diff options
author | Eric W. Biederman <ebiederm@xmission.com> | 2006-09-26 04:52:38 -0400 |
---|---|---|
committer | Andi Kleen <andi@basil.nowhere.org> | 2006-09-26 04:52:38 -0400 |
commit | 26374c7b7dca1ff90607c83d9b82e917119f0456 (patch) | |
tree | e2557e7b679eeee6d361b08812f9b10b96a301ec /arch | |
parent | 0136611c62e8650e354b95c76dff6d2ce6030eff (diff) |
[PATCH] Reload CS when startup_64 is used.
In long mode the %cs is largely a relic. However there are a few cases
like iret where it matters that we have a valid value. Without this
patch it is possible to enter the kernel in startup_64 without setting
%cs to a valid value. With this patch we don't care what %cs value
we enter the kernel with, so long as the cs shadow register indicates
it is a privileged code segment.
Thanks to Magnus Damm for finding this problem and posting the
first workable patch. I have moved the jump to set %cs down a
few instructions so we don't need to take an extra jump. Which
keeps the code simpler.
Signed-of-by: Eric W. Biederman <ebiederm@xmission.com>
Signed-off-by: Andi Kleen <ak@suse.de>
Diffstat (limited to 'arch')
-rw-r--r-- | arch/x86_64/kernel/head.S | 11 |
1 files changed, 7 insertions, 4 deletions
diff --git a/arch/x86_64/kernel/head.S b/arch/x86_64/kernel/head.S index 4a3326ce709c..1e6f80870679 100644 --- a/arch/x86_64/kernel/head.S +++ b/arch/x86_64/kernel/head.S | |||
@@ -185,12 +185,15 @@ startup_64: | |||
185 | 185 | ||
186 | /* Finally jump to run C code and to be on real kernel address | 186 | /* Finally jump to run C code and to be on real kernel address |
187 | * Since we are running on identity-mapped space we have to jump | 187 | * Since we are running on identity-mapped space we have to jump |
188 | * to the full 64bit address , this is only possible as indirect | 188 | * to the full 64bit address, this is only possible as indirect |
189 | * jump | 189 | * jump. In addition we need to ensure %cs is set so we make this |
190 | * a far return. | ||
190 | */ | 191 | */ |
191 | movq initial_code(%rip),%rax | 192 | movq initial_code(%rip),%rax |
192 | pushq $0 # fake return address | 193 | pushq $0 # fake return address to stop unwinder |
193 | jmp *%rax | 194 | pushq $__KERNEL_CS # set correct cs |
195 | pushq %rax # target address in negative space | ||
196 | lretq | ||
194 | 197 | ||
195 | /* SMP bootup changes these two */ | 198 | /* SMP bootup changes these two */ |
196 | .align 8 | 199 | .align 8 |