diff options
author | Avi Kivity <avi@redhat.com> | 2010-12-28 12:09:07 +0200 |
---|---|---|
committer | Avi Kivity <avi@redhat.com> | 2010-12-29 12:35:29 +0200 |
commit | 649497d1a3676020802ebba04a3d9bb31253adb5 (patch) | |
tree | d413537c05b9cc23cc0725d0aeaa7bb37ae81407 /arch | |
parent | 0a59228168d3722b71f8e3dbc623316fb4be78f4 (diff) | |
download | op-kernel-dev-649497d1a3676020802ebba04a3d9bb31253adb5.zip op-kernel-dev-649497d1a3676020802ebba04a3d9bb31253adb5.tar.gz |
KVM: MMU: Fix incorrect direct gfn for unpaged mode shadow
We use the physical address instead of the base gfn for the four
PAE page directories we use in unpaged mode. When the guest accesses
an address above 1GB that is backed by a large host page, a BUG_ON()
in kvm_mmu_set_gfn() triggers.
Resolves: https://bugzilla.kernel.org/show_bug.cgi?id=21962
Reported-and-tested-by: Nicolas Prochazka <prochazka.nicolas@gmail.com>
KVM-Stable-Tag.
Signed-off-by: Avi Kivity <avi@redhat.com>
Diffstat (limited to 'arch')
-rw-r--r-- | arch/x86/kvm/mmu.c | 3 |
1 files changed, 2 insertions, 1 deletions
diff --git a/arch/x86/kvm/mmu.c b/arch/x86/kvm/mmu.c index fb8b376..fbb04ae 100644 --- a/arch/x86/kvm/mmu.c +++ b/arch/x86/kvm/mmu.c @@ -2394,7 +2394,8 @@ static int mmu_alloc_direct_roots(struct kvm_vcpu *vcpu) ASSERT(!VALID_PAGE(root)); spin_lock(&vcpu->kvm->mmu_lock); kvm_mmu_free_some_pages(vcpu); - sp = kvm_mmu_get_page(vcpu, i << 30, i << 30, + sp = kvm_mmu_get_page(vcpu, i << (30 - PAGE_SHIFT), + i << 30, PT32_ROOT_LEVEL, 1, ACC_ALL, NULL); root = __pa(sp->spt); |