From: Arnd Bergmann <arnd@arndb.de>
To: "Tautschnig, Michael" <tautschn@amazon.co.uk>
Cc: Andi Kleen <ak@linux.intel.com>,
"x86@kernel.org" <x86@kernel.org>,
"linux-api@vger.kernel.org" <linux-api@vger.kernel.org>,
"linux-kernel@vger.kernel.org" <linux-kernel@vger.kernel.org>,
Thomas Gleixner <tglx@linutronix.de>,
Ingo Molnar <mingo@redhat.com>, "H. Peter Anvin" <hpa@zytor.com>,
Jaswinder Singh <jaswinder@infradead.org>
Subject: Re: [PATCH] Syscall arguments are unsigned long (full registers)
Date: Mon, 04 Jul 2016 16:59:35 +0200 [thread overview]
Message-ID: <3421998.D1ABSO4c36@wuerfel> (raw)
In-Reply-To: <ED0D99E6-1A18-4263-B227-7105313FA6AC@amazon.com>
On Monday, July 4, 2016 2:47:10 PM CEST Tautschnig, Michael wrote:
> Thanks a lot for the immediate feedback.
>
> > On 4 Jul 2016, at 16:28, Andi Kleen <ak@linux.intel.com> wrote:
> >
> > On Mon, Jul 04, 2016 at 01:52:58PM +0000, Tautschnig, Michael wrote:
> >> All syscall arguments are passed in as types of the same byte size as
> >> unsigned long (width of full registers). Using a smaller type without a
> >> cast may result in losing bits of information. In all other instances
> >> apart from the ones fixed by the patch the code explicitly introduces
> >> type casts (using, e.g., SYSCALL_DEFINE1).
> >>
> >> While goto-cc reported these problems at build time, it is noteworthy
> >> that the calling conventions specified in the System V AMD64 ABI do
> >> ensure that parameters 1-6 are passed via registers, thus there is no
> >> implied risk of misaligned stack access.
> >
> > Does this actually fix anything?
> >
>
> It will ensure the behaviour on 32 and 64-bit systems is consistent, i.e.,
> no truncation occurs. This is to ensure that future uses of these syscalls
> do not face surprises.
>
>
It looks to me like you are introducing a truncation, not removing
one as your comment suggests:
long do_arch_prctl(struct task_struct *task, int code, unsigned long addr);
-long sys_arch_prctl(int code, unsigned long addr)
+long sys_arch_prctl(unsigned long code, unsigned long addr)
{
return do_arch_prctl(current, code, addr);
}
This is the same truncation that we do with SYSCALL_DEFINE2(),
clearing the top 32 bits of the 'code' parameter to ensure that
user space doesn't pass data unexpectedly.
That change seems reasonable, but why not just use SYSCALL_DEFINE2()
directly for consistency with the other syscalls?
Arnd
next prev parent reply other threads:[~2016-07-04 14:58 UTC|newest]
Thread overview: 8+ messages / expand[flat|nested] mbox.gz Atom feed top
2016-07-04 13:52 Tautschnig, Michael
2016-07-04 14:28 ` Andi Kleen
2016-07-04 14:47 ` Tautschnig, Michael
2016-07-04 14:59 ` Arnd Bergmann [this message]
2016-07-04 15:13 ` Tautschnig, Michael
2016-07-04 18:27 ` H. Peter Anvin
2016-07-04 20:13 ` Tautschnig, Michael
2016-07-04 20:23 ` H. Peter Anvin
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=3421998.D1ABSO4c36@wuerfel \
--to=arnd@arndb.de \
--cc=ak@linux.intel.com \
--cc=hpa@zytor.com \
--cc=jaswinder@infradead.org \
--cc=linux-api@vger.kernel.org \
--cc=linux-kernel@vger.kernel.org \
--cc=mingo@redhat.com \
--cc=tautschn@amazon.co.uk \
--cc=tglx@linutronix.de \
--cc=x86@kernel.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
all inboxes | Powered by JetHome®