10b57cec5SDimitry Andric
20b57cec5SDimitry Andric #include "hwasan_thread.h"
30b57cec5SDimitry Andric
4349cc55cSDimitry Andric #include "hwasan.h"
5349cc55cSDimitry Andric #include "hwasan_interface_internal.h"
6349cc55cSDimitry Andric #include "hwasan_mapping.h"
7349cc55cSDimitry Andric #include "hwasan_poisoning.h"
8bdd1243dSDimitry Andric #include "hwasan_thread_list.h"
9349cc55cSDimitry Andric #include "sanitizer_common/sanitizer_atomic.h"
100b57cec5SDimitry Andric #include "sanitizer_common/sanitizer_file.h"
110b57cec5SDimitry Andric #include "sanitizer_common/sanitizer_placement_new.h"
120b57cec5SDimitry Andric #include "sanitizer_common/sanitizer_tls_get_addr.h"
130b57cec5SDimitry Andric
140b57cec5SDimitry Andric namespace __hwasan {
150b57cec5SDimitry Andric
RandomSeed()160b57cec5SDimitry Andric static u32 RandomSeed() {
170b57cec5SDimitry Andric u32 seed;
180b57cec5SDimitry Andric do {
190b57cec5SDimitry Andric if (UNLIKELY(!GetRandom(reinterpret_cast<void *>(&seed), sizeof(seed),
200b57cec5SDimitry Andric /*blocking=*/false))) {
210b57cec5SDimitry Andric seed = static_cast<u32>(
220b57cec5SDimitry Andric (NanoTime() >> 12) ^
230b57cec5SDimitry Andric (reinterpret_cast<uptr>(__builtin_frame_address(0)) >> 4));
240b57cec5SDimitry Andric }
250b57cec5SDimitry Andric } while (!seed);
260b57cec5SDimitry Andric return seed;
270b57cec5SDimitry Andric }
280b57cec5SDimitry Andric
InitRandomState()290b57cec5SDimitry Andric void Thread::InitRandomState() {
300b57cec5SDimitry Andric random_state_ = flags()->random_tags ? RandomSeed() : unique_id_;
31349cc55cSDimitry Andric random_state_inited_ = true;
320b57cec5SDimitry Andric
330b57cec5SDimitry Andric // Push a random number of zeros onto the ring buffer so that the first stack
340b57cec5SDimitry Andric // tag base will be random.
350b57cec5SDimitry Andric for (tag_t i = 0, e = GenerateRandomTag(); i != e; ++i)
360b57cec5SDimitry Andric stack_allocations_->push(0);
370b57cec5SDimitry Andric }
380b57cec5SDimitry Andric
Init(uptr stack_buffer_start,uptr stack_buffer_size,const InitState * state)39fe6060f1SDimitry Andric void Thread::Init(uptr stack_buffer_start, uptr stack_buffer_size,
40fe6060f1SDimitry Andric const InitState *state) {
41fe6060f1SDimitry Andric CHECK_EQ(0, unique_id_); // try to catch bad stack reuse
42fe6060f1SDimitry Andric CHECK_EQ(0, stack_top_);
43fe6060f1SDimitry Andric CHECK_EQ(0, stack_bottom_);
44fe6060f1SDimitry Andric
45349cc55cSDimitry Andric static atomic_uint64_t unique_id;
46349cc55cSDimitry Andric unique_id_ = atomic_fetch_add(&unique_id, 1, memory_order_relaxed);
4706c3fb27SDimitry Andric if (!IsMainThread())
4806c3fb27SDimitry Andric os_id_ = GetTid();
49349cc55cSDimitry Andric
500b57cec5SDimitry Andric if (auto sz = flags()->heap_history_size)
510b57cec5SDimitry Andric heap_allocations_ = HeapAllocationsRingBuffer::New(sz);
520b57cec5SDimitry Andric
53fe6060f1SDimitry Andric #if !SANITIZER_FUCHSIA
54fe6060f1SDimitry Andric // Do not initialize the stack ring buffer just yet on Fuchsia. Threads will
55fe6060f1SDimitry Andric // be initialized before we enter the thread itself, so we will instead call
56fe6060f1SDimitry Andric // this later.
57fe6060f1SDimitry Andric InitStackRingBuffer(stack_buffer_start, stack_buffer_size);
58fe6060f1SDimitry Andric #endif
59349cc55cSDimitry Andric InitStackAndTls(state);
60bdd1243dSDimitry Andric dtls_ = DTLS_Get();
6106c3fb27SDimitry Andric AllocatorThreadStart(allocator_cache());
6206c3fb27SDimitry Andric
6306c3fb27SDimitry Andric if (flags()->verbose_threads) {
6406c3fb27SDimitry Andric if (IsMainThread()) {
6506c3fb27SDimitry Andric Printf("sizeof(Thread): %zd sizeof(HeapRB): %zd sizeof(StackRB): %zd\n",
6606c3fb27SDimitry Andric sizeof(Thread), heap_allocations_->SizeInBytes(),
6706c3fb27SDimitry Andric stack_allocations_->size() * sizeof(uptr));
6806c3fb27SDimitry Andric }
6906c3fb27SDimitry Andric Print("Creating : ");
7006c3fb27SDimitry Andric }
71*5f757f3fSDimitry Andric ClearShadowForThreadStackAndTLS();
72fe6060f1SDimitry Andric }
73fe6060f1SDimitry Andric
InitStackRingBuffer(uptr stack_buffer_start,uptr stack_buffer_size)74fe6060f1SDimitry Andric void Thread::InitStackRingBuffer(uptr stack_buffer_start,
75fe6060f1SDimitry Andric uptr stack_buffer_size) {
760b57cec5SDimitry Andric HwasanTSDThreadInit(); // Only needed with interceptors.
770b57cec5SDimitry Andric uptr *ThreadLong = GetCurrentThreadLongPtr();
780b57cec5SDimitry Andric // The following implicitly sets (this) as the current thread.
790b57cec5SDimitry Andric stack_allocations_ = new (ThreadLong)
800b57cec5SDimitry Andric StackAllocationsRingBuffer((void *)stack_buffer_start, stack_buffer_size);
810b57cec5SDimitry Andric // Check that it worked.
820b57cec5SDimitry Andric CHECK_EQ(GetCurrentThread(), this);
830b57cec5SDimitry Andric
840b57cec5SDimitry Andric // ScopedTaggingDisable needs GetCurrentThread to be set up.
850b57cec5SDimitry Andric ScopedTaggingDisabler disabler;
860b57cec5SDimitry Andric
870b57cec5SDimitry Andric if (stack_bottom_) {
880b57cec5SDimitry Andric int local;
890b57cec5SDimitry Andric CHECK(AddrIsInStack((uptr)&local));
900b57cec5SDimitry Andric CHECK(MemIsApp(stack_bottom_));
910b57cec5SDimitry Andric CHECK(MemIsApp(stack_top_ - 1));
920b57cec5SDimitry Andric }
930b57cec5SDimitry Andric }
940b57cec5SDimitry Andric
ClearShadowForThreadStackAndTLS()950b57cec5SDimitry Andric void Thread::ClearShadowForThreadStackAndTLS() {
960b57cec5SDimitry Andric if (stack_top_ != stack_bottom_)
9706c3fb27SDimitry Andric TagMemory(UntagAddr(stack_bottom_),
9806c3fb27SDimitry Andric UntagAddr(stack_top_) - UntagAddr(stack_bottom_),
9906c3fb27SDimitry Andric GetTagFromPointer(stack_top_));
1000b57cec5SDimitry Andric if (tls_begin_ != tls_end_)
10106c3fb27SDimitry Andric TagMemory(UntagAddr(tls_begin_),
10206c3fb27SDimitry Andric UntagAddr(tls_end_) - UntagAddr(tls_begin_),
10306c3fb27SDimitry Andric GetTagFromPointer(tls_begin_));
1040b57cec5SDimitry Andric }
1050b57cec5SDimitry Andric
Destroy()1060b57cec5SDimitry Andric void Thread::Destroy() {
1070b57cec5SDimitry Andric if (flags()->verbose_threads)
1080b57cec5SDimitry Andric Print("Destroying: ");
10906c3fb27SDimitry Andric AllocatorThreadFinish(allocator_cache());
1100b57cec5SDimitry Andric ClearShadowForThreadStackAndTLS();
1110b57cec5SDimitry Andric if (heap_allocations_)
1120b57cec5SDimitry Andric heap_allocations_->Delete();
1130b57cec5SDimitry Andric DTLS_Destroy();
1145ffd83dbSDimitry Andric // Unregister this as the current thread.
1155ffd83dbSDimitry Andric // Instrumented code can not run on this thread from this point onwards, but
1165ffd83dbSDimitry Andric // malloc/free can still be served. Glibc may call free() very late, after all
1175ffd83dbSDimitry Andric // TSD destructors are done.
1185ffd83dbSDimitry Andric CHECK_EQ(GetCurrentThread(), this);
1195ffd83dbSDimitry Andric *GetCurrentThreadLongPtr() = 0;
1200b57cec5SDimitry Andric }
1210b57cec5SDimitry Andric
Print(const char * Prefix)1220b57cec5SDimitry Andric void Thread::Print(const char *Prefix) {
123349cc55cSDimitry Andric Printf("%sT%zd %p stack: [%p,%p) sz: %zd tls: [%p,%p)\n", Prefix, unique_id_,
124349cc55cSDimitry Andric (void *)this, stack_bottom(), stack_top(),
125349cc55cSDimitry Andric stack_top() - stack_bottom(), tls_begin(), tls_end());
1260b57cec5SDimitry Andric }
1270b57cec5SDimitry Andric
xorshift(u32 state)1280b57cec5SDimitry Andric static u32 xorshift(u32 state) {
1290b57cec5SDimitry Andric state ^= state << 13;
1300b57cec5SDimitry Andric state ^= state >> 17;
1310b57cec5SDimitry Andric state ^= state << 5;
1320b57cec5SDimitry Andric return state;
1330b57cec5SDimitry Andric }
1340b57cec5SDimitry Andric
1350b57cec5SDimitry Andric // Generate a (pseudo-)random non-zero tag.
GenerateRandomTag(uptr num_bits)136fe6060f1SDimitry Andric tag_t Thread::GenerateRandomTag(uptr num_bits) {
137fe6060f1SDimitry Andric DCHECK_GT(num_bits, 0);
138349cc55cSDimitry Andric if (tagging_disabled_)
139349cc55cSDimitry Andric return 0;
1400b57cec5SDimitry Andric tag_t tag;
141fe6060f1SDimitry Andric const uptr tag_mask = (1ULL << num_bits) - 1;
1420b57cec5SDimitry Andric do {
1430b57cec5SDimitry Andric if (flags()->random_tags) {
144349cc55cSDimitry Andric if (!random_buffer_) {
145349cc55cSDimitry Andric EnsureRandomStateInited();
1460b57cec5SDimitry Andric random_buffer_ = random_state_ = xorshift(random_state_);
147349cc55cSDimitry Andric }
1480b57cec5SDimitry Andric CHECK(random_buffer_);
149fe6060f1SDimitry Andric tag = random_buffer_ & tag_mask;
150fe6060f1SDimitry Andric random_buffer_ >>= num_bits;
1510b57cec5SDimitry Andric } else {
152349cc55cSDimitry Andric EnsureRandomStateInited();
153fe6060f1SDimitry Andric random_state_ += 1;
154fe6060f1SDimitry Andric tag = random_state_ & tag_mask;
1550b57cec5SDimitry Andric }
1560b57cec5SDimitry Andric } while (!tag);
1570b57cec5SDimitry Andric return tag;
1580b57cec5SDimitry Andric }
1590b57cec5SDimitry Andric
EnsureMainThreadIDIsCorrect()16006c3fb27SDimitry Andric void EnsureMainThreadIDIsCorrect() {
16106c3fb27SDimitry Andric auto *t = __hwasan::GetCurrentThread();
16206c3fb27SDimitry Andric if (t && (t->IsMainThread()))
16306c3fb27SDimitry Andric t->set_os_id(GetTid());
16406c3fb27SDimitry Andric }
16506c3fb27SDimitry Andric
1660b57cec5SDimitry Andric } // namespace __hwasan
167bdd1243dSDimitry Andric
168bdd1243dSDimitry Andric // --- Implementation of LSan-specific functions --- {{{1
169bdd1243dSDimitry Andric namespace __lsan {
170bdd1243dSDimitry Andric
GetHwasanThreadListLocked()171bdd1243dSDimitry Andric static __hwasan::HwasanThreadList *GetHwasanThreadListLocked() {
172bdd1243dSDimitry Andric auto &tl = __hwasan::hwasanThreadList();
173bdd1243dSDimitry Andric tl.CheckLocked();
174bdd1243dSDimitry Andric return &tl;
175bdd1243dSDimitry Andric }
176bdd1243dSDimitry Andric
GetThreadByOsIDLocked(tid_t os_id)177bdd1243dSDimitry Andric static __hwasan::Thread *GetThreadByOsIDLocked(tid_t os_id) {
178bdd1243dSDimitry Andric return GetHwasanThreadListLocked()->FindThreadLocked(
179bdd1243dSDimitry Andric [os_id](__hwasan::Thread *t) { return t->os_id() == os_id; });
180bdd1243dSDimitry Andric }
181bdd1243dSDimitry Andric
LockThreads()18206c3fb27SDimitry Andric void LockThreads() {
18306c3fb27SDimitry Andric __hwasan::hwasanThreadList().Lock();
18406c3fb27SDimitry Andric __hwasan::hwasanThreadArgRetval().Lock();
185bdd1243dSDimitry Andric }
186bdd1243dSDimitry Andric
UnlockThreads()18706c3fb27SDimitry Andric void UnlockThreads() {
18806c3fb27SDimitry Andric __hwasan::hwasanThreadArgRetval().Unlock();
18906c3fb27SDimitry Andric __hwasan::hwasanThreadList().Unlock();
19006c3fb27SDimitry Andric }
19106c3fb27SDimitry Andric
EnsureMainThreadIDIsCorrect()19206c3fb27SDimitry Andric void EnsureMainThreadIDIsCorrect() { __hwasan::EnsureMainThreadIDIsCorrect(); }
19306c3fb27SDimitry Andric
GetThreadRangesLocked(tid_t os_id,uptr * stack_begin,uptr * stack_end,uptr * tls_begin,uptr * tls_end,uptr * cache_begin,uptr * cache_end,DTLS ** dtls)194bdd1243dSDimitry Andric bool GetThreadRangesLocked(tid_t os_id, uptr *stack_begin, uptr *stack_end,
195bdd1243dSDimitry Andric uptr *tls_begin, uptr *tls_end, uptr *cache_begin,
196bdd1243dSDimitry Andric uptr *cache_end, DTLS **dtls) {
197bdd1243dSDimitry Andric auto *t = GetThreadByOsIDLocked(os_id);
198bdd1243dSDimitry Andric if (!t)
199bdd1243dSDimitry Andric return false;
200bdd1243dSDimitry Andric *stack_begin = t->stack_bottom();
201bdd1243dSDimitry Andric *stack_end = t->stack_top();
202bdd1243dSDimitry Andric *tls_begin = t->tls_begin();
203bdd1243dSDimitry Andric *tls_end = t->tls_end();
204bdd1243dSDimitry Andric // Fixme: is this correct for HWASan.
205bdd1243dSDimitry Andric *cache_begin = 0;
206bdd1243dSDimitry Andric *cache_end = 0;
207bdd1243dSDimitry Andric *dtls = t->dtls();
208bdd1243dSDimitry Andric return true;
209bdd1243dSDimitry Andric }
210bdd1243dSDimitry Andric
GetAllThreadAllocatorCachesLocked(InternalMmapVector<uptr> * caches)211bdd1243dSDimitry Andric void GetAllThreadAllocatorCachesLocked(InternalMmapVector<uptr> *caches) {}
212bdd1243dSDimitry Andric
GetThreadExtraStackRangesLocked(tid_t os_id,InternalMmapVector<Range> * ranges)213bdd1243dSDimitry Andric void GetThreadExtraStackRangesLocked(tid_t os_id,
214bdd1243dSDimitry Andric InternalMmapVector<Range> *ranges) {}
GetThreadExtraStackRangesLocked(InternalMmapVector<Range> * ranges)215bdd1243dSDimitry Andric void GetThreadExtraStackRangesLocked(InternalMmapVector<Range> *ranges) {}
216bdd1243dSDimitry Andric
GetAdditionalThreadContextPtrsLocked(InternalMmapVector<uptr> * ptrs)21706c3fb27SDimitry Andric void GetAdditionalThreadContextPtrsLocked(InternalMmapVector<uptr> *ptrs) {
21806c3fb27SDimitry Andric __hwasan::hwasanThreadArgRetval().GetAllPtrsLocked(ptrs);
21906c3fb27SDimitry Andric }
22006c3fb27SDimitry Andric
GetRunningThreadsLocked(InternalMmapVector<tid_t> * threads)221bdd1243dSDimitry Andric void GetRunningThreadsLocked(InternalMmapVector<tid_t> *threads) {}
222bdd1243dSDimitry Andric
223bdd1243dSDimitry Andric } // namespace __lsan
224