blob: 9dd4cc47ddc79298886fe40a5e229628b2ceff3d [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07002 * S390 version
Heiko Carstensa53c8fa2012-07-20 11:15:04 +02003 * Copyright IBM Corp. 1999, 2000
Linus Torvalds1da177e2005-04-16 15:20:36 -07004 * Author(s): Hartmut Penner (hp@de.ibm.com),
5 * Martin Schwidefsky (schwidefsky@de.ibm.com)
6 *
7 * Derived from "include/asm-i386/uaccess.h"
8 */
9#ifndef __S390_UACCESS_H
10#define __S390_UACCESS_H
11
12/*
13 * User space memory access functions
14 */
15#include <linux/sched.h>
16#include <linux/errno.h>
David Howellsa0616cd2012-03-28 18:30:02 +010017#include <asm/ctl_reg.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070018
19#define VERIFY_READ 0
20#define VERIFY_WRITE 1
21
22
23/*
24 * The fs value determines whether argument validity checking should be
25 * performed or not. If get_fs() == USER_DS, checking is performed, with
26 * get_fs() == KERNEL_DS, checking is bypassed.
27 *
28 * For historical reasons, these macros are grossly misnamed.
29 */
30
31#define MAKE_MM_SEG(a) ((mm_segment_t) { (a) })
32
33
34#define KERNEL_DS MAKE_MM_SEG(0)
35#define USER_DS MAKE_MM_SEG(1)
36
37#define get_ds() (KERNEL_DS)
38#define get_fs() (current->thread.mm_segment)
39
Linus Torvalds1da177e2005-04-16 15:20:36 -070040#define set_fs(x) \
41({ \
42 unsigned long __pto; \
43 current->thread.mm_segment = (x); \
44 __pto = current->thread.mm_segment.ar4 ? \
45 S390_lowcore.user_asce : S390_lowcore.kernel_asce; \
Martin Schwidefsky94c12cc2006-09-28 16:56:43 +020046 __ctl_load(__pto, 7, 7); \
Linus Torvalds1da177e2005-04-16 15:20:36 -070047})
Linus Torvalds1da177e2005-04-16 15:20:36 -070048
49#define segment_eq(a,b) ((a).ar4 == (b).ar4)
50
Heiko Carstens491af992012-05-29 07:33:59 +020051static inline int __range_ok(unsigned long addr, unsigned long size)
52{
53 return 1;
54}
55
56#define __access_ok(addr, size) \
57({ \
58 __chk_user_ptr(addr); \
59 __range_ok((unsigned long)(addr), (size)); \
Heiko Carstens7683f742011-05-26 09:48:25 +020060})
Linus Torvalds1da177e2005-04-16 15:20:36 -070061
Heiko Carstens7683f742011-05-26 09:48:25 +020062#define access_ok(type, addr, size) __access_ok(addr, size)
Linus Torvalds1da177e2005-04-16 15:20:36 -070063
Linus Torvalds1da177e2005-04-16 15:20:36 -070064/*
65 * The exception table consists of pairs of addresses: the first is the
66 * address of an instruction that is allowed to fault, and the second is
67 * the address at which the program should continue. No registers are
68 * modified, so it is entirely up to the continuation code to figure out
69 * what to do.
70 *
71 * All the routines below use bits of fixup code that are out of line
72 * with the main instruction path. This means when everything is well,
73 * we don't even have to jump over them. Further, they do not intrude
74 * on our cache or tlb entries.
75 */
76
77struct exception_table_entry
78{
Heiko Carstenseb608fb2012-09-05 13:26:11 +020079 int insn, fixup;
Linus Torvalds1da177e2005-04-16 15:20:36 -070080};
81
Heiko Carstenseb608fb2012-09-05 13:26:11 +020082static inline unsigned long extable_insn(const struct exception_table_entry *x)
83{
84 return (unsigned long)&x->insn + x->insn;
85}
86
87static inline unsigned long extable_fixup(const struct exception_table_entry *x)
88{
89 return (unsigned long)&x->fixup + x->fixup;
90}
91
92#define ARCH_HAS_SORT_EXTABLE
93#define ARCH_HAS_SEARCH_EXTABLE
94
Heiko Carstens4f41c2b2014-01-23 11:18:36 +010095/**
96 * __copy_from_user: - Copy a block of data from user space, with less checking.
97 * @to: Destination address, in kernel space.
98 * @from: Source address, in user space.
99 * @n: Number of bytes to copy.
100 *
David Hildenbrandb3c395e2015-05-11 17:52:08 +0200101 * Context: User context only. This function may sleep if pagefaults are
102 * enabled.
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100103 *
104 * Copy data from user space to kernel space. Caller must check
105 * the specified block with access_ok() before calling this function.
106 *
107 * Returns number of bytes that could not be copied.
108 * On success, this will be zero.
109 *
110 * If some data could not be copied, this function will pad the copied
111 * data to the requested size using zero bytes.
112 */
Heiko Carstens211deca2014-01-24 12:51:27 +0100113unsigned long __must_check __copy_from_user(void *to, const void __user *from,
114 unsigned long n);
Gerald Schaeferd02765d2006-09-20 15:59:42 +0200115
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100116/**
117 * __copy_to_user: - Copy a block of data into user space, with less checking.
118 * @to: Destination address, in user space.
119 * @from: Source address, in kernel space.
120 * @n: Number of bytes to copy.
121 *
David Hildenbrandb3c395e2015-05-11 17:52:08 +0200122 * Context: User context only. This function may sleep if pagefaults are
123 * enabled.
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100124 *
125 * Copy data from kernel space to user space. Caller must check
126 * the specified block with access_ok() before calling this function.
127 *
128 * Returns number of bytes that could not be copied.
129 * On success, this will be zero.
130 */
131unsigned long __must_check __copy_to_user(void __user *to, const void *from,
132 unsigned long n);
133
134#define __copy_to_user_inatomic __copy_to_user
135#define __copy_from_user_inatomic __copy_from_user
Gerald Schaefer6c1e3e72009-12-07 12:51:47 +0100136
Heiko Carstensc9ca7842014-04-17 14:16:03 +0200137#ifdef CONFIG_HAVE_MARCH_Z10_FEATURES
138
139#define __put_get_user_asm(to, from, size, spec) \
140({ \
141 register unsigned long __reg0 asm("0") = spec; \
142 int __rc; \
143 \
144 asm volatile( \
145 "0: mvcos %1,%3,%2\n" \
146 "1: xr %0,%0\n" \
147 "2:\n" \
148 ".pushsection .fixup, \"ax\"\n" \
149 "3: lhi %0,%5\n" \
150 " jg 2b\n" \
151 ".popsection\n" \
152 EX_TABLE(0b,3b) EX_TABLE(1b,3b) \
153 : "=d" (__rc), "=Q" (*(to)) \
154 : "d" (size), "Q" (*(from)), \
155 "d" (__reg0), "K" (-EFAULT) \
156 : "cc"); \
157 __rc; \
158})
159
160#define __put_user_fn(x, ptr, size) __put_get_user_asm(ptr, x, size, 0x810000UL)
161#define __get_user_fn(x, ptr, size) __put_get_user_asm(x, ptr, size, 0x81UL)
162
163#else /* CONFIG_HAVE_MARCH_Z10_FEATURES */
164
Heiko Carstens211deca2014-01-24 12:51:27 +0100165static inline int __put_user_fn(void *x, void __user *ptr, unsigned long size)
Gerald Schaeferd02765d2006-09-20 15:59:42 +0200166{
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100167 size = __copy_to_user(ptr, x, size);
168 return size ? -EFAULT : 0;
Gerald Schaeferd02765d2006-09-20 15:59:42 +0200169}
170
Heiko Carstens211deca2014-01-24 12:51:27 +0100171static inline int __get_user_fn(void *x, const void __user *ptr, unsigned long size)
Gerald Schaeferd02765d2006-09-20 15:59:42 +0200172{
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100173 size = __copy_from_user(x, ptr, size);
174 return size ? -EFAULT : 0;
Gerald Schaeferd02765d2006-09-20 15:59:42 +0200175}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700176
Heiko Carstensc9ca7842014-04-17 14:16:03 +0200177#endif /* CONFIG_HAVE_MARCH_Z10_FEATURES */
178
Linus Torvalds1da177e2005-04-16 15:20:36 -0700179/*
180 * These are the main single-value transfer routines. They automatically
181 * use the right size if we just have the right pointer type.
182 */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700183#define __put_user(x, ptr) \
184({ \
185 __typeof__(*(ptr)) __x = (x); \
Gerald Schaeferd02765d2006-09-20 15:59:42 +0200186 int __pu_err = -EFAULT; \
Al Viro17566c32005-08-23 22:48:22 +0100187 __chk_user_ptr(ptr); \
Linus Torvalds1da177e2005-04-16 15:20:36 -0700188 switch (sizeof (*(ptr))) { \
189 case 1: \
190 case 2: \
191 case 4: \
192 case 8: \
Heiko Carstenscfa785e2014-01-22 14:49:30 +0100193 __pu_err = __put_user_fn(&__x, ptr, \
194 sizeof(*(ptr))); \
Linus Torvalds1da177e2005-04-16 15:20:36 -0700195 break; \
196 default: \
197 __put_user_bad(); \
198 break; \
199 } \
200 __pu_err; \
201})
Linus Torvalds1da177e2005-04-16 15:20:36 -0700202
203#define put_user(x, ptr) \
204({ \
Heiko Carstensdab4079d2009-06-12 10:26:32 +0200205 might_fault(); \
Linus Torvalds1da177e2005-04-16 15:20:36 -0700206 __put_user(x, ptr); \
207})
208
209
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100210int __put_user_bad(void) __attribute__((noreturn));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700211
Linus Torvalds1da177e2005-04-16 15:20:36 -0700212#define __get_user(x, ptr) \
213({ \
Gerald Schaeferd02765d2006-09-20 15:59:42 +0200214 int __gu_err = -EFAULT; \
215 __chk_user_ptr(ptr); \
Linus Torvalds1da177e2005-04-16 15:20:36 -0700216 switch (sizeof(*(ptr))) { \
Martin Schwidefsky1047aa72005-11-07 00:59:11 -0800217 case 1: { \
218 unsigned char __x; \
Heiko Carstenscfa785e2014-01-22 14:49:30 +0100219 __gu_err = __get_user_fn(&__x, ptr, \
220 sizeof(*(ptr))); \
Al Viro97fa5a62006-02-03 20:11:52 -0500221 (x) = *(__force __typeof__(*(ptr)) *) &__x; \
Linus Torvalds1da177e2005-04-16 15:20:36 -0700222 break; \
Martin Schwidefsky1047aa72005-11-07 00:59:11 -0800223 }; \
224 case 2: { \
225 unsigned short __x; \
Heiko Carstenscfa785e2014-01-22 14:49:30 +0100226 __gu_err = __get_user_fn(&__x, ptr, \
227 sizeof(*(ptr))); \
Al Viro97fa5a62006-02-03 20:11:52 -0500228 (x) = *(__force __typeof__(*(ptr)) *) &__x; \
Martin Schwidefsky1047aa72005-11-07 00:59:11 -0800229 break; \
230 }; \
231 case 4: { \
232 unsigned int __x; \
Heiko Carstenscfa785e2014-01-22 14:49:30 +0100233 __gu_err = __get_user_fn(&__x, ptr, \
234 sizeof(*(ptr))); \
Al Viro97fa5a62006-02-03 20:11:52 -0500235 (x) = *(__force __typeof__(*(ptr)) *) &__x; \
Martin Schwidefsky1047aa72005-11-07 00:59:11 -0800236 break; \
237 }; \
238 case 8: { \
239 unsigned long long __x; \
Heiko Carstenscfa785e2014-01-22 14:49:30 +0100240 __gu_err = __get_user_fn(&__x, ptr, \
241 sizeof(*(ptr))); \
Al Viro97fa5a62006-02-03 20:11:52 -0500242 (x) = *(__force __typeof__(*(ptr)) *) &__x; \
Martin Schwidefsky1047aa72005-11-07 00:59:11 -0800243 break; \
244 }; \
Linus Torvalds1da177e2005-04-16 15:20:36 -0700245 default: \
246 __get_user_bad(); \
247 break; \
248 } \
Linus Torvalds1da177e2005-04-16 15:20:36 -0700249 __gu_err; \
250})
Linus Torvalds1da177e2005-04-16 15:20:36 -0700251
252#define get_user(x, ptr) \
253({ \
Heiko Carstensdab4079d2009-06-12 10:26:32 +0200254 might_fault(); \
Linus Torvalds1da177e2005-04-16 15:20:36 -0700255 __get_user(x, ptr); \
256})
257
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100258int __get_user_bad(void) __attribute__((noreturn));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700259
260#define __put_user_unaligned __put_user
261#define __get_user_unaligned __get_user
262
Linus Torvalds1da177e2005-04-16 15:20:36 -0700263/**
Linus Torvalds1da177e2005-04-16 15:20:36 -0700264 * copy_to_user: - Copy a block of data into user space.
265 * @to: Destination address, in user space.
266 * @from: Source address, in kernel space.
267 * @n: Number of bytes to copy.
268 *
David Hildenbrandb3c395e2015-05-11 17:52:08 +0200269 * Context: User context only. This function may sleep if pagefaults are
270 * enabled.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700271 *
272 * Copy data from kernel space to user space.
273 *
274 * Returns number of bytes that could not be copied.
275 * On success, this will be zero.
276 */
Heiko Carstensf7675ad2006-12-04 15:39:55 +0100277static inline unsigned long __must_check
Linus Torvalds1da177e2005-04-16 15:20:36 -0700278copy_to_user(void __user *to, const void *from, unsigned long n)
279{
Heiko Carstensdab4079d2009-06-12 10:26:32 +0200280 might_fault();
Heiko Carstensd12a2972013-02-21 16:57:42 +0100281 return __copy_to_user(to, from, n);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700282}
283
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100284void copy_from_user_overflow(void)
Heiko Carstens1dcec252010-02-26 22:37:22 +0100285#ifdef CONFIG_DEBUG_STRICT_USER_COPY_CHECKS
286__compiletime_warning("copy_from_user() buffer size is not provably correct")
287#endif
288;
289
Linus Torvalds1da177e2005-04-16 15:20:36 -0700290/**
291 * copy_from_user: - Copy a block of data from user space.
292 * @to: Destination address, in kernel space.
293 * @from: Source address, in user space.
294 * @n: Number of bytes to copy.
295 *
David Hildenbrandb3c395e2015-05-11 17:52:08 +0200296 * Context: User context only. This function may sleep if pagefaults are
297 * enabled.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700298 *
299 * Copy data from user space to kernel space.
300 *
301 * Returns number of bytes that could not be copied.
302 * On success, this will be zero.
303 *
304 * If some data could not be copied, this function will pad the copied
305 * data to the requested size using zero bytes.
306 */
Heiko Carstensf7675ad2006-12-04 15:39:55 +0100307static inline unsigned long __must_check
Linus Torvalds1da177e2005-04-16 15:20:36 -0700308copy_from_user(void *to, const void __user *from, unsigned long n)
309{
Heiko Carstens1dcec252010-02-26 22:37:22 +0100310 unsigned int sz = __compiletime_object_size(to);
311
Heiko Carstensdab4079d2009-06-12 10:26:32 +0200312 might_fault();
Heiko Carstens1dcec252010-02-26 22:37:22 +0100313 if (unlikely(sz != -1 && sz < n)) {
314 copy_from_user_overflow();
315 return n;
316 }
Heiko Carstensd12a2972013-02-21 16:57:42 +0100317 return __copy_from_user(to, from, n);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700318}
319
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100320unsigned long __must_check
321__copy_in_user(void __user *to, const void __user *from, unsigned long n);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700322
Heiko Carstensf7675ad2006-12-04 15:39:55 +0100323static inline unsigned long __must_check
Linus Torvalds1da177e2005-04-16 15:20:36 -0700324copy_in_user(void __user *to, const void __user *from, unsigned long n)
325{
Heiko Carstensdab4079d2009-06-12 10:26:32 +0200326 might_fault();
Heiko Carstensd12a2972013-02-21 16:57:42 +0100327 return __copy_in_user(to, from, n);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700328}
329
330/*
331 * Copy a null terminated string from userspace.
332 */
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100333
334long __strncpy_from_user(char *dst, const char __user *src, long count);
335
Heiko Carstensf7675ad2006-12-04 15:39:55 +0100336static inline long __must_check
Linus Torvalds1da177e2005-04-16 15:20:36 -0700337strncpy_from_user(char *dst, const char __user *src, long count)
338{
Heiko Carstensdab4079d2009-06-12 10:26:32 +0200339 might_fault();
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100340 return __strncpy_from_user(dst, src, count);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700341}
342
Heiko Carstens211deca2014-01-24 12:51:27 +0100343unsigned long __must_check __strnlen_user(const char __user *src, unsigned long count);
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100344
Heiko Carstens211deca2014-01-24 12:51:27 +0100345static inline unsigned long strnlen_user(const char __user *src, unsigned long n)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700346{
Heiko Carstensdab4079d2009-06-12 10:26:32 +0200347 might_fault();
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100348 return __strnlen_user(src, n);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700349}
350
351/**
352 * strlen_user: - Get the size of a string in user space.
353 * @str: The string to measure.
354 *
David Hildenbrandb3c395e2015-05-11 17:52:08 +0200355 * Context: User context only. This function may sleep if pagefaults are
356 * enabled.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700357 *
358 * Get the size of a NUL-terminated string in user space.
359 *
360 * Returns the size of the string INCLUDING the terminating NUL.
361 * On exception, returns 0.
362 *
363 * If there is a limit on the length of a valid string, you may wish to
364 * consider using strnlen_user() instead.
365 */
366#define strlen_user(str) strnlen_user(str, ~0UL)
367
368/*
369 * Zero Userspace
370 */
Heiko Carstens211deca2014-01-24 12:51:27 +0100371unsigned long __must_check __clear_user(void __user *to, unsigned long size);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700372
Heiko Carstens211deca2014-01-24 12:51:27 +0100373static inline unsigned long __must_check clear_user(void __user *to, unsigned long n)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700374{
Heiko Carstensdab4079d2009-06-12 10:26:32 +0200375 might_fault();
Heiko Carstens4f41c2b2014-01-23 11:18:36 +0100376 return __clear_user(to, n);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700377}
378
Heiko Carstens211deca2014-01-24 12:51:27 +0100379int copy_to_user_real(void __user *dest, void *src, unsigned long count);
Heiko Carstens8a5d8472015-03-13 12:55:56 +0100380void s390_kernel_write(void *dst, const void *src, size_t size);
David Howellsa0616cd2012-03-28 18:30:02 +0100381
Linus Torvalds1da177e2005-04-16 15:20:36 -0700382#endif /* __S390_UACCESS_H */