diff options
author | Jack Steiner <steiner@sgi.com> | 2005-12-15 13:41:22 -0500 |
---|---|---|
committer | Tony Luck <tony.luck@intel.com> | 2005-12-16 13:46:25 -0500 |
commit | d74700e604db717eef7a3112176e6350fb00d0e3 (patch) | |
tree | 2a8df4baec55fba949d4b02b95c611fe96cdce78 /Documentation/SecurityBugs | |
parent | 3bd7f01713f30e7c616ab975ebb84ab7eb58a60a (diff) |
[IA64-SGI] Missed TLB flush
I see why the problem exists only on SN. SN uses a different hardware
mechanism to purge TLB entries across nodes.
It looks like there is a bug in the SN TLB flushing code. During context switch,
kernel threads inherit the mm of the task that was previously running on the
cpu. This confuses the code in sn2_global_tlb_purge().
The result is a missed TLB purge for the task that owns the "borrowed" mm.
(I hit the problem running heavy stress where kswapd was purging code pages of
a user task that woke kswapd. The user task took a SIGILL fault trying to
execute code in the page that had been ripped out from underneath it).
Signed-off-by: Jack Steiner <steiner@sgi.com>
Signed-off-by: Tony Luck <tony.luck@intel.com>
Diffstat (limited to 'Documentation/SecurityBugs')
0 files changed, 0 insertions, 0 deletions