blob: 0eca93327195077ec16bdfd99efd7294c6ab2de6 [file] [log] [blame]
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -07001/*
2 * Copyright (C) 2004-2006 Atmel Corporation
3 *
4 * Based on linux/arch/sh/mm/fault.c:
5 * Copyright (C) 1999 Niibe Yutaka
6 *
7 * This program is free software; you can redistribute it and/or modify
8 * it under the terms of the GNU General Public License version 2 as
9 * published by the Free Software Foundation.
10 */
11
12#include <linux/mm.h>
13#include <linux/module.h>
14#include <linux/pagemap.h>
Christoph Hellwig1eeb66a2007-05-08 00:27:03 -070015#include <linux/kdebug.h>
Christoph Hellwig9caebec2007-05-12 17:56:11 +020016#include <linux/kprobes.h>
17
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070018#include <asm/mmu_context.h>
19#include <asm/sysreg.h>
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070020#include <asm/tlb.h>
Haavard Skinnemoen623b0352007-03-13 17:59:11 +010021#include <asm/uaccess.h>
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070022
23#ifdef CONFIG_KPROBES
Christoph Hellwig9caebec2007-05-12 17:56:11 +020024static inline int notify_page_fault(struct pt_regs *regs, int trap)
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070025{
Christoph Hellwig9caebec2007-05-12 17:56:11 +020026 int ret = 0;
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070027
Christoph Hellwig9caebec2007-05-12 17:56:11 +020028 if (!user_mode(regs)) {
29 if (kprobe_running() && kprobe_fault_handler(regs, trap))
30 ret = 1;
31 }
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070032
Christoph Hellwig9caebec2007-05-12 17:56:11 +020033 return ret;
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070034}
35#else
Christoph Hellwig9caebec2007-05-12 17:56:11 +020036static inline int notify_page_fault(struct pt_regs *regs, int trap)
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070037{
Christoph Hellwig9caebec2007-05-12 17:56:11 +020038 return 0;
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070039}
40#endif
41
Haavard Skinnemoen623b0352007-03-13 17:59:11 +010042int exception_trace = 1;
43
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070044/*
45 * This routine handles page faults. It determines the address and the
46 * problem, and then passes it off to one of the appropriate routines.
47 *
48 * ecr is the Exception Cause Register. Possible values are:
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070049 * 6: Protection fault (instruction access)
Haavard Skinnemoen623b0352007-03-13 17:59:11 +010050 * 15: Protection fault (read access)
51 * 16: Protection fault (write access)
52 * 20: Page not found (instruction access)
53 * 24: Page not found (read access)
54 * 28: Page not found (write access)
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070055 */
56asmlinkage void do_page_fault(unsigned long ecr, struct pt_regs *regs)
57{
58 struct task_struct *tsk;
59 struct mm_struct *mm;
60 struct vm_area_struct *vma;
61 const struct exception_table_entry *fixup;
62 unsigned long address;
63 unsigned long page;
Haavard Skinnemoen623b0352007-03-13 17:59:11 +010064 long signr;
65 int code;
Nick Piggin83c54072007-07-19 01:47:05 -070066 int fault;
Kautuk Consulbf7c27e2012-07-30 14:39:25 -070067 unsigned int flags = FAULT_FLAG_ALLOW_RETRY | FAULT_FLAG_KILLABLE;
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070068
Christoph Hellwig9caebec2007-05-12 17:56:11 +020069 if (notify_page_fault(regs, ecr))
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070070 return;
71
72 address = sysreg_read(TLBEAR);
73
74 tsk = current;
75 mm = tsk->mm;
76
Haavard Skinnemoen623b0352007-03-13 17:59:11 +010077 signr = SIGSEGV;
78 code = SEGV_MAPERR;
79
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070080 /*
81 * If we're in an interrupt or have no user context, we must
82 * not take the fault...
83 */
84 if (in_atomic() || !mm || regs->sr & SYSREG_BIT(GM))
85 goto no_context;
86
87 local_irq_enable();
88
Johannes Weiner759496b2013-09-12 15:13:39 -070089 if (user_mode(regs))
90 flags |= FAULT_FLAG_USER;
Kautuk Consulbf7c27e2012-07-30 14:39:25 -070091retry:
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -070092 down_read(&mm->mmap_sem);
93
94 vma = find_vma(mm, address);
95 if (!vma)
96 goto bad_area;
97 if (vma->vm_start <= address)
98 goto good_area;
99 if (!(vma->vm_flags & VM_GROWSDOWN))
100 goto bad_area;
101 if (expand_stack(vma, address))
102 goto bad_area;
103
104 /*
105 * Ok, we have a good vm_area for this memory access, so we
106 * can handle it...
107 */
108good_area:
Haavard Skinnemoen623b0352007-03-13 17:59:11 +0100109 code = SEGV_ACCERR;
Haavard Skinnemoen623b0352007-03-13 17:59:11 +0100110
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700111 switch (ecr) {
112 case ECR_PROTECTION_X:
113 case ECR_TLB_MISS_X:
114 if (!(vma->vm_flags & VM_EXEC))
115 goto bad_area;
116 break;
117 case ECR_PROTECTION_R:
118 case ECR_TLB_MISS_R:
119 if (!(vma->vm_flags & (VM_READ | VM_WRITE | VM_EXEC)))
120 goto bad_area;
121 break;
122 case ECR_PROTECTION_W:
123 case ECR_TLB_MISS_W:
124 if (!(vma->vm_flags & VM_WRITE))
125 goto bad_area;
Kautuk Consulbf7c27e2012-07-30 14:39:25 -0700126 flags |= FAULT_FLAG_WRITE;
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700127 break;
128 default:
129 panic("Unhandled case %lu in do_page_fault!", ecr);
130 }
131
132 /*
133 * If for any reason at all we couldn't handle the fault, make
134 * sure we exit gracefully rather than endlessly redo the
135 * fault.
136 */
Kautuk Consulbf7c27e2012-07-30 14:39:25 -0700137 fault = handle_mm_fault(mm, vma, address, flags);
138
139 if ((fault & VM_FAULT_RETRY) && fatal_signal_pending(current))
140 return;
141
Nick Piggin83c54072007-07-19 01:47:05 -0700142 if (unlikely(fault & VM_FAULT_ERROR)) {
143 if (fault & VM_FAULT_OOM)
144 goto out_of_memory;
145 else if (fault & VM_FAULT_SIGBUS)
146 goto do_sigbus;
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700147 BUG();
148 }
Kautuk Consulbf7c27e2012-07-30 14:39:25 -0700149
150 if (flags & FAULT_FLAG_ALLOW_RETRY) {
151 if (fault & VM_FAULT_MAJOR)
152 tsk->maj_flt++;
153 else
154 tsk->min_flt++;
155 if (fault & VM_FAULT_RETRY) {
156 flags &= ~FAULT_FLAG_ALLOW_RETRY;
Shaohua Li45cac652012-10-08 16:32:19 -0700157 flags |= FAULT_FLAG_TRIED;
Kautuk Consulbf7c27e2012-07-30 14:39:25 -0700158
159 /*
160 * No need to up_read(&mm->mmap_sem) as we would have
161 * already released it in __lock_page_or_retry() in
162 * mm/filemap.c.
163 */
164 goto retry;
165 }
166 }
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700167
168 up_read(&mm->mmap_sem);
169 return;
170
171 /*
172 * Something tried to access memory that isn't in our memory
173 * map. Fix it, but check if it's kernel or user first...
174 */
175bad_area:
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700176 up_read(&mm->mmap_sem);
177
178 if (user_mode(regs)) {
Andrea Righi126187f2007-05-23 14:14:52 -0700179 if (exception_trace && printk_ratelimit())
Haavard Skinnemoen623b0352007-03-13 17:59:11 +0100180 printk("%s%s[%d]: segfault at %08lx pc %08lx "
181 "sp %08lx ecr %lu\n",
Serge E. Hallynb460cbc2007-10-18 23:39:52 -0700182 is_global_init(tsk) ? KERN_EMERG : KERN_INFO,
Haavard Skinnemoen623b0352007-03-13 17:59:11 +0100183 tsk->comm, tsk->pid, address, regs->pc,
184 regs->sp, ecr);
185 _exception(SIGSEGV, regs, code, address);
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700186 return;
187 }
188
189no_context:
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700190 /* Are we prepared to handle this kernel fault? */
191 fixup = search_exception_tables(regs->pc);
192 if (fixup) {
193 regs->pc = fixup->fixup;
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700194 return;
195 }
196
197 /*
198 * Oops. The kernel tried to access some bad page. We'll have
199 * to terminate things with extreme prejudice.
200 */
201 if (address < PAGE_SIZE)
202 printk(KERN_ALERT
203 "Unable to handle kernel NULL pointer dereference");
204 else
205 printk(KERN_ALERT
206 "Unable to handle kernel paging request");
207 printk(" at virtual address %08lx\n", address);
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700208
209 page = sysreg_read(PTBR);
210 printk(KERN_ALERT "ptbr = %08lx", page);
Haavard Skinnemoen32019822008-02-13 12:32:34 +0100211 if (address >= TASK_SIZE)
212 page = (unsigned long)swapper_pg_dir;
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700213 if (page) {
214 page = ((unsigned long *)page)[address >> 22];
215 printk(" pgd = %08lx", page);
216 if (page & _PAGE_PRESENT) {
217 page &= PAGE_MASK;
218 address &= 0x003ff000;
219 page = ((unsigned long *)__va(page))[address >> PAGE_SHIFT];
Haavard Skinnemoen623b0352007-03-13 17:59:11 +0100220 printk(" pte = %08lx", page);
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700221 }
222 }
Haavard Skinnemoen623b0352007-03-13 17:59:11 +0100223 printk("\n");
224 die("Kernel access of bad area", regs, signr);
225 return;
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700226
227 /*
228 * We ran out of memory, or some other thing happened to us
229 * that made us unable to handle the page fault gracefully.
230 */
231out_of_memory:
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700232 up_read(&mm->mmap_sem);
Nick Piggin67a8a202010-08-09 17:19:02 -0700233 if (!user_mode(regs))
234 goto no_context;
Johannes Weiner87134102013-09-12 15:13:38 -0700235 pagefault_out_of_memory();
Nick Piggin67a8a202010-08-09 17:19:02 -0700236 return;
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700237
238do_sigbus:
239 up_read(&mm->mmap_sem);
240
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700241 /* Kernel mode? Handle exceptions or die */
Haavard Skinnemoen623b0352007-03-13 17:59:11 +0100242 signr = SIGBUS;
243 code = BUS_ADRERR;
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700244 if (!user_mode(regs))
245 goto no_context;
Haavard Skinnemoen623b0352007-03-13 17:59:11 +0100246
247 if (exception_trace)
248 printk("%s%s[%d]: bus error at %08lx pc %08lx "
249 "sp %08lx ecr %lu\n",
Serge E. Hallynb460cbc2007-10-18 23:39:52 -0700250 is_global_init(tsk) ? KERN_EMERG : KERN_INFO,
Haavard Skinnemoen623b0352007-03-13 17:59:11 +0100251 tsk->comm, tsk->pid, address, regs->pc,
252 regs->sp, ecr);
253
254 _exception(SIGBUS, regs, BUS_ADRERR, address);
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700255}
256
257asmlinkage void do_bus_error(unsigned long addr, int write_access,
258 struct pt_regs *regs)
259{
260 printk(KERN_ALERT
261 "Bus error at physical address 0x%08lx (%s access)\n",
262 addr, write_access ? "write" : "read");
263 printk(KERN_INFO "DTLB dump:\n");
264 dump_dtlb();
Haavard Skinnemoen623b0352007-03-13 17:59:11 +0100265 die("Bus Error", regs, SIGKILL);
Haavard Skinnemoen5f97f7f2006-09-25 23:32:13 -0700266}