Linux Modules
 help / color / mirror / Atom feed
From: sashiko-bot@kernel.org
To: "Jim Cromie" <jim.cromie@gmail.com>
Cc: dri-devel@lists.freedesktop.org, linux-modules@vger.kernel.org
Subject: Re: [PATCH v11 23/38] dyndbg-API: replace DECLARE_DYNDBG_CLASSMAP
Date: Wed, 23 Sep 2026 22:49:40 +0000	[thread overview]
Message-ID: <20260923224940.ABEB51F00893@smtp.kernel.org> (raw)
In-Reply-To: <20260923-dd-cmap-part2-clean-v11-23-9b6c217fdf2f@gmail.com>

Thank you for your contribution! Sashiko AI review found 2 potential issue(s) to consider:
- [Medium] dyndbg: TOCTOU race in ddebug_sync_classbits allows stale module settings
- [Low] dyndbg: incompatible pointer type in module section load
--

commit 0e12bed35baa8c038def6b06ffc95416176ee997
Author: Jim Cromie <jim.cromie@gmail.com>

dyndbg-API: replace DECLARE_DYNDBG_CLASSMAP

This commit replaces DECLARE_DYNDBG_CLASSMAP with an explicit client-server
model using DEFINE and USE macros. It resolves boot-time parameter
propagation failures by establishing a robust reference linkage. At module
load time, dyndbg now scans and resolves parent classmap references.

> diff --git a/kernel/module/main.c b/kernel/module/main.c
> --- a/kernel/module/main.c
> +++ b/kernel/module/main.c
[ ... ]
> @@ -2791,6 +2791,9 @@ static int find_module_sections(struct module *mod, struct load_info *info)
>  	mod->dyndbg_info.maps.start = section_objs(info, "__dyndbg_class_maps",
>  						   sizeof(*mod->dyndbg_info.maps.start),
>  						   &mod->dyndbg_info.maps.len);
> +	mod->dyndbg_info.users.start = section_objs(info, "__dyndbg_class_users",
> +						   sizeof(*mod->dyndbg_info.users.start),
> +						   &mod->dyndbg_info.users.len);

[Severity: Low]
The len field in struct _ddebug_class_users is declared as a signed int, but
section_objs() expects an unsigned int pointer for its num parameter. Could
passing &mod->dyndbg_info.users.len here trigger an incompatible pointer
type compiler warning and result in a build error under standard
configurations?

[ ... ]
> diff --git a/lib/dynamic_debug.c b/lib/dynamic_debug.c
> --- a/lib/dynamic_debug.c
> +++ b/lib/dynamic_debug.c
[ ... ]
> +static void ddebug_sync_classbits(const struct kernel_param *kp, const char *modname)
> +{
> +	const struct ddebug_class_param *dcp = kp->arg;
> +	u32 val, new_bits;
> +
> +	if (!dcp || !dcp->map)
> +		return;
> +
> +	switch (dcp->map->map_type) {
> +	case DD_CLASS_TYPE_DISJOINT_BITS:
> +		val = READ_ONCE(*dcp->bits);
> +		new_bits = val;
> +		v2pr_info("  %s: classbits: 0x%x\n", KP_NAME(kp), new_bits);
> +		ddebug_apply_class_bitmap(dcp, &new_bits, 0, modname);

[Severity: Medium]
Because dcp->bits is read locklessly via READ_ONCE() before
ddebug_apply_class_bitmap() takes ddebug_lock, is there a race condition
here?

If a user concurrently writes to the corresponding sysfs parameter, the sysfs
thread will update existing modules under the lock, release it, and then
update the parameter value.

If a concurrent module load thread executing ddebug_sync_classbits() reads
the old parameter value right before the sysfs thread writes the new value,
and then acquires the lock to apply the settings:

sysfs thread:
param_set_dyndbg_module_classes()
    mutex_lock(&ddebug_lock);
    // updates existing modules
    mutex_unlock(&ddebug_lock);

Module load thread in ddebug_sync_classbits():
    val = READ_ONCE(*dcp->bits); // reads old stale value

sysfs thread:
    *dcp->bits = new_value;

Module load thread in ddebug_sync_classbits():
    ddebug_apply_class_bitmap(...)
        mutex_lock(&ddebug_lock);
        // applies stale value

Would the newly loading module miss the concurrent sysfs update and
initialize with stale debug class settings?

-- 
Sashiko AI review · https://sashiko.dev/#/patchset/20260923-dd-cmap-part2-clean-v11-0-9b6c217fdf2f@gmail.com?part=23

  reply	other threads:[~2026-09-23 22:49 UTC|newest]

Thread overview: 58+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2026-09-23 22:34 [PATCH v11 00/38] dyndbg: Fix classmaps API for subsystems, query extensions, selftests Jim Cromie
2026-09-23 22:34 ` [PATCH v11 01/38] selftests/dyndbg: Add kselftest script to verify dynamic-debug Jim Cromie
2026-09-23 22:34 ` [PATCH v11 02/38] vmlinux.lds.h: refactor BOUNDED_SECTION_* macros into bounded_sections.lds.h Jim Cromie
2026-09-23 22:34 ` [PATCH v11 03/38] vmlinux.lds.h: drop unused HEADERED_SECTION* macros Jim Cromie
2026-09-23 22:34 ` [PATCH v11 04/38] vmlinux.lds.h: Fix ALIGN(8) omission causing NULL ptr on i386 Jim Cromie
2026-09-23 22:34 ` [PATCH v11 05/38] vmlinux.lds.h: remove redundant ALIGN(8) directives Jim Cromie
2026-09-23 22:34 ` [PATCH v11 06/38] dyndbg.lds.S: fix lost dyndbg sections in modules Jim Cromie
2026-09-23 22:34 ` [PATCH v11 07/38] dyndbg: factor ddebug_match_desc out from ddebug_change Jim Cromie
2026-09-23 22:34 ` [PATCH v11 08/38] dyndbg: add stub macro for DECLARE_DYNDBG_CLASSMAP Jim Cromie
2026-09-23 22:34 ` [PATCH v11 09/38] dyndbg: reword "class unknown," to "class:_UNKNOWN_" Jim Cromie
2026-09-23 22:34 ` [PATCH v11 10/38] dyndbg-API: remove DD_CLASS_TYPE_(DISJOINT|LEVEL)_NAMES and code Jim Cromie
2026-09-23 22:34 ` [PATCH v11 11/38] dyndbg: drop NUM_TYPE_ARGS Jim Cromie
2026-09-23 22:34 ` [PATCH v11 12/38] dyndbg: bump num-tokens in a query-cmd from 9 to 15 Jim Cromie
2026-09-23 22:34 ` [PATCH v11 13/38] dyndbg: reduce verbose/debug clutter Jim Cromie
2026-09-23 22:34 ` [PATCH v11 14/38] dyndbg: Bind callsites and classmaps to DDEBUG_MODNAME Jim Cromie
2026-09-23 22:45   ` sashiko-bot
2026-10-01 22:15     ` jim.cromie
2026-09-23 22:34 ` [PATCH v11 15/38] dyndbg: refactor param_set_dyndbg_classes and below Jim Cromie
2026-09-23 22:34 ` [PATCH v11 16/38] dyndbg: tighten fn-sig of ddebug_apply_class_bitmap Jim Cromie
2026-09-23 22:34 ` [PATCH v11 17/38] dyndbg: replace classmap list with an array-slice Jim Cromie
2026-09-23 22:47   ` sashiko-bot
2026-10-01 20:48     ` jim.cromie
2026-09-23 22:34 ` [PATCH v11 18/38] dyndbg: macrofy a 2-index for-loop pattern Jim Cromie
2026-09-23 22:34 ` [PATCH v11 19/38] dyndbg: reduce class param storage to u32 Jim Cromie
2026-09-23 22:34 ` [PATCH v11 20/38] dyndbg,module: make proper substructs in _ddebug_info Jim Cromie
2026-09-25  9:28   ` Petr Pavlu
2026-09-23 22:34 ` [PATCH v11 21/38] dyndbg: move mod_name down from struct ddebug_table to _ddebug_info Jim Cromie
2026-09-23 22:34 ` [PATCH v11 22/38] dyndbg: hoist classmap-filter-by-modname up to ddebug_add_module Jim Cromie
2026-09-23 22:34 ` [PATCH v11 23/38] dyndbg-API: replace DECLARE_DYNDBG_CLASSMAP Jim Cromie
2026-09-23 22:49   ` sashiko-bot [this message]
2026-10-01 22:53     ` jim.cromie
2026-09-23 22:34 ` [PATCH v11 24/38] selftests/dyndbg: Enable FT_classmap_inheritance Jim Cromie
2026-09-23 22:45   ` sashiko-bot
2026-10-01 23:24     ` jim.cromie
2026-09-23 22:34 ` [PATCH v11 25/38] dyndbg: detect class_id reservation conflicts Jim Cromie
2026-09-23 22:34 ` [PATCH v11 26/38] dyndbg: check DYNAMIC_DEBUG_CLASSMAP_{DEFINE,USE_} args at compile-time Jim Cromie
2026-09-23 22:34 ` [PATCH v11 27/38] dyndbg-test: add do_bulk testpoint, rename do_prints to do_classes Jim Cromie
2026-09-23 22:34 ` [PATCH v11 28/38] dyndbg-API: promote DYNAMIC_DEBUG_CLASSMAP_PARAM to API Jim Cromie
2026-09-23 22:34 ` [PATCH v11 29/38] dyndbg: control-parser: treat comma as a token separator Jim Cromie
2026-09-23 22:46   ` sashiko-bot
2026-10-01 22:02     ` jim.cromie
2026-09-23 22:34 ` [PATCH v11 30/38] selftests: enable comma-terminator tests Jim Cromie
2026-09-23 22:34 ` [PATCH v11 31/38] dyndbg: split multi-query strings with @ Jim Cromie
2026-09-23 22:47   ` sashiko-bot
2026-10-01 22:07     ` jim.cromie
2026-09-23 22:34 ` [PATCH v11 32/38] dyndbg: resolve "protection" of class'd pr_debug Jim Cromie
2026-09-23 22:53   ` sashiko-bot
2026-10-01 21:48     ` jim.cromie
2026-09-23 22:34 ` [PATCH v11 33/38] dyndbg: harden classmap and descriptor validation Jim Cromie
2026-09-23 22:34 ` [PATCH v11 34/38] docs/dyndbg: add classmap info to howto Jim Cromie
2026-09-23 22:34 ` [PATCH v11 35/38] dyndbg: Ignore additional arguments from pr_fmt Jim Cromie
2026-09-23 22:35 ` [PATCH v11 36/38] dyndbg: add epilogue to dynamic_debug/control file Jim Cromie
2026-09-23 22:35 ` [PATCH v11 37/38] dyndbg: add +c flag to count pr_debug calls without printing Jim Cromie
2026-09-23 22:52   ` sashiko-bot
2026-10-01 21:53     ` jim.cromie
2026-09-23 22:35 ` [PATCH v11 38/38] dyndbg: add DEBUG-biased fallback stubs for _dynamic_func_call_cls Jim Cromie
2026-09-23 22:53 ` [PATCH v11 00/38] dyndbg: Fix classmaps API for subsystems, query extensions, selftests Andrew Morton
2026-09-25 20:30   ` jim.cromie

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20260923224940.ABEB51F00893@smtp.kernel.org \
    --to=sashiko-bot@kernel.org \
    --cc=dri-devel@lists.freedesktop.org \
    --cc=jim.cromie@gmail.com \
    --cc=linux-modules@vger.kernel.org \
    --cc=sashiko-reviews@lists.linux.dev \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox