From patchwork Fri Oct 6 14:23:41 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Szabolcs Nagy X-Patchwork-Id: 23378 Received: (qmail 21301 invoked by alias); 6 Oct 2017 14:23:52 -0000 Mailing-List: contact libc-alpha-help@sourceware.org; run by ezmlm Precedence: bulk List-Id: List-Unsubscribe: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: libc-alpha-owner@sourceware.org Delivered-To: mailing list libc-alpha@sourceware.org Received: (qmail 21263 invoked by uid 89); 6 Oct 2017 14:23:50 -0000 Authentication-Results: sourceware.org; auth=none X-Virus-Found: No X-Spam-SWARE-Status: No, score=-24.8 required=5.0 tests=AWL, BAYES_00, GIT_PATCH_0, GIT_PATCH_1, GIT_PATCH_2, GIT_PATCH_3, RCVD_IN_DNSWL_NONE, SPF_HELO_PASS, SPF_PASS autolearn=ham version=3.3.2 spammy= X-HELO: EUR01-VE1-obe.outbound.protection.outlook.com Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=Szabolcs.Nagy@arm.com; Message-ID: <59D791ED.4060609@arm.com> Date: Fri, 06 Oct 2017 15:23:41 +0100 From: Szabolcs Nagy User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Thunderbird/31.8.0 MIME-Version: 1.0 To: GNU C Library CC: nd@arm.com Subject: [PATCH 1/2] aarch64: Disable lazy symbol binding of TLSDESC References: <59D791A6.10507@arm.com> In-Reply-To: <59D791A6.10507@arm.com> X-ClientProxiedBy: HE1PR0202CA0005.eurprd02.prod.outlook.com (2603:10a6:3:8c::15) To HE1PR0802MB2489.eurprd08.prod.outlook.com (2603:10a6:3:d8::23) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-Correlation-Id: 041f3fc2-5587-4b55-42a0-08d50cc5da5b X-MS-Office365-Filtering-HT: Tenant X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(22001)(2017030254152)(48565401081)(2017052603199)(49563074)(201703131423075)(201703031133081)(201702281549075); SRVR:HE1PR0802MB2489; X-Microsoft-Exchange-Diagnostics: 1; HE1PR0802MB2489; 3:X9RLGMzsYK7aSpLEeqsWQYlXUmS2of5Wh4+yS7qrZHXvMkZL34tQooQNbBvr16TNCmPAgjGufZOrokIt7E/1oDph5uKV40Cm5FNmL9upoYrKR430sWsfWEeg8yDqXWVkg2jZw5n55+PYA5+8jA9TfXDfz7wuGmMut6p7BKNVydbDRWZzh/MlcyJQmUdX/sSu87RcGl0T1R6BlMk8XiYQDqvRmVXvwrNMTfRxFLz/iW5SQUYuBHblQZsjEZkrc2HO; 25:gM9S5Oz4OAyL0FIRorgwX+0dsWde2gHhm3LlwKrp5W1py5aclD3tbFq/9A5SjXGIgc+GR5/WyLdqXokA186PznI0AOCv0NR+sJtcv/Tol5XSRlzWJ9kJ6+e69X/3lKkL0f9aelmXklaFVzQFiU2SqDsaUrY1nge6NFo+D32uEO4k8m4WUq1j/QQo3FV2Yr8F8Uj3g6Yv9fwR1aHSFfykTlB91ku+Bx3CSqz+zE7bCYI=; 31:EJunirkyih1ycDadR99xIXQmgSzpymU8PzDRBModIFUrSTDrn0+O2KRhxo8+7yc4EeeA/GlsFQyCbu0n5WqGzpF0CTSx+gPBcFQD8bvbNMuE9Irr8oyim9mayTEwb7NH; 20:jWTuVpy2Qw1vO08ho/wEW4FY2UNHAJGZS8Hkx+x56RTYb0sv5rgKoF6QttU2tnRAOvX3MQHZrpNm+vUPr9xlQJrTMYqFuzdDKUFfuVMTJKOd6mTcb4dewg+Jl0DQmIQ2WayGMxiK2zk4AVssjrpCXDQ//590jyi4JGEAVSoJlh8= X-MS-TrafficTypeDiagnostic: HE1PR0802MB2489: NoDisclaimer: True X-Exchange-Antispam-Report-Test: UriScan:; X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(100000700101)(100105000095)(100000701101)(100105300095)(100000702101)(100105100095)(102415395)(6040450)(2401047)(5005006)(8121501046)(10201501046)(3002001)(100000703101)(100105400095)(93006095)(93001095)(6055026)(6041248)(20161123564025)(20161123558100)(20161123562025)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123555025)(6072148)(201708071742011)(100000704101)(100105200095)(100000705101)(100105500095); SRVR:HE1PR0802MB2489; BCL:0; PCL:0; RULEID:(100000800101)(100110000095)(100000801101)(100110300095)(100000802101)(100110100095)(100000803101)(100110400095)(100000804101)(100110200095)(100000805101)(100110500095); SRVR:HE1PR0802MB2489; X-Microsoft-Exchange-Diagnostics: 1; HE1PR0802MB2489; 4:1bCzT5/4aDpvO1MPOqRpL+MII7Kul1SS/kfRUexD7515f32/54QPhc/pxiqiTqNQJmnN709d2v7+zzAKRT8rYisi/0XMMdMqg3tT7Q8VzT7aLokAyz7FDnjj83yEg8s9M5gC288fMxCoMW35oTm6Kw== X-Forefront-PRVS: 0452022BE1 X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(6049001)(6009001)(39860400002)(376002)(346002)(199003)(189002)(65956001)(6486002)(59896002)(77096006)(76176999)(4610100001)(105586002)(3846002)(64126003)(4326008)(58126008)(84326002)(8676002)(53936002)(7736002)(83506001)(72206003)(16586007)(2906002)(316002)(5890100001)(25786009)(16576012)(86362001)(81156014)(305945005)(564344004)(573454002)(81166006)(6116002)(97736004)(270700001)(562524006)(87266999)(2950100002)(478600001)(5000100001)(568964002)(33656002)(65816999)(106356001)(80316001)(6666003)(65806001)(68736007)(6916009)(8936002)(54356999)(66066001)(36756003)(2476003)(50986999)(101416001)(16526018); DIR:OUT; SFP:1101; SCL:1; SRVR:HE1PR0802MB2489; H:[10.2.206.69]; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: arm.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; HE1PR0802MB2489; 23:nkXaCZ5DtEgw7U1bCu6fvQxPcIzGrQXqnu5aMjB?= =?us-ascii?Q?ulCHd/zRZXBopb+kJB9P1IlTp/tfrnmRvPjEJDolYCFu3YRnUWp90BZDDeWC?= =?us-ascii?Q?It7lp42IyDN9FYIE9Dd/boS6G7APphUfq4Mw/9CJaYasWMleIPzUe+PK0nMz?= =?us-ascii?Q?rQdj0sYVLyCVuGhCLTLiRfpmHbHmgt7Sgb9TDZWHdA07CQymJsq7CBfFpnLA?= =?us-ascii?Q?VS3+e/RmK36KjmvCSy6/KrOQf9CbzdKLv9Srh68Ne+2oAP42wiAYhBfkjJ6K?= =?us-ascii?Q?iKOtJ8nfU6pk0s+B2RtPxK96SwU+iBLdl0Q+26LCtxOEsAawNCrPf9szQJjK?= =?us-ascii?Q?cjxBAIuwUWZTajypH37TQJX63ria9Bct4Age7HQ8vSrKl6b9IMY4e4RtuDqJ?= =?us-ascii?Q?2cqVokVsGqoDdP/FiiFojr/iSv1osWYASNH6nY7CBUUx5DVKJtaItZz3bjA1?= =?us-ascii?Q?Loyun3d7e0aue1nD+/9jgX3K/+dks+B/Z24N1r6IrvPF72yz9bkeJcuvVTt4?= =?us-ascii?Q?KjNL5Tbm14LzbDgqsfiynT5GQjWbM5H9vjJtkqcGV5V282eqsgNGPVgd5qa4?= =?us-ascii?Q?a4e80PUDEvxG89Uy5mXom8JlaMhlGprW4RiRmpv7/P4LkgFNIngMxBMinFWX?= =?us-ascii?Q?OWyel+3ZZm00DTuXVU8DsBgKz0S8A3H/+kgRa402wfxziGuZ4WjdUAjW824B?= =?us-ascii?Q?oLXw7LAscEXAeIDEopQiNjxtBfUb0/CQSAeX2/Dfx/Eu234uk0myOUSLnjXt?= =?us-ascii?Q?NJoeJE8ZkSdfOB6VbjcUsqtIJYUyu5uBSd+9nZN0AjftPnZ3bVjNuGe05ZCg?= =?us-ascii?Q?vlEsThX6ELeOT8RlxbxDpPyrJ2x6cF/O5i6eyBHuCh+zbYfxZdVn6V6K349C?= =?us-ascii?Q?AZdh4PYsoMicOoKTZUyiUftnURUTp5T3aqeJG+Y2lZE1+ohwZ8+H6gMCj+3p?= =?us-ascii?Q?aAyU7+fuB5axlZEbmwUmkQEfGRzvEvVgSEsOVSVFhEv9nTjYRB9PI9URfc1Z?= =?us-ascii?Q?OIvP1gp+E1TEoq7JzJqnLzArhGR0/cBOdpSLzVS1XlNOkK0SphEsLLjyBdxP?= =?us-ascii?Q?/8CkSb8cQUTmENfnasBZjvYA/4rB37SIsl9SZPLZucAUKJfUEMobb5HtNq43?= =?us-ascii?Q?RQ2+9S6iIfiaEJHTvXVDcNv2xp2HkFnccs14AYiyX1I0M8cKXckA+KDiZsJA?= =?us-ascii?Q?3cmEBN9561vGRMeOL0LA0J3BdCYP+TBR9NMXv2Q8v11bLzFF+8A6/z/OBrI5?= =?us-ascii?Q?JoL70xPi0pL95LLODpD/TteM6HJZNsdu+9SG7jUrAnfemZzoB5MaXvax66LM?= =?us-ascii?Q?dCFpe2/acvQ/LtWjPZzJwlEZjkRcQ4i0HPwxCQdnqnSfsAKSFd8DrmqA7crS?= =?us-ascii?Q?ha6hBjjnqsiMX/jQ4g7AWr78XxRlIhCPwJdw5E9cd6JZ3Jg+Ihg2anhXyUE8?= =?us-ascii?Q?ugYhgS8HGCA=3D=3D?= X-Microsoft-Exchange-Diagnostics: 1; HE1PR0802MB2489; 6:sn5ogqVlPoKfMiR8yFLisKLXh5hCpgxPcAARbMGj0pAT+5kDF6xM9dTOBvQ4pfYbAYHIsIedkJ7Begv9DVVKWP3LLPOkFo7DVpxOsKcIGaTQCY6sVhGWxhchys1IJUTOsUSP4Az2DUmwtwC15PouWEvza+vwjX2v5wbh9H1l3zPU7zG6fTB+oUk82a+Bo/59WWHxL4uoVvL+e20g1aSiobtU8b2TOmEBYIIE8z2PR2s=; 5:BXzP5LljzQPzuCnGuZpiEoOGwN38HPtoHyoSzsqUMg/tVupAmIyFp6ONk4uIt6twK0YBODiKeUn2JFeIG+ShzO5FPEFSt0++/nEAWuQcA4WuXUF8DwieeMEK4g5mea1dZMJ1qDl2dScfQbNZ3gZpEQ==; 24:mmSM4ERT6eBhc0LxSCrZ4aVZ2GQkfi8LRmjWvwuPAerqJkIMFsQx9tXgGBVnCeVCad0aO7qTAnS4SlKGQuOkfsQxmc7CEw2OCmppPjqKVQ8=; 7:0AiFEFA82N8igxcXmYshAt62sWhepRM33mSQSqK6n9nPqKyjQnAHWym7XQ6c+77/80TZwCM0pLftpziIOkMuAxAyvSx3dIWIXx5IuIfuMKLpA6K/FonVYNsqaipQ7/R8n3KbKUPA4xENvve0oPEJQcf3PU6qvi2cBU/qcsJJacQRkH/3y1ev1W/GV1Htj86WVk/CK2HUxk9OiW9YUlas6dBZeN1Cvz7RZUJHDiGKokw= SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-OriginatorOrg: arm.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Oct 2017 14:23:45.1953 (UTC) X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: f34e5979-57d9-4aaa-ad4d-b122a662184d X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR0802MB2489 From fcef01e2cdf2a79c1a91d9b0a8b191d0e1a0cdae Mon Sep 17 00:00:00 2001 From: Szabolcs Nagy Date: Wed, 27 Sep 2017 16:55:14 +0100 Subject: [PATCH 1/2] aarch64: Disable lazy symbol binding of TLSDESC Always do TLS descriptor initialization at load time during relocation processing to avoid barriers at every TLS access. TLSDESC relocs are in DT_JMPREL which are processed at load time using elf_machine_lazy_rel which is only supposed to do lightweight initialization using the DT_TLSDESC_PLT trampoline (the trampoline code jumps to the entry point in DT_TLSDESC_GOT which does the lazy tlsdesc initialization at runtime). This patch changes elf_machine_lazy_rel in aarch64 to do the symbol binding and initialization as if DF_BIND_NOW was set, so the non-lazy code path of elf/do-rel.h was replicated. The static linker could be changed to emit TLSDESC relocs in DT_REL*, which are processed non-lazily, but the goal of this patch is to always guarantee bind-now semantics, even if the binary was produced with an old linker, so the barriers can be dropped in tls descriptor functions. After this change the synchronizing ldar instructions can be dropped as well as the lazy initialization machinery including the DT_TLSDESC_GOT setup. I believe this should be done on all targets, including ones where no barrier is needed for lazy initialization. There is very little gain in optimizing for large number of symbolic tlsdesc relocations which is an extremely uncommon case. And currently the tlsdesc entries are only readonly protected with -z now and some hardennings against writable JUMPSLOT relocs don't work for TLSDESC so they are a security hazard. (But to fix that the static linker has to be changed.) 2017-09-29 Szabolcs Nagy * sysdeps/aarch64/dl-machine.h (elf_machine_lazy_rel): Do symbol binding and initialization non-lazily for R_AARCH64_TLSDESC. --- sysdeps/aarch64/dl-machine.h | 19 ++++++++++++++----- 1 file changed, 14 insertions(+), 5 deletions(-) diff --git a/sysdeps/aarch64/dl-machine.h b/sysdeps/aarch64/dl-machine.h index b1245476dc..9bd48752e5 100644 --- a/sysdeps/aarch64/dl-machine.h +++ b/sysdeps/aarch64/dl-machine.h @@ -428,12 +428,21 @@ elf_machine_lazy_rel (struct link_map *map, } else if (__builtin_expect (r_type == AARCH64_R(TLSDESC), 1)) { - struct tlsdesc volatile *td = - (struct tlsdesc volatile *)reloc_addr; + const Elf_Symndx symndx = ELFW (R_SYM) (reloc->r_info); + const ElfW (Sym) *symtab = (const void *)D_PTR (map, l_info[DT_SYMTAB]); + const ElfW (Sym) *sym = &symtab[symndx]; + const struct r_found_version *version = NULL; - td->arg = (void*)reloc; - td->entry = (void*)(D_PTR (map, l_info[ADDRIDX (DT_TLSDESC_PLT)]) - + map->l_addr); + if (map->l_info[VERSYMIDX (DT_VERSYM)] != NULL) + { + const ElfW (Half) *vernum = + (const void *)D_PTR (map, l_info[VERSYMIDX (DT_VERSYM)]); + version = &map->l_versions[vernum[symndx] & 0x7fff]; + } + + /* Always initialize TLS descriptors completely, because lazy + initialization requires synchronization at every TLS access. */ + elf_machine_rela (map, reloc, sym, version, reloc_addr, skip_ifunc); } else if (__glibc_unlikely (r_type == AARCH64_R(IRELATIVE))) { -- 2.11.0