blob: 1cb9bf9eb41fc1b4e95f7d94c0fdd3ae58dd93d6 [file] [log] [blame]
Kees Cook0a8adf52014-07-14 14:38:12 -07001/*
2 * This module provides an interface to trigger and test firmware loading.
3 *
4 * It is designed to be used for basic evaluation of the firmware loading
5 * subsystem (for example when validating firmware verification). It lacks
6 * any extra dependencies, and will not normally be loaded by the system
7 * unless explicitly requested by name.
8 */
9
10#define pr_fmt(fmt) KBUILD_MODNAME ": " fmt
11
12#include <linux/init.h>
13#include <linux/module.h>
14#include <linux/printk.h>
Brian Norriseb910942015-12-09 14:50:27 -080015#include <linux/completion.h>
Kees Cook0a8adf52014-07-14 14:38:12 -070016#include <linux/firmware.h>
17#include <linux/device.h>
18#include <linux/fs.h>
19#include <linux/miscdevice.h>
20#include <linux/slab.h>
21#include <linux/uaccess.h>
22
23static DEFINE_MUTEX(test_fw_mutex);
24static const struct firmware *test_firmware;
25
26static ssize_t test_fw_misc_read(struct file *f, char __user *buf,
27 size_t size, loff_t *offset)
28{
29 ssize_t rc = 0;
30
31 mutex_lock(&test_fw_mutex);
32 if (test_firmware)
33 rc = simple_read_from_buffer(buf, size, offset,
34 test_firmware->data,
35 test_firmware->size);
36 mutex_unlock(&test_fw_mutex);
37 return rc;
38}
39
40static const struct file_operations test_fw_fops = {
41 .owner = THIS_MODULE,
42 .read = test_fw_misc_read,
43};
44
Kees Cook0a8adf52014-07-14 14:38:12 -070045static ssize_t trigger_request_store(struct device *dev,
46 struct device_attribute *attr,
47 const char *buf, size_t count)
48{
49 int rc;
50 char *name;
51
Brian Norrisbe4a1322015-12-09 14:50:26 -080052 name = kstrndup(buf, count, GFP_KERNEL);
Kees Cook0a8adf52014-07-14 14:38:12 -070053 if (!name)
54 return -ENOSPC;
Kees Cook0a8adf52014-07-14 14:38:12 -070055
56 pr_info("loading '%s'\n", name);
57
58 mutex_lock(&test_fw_mutex);
59 release_firmware(test_firmware);
60 test_firmware = NULL;
61 rc = request_firmware(&test_firmware, name, dev);
Brian Norris47e0bbb2015-12-09 14:50:25 -080062 if (rc) {
Kees Cook0a8adf52014-07-14 14:38:12 -070063 pr_info("load of '%s' failed: %d\n", name, rc);
Brian Norris47e0bbb2015-12-09 14:50:25 -080064 goto out;
65 }
66 pr_info("loaded: %zu\n", test_firmware->size);
67 rc = count;
68
69out:
Kees Cook0a8adf52014-07-14 14:38:12 -070070 mutex_unlock(&test_fw_mutex);
71
72 kfree(name);
73
Brian Norris47e0bbb2015-12-09 14:50:25 -080074 return rc;
Kees Cook0a8adf52014-07-14 14:38:12 -070075}
76static DEVICE_ATTR_WO(trigger_request);
77
Brian Norriseb910942015-12-09 14:50:27 -080078static DECLARE_COMPLETION(async_fw_done);
79
80static void trigger_async_request_cb(const struct firmware *fw, void *context)
81{
82 test_firmware = fw;
83 complete(&async_fw_done);
84}
85
86static ssize_t trigger_async_request_store(struct device *dev,
87 struct device_attribute *attr,
88 const char *buf, size_t count)
89{
90 int rc;
91 char *name;
92
93 name = kstrndup(buf, count, GFP_KERNEL);
94 if (!name)
95 return -ENOSPC;
96
97 pr_info("loading '%s'\n", name);
98
99 mutex_lock(&test_fw_mutex);
100 release_firmware(test_firmware);
101 test_firmware = NULL;
102 rc = request_firmware_nowait(THIS_MODULE, 1, name, dev, GFP_KERNEL,
103 NULL, trigger_async_request_cb);
104 if (rc) {
105 pr_info("async load of '%s' failed: %d\n", name, rc);
106 kfree(name);
107 goto out;
108 }
109 /* Free 'name' ASAP, to test for race conditions */
110 kfree(name);
111
112 wait_for_completion(&async_fw_done);
113
114 if (test_firmware) {
115 pr_info("loaded: %zu\n", test_firmware->size);
116 rc = count;
117 } else {
118 pr_err("failed to async load firmware\n");
119 rc = -ENODEV;
120 }
121
122out:
123 mutex_unlock(&test_fw_mutex);
124
125 return rc;
126}
127static DEVICE_ATTR_WO(trigger_async_request);
128
Luis R. Rodriguez67fd5532017-01-23 08:11:05 -0800129static struct miscdevice test_fw_misc_device = {
130 .minor = MISC_DYNAMIC_MINOR,
131 .name = "test_firmware",
132 .fops = &test_fw_fops,
133};
134
Kees Cook0a8adf52014-07-14 14:38:12 -0700135static int __init test_firmware_init(void)
136{
137 int rc;
138
139 rc = misc_register(&test_fw_misc_device);
140 if (rc) {
141 pr_err("could not register misc device: %d\n", rc);
142 return rc;
143 }
144 rc = device_create_file(test_fw_misc_device.this_device,
145 &dev_attr_trigger_request);
146 if (rc) {
147 pr_err("could not create sysfs interface: %d\n", rc);
148 goto dereg;
149 }
150
Brian Norriseb910942015-12-09 14:50:27 -0800151 rc = device_create_file(test_fw_misc_device.this_device,
152 &dev_attr_trigger_async_request);
153 if (rc) {
154 pr_err("could not create async sysfs interface: %d\n", rc);
155 goto remove_file;
156 }
157
Kees Cook0a8adf52014-07-14 14:38:12 -0700158 pr_warn("interface ready\n");
159
160 return 0;
Brian Norriseb910942015-12-09 14:50:27 -0800161
162remove_file:
163 device_remove_file(test_fw_misc_device.this_device,
164 &dev_attr_trigger_async_request);
Kees Cook0a8adf52014-07-14 14:38:12 -0700165dereg:
166 misc_deregister(&test_fw_misc_device);
167 return rc;
168}
169
170module_init(test_firmware_init);
171
172static void __exit test_firmware_exit(void)
173{
174 release_firmware(test_firmware);
175 device_remove_file(test_fw_misc_device.this_device,
Brian Norriseb910942015-12-09 14:50:27 -0800176 &dev_attr_trigger_async_request);
177 device_remove_file(test_fw_misc_device.this_device,
Kees Cook0a8adf52014-07-14 14:38:12 -0700178 &dev_attr_trigger_request);
179 misc_deregister(&test_fw_misc_device);
180 pr_warn("removed interface\n");
181}
182
183module_exit(test_firmware_exit);
184
185MODULE_AUTHOR("Kees Cook <keescook@chromium.org>");
186MODULE_LICENSE("GPL");