From patchwork Thu Mar 20 15:26:11 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Jonathan Cavitt X-Patchwork-Id: 14024065 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from gabe.freedesktop.org (gabe.freedesktop.org [131.252.210.177]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.lore.kernel.org (Postfix) with ESMTPS id 0720FC36002 for ; Thu, 20 Mar 2025 15:26:20 +0000 (UTC) Received: from gabe.freedesktop.org (localhost [127.0.0.1]) by gabe.freedesktop.org (Postfix) with ESMTP id 7BF5810E0E5; Thu, 20 Mar 2025 15:26:18 +0000 (UTC) Authentication-Results: gabe.freedesktop.org; dkim=pass (2048-bit key; unprotected) header.d=intel.com header.i=@intel.com header.b="I9jfQe+3"; dkim-atps=neutral Received: from mgamail.intel.com (mgamail.intel.com [192.198.163.14]) by gabe.freedesktop.org (Postfix) with ESMTPS id 7232310E0E5; Thu, 20 Mar 2025 15:26:17 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=intel.com; i=@intel.com; q=dns/txt; s=Intel; t=1742484377; x=1774020377; h=from:to:cc:subject:date:message-id:in-reply-to: references:mime-version:content-transfer-encoding; bh=hl8+lM11PRLmxBjMwYzmp398zmvgVeUwbwpOM7K9t/8=; b=I9jfQe+3GyIlGqT+u7pLyqh399GbUX2yuBQz2YELx1t/vSg06NvbakVd uWoIcKbByuotT230zjboIjoWpAgg9oF7LGEHf93cHkbR0YtdL7zMW/XHH ewhJFJ1QaLB7I1T5JxQDvhq7BEtGlhOT9XJKHYKaMdLSytlkbZQkAgAtc qOj71Hrt6ZSqkfq9OiF3x+bRfPKTTkUf0nP9+0gUvDvJNwDRJPnBuSXx4 xdrf5w6arAZXUnLSVrWKxvocNt81PujjGCc6FfSgRgwwzqA/3CVn55Fb3 0Yo4UqH8bkYuGkW+1wTiEvKU14yzQQRu2Q3uYKGql4RqkqzD7DDeXLXwa g==; X-CSE-ConnectionGUID: BQ0w10X3SOWfKZzGn4g7WQ== X-CSE-MsgGUID: Xu/7n8eqR3iwvjF11+WasQ== X-IronPort-AV: E=McAfee;i="6700,10204,11379"; a="43913042" X-IronPort-AV: E=Sophos;i="6.14,262,1736841600"; d="scan'208";a="43913042" Received: from fmviesa007.fm.intel.com ([10.60.135.147]) by fmvoesa108.fm.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 20 Mar 2025 08:26:17 -0700 X-CSE-ConnectionGUID: pOeKlc6wQmabW7ybPFOmTQ== X-CSE-MsgGUID: l/DH0gXZQZa1lacJKyRwng== X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="6.14,262,1736841600"; d="scan'208";a="123134260" Received: from dut4419lnl.fm.intel.com ([10.105.10.61]) by fmviesa007-auth.fm.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 20 Mar 2025 08:26:17 -0700 From: Jonathan Cavitt To: intel-xe@lists.freedesktop.org Cc: saurabhg.gupta@intel.com, alex.zuo@intel.com, jonathan.cavitt@intel.com, joonas.lahtinen@linux.intel.com, matthew.brost@intel.com, jianxun.zhang@intel.com, shuicheng.lin@intel.com, dri-devel@lists.freedesktop.org, Michal.Wajdeczko@intel.com, michal.mrozek@intel.com Subject: [PATCH v10 1/5] drm/xe/xe_gt_pagefault: Disallow writes to read-only VMAs Date: Thu, 20 Mar 2025 15:26:11 +0000 Message-ID: <20250320152616.74587-2-jonathan.cavitt@intel.com> X-Mailer: git-send-email 2.43.0 In-Reply-To: <20250320152616.74587-1-jonathan.cavitt@intel.com> References: <20250320152616.74587-1-jonathan.cavitt@intel.com> MIME-Version: 1.0 X-BeenThere: dri-devel@lists.freedesktop.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: Direct Rendering Infrastructure - Development List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: dri-devel-bounces@lists.freedesktop.org Sender: "dri-devel" The page fault handler should reject write/atomic access to read only VMAs. Add code to handle this in handle_pagefault after the VMA lookup. Fixes: 3d420e9fa848 ("drm/xe: Rework GPU page fault handling") Signed-off-by: Jonathan Cavitt Suggested-by: Matthew Brost --- drivers/gpu/drm/xe/xe_gt_pagefault.c | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/drivers/gpu/drm/xe/xe_gt_pagefault.c b/drivers/gpu/drm/xe/xe_gt_pagefault.c index 9fa11e837dd1..3240890aac07 100644 --- a/drivers/gpu/drm/xe/xe_gt_pagefault.c +++ b/drivers/gpu/drm/xe/xe_gt_pagefault.c @@ -237,6 +237,11 @@ static int handle_pagefault(struct xe_gt *gt, struct pagefault *pf) goto unlock_vm; } + if (xe_vma_read_only(vma) && pf->access_type != ACCESS_TYPE_READ) { + err = -EPERM; + goto unlock_vm; + } + atomic = access_is_atomic(pf->access_type); if (xe_vma_is_cpu_addr_mirror(vma))