xref: /freebsd/contrib/llvm-project/compiler-rt/lib/hwasan/hwasan_thread.cpp (revision bdd1243df58e60e85101c09001d9812a789b6bc4)
10b57cec5SDimitry Andric 
20b57cec5SDimitry Andric #include "hwasan_thread.h"
30b57cec5SDimitry Andric 
4349cc55cSDimitry Andric #include "hwasan.h"
5349cc55cSDimitry Andric #include "hwasan_interface_internal.h"
6349cc55cSDimitry Andric #include "hwasan_mapping.h"
7349cc55cSDimitry Andric #include "hwasan_poisoning.h"
8*bdd1243dSDimitry Andric #include "hwasan_thread_list.h"
9349cc55cSDimitry Andric #include "sanitizer_common/sanitizer_atomic.h"
100b57cec5SDimitry Andric #include "sanitizer_common/sanitizer_file.h"
110b57cec5SDimitry Andric #include "sanitizer_common/sanitizer_placement_new.h"
120b57cec5SDimitry Andric #include "sanitizer_common/sanitizer_tls_get_addr.h"
130b57cec5SDimitry Andric 
140b57cec5SDimitry Andric namespace __hwasan {
150b57cec5SDimitry Andric 
160b57cec5SDimitry Andric static u32 RandomSeed() {
170b57cec5SDimitry Andric   u32 seed;
180b57cec5SDimitry Andric   do {
190b57cec5SDimitry Andric     if (UNLIKELY(!GetRandom(reinterpret_cast<void *>(&seed), sizeof(seed),
200b57cec5SDimitry Andric                             /*blocking=*/false))) {
210b57cec5SDimitry Andric       seed = static_cast<u32>(
220b57cec5SDimitry Andric           (NanoTime() >> 12) ^
230b57cec5SDimitry Andric           (reinterpret_cast<uptr>(__builtin_frame_address(0)) >> 4));
240b57cec5SDimitry Andric     }
250b57cec5SDimitry Andric   } while (!seed);
260b57cec5SDimitry Andric   return seed;
270b57cec5SDimitry Andric }
280b57cec5SDimitry Andric 
290b57cec5SDimitry Andric void Thread::InitRandomState() {
300b57cec5SDimitry Andric   random_state_ = flags()->random_tags ? RandomSeed() : unique_id_;
31349cc55cSDimitry Andric   random_state_inited_ = true;
320b57cec5SDimitry Andric 
330b57cec5SDimitry Andric   // Push a random number of zeros onto the ring buffer so that the first stack
340b57cec5SDimitry Andric   // tag base will be random.
350b57cec5SDimitry Andric   for (tag_t i = 0, e = GenerateRandomTag(); i != e; ++i)
360b57cec5SDimitry Andric     stack_allocations_->push(0);
370b57cec5SDimitry Andric }
380b57cec5SDimitry Andric 
39fe6060f1SDimitry Andric void Thread::Init(uptr stack_buffer_start, uptr stack_buffer_size,
40fe6060f1SDimitry Andric                   const InitState *state) {
41fe6060f1SDimitry Andric   CHECK_EQ(0, unique_id_);  // try to catch bad stack reuse
42fe6060f1SDimitry Andric   CHECK_EQ(0, stack_top_);
43fe6060f1SDimitry Andric   CHECK_EQ(0, stack_bottom_);
44fe6060f1SDimitry Andric 
45349cc55cSDimitry Andric   static atomic_uint64_t unique_id;
46349cc55cSDimitry Andric   unique_id_ = atomic_fetch_add(&unique_id, 1, memory_order_relaxed);
47349cc55cSDimitry Andric 
480b57cec5SDimitry Andric   if (auto sz = flags()->heap_history_size)
490b57cec5SDimitry Andric     heap_allocations_ = HeapAllocationsRingBuffer::New(sz);
500b57cec5SDimitry Andric 
51fe6060f1SDimitry Andric #if !SANITIZER_FUCHSIA
52fe6060f1SDimitry Andric   // Do not initialize the stack ring buffer just yet on Fuchsia. Threads will
53fe6060f1SDimitry Andric   // be initialized before we enter the thread itself, so we will instead call
54fe6060f1SDimitry Andric   // this later.
55fe6060f1SDimitry Andric   InitStackRingBuffer(stack_buffer_start, stack_buffer_size);
56fe6060f1SDimitry Andric #endif
57349cc55cSDimitry Andric   InitStackAndTls(state);
58*bdd1243dSDimitry Andric   dtls_ = DTLS_Get();
59fe6060f1SDimitry Andric }
60fe6060f1SDimitry Andric 
61fe6060f1SDimitry Andric void Thread::InitStackRingBuffer(uptr stack_buffer_start,
62fe6060f1SDimitry Andric                                  uptr stack_buffer_size) {
630b57cec5SDimitry Andric   HwasanTSDThreadInit();  // Only needed with interceptors.
640b57cec5SDimitry Andric   uptr *ThreadLong = GetCurrentThreadLongPtr();
650b57cec5SDimitry Andric   // The following implicitly sets (this) as the current thread.
660b57cec5SDimitry Andric   stack_allocations_ = new (ThreadLong)
670b57cec5SDimitry Andric       StackAllocationsRingBuffer((void *)stack_buffer_start, stack_buffer_size);
680b57cec5SDimitry Andric   // Check that it worked.
690b57cec5SDimitry Andric   CHECK_EQ(GetCurrentThread(), this);
700b57cec5SDimitry Andric 
710b57cec5SDimitry Andric   // ScopedTaggingDisable needs GetCurrentThread to be set up.
720b57cec5SDimitry Andric   ScopedTaggingDisabler disabler;
730b57cec5SDimitry Andric 
740b57cec5SDimitry Andric   if (stack_bottom_) {
750b57cec5SDimitry Andric     int local;
760b57cec5SDimitry Andric     CHECK(AddrIsInStack((uptr)&local));
770b57cec5SDimitry Andric     CHECK(MemIsApp(stack_bottom_));
780b57cec5SDimitry Andric     CHECK(MemIsApp(stack_top_ - 1));
790b57cec5SDimitry Andric   }
800b57cec5SDimitry Andric 
810b57cec5SDimitry Andric   if (flags()->verbose_threads) {
820b57cec5SDimitry Andric     if (IsMainThread()) {
830b57cec5SDimitry Andric       Printf("sizeof(Thread): %zd sizeof(HeapRB): %zd sizeof(StackRB): %zd\n",
840b57cec5SDimitry Andric              sizeof(Thread), heap_allocations_->SizeInBytes(),
850b57cec5SDimitry Andric              stack_allocations_->size() * sizeof(uptr));
860b57cec5SDimitry Andric     }
870b57cec5SDimitry Andric     Print("Creating  : ");
880b57cec5SDimitry Andric   }
890b57cec5SDimitry Andric }
900b57cec5SDimitry Andric 
910b57cec5SDimitry Andric void Thread::ClearShadowForThreadStackAndTLS() {
920b57cec5SDimitry Andric   if (stack_top_ != stack_bottom_)
930b57cec5SDimitry Andric     TagMemory(stack_bottom_, stack_top_ - stack_bottom_, 0);
940b57cec5SDimitry Andric   if (tls_begin_ != tls_end_)
950b57cec5SDimitry Andric     TagMemory(tls_begin_, tls_end_ - tls_begin_, 0);
960b57cec5SDimitry Andric }
970b57cec5SDimitry Andric 
980b57cec5SDimitry Andric void Thread::Destroy() {
990b57cec5SDimitry Andric   if (flags()->verbose_threads)
1000b57cec5SDimitry Andric     Print("Destroying: ");
1010b57cec5SDimitry Andric   AllocatorSwallowThreadLocalCache(allocator_cache());
1020b57cec5SDimitry Andric   ClearShadowForThreadStackAndTLS();
1030b57cec5SDimitry Andric   if (heap_allocations_)
1040b57cec5SDimitry Andric     heap_allocations_->Delete();
1050b57cec5SDimitry Andric   DTLS_Destroy();
1065ffd83dbSDimitry Andric   // Unregister this as the current thread.
1075ffd83dbSDimitry Andric   // Instrumented code can not run on this thread from this point onwards, but
1085ffd83dbSDimitry Andric   // malloc/free can still be served. Glibc may call free() very late, after all
1095ffd83dbSDimitry Andric   // TSD destructors are done.
1105ffd83dbSDimitry Andric   CHECK_EQ(GetCurrentThread(), this);
1115ffd83dbSDimitry Andric   *GetCurrentThreadLongPtr() = 0;
1120b57cec5SDimitry Andric }
1130b57cec5SDimitry Andric 
1140b57cec5SDimitry Andric void Thread::Print(const char *Prefix) {
115349cc55cSDimitry Andric   Printf("%sT%zd %p stack: [%p,%p) sz: %zd tls: [%p,%p)\n", Prefix, unique_id_,
116349cc55cSDimitry Andric          (void *)this, stack_bottom(), stack_top(),
117349cc55cSDimitry Andric          stack_top() - stack_bottom(), tls_begin(), tls_end());
1180b57cec5SDimitry Andric }
1190b57cec5SDimitry Andric 
1200b57cec5SDimitry Andric static u32 xorshift(u32 state) {
1210b57cec5SDimitry Andric   state ^= state << 13;
1220b57cec5SDimitry Andric   state ^= state >> 17;
1230b57cec5SDimitry Andric   state ^= state << 5;
1240b57cec5SDimitry Andric   return state;
1250b57cec5SDimitry Andric }
1260b57cec5SDimitry Andric 
1270b57cec5SDimitry Andric // Generate a (pseudo-)random non-zero tag.
128fe6060f1SDimitry Andric tag_t Thread::GenerateRandomTag(uptr num_bits) {
129fe6060f1SDimitry Andric   DCHECK_GT(num_bits, 0);
130349cc55cSDimitry Andric   if (tagging_disabled_)
131349cc55cSDimitry Andric     return 0;
1320b57cec5SDimitry Andric   tag_t tag;
133fe6060f1SDimitry Andric   const uptr tag_mask = (1ULL << num_bits) - 1;
1340b57cec5SDimitry Andric   do {
1350b57cec5SDimitry Andric     if (flags()->random_tags) {
136349cc55cSDimitry Andric       if (!random_buffer_) {
137349cc55cSDimitry Andric         EnsureRandomStateInited();
1380b57cec5SDimitry Andric         random_buffer_ = random_state_ = xorshift(random_state_);
139349cc55cSDimitry Andric       }
1400b57cec5SDimitry Andric       CHECK(random_buffer_);
141fe6060f1SDimitry Andric       tag = random_buffer_ & tag_mask;
142fe6060f1SDimitry Andric       random_buffer_ >>= num_bits;
1430b57cec5SDimitry Andric     } else {
144349cc55cSDimitry Andric       EnsureRandomStateInited();
145fe6060f1SDimitry Andric       random_state_ += 1;
146fe6060f1SDimitry Andric       tag = random_state_ & tag_mask;
1470b57cec5SDimitry Andric     }
1480b57cec5SDimitry Andric   } while (!tag);
1490b57cec5SDimitry Andric   return tag;
1500b57cec5SDimitry Andric }
1510b57cec5SDimitry Andric 
1520b57cec5SDimitry Andric } // namespace __hwasan
153*bdd1243dSDimitry Andric 
154*bdd1243dSDimitry Andric // --- Implementation of LSan-specific functions --- {{{1
155*bdd1243dSDimitry Andric namespace __lsan {
156*bdd1243dSDimitry Andric 
157*bdd1243dSDimitry Andric static __hwasan::HwasanThreadList *GetHwasanThreadListLocked() {
158*bdd1243dSDimitry Andric   auto &tl = __hwasan::hwasanThreadList();
159*bdd1243dSDimitry Andric   tl.CheckLocked();
160*bdd1243dSDimitry Andric   return &tl;
161*bdd1243dSDimitry Andric }
162*bdd1243dSDimitry Andric 
163*bdd1243dSDimitry Andric static __hwasan::Thread *GetThreadByOsIDLocked(tid_t os_id) {
164*bdd1243dSDimitry Andric   return GetHwasanThreadListLocked()->FindThreadLocked(
165*bdd1243dSDimitry Andric       [os_id](__hwasan::Thread *t) { return t->os_id() == os_id; });
166*bdd1243dSDimitry Andric }
167*bdd1243dSDimitry Andric 
168*bdd1243dSDimitry Andric void LockThreadRegistry() { __hwasan::hwasanThreadList().Lock(); }
169*bdd1243dSDimitry Andric 
170*bdd1243dSDimitry Andric void UnlockThreadRegistry() { __hwasan::hwasanThreadList().Unlock(); }
171*bdd1243dSDimitry Andric 
172*bdd1243dSDimitry Andric void EnsureMainThreadIDIsCorrect() {
173*bdd1243dSDimitry Andric   auto *t = __hwasan::GetCurrentThread();
174*bdd1243dSDimitry Andric   if (t && (t->IsMainThread()))
175*bdd1243dSDimitry Andric     t->set_os_id(GetTid());
176*bdd1243dSDimitry Andric }
177*bdd1243dSDimitry Andric 
178*bdd1243dSDimitry Andric bool GetThreadRangesLocked(tid_t os_id, uptr *stack_begin, uptr *stack_end,
179*bdd1243dSDimitry Andric                            uptr *tls_begin, uptr *tls_end, uptr *cache_begin,
180*bdd1243dSDimitry Andric                            uptr *cache_end, DTLS **dtls) {
181*bdd1243dSDimitry Andric   auto *t = GetThreadByOsIDLocked(os_id);
182*bdd1243dSDimitry Andric   if (!t)
183*bdd1243dSDimitry Andric     return false;
184*bdd1243dSDimitry Andric   *stack_begin = t->stack_bottom();
185*bdd1243dSDimitry Andric   *stack_end = t->stack_top();
186*bdd1243dSDimitry Andric   *tls_begin = t->tls_begin();
187*bdd1243dSDimitry Andric   *tls_end = t->tls_end();
188*bdd1243dSDimitry Andric   // Fixme: is this correct for HWASan.
189*bdd1243dSDimitry Andric   *cache_begin = 0;
190*bdd1243dSDimitry Andric   *cache_end = 0;
191*bdd1243dSDimitry Andric   *dtls = t->dtls();
192*bdd1243dSDimitry Andric   return true;
193*bdd1243dSDimitry Andric }
194*bdd1243dSDimitry Andric 
195*bdd1243dSDimitry Andric void GetAllThreadAllocatorCachesLocked(InternalMmapVector<uptr> *caches) {}
196*bdd1243dSDimitry Andric 
197*bdd1243dSDimitry Andric void GetThreadExtraStackRangesLocked(tid_t os_id,
198*bdd1243dSDimitry Andric                                      InternalMmapVector<Range> *ranges) {}
199*bdd1243dSDimitry Andric void GetThreadExtraStackRangesLocked(InternalMmapVector<Range> *ranges) {}
200*bdd1243dSDimitry Andric 
201*bdd1243dSDimitry Andric void GetAdditionalThreadContextPtrsLocked(InternalMmapVector<uptr> *ptrs) {}
202*bdd1243dSDimitry Andric void GetRunningThreadsLocked(InternalMmapVector<tid_t> *threads) {}
203*bdd1243dSDimitry Andric 
204*bdd1243dSDimitry Andric }  // namespace __lsan
205