~ [ source navigation ] ~ [ diff markup ] ~ [ identifier search ] ~

TOMOYO Linux Cross Reference
Linux/tools/testing/selftests/bpf/progs/test_global_func15.c

Version: ~ [ linux-6.11.5 ] ~ [ linux-6.10.14 ] ~ [ linux-6.9.12 ] ~ [ linux-6.8.12 ] ~ [ linux-6.7.12 ] ~ [ linux-6.6.58 ] ~ [ linux-6.5.13 ] ~ [ linux-6.4.16 ] ~ [ linux-6.3.13 ] ~ [ linux-6.2.16 ] ~ [ linux-6.1.114 ] ~ [ linux-6.0.19 ] ~ [ linux-5.19.17 ] ~ [ linux-5.18.19 ] ~ [ linux-5.17.15 ] ~ [ linux-5.16.20 ] ~ [ linux-5.15.169 ] ~ [ linux-5.14.21 ] ~ [ linux-5.13.19 ] ~ [ linux-5.12.19 ] ~ [ linux-5.11.22 ] ~ [ linux-5.10.228 ] ~ [ linux-5.9.16 ] ~ [ linux-5.8.18 ] ~ [ linux-5.7.19 ] ~ [ linux-5.6.19 ] ~ [ linux-5.5.19 ] ~ [ linux-5.4.284 ] ~ [ linux-5.3.18 ] ~ [ linux-5.2.21 ] ~ [ linux-5.1.21 ] ~ [ linux-5.0.21 ] ~ [ linux-4.20.17 ] ~ [ linux-4.19.322 ] ~ [ linux-4.18.20 ] ~ [ linux-4.17.19 ] ~ [ linux-4.16.18 ] ~ [ linux-4.15.18 ] ~ [ linux-4.14.336 ] ~ [ linux-4.13.16 ] ~ [ linux-4.12.14 ] ~ [ linux-4.11.12 ] ~ [ linux-4.10.17 ] ~ [ linux-4.9.337 ] ~ [ linux-4.4.302 ] ~ [ linux-3.10.108 ] ~ [ linux-2.6.32.71 ] ~ [ linux-2.6.0 ] ~ [ linux-2.4.37.11 ] ~ [ unix-v6-master ] ~ [ ccs-tools-1.8.9 ] ~ [ policy-sample ] ~
Architecture: ~ [ i386 ] ~ [ alpha ] ~ [ m68k ] ~ [ mips ] ~ [ ppc ] ~ [ sparc ] ~ [ sparc64 ] ~

  1 // SPDX-License-Identifier: GPL-2.0-only
  2 #include <stddef.h>
  3 #include <linux/bpf.h>
  4 #include <bpf/bpf_helpers.h>
  5 #include "bpf_misc.h"
  6 
  7 __noinline int foo(unsigned int *v)
  8 {
  9         if (v)
 10                 *v = bpf_get_prandom_u32();
 11 
 12         return 0;
 13 }
 14 
 15 SEC("cgroup_skb/ingress")
 16 __failure __msg("At program exit the register R0 has ")
 17 int global_func15(struct __sk_buff *skb)
 18 {
 19         unsigned int v = 1;
 20 
 21         foo(&v);
 22 
 23         return v;
 24 }
 25 
 26 SEC("cgroup_skb/ingress")
 27 __log_level(2) __flag(BPF_F_TEST_STATE_FREQ)
 28 __failure
 29 /* check that fallthrough code path marks r0 as precise */
 30 __msg("mark_precise: frame0: regs=r0 stack= before 2: (b7) r0 = 1")
 31 /* check that branch code path marks r0 as precise */
 32 __msg("mark_precise: frame0: regs=r0 stack= before 0: (85) call bpf_get_prandom_u32#7")
 33 __msg("At program exit the register R0 has ")
 34 __naked int global_func15_tricky_pruning(void)
 35 {
 36         asm volatile (
 37                 "call %[bpf_get_prandom_u32];"
 38                 "if r0 s> 1000 goto 1f;"
 39                 "r0 = 1;"
 40         "1:"
 41                 "goto +0;" /* checkpoint */
 42                 /* cgroup_skb/ingress program is expected to return [0, 1]
 43                  * values, so branch above makes sure that in a fallthrough
 44                  * case we have a valid 1 stored in R0 register, but in
 45                  * a branch case we assign some random value to R0.  So if
 46                  * there is something wrong with precision tracking for R0 at
 47                  * program exit, we might erronenously prune branch case,
 48                  * because R0 in fallthrough case is imprecise (and thus any
 49                  * value is valid from POV of verifier is_state_equal() logic)
 50                  */
 51                 "exit;"
 52                 :
 53                 : __imm(bpf_get_prandom_u32)
 54                 : __clobber_common
 55         );
 56 }
 57 

~ [ source navigation ] ~ [ diff markup ] ~ [ identifier search ] ~

kernel.org | git.kernel.org | LWN.net | Project Home | SVN repository | Mail admin

Linux® is a registered trademark of Linus Torvalds in the United States and other countries.
TOMOYO® is a registered trademark of NTT DATA CORPORATION.

sflogo.php