1d08b9f0cSSami Tolvanen // SPDX-License-Identifier: GPL-2.0 2d08b9f0cSSami Tolvanen /* 3d08b9f0cSSami Tolvanen * Shadow Call Stack support. 4d08b9f0cSSami Tolvanen * 5d08b9f0cSSami Tolvanen * Copyright (C) 2019 Google LLC 6d08b9f0cSSami Tolvanen */ 7d08b9f0cSSami Tolvanen 8d08b9f0cSSami Tolvanen #include <linux/kasan.h> 9628d06a4SSami Tolvanen #include <linux/mm.h> 10d08b9f0cSSami Tolvanen #include <linux/scs.h> 11d08b9f0cSSami Tolvanen #include <linux/slab.h> 12628d06a4SSami Tolvanen #include <linux/vmstat.h> 13d08b9f0cSSami Tolvanen 14d08b9f0cSSami Tolvanen static struct kmem_cache *scs_cache; 15d08b9f0cSSami Tolvanen 16bee348faSWill Deacon static void __scs_account(void *s, int account) 17bee348faSWill Deacon { 18bee348faSWill Deacon struct page *scs_page = virt_to_page(s); 19bee348faSWill Deacon 20*991e7673SShakeel Butt mod_node_page_state(page_pgdat(scs_page), NR_KERNEL_SCS_KB, 21bee348faSWill Deacon account * (SCS_SIZE / SZ_1K)); 22bee348faSWill Deacon } 23bee348faSWill Deacon 24d08b9f0cSSami Tolvanen static void *scs_alloc(int node) 25d08b9f0cSSami Tolvanen { 26bee348faSWill Deacon void *s = kmem_cache_alloc_node(scs_cache, GFP_SCS, node); 27d08b9f0cSSami Tolvanen 28bee348faSWill Deacon if (!s) 29bee348faSWill Deacon return NULL; 30bee348faSWill Deacon 31d08b9f0cSSami Tolvanen *__scs_magic(s) = SCS_END_MAGIC; 32bee348faSWill Deacon 33d08b9f0cSSami Tolvanen /* 34d08b9f0cSSami Tolvanen * Poison the allocation to catch unintentional accesses to 35d08b9f0cSSami Tolvanen * the shadow stack when KASAN is enabled. 36d08b9f0cSSami Tolvanen */ 37d08b9f0cSSami Tolvanen kasan_poison_object_data(scs_cache, s); 38bee348faSWill Deacon __scs_account(s, 1); 39d08b9f0cSSami Tolvanen return s; 40d08b9f0cSSami Tolvanen } 41d08b9f0cSSami Tolvanen 42d08b9f0cSSami Tolvanen static void scs_free(void *s) 43d08b9f0cSSami Tolvanen { 44bee348faSWill Deacon __scs_account(s, -1); 45d08b9f0cSSami Tolvanen kasan_unpoison_object_data(scs_cache, s); 46d08b9f0cSSami Tolvanen kmem_cache_free(scs_cache, s); 47d08b9f0cSSami Tolvanen } 48d08b9f0cSSami Tolvanen 49d08b9f0cSSami Tolvanen void __init scs_init(void) 50d08b9f0cSSami Tolvanen { 51d08b9f0cSSami Tolvanen scs_cache = kmem_cache_create("scs_cache", SCS_SIZE, 0, 0, NULL); 52d08b9f0cSSami Tolvanen } 53d08b9f0cSSami Tolvanen 54d08b9f0cSSami Tolvanen int scs_prepare(struct task_struct *tsk, int node) 55d08b9f0cSSami Tolvanen { 56d08b9f0cSSami Tolvanen void *s = scs_alloc(node); 57d08b9f0cSSami Tolvanen 58d08b9f0cSSami Tolvanen if (!s) 59d08b9f0cSSami Tolvanen return -ENOMEM; 60d08b9f0cSSami Tolvanen 6151189c7aSWill Deacon task_scs(tsk) = task_scs_sp(tsk) = s; 62d08b9f0cSSami Tolvanen return 0; 63d08b9f0cSSami Tolvanen } 64d08b9f0cSSami Tolvanen 655bbaf9d1SSami Tolvanen static void scs_check_usage(struct task_struct *tsk) 665bbaf9d1SSami Tolvanen { 675bbaf9d1SSami Tolvanen static unsigned long highest; 685bbaf9d1SSami Tolvanen 695bbaf9d1SSami Tolvanen unsigned long *p, prev, curr = highest, used = 0; 705bbaf9d1SSami Tolvanen 715bbaf9d1SSami Tolvanen if (!IS_ENABLED(CONFIG_DEBUG_STACK_USAGE)) 725bbaf9d1SSami Tolvanen return; 735bbaf9d1SSami Tolvanen 745bbaf9d1SSami Tolvanen for (p = task_scs(tsk); p < __scs_magic(tsk); ++p) { 755bbaf9d1SSami Tolvanen if (!READ_ONCE_NOCHECK(*p)) 765bbaf9d1SSami Tolvanen break; 77333ed746SWill Deacon used += sizeof(*p); 785bbaf9d1SSami Tolvanen } 795bbaf9d1SSami Tolvanen 805bbaf9d1SSami Tolvanen while (used > curr) { 815bbaf9d1SSami Tolvanen prev = cmpxchg_relaxed(&highest, curr, used); 825bbaf9d1SSami Tolvanen 835bbaf9d1SSami Tolvanen if (prev == curr) { 845bbaf9d1SSami Tolvanen pr_info("%s (%d): highest shadow stack usage: %lu bytes\n", 855bbaf9d1SSami Tolvanen tsk->comm, task_pid_nr(tsk), used); 865bbaf9d1SSami Tolvanen break; 875bbaf9d1SSami Tolvanen } 885bbaf9d1SSami Tolvanen 895bbaf9d1SSami Tolvanen curr = prev; 905bbaf9d1SSami Tolvanen } 915bbaf9d1SSami Tolvanen } 925bbaf9d1SSami Tolvanen 93d08b9f0cSSami Tolvanen void scs_release(struct task_struct *tsk) 94d08b9f0cSSami Tolvanen { 95d08b9f0cSSami Tolvanen void *s = task_scs(tsk); 96d08b9f0cSSami Tolvanen 97d08b9f0cSSami Tolvanen if (!s) 98d08b9f0cSSami Tolvanen return; 99d08b9f0cSSami Tolvanen 10088485be5SWill Deacon WARN(task_scs_end_corrupted(tsk), 10188485be5SWill Deacon "corrupted shadow stack detected when freeing task\n"); 1025bbaf9d1SSami Tolvanen scs_check_usage(tsk); 103d08b9f0cSSami Tolvanen scs_free(s); 104d08b9f0cSSami Tolvanen } 105