Received: by 2002:a05:7208:9594:b0:7e:5202:c8b4 with SMTP id gs20csp2304690rbb; Tue, 27 Feb 2024 18:47:48 -0800 (PST) X-Forwarded-Encrypted: i=3; AJvYcCXJgnjb1tNt7D/vOEkjvIb5EPB73Wr/JCyTruO59njeHx8WibgSCfhAG69guAH0Bf5C00pWPLpWRc7VWN0prZ8vBiRUWxKUxdDtxLJJSw== X-Google-Smtp-Source: AGHT+IHZAjYbiNXo8AIUn743uVZtmqHkp0hvX8htP8Xx7AGvU8syWP9k3paoW5z3wtPHgbH9wEEr X-Received: by 2002:a05:6512:4005:b0:512:ebaa:30f with SMTP id br5-20020a056512400500b00512ebaa030fmr9573387lfb.5.1709088468528; Tue, 27 Feb 2024 18:47:48 -0800 (PST) ARC-Seal: i=2; a=rsa-sha256; t=1709088468; cv=pass; d=google.com; s=arc-20160816; b=GqbvkJvDrBaYrKmpkZZtchKPUm0Zo5khOtP9ZFUTdscet3vND9Q29QBgTksobIEbnm mFbqrb2JZeQN28TSnLI3rBHJ58aM6tCDOle9SYrm9ZAYe4pYJEARI0EC8jyhtXYiPcBM 08OTk2XDhY3JC3RtrUpo33Mtr7t5o/JTQmmePZCbtvzDzF1yNMDhi+YPA7mSYuNu0nV1 4k1kDNlcz40cV3Yk2SBEtiiMXBF8vaai7vmzf4SHO4oh6Fz7HklGcnOBT0mph4s54seC bBcbOtv99nWp/Dm+rvn+mG379CJe15waouWGeKrlAjhq+amXwpGpE/sEbnY7t+e2uhkq HtZg== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=content-transfer-encoding:mime-version:list-unsubscribe :list-subscribe:list-id:precedence:references:in-reply-to:message-id :date:subject:cc:to:from:dkim-signature; bh=83r4EAUoTO5ZvgsfPp7swXodejXzXtH9eGtsARrhgv4=; fh=rwK94zAGAKPYR1MKRA8pLq/TP5l3sGmFgg1zjq7AI/E=; b=eP6m5MOa2PnIWQRkAAAXhXIYS1+u5K9JIu+tOKg4MDkyc1PNZYvxqxFotgZA6fI/vN OuePCm+fqIUmWsfIDDwCps8bCOEYmQrSpmWN5YCcUy+UtxwiG6vXw2aALLfao63doQMx l4QgNQqZM3WRi8E4uhJjllv80yW6hZJrMQg5I9bfha7d8fUcitjXOTKucGnggockw1lt uZWedKLwmWMS9zOnsKyyM9InAxk4gg2mE8rPcPfYwsiTifJ0El3FlJ/BvH0lnrW6B0I/ VR0N+a1D14abRWZRdPDF47Pvtb1yXPNpNppXhtihSBDSq4n0wwVnGjfz6dm70Sn0wAzr mXpw==; dara=google.com ARC-Authentication-Results: i=2; mx.google.com; dkim=pass header.i=@bytedance.com header.s=google header.b=lpxQv5Wy; arc=pass (i=1 spf=pass spfdomain=bytedance.com dkim=pass dkdomain=bytedance.com dmarc=pass fromdomain=bytedance.com); spf=pass (google.com: domain of linux-kernel+bounces-84446-linux.lists.archive=gmail.com@vger.kernel.org designates 2604:1380:4601:e00::3 as permitted sender) smtp.mailfrom="linux-kernel+bounces-84446-linux.lists.archive=gmail.com@vger.kernel.org"; dmarc=pass (p=QUARANTINE sp=QUARANTINE dis=NONE) header.from=bytedance.com Return-Path: Received: from am.mirrors.kernel.org (am.mirrors.kernel.org. [2604:1380:4601:e00::3]) by mx.google.com with ESMTPS id w9-20020a170906184900b00a3e91ecd95fsi1208718eje.121.2024.02.27.18.47.48 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Tue, 27 Feb 2024 18:47:48 -0800 (PST) Received-SPF: pass (google.com: domain of linux-kernel+bounces-84446-linux.lists.archive=gmail.com@vger.kernel.org designates 2604:1380:4601:e00::3 as permitted sender) client-ip=2604:1380:4601:e00::3; Authentication-Results: mx.google.com; dkim=pass header.i=@bytedance.com header.s=google header.b=lpxQv5Wy; arc=pass (i=1 spf=pass spfdomain=bytedance.com dkim=pass dkdomain=bytedance.com dmarc=pass fromdomain=bytedance.com); spf=pass (google.com: domain of linux-kernel+bounces-84446-linux.lists.archive=gmail.com@vger.kernel.org designates 2604:1380:4601:e00::3 as permitted sender) smtp.mailfrom="linux-kernel+bounces-84446-linux.lists.archive=gmail.com@vger.kernel.org"; dmarc=pass (p=QUARANTINE sp=QUARANTINE dis=NONE) header.from=bytedance.com Received: from smtp.subspace.kernel.org (wormhole.subspace.kernel.org [52.25.139.140]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by am.mirrors.kernel.org (Postfix) with ESMTPS id 337021F24AA0 for ; Wed, 28 Feb 2024 02:47:48 +0000 (UTC) Received: from localhost.localdomain (localhost.localdomain [127.0.0.1]) by smtp.subspace.kernel.org (Postfix) with ESMTP id C76C520B0F; Wed, 28 Feb 2024 02:46:21 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; dkim=pass (2048-bit key) header.d=bytedance.com header.i=@bytedance.com header.b="lpxQv5Wy" Received: from mail-pf1-f169.google.com (mail-pf1-f169.google.com [209.85.210.169]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id 8EAA4208D3 for ; Wed, 28 Feb 2024 02:46:19 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=none smtp.client-ip=209.85.210.169 ARC-Seal:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1709088381; cv=none; b=AGZlbW3EZ2FIE2+r2sEuAB7Nfs6NWG+JPDTOmxQz7K09rnUBKe01Vf2jsEdR+EfGOFmLQ/TUNkTHp5Owlr7cPIHZrtXiy25DvyKe6SF1qEObnt+Q5KYYQuZDsK8B2/sdizrUA/YOQIkcS9xVxBsU5UonOiA6rtVBRxaKuz5iPM4= ARC-Message-Signature:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1709088381; c=relaxed/simple; bh=mQFH/SJP37/K0A+bzRwDW5rArc1AI8HylzyhxGDcshA=; h=From:To:Cc:Subject:Date:Message-Id:In-Reply-To:References: MIME-Version; b=D91JLMDQ2G5EtVzrp7XDJnwIa0OhvczCmStBZY6dUrUXuKw05a8XhJsfel070fmSEOu7+71m4tWHUJ8zry7OpVgwm5xL+ys7NUPYBBvvi2XYsSMSeMJCizqUwTrkppvvhqNaJX3a7MaUz8f0ojSN2jYo5iSpVEeWB0Dty6+vfBA= ARC-Authentication-Results:i=1; smtp.subspace.kernel.org; dmarc=pass (p=quarantine dis=none) header.from=bytedance.com; spf=pass smtp.mailfrom=bytedance.com; dkim=pass (2048-bit key) header.d=bytedance.com header.i=@bytedance.com header.b=lpxQv5Wy; arc=none smtp.client-ip=209.85.210.169 Authentication-Results: smtp.subspace.kernel.org; dmarc=pass (p=quarantine dis=none) header.from=bytedance.com Authentication-Results: smtp.subspace.kernel.org; spf=pass smtp.mailfrom=bytedance.com Received: by mail-pf1-f169.google.com with SMTP id d2e1a72fcca58-6e56787e691so21391b3a.0 for ; Tue, 27 Feb 2024 18:46:19 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=bytedance.com; s=google; t=1709088379; x=1709693179; darn=vger.kernel.org; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:cc:to:from:from:to:cc:subject:date :message-id:reply-to; bh=83r4EAUoTO5ZvgsfPp7swXodejXzXtH9eGtsARrhgv4=; b=lpxQv5WyDQS4nhy+Fa4qPpO5Y8GBEmL7icgkvkbgAPWKIzNAWss7vbfnY3yesoxNhb WHelhMQt6jI4Im7acXl4SQK41KMGMI6n0sWF4AfT0WiZkFmCAmzM34iK2qwDTTmcjSh0 Kezt4wE65acTJ/yO2zQeX0You+kcO1wwny1ybvJdfmDhSuoPWqr5e5G7aD9nhS7CQMN7 jUMyqmv1Sa4FeUc3QoUK0I5XaRROuQJCVOSZCvYNdnfwBKlAcYOhRtgFI60NsW9Gzk4T SyjR9X2gfpsgJ6TzVaj0pu+M2K3uGYQc7dp6jCDeKlWGrdJpeSslWDRWIVAMUbVmLcJQ fCsQ== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1709088379; x=1709693179; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:cc:to:from:x-gm-message-state:from:to:cc :subject:date:message-id:reply-to; bh=83r4EAUoTO5ZvgsfPp7swXodejXzXtH9eGtsARrhgv4=; b=vy6MAyZxS2AXf/dHu8Qoby95fhK7xfK7ld/5IKtWficrp4FRJzjjXQe6e/3jn5V9MQ RAG3vGiBOCEszLsOALzkwBEyq5JBXhJ8KKI+YNVPejFUi3gTNPVOVwuamA4Fbg3X5+mX iT4vWu/aLOxl2/+/cz6GsaCr70q2B29kSpgARNC9VKzsIlN5BVmo9UPorBWbjDgPX2Rh C7s+f7DU3xCrBb3jbC4ft8h/B0TENmZd3skacCOLzVy0h1anHEtz198GEQTfeEUb9MBw utsQv171tyoKhkRNA2x68ocN8PKLCvvBMg+Wn+nJbOUdNfVUFQDAN/a0jef+Jb85g06j pPBg== X-Forwarded-Encrypted: i=1; AJvYcCVCwdFfl5JRgbcRSYjqmvvRdPIPuY/nOjhB34j9Gn7fh0nIdqha8apWev+r+6wtPQ8tiNz0IrHraWNBkpBbcYCq1AS7wcrmGLKrpJ9t X-Gm-Message-State: AOJu0YziJEojP9bxwBzoxlMQba9OyG1BT/f94Qy0rtRJ3XxdOVYKuk4P WTqNGIN0P2IG7J5jZCEMlCGI9tlXuk3O4pCasWrDVwQOm2uuAlXZ60yhwdWuZkA= X-Received: by 2002:a05:6a20:93a7:b0:1a0:e6c6:fa with SMTP id x39-20020a056a2093a700b001a0e6c600famr1843559pzh.7.1709088378981; Tue, 27 Feb 2024 18:46:18 -0800 (PST) Received: from C02CV19DML87.bytedance.net ([240e:6b1:c0:120::1:d]) by smtp.gmail.com with ESMTPSA id 9-20020a631249000000b005dcbb699abfsm6489072pgs.34.2024.02.27.18.46.12 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Tue, 27 Feb 2024 18:46:18 -0800 (PST) From: Rui Qi To: bp@alien8.de, mingo@redhat.com, tglx@linutronix.de, hpa@zytor.com, jpoimboe@redhat.com, peterz@infradead.org, mbenes@suse.cz, gregkh@linuxfoundation.org, stable@vger.kernel.org, alexandre.chartre@oracle.com Cc: x86@kernel.org, linux-kernel@vger.kernel.org, yuanzhu@bytedance.com, Rui Qi Subject: [PATCH v2 3/3] x86/speculation: Support intra-function call validation Date: Wed, 28 Feb 2024 10:45:35 +0800 Message-Id: <20240228024535.79980-4-qirui.001@bytedance.com> X-Mailer: git-send-email 2.39.2 (Apple Git-143) In-Reply-To: <20240228024535.79980-1-qirui.001@bytedance.com> References: <20240228024535.79980-1-qirui.001@bytedance.com> Precedence: bulk X-Mailing-List: linux-kernel@vger.kernel.org List-Id: List-Subscribe: List-Unsubscribe: MIME-Version: 1.0 Content-Transfer-Encoding: 8bit commit 8afd1c7da2b0 ("x86/speculation: Change FILL_RETURN_BUFFER to work with objtool") does not support intra-function call stack validation, which causes kernel live patching to fail. This commit adds support for this, and after testing, the kernel live patching feature is restored to normal. Fixes: 8afd1c7da2b0 ("x86/speculation: Change FILL_RETURN_BUFFER to work with objtool") Cc: # v5.4.250+ Signed-off-by: Rui Qi --- arch/x86/include/asm/nospec-branch.h | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/arch/x86/include/asm/nospec-branch.h b/arch/x86/include/asm/nospec-branch.h index c8819358a332..a88135c358c0 100644 --- a/arch/x86/include/asm/nospec-branch.h +++ b/arch/x86/include/asm/nospec-branch.h @@ -13,6 +13,8 @@ #include #include +#include +#include /* * This should be used immediately before a retpoline alternative. It tells * objtool where the retpolines are so that it can make sense of the control @@ -51,14 +53,18 @@ #define __FILL_RETURN_BUFFER(reg, nr, sp) \ mov $(nr/2), reg; \ 771: \ + ANNOTATE_INTRA_FUNCTION_CALL; \ call 772f; \ 773: /* speculation trap */ \ + UNWIND_HINT_EMPTY; \ pause; \ lfence; \ jmp 773b; \ 772: \ + ANNOTATE_INTRA_FUNCTION_CALL; \ call 774f; \ 775: /* speculation trap */ \ + UNWIND_HINT_EMPTY; \ pause; \ lfence; \ jmp 775b; \ @@ -152,6 +158,7 @@ .endm .macro ISSUE_UNBALANCED_RET_GUARD + ANNOTATE_INTRA_FUNCTION_CALL; call .Lunbalanced_ret_guard_\@ int3 .Lunbalanced_ret_guard_\@: -- 2.39.2 (Apple Git-143)