From: elver@google.com
To: Andrey Konovalov <andreyknvl@google.com>
Cc: Dmitry Vyukov <dvyukov@google.com>,
Vincenzo Frascino <vincenzo.frascino@arm.com>,
Catalin Marinas <catalin.marinas@arm.com>,
kasan-dev@googlegroups.com,
Andrey Ryabinin <aryabinin@virtuozzo.com>,
Alexander Potapenko <glider@google.com>,
Evgenii Stepanov <eugenis@google.com>,
Elena Petrova <lenaptr@google.com>,
Branislav Rankov <Branislav.Rankov@arm.com>,
Kevin Brodsky <kevin.brodsky@arm.com>,
Will Deacon <will.deacon@arm.com>,
Andrew Morton <akpm@linux-foundation.org>,
linux-arm-kernel@lists.infradead.org, linux-mm@kvack.org,
linux-kernel@vger.kernel.org
Subject: Re: [PATCH v3 13/39] kasan: decode stack frame only with KASAN_STACK_ENABLE
Date: Thu, 1 Oct 2020 19:43:59 +0200 [thread overview]
Message-ID: <20201001174359.GK4162920@elver.google.com> (raw)
In-Reply-To: <4f2a790cc95d2ab6400e5f75fa78ff0a0fdd9593.1600987622.git.andreyknvl@google.com>
On Fri, Sep 25, 2020 at 12:50AM +0200, Andrey Konovalov wrote:
> Decoding routines aren't needed when CONFIG_KASAN_STACK_ENABLE is not
> enabled. Currently only generic KASAN mode implements stack error
> reporting.
>
> No functional changes for software modes.
>
> Signed-off-by: Andrey Konovalov <andreyknvl@google.com>
> Signed-off-by: Vincenzo Frascino <vincenzo.frascino@arm.com>
Reviewed-by: Marco Elver <elver@google.com>
> ---
> Change-Id: I084e3214f2b40dc0bef7c5a9fafdc6f5c42b06a2
> ---
> mm/kasan/kasan.h | 6 ++
> mm/kasan/report.c | 162 --------------------------------------
> mm/kasan/report_generic.c | 161 +++++++++++++++++++++++++++++++++++++
> 3 files changed, 167 insertions(+), 162 deletions(-)
>
> diff --git a/mm/kasan/kasan.h b/mm/kasan/kasan.h
> index 3eff57e71ff5..8dfacc0f73ea 100644
> --- a/mm/kasan/kasan.h
> +++ b/mm/kasan/kasan.h
> @@ -169,6 +169,12 @@ bool check_invalid_free(void *addr);
> void *find_first_bad_addr(void *addr, size_t size);
> const char *get_bug_type(struct kasan_access_info *info);
>
> +#ifdef CONFIG_KASAN_STACK_ENABLE
> +void print_address_stack_frame(const void *addr);
> +#else
> +static inline void print_address_stack_frame(const void *addr) { }
> +#endif
> +
> bool kasan_report(unsigned long addr, size_t size,
> bool is_write, unsigned long ip);
> void kasan_report_invalid_free(void *object, unsigned long ip);
> diff --git a/mm/kasan/report.c b/mm/kasan/report.c
> index 5961dbfba080..f28eec5acdf6 100644
> --- a/mm/kasan/report.c
> +++ b/mm/kasan/report.c
> @@ -209,168 +209,6 @@ static inline bool init_task_stack_addr(const void *addr)
> sizeof(init_thread_union.stack));
> }
>
> -static bool __must_check tokenize_frame_descr(const char **frame_descr,
> - char *token, size_t max_tok_len,
> - unsigned long *value)
> -{
> - const char *sep = strchr(*frame_descr, ' ');
> -
> - if (sep == NULL)
> - sep = *frame_descr + strlen(*frame_descr);
> -
> - if (token != NULL) {
> - const size_t tok_len = sep - *frame_descr;
> -
> - if (tok_len + 1 > max_tok_len) {
> - pr_err("KASAN internal error: frame description too long: %s\n",
> - *frame_descr);
> - return false;
> - }
> -
> - /* Copy token (+ 1 byte for '\0'). */
> - strlcpy(token, *frame_descr, tok_len + 1);
> - }
> -
> - /* Advance frame_descr past separator. */
> - *frame_descr = sep + 1;
> -
> - if (value != NULL && kstrtoul(token, 10, value)) {
> - pr_err("KASAN internal error: not a valid number: %s\n", token);
> - return false;
> - }
> -
> - return true;
> -}
> -
> -static void print_decoded_frame_descr(const char *frame_descr)
> -{
> - /*
> - * We need to parse the following string:
> - * "n alloc_1 alloc_2 ... alloc_n"
> - * where alloc_i looks like
> - * "offset size len name"
> - * or "offset size len name:line".
> - */
> -
> - char token[64];
> - unsigned long num_objects;
> -
> - if (!tokenize_frame_descr(&frame_descr, token, sizeof(token),
> - &num_objects))
> - return;
> -
> - pr_err("\n");
> - pr_err("this frame has %lu %s:\n", num_objects,
> - num_objects == 1 ? "object" : "objects");
> -
> - while (num_objects--) {
> - unsigned long offset;
> - unsigned long size;
> -
> - /* access offset */
> - if (!tokenize_frame_descr(&frame_descr, token, sizeof(token),
> - &offset))
> - return;
> - /* access size */
> - if (!tokenize_frame_descr(&frame_descr, token, sizeof(token),
> - &size))
> - return;
> - /* name length (unused) */
> - if (!tokenize_frame_descr(&frame_descr, NULL, 0, NULL))
> - return;
> - /* object name */
> - if (!tokenize_frame_descr(&frame_descr, token, sizeof(token),
> - NULL))
> - return;
> -
> - /* Strip line number; without filename it's not very helpful. */
> - strreplace(token, ':', '\0');
> -
> - /* Finally, print object information. */
> - pr_err(" [%lu, %lu) '%s'", offset, offset + size, token);
> - }
> -}
> -
> -static bool __must_check get_address_stack_frame_info(const void *addr,
> - unsigned long *offset,
> - const char **frame_descr,
> - const void **frame_pc)
> -{
> - unsigned long aligned_addr;
> - unsigned long mem_ptr;
> - const u8 *shadow_bottom;
> - const u8 *shadow_ptr;
> - const unsigned long *frame;
> -
> - BUILD_BUG_ON(IS_ENABLED(CONFIG_STACK_GROWSUP));
> -
> - /*
> - * NOTE: We currently only support printing frame information for
> - * accesses to the task's own stack.
> - */
> - if (!object_is_on_stack(addr))
> - return false;
> -
> - aligned_addr = round_down((unsigned long)addr, sizeof(long));
> - mem_ptr = round_down(aligned_addr, KASAN_GRANULE_SIZE);
> - shadow_ptr = kasan_mem_to_shadow((void *)aligned_addr);
> - shadow_bottom = kasan_mem_to_shadow(end_of_stack(current));
> -
> - while (shadow_ptr >= shadow_bottom && *shadow_ptr != KASAN_STACK_LEFT) {
> - shadow_ptr--;
> - mem_ptr -= KASAN_GRANULE_SIZE;
> - }
> -
> - while (shadow_ptr >= shadow_bottom && *shadow_ptr == KASAN_STACK_LEFT) {
> - shadow_ptr--;
> - mem_ptr -= KASAN_GRANULE_SIZE;
> - }
> -
> - if (shadow_ptr < shadow_bottom)
> - return false;
> -
> - frame = (const unsigned long *)(mem_ptr + KASAN_GRANULE_SIZE);
> - if (frame[0] != KASAN_CURRENT_STACK_FRAME_MAGIC) {
> - pr_err("KASAN internal error: frame info validation failed; invalid marker: %lu\n",
> - frame[0]);
> - return false;
> - }
> -
> - *offset = (unsigned long)addr - (unsigned long)frame;
> - *frame_descr = (const char *)frame[1];
> - *frame_pc = (void *)frame[2];
> -
> - return true;
> -}
> -
> -static void print_address_stack_frame(const void *addr)
> -{
> - unsigned long offset;
> - const char *frame_descr;
> - const void *frame_pc;
> -
> - if (IS_ENABLED(CONFIG_KASAN_SW_TAGS))
> - return;
> -
> - if (!get_address_stack_frame_info(addr, &offset, &frame_descr,
> - &frame_pc))
> - return;
> -
> - /*
> - * get_address_stack_frame_info only returns true if the given addr is
> - * on the current task's stack.
> - */
> - pr_err("\n");
> - pr_err("addr %px is located in stack of task %s/%d at offset %lu in frame:\n",
> - addr, current->comm, task_pid_nr(current), offset);
> - pr_err(" %pS\n", frame_pc);
> -
> - if (!frame_descr)
> - return;
> -
> - print_decoded_frame_descr(frame_descr);
> -}
> -
> static void print_address_description(void *addr, u8 tag)
> {
> struct page *page = kasan_addr_to_page(addr);
> diff --git a/mm/kasan/report_generic.c b/mm/kasan/report_generic.c
> index 7d5b9e5c7cfe..42b2b5791733 100644
> --- a/mm/kasan/report_generic.c
> +++ b/mm/kasan/report_generic.c
> @@ -122,6 +122,167 @@ const char *get_bug_type(struct kasan_access_info *info)
> return get_wild_bug_type(info);
> }
>
> +#ifdef CONFIG_KASAN_STACK_ENABLE
> +static bool __must_check tokenize_frame_descr(const char **frame_descr,
> + char *token, size_t max_tok_len,
> + unsigned long *value)
> +{
> + const char *sep = strchr(*frame_descr, ' ');
> +
> + if (sep == NULL)
> + sep = *frame_descr + strlen(*frame_descr);
> +
> + if (token != NULL) {
> + const size_t tok_len = sep - *frame_descr;
> +
> + if (tok_len + 1 > max_tok_len) {
> + pr_err("KASAN internal error: frame description too long: %s\n",
> + *frame_descr);
> + return false;
> + }
> +
> + /* Copy token (+ 1 byte for '\0'). */
> + strlcpy(token, *frame_descr, tok_len + 1);
> + }
> +
> + /* Advance frame_descr past separator. */
> + *frame_descr = sep + 1;
> +
> + if (value != NULL && kstrtoul(token, 10, value)) {
> + pr_err("KASAN internal error: not a valid number: %s\n", token);
> + return false;
> + }
> +
> + return true;
> +}
> +
> +static void print_decoded_frame_descr(const char *frame_descr)
> +{
> + /*
> + * We need to parse the following string:
> + * "n alloc_1 alloc_2 ... alloc_n"
> + * where alloc_i looks like
> + * "offset size len name"
> + * or "offset size len name:line".
> + */
> +
> + char token[64];
> + unsigned long num_objects;
> +
> + if (!tokenize_frame_descr(&frame_descr, token, sizeof(token),
> + &num_objects))
> + return;
> +
> + pr_err("\n");
> + pr_err("this frame has %lu %s:\n", num_objects,
> + num_objects == 1 ? "object" : "objects");
> +
> + while (num_objects--) {
> + unsigned long offset;
> + unsigned long size;
> +
> + /* access offset */
> + if (!tokenize_frame_descr(&frame_descr, token, sizeof(token),
> + &offset))
> + return;
> + /* access size */
> + if (!tokenize_frame_descr(&frame_descr, token, sizeof(token),
> + &size))
> + return;
> + /* name length (unused) */
> + if (!tokenize_frame_descr(&frame_descr, NULL, 0, NULL))
> + return;
> + /* object name */
> + if (!tokenize_frame_descr(&frame_descr, token, sizeof(token),
> + NULL))
> + return;
> +
> + /* Strip line number; without filename it's not very helpful. */
> + strreplace(token, ':', '\0');
> +
> + /* Finally, print object information. */
> + pr_err(" [%lu, %lu) '%s'", offset, offset + size, token);
> + }
> +}
> +
> +static bool __must_check get_address_stack_frame_info(const void *addr,
> + unsigned long *offset,
> + const char **frame_descr,
> + const void **frame_pc)
> +{
> + unsigned long aligned_addr;
> + unsigned long mem_ptr;
> + const u8 *shadow_bottom;
> + const u8 *shadow_ptr;
> + const unsigned long *frame;
> +
> + BUILD_BUG_ON(IS_ENABLED(CONFIG_STACK_GROWSUP));
> +
> + /*
> + * NOTE: We currently only support printing frame information for
> + * accesses to the task's own stack.
> + */
> + if (!object_is_on_stack(addr))
> + return false;
> +
> + aligned_addr = round_down((unsigned long)addr, sizeof(long));
> + mem_ptr = round_down(aligned_addr, KASAN_GRANULE_SIZE);
> + shadow_ptr = kasan_mem_to_shadow((void *)aligned_addr);
> + shadow_bottom = kasan_mem_to_shadow(end_of_stack(current));
> +
> + while (shadow_ptr >= shadow_bottom && *shadow_ptr != KASAN_STACK_LEFT) {
> + shadow_ptr--;
> + mem_ptr -= KASAN_GRANULE_SIZE;
> + }
> +
> + while (shadow_ptr >= shadow_bottom && *shadow_ptr == KASAN_STACK_LEFT) {
> + shadow_ptr--;
> + mem_ptr -= KASAN_GRANULE_SIZE;
> + }
> +
> + if (shadow_ptr < shadow_bottom)
> + return false;
> +
> + frame = (const unsigned long *)(mem_ptr + KASAN_GRANULE_SIZE);
> + if (frame[0] != KASAN_CURRENT_STACK_FRAME_MAGIC) {
> + pr_err("KASAN internal error: frame info validation failed; invalid marker: %lu\n",
> + frame[0]);
> + return false;
> + }
> +
> + *offset = (unsigned long)addr - (unsigned long)frame;
> + *frame_descr = (const char *)frame[1];
> + *frame_pc = (void *)frame[2];
> +
> + return true;
> +}
> +
> +void print_address_stack_frame(const void *addr)
> +{
> + unsigned long offset;
> + const char *frame_descr;
> + const void *frame_pc;
> +
> + if (!get_address_stack_frame_info(addr, &offset, &frame_descr,
> + &frame_pc))
> + return;
> +
> + /*
> + * get_address_stack_frame_info only returns true if the given addr is
> + * on the current task's stack.
> + */
> + pr_err("\n");
> + pr_err("addr %px is located in stack of task %s/%d at offset %lu in frame:\n",
> + addr, current->comm, task_pid_nr(current), offset);
> + pr_err(" %pS\n", frame_pc);
> +
> + if (!frame_descr)
> + return;
> +
> + print_decoded_frame_descr(frame_descr);
> +}
> +#endif /* CONFIG_KASAN_STACK_ENABLE */
> +
> #define DEFINE_ASAN_REPORT_LOAD(size) \
> void __asan_report_load##size##_noabort(unsigned long addr) \
> { \
> --
> 2.28.0.681.g6f77f65b4e-goog
>
next prev parent reply other threads:[~2020-10-01 17:44 UTC|newest]
Thread overview: 88+ messages / expand[flat|nested] mbox.gz Atom feed top
2020-09-24 22:50 [PATCH v3 00/39] kasan: add hardware tag-based mode for arm64 Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 01/39] kasan: drop unnecessary GPL text from comment headers Andrey Konovalov
2020-10-01 17:18 ` elver
2020-09-24 22:50 ` [PATCH v3 02/39] kasan: KASAN_VMALLOC depends on KASAN_GENERIC Andrey Konovalov
2020-10-01 17:19 ` elver
2020-09-24 22:50 ` [PATCH v3 03/39] kasan: group vmalloc code Andrey Konovalov
2020-10-01 17:27 ` elver
2020-09-24 22:50 ` [PATCH v3 04/39] kasan: shadow declarations only for software modes Andrey Konovalov
2020-10-01 17:29 ` elver
2020-09-24 22:50 ` [PATCH v3 05/39] kasan: rename (un)poison_shadow to (un)poison_memory Andrey Konovalov
2020-10-01 17:29 ` elver
2020-09-24 22:50 ` [PATCH v3 06/39] kasan: rename KASAN_SHADOW_* to KASAN_GRANULE_* Andrey Konovalov
2020-10-01 17:30 ` elver
2020-09-24 22:50 ` [PATCH v3 07/39] kasan: only build init.c for software modes Andrey Konovalov
2020-10-01 17:31 ` elver
2020-09-24 22:50 ` [PATCH v3 08/39] kasan: split out shadow.c from common.c Andrey Konovalov
2020-10-01 17:32 ` elver
2020-09-24 22:50 ` [PATCH v3 09/39] kasan: define KASAN_GRANULE_PAGE Andrey Konovalov
2020-10-01 17:33 ` elver
2020-09-24 22:50 ` [PATCH v3 10/39] kasan: rename report and tags files Andrey Konovalov
2020-10-01 17:36 ` elver
2020-09-24 22:50 ` [PATCH v3 11/39] kasan: don't duplicate config dependencies Andrey Konovalov
2020-10-01 17:39 ` elver
2020-10-01 21:54 ` Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 12/39] kasan: hide invalid free check implementation Andrey Konovalov
2020-10-01 17:41 ` elver
2020-09-24 22:50 ` [PATCH v3 13/39] kasan: decode stack frame only with KASAN_STACK_ENABLE Andrey Konovalov
2020-10-01 17:43 ` elver [this message]
2020-09-24 22:50 ` [PATCH v3 14/39] kasan, arm64: only init shadow for software modes Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 15/39] kasan, arm64: only use kasan_depth " Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 16/39] kasan: rename addr_has_shadow to addr_has_metadata Andrey Konovalov
2020-10-01 17:45 ` elver
2020-09-24 22:50 ` [PATCH v3 17/39] kasan: rename print_shadow_for_address to print_memory_metadata Andrey Konovalov
2020-10-01 17:45 ` elver
2020-09-24 22:50 ` [PATCH v3 18/39] kasan: kasan_non_canonical_hook only for software modes Andrey Konovalov
2020-10-01 17:47 ` elver
2020-09-24 22:50 ` [PATCH v3 19/39] kasan: rename SHADOW layout macros to META Andrey Konovalov
2020-10-01 17:48 ` elver
2020-09-24 22:50 ` [PATCH v3 20/39] kasan: separate metadata_fetch_row for each mode Andrey Konovalov
2020-10-01 17:54 ` elver
2020-10-01 21:56 ` Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 21/39] kasan: don't allow SW_TAGS with ARM64_MTE Andrey Konovalov
2020-10-01 17:55 ` elver
2020-10-01 21:57 ` Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 22/39] kasan: introduce CONFIG_KASAN_HW_TAGS Andrey Konovalov
2020-10-01 17:57 ` elver
2020-09-24 22:50 ` [PATCH v3 23/39] arm64: Enable armv8.5-a asm-arch option Andrey Konovalov
2020-09-25 10:16 ` Catalin Marinas
2020-09-24 22:50 ` [PATCH v3 24/39] arm64: mte: Add in-kernel MTE helpers Andrey Konovalov
2020-09-25 10:15 ` Catalin Marinas
2020-09-25 11:28 ` Vincenzo Frascino
2020-09-25 12:50 ` Catalin Marinas
2020-09-25 13:36 ` Vincenzo Frascino
2020-09-24 22:50 ` [PATCH v3 25/39] arm64: kasan: Add arch layer for memory tagging helpers Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 26/39] arm64: mte: Add in-kernel tag fault handler Andrey Konovalov
2020-09-25 10:49 ` Catalin Marinas
2020-09-25 11:26 ` Andrey Konovalov
2020-09-25 11:47 ` Catalin Marinas
2020-09-25 11:52 ` Andrey Konovalov
2020-09-25 12:35 ` Catalin Marinas
2020-09-25 12:35 ` Catalin Marinas
2020-09-24 22:50 ` [PATCH v3 27/39] arm64: kasan: Enable in-kernel MTE Andrey Konovalov
2020-09-25 11:14 ` Catalin Marinas
2020-09-24 22:50 ` [PATCH v3 28/39] arm64: mte: Convert gcr_user into an exclude mask Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 29/39] arm64: mte: Switch GCR_EL1 in kernel entry and exit Andrey Konovalov
2020-09-25 11:34 ` Catalin Marinas
2020-09-25 11:50 ` Vincenzo Frascino
2020-09-25 12:38 ` Catalin Marinas
2020-09-24 22:50 ` [PATCH v3 30/39] arm64: kasan: Enable TBI EL1 Andrey Konovalov
2020-09-25 11:37 ` Catalin Marinas
2020-09-25 11:47 ` Vincenzo Frascino
2020-09-24 22:50 ` [PATCH v3 31/39] arm64: kasan: Align allocations for HW_TAGS Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 32/39] kasan: define KASAN_GRANULE_SIZE " Andrey Konovalov
2020-10-01 17:58 ` elver
2020-10-01 21:59 ` Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 33/39] kasan, x86, s390: update undef CONFIG_KASAN Andrey Konovalov
2020-10-01 17:59 ` elver
2020-09-24 22:50 ` [PATCH v3 34/39] kasan, arm64: expand CONFIG_KASAN checks Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 35/39] kasan, arm64: implement HW_TAGS runtime Andrey Konovalov
2020-10-01 18:00 ` elver
2020-09-24 22:50 ` [PATCH v3 36/39] kasan, arm64: print report from tag fault handler Andrey Konovalov
2020-09-25 11:39 ` Catalin Marinas
2020-09-24 22:50 ` [PATCH v3 37/39] kasan, slub: reset tags when accessing metadata Andrey Konovalov
2020-10-01 18:03 ` elver
2020-10-01 22:00 ` Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 38/39] kasan, arm64: enable CONFIG_KASAN_HW_TAGS Andrey Konovalov
2020-09-24 22:50 ` [PATCH v3 39/39] kasan: add documentation for hardware tag-based mode Andrey Konovalov
2020-10-01 18:03 ` elver
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20201001174359.GK4162920@elver.google.com \
--to=elver@google.com \
--cc=Branislav.Rankov@arm.com \
--cc=akpm@linux-foundation.org \
--cc=andreyknvl@google.com \
--cc=aryabinin@virtuozzo.com \
--cc=catalin.marinas@arm.com \
--cc=dvyukov@google.com \
--cc=eugenis@google.com \
--cc=glider@google.com \
--cc=kasan-dev@googlegroups.com \
--cc=kevin.brodsky@arm.com \
--cc=lenaptr@google.com \
--cc=linux-arm-kernel@lists.infradead.org \
--cc=linux-kernel@vger.kernel.org \
--cc=linux-mm@kvack.org \
--cc=vincenzo.frascino@arm.com \
--cc=will.deacon@arm.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox