efi/libstub: Unify command line param parsing

Merge the parsing of the command line carried out in arm-stub.c with
the handling in efi_parse_options(). Note that this also fixes the
missing handling of CONFIG_CMDLINE_FORCE=y, in which case the builtin
command line should supersede the one passed by the firmware.

Signed-off-by: Ard Biesheuvel <ard.biesheuvel@linaro.org>
Cc: Linus Torvalds <torvalds@linux-foundation.org>
Cc: Matt Fleming <matt@codeblueprint.co.uk>
Cc: Peter Zijlstra <peterz@infradead.org>
Cc: Thomas Gleixner <tglx@linutronix.de>
Cc: bhe@redhat.com
Cc: bhsharma@redhat.com
Cc: bp@alien8.de
Cc: eugene@hp.com
Cc: evgeny.kalugin@intel.com
Cc: jhugo@codeaurora.org
Cc: leif.lindholm@linaro.org
Cc: linux-efi@vger.kernel.org
Cc: mark.rutland@arm.com
Cc: roy.franz@cavium.com
Cc: rruigrok@codeaurora.org
Link: http://lkml.kernel.org/r/20170404160910.28115-1-ard.biesheuvel@linaro.org
Signed-off-by: Ingo Molnar <mingo@kernel.org>
This commit is contained in:
Ard Biesheuvel 2017-04-04 17:09:08 +01:00 committed by Ingo Molnar
parent 4c3f14bb87
commit 60f38de7a8
5 changed files with 22 additions and 29 deletions

View File

@ -18,8 +18,6 @@
#include "efistub.h" #include "efistub.h"
bool __nokaslr;
efi_status_t efi_open_volume(efi_system_table_t *sys_table_arg, efi_status_t efi_open_volume(efi_system_table_t *sys_table_arg,
void *__image, void **__fh) void *__image, void **__fh)
{ {
@ -153,18 +151,6 @@ unsigned long efi_entry(void *handle, efi_system_table_t *sys_table,
goto fail; goto fail;
} }
/* check whether 'nokaslr' was passed on the command line */
if (IS_ENABLED(CONFIG_RANDOMIZE_BASE)) {
static const u8 default_cmdline[] = CONFIG_CMDLINE;
const u8 *str, *cmdline = cmdline_ptr;
if (IS_ENABLED(CONFIG_CMDLINE_FORCE))
cmdline = default_cmdline;
str = strstr(cmdline, "nokaslr");
if (str == cmdline || (str > cmdline && *(str - 1) == ' '))
__nokaslr = true;
}
si = setup_graphics(sys_table); si = setup_graphics(sys_table);
status = handle_kernel_image(sys_table, image_addr, &image_size, status = handle_kernel_image(sys_table, image_addr, &image_size,
@ -176,9 +162,13 @@ unsigned long efi_entry(void *handle, efi_system_table_t *sys_table,
goto fail_free_cmdline; goto fail_free_cmdline;
} }
status = efi_parse_options(cmdline_ptr); if (IS_ENABLED(CONFIG_CMDLINE_EXTEND) ||
if (status != EFI_SUCCESS) IS_ENABLED(CONFIG_CMDLINE_FORCE) ||
pr_efi_err(sys_table, "Failed to parse EFI cmdline options\n"); cmdline_size == 0)
efi_parse_options(CONFIG_CMDLINE);
if (!IS_ENABLED(CONFIG_CMDLINE_FORCE) && cmdline_size > 0)
efi_parse_options(cmdline_ptr);
secure_boot = efi_get_secureboot(sys_table); secure_boot = efi_get_secureboot(sys_table);

View File

@ -16,8 +16,6 @@
#include "efistub.h" #include "efistub.h"
extern bool __nokaslr;
efi_status_t check_platform_features(efi_system_table_t *sys_table_arg) efi_status_t check_platform_features(efi_system_table_t *sys_table_arg)
{ {
u64 tg; u64 tg;
@ -52,7 +50,7 @@ efi_status_t handle_kernel_image(efi_system_table_t *sys_table_arg,
u64 phys_seed = 0; u64 phys_seed = 0;
if (IS_ENABLED(CONFIG_RANDOMIZE_BASE)) { if (IS_ENABLED(CONFIG_RANDOMIZE_BASE)) {
if (!__nokaslr) { if (!nokaslr()) {
status = efi_get_random_bytes(sys_table_arg, status = efi_get_random_bytes(sys_table_arg,
sizeof(phys_seed), sizeof(phys_seed),
(u8 *)&phys_seed); (u8 *)&phys_seed);

View File

@ -32,6 +32,13 @@
static unsigned long __chunk_size = EFI_READ_CHUNK_SIZE; static unsigned long __chunk_size = EFI_READ_CHUNK_SIZE;
static int __section(.data) __nokaslr;
int __pure nokaslr(void)
{
return __nokaslr;
}
#define EFI_MMAP_NR_SLACK_SLOTS 8 #define EFI_MMAP_NR_SLACK_SLOTS 8
struct file_info { struct file_info {
@ -409,17 +416,13 @@ static efi_status_t efi_file_close(void *handle)
* environments, first in the early boot environment of the EFI boot * environments, first in the early boot environment of the EFI boot
* stub, and subsequently during the kernel boot. * stub, and subsequently during the kernel boot.
*/ */
efi_status_t efi_parse_options(char *cmdline) efi_status_t efi_parse_options(char const *cmdline)
{ {
char *str; char *str;
/* str = strstr(cmdline, "nokaslr");
* Currently, the only efi= option we look for is 'nochunk', which if (str == cmdline || (str && str > cmdline && *(str - 1) == ' '))
* is intended to work around known issues on certain x86 UEFI __nokaslr = 1;
* versions. So ignore for now on other architectures.
*/
if (!IS_ENABLED(CONFIG_X86))
return EFI_SUCCESS;
/* /*
* If no EFI parameters were specified on the cmdline we've got * If no EFI parameters were specified on the cmdline we've got

View File

@ -24,6 +24,8 @@
#define EFI_ALLOC_ALIGN EFI_PAGE_SIZE #define EFI_ALLOC_ALIGN EFI_PAGE_SIZE
#endif #endif
extern int __pure nokaslr(void);
void efi_char16_printk(efi_system_table_t *, efi_char16_t *); void efi_char16_printk(efi_system_table_t *, efi_char16_t *);
efi_status_t efi_open_volume(efi_system_table_t *sys_table_arg, void *__image, efi_status_t efi_open_volume(efi_system_table_t *sys_table_arg, void *__image,

View File

@ -1471,7 +1471,7 @@ efi_status_t handle_cmdline_files(efi_system_table_t *sys_table_arg,
unsigned long *load_addr, unsigned long *load_addr,
unsigned long *load_size); unsigned long *load_size);
efi_status_t efi_parse_options(char *cmdline); efi_status_t efi_parse_options(char const *cmdline);
efi_status_t efi_setup_gop(efi_system_table_t *sys_table_arg, efi_status_t efi_setup_gop(efi_system_table_t *sys_table_arg,
struct screen_info *si, efi_guid_t *proto, struct screen_info *si, efi_guid_t *proto,