blob: 8df1638259f3f2daa6b7d3cd3f70f54c3094017a [file] [log] [blame]
Vineet Guptafbd70532013-01-18 15:12:20 +05301/* Page Fault Handling for ARC (TLB Miss / ProtV)
2 *
3 * Copyright (C) 2004, 2007-2010, 2011-2012 Synopsys, Inc. (www.synopsys.com)
4 *
5 * This program is free software; you can redistribute it and/or modify
6 * it under the terms of the GNU General Public License version 2 as
7 * published by the Free Software Foundation.
8 */
9
10#include <linux/signal.h>
11#include <linux/interrupt.h>
Ingo Molnar3f07c012017-02-08 18:51:30 +010012#include <linux/sched/signal.h>
Vineet Guptafbd70532013-01-18 15:12:20 +053013#include <linux/errno.h>
14#include <linux/ptrace.h>
Vineet Guptafbd70532013-01-18 15:12:20 +053015#include <linux/uaccess.h>
16#include <linux/kdebug.h>
Vineet Guptaceed97a2014-10-02 12:30:42 +053017#include <linux/perf_event.h>
Souptick Joarder50a7ca32018-08-17 15:44:47 -070018#include <linux/mm_types.h>
Vineet Guptafbd70532013-01-18 15:12:20 +053019#include <asm/pgalloc.h>
Vineet Guptada1677b02013-05-14 13:28:17 +053020#include <asm/mmu.h>
Vineet Guptafbd70532013-01-18 15:12:20 +053021
Vineet Gupta336e2132015-03-05 17:06:31 +053022/*
23 * kernel virtual address is required to implement vmalloc/pkmap/fixmap
24 * Refer to asm/processor.h for System Memory Map
25 *
26 * It simply copies the PMD entry (pointer to 2nd level page table or hugepage)
27 * from swapper pgdir to task pgdir. The 2nd level table/page is thus shared
28 */
29noinline static int handle_kernel_vaddr_fault(unsigned long address)
Vineet Guptafbd70532013-01-18 15:12:20 +053030{
31 /*
32 * Synchronize this task's top level page-table
33 * with the 'reference' page table.
34 */
35 pgd_t *pgd, *pgd_k;
36 pud_t *pud, *pud_k;
37 pmd_t *pmd, *pmd_k;
38
Vineet Gupta9c41f4e2013-11-02 17:47:49 +053039 pgd = pgd_offset_fast(current->active_mm, address);
Vineet Guptafbd70532013-01-18 15:12:20 +053040 pgd_k = pgd_offset_k(address);
41
42 if (!pgd_present(*pgd_k))
43 goto bad_area;
44
45 pud = pud_offset(pgd, address);
46 pud_k = pud_offset(pgd_k, address);
47 if (!pud_present(*pud_k))
48 goto bad_area;
49
50 pmd = pmd_offset(pud, address);
51 pmd_k = pmd_offset(pud_k, address);
52 if (!pmd_present(*pmd_k))
53 goto bad_area;
54
55 set_pmd(pmd, *pmd_k);
56
57 /* XXX: create the TLB entry here */
58 return 0;
59
60bad_area:
61 return 1;
62}
63
Vineet Gupta21a63b52013-09-18 16:25:40 +053064void do_page_fault(unsigned long address, struct pt_regs *regs)
Vineet Guptafbd70532013-01-18 15:12:20 +053065{
66 struct vm_area_struct *vma = NULL;
67 struct task_struct *tsk = current;
68 struct mm_struct *mm = tsk->mm;
Eugeniy Paltsev121e38e2018-11-07 15:12:49 +030069 int si_code = 0;
Souptick Joarder50a7ca32018-08-17 15:44:47 -070070 int ret;
71 vm_fault_t fault;
Vineet Gupta38a9ff62013-06-12 15:13:40 +053072 int write = regs->ecr_cause & ECR_C_PROTV_STORE; /* ST/EX */
Johannes Weiner759496b2013-09-12 15:13:39 -070073 unsigned int flags = FAULT_FLAG_ALLOW_RETRY | FAULT_FLAG_KILLABLE;
Vineet Guptafbd70532013-01-18 15:12:20 +053074
75 /*
76 * We fault-in kernel-space virtual memory on-demand. The
77 * 'reference' page table is init_mm.pgd.
78 *
79 * NOTE! We MUST NOT take any locks for this case. We may
80 * be in an interrupt or a critical region, and should
81 * only copy the information from the master page table,
82 * nothing more.
83 */
Vineet Gupta336e2132015-03-05 17:06:31 +053084 if (address >= VMALLOC_START) {
85 ret = handle_kernel_vaddr_fault(address);
Vineet Guptafbd70532013-01-18 15:12:20 +053086 if (unlikely(ret))
87 goto bad_area_nosemaphore;
88 else
89 return;
90 }
91
Eric W. Biederman15773ae2017-08-01 13:41:34 -050092 si_code = SEGV_MAPERR;
Vineet Guptafbd70532013-01-18 15:12:20 +053093
94 /*
95 * If we're in an interrupt or have no user
96 * context, we must not take the fault..
97 */
David Hildenbrand70ffdb92015-05-11 17:52:11 +020098 if (faulthandler_disabled() || !mm)
Vineet Guptafbd70532013-01-18 15:12:20 +053099 goto no_context;
100
Johannes Weiner759496b2013-09-12 15:13:39 -0700101 if (user_mode(regs))
102 flags |= FAULT_FLAG_USER;
Vineet Guptafbd70532013-01-18 15:12:20 +0530103retry:
104 down_read(&mm->mmap_sem);
105 vma = find_vma(mm, address);
106 if (!vma)
107 goto bad_area;
108 if (vma->vm_start <= address)
109 goto good_area;
110 if (!(vma->vm_flags & VM_GROWSDOWN))
111 goto bad_area;
112 if (expand_stack(vma, address))
113 goto bad_area;
114
115 /*
116 * Ok, we have a good vm_area for this memory access, so
117 * we can handle it..
118 */
119good_area:
Eric W. Biederman15773ae2017-08-01 13:41:34 -0500120 si_code = SEGV_ACCERR;
Vineet Guptafbd70532013-01-18 15:12:20 +0530121
122 /* Handle protection violation, execute on heap or stack */
123
Vineet Gupta38a9ff62013-06-12 15:13:40 +0530124 if ((regs->ecr_vec == ECR_V_PROTV) &&
125 (regs->ecr_cause == ECR_C_PROTV_INST_FETCH))
Vineet Guptafbd70532013-01-18 15:12:20 +0530126 goto bad_area;
127
128 if (write) {
129 if (!(vma->vm_flags & VM_WRITE))
130 goto bad_area;
Johannes Weiner759496b2013-09-12 15:13:39 -0700131 flags |= FAULT_FLAG_WRITE;
Vineet Guptafbd70532013-01-18 15:12:20 +0530132 } else {
133 if (!(vma->vm_flags & (VM_READ | VM_EXEC)))
134 goto bad_area;
135 }
136
Vineet Guptafbd70532013-01-18 15:12:20 +0530137 /*
138 * If for any reason at all we couldn't handle the fault,
139 * make sure we exit gracefully rather than endlessly redo
140 * the fault.
141 */
Kirill A. Shutemovdcddffd2016-07-26 15:25:18 -0700142 fault = handle_mm_fault(vma, address, flags);
Vineet Guptafbd70532013-01-18 15:12:20 +0530143
Davidlohr Buesod8d7d842019-01-03 15:28:51 -0800144 if (fatal_signal_pending(current)) {
Vineet Gupta4d447452018-12-10 16:56:45 -0800145
146 /*
147 * if fault retry, mmap_sem already relinquished by core mm
148 * so OK to return to user mode (with signal handled first)
149 */
150 if (fault & VM_FAULT_RETRY) {
151 if (!user_mode(regs))
152 goto no_context;
Vineet Guptafbd70532013-01-18 15:12:20 +0530153 return;
Vineet Gupta4d447452018-12-10 16:56:45 -0800154 }
Vineet Guptafbd70532013-01-18 15:12:20 +0530155 }
156
Vineet Guptaceed97a2014-10-02 12:30:42 +0530157 perf_sw_event(PERF_COUNT_SW_PAGE_FAULTS, 1, regs, address);
158
Vineet Guptafbd70532013-01-18 15:12:20 +0530159 if (likely(!(fault & VM_FAULT_ERROR))) {
160 if (flags & FAULT_FLAG_ALLOW_RETRY) {
161 /* To avoid updating stats twice for retry case */
Vineet Guptaceed97a2014-10-02 12:30:42 +0530162 if (fault & VM_FAULT_MAJOR) {
Vineet Guptafbd70532013-01-18 15:12:20 +0530163 tsk->maj_flt++;
Vineet Guptaceed97a2014-10-02 12:30:42 +0530164 perf_sw_event(PERF_COUNT_SW_PAGE_FAULTS_MAJ, 1,
165 regs, address);
166 } else {
Vineet Guptafbd70532013-01-18 15:12:20 +0530167 tsk->min_flt++;
Vineet Guptaceed97a2014-10-02 12:30:42 +0530168 perf_sw_event(PERF_COUNT_SW_PAGE_FAULTS_MIN, 1,
169 regs, address);
170 }
Vineet Guptafbd70532013-01-18 15:12:20 +0530171
172 if (fault & VM_FAULT_RETRY) {
173 flags &= ~FAULT_FLAG_ALLOW_RETRY;
174 flags |= FAULT_FLAG_TRIED;
175 goto retry;
176 }
177 }
178
179 /* Fault Handled Gracefully */
180 up_read(&mm->mmap_sem);
181 return;
182 }
183
Vineet Guptafbd70532013-01-18 15:12:20 +0530184 if (fault & VM_FAULT_OOM)
185 goto out_of_memory;
Guenter Roecke262eb92015-01-29 19:15:33 -0800186 else if (fault & VM_FAULT_SIGSEGV)
Linus Torvalds33692f22015-01-29 10:51:32 -0800187 goto bad_area;
Vineet Guptafbd70532013-01-18 15:12:20 +0530188 else if (fault & VM_FAULT_SIGBUS)
189 goto do_sigbus;
190
191 /* no man's land */
192 BUG();
193
194 /*
195 * Something tried to access memory that isn't in our memory map..
196 * Fix it, but check if it's kernel or user first..
197 */
198bad_area:
199 up_read(&mm->mmap_sem);
200
201bad_area_nosemaphore:
202 /* User mode accesses just cause a SIGSEGV */
203 if (user_mode(regs)) {
204 tsk->thread.fault_address = address;
Eric W. Biederman15773ae2017-08-01 13:41:34 -0500205 force_sig_fault(SIGSEGV, si_code, (void __user *)address, tsk);
Vineet Guptafbd70532013-01-18 15:12:20 +0530206 return;
207 }
208
209no_context:
210 /* Are we prepared to handle this kernel fault?
211 *
212 * (The kernel has valid exception-points in the source
Liav Rehanaddf720f2017-05-28 09:52:00 +0300213 * when it accesses user-memory. When it fails in one
Vineet Guptafbd70532013-01-18 15:12:20 +0530214 * of those points, we find it in a table and do a jump
215 * to some fixup code that loads an appropriate error
216 * code)
217 */
218 if (fixup_exception(regs))
219 return;
220
Vineet Gupta38a9ff62013-06-12 15:13:40 +0530221 die("Oops", regs, address);
Vineet Guptafbd70532013-01-18 15:12:20 +0530222
223out_of_memory:
Vineet Guptafbd70532013-01-18 15:12:20 +0530224 up_read(&mm->mmap_sem);
225
Johannes Weiner609838c2013-07-08 15:59:50 -0700226 if (user_mode(regs)) {
227 pagefault_out_of_memory();
228 return;
229 }
Vineet Guptafbd70532013-01-18 15:12:20 +0530230
231 goto no_context;
232
233do_sigbus:
234 up_read(&mm->mmap_sem);
235
236 if (!user_mode(regs))
237 goto no_context;
238
239 tsk->thread.fault_address = address;
Eric W. Biederman15773ae2017-08-01 13:41:34 -0500240 force_sig_fault(SIGBUS, BUS_ADRERR, (void __user *)address, tsk);
Vineet Guptafbd70532013-01-18 15:12:20 +0530241}