mirror of
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
synced 2026-08-09 06:14:34 +02:00
Allow the same userspace thread to simultaneously collect normal coverage in syscall context (KCOV_ENABLE) and remote coverage of asynchronous work created by the thread (KCOV_REMOTE_ENABLE). With this, remote KCOV coverage becomes useful for generic fuzzing and not just fuzzing of specific data injection interfaces. This requires that the task_struct::kcov_* fields are separated into ones that are used by the task that generates coverage, and ones that are used by the task that requested remote coverage. To split this up: - Split task_struct::kcov into kcov and kcov_remote. kcov_task_exit() now has to clean up both separately. - Only use task_struct::kcov_mode on the task that generates coverage. - Only reset task_struct::kcov_handle on the task that requested remote coverage. After this change, fields used by the task that generates coverage are: - kcov_mode - kcov_size - kcov_area - kcov - kcov_sequence - kcov_softirq Fields used by the task that requested remote coverage are: - kcov_remote - kcov_handle [jannh@google.com: remove unused constant KCOV_MODE_REMOTE, per Dmitry] Link: https://lore.kernel.org/20260515-kcov-simultaneous-remote-v2-1-56fde1cfa509@google.com [jannh@google.com: update documentation on remote coverage collection] Link: https://lore.kernel.org/20260519-kcov-docs-v1-1-5bb22f4cb20c@google.com [jannh@google.com: move and reword sentence on simultaneous normal/remote collection Link: https://lore.kernel.org/20260520-kcov-docs-v2-1-819f78778763@google.com Link: https://lore.kernel.org/20260505-kcov-simultaneous-remote-v1-1-a670ba7cefd2@google.com Signed-off-by: Jann Horn <jannh@google.com> Reviewed-by: Dmitry Vyukov <dvyukov@google.com> Cc: Alexander Potapenko <glider@google.com> Cc: Andrey Konovalov <andreyknvl@gmail.com> Cc: Marco Elver <elver@google.com> Signed-off-by: Andrew Morton <akpm@linux-foundation.org>
111 lines
3.2 KiB
C
111 lines
3.2 KiB
C
/* SPDX-License-Identifier: GPL-2.0 */
|
|
#ifndef _LINUX_KCOV_H
|
|
#define _LINUX_KCOV_H
|
|
|
|
#include <linux/sched.h>
|
|
#include <uapi/linux/kcov.h>
|
|
|
|
struct task_struct;
|
|
|
|
#ifdef CONFIG_KCOV
|
|
|
|
enum kcov_mode {
|
|
/* Coverage collection is not enabled yet. */
|
|
KCOV_MODE_DISABLED = 0,
|
|
/* KCOV was initialized, but tracing mode hasn't been chosen yet. */
|
|
KCOV_MODE_INIT = 1,
|
|
/*
|
|
* Tracing coverage collection mode.
|
|
* Covered PCs are collected in a per-task buffer.
|
|
*/
|
|
KCOV_MODE_TRACE_PC = 2,
|
|
/* Collecting comparison operands mode. */
|
|
KCOV_MODE_TRACE_CMP = 3,
|
|
};
|
|
|
|
#define KCOV_IN_CTXSW (1 << 30)
|
|
|
|
void kcov_task_init(struct task_struct *t);
|
|
void kcov_task_exit(struct task_struct *t);
|
|
|
|
#define kcov_prepare_switch(t) \
|
|
do { \
|
|
(t)->kcov_mode |= KCOV_IN_CTXSW; \
|
|
} while (0)
|
|
|
|
#define kcov_finish_switch(t) \
|
|
do { \
|
|
(t)->kcov_mode &= ~KCOV_IN_CTXSW; \
|
|
} while (0)
|
|
|
|
/* See Documentation/dev-tools/kcov.rst for usage details. */
|
|
void kcov_remote_start(u64 handle);
|
|
void kcov_remote_stop(void);
|
|
struct kcov_common_handle_id kcov_common_handle(void);
|
|
|
|
static inline void kcov_remote_start_common(struct kcov_common_handle_id id)
|
|
{
|
|
kcov_remote_start(kcov_remote_handle(KCOV_SUBSYSTEM_COMMON, id.val));
|
|
}
|
|
|
|
static inline void kcov_remote_start_usb(u64 id)
|
|
{
|
|
kcov_remote_start(kcov_remote_handle(KCOV_SUBSYSTEM_USB, id));
|
|
}
|
|
|
|
/*
|
|
* The softirq flavor of kcov_remote_*() functions is introduced as a temporary
|
|
* work around for kcov's lack of nested remote coverage sections support in
|
|
* task context. Adding support for nested sections is tracked in:
|
|
* https://bugzilla.kernel.org/show_bug.cgi?id=210337
|
|
*/
|
|
|
|
static inline void kcov_remote_start_usb_softirq(u64 id)
|
|
{
|
|
if (in_serving_softirq() && !in_hardirq())
|
|
kcov_remote_start_usb(id);
|
|
}
|
|
|
|
static inline void kcov_remote_stop_softirq(void)
|
|
{
|
|
if (in_serving_softirq() && !in_hardirq())
|
|
kcov_remote_stop();
|
|
}
|
|
|
|
#ifdef CONFIG_64BIT
|
|
typedef unsigned long kcov_u64;
|
|
#else
|
|
typedef unsigned long long kcov_u64;
|
|
#endif
|
|
|
|
void __sanitizer_cov_trace_pc(void);
|
|
void __sanitizer_cov_trace_cmp1(u8 arg1, u8 arg2);
|
|
void __sanitizer_cov_trace_cmp2(u16 arg1, u16 arg2);
|
|
void __sanitizer_cov_trace_cmp4(u32 arg1, u32 arg2);
|
|
void __sanitizer_cov_trace_cmp8(kcov_u64 arg1, kcov_u64 arg2);
|
|
void __sanitizer_cov_trace_const_cmp1(u8 arg1, u8 arg2);
|
|
void __sanitizer_cov_trace_const_cmp2(u16 arg1, u16 arg2);
|
|
void __sanitizer_cov_trace_const_cmp4(u32 arg1, u32 arg2);
|
|
void __sanitizer_cov_trace_const_cmp8(kcov_u64 arg1, kcov_u64 arg2);
|
|
void __sanitizer_cov_trace_switch(kcov_u64 val, void *cases);
|
|
|
|
#else
|
|
|
|
static inline void kcov_task_init(struct task_struct *t) {}
|
|
static inline void kcov_task_exit(struct task_struct *t) {}
|
|
static inline void kcov_prepare_switch(struct task_struct *t) {}
|
|
static inline void kcov_finish_switch(struct task_struct *t) {}
|
|
static inline void kcov_remote_start(u64 handle) {}
|
|
static inline void kcov_remote_stop(void) {}
|
|
static inline struct kcov_common_handle_id kcov_common_handle(void)
|
|
{
|
|
return (struct kcov_common_handle_id){};
|
|
}
|
|
static inline void kcov_remote_start_common(struct kcov_common_handle_id id) {}
|
|
static inline void kcov_remote_start_usb(u64 id) {}
|
|
static inline void kcov_remote_start_usb_softirq(u64 id) {}
|
|
static inline void kcov_remote_stop_softirq(void) {}
|
|
|
|
#endif /* CONFIG_KCOV */
|
|
#endif /* _LINUX_KCOV_H */
|