Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S932554AbdCFOgy (ORCPT ); Mon, 6 Mar 2017 09:36:54 -0500 Received: from mail-he1eur01on0093.outbound.protection.outlook.com ([104.47.0.93]:23796 "EHLO EUR01-HE1-obe.outbound.protection.outlook.com" rhost-flags-OK-OK-OK-FAIL) by vger.kernel.org with ESMTP id S932516AbdCFOgh (ORCPT ); Mon, 6 Mar 2017 09:36:37 -0500 Authentication-Results: vger.kernel.org; dkim=none (message not signed) header.d=none;vger.kernel.org; dmarc=none action=none header.from=virtuozzo.com; From: Dmitry Safonov To: CC: <0x7f454c46@gmail.com>, Dmitry Safonov , Thomas Gleixner , Ingo Molnar , "H. Peter Anvin" , Andy Lutomirski , Borislav Petkov , , , Cyrill Gorcunov , "Kirill A. Shutemov" , Shuah Khan , Subject: [PATCHv6 0/5] Fix compatible mmap() return pointer over 4Gb Date: Mon, 6 Mar 2017 17:17:16 +0300 Message-ID: <20170306141721.9188-1-dsafonov@virtuozzo.com> X-Mailer: git-send-email 2.11.1 MIME-Version: 1.0 Content-Type: text/plain X-Originating-IP: [195.214.232.6] X-ClientProxiedBy: DB6PR1001CA0021.EURPRD10.PROD.OUTLOOK.COM (10.171.79.31) To VI1PR0801MB1742.eurprd08.prod.outlook.com (10.168.67.20) X-MS-Office365-Filtering-Correlation-Id: 20a79212-9559-47c3-3266-08d4649c0ddc X-Microsoft-Antispam: UriScan:;BCL:0;PCL:0;RULEID:(22001);SRVR:VI1PR0801MB1742; X-Microsoft-Exchange-Diagnostics: 1;VI1PR0801MB1742;3:Pi0OHjDr3RJyZgpQwkw8+cY0lb2a0tczVfHQXLT84I4nQ/yn5cI21kTgwLuTAw+iXHopZc59WGm+TSTGS5+9tQTW+phyCAzOwfEQTreUIFCvK7/UQ/dksrrmYkWLQ6JudBBYU/lTcSiwsWPNvIhagcjRbidoIdhiXR/ankfRTQzMuWK56SCc7SP2gDSyUYSUHN69cvvWNnOY6SBNyo88oX7E3qkSKzOeLz1tUOBr3sPVo2ZXhy+3/37YVp0tc6O83OGoKCa8hVCOZwdadrqGFA==;25:OsNXq6gUMy/t3bEyR/YNoCUOBI/NAkDydeNR4P4cK8++BO2GMMmsf8c5BI4garZ7YpgDJMyBhnUJtWnMFvdrfS/h1Z1wzIouCHoaOILaO7w8vQ6xIYz8pBtrDPLmhrF/oIxwU3clrnHsXUrHAhIL28woicXHONdOk3SZYEMsx0mJt3LT9bwIS4Sd5kdmcMm+9t80EyYZ7j7D0qIqxLEKg8+uq9dFEYEulxrXGFqa0wKBK3tUpcQHf4KRjZ6cQMnZC89WREDTjjbo+CScItJq78RAtKvw74bFaEr9xI6xu9/wWuI1pFoa9lOjhywt8UGA5d6HTk/jndB5abABFGM4XImsjg4RCu6wtMcOABpj+kUjXOlme9yl3HEXXbeTRKjSkUzX50bxgOV0Wvjc8VpbUHX/kfhL5BukbSCkjrgUBQTGMiqcZcn6f7hkEqmkkQm+jB40tZCDo2yBKZVljrGPUQ== X-Microsoft-Exchange-Diagnostics: 1;VI1PR0801MB1742;31:5IisznOsQ7WqpSPs7c4Z3HzZ5HzIm2wgs5+g5/ngvORrQxlaijUq05WF1mmJbpeg25Kt9xRDlyQ2tWeLWFd6fchfuyT0oXaC8q/l+6aPfjMknk6zHfJZtOWvtvH3iCCxOFxjy59RCYtbiuePOHR9oeeY9XonIUPZy/N8UBeuSqjB+LgKyCOeJFACQTu7/BpRpOtBn3qN16Q8qk+2NZ1afHtz0B1KkVm16rstxqLVBxM=;20:XnB9uX0+p8J5/FZdH7ff9LdxAfUIZ2TjDpfI5kvWj3s7G2C9yc4aYwqDsl7OVpQu0fpYP4kczNdA7jFdHXBv9aP71eEUlh8xSDNbTFm95BPf61WBkZiKUVCRAbnnmITHdYIkDtzRVEudy/WN04//jfy834FPDxj+Kkck9U44Nc/NkwbwtZhzZ+JRHH9eWB7YMdwDQCT0jQAr+dpLOkbuZAXQDoFz/UZvGOwINOEfAhwXLym3H8LSgIl6ByjiDxy4jgo6rzoJEEDu+Z2aQnIfVuUl0vFxTP3nTk0pOnTo1UaA52yaF1kDcgkGgSKH8qvbywkr6c4pXKyeBzKp8pDq+vxZJPSMsr4128Z4LeWK+ZKPBeQsT6s3WtfjcNA/c7LOzP44/43N8dte7mm1FozKUYTDgx90Hr9sQkXEqLHHkzM= X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(278428928389397)(228905959029699); X-Exchange-Antispam-Report-CFA-Test: BCL:0;PCL:0;RULEID:(6040375)(601004)(2401047)(8121501046)(5005006)(3002001)(10201501046)(6041248)(20161123560025)(20161123562025)(20161123555025)(20161123564025)(20161123558025)(6072148);SRVR:VI1PR0801MB1742;BCL:0;PCL:0;RULEID:;SRVR:VI1PR0801MB1742; X-Microsoft-Exchange-Diagnostics: 1;VI1PR0801MB1742;4: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 X-Forefront-PRVS: 0238AEEDB0 X-Forefront-Antispam-Report: SFV:NSPM;SFS:(10019020)(4630300001)(6009001)(7916002)(39450400003)(54534003)(2906002)(110136004)(6916009)(305945005)(8676002)(53416004)(38730400002)(81166006)(6512007)(50466002)(42186005)(7416002)(1076002)(7736002)(5660300001)(53936002)(5003940100001)(50986999)(48376002)(25786008)(66066001)(54906002)(86362001)(92566002)(189998001)(50226002)(2351001)(3846002)(4326008)(47776003)(33646002)(36756003)(6116002)(6506006)(6486002);DIR:OUT;SFP:1102;SCL:1;SRVR:VI1PR0801MB1742;H:dsafonov.sw.ru;FPR:;SPF:None;MLV:sfv;LANG:en; X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1;VI1PR0801MB1742;23:p/jz/2sxGN7DofecadYdG6YLXYEqnUmv81dOCIn?= =?us-ascii?Q?QdrzrzDE0ihWd9d5Q/3pk5OLfA9x+nIL7vbCy7M8IGtOosfI6+8b/EyXU/5Q?= =?us-ascii?Q?yQlfT43LGXa0riU0Jr0iUrylfIcUF4Df4UZfhYw3KrWd9CD24yNl0L8KRwXW?= =?us-ascii?Q?CeksnnpVt8fxwCuavMK1hGCriC/DYv9ZOfkjTLQ9gexFkD2nKv3wy21yFdLa?= =?us-ascii?Q?9WKRbMw6DAEX/eWEFLRbPmcJ6/C9BGwvpj5+IA16xLAQ7KNjlYkEQzx7sKth?= =?us-ascii?Q?4mkly+zDwhxwxIKV7Cufav+rkovpzIkYldPFGqn+SupimMe1HxzgTwAxEv/y?= =?us-ascii?Q?eBKPPtf3ajdCEeNoKXcnCGVoipu5gcP9lZl80w9T8CyVNFTA30uH95fSkWf7?= =?us-ascii?Q?yKFaPSWNSFBlMBMr/axqolzUTGKI5S1faX4Zt2IqgBa2HNPDIspPidh3CFBG?= =?us-ascii?Q?mGWgO6qWgy/W9/lqy9bc82Iv4ntfW5pWs1SuxGtJFK3nll0n+r2/LkG6OldC?= =?us-ascii?Q?s6KPn+C5D8vOXJCDLsbtDOA7rYaQc2FkhbI06qVsbzGoaF4bkTnA9FfWZ7VG?= =?us-ascii?Q?flfUi4svGUpOhubptRVudciU6k52vu0qW447Uodb3oHDCCs2gM7ZFVHLi48g?= =?us-ascii?Q?AQxTtdIXSjJD8/VaDMq6oqmWe6ZcYGZqoT83rWtCNzBau9VPYytREae5FTzA?= =?us-ascii?Q?0w4AujwH+vOX/olko4KcwoXWwQWy3YUrtS0uafDR/D4aB224OyQJpcLbaod4?= =?us-ascii?Q?CGAPwxzJReyMUVwQiW2dPzyPjUzxp+kBYUx64NE0cB7tX/tg2QfE4iISGBKE?= =?us-ascii?Q?OD9jRP3oaRRDUJZtwWR7wm3SypIT/Ty+tcamQbJ7Wfc6CmTvcCRYEJYrrrVy?= =?us-ascii?Q?1+1Xup+lQR1EHp5nl8/SvdzNtUNuc8fBg6z90F8Cn8xY/U1aC0CsEtfIumSI?= =?us-ascii?Q?AtJFXDiQuI3X9o2hOVr2WOfxNpyXsbdg1xBv4XJYaH0HFyOT1ldg6qNbsNun?= =?us-ascii?Q?MS6A=3D?= X-Microsoft-Exchange-Diagnostics: 1;VI1PR0801MB1742;6:oSpg7YwEokxBV5ZRVzrPbZqtWfbIw/Ehv86jacMNLyOHtgONpn7+UW26MyeXCAX5GWdrTKvTyIMQ8sPIN+K8rSqZ/bHbIKj3H+M8m+3CB9gCuS9LFS5tSDkRh0oKa+/gJ9E0GOZnmkRcrTr5ldKr6LMTj/rbpghB5qnkhg/iBv/7HIAs3Eddf1QAt6C5gmpIFmMGxqibo12ExLslcPVstyAlFXmrFFaXKCbGt89GC7Xcumo5X/iZ7iRfM0tBp5Ldn9t3L/1VJL2ql9Hr8FlONJkde43it0wy76WqrewqR/YC6g+KWEOUy/+W+xEI5IS7uSbJ0M37l7TGoS3mpZJSiCWHJ6CTrFHqfbyurR6ElgRLlSSOJ8eGmgLDDHw0HnmnHybOVg6jqbYHUlRSBLpKVg==;5:Ks94XMGP6Iujmq7Cvcy5pWCIBULStT6JNM5ySx5hGKhxxuFPt/aLxPppK3iOkKmpprAqIH87WXkQi1PDDptss4rIsJGOpj7tP2/Qiqx5Ak1oAO7p8lGdvQeAkNAgr+cbk5Jta0Wg0TkNSC7USq1KLQ==;24:spwpfzKkRtsWM36WUOkwfln0hefLS4EVEN/G6a+lIziG9kD7iiSfXE3WBCie1uwfZTkILZnJtHz1rvzqMI8DBM73olDcKE0M5b5e9zZYe8o= SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1;VI1PR0801MB1742;7:BrwCzXbarhvmnS+EkpAc54dWOGG4VXaKQBgaZhRr1WlaFurfwVjxePJFfxQ6IFAvBxk1iY2LzVgIfl0FGrGRer8shSBCFW4nu6vlGOVavICTblAvvWk2i4x07qHeS4WEpQ41RyloPHlCbMApk/c/ruAgj3YuB6CpMzkzD1T+ro4cHBcVezc+zhebxA6YdN+dSelX3366W1j1YCPKQDbN9yXsVh+q8YDmSKtGH6O9lb6wqEVNI0AxQSb1OOLXZ/le4JqSlxkmz29ZGdyQ6HcdaU26RQi2iYDuUubKe+pRILC9hFnPj+uTQU42iU5gi+KYHbmOiIETU4nI3146EwBgkA==;20:AgLonpqwsx/gT7sevYcdwpJANJ4NQX2S5D9oDQMe6NSW66B60bKAzSiaAMEieBL2oORQU/WsIuBo+9j60X1fhAzw0664XQUtg8eN4agnOg73UX90bTf2AubPALmaAiTId9uqIuMm6pGtDMCQHiSQ5fw9HtWggnSNrs1NAuXEhIw= X-OriginatorOrg: virtuozzo.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Mar 2017 14:21:16.0649 (UTC) X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR0801MB1742 Sender: linux-kernel-owner@vger.kernel.org List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Content-Length: 3848 Lines: 86 Note: this patches set has some minor conflicts with Kirill's set for 5-table paging. (with the patch "mm, x86: introduce PR_SET_MAX_VADDR and PR_GET_MAX_VADDR"). Conflicts are minor and I'm OK rather rebase this set on linux-next with his set or help him with rebasing (if he need it). There are a couple of fixes related to x86 mmap(): o 1-2 are just preparation to introduce new mmap bases o 3 fixes 32-bit syscall returning address over 4Gb in applications, launched from 64-bit binaries. This is done by introducing new bases: mmap_compat_base and mmap_compat_legacy_base. Those bases are separated from 64-bit ones, which allows to use mmap base according to bitness of the syscall. Which makes the behavior of 32-bit syscalls the same independently of launched binary's bitness (the same for 64-bit syscalls). It also makes possible to allocate with 64-bit mmap() address higher than 4Gb in compat ELFs - that may be used when 4Gb is not enough or with MAP_FIXED for hiding that mapping from 32-bit address space. o 4 fixes behavior of MAP_32BIT - at this moment it's related to the bitness of executed binary, not of the syscall. o 5 is a selftest to check that 32-bit mmap() does return 32-bit pointer. Changes since v5: - ifdef fixup (kbuild test robot) - rebase on linux-next-20170306 (minor: sysret_rip test added) Changes since v4 (Thomas's review): - rewrote changelogs (so they should be readable by humans also) - made code simpler (fighting to ifdef horror, etc) Changes since v3: - fixed usage of 64-bit random mask for 32-bit mm->mmap_compat_base, during introducing mmap_compat{_legacy,}_base Changes since v2: - don't distinguish native and compat tasks by TIF_ADDR32, introduced mmap_compat{_legacy,}_base which allows to treat them the same - fixed kbuild errors Changes since v1: - Recalculate mmap_base instead of using max possible virtual address for compat/native syscall. That will make policy for allocation the same in 32-bit binaries and in 32-bit syscalls in 64-bit binaries. I need this because sys_mmap() in restored 32-bit process shouldn't hit the stack area. - Fixed mmap() with MAP_32BIT flag in the same usecases - used in_compat_syscall() helper rather TS_COMPAT check (Andy noticed) - introduced find_top() helper as suggested by Andy to simplify code - fixed test error-handeling: it checked the result of sys_mmap() with MMAP_FAILED, which is not correct, as it calls raw syscall - now checks return value to be aligned to PAGE_SIZE. Cc: Thomas Gleixner Cc: Ingo Molnar Cc: "H. Peter Anvin" Cc: Andy Lutomirski Cc: Borislav Petkov Cc: x86@kernel.org Cc: linux-mm@kvack.org Cc: Cyrill Gorcunov Cc: Kirill A. Shutemov Dmitry Safonov (5): x86/mm: introduce arch_rnd() to compute 32/64 mmap rnd x86/mm: add task_size parameter to mmap_base() x86/mm: introduce mmap_compat_base for 32-bit mmap() x86/mm: check in_compat_syscall() instead TIF_ADDR32 for mmap(MAP_32BIT) selftests/x86: add test for 32-bit mmap() return addr arch/Kconfig | 7 + arch/x86/Kconfig | 1 + arch/x86/include/asm/elf.h | 27 ++-- arch/x86/include/asm/processor.h | 4 +- arch/x86/kernel/sys_x86_64.c | 27 +++- arch/x86/mm/mmap.c | 109 ++++++++----- include/linux/mm_types.h | 5 + tools/testing/selftests/x86/Makefile | 2 +- tools/testing/selftests/x86/test_compat_mmap.c | 208 +++++++++++++++++++++++++ 9 files changed, 332 insertions(+), 58 deletions(-) create mode 100644 tools/testing/selftests/x86/test_compat_mmap.c -- 2.11.1