5 * Kernel Probes (KProbes)
6 * include/linux/kprobes.h
8 * This program is free software; you can redistribute it and/or modify
9 * it under the terms of the GNU General Public License as published by
10 * the Free Software Foundation; either version 2 of the License, or
11 * (at your option) any later version.
13 * This program is distributed in the hope that it will be useful,
14 * but WITHOUT ANY WARRANTY; without even the implied warranty of
15 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
16 * GNU General Public License for more details.
18 * You should have received a copy of the GNU General Public License
19 * along with this program; if not, write to the Free Software
20 * Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA.
22 * Copyright (C) IBM Corporation, 2002, 2004
26 * Dynamic Binary Instrumentation Module based on KProbes
27 * modules/kprobe/dbi_kprobes.h
29 * This program is free software; you can redistribute it and/or modify
30 * it under the terms of the GNU General Public License as published by
31 * the Free Software Foundation; either version 2 of the License, or
32 * (at your option) any later version.
34 * This program is distributed in the hope that it will be useful,
35 * but WITHOUT ANY WARRANTY; without even the implied warranty of
36 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
37 * GNU General Public License for more details.
39 * You should have received a copy of the GNU General Public License
40 * along with this program; if not, write to the Free Software
41 * Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA.
43 * Copyright (C) Samsung Electronics, 2006-2010
45 * 2006-2007 Ekaterina Gorelkina <e.gorelkina@samsung.com>: initial implementation for ARM and MIPS
46 * 2008-2009 Alexey Gerenkov <a.gerenkov@samsung.com> User-Space
47 * Probes initial implementation; Support x86/ARM/MIPS for both user and kernel spaces.
48 * 2010 Ekaterina Gorelkina <e.gorelkina@samsung.com>: redesign module for separating core and arch parts
53 #include <linux/version.h> // LINUX_VERSION_CODE, KERNEL_VERSION()
54 #include <linux/notifier.h>
55 #include <linux/percpu.h>
56 #include <linux/spinlock.h>
57 #include <linux/rcupdate.h>
58 #include <linux/sched.h>
59 #include <linux/pagemap.h>
61 #include "arch/asm/dbi_kprobes.h"
63 /* kprobe_status settings */
64 #define KPROBE_HIT_ACTIVE 0x00000001
65 #define KPROBE_HIT_SS 0x00000002
66 #define KPROBE_REENTER 0x00000004
67 #define KPROBE_HIT_SSDONE 0x00000008
69 #define HIWORD(x) (((x) & 0xFFFF0000) >> 16)
70 #define LOWORD(x) ((x) & 0x0000FFFF)
72 #define INVALID_VALUE 0xFFFFFFFF
73 #define INVALID_POINTER (void*)INVALID_VALUE
75 #define JPROBE_ENTRY(pentry) (kprobe_opcode_t *)pentry
80 struct kretprobe_instance;
81 typedef int (*kprobe_pre_handler_t) (struct kprobe *, struct pt_regs *);
82 typedef int (*kprobe_break_handler_t) (struct kprobe *, struct pt_regs *);
83 typedef void (*kprobe_post_handler_t) (struct kprobe *, struct pt_regs *, unsigned long flags);
84 typedef int (*kprobe_fault_handler_t) (struct kprobe *, struct pt_regs *, int trapnr);
85 typedef int (*kretprobe_handler_t) (struct kretprobe_instance *, struct pt_regs *, void *);
89 struct hlist_node hlist;
90 /*list of probes to search by instruction slot*/
92 struct hlist_node is_hlist_arm;
93 struct hlist_node is_hlist_thumb;
94 #else /* CONFIG_ARM */
95 struct hlist_node is_hlist;
96 #endif /* CONFIG_ARM */
97 /* list of kprobes for multi-handler support */
98 struct list_head list;
99 /* Indicates that the corresponding module has been ref counted */
100 unsigned int mod_refcounted;
101 /*count the number of times this probe was temporarily disarmed */
102 unsigned long nmissed;
103 /* location of the probe point */
104 kprobe_opcode_t *addr;
105 /* Allow user to indicate symbol name of the probe point */
107 /* Offset into the symbol */
109 /* Called before addr is executed. */
110 kprobe_pre_handler_t pre_handler;
111 /* Called after addr is executed, unless... */
112 kprobe_post_handler_t post_handler;
113 /* ... called if executing addr causes a fault (eg. page fault).
114 * Return 1 if it handled fault, otherwise kernel will see it. */
115 kprobe_fault_handler_t fault_handler;
116 /* ... called if breakpoint trap occurs in probe handler.
117 * Return 1 if it handled break, otherwise kernel will see it. */
118 kprobe_break_handler_t break_handler;
119 /* Saved opcode (which has been replaced with breakpoint) */
120 kprobe_opcode_t opcode;
121 /* copy of the original instruction */
122 struct arch_specific_insn ainsn;
123 // TGID to which probe belongs
125 // override single-step target address,
126 // may be used to redirect control-flow to arbitrary address after probe point
127 // without invocation of original instruction;
128 // useful for functions replacement
129 // if jprobe.entry should return address of function or NULL
130 // if original function should be called
131 // not supported for X86, not tested for MIPS
132 kprobe_opcode_t *ss_addr;
133 // safe/unsafe to use probe
140 typedef unsigned long (*kprobe_pre_entry_handler_t) (void *priv_arg, struct pt_regs * regs);
143 * Special probe type that uses setjmp-longjmp type tricks to resume
144 * execution at a specified entry with a matching prototype corresponding
145 * to the probed function - a trick to enable arguments to become
146 * accessible seamlessly by probe handling logic.
148 * Because of the way compilers allocate stack space for local variables
149 * etc upfront, regardless of sub-scopes within a function, this mirroring
150 * principle currently works only for probes placed on function entry points.
155 // probe handling code to jump to
156 kprobe_opcode_t *entry;
157 // handler whichw willb bec called before 'entry'
158 kprobe_pre_entry_handler_t pre_entry;
162 struct jprobe_instance
164 // either on free list or used list
165 struct hlist_node uflist;
166 struct hlist_node hlist;
168 struct task_struct *task;
176 * Function-return probe -
178 * User needs to provide a handler function, and initialize maxactive.
179 * maxactive - The maximum number of instances of the probed function that
180 * can be active concurrently.
181 * nmissed - tracks the number of times the probed function's return was
182 * ignored, due to maxactive being too low.
188 kretprobe_handler_t handler;
193 struct hlist_head free_instances;
194 struct hlist_head used_instances;
197 struct kretprobe_instance
199 // either on free list or used list
200 struct hlist_node uflist;
201 struct hlist_node hlist;
202 struct kretprobe *rp;
203 kprobe_opcode_t *ret_addr;
204 struct kretprobe *rp2;
205 struct task_struct *task;
209 extern void show_registers (struct pt_regs *regs);
210 extern void kprobes_inc_nmissed_count (struct kprobe *p);
213 // Large value for fast but memory consuming implementation
214 // it is good when a lot of probes are instrumented
216 //#define KPROBE_HASH_BITS 6
217 #define KPROBE_HASH_BITS 16
218 #define KPROBE_TABLE_SIZE (1 << KPROBE_HASH_BITS)
221 /* Get the kprobe at this addr (if any) - called with preemption disabled */
222 struct kprobe *get_kprobe(kprobe_opcode_t *addr, pid_t tgid);
224 struct kprobe *get_kprobe_by_insn_slot(kprobe_opcode_t *addr, pid_t tgid, struct pt_regs *regs);
225 #else /* CONFIG_ARM */
226 struct kprobe *get_kprobe_by_insn_slot (void *addr, int tgid, struct task_struct *ctask);
227 #endif /* CONFIG_ARM */
228 struct hlist_head *kretprobe_inst_table_head (void *hash_key);
231 int dbi_register_kprobe (struct kprobe *p);
232 void dbi_unregister_kprobe (struct kprobe *p, struct task_struct *task);
234 int register_aggr_kprobe (struct kprobe *old_p, struct kprobe *p);
235 int pre_handler_kretprobe (struct kprobe *p, struct pt_regs *regs);
237 int setjmp_pre_handler (struct kprobe *, struct pt_regs *);
238 int longjmp_break_handler (struct kprobe *, struct pt_regs *);
240 int dbi_register_jprobe (struct jprobe *p);
241 void dbi_unregister_jprobe (struct jprobe *p);
242 void dbi_jprobe_return (void);
243 void dbi_jprobe_return_end (void);
245 struct kretprobe * clone_kretprobe (struct kretprobe *rp);
246 struct kretprobe_instance * get_used_rp_inst (struct kretprobe *rp);
249 int alloc_nodes_kretprobe(struct kretprobe *rp);
250 int dbi_register_kretprobe (struct kretprobe *rp);
251 void dbi_unregister_kretprobe (struct kretprobe *rp);
253 void kretprobe_assert (struct kretprobe_instance *ri,
254 unsigned long orig_ret_address, unsigned long trampoline_address);
257 struct kretprobe_instance *get_free_rp_inst (struct kretprobe *rp);
258 struct kretprobe_instance *get_free_rp_inst_no_alloc (struct kretprobe *rp);
259 void free_rp_inst (struct kretprobe *rp);
260 void add_rp_inst (struct kretprobe_instance *ri);
261 void recycle_rp_inst (struct kretprobe_instance *ri);
263 //void kretprobe_trampoline_holder (void);
264 int trampoline_probe_handler (struct kprobe *p, struct pt_regs *regs);
266 #ifdef KPROBES_PROFILE
267 int pre_handler_kretprobe (struct kprobe *p, struct pt_regs *regs, struct vm_area_struct **vma, struct page **page, unsigned long **kaddr);
268 void set_normalized_timeval (struct timeval *tv, time_t sec, suseconds_t usec);
272 #endif /* _DBI_KPROBES_H */