003
		return;

	/*
	 * Save the info for the exception handler and clear the error.
	 */
	task = current;
	save_init_fpu(task);
	task->thread.trap_no = 16;
	task->thread.error_code = 0;
	info.si_signo = SIGFPE;
	info.si_errno = 0;
	info.si_code = __SI_FAULT;
1004
	info.si_addr = ip;
L
Linus Torvalds 已提交
1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016
	/*
	 * (~cwd & swd) will mask out exceptions that are not set to unmasked
	 * status.  0x3f is the exception bits in these regs, 0x200 is the
	 * C1 reg you need in case of a stack fault, 0x040 is the stack
	 * fault bit.  We should only be taking one exception at a time,
	 * so if this combination doesn't produce any single exception,
	 * then we have a bad program that isn't synchronizing its FPU usage
	 * and it will suffer the consequences since we won't be able to
	 * fully reproduce the context of the exception
	 */
	cwd = get_fpu_cwd(task);
	swd = get_fpu_swd(task);
1017
	switch (swd & ~cwd & 0x3f) {
L
Linus Torvalds 已提交
1018 1019 1020 1021
		case 0x000:
		default:
			break;
		case 0x001: /* Invalid Op */
1022 1023 1024 1025 1026
			/*
			 * swd & 0x240 == 0x040: Stack Underflow
			 * swd & 0x240 == 0x240: Stack Overflow
			 * User must clear the SF bit (0x40) if set
			 */
L
Linus Torvalds 已提交
1027 1028 1029 1030 1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043 1044 1045 1046 1047 1048 1049 1050 1051 1052
			info.si_code = FPE_FLTINV;
			break;
		case 0x002: /* Denormalize */
		case 0x010: /* Underflow */
			info.si_code = FPE_FLTUND;
			break;
		case 0x004: /* Zero Divide */
			info.si_code = FPE_FLTDIV;
			break;
		case 0x008: /* Overflow */
			info.si_code = FPE_FLTOVF;
			break;
		case 0x020: /* Precision */
			info.si_code = FPE_FLTRES;
			break;
	}
	force_sig_info(SIGFPE, &info, task);
}

asmlinkage void bad_intr(void)
{
	printk("bad interrupt"); 
}

asmlinkage void do_simd_coprocessor_error(struct pt_regs *regs)
{
1053
	void __user *ip = (void __user *)(regs->ip);
L
Linus Torvalds 已提交
1054 1055 1056 1057 1058
	struct task_struct * task;
	siginfo_t info;
	unsigned short mxcsr;

	conditional_sti(regs);
1059
	if (!user_mode(regs) &&
1060
        	kernel_math_error(regs, "kernel simd math error", 19))
L
Linus Torvalds 已提交
1061 1062 1063 1064 1065 1066 1067 1068 1069 1070 1071 1072
		return;

	/*
	 * Save the info for the exception handler and clear the error.
	 */
	task = current;
	save_init_fpu(task);
	task->thread.trap_no = 19;
	task->thread.error_code = 0;
	info.si_signo = SIGFPE;
	info.si_errno = 0;
	info.si_code = __SI_FAULT;
1073
	info.si_addr = ip;
L
Linus Torvalds 已提交
1074 1075 1076 1077 1078 1079 1080 1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093 1094 1095 1096 1097 1098 1099 1100 1101 1102 1103 1104 1105 1106 1107 1108 1109
	/*
	 * The SIMD FPU exceptions are handled a little differently, as there
	 * is only a single status/control register.  Thus, to determine which
	 * unmasked exception was caught we must mask the exception mask bits
	 * at 0x1f80, and then use these to mask the exception bits at 0x3f.
	 */
	mxcsr = get_fpu_mxcsr(task);
	switch (~((mxcsr & 0x1f80) >> 7) & (mxcsr & 0x3f)) {
		case 0x000:
		default:
			break;
		case 0x001: /* Invalid Op */
			info.si_code = FPE_FLTINV;
			break;
		case 0x002: /* Denormalize */
		case 0x010: /* Underflow */
			info.si_code = FPE_FLTUND;
			break;
		case 0x004: /* Zero Divide */
			info.si_code = FPE_FLTDIV;
			break;
		case 0x008: /* Overflow */
			info.si_code = FPE_FLTOVF;
			break;
		case 0x020: /* Precision */
			info.si_code = FPE_FLTRES;
			break;
	}
	force_sig_info(SIGFPE, &info, task);
}

asmlinkage void do_spurious_interrupt_bug(struct pt_regs * regs)
{
}

asmlinkage void __attribute__((weak)) smp_thermal_interrupt(void)
1110 1111 1112 1113
{
}

asmlinkage void __attribute__((weak)) mce_threshold_interrupt(void)
L
Linus Torvalds 已提交
1114 1115 1116 1117 1118 1119 1120 1121 1122 1123 1124 1125 1126 1127
{
}

/*
 *  'math_state_restore()' saves the current math information in the
 * old math state array, and gets the new ones from the current task
 *
 * Careful.. There are problems with IBM-designed IRQ13 behaviour.
 * Don't touch unless you *really* know how it works.
 */
asmlinkage void math_state_restore(void)
{
	struct task_struct *me = current;

1128 1129 1130 1131 1132 1133 1134 1135 1136 1137 1138 1139 1140 1141 1142 1143
	if (!used_math()) {
		local_irq_enable();
		/*
		 * does a slab alloc which can sleep
		 */
		if (init_fpu(me)) {
			/*
			 * ran out of memory!
			 */
			do_group_exit(SIGKILL);
			return;
		}
		local_irq_disable();
	}

	clts();			/* Allow maths ops (or we recurse) */
1144
	restore_fpu_checking(&me->thread.xstate->fxsave);
A
Al Viro 已提交
1145
	task_thread_info(me)->status |= TS_USEDFPU;
1146
	me->fpu_counter++;
L
Linus Torvalds 已提交
1147
}
1148
EXPORT_SYMBOL_GPL(math_state_restore);
L
Linus Torvalds 已提交
1149 1150 1151 1152 1153 1154

void __init trap_init(void)
{
	set_intr_gate(0,&divide_error);
	set_intr_gate_ist(1,&debug,DEBUG_STACK);
	set_intr_gate_ist(2,&nmi,NMI_STACK);
1155
 	set_system_gate_ist(3,&int3,DEBUG_STACK); /* int3 can be called from all */
1156 1157
	set_system_gate(4,&overflow);	/* int4 can be called from all */
	set_intr_gate(5,&bounds);
L
Linus Torvalds 已提交
1158 1159 1160 1161 1162 1163 1164 1165 1166 1167 1168 1169 1170 1171 1172 1173 1174 1175 1176 1177 1178
	set_intr_gate(6,&invalid_op);
	set_intr_gate(7,&device_not_available);
	set_intr_gate_ist(8,&double_fault, DOUBLEFAULT_STACK);
	set_intr_gate(9,&coprocessor_segment_overrun);
	set_intr_gate(10,&invalid_TSS);
	set_intr_gate(11,&segment_not_present);
	set_intr_gate_ist(12,&stack_segment,STACKFAULT_STACK);
	set_intr_gate(13,&general_protection);
	set_intr_gate(14,&page_fault);
	set_intr_gate(15,&spurious_interrupt_bug);
	set_intr_gate(16,&coprocessor_error);
	set_intr_gate(17,&alignment_check);
#ifdef CONFIG_X86_MCE
	set_intr_gate_ist(18,&machine_check, MCE_STACK); 
#endif
	set_intr_gate(19,&simd_coprocessor_error);

#ifdef CONFIG_IA32_EMULATION
	set_system_gate(IA32_SYSCALL_VECTOR, ia32_syscall);
#endif
       
1179 1180 1181 1182
	/*
	 * initialize the per thread extended state:
	 */
        init_thread_xstate();
L
Linus Torvalds 已提交
1183 1184 1185 1186 1187 1188 1189
	/*
	 * Should be a barrier for any external CPU state.
	 */
	cpu_init();
}


1190
static int __init oops_setup(char *s)
L
Linus Torvalds 已提交
1191
{ 
1192 1193 1194 1195 1196
	if (!s)
		return -EINVAL;
	if (!strcmp(s, "panic"))
		panic_on_oops = 1;
	return 0;
L
Linus Torvalds 已提交
1197
} 
1198
early_param("oops", oops_setup);
L
Linus Torvalds 已提交
1199 1200 1201

static int __init kstack_setup(char *s)
{
1202 1203
	if (!s)
		return -EINVAL;
L
Linus Torvalds 已提交
1204
	kstack_depth_to_print = simple_strtoul(s,NULL,0);
1205
	return 0;
L
Linus Torvalds 已提交
1206
}
1207
early_param("kstack", kstack_setup);
1208 1209 1210 1211 1212 1213 1214 1215 1216 1217 1218


static int __init code_bytes_setup(char *s)
{
	code_bytes = simple_strtoul(s, NULL, 0);
	if (code_bytes > 8192)
		code_bytes = 8192;

	return 1;
}
__setup("code_bytes=", code_bytes_setup);