11838b06bSIgnacio Alvarado // SPDX-License-Identifier: GPL-2.0-only
21838b06bSIgnacio Alvarado /*
31838b06bSIgnacio Alvarado  * This test is intended to reproduce a crash that happens when
41838b06bSIgnacio Alvarado  * kvm_arch_hardware_disable is called and it attempts to unregister the user
51838b06bSIgnacio Alvarado  * return notifiers.
61838b06bSIgnacio Alvarado  */
71838b06bSIgnacio Alvarado 
81838b06bSIgnacio Alvarado #define _GNU_SOURCE
91838b06bSIgnacio Alvarado 
101838b06bSIgnacio Alvarado #include <fcntl.h>
111838b06bSIgnacio Alvarado #include <pthread.h>
121838b06bSIgnacio Alvarado #include <semaphore.h>
131838b06bSIgnacio Alvarado #include <stdint.h>
141838b06bSIgnacio Alvarado #include <stdlib.h>
151838b06bSIgnacio Alvarado #include <unistd.h>
161838b06bSIgnacio Alvarado #include <sys/wait.h>
171838b06bSIgnacio Alvarado 
181838b06bSIgnacio Alvarado #include <test_util.h>
191838b06bSIgnacio Alvarado 
201838b06bSIgnacio Alvarado #include "kvm_util.h"
211838b06bSIgnacio Alvarado 
221838b06bSIgnacio Alvarado #define VCPU_NUM 4
231838b06bSIgnacio Alvarado #define SLEEPING_THREAD_NUM (1 << 4)
241838b06bSIgnacio Alvarado #define FORK_NUM (1ULL << 9)
251838b06bSIgnacio Alvarado #define DELAY_US_MAX 2000
261838b06bSIgnacio Alvarado #define GUEST_CODE_PIO_PORT 4
271838b06bSIgnacio Alvarado 
281838b06bSIgnacio Alvarado sem_t *sem;
291838b06bSIgnacio Alvarado 
guest_code(void)301838b06bSIgnacio Alvarado static void guest_code(void)
311838b06bSIgnacio Alvarado {
321838b06bSIgnacio Alvarado 	for (;;)
331838b06bSIgnacio Alvarado 		;  /* Some busy work */
341838b06bSIgnacio Alvarado 	printf("Should not be reached.\n");
351838b06bSIgnacio Alvarado }
361838b06bSIgnacio Alvarado 
run_vcpu(void * arg)371838b06bSIgnacio Alvarado static void *run_vcpu(void *arg)
381838b06bSIgnacio Alvarado {
390750388cSSean Christopherson 	struct kvm_vcpu *vcpu = arg;
400750388cSSean Christopherson 	struct kvm_run *run = vcpu->run;
411838b06bSIgnacio Alvarado 
42768e9a61SSean Christopherson 	vcpu_run(vcpu);
431838b06bSIgnacio Alvarado 
441838b06bSIgnacio Alvarado 	TEST_ASSERT(false, "%s: exited with reason %d: %s\n",
450750388cSSean Christopherson 		    __func__, run->exit_reason,
460750388cSSean Christopherson 		    exit_reason_str(run->exit_reason));
471838b06bSIgnacio Alvarado 	pthread_exit(NULL);
481838b06bSIgnacio Alvarado }
491838b06bSIgnacio Alvarado 
sleeping_thread(void * arg)501838b06bSIgnacio Alvarado static void *sleeping_thread(void *arg)
511838b06bSIgnacio Alvarado {
521838b06bSIgnacio Alvarado 	int fd;
531838b06bSIgnacio Alvarado 
541838b06bSIgnacio Alvarado 	while (true) {
551838b06bSIgnacio Alvarado 		fd = open("/dev/null", O_RDWR);
561838b06bSIgnacio Alvarado 		close(fd);
571838b06bSIgnacio Alvarado 	}
581838b06bSIgnacio Alvarado 	TEST_ASSERT(false, "%s: exited\n", __func__);
591838b06bSIgnacio Alvarado 	pthread_exit(NULL);
601838b06bSIgnacio Alvarado }
611838b06bSIgnacio Alvarado 
check_create_thread(pthread_t * thread,pthread_attr_t * attr,void * (* f)(void *),void * arg)621838b06bSIgnacio Alvarado static inline void check_create_thread(pthread_t *thread, pthread_attr_t *attr,
631838b06bSIgnacio Alvarado 				       void *(*f)(void *), void *arg)
641838b06bSIgnacio Alvarado {
651838b06bSIgnacio Alvarado 	int r;
661838b06bSIgnacio Alvarado 
671838b06bSIgnacio Alvarado 	r = pthread_create(thread, attr, f, arg);
681838b06bSIgnacio Alvarado 	TEST_ASSERT(r == 0, "%s: failed to create thread", __func__);
691838b06bSIgnacio Alvarado }
701838b06bSIgnacio Alvarado 
check_set_affinity(pthread_t thread,cpu_set_t * cpu_set)711838b06bSIgnacio Alvarado static inline void check_set_affinity(pthread_t thread, cpu_set_t *cpu_set)
721838b06bSIgnacio Alvarado {
731838b06bSIgnacio Alvarado 	int r;
741838b06bSIgnacio Alvarado 
751838b06bSIgnacio Alvarado 	r = pthread_setaffinity_np(thread, sizeof(cpu_set_t), cpu_set);
761838b06bSIgnacio Alvarado 	TEST_ASSERT(r == 0, "%s: failed set affinity", __func__);
771838b06bSIgnacio Alvarado }
781838b06bSIgnacio Alvarado 
check_join(pthread_t thread,void ** retval)791838b06bSIgnacio Alvarado static inline void check_join(pthread_t thread, void **retval)
801838b06bSIgnacio Alvarado {
811838b06bSIgnacio Alvarado 	int r;
821838b06bSIgnacio Alvarado 
831838b06bSIgnacio Alvarado 	r = pthread_join(thread, retval);
841838b06bSIgnacio Alvarado 	TEST_ASSERT(r == 0, "%s: failed to join thread", __func__);
851838b06bSIgnacio Alvarado }
861838b06bSIgnacio Alvarado 
run_test(uint32_t run)871838b06bSIgnacio Alvarado static void run_test(uint32_t run)
881838b06bSIgnacio Alvarado {
890750388cSSean Christopherson 	struct kvm_vcpu *vcpu;
901838b06bSIgnacio Alvarado 	struct kvm_vm *vm;
911838b06bSIgnacio Alvarado 	cpu_set_t cpu_set;
921838b06bSIgnacio Alvarado 	pthread_t threads[VCPU_NUM];
931838b06bSIgnacio Alvarado 	pthread_t throw_away;
941838b06bSIgnacio Alvarado 	void *b;
951838b06bSIgnacio Alvarado 	uint32_t i, j;
961838b06bSIgnacio Alvarado 
971838b06bSIgnacio Alvarado 	CPU_ZERO(&cpu_set);
981838b06bSIgnacio Alvarado 	for (i = 0; i < VCPU_NUM; i++)
991838b06bSIgnacio Alvarado 		CPU_SET(i, &cpu_set);
1001838b06bSIgnacio Alvarado 
101*6e1d13bfSSean Christopherson 	vm = vm_create(VCPU_NUM);
1021838b06bSIgnacio Alvarado 
103f982fb62SVitaly Kuznetsov 	pr_debug("%s: [%d] start vcpus\n", __func__, run);
1041838b06bSIgnacio Alvarado 	for (i = 0; i < VCPU_NUM; ++i) {
1050750388cSSean Christopherson 		vcpu = vm_vcpu_add(vm, i, guest_code);
1061838b06bSIgnacio Alvarado 
1070750388cSSean Christopherson 		check_create_thread(&threads[i], NULL, run_vcpu, vcpu);
1081838b06bSIgnacio Alvarado 		check_set_affinity(threads[i], &cpu_set);
1091838b06bSIgnacio Alvarado 
1101838b06bSIgnacio Alvarado 		for (j = 0; j < SLEEPING_THREAD_NUM; ++j) {
1111838b06bSIgnacio Alvarado 			check_create_thread(&throw_away, NULL, sleeping_thread,
1121838b06bSIgnacio Alvarado 					    (void *)NULL);
1131838b06bSIgnacio Alvarado 			check_set_affinity(throw_away, &cpu_set);
1141838b06bSIgnacio Alvarado 		}
1151838b06bSIgnacio Alvarado 	}
116f982fb62SVitaly Kuznetsov 	pr_debug("%s: [%d] all threads launched\n", __func__, run);
1171838b06bSIgnacio Alvarado 	sem_post(sem);
1181838b06bSIgnacio Alvarado 	for (i = 0; i < VCPU_NUM; ++i)
1191838b06bSIgnacio Alvarado 		check_join(threads[i], &b);
1201838b06bSIgnacio Alvarado 	/* Should not be reached */
1211838b06bSIgnacio Alvarado 	TEST_ASSERT(false, "%s: [%d] child escaped the ninja\n", __func__, run);
1221838b06bSIgnacio Alvarado }
1231838b06bSIgnacio Alvarado 
wait_for_child_setup(pid_t pid)124a10453c0SDavid Matlack void wait_for_child_setup(pid_t pid)
125a10453c0SDavid Matlack {
126a10453c0SDavid Matlack 	/*
127a10453c0SDavid Matlack 	 * Wait for the child to post to the semaphore, but wake up periodically
128a10453c0SDavid Matlack 	 * to check if the child exited prematurely.
129a10453c0SDavid Matlack 	 */
130a10453c0SDavid Matlack 	for (;;) {
131a10453c0SDavid Matlack 		const struct timespec wait_period = { .tv_sec = 1 };
132a10453c0SDavid Matlack 		int status;
133a10453c0SDavid Matlack 
134a10453c0SDavid Matlack 		if (!sem_timedwait(sem, &wait_period))
135a10453c0SDavid Matlack 			return;
136a10453c0SDavid Matlack 
137a10453c0SDavid Matlack 		/* Child is still running, keep waiting. */
138a10453c0SDavid Matlack 		if (pid != waitpid(pid, &status, WNOHANG))
139a10453c0SDavid Matlack 			continue;
140a10453c0SDavid Matlack 
141a10453c0SDavid Matlack 		/*
142a10453c0SDavid Matlack 		 * Child is no longer running, which is not expected.
143a10453c0SDavid Matlack 		 *
144a10453c0SDavid Matlack 		 * If it exited with a non-zero status, we explicitly forward
145a10453c0SDavid Matlack 		 * the child's status in case it exited with KSFT_SKIP.
146a10453c0SDavid Matlack 		 */
147a10453c0SDavid Matlack 		if (WIFEXITED(status))
148a10453c0SDavid Matlack 			exit(WEXITSTATUS(status));
149a10453c0SDavid Matlack 		else
150a10453c0SDavid Matlack 			TEST_ASSERT(false, "Child exited unexpectedly");
151a10453c0SDavid Matlack 	}
152a10453c0SDavid Matlack }
153a10453c0SDavid Matlack 
main(int argc,char ** argv)1541838b06bSIgnacio Alvarado int main(int argc, char **argv)
1551838b06bSIgnacio Alvarado {
1561838b06bSIgnacio Alvarado 	uint32_t i;
1571838b06bSIgnacio Alvarado 	int s, r;
1581838b06bSIgnacio Alvarado 	pid_t pid;
1591838b06bSIgnacio Alvarado 
1601838b06bSIgnacio Alvarado 	sem = sem_open("vm_sem", O_CREAT | O_EXCL, 0644, 0);
1611838b06bSIgnacio Alvarado 	sem_unlink("vm_sem");
1621838b06bSIgnacio Alvarado 
1631838b06bSIgnacio Alvarado 	for (i = 0; i < FORK_NUM; ++i) {
1641838b06bSIgnacio Alvarado 		pid = fork();
1651838b06bSIgnacio Alvarado 		TEST_ASSERT(pid >= 0, "%s: unable to fork", __func__);
1661838b06bSIgnacio Alvarado 		if (pid == 0)
1671838b06bSIgnacio Alvarado 			run_test(i); /* This function always exits */
1681838b06bSIgnacio Alvarado 
169f982fb62SVitaly Kuznetsov 		pr_debug("%s: [%d] waiting semaphore\n", __func__, i);
170a10453c0SDavid Matlack 		wait_for_child_setup(pid);
1711838b06bSIgnacio Alvarado 		r = (rand() % DELAY_US_MAX) + 1;
172f982fb62SVitaly Kuznetsov 		pr_debug("%s: [%d] waiting %dus\n", __func__, i, r);
1731838b06bSIgnacio Alvarado 		usleep(r);
1741838b06bSIgnacio Alvarado 		r = waitpid(pid, &s, WNOHANG);
1751838b06bSIgnacio Alvarado 		TEST_ASSERT(r != pid,
1761838b06bSIgnacio Alvarado 			    "%s: [%d] child exited unexpectedly status: [%d]",
1771838b06bSIgnacio Alvarado 			    __func__, i, s);
178f982fb62SVitaly Kuznetsov 		pr_debug("%s: [%d] killing child\n", __func__, i);
1791838b06bSIgnacio Alvarado 		kill(pid, SIGKILL);
1801838b06bSIgnacio Alvarado 	}
1811838b06bSIgnacio Alvarado 
1821838b06bSIgnacio Alvarado 	sem_destroy(sem);
1831838b06bSIgnacio Alvarado 	exit(0);
1841838b06bSIgnacio Alvarado }
185