Received: by 2002:a25:8b91:0:0:0:0:0 with SMTP id j17csp639417ybl; Wed, 29 Jan 2020 07:05:42 -0800 (PST) X-Google-Smtp-Source: APXvYqz0WWvxeSho1hfCCQkXmpFpYzsZ6mXcBw/RugCVVPrbVgfa/MyvCwS3U7pDRZqnsUAmM+yr X-Received: by 2002:a9d:774e:: with SMTP id t14mr20398567otl.358.1580310342092; Wed, 29 Jan 2020 07:05:42 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1580310342; cv=none; d=google.com; s=arc-20160816; b=y9CVfF1crwPQ+iWnpmQp5SkY6R8mzO0AJ6vmJloxctJLRAb1/rSdo6YjXRkvIlCkn1 LcZCDNpotbFRj5MwtAqj1GWhG2BPTH4hmnFWx37fPxUr7ClSUqxkdqFRZOUEUY5LsXgg Wvoni2Zb0W6qgDzZdc3o124e3n2kLgwKkEoGK4+TLo3vhiZvVME49l+wr61oxFeFGYl2 yv1vxxbjcZByc4GWidTtTFbJtitdDsFvjOc4n6GwAQv971CnWrKjE1CX/ffqtioIXBwb 3jtEgF6Xe5VyBt6Cf1Xmay/K2t7abObSuKNvVv9UCnTLEybHRHv1rlp7mqAhLmrs0wwu zm2A== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:cc:to:from:subject:mime-version :message-id:date:dkim-signature; bh=MCBz1zj6EK5lhXzgufWO0flG14sfalDmNzlYHd383TA=; b=ZumQlKxCUXrWcHI3VRQRCtTg7OWHXLsF9T1ciDIdICTfeSqi0hzo8fZ1n8yz9Gy+my g8UEcqt4/NquICEZ/BlVjS7PZCp9XRXW4EjyG5FusbyNpSoSlB+Pf5utVRaqy+VAhN/k 68mCB+gSI6QLVG9JQzo3GIYxUYGBNr7yAEhfhH+qZ4R+Se1ReQyMDAZggTahKGguivDf dEOiF/fSd2m0xrMzGzPp7wa1kWGiE34QdY/aYYkGfc1SIaPqmB9X8OF7jwi5+urxoJzo 8MLh7bS/nLxLGYaNl2hgmjTVWY2TYWG6cuBDa9AEK6c7cHd7oYLpO9aJYP7QLAHw/uJL KJ/Q== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@google.com header.s=20161025 header.b=QZytvrIW; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id w4si1269192otl.214.2020.01.29.07.05.28; Wed, 29 Jan 2020 07:05:42 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@google.com header.s=20161025 header.b=QZytvrIW; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1726791AbgA2PBP (ORCPT + 99 others); Wed, 29 Jan 2020 10:01:15 -0500 Received: from mail-wr1-f73.google.com ([209.85.221.73]:53918 "EHLO mail-wr1-f73.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726314AbgA2PBO (ORCPT ); Wed, 29 Jan 2020 10:01:14 -0500 Received: by mail-wr1-f73.google.com with SMTP id j13so10221576wrr.20 for ; Wed, 29 Jan 2020 07:01:13 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20161025; h=date:message-id:mime-version:subject:from:to:cc; bh=MCBz1zj6EK5lhXzgufWO0flG14sfalDmNzlYHd383TA=; b=QZytvrIWRYXmxoGnbla5A2jhMQqKG1hG/eEiCxUSENUkgcU/dnW+6DBhHdJ3L35Bog bZAUcrs09f8QXa3y/WJ2q5KA0C2Whmmjue7xl98FOuw/eaJSeEwiEaWxL7+Zv3zmNrgM am8Cge9FEPr05hGC3tpTGaiDEvWNVoBpCu1hXMcGDstBomMcBPqA0C9560sv6JdExpuG U0+Kxu6Zo30maV5QtTGqAZAHcgfmvqbIMjtUYoS1fHTwpRq7oQWDOCHe8fA0R9XXXAWi LGW3BZxAw2AkVNh15so+Z71OjA2S6L40OvJ7D7IGFENSwcN9T0Fo5rvssewZ9pp4F0zV 1u/w== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:date:message-id:mime-version:subject:from:to:cc; bh=MCBz1zj6EK5lhXzgufWO0flG14sfalDmNzlYHd383TA=; b=jk0WT9naMUdtJcpNrVfxprFVOdEeFQOWmXktOqrzv3eHaShXqQ9ya1iMrTFu6LW7z7 zCG9sgJSpoB1JiYJAmHZ1nep/kIhKYq6zTzluLIu1nD1d3uKvMT+bW3vbYb/U3/WMtuu BnJdYkVkA6GA110Nl8k5CXW/Kl6w9vqRBaopu3z7BhanjC6bvBYX/FPF0yflhLfNDkT8 QDC/eziqFOGTnH7M4IV9tExom5t4vr6KEku2RIn1a1yKI3qqgpr22FyUMGI8fiXizwRH z+RnDxTrfjaX6mnOM1cpK/CaBMxb9BB1xH8qZ421cv388j1NYKxpPLO3oDiyE8GWfXnL IXtQ== X-Gm-Message-State: APjAAAX3zx3XqpC49b7IuNKxyGIDoNKUryvABAIDLpdrjaPZ3lftJxal NlEbQXOnVt3/8N7kBPstlKmlxY51nA== X-Received: by 2002:adf:f54d:: with SMTP id j13mr35917050wrp.19.1580310072038; Wed, 29 Jan 2020 07:01:12 -0800 (PST) Date: Wed, 29 Jan 2020 16:01:02 +0100 Message-Id: <20200129150102.2122-1-elver@google.com> Mime-Version: 1.0 X-Mailer: git-send-email 2.25.0.341.g760bfbb309-goog Subject: [PATCH] kcsan: Address missing case with KCSAN_REPORT_VALUE_CHANGE_ONLY From: Marco Elver To: elver@google.com Cc: paulmck@kernel.org, andreyknvl@google.com, glider@google.com, dvyukov@google.com, kasan-dev@googlegroups.com, linux-kernel@vger.kernel.org Content-Type: text/plain; charset="UTF-8" Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org With KCSAN_REPORT_VALUE_CHANGE_ONLY, KCSAN has still been able to report data races between reads and writes, if a watchpoint was set up on the write. If the write rewrote the same value we'd still have reported the data race. We now unconditionally skip reporting on this case. Signed-off-by: Marco Elver --- kernel/kcsan/report.c | 27 ++++++++++++++++++++------- 1 file changed, 20 insertions(+), 7 deletions(-) diff --git a/kernel/kcsan/report.c b/kernel/kcsan/report.c index 33bdf8b229b5..7cd34285df74 100644 --- a/kernel/kcsan/report.c +++ b/kernel/kcsan/report.c @@ -130,12 +130,25 @@ static bool rate_limit_report(unsigned long frame1, unsigned long frame2) * Special rules to skip reporting. */ static bool -skip_report(int access_type, bool value_change, unsigned long top_frame) +skip_report(bool value_change, unsigned long top_frame) { - const bool is_write = (access_type & KCSAN_ACCESS_WRITE) != 0; - - if (IS_ENABLED(CONFIG_KCSAN_REPORT_VALUE_CHANGE_ONLY) && is_write && - !value_change) { + /* + * The first call to skip_report always has value_change==true, since we + * cannot know the value written of an instrumented access. For the 2nd + * call there are 6 cases with CONFIG_KCSAN_REPORT_VALUE_CHANGE_ONLY: + * + * 1. read watchpoint, conflicting write (value_change==true): report; + * 2. read watchpoint, conflicting write (value_change==false): skip; + * 3. write watchpoint, conflicting write (value_change==true): report; + * 4. write watchpoint, conflicting write (value_change==false): skip; + * 5. write watchpoint, conflicting read (value_change==false): skip; + * 6. write watchpoint, conflicting read (value_change==true): impossible; + * + * Cases 1-4 are intuitive and expected; case 5 ensures we do not report + * data races where the write may have rewritten the same value; and + * case 6 is simply impossible. + */ + if (IS_ENABLED(CONFIG_KCSAN_REPORT_VALUE_CHANGE_ONLY) && !value_change) { /* * The access is a write, but the data value did not change. * @@ -228,7 +241,7 @@ static bool print_report(const volatile void *ptr, size_t size, int access_type, /* * Must check report filter rules before starting to print. */ - if (skip_report(access_type, true, stack_entries[skipnr])) + if (skip_report(true, stack_entries[skipnr])) return false; if (type == KCSAN_REPORT_RACE_SIGNAL) { @@ -237,7 +250,7 @@ static bool print_report(const volatile void *ptr, size_t size, int access_type, other_frame = other_info.stack_entries[other_skipnr]; /* @value_change is only known for the other thread */ - if (skip_report(other_info.access_type, value_change, other_frame)) + if (skip_report(value_change, other_frame)) return false; } -- 2.25.0.341.g760bfbb309-goog