From nobody Sun Mar 15 06:58:01 2026 X-Original-To: dev-commits-src-all@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4fYTZR1Hd3z6VFyQ for ; Sun, 15 Mar 2026 06:58:07 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R12" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 4fYTZR0TPJz3DCs for ; Sun, 15 Mar 2026 06:58:07 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1773557887; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=1TyCpOZEe32vKJZT0uqI9xAVpiK4ZOGjiITJUC6VXRc=; b=uRKaLR8Ly1wVpqF6tedJ3BZvzeJlDuGsAf4kFw/8Owt6V/PHdQIks3PFW+pOEVrajP28K7 DJ25rwF6vmr5a2x171nOVrtuk4Fkpdw9kHZ5CnXgjAdDXzOvdUaDn42tJm9PCKBPbE0g7j c/6PNWXLw6e7oOuOZLJdLopMsoA9TgvpoSr1hF4QeDGZS80yW8HHVyIzMWvCwM09r3Vmit U9jG+/oMnvLVFzggQHMqlFED4jGrqNsF01MGWrzImh3U1CBKK1Ta5oKWt3Tu5EICe0EUS/ /Z+xywqDlm9oHbfWLKjAqD/1sSbWVjvsHe71eAS7FMYEVpqT3AntAOK3HvRzNQ== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1773557887; a=rsa-sha256; cv=none; b=dj5/zwVIiz/JbprocN6+L1NQ1pP85654LrrtJNwqgUSQypBA2/+CfYO7ZvtMk9YmDQ724A zQDSOogUQJDpirxhNG/wbT7OPY/+0CWUM4bBx6QHY5tKuoIANdAS+3nkdNGz9iD9WVT3Bh TufNT9ky81aFoMdtewHb92g272bC4ooSCRttetnlSgU1DtdkLoWVgVkYEMFKWgyyISZwU+ O4lGQPnM06caukw8R/mSttf9q5qpfVdZlPCov88Uu6GLUuv4RLRbj4CiDj1oBZBcUgq0VY uDQCElnK0Xf2oocmhw9oDrffkBfL0lYGy4D2w/jwoFM3uLHzAqwuwh1FTd9pJQ== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1773557887; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=1TyCpOZEe32vKJZT0uqI9xAVpiK4ZOGjiITJUC6VXRc=; b=UZf9T0HR9OTwOLUhgfoE/Hil9ACebnbu2T8OTOPAPFwk4nGq6xe8DXWc2NCi2iub6CRgEH W10Ni88gw/Fd5BQ1Lhp4J6dhAjcRp5ZyX6B16G6xyk6kutUuVCZMy85IND//9+qZcrx+ty p1lPJiGJsvypS/vOsBKUmCYcfZSMTPDAJvQldfFqAgy2bgsxcOm3yFO04h5aOF8EMOwKrc 9Noti4OtoR5cLTGNSlntI1z7Au8h7I4v5wRcznHxc3hSqRBqMMEbgeQ7mYwu08aqddCR8l ic81CqdjbxyxGgxsTYk+4hiljaUCiSBY5THLvI5awRe0mXS/jFqaBA956WxXtg== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) by mxrelay.nyi.freebsd.org (Postfix) with ESMTP id 4fYTZQ6wNgzfWt for ; Sun, 15 Mar 2026 06:58:06 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from git (uid 1279) (envelope-from git@FreeBSD.org) id 27fa1 by gitrepo.freebsd.org (DragonFly Mail Agent v0.13+ on gitrepo.freebsd.org); Sun, 15 Mar 2026 06:58:01 +0000 To: src-committers@FreeBSD.org, dev-commits-src-all@FreeBSD.org, dev-commits-src-main@FreeBSD.org From: Konstantin Belousov Subject: git: 8365f877b1e4 - main - amd64: do reset %rip after page fault if pcb_onfault is set List-Id: Commit messages for all branches of the src repository List-Archive: https://lists.freebsd.org/archives/dev-commits-src-all List-Help: List-Post: List-Subscribe: List-Unsubscribe: X-BeenThere: dev-commits-src-all@freebsd.org Sender: owner-dev-commits-src-all@FreeBSD.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: kib X-Git-Repository: src X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: 8365f877b1e4b6d4c30df72e0826ca60a412ce7d Auto-Submitted: auto-generated Date: Sun, 15 Mar 2026 06:58:01 +0000 Message-Id: <69b65879.27fa1.4fc60671@gitrepo.freebsd.org> The branch main has been updated by kib: URL: https://cgit.FreeBSD.org/src/commit/?id=8365f877b1e4b6d4c30df72e0826ca60a412ce7d commit 8365f877b1e4b6d4c30df72e0826ca60a412ce7d Author: Konstantin Belousov AuthorDate: 2026-03-14 11:40:07 +0000 Commit: Konstantin Belousov CommitDate: 2026-03-15 06:57:08 +0000 amd64: do reset %rip after page fault if pcb_onfault is set for any kernel page fault, and not only for EFIRT case. Reported and tested by: pho Fixes: 914a53570750ce5a104a5870403d7669656fddc3 Sponsored by: The FreeBSD Foundation MFC after: 1 week --- sys/amd64/amd64/trap.c | 33 ++++++++++++++++++++------------- 1 file changed, 20 insertions(+), 13 deletions(-) diff --git a/sys/amd64/amd64/trap.c b/sys/amd64/amd64/trap.c index 4bf56226d076..3a9323936d2d 100644 --- a/sys/amd64/amd64/trap.c +++ b/sys/amd64/amd64/trap.c @@ -219,15 +219,19 @@ trap_uprintf_signal(struct thread *td, struct trapframe *frame, register_t addr, } static bool -trap_check_efirt(struct thread *td, struct trapframe *frame) +trap_check_pcb_onfault(struct thread *td, struct trapframe *frame) { - /* - * Most likely, EFI RT faulted. This check prevents - * kdb from handling breakpoints set on the BIOS text, - * if such option is ever needed. - */ - if ((td->td_pflags & TDP_EFIRT) != 0 && - curpcb->pcb_onfault != NULL) { + bool res = false; + + if (curpcb->pcb_onfault == NULL) + return (res); + + if (__predict_false((td->td_pflags & TDP_EFIRT) != 0)) { + /* + * Most likely, EFI RT faulted. This check prevents + * kdb from handling breakpoints set on the BIOS text, + * if such option is ever needed. + */ u_long cnt = atomic_fetchadd_long(&cnt_efirt_faults, 1); if ((print_efirt_faults == 1 && cnt == 0) || @@ -236,10 +240,13 @@ trap_check_efirt(struct thread *td, struct trapframe *frame) traptype_to_msg(frame->tf_trapno)); trap_diag(frame, 0); } - frame->tf_rip = (long)curpcb->pcb_onfault; - return (true); + res = true; + } else if (frame->tf_trapno == T_PAGEFLT) { + res = true; } - return (false); + if (res) + frame->tf_rip = (register_t)curpcb->pcb_onfault; + return (res); } static void @@ -494,7 +501,7 @@ trap(struct trapframe *frame) KASSERT(cold || td->td_ucred != NULL, ("kernel trap doesn't have ucred")); - if (type != T_PAGEFLT && trap_check_efirt(td, frame)) + if (type != T_PAGEFLT && trap_check_pcb_onfault(td, frame)) return; switch (type) { @@ -904,7 +911,7 @@ trap_pfault(struct trapframe *frame, bool usermode, int *signo, int *ucode) return (1); after_vmfault: if (td->td_intr_nesting_level == 0 && - trap_check_efirt(td, frame)) + trap_check_pcb_onfault(td, frame)) return (0); trap_fatal(frame, eva); return (-1);