Lines Matching refs:vmf
107 static vm_fault_t do_fault(struct vm_fault *vmf);
108 static vm_fault_t do_anonymous_page(struct vm_fault *vmf);
109 static bool vmf_pte_changed(struct vm_fault *vmf);
115 static __always_inline bool vmf_orig_pte_uffd_wp(struct vm_fault *vmf) in vmf_orig_pte_uffd_wp() argument
117 if (!userfaultfd_wp(vmf->vma)) in vmf_orig_pte_uffd_wp()
119 if (!(vmf->flags & FAULT_FLAG_ORIG_PTE_VALID)) in vmf_orig_pte_uffd_wp()
122 return pte_marker_uffd_wp(vmf->orig_pte); in vmf_orig_pte_uffd_wp()
3012 static inline int pte_unmap_same(struct vm_fault *vmf) in pte_unmap_same() argument
3017 spin_lock(vmf->ptl); in pte_unmap_same()
3018 same = pte_same(ptep_get(vmf->pte), vmf->orig_pte); in pte_unmap_same()
3019 spin_unlock(vmf->ptl); in pte_unmap_same()
3022 pte_unmap(vmf->pte); in pte_unmap_same()
3023 vmf->pte = NULL; in pte_unmap_same()
3034 struct vm_fault *vmf) in __wp_page_copy_user() argument
3039 struct vm_area_struct *vma = vmf->vma; in __wp_page_copy_user()
3041 unsigned long addr = vmf->address; in __wp_page_copy_user()
3063 vmf->pte = NULL; in __wp_page_copy_user()
3064 if (!arch_has_hw_pte_young() && !pte_young(vmf->orig_pte)) { in __wp_page_copy_user()
3067 vmf->pte = pte_offset_map_lock(mm, vmf->pmd, addr, &vmf->ptl); in __wp_page_copy_user()
3068 if (unlikely(!vmf->pte || !pte_same(ptep_get(vmf->pte), vmf->orig_pte))) { in __wp_page_copy_user()
3073 if (vmf->pte) in __wp_page_copy_user()
3074 update_mmu_tlb(vma, addr, vmf->pte); in __wp_page_copy_user()
3079 entry = pte_mkyoung(vmf->orig_pte); in __wp_page_copy_user()
3080 if (ptep_set_access_flags(vma, addr, vmf->pte, entry, 0)) in __wp_page_copy_user()
3081 update_mmu_cache_range(vmf, vma, addr, vmf->pte, 1); in __wp_page_copy_user()
3091 if (vmf->pte) in __wp_page_copy_user()
3095 vmf->pte = pte_offset_map_lock(mm, vmf->pmd, addr, &vmf->ptl); in __wp_page_copy_user()
3096 if (unlikely(!vmf->pte || !pte_same(ptep_get(vmf->pte), vmf->orig_pte))) { in __wp_page_copy_user()
3098 if (vmf->pte) in __wp_page_copy_user()
3099 update_mmu_tlb(vma, addr, vmf->pte); in __wp_page_copy_user()
3122 if (vmf->pte) in __wp_page_copy_user()
3123 pte_unmap_unlock(vmf->pte, vmf->ptl); in __wp_page_copy_user()
3151 static vm_fault_t do_page_mkwrite(struct vm_fault *vmf, struct folio *folio) in do_page_mkwrite() argument
3154 unsigned int old_flags = vmf->flags; in do_page_mkwrite()
3156 vmf->flags = FAULT_FLAG_WRITE|FAULT_FLAG_MKWRITE; in do_page_mkwrite()
3158 if (vmf->vma->vm_file && in do_page_mkwrite()
3159 IS_SWAPFILE(vmf->vma->vm_file->f_mapping->host)) in do_page_mkwrite()
3162 ret = vmf->vma->vm_ops->page_mkwrite(vmf); in do_page_mkwrite()
3164 vmf->flags = old_flags; in do_page_mkwrite()
3184 static vm_fault_t fault_dirty_shared_page(struct vm_fault *vmf) in fault_dirty_shared_page() argument
3186 struct vm_area_struct *vma = vmf->vma; in fault_dirty_shared_page()
3188 struct folio *folio = page_folio(vmf->page); in fault_dirty_shared_page()
3218 fpin = maybe_unlock_mmap_for_io(vmf, NULL); in fault_dirty_shared_page()
3237 static inline void wp_page_reuse(struct vm_fault *vmf, struct folio *folio) in wp_page_reuse() argument
3238 __releases(vmf->ptl) in wp_page_reuse()
3240 struct vm_area_struct *vma = vmf->vma; in wp_page_reuse()
3243 VM_BUG_ON(!(vmf->flags & FAULT_FLAG_WRITE)); in wp_page_reuse()
3244 VM_WARN_ON(is_zero_pfn(pte_pfn(vmf->orig_pte))); in wp_page_reuse()
3248 !PageAnonExclusive(vmf->page)); in wp_page_reuse()
3257 flush_cache_page(vma, vmf->address, pte_pfn(vmf->orig_pte)); in wp_page_reuse()
3258 entry = pte_mkyoung(vmf->orig_pte); in wp_page_reuse()
3260 if (ptep_set_access_flags(vma, vmf->address, vmf->pte, entry, 1)) in wp_page_reuse()
3261 update_mmu_cache_range(vmf, vma, vmf->address, vmf->pte, 1); in wp_page_reuse()
3262 pte_unmap_unlock(vmf->pte, vmf->ptl); in wp_page_reuse()
3271 static inline vm_fault_t vmf_can_call_fault(const struct vm_fault *vmf) in vmf_can_call_fault() argument
3273 struct vm_area_struct *vma = vmf->vma; in vmf_can_call_fault()
3275 if (vma->vm_ops->map_pages || !(vmf->flags & FAULT_FLAG_VMA_LOCK)) in vmf_can_call_fault()
3296 vm_fault_t __vmf_anon_prepare(struct vm_fault *vmf) in __vmf_anon_prepare() argument
3298 struct vm_area_struct *vma = vmf->vma; in __vmf_anon_prepare()
3303 if (vmf->flags & FAULT_FLAG_VMA_LOCK) { in __vmf_anon_prepare()
3309 if (vmf->flags & FAULT_FLAG_VMA_LOCK) in __vmf_anon_prepare()
3331 static vm_fault_t wp_page_copy(struct vm_fault *vmf) in wp_page_copy() argument
3333 const bool unshare = vmf->flags & FAULT_FLAG_UNSHARE; in wp_page_copy()
3334 struct vm_area_struct *vma = vmf->vma; in wp_page_copy()
3346 if (vmf->page) in wp_page_copy()
3347 old_folio = page_folio(vmf->page); in wp_page_copy()
3348 ret = vmf_anon_prepare(vmf); in wp_page_copy()
3352 pfn_is_zero = is_zero_pfn(pte_pfn(vmf->orig_pte)); in wp_page_copy()
3353 new_folio = folio_prealloc(mm, vma, vmf->address, pfn_is_zero); in wp_page_copy()
3360 err = __wp_page_copy_user(&new_folio->page, vmf->page, vmf); in wp_page_copy()
3376 kmsan_copy_page_meta(&new_folio->page, vmf->page); in wp_page_copy()
3382 vmf->address & PAGE_MASK, in wp_page_copy()
3383 (vmf->address & PAGE_MASK) + PAGE_SIZE); in wp_page_copy()
3389 vmf->pte = pte_offset_map_lock(mm, vmf->pmd, vmf->address, &vmf->ptl); in wp_page_copy()
3390 if (likely(vmf->pte && pte_same(ptep_get(vmf->pte), vmf->orig_pte))) { in wp_page_copy()
3397 ksm_might_unmap_zero_page(mm, vmf->orig_pte); in wp_page_copy()
3400 flush_cache_page(vma, vmf->address, pte_pfn(vmf->orig_pte)); in wp_page_copy()
3404 if (pte_soft_dirty(vmf->orig_pte)) in wp_page_copy()
3406 if (pte_uffd_wp(vmf->orig_pte)) in wp_page_copy()
3419 ptep_clear_flush(vma, vmf->address, vmf->pte); in wp_page_copy()
3420 folio_add_new_anon_rmap(new_folio, vma, vmf->address, RMAP_EXCLUSIVE); in wp_page_copy()
3423 set_pte_at(mm, vmf->address, vmf->pte, entry); in wp_page_copy()
3424 update_mmu_cache_range(vmf, vma, vmf->address, vmf->pte, 1); in wp_page_copy()
3448 folio_remove_rmap_pte(old_folio, vmf->page, vma); in wp_page_copy()
3454 pte_unmap_unlock(vmf->pte, vmf->ptl); in wp_page_copy()
3455 } else if (vmf->pte) { in wp_page_copy()
3456 update_mmu_tlb(vma, vmf->address, vmf->pte); in wp_page_copy()
3457 pte_unmap_unlock(vmf->pte, vmf->ptl); in wp_page_copy()
3499 static vm_fault_t finish_mkwrite_fault(struct vm_fault *vmf, struct folio *folio) in finish_mkwrite_fault() argument
3501 WARN_ON_ONCE(!(vmf->vma->vm_flags & VM_SHARED)); in finish_mkwrite_fault()
3502 vmf->pte = pte_offset_map_lock(vmf->vma->vm_mm, vmf->pmd, vmf->address, in finish_mkwrite_fault()
3503 &vmf->ptl); in finish_mkwrite_fault()
3504 if (!vmf->pte) in finish_mkwrite_fault()
3510 if (!pte_same(ptep_get(vmf->pte), vmf->orig_pte)) { in finish_mkwrite_fault()
3511 update_mmu_tlb(vmf->vma, vmf->address, vmf->pte); in finish_mkwrite_fault()
3512 pte_unmap_unlock(vmf->pte, vmf->ptl); in finish_mkwrite_fault()
3515 wp_page_reuse(vmf, folio); in finish_mkwrite_fault()
3523 static vm_fault_t wp_pfn_shared(struct vm_fault *vmf) in wp_pfn_shared() argument
3525 struct vm_area_struct *vma = vmf->vma; in wp_pfn_shared()
3530 pte_unmap_unlock(vmf->pte, vmf->ptl); in wp_pfn_shared()
3531 ret = vmf_can_call_fault(vmf); in wp_pfn_shared()
3535 vmf->flags |= FAULT_FLAG_MKWRITE; in wp_pfn_shared()
3536 ret = vma->vm_ops->pfn_mkwrite(vmf); in wp_pfn_shared()
3539 return finish_mkwrite_fault(vmf, NULL); in wp_pfn_shared()
3541 wp_page_reuse(vmf, NULL); in wp_pfn_shared()
3545 static vm_fault_t wp_page_shared(struct vm_fault *vmf, struct folio *folio) in wp_page_shared() argument
3546 __releases(vmf->ptl) in wp_page_shared()
3548 struct vm_area_struct *vma = vmf->vma; in wp_page_shared()
3556 pte_unmap_unlock(vmf->pte, vmf->ptl); in wp_page_shared()
3557 tmp = vmf_can_call_fault(vmf); in wp_page_shared()
3563 tmp = do_page_mkwrite(vmf, folio); in wp_page_shared()
3569 tmp = finish_mkwrite_fault(vmf, folio); in wp_page_shared()
3576 wp_page_reuse(vmf, folio); in wp_page_shared()
3579 ret |= fault_dirty_shared_page(vmf); in wp_page_shared()
3655 static vm_fault_t do_wp_page(struct vm_fault *vmf) in do_wp_page() argument
3656 __releases(vmf->ptl) in do_wp_page()
3658 const bool unshare = vmf->flags & FAULT_FLAG_UNSHARE; in do_wp_page()
3659 struct vm_area_struct *vma = vmf->vma; in do_wp_page()
3664 if (userfaultfd_pte_wp(vma, ptep_get(vmf->pte))) { in do_wp_page()
3666 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_wp_page()
3667 return handle_userfault(vmf, VM_UFFD_WP); in do_wp_page()
3675 pte = pte_clear_uffd_wp(ptep_get(vmf->pte)); in do_wp_page()
3677 set_pte_at(vma->vm_mm, vmf->address, vmf->pte, pte); in do_wp_page()
3682 vmf->orig_pte = pte; in do_wp_page()
3689 if (unlikely(userfaultfd_wp(vmf->vma) && in do_wp_page()
3690 mm_tlb_flush_pending(vmf->vma->vm_mm))) in do_wp_page()
3691 flush_tlb_page(vmf->vma, vmf->address); in do_wp_page()
3694 vmf->page = vm_normal_page(vma, vmf->address, vmf->orig_pte); in do_wp_page()
3696 if (vmf->page) in do_wp_page()
3697 folio = page_folio(vmf->page); in do_wp_page()
3711 if (!vmf->page) in do_wp_page()
3712 return wp_pfn_shared(vmf); in do_wp_page()
3713 return wp_page_shared(vmf, folio); in do_wp_page()
3724 (PageAnonExclusive(vmf->page) || wp_can_reuse_anon_folio(folio, vma))) { in do_wp_page()
3725 if (!PageAnonExclusive(vmf->page)) in do_wp_page()
3726 SetPageAnonExclusive(vmf->page); in do_wp_page()
3728 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_wp_page()
3731 wp_page_reuse(vmf, folio); in do_wp_page()
3740 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_wp_page()
3745 return wp_page_copy(vmf); in do_wp_page()
3879 static vm_fault_t remove_device_exclusive_entry(struct vm_fault *vmf) in remove_device_exclusive_entry() argument
3881 struct folio *folio = page_folio(vmf->page); in remove_device_exclusive_entry()
3882 struct vm_area_struct *vma = vmf->vma; in remove_device_exclusive_entry()
3897 ret = folio_lock_or_retry(folio, vmf); in remove_device_exclusive_entry()
3903 vma->vm_mm, vmf->address & PAGE_MASK, in remove_device_exclusive_entry()
3904 (vmf->address & PAGE_MASK) + PAGE_SIZE, NULL); in remove_device_exclusive_entry()
3907 vmf->pte = pte_offset_map_lock(vma->vm_mm, vmf->pmd, vmf->address, in remove_device_exclusive_entry()
3908 &vmf->ptl); in remove_device_exclusive_entry()
3909 if (likely(vmf->pte && pte_same(ptep_get(vmf->pte), vmf->orig_pte))) in remove_device_exclusive_entry()
3910 restore_exclusive_pte(vma, vmf->page, vmf->address, vmf->pte); in remove_device_exclusive_entry()
3912 if (vmf->pte) in remove_device_exclusive_entry()
3913 pte_unmap_unlock(vmf->pte, vmf->ptl); in remove_device_exclusive_entry()
3940 static vm_fault_t pte_marker_clear(struct vm_fault *vmf) in pte_marker_clear() argument
3942 vmf->pte = pte_offset_map_lock(vmf->vma->vm_mm, vmf->pmd, in pte_marker_clear()
3943 vmf->address, &vmf->ptl); in pte_marker_clear()
3944 if (!vmf->pte) in pte_marker_clear()
3954 if (pte_same(vmf->orig_pte, ptep_get(vmf->pte))) in pte_marker_clear()
3955 pte_clear(vmf->vma->vm_mm, vmf->address, vmf->pte); in pte_marker_clear()
3956 pte_unmap_unlock(vmf->pte, vmf->ptl); in pte_marker_clear()
3960 static vm_fault_t do_pte_missing(struct vm_fault *vmf) in do_pte_missing() argument
3962 if (vma_is_anonymous(vmf->vma)) in do_pte_missing()
3963 return do_anonymous_page(vmf); in do_pte_missing()
3965 return do_fault(vmf); in do_pte_missing()
3972 static vm_fault_t pte_marker_handle_uffd_wp(struct vm_fault *vmf) in pte_marker_handle_uffd_wp() argument
3978 if (unlikely(!userfaultfd_wp(vmf->vma))) in pte_marker_handle_uffd_wp()
3979 return pte_marker_clear(vmf); in pte_marker_handle_uffd_wp()
3981 return do_pte_missing(vmf); in pte_marker_handle_uffd_wp()
3984 static vm_fault_t handle_pte_marker(struct vm_fault *vmf) in handle_pte_marker() argument
3986 swp_entry_t entry = pte_to_swp_entry(vmf->orig_pte); in handle_pte_marker()
4001 return pte_marker_handle_uffd_wp(vmf); in handle_pte_marker()
4007 static struct folio *__alloc_swap_folio(struct vm_fault *vmf) in __alloc_swap_folio() argument
4009 struct vm_area_struct *vma = vmf->vma; in __alloc_swap_folio()
4014 vmf->address, false); in __alloc_swap_folio()
4018 entry = pte_to_swp_entry(vmf->orig_pte); in __alloc_swap_folio()
4053 static bool can_swapin_thp(struct vm_fault *vmf, pte_t *ptep, int nr_pages) in can_swapin_thp() argument
4060 addr = ALIGN_DOWN(vmf->address, nr_pages * PAGE_SIZE); in can_swapin_thp()
4061 idx = (vmf->address - addr) / PAGE_SIZE; in can_swapin_thp()
4064 if (!pte_same(pte, pte_move_swp_offset(vmf->orig_pte, -idx))) in can_swapin_thp()
4106 static struct folio *alloc_swap_folio(struct vm_fault *vmf) in alloc_swap_folio() argument
4108 struct vm_area_struct *vma = vmf->vma; in alloc_swap_folio()
4133 entry = pte_to_swp_entry(vmf->orig_pte); in alloc_swap_folio()
4140 orders = thp_vma_suitable_orders(vma, vmf->address, orders); in alloc_swap_folio()
4142 vmf->address, orders); in alloc_swap_folio()
4147 pte = pte_offset_map_lock(vmf->vma->vm_mm, vmf->pmd, in alloc_swap_folio()
4148 vmf->address & PMD_MASK, &ptl); in alloc_swap_folio()
4158 addr = ALIGN_DOWN(vmf->address, PAGE_SIZE << order); in alloc_swap_folio()
4159 if (can_swapin_thp(vmf, pte + pte_index(addr), 1 << order)) in alloc_swap_folio()
4169 addr = ALIGN_DOWN(vmf->address, PAGE_SIZE << order); in alloc_swap_folio()
4181 return __alloc_swap_folio(vmf); in alloc_swap_folio()
4184 static struct folio *alloc_swap_folio(struct vm_fault *vmf) in alloc_swap_folio() argument
4186 return __alloc_swap_folio(vmf); in alloc_swap_folio()
4200 vm_fault_t do_swap_page(struct vm_fault *vmf) in do_swap_page() argument
4202 struct vm_area_struct *vma = vmf->vma; in do_swap_page()
4219 if (!pte_unmap_same(vmf)) in do_swap_page()
4222 entry = pte_to_swp_entry(vmf->orig_pte); in do_swap_page()
4225 migration_entry_wait(vma->vm_mm, vmf->pmd, in do_swap_page()
4226 vmf->address); in do_swap_page()
4228 vmf->page = pfn_swap_entry_to_page(entry); in do_swap_page()
4229 ret = remove_device_exclusive_entry(vmf); in do_swap_page()
4231 if (vmf->flags & FAULT_FLAG_VMA_LOCK) { in do_swap_page()
4241 vmf->page = pfn_swap_entry_to_page(entry); in do_swap_page()
4242 vmf->pte = pte_offset_map_lock(vma->vm_mm, vmf->pmd, in do_swap_page()
4243 vmf->address, &vmf->ptl); in do_swap_page()
4244 if (unlikely(!vmf->pte || in do_swap_page()
4245 !pte_same(ptep_get(vmf->pte), in do_swap_page()
4246 vmf->orig_pte))) in do_swap_page()
4253 get_page(vmf->page); in do_swap_page()
4254 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_swap_page()
4255 ret = vmf->page->pgmap->ops->migrate_to_ram(vmf); in do_swap_page()
4256 put_page(vmf->page); in do_swap_page()
4260 ret = handle_pte_marker(vmf); in do_swap_page()
4262 print_bad_pte(vma, vmf->address, vmf->orig_pte, NULL); in do_swap_page()
4273 folio = swap_cache_get_folio(entry, vma, vmf->address); in do_swap_page()
4282 folio = alloc_swap_folio(vmf); in do_swap_page()
4325 vmf); in do_swap_page()
4334 vmf->pte = pte_offset_map_lock(vma->vm_mm, vmf->pmd, in do_swap_page()
4335 vmf->address, &vmf->ptl); in do_swap_page()
4336 if (likely(vmf->pte && in do_swap_page()
4337 pte_same(ptep_get(vmf->pte), vmf->orig_pte))) in do_swap_page()
4356 ret |= folio_lock_or_retry(folio, vmf); in do_swap_page()
4377 folio = ksm_might_need_to_copy(folio, vma, vmf->address); in do_swap_page()
4396 if ((vmf->flags & FAULT_FLAG_WRITE) && folio == swapcache && in do_swap_page()
4406 vmf->pte = pte_offset_map_lock(vma->vm_mm, vmf->pmd, vmf->address, in do_swap_page()
4407 &vmf->ptl); in do_swap_page()
4408 if (unlikely(!vmf->pte || !pte_same(ptep_get(vmf->pte), vmf->orig_pte))) in do_swap_page()
4419 unsigned long folio_start = ALIGN_DOWN(vmf->address, nr * PAGE_SIZE); in do_swap_page()
4420 unsigned long idx = (vmf->address - folio_start) / PAGE_SIZE; in do_swap_page()
4421 pte_t *folio_ptep = vmf->pte - idx; in do_swap_page()
4424 if (!pte_same(folio_pte, pte_move_swp_offset(vmf->orig_pte, -idx)) || in do_swap_page()
4436 address = vmf->address; in do_swap_page()
4437 ptep = vmf->pte; in do_swap_page()
4451 folio_ptep = vmf->pte - idx; in do_swap_page()
4453 if (!pte_same(folio_pte, pte_move_swp_offset(vmf->orig_pte, -idx)) || in do_swap_page()
4482 exclusive = pte_swp_exclusive(vmf->orig_pte); in do_swap_page()
4526 if (should_try_to_free_swap(folio, vma, vmf->flags)) in do_swap_page()
4532 if (pte_swp_soft_dirty(vmf->orig_pte)) in do_swap_page()
4534 if (pte_swp_uffd_wp(vmf->orig_pte)) in do_swap_page()
4548 if (vmf->flags & FAULT_FLAG_WRITE) { in do_swap_page()
4550 vmf->flags &= ~FAULT_FLAG_WRITE; in do_swap_page()
4557 vmf->orig_pte = pte_advance_pfn(pte, page_idx); in do_swap_page()
4598 if (vmf->flags & FAULT_FLAG_WRITE) { in do_swap_page()
4599 ret |= do_wp_page(vmf); in do_swap_page()
4606 update_mmu_cache_range(vmf, vma, address, ptep, nr_pages); in do_swap_page()
4608 if (vmf->pte) in do_swap_page()
4609 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_swap_page()
4621 if (vmf->pte) in do_swap_page()
4622 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_swap_page()
4653 static struct folio *alloc_anon_folio(struct vm_fault *vmf) in alloc_anon_folio() argument
4655 struct vm_area_struct *vma = vmf->vma; in alloc_anon_folio()
4678 orders = thp_vma_suitable_orders(vma, vmf->address, orders); in alloc_anon_folio()
4683 pte = pte_offset_map(vmf->pmd, vmf->address & PMD_MASK); in alloc_anon_folio()
4694 addr = ALIGN_DOWN(vmf->address, PAGE_SIZE << order); in alloc_anon_folio()
4708 addr = ALIGN_DOWN(vmf->address, PAGE_SIZE << order); in alloc_anon_folio()
4717 folio_zero_user(folio, vmf->address); in alloc_anon_folio()
4727 return folio_prealloc(vma->vm_mm, vma, vmf->address, true); in alloc_anon_folio()
4735 static vm_fault_t do_anonymous_page(struct vm_fault *vmf) in do_anonymous_page() argument
4737 struct vm_area_struct *vma = vmf->vma; in do_anonymous_page()
4738 unsigned long addr = vmf->address; in do_anonymous_page()
4752 if (pte_alloc(vma->vm_mm, vmf->pmd)) in do_anonymous_page()
4756 if (!(vmf->flags & FAULT_FLAG_WRITE) && in do_anonymous_page()
4758 entry = pte_mkspecial(pfn_pte(my_zero_pfn(vmf->address), in do_anonymous_page()
4760 vmf->pte = pte_offset_map_lock(vma->vm_mm, vmf->pmd, in do_anonymous_page()
4761 vmf->address, &vmf->ptl); in do_anonymous_page()
4762 if (!vmf->pte) in do_anonymous_page()
4764 if (vmf_pte_changed(vmf)) { in do_anonymous_page()
4765 update_mmu_tlb(vma, vmf->address, vmf->pte); in do_anonymous_page()
4773 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_anonymous_page()
4774 return handle_userfault(vmf, VM_UFFD_MISSING); in do_anonymous_page()
4780 ret = vmf_anon_prepare(vmf); in do_anonymous_page()
4784 folio = alloc_anon_folio(vmf); in do_anonymous_page()
4791 addr = ALIGN_DOWN(vmf->address, nr_pages * PAGE_SIZE); in do_anonymous_page()
4805 vmf->pte = pte_offset_map_lock(vma->vm_mm, vmf->pmd, addr, &vmf->ptl); in do_anonymous_page()
4806 if (!vmf->pte) in do_anonymous_page()
4808 if (nr_pages == 1 && vmf_pte_changed(vmf)) { in do_anonymous_page()
4809 update_mmu_tlb(vma, addr, vmf->pte); in do_anonymous_page()
4811 } else if (nr_pages > 1 && !pte_range_none(vmf->pte, nr_pages)) { in do_anonymous_page()
4812 update_mmu_tlb_range(vma, addr, vmf->pte, nr_pages); in do_anonymous_page()
4822 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_anonymous_page()
4824 return handle_userfault(vmf, VM_UFFD_MISSING); in do_anonymous_page()
4833 if (vmf_orig_pte_uffd_wp(vmf)) in do_anonymous_page()
4835 set_ptes(vma->vm_mm, addr, vmf->pte, entry, nr_pages); in do_anonymous_page()
4838 update_mmu_cache_range(vmf, vma, addr, vmf->pte, nr_pages); in do_anonymous_page()
4840 if (vmf->pte) in do_anonymous_page()
4841 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_anonymous_page()
4855 static vm_fault_t __do_fault(struct vm_fault *vmf) in __do_fault() argument
4857 struct vm_area_struct *vma = vmf->vma; in __do_fault()
4876 if (pmd_none(*vmf->pmd) && !vmf->prealloc_pte) { in __do_fault()
4877 vmf->prealloc_pte = pte_alloc_one(vma->vm_mm); in __do_fault()
4878 if (!vmf->prealloc_pte) in __do_fault()
4882 ret = vma->vm_ops->fault(vmf); in __do_fault()
4887 folio = page_folio(vmf->page); in __do_fault()
4888 if (unlikely(PageHWPoison(vmf->page))) { in __do_fault()
4891 if (page_mapped(vmf->page)) in __do_fault()
4899 vmf->page = NULL; in __do_fault()
4906 VM_BUG_ON_PAGE(!folio_test_locked(folio), vmf->page); in __do_fault()
4912 static void deposit_prealloc_pte(struct vm_fault *vmf) in deposit_prealloc_pte() argument
4914 struct vm_area_struct *vma = vmf->vma; in deposit_prealloc_pte()
4916 pgtable_trans_huge_deposit(vma->vm_mm, vmf->pmd, vmf->prealloc_pte); in deposit_prealloc_pte()
4922 vmf->prealloc_pte = NULL; in deposit_prealloc_pte()
4925 vm_fault_t do_set_pmd(struct vm_fault *vmf, struct page *page) in do_set_pmd() argument
4928 struct vm_area_struct *vma = vmf->vma; in do_set_pmd()
4929 bool write = vmf->flags & FAULT_FLAG_WRITE; in do_set_pmd()
4930 unsigned long haddr = vmf->address & HPAGE_PMD_MASK; in do_set_pmd()
4963 if (arch_needs_pgtable_deposit() && !vmf->prealloc_pte) { in do_set_pmd()
4964 vmf->prealloc_pte = pte_alloc_one(vma->vm_mm); in do_set_pmd()
4965 if (!vmf->prealloc_pte) in do_set_pmd()
4969 vmf->ptl = pmd_lock(vma->vm_mm, vmf->pmd); in do_set_pmd()
4970 if (unlikely(!pmd_none(*vmf->pmd))) in do_set_pmd()
4986 deposit_prealloc_pte(vmf); in do_set_pmd()
4988 set_pmd_at(vma->vm_mm, haddr, vmf->pmd, entry); in do_set_pmd()
4990 update_mmu_cache_pmd(vma, haddr, vmf->pmd); in do_set_pmd()
4996 spin_unlock(vmf->ptl); in do_set_pmd()
5000 vm_fault_t do_set_pmd(struct vm_fault *vmf, struct page *page) in do_set_pmd() argument
5014 void set_pte_range(struct vm_fault *vmf, struct folio *folio, in set_pte_range() argument
5017 struct vm_area_struct *vma = vmf->vma; in set_pte_range()
5018 bool write = vmf->flags & FAULT_FLAG_WRITE; in set_pte_range()
5019 bool prefault = !in_range(vmf->address, addr, nr * PAGE_SIZE); in set_pte_range()
5032 if (unlikely(vmf_orig_pte_uffd_wp(vmf))) in set_pte_range()
5042 set_ptes(vma->vm_mm, addr, vmf->pte, entry, nr); in set_pte_range()
5045 update_mmu_cache_range(vmf, vma, addr, vmf->pte, nr); in set_pte_range()
5048 static bool vmf_pte_changed(struct vm_fault *vmf) in vmf_pte_changed() argument
5050 if (vmf->flags & FAULT_FLAG_ORIG_PTE_VALID) in vmf_pte_changed()
5051 return !pte_same(ptep_get(vmf->pte), vmf->orig_pte); in vmf_pte_changed()
5053 return !pte_none(ptep_get(vmf->pte)); in vmf_pte_changed()
5071 vm_fault_t finish_fault(struct vm_fault *vmf) in finish_fault() argument
5073 struct vm_area_struct *vma = vmf->vma; in finish_fault()
5077 bool is_cow = (vmf->flags & FAULT_FLAG_WRITE) && in finish_fault()
5080 unsigned long addr = vmf->address; in finish_fault()
5084 page = vmf->cow_page; in finish_fault()
5086 page = vmf->page; in finish_fault()
5098 if (pmd_none(*vmf->pmd)) { in finish_fault()
5100 ret = do_set_pmd(vmf, page); in finish_fault()
5105 if (vmf->prealloc_pte) in finish_fault()
5106 pmd_install(vma->vm_mm, vmf->pmd, &vmf->prealloc_pte); in finish_fault()
5107 else if (unlikely(pte_alloc(vma->vm_mm, vmf->pmd))) in finish_fault()
5124 pgoff_t vma_off = vmf->pgoff - vmf->vma->vm_pgoff; in finish_fault()
5126 pgoff_t pte_off = pte_index(vmf->address); in finish_fault()
5139 addr = vmf->address - idx * PAGE_SIZE; in finish_fault()
5144 vmf->pte = pte_offset_map_lock(vma->vm_mm, vmf->pmd, in finish_fault()
5145 addr, &vmf->ptl); in finish_fault()
5146 if (!vmf->pte) in finish_fault()
5150 if (nr_pages == 1 && unlikely(vmf_pte_changed(vmf))) { in finish_fault()
5151 update_mmu_tlb(vma, addr, vmf->pte); in finish_fault()
5154 } else if (nr_pages > 1 && !pte_range_none(vmf->pte, nr_pages)) { in finish_fault()
5155 update_mmu_tlb_range(vma, addr, vmf->pte, nr_pages); in finish_fault()
5161 set_pte_range(vmf, folio, page, nr_pages, addr); in finish_fault()
5167 pte_unmap_unlock(vmf->pte, vmf->ptl); in finish_fault()
5231 static vm_fault_t do_fault_around(struct vm_fault *vmf) in do_fault_around() argument
5234 pgoff_t pte_off = pte_index(vmf->address); in do_fault_around()
5236 pgoff_t vma_off = vmf->pgoff - vmf->vma->vm_pgoff; in do_fault_around()
5246 pte_off + vma_pages(vmf->vma) - vma_off) - 1; in do_fault_around()
5248 if (pmd_none(*vmf->pmd)) { in do_fault_around()
5249 vmf->prealloc_pte = pte_alloc_one(vmf->vma->vm_mm); in do_fault_around()
5250 if (!vmf->prealloc_pte) in do_fault_around()
5255 ret = vmf->vma->vm_ops->map_pages(vmf, in do_fault_around()
5256 vmf->pgoff + from_pte - pte_off, in do_fault_around()
5257 vmf->pgoff + to_pte - pte_off); in do_fault_around()
5264 static inline bool should_fault_around(struct vm_fault *vmf) in should_fault_around() argument
5267 if (!vmf->vma->vm_ops->map_pages) in should_fault_around()
5270 if (uffd_disable_fault_around(vmf->vma)) in should_fault_around()
5277 static vm_fault_t do_read_fault(struct vm_fault *vmf) in do_read_fault() argument
5287 if (should_fault_around(vmf)) { in do_read_fault()
5288 ret = do_fault_around(vmf); in do_read_fault()
5293 ret = vmf_can_call_fault(vmf); in do_read_fault()
5297 ret = __do_fault(vmf); in do_read_fault()
5301 ret |= finish_fault(vmf); in do_read_fault()
5302 folio = page_folio(vmf->page); in do_read_fault()
5309 static vm_fault_t do_cow_fault(struct vm_fault *vmf) in do_cow_fault() argument
5311 struct vm_area_struct *vma = vmf->vma; in do_cow_fault()
5315 ret = vmf_can_call_fault(vmf); in do_cow_fault()
5317 ret = vmf_anon_prepare(vmf); in do_cow_fault()
5321 folio = folio_prealloc(vma->vm_mm, vma, vmf->address, false); in do_cow_fault()
5325 vmf->cow_page = &folio->page; in do_cow_fault()
5327 ret = __do_fault(vmf); in do_cow_fault()
5333 if (copy_mc_user_highpage(vmf->cow_page, vmf->page, vmf->address, vma)) { in do_cow_fault()
5339 ret |= finish_fault(vmf); in do_cow_fault()
5341 unlock_page(vmf->page); in do_cow_fault()
5342 put_page(vmf->page); in do_cow_fault()
5351 static vm_fault_t do_shared_fault(struct vm_fault *vmf) in do_shared_fault() argument
5353 struct vm_area_struct *vma = vmf->vma; in do_shared_fault()
5357 ret = vmf_can_call_fault(vmf); in do_shared_fault()
5361 ret = __do_fault(vmf); in do_shared_fault()
5365 folio = page_folio(vmf->page); in do_shared_fault()
5373 tmp = do_page_mkwrite(vmf, folio); in do_shared_fault()
5381 ret |= finish_fault(vmf); in do_shared_fault()
5389 ret |= fault_dirty_shared_page(vmf); in do_shared_fault()
5401 static vm_fault_t do_fault(struct vm_fault *vmf) in do_fault() argument
5403 struct vm_area_struct *vma = vmf->vma; in do_fault()
5411 vmf->pte = pte_offset_map_lock(vmf->vma->vm_mm, vmf->pmd, in do_fault()
5412 vmf->address, &vmf->ptl); in do_fault()
5413 if (unlikely(!vmf->pte)) in do_fault()
5423 if (unlikely(pte_none(ptep_get(vmf->pte)))) in do_fault()
5428 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_fault()
5430 } else if (!(vmf->flags & FAULT_FLAG_WRITE)) in do_fault()
5431 ret = do_read_fault(vmf); in do_fault()
5433 ret = do_cow_fault(vmf); in do_fault()
5435 ret = do_shared_fault(vmf); in do_fault()
5438 if (vmf->prealloc_pte) { in do_fault()
5439 pte_free(vm_mm, vmf->prealloc_pte); in do_fault()
5440 vmf->prealloc_pte = NULL; in do_fault()
5445 int numa_migrate_check(struct folio *folio, struct vm_fault *vmf, in numa_migrate_check() argument
5449 struct vm_area_struct *vma = vmf->vma; in numa_migrate_check()
5489 return mpol_misplaced(folio, vmf, addr); in numa_migrate_check()
5492 static void numa_rebuild_single_mapping(struct vm_fault *vmf, struct vm_area_struct *vma, in numa_rebuild_single_mapping() argument
5504 update_mmu_cache_range(vmf, vma, fault_addr, fault_pte, 1); in numa_rebuild_single_mapping()
5507 static void numa_rebuild_large_mapping(struct vm_fault *vmf, struct vm_area_struct *vma, in numa_rebuild_large_mapping() argument
5512 unsigned long start, end, addr = vmf->address; in numa_rebuild_large_mapping()
5521 start_ptep = vmf->pte - ((addr - start) >> PAGE_SHIFT); in numa_rebuild_large_mapping()
5542 numa_rebuild_single_mapping(vmf, vma, addr, start_ptep, writable); in numa_rebuild_large_mapping()
5546 static vm_fault_t do_numa_page(struct vm_fault *vmf) in do_numa_page() argument
5548 struct vm_area_struct *vma = vmf->vma; in do_numa_page()
5562 spin_lock(vmf->ptl); in do_numa_page()
5564 old_pte = ptep_get(vmf->pte); in do_numa_page()
5566 if (unlikely(!pte_same(old_pte, vmf->orig_pte))) { in do_numa_page()
5567 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_numa_page()
5579 can_change_pte_writable(vma, vmf->address, pte)) in do_numa_page()
5582 folio = vm_normal_folio(vma, vmf->address, pte); in do_numa_page()
5589 target_nid = numa_migrate_check(folio, vmf, vmf->address, &flags, in do_numa_page()
5598 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_numa_page()
5611 vmf->pte = pte_offset_map_lock(vma->vm_mm, vmf->pmd, in do_numa_page()
5612 vmf->address, &vmf->ptl); in do_numa_page()
5613 if (unlikely(!vmf->pte)) in do_numa_page()
5615 if (unlikely(!pte_same(ptep_get(vmf->pte), vmf->orig_pte))) { in do_numa_page()
5616 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_numa_page()
5625 numa_rebuild_large_mapping(vmf, vma, folio, pte, ignore_writable, in do_numa_page()
5628 numa_rebuild_single_mapping(vmf, vma, vmf->address, vmf->pte, in do_numa_page()
5630 pte_unmap_unlock(vmf->pte, vmf->ptl); in do_numa_page()
5637 static inline vm_fault_t create_huge_pmd(struct vm_fault *vmf) in create_huge_pmd() argument
5639 struct vm_area_struct *vma = vmf->vma; in create_huge_pmd()
5641 return do_huge_pmd_anonymous_page(vmf); in create_huge_pmd()
5643 return vma->vm_ops->huge_fault(vmf, PMD_ORDER); in create_huge_pmd()
5648 static inline vm_fault_t wp_huge_pmd(struct vm_fault *vmf) in wp_huge_pmd() argument
5650 struct vm_area_struct *vma = vmf->vma; in wp_huge_pmd()
5651 const bool unshare = vmf->flags & FAULT_FLAG_UNSHARE; in wp_huge_pmd()
5656 userfaultfd_huge_pmd_wp(vma, vmf->orig_pmd)) { in wp_huge_pmd()
5657 if (userfaultfd_wp_async(vmf->vma)) in wp_huge_pmd()
5659 return handle_userfault(vmf, VM_UFFD_WP); in wp_huge_pmd()
5661 return do_huge_pmd_wp_page(vmf); in wp_huge_pmd()
5666 ret = vma->vm_ops->huge_fault(vmf, PMD_ORDER); in wp_huge_pmd()
5674 __split_huge_pmd(vma, vmf->pmd, vmf->address, false, NULL); in wp_huge_pmd()
5679 static vm_fault_t create_huge_pud(struct vm_fault *vmf) in create_huge_pud() argument
5683 struct vm_area_struct *vma = vmf->vma; in create_huge_pud()
5688 return vma->vm_ops->huge_fault(vmf, PUD_ORDER); in create_huge_pud()
5693 static vm_fault_t wp_huge_pud(struct vm_fault *vmf, pud_t orig_pud) in wp_huge_pud() argument
5697 struct vm_area_struct *vma = vmf->vma; in wp_huge_pud()
5705 ret = vma->vm_ops->huge_fault(vmf, PUD_ORDER); in wp_huge_pud()
5712 __split_huge_pud(vma, vmf->pud, vmf->address); in wp_huge_pud()
5732 static vm_fault_t handle_pte_fault(struct vm_fault *vmf) in handle_pte_fault() argument
5736 if (unlikely(pmd_none(*vmf->pmd))) { in handle_pte_fault()
5743 vmf->pte = NULL; in handle_pte_fault()
5744 vmf->flags &= ~FAULT_FLAG_ORIG_PTE_VALID; in handle_pte_fault()
5752 vmf->pte = pte_offset_map_nolock(vmf->vma->vm_mm, vmf->pmd, in handle_pte_fault()
5753 vmf->address, &vmf->ptl); in handle_pte_fault()
5754 if (unlikely(!vmf->pte)) in handle_pte_fault()
5756 vmf->orig_pte = ptep_get_lockless(vmf->pte); in handle_pte_fault()
5757 vmf->flags |= FAULT_FLAG_ORIG_PTE_VALID; in handle_pte_fault()
5759 if (pte_none(vmf->orig_pte)) { in handle_pte_fault()
5760 pte_unmap(vmf->pte); in handle_pte_fault()
5761 vmf->pte = NULL; in handle_pte_fault()
5765 if (!vmf->pte) in handle_pte_fault()
5766 return do_pte_missing(vmf); in handle_pte_fault()
5768 if (!pte_present(vmf->orig_pte)) in handle_pte_fault()
5769 return do_swap_page(vmf); in handle_pte_fault()
5771 if (pte_protnone(vmf->orig_pte) && vma_is_accessible(vmf->vma)) in handle_pte_fault()
5772 return do_numa_page(vmf); in handle_pte_fault()
5774 spin_lock(vmf->ptl); in handle_pte_fault()
5775 entry = vmf->orig_pte; in handle_pte_fault()
5776 if (unlikely(!pte_same(ptep_get(vmf->pte), entry))) { in handle_pte_fault()
5777 update_mmu_tlb(vmf->vma, vmf->address, vmf->pte); in handle_pte_fault()
5780 if (vmf->flags & (FAULT_FLAG_WRITE|FAULT_FLAG_UNSHARE)) { in handle_pte_fault()
5782 return do_wp_page(vmf); in handle_pte_fault()
5783 else if (likely(vmf->flags & FAULT_FLAG_WRITE)) in handle_pte_fault()
5787 if (ptep_set_access_flags(vmf->vma, vmf->address, vmf->pte, entry, in handle_pte_fault()
5788 vmf->flags & FAULT_FLAG_WRITE)) { in handle_pte_fault()
5789 update_mmu_cache_range(vmf, vmf->vma, vmf->address, in handle_pte_fault()
5790 vmf->pte, 1); in handle_pte_fault()
5793 if (vmf->flags & FAULT_FLAG_TRIED) in handle_pte_fault()
5801 if (vmf->flags & FAULT_FLAG_WRITE) in handle_pte_fault()
5802 flush_tlb_fix_spurious_fault(vmf->vma, vmf->address, in handle_pte_fault()
5803 vmf->pte); in handle_pte_fault()
5806 pte_unmap_unlock(vmf->pte, vmf->ptl); in handle_pte_fault()
5819 struct vm_fault vmf = { in __handle_mm_fault() local
5838 vmf.pud = pud_alloc(mm, p4d, address); in __handle_mm_fault()
5839 if (!vmf.pud) in __handle_mm_fault()
5842 if (pud_none(*vmf.pud) && in __handle_mm_fault()
5845 ret = create_huge_pud(&vmf); in __handle_mm_fault()
5849 pud_t orig_pud = *vmf.pud; in __handle_mm_fault()
5859 ret = wp_huge_pud(&vmf, orig_pud); in __handle_mm_fault()
5863 huge_pud_set_accessed(&vmf, orig_pud); in __handle_mm_fault()
5869 vmf.pmd = pmd_alloc(mm, vmf.pud, address); in __handle_mm_fault()
5870 if (!vmf.pmd) in __handle_mm_fault()
5874 if (pud_trans_unstable(vmf.pud)) in __handle_mm_fault()
5877 if (pmd_none(*vmf.pmd) && in __handle_mm_fault()
5880 ret = create_huge_pmd(&vmf); in __handle_mm_fault()
5884 vmf.orig_pmd = pmdp_get_lockless(vmf.pmd); in __handle_mm_fault()
5886 if (unlikely(is_swap_pmd(vmf.orig_pmd))) { in __handle_mm_fault()
5888 !is_pmd_migration_entry(vmf.orig_pmd)); in __handle_mm_fault()
5889 if (is_pmd_migration_entry(vmf.orig_pmd)) in __handle_mm_fault()
5890 pmd_migration_entry_wait(mm, vmf.pmd); in __handle_mm_fault()
5893 if (pmd_trans_huge(vmf.orig_pmd) || pmd_devmap(vmf.orig_pmd)) { in __handle_mm_fault()
5894 if (pmd_protnone(vmf.orig_pmd) && vma_is_accessible(vma)) in __handle_mm_fault()
5895 return do_huge_pmd_numa_page(&vmf); in __handle_mm_fault()
5898 !pmd_write(vmf.orig_pmd)) { in __handle_mm_fault()
5899 ret = wp_huge_pmd(&vmf); in __handle_mm_fault()
5903 huge_pmd_set_accessed(&vmf); in __handle_mm_fault()
5909 return handle_pte_fault(&vmf); in __handle_mm_fault()