blob: 38ece0cd47cbbd4c6195b9e9bc1dbcc13f80e353 [file] [log] [blame]
Mikael Starvik51533b62005-07-27 11:44:44 -07001/*
2 * Copyright (C) 2000-2003, Axis Communications AB.
3 */
4
5#include <linux/kernel.h>
6#include <linux/sched.h>
7#include <linux/mm.h>
8#include <linux/smp.h>
Mikael Starvik51533b62005-07-27 11:44:44 -07009#include <linux/errno.h>
10#include <linux/ptrace.h>
11#include <linux/user.h>
12#include <linux/signal.h>
13#include <linux/security.h>
14
15#include <asm/uaccess.h>
16#include <asm/page.h>
17#include <asm/pgtable.h>
18#include <asm/system.h>
19#include <asm/processor.h>
20#include <asm/arch/hwregs/supp_reg.h>
21
22/*
23 * Determines which bits in CCS the user has access to.
24 * 1 = access, 0 = no access.
25 */
26#define CCS_MASK 0x00087c00 /* SXNZVC */
27
28#define SBIT_USER (1 << (S_CCS_BITNR + CCS_SHIFT))
29
30static int put_debugreg(long pid, unsigned int regno, long data);
31static long get_debugreg(long pid, unsigned int regno);
32static unsigned long get_pseudo_pc(struct task_struct *child);
33void deconfigure_bp(long pid);
34
35extern unsigned long cris_signal_return_page;
36
37/*
38 * Get contents of register REGNO in task TASK.
39 */
40long get_reg(struct task_struct *task, unsigned int regno)
41{
42 /* USP is a special case, it's not in the pt_regs struct but
43 * in the tasks thread struct
44 */
45 unsigned long ret;
46
47 if (regno <= PT_EDA)
Al Viro95ca0dc2006-01-12 01:06:03 -080048 ret = ((unsigned long *)task_pt_regs(task))[regno];
Mikael Starvik51533b62005-07-27 11:44:44 -070049 else if (regno == PT_USP)
50 ret = task->thread.usp;
51 else if (regno == PT_PPC)
52 ret = get_pseudo_pc(task);
53 else if (regno <= PT_MAX)
54 ret = get_debugreg(task->pid, regno);
55 else
56 ret = 0;
57
58 return ret;
59}
60
61/*
62 * Write contents of register REGNO in task TASK.
63 */
64int put_reg(struct task_struct *task, unsigned int regno, unsigned long data)
65{
66 if (regno <= PT_EDA)
Al Viro95ca0dc2006-01-12 01:06:03 -080067 ((unsigned long *)task_pt_regs(task))[regno] = data;
Mikael Starvik51533b62005-07-27 11:44:44 -070068 else if (regno == PT_USP)
69 task->thread.usp = data;
70 else if (regno == PT_PPC) {
71 /* Write pseudo-PC to ERP only if changed. */
72 if (data != get_pseudo_pc(task))
Al Viro95ca0dc2006-01-12 01:06:03 -080073 task_pt_regs(task)->erp = data;
Mikael Starvik51533b62005-07-27 11:44:44 -070074 } else if (regno <= PT_MAX)
75 return put_debugreg(task->pid, regno, data);
76 else
77 return -1;
78 return 0;
79}
80
81/*
82 * Called by kernel/ptrace.c when detaching.
83 *
84 * Make sure the single step bit is not set.
85 */
86void
87ptrace_disable(struct task_struct *child)
88{
89 unsigned long tmp;
90
91 /* Deconfigure SPC and S-bit. */
92 tmp = get_reg(child, PT_CCS) & ~SBIT_USER;
93 put_reg(child, PT_CCS, tmp);
94 put_reg(child, PT_SPC, 0);
95
96 /* Deconfigure any watchpoints associated with the child. */
97 deconfigure_bp(child->pid);
98}
99
100
Christoph Hellwig481bed42005-11-07 00:59:47 -0800101long arch_ptrace(struct task_struct *child, long request, long addr, long data)
Mikael Starvik51533b62005-07-27 11:44:44 -0700102{
Mikael Starvik51533b62005-07-27 11:44:44 -0700103 int ret;
104 unsigned long __user *datap = (unsigned long __user *)data;
105
Mikael Starvik51533b62005-07-27 11:44:44 -0700106 switch (request) {
107 /* Read word at location address. */
108 case PTRACE_PEEKTEXT:
109 case PTRACE_PEEKDATA: {
110 unsigned long tmp;
111 int copied;
112
113 ret = -EIO;
114
115 /* The signal trampoline page is outside the normal user-addressable
116 * space but still accessible. This is hack to make it possible to
117 * access the signal handler code in GDB.
118 */
119 if ((addr & PAGE_MASK) == cris_signal_return_page) {
120 /* The trampoline page is globally mapped, no page table to traverse.*/
121 tmp = *(unsigned long*)addr;
122 } else {
123 copied = access_process_vm(child, addr, &tmp, sizeof(tmp), 0);
124
125 if (copied != sizeof(tmp))
126 break;
127 }
128
129 ret = put_user(tmp,datap);
130 break;
131 }
132
133 /* Read the word at location address in the USER area. */
134 case PTRACE_PEEKUSR: {
135 unsigned long tmp;
136
137 ret = -EIO;
138 if ((addr & 3) || addr < 0 || addr > PT_MAX << 2)
139 break;
140
141 tmp = get_reg(child, addr >> 2);
142 ret = put_user(tmp, datap);
143 break;
144 }
145
146 /* Write the word at location address. */
147 case PTRACE_POKETEXT:
148 case PTRACE_POKEDATA:
Alexey Dobriyanf284ce72007-07-17 04:03:44 -0700149 ret = generic_ptrace_pokedata(child, addr, data);
Mikael Starvik51533b62005-07-27 11:44:44 -0700150 break;
151
152 /* Write the word at location address in the USER area. */
153 case PTRACE_POKEUSR:
154 ret = -EIO;
155 if ((addr & 3) || addr < 0 || addr > PT_MAX << 2)
156 break;
157
158 addr >>= 2;
159
160 if (addr == PT_CCS) {
161 /* don't allow the tracing process to change stuff like
162 * interrupt enable, kernel/user bit, dma enables etc.
163 */
164 data &= CCS_MASK;
165 data |= get_reg(child, PT_CCS) & ~CCS_MASK;
166 }
167 if (put_reg(child, addr, data))
168 break;
169 ret = 0;
170 break;
171
172 case PTRACE_SYSCALL:
173 case PTRACE_CONT:
174 ret = -EIO;
175
176 if (!valid_signal(data))
177 break;
178
179 /* Continue means no single-step. */
180 put_reg(child, PT_SPC, 0);
181
182 if (!get_debugreg(child->pid, PT_BP_CTRL)) {
183 unsigned long tmp;
184 /* If no h/w bp configured, disable S bit. */
185 tmp = get_reg(child, PT_CCS) & ~SBIT_USER;
186 put_reg(child, PT_CCS, tmp);
187 }
188
189 if (request == PTRACE_SYSCALL) {
190 set_tsk_thread_flag(child, TIF_SYSCALL_TRACE);
191 }
192 else {
193 clear_tsk_thread_flag(child, TIF_SYSCALL_TRACE);
194 }
195
196 child->exit_code = data;
197
198 /* TODO: make sure any pending breakpoint is killed */
199 wake_up_process(child);
200 ret = 0;
201
202 break;
203
204 /* Make the child exit by sending it a sigkill. */
205 case PTRACE_KILL:
206 ret = 0;
207
208 if (child->exit_state == EXIT_ZOMBIE)
209 break;
210
211 child->exit_code = SIGKILL;
212
213 /* Deconfigure single-step and h/w bp. */
214 ptrace_disable(child);
215
216 /* TODO: make sure any pending breakpoint is killed */
217 wake_up_process(child);
218 break;
219
220 /* Set the trap flag. */
221 case PTRACE_SINGLESTEP: {
222 unsigned long tmp;
223 ret = -EIO;
224
225 /* Set up SPC if not set already (in which case we have
226 no other choice but to trust it). */
227 if (!get_reg(child, PT_SPC)) {
228 /* In case we're stopped in a delay slot. */
229 tmp = get_reg(child, PT_ERP) & ~1;
230 put_reg(child, PT_SPC, tmp);
231 }
232 tmp = get_reg(child, PT_CCS) | SBIT_USER;
233 put_reg(child, PT_CCS, tmp);
234
235 if (!valid_signal(data))
236 break;
237
238 clear_tsk_thread_flag(child, TIF_SYSCALL_TRACE);
239
240 /* TODO: set some clever breakpoint mechanism... */
241
242 child->exit_code = data;
243 wake_up_process(child);
244 ret = 0;
245 break;
246
247 }
248 case PTRACE_DETACH:
249 ret = ptrace_detach(child, data);
250 break;
251
252 /* Get all GP registers from the child. */
253 case PTRACE_GETREGS: {
254 int i;
255 unsigned long tmp;
256
257 for (i = 0; i <= PT_MAX; i++) {
258 tmp = get_reg(child, i);
259
260 if (put_user(tmp, datap)) {
261 ret = -EFAULT;
262 goto out_tsk;
263 }
264
265 datap++;
266 }
267
268 ret = 0;
269 break;
270 }
271
272 /* Set all GP registers in the child. */
273 case PTRACE_SETREGS: {
274 int i;
275 unsigned long tmp;
276
277 for (i = 0; i <= PT_MAX; i++) {
278 if (get_user(tmp, datap)) {
279 ret = -EFAULT;
280 goto out_tsk;
281 }
282
283 if (i == PT_CCS) {
284 tmp &= CCS_MASK;
285 tmp |= get_reg(child, PT_CCS) & ~CCS_MASK;
286 }
287
288 put_reg(child, i, tmp);
289 datap++;
290 }
291
292 ret = 0;
293 break;
294 }
295
296 default:
297 ret = ptrace_request(child, request, addr, data);
298 break;
299 }
Christoph Hellwig481bed42005-11-07 00:59:47 -0800300
Mikael Starvik51533b62005-07-27 11:44:44 -0700301 return ret;
302}
303
304void do_syscall_trace(void)
305{
306 if (!test_thread_flag(TIF_SYSCALL_TRACE))
307 return;
308
309 if (!(current->ptrace & PT_PTRACED))
310 return;
311
312 /* the 0x80 provides a way for the tracing parent to distinguish
313 between a syscall stop and SIGTRAP delivery */
314 ptrace_notify(SIGTRAP | ((current->ptrace & PT_TRACESYSGOOD)
315 ? 0x80 : 0));
316
317 /*
318 * This isn't the same as continuing with a signal, but it will do for
319 * normal use.
320 */
321 if (current->exit_code) {
322 send_sig(current->exit_code, current, 1);
323 current->exit_code = 0;
324 }
325}
326
327/* Returns the size of an instruction that has a delay slot. */
328
329static int insn_size(struct task_struct *child, unsigned long pc)
330{
331 unsigned long opcode;
332 int copied;
333 int opsize = 0;
334
335 /* Read the opcode at pc (do what PTRACE_PEEKTEXT would do). */
336 copied = access_process_vm(child, pc, &opcode, sizeof(opcode), 0);
337 if (copied != sizeof(opcode))
338 return 0;
339
340 switch ((opcode & 0x0f00) >> 8) {
341 case 0x0:
342 case 0x9:
343 case 0xb:
344 opsize = 2;
345 break;
346 case 0xe:
347 case 0xf:
348 opsize = 6;
349 break;
350 case 0xd:
351 /* Could be 4 or 6; check more bits. */
352 if ((opcode & 0xff) == 0xff)
353 opsize = 4;
354 else
355 opsize = 6;
356 break;
357 default:
358 panic("ERROR: Couldn't find size of opcode 0x%lx at 0x%lx\n",
359 opcode, pc);
360 }
361
362 return opsize;
363}
364
365static unsigned long get_pseudo_pc(struct task_struct *child)
366{
367 /* Default value for PC is ERP. */
368 unsigned long pc = get_reg(child, PT_ERP);
369
370 if (pc & 0x1) {
371 unsigned long spc = get_reg(child, PT_SPC);
372 /* Delay slot bit set. Report as stopped on proper
373 instruction. */
374 if (spc) {
375 /* Rely on SPC if set. FIXME: We might want to check
376 that EXS indicates we stopped due to a single-step
377 exception. */
378 pc = spc;
379 } else {
380 /* Calculate the PC from the size of the instruction
381 that the delay slot we're in belongs to. */
382 pc += insn_size(child, pc & ~1) - 1;
383 }
384 }
385 return pc;
386}
387
388static long bp_owner = 0;
389
390/* Reachable from exit_thread in signal.c, so not static. */
391void deconfigure_bp(long pid)
392{
393 int bp;
394
395 /* Only deconfigure if the pid is the owner. */
396 if (bp_owner != pid)
397 return;
398
399 for (bp = 0; bp < 6; bp++) {
400 unsigned long tmp;
401 /* Deconfigure start and end address (also gets rid of ownership). */
402 put_debugreg(pid, PT_BP + 3 + (bp * 2), 0);
403 put_debugreg(pid, PT_BP + 4 + (bp * 2), 0);
404
405 /* Deconfigure relevant bits in control register. */
406 tmp = get_debugreg(pid, PT_BP_CTRL) & ~(3 << (2 + (bp * 4)));
407 put_debugreg(pid, PT_BP_CTRL, tmp);
408 }
409 /* No owner now. */
410 bp_owner = 0;
411}
412
413static int put_debugreg(long pid, unsigned int regno, long data)
414{
415 int ret = 0;
416 register int old_srs;
417
418#ifdef CONFIG_ETRAX_KGDB
419 /* Ignore write, but pretend it was ok if value is 0
420 (we don't want POKEUSR/SETREGS failing unnessecarily). */
421 return (data == 0) ? ret : -1;
422#endif
423
424 /* Simple owner management. */
425 if (!bp_owner)
426 bp_owner = pid;
427 else if (bp_owner != pid) {
428 /* Ignore write, but pretend it was ok if value is 0
429 (we don't want POKEUSR/SETREGS failing unnessecarily). */
430 return (data == 0) ? ret : -1;
431 }
432
433 /* Remember old SRS. */
434 SPEC_REG_RD(SPEC_REG_SRS, old_srs);
435 /* Switch to BP bank. */
436 SUPP_BANK_SEL(BANK_BP);
437
438 switch (regno - PT_BP) {
439 case 0:
440 SUPP_REG_WR(0, data); break;
441 case 1:
442 case 2:
443 if (data)
444 ret = -1;
445 break;
446 case 3:
447 SUPP_REG_WR(3, data); break;
448 case 4:
449 SUPP_REG_WR(4, data); break;
450 case 5:
451 SUPP_REG_WR(5, data); break;
452 case 6:
453 SUPP_REG_WR(6, data); break;
454 case 7:
455 SUPP_REG_WR(7, data); break;
456 case 8:
457 SUPP_REG_WR(8, data); break;
458 case 9:
459 SUPP_REG_WR(9, data); break;
460 case 10:
461 SUPP_REG_WR(10, data); break;
462 case 11:
463 SUPP_REG_WR(11, data); break;
464 case 12:
465 SUPP_REG_WR(12, data); break;
466 case 13:
467 SUPP_REG_WR(13, data); break;
468 case 14:
469 SUPP_REG_WR(14, data); break;
470 default:
471 ret = -1;
472 break;
473 }
474
475 /* Restore SRS. */
476 SPEC_REG_WR(SPEC_REG_SRS, old_srs);
477 /* Just for show. */
478 NOP();
479 NOP();
480 NOP();
481
482 return ret;
483}
484
485static long get_debugreg(long pid, unsigned int regno)
486{
487 register int old_srs;
488 register long data;
489
490 if (pid != bp_owner) {
491 return 0;
492 }
493
494 /* Remember old SRS. */
495 SPEC_REG_RD(SPEC_REG_SRS, old_srs);
496 /* Switch to BP bank. */
497 SUPP_BANK_SEL(BANK_BP);
498
499 switch (regno - PT_BP) {
500 case 0:
501 SUPP_REG_RD(0, data); break;
502 case 1:
503 case 2:
504 /* error return value? */
505 data = 0;
506 break;
507 case 3:
508 SUPP_REG_RD(3, data); break;
509 case 4:
510 SUPP_REG_RD(4, data); break;
511 case 5:
512 SUPP_REG_RD(5, data); break;
513 case 6:
514 SUPP_REG_RD(6, data); break;
515 case 7:
516 SUPP_REG_RD(7, data); break;
517 case 8:
518 SUPP_REG_RD(8, data); break;
519 case 9:
520 SUPP_REG_RD(9, data); break;
521 case 10:
522 SUPP_REG_RD(10, data); break;
523 case 11:
524 SUPP_REG_RD(11, data); break;
525 case 12:
526 SUPP_REG_RD(12, data); break;
527 case 13:
528 SUPP_REG_RD(13, data); break;
529 case 14:
530 SUPP_REG_RD(14, data); break;
531 default:
532 /* error return value? */
533 data = 0;
534 }
535
536 /* Restore SRS. */
537 SPEC_REG_WR(SPEC_REG_SRS, old_srs);
538 /* Just for show. */
539 NOP();
540 NOP();
541 NOP();
542
543 return data;
544}