xen-devel.lists.xenproject.org archive mirror
 help / color / mirror / Atom feed
From: Wei Liu <wei.liu2@citrix.com>
To: Xen-devel <xen-devel@lists.xenproject.org>
Cc: Wei Liu <wei.liu2@citrix.com>,
	Ian Jackson <Ian.Jackson@eu.citrix.com>,
	Ian Campbell <ian.campbell@citrix.com>
Subject: [PATCH for 4.6 v3 4/5] libxc: don't populate same pfn more than once in populate_pfns
Date: Sun, 6 Sep 2015 21:05:38 +0100	[thread overview]
Message-ID: <1441569939-23562-5-git-send-email-wei.liu2@citrix.com> (raw)
In-Reply-To: <1441569939-23562-1-git-send-email-wei.liu2@citrix.com>

The original implementation of populate_pfns didn't consider the same
pfn can be present multiple times in the array. The mechanism to prevent
populating the same pfn multiple times only worked if the recurring pfn
appeared in different batches.

This bug is discovered by Linux 4.1 32 bit kernel save / restore test,
which has several ptes pointing to same pfn, which results in an array
containing recurring pfn.  When libxc called x86_pv_localise_page, the
original implementation would populate the same pfn more than once.

The fix is to set bit in populated bitmap as we generate list of pfns to
be populated.

Signed-off-by: Wei Liu <wei.liu2@citrix.com>
Reviewed-by: Andrew Cooper <andrew.cooper3@citrix.com>
---
 tools/libxc/xc_sr_restore.c | 6 +++---
 1 file changed, 3 insertions(+), 3 deletions(-)

diff --git a/tools/libxc/xc_sr_restore.c b/tools/libxc/xc_sr_restore.c
index df885b6..924dd55 100644
--- a/tools/libxc/xc_sr_restore.c
+++ b/tools/libxc/xc_sr_restore.c
@@ -214,6 +214,9 @@ int populate_pfns(struct xc_sr_context *ctx, unsigned count,
                           types[i] != XEN_DOMCTL_PFINFO_BROKEN))) &&
              !pfn_is_populated(ctx, original_pfns[i]) )
         {
+            rc = pfn_set_populated(ctx, original_pfns[i]);
+            if ( rc )
+                goto err;
             pfns[nr_pfns] = mfns[nr_pfns] = original_pfns[i];
             ++nr_pfns;
         }
@@ -238,9 +241,6 @@ int populate_pfns(struct xc_sr_context *ctx, unsigned count,
                 goto err;
             }
 
-            rc = pfn_set_populated(ctx, pfns[i]);
-            if ( rc )
-                goto err;
             ctx->restore.ops.set_gfn(ctx, pfns[i], mfns[i]);
         }
     }
-- 
2.1.4

  parent reply	other threads:[~2015-09-06 20:05 UTC|newest]

Thread overview: 20+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2015-09-06 20:05 [PATCH for 4.6 v3 0/5] Migration v2 fix Wei Liu
2015-09-06 20:05 ` [PATCH for 4.6 v3 1/5] libxc: clearer migration v2 debug message Wei Liu
2015-09-06 20:05 ` [PATCH for 4.6 v3 2/5] libxc: migration v2 prefix Memory -> Frames Wei Liu
2015-09-06 20:10   ` Wei Liu
2015-09-07  9:07   ` Andrew Cooper
2015-09-06 20:05 ` [PATCH for 4.6 v3 3/5] libxc: fix indentation Wei Liu
2015-09-06 20:05 ` Wei Liu [this message]
2015-09-07  7:18   ` [PATCH for 4.6 v3 4/5] libxc: don't populate same pfn more than once in populate_pfns Jan Beulich
2015-09-07  9:36     ` Wei Liu
2015-09-07  9:53       ` Jan Beulich
2015-09-07  9:57         ` Wei Liu
2015-09-07 10:08         ` Juergen Gross
2015-09-07  9:59       ` David Vrabel
2015-09-07 10:07         ` Jan Beulich
2015-09-06 20:05 ` [PATCH for 4.6 v3 5/5] libxc: add assertion to avoid setting same bit more than once Wei Liu
2015-09-07 10:04 ` [PATCH for 4.6 v3 0/5] Migration v2 fix Andrew Cooper
2015-09-07 10:07   ` Wei Liu
2015-09-07 10:10     ` Andrew Cooper
2015-09-07 11:22       ` Wei Liu
2015-09-07 11:12 ` Ian Campbell

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=1441569939-23562-5-git-send-email-wei.liu2@citrix.com \
    --to=wei.liu2@citrix.com \
    --cc=Ian.Jackson@eu.citrix.com \
    --cc=ian.campbell@citrix.com \
    --cc=xen-devel@lists.xenproject.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).