Skip to content

Commit 0266def

Browse files
davidhildenbrandjgross1
authored andcommitted
xen/balloon: Fix mapping PG_offline pages to user space
The XEN balloon driver - in contrast to other balloon drivers - allows to map some inflated pages to user space. Such pages are allocated via alloc_xenballooned_pages() and freed via free_xenballooned_pages(). The pfn space of these allocated pages is used to map other things by the hypervisor using hypercalls. Pages marked with PG_offline must never be mapped to user space (as this page type uses the mapcount field of struct pages). So what we can do is, clear/set PG_offline when allocating/freeing an inflated pages. This way, most inflated pages can be excluded by dumping tools and the "reused for other purpose" balloon pages are correctly not marked as PG_offline. Fixes: 77c4adf (xen/balloon: mark inflated pages PG_offline) Reported-by: Julien Grall <julien.grall@arm.com> Tested-by: Julien Grall <julien.grall@arm.com> Signed-off-by: David Hildenbrand <david@redhat.com> Reviewed-by: Juergen Gross <jgross@suse.com> Signed-off-by: Juergen Gross <jgross@suse.com>
1 parent f261c4e commit 0266def

File tree

1 file changed

+4
-1
lines changed

1 file changed

+4
-1
lines changed

drivers/xen/balloon.c

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -604,6 +604,7 @@ int alloc_xenballooned_pages(int nr_pages, struct page **pages)
604604
while (pgno < nr_pages) {
605605
page = balloon_retrieve(true);
606606
if (page) {
607+
__ClearPageOffline(page);
607608
pages[pgno++] = page;
608609
#ifdef CONFIG_XEN_HAVE_PVMMU
609610
/*
@@ -645,8 +646,10 @@ void free_xenballooned_pages(int nr_pages, struct page **pages)
645646
mutex_lock(&balloon_mutex);
646647

647648
for (i = 0; i < nr_pages; i++) {
648-
if (pages[i])
649+
if (pages[i]) {
650+
__SetPageOffline(pages[i]);
649651
balloon_append(pages[i]);
652+
}
650653
}
651654

652655
balloon_stats.target_unpopulated -= nr_pages;

0 commit comments

Comments
 (0)