entry_64.S 37 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536153715381539
  1. /*
  2. * linux/arch/x86_64/entry.S
  3. *
  4. * Copyright (C) 1991, 1992 Linus Torvalds
  5. * Copyright (C) 2000, 2001, 2002 Andi Kleen SuSE Labs
  6. * Copyright (C) 2000 Pavel Machek <pavel@suse.cz>
  7. */
  8. /*
  9. * entry.S contains the system-call and fault low-level handling routines.
  10. *
  11. * NOTE: This code handles signal-recognition, which happens every time
  12. * after an interrupt and after each system call.
  13. *
  14. * Normal syscalls and interrupts don't save a full stack frame, this is
  15. * only done for syscall tracing, signals or fork/exec et.al.
  16. *
  17. * A note on terminology:
  18. * - top of stack: Architecture defined interrupt frame from SS to RIP
  19. * at the top of the kernel process stack.
  20. * - partial stack frame: partially saved registers up to R11.
  21. * - full stack frame: Like partial stack frame, but all register saved.
  22. *
  23. * Some macro usage:
  24. * - CFI macros are used to generate dwarf2 unwind information for better
  25. * backtraces. They don't change any code.
  26. * - SAVE_ALL/RESTORE_ALL - Save/restore all registers
  27. * - SAVE_ARGS/RESTORE_ARGS - Save/restore registers that C functions modify.
  28. * There are unfortunately lots of special cases where some registers
  29. * not touched. The macro is a big mess that should be cleaned up.
  30. * - SAVE_REST/RESTORE_REST - Handle the registers not saved by SAVE_ARGS.
  31. * Gives a full stack frame.
  32. * - ENTRY/END Define functions in the symbol table.
  33. * - FIXUP_TOP_OF_STACK/RESTORE_TOP_OF_STACK - Fix up the hardware stack
  34. * frame that is otherwise undefined after a SYSCALL
  35. * - TRACE_IRQ_* - Trace hard interrupt state for lock debugging.
  36. * - errorentry/paranoidentry/zeroentry - Define exception entry points.
  37. */
  38. #include <linux/linkage.h>
  39. #include <asm/segment.h>
  40. #include <asm/cache.h>
  41. #include <asm/errno.h>
  42. #include <asm/dwarf2.h>
  43. #include <asm/calling.h>
  44. #include <asm/asm-offsets.h>
  45. #include <asm/msr.h>
  46. #include <asm/unistd.h>
  47. #include <asm/thread_info.h>
  48. #include <asm/hw_irq.h>
  49. #include <asm/page_types.h>
  50. #include <asm/irqflags.h>
  51. #include <asm/paravirt.h>
  52. #include <asm/ftrace.h>
  53. #include <asm/percpu.h>
  54. /* Avoid __ASSEMBLER__'ifying <linux/audit.h> just for this. */
  55. #include <linux/elf-em.h>
  56. #define AUDIT_ARCH_X86_64 (EM_X86_64|__AUDIT_ARCH_64BIT|__AUDIT_ARCH_LE)
  57. #define __AUDIT_ARCH_64BIT 0x80000000
  58. #define __AUDIT_ARCH_LE 0x40000000
  59. .code64
  60. .section .entry.text, "ax"
  61. #ifdef CONFIG_FUNCTION_TRACER
  62. #ifdef CONFIG_DYNAMIC_FTRACE
  63. ENTRY(mcount)
  64. retq
  65. END(mcount)
  66. ENTRY(ftrace_caller)
  67. cmpl $0, function_trace_stop
  68. jne ftrace_stub
  69. MCOUNT_SAVE_FRAME
  70. movq 0x38(%rsp), %rdi
  71. movq 8(%rbp), %rsi
  72. subq $MCOUNT_INSN_SIZE, %rdi
  73. GLOBAL(ftrace_call)
  74. call ftrace_stub
  75. MCOUNT_RESTORE_FRAME
  76. #ifdef CONFIG_FUNCTION_GRAPH_TRACER
  77. GLOBAL(ftrace_graph_call)
  78. jmp ftrace_stub
  79. #endif
  80. GLOBAL(ftrace_stub)
  81. retq
  82. END(ftrace_caller)
  83. #else /* ! CONFIG_DYNAMIC_FTRACE */
  84. ENTRY(mcount)
  85. cmpl $0, function_trace_stop
  86. jne ftrace_stub
  87. cmpq $ftrace_stub, ftrace_trace_function
  88. jnz trace
  89. #ifdef CONFIG_FUNCTION_GRAPH_TRACER
  90. cmpq $ftrace_stub, ftrace_graph_return
  91. jnz ftrace_graph_caller
  92. cmpq $ftrace_graph_entry_stub, ftrace_graph_entry
  93. jnz ftrace_graph_caller
  94. #endif
  95. GLOBAL(ftrace_stub)
  96. retq
  97. trace:
  98. MCOUNT_SAVE_FRAME
  99. movq 0x38(%rsp), %rdi
  100. movq 8(%rbp), %rsi
  101. subq $MCOUNT_INSN_SIZE, %rdi
  102. call *ftrace_trace_function
  103. MCOUNT_RESTORE_FRAME
  104. jmp ftrace_stub
  105. END(mcount)
  106. #endif /* CONFIG_DYNAMIC_FTRACE */
  107. #endif /* CONFIG_FUNCTION_TRACER */
  108. #ifdef CONFIG_FUNCTION_GRAPH_TRACER
  109. ENTRY(ftrace_graph_caller)
  110. cmpl $0, function_trace_stop
  111. jne ftrace_stub
  112. MCOUNT_SAVE_FRAME
  113. leaq 8(%rbp), %rdi
  114. movq 0x38(%rsp), %rsi
  115. movq (%rbp), %rdx
  116. subq $MCOUNT_INSN_SIZE, %rsi
  117. call prepare_ftrace_return
  118. MCOUNT_RESTORE_FRAME
  119. retq
  120. END(ftrace_graph_caller)
  121. GLOBAL(return_to_handler)
  122. subq $24, %rsp
  123. /* Save the return values */
  124. movq %rax, (%rsp)
  125. movq %rdx, 8(%rsp)
  126. movq %rbp, %rdi
  127. call ftrace_return_to_handler
  128. movq %rax, %rdi
  129. movq 8(%rsp), %rdx
  130. movq (%rsp), %rax
  131. addq $24, %rsp
  132. jmp *%rdi
  133. #endif
  134. #ifndef CONFIG_PREEMPT
  135. #define retint_kernel retint_restore_args
  136. #endif
  137. #ifdef CONFIG_PARAVIRT
  138. ENTRY(native_usergs_sysret64)
  139. swapgs
  140. sysretq
  141. ENDPROC(native_usergs_sysret64)
  142. #endif /* CONFIG_PARAVIRT */
  143. .macro TRACE_IRQS_IRETQ offset=ARGOFFSET
  144. #ifdef CONFIG_TRACE_IRQFLAGS
  145. bt $9,EFLAGS-\offset(%rsp) /* interrupts off? */
  146. jnc 1f
  147. TRACE_IRQS_ON
  148. 1:
  149. #endif
  150. .endm
  151. /*
  152. * C code is not supposed to know about undefined top of stack. Every time
  153. * a C function with an pt_regs argument is called from the SYSCALL based
  154. * fast path FIXUP_TOP_OF_STACK is needed.
  155. * RESTORE_TOP_OF_STACK syncs the syscall state after any possible ptregs
  156. * manipulation.
  157. */
  158. /* %rsp:at FRAMEEND */
  159. .macro FIXUP_TOP_OF_STACK tmp offset=0
  160. movq PER_CPU_VAR(old_rsp),\tmp
  161. movq \tmp,RSP+\offset(%rsp)
  162. movq $__USER_DS,SS+\offset(%rsp)
  163. movq $__USER_CS,CS+\offset(%rsp)
  164. movq $-1,RCX+\offset(%rsp)
  165. movq R11+\offset(%rsp),\tmp /* get eflags */
  166. movq \tmp,EFLAGS+\offset(%rsp)
  167. .endm
  168. .macro RESTORE_TOP_OF_STACK tmp offset=0
  169. movq RSP+\offset(%rsp),\tmp
  170. movq \tmp,PER_CPU_VAR(old_rsp)
  171. movq EFLAGS+\offset(%rsp),\tmp
  172. movq \tmp,R11+\offset(%rsp)
  173. .endm
  174. .macro FAKE_STACK_FRAME child_rip
  175. /* push in order ss, rsp, eflags, cs, rip */
  176. xorl %eax, %eax
  177. pushq_cfi $__KERNEL_DS /* ss */
  178. /*CFI_REL_OFFSET ss,0*/
  179. pushq_cfi %rax /* rsp */
  180. CFI_REL_OFFSET rsp,0
  181. pushq_cfi $X86_EFLAGS_IF /* eflags - interrupts on */
  182. /*CFI_REL_OFFSET rflags,0*/
  183. pushq_cfi $__KERNEL_CS /* cs */
  184. /*CFI_REL_OFFSET cs,0*/
  185. pushq_cfi \child_rip /* rip */
  186. CFI_REL_OFFSET rip,0
  187. pushq_cfi %rax /* orig rax */
  188. .endm
  189. .macro UNFAKE_STACK_FRAME
  190. addq $8*6, %rsp
  191. CFI_ADJUST_CFA_OFFSET -(6*8)
  192. .endm
  193. /*
  194. * initial frame state for interrupts (and exceptions without error code)
  195. */
  196. .macro EMPTY_FRAME start=1 offset=0
  197. .if \start
  198. CFI_STARTPROC simple
  199. CFI_SIGNAL_FRAME
  200. CFI_DEF_CFA rsp,8+\offset
  201. .else
  202. CFI_DEF_CFA_OFFSET 8+\offset
  203. .endif
  204. .endm
  205. /*
  206. * initial frame state for interrupts (and exceptions without error code)
  207. */
  208. .macro INTR_FRAME start=1 offset=0
  209. EMPTY_FRAME \start, SS+8+\offset-RIP
  210. /*CFI_REL_OFFSET ss, SS+\offset-RIP*/
  211. CFI_REL_OFFSET rsp, RSP+\offset-RIP
  212. /*CFI_REL_OFFSET rflags, EFLAGS+\offset-RIP*/
  213. /*CFI_REL_OFFSET cs, CS+\offset-RIP*/
  214. CFI_REL_OFFSET rip, RIP+\offset-RIP
  215. .endm
  216. /*
  217. * initial frame state for exceptions with error code (and interrupts
  218. * with vector already pushed)
  219. */
  220. .macro XCPT_FRAME start=1 offset=0
  221. INTR_FRAME \start, RIP+\offset-ORIG_RAX
  222. /*CFI_REL_OFFSET orig_rax, ORIG_RAX-ORIG_RAX*/
  223. .endm
  224. /*
  225. * frame that enables calling into C.
  226. */
  227. .macro PARTIAL_FRAME start=1 offset=0
  228. XCPT_FRAME \start, ORIG_RAX+\offset-ARGOFFSET
  229. CFI_REL_OFFSET rdi, RDI+\offset-ARGOFFSET
  230. CFI_REL_OFFSET rsi, RSI+\offset-ARGOFFSET
  231. CFI_REL_OFFSET rdx, RDX+\offset-ARGOFFSET
  232. CFI_REL_OFFSET rcx, RCX+\offset-ARGOFFSET
  233. CFI_REL_OFFSET rax, RAX+\offset-ARGOFFSET
  234. CFI_REL_OFFSET r8, R8+\offset-ARGOFFSET
  235. CFI_REL_OFFSET r9, R9+\offset-ARGOFFSET
  236. CFI_REL_OFFSET r10, R10+\offset-ARGOFFSET
  237. CFI_REL_OFFSET r11, R11+\offset-ARGOFFSET
  238. .endm
  239. /*
  240. * frame that enables passing a complete pt_regs to a C function.
  241. */
  242. .macro DEFAULT_FRAME start=1 offset=0
  243. PARTIAL_FRAME \start, R11+\offset-R15
  244. CFI_REL_OFFSET rbx, RBX+\offset
  245. CFI_REL_OFFSET rbp, RBP+\offset
  246. CFI_REL_OFFSET r12, R12+\offset
  247. CFI_REL_OFFSET r13, R13+\offset
  248. CFI_REL_OFFSET r14, R14+\offset
  249. CFI_REL_OFFSET r15, R15+\offset
  250. .endm
  251. /* save partial stack frame */
  252. .macro SAVE_ARGS_IRQ
  253. cld
  254. /* start from rbp in pt_regs and jump over */
  255. movq_cfi rdi, RDI-RBP
  256. movq_cfi rsi, RSI-RBP
  257. movq_cfi rdx, RDX-RBP
  258. movq_cfi rcx, RCX-RBP
  259. movq_cfi rax, RAX-RBP
  260. movq_cfi r8, R8-RBP
  261. movq_cfi r9, R9-RBP
  262. movq_cfi r10, R10-RBP
  263. movq_cfi r11, R11-RBP
  264. movq_cfi rbp, 0 /* push %rbp */
  265. movq %rsp, %rbp
  266. leaq -RBP(%rsp),%rdi /* arg1 for handler */
  267. testl $3, CS(%rdi)
  268. je 1f
  269. SWAPGS
  270. /*
  271. * irq_count is used to check if a CPU is already on an interrupt stack
  272. * or not. While this is essentially redundant with preempt_count it is
  273. * a little cheaper to use a separate counter in the PDA (short of
  274. * moving irq_enter into assembly, which would be too much work)
  275. */
  276. 1: incl PER_CPU_VAR(irq_count)
  277. jne 2f
  278. mov PER_CPU_VAR(irq_stack_ptr),%rsp
  279. EMPTY_FRAME 0
  280. /*
  281. * We entered an interrupt context - irqs are off:
  282. */
  283. 2: TRACE_IRQS_OFF
  284. .endm
  285. ENTRY(save_rest)
  286. PARTIAL_FRAME 1 REST_SKIP+8
  287. movq 5*8+16(%rsp), %r11 /* save return address */
  288. movq_cfi rbx, RBX+16
  289. movq_cfi rbp, RBP+16
  290. movq_cfi r12, R12+16
  291. movq_cfi r13, R13+16
  292. movq_cfi r14, R14+16
  293. movq_cfi r15, R15+16
  294. movq %r11, 8(%rsp) /* return address */
  295. FIXUP_TOP_OF_STACK %r11, 16
  296. ret
  297. CFI_ENDPROC
  298. END(save_rest)
  299. /* save complete stack frame */
  300. .pushsection .kprobes.text, "ax"
  301. ENTRY(save_paranoid)
  302. XCPT_FRAME 1 RDI+8
  303. cld
  304. movq_cfi rdi, RDI+8
  305. movq_cfi rsi, RSI+8
  306. movq_cfi rdx, RDX+8
  307. movq_cfi rcx, RCX+8
  308. movq_cfi rax, RAX+8
  309. movq_cfi r8, R8+8
  310. movq_cfi r9, R9+8
  311. movq_cfi r10, R10+8
  312. movq_cfi r11, R11+8
  313. movq_cfi rbx, RBX+8
  314. movq_cfi rbp, RBP+8
  315. movq_cfi r12, R12+8
  316. movq_cfi r13, R13+8
  317. movq_cfi r14, R14+8
  318. movq_cfi r15, R15+8
  319. movl $1,%ebx
  320. movl $MSR_GS_BASE,%ecx
  321. rdmsr
  322. testl %edx,%edx
  323. js 1f /* negative -> in kernel */
  324. SWAPGS
  325. xorl %ebx,%ebx
  326. 1: ret
  327. CFI_ENDPROC
  328. END(save_paranoid)
  329. .popsection
  330. /*
  331. * A newly forked process directly context switches into this address.
  332. *
  333. * rdi: prev task we switched from
  334. */
  335. ENTRY(ret_from_fork)
  336. DEFAULT_FRAME
  337. LOCK ; btr $TIF_FORK,TI_flags(%r8)
  338. pushq_cfi kernel_eflags(%rip)
  339. popfq_cfi # reset kernel eflags
  340. call schedule_tail # rdi: 'prev' task parameter
  341. GET_THREAD_INFO(%rcx)
  342. RESTORE_REST
  343. testl $3, CS-ARGOFFSET(%rsp) # from kernel_thread?
  344. je int_ret_from_sys_call
  345. testl $_TIF_IA32, TI_flags(%rcx) # 32-bit compat task needs IRET
  346. jnz int_ret_from_sys_call
  347. RESTORE_TOP_OF_STACK %rdi, -ARGOFFSET
  348. jmp ret_from_sys_call # go to the SYSRET fastpath
  349. CFI_ENDPROC
  350. END(ret_from_fork)
  351. /*
  352. * System call entry. Up to 6 arguments in registers are supported.
  353. *
  354. * SYSCALL does not save anything on the stack and does not change the
  355. * stack pointer.
  356. */
  357. /*
  358. * Register setup:
  359. * rax system call number
  360. * rdi arg0
  361. * rcx return address for syscall/sysret, C arg3
  362. * rsi arg1
  363. * rdx arg2
  364. * r10 arg3 (--> moved to rcx for C)
  365. * r8 arg4
  366. * r9 arg5
  367. * r11 eflags for syscall/sysret, temporary for C
  368. * r12-r15,rbp,rbx saved by C code, not touched.
  369. *
  370. * Interrupts are off on entry.
  371. * Only called from user space.
  372. *
  373. * XXX if we had a free scratch register we could save the RSP into the stack frame
  374. * and report it properly in ps. Unfortunately we haven't.
  375. *
  376. * When user can change the frames always force IRET. That is because
  377. * it deals with uncanonical addresses better. SYSRET has trouble
  378. * with them due to bugs in both AMD and Intel CPUs.
  379. */
  380. ENTRY(system_call)
  381. CFI_STARTPROC simple
  382. CFI_SIGNAL_FRAME
  383. CFI_DEF_CFA rsp,KERNEL_STACK_OFFSET
  384. CFI_REGISTER rip,rcx
  385. /*CFI_REGISTER rflags,r11*/
  386. SWAPGS_UNSAFE_STACK
  387. /*
  388. * A hypervisor implementation might want to use a label
  389. * after the swapgs, so that it can do the swapgs
  390. * for the guest and jump here on syscall.
  391. */
  392. ENTRY(system_call_after_swapgs)
  393. movq %rsp,PER_CPU_VAR(old_rsp)
  394. movq PER_CPU_VAR(kernel_stack),%rsp
  395. /*
  396. * No need to follow this irqs off/on section - it's straight
  397. * and short:
  398. */
  399. ENABLE_INTERRUPTS(CLBR_NONE)
  400. SAVE_ARGS 8,1
  401. movq %rax,ORIG_RAX-ARGOFFSET(%rsp)
  402. movq %rcx,RIP-ARGOFFSET(%rsp)
  403. CFI_REL_OFFSET rip,RIP-ARGOFFSET
  404. GET_THREAD_INFO(%rcx)
  405. testl $_TIF_WORK_SYSCALL_ENTRY,TI_flags(%rcx)
  406. jnz tracesys
  407. system_call_fastpath:
  408. cmpq $__NR_syscall_max,%rax
  409. ja badsys
  410. movq %r10,%rcx
  411. call *sys_call_table(,%rax,8) # XXX: rip relative
  412. movq %rax,RAX-ARGOFFSET(%rsp)
  413. /*
  414. * Syscall return path ending with SYSRET (fast path)
  415. * Has incomplete stack frame and undefined top of stack.
  416. */
  417. ret_from_sys_call:
  418. movl $_TIF_ALLWORK_MASK,%edi
  419. /* edi: flagmask */
  420. sysret_check:
  421. LOCKDEP_SYS_EXIT
  422. GET_THREAD_INFO(%rcx)
  423. DISABLE_INTERRUPTS(CLBR_NONE)
  424. TRACE_IRQS_OFF
  425. movl TI_flags(%rcx),%edx
  426. andl %edi,%edx
  427. jnz sysret_careful
  428. CFI_REMEMBER_STATE
  429. /*
  430. * sysretq will re-enable interrupts:
  431. */
  432. TRACE_IRQS_ON
  433. movq RIP-ARGOFFSET(%rsp),%rcx
  434. CFI_REGISTER rip,rcx
  435. RESTORE_ARGS 0,-ARG_SKIP,1
  436. /*CFI_REGISTER rflags,r11*/
  437. movq PER_CPU_VAR(old_rsp), %rsp
  438. USERGS_SYSRET64
  439. CFI_RESTORE_STATE
  440. /* Handle reschedules */
  441. /* edx: work, edi: workmask */
  442. sysret_careful:
  443. bt $TIF_NEED_RESCHED,%edx
  444. jnc sysret_signal
  445. TRACE_IRQS_ON
  446. ENABLE_INTERRUPTS(CLBR_NONE)
  447. pushq_cfi %rdi
  448. call schedule
  449. popq_cfi %rdi
  450. jmp sysret_check
  451. /* Handle a signal */
  452. sysret_signal:
  453. TRACE_IRQS_ON
  454. ENABLE_INTERRUPTS(CLBR_NONE)
  455. #ifdef CONFIG_AUDITSYSCALL
  456. bt $TIF_SYSCALL_AUDIT,%edx
  457. jc sysret_audit
  458. #endif
  459. /*
  460. * We have a signal, or exit tracing or single-step.
  461. * These all wind up with the iret return path anyway,
  462. * so just join that path right now.
  463. */
  464. FIXUP_TOP_OF_STACK %r11, -ARGOFFSET
  465. jmp int_check_syscall_exit_work
  466. badsys:
  467. movq $-ENOSYS,RAX-ARGOFFSET(%rsp)
  468. jmp ret_from_sys_call
  469. #ifdef CONFIG_AUDITSYSCALL
  470. /*
  471. * Fast path for syscall audit without full syscall trace.
  472. * We just call audit_syscall_entry() directly, and then
  473. * jump back to the normal fast path.
  474. */
  475. auditsys:
  476. movq %r10,%r9 /* 6th arg: 4th syscall arg */
  477. movq %rdx,%r8 /* 5th arg: 3rd syscall arg */
  478. movq %rsi,%rcx /* 4th arg: 2nd syscall arg */
  479. movq %rdi,%rdx /* 3rd arg: 1st syscall arg */
  480. movq %rax,%rsi /* 2nd arg: syscall number */
  481. movl $AUDIT_ARCH_X86_64,%edi /* 1st arg: audit arch */
  482. call audit_syscall_entry
  483. LOAD_ARGS 0 /* reload call-clobbered registers */
  484. jmp system_call_fastpath
  485. /*
  486. * Return fast path for syscall audit. Call audit_syscall_exit()
  487. * directly and then jump back to the fast path with TIF_SYSCALL_AUDIT
  488. * masked off.
  489. */
  490. sysret_audit:
  491. movq RAX-ARGOFFSET(%rsp),%rsi /* second arg, syscall return value */
  492. cmpq $0,%rsi /* is it < 0? */
  493. setl %al /* 1 if so, 0 if not */
  494. movzbl %al,%edi /* zero-extend that into %edi */
  495. inc %edi /* first arg, 0->1(AUDITSC_SUCCESS), 1->2(AUDITSC_FAILURE) */
  496. call audit_syscall_exit
  497. movl $(_TIF_ALLWORK_MASK & ~_TIF_SYSCALL_AUDIT),%edi
  498. jmp sysret_check
  499. #endif /* CONFIG_AUDITSYSCALL */
  500. /* Do syscall tracing */
  501. tracesys:
  502. #ifdef CONFIG_AUDITSYSCALL
  503. testl $(_TIF_WORK_SYSCALL_ENTRY & ~_TIF_SYSCALL_AUDIT),TI_flags(%rcx)
  504. jz auditsys
  505. #endif
  506. SAVE_REST
  507. movq $-ENOSYS,RAX(%rsp) /* ptrace can change this for a bad syscall */
  508. FIXUP_TOP_OF_STACK %rdi
  509. movq %rsp,%rdi
  510. call syscall_trace_enter
  511. /*
  512. * Reload arg registers from stack in case ptrace changed them.
  513. * We don't reload %rax because syscall_trace_enter() returned
  514. * the value it wants us to use in the table lookup.
  515. */
  516. LOAD_ARGS ARGOFFSET, 1
  517. RESTORE_REST
  518. cmpq $__NR_syscall_max,%rax
  519. ja int_ret_from_sys_call /* RAX(%rsp) set to -ENOSYS above */
  520. movq %r10,%rcx /* fixup for C */
  521. call *sys_call_table(,%rax,8)
  522. movq %rax,RAX-ARGOFFSET(%rsp)
  523. /* Use IRET because user could have changed frame */
  524. /*
  525. * Syscall return path ending with IRET.
  526. * Has correct top of stack, but partial stack frame.
  527. */
  528. GLOBAL(int_ret_from_sys_call)
  529. DISABLE_INTERRUPTS(CLBR_NONE)
  530. TRACE_IRQS_OFF
  531. testl $3,CS-ARGOFFSET(%rsp)
  532. je retint_restore_args
  533. movl $_TIF_ALLWORK_MASK,%edi
  534. /* edi: mask to check */
  535. GLOBAL(int_with_check)
  536. LOCKDEP_SYS_EXIT_IRQ
  537. GET_THREAD_INFO(%rcx)
  538. movl TI_flags(%rcx),%edx
  539. andl %edi,%edx
  540. jnz int_careful
  541. andl $~TS_COMPAT,TI_status(%rcx)
  542. jmp retint_swapgs
  543. /* Either reschedule or signal or syscall exit tracking needed. */
  544. /* First do a reschedule test. */
  545. /* edx: work, edi: workmask */
  546. int_careful:
  547. bt $TIF_NEED_RESCHED,%edx
  548. jnc int_very_careful
  549. TRACE_IRQS_ON
  550. ENABLE_INTERRUPTS(CLBR_NONE)
  551. pushq_cfi %rdi
  552. call schedule
  553. popq_cfi %rdi
  554. DISABLE_INTERRUPTS(CLBR_NONE)
  555. TRACE_IRQS_OFF
  556. jmp int_with_check
  557. /* handle signals and tracing -- both require a full stack frame */
  558. int_very_careful:
  559. TRACE_IRQS_ON
  560. ENABLE_INTERRUPTS(CLBR_NONE)
  561. int_check_syscall_exit_work:
  562. SAVE_REST
  563. /* Check for syscall exit trace */
  564. testl $_TIF_WORK_SYSCALL_EXIT,%edx
  565. jz int_signal
  566. pushq_cfi %rdi
  567. leaq 8(%rsp),%rdi # &ptregs -> arg1
  568. call syscall_trace_leave
  569. popq_cfi %rdi
  570. andl $~(_TIF_WORK_SYSCALL_EXIT|_TIF_SYSCALL_EMU),%edi
  571. jmp int_restore_rest
  572. int_signal:
  573. testl $_TIF_DO_NOTIFY_MASK,%edx
  574. jz 1f
  575. movq %rsp,%rdi # &ptregs -> arg1
  576. xorl %esi,%esi # oldset -> arg2
  577. call do_notify_resume
  578. 1: movl $_TIF_WORK_MASK,%edi
  579. int_restore_rest:
  580. RESTORE_REST
  581. DISABLE_INTERRUPTS(CLBR_NONE)
  582. TRACE_IRQS_OFF
  583. jmp int_with_check
  584. CFI_ENDPROC
  585. END(system_call)
  586. /*
  587. * Certain special system calls that need to save a complete full stack frame.
  588. */
  589. .macro PTREGSCALL label,func,arg
  590. ENTRY(\label)
  591. PARTIAL_FRAME 1 8 /* offset 8: return address */
  592. subq $REST_SKIP, %rsp
  593. CFI_ADJUST_CFA_OFFSET REST_SKIP
  594. call save_rest
  595. DEFAULT_FRAME 0 8 /* offset 8: return address */
  596. leaq 8(%rsp), \arg /* pt_regs pointer */
  597. call \func
  598. jmp ptregscall_common
  599. CFI_ENDPROC
  600. END(\label)
  601. .endm
  602. PTREGSCALL stub_clone, sys_clone, %r8
  603. PTREGSCALL stub_fork, sys_fork, %rdi
  604. PTREGSCALL stub_vfork, sys_vfork, %rdi
  605. PTREGSCALL stub_sigaltstack, sys_sigaltstack, %rdx
  606. PTREGSCALL stub_iopl, sys_iopl, %rsi
  607. ENTRY(ptregscall_common)
  608. DEFAULT_FRAME 1 8 /* offset 8: return address */
  609. RESTORE_TOP_OF_STACK %r11, 8
  610. movq_cfi_restore R15+8, r15
  611. movq_cfi_restore R14+8, r14
  612. movq_cfi_restore R13+8, r13
  613. movq_cfi_restore R12+8, r12
  614. movq_cfi_restore RBP+8, rbp
  615. movq_cfi_restore RBX+8, rbx
  616. ret $REST_SKIP /* pop extended registers */
  617. CFI_ENDPROC
  618. END(ptregscall_common)
  619. ENTRY(stub_execve)
  620. CFI_STARTPROC
  621. addq $8, %rsp
  622. PARTIAL_FRAME 0
  623. SAVE_REST
  624. FIXUP_TOP_OF_STACK %r11
  625. movq %rsp, %rcx
  626. call sys_execve
  627. RESTORE_TOP_OF_STACK %r11
  628. movq %rax,RAX(%rsp)
  629. RESTORE_REST
  630. jmp int_ret_from_sys_call
  631. CFI_ENDPROC
  632. END(stub_execve)
  633. /*
  634. * sigreturn is special because it needs to restore all registers on return.
  635. * This cannot be done with SYSRET, so use the IRET return path instead.
  636. */
  637. ENTRY(stub_rt_sigreturn)
  638. CFI_STARTPROC
  639. addq $8, %rsp
  640. PARTIAL_FRAME 0
  641. SAVE_REST
  642. movq %rsp,%rdi
  643. FIXUP_TOP_OF_STACK %r11
  644. call sys_rt_sigreturn
  645. movq %rax,RAX(%rsp) # fixme, this could be done at the higher layer
  646. RESTORE_REST
  647. jmp int_ret_from_sys_call
  648. CFI_ENDPROC
  649. END(stub_rt_sigreturn)
  650. /*
  651. * Build the entry stubs and pointer table with some assembler magic.
  652. * We pack 7 stubs into a single 32-byte chunk, which will fit in a
  653. * single cache line on all modern x86 implementations.
  654. */
  655. .section .init.rodata,"a"
  656. ENTRY(interrupt)
  657. .section .entry.text
  658. .p2align 5
  659. .p2align CONFIG_X86_L1_CACHE_SHIFT
  660. ENTRY(irq_entries_start)
  661. INTR_FRAME
  662. vector=FIRST_EXTERNAL_VECTOR
  663. .rept (NR_VECTORS-FIRST_EXTERNAL_VECTOR+6)/7
  664. .balign 32
  665. .rept 7
  666. .if vector < NR_VECTORS
  667. .if vector <> FIRST_EXTERNAL_VECTOR
  668. CFI_ADJUST_CFA_OFFSET -8
  669. .endif
  670. 1: pushq_cfi $(~vector+0x80) /* Note: always in signed byte range */
  671. .if ((vector-FIRST_EXTERNAL_VECTOR)%7) <> 6
  672. jmp 2f
  673. .endif
  674. .previous
  675. .quad 1b
  676. .section .entry.text
  677. vector=vector+1
  678. .endif
  679. .endr
  680. 2: jmp common_interrupt
  681. .endr
  682. CFI_ENDPROC
  683. END(irq_entries_start)
  684. .previous
  685. END(interrupt)
  686. .previous
  687. /*
  688. * Interrupt entry/exit.
  689. *
  690. * Interrupt entry points save only callee clobbered registers in fast path.
  691. *
  692. * Entry runs with interrupts off.
  693. */
  694. /* 0(%rsp): ~(interrupt number) */
  695. .macro interrupt func
  696. /* reserve pt_regs for scratch regs and rbp */
  697. subq $ORIG_RAX-RBP, %rsp
  698. CFI_ADJUST_CFA_OFFSET ORIG_RAX-RBP
  699. SAVE_ARGS_IRQ
  700. PARTIAL_FRAME 0
  701. call \func
  702. .endm
  703. /*
  704. * Interrupt entry/exit should be protected against kprobes
  705. */
  706. .pushsection .kprobes.text, "ax"
  707. /*
  708. * The interrupt stubs push (~vector+0x80) onto the stack and
  709. * then jump to common_interrupt.
  710. */
  711. .p2align CONFIG_X86_L1_CACHE_SHIFT
  712. common_interrupt:
  713. XCPT_FRAME
  714. addq $-0x80,(%rsp) /* Adjust vector to [-256,-1] range */
  715. interrupt do_IRQ
  716. /* 0(%rsp): old_rsp-ARGOFFSET */
  717. ret_from_intr:
  718. DISABLE_INTERRUPTS(CLBR_NONE)
  719. TRACE_IRQS_OFF
  720. decl PER_CPU_VAR(irq_count)
  721. leaveq
  722. CFI_RESTORE rbp
  723. CFI_DEF_CFA_REGISTER rsp
  724. CFI_ADJUST_CFA_OFFSET -8
  725. /* we did not save rbx, restore only from ARGOFFSET */
  726. addq $8, %rsp
  727. CFI_ADJUST_CFA_OFFSET -8
  728. exit_intr:
  729. GET_THREAD_INFO(%rcx)
  730. testl $3,CS-ARGOFFSET(%rsp)
  731. je retint_kernel
  732. /* Interrupt came from user space */
  733. /*
  734. * Has a correct top of stack, but a partial stack frame
  735. * %rcx: thread info. Interrupts off.
  736. */
  737. retint_with_reschedule:
  738. movl $_TIF_WORK_MASK,%edi
  739. retint_check:
  740. LOCKDEP_SYS_EXIT_IRQ
  741. movl TI_flags(%rcx),%edx
  742. andl %edi,%edx
  743. CFI_REMEMBER_STATE
  744. jnz retint_careful
  745. retint_swapgs: /* return to user-space */
  746. /*
  747. * The iretq could re-enable interrupts:
  748. */
  749. DISABLE_INTERRUPTS(CLBR_ANY)
  750. TRACE_IRQS_IRETQ
  751. SWAPGS
  752. jmp restore_args
  753. retint_restore_args: /* return to kernel space */
  754. DISABLE_INTERRUPTS(CLBR_ANY)
  755. /*
  756. * The iretq could re-enable interrupts:
  757. */
  758. TRACE_IRQS_IRETQ
  759. restore_args:
  760. RESTORE_ARGS 0,8,0
  761. irq_return:
  762. INTERRUPT_RETURN
  763. .section __ex_table, "a"
  764. .quad irq_return, bad_iret
  765. .previous
  766. #ifdef CONFIG_PARAVIRT
  767. ENTRY(native_iret)
  768. iretq
  769. .section __ex_table,"a"
  770. .quad native_iret, bad_iret
  771. .previous
  772. #endif
  773. .section .fixup,"ax"
  774. bad_iret:
  775. /*
  776. * The iret traps when the %cs or %ss being restored is bogus.
  777. * We've lost the original trap vector and error code.
  778. * #GPF is the most likely one to get for an invalid selector.
  779. * So pretend we completed the iret and took the #GPF in user mode.
  780. *
  781. * We are now running with the kernel GS after exception recovery.
  782. * But error_entry expects us to have user GS to match the user %cs,
  783. * so swap back.
  784. */
  785. pushq $0
  786. SWAPGS
  787. jmp general_protection
  788. .previous
  789. /* edi: workmask, edx: work */
  790. retint_careful:
  791. CFI_RESTORE_STATE
  792. bt $TIF_NEED_RESCHED,%edx
  793. jnc retint_signal
  794. TRACE_IRQS_ON
  795. ENABLE_INTERRUPTS(CLBR_NONE)
  796. pushq_cfi %rdi
  797. call schedule
  798. popq_cfi %rdi
  799. GET_THREAD_INFO(%rcx)
  800. DISABLE_INTERRUPTS(CLBR_NONE)
  801. TRACE_IRQS_OFF
  802. jmp retint_check
  803. retint_signal:
  804. testl $_TIF_DO_NOTIFY_MASK,%edx
  805. jz retint_swapgs
  806. TRACE_IRQS_ON
  807. ENABLE_INTERRUPTS(CLBR_NONE)
  808. SAVE_REST
  809. movq $-1,ORIG_RAX(%rsp)
  810. xorl %esi,%esi # oldset
  811. movq %rsp,%rdi # &pt_regs
  812. call do_notify_resume
  813. RESTORE_REST
  814. DISABLE_INTERRUPTS(CLBR_NONE)
  815. TRACE_IRQS_OFF
  816. GET_THREAD_INFO(%rcx)
  817. jmp retint_with_reschedule
  818. #ifdef CONFIG_PREEMPT
  819. /* Returning to kernel space. Check if we need preemption */
  820. /* rcx: threadinfo. interrupts off. */
  821. ENTRY(retint_kernel)
  822. cmpl $0,TI_preempt_count(%rcx)
  823. jnz retint_restore_args
  824. bt $TIF_NEED_RESCHED,TI_flags(%rcx)
  825. jnc retint_restore_args
  826. bt $9,EFLAGS-ARGOFFSET(%rsp) /* interrupts off? */
  827. jnc retint_restore_args
  828. call preempt_schedule_irq
  829. jmp exit_intr
  830. #endif
  831. CFI_ENDPROC
  832. END(common_interrupt)
  833. /*
  834. * End of kprobes section
  835. */
  836. .popsection
  837. /*
  838. * APIC interrupts.
  839. */
  840. .macro apicinterrupt num sym do_sym
  841. ENTRY(\sym)
  842. INTR_FRAME
  843. pushq_cfi $~(\num)
  844. interrupt \do_sym
  845. jmp ret_from_intr
  846. CFI_ENDPROC
  847. END(\sym)
  848. .endm
  849. #ifdef CONFIG_SMP
  850. apicinterrupt IRQ_MOVE_CLEANUP_VECTOR \
  851. irq_move_cleanup_interrupt smp_irq_move_cleanup_interrupt
  852. apicinterrupt REBOOT_VECTOR \
  853. reboot_interrupt smp_reboot_interrupt
  854. #endif
  855. #ifdef CONFIG_X86_UV
  856. apicinterrupt UV_BAU_MESSAGE \
  857. uv_bau_message_intr1 uv_bau_message_interrupt
  858. #endif
  859. apicinterrupt LOCAL_TIMER_VECTOR \
  860. apic_timer_interrupt smp_apic_timer_interrupt
  861. apicinterrupt X86_PLATFORM_IPI_VECTOR \
  862. x86_platform_ipi smp_x86_platform_ipi
  863. #ifdef CONFIG_SMP
  864. .irp idx,0,1,2,3,4,5,6,7,8,9,10,11,12,13,14,15, \
  865. 16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31
  866. .if NUM_INVALIDATE_TLB_VECTORS > \idx
  867. apicinterrupt (INVALIDATE_TLB_VECTOR_START)+\idx \
  868. invalidate_interrupt\idx smp_invalidate_interrupt
  869. .endif
  870. .endr
  871. #endif
  872. apicinterrupt THRESHOLD_APIC_VECTOR \
  873. threshold_interrupt smp_threshold_interrupt
  874. apicinterrupt THERMAL_APIC_VECTOR \
  875. thermal_interrupt smp_thermal_interrupt
  876. #ifdef CONFIG_X86_MCE
  877. apicinterrupt MCE_SELF_VECTOR \
  878. mce_self_interrupt smp_mce_self_interrupt
  879. #endif
  880. #ifdef CONFIG_SMP
  881. apicinterrupt CALL_FUNCTION_SINGLE_VECTOR \
  882. call_function_single_interrupt smp_call_function_single_interrupt
  883. apicinterrupt CALL_FUNCTION_VECTOR \
  884. call_function_interrupt smp_call_function_interrupt
  885. apicinterrupt RESCHEDULE_VECTOR \
  886. reschedule_interrupt smp_reschedule_interrupt
  887. #endif
  888. apicinterrupt ERROR_APIC_VECTOR \
  889. error_interrupt smp_error_interrupt
  890. apicinterrupt SPURIOUS_APIC_VECTOR \
  891. spurious_interrupt smp_spurious_interrupt
  892. #ifdef CONFIG_IRQ_WORK
  893. apicinterrupt IRQ_WORK_VECTOR \
  894. irq_work_interrupt smp_irq_work_interrupt
  895. #endif
  896. /*
  897. * Exception entry points.
  898. */
  899. .macro zeroentry sym do_sym
  900. ENTRY(\sym)
  901. INTR_FRAME
  902. PARAVIRT_ADJUST_EXCEPTION_FRAME
  903. pushq_cfi $-1 /* ORIG_RAX: no syscall to restart */
  904. subq $ORIG_RAX-R15, %rsp
  905. CFI_ADJUST_CFA_OFFSET ORIG_RAX-R15
  906. call error_entry
  907. DEFAULT_FRAME 0
  908. movq %rsp,%rdi /* pt_regs pointer */
  909. xorl %esi,%esi /* no error code */
  910. call \do_sym
  911. jmp error_exit /* %ebx: no swapgs flag */
  912. CFI_ENDPROC
  913. END(\sym)
  914. .endm
  915. .macro paranoidzeroentry sym do_sym
  916. ENTRY(\sym)
  917. INTR_FRAME
  918. PARAVIRT_ADJUST_EXCEPTION_FRAME
  919. pushq_cfi $-1 /* ORIG_RAX: no syscall to restart */
  920. subq $ORIG_RAX-R15, %rsp
  921. CFI_ADJUST_CFA_OFFSET ORIG_RAX-R15
  922. call save_paranoid
  923. TRACE_IRQS_OFF
  924. movq %rsp,%rdi /* pt_regs pointer */
  925. xorl %esi,%esi /* no error code */
  926. call \do_sym
  927. jmp paranoid_exit /* %ebx: no swapgs flag */
  928. CFI_ENDPROC
  929. END(\sym)
  930. .endm
  931. #define INIT_TSS_IST(x) PER_CPU_VAR(init_tss) + (TSS_ist + ((x) - 1) * 8)
  932. .macro paranoidzeroentry_ist sym do_sym ist
  933. ENTRY(\sym)
  934. INTR_FRAME
  935. PARAVIRT_ADJUST_EXCEPTION_FRAME
  936. pushq_cfi $-1 /* ORIG_RAX: no syscall to restart */
  937. subq $ORIG_RAX-R15, %rsp
  938. CFI_ADJUST_CFA_OFFSET ORIG_RAX-R15
  939. call save_paranoid
  940. TRACE_IRQS_OFF
  941. movq %rsp,%rdi /* pt_regs pointer */
  942. xorl %esi,%esi /* no error code */
  943. subq $EXCEPTION_STKSZ, INIT_TSS_IST(\ist)
  944. call \do_sym
  945. addq $EXCEPTION_STKSZ, INIT_TSS_IST(\ist)
  946. jmp paranoid_exit /* %ebx: no swapgs flag */
  947. CFI_ENDPROC
  948. END(\sym)
  949. .endm
  950. .macro errorentry sym do_sym
  951. ENTRY(\sym)
  952. XCPT_FRAME
  953. PARAVIRT_ADJUST_EXCEPTION_FRAME
  954. subq $ORIG_RAX-R15, %rsp
  955. CFI_ADJUST_CFA_OFFSET ORIG_RAX-R15
  956. call error_entry
  957. DEFAULT_FRAME 0
  958. movq %rsp,%rdi /* pt_regs pointer */
  959. movq ORIG_RAX(%rsp),%rsi /* get error code */
  960. movq $-1,ORIG_RAX(%rsp) /* no syscall to restart */
  961. call \do_sym
  962. jmp error_exit /* %ebx: no swapgs flag */
  963. CFI_ENDPROC
  964. END(\sym)
  965. .endm
  966. /* error code is on the stack already */
  967. .macro paranoiderrorentry sym do_sym
  968. ENTRY(\sym)
  969. XCPT_FRAME
  970. PARAVIRT_ADJUST_EXCEPTION_FRAME
  971. subq $ORIG_RAX-R15, %rsp
  972. CFI_ADJUST_CFA_OFFSET ORIG_RAX-R15
  973. call save_paranoid
  974. DEFAULT_FRAME 0
  975. TRACE_IRQS_OFF
  976. movq %rsp,%rdi /* pt_regs pointer */
  977. movq ORIG_RAX(%rsp),%rsi /* get error code */
  978. movq $-1,ORIG_RAX(%rsp) /* no syscall to restart */
  979. call \do_sym
  980. jmp paranoid_exit /* %ebx: no swapgs flag */
  981. CFI_ENDPROC
  982. END(\sym)
  983. .endm
  984. zeroentry divide_error do_divide_error
  985. zeroentry overflow do_overflow
  986. zeroentry bounds do_bounds
  987. zeroentry invalid_op do_invalid_op
  988. zeroentry device_not_available do_device_not_available
  989. paranoiderrorentry double_fault do_double_fault
  990. zeroentry coprocessor_segment_overrun do_coprocessor_segment_overrun
  991. errorentry invalid_TSS do_invalid_TSS
  992. errorentry segment_not_present do_segment_not_present
  993. zeroentry spurious_interrupt_bug do_spurious_interrupt_bug
  994. zeroentry coprocessor_error do_coprocessor_error
  995. errorentry alignment_check do_alignment_check
  996. zeroentry simd_coprocessor_error do_simd_coprocessor_error
  997. /* Reload gs selector with exception handling */
  998. /* edi: new selector */
  999. ENTRY(native_load_gs_index)
  1000. CFI_STARTPROC
  1001. pushfq_cfi
  1002. DISABLE_INTERRUPTS(CLBR_ANY & ~CLBR_RDI)
  1003. SWAPGS
  1004. gs_change:
  1005. movl %edi,%gs
  1006. 2: mfence /* workaround */
  1007. SWAPGS
  1008. popfq_cfi
  1009. ret
  1010. CFI_ENDPROC
  1011. END(native_load_gs_index)
  1012. .section __ex_table,"a"
  1013. .align 8
  1014. .quad gs_change,bad_gs
  1015. .previous
  1016. .section .fixup,"ax"
  1017. /* running with kernelgs */
  1018. bad_gs:
  1019. SWAPGS /* switch back to user gs */
  1020. xorl %eax,%eax
  1021. movl %eax,%gs
  1022. jmp 2b
  1023. .previous
  1024. ENTRY(kernel_thread_helper)
  1025. pushq $0 # fake return address
  1026. CFI_STARTPROC
  1027. /*
  1028. * Here we are in the child and the registers are set as they were
  1029. * at kernel_thread() invocation in the parent.
  1030. */
  1031. call *%rsi
  1032. # exit
  1033. mov %eax, %edi
  1034. call do_exit
  1035. ud2 # padding for call trace
  1036. CFI_ENDPROC
  1037. END(kernel_thread_helper)
  1038. /*
  1039. * execve(). This function needs to use IRET, not SYSRET, to set up all state properly.
  1040. *
  1041. * C extern interface:
  1042. * extern long execve(const char *name, char **argv, char **envp)
  1043. *
  1044. * asm input arguments:
  1045. * rdi: name, rsi: argv, rdx: envp
  1046. *
  1047. * We want to fallback into:
  1048. * extern long sys_execve(const char *name, char **argv,char **envp, struct pt_regs *regs)
  1049. *
  1050. * do_sys_execve asm fallback arguments:
  1051. * rdi: name, rsi: argv, rdx: envp, rcx: fake frame on the stack
  1052. */
  1053. ENTRY(kernel_execve)
  1054. CFI_STARTPROC
  1055. FAKE_STACK_FRAME $0
  1056. SAVE_ALL
  1057. movq %rsp,%rcx
  1058. call sys_execve
  1059. movq %rax, RAX(%rsp)
  1060. RESTORE_REST
  1061. testq %rax,%rax
  1062. je int_ret_from_sys_call
  1063. RESTORE_ARGS
  1064. UNFAKE_STACK_FRAME
  1065. ret
  1066. CFI_ENDPROC
  1067. END(kernel_execve)
  1068. /* Call softirq on interrupt stack. Interrupts are off. */
  1069. ENTRY(call_softirq)
  1070. CFI_STARTPROC
  1071. pushq_cfi %rbp
  1072. CFI_REL_OFFSET rbp,0
  1073. mov %rsp,%rbp
  1074. CFI_DEF_CFA_REGISTER rbp
  1075. incl PER_CPU_VAR(irq_count)
  1076. cmove PER_CPU_VAR(irq_stack_ptr),%rsp
  1077. push %rbp # backlink for old unwinder
  1078. call __do_softirq
  1079. leaveq
  1080. CFI_RESTORE rbp
  1081. CFI_DEF_CFA_REGISTER rsp
  1082. CFI_ADJUST_CFA_OFFSET -8
  1083. decl PER_CPU_VAR(irq_count)
  1084. ret
  1085. CFI_ENDPROC
  1086. END(call_softirq)
  1087. #ifdef CONFIG_XEN
  1088. zeroentry xen_hypervisor_callback xen_do_hypervisor_callback
  1089. /*
  1090. * A note on the "critical region" in our callback handler.
  1091. * We want to avoid stacking callback handlers due to events occurring
  1092. * during handling of the last event. To do this, we keep events disabled
  1093. * until we've done all processing. HOWEVER, we must enable events before
  1094. * popping the stack frame (can't be done atomically) and so it would still
  1095. * be possible to get enough handler activations to overflow the stack.
  1096. * Although unlikely, bugs of that kind are hard to track down, so we'd
  1097. * like to avoid the possibility.
  1098. * So, on entry to the handler we detect whether we interrupted an
  1099. * existing activation in its critical region -- if so, we pop the current
  1100. * activation and restart the handler using the previous one.
  1101. */
  1102. ENTRY(xen_do_hypervisor_callback) # do_hypervisor_callback(struct *pt_regs)
  1103. CFI_STARTPROC
  1104. /*
  1105. * Since we don't modify %rdi, evtchn_do_upall(struct *pt_regs) will
  1106. * see the correct pointer to the pt_regs
  1107. */
  1108. movq %rdi, %rsp # we don't return, adjust the stack frame
  1109. CFI_ENDPROC
  1110. DEFAULT_FRAME
  1111. 11: incl PER_CPU_VAR(irq_count)
  1112. movq %rsp,%rbp
  1113. CFI_DEF_CFA_REGISTER rbp
  1114. cmovzq PER_CPU_VAR(irq_stack_ptr),%rsp
  1115. pushq %rbp # backlink for old unwinder
  1116. call xen_evtchn_do_upcall
  1117. popq %rsp
  1118. CFI_DEF_CFA_REGISTER rsp
  1119. decl PER_CPU_VAR(irq_count)
  1120. jmp error_exit
  1121. CFI_ENDPROC
  1122. END(xen_do_hypervisor_callback)
  1123. /*
  1124. * Hypervisor uses this for application faults while it executes.
  1125. * We get here for two reasons:
  1126. * 1. Fault while reloading DS, ES, FS or GS
  1127. * 2. Fault while executing IRET
  1128. * Category 1 we do not need to fix up as Xen has already reloaded all segment
  1129. * registers that could be reloaded and zeroed the others.
  1130. * Category 2 we fix up by killing the current process. We cannot use the
  1131. * normal Linux return path in this case because if we use the IRET hypercall
  1132. * to pop the stack frame we end up in an infinite loop of failsafe callbacks.
  1133. * We distinguish between categories by comparing each saved segment register
  1134. * with its current contents: any discrepancy means we in category 1.
  1135. */
  1136. ENTRY(xen_failsafe_callback)
  1137. INTR_FRAME 1 (6*8)
  1138. /*CFI_REL_OFFSET gs,GS*/
  1139. /*CFI_REL_OFFSET fs,FS*/
  1140. /*CFI_REL_OFFSET es,ES*/
  1141. /*CFI_REL_OFFSET ds,DS*/
  1142. CFI_REL_OFFSET r11,8
  1143. CFI_REL_OFFSET rcx,0
  1144. movw %ds,%cx
  1145. cmpw %cx,0x10(%rsp)
  1146. CFI_REMEMBER_STATE
  1147. jne 1f
  1148. movw %es,%cx
  1149. cmpw %cx,0x18(%rsp)
  1150. jne 1f
  1151. movw %fs,%cx
  1152. cmpw %cx,0x20(%rsp)
  1153. jne 1f
  1154. movw %gs,%cx
  1155. cmpw %cx,0x28(%rsp)
  1156. jne 1f
  1157. /* All segments match their saved values => Category 2 (Bad IRET). */
  1158. movq (%rsp),%rcx
  1159. CFI_RESTORE rcx
  1160. movq 8(%rsp),%r11
  1161. CFI_RESTORE r11
  1162. addq $0x30,%rsp
  1163. CFI_ADJUST_CFA_OFFSET -0x30
  1164. pushq_cfi $0 /* RIP */
  1165. pushq_cfi %r11
  1166. pushq_cfi %rcx
  1167. jmp general_protection
  1168. CFI_RESTORE_STATE
  1169. 1: /* Segment mismatch => Category 1 (Bad segment). Retry the IRET. */
  1170. movq (%rsp),%rcx
  1171. CFI_RESTORE rcx
  1172. movq 8(%rsp),%r11
  1173. CFI_RESTORE r11
  1174. addq $0x30,%rsp
  1175. CFI_ADJUST_CFA_OFFSET -0x30
  1176. pushq_cfi $0
  1177. SAVE_ALL
  1178. jmp error_exit
  1179. CFI_ENDPROC
  1180. END(xen_failsafe_callback)
  1181. apicinterrupt XEN_HVM_EVTCHN_CALLBACK \
  1182. xen_hvm_callback_vector xen_evtchn_do_upcall
  1183. #endif /* CONFIG_XEN */
  1184. /*
  1185. * Some functions should be protected against kprobes
  1186. */
  1187. .pushsection .kprobes.text, "ax"
  1188. paranoidzeroentry_ist debug do_debug DEBUG_STACK
  1189. paranoidzeroentry_ist int3 do_int3 DEBUG_STACK
  1190. paranoiderrorentry stack_segment do_stack_segment
  1191. #ifdef CONFIG_XEN
  1192. zeroentry xen_debug do_debug
  1193. zeroentry xen_int3 do_int3
  1194. errorentry xen_stack_segment do_stack_segment
  1195. #endif
  1196. errorentry general_protection do_general_protection
  1197. errorentry page_fault do_page_fault
  1198. #ifdef CONFIG_KVM_GUEST
  1199. errorentry async_page_fault do_async_page_fault
  1200. #endif
  1201. #ifdef CONFIG_X86_MCE
  1202. paranoidzeroentry machine_check *machine_check_vector(%rip)
  1203. #endif
  1204. /*
  1205. * "Paranoid" exit path from exception stack.
  1206. * Paranoid because this is used by NMIs and cannot take
  1207. * any kernel state for granted.
  1208. * We don't do kernel preemption checks here, because only
  1209. * NMI should be common and it does not enable IRQs and
  1210. * cannot get reschedule ticks.
  1211. *
  1212. * "trace" is 0 for the NMI handler only, because irq-tracing
  1213. * is fundamentally NMI-unsafe. (we cannot change the soft and
  1214. * hard flags at once, atomically)
  1215. */
  1216. /* ebx: no swapgs flag */
  1217. ENTRY(paranoid_exit)
  1218. DEFAULT_FRAME
  1219. DISABLE_INTERRUPTS(CLBR_NONE)
  1220. TRACE_IRQS_OFF
  1221. testl %ebx,%ebx /* swapgs needed? */
  1222. jnz paranoid_restore
  1223. testl $3,CS(%rsp)
  1224. jnz paranoid_userspace
  1225. paranoid_swapgs:
  1226. TRACE_IRQS_IRETQ 0
  1227. SWAPGS_UNSAFE_STACK
  1228. RESTORE_ALL 8
  1229. jmp irq_return
  1230. paranoid_restore:
  1231. TRACE_IRQS_IRETQ 0
  1232. RESTORE_ALL 8
  1233. jmp irq_return
  1234. paranoid_userspace:
  1235. GET_THREAD_INFO(%rcx)
  1236. movl TI_flags(%rcx),%ebx
  1237. andl $_TIF_WORK_MASK,%ebx
  1238. jz paranoid_swapgs
  1239. movq %rsp,%rdi /* &pt_regs */
  1240. call sync_regs
  1241. movq %rax,%rsp /* switch stack for scheduling */
  1242. testl $_TIF_NEED_RESCHED,%ebx
  1243. jnz paranoid_schedule
  1244. movl %ebx,%edx /* arg3: thread flags */
  1245. TRACE_IRQS_ON
  1246. ENABLE_INTERRUPTS(CLBR_NONE)
  1247. xorl %esi,%esi /* arg2: oldset */
  1248. movq %rsp,%rdi /* arg1: &pt_regs */
  1249. call do_notify_resume
  1250. DISABLE_INTERRUPTS(CLBR_NONE)
  1251. TRACE_IRQS_OFF
  1252. jmp paranoid_userspace
  1253. paranoid_schedule:
  1254. TRACE_IRQS_ON
  1255. ENABLE_INTERRUPTS(CLBR_ANY)
  1256. call schedule
  1257. DISABLE_INTERRUPTS(CLBR_ANY)
  1258. TRACE_IRQS_OFF
  1259. jmp paranoid_userspace
  1260. CFI_ENDPROC
  1261. END(paranoid_exit)
  1262. /*
  1263. * Exception entry point. This expects an error code/orig_rax on the stack.
  1264. * returns in "no swapgs flag" in %ebx.
  1265. */
  1266. ENTRY(error_entry)
  1267. XCPT_FRAME
  1268. CFI_ADJUST_CFA_OFFSET 15*8
  1269. /* oldrax contains error code */
  1270. cld
  1271. movq_cfi rdi, RDI+8
  1272. movq_cfi rsi, RSI+8
  1273. movq_cfi rdx, RDX+8
  1274. movq_cfi rcx, RCX+8
  1275. movq_cfi rax, RAX+8
  1276. movq_cfi r8, R8+8
  1277. movq_cfi r9, R9+8
  1278. movq_cfi r10, R10+8
  1279. movq_cfi r11, R11+8
  1280. movq_cfi rbx, RBX+8
  1281. movq_cfi rbp, RBP+8
  1282. movq_cfi r12, R12+8
  1283. movq_cfi r13, R13+8
  1284. movq_cfi r14, R14+8
  1285. movq_cfi r15, R15+8
  1286. xorl %ebx,%ebx
  1287. testl $3,CS+8(%rsp)
  1288. je error_kernelspace
  1289. error_swapgs:
  1290. SWAPGS
  1291. error_sti:
  1292. TRACE_IRQS_OFF
  1293. ret
  1294. /*
  1295. * There are two places in the kernel that can potentially fault with
  1296. * usergs. Handle them here. The exception handlers after iret run with
  1297. * kernel gs again, so don't set the user space flag. B stepping K8s
  1298. * sometimes report an truncated RIP for IRET exceptions returning to
  1299. * compat mode. Check for these here too.
  1300. */
  1301. error_kernelspace:
  1302. incl %ebx
  1303. leaq irq_return(%rip),%rcx
  1304. cmpq %rcx,RIP+8(%rsp)
  1305. je error_swapgs
  1306. movl %ecx,%eax /* zero extend */
  1307. cmpq %rax,RIP+8(%rsp)
  1308. je bstep_iret
  1309. cmpq $gs_change,RIP+8(%rsp)
  1310. je error_swapgs
  1311. jmp error_sti
  1312. bstep_iret:
  1313. /* Fix truncated RIP */
  1314. movq %rcx,RIP+8(%rsp)
  1315. jmp error_swapgs
  1316. CFI_ENDPROC
  1317. END(error_entry)
  1318. /* ebx: no swapgs flag (1: don't need swapgs, 0: need it) */
  1319. ENTRY(error_exit)
  1320. DEFAULT_FRAME
  1321. movl %ebx,%eax
  1322. RESTORE_REST
  1323. DISABLE_INTERRUPTS(CLBR_NONE)
  1324. TRACE_IRQS_OFF
  1325. GET_THREAD_INFO(%rcx)
  1326. testl %eax,%eax
  1327. jne retint_kernel
  1328. LOCKDEP_SYS_EXIT_IRQ
  1329. movl TI_flags(%rcx),%edx
  1330. movl $_TIF_WORK_MASK,%edi
  1331. andl %edi,%edx
  1332. jnz retint_careful
  1333. jmp retint_swapgs
  1334. CFI_ENDPROC
  1335. END(error_exit)
  1336. /* runs on exception stack */
  1337. ENTRY(nmi)
  1338. INTR_FRAME
  1339. PARAVIRT_ADJUST_EXCEPTION_FRAME
  1340. pushq_cfi $-1
  1341. subq $ORIG_RAX-R15, %rsp
  1342. CFI_ADJUST_CFA_OFFSET ORIG_RAX-R15
  1343. call save_paranoid
  1344. DEFAULT_FRAME 0
  1345. /* paranoidentry do_nmi, 0; without TRACE_IRQS_OFF */
  1346. movq %rsp,%rdi
  1347. movq $-1,%rsi
  1348. call do_nmi
  1349. #ifdef CONFIG_TRACE_IRQFLAGS
  1350. /* paranoidexit; without TRACE_IRQS_OFF */
  1351. /* ebx: no swapgs flag */
  1352. DISABLE_INTERRUPTS(CLBR_NONE)
  1353. testl %ebx,%ebx /* swapgs needed? */
  1354. jnz nmi_restore
  1355. testl $3,CS(%rsp)
  1356. jnz nmi_userspace
  1357. nmi_swapgs:
  1358. SWAPGS_UNSAFE_STACK
  1359. nmi_restore:
  1360. RESTORE_ALL 8
  1361. jmp irq_return
  1362. nmi_userspace:
  1363. GET_THREAD_INFO(%rcx)
  1364. movl TI_flags(%rcx),%ebx
  1365. andl $_TIF_WORK_MASK,%ebx
  1366. jz nmi_swapgs
  1367. movq %rsp,%rdi /* &pt_regs */
  1368. call sync_regs
  1369. movq %rax,%rsp /* switch stack for scheduling */
  1370. testl $_TIF_NEED_RESCHED,%ebx
  1371. jnz nmi_schedule
  1372. movl %ebx,%edx /* arg3: thread flags */
  1373. ENABLE_INTERRUPTS(CLBR_NONE)
  1374. xorl %esi,%esi /* arg2: oldset */
  1375. movq %rsp,%rdi /* arg1: &pt_regs */
  1376. call do_notify_resume
  1377. DISABLE_INTERRUPTS(CLBR_NONE)
  1378. jmp nmi_userspace
  1379. nmi_schedule:
  1380. ENABLE_INTERRUPTS(CLBR_ANY)
  1381. call schedule
  1382. DISABLE_INTERRUPTS(CLBR_ANY)
  1383. jmp nmi_userspace
  1384. CFI_ENDPROC
  1385. #else
  1386. jmp paranoid_exit
  1387. CFI_ENDPROC
  1388. #endif
  1389. END(nmi)
  1390. ENTRY(ignore_sysret)
  1391. CFI_STARTPROC
  1392. mov $-ENOSYS,%eax
  1393. sysret
  1394. CFI_ENDPROC
  1395. END(ignore_sysret)
  1396. /*
  1397. * End of kprobes section
  1398. */
  1399. .popsection