From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from eggs.gnu.org ([140.186.70.92]:55165) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1ROvDw-0004wi-KB for qemu-devel@nongnu.org; Fri, 11 Nov 2011 12:49:09 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1ROvDt-0002lw-PV for qemu-devel@nongnu.org; Fri, 11 Nov 2011 12:49:08 -0500 Received: from cantor2.suse.de ([195.135.220.15]:45057 helo=mx2.suse.de) by eggs.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1ROvDt-0002lA-Dj for qemu-devel@nongnu.org; Fri, 11 Nov 2011 12:49:05 -0500 From: Alexander Graf Date: Fri, 11 Nov 2011 18:49:13 +0100 Message-Id: <1321033763-19881-7-git-send-email-agraf@suse.de> In-Reply-To: <1321033763-19881-1-git-send-email-agraf@suse.de> References: <1321033763-19881-1-git-send-email-agraf@suse.de> Subject: [Qemu-devel] [PATCH 06/16] s390x: make ipte 31-bit aware List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: qemu-devel Developers Cc: blauwirbel@gmail.com When running 31-bit code we can potentially map the same virtual address twice - once as 0x0yyyyyyy and once as 0x8yyyyyyy, because the upper bit gets ignored. This also should be reflected in the tlb invalidation path, so we really invalidate also the transparently created tlb entries. Signed-off-by: Alexander Graf --- target-s390x/op_helper.c | 7 +++++++ 1 files changed, 7 insertions(+), 0 deletions(-) diff --git a/target-s390x/op_helper.c b/target-s390x/op_helper.c index e594118..2f46bdd 100644 --- a/target-s390x/op_helper.c +++ b/target-s390x/op_helper.c @@ -2950,6 +2950,13 @@ void HELPER(ipte)(uint64_t pte_addr, uint64_t vaddr) /* XXX we exploit the fact that Linux passes the exact virtual address here - it's not obliged to! */ tlb_flush_page(env, page); + + /* XXX 31-bit hack */ + if (page & 0x80000000) { + tlb_flush_page(env, page & ~0x80000000); + } else { + tlb_flush_page(env, page | 0x80000000); + } } /* flush local tlb */ -- 1.6.0.2