162306a36Sopenharmony_ci// SPDX-License-Identifier: GPL-2.0-or-later
262306a36Sopenharmony_ci/*
362306a36Sopenharmony_ci * Linux Kernel Dump Test Module for testing kernel crashes conditions:
462306a36Sopenharmony_ci * induces system failures at predefined crashpoints and under predefined
562306a36Sopenharmony_ci * operational conditions in order to evaluate the reliability of kernel
662306a36Sopenharmony_ci * sanity checking and crash dumps obtained using different dumping
762306a36Sopenharmony_ci * solutions.
862306a36Sopenharmony_ci *
962306a36Sopenharmony_ci * Copyright (C) IBM Corporation, 2006
1062306a36Sopenharmony_ci *
1162306a36Sopenharmony_ci * Author: Ankita Garg <ankita@in.ibm.com>
1262306a36Sopenharmony_ci *
1362306a36Sopenharmony_ci * It is adapted from the Linux Kernel Dump Test Tool by
1462306a36Sopenharmony_ci * Fernando Luis Vazquez Cao <http://lkdtt.sourceforge.net>
1562306a36Sopenharmony_ci *
1662306a36Sopenharmony_ci * Debugfs support added by Simon Kagstrom <simon.kagstrom@netinsight.net>
1762306a36Sopenharmony_ci *
1862306a36Sopenharmony_ci * See Documentation/fault-injection/provoke-crashes.rst for instructions
1962306a36Sopenharmony_ci */
2062306a36Sopenharmony_ci#include "lkdtm.h"
2162306a36Sopenharmony_ci#include <linux/fs.h>
2262306a36Sopenharmony_ci#include <linux/module.h>
2362306a36Sopenharmony_ci#include <linux/buffer_head.h>
2462306a36Sopenharmony_ci#include <linux/kprobes.h>
2562306a36Sopenharmony_ci#include <linux/list.h>
2662306a36Sopenharmony_ci#include <linux/init.h>
2762306a36Sopenharmony_ci#include <linux/slab.h>
2862306a36Sopenharmony_ci#include <linux/debugfs.h>
2962306a36Sopenharmony_ci#include <linux/utsname.h>
3062306a36Sopenharmony_ci
3162306a36Sopenharmony_ci#define DEFAULT_COUNT 10
3262306a36Sopenharmony_ci
3362306a36Sopenharmony_cistatic int lkdtm_debugfs_open(struct inode *inode, struct file *file);
3462306a36Sopenharmony_cistatic ssize_t lkdtm_debugfs_read(struct file *f, char __user *user_buf,
3562306a36Sopenharmony_ci		size_t count, loff_t *off);
3662306a36Sopenharmony_cistatic ssize_t direct_entry(struct file *f, const char __user *user_buf,
3762306a36Sopenharmony_ci			    size_t count, loff_t *off);
3862306a36Sopenharmony_ci
3962306a36Sopenharmony_ci#ifdef CONFIG_KPROBES
4062306a36Sopenharmony_cistatic int lkdtm_kprobe_handler(struct kprobe *kp, struct pt_regs *regs);
4162306a36Sopenharmony_cistatic ssize_t lkdtm_debugfs_entry(struct file *f,
4262306a36Sopenharmony_ci				   const char __user *user_buf,
4362306a36Sopenharmony_ci				   size_t count, loff_t *off);
4462306a36Sopenharmony_ci# define CRASHPOINT_KPROBE(_symbol)				\
4562306a36Sopenharmony_ci		.kprobe = {					\
4662306a36Sopenharmony_ci			.symbol_name = (_symbol),		\
4762306a36Sopenharmony_ci			.pre_handler = lkdtm_kprobe_handler,	\
4862306a36Sopenharmony_ci		},
4962306a36Sopenharmony_ci# define CRASHPOINT_WRITE(_symbol)				\
5062306a36Sopenharmony_ci		(_symbol) ? lkdtm_debugfs_entry : direct_entry
5162306a36Sopenharmony_ci#else
5262306a36Sopenharmony_ci# define CRASHPOINT_KPROBE(_symbol)
5362306a36Sopenharmony_ci# define CRASHPOINT_WRITE(_symbol)		direct_entry
5462306a36Sopenharmony_ci#endif
5562306a36Sopenharmony_ci
5662306a36Sopenharmony_ci/* Crash points */
5762306a36Sopenharmony_cistruct crashpoint {
5862306a36Sopenharmony_ci	const char *name;
5962306a36Sopenharmony_ci	const struct file_operations fops;
6062306a36Sopenharmony_ci	struct kprobe kprobe;
6162306a36Sopenharmony_ci};
6262306a36Sopenharmony_ci
6362306a36Sopenharmony_ci#define CRASHPOINT(_name, _symbol)				\
6462306a36Sopenharmony_ci	{							\
6562306a36Sopenharmony_ci		.name = _name,					\
6662306a36Sopenharmony_ci		.fops = {					\
6762306a36Sopenharmony_ci			.read	= lkdtm_debugfs_read,		\
6862306a36Sopenharmony_ci			.llseek	= generic_file_llseek,		\
6962306a36Sopenharmony_ci			.open	= lkdtm_debugfs_open,		\
7062306a36Sopenharmony_ci			.write	= CRASHPOINT_WRITE(_symbol)	\
7162306a36Sopenharmony_ci		},						\
7262306a36Sopenharmony_ci		CRASHPOINT_KPROBE(_symbol)			\
7362306a36Sopenharmony_ci	}
7462306a36Sopenharmony_ci
7562306a36Sopenharmony_ci/* Define the possible places where we can trigger a crash point. */
7662306a36Sopenharmony_cistatic struct crashpoint crashpoints[] = {
7762306a36Sopenharmony_ci	CRASHPOINT("DIRECT",		 NULL),
7862306a36Sopenharmony_ci#ifdef CONFIG_KPROBES
7962306a36Sopenharmony_ci	CRASHPOINT("INT_HARDWARE_ENTRY", "do_IRQ"),
8062306a36Sopenharmony_ci	CRASHPOINT("INT_HW_IRQ_EN",	 "handle_irq_event"),
8162306a36Sopenharmony_ci	CRASHPOINT("INT_TASKLET_ENTRY",	 "tasklet_action"),
8262306a36Sopenharmony_ci	CRASHPOINT("FS_SUBMIT_BH",		 "submit_bh"),
8362306a36Sopenharmony_ci	CRASHPOINT("MEM_SWAPOUT",	 "shrink_inactive_list"),
8462306a36Sopenharmony_ci	CRASHPOINT("TIMERADD",		 "hrtimer_start"),
8562306a36Sopenharmony_ci	CRASHPOINT("SCSI_QUEUE_RQ",	 "scsi_queue_rq"),
8662306a36Sopenharmony_ci#endif
8762306a36Sopenharmony_ci};
8862306a36Sopenharmony_ci
8962306a36Sopenharmony_ci/* List of possible types for crashes that can be triggered. */
9062306a36Sopenharmony_cistatic const struct crashtype_category *crashtype_categories[] = {
9162306a36Sopenharmony_ci	&bugs_crashtypes,
9262306a36Sopenharmony_ci	&heap_crashtypes,
9362306a36Sopenharmony_ci	&perms_crashtypes,
9462306a36Sopenharmony_ci	&refcount_crashtypes,
9562306a36Sopenharmony_ci	&usercopy_crashtypes,
9662306a36Sopenharmony_ci	&stackleak_crashtypes,
9762306a36Sopenharmony_ci	&cfi_crashtypes,
9862306a36Sopenharmony_ci	&fortify_crashtypes,
9962306a36Sopenharmony_ci#ifdef CONFIG_PPC_64S_HASH_MMU
10062306a36Sopenharmony_ci	&powerpc_crashtypes,
10162306a36Sopenharmony_ci#endif
10262306a36Sopenharmony_ci};
10362306a36Sopenharmony_ci
10462306a36Sopenharmony_ci/* Global kprobe entry and crashtype. */
10562306a36Sopenharmony_cistatic struct kprobe *lkdtm_kprobe;
10662306a36Sopenharmony_cistatic struct crashpoint *lkdtm_crashpoint;
10762306a36Sopenharmony_cistatic const struct crashtype *lkdtm_crashtype;
10862306a36Sopenharmony_ci
10962306a36Sopenharmony_ci/* Module parameters */
11062306a36Sopenharmony_cistatic int recur_count = -1;
11162306a36Sopenharmony_cimodule_param(recur_count, int, 0644);
11262306a36Sopenharmony_ciMODULE_PARM_DESC(recur_count, " Recursion level for the stack overflow test");
11362306a36Sopenharmony_ci
11462306a36Sopenharmony_cistatic char* cpoint_name;
11562306a36Sopenharmony_cimodule_param(cpoint_name, charp, 0444);
11662306a36Sopenharmony_ciMODULE_PARM_DESC(cpoint_name, " Crash Point, where kernel is to be crashed");
11762306a36Sopenharmony_ci
11862306a36Sopenharmony_cistatic char* cpoint_type;
11962306a36Sopenharmony_cimodule_param(cpoint_type, charp, 0444);
12062306a36Sopenharmony_ciMODULE_PARM_DESC(cpoint_type, " Crash Point Type, action to be taken on "\
12162306a36Sopenharmony_ci				"hitting the crash point");
12262306a36Sopenharmony_ci
12362306a36Sopenharmony_cistatic int cpoint_count = DEFAULT_COUNT;
12462306a36Sopenharmony_cimodule_param(cpoint_count, int, 0644);
12562306a36Sopenharmony_ciMODULE_PARM_DESC(cpoint_count, " Crash Point Count, number of times the "\
12662306a36Sopenharmony_ci				"crash point is to be hit to trigger action");
12762306a36Sopenharmony_ci
12862306a36Sopenharmony_ci/*
12962306a36Sopenharmony_ci * For test debug reporting when CI systems provide terse summaries.
13062306a36Sopenharmony_ci * TODO: Remove this once reasonable reporting exists in most CI systems:
13162306a36Sopenharmony_ci * https://lore.kernel.org/lkml/CAHk-=wiFvfkoFixTapvvyPMN9pq5G-+Dys2eSyBa1vzDGAO5+A@mail.gmail.com
13262306a36Sopenharmony_ci */
13362306a36Sopenharmony_cichar *lkdtm_kernel_info;
13462306a36Sopenharmony_ci
13562306a36Sopenharmony_ci/* Return the crashtype number or NULL if the name is invalid */
13662306a36Sopenharmony_cistatic const struct crashtype *find_crashtype(const char *name)
13762306a36Sopenharmony_ci{
13862306a36Sopenharmony_ci	int cat, idx;
13962306a36Sopenharmony_ci
14062306a36Sopenharmony_ci	for (cat = 0; cat < ARRAY_SIZE(crashtype_categories); cat++) {
14162306a36Sopenharmony_ci		for (idx = 0; idx < crashtype_categories[cat]->len; idx++) {
14262306a36Sopenharmony_ci			struct crashtype *crashtype;
14362306a36Sopenharmony_ci
14462306a36Sopenharmony_ci			crashtype = &crashtype_categories[cat]->crashtypes[idx];
14562306a36Sopenharmony_ci			if (!strcmp(name, crashtype->name))
14662306a36Sopenharmony_ci				return crashtype;
14762306a36Sopenharmony_ci		}
14862306a36Sopenharmony_ci	}
14962306a36Sopenharmony_ci
15062306a36Sopenharmony_ci	return NULL;
15162306a36Sopenharmony_ci}
15262306a36Sopenharmony_ci
15362306a36Sopenharmony_ci/*
15462306a36Sopenharmony_ci * This is forced noinline just so it distinctly shows up in the stackdump
15562306a36Sopenharmony_ci * which makes validation of expected lkdtm crashes easier.
15662306a36Sopenharmony_ci */
15762306a36Sopenharmony_cistatic noinline void lkdtm_do_action(const struct crashtype *crashtype)
15862306a36Sopenharmony_ci{
15962306a36Sopenharmony_ci	if (WARN_ON(!crashtype || !crashtype->func))
16062306a36Sopenharmony_ci		return;
16162306a36Sopenharmony_ci	crashtype->func();
16262306a36Sopenharmony_ci}
16362306a36Sopenharmony_ci
16462306a36Sopenharmony_cistatic int lkdtm_register_cpoint(struct crashpoint *crashpoint,
16562306a36Sopenharmony_ci				 const struct crashtype *crashtype)
16662306a36Sopenharmony_ci{
16762306a36Sopenharmony_ci	int ret;
16862306a36Sopenharmony_ci
16962306a36Sopenharmony_ci	/* If this doesn't have a symbol, just call immediately. */
17062306a36Sopenharmony_ci	if (!crashpoint->kprobe.symbol_name) {
17162306a36Sopenharmony_ci		lkdtm_do_action(crashtype);
17262306a36Sopenharmony_ci		return 0;
17362306a36Sopenharmony_ci	}
17462306a36Sopenharmony_ci
17562306a36Sopenharmony_ci	if (lkdtm_kprobe != NULL)
17662306a36Sopenharmony_ci		unregister_kprobe(lkdtm_kprobe);
17762306a36Sopenharmony_ci
17862306a36Sopenharmony_ci	lkdtm_crashpoint = crashpoint;
17962306a36Sopenharmony_ci	lkdtm_crashtype = crashtype;
18062306a36Sopenharmony_ci	lkdtm_kprobe = &crashpoint->kprobe;
18162306a36Sopenharmony_ci	ret = register_kprobe(lkdtm_kprobe);
18262306a36Sopenharmony_ci	if (ret < 0) {
18362306a36Sopenharmony_ci		pr_info("Couldn't register kprobe %s\n",
18462306a36Sopenharmony_ci			crashpoint->kprobe.symbol_name);
18562306a36Sopenharmony_ci		lkdtm_kprobe = NULL;
18662306a36Sopenharmony_ci		lkdtm_crashpoint = NULL;
18762306a36Sopenharmony_ci		lkdtm_crashtype = NULL;
18862306a36Sopenharmony_ci	}
18962306a36Sopenharmony_ci
19062306a36Sopenharmony_ci	return ret;
19162306a36Sopenharmony_ci}
19262306a36Sopenharmony_ci
19362306a36Sopenharmony_ci#ifdef CONFIG_KPROBES
19462306a36Sopenharmony_ci/* Global crash counter and spinlock. */
19562306a36Sopenharmony_cistatic int crash_count = DEFAULT_COUNT;
19662306a36Sopenharmony_cistatic DEFINE_SPINLOCK(crash_count_lock);
19762306a36Sopenharmony_ci
19862306a36Sopenharmony_ci/* Called by kprobe entry points. */
19962306a36Sopenharmony_cistatic int lkdtm_kprobe_handler(struct kprobe *kp, struct pt_regs *regs)
20062306a36Sopenharmony_ci{
20162306a36Sopenharmony_ci	unsigned long flags;
20262306a36Sopenharmony_ci	bool do_it = false;
20362306a36Sopenharmony_ci
20462306a36Sopenharmony_ci	if (WARN_ON(!lkdtm_crashpoint || !lkdtm_crashtype))
20562306a36Sopenharmony_ci		return 0;
20662306a36Sopenharmony_ci
20762306a36Sopenharmony_ci	spin_lock_irqsave(&crash_count_lock, flags);
20862306a36Sopenharmony_ci	crash_count--;
20962306a36Sopenharmony_ci	pr_info("Crash point %s of type %s hit, trigger in %d rounds\n",
21062306a36Sopenharmony_ci		lkdtm_crashpoint->name, lkdtm_crashtype->name, crash_count);
21162306a36Sopenharmony_ci
21262306a36Sopenharmony_ci	if (crash_count == 0) {
21362306a36Sopenharmony_ci		do_it = true;
21462306a36Sopenharmony_ci		crash_count = cpoint_count;
21562306a36Sopenharmony_ci	}
21662306a36Sopenharmony_ci	spin_unlock_irqrestore(&crash_count_lock, flags);
21762306a36Sopenharmony_ci
21862306a36Sopenharmony_ci	if (do_it)
21962306a36Sopenharmony_ci		lkdtm_do_action(lkdtm_crashtype);
22062306a36Sopenharmony_ci
22162306a36Sopenharmony_ci	return 0;
22262306a36Sopenharmony_ci}
22362306a36Sopenharmony_ci
22462306a36Sopenharmony_cistatic ssize_t lkdtm_debugfs_entry(struct file *f,
22562306a36Sopenharmony_ci				   const char __user *user_buf,
22662306a36Sopenharmony_ci				   size_t count, loff_t *off)
22762306a36Sopenharmony_ci{
22862306a36Sopenharmony_ci	struct crashpoint *crashpoint = file_inode(f)->i_private;
22962306a36Sopenharmony_ci	const struct crashtype *crashtype = NULL;
23062306a36Sopenharmony_ci	char *buf;
23162306a36Sopenharmony_ci	int err;
23262306a36Sopenharmony_ci
23362306a36Sopenharmony_ci	if (count >= PAGE_SIZE)
23462306a36Sopenharmony_ci		return -EINVAL;
23562306a36Sopenharmony_ci
23662306a36Sopenharmony_ci	buf = (char *)__get_free_page(GFP_KERNEL);
23762306a36Sopenharmony_ci	if (!buf)
23862306a36Sopenharmony_ci		return -ENOMEM;
23962306a36Sopenharmony_ci	if (copy_from_user(buf, user_buf, count)) {
24062306a36Sopenharmony_ci		free_page((unsigned long) buf);
24162306a36Sopenharmony_ci		return -EFAULT;
24262306a36Sopenharmony_ci	}
24362306a36Sopenharmony_ci	/* NULL-terminate and remove enter */
24462306a36Sopenharmony_ci	buf[count] = '\0';
24562306a36Sopenharmony_ci	strim(buf);
24662306a36Sopenharmony_ci
24762306a36Sopenharmony_ci	crashtype = find_crashtype(buf);
24862306a36Sopenharmony_ci	free_page((unsigned long)buf);
24962306a36Sopenharmony_ci
25062306a36Sopenharmony_ci	if (!crashtype)
25162306a36Sopenharmony_ci		return -EINVAL;
25262306a36Sopenharmony_ci
25362306a36Sopenharmony_ci	err = lkdtm_register_cpoint(crashpoint, crashtype);
25462306a36Sopenharmony_ci	if (err < 0)
25562306a36Sopenharmony_ci		return err;
25662306a36Sopenharmony_ci
25762306a36Sopenharmony_ci	*off += count;
25862306a36Sopenharmony_ci
25962306a36Sopenharmony_ci	return count;
26062306a36Sopenharmony_ci}
26162306a36Sopenharmony_ci#endif
26262306a36Sopenharmony_ci
26362306a36Sopenharmony_ci/* Generic read callback that just prints out the available crash types */
26462306a36Sopenharmony_cistatic ssize_t lkdtm_debugfs_read(struct file *f, char __user *user_buf,
26562306a36Sopenharmony_ci		size_t count, loff_t *off)
26662306a36Sopenharmony_ci{
26762306a36Sopenharmony_ci	int n, cat, idx;
26862306a36Sopenharmony_ci	ssize_t out;
26962306a36Sopenharmony_ci	char *buf;
27062306a36Sopenharmony_ci
27162306a36Sopenharmony_ci	buf = (char *)__get_free_page(GFP_KERNEL);
27262306a36Sopenharmony_ci	if (buf == NULL)
27362306a36Sopenharmony_ci		return -ENOMEM;
27462306a36Sopenharmony_ci
27562306a36Sopenharmony_ci	n = scnprintf(buf, PAGE_SIZE, "Available crash types:\n");
27662306a36Sopenharmony_ci
27762306a36Sopenharmony_ci	for (cat = 0; cat < ARRAY_SIZE(crashtype_categories); cat++) {
27862306a36Sopenharmony_ci		for (idx = 0; idx < crashtype_categories[cat]->len; idx++) {
27962306a36Sopenharmony_ci			struct crashtype *crashtype;
28062306a36Sopenharmony_ci
28162306a36Sopenharmony_ci			crashtype = &crashtype_categories[cat]->crashtypes[idx];
28262306a36Sopenharmony_ci			n += scnprintf(buf + n, PAGE_SIZE - n, "%s\n",
28362306a36Sopenharmony_ci				      crashtype->name);
28462306a36Sopenharmony_ci		}
28562306a36Sopenharmony_ci	}
28662306a36Sopenharmony_ci	buf[n] = '\0';
28762306a36Sopenharmony_ci
28862306a36Sopenharmony_ci	out = simple_read_from_buffer(user_buf, count, off,
28962306a36Sopenharmony_ci				      buf, n);
29062306a36Sopenharmony_ci	free_page((unsigned long) buf);
29162306a36Sopenharmony_ci
29262306a36Sopenharmony_ci	return out;
29362306a36Sopenharmony_ci}
29462306a36Sopenharmony_ci
29562306a36Sopenharmony_cistatic int lkdtm_debugfs_open(struct inode *inode, struct file *file)
29662306a36Sopenharmony_ci{
29762306a36Sopenharmony_ci	return 0;
29862306a36Sopenharmony_ci}
29962306a36Sopenharmony_ci
30062306a36Sopenharmony_ci/* Special entry to just crash directly. Available without KPROBEs */
30162306a36Sopenharmony_cistatic ssize_t direct_entry(struct file *f, const char __user *user_buf,
30262306a36Sopenharmony_ci		size_t count, loff_t *off)
30362306a36Sopenharmony_ci{
30462306a36Sopenharmony_ci	const struct crashtype *crashtype;
30562306a36Sopenharmony_ci	char *buf;
30662306a36Sopenharmony_ci
30762306a36Sopenharmony_ci	if (count >= PAGE_SIZE)
30862306a36Sopenharmony_ci		return -EINVAL;
30962306a36Sopenharmony_ci	if (count < 1)
31062306a36Sopenharmony_ci		return -EINVAL;
31162306a36Sopenharmony_ci
31262306a36Sopenharmony_ci	buf = (char *)__get_free_page(GFP_KERNEL);
31362306a36Sopenharmony_ci	if (!buf)
31462306a36Sopenharmony_ci		return -ENOMEM;
31562306a36Sopenharmony_ci	if (copy_from_user(buf, user_buf, count)) {
31662306a36Sopenharmony_ci		free_page((unsigned long) buf);
31762306a36Sopenharmony_ci		return -EFAULT;
31862306a36Sopenharmony_ci	}
31962306a36Sopenharmony_ci	/* NULL-terminate and remove enter */
32062306a36Sopenharmony_ci	buf[count] = '\0';
32162306a36Sopenharmony_ci	strim(buf);
32262306a36Sopenharmony_ci
32362306a36Sopenharmony_ci	crashtype = find_crashtype(buf);
32462306a36Sopenharmony_ci	free_page((unsigned long) buf);
32562306a36Sopenharmony_ci	if (!crashtype)
32662306a36Sopenharmony_ci		return -EINVAL;
32762306a36Sopenharmony_ci
32862306a36Sopenharmony_ci	pr_info("Performing direct entry %s\n", crashtype->name);
32962306a36Sopenharmony_ci	lkdtm_do_action(crashtype);
33062306a36Sopenharmony_ci	*off += count;
33162306a36Sopenharmony_ci
33262306a36Sopenharmony_ci	return count;
33362306a36Sopenharmony_ci}
33462306a36Sopenharmony_ci
33562306a36Sopenharmony_ci#ifndef MODULE
33662306a36Sopenharmony_ci/*
33762306a36Sopenharmony_ci * To avoid needing to export parse_args(), just don't use this code
33862306a36Sopenharmony_ci * when LKDTM is built as a module.
33962306a36Sopenharmony_ci */
34062306a36Sopenharmony_cistruct check_cmdline_args {
34162306a36Sopenharmony_ci	const char *param;
34262306a36Sopenharmony_ci	int value;
34362306a36Sopenharmony_ci};
34462306a36Sopenharmony_ci
34562306a36Sopenharmony_cistatic int lkdtm_parse_one(char *param, char *val,
34662306a36Sopenharmony_ci			   const char *unused, void *arg)
34762306a36Sopenharmony_ci{
34862306a36Sopenharmony_ci	struct check_cmdline_args *args = arg;
34962306a36Sopenharmony_ci
35062306a36Sopenharmony_ci	/* short circuit if we already found a value. */
35162306a36Sopenharmony_ci	if (args->value != -ESRCH)
35262306a36Sopenharmony_ci		return 0;
35362306a36Sopenharmony_ci	if (strncmp(param, args->param, strlen(args->param)) == 0) {
35462306a36Sopenharmony_ci		bool bool_result;
35562306a36Sopenharmony_ci		int ret;
35662306a36Sopenharmony_ci
35762306a36Sopenharmony_ci		ret = kstrtobool(val, &bool_result);
35862306a36Sopenharmony_ci		if (ret == 0)
35962306a36Sopenharmony_ci			args->value = bool_result;
36062306a36Sopenharmony_ci	}
36162306a36Sopenharmony_ci	return 0;
36262306a36Sopenharmony_ci}
36362306a36Sopenharmony_ci
36462306a36Sopenharmony_ciint lkdtm_check_bool_cmdline(const char *param)
36562306a36Sopenharmony_ci{
36662306a36Sopenharmony_ci	char *command_line;
36762306a36Sopenharmony_ci	struct check_cmdline_args args = {
36862306a36Sopenharmony_ci		.param = param,
36962306a36Sopenharmony_ci		.value = -ESRCH,
37062306a36Sopenharmony_ci	};
37162306a36Sopenharmony_ci
37262306a36Sopenharmony_ci	command_line = kstrdup(saved_command_line, GFP_KERNEL);
37362306a36Sopenharmony_ci	if (!command_line)
37462306a36Sopenharmony_ci		return -ENOMEM;
37562306a36Sopenharmony_ci
37662306a36Sopenharmony_ci	parse_args("Setting sysctl args", command_line,
37762306a36Sopenharmony_ci		   NULL, 0, -1, -1, &args, lkdtm_parse_one);
37862306a36Sopenharmony_ci
37962306a36Sopenharmony_ci	kfree(command_line);
38062306a36Sopenharmony_ci
38162306a36Sopenharmony_ci	return args.value;
38262306a36Sopenharmony_ci}
38362306a36Sopenharmony_ci#endif
38462306a36Sopenharmony_ci
38562306a36Sopenharmony_cistatic struct dentry *lkdtm_debugfs_root;
38662306a36Sopenharmony_ci
38762306a36Sopenharmony_cistatic int __init lkdtm_module_init(void)
38862306a36Sopenharmony_ci{
38962306a36Sopenharmony_ci	struct crashpoint *crashpoint = NULL;
39062306a36Sopenharmony_ci	const struct crashtype *crashtype = NULL;
39162306a36Sopenharmony_ci	int ret;
39262306a36Sopenharmony_ci	int i;
39362306a36Sopenharmony_ci
39462306a36Sopenharmony_ci	/* Neither or both of these need to be set */
39562306a36Sopenharmony_ci	if ((cpoint_type || cpoint_name) && !(cpoint_type && cpoint_name)) {
39662306a36Sopenharmony_ci		pr_err("Need both cpoint_type and cpoint_name or neither\n");
39762306a36Sopenharmony_ci		return -EINVAL;
39862306a36Sopenharmony_ci	}
39962306a36Sopenharmony_ci
40062306a36Sopenharmony_ci	if (cpoint_type) {
40162306a36Sopenharmony_ci		crashtype = find_crashtype(cpoint_type);
40262306a36Sopenharmony_ci		if (!crashtype) {
40362306a36Sopenharmony_ci			pr_err("Unknown crashtype '%s'\n", cpoint_type);
40462306a36Sopenharmony_ci			return -EINVAL;
40562306a36Sopenharmony_ci		}
40662306a36Sopenharmony_ci	}
40762306a36Sopenharmony_ci
40862306a36Sopenharmony_ci	if (cpoint_name) {
40962306a36Sopenharmony_ci		for (i = 0; i < ARRAY_SIZE(crashpoints); i++) {
41062306a36Sopenharmony_ci			if (!strcmp(cpoint_name, crashpoints[i].name))
41162306a36Sopenharmony_ci				crashpoint = &crashpoints[i];
41262306a36Sopenharmony_ci		}
41362306a36Sopenharmony_ci
41462306a36Sopenharmony_ci		/* Refuse unknown crashpoints. */
41562306a36Sopenharmony_ci		if (!crashpoint) {
41662306a36Sopenharmony_ci			pr_err("Invalid crashpoint %s\n", cpoint_name);
41762306a36Sopenharmony_ci			return -EINVAL;
41862306a36Sopenharmony_ci		}
41962306a36Sopenharmony_ci	}
42062306a36Sopenharmony_ci
42162306a36Sopenharmony_ci#ifdef CONFIG_KPROBES
42262306a36Sopenharmony_ci	/* Set crash count. */
42362306a36Sopenharmony_ci	crash_count = cpoint_count;
42462306a36Sopenharmony_ci#endif
42562306a36Sopenharmony_ci
42662306a36Sopenharmony_ci	/* Common initialization. */
42762306a36Sopenharmony_ci	lkdtm_kernel_info = kasprintf(GFP_KERNEL, "kernel (%s %s)",
42862306a36Sopenharmony_ci				      init_uts_ns.name.release,
42962306a36Sopenharmony_ci				      init_uts_ns.name.machine);
43062306a36Sopenharmony_ci
43162306a36Sopenharmony_ci	/* Handle test-specific initialization. */
43262306a36Sopenharmony_ci	lkdtm_bugs_init(&recur_count);
43362306a36Sopenharmony_ci	lkdtm_perms_init();
43462306a36Sopenharmony_ci	lkdtm_usercopy_init();
43562306a36Sopenharmony_ci	lkdtm_heap_init();
43662306a36Sopenharmony_ci
43762306a36Sopenharmony_ci	/* Register debugfs interface */
43862306a36Sopenharmony_ci	lkdtm_debugfs_root = debugfs_create_dir("provoke-crash", NULL);
43962306a36Sopenharmony_ci
44062306a36Sopenharmony_ci	/* Install debugfs trigger files. */
44162306a36Sopenharmony_ci	for (i = 0; i < ARRAY_SIZE(crashpoints); i++) {
44262306a36Sopenharmony_ci		struct crashpoint *cur = &crashpoints[i];
44362306a36Sopenharmony_ci
44462306a36Sopenharmony_ci		debugfs_create_file(cur->name, 0644, lkdtm_debugfs_root, cur,
44562306a36Sopenharmony_ci				    &cur->fops);
44662306a36Sopenharmony_ci	}
44762306a36Sopenharmony_ci
44862306a36Sopenharmony_ci	/* Install crashpoint if one was selected. */
44962306a36Sopenharmony_ci	if (crashpoint) {
45062306a36Sopenharmony_ci		ret = lkdtm_register_cpoint(crashpoint, crashtype);
45162306a36Sopenharmony_ci		if (ret < 0) {
45262306a36Sopenharmony_ci			pr_info("Invalid crashpoint %s\n", crashpoint->name);
45362306a36Sopenharmony_ci			goto out_err;
45462306a36Sopenharmony_ci		}
45562306a36Sopenharmony_ci		pr_info("Crash point %s of type %s registered\n",
45662306a36Sopenharmony_ci			crashpoint->name, cpoint_type);
45762306a36Sopenharmony_ci	} else {
45862306a36Sopenharmony_ci		pr_info("No crash points registered, enable through debugfs\n");
45962306a36Sopenharmony_ci	}
46062306a36Sopenharmony_ci
46162306a36Sopenharmony_ci	return 0;
46262306a36Sopenharmony_ci
46362306a36Sopenharmony_ciout_err:
46462306a36Sopenharmony_ci	debugfs_remove_recursive(lkdtm_debugfs_root);
46562306a36Sopenharmony_ci	return ret;
46662306a36Sopenharmony_ci}
46762306a36Sopenharmony_ci
46862306a36Sopenharmony_cistatic void __exit lkdtm_module_exit(void)
46962306a36Sopenharmony_ci{
47062306a36Sopenharmony_ci	debugfs_remove_recursive(lkdtm_debugfs_root);
47162306a36Sopenharmony_ci
47262306a36Sopenharmony_ci	/* Handle test-specific clean-up. */
47362306a36Sopenharmony_ci	lkdtm_heap_exit();
47462306a36Sopenharmony_ci	lkdtm_usercopy_exit();
47562306a36Sopenharmony_ci
47662306a36Sopenharmony_ci	if (lkdtm_kprobe != NULL)
47762306a36Sopenharmony_ci		unregister_kprobe(lkdtm_kprobe);
47862306a36Sopenharmony_ci
47962306a36Sopenharmony_ci	kfree(lkdtm_kernel_info);
48062306a36Sopenharmony_ci
48162306a36Sopenharmony_ci	pr_info("Crash point unregistered\n");
48262306a36Sopenharmony_ci}
48362306a36Sopenharmony_ci
48462306a36Sopenharmony_cimodule_init(lkdtm_module_init);
48562306a36Sopenharmony_cimodule_exit(lkdtm_module_exit);
48662306a36Sopenharmony_ci
48762306a36Sopenharmony_ciMODULE_LICENSE("GPL");
48862306a36Sopenharmony_ciMODULE_DESCRIPTION("Kernel crash testing module");
489