[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [PATCH v1.1] xen/commom/dt-overlay: Fix missing lock when remove the device


  • To: Julien Grall <julien@xxxxxxx>, <xen-devel@xxxxxxxxxxxxxxxxxxxx>
  • From: Henry Wang <xin.wang2@xxxxxxx>
  • Date: Mon, 6 May 2024 10:16:28 +0800
  • Arc-authentication-results: i=1; mx.microsoft.com 1; spf=pass (sender ip is 165.204.84.17) smtp.rcpttodomain=xen.org smtp.mailfrom=amd.com; dmarc=pass (p=quarantine sp=quarantine pct=100) action=none header.from=amd.com; dkim=none (message not signed); arc=none (0)
  • Arc-message-signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=JbEo5joN/4v2ow6t+LusWh6gNzrsasDkuzFWmFX5q4I=; b=mzW5blWIIYNkA4dIVzUA5krn2V69h3Fsq4MFX390RGVTcN1Q3e+N3S2wp89nc7BFt4k5iro84i+sID5wEmhutoRW6VZeXsx50HTWqtRUIOcxsWYy0fsS0KTigpUljE1GRjARGp9zFkAHZ1W2DjoF2WRDja0vtW3beTfezjj4fEGGtN72+pSWqafy4Yuf0uAA/UPjmHqb8ktXvAYwxC3huoNDxpoFL5zCSrvoufbho/+1FGGb96TRAzZ5PH9K3hu6d+HmxRw7P13WN6wmi3wIj66iAjmwYVCIhT5DLGaExu3qPT0PaiTO+fqLG86L/k9KD7mhl4t4jNrB0JTe/J21tg==
  • Arc-seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Ady+4OdaaNv20tQ+VUMLzuQt5DArIp9PAeahFU5PiKpS2qeLvrrL9EyNTAnCbRwzu6Ox2U4OfcAALMM9w6ZZQd0BwQeVkww91hfel6wBxITZ7fYftevvZg7cavtZocO3QFo0UkDpXu9wb2aSOglZ+oCw2zAzygg4d0pJTrqHvve3h0t0fMloqymZc+gdikPdNPU64LTU6A+WgRLeo4IafQFrxiELWrBKB8MYtaXjB7IapSXY698fvN0x/pWJBm414Hphl8SDdC5TYScoaq84CBnUFJgkWya8RxhEsGibkeFjhrsnBNRu2Izv9WgH99P248tU13roD74v6UiSIawPRw==
  • Cc: Stefano Stabellini <sstabellini@xxxxxxxxxx>, Jan Beulich <jbeulich@xxxxxxxx>
  • Delivery-date: Mon, 06 May 2024 02:16:46 +0000
  • List-id: Xen developer discussion <xen-devel.lists.xenproject.org>

Hi Julien,

On 5/3/2024 9:04 PM, Julien Grall wrote:
Hi Henry,

On 26/04/2024 02:55, Henry Wang wrote:
If CONFIG_DEBUG=y, below assertion will be triggered:
(XEN) Assertion 'rw_is_locked(&dt_host_lock)' failed at drivers/passthrough/device_tree.c:146
(XEN) ----[ Xen-4.19-unstable  arm64  debug=y  Not tainted ]----
(XEN) CPU:    0
(XEN) PC:     00000a0000257418 iommu_remove_dt_device+0x8c/0xd4
(XEN) LR:     00000a00002573a0
(XEN) SP:     00008000fff7fb30
(XEN) CPSR:   0000000000000249 MODE:64-bit EL2h (Hypervisor, handler)
[...]

(XEN) Xen call trace:
(XEN)    [<00000a0000257418>] iommu_remove_dt_device+0x8c/0xd4 (PC)
(XEN)    [<00000a00002573a0>] iommu_remove_dt_device+0x14/0xd4 (LR)
(XEN)    [<00000a000020797c>] dt-overlay.c#remove_node_resources+0x8c/0x90
(XEN)    [<00000a0000207f14>] dt-overlay.c#remove_nodes+0x524/0x648
(XEN)    [<00000a0000208460>] dt_overlay_sysctl+0x428/0xc68
(XEN)    [<00000a00002707f8>] arch_do_sysctl+0x1c/0x2c
(XEN)    [<00000a0000230b40>] do_sysctl+0x96c/0x9ec
(XEN)    [<00000a0000271e08>] traps.c#do_trap_hypercall+0x1e8/0x288
(XEN)    [<00000a0000273490>] do_trap_guest_sync+0x448/0x63c
(XEN)    [<00000a000025c480>] entry.o#guest_sync_slowpath+0xa8/0xd8
(XEN)
(XEN)
(XEN) ****************************************
(XEN) Panic on CPU 0:
(XEN) Assertion 'rw_is_locked(&dt_host_lock)' failed at drivers/passthrough/device_tree.c:146
(XEN) ****************************************

This is because iommu_remove_dt_device() is called without taking the
dt_host_lock. Fix the issue by taking and releasing the lock properly.

Fixes: 7e5c4a8b86f1 ("xen/arm: Implement device tree node removal functionalities")
Signed-off-by: Henry Wang <xin.wang2@xxxxxxx>
---
v1.1:
- Move the unlock position before the check of rc.
---
  xen/common/dt-overlay.c | 2 ++
  1 file changed, 2 insertions(+)

diff --git a/xen/common/dt-overlay.c b/xen/common/dt-overlay.c
index 1b197381f6..ab8f43aea2 100644
--- a/xen/common/dt-overlay.c
+++ b/xen/common/dt-overlay.c
@@ -381,7 +381,9 @@ static int remove_node_resources(struct dt_device_node *device_node)
      {
          if ( dt_device_is_protected(device_node) )
          {
+            write_lock(&dt_host_lock);

Looking at the code, we are not modifying the device_node, so shouldn't this be a read_lock()?

Hmm yes, however after seeing your comment...


That said, even though either fix your issue, I am not entirely convinced this is the correct position for the lock. From my understanding, dt_host_lock is meant to ensure that the DT node will not disappear behind your back. So in theory, shouldn't the lock be taken as soon as you get hold of device_node?

...here. I believe you made a point here so I think I will just move the write_lock(&dt_host_lock) as soon as getting  overlay_node, i.e. on top of the call to remove_descendant_nodes_resources(). Therefore we can solve the assertion issue of this patch together.

Kind regards,
Henry


Cheers,





 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.