diff options
author | Thomas Gleixner <tglx@linutronix.de> | 2018-01-18 10:28:26 -0500 |
---|---|---|
committer | Thomas Gleixner <tglx@linutronix.de> | 2018-01-19 10:31:28 -0500 |
commit | 6f41c34d69eb005e7848716bbcafc979b35037d5 (patch) | |
tree | b5f5f6275ac19cc185a127c2f8a913f46019d705 | |
parent | 6cfb521ac0d5b97470883ff9b7facae264b7ab12 (diff) |
x86/mce: Make machine check speculation protected
The machine check idtentry uses an indirect branch directly from the low
level code. This evades the speculation protection.
Replace it by a direct call into C code and issue the indirect call there
so the compiler can apply the proper speculation protection.
Signed-off-by: Thomas Gleixner <tglx@linutronix.de>
Reviewed-by:Borislav Petkov <bp@alien8.de>
Reviewed-by: David Woodhouse <dwmw@amazon.co.uk>
Niced-by: Peter Zijlstra <peterz@infradead.org>
Cc: stable@vger.kernel.org
Link: https://lkml.kernel.org/r/alpine.DEB.2.20.1801181626290.1847@nanos
-rw-r--r-- | arch/x86/entry/entry_64.S | 2 | ||||
-rw-r--r-- | arch/x86/include/asm/traps.h | 1 | ||||
-rw-r--r-- | arch/x86/kernel/cpu/mcheck/mce.c | 5 |
3 files changed, 7 insertions, 1 deletions
diff --git a/arch/x86/entry/entry_64.S b/arch/x86/entry/entry_64.S index d54a0ede61d1..63f4320602a3 100644 --- a/arch/x86/entry/entry_64.S +++ b/arch/x86/entry/entry_64.S | |||
@@ -1258,7 +1258,7 @@ idtentry async_page_fault do_async_page_fault has_error_code=1 | |||
1258 | #endif | 1258 | #endif |
1259 | 1259 | ||
1260 | #ifdef CONFIG_X86_MCE | 1260 | #ifdef CONFIG_X86_MCE |
1261 | idtentry machine_check has_error_code=0 paranoid=1 do_sym=*machine_check_vector(%rip) | 1261 | idtentry machine_check do_mce has_error_code=0 paranoid=1 |
1262 | #endif | 1262 | #endif |
1263 | 1263 | ||
1264 | /* | 1264 | /* |
diff --git a/arch/x86/include/asm/traps.h b/arch/x86/include/asm/traps.h index 31051f35cbb7..3de69330e6c5 100644 --- a/arch/x86/include/asm/traps.h +++ b/arch/x86/include/asm/traps.h | |||
@@ -88,6 +88,7 @@ dotraplinkage void do_simd_coprocessor_error(struct pt_regs *, long); | |||
88 | #ifdef CONFIG_X86_32 | 88 | #ifdef CONFIG_X86_32 |
89 | dotraplinkage void do_iret_error(struct pt_regs *, long); | 89 | dotraplinkage void do_iret_error(struct pt_regs *, long); |
90 | #endif | 90 | #endif |
91 | dotraplinkage void do_mce(struct pt_regs *, long); | ||
91 | 92 | ||
92 | static inline int get_si_code(unsigned long condition) | 93 | static inline int get_si_code(unsigned long condition) |
93 | { | 94 | { |
diff --git a/arch/x86/kernel/cpu/mcheck/mce.c b/arch/x86/kernel/cpu/mcheck/mce.c index 3b413065c613..a9e898b71208 100644 --- a/arch/x86/kernel/cpu/mcheck/mce.c +++ b/arch/x86/kernel/cpu/mcheck/mce.c | |||
@@ -1788,6 +1788,11 @@ static void unexpected_machine_check(struct pt_regs *regs, long error_code) | |||
1788 | void (*machine_check_vector)(struct pt_regs *, long error_code) = | 1788 | void (*machine_check_vector)(struct pt_regs *, long error_code) = |
1789 | unexpected_machine_check; | 1789 | unexpected_machine_check; |
1790 | 1790 | ||
1791 | dotraplinkage void do_mce(struct pt_regs *regs, long error_code) | ||
1792 | { | ||
1793 | machine_check_vector(regs, error_code); | ||
1794 | } | ||
1795 | |||
1791 | /* | 1796 | /* |
1792 | * Called for each booted CPU to set up machine checks. | 1797 | * Called for each booted CPU to set up machine checks. |
1793 | * Must be called with preempt off: | 1798 | * Must be called with preempt off: |