From patchwork Thu Apr 10 21:00:22 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Pierrick Bouvier X-Patchwork-Id: 879761 Delivered-To: patch@linaro.org Received: by 2002:a5d:4882:0:b0:38f:210b:807b with SMTP id g2csp452971wrq; Thu, 10 Apr 2025 14:02:33 -0700 (PDT) X-Forwarded-Encrypted: i=2; AJvYcCX99RT3OhTJJCipru+6es4oVjocbiQXixS2bRNkSUlbgtKK65B7PVFyfuttN+U9hfyiZxLOQg==@linaro.org X-Google-Smtp-Source: AGHT+IEZvEKqinrFhUm7wnrZz5H6BxSfmvFKBMnTBELeGvte2ghHEtKv+g0ph27wLem4iiYTziC+ X-Received: by 2002:a05:622a:14d3:b0:477:6e69:ebc0 with SMTP id d75a77b69052e-47977405f0amr4301351cf.0.1744318953692; Thu, 10 Apr 2025 14:02:33 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1744318953; cv=none; d=google.com; s=arc-20240605; b=V1Z/pMYnVdkFxvJufm26hyCJON9JQDn6nGeMSPWM92kiyk6Trndfeo2pL1UCCbXkAH 8xclicz6DJbO3TvaGcnAMyE8N1YALzZcDJ1G6EL8gIbsAXtkibVpnw9m/AKLJYsmS9Zn CXvBM7jSjqVAP3BwiWjsJ5PPspjhH/mRIjvBCAXYWPy34ZsufZ7Hh7Zmong2SBDD51kA 31SWTaWJK4AcMwDAJ1z306jviWSOJH90EQEHAq+OfqFqEosFmCqqJn52eXrFtgNWwUwD gFQSalOKB0MbbCzN6is1AsqwtKGJSVlMP+5Dp3e2n5Ydho4bc9Xvzhd4Gr+hTBqqt3Za sXqw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=sender:errors-to:list-subscribe:list-help:list-post:list-archive :list-unsubscribe:list-id:precedence:content-transfer-encoding :mime-version:references:in-reply-to:message-id:date:subject:cc:to :from:dkim-signature; bh=M9OwVMJQ+nPgoXVT+v3WG48aEZrZJjJFRvNoKJmm5KU=; fh=9zURFNcU6oIvJEyFpefuco3FFmkVuZS76K74T16TMuc=; b=Qp49EnqCo83+xPJKNkcslpDnkFwKLpqDb/i+ewYRvex1NlQBWbJfG4g5028vwH6/du 8yFqyx85sSc3PMfsFqbflmvvftUoerzo09fGQ9ddK/8ZSQVliBivLbksya/J0p7ZBLnv HEFwYWiamtsSEk5z2QdyVe5fYx4YXVuOVNA6UL1pIwtqlhpxBbcvCUNht1vvPBpI9eVV ziwBWa+woHsXs9B6rW9dFTK0Z5R+KcIl20PNm3cf5v68UtlLBnmYwk9L4LfestQWTzOM MIm5/1FjLIVBVgSyvofs5zepCy1qgWmvsXBeBCL56G3XIegK/c77FJdTSCo6+BlYe6Yf HDEg==; dara=google.com ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@linaro.org header.s=google header.b=genz2iH7; spf=pass (google.com: domain of qemu-devel-bounces+patch=linaro.org@nongnu.org designates 209.51.188.17 as permitted sender) smtp.mailfrom="qemu-devel-bounces+patch=linaro.org@nongnu.org"; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=linaro.org; dara=neutral header.i=@linaro.org Return-Path: Received: from lists.gnu.org (lists.gnu.org. [209.51.188.17]) by mx.google.com with ESMTPS id d75a77b69052e-4796eb0db03si17852151cf.106.2025.04.10.14.02.33 for (version=TLS1_2 cipher=ECDHE-ECDSA-CHACHA20-POLY1305 bits=256/256); Thu, 10 Apr 2025 14:02:33 -0700 (PDT) Received-SPF: pass (google.com: domain of qemu-devel-bounces+patch=linaro.org@nongnu.org designates 209.51.188.17 as permitted sender) client-ip=209.51.188.17; Authentication-Results: mx.google.com; dkim=pass header.i=@linaro.org header.s=google header.b=genz2iH7; spf=pass (google.com: domain of qemu-devel-bounces+patch=linaro.org@nongnu.org designates 209.51.188.17 as permitted sender) smtp.mailfrom="qemu-devel-bounces+patch=linaro.org@nongnu.org"; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=linaro.org; dara=neutral header.i=@linaro.org Received: from localhost ([::1] helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1u2z0u-0005z2-S3; Thu, 10 Apr 2025 17:00:44 -0400 Received: from eggs.gnu.org ([2001:470:142:3::10]) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1u2z0s-0005y2-VC for qemu-devel@nongnu.org; Thu, 10 Apr 2025 17:00:43 -0400 Received: from mail-pf1-x42b.google.com ([2607:f8b0:4864:20::42b]) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.90_1) (envelope-from ) id 1u2z0q-0001m5-VR for qemu-devel@nongnu.org; Thu, 10 Apr 2025 17:00:42 -0400 Received: by mail-pf1-x42b.google.com with SMTP id d2e1a72fcca58-7369ce5d323so1170190b3a.1 for ; Thu, 10 Apr 2025 14:00:40 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=linaro.org; s=google; t=1744318839; x=1744923639; darn=nongnu.org; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:cc:to:from:from:to:cc:subject:date :message-id:reply-to; bh=M9OwVMJQ+nPgoXVT+v3WG48aEZrZJjJFRvNoKJmm5KU=; b=genz2iH7VjZDoX8FyfqXEJoTHv8CZ3qUiUBLr5eyU7AWxndlM3cDNQr4DAvJgZwMCC oh+ZZSjU0ai+i3KlRR960zsFB2Ggk23Ivx2Lr9PZQaYC8RXaUNUu6CGvsxLhHAlUq3TP yEhY2F8mh/y72bj+dXB6cBcAGraep0ejqfD3YjLC3kxLaNNLM/HtIaPJMVR+fHjbBzCa 3vRhfGmFhp76enPILSxNSdu2F0LYDUYEv9b9DG5r2IZEfywxBzi16s/Jn3sI6xcizTL8 EvVV31mVxoSxRWpIWnO3AHSW1jbzDsgcxwisFEyLeD5+ftHOSab79RenZ+jT6q3jcVIn iT+A== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1744318839; x=1744923639; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:cc:to:from:x-gm-message-state:from:to:cc :subject:date:message-id:reply-to; bh=M9OwVMJQ+nPgoXVT+v3WG48aEZrZJjJFRvNoKJmm5KU=; b=l4o70oU7bDeT6Jp2QB+Z00YwBau/7zlJGyTL4bzK9Hk1Na8P5KIkKK50AIdm0y/GNk kh86FQRDBQTd3EHgC5uq/d1asGNRjcQ/iOWkd/NBz6Pcg9QV0cDKMPsIC5qw7QAttd2z Np2gTj5f4Q+iX0kpOjEr/klx+9oD2b9MSPtAC5n6jzXQ/Qrg25l+IEE3TDMuhxEyxAs+ D2hIBoqYdQCpJaXUMrc3u+W3LrEaepMCK6tXhjq7ACqCXMkgE/XNMuCwr2fi9wH6fxSb qsFufGHHV3UMTk4qQmxv5gEImzxJ/nvtcwAMIt4WmAvvWtgfWqH7NBOWqh61tzUyWx+I NA4g== X-Gm-Message-State: AOJu0YwRxsorzxeCcuDK7frsgkRsQ2/m2cApd0Ip+zXgdwhGu4uZh5Pu NHCdgdKNkuAVBw82R11jBaXRMI/MvNuyYXpfGBa9Hp2aYiYRyrxix2iIWIQQqhecWR8c8fVPWq4 F X-Gm-Gg: ASbGncsgBXlyAApPtl1cS7ysW4klKHSUBcf0A1y9eaUNlAuq3BT7ReBporJfj2uD/DM 3vZ4vgbT1AWye8kR0IxMQfLuuu7IS+c++ZXvpfPJ+NZsVuljccnFkgVuia8X7TTeU33SkFF+6R5 /uWwqbEGOIR3O2K/YtrlDJlniBNk9kZeFG8N4qM1yK+VaDnkRpq+iIT3bLtMcTyOnXudjCtVmy5 Fc9HQEFHFWmkG2e1guJFZbHlad6g2EnU+4gOta2BIes/Um6JYKI7Jj/Zmow3P6cBZtcewmJQxh2 Tqb1qTB64+3W6f6CYt5mXXyhawnHLl0hbDaqr2Lf X-Received: by 2002:a05:6a00:2284:b0:736:34ca:dee2 with SMTP id d2e1a72fcca58-73bd119993dmr361114b3a.4.1744318839065; Thu, 10 Apr 2025 14:00:39 -0700 (PDT) Received: from pc.. ([38.39.164.180]) by smtp.gmail.com with ESMTPSA id d2e1a72fcca58-73bd22f82a3sm12431b3a.90.2025.04.10.14.00.38 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Thu, 10 Apr 2025 14:00:38 -0700 (PDT) From: Pierrick Bouvier To: qemu-devel@nongnu.org Cc: Peter Maydell , Richard Henderson , Paolo Bonzini , philmd@linaro.org, alex.bennee@linaro.org, qemu-arm@nongnu.org, Yannis Bolliger , Pierrick Bouvier Subject: [PATCH 4/4] target/arm/ptw: fix arm_cpu_get_phys_page_attrs_debug Date: Thu, 10 Apr 2025 14:00:22 -0700 Message-Id: <20250410210022.809905-5-pierrick.bouvier@linaro.org> X-Mailer: git-send-email 2.39.5 In-Reply-To: <20250410210022.809905-1-pierrick.bouvier@linaro.org> References: <20250410210022.809905-1-pierrick.bouvier@linaro.org> MIME-Version: 1.0 Received-SPF: pass client-ip=2607:f8b0:4864:20::42b; envelope-from=pierrick.bouvier@linaro.org; helo=mail-pf1-x42b.google.com X-Spam_score_int: -20 X-Spam_score: -2.1 X-Spam_bar: -- X-Spam_report: (-2.1 / 5.0 requ) BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001 autolearn=ham autolearn_force=no X-Spam_action: no action X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: qemu-devel-bounces+patch=linaro.org@nongnu.org Sender: qemu-devel-bounces+patch=linaro.org@nongnu.org It was reported that QEMU monitor command gva2gpa was reporting unmapped memory for a valid access (qemu-system-aarch64), during a copy from kernel to user space (__arch_copy_to_user symbol in Linux) [1]. This was affecting cpu_memory_rw_debug also, which is used in numerous places in our codebase. After investigating, the problem was specific to arm_cpu_get_phys_page_attrs_debug. When performing user access from a privileged space, we need to do a second lookup for user mmu idx, following what get_a64_user_mem_index is doing at translation time. [1] https://lists.nongnu.org/archive/html/qemu-discuss/2025-04/msg00013.html Signed-off-by: Pierrick Bouvier --- target/arm/ptw.c | 22 +++++++++++++++++++++- 1 file changed, 21 insertions(+), 1 deletion(-) diff --git a/target/arm/ptw.c b/target/arm/ptw.c index 6ea39ee5755..5b8d84d44df 100644 --- a/target/arm/ptw.c +++ b/target/arm/ptw.c @@ -3655,5 +3655,25 @@ hwaddr arm_cpu_get_phys_page_attrs_debug(CPUState *cs, vaddr addr, CPUARMState *env = &cpu->env; ARMMMUIdx mmu_idx = arm_mmu_idx(env); - return arm_cpu_get_phys_page(env, addr, attrs, mmu_idx); + hwaddr res = arm_cpu_get_phys_page(env, addr, attrs, mmu_idx); + + if (res != -1) { + return res; + } + + /* + * Memory may be accessible for an "unprivileged load/store" variant. + * In this case, get_a64_user_mem_index function generates an op using an + * unprivileged mmu idx, so we need to try with it. + */ + switch (mmu_idx) { + case ARMMMUIdx_E10_1: + case ARMMMUIdx_E10_1_PAN: + return arm_cpu_get_phys_page(env, addr, attrs, ARMMMUIdx_E10_0); + case ARMMMUIdx_E20_2: + case ARMMMUIdx_E20_2_PAN: + return arm_cpu_get_phys_page(env, addr, attrs, ARMMMUIdx_E20_0); + default: + return -1; + } }