Files
xemu/linux-user/uaccess.c
T

Ignoring revisions in .git-blame-ignore-revs. Click here to bypass and see the normal blame view.

115 lines
2.7 KiB
C
Raw Normal View History

/* User memory access */
2016-01-26 18:17:02 +00:00
#include "qemu/osdep.h"
#include "qemu/cutils.h"
#include "qemu.h"
#include "user-internals.h"
2021-03-15 14:40:04 -06:00
void *lock_user(int type, abi_ulong guest_addr, ssize_t len, bool copy)
{
void *host_addr;
guest_addr = cpu_untagged_addr(thread_cpu, guest_addr);
if (!access_ok_untagged(type, guest_addr, len)) {
return NULL;
}
host_addr = g2h_untagged(guest_addr);
#ifdef DEBUG_REMAP
if (copy) {
host_addr = g_memdup(host_addr, len);
} else {
host_addr = g_malloc0(len);
}
#endif
return host_addr;
}
#ifdef DEBUG_REMAP
2021-03-15 14:40:04 -06:00
void unlock_user(void *host_ptr, abi_ulong guest_addr, ssize_t len)
{
void *host_ptr_conv;
if (!host_ptr) {
return;
}
host_ptr_conv = g2h(thread_cpu, guest_addr);
if (host_ptr == host_ptr_conv) {
return;
}
2021-03-15 14:40:04 -06:00
if (len > 0) {
memcpy(host_ptr_conv, host_ptr, len);
}
g_free(host_ptr);
}
#endif
void *lock_user_string(abi_ulong guest_addr)
{
2021-02-12 10:48:49 -08:00
ssize_t len = target_strlen(guest_addr);
if (len < 0) {
return NULL;
}
2021-03-15 14:40:04 -06:00
return lock_user(VERIFY_READ, guest_addr, len + 1, 1);
}
/* copy_from_user() and copy_to_user() are usually used to copy data
* buffers between the target and host. These internally perform
* locking/unlocking of the memory.
*/
2021-03-15 14:40:04 -06:00
int copy_from_user(void *hptr, abi_ulong gaddr, ssize_t len)
{
2021-02-12 10:48:49 -08:00
int ret = 0;
void *ghptr = lock_user(VERIFY_READ, gaddr, len, 1);
2021-02-12 10:48:49 -08:00
if (ghptr) {
memcpy(hptr, ghptr, len);
unlock_user(ghptr, gaddr, 0);
2021-02-12 10:48:49 -08:00
} else {
ret = -TARGET_EFAULT;
2021-02-12 10:48:49 -08:00
}
return ret;
}
2021-03-15 14:40:04 -06:00
int copy_to_user(abi_ulong gaddr, void *hptr, ssize_t len)
{
2021-02-12 10:48:49 -08:00
int ret = 0;
void *ghptr = lock_user(VERIFY_WRITE, gaddr, len, 0);
2021-02-12 10:48:49 -08:00
if (ghptr) {
memcpy(ghptr, hptr, len);
2018-12-13 23:37:37 +01:00
unlock_user(ghptr, gaddr, len);
2021-02-12 10:48:49 -08:00
} else {
ret = -TARGET_EFAULT;
2021-02-12 10:48:49 -08:00
}
return ret;
}
2007-11-14 10:17:35 +00:00
/* Return the length of a string in target memory or -TARGET_EFAULT if
access error */
2021-02-12 10:48:49 -08:00
ssize_t target_strlen(abi_ulong guest_addr1)
2007-11-14 10:17:35 +00:00
{
uint8_t *ptr;
abi_ulong guest_addr;
2021-02-12 10:48:49 -08:00
size_t max_len, len;
2007-11-14 10:17:35 +00:00
guest_addr = guest_addr1;
for(;;) {
max_len = TARGET_PAGE_SIZE - (guest_addr & ~TARGET_PAGE_MASK);
ptr = lock_user(VERIFY_READ, guest_addr, max_len, 1);
if (!ptr)
return -TARGET_EFAULT;
len = qemu_strnlen((const char *)ptr, max_len);
2007-11-14 10:17:35 +00:00
unlock_user(ptr, guest_addr, 0);
guest_addr += len;
/* we don't allow wrapping or integer overflow */
2021-02-12 10:48:49 -08:00
if (guest_addr == 0 || (guest_addr - guest_addr1) > 0x7fffffff) {
2007-11-14 10:17:35 +00:00
return -TARGET_EFAULT;
2021-02-12 10:48:49 -08:00
}
if (len != max_len) {
2007-11-14 10:17:35 +00:00
break;
2021-02-12 10:48:49 -08:00
}
2007-11-14 10:17:35 +00:00
}
return guest_addr - guest_addr1;
}