From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from bombadil.infradead.org (bombadil.infradead.org [198.137.202.133]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.lore.kernel.org (Postfix) with ESMTPS id A8A50E7717F for ; Thu, 12 Dec 2024 21:44:11 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=lists.infradead.org; s=bombadil.20210309; h=Sender:List-Subscribe:List-Help :List-Post:List-Archive:List-Unsubscribe:List-Id:In-Reply-To:From:References: Cc:To:Subject:MIME-Version:Date:Message-ID:Content-Type:Reply-To: Content-Transfer-Encoding:Content-ID:Content-Description:Resent-Date: Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:List-Owner; bh=chHomcZrWPttJEMK+fiwwhwRxAFh6dzH59ekbWh3BTw=; b=C/uATfC0iqlEdVRB2qe4Mpujuf CruM2sxi5Xe3ehiY7iYShVDHi/6KlN+pNATeuQnTBF16Vh3hcw2uGwSHvdl0DJLo2phD68XJXjf8x RGeQH32SKYPQV+8d/forkdJKMT+QBg+hfregSF0KYe5dfOnChAbCuBJcH2Zus6vc3o9fQa8Qeb3CM X83MwuFxcNv9KoWx3hI7ReaCP6ZAF83xagxWw1PEdh7M6wwlYGCBknUvIXOj4bz7bzbfmdnaljM4d WIT68olxS2ki1M+dhfAg3wMxQtd5QUK5c6jIaudjaQCDzMUyxKDK7rmqY7BulgIZt5XIq4F0mQIPB fLxuOyxg==; Received: from localhost ([::1] helo=bombadil.infradead.org) by bombadil.infradead.org with esmtp (Exim 4.98 #2 (Red Hat Linux)) id 1tLqyg-000000020GF-1YB8; Thu, 12 Dec 2024 21:44:10 +0000 Received: from mgamail.intel.com ([198.175.65.20]) by bombadil.infradead.org with esmtps (Exim 4.98 #2 (Red Hat Linux)) id 1tLqyd-000000020F8-3ZmC for kexec@lists.infradead.org; Thu, 12 Dec 2024 21:44:09 +0000 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=intel.com; i=@intel.com; q=dns/txt; s=Intel; t=1734039848; x=1765575848; h=message-id:date:mime-version:subject:to:cc:references: from:in-reply-to; bh=vSFJjdZ2iIZMJSO8NHcvIklSqwqjaGbzMW6eQNdzG0o=; b=ZClFcrJ0esenfkeXt+0crdLG/isFMn31qxQI7y5LsYJZr5+2rIiT8h4s pSVImzA+lA8USAG1PsWpN3c6mdyljwj9aut3gnYs4derwqEK4laCs+nvS RP8kvIR0Gc3StGbZta56Bx+uaQmwk1BLYgkr1fGXDriO4yQ8Q64dav23n Wau3r/fIDHjaqIXyQSPc/5QJJ6YOiQKPF7nPx5cshBEr/fAHluuDna9fY zFKbfXFiDSClHXz4/9gboiT9GJ0pLr8USJt9dRYZzG7q8fqDeWNiqxT6R y7kHyc01esvRtqAqswQbqTvXdOZOK5JcWdCitIgt8s3lDht+h3ceec5Ul Q==; X-CSE-ConnectionGUID: NK88nz3iQyqoIJB3QBsoTA== X-CSE-MsgGUID: waFuSPgVS6OiVdnyjPw6bg== X-IronPort-AV: E=McAfee;i="6700,10204,11284"; a="34207928" X-IronPort-AV: E=Sophos;i="6.12,229,1728975600"; d="scan'208,223";a="34207928" Received: from fmviesa007.fm.intel.com ([10.60.135.147]) by orvoesa112.jf.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 12 Dec 2024 13:44:06 -0800 X-CSE-ConnectionGUID: csrvbFPRTCiUYjAiSIkDcQ== X-CSE-MsgGUID: 1zS4MC9GRiWTtD+FTKEVGg== X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="6.12,229,1728975600"; d="scan'208,223";a="96229053" Received: from ccbilbre-mobl3.amr.corp.intel.com (HELO [10.124.223.26]) ([10.124.223.26]) by fmviesa007-auth.fm.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 12 Dec 2024 13:44:06 -0800 Content-Type: multipart/mixed; boundary="------------hPpt08yWuuWdpta0eh1zmCfu" Message-ID: Date: Thu, 12 Dec 2024 13:43:57 -0800 MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: [PATCH] x86/kexec: Only write through identity mapping of control page To: David Woodhouse , Nathan Chancellor Cc: "Ning, Hongyu" , kexec@lists.infradead.org, Thomas Gleixner , Ingo Molnar , Borislav Petkov , Dave Hansen , x86@kernel.org, "H. Peter Anvin" , "Kirill A. Shutemov" , Kai Huang , Nikolay Borisov , linux-kernel@vger.kernel.org, Simon Horman , Dave Young , Peter Zijlstra , jpoimboe@kernel.org, bsz@amazon.de References: <20241205153343.3275139-1-dwmw2@infradead.org> <20241205153343.3275139-14-dwmw2@infradead.org> <20241212014418.GA532802@ax162> <10a4058d9a667ca7aef7e1862375c2da84ef53a3.camel@infradead.org> <20241212150408.GA542727@ax162> <38aaf87162d10c79b3d3ecae38df99e89ad16fce.camel@infradead.org> <20241212174243.GA2149156@ax162> <9c68688625f409104b16164da30aa6d3eb494e5d.camel@infradead.org> <4517cb69-3c5c-4e75-8a14-dab136b29c19@intel.com> <212CBB8E-CC94-4A56-8399-1419D8F2FA5C@infradead.org> From: Dave Hansen Content-Language: en-US Autocrypt: addr=dave.hansen@intel.com; keydata= xsFNBE6HMP0BEADIMA3XYkQfF3dwHlj58Yjsc4E5y5G67cfbt8dvaUq2fx1lR0K9h1bOI6fC oAiUXvGAOxPDsB/P6UEOISPpLl5IuYsSwAeZGkdQ5g6m1xq7AlDJQZddhr/1DC/nMVa/2BoY 2UnKuZuSBu7lgOE193+7Uks3416N2hTkyKUSNkduyoZ9F5twiBhxPJwPtn/wnch6n5RsoXsb ygOEDxLEsSk/7eyFycjE+btUtAWZtx+HseyaGfqkZK0Z9bT1lsaHecmB203xShwCPT49Blxz VOab8668QpaEOdLGhtvrVYVK7x4skyT3nGWcgDCl5/Vp3TWA4K+IofwvXzX2ON/Mj7aQwf5W iC+3nWC7q0uxKwwsddJ0Nu+dpA/UORQWa1NiAftEoSpk5+nUUi0WE+5DRm0H+TXKBWMGNCFn c6+EKg5zQaa8KqymHcOrSXNPmzJuXvDQ8uj2J8XuzCZfK4uy1+YdIr0yyEMI7mdh4KX50LO1 pmowEqDh7dLShTOif/7UtQYrzYq9cPnjU2ZW4qd5Qz2joSGTG9eCXLz5PRe5SqHxv6ljk8mb ApNuY7bOXO/A7T2j5RwXIlcmssqIjBcxsRRoIbpCwWWGjkYjzYCjgsNFL6rt4OL11OUF37wL QcTl7fbCGv53KfKPdYD5hcbguLKi/aCccJK18ZwNjFhqr4MliQARAQABzUVEYXZpZCBDaHJp c3RvcGhlciBIYW5zZW4gKEludGVsIFdvcmsgQWRkcmVzcykgPGRhdmUuaGFuc2VuQGludGVs LmNvbT7CwXgEEwECACIFAlQ+9J0CGwMGCwkIBwMCBhUIAgkKCwQWAgMBAh4BAheAAAoJEGg1 lTBwyZKwLZUP/0dnbhDc229u2u6WtK1s1cSd9WsflGXGagkR6liJ4um3XCfYWDHvIdkHYC1t MNcVHFBwmQkawxsYvgO8kXT3SaFZe4ISfB4K4CL2qp4JO+nJdlFUbZI7cz/Td9z8nHjMcWYF IQuTsWOLs/LBMTs+ANumibtw6UkiGVD3dfHJAOPNApjVr+M0P/lVmTeP8w0uVcd2syiaU5jB aht9CYATn+ytFGWZnBEEQFnqcibIaOrmoBLu2b3fKJEd8Jp7NHDSIdrvrMjYynmc6sZKUqH2 I1qOevaa8jUg7wlLJAWGfIqnu85kkqrVOkbNbk4TPub7VOqA6qG5GCNEIv6ZY7HLYd/vAkVY E8Plzq/NwLAuOWxvGrOl7OPuwVeR4hBDfcrNb990MFPpjGgACzAZyjdmYoMu8j3/MAEW4P0z F5+EYJAOZ+z212y1pchNNauehORXgjrNKsZwxwKpPY9qb84E3O9KYpwfATsqOoQ6tTgr+1BR CCwP712H+E9U5HJ0iibN/CDZFVPL1bRerHziuwuQuvE0qWg0+0SChFe9oq0KAwEkVs6ZDMB2 P16MieEEQ6StQRlvy2YBv80L1TMl3T90Bo1UUn6ARXEpcbFE0/aORH/jEXcRteb+vuik5UGY 5TsyLYdPur3TXm7XDBdmmyQVJjnJKYK9AQxj95KlXLVO38lczsFNBFRjzmoBEACyAxbvUEhd GDGNg0JhDdezyTdN8C9BFsdxyTLnSH31NRiyp1QtuxvcqGZjb2trDVuCbIzRrgMZLVgo3upr MIOx1CXEgmn23Zhh0EpdVHM8IKx9Z7V0r+rrpRWFE8/wQZngKYVi49PGoZj50ZEifEJ5qn/H Nsp2+Y+bTUjDdgWMATg9DiFMyv8fvoqgNsNyrrZTnSgoLzdxr89FGHZCoSoAK8gfgFHuO54B lI8QOfPDG9WDPJ66HCodjTlBEr/Cwq6GruxS5i2Y33YVqxvFvDa1tUtl+iJ2SWKS9kCai2DR 3BwVONJEYSDQaven/EHMlY1q8Vln3lGPsS11vSUK3QcNJjmrgYxH5KsVsf6PNRj9mp8Z1kIG qjRx08+nnyStWC0gZH6NrYyS9rpqH3j+hA2WcI7De51L4Rv9pFwzp161mvtc6eC/GxaiUGuH BNAVP0PY0fqvIC68p3rLIAW3f97uv4ce2RSQ7LbsPsimOeCo/5vgS6YQsj83E+AipPr09Caj 0hloj+hFoqiticNpmsxdWKoOsV0PftcQvBCCYuhKbZV9s5hjt9qn8CE86A5g5KqDf83Fxqm/ vXKgHNFHE5zgXGZnrmaf6resQzbvJHO0Fb0CcIohzrpPaL3YepcLDoCCgElGMGQjdCcSQ+Ci FCRl0Bvyj1YZUql+ZkptgGjikQARAQABwsFfBBgBAgAJBQJUY85qAhsMAAoJEGg1lTBwyZKw l4IQAIKHs/9po4spZDFyfDjunimEhVHqlUt7ggR1Hsl/tkvTSze8pI1P6dGp2XW6AnH1iayn yRcoyT0ZJ+Zmm4xAH1zqKjWplzqdb/dO28qk0bPso8+1oPO8oDhLm1+tY+cOvufXkBTm+whm +AyNTjaCRt6aSMnA/QHVGSJ8grrTJCoACVNhnXg/R0g90g8iV8Q+IBZyDkG0tBThaDdw1B2l asInUTeb9EiVfL/Zjdg5VWiF9LL7iS+9hTeVdR09vThQ/DhVbCNxVk+DtyBHsjOKifrVsYep WpRGBIAu3bK8eXtyvrw1igWTNs2wazJ71+0z2jMzbclKAyRHKU9JdN6Hkkgr2nPb561yjcB8 sIq1pFXKyO+nKy6SZYxOvHxCcjk2fkw6UmPU6/j/nQlj2lfOAgNVKuDLothIxzi8pndB8Jju KktE5HJqUUMXePkAYIxEQ0mMc8Po7tuXdejgPMwgP7x65xtfEqI0RuzbUioFltsp1jUaRwQZ MTsCeQDdjpgHsj+P2ZDeEKCbma4m6Ez/YWs4+zDm1X8uZDkZcfQlD9NldbKDJEXLIjYWo1PH hYepSffIWPyvBMBTW2W5FRjJ4vLRrJSUoEfJuPQ3vW9Y73foyo/qFoURHO48AinGPZ7PC7TF vUaNOTjKedrqHkaOcqB185ahG2had0xnFsDPlx5y In-Reply-To: <212CBB8E-CC94-4A56-8399-1419D8F2FA5C@infradead.org> X-CRM114-Version: 20100106-BlameMichelson ( TRE 0.8.0 (BSD) ) MR-646709E3 X-CRM114-CacheID: sfid-20241212_134407_945739_F5B69AB0 X-CRM114-Status: GOOD ( 24.16 ) X-BeenThere: kexec@lists.infradead.org X-Mailman-Version: 2.1.34 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: "kexec" Errors-To: kexec-bounces+kexec=archiver.kernel.org@lists.infradead.org This is a multi-part message in MIME format. --------------hPpt08yWuuWdpta0eh1zmCfu Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 7bit On 12/12/24 13:32, David Woodhouse wrote: > On 12 December 2024 21:18:10 GMT, Dave Hansen wrote: >> On 12/12/24 12:11, David Woodhouse wrote: >>> From: David Woodhouse >>> >>> The virtual mapping of the control page may have been _PAGE_GLOBAL and >>> thus its PTE might not have been flushed on the %cr3 switch and >>> it might effectively still be read-only. Move the writes to it >>> down into the identity_mapped() function where the same >>> %rip-relative addressing will get the new mapping. >>> >>> The stack is fine, as that's using the identity mapped address >>> anyway. >> >> Shouldn't we also ensure that Global entries don't bite anyone >> else? Something like the completely untested attached patch? > Doesn't hurt, but this is an identity mapping so absolutely > everything other than this one page is going to be in the low > (positive) part of the canonical address space, so won't have had > global pages in the first place will they? Right, it's generally _not_ a problem. But it _can_ be a surprising problem which is why we're all looking at it today. ;) > Probably a kind thing to do for whatever we're passing control to > though :) > > I'll round it up into the tree and send it out with the next batch of > debug support. Care to give me a SoB for it? You can > s/CR0_PGE/CR4_PGE/ too if you like but I can do that myself as well. Here's a fixed one with a changelog and a SoB. Still 100% gloriously untested though. --------------hPpt08yWuuWdpta0eh1zmCfu Content-Type: text/x-patch; charset=UTF-8; name="0001-x86-mm-Ensure-Global-mappings-are-zapped-during-kexe.patch" Content-Disposition: attachment; filename*0="0001-x86-mm-Ensure-Global-mappings-are-zapped-during-kexe.pa"; filename*1="tch" Content-Transfer-Encoding: base64 RnJvbSAzNTEzYzA4OWU0ZDI4MWZhOTMyZDJiMzI0NTQ0MzY0NWMxYzQ0YzUzIE1vbiBTZXAg MTcgMDA6MDA6MDAgMjAwMQpGcm9tOiBEYXZlIEhhbnNlbiA8ZGF2ZS5oYW5zZW5AbGludXgu aW50ZWwuY29tPgpEYXRlOiBUaHUsIDEyIERlYyAyMDI0IDEzOjM1OjE0IC0wODAwClN1Ympl Y3Q6IFtQQVRDSF0geDg2L21tOiBFbnN1cmUgR2xvYmFsIG1hcHBpbmdzIGFyZSB6YXBwZWQg ZHVyaW5nIGtleGVjCgpUaGUga2VybmVsIHN3aXRjaGVzIHRvIGEgbmV3IHNldCBvZiBwYWdl IHRhYmxlcyBkdXJpbmcga2V4ZWMuIFRoZQpnbG9iYWwgbWFwcGluZ3MgKF9QQUdFX0dMT0JB TD09MSkgY2FuIHJlbWFpbiBpbiB0aGUgVExCIGFmdGVyIHRoaXMKc3dpdGNoLiBUaGlzIGlz IGdlbmVyYWxseSBub3QgYSBwcm9ibGVtIGJlY2F1c2UgdGhlIG5ldyBwYWdlIHRhYmxlcwp1 c2UgYSBkaWZmZXJlbnQgcG9ydGlvbiBvZiB0aGUgdmlydHVhbCBhZGRyZXNzIHNwYWNlIHRo YW4gdGhlIG5vcm1hbAprZXJuZWwgbWFwcGluZ3MuCgpCdXQgdGhlcmUncyBubyBnb29kIHJl YXNvbiB0byBsZWF2ZSB0aGUgb2xkIFRMQiBlbnRyaWVzIGFyb3VuZC4gVGhleQpjYW4gY2F1 c2Ugbm90aGluZyBidXQgdHJvdWJsZS4gQ2xlYXIgIlBhZ2UgR2xvYmFsIEVuYWJsZSIKKFg4 Nl9DUjRfUEdFKS4gVGhpcywgYWxvbmcgd2l0aCB0aGUgQ1IzIHdyaXRlIGVuc3VyZXMgdGhh dCB0aGVyZSBpcwpubyB0cmFjZSBvZiB0aGUgb2xkIHBhZ2UgdGFibGVzIGluIHRoZSBUTEIs IGV2ZW4gZ2xvYmFsIGVudHJpZXMuCgpTaWduZWQtb2ZmLWJ5OiBEYXZlIEhhbnNlbiA8ZGF2 ZS5oYW5zZW5AbGludXguaW50ZWwuY29tPgotLS0KIGFyY2gveDg2L2tlcm5lbC9yZWxvY2F0 ZV9rZXJuZWxfNjQuUyB8IDIgKysKIDEgZmlsZSBjaGFuZ2VkLCAyIGluc2VydGlvbnMoKykK CmRpZmYgLS1naXQgYS9hcmNoL3g4Ni9rZXJuZWwvcmVsb2NhdGVfa2VybmVsXzY0LlMgYi9h cmNoL3g4Ni9rZXJuZWwvcmVsb2NhdGVfa2VybmVsXzY0LlMKaW5kZXggZTllODhjMzQyZjc1 Mi4uODdmYzc4OGZhNjdiMiAxMDA2NDQKLS0tIGEvYXJjaC94ODYva2VybmVsL3JlbG9jYXRl X2tlcm5lbF82NC5TCisrKyBiL2FyY2gveDg2L2tlcm5lbC9yZWxvY2F0ZV9rZXJuZWxfNjQu UwpAQCAtMTU1LDYgKzE1NSw4IEBAIFNZTV9DT0RFX1NUQVJUX0xPQ0FMX05PQUxJR04oaWRl bnRpdHlfbWFwcGVkKQogCSAqLwogCWFuZGwJJChYODZfQ1I0X1BBRSB8IFg4Nl9DUjRfTEE1 NyksICVyMTNkCiAJQUxURVJOQVRJVkUgIiIsIF9fc3RyaW5naWZ5KG9ybCAkWDg2X0NSNF9N Q0UsICVyMTNkKSwgWDg2X0ZFQVRVUkVfVERYX0dVRVNUCisJLyogSW52YWxpZGF0ZSBHbG9i YWwgZW50cmllcyBmcm9tIHRoZSBUTEI6ICovCisJYW5kcQkkfihYODZfQ1I0X1BHRSksICVy MTNkCiAJbW92cQklcjEzLCAlY3I0CiAKIAkvKiBGbHVzaCB0aGUgVExCIChuZWVkZWQ/KSAq LwotLSAKMi4zNC4xCgo= --------------hPpt08yWuuWdpta0eh1zmCfu--