linux-mm.kvack.org archive mirror
 help / color / mirror / Atom feed
From: Andrew Morton <akpm@linux-foundation.org>
To: Yang Shi <yang.shi@linux.alibaba.com>
Cc: kirill.shutemov@linux.intel.com, gavin.dg@linux.alibaba.com,
	linux-mm@kvack.org, linux-kernel@vger.kernel.org
Subject: Re: [PATCH v2] mm: thp: fix potential clearing to referenced flag in page_idle_clear_pte_refs_one()
Date: Fri, 9 Feb 2018 12:43:00 -0800	[thread overview]
Message-ID: <20180209124300.fc3468a72e0d223c0e4d4195@linux-foundation.org> (raw)
In-Reply-To: <1518203521-81173-1-git-send-email-yang.shi@linux.alibaba.com>

On Sat, 10 Feb 2018 03:12:01 +0800 Yang Shi <yang.shi@linux.alibaba.com> wrote:

> For PTE-mapped THP, the compound THP has not been split to normal 4K
> pages yet, the whole THP is considered referenced if any one of sub
> page is referenced.
> 
> When walking PTE-mapped THP by pvmw, all relevant PTEs will be checked
> to retrieve referenced bit. But, the current code just returns the
> result of the last PTE. If the last PTE has not referenced, the
> referenced flag will be cleared.
> 
> Just did logical OR for referenced to get the correct result.
> 
> Reported-by: Gang Deng <gavin.dg@linux.alibaba.com>
> Suggested-by: Kirill A. Shutemov <kirill.shutemov@linux.intel.com>
> Signed-off-by: Yang Shi <yang.shi@linux.alibaba.com>
> ---
> v2: adopted the suggestion from Kirill. Not use "||=" style to keep checkpatch
> quiet, otherwise it reports ERROR: spaces required around that '||'
> 
>  mm/page_idle.c | 12 ++++++++----
>  1 file changed, 8 insertions(+), 4 deletions(-)
> 
> diff --git a/mm/page_idle.c b/mm/page_idle.c
> index 0a49374..a4baec9 100644
> --- a/mm/page_idle.c
> +++ b/mm/page_idle.c
> @@ -65,11 +65,15 @@ static bool page_idle_clear_pte_refs_one(struct page *page,
>  	while (page_vma_mapped_walk(&pvmw)) {
>  		addr = pvmw.address;
>  		if (pvmw.pte) {
> -			referenced = ptep_clear_young_notify(vma, addr,
> -					pvmw.pte);
> +			/*
> +			 * For PTE-mapped THP, one sub page is referenced,
> +			 * the whole THP is referenced.
> +			 */
> +			referenced = referenced || ptep_clear_young_notify(vma,
> +					addr, pvmw.pte);

That doesn't work.  If `referenced' is already true,
ptep_clear_young_notify() will not be called.

	if (ptep_clear_young_notify(...))
		referenced = true;

would suit.


It makes me wonder what difference this bug makes and why that
difference was not noted in your testing.  Any theories about that? 
How can we design a test which *will* make this error apparent?

--
To unsubscribe, send a message with 'unsubscribe linux-mm' in
the body to majordomo@kvack.org.  For more info on Linux MM,
see: http://www.linux-mm.org/ .
Don't email: <a href=mailto:"dont@kvack.org"> email@kvack.org </a>

  reply	other threads:[~2018-02-09 20:43 UTC|newest]

Thread overview: 3+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2018-02-09 19:12 Yang Shi
2018-02-09 20:43 ` Andrew Morton [this message]
2018-02-09 21:23   ` Yang Shi

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20180209124300.fc3468a72e0d223c0e4d4195@linux-foundation.org \
    --to=akpm@linux-foundation.org \
    --cc=gavin.dg@linux.alibaba.com \
    --cc=kirill.shutemov@linux.intel.com \
    --cc=linux-kernel@vger.kernel.org \
    --cc=linux-mm@kvack.org \
    --cc=yang.shi@linux.alibaba.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox