Loading...
1// SPDX-License-Identifier: GPL-2.0+
2/*
3 * Kernel module help for s390.
4 *
5 * S390 version
6 * Copyright IBM Corp. 2002, 2003
7 * Author(s): Arnd Bergmann (arndb@de.ibm.com)
8 * Martin Schwidefsky (schwidefsky@de.ibm.com)
9 *
10 * based on i386 version
11 * Copyright (C) 2001 Rusty Russell.
12 */
13#include <linux/module.h>
14#include <linux/elf.h>
15#include <linux/vmalloc.h>
16#include <linux/fs.h>
17#include <linux/string.h>
18#include <linux/kernel.h>
19#include <linux/kasan.h>
20#include <linux/moduleloader.h>
21#include <linux/bug.h>
22#include <asm/alternative.h>
23#include <asm/nospec-branch.h>
24#include <asm/facility.h>
25
26#if 0
27#define DEBUGP printk
28#else
29#define DEBUGP(fmt , ...)
30#endif
31
32#define PLT_ENTRY_SIZE 20
33
34void *module_alloc(unsigned long size)
35{
36 void *p;
37
38 if (PAGE_ALIGN(size) > MODULES_LEN)
39 return NULL;
40 p = __vmalloc_node_range(size, MODULE_ALIGN, MODULES_VADDR, MODULES_END,
41 GFP_KERNEL, PAGE_KERNEL_EXEC, 0, NUMA_NO_NODE,
42 __builtin_return_address(0));
43 if (p && (kasan_module_alloc(p, size) < 0)) {
44 vfree(p);
45 return NULL;
46 }
47 return p;
48}
49
50void module_arch_freeing_init(struct module *mod)
51{
52 if (is_livepatch_module(mod) &&
53 mod->state == MODULE_STATE_LIVE)
54 return;
55
56 vfree(mod->arch.syminfo);
57 mod->arch.syminfo = NULL;
58}
59
60static void check_rela(Elf_Rela *rela, struct module *me)
61{
62 struct mod_arch_syminfo *info;
63
64 info = me->arch.syminfo + ELF_R_SYM (rela->r_info);
65 switch (ELF_R_TYPE (rela->r_info)) {
66 case R_390_GOT12: /* 12 bit GOT offset. */
67 case R_390_GOT16: /* 16 bit GOT offset. */
68 case R_390_GOT20: /* 20 bit GOT offset. */
69 case R_390_GOT32: /* 32 bit GOT offset. */
70 case R_390_GOT64: /* 64 bit GOT offset. */
71 case R_390_GOTENT: /* 32 bit PC rel. to GOT entry shifted by 1. */
72 case R_390_GOTPLT12: /* 12 bit offset to jump slot. */
73 case R_390_GOTPLT16: /* 16 bit offset to jump slot. */
74 case R_390_GOTPLT20: /* 20 bit offset to jump slot. */
75 case R_390_GOTPLT32: /* 32 bit offset to jump slot. */
76 case R_390_GOTPLT64: /* 64 bit offset to jump slot. */
77 case R_390_GOTPLTENT: /* 32 bit rel. offset to jump slot >> 1. */
78 if (info->got_offset == -1UL) {
79 info->got_offset = me->arch.got_size;
80 me->arch.got_size += sizeof(void*);
81 }
82 break;
83 case R_390_PLT16DBL: /* 16 bit PC rel. PLT shifted by 1. */
84 case R_390_PLT32DBL: /* 32 bit PC rel. PLT shifted by 1. */
85 case R_390_PLT32: /* 32 bit PC relative PLT address. */
86 case R_390_PLT64: /* 64 bit PC relative PLT address. */
87 case R_390_PLTOFF16: /* 16 bit offset from GOT to PLT. */
88 case R_390_PLTOFF32: /* 32 bit offset from GOT to PLT. */
89 case R_390_PLTOFF64: /* 16 bit offset from GOT to PLT. */
90 if (info->plt_offset == -1UL) {
91 info->plt_offset = me->arch.plt_size;
92 me->arch.plt_size += PLT_ENTRY_SIZE;
93 }
94 break;
95 case R_390_COPY:
96 case R_390_GLOB_DAT:
97 case R_390_JMP_SLOT:
98 case R_390_RELATIVE:
99 /* Only needed if we want to support loading of
100 modules linked with -shared. */
101 break;
102 }
103}
104
105/*
106 * Account for GOT and PLT relocations. We can't add sections for
107 * got and plt but we can increase the core module size.
108 */
109int module_frob_arch_sections(Elf_Ehdr *hdr, Elf_Shdr *sechdrs,
110 char *secstrings, struct module *me)
111{
112 Elf_Shdr *symtab;
113 Elf_Sym *symbols;
114 Elf_Rela *rela;
115 char *strings;
116 int nrela, i, j;
117
118 /* Find symbol table and string table. */
119 symtab = NULL;
120 for (i = 0; i < hdr->e_shnum; i++)
121 switch (sechdrs[i].sh_type) {
122 case SHT_SYMTAB:
123 symtab = sechdrs + i;
124 break;
125 }
126 if (!symtab) {
127 printk(KERN_ERR "module %s: no symbol table\n", me->name);
128 return -ENOEXEC;
129 }
130
131 /* Allocate one syminfo structure per symbol. */
132 me->arch.nsyms = symtab->sh_size / sizeof(Elf_Sym);
133 me->arch.syminfo = vmalloc(array_size(sizeof(struct mod_arch_syminfo),
134 me->arch.nsyms));
135 if (!me->arch.syminfo)
136 return -ENOMEM;
137 symbols = (void *) hdr + symtab->sh_offset;
138 strings = (void *) hdr + sechdrs[symtab->sh_link].sh_offset;
139 for (i = 0; i < me->arch.nsyms; i++) {
140 if (symbols[i].st_shndx == SHN_UNDEF &&
141 strcmp(strings + symbols[i].st_name,
142 "_GLOBAL_OFFSET_TABLE_") == 0)
143 /* "Define" it as absolute. */
144 symbols[i].st_shndx = SHN_ABS;
145 me->arch.syminfo[i].got_offset = -1UL;
146 me->arch.syminfo[i].plt_offset = -1UL;
147 me->arch.syminfo[i].got_initialized = 0;
148 me->arch.syminfo[i].plt_initialized = 0;
149 }
150
151 /* Search for got/plt relocations. */
152 me->arch.got_size = me->arch.plt_size = 0;
153 for (i = 0; i < hdr->e_shnum; i++) {
154 if (sechdrs[i].sh_type != SHT_RELA)
155 continue;
156 nrela = sechdrs[i].sh_size / sizeof(Elf_Rela);
157 rela = (void *) hdr + sechdrs[i].sh_offset;
158 for (j = 0; j < nrela; j++)
159 check_rela(rela + j, me);
160 }
161
162 /* Increase core size by size of got & plt and set start
163 offsets for got and plt. */
164 me->core_layout.size = ALIGN(me->core_layout.size, 4);
165 me->arch.got_offset = me->core_layout.size;
166 me->core_layout.size += me->arch.got_size;
167 me->arch.plt_offset = me->core_layout.size;
168 if (me->arch.plt_size) {
169 if (IS_ENABLED(CONFIG_EXPOLINE) && !nospec_disable)
170 me->arch.plt_size += PLT_ENTRY_SIZE;
171 me->core_layout.size += me->arch.plt_size;
172 }
173 return 0;
174}
175
176static int apply_rela_bits(Elf_Addr loc, Elf_Addr val,
177 int sign, int bits, int shift)
178{
179 unsigned long umax;
180 long min, max;
181
182 if (val & ((1UL << shift) - 1))
183 return -ENOEXEC;
184 if (sign) {
185 val = (Elf_Addr)(((long) val) >> shift);
186 min = -(1L << (bits - 1));
187 max = (1L << (bits - 1)) - 1;
188 if ((long) val < min || (long) val > max)
189 return -ENOEXEC;
190 } else {
191 val >>= shift;
192 umax = ((1UL << (bits - 1)) << 1) - 1;
193 if ((unsigned long) val > umax)
194 return -ENOEXEC;
195 }
196
197 if (bits == 8)
198 *(unsigned char *) loc = val;
199 else if (bits == 12)
200 *(unsigned short *) loc = (val & 0xfff) |
201 (*(unsigned short *) loc & 0xf000);
202 else if (bits == 16)
203 *(unsigned short *) loc = val;
204 else if (bits == 20)
205 *(unsigned int *) loc = (val & 0xfff) << 16 |
206 (val & 0xff000) >> 4 |
207 (*(unsigned int *) loc & 0xf00000ff);
208 else if (bits == 32)
209 *(unsigned int *) loc = val;
210 else if (bits == 64)
211 *(unsigned long *) loc = val;
212 return 0;
213}
214
215static int apply_rela(Elf_Rela *rela, Elf_Addr base, Elf_Sym *symtab,
216 const char *strtab, struct module *me)
217{
218 struct mod_arch_syminfo *info;
219 Elf_Addr loc, val;
220 int r_type, r_sym;
221 int rc = -ENOEXEC;
222
223 /* This is where to make the change */
224 loc = base + rela->r_offset;
225 /* This is the symbol it is referring to. Note that all
226 undefined symbols have been resolved. */
227 r_sym = ELF_R_SYM(rela->r_info);
228 r_type = ELF_R_TYPE(rela->r_info);
229 info = me->arch.syminfo + r_sym;
230 val = symtab[r_sym].st_value;
231
232 switch (r_type) {
233 case R_390_NONE: /* No relocation. */
234 rc = 0;
235 break;
236 case R_390_8: /* Direct 8 bit. */
237 case R_390_12: /* Direct 12 bit. */
238 case R_390_16: /* Direct 16 bit. */
239 case R_390_20: /* Direct 20 bit. */
240 case R_390_32: /* Direct 32 bit. */
241 case R_390_64: /* Direct 64 bit. */
242 val += rela->r_addend;
243 if (r_type == R_390_8)
244 rc = apply_rela_bits(loc, val, 0, 8, 0);
245 else if (r_type == R_390_12)
246 rc = apply_rela_bits(loc, val, 0, 12, 0);
247 else if (r_type == R_390_16)
248 rc = apply_rela_bits(loc, val, 0, 16, 0);
249 else if (r_type == R_390_20)
250 rc = apply_rela_bits(loc, val, 1, 20, 0);
251 else if (r_type == R_390_32)
252 rc = apply_rela_bits(loc, val, 0, 32, 0);
253 else if (r_type == R_390_64)
254 rc = apply_rela_bits(loc, val, 0, 64, 0);
255 break;
256 case R_390_PC16: /* PC relative 16 bit. */
257 case R_390_PC16DBL: /* PC relative 16 bit shifted by 1. */
258 case R_390_PC32DBL: /* PC relative 32 bit shifted by 1. */
259 case R_390_PC32: /* PC relative 32 bit. */
260 case R_390_PC64: /* PC relative 64 bit. */
261 val += rela->r_addend - loc;
262 if (r_type == R_390_PC16)
263 rc = apply_rela_bits(loc, val, 1, 16, 0);
264 else if (r_type == R_390_PC16DBL)
265 rc = apply_rela_bits(loc, val, 1, 16, 1);
266 else if (r_type == R_390_PC32DBL)
267 rc = apply_rela_bits(loc, val, 1, 32, 1);
268 else if (r_type == R_390_PC32)
269 rc = apply_rela_bits(loc, val, 1, 32, 0);
270 else if (r_type == R_390_PC64)
271 rc = apply_rela_bits(loc, val, 1, 64, 0);
272 break;
273 case R_390_GOT12: /* 12 bit GOT offset. */
274 case R_390_GOT16: /* 16 bit GOT offset. */
275 case R_390_GOT20: /* 20 bit GOT offset. */
276 case R_390_GOT32: /* 32 bit GOT offset. */
277 case R_390_GOT64: /* 64 bit GOT offset. */
278 case R_390_GOTENT: /* 32 bit PC rel. to GOT entry shifted by 1. */
279 case R_390_GOTPLT12: /* 12 bit offset to jump slot. */
280 case R_390_GOTPLT20: /* 20 bit offset to jump slot. */
281 case R_390_GOTPLT16: /* 16 bit offset to jump slot. */
282 case R_390_GOTPLT32: /* 32 bit offset to jump slot. */
283 case R_390_GOTPLT64: /* 64 bit offset to jump slot. */
284 case R_390_GOTPLTENT: /* 32 bit rel. offset to jump slot >> 1. */
285 if (info->got_initialized == 0) {
286 Elf_Addr *gotent;
287
288 gotent = me->core_layout.base + me->arch.got_offset +
289 info->got_offset;
290 *gotent = val;
291 info->got_initialized = 1;
292 }
293 val = info->got_offset + rela->r_addend;
294 if (r_type == R_390_GOT12 ||
295 r_type == R_390_GOTPLT12)
296 rc = apply_rela_bits(loc, val, 0, 12, 0);
297 else if (r_type == R_390_GOT16 ||
298 r_type == R_390_GOTPLT16)
299 rc = apply_rela_bits(loc, val, 0, 16, 0);
300 else if (r_type == R_390_GOT20 ||
301 r_type == R_390_GOTPLT20)
302 rc = apply_rela_bits(loc, val, 1, 20, 0);
303 else if (r_type == R_390_GOT32 ||
304 r_type == R_390_GOTPLT32)
305 rc = apply_rela_bits(loc, val, 0, 32, 0);
306 else if (r_type == R_390_GOT64 ||
307 r_type == R_390_GOTPLT64)
308 rc = apply_rela_bits(loc, val, 0, 64, 0);
309 else if (r_type == R_390_GOTENT ||
310 r_type == R_390_GOTPLTENT) {
311 val += (Elf_Addr) me->core_layout.base - loc;
312 rc = apply_rela_bits(loc, val, 1, 32, 1);
313 }
314 break;
315 case R_390_PLT16DBL: /* 16 bit PC rel. PLT shifted by 1. */
316 case R_390_PLT32DBL: /* 32 bit PC rel. PLT shifted by 1. */
317 case R_390_PLT32: /* 32 bit PC relative PLT address. */
318 case R_390_PLT64: /* 64 bit PC relative PLT address. */
319 case R_390_PLTOFF16: /* 16 bit offset from GOT to PLT. */
320 case R_390_PLTOFF32: /* 32 bit offset from GOT to PLT. */
321 case R_390_PLTOFF64: /* 16 bit offset from GOT to PLT. */
322 if (info->plt_initialized == 0) {
323 unsigned int *ip;
324 ip = me->core_layout.base + me->arch.plt_offset +
325 info->plt_offset;
326 ip[0] = 0x0d10e310; /* basr 1,0 */
327 ip[1] = 0x100a0004; /* lg 1,10(1) */
328 if (IS_ENABLED(CONFIG_EXPOLINE) && !nospec_disable) {
329 unsigned int *ij;
330 ij = me->core_layout.base +
331 me->arch.plt_offset +
332 me->arch.plt_size - PLT_ENTRY_SIZE;
333 ip[2] = 0xa7f40000 + /* j __jump_r1 */
334 (unsigned int)(u16)
335 (((unsigned long) ij - 8 -
336 (unsigned long) ip) / 2);
337 } else {
338 ip[2] = 0x07f10000; /* br %r1 */
339 }
340 ip[3] = (unsigned int) (val >> 32);
341 ip[4] = (unsigned int) val;
342 info->plt_initialized = 1;
343 }
344 if (r_type == R_390_PLTOFF16 ||
345 r_type == R_390_PLTOFF32 ||
346 r_type == R_390_PLTOFF64)
347 val = me->arch.plt_offset - me->arch.got_offset +
348 info->plt_offset + rela->r_addend;
349 else {
350 if (!((r_type == R_390_PLT16DBL &&
351 val - loc + 0xffffUL < 0x1ffffeUL) ||
352 (r_type == R_390_PLT32DBL &&
353 val - loc + 0xffffffffULL < 0x1fffffffeULL)))
354 val = (Elf_Addr) me->core_layout.base +
355 me->arch.plt_offset +
356 info->plt_offset;
357 val += rela->r_addend - loc;
358 }
359 if (r_type == R_390_PLT16DBL)
360 rc = apply_rela_bits(loc, val, 1, 16, 1);
361 else if (r_type == R_390_PLTOFF16)
362 rc = apply_rela_bits(loc, val, 0, 16, 0);
363 else if (r_type == R_390_PLT32DBL)
364 rc = apply_rela_bits(loc, val, 1, 32, 1);
365 else if (r_type == R_390_PLT32 ||
366 r_type == R_390_PLTOFF32)
367 rc = apply_rela_bits(loc, val, 0, 32, 0);
368 else if (r_type == R_390_PLT64 ||
369 r_type == R_390_PLTOFF64)
370 rc = apply_rela_bits(loc, val, 0, 64, 0);
371 break;
372 case R_390_GOTOFF16: /* 16 bit offset to GOT. */
373 case R_390_GOTOFF32: /* 32 bit offset to GOT. */
374 case R_390_GOTOFF64: /* 64 bit offset to GOT. */
375 val = val + rela->r_addend -
376 ((Elf_Addr) me->core_layout.base + me->arch.got_offset);
377 if (r_type == R_390_GOTOFF16)
378 rc = apply_rela_bits(loc, val, 0, 16, 0);
379 else if (r_type == R_390_GOTOFF32)
380 rc = apply_rela_bits(loc, val, 0, 32, 0);
381 else if (r_type == R_390_GOTOFF64)
382 rc = apply_rela_bits(loc, val, 0, 64, 0);
383 break;
384 case R_390_GOTPC: /* 32 bit PC relative offset to GOT. */
385 case R_390_GOTPCDBL: /* 32 bit PC rel. off. to GOT shifted by 1. */
386 val = (Elf_Addr) me->core_layout.base + me->arch.got_offset +
387 rela->r_addend - loc;
388 if (r_type == R_390_GOTPC)
389 rc = apply_rela_bits(loc, val, 1, 32, 0);
390 else if (r_type == R_390_GOTPCDBL)
391 rc = apply_rela_bits(loc, val, 1, 32, 1);
392 break;
393 case R_390_COPY:
394 case R_390_GLOB_DAT: /* Create GOT entry. */
395 case R_390_JMP_SLOT: /* Create PLT entry. */
396 case R_390_RELATIVE: /* Adjust by program base. */
397 /* Only needed if we want to support loading of
398 modules linked with -shared. */
399 return -ENOEXEC;
400 default:
401 printk(KERN_ERR "module %s: unknown relocation: %u\n",
402 me->name, r_type);
403 return -ENOEXEC;
404 }
405 if (rc) {
406 printk(KERN_ERR "module %s: relocation error for symbol %s "
407 "(r_type %i, value 0x%lx)\n",
408 me->name, strtab + symtab[r_sym].st_name,
409 r_type, (unsigned long) val);
410 return rc;
411 }
412 return 0;
413}
414
415int apply_relocate_add(Elf_Shdr *sechdrs, const char *strtab,
416 unsigned int symindex, unsigned int relsec,
417 struct module *me)
418{
419 Elf_Addr base;
420 Elf_Sym *symtab;
421 Elf_Rela *rela;
422 unsigned long i, n;
423 int rc;
424
425 DEBUGP("Applying relocate section %u to %u\n",
426 relsec, sechdrs[relsec].sh_info);
427 base = sechdrs[sechdrs[relsec].sh_info].sh_addr;
428 symtab = (Elf_Sym *) sechdrs[symindex].sh_addr;
429 rela = (Elf_Rela *) sechdrs[relsec].sh_addr;
430 n = sechdrs[relsec].sh_size / sizeof(Elf_Rela);
431
432 for (i = 0; i < n; i++, rela++) {
433 rc = apply_rela(rela, base, symtab, strtab, me);
434 if (rc)
435 return rc;
436 }
437 return 0;
438}
439
440int module_finalize(const Elf_Ehdr *hdr,
441 const Elf_Shdr *sechdrs,
442 struct module *me)
443{
444 const Elf_Shdr *s;
445 char *secstrings, *secname;
446 void *aseg;
447
448 if (IS_ENABLED(CONFIG_EXPOLINE) &&
449 !nospec_disable && me->arch.plt_size) {
450 unsigned int *ij;
451
452 ij = me->core_layout.base + me->arch.plt_offset +
453 me->arch.plt_size - PLT_ENTRY_SIZE;
454 if (test_facility(35)) {
455 ij[0] = 0xc6000000; /* exrl %r0,.+10 */
456 ij[1] = 0x0005a7f4; /* j . */
457 ij[2] = 0x000007f1; /* br %r1 */
458 } else {
459 ij[0] = 0x44000000 | (unsigned int)
460 offsetof(struct lowcore, br_r1_trampoline);
461 ij[1] = 0xa7f40000; /* j . */
462 }
463 }
464
465 secstrings = (void *)hdr + sechdrs[hdr->e_shstrndx].sh_offset;
466 for (s = sechdrs; s < sechdrs + hdr->e_shnum; s++) {
467 aseg = (void *) s->sh_addr;
468 secname = secstrings + s->sh_name;
469
470 if (!strcmp(".altinstructions", secname))
471 /* patch .altinstructions */
472 apply_alternatives(aseg, aseg + s->sh_size);
473
474 if (IS_ENABLED(CONFIG_EXPOLINE) &&
475 (str_has_prefix(secname, ".s390_indirect")))
476 nospec_revert(aseg, aseg + s->sh_size);
477
478 if (IS_ENABLED(CONFIG_EXPOLINE) &&
479 (str_has_prefix(secname, ".s390_return")))
480 nospec_revert(aseg, aseg + s->sh_size);
481 }
482
483 jump_label_apply_nops(me);
484 return 0;
485}
1// SPDX-License-Identifier: GPL-2.0+
2/*
3 * Kernel module help for s390.
4 *
5 * S390 version
6 * Copyright IBM Corp. 2002, 2003
7 * Author(s): Arnd Bergmann (arndb@de.ibm.com)
8 * Martin Schwidefsky (schwidefsky@de.ibm.com)
9 *
10 * based on i386 version
11 * Copyright (C) 2001 Rusty Russell.
12 */
13#include <linux/module.h>
14#include <linux/elf.h>
15#include <linux/vmalloc.h>
16#include <linux/fs.h>
17#include <linux/ftrace.h>
18#include <linux/string.h>
19#include <linux/kernel.h>
20#include <linux/kasan.h>
21#include <linux/moduleloader.h>
22#include <linux/bug.h>
23#include <linux/memory.h>
24#include <linux/execmem.h>
25#include <asm/alternative.h>
26#include <asm/nospec-branch.h>
27#include <asm/facility.h>
28#include <asm/ftrace.lds.h>
29#include <asm/set_memory.h>
30#include <asm/setup.h>
31
32#if 0
33#define DEBUGP printk
34#else
35#define DEBUGP(fmt , ...)
36#endif
37
38#define PLT_ENTRY_SIZE 22
39
40#ifdef CONFIG_FUNCTION_TRACER
41void module_arch_cleanup(struct module *mod)
42{
43 execmem_free(mod->arch.trampolines_start);
44}
45#endif
46
47void module_arch_freeing_init(struct module *mod)
48{
49 if (is_livepatch_module(mod) &&
50 mod->state == MODULE_STATE_LIVE)
51 return;
52
53 vfree(mod->arch.syminfo);
54 mod->arch.syminfo = NULL;
55}
56
57static void check_rela(Elf_Rela *rela, struct module *me)
58{
59 struct mod_arch_syminfo *info;
60
61 info = me->arch.syminfo + ELF_R_SYM (rela->r_info);
62 switch (ELF_R_TYPE (rela->r_info)) {
63 case R_390_GOT12: /* 12 bit GOT offset. */
64 case R_390_GOT16: /* 16 bit GOT offset. */
65 case R_390_GOT20: /* 20 bit GOT offset. */
66 case R_390_GOT32: /* 32 bit GOT offset. */
67 case R_390_GOT64: /* 64 bit GOT offset. */
68 case R_390_GOTENT: /* 32 bit PC rel. to GOT entry shifted by 1. */
69 case R_390_GOTPLT12: /* 12 bit offset to jump slot. */
70 case R_390_GOTPLT16: /* 16 bit offset to jump slot. */
71 case R_390_GOTPLT20: /* 20 bit offset to jump slot. */
72 case R_390_GOTPLT32: /* 32 bit offset to jump slot. */
73 case R_390_GOTPLT64: /* 64 bit offset to jump slot. */
74 case R_390_GOTPLTENT: /* 32 bit rel. offset to jump slot >> 1. */
75 if (info->got_offset == -1UL) {
76 info->got_offset = me->arch.got_size;
77 me->arch.got_size += sizeof(void*);
78 }
79 break;
80 case R_390_PLT16DBL: /* 16 bit PC rel. PLT shifted by 1. */
81 case R_390_PLT32DBL: /* 32 bit PC rel. PLT shifted by 1. */
82 case R_390_PLT32: /* 32 bit PC relative PLT address. */
83 case R_390_PLT64: /* 64 bit PC relative PLT address. */
84 case R_390_PLTOFF16: /* 16 bit offset from GOT to PLT. */
85 case R_390_PLTOFF32: /* 32 bit offset from GOT to PLT. */
86 case R_390_PLTOFF64: /* 16 bit offset from GOT to PLT. */
87 if (info->plt_offset == -1UL) {
88 info->plt_offset = me->arch.plt_size;
89 me->arch.plt_size += PLT_ENTRY_SIZE;
90 }
91 break;
92 case R_390_COPY:
93 case R_390_GLOB_DAT:
94 case R_390_JMP_SLOT:
95 case R_390_RELATIVE:
96 /* Only needed if we want to support loading of
97 modules linked with -shared. */
98 break;
99 }
100}
101
102/*
103 * Account for GOT and PLT relocations. We can't add sections for
104 * got and plt but we can increase the core module size.
105 */
106int module_frob_arch_sections(Elf_Ehdr *hdr, Elf_Shdr *sechdrs,
107 char *secstrings, struct module *me)
108{
109 Elf_Shdr *symtab;
110 Elf_Sym *symbols;
111 Elf_Rela *rela;
112 char *strings;
113 int nrela, i, j;
114 struct module_memory *mod_mem;
115
116 /* Find symbol table and string table. */
117 symtab = NULL;
118 for (i = 0; i < hdr->e_shnum; i++)
119 switch (sechdrs[i].sh_type) {
120 case SHT_SYMTAB:
121 symtab = sechdrs + i;
122 break;
123 }
124 if (!symtab) {
125 printk(KERN_ERR "module %s: no symbol table\n", me->name);
126 return -ENOEXEC;
127 }
128
129 /* Allocate one syminfo structure per symbol. */
130 me->arch.nsyms = symtab->sh_size / sizeof(Elf_Sym);
131 me->arch.syminfo = vmalloc(array_size(sizeof(struct mod_arch_syminfo),
132 me->arch.nsyms));
133 if (!me->arch.syminfo)
134 return -ENOMEM;
135 symbols = (void *) hdr + symtab->sh_offset;
136 strings = (void *) hdr + sechdrs[symtab->sh_link].sh_offset;
137 for (i = 0; i < me->arch.nsyms; i++) {
138 if (symbols[i].st_shndx == SHN_UNDEF &&
139 strcmp(strings + symbols[i].st_name,
140 "_GLOBAL_OFFSET_TABLE_") == 0)
141 /* "Define" it as absolute. */
142 symbols[i].st_shndx = SHN_ABS;
143 me->arch.syminfo[i].got_offset = -1UL;
144 me->arch.syminfo[i].plt_offset = -1UL;
145 me->arch.syminfo[i].got_initialized = 0;
146 me->arch.syminfo[i].plt_initialized = 0;
147 }
148
149 /* Search for got/plt relocations. */
150 me->arch.got_size = me->arch.plt_size = 0;
151 for (i = 0; i < hdr->e_shnum; i++) {
152 if (sechdrs[i].sh_type != SHT_RELA)
153 continue;
154 nrela = sechdrs[i].sh_size / sizeof(Elf_Rela);
155 rela = (void *) hdr + sechdrs[i].sh_offset;
156 for (j = 0; j < nrela; j++)
157 check_rela(rela + j, me);
158 }
159
160 /* Increase core size by size of got & plt and set start
161 offsets for got and plt. */
162 mod_mem = &me->mem[MOD_TEXT];
163 mod_mem->size = ALIGN(mod_mem->size, 4);
164 me->arch.got_offset = mod_mem->size;
165 mod_mem->size += me->arch.got_size;
166 me->arch.plt_offset = mod_mem->size;
167 if (me->arch.plt_size) {
168 if (IS_ENABLED(CONFIG_EXPOLINE) && !nospec_disable)
169 me->arch.plt_size += PLT_ENTRY_SIZE;
170 mod_mem->size += me->arch.plt_size;
171 }
172 return 0;
173}
174
175static int apply_rela_bits(Elf_Addr loc, Elf_Addr val,
176 int sign, int bits, int shift,
177 void *(*write)(void *dest, const void *src, size_t len))
178{
179 unsigned long umax;
180 long min, max;
181 void *dest = (void *)loc;
182
183 if (val & ((1UL << shift) - 1))
184 return -ENOEXEC;
185 if (sign) {
186 val = (Elf_Addr)(((long) val) >> shift);
187 min = -(1L << (bits - 1));
188 max = (1L << (bits - 1)) - 1;
189 if ((long) val < min || (long) val > max)
190 return -ENOEXEC;
191 } else {
192 val >>= shift;
193 umax = ((1UL << (bits - 1)) << 1) - 1;
194 if ((unsigned long) val > umax)
195 return -ENOEXEC;
196 }
197
198 if (bits == 8) {
199 unsigned char tmp = val;
200 write(dest, &tmp, 1);
201 } else if (bits == 12) {
202 unsigned short tmp = (val & 0xfff) |
203 (*(unsigned short *) loc & 0xf000);
204 write(dest, &tmp, 2);
205 } else if (bits == 16) {
206 unsigned short tmp = val;
207 write(dest, &tmp, 2);
208 } else if (bits == 20) {
209 unsigned int tmp = (val & 0xfff) << 16 |
210 (val & 0xff000) >> 4 | (*(unsigned int *) loc & 0xf00000ff);
211 write(dest, &tmp, 4);
212 } else if (bits == 32) {
213 unsigned int tmp = val;
214 write(dest, &tmp, 4);
215 } else if (bits == 64) {
216 unsigned long tmp = val;
217 write(dest, &tmp, 8);
218 }
219 return 0;
220}
221
222static int apply_rela(Elf_Rela *rela, Elf_Addr base, Elf_Sym *symtab,
223 const char *strtab, struct module *me,
224 void *(*write)(void *dest, const void *src, size_t len))
225{
226 struct mod_arch_syminfo *info;
227 Elf_Addr loc, val;
228 int r_type, r_sym;
229 int rc = -ENOEXEC;
230
231 /* This is where to make the change */
232 loc = base + rela->r_offset;
233 /* This is the symbol it is referring to. Note that all
234 undefined symbols have been resolved. */
235 r_sym = ELF_R_SYM(rela->r_info);
236 r_type = ELF_R_TYPE(rela->r_info);
237 info = me->arch.syminfo + r_sym;
238 val = symtab[r_sym].st_value;
239
240 switch (r_type) {
241 case R_390_NONE: /* No relocation. */
242 rc = 0;
243 break;
244 case R_390_8: /* Direct 8 bit. */
245 case R_390_12: /* Direct 12 bit. */
246 case R_390_16: /* Direct 16 bit. */
247 case R_390_20: /* Direct 20 bit. */
248 case R_390_32: /* Direct 32 bit. */
249 case R_390_64: /* Direct 64 bit. */
250 val += rela->r_addend;
251 if (r_type == R_390_8)
252 rc = apply_rela_bits(loc, val, 0, 8, 0, write);
253 else if (r_type == R_390_12)
254 rc = apply_rela_bits(loc, val, 0, 12, 0, write);
255 else if (r_type == R_390_16)
256 rc = apply_rela_bits(loc, val, 0, 16, 0, write);
257 else if (r_type == R_390_20)
258 rc = apply_rela_bits(loc, val, 1, 20, 0, write);
259 else if (r_type == R_390_32)
260 rc = apply_rela_bits(loc, val, 0, 32, 0, write);
261 else if (r_type == R_390_64)
262 rc = apply_rela_bits(loc, val, 0, 64, 0, write);
263 break;
264 case R_390_PC16: /* PC relative 16 bit. */
265 case R_390_PC16DBL: /* PC relative 16 bit shifted by 1. */
266 case R_390_PC32DBL: /* PC relative 32 bit shifted by 1. */
267 case R_390_PC32: /* PC relative 32 bit. */
268 case R_390_PC64: /* PC relative 64 bit. */
269 val += rela->r_addend - loc;
270 if (r_type == R_390_PC16)
271 rc = apply_rela_bits(loc, val, 1, 16, 0, write);
272 else if (r_type == R_390_PC16DBL)
273 rc = apply_rela_bits(loc, val, 1, 16, 1, write);
274 else if (r_type == R_390_PC32DBL)
275 rc = apply_rela_bits(loc, val, 1, 32, 1, write);
276 else if (r_type == R_390_PC32)
277 rc = apply_rela_bits(loc, val, 1, 32, 0, write);
278 else if (r_type == R_390_PC64)
279 rc = apply_rela_bits(loc, val, 1, 64, 0, write);
280 break;
281 case R_390_GOT12: /* 12 bit GOT offset. */
282 case R_390_GOT16: /* 16 bit GOT offset. */
283 case R_390_GOT20: /* 20 bit GOT offset. */
284 case R_390_GOT32: /* 32 bit GOT offset. */
285 case R_390_GOT64: /* 64 bit GOT offset. */
286 case R_390_GOTENT: /* 32 bit PC rel. to GOT entry shifted by 1. */
287 case R_390_GOTPLT12: /* 12 bit offset to jump slot. */
288 case R_390_GOTPLT20: /* 20 bit offset to jump slot. */
289 case R_390_GOTPLT16: /* 16 bit offset to jump slot. */
290 case R_390_GOTPLT32: /* 32 bit offset to jump slot. */
291 case R_390_GOTPLT64: /* 64 bit offset to jump slot. */
292 case R_390_GOTPLTENT: /* 32 bit rel. offset to jump slot >> 1. */
293 if (info->got_initialized == 0) {
294 Elf_Addr *gotent = me->mem[MOD_TEXT].base +
295 me->arch.got_offset +
296 info->got_offset;
297
298 write(gotent, &val, sizeof(*gotent));
299 info->got_initialized = 1;
300 }
301 val = info->got_offset + rela->r_addend;
302 if (r_type == R_390_GOT12 ||
303 r_type == R_390_GOTPLT12)
304 rc = apply_rela_bits(loc, val, 0, 12, 0, write);
305 else if (r_type == R_390_GOT16 ||
306 r_type == R_390_GOTPLT16)
307 rc = apply_rela_bits(loc, val, 0, 16, 0, write);
308 else if (r_type == R_390_GOT20 ||
309 r_type == R_390_GOTPLT20)
310 rc = apply_rela_bits(loc, val, 1, 20, 0, write);
311 else if (r_type == R_390_GOT32 ||
312 r_type == R_390_GOTPLT32)
313 rc = apply_rela_bits(loc, val, 0, 32, 0, write);
314 else if (r_type == R_390_GOT64 ||
315 r_type == R_390_GOTPLT64)
316 rc = apply_rela_bits(loc, val, 0, 64, 0, write);
317 else if (r_type == R_390_GOTENT ||
318 r_type == R_390_GOTPLTENT) {
319 val += (Elf_Addr)me->mem[MOD_TEXT].base +
320 me->arch.got_offset - loc;
321 rc = apply_rela_bits(loc, val, 1, 32, 1, write);
322 }
323 break;
324 case R_390_PLT16DBL: /* 16 bit PC rel. PLT shifted by 1. */
325 case R_390_PLT32DBL: /* 32 bit PC rel. PLT shifted by 1. */
326 case R_390_PLT32: /* 32 bit PC relative PLT address. */
327 case R_390_PLT64: /* 64 bit PC relative PLT address. */
328 case R_390_PLTOFF16: /* 16 bit offset from GOT to PLT. */
329 case R_390_PLTOFF32: /* 32 bit offset from GOT to PLT. */
330 case R_390_PLTOFF64: /* 16 bit offset from GOT to PLT. */
331 if (info->plt_initialized == 0) {
332 unsigned char insn[PLT_ENTRY_SIZE];
333 char *plt_base;
334 char *ip;
335
336 plt_base = me->mem[MOD_TEXT].base + me->arch.plt_offset;
337 ip = plt_base + info->plt_offset;
338 *(int *)insn = 0x0d10e310; /* basr 1,0 */
339 *(int *)&insn[4] = 0x100c0004; /* lg 1,12(1) */
340 if (IS_ENABLED(CONFIG_EXPOLINE) && !nospec_disable) {
341 char *jump_r1;
342
343 jump_r1 = plt_base + me->arch.plt_size -
344 PLT_ENTRY_SIZE;
345 /* brcl 0xf,__jump_r1 */
346 *(short *)&insn[8] = 0xc0f4;
347 *(int *)&insn[10] = (jump_r1 - (ip + 8)) / 2;
348 } else {
349 *(int *)&insn[8] = 0x07f10000; /* br %r1 */
350 }
351 *(long *)&insn[14] = val;
352
353 write(ip, insn, sizeof(insn));
354 info->plt_initialized = 1;
355 }
356 if (r_type == R_390_PLTOFF16 ||
357 r_type == R_390_PLTOFF32 ||
358 r_type == R_390_PLTOFF64)
359 val = me->arch.plt_offset - me->arch.got_offset +
360 info->plt_offset + rela->r_addend;
361 else {
362 if (!((r_type == R_390_PLT16DBL &&
363 val - loc + 0xffffUL < 0x1ffffeUL) ||
364 (r_type == R_390_PLT32DBL &&
365 val - loc + 0xffffffffULL < 0x1fffffffeULL)))
366 val = (Elf_Addr) me->mem[MOD_TEXT].base +
367 me->arch.plt_offset +
368 info->plt_offset;
369 val += rela->r_addend - loc;
370 }
371 if (r_type == R_390_PLT16DBL)
372 rc = apply_rela_bits(loc, val, 1, 16, 1, write);
373 else if (r_type == R_390_PLTOFF16)
374 rc = apply_rela_bits(loc, val, 0, 16, 0, write);
375 else if (r_type == R_390_PLT32DBL)
376 rc = apply_rela_bits(loc, val, 1, 32, 1, write);
377 else if (r_type == R_390_PLT32 ||
378 r_type == R_390_PLTOFF32)
379 rc = apply_rela_bits(loc, val, 0, 32, 0, write);
380 else if (r_type == R_390_PLT64 ||
381 r_type == R_390_PLTOFF64)
382 rc = apply_rela_bits(loc, val, 0, 64, 0, write);
383 break;
384 case R_390_GOTOFF16: /* 16 bit offset to GOT. */
385 case R_390_GOTOFF32: /* 32 bit offset to GOT. */
386 case R_390_GOTOFF64: /* 64 bit offset to GOT. */
387 val = val + rela->r_addend -
388 ((Elf_Addr) me->mem[MOD_TEXT].base + me->arch.got_offset);
389 if (r_type == R_390_GOTOFF16)
390 rc = apply_rela_bits(loc, val, 0, 16, 0, write);
391 else if (r_type == R_390_GOTOFF32)
392 rc = apply_rela_bits(loc, val, 0, 32, 0, write);
393 else if (r_type == R_390_GOTOFF64)
394 rc = apply_rela_bits(loc, val, 0, 64, 0, write);
395 break;
396 case R_390_GOTPC: /* 32 bit PC relative offset to GOT. */
397 case R_390_GOTPCDBL: /* 32 bit PC rel. off. to GOT shifted by 1. */
398 val = (Elf_Addr) me->mem[MOD_TEXT].base + me->arch.got_offset +
399 rela->r_addend - loc;
400 if (r_type == R_390_GOTPC)
401 rc = apply_rela_bits(loc, val, 1, 32, 0, write);
402 else if (r_type == R_390_GOTPCDBL)
403 rc = apply_rela_bits(loc, val, 1, 32, 1, write);
404 break;
405 case R_390_COPY:
406 case R_390_GLOB_DAT: /* Create GOT entry. */
407 case R_390_JMP_SLOT: /* Create PLT entry. */
408 case R_390_RELATIVE: /* Adjust by program base. */
409 /* Only needed if we want to support loading of
410 modules linked with -shared. */
411 return -ENOEXEC;
412 default:
413 printk(KERN_ERR "module %s: unknown relocation: %u\n",
414 me->name, r_type);
415 return -ENOEXEC;
416 }
417 if (rc) {
418 printk(KERN_ERR "module %s: relocation error for symbol %s "
419 "(r_type %i, value 0x%lx)\n",
420 me->name, strtab + symtab[r_sym].st_name,
421 r_type, (unsigned long) val);
422 return rc;
423 }
424 return 0;
425}
426
427static int __apply_relocate_add(Elf_Shdr *sechdrs, const char *strtab,
428 unsigned int symindex, unsigned int relsec,
429 struct module *me,
430 void *(*write)(void *dest, const void *src, size_t len))
431{
432 Elf_Addr base;
433 Elf_Sym *symtab;
434 Elf_Rela *rela;
435 unsigned long i, n;
436 int rc;
437
438 DEBUGP("Applying relocate section %u to %u\n",
439 relsec, sechdrs[relsec].sh_info);
440 base = sechdrs[sechdrs[relsec].sh_info].sh_addr;
441 symtab = (Elf_Sym *) sechdrs[symindex].sh_addr;
442 rela = (Elf_Rela *) sechdrs[relsec].sh_addr;
443 n = sechdrs[relsec].sh_size / sizeof(Elf_Rela);
444
445 for (i = 0; i < n; i++, rela++) {
446 rc = apply_rela(rela, base, symtab, strtab, me, write);
447 if (rc)
448 return rc;
449 }
450 return 0;
451}
452
453int apply_relocate_add(Elf_Shdr *sechdrs, const char *strtab,
454 unsigned int symindex, unsigned int relsec,
455 struct module *me)
456{
457 bool early = me->state == MODULE_STATE_UNFORMED;
458 void *(*write)(void *, const void *, size_t) = memcpy;
459
460 if (!early)
461 write = s390_kernel_write;
462
463 return __apply_relocate_add(sechdrs, strtab, symindex, relsec, me,
464 write);
465}
466
467#ifdef CONFIG_FUNCTION_TRACER
468static int module_alloc_ftrace_hotpatch_trampolines(struct module *me,
469 const Elf_Shdr *s)
470{
471 char *start, *end;
472 int numpages;
473 size_t size;
474
475 size = FTRACE_HOTPATCH_TRAMPOLINES_SIZE(s->sh_size);
476 numpages = DIV_ROUND_UP(size, PAGE_SIZE);
477 start = execmem_alloc(EXECMEM_FTRACE, numpages * PAGE_SIZE);
478 if (!start)
479 return -ENOMEM;
480 set_memory_rox((unsigned long)start, numpages);
481 end = start + size;
482
483 me->arch.trampolines_start = (struct ftrace_hotpatch_trampoline *)start;
484 me->arch.trampolines_end = (struct ftrace_hotpatch_trampoline *)end;
485 me->arch.next_trampoline = me->arch.trampolines_start;
486
487 return 0;
488}
489#endif /* CONFIG_FUNCTION_TRACER */
490
491int module_finalize(const Elf_Ehdr *hdr,
492 const Elf_Shdr *sechdrs,
493 struct module *me)
494{
495 const Elf_Shdr *s;
496 char *secstrings, *secname;
497 void *aseg;
498#ifdef CONFIG_FUNCTION_TRACER
499 int ret;
500#endif
501
502 if (IS_ENABLED(CONFIG_EXPOLINE) &&
503 !nospec_disable && me->arch.plt_size) {
504 unsigned int *ij;
505
506 ij = me->mem[MOD_TEXT].base + me->arch.plt_offset +
507 me->arch.plt_size - PLT_ENTRY_SIZE;
508 ij[0] = 0xc6000000; /* exrl %r0,.+10 */
509 ij[1] = 0x0005a7f4; /* j . */
510 ij[2] = 0x000007f1; /* br %r1 */
511 }
512
513 secstrings = (void *)hdr + sechdrs[hdr->e_shstrndx].sh_offset;
514 for (s = sechdrs; s < sechdrs + hdr->e_shnum; s++) {
515 aseg = (void *) s->sh_addr;
516 secname = secstrings + s->sh_name;
517
518 if (!strcmp(".altinstructions", secname))
519 /* patch .altinstructions */
520 apply_alternatives(aseg, aseg + s->sh_size);
521
522 if (IS_ENABLED(CONFIG_EXPOLINE) &&
523 (str_has_prefix(secname, ".s390_indirect")))
524 nospec_revert(aseg, aseg + s->sh_size);
525
526 if (IS_ENABLED(CONFIG_EXPOLINE) &&
527 (str_has_prefix(secname, ".s390_return")))
528 nospec_revert(aseg, aseg + s->sh_size);
529
530#ifdef CONFIG_FUNCTION_TRACER
531 if (!strcmp(FTRACE_CALLSITE_SECTION, secname)) {
532 ret = module_alloc_ftrace_hotpatch_trampolines(me, s);
533 if (ret < 0)
534 return ret;
535 }
536#endif /* CONFIG_FUNCTION_TRACER */
537 }
538
539 return 0;
540}