From: "Schimpe, Christina" <christina.schimpe@intel.com>
To: Thiago Jung Bauermann <thiago.bauermann@linaro.org>
Cc: "gdb-patches@sourceware.org" <gdb-patches@sourceware.org>
Subject: RE: [PATCH v2 8/9] gdb: Implement the hook 'is_no_return_shadow_stack_address' for amd64 linux.
Date: Mon, 18 May 2026 10:13:41 +0000 [thread overview]
Message-ID: <PH0PR11MB7636C6ACECC21C5C6B573729F9032@PH0PR11MB7636.namprd11.prod.outlook.com> (raw)
In-Reply-To: <87pl31z3c4.fsf@linaro.org>
> -----Original Message-----
> From: Thiago Jung Bauermann <thiago.bauermann@linaro.org>
> Sent: Dienstag, 12. Mai 2026 05:58
> To: Schimpe, Christina <christina.schimpe@intel.com>
> Cc: gdb-patches@sourceware.org
> Subject: Re: [PATCH v2 8/9] gdb: Implement the hook
> 'is_no_return_shadow_stack_address' for amd64 linux.
>
> Christina Schimpe <christina.schimpe@intel.com> writes:
>
> > There can be elements on the shadow stack which are not return addresses.
> > This can happen, for instance, in case of signals on amd64 linux.
> > The old shadow stack pointer is pushed in a special format with bit 63 set.
> >
> > |1...old SSP| - Pointer to old pre-signal ssp in sigframe token format
> > (bit 63 set to 1)
> >
> > Linux kernel documentation:
> > https://docs.kernel.org/arch/x86/shstk.html
> >
> > Implement the gdbarch hook is_no_return_shadow_stack_address to
> detect
> > this scenario to print the shadow stack backtrace correctly.
> > ---
> > gdb/amd64-linux-tdep.c | 55 ++++++++++++++++++-
> > .../amd64-shadow-stack-backtrace-signal.exp | 49 +++++++++++++++++
> > .../gdb.arch/amd64-shadow-stack-signal.c | 31 +++++++++++
> > 3 files changed, 134 insertions(+), 1 deletion(-) create mode 100644
> > gdb/testsuite/gdb.arch/amd64-shadow-stack-backtrace-signal.exp
> > create mode 100644 gdb/testsuite/gdb.arch/amd64-shadow-stack-signal.c
>
> Just one nit below. In any case:
>
> Reviewed-by: Thiago Jung Bauermann <thiago.bauermann@linaro.org>
>
> I don't know much about MI, so I won't review patch 9.
>
> > diff --git a/gdb/amd64-linux-tdep.c b/gdb/amd64-linux-tdep.c index
> > a4eabccf667..b517f9772f5 100644
> > --- a/gdb/amd64-linux-tdep.c
> > +++ b/gdb/amd64-linux-tdep.c
> > @@ -1986,6 +1986,56 @@ amd64_linux_get_shadow_stack_size
> > return shadow_stack_bytes / 8;
> > }
> >
> > +/* Return true, if FRAME is a valid shadow stack frame while FRAME.VALUE
> > + does not refer to a return address. This can happen, for instance, in
> > + case of signals. The old shadow stack pointer is pushed in a special
> > + format with bit 63 set. In case this is true, configure the string
> > + which describes the frame and is displayed instead of the address in
> > + the shadow stack backtrace. */
> > +
> > +static bool
> > +amd64_linux_is_no_return_shadow_stack_address
> > + (gdbarch *gdbarch,
> > + const shadow_stack_frame_info &frame,
> > + std::string &frame_type)
> > +{
> > + /* FRAME must be a valid shadow stack frame. */
> > + std::pair<CORE_ADDR, CORE_ADDR> range;
> > + gdb_assert (gdbarch_address_in_shadow_stack_memory_range
> (gdbarch,
> > + frame.ssp,
> > + &range));
> > +
> > + /* In case bit 63 is not configured, the address on the shadow stack
> > + should be a return address. */
> > + constexpr CORE_ADDR mask = (CORE_ADDR) 1 << 63; if ((frame.value &
> > + mask) == 0)
> > + return false;
> > +
> > + /* To compare the shadow stack pointer of the previous frame with the
> > + value of FRAME, we must clear bit 63. */ CORE_ADDR
> > + shadow_stack_val_cleared = (frame.value & (~mask));
> > +
> > + /* Compute the previous/old SSP. The shadow stack grows downwards.
> To
> > + compute the previous shadow stack pointer, we need to increment
> > + FRAME.SSP. */
> > + CORE_ADDR prev_ssp
> > + = frame.ssp + gdbarch_shadow_stack_element_size_aligned
> > + (gdbarch);
> > +
> > + /* We incremented FRAME.SSP by one element to compute PREV_SSP
> before.
> > + In case FRAME.SSP points to the first element of the shadow stack,
> > + PREV_SSP must point to the bottom of the shadow stack
> (RANGE.SECOND),
> > + but not beyond that address. */ gdb_assert (prev_ssp >
> > + range.first && prev_ssp <= range.second);
>
> It's better to use one gdb_assert per condition, so that if it triggers, it's clear
> which condition was violated.
Thanks, will fix!
Note that the patch might change too due to the changes indicated here:
https://sourceware.org/pipermail/gdb-patches/2026-May/227481.html
But the main logic will stay the same...
Christina
Intel Deutschland GmbH
Registered Address: Dornacher Strasse 1, 85622 Feldkirchen, Germany
Tel: +49 89 991 430, www.intel.de
Managing Directors: Harry Demas, Jeffrey Schneiderman, Yin Chong Sorrell
Chairperson of the Supervisory Board: Nicole Lau
Registered Seat: Munich
Commercial Register: Amtsgericht Muenchen HRB 186928
next prev parent reply other threads:[~2026-05-18 10:14 UTC|newest]
Thread overview: 63+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-01-23 8:05 [PATCH v2 0/9] Add new command to print the shadow stack backtrace Christina Schimpe
2026-01-23 8:05 ` [PATCH v2 1/9] gdb: Generalize handling of the shadow stack pointer Christina Schimpe
2026-02-19 17:55 ` Tom Tromey
2026-02-27 18:09 ` Schimpe, Christina
2026-02-27 18:26 ` Tom Tromey
2026-03-02 11:53 ` Schimpe, Christina
2026-04-09 9:49 ` Schimpe, Christina
2026-04-14 17:34 ` Tom Tromey
2026-04-15 7:35 ` Schimpe, Christina
2026-04-15 15:54 ` Tom Tromey
2026-02-27 22:54 ` Thiago Jung Bauermann
2026-03-06 3:15 ` Thiago Jung Bauermann
2026-03-06 3:57 ` Thiago Jung Bauermann
2026-04-09 11:57 ` Schimpe, Christina
2026-04-10 5:03 ` Thiago Jung Bauermann
2026-04-10 7:53 ` Schimpe, Christina
2026-04-09 12:06 ` Schimpe, Christina
2026-04-10 5:05 ` Thiago Jung Bauermann
2026-01-23 8:05 ` [PATCH v2 2/9] gdb: Refactor 'stack.c:print_frame' Christina Schimpe
2026-01-23 8:05 ` [PATCH v2 3/9] gdb: Introduce 'stack.c:print_pc' function without frame argument Christina Schimpe
2026-01-23 8:05 ` [PATCH v2 4/9] gdb: Refactor 'find_symbol_funname' and 'info_frame_command_core' in stack.c Christina Schimpe
2026-02-19 17:32 ` Tom Tromey
2026-04-09 12:40 ` Schimpe, Christina
2026-01-23 8:05 ` [PATCH v2 5/9] gdb: Refactor 'stack.c:print_frame_info' Christina Schimpe
2026-01-23 8:05 ` [PATCH v2 6/9] gdb: Add command option 'bt -shadow' to print the shadow stack backtrace Christina Schimpe
2026-01-23 8:52 ` Eli Zaretskii
2026-02-13 16:42 ` Schimpe, Christina
2026-04-14 8:43 ` Schimpe, Christina
2026-04-14 11:53 ` Eli Zaretskii
2026-04-14 13:28 ` Schimpe, Christina
2026-04-14 14:12 ` Eli Zaretskii
2026-04-14 15:05 ` Schimpe, Christina
2026-02-19 18:19 ` Tom Tromey
2026-04-09 16:48 ` Schimpe, Christina
2026-03-06 4:31 ` Thiago Jung Bauermann
2026-03-06 9:39 ` Schimpe, Christina
2026-04-09 15:12 ` Schimpe, Christina
2026-04-10 6:21 ` Thiago Jung Bauermann
2026-04-10 12:12 ` Schimpe, Christina
2026-05-12 3:32 ` Thiago Jung Bauermann
2026-05-18 10:06 ` Schimpe, Christina
2026-01-23 8:05 ` [PATCH v2 7/9] gdb: Provide gdbarch hook to distinguish shadow stack backtrace elements Christina Schimpe
2026-01-23 8:47 ` Eli Zaretskii
2026-02-19 17:41 ` Tom Tromey
2026-05-12 3:49 ` Thiago Jung Bauermann
2026-05-18 10:11 ` Schimpe, Christina
2026-01-23 8:05 ` [PATCH v2 8/9] gdb: Implement the hook 'is_no_return_shadow_stack_address' for amd64 linux Christina Schimpe
2026-02-19 17:43 ` Tom Tromey
2026-05-12 3:58 ` Thiago Jung Bauermann
2026-05-18 10:13 ` Schimpe, Christina [this message]
2026-01-23 8:05 ` [PATCH v2 9/9] gdb, mi: Add -shadow-stack-list-frames command Christina Schimpe
2026-01-23 8:46 ` Eli Zaretskii
2026-02-13 19:17 ` Schimpe, Christina
2026-02-19 18:26 ` Tom Tromey
2026-04-22 19:25 ` Schimpe, Christina
2026-03-02 12:39 ` [PATCH v2 0/9] Add new command to print the shadow stack backtrace Schimpe, Christina
2026-05-07 4:14 ` Thiago Jung Bauermann
2026-05-07 5:09 ` Thiago Jung Bauermann
2026-05-18 10:08 ` Schimpe, Christina
2026-05-18 10:10 ` Schimpe, Christina
2026-05-21 2:57 ` Thiago Jung Bauermann
2026-05-18 8:39 ` Schimpe, Christina
2026-05-21 2:23 ` Thiago Jung Bauermann
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=PH0PR11MB7636C6ACECC21C5C6B573729F9032@PH0PR11MB7636.namprd11.prod.outlook.com \
--to=christina.schimpe@intel.com \
--cc=gdb-patches@sourceware.org \
--cc=thiago.bauermann@linaro.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox