traps.c 28.3 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25
/*
 *  linux/arch/x86-64/traps.c
 *
 *  Copyright (C) 1991, 1992  Linus Torvalds
 *  Copyright (C) 2000, 2001, 2002 Andi Kleen, SuSE Labs
 *
 *  Pentium III FXSR, SSE support
 *	Gareth Hughes <gareth@valinux.com>, May 2000
 */

/*
 * 'Traps.c' handles hardware traps and faults after we have saved some
 * state in 'entry.S'.
 */
#include <linux/sched.h>
#include <linux/kernel.h>
#include <linux/string.h>
#include <linux/errno.h>
#include <linux/ptrace.h>
#include <linux/timer.h>
#include <linux/mm.h>
#include <linux/init.h>
#include <linux/delay.h>
#include <linux/spinlock.h>
#include <linux/interrupt.h>
26
#include <linux/kallsyms.h>
L
Linus Torvalds 已提交
27 28
#include <linux/module.h>
#include <linux/moduleparam.h>
29
#include <linux/nmi.h>
30
#include <linux/kprobes.h>
31
#include <linux/kexec.h>
32
#include <linux/unwind.h>
33
#include <linux/uaccess.h>
34
#include <linux/bug.h>
35
#include <linux/kdebug.h>
L
Linus Torvalds 已提交
36 37 38 39 40 41 42 43

#include <asm/system.h>
#include <asm/io.h>
#include <asm/atomic.h>
#include <asm/debugreg.h>
#include <asm/desc.h>
#include <asm/i387.h>
#include <asm/processor.h>
44
#include <asm/unwind.h>
L
Linus Torvalds 已提交
45 46 47 48 49
#include <asm/smp.h>
#include <asm/pgalloc.h>
#include <asm/pda.h>
#include <asm/proto.h>
#include <asm/nmi.h>
50
#include <asm/stacktrace.h>
L
Linus Torvalds 已提交
51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79

asmlinkage void divide_error(void);
asmlinkage void debug(void);
asmlinkage void nmi(void);
asmlinkage void int3(void);
asmlinkage void overflow(void);
asmlinkage void bounds(void);
asmlinkage void invalid_op(void);
asmlinkage void device_not_available(void);
asmlinkage void double_fault(void);
asmlinkage void coprocessor_segment_overrun(void);
asmlinkage void invalid_TSS(void);
asmlinkage void segment_not_present(void);
asmlinkage void stack_segment(void);
asmlinkage void general_protection(void);
asmlinkage void page_fault(void);
asmlinkage void coprocessor_error(void);
asmlinkage void simd_coprocessor_error(void);
asmlinkage void reserved(void);
asmlinkage void alignment_check(void);
asmlinkage void machine_check(void);
asmlinkage void spurious_interrupt_bug(void);

static inline void conditional_sti(struct pt_regs *regs)
{
	if (regs->eflags & X86_EFLAGS_IF)
		local_irq_enable();
}

80 81 82 83 84 85 86 87 88 89 90
static inline void preempt_conditional_sti(struct pt_regs *regs)
{
	preempt_disable();
	if (regs->eflags & X86_EFLAGS_IF)
		local_irq_enable();
}

static inline void preempt_conditional_cli(struct pt_regs *regs)
{
	if (regs->eflags & X86_EFLAGS_IF)
		local_irq_disable();
91 92
	/* Make sure to not schedule here because we could be running
	   on an exception stack. */
93 94 95
	preempt_enable_no_resched();
}

96
int kstack_depth_to_print = 12;
L
Linus Torvalds 已提交
97 98

#ifdef CONFIG_KALLSYMS
99 100
void printk_address(unsigned long address)
{
L
Linus Torvalds 已提交
101 102 103
	unsigned long offset = 0, symsize;
	const char *symname;
	char *modname;
104
	char *delim = ":";
L
Linus Torvalds 已提交
105 106
	char namebuf[128];

107 108 109 110 111 112 113
	symname = kallsyms_lookup(address, &symsize, &offset,
					&modname, namebuf);
	if (!symname) {
		printk(" [<%016lx>]\n", address);
		return;
	}
	if (!modname)
L
Linus Torvalds 已提交
114
		modname = delim = ""; 		
115 116 117
	printk(" [<%016lx>] %s%s%s%s+0x%lx/0x%lx\n",
		address, delim, modname, delim, symname, offset, symsize);
}
L
Linus Torvalds 已提交
118
#else
119 120 121 122
void printk_address(unsigned long address)
{
	printk(" [<%016lx>]\n", address);
}
L
Linus Torvalds 已提交
123 124
#endif

125
static unsigned long *in_exception_stack(unsigned cpu, unsigned long stack,
126
					unsigned *usedp, char **idp)
127
{
128
	static char ids[][8] = {
129 130 131 132 133
		[DEBUG_STACK - 1] = "#DB",
		[NMI_STACK - 1] = "NMI",
		[DOUBLEFAULT_STACK - 1] = "#DF",
		[STACKFAULT_STACK - 1] = "#SS",
		[MCE_STACK - 1] = "#MC",
134 135 136
#if DEBUG_STKSZ > EXCEPTION_STKSZ
		[N_EXCEPTION_STACKS ... N_EXCEPTION_STACKS + DEBUG_STKSZ / EXCEPTION_STKSZ - 2] = "#DB[?]"
#endif
137 138
	};
	unsigned k;
L
Linus Torvalds 已提交
139

140 141 142 143
	/*
	 * Iterate over all exception stacks, and figure out whether
	 * 'stack' is in one of them:
	 */
144
	for (k = 0; k < N_EXCEPTION_STACKS; k++) {
145
		unsigned long end = per_cpu(orig_ist, cpu).ist[k];
146 147 148 149
		/*
		 * Is 'stack' above this exception frame's end?
		 * If yes then skip to the next frame.
		 */
150 151
		if (stack >= end)
			continue;
152 153 154 155
		/*
		 * Is 'stack' above this exception frame's start address?
		 * If yes then we found the right frame.
		 */
156
		if (stack >= end - EXCEPTION_STKSZ) {
157 158 159 160 161 162
			/*
			 * Make sure we only iterate through an exception
			 * stack once. If it comes up for the second time
			 * then there's something wrong going on - just
			 * break out and return NULL:
			 */
163 164 165 166 167 168
			if (*usedp & (1U << k))
				break;
			*usedp |= 1U << k;
			*idp = ids[k];
			return (unsigned long *)end;
		}
169 170 171 172 173
		/*
		 * If this is a debug stack, and if it has a larger size than
		 * the usual exception stacks, then 'stack' might still
		 * be within the lower portion of the debug stack:
		 */
174 175 176 177
#if DEBUG_STKSZ > EXCEPTION_STKSZ
		if (k == DEBUG_STACK - 1 && stack >= end - DEBUG_STKSZ) {
			unsigned j = N_EXCEPTION_STACKS - 1;

178 179 180 181 182
			/*
			 * Black magic. A large debug stack is composed of
			 * multiple exception stack entries, which we
			 * iterate through now. Dont look:
			 */
183 184 185 186 187 188 189 190 191 192 193 194
			do {
				++j;
				end -= EXCEPTION_STKSZ;
				ids[j][4] = '1' + (j - N_EXCEPTION_STACKS);
			} while (stack < end - EXCEPTION_STKSZ);
			if (*usedp & (1U << j))
				break;
			*usedp |= 1U << j;
			*idp = ids[j];
			return (unsigned long *)end;
		}
#endif
L
Linus Torvalds 已提交
195 196
	}
	return NULL;
197
}
L
Linus Torvalds 已提交
198

199 200
#define MSG(txt) ops->warning(data, txt)

L
Linus Torvalds 已提交
201 202 203 204
/*
 * x86-64 can have upto three kernel stacks: 
 * process stack
 * interrupt stack
205
 * severe exception (double fault, nmi, stack fault, debug, mce) hardware stack
L
Linus Torvalds 已提交
206 207
 */

208 209 210 211 212 213
static inline int valid_stack_ptr(struct thread_info *tinfo, void *p)
{
	void *t = (void *)tinfo;
        return p > t && p < t + THREAD_SIZE - 3;
}

214 215
void dump_trace(struct task_struct *tsk, struct pt_regs *regs,
		unsigned long *stack,
216
		struct stacktrace_ops *ops, void *data)
L
Linus Torvalds 已提交
217
{
218
	const unsigned cpu = get_cpu();
219
	unsigned long *irqstack_end = (unsigned long*)cpu_pda(cpu)->irqstackptr;
220
	unsigned used = 0;
221
	struct thread_info *tinfo;
L
Linus Torvalds 已提交
222

223 224 225
	if (!tsk)
		tsk = current;

226 227 228 229 230
	if (!stack) {
		unsigned long dummy;
		stack = &dummy;
		if (tsk && tsk != current)
			stack = (unsigned long *)tsk->thread.rsp;
231 232
	}

233 234 235 236 237
	/*
	 * Print function call entries within a stack. 'cond' is the
	 * "end of stackframe" condition, that the 'stack++'
	 * iteration will eventually trigger.
	 */
238 239
#define HANDLE_STACK(cond) \
	do while (cond) { \
240
		unsigned long addr = *stack++; \
241 242 243
		/* Use unlocked access here because except for NMIs	\
		   we should be already protected against module unloads */ \
		if (__kernel_text_address(addr)) { \
244 245 246 247 248 249 250 251
			/* \
			 * If the address is either in the text segment of the \
			 * kernel, or in the region which contains vmalloc'ed \
			 * memory, it *may* be the address of a calling \
			 * routine; if so, print it so that someone tracing \
			 * down the cause of the crash will be able to figure \
			 * out the call path that was taken. \
			 */ \
252
			ops->address(data, addr);   \
253 254 255
		} \
	} while (0)

256 257 258 259 260
	/*
	 * Print function call entries in all stacks, starting at the
	 * current stack address. If the stacks consist of nested
	 * exceptions
	 */
261 262
	for (;;) {
		char *id;
263 264 265 266 267
		unsigned long *estack_end;
		estack_end = in_exception_stack(cpu, (unsigned long)stack,
						&used, &id);

		if (estack_end) {
268 269
			if (ops->stack(data, id) < 0)
				break;
270
			HANDLE_STACK (stack < estack_end);
271
			ops->stack(data, "<EOE>");
272 273 274 275 276
			/*
			 * We link to the next stack via the
			 * second-to-last pointer (index -2 to end) in the
			 * exception stack:
			 */
277 278
			stack = (unsigned long *) estack_end[-2];
			continue;
L
Linus Torvalds 已提交
279
		}
280 281 282 283 284 285
		if (irqstack_end) {
			unsigned long *irqstack;
			irqstack = irqstack_end -
				(IRQSTACKSIZE - 64) / sizeof(*irqstack);

			if (stack >= irqstack && stack < irqstack_end) {
286 287
				if (ops->stack(data, "IRQ") < 0)
					break;
288
				HANDLE_STACK (stack < irqstack_end);
289 290 291 292 293
				/*
				 * We link to the next stack (which would be
				 * the process stack normally) the last
				 * pointer (index -1 to end) in the IRQ stack:
				 */
294 295
				stack = (unsigned long *) (irqstack_end[-1]);
				irqstack_end = NULL;
296
				ops->stack(data, "EOI");
297
				continue;
L
Linus Torvalds 已提交
298 299
			}
		}
300
		break;
L
Linus Torvalds 已提交
301
	}
302

303
	/*
304
	 * This handles the process stack:
305
	 */
306
	tinfo = task_thread_info(tsk);
307
	HANDLE_STACK (valid_stack_ptr(tinfo, stack));
308
#undef HANDLE_STACK
309
	put_cpu();
310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329
}
EXPORT_SYMBOL(dump_trace);

static void
print_trace_warning_symbol(void *data, char *msg, unsigned long symbol)
{
	print_symbol(msg, symbol);
	printk("\n");
}

static void print_trace_warning(void *data, char *msg)
{
	printk("%s\n", msg);
}

static int print_trace_stack(void *data, char *name)
{
	printk(" <%s> ", name);
	return 0;
}
330

331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347
static void print_trace_address(void *data, unsigned long addr)
{
	printk_address(addr);
}

static struct stacktrace_ops print_trace_ops = {
	.warning = print_trace_warning,
	.warning_symbol = print_trace_warning_symbol,
	.stack = print_trace_stack,
	.address = print_trace_address,
};

void
show_trace(struct task_struct *tsk, struct pt_regs *regs, unsigned long *stack)
{
	printk("\nCall Trace:\n");
	dump_trace(tsk, regs, stack, &print_trace_ops, NULL);
L
Linus Torvalds 已提交
348 349 350
	printk("\n");
}

351 352
static void
_show_stack(struct task_struct *tsk, struct pt_regs *regs, unsigned long *rsp)
L
Linus Torvalds 已提交
353 354 355
{
	unsigned long *stack;
	int i;
356
	const int cpu = smp_processor_id();
357 358
	unsigned long *irqstack_end = (unsigned long *) (cpu_pda(cpu)->irqstackptr);
	unsigned long *irqstack = (unsigned long *) (cpu_pda(cpu)->irqstackptr - IRQSTACKSIZE);
L
Linus Torvalds 已提交
359 360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381

	// debugging aid: "show_stack(NULL, NULL);" prints the
	// back trace for this cpu.

	if (rsp == NULL) {
		if (tsk)
			rsp = (unsigned long *)tsk->thread.rsp;
		else
			rsp = (unsigned long *)&rsp;
	}

	stack = rsp;
	for(i=0; i < kstack_depth_to_print; i++) {
		if (stack >= irqstack && stack <= irqstack_end) {
			if (stack == irqstack_end) {
				stack = (unsigned long *) (irqstack_end[-1]);
				printk(" <EOI> ");
			}
		} else {
		if (((long) stack & (THREAD_SIZE-1)) == 0)
			break;
		}
		if (i && ((i % 4) == 0))
382 383
			printk("\n");
		printk(" %016lx", *stack++);
384
		touch_nmi_watchdog();
L
Linus Torvalds 已提交
385
	}
386 387 388 389 390 391
	show_trace(tsk, regs, rsp);
}

void show_stack(struct task_struct *tsk, unsigned long * rsp)
{
	_show_stack(tsk, NULL, rsp);
L
Linus Torvalds 已提交
392 393 394 395 396 397 398 399
}

/*
 * The architecture-independent dump_stack generator
 */
void dump_stack(void)
{
	unsigned long dummy;
400
	show_trace(NULL, NULL, &dummy);
L
Linus Torvalds 已提交
401 402 403 404 405 406 407
}

EXPORT_SYMBOL(dump_stack);

void show_registers(struct pt_regs *regs)
{
	int i;
408
	int in_kernel = !user_mode(regs);
L
Linus Torvalds 已提交
409
	unsigned long rsp;
410
	const int cpu = smp_processor_id();
411
	struct task_struct *cur = cpu_pda(cpu)->pcurrent;
L
Linus Torvalds 已提交
412

413
	rsp = regs->rsp;
L
Linus Torvalds 已提交
414 415 416
	printk("CPU %d ", cpu);
	__show_regs(regs);
	printk("Process %s (pid: %d, threadinfo %p, task %p)\n",
A
Al Viro 已提交
417
		cur->comm, cur->pid, task_thread_info(cur), cur);
L
Linus Torvalds 已提交
418 419 420 421 422 423 424

	/*
	 * When in-kernel, we also print out the stack and code at the
	 * time of the fault..
	 */
	if (in_kernel) {
		printk("Stack: ");
425
		_show_stack(NULL, regs, (unsigned long*)rsp);
L
Linus Torvalds 已提交
426 427

		printk("\nCode: ");
428
		if (regs->rip < PAGE_OFFSET)
L
Linus Torvalds 已提交
429 430
			goto bad;

431
		for (i=0; i<20; i++) {
L
Linus Torvalds 已提交
432
			unsigned char c;
433
			if (__get_user(c, &((unsigned char*)regs->rip)[i])) {
L
Linus Torvalds 已提交
434 435 436 437 438 439 440 441 442 443
bad:
				printk(" Bad RIP value.");
				break;
			}
			printk("%02x ", c);
		}
	}
	printk("\n");
}	

444 445 446 447 448 449 450 451 452
int is_valid_bugaddr(unsigned long rip)
{
	unsigned short ud2;

	if (__copy_from_user(&ud2, (const void __user *) rip, sizeof(ud2)))
		return 0;

	return ud2 == 0x0b0f;
}
L
Linus Torvalds 已提交
453

454
#ifdef CONFIG_BUG
L
Linus Torvalds 已提交
455 456 457 458
void out_of_line_bug(void)
{ 
	BUG(); 
} 
459
EXPORT_SYMBOL(out_of_line_bug);
460
#endif
L
Linus Torvalds 已提交
461 462 463

static DEFINE_SPINLOCK(die_lock);
static int die_owner = -1;
464
static unsigned int die_nest_count;
L
Linus Torvalds 已提交
465

466
unsigned __kprobes long oops_begin(void)
L
Linus Torvalds 已提交
467
{
468
	int cpu = smp_processor_id();
469 470
	unsigned long flags;

471 472
	oops_enter();

473 474
	/* racy, but better than risking deadlock. */
	local_irq_save(flags);
L
Linus Torvalds 已提交
475 476 477 478
	if (!spin_trylock(&die_lock)) { 
		if (cpu == die_owner) 
			/* nested oops. should stop eventually */;
		else
479
			spin_lock(&die_lock);
L
Linus Torvalds 已提交
480
	}
481
	die_nest_count++;
482
	die_owner = cpu;
L
Linus Torvalds 已提交
483
	console_verbose();
484 485
	bust_spinlocks(1);
	return flags;
L
Linus Torvalds 已提交
486 487
}

488
void __kprobes oops_end(unsigned long flags)
L
Linus Torvalds 已提交
489 490
{ 
	die_owner = -1;
491
	bust_spinlocks(0);
492 493 494 495 496 497 498
	die_nest_count--;
	if (die_nest_count)
		/* We still own the lock */
		local_irq_restore(flags);
	else
		/* Nest count reaches zero, release the lock. */
		spin_unlock_irqrestore(&die_lock, flags);
L
Linus Torvalds 已提交
499
	if (panic_on_oops)
500
		panic("Fatal exception");
501
	oops_exit();
502
}
L
Linus Torvalds 已提交
503

504
void __kprobes __die(const char * str, struct pt_regs * regs, long err)
L
Linus Torvalds 已提交
505 506 507 508 509 510 511 512 513 514 515 516 517
{
	static int die_counter;
	printk(KERN_EMERG "%s: %04lx [%u] ", str, err & 0xffff,++die_counter);
#ifdef CONFIG_PREEMPT
	printk("PREEMPT ");
#endif
#ifdef CONFIG_SMP
	printk("SMP ");
#endif
#ifdef CONFIG_DEBUG_PAGEALLOC
	printk("DEBUG_PAGEALLOC");
#endif
	printk("\n");
518
	notify_die(DIE_OOPS, str, regs, err, current->thread.trap_no, SIGSEGV);
L
Linus Torvalds 已提交
519 520 521 522 523
	show_registers(regs);
	/* Executive summary in case the oops scrolled away */
	printk(KERN_ALERT "RIP ");
	printk_address(regs->rip); 
	printk(" RSP <%016lx>\n", regs->rsp); 
524 525
	if (kexec_should_crash(current))
		crash_kexec(regs);
L
Linus Torvalds 已提交
526 527 528 529
}

void die(const char * str, struct pt_regs * regs, long err)
{
530 531
	unsigned long flags = oops_begin();

532 533 534
	if (!user_mode(regs))
		report_bug(regs->rip);

L
Linus Torvalds 已提交
535
	__die(str, regs, err);
536
	oops_end(flags);
L
Linus Torvalds 已提交
537 538 539
	do_exit(SIGSEGV); 
}

540
void __kprobes die_nmi(char *str, struct pt_regs *regs, int do_panic)
L
Linus Torvalds 已提交
541
{
542 543
	unsigned long flags = oops_begin();

L
Linus Torvalds 已提交
544 545 546 547
	/*
	 * We are in trouble anyway, lets at least try
	 * to get a message out.
	 */
548
	printk(str, smp_processor_id());
L
Linus Torvalds 已提交
549
	show_registers(regs);
550 551
	if (kexec_should_crash(current))
		crash_kexec(regs);
552 553
	if (do_panic || panic_on_oops)
		panic("Non maskable interrupt");
554
	oops_end(flags);
555 556
	nmi_exit();
	local_irq_enable();
L
Linus Torvalds 已提交
557 558 559
	do_exit(SIGSEGV);
}

560 561 562
static void __kprobes do_trap(int trapnr, int signr, char *str,
			      struct pt_regs * regs, long error_code,
			      siginfo_t *info)
L
Linus Torvalds 已提交
563
{
564 565 566
	struct task_struct *tsk = current;

	if (user_mode(regs)) {
567 568 569 570 571 572 573 574 575 576 577 578 579
		/*
		 * We want error_code and trap_no set for userspace
		 * faults and kernelspace faults which result in
		 * die(), but not kernelspace faults which are fixed
		 * up.  die() gives the process no chance to handle
		 * the signal and notice the kernel fault information,
		 * so that won't result in polluting the information
		 * about previously queued, but not yet delivered,
		 * faults.  See also do_general_protection below.
		 */
		tsk->thread.error_code = error_code;
		tsk->thread.trap_no = trapnr;

L
Linus Torvalds 已提交
580 581 582 583
		if (exception_trace && unhandled_signal(tsk, signr))
			printk(KERN_INFO
			       "%s[%d] trap %s rip:%lx rsp:%lx error:%lx\n",
			       tsk->comm, tsk->pid, str,
584
			       regs->rip, regs->rsp, error_code); 
L
Linus Torvalds 已提交
585 586 587 588 589 590 591 592 593 594 595 596 597

		if (info)
			force_sig_info(signr, info, tsk);
		else
			force_sig(signr, tsk);
		return;
	}


	/* kernel trap */ 
	{	     
		const struct exception_table_entry *fixup;
		fixup = search_exception_tables(regs->rip);
598
		if (fixup)
L
Linus Torvalds 已提交
599
			regs->rip = fixup->fixup;
600 601 602
		else {
			tsk->thread.error_code = error_code;
			tsk->thread.trap_no = trapnr;
L
Linus Torvalds 已提交
603
			die(str, regs, error_code);
604
		}
L
Linus Torvalds 已提交
605 606 607 608 609 610 611 612 613 614
		return;
	}
}

#define DO_ERROR(trapnr, signr, str, name) \
asmlinkage void do_##name(struct pt_regs * regs, long error_code) \
{ \
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr) \
							== NOTIFY_STOP) \
		return; \
615
	conditional_sti(regs);						\
L
Linus Torvalds 已提交
616 617 618 619 620 621 622 623 624 625 626 627 628 629
	do_trap(trapnr, signr, str, regs, error_code, NULL); \
}

#define DO_ERROR_INFO(trapnr, signr, str, name, sicode, siaddr) \
asmlinkage void do_##name(struct pt_regs * regs, long error_code) \
{ \
	siginfo_t info; \
	info.si_signo = signr; \
	info.si_errno = 0; \
	info.si_code = sicode; \
	info.si_addr = (void __user *)siaddr; \
	if (notify_die(DIE_TRAP, str, regs, error_code, trapnr, signr) \
							== NOTIFY_STOP) \
		return; \
630
	conditional_sti(regs);						\
L
Linus Torvalds 已提交
631 632 633 634 635 636
	do_trap(trapnr, signr, str, regs, error_code, &info); \
}

DO_ERROR_INFO( 0, SIGFPE,  "divide error", divide_error, FPE_INTDIV, regs->rip)
DO_ERROR( 4, SIGSEGV, "overflow", overflow)
DO_ERROR( 5, SIGSEGV, "bounds", bounds)
637
DO_ERROR_INFO( 6, SIGILL,  "invalid opcode", invalid_op, ILL_ILLOPN, regs->rip)
L
Linus Torvalds 已提交
638 639 640 641 642 643
DO_ERROR( 7, SIGSEGV, "device not available", device_not_available)
DO_ERROR( 9, SIGFPE,  "coprocessor segment overrun", coprocessor_segment_overrun)
DO_ERROR(10, SIGSEGV, "invalid TSS", invalid_TSS)
DO_ERROR(11, SIGBUS,  "segment not present", segment_not_present)
DO_ERROR_INFO(17, SIGBUS, "alignment check", alignment_check, BUS_ADRALN, 0)
DO_ERROR(18, SIGSEGV, "reserved", reserved)
644 645 646 647 648 649 650 651 652 653 654

/* Runs on IST stack */
asmlinkage void do_stack_segment(struct pt_regs *regs, long error_code)
{
	if (notify_die(DIE_TRAP, "stack segment", regs, error_code,
			12, SIGBUS) == NOTIFY_STOP)
		return;
	preempt_conditional_sti(regs);
	do_trap(12, SIGBUS, "stack segment", regs, error_code, NULL);
	preempt_conditional_cli(regs);
}
655 656 657 658 659 660 661 662 663 664 665 666 667 668 669 670 671

asmlinkage void do_double_fault(struct pt_regs * regs, long error_code)
{
	static const char str[] = "double fault";
	struct task_struct *tsk = current;

	/* Return not checked because double check cannot be ignored */
	notify_die(DIE_TRAP, str, regs, error_code, 8, SIGSEGV);

	tsk->thread.error_code = error_code;
	tsk->thread.trap_no = 8;

	/* This is always a kernel trap and never fixable (and thus must
	   never return). */
	for (;;)
		die(str, regs, error_code);
}
L
Linus Torvalds 已提交
672

673 674
asmlinkage void __kprobes do_general_protection(struct pt_regs * regs,
						long error_code)
L
Linus Torvalds 已提交
675
{
676 677
	struct task_struct *tsk = current;

L
Linus Torvalds 已提交
678 679
	conditional_sti(regs);

680
	if (user_mode(regs)) {
681 682 683
		tsk->thread.error_code = error_code;
		tsk->thread.trap_no = 13;

L
Linus Torvalds 已提交
684 685 686 687
		if (exception_trace && unhandled_signal(tsk, SIGSEGV))
			printk(KERN_INFO
		       "%s[%d] general protection rip:%lx rsp:%lx error:%lx\n",
			       tsk->comm, tsk->pid,
688
			       regs->rip, regs->rsp, error_code); 
L
Linus Torvalds 已提交
689 690 691 692 693 694 695 696 697 698 699 700 701

		force_sig(SIGSEGV, tsk);
		return;
	} 

	/* kernel gp */
	{
		const struct exception_table_entry *fixup;
		fixup = search_exception_tables(regs->rip);
		if (fixup) {
			regs->rip = fixup->fixup;
			return;
		}
702 703 704

		tsk->thread.error_code = error_code;
		tsk->thread.trap_no = 13;
L
Linus Torvalds 已提交
705 706 707 708 709 710 711
		if (notify_die(DIE_GPF, "general protection fault", regs,
					error_code, 13, SIGSEGV) == NOTIFY_STOP)
			return;
		die("general protection fault", regs, error_code);
	}
}

712 713
static __kprobes void
mem_parity_error(unsigned char reason, struct pt_regs * regs)
L
Linus Torvalds 已提交
714
{
715 716
	printk(KERN_EMERG "Uhhuh. NMI received for unknown reason %02x.\n",
		reason);
717
	printk(KERN_EMERG "You have some hardware problem, likely on the PCI bus.\n");
718

719
	if (panic_on_unrecovered_nmi)
720 721 722
		panic("NMI: Not continuing");

	printk(KERN_EMERG "Dazed and confused, but trying to continue\n");
L
Linus Torvalds 已提交
723 724 725 726 727 728

	/* Clear and disable the memory parity error line. */
	reason = (reason & 0xf) | 4;
	outb(reason, 0x61);
}

729 730
static __kprobes void
io_check_error(unsigned char reason, struct pt_regs * regs)
L
Linus Torvalds 已提交
731 732 733 734 735 736 737 738 739 740 741 742
{
	printk("NMI: IOCK error (debug interrupt?)\n");
	show_registers(regs);

	/* Re-enable the IOCK line, wait for a few seconds */
	reason = (reason & 0xf) | 8;
	outb(reason, 0x61);
	mdelay(2000);
	reason &= ~8;
	outb(reason, 0x61);
}

743 744
static __kprobes void
unknown_nmi_error(unsigned char reason, struct pt_regs * regs)
745 746 747 748
{
	printk(KERN_EMERG "Uhhuh. NMI received for unknown reason %02x.\n",
		reason);
	printk(KERN_EMERG "Do you have a strange power saving mode enabled?\n");
749 750

	if (panic_on_unrecovered_nmi)
751
		panic("NMI: Not continuing");
752

753
	printk(KERN_EMERG "Dazed and confused, but trying to continue\n");
L
Linus Torvalds 已提交
754 755
}

756 757
/* Runs on IST stack. This code must keep interrupts off all the time.
   Nested NMIs are prevented by the CPU. */
758
asmlinkage __kprobes void default_do_nmi(struct pt_regs *regs)
L
Linus Torvalds 已提交
759 760
{
	unsigned char reason = 0;
A
Ashok Raj 已提交
761 762 763
	int cpu;

	cpu = smp_processor_id();
L
Linus Torvalds 已提交
764 765

	/* Only the BSP gets external NMIs from the system.  */
A
Ashok Raj 已提交
766
	if (!cpu)
L
Linus Torvalds 已提交
767 768 769
		reason = get_nmi_reason();

	if (!(reason & 0xc0)) {
770
		if (notify_die(DIE_NMI_IPI, "nmi_ipi", regs, reason, 2, SIGINT)
L
Linus Torvalds 已提交
771 772 773 774 775 776
								== NOTIFY_STOP)
			return;
		/*
		 * Ok, so this is none of the documented NMI sources,
		 * so it must be the NMI watchdog.
		 */
777
		if (nmi_watchdog_tick(regs,reason))
L
Linus Torvalds 已提交
778
			return;
779 780
		if (notify_die(DIE_NMI_POST, "nmi_post", regs, reason, 2, 0)
								== NOTIFY_STOP)
781
			return;
782 783 784
		if (!do_nmi_callback(regs,cpu))
			unknown_nmi_error(reason, regs);

L
Linus Torvalds 已提交
785 786
		return;
	}
787
	if (notify_die(DIE_NMI, "nmi", regs, reason, 2, SIGINT) == NOTIFY_STOP)
L
Linus Torvalds 已提交
788 789 790 791 792 793 794 795 796 797
		return; 

	/* AK: following checks seem to be broken on modern chipsets. FIXME */

	if (reason & 0x80)
		mem_parity_error(reason, regs);
	if (reason & 0x40)
		io_check_error(reason, regs);
}

798
/* runs on IST stack. */
799
asmlinkage void __kprobes do_int3(struct pt_regs * regs, long error_code)
L
Linus Torvalds 已提交
800 801 802 803
{
	if (notify_die(DIE_INT3, "int3", regs, error_code, 3, SIGTRAP) == NOTIFY_STOP) {
		return;
	}
804
	preempt_conditional_sti(regs);
L
Linus Torvalds 已提交
805
	do_trap(3, SIGTRAP, "int3", regs, error_code, NULL);
806
	preempt_conditional_cli(regs);
L
Linus Torvalds 已提交
807 808
}

809 810 811
/* Help handler running on IST stack to switch back to user stack
   for scheduling or signal handling. The actual stack switch is done in
   entry.S */
812
asmlinkage __kprobes struct pt_regs *sync_regs(struct pt_regs *eregs)
813 814 815 816 817 818
{
	struct pt_regs *regs = eregs;
	/* Did already sync */
	if (eregs == (struct pt_regs *)eregs->rsp)
		;
	/* Exception from user space */
819
	else if (user_mode(eregs))
A
Al Viro 已提交
820
		regs = task_pt_regs(current);
821 822 823 824 825 826 827 828 829
	/* Exception from kernel and interrupts are enabled. Move to
 	   kernel process stack. */
	else if (eregs->eflags & X86_EFLAGS_IF)
		regs = (struct pt_regs *)(eregs->rsp -= sizeof(struct pt_regs));
	if (eregs != regs)
		*regs = *eregs;
	return regs;
}

L
Linus Torvalds 已提交
830
/* runs on IST stack. */
831 832
asmlinkage void __kprobes do_debug(struct pt_regs * regs,
				   unsigned long error_code)
L
Linus Torvalds 已提交
833 834 835 836 837
{
	unsigned long condition;
	struct task_struct *tsk = current;
	siginfo_t info;

838
	get_debugreg(condition, 6);
L
Linus Torvalds 已提交
839 840

	if (notify_die(DIE_DEBUG, "debug", regs, condition, error_code,
841
						SIGTRAP) == NOTIFY_STOP)
842
		return;
843

844
	preempt_conditional_sti(regs);
L
Linus Torvalds 已提交
845 846 847 848 849 850 851 852 853 854 855

	/* Mask out spurious debug traps due to lazy DR7 setting */
	if (condition & (DR_TRAP0|DR_TRAP1|DR_TRAP2|DR_TRAP3)) {
		if (!tsk->thread.debugreg7) { 
			goto clear_dr7;
		}
	}

	tsk->thread.debugreg6 = condition;

	/* Mask out spurious TF errors due to lazy TF clearing */
856
	if (condition & DR_STEP) {
L
Linus Torvalds 已提交
857 858 859 860 861 862 863 864 865
		/*
		 * The TF error should be masked out only if the current
		 * process is not traced and if the TRAP flag has been set
		 * previously by a tracing process (condition detected by
		 * the PT_DTRACE flag); remember that the i386 TRAP flag
		 * can be modified by the process itself in user mode,
		 * allowing programs to debug themselves without the ptrace()
		 * interface.
		 */
866
                if (!user_mode(regs))
L
Linus Torvalds 已提交
867
                       goto clear_TF_reenable;
868 869 870 871 872 873 874 875
		/*
		 * Was the TF flag set by a debugger? If so, clear it now,
		 * so that register information is correct.
		 */
		if (tsk->ptrace & PT_DTRACE) {
			regs->eflags &= ~TF_MASK;
			tsk->ptrace &= ~PT_DTRACE;
		}
L
Linus Torvalds 已提交
876 877 878 879 880 881 882 883
	}

	/* Ok, finally something we can handle */
	tsk->thread.trap_no = 1;
	tsk->thread.error_code = error_code;
	info.si_signo = SIGTRAP;
	info.si_errno = 0;
	info.si_code = TRAP_BRKPT;
884 885
	info.si_addr = user_mode(regs) ? (void __user *)regs->rip : NULL;
	force_sig_info(SIGTRAP, &info, tsk);
L
Linus Torvalds 已提交
886 887

clear_dr7:
888
	set_debugreg(0UL, 7);
889
	preempt_conditional_cli(regs);
890
	return;
L
Linus Torvalds 已提交
891 892 893 894

clear_TF_reenable:
	set_tsk_thread_flag(tsk, TIF_SINGLESTEP);
	regs->eflags &= ~TF_MASK;
895
	preempt_conditional_cli(regs);
L
Linus Torvalds 已提交
896 897
}

898
static int kernel_math_error(struct pt_regs *regs, const char *str, int trapnr)
L
Linus Torvalds 已提交
899 900 901 902 903 904 905
{
	const struct exception_table_entry *fixup;
	fixup = search_exception_tables(regs->rip);
	if (fixup) {
		regs->rip = fixup->fixup;
		return 1;
	}
906
	notify_die(DIE_GPF, str, regs, 0, trapnr, SIGFPE);
907
	/* Illegal floating point operation in the kernel */
908
	current->thread.trap_no = trapnr;
L
Linus Torvalds 已提交
909 910 911 912 913 914 915 916 917 918 919 920 921 922 923 924 925
	die(str, regs, 0);
	return 0;
}

/*
 * Note that we play around with the 'TS' bit in an attempt to get
 * the correct behaviour even in the presence of the asynchronous
 * IRQ13 behaviour
 */
asmlinkage void do_coprocessor_error(struct pt_regs *regs)
{
	void __user *rip = (void __user *)(regs->rip);
	struct task_struct * task;
	siginfo_t info;
	unsigned short cwd, swd;

	conditional_sti(regs);
926
	if (!user_mode(regs) &&
927
	    kernel_math_error(regs, "kernel x87 math error", 16))
L
Linus Torvalds 已提交
928 929 930 931 932 933 934 935 936 937 938 939 940 941 942 943 944 945 946 947 948 949 950 951 952
		return;

	/*
	 * Save the info for the exception handler and clear the error.
	 */
	task = current;
	save_init_fpu(task);
	task->thread.trap_no = 16;
	task->thread.error_code = 0;
	info.si_signo = SIGFPE;
	info.si_errno = 0;
	info.si_code = __SI_FAULT;
	info.si_addr = rip;
	/*
	 * (~cwd & swd) will mask out exceptions that are not set to unmasked
	 * status.  0x3f is the exception bits in these regs, 0x200 is the
	 * C1 reg you need in case of a stack fault, 0x040 is the stack
	 * fault bit.  We should only be taking one exception at a time,
	 * so if this combination doesn't produce any single exception,
	 * then we have a bad program that isn't synchronizing its FPU usage
	 * and it will suffer the consequences since we won't be able to
	 * fully reproduce the context of the exception
	 */
	cwd = get_fpu_cwd(task);
	swd = get_fpu_swd(task);
953
	switch (swd & ~cwd & 0x3f) {
L
Linus Torvalds 已提交
954 955 956 957
		case 0x000:
		default:
			break;
		case 0x001: /* Invalid Op */
958 959 960 961 962
			/*
			 * swd & 0x240 == 0x040: Stack Underflow
			 * swd & 0x240 == 0x240: Stack Overflow
			 * User must clear the SF bit (0x40) if set
			 */
L
Linus Torvalds 已提交
963 964 965 966 967 968 969 970 971 972 973 974 975 976 977 978 979 980 981 982 983 984 985 986 987 988 989 990 991 992 993 994
			info.si_code = FPE_FLTINV;
			break;
		case 0x002: /* Denormalize */
		case 0x010: /* Underflow */
			info.si_code = FPE_FLTUND;
			break;
		case 0x004: /* Zero Divide */
			info.si_code = FPE_FLTDIV;
			break;
		case 0x008: /* Overflow */
			info.si_code = FPE_FLTOVF;
			break;
		case 0x020: /* Precision */
			info.si_code = FPE_FLTRES;
			break;
	}
	force_sig_info(SIGFPE, &info, task);
}

asmlinkage void bad_intr(void)
{
	printk("bad interrupt"); 
}

asmlinkage void do_simd_coprocessor_error(struct pt_regs *regs)
{
	void __user *rip = (void __user *)(regs->rip);
	struct task_struct * task;
	siginfo_t info;
	unsigned short mxcsr;

	conditional_sti(regs);
995
	if (!user_mode(regs) &&
996
        	kernel_math_error(regs, "kernel simd math error", 19))
L
Linus Torvalds 已提交
997 998 999 1000 1001 1002 1003 1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016 1017 1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043 1044 1045
		return;

	/*
	 * Save the info for the exception handler and clear the error.
	 */
	task = current;
	save_init_fpu(task);
	task->thread.trap_no = 19;
	task->thread.error_code = 0;
	info.si_signo = SIGFPE;
	info.si_errno = 0;
	info.si_code = __SI_FAULT;
	info.si_addr = rip;
	/*
	 * The SIMD FPU exceptions are handled a little differently, as there
	 * is only a single status/control register.  Thus, to determine which
	 * unmasked exception was caught we must mask the exception mask bits
	 * at 0x1f80, and then use these to mask the exception bits at 0x3f.
	 */
	mxcsr = get_fpu_mxcsr(task);
	switch (~((mxcsr & 0x1f80) >> 7) & (mxcsr & 0x3f)) {
		case 0x000:
		default:
			break;
		case 0x001: /* Invalid Op */
			info.si_code = FPE_FLTINV;
			break;
		case 0x002: /* Denormalize */
		case 0x010: /* Underflow */
			info.si_code = FPE_FLTUND;
			break;
		case 0x004: /* Zero Divide */
			info.si_code = FPE_FLTDIV;
			break;
		case 0x008: /* Overflow */
			info.si_code = FPE_FLTOVF;
			break;
		case 0x020: /* Precision */
			info.si_code = FPE_FLTRES;
			break;
	}
	force_sig_info(SIGFPE, &info, task);
}

asmlinkage void do_spurious_interrupt_bug(struct pt_regs * regs)
{
}

asmlinkage void __attribute__((weak)) smp_thermal_interrupt(void)
1046 1047 1048 1049
{
}

asmlinkage void __attribute__((weak)) mce_threshold_interrupt(void)
L
Linus Torvalds 已提交
1050 1051 1052 1053 1054 1055 1056 1057 1058 1059 1060 1061 1062 1063 1064 1065 1066 1067
{
}

/*
 *  'math_state_restore()' saves the current math information in the
 * old math state array, and gets the new ones from the current task
 *
 * Careful.. There are problems with IBM-designed IRQ13 behaviour.
 * Don't touch unless you *really* know how it works.
 */
asmlinkage void math_state_restore(void)
{
	struct task_struct *me = current;
	clts();			/* Allow maths ops (or we recurse) */

	if (!used_math())
		init_fpu(me);
	restore_fpu_checking(&me->thread.i387.fxsave);
A
Al Viro 已提交
1068
	task_thread_info(me)->status |= TS_USEDFPU;
1069
	me->fpu_counter++;
L
Linus Torvalds 已提交
1070 1071 1072 1073 1074 1075 1076
}

void __init trap_init(void)
{
	set_intr_gate(0,&divide_error);
	set_intr_gate_ist(1,&debug,DEBUG_STACK);
	set_intr_gate_ist(2,&nmi,NMI_STACK);
1077
 	set_system_gate_ist(3,&int3,DEBUG_STACK); /* int3 can be called from all */
1078 1079
	set_system_gate(4,&overflow);	/* int4 can be called from all */
	set_intr_gate(5,&bounds);
L
Linus Torvalds 已提交
1080 1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093 1094 1095 1096 1097 1098 1099 1100 1101 1102 1103 1104 1105 1106 1107
	set_intr_gate(6,&invalid_op);
	set_intr_gate(7,&device_not_available);
	set_intr_gate_ist(8,&double_fault, DOUBLEFAULT_STACK);
	set_intr_gate(9,&coprocessor_segment_overrun);
	set_intr_gate(10,&invalid_TSS);
	set_intr_gate(11,&segment_not_present);
	set_intr_gate_ist(12,&stack_segment,STACKFAULT_STACK);
	set_intr_gate(13,&general_protection);
	set_intr_gate(14,&page_fault);
	set_intr_gate(15,&spurious_interrupt_bug);
	set_intr_gate(16,&coprocessor_error);
	set_intr_gate(17,&alignment_check);
#ifdef CONFIG_X86_MCE
	set_intr_gate_ist(18,&machine_check, MCE_STACK); 
#endif
	set_intr_gate(19,&simd_coprocessor_error);

#ifdef CONFIG_IA32_EMULATION
	set_system_gate(IA32_SYSCALL_VECTOR, ia32_syscall);
#endif
       
	/*
	 * Should be a barrier for any external CPU state.
	 */
	cpu_init();
}


1108
static int __init oops_setup(char *s)
L
Linus Torvalds 已提交
1109
{ 
1110 1111 1112 1113 1114
	if (!s)
		return -EINVAL;
	if (!strcmp(s, "panic"))
		panic_on_oops = 1;
	return 0;
L
Linus Torvalds 已提交
1115
} 
1116
early_param("oops", oops_setup);
L
Linus Torvalds 已提交
1117 1118 1119

static int __init kstack_setup(char *s)
{
1120 1121
	if (!s)
		return -EINVAL;
L
Linus Torvalds 已提交
1122
	kstack_depth_to_print = simple_strtoul(s,NULL,0);
1123
	return 0;
L
Linus Torvalds 已提交
1124
}
1125
early_param("kstack", kstack_setup);