Skip to content
  • Vincenzo Frascino's avatar
    arm64: mte: Enable TCO in functions that can read beyond buffer limits · 68c88ef1
    Vincenzo Frascino authored
    
    
    load_unaligned_zeropad() and __get/put_kernel_nofault() functions can
    read passed some buffer limits which may include some MTE granule with a
    different tag.
    
    When MTE async mode is enable, the load operation crosses the boundaries
    and the next granule has a different tag the PE sets the TFSR_EL1.TF1 bit
    as if an asynchronous tag fault is happened.
    
    Enable Tag Check Override (TCO) in these functions  before the load and
    disable it afterwards to prevent this to happen.
    
    Note: The same condition can be hit in MTE sync mode but we deal with it
    through the exception handling.
    In the current implementation, mte_async_mode flag is set only at boot
    time but in future kasan might acquire some runtime features that
    that change the mode dynamically, hence we disable it when sync mode is
    selected for future proof.
    
    Cc: Catalin Marinas <catalin.marinas@arm.com>
    Cc: Will Deacon <will@kernel.org>
    Reported-by: default avatarBranislav Rankov <Branislav.Rankov@arm.com>
    Tested-by: default avatarBranislav Rankov <Branislav.Rankov@arm.com>
    Signed-off-by: default avatarVincenzo Frascino <vincenzo.frascino@arm.com>
    68c88ef1