Skip to content

Commit

Permalink
[PATCH] i386: load_tls() fix
Browse files Browse the repository at this point in the history
Subtle fix: load_TLS has been moved after saving %fs and %gs segments to avoid
creating non-reversible segments.  This could conceivably cause a bug if the
kernel ever needed to save and restore fs/gs from the NMI handler.  It
currently does not, but this is the safest approach to avoiding fs/gs
corruption.  SMIs are safe, since SMI saves the descriptor hidden state.

Signed-off-by: Zachary Amsden <zach@vmware.com>
Signed-off-by: Andrew Morton <akpm@osdl.org>
Signed-off-by: Linus Torvalds <torvalds@osdl.org>
  • Loading branch information
Zachary Amsden authored and Linus Torvalds committed Sep 5, 2005
1 parent 2f2984e commit e7a2ff5
Showing 1 changed file with 12 additions and 7 deletions.
19 changes: 12 additions & 7 deletions arch/i386/kernel/process.c
Original file line number Diff line number Diff line change
Expand Up @@ -678,21 +678,26 @@ struct task_struct fastcall * __switch_to(struct task_struct *prev_p, struct tas
__unlazy_fpu(prev_p);

/*
* Reload esp0, LDT and the page table pointer:
* Reload esp0.
*/
load_esp0(tss, next);

/*
* Load the per-thread Thread-Local Storage descriptor.
* Save away %fs and %gs. No need to save %es and %ds, as
* those are always kernel segments while inside the kernel.
* Doing this before setting the new TLS descriptors avoids
* the situation where we temporarily have non-reloadable
* segments in %fs and %gs. This could be an issue if the
* NMI handler ever used %fs or %gs (it does not today), or
* if the kernel is running inside of a hypervisor layer.
*/
load_TLS(next, cpu);
savesegment(fs, prev->fs);
savesegment(gs, prev->gs);

/*
* Save away %fs and %gs. No need to save %es and %ds, as
* those are always kernel segments while inside the kernel.
* Load the per-thread Thread-Local Storage descriptor.
*/
asm volatile("mov %%fs,%0":"=m" (prev->fs));
asm volatile("mov %%gs,%0":"=m" (prev->gs));
load_TLS(next, cpu);

/*
* Restore %fs and %gs if needed.
Expand Down

0 comments on commit e7a2ff5

Please sign in to comment.