mirror of https://lore.kernel.org/lkml/
 help / color / mirror / Atom feed
From: Yazen Ghannam <yazen.ghannam@amd.com>
To: Karan Sanghavi <karansanghvi98@gmail.com>
Cc: Shuah Khan <skhan@linuxfoundation.org>,
	Tony Luck <tony.luck@intel.com>, Borislav Petkov <bp@alien8.de>,
	linux-edac@vger.kernel.org, linux-kernel@vger.kernel.org
Subject: Re: [PATCH] RAS/AMD/ATL: Fix unintended sign extension issue from coverity
Date: Thu, 7 Nov 2024 09:41:56 -0500	[thread overview]
Message-ID: <20241107144156.GA2236807@yaz-khff2.amd.com> (raw)
In-Reply-To: <rk37tcrlpnziymqpj72f2glu4kh7v5pgxnurhnmuwhwkyuyfpm@iqvzvuicy3xu>

On Tue, Nov 05, 2024 at 04:20:27PM +0000, Karan Sanghavi wrote:
> On Mon, Nov 04, 2024 at 02:51:56PM -0700, Shuah Khan wrote:
> > On 11/4/24 11:34, Karan Sanghavi wrote:
> > > Explicit cast pc to u32 to avoid sign extension while left shift
> > > 
> > > Issue reported by coverity with CID: 1593397
> > > 
> > > Signed-off-by: Karan Sanghavi <karansanghvi98@gmail.com>
> > > ---
> > > Coverity  Link:
> > > https://scan7.scan.coverity.com/#/project-view/51975/11354?selectedIssue=1593397
> > 
> > Please include the coverity message instead of this link so
> > reviewers without coverity accounts can see the report.
> >
> sure will keep it in mind. 

Please do share this as it'll help provide context.

> > > ---
> > >   drivers/ras/amd/atl/umc.c | 2 +-
> > >   1 file changed, 1 insertion(+), 1 deletion(-)
> > > 
> > > diff --git a/drivers/ras/amd/atl/umc.c b/drivers/ras/amd/atl/umc.c
> > > index dc8aa12f63c8..916c867faaf8 100644
> > > --- a/drivers/ras/amd/atl/umc.c
> > > +++ b/drivers/ras/amd/atl/umc.c
> > > @@ -293,7 +293,7 @@ static unsigned long convert_dram_to_norm_addr_mi300(unsigned long addr)
> > >   	}
> > >   	/* PC bit */
> > > -	addr |= pc << bit_shifts.pc;
> > > +	addr |= (u32)pc << bit_shifts.pc;
> > 
> > How did you determine this is the right fix and how did
> > test this change?
> >
> #define ADDR_SEL_2_CHAN GENMASK(15, 12)
> 
> bit_shifts.pc = 5 + FIELD_GET(ADDR_SEL_2_CHAN, temp);
> 
> After reviewing the code, I found that bit_shifts.pc can reach a maximum value of 20. 
> Left-shifting a u16 pc by this amount results in an implicit promotion to an int64_t, 
> which can cause sign extension and lead to unintended negative values.
> 

The 'pc' variable holds a single bit in practice.

	#define MI300_UMC_MCA_PC        BIT(25)
	pc   = FIELD_GET(MI300_UMC_MCA_PC,   addr);

> To avoid this, casting to a larger data type (such as u64) woulbe be most 
> appropriate solution here. 
> 
> Also,using u64 would be more appropriate rather than u32. 
> 
> Should I send a new patch with u64?  
>

Another option is to follow the style in the rest of the function and
use the 'temp' variable.


	        /* PC bit */
		-       addr |= pc << bit_shifts.pc;
		+       temp  = pc;
		+       addr |= temp << bit_shifts.pc;


Or we can change the variable declarations to all be 'unsigned long' to
match input/return value.

Thanks,
Yazen

      reply	other threads:[~2024-11-07 14:42 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2024-11-04 18:34 Karan Sanghavi
2024-11-04 21:51 ` Shuah Khan
2024-11-05 16:20   ` Karan Sanghavi
2024-11-07 14:41     ` Yazen Ghannam [this message]

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20241107144156.GA2236807@yaz-khff2.amd.com \
    --to=yazen.ghannam@amd.com \
    --cc=bp@alien8.de \
    --cc=karansanghvi98@gmail.com \
    --cc=linux-edac@vger.kernel.org \
    --cc=linux-kernel@vger.kernel.org \
    --cc=skhan@linuxfoundation.org \
    --cc=tony.luck@intel.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox

all inboxes | Powered by JetHome®