1b0104773SPascal Brand /* 2b0104773SPascal Brand * Copyright (c) 2014, STMicroelectronics International N.V. 3b0104773SPascal Brand * All rights reserved. 4b0104773SPascal Brand * 5b0104773SPascal Brand * Redistribution and use in source and binary forms, with or without 6b0104773SPascal Brand * modification, are permitted provided that the following conditions are met: 7b0104773SPascal Brand * 8b0104773SPascal Brand * 1. Redistributions of source code must retain the above copyright notice, 9b0104773SPascal Brand * this list of conditions and the following disclaimer. 10b0104773SPascal Brand * 11b0104773SPascal Brand * 2. Redistributions in binary form must reproduce the above copyright notice, 12b0104773SPascal Brand * this list of conditions and the following disclaimer in the documentation 13b0104773SPascal Brand * and/or other materials provided with the distribution. 14b0104773SPascal Brand * 15b0104773SPascal Brand * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" 16b0104773SPascal Brand * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 17b0104773SPascal Brand * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 18b0104773SPascal Brand * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE 19b0104773SPascal Brand * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR 20b0104773SPascal Brand * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF 21b0104773SPascal Brand * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS 22b0104773SPascal Brand * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN 23b0104773SPascal Brand * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 24b0104773SPascal Brand * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE 25b0104773SPascal Brand * POSSIBILITY OF SUCH DAMAGE. 26b0104773SPascal Brand */ 272eb765fcSJens Wiklander #include <util.h> 28b0104773SPascal Brand #include <kernel/tee_common_otp.h> 29b0104773SPascal Brand #include <kernel/tee_common.h> 30b0104773SPascal Brand #include <kernel/tee_compat.h> 31b0104773SPascal Brand #include <tee_api_types.h> 32b0104773SPascal Brand #include <kernel/tee_ta_manager.h> 33b0104773SPascal Brand #include <utee_types.h> 34b0104773SPascal Brand #include <tee/tee_svc.h> 35ffe04039SJerome Forissier #include <tee/tee_cryp_utl.h> 36b0104773SPascal Brand #include <mm/tee_mmu.h> 37b0104773SPascal Brand #include <mm/tee_mm.h> 38b0104773SPascal Brand #include <kernel/tee_rpc.h> 39b0104773SPascal Brand #include <kernel/tee_rpc_types.h> 40b0104773SPascal Brand #include <kernel/tee_time.h> 41b0104773SPascal Brand 42b0104773SPascal Brand #include <user_ta_header.h> 434de4bebcSJens Wiklander #include <trace.h> 444de4bebcSJens Wiklander #include <kernel/trace_ta.h> 45b0104773SPascal Brand #include <kernel/chip_services.h> 46b0104773SPascal Brand 47e86f1266SJens Wiklander #include <assert.h> 48e86f1266SJens Wiklander 49e86f1266SJens Wiklander vaddr_t tee_svc_uref_base; 50e86f1266SJens Wiklander 518a1e7b89SJerome Forissier #if (TRACE_LEVEL == TRACE_FLOW) && defined(CFG_TEE_CORE_TA_TRACE) 524de4bebcSJens Wiklander void tee_svc_trace_syscall(int num) 534de4bebcSJens Wiklander { 544de4bebcSJens Wiklander /* #0 is syscall return, not really interesting */ 554de4bebcSJens Wiklander if (num == 0) 564de4bebcSJens Wiklander return; 574de4bebcSJens Wiklander FMSG("syscall #%d", num); 584de4bebcSJens Wiklander } 594de4bebcSJens Wiklander #endif 604de4bebcSJens Wiklander 61453a5030SJerome Forissier void syscall_log(const void *buf __unused, size_t len __unused) 62b0104773SPascal Brand { 637c876f12SPascal Brand #ifdef CFG_TEE_CORE_TA_TRACE 64b0104773SPascal Brand char *kbuf; 65b0104773SPascal Brand 66b0104773SPascal Brand if (len == 0) 67b0104773SPascal Brand return; 68b0104773SPascal Brand 69b0104773SPascal Brand kbuf = malloc(len); 70b0104773SPascal Brand if (kbuf == NULL) 71b0104773SPascal Brand return; 72c0346845SJens Wiklander *kbuf = '\0'; 73b0104773SPascal Brand 74b0104773SPascal Brand /* log as Info/Raw traces */ 75b0104773SPascal Brand if (tee_svc_copy_from_user(NULL, kbuf, buf, len) == TEE_SUCCESS) 764de4bebcSJens Wiklander TAMSG_RAW("%.*s", (int)len, kbuf); 77b0104773SPascal Brand 78b0104773SPascal Brand free(kbuf); 797c876f12SPascal Brand #endif 80b0104773SPascal Brand } 81b0104773SPascal Brand 82453a5030SJerome Forissier TEE_Result syscall_reserved(void) 83b7fc217fSPascal Brand { 84b7fc217fSPascal Brand return TEE_ERROR_GENERIC; 85b7fc217fSPascal Brand } 86b7fc217fSPascal Brand 87453a5030SJerome Forissier TEE_Result syscall_not_supported(void) 88197d17e7SSY Chiu { 89197d17e7SSY Chiu return TEE_ERROR_NOT_SUPPORTED; 90197d17e7SSY Chiu } 91197d17e7SSY Chiu 92453a5030SJerome Forissier uint32_t syscall_dummy(uint32_t *a __unused) 93b0104773SPascal Brand { 94851aa858SJens Wiklander DMSG("tee_svc_sys_dummy: a 0x%" PRIxVA, (vaddr_t)a); 95b0104773SPascal Brand return 0; 96b0104773SPascal Brand } 97b0104773SPascal Brand 98e86f1266SJens Wiklander uint32_t syscall_dummy_7args(unsigned long a1 __unused, 99e86f1266SJens Wiklander unsigned long a2 __unused, unsigned long a3 __unused, 100e86f1266SJens Wiklander unsigned long a4 __unused, unsigned long a5 __unused, 101e86f1266SJens Wiklander unsigned long a6 __unused, unsigned long a7 __unused) 102b0104773SPascal Brand { 103e86f1266SJens Wiklander DMSG("tee_svc_sys_dummy_7args: 0x%lx, 0x%lx, 0x%lx, 0x%lx, 0x%lx, %lx, %lx\n", 104b0104773SPascal Brand a1, a2, a3, a4, a5, a6, a7); 105b0104773SPascal Brand return 0; 106b0104773SPascal Brand } 107b0104773SPascal Brand 108453a5030SJerome Forissier uint32_t syscall_nocall(void) 109b0104773SPascal Brand { 110b0104773SPascal Brand DMSG("No syscall"); 111b0104773SPascal Brand return 0x1; 112b0104773SPascal Brand } 113b0104773SPascal Brand 114ab35d7adSCedric Chaumont /* Configuration properties */ 115ab35d7adSCedric Chaumont /* API implementation version */ 116ab35d7adSCedric Chaumont static const char api_vers[] = TO_STR(CFG_TEE_API_VERSION); 117ab35d7adSCedric Chaumont 118ab35d7adSCedric Chaumont /* Implementation description (implementation-dependent) */ 119ab35d7adSCedric Chaumont static const char descr[] = TO_STR(CFG_TEE_IMPL_DESCR); 120ab35d7adSCedric Chaumont 121b0104773SPascal Brand /* 122ab35d7adSCedric Chaumont * TA persistent time protection level 123ab35d7adSCedric Chaumont * 100: Persistent time based on an REE-controlled real-time clock 124ab35d7adSCedric Chaumont * and on the TEE Trusted Storage for the storage of origins (default). 125ab35d7adSCedric Chaumont * 1000: Persistent time based on a TEE-controlled real-time clock 126ab35d7adSCedric Chaumont * and the TEE Trusted Storage. 127ab35d7adSCedric Chaumont * The real-time clock MUST be out of reach of software attacks 128ab35d7adSCedric Chaumont * from the REE. 129ab35d7adSCedric Chaumont */ 130b0104773SPascal Brand static const uint32_t ta_time_prot_lvl = 100; 131ab35d7adSCedric Chaumont 132ab35d7adSCedric Chaumont /* Elliptic Curve Cryptographic support (false by default) */ 133ab35d7adSCedric Chaumont static const bool crypto_ecc_en; 134ab35d7adSCedric Chaumont 135ab35d7adSCedric Chaumont /* 136ab35d7adSCedric Chaumont * Trusted storage anti rollback protection level 137ab35d7adSCedric Chaumont * 0 (or missing): No antirollback protection (default) 138ab35d7adSCedric Chaumont * 100: Antirollback enforced at REE level 139ab35d7adSCedric Chaumont * 1000: Antirollback TEE-controlled hardware 140ab35d7adSCedric Chaumont */ 141ab35d7adSCedric Chaumont static const uint32_t ts_antiroll_prot_lvl; 142ab35d7adSCedric Chaumont 143ab35d7adSCedric Chaumont /* Trusted OS implementation version */ 144ab35d7adSCedric Chaumont static const char trustedos_impl_version[] = TO_STR(CFG_TEE_IMPL_VERSION); 145ab35d7adSCedric Chaumont 146ab35d7adSCedric Chaumont /* Trusted OS implementation version (binary value) */ 147ab35d7adSCedric Chaumont static const uint32_t trustedos_impl_bin_version; /* 0 by default */ 148ab35d7adSCedric Chaumont 149ab35d7adSCedric Chaumont /* Trusted OS implementation manufacturer name */ 150ab35d7adSCedric Chaumont static const char trustedos_manufacturer[] = TO_STR(CFG_TEE_MANUFACTURER); 151ab35d7adSCedric Chaumont 152ab35d7adSCedric Chaumont /* Trusted firmware version */ 153ab35d7adSCedric Chaumont static const char fw_impl_version[] = TO_STR(CFG_TEE_FW_IMPL_VERSION); 154ab35d7adSCedric Chaumont 155ab35d7adSCedric Chaumont /* Trusted firmware version (binary value) */ 156ab35d7adSCedric Chaumont static const uint32_t fw_impl_bin_version; /* 0 by default */ 157ab35d7adSCedric Chaumont 158ab35d7adSCedric Chaumont /* Trusted firmware manufacturer name */ 159ab35d7adSCedric Chaumont static const char fw_manufacturer[] = TO_STR(CFG_TEE_FW_MANUFACTURER); 160ab35d7adSCedric Chaumont 161ab35d7adSCedric Chaumont struct tee_props { 162ab35d7adSCedric Chaumont const void *data; 163ab35d7adSCedric Chaumont const size_t len; 164ab35d7adSCedric Chaumont }; 165ab35d7adSCedric Chaumont 166ab35d7adSCedric Chaumont /* Consistent with enum utee_property */ 167ab35d7adSCedric Chaumont const struct tee_props tee_props_lut[] = { 168ab35d7adSCedric Chaumont {api_vers, sizeof(api_vers)}, 169ab35d7adSCedric Chaumont {descr, sizeof(descr)}, 170ab35d7adSCedric Chaumont {0, 0}, /* dev_id */ 1712cdaaacbSJerome Forissier {0, 0}, /* system time protection level */ 172ab35d7adSCedric Chaumont {&ta_time_prot_lvl, sizeof(ta_time_prot_lvl)}, 173ab35d7adSCedric Chaumont {&crypto_ecc_en, sizeof(crypto_ecc_en)}, 174ab35d7adSCedric Chaumont {&ts_antiroll_prot_lvl, sizeof(ts_antiroll_prot_lvl)}, 175ab35d7adSCedric Chaumont {trustedos_impl_version, sizeof(trustedos_impl_version)}, 176ab35d7adSCedric Chaumont {&trustedos_impl_bin_version, 177ab35d7adSCedric Chaumont sizeof(trustedos_impl_bin_version)}, 178ab35d7adSCedric Chaumont {trustedos_manufacturer, sizeof(trustedos_manufacturer)}, 179ab35d7adSCedric Chaumont {fw_impl_version, sizeof(fw_impl_version)}, 180ab35d7adSCedric Chaumont {&fw_impl_bin_version, sizeof(fw_impl_bin_version)}, 181ab35d7adSCedric Chaumont {fw_manufacturer, sizeof(fw_manufacturer)}, 182ab35d7adSCedric Chaumont {0, 0}, /* client_id */ 183ab35d7adSCedric Chaumont {0, 0}, /* ta_app_id */ 184ab35d7adSCedric Chaumont }; 185ab35d7adSCedric Chaumont 186e86f1266SJens Wiklander TEE_Result syscall_get_property(unsigned long prop, void *buf, size_t blen) 187ab35d7adSCedric Chaumont { 188b0104773SPascal Brand struct tee_ta_session *sess; 189b0104773SPascal Brand TEE_Result res; 190b0104773SPascal Brand 191ab35d7adSCedric Chaumont if (prop > ARRAY_SIZE(tee_props_lut)-1) 192ab35d7adSCedric Chaumont return TEE_ERROR_NOT_IMPLEMENTED; 193ab35d7adSCedric Chaumont 194b0104773SPascal Brand res = tee_ta_get_current_session(&sess); 195b0104773SPascal Brand if (res != TEE_SUCCESS) 196b0104773SPascal Brand return res; 197b0104773SPascal Brand 198b0104773SPascal Brand switch (prop) { 199b0104773SPascal Brand case UTEE_PROP_TEE_DEV_ID: 200b0104773SPascal Brand { 201b0104773SPascal Brand TEE_UUID uuid; 202ab35d7adSCedric Chaumont const size_t nslen = 5; 203ab35d7adSCedric Chaumont uint8_t data[5 + 204b0104773SPascal Brand FVR_DIE_ID_NUM_REGS * sizeof(uint32_t)] = { 205ab35d7adSCedric Chaumont 'O', 'P', 'T', 'E', 'E' }; 206b0104773SPascal Brand 207b0104773SPascal Brand if (blen < sizeof(uuid)) 208b0104773SPascal Brand return TEE_ERROR_SHORT_BUFFER; 209b0104773SPascal Brand 210b0104773SPascal Brand if (tee_otp_get_die_id 211b0104773SPascal Brand (data + nslen, sizeof(data) - nslen)) 212b0104773SPascal Brand return TEE_ERROR_BAD_STATE; 213b0104773SPascal Brand 214ffe04039SJerome Forissier res = tee_hash_createdigest(TEE_ALG_SHA256, data, 215ffe04039SJerome Forissier sizeof(data), 216ffe04039SJerome Forissier (uint8_t *)&uuid, 217ffe04039SJerome Forissier sizeof(uuid)); 218b0104773SPascal Brand if (res != TEE_SUCCESS) 219b0104773SPascal Brand return TEE_ERROR_BAD_STATE; 220b0104773SPascal Brand 221b0104773SPascal Brand /* 222b0104773SPascal Brand * Changes the random value into and UUID as specifiec 223b0104773SPascal Brand * in RFC 4122. The magic values are from the example 224b0104773SPascal Brand * code in the RFC. 225b0104773SPascal Brand * 226b0104773SPascal Brand * TEE_UUID is defined slightly different from the RFC, 227b0104773SPascal Brand * but close enough for our purpose. 228b0104773SPascal Brand */ 229b0104773SPascal Brand 230b0104773SPascal Brand uuid.timeHiAndVersion &= 0x0fff; 231b0104773SPascal Brand uuid.timeHiAndVersion |= 5 << 12; 232b0104773SPascal Brand 233b0104773SPascal Brand /* uuid.clock_seq_hi_and_reserved in the RFC */ 234b0104773SPascal Brand uuid.clockSeqAndNode[0] &= 0x3f; 235b0104773SPascal Brand uuid.clockSeqAndNode[0] |= 0x80; 236b0104773SPascal Brand 237e86f1266SJens Wiklander return tee_svc_copy_to_user(sess, buf, &uuid, 238b0104773SPascal Brand sizeof(TEE_UUID)); 239b0104773SPascal Brand } 240b0104773SPascal Brand 2412cdaaacbSJerome Forissier case UTEE_PROP_TEE_SYS_TIME_PROT_LEVEL: 2422cdaaacbSJerome Forissier { 2432cdaaacbSJerome Forissier uint32_t prot; 2442cdaaacbSJerome Forissier 2452cdaaacbSJerome Forissier if (blen < sizeof(prot)) 2462cdaaacbSJerome Forissier return TEE_ERROR_SHORT_BUFFER; 2472cdaaacbSJerome Forissier prot = tee_time_get_sys_time_protection_level(); 2482cdaaacbSJerome Forissier return tee_svc_copy_to_user(sess, (void *)buf, 2492cdaaacbSJerome Forissier &prot, sizeof(prot)); 2502cdaaacbSJerome Forissier } 2512cdaaacbSJerome Forissier 252b0104773SPascal Brand case UTEE_PROP_CLIENT_ID: 253b0104773SPascal Brand if (blen < sizeof(TEE_Identity)) 254b0104773SPascal Brand return TEE_ERROR_SHORT_BUFFER; 255e86f1266SJens Wiklander return tee_svc_copy_to_user(sess, buf, &sess->clnt_id, 256ab35d7adSCedric Chaumont sizeof(TEE_Identity)); 25737d6ae92SPascal Brand 258b0104773SPascal Brand case UTEE_PROP_TA_APP_ID: 259b0104773SPascal Brand if (blen < sizeof(TEE_UUID)) 260b0104773SPascal Brand return TEE_ERROR_SHORT_BUFFER; 261e86f1266SJens Wiklander return tee_svc_copy_to_user(sess, buf, &sess->ctx->uuid, 262ab35d7adSCedric Chaumont sizeof(TEE_UUID)); 263b0104773SPascal Brand default: 264ab35d7adSCedric Chaumont if (blen < tee_props_lut[prop].len) 265ab35d7adSCedric Chaumont return TEE_ERROR_SHORT_BUFFER; 266e86f1266SJens Wiklander return tee_svc_copy_to_user(sess, buf, tee_props_lut[prop].data, 267ab35d7adSCedric Chaumont tee_props_lut[prop].len); 268b0104773SPascal Brand } 269b0104773SPascal Brand } 270b0104773SPascal Brand 271e86f1266SJens Wiklander static void utee_param_to_param(struct tee_ta_param *p, struct utee_params *up) 272e86f1266SJens Wiklander { 273e86f1266SJens Wiklander size_t n; 274e86f1266SJens Wiklander uint32_t types = up->types; 275e86f1266SJens Wiklander 276e86f1266SJens Wiklander p->types = types; 277e86f1266SJens Wiklander for (n = 0; n < TEE_NUM_PARAMS; n++) { 278e86f1266SJens Wiklander uintptr_t a = up->vals[n * 2]; 279e86f1266SJens Wiklander size_t b = up->vals[n * 2 + 1]; 280e86f1266SJens Wiklander 281e86f1266SJens Wiklander switch (TEE_PARAM_TYPE_GET(types, n)) { 282e86f1266SJens Wiklander case TEE_PARAM_TYPE_MEMREF_INPUT: 283e86f1266SJens Wiklander case TEE_PARAM_TYPE_MEMREF_OUTPUT: 284e86f1266SJens Wiklander case TEE_PARAM_TYPE_MEMREF_INOUT: 285e86f1266SJens Wiklander p->params[n].memref.buffer = (void *)a; 286e86f1266SJens Wiklander p->params[n].memref.size = b; 287e86f1266SJens Wiklander break; 288e86f1266SJens Wiklander case TEE_PARAM_TYPE_VALUE_INPUT: 289e86f1266SJens Wiklander case TEE_PARAM_TYPE_VALUE_INOUT: 290e86f1266SJens Wiklander p->params[n].value.a = a; 291e86f1266SJens Wiklander p->params[n].value.b = b; 292e86f1266SJens Wiklander break; 293e86f1266SJens Wiklander default: 294e86f1266SJens Wiklander p->params[n].value.a = 0; 295e86f1266SJens Wiklander p->params[n].value.b = 0; 296e86f1266SJens Wiklander break; 297e86f1266SJens Wiklander } 298e86f1266SJens Wiklander } 299e86f1266SJens Wiklander } 300e86f1266SJens Wiklander 301b0104773SPascal Brand /* 302b0104773SPascal Brand * TA invokes some TA with parameter. 303b0104773SPascal Brand * If some parameters are memory references: 304b0104773SPascal Brand * - either the memref is inside TA private RAM: TA is not allowed to expose 305b0104773SPascal Brand * its private RAM: use a temporary memory buffer and copy the data. 306b0104773SPascal Brand * - or the memref is not in the TA private RAM: 307b0104773SPascal Brand * - if the memref was mapped to the TA, TA is allowed to expose it. 308b0104773SPascal Brand * - if so, converts memref virtual address into a physical address. 309b0104773SPascal Brand */ 310b0104773SPascal Brand static TEE_Result tee_svc_copy_param(struct tee_ta_session *sess, 311b0104773SPascal Brand struct tee_ta_session *called_sess, 312e86f1266SJens Wiklander struct utee_params *callee_params, 313b0104773SPascal Brand struct tee_ta_param *param, 314b0104773SPascal Brand tee_paddr_t tmp_buf_pa[TEE_NUM_PARAMS], 315b0104773SPascal Brand tee_mm_entry_t **mm) 316b0104773SPascal Brand { 317b0104773SPascal Brand size_t n; 318b0104773SPascal Brand TEE_Result res; 319b0104773SPascal Brand size_t req_mem = 0; 320b0104773SPascal Brand size_t s; 321b0104773SPascal Brand uint8_t *dst = 0; 322b0104773SPascal Brand tee_paddr_t dst_pa, src_pa = 0; 323b0104773SPascal Brand bool ta_private_memref[TEE_NUM_PARAMS]; 324b0104773SPascal Brand 325b7fc217fSPascal Brand /* fill 'param' input struct with caller params description buffer */ 326b7fc217fSPascal Brand if (!callee_params) { 327e86f1266SJens Wiklander memset(param, 0, sizeof(*param)); 328b0104773SPascal Brand } else { 329177603c7SJens Wiklander res = tee_mmu_check_access_rights(sess->ctx, 330177603c7SJens Wiklander TEE_MEMORY_ACCESS_READ | TEE_MEMORY_ACCESS_ANY_OWNER, 331e86f1266SJens Wiklander (tee_uaddr_t)callee_params, sizeof(struct utee_params)); 332177603c7SJens Wiklander if (res != TEE_SUCCESS) 333177603c7SJens Wiklander return res; 334e86f1266SJens Wiklander utee_param_to_param(param, callee_params); 335b0104773SPascal Brand } 336b0104773SPascal Brand 337b0104773SPascal Brand if ((called_sess != NULL) && 338b0104773SPascal Brand (called_sess->ctx->static_ta == NULL) && 339b0104773SPascal Brand (called_sess->ctx->flags & TA_FLAG_USER_MODE) == 0) { 340b0104773SPascal Brand /* 341b0104773SPascal Brand * kernel TA, borrow the mapping of the calling 342b0104773SPascal Brand * during this call. 343b0104773SPascal Brand */ 344b0104773SPascal Brand called_sess->calling_sess = sess; 345b0104773SPascal Brand return TEE_SUCCESS; 346b0104773SPascal Brand } 347b0104773SPascal Brand 348b0104773SPascal Brand for (n = 0; n < TEE_NUM_PARAMS; n++) { 349b0104773SPascal Brand 350b0104773SPascal Brand ta_private_memref[n] = false; 351b0104773SPascal Brand 352b0104773SPascal Brand switch (TEE_PARAM_TYPE_GET(param->types, n)) { 353b0104773SPascal Brand case TEE_PARAM_TYPE_MEMREF_INPUT: 354b0104773SPascal Brand case TEE_PARAM_TYPE_MEMREF_OUTPUT: 355b0104773SPascal Brand case TEE_PARAM_TYPE_MEMREF_INOUT: 356b0104773SPascal Brand if (param->params[n].memref.buffer == NULL) { 357b0104773SPascal Brand if (param->params[n].memref.size != 0) 358b0104773SPascal Brand return TEE_ERROR_BAD_PARAMETERS; 359b0104773SPascal Brand break; 360b0104773SPascal Brand } 361b0104773SPascal Brand /* uTA cannot expose its private memory */ 362b0104773SPascal Brand if (tee_mmu_is_vbuf_inside_ta_private(sess->ctx, 363106d8aa6SPascal Brand param->params[n].memref.buffer, 364b0104773SPascal Brand param->params[n].memref.size)) { 365b0104773SPascal Brand 366a17acc4cSSabrina Ni s = ROUNDUP(param->params[n].memref.size, 367b0104773SPascal Brand sizeof(uint32_t)); 368b0104773SPascal Brand /* Check overflow */ 369b0104773SPascal Brand if (req_mem + s < req_mem) 370b0104773SPascal Brand return TEE_ERROR_BAD_PARAMETERS; 371b0104773SPascal Brand req_mem += s; 372b0104773SPascal Brand ta_private_memref[n] = true; 373b0104773SPascal Brand break; 374b0104773SPascal Brand } 375106d8aa6SPascal Brand if (tee_mmu_is_vbuf_intersect_ta_private(sess->ctx, 376106d8aa6SPascal Brand param->params[n].memref.buffer, 377b0104773SPascal Brand param->params[n].memref.size)) 378b0104773SPascal Brand return TEE_ERROR_BAD_PARAMETERS; 379b0104773SPascal Brand 380b0104773SPascal Brand if (tee_mmu_user_va2pa(sess->ctx, 381b0104773SPascal Brand (void *)param->params[n].memref.buffer, 3820e692b78SJens Wiklander &src_pa) != TEE_SUCCESS) 383b0104773SPascal Brand return TEE_ERROR_BAD_PARAMETERS; 384b0104773SPascal Brand 385b0104773SPascal Brand param->param_attr[n] = tee_mmu_user_get_cache_attr( 386b0104773SPascal Brand sess->ctx, 387b0104773SPascal Brand (void *)param->params[n].memref.buffer); 388b0104773SPascal Brand 389b0104773SPascal Brand param->params[n].memref.buffer = (void *)src_pa; 390b0104773SPascal Brand break; 391b0104773SPascal Brand 392b0104773SPascal Brand default: 393b0104773SPascal Brand break; 394b0104773SPascal Brand } 395b0104773SPascal Brand } 396b0104773SPascal Brand 397b0104773SPascal Brand if (req_mem == 0) 398b0104773SPascal Brand return TEE_SUCCESS; 399b0104773SPascal Brand 400b0104773SPascal Brand /* Allocate section in secure DDR */ 401b0104773SPascal Brand *mm = tee_mm_alloc(&tee_mm_sec_ddr, req_mem); 402b0104773SPascal Brand if (*mm == NULL) { 403b0104773SPascal Brand DMSG("tee_mm_alloc TEE_ERROR_GENERIC"); 404b0104773SPascal Brand return TEE_ERROR_GENERIC; 405b0104773SPascal Brand } 406b0104773SPascal Brand 407b0104773SPascal Brand /* Get the virtual address for the section in secure DDR */ 408b0104773SPascal Brand res = tee_mmu_kmap(tee_mm_get_smem(*mm), req_mem, &dst); 409b0104773SPascal Brand if (res != TEE_SUCCESS) 410b0104773SPascal Brand return res; 411b0104773SPascal Brand dst_pa = tee_mm_get_smem(*mm); 412b0104773SPascal Brand 413b0104773SPascal Brand for (n = 0; n < 4; n++) { 414b0104773SPascal Brand 415b0104773SPascal Brand if (ta_private_memref[n] == false) 416b0104773SPascal Brand continue; 417b0104773SPascal Brand 418a17acc4cSSabrina Ni s = ROUNDUP(param->params[n].memref.size, sizeof(uint32_t)); 419b0104773SPascal Brand 420b0104773SPascal Brand switch (TEE_PARAM_TYPE_GET(param->types, n)) { 421b0104773SPascal Brand case TEE_PARAM_TYPE_MEMREF_INPUT: 422b0104773SPascal Brand case TEE_PARAM_TYPE_MEMREF_INOUT: 423b0104773SPascal Brand if (param->params[n].memref.buffer != NULL) { 424b0104773SPascal Brand res = tee_svc_copy_from_user(sess, dst, 425b7fc217fSPascal Brand param->params[n].memref.buffer, 426b7fc217fSPascal Brand param->params[n].memref.size); 427b0104773SPascal Brand if (res != TEE_SUCCESS) 428b0104773SPascal Brand return res; 429b0104773SPascal Brand param->param_attr[n] = 430b0104773SPascal Brand tee_mmu_kmap_get_cache_attr(dst); 431b0104773SPascal Brand param->params[n].memref.buffer = (void *)dst_pa; 432b0104773SPascal Brand tmp_buf_pa[n] = dst_pa; 433b0104773SPascal Brand dst += s; 434b0104773SPascal Brand dst_pa += s; 435b0104773SPascal Brand } 436b0104773SPascal Brand break; 437b0104773SPascal Brand 438b0104773SPascal Brand case TEE_PARAM_TYPE_MEMREF_OUTPUT: 439b0104773SPascal Brand if (param->params[n].memref.buffer != NULL) { 440b0104773SPascal Brand param->param_attr[n] = 441b0104773SPascal Brand tee_mmu_kmap_get_cache_attr(dst); 442b0104773SPascal Brand param->params[n].memref.buffer = (void *)dst_pa; 443b0104773SPascal Brand tmp_buf_pa[n] = dst_pa; 444b0104773SPascal Brand dst += s; 445b0104773SPascal Brand dst_pa += s; 446b0104773SPascal Brand } 447b0104773SPascal Brand break; 448b0104773SPascal Brand 449b0104773SPascal Brand default: 450b0104773SPascal Brand continue; 451b0104773SPascal Brand } 452b0104773SPascal Brand } 453b0104773SPascal Brand 454b0104773SPascal Brand tee_mmu_kunmap(dst, req_mem); 455b0104773SPascal Brand 456b0104773SPascal Brand return TEE_SUCCESS; 457b0104773SPascal Brand } 458b0104773SPascal Brand 459b0104773SPascal Brand /* 460b0104773SPascal Brand * Back from execution of service: update parameters passed from TA: 461b0104773SPascal Brand * If some parameters were memory references: 462b0104773SPascal Brand * - either the memref was temporary: copy back data and update size 463b0104773SPascal Brand * - or it was the original TA memref: update only the size value. 464b0104773SPascal Brand */ 465b0104773SPascal Brand static TEE_Result tee_svc_update_out_param( 466b0104773SPascal Brand struct tee_ta_session *sess, 467b0104773SPascal Brand struct tee_ta_session *called_sess, 468b0104773SPascal Brand struct tee_ta_param *param, 469b0104773SPascal Brand tee_paddr_t tmp_buf_pa[TEE_NUM_PARAMS], 470e86f1266SJens Wiklander struct utee_params *usr_param) 471b0104773SPascal Brand { 472b0104773SPascal Brand size_t n; 473e86f1266SJens Wiklander void *p; 474b0104773SPascal Brand bool have_private_mem_map = (called_sess == NULL) || 475b0104773SPascal Brand (called_sess->ctx->static_ta != NULL) || 476b0104773SPascal Brand ((called_sess->ctx->flags & TA_FLAG_USER_MODE) != 0); 477b0104773SPascal Brand 478bc420748SJens Wiklander 479b0104773SPascal Brand tee_ta_set_current_session(sess); 480b0104773SPascal Brand 481b0104773SPascal Brand for (n = 0; n < TEE_NUM_PARAMS; n++) { 482b0104773SPascal Brand switch (TEE_PARAM_TYPE_GET(param->types, n)) { 483b0104773SPascal Brand case TEE_PARAM_TYPE_MEMREF_OUTPUT: 484b0104773SPascal Brand case TEE_PARAM_TYPE_MEMREF_INOUT: 485e86f1266SJens Wiklander p = (void *)(uintptr_t)usr_param->vals[n * 2]; 486b0104773SPascal Brand 487b0104773SPascal Brand /* outside TA private => memref is valid, update size */ 488e86f1266SJens Wiklander if (!tee_mmu_is_vbuf_inside_ta_private(sess->ctx, p, 489b0104773SPascal Brand param->params[n].memref.size)) { 490e86f1266SJens Wiklander usr_param->vals[n * 2 + 1] = 491b0104773SPascal Brand param->params[n].memref.size; 492b0104773SPascal Brand break; 493b0104773SPascal Brand } 494b0104773SPascal Brand 495b0104773SPascal Brand /* 496b0104773SPascal Brand * If we called a kernel TA the parameters are in shared 497b0104773SPascal Brand * memory and no copy is needed. 498b0104773SPascal Brand */ 499b0104773SPascal Brand if (have_private_mem_map && 500b0104773SPascal Brand param->params[n].memref.size <= 501e86f1266SJens Wiklander usr_param->vals[n * 2 + 1]) { 502b0104773SPascal Brand uint8_t *src = 0; 503b0104773SPascal Brand TEE_Result res; 504b0104773SPascal Brand 505b0104773SPascal Brand /* FIXME: TA_RAM is already mapped ! */ 506b0104773SPascal Brand res = tee_mmu_kmap(tmp_buf_pa[n], 507b0104773SPascal Brand param->params[n].memref.size, &src); 508b0104773SPascal Brand if (res != TEE_SUCCESS) 509b0104773SPascal Brand return TEE_ERROR_GENERIC; 510b0104773SPascal Brand 511e86f1266SJens Wiklander res = tee_svc_copy_to_user(sess, p, src, 512e86f1266SJens Wiklander param->params[n].memref.size); 513b0104773SPascal Brand if (res != TEE_SUCCESS) 514b0104773SPascal Brand return res; 515b0104773SPascal Brand tee_mmu_kunmap(src, 516b0104773SPascal Brand param->params[n].memref.size); 517b0104773SPascal Brand 518b0104773SPascal Brand } 519e86f1266SJens Wiklander usr_param->vals[n * 2 + 1] = 520e86f1266SJens Wiklander param->params[n].memref.size; 521b0104773SPascal Brand break; 522b0104773SPascal Brand 523b0104773SPascal Brand case TEE_PARAM_TYPE_VALUE_OUTPUT: 524b0104773SPascal Brand case TEE_PARAM_TYPE_VALUE_INOUT: 525e86f1266SJens Wiklander usr_param->vals[n * 2] = param->params[n].value.a; 526e86f1266SJens Wiklander usr_param->vals[n * 2 + 1] = param->params[n].value.b; 527b0104773SPascal Brand break; 528b0104773SPascal Brand 529b0104773SPascal Brand default: 530b0104773SPascal Brand continue; 531b0104773SPascal Brand } 532b0104773SPascal Brand } 533b0104773SPascal Brand 534b0104773SPascal Brand return TEE_SUCCESS; 535b0104773SPascal Brand } 536b0104773SPascal Brand 537b0104773SPascal Brand /* Called when a TA calls an OpenSession on another TA */ 538453a5030SJerome Forissier TEE_Result syscall_open_ta_session(const TEE_UUID *dest, 539e86f1266SJens Wiklander unsigned long cancel_req_to, 540e86f1266SJens Wiklander struct utee_params *usr_param, uint32_t *ta_sess, 541b0104773SPascal Brand uint32_t *ret_orig) 542b0104773SPascal Brand { 543b0104773SPascal Brand TEE_Result res; 544b0104773SPascal Brand uint32_t ret_o = TEE_ORIGIN_TEE; 545b0104773SPascal Brand struct tee_ta_session *s = NULL; 546b0104773SPascal Brand struct tee_ta_session *sess; 547b0104773SPascal Brand tee_mm_entry_t *mm_param = NULL; 548b0104773SPascal Brand TEE_UUID *uuid = malloc(sizeof(TEE_UUID)); 549b0104773SPascal Brand struct tee_ta_param *param = malloc(sizeof(struct tee_ta_param)); 550b0104773SPascal Brand TEE_Identity *clnt_id = malloc(sizeof(TEE_Identity)); 551b0104773SPascal Brand tee_paddr_t tmp_buf_pa[TEE_NUM_PARAMS]; 552b0104773SPascal Brand 553b0104773SPascal Brand if (uuid == NULL || param == NULL || clnt_id == NULL) { 554b0104773SPascal Brand res = TEE_ERROR_OUT_OF_MEMORY; 555b0104773SPascal Brand goto out_free_only; 556b0104773SPascal Brand } 557b0104773SPascal Brand 558b0104773SPascal Brand memset(param, 0, sizeof(struct tee_ta_param)); 559b0104773SPascal Brand 560b0104773SPascal Brand res = tee_ta_get_current_session(&sess); 561b0104773SPascal Brand if (res != TEE_SUCCESS) 562b0104773SPascal Brand goto out_free_only; 563b0104773SPascal Brand 564b0104773SPascal Brand res = tee_svc_copy_from_user(sess, uuid, dest, sizeof(TEE_UUID)); 565b0104773SPascal Brand if (res != TEE_SUCCESS) 566b0104773SPascal Brand goto function_exit; 567b0104773SPascal Brand 568b0104773SPascal Brand clnt_id->login = TEE_LOGIN_TRUSTED_APP; 569bc420748SJens Wiklander memcpy(&clnt_id->uuid, &sess->ctx->uuid, sizeof(TEE_UUID)); 570b0104773SPascal Brand 571e86f1266SJens Wiklander res = tee_svc_copy_param(sess, NULL, usr_param, param, tmp_buf_pa, 572e86f1266SJens Wiklander &mm_param); 573b0104773SPascal Brand if (res != TEE_SUCCESS) 574b0104773SPascal Brand goto function_exit; 575b0104773SPascal Brand 576b0104773SPascal Brand /* 577b0104773SPascal Brand * Find session of a multi session TA or a static TA 578b0104773SPascal Brand * In such a case, there is no need to ask the supplicant for the TA 579b0104773SPascal Brand * code 580b0104773SPascal Brand */ 581b0104773SPascal Brand res = tee_ta_open_session(&ret_o, &s, &sess->ctx->open_sessions, uuid, 58227cbcc57SJens Wiklander clnt_id, cancel_req_to, param); 583c0346845SJens Wiklander if (res != TEE_SUCCESS) 584b0104773SPascal Brand goto function_exit; 585b0104773SPascal Brand 586177603c7SJens Wiklander res = tee_svc_update_out_param(sess, NULL, param, tmp_buf_pa, 587177603c7SJens Wiklander usr_param); 588b0104773SPascal Brand 589b0104773SPascal Brand function_exit: 590b0104773SPascal Brand tee_ta_set_current_session(sess); 591b0104773SPascal Brand 592b0104773SPascal Brand if (mm_param != NULL) { 593b0104773SPascal Brand TEE_Result res2; 594b0104773SPascal Brand void *va = 0; 595b0104773SPascal Brand 596b0104773SPascal Brand res2 = 597b0104773SPascal Brand tee_mmu_kmap_pa2va((void *)tee_mm_get_smem(mm_param), &va); 598b0104773SPascal Brand if (res2 == TEE_SUCCESS) 599b0104773SPascal Brand tee_mmu_kunmap(va, tee_mm_get_bytes(mm_param)); 600b0104773SPascal Brand } 601b0104773SPascal Brand tee_mm_free(mm_param); 602*2dcb3d36SJerome Forissier if (res == TEE_SUCCESS) 603e86f1266SJens Wiklander tee_svc_copy_kaddr_to_uref(sess, ta_sess, s); 604b0104773SPascal Brand tee_svc_copy_to_user(sess, ret_orig, &ret_o, sizeof(ret_o)); 605b0104773SPascal Brand 606b0104773SPascal Brand out_free_only: 607b0104773SPascal Brand free(param); 608b0104773SPascal Brand free(uuid); 609b0104773SPascal Brand free(clnt_id); 610b0104773SPascal Brand return res; 611b0104773SPascal Brand } 612b0104773SPascal Brand 613e86f1266SJens Wiklander TEE_Result syscall_close_ta_session(unsigned long ta_sess) 614b0104773SPascal Brand { 615b0104773SPascal Brand TEE_Result res; 616b0104773SPascal Brand struct tee_ta_session *sess; 61760699957SPascal Brand TEE_Identity clnt_id; 618e86f1266SJens Wiklander struct tee_ta_session *s = tee_svc_uref_to_kaddr(ta_sess); 619b0104773SPascal Brand 620b0104773SPascal Brand res = tee_ta_get_current_session(&sess); 621b0104773SPascal Brand if (res != TEE_SUCCESS) 622b0104773SPascal Brand return res; 623b0104773SPascal Brand 62460699957SPascal Brand clnt_id.login = TEE_LOGIN_TRUSTED_APP; 625bc420748SJens Wiklander memcpy(&clnt_id.uuid, &sess->ctx->uuid, sizeof(TEE_UUID)); 626b0104773SPascal Brand 62760699957SPascal Brand tee_ta_set_current_session(NULL); 628e86f1266SJens Wiklander res = tee_ta_close_session(s, &sess->ctx->open_sessions, &clnt_id); 629b0104773SPascal Brand tee_ta_set_current_session(sess); 630b0104773SPascal Brand return res; 631b0104773SPascal Brand } 632b0104773SPascal Brand 633e86f1266SJens Wiklander TEE_Result syscall_invoke_ta_command(unsigned long ta_sess, 634e86f1266SJens Wiklander unsigned long cancel_req_to, unsigned long cmd_id, 635e86f1266SJens Wiklander struct utee_params *usr_param, uint32_t *ret_orig) 636b0104773SPascal Brand { 637b0104773SPascal Brand TEE_Result res; 638b0104773SPascal Brand uint32_t ret_o = TEE_ORIGIN_TEE; 639b0104773SPascal Brand struct tee_ta_param param = { 0 }; 64060699957SPascal Brand TEE_Identity clnt_id; 641b0104773SPascal Brand struct tee_ta_session *sess; 642b666b6f2SJens Wiklander struct tee_ta_session *called_sess; 643b0104773SPascal Brand tee_mm_entry_t *mm_param = NULL; 644b0104773SPascal Brand tee_paddr_t tmp_buf_pa[TEE_NUM_PARAMS]; 645b0104773SPascal Brand 646b0104773SPascal Brand res = tee_ta_get_current_session(&sess); 647b0104773SPascal Brand if (res != TEE_SUCCESS) 648b0104773SPascal Brand return res; 649b0104773SPascal Brand 650e86f1266SJens Wiklander called_sess = tee_ta_get_session( 651e86f1266SJens Wiklander (vaddr_t)tee_svc_uref_to_kaddr(ta_sess), true, 652b0104773SPascal Brand &sess->ctx->open_sessions); 653b666b6f2SJens Wiklander if (!called_sess) 654b666b6f2SJens Wiklander return TEE_ERROR_BAD_PARAMETERS; 655b0104773SPascal Brand 65660699957SPascal Brand clnt_id.login = TEE_LOGIN_TRUSTED_APP; 657bc420748SJens Wiklander memcpy(&clnt_id.uuid, &sess->ctx->uuid, sizeof(TEE_UUID)); 65860699957SPascal Brand 659e86f1266SJens Wiklander res = tee_svc_copy_param(sess, called_sess, usr_param, ¶m, 660e86f1266SJens Wiklander tmp_buf_pa, &mm_param); 661b0104773SPascal Brand if (res != TEE_SUCCESS) 662b0104773SPascal Brand goto function_exit; 663b0104773SPascal Brand 66460699957SPascal Brand res = tee_ta_invoke_command(&ret_o, called_sess, &clnt_id, 66560699957SPascal Brand cancel_req_to, cmd_id, ¶m); 66660699957SPascal Brand 667b0104773SPascal Brand if (res != TEE_SUCCESS) 668b0104773SPascal Brand goto function_exit; 669b0104773SPascal Brand 670b0104773SPascal Brand res = tee_svc_update_out_param(sess, called_sess, ¶m, tmp_buf_pa, 671177603c7SJens Wiklander usr_param); 672b0104773SPascal Brand if (res != TEE_SUCCESS) 673b0104773SPascal Brand goto function_exit; 674b0104773SPascal Brand 675b0104773SPascal Brand function_exit: 676b0104773SPascal Brand tee_ta_set_current_session(sess); 677b0104773SPascal Brand called_sess->calling_sess = NULL; /* clear eventual borrowed mapping */ 678b666b6f2SJens Wiklander tee_ta_put_session(called_sess); 679b0104773SPascal Brand 680b0104773SPascal Brand if (mm_param != NULL) { 681b0104773SPascal Brand TEE_Result res2; 682b0104773SPascal Brand void *va = 0; 683b0104773SPascal Brand 684b0104773SPascal Brand res2 = 685b0104773SPascal Brand tee_mmu_kmap_pa2va((void *)tee_mm_get_smem(mm_param), &va); 686b0104773SPascal Brand if (res2 == TEE_SUCCESS) 687b0104773SPascal Brand tee_mmu_kunmap(va, tee_mm_get_bytes(mm_param)); 688b0104773SPascal Brand } 689b0104773SPascal Brand tee_mm_free(mm_param); 690b0104773SPascal Brand if (ret_orig) 691b0104773SPascal Brand tee_svc_copy_to_user(sess, ret_orig, &ret_o, sizeof(ret_o)); 692b0104773SPascal Brand return res; 693b0104773SPascal Brand } 694b0104773SPascal Brand 695e86f1266SJens Wiklander TEE_Result syscall_check_access_rights(unsigned long flags, const void *buf, 696b0104773SPascal Brand size_t len) 697b0104773SPascal Brand { 698b0104773SPascal Brand TEE_Result res; 699b0104773SPascal Brand struct tee_ta_session *s; 700b0104773SPascal Brand 701b0104773SPascal Brand res = tee_ta_get_current_session(&s); 702b0104773SPascal Brand if (res != TEE_SUCCESS) 703b0104773SPascal Brand return res; 704b0104773SPascal Brand 705b0104773SPascal Brand return tee_mmu_check_access_rights(s->ctx, flags, (tee_uaddr_t)buf, 706b0104773SPascal Brand len); 707b0104773SPascal Brand } 708b0104773SPascal Brand 709b0104773SPascal Brand TEE_Result tee_svc_copy_from_user(struct tee_ta_session *sess, void *kaddr, 710b0104773SPascal Brand const void *uaddr, size_t len) 711b0104773SPascal Brand { 712b0104773SPascal Brand TEE_Result res; 713b0104773SPascal Brand struct tee_ta_session *s; 714b0104773SPascal Brand 715b0104773SPascal Brand if (sess == NULL) { 716b0104773SPascal Brand res = tee_ta_get_current_session(&s); 717b0104773SPascal Brand if (res != TEE_SUCCESS) 718b0104773SPascal Brand return res; 719b0104773SPascal Brand } else { 720b0104773SPascal Brand s = sess; 721b0104773SPascal Brand tee_ta_set_current_session(s); 722b0104773SPascal Brand } 723b0104773SPascal Brand res = 724b0104773SPascal Brand tee_mmu_check_access_rights(s->ctx, 725b0104773SPascal Brand TEE_MEMORY_ACCESS_READ | 726b0104773SPascal Brand TEE_MEMORY_ACCESS_ANY_OWNER, 727b0104773SPascal Brand (tee_uaddr_t)uaddr, len); 728b0104773SPascal Brand if (res != TEE_SUCCESS) 729b0104773SPascal Brand return res; 730b0104773SPascal Brand 731b0104773SPascal Brand memcpy(kaddr, uaddr, len); 732b0104773SPascal Brand return TEE_SUCCESS; 733b0104773SPascal Brand } 734b0104773SPascal Brand 735b0104773SPascal Brand TEE_Result tee_svc_copy_to_user(struct tee_ta_session *sess, void *uaddr, 736b0104773SPascal Brand const void *kaddr, size_t len) 737b0104773SPascal Brand { 738b0104773SPascal Brand TEE_Result res; 739b0104773SPascal Brand struct tee_ta_session *s; 740b0104773SPascal Brand 741b0104773SPascal Brand if (sess == NULL) { 742b0104773SPascal Brand res = tee_ta_get_current_session(&s); 743b0104773SPascal Brand if (res != TEE_SUCCESS) 744b0104773SPascal Brand return res; 745b0104773SPascal Brand } else { 746b0104773SPascal Brand s = sess; 747b0104773SPascal Brand tee_ta_set_current_session(s); 748b0104773SPascal Brand } 749b0104773SPascal Brand 750b0104773SPascal Brand res = 751b0104773SPascal Brand tee_mmu_check_access_rights(s->ctx, 752b0104773SPascal Brand TEE_MEMORY_ACCESS_WRITE | 753b0104773SPascal Brand TEE_MEMORY_ACCESS_ANY_OWNER, 754b0104773SPascal Brand (tee_uaddr_t)uaddr, len); 755b0104773SPascal Brand if (res != TEE_SUCCESS) 756b0104773SPascal Brand return res; 757b0104773SPascal Brand 758b0104773SPascal Brand memcpy(uaddr, kaddr, len); 759b0104773SPascal Brand return TEE_SUCCESS; 760b0104773SPascal Brand } 761b0104773SPascal Brand 762e86f1266SJens Wiklander TEE_Result tee_svc_copy_kaddr_to_uref(struct tee_ta_session *sess, 763e86f1266SJens Wiklander uint32_t *uref, void *kaddr) 7648707ec0fSJerome Forissier { 765e86f1266SJens Wiklander uint32_t ref = tee_svc_kaddr_to_uref(kaddr); 7668707ec0fSJerome Forissier 767e86f1266SJens Wiklander return tee_svc_copy_to_user(sess, uref, &ref, sizeof(ref)); 7688707ec0fSJerome Forissier } 7698707ec0fSJerome Forissier 770b0104773SPascal Brand static bool session_is_cancelled(struct tee_ta_session *s, TEE_Time *curr_time) 771b0104773SPascal Brand { 772b0104773SPascal Brand TEE_Time current_time; 773b0104773SPascal Brand 774b0104773SPascal Brand if (s->cancel_mask) 775b0104773SPascal Brand return false; 776b0104773SPascal Brand 777b0104773SPascal Brand if (s->cancel) 778b0104773SPascal Brand return true; 779b0104773SPascal Brand 780b0104773SPascal Brand if (s->cancel_time.seconds == UINT32_MAX) 781b0104773SPascal Brand return false; 782b0104773SPascal Brand 783b0104773SPascal Brand if (curr_time != NULL) 784b0104773SPascal Brand current_time = *curr_time; 785b0104773SPascal Brand else if (tee_time_get_sys_time(¤t_time) != TEE_SUCCESS) 786b0104773SPascal Brand return false; 787b0104773SPascal Brand 788b0104773SPascal Brand if (current_time.seconds > s->cancel_time.seconds || 789b0104773SPascal Brand (current_time.seconds == s->cancel_time.seconds && 790b0104773SPascal Brand current_time.millis >= s->cancel_time.millis)) { 791b0104773SPascal Brand return true; 792b0104773SPascal Brand } 793b0104773SPascal Brand 794b0104773SPascal Brand return false; 795b0104773SPascal Brand } 796b0104773SPascal Brand 797e86f1266SJens Wiklander TEE_Result syscall_get_cancellation_flag(uint32_t *cancel) 798b0104773SPascal Brand { 799b0104773SPascal Brand TEE_Result res; 800b0104773SPascal Brand struct tee_ta_session *s = NULL; 801e86f1266SJens Wiklander uint32_t c; 802b0104773SPascal Brand 803b0104773SPascal Brand res = tee_ta_get_current_session(&s); 804b0104773SPascal Brand if (res != TEE_SUCCESS) 805b0104773SPascal Brand return res; 806b0104773SPascal Brand 807b0104773SPascal Brand c = session_is_cancelled(s, NULL); 808b0104773SPascal Brand 809b0104773SPascal Brand return tee_svc_copy_to_user(s, cancel, &c, sizeof(c)); 810b0104773SPascal Brand } 811b0104773SPascal Brand 812e86f1266SJens Wiklander TEE_Result syscall_unmask_cancellation(uint32_t *old_mask) 813b0104773SPascal Brand { 814b0104773SPascal Brand TEE_Result res; 815b0104773SPascal Brand struct tee_ta_session *s = NULL; 816e86f1266SJens Wiklander uint32_t m; 817b0104773SPascal Brand 818b0104773SPascal Brand res = tee_ta_get_current_session(&s); 819b0104773SPascal Brand if (res != TEE_SUCCESS) 820b0104773SPascal Brand return res; 821b0104773SPascal Brand 822b0104773SPascal Brand m = s->cancel_mask; 823b0104773SPascal Brand s->cancel_mask = false; 824b0104773SPascal Brand return tee_svc_copy_to_user(s, old_mask, &m, sizeof(m)); 825b0104773SPascal Brand } 826b0104773SPascal Brand 827e86f1266SJens Wiklander TEE_Result syscall_mask_cancellation(uint32_t *old_mask) 828b0104773SPascal Brand { 829b0104773SPascal Brand TEE_Result res; 830b0104773SPascal Brand struct tee_ta_session *s = NULL; 831e86f1266SJens Wiklander uint32_t m; 832b0104773SPascal Brand 833b0104773SPascal Brand res = tee_ta_get_current_session(&s); 834b0104773SPascal Brand if (res != TEE_SUCCESS) 835b0104773SPascal Brand return res; 836b0104773SPascal Brand 837b0104773SPascal Brand m = s->cancel_mask; 838b0104773SPascal Brand s->cancel_mask = true; 839b0104773SPascal Brand return tee_svc_copy_to_user(s, old_mask, &m, sizeof(m)); 840b0104773SPascal Brand } 841b0104773SPascal Brand 842e86f1266SJens Wiklander TEE_Result syscall_wait(unsigned long timeout) 843b0104773SPascal Brand { 844b0104773SPascal Brand TEE_Result res = TEE_SUCCESS; 845b0104773SPascal Brand uint32_t mytime = 0; 846b0104773SPascal Brand struct tee_ta_session *s; 847b0104773SPascal Brand TEE_Time base_time; 848b0104773SPascal Brand TEE_Time current_time; 849b0104773SPascal Brand 850b0104773SPascal Brand res = tee_ta_get_current_session(&s); 851b0104773SPascal Brand if (res != TEE_SUCCESS) 852b0104773SPascal Brand return res; 853b0104773SPascal Brand 854b0104773SPascal Brand res = tee_time_get_sys_time(&base_time); 855b0104773SPascal Brand if (res != TEE_SUCCESS) 856b0104773SPascal Brand return res; 857b0104773SPascal Brand 858b0104773SPascal Brand while (true) { 859b0104773SPascal Brand res = tee_time_get_sys_time(¤t_time); 860b0104773SPascal Brand if (res != TEE_SUCCESS) 861b0104773SPascal Brand return res; 862b0104773SPascal Brand 863b0104773SPascal Brand if (session_is_cancelled(s, ¤t_time)) 864b0104773SPascal Brand return TEE_ERROR_CANCEL; 865b0104773SPascal Brand 866b0104773SPascal Brand mytime = (current_time.seconds - base_time.seconds) * 1000 + 867b0104773SPascal Brand (int)current_time.millis - (int)base_time.millis; 868b0104773SPascal Brand if (mytime >= timeout) 869b0104773SPascal Brand return TEE_SUCCESS; 870b0104773SPascal Brand 871d1aea08fSSY Chiu tee_time_wait(timeout - mytime); 872b0104773SPascal Brand } 873b0104773SPascal Brand 874b0104773SPascal Brand return res; 875b0104773SPascal Brand } 876b0104773SPascal Brand 877e86f1266SJens Wiklander TEE_Result syscall_get_time(unsigned long cat, TEE_Time *mytime) 878b0104773SPascal Brand { 879b0104773SPascal Brand TEE_Result res, res2; 880b0104773SPascal Brand struct tee_ta_session *s = NULL; 881b0104773SPascal Brand TEE_Time t; 882b0104773SPascal Brand 883b0104773SPascal Brand res = tee_ta_get_current_session(&s); 884b0104773SPascal Brand if (res != TEE_SUCCESS) 885b0104773SPascal Brand return res; 886b0104773SPascal Brand 887b0104773SPascal Brand switch (cat) { 888b0104773SPascal Brand case UTEE_TIME_CAT_SYSTEM: 889b0104773SPascal Brand res = tee_time_get_sys_time(&t); 890b0104773SPascal Brand break; 891b0104773SPascal Brand case UTEE_TIME_CAT_TA_PERSISTENT: 892bc420748SJens Wiklander res = tee_time_get_ta_time((const void *)&s->ctx->uuid, &t); 893b0104773SPascal Brand break; 894b0104773SPascal Brand case UTEE_TIME_CAT_REE: 895b0104773SPascal Brand res = tee_time_get_ree_time(&t); 896b0104773SPascal Brand break; 897b0104773SPascal Brand default: 898b0104773SPascal Brand res = TEE_ERROR_BAD_PARAMETERS; 899b0104773SPascal Brand break; 900b0104773SPascal Brand } 901b0104773SPascal Brand 902b0104773SPascal Brand if (res == TEE_SUCCESS || res == TEE_ERROR_OVERFLOW) { 903b0104773SPascal Brand res2 = tee_svc_copy_to_user(s, mytime, &t, sizeof(t)); 904b0104773SPascal Brand if (res2 != TEE_SUCCESS) 905b0104773SPascal Brand res = res2; 906b0104773SPascal Brand } 907b0104773SPascal Brand 908b0104773SPascal Brand return res; 909b0104773SPascal Brand } 910b0104773SPascal Brand 911453a5030SJerome Forissier TEE_Result syscall_set_ta_time(const TEE_Time *mytime) 912b0104773SPascal Brand { 913b0104773SPascal Brand TEE_Result res; 914b0104773SPascal Brand struct tee_ta_session *s = NULL; 915b0104773SPascal Brand TEE_Time t; 916b0104773SPascal Brand 917b0104773SPascal Brand res = tee_ta_get_current_session(&s); 918b0104773SPascal Brand if (res != TEE_SUCCESS) 919b0104773SPascal Brand return res; 920b0104773SPascal Brand 921b0104773SPascal Brand res = tee_svc_copy_from_user(s, &t, mytime, sizeof(t)); 922b0104773SPascal Brand if (res != TEE_SUCCESS) 923b0104773SPascal Brand return res; 924b0104773SPascal Brand 925bc420748SJens Wiklander return tee_time_set_ta_time((const void *)&s->ctx->uuid, &t); 926b0104773SPascal Brand } 927fa530828SPascal Brand 928fa530828SPascal Brand #ifdef CFG_CACHE_API 929e86f1266SJens Wiklander TEE_Result syscall_cache_operation(void *va, size_t len, unsigned long op) 930fa530828SPascal Brand { 931fa530828SPascal Brand TEE_Result res; 932fa530828SPascal Brand struct tee_ta_session *s = NULL; 933fa530828SPascal Brand 934fa530828SPascal Brand res = tee_ta_get_current_session(&s); 935fa530828SPascal Brand if (res != TEE_SUCCESS) 936fa530828SPascal Brand return res; 937fa530828SPascal Brand 938fa530828SPascal Brand if ((s->ctx->flags & TA_FLAG_CACHE_MAINTENANCE) == 0) 939fa530828SPascal Brand return TEE_ERROR_NOT_SUPPORTED; 940fa530828SPascal Brand 941fa530828SPascal Brand return tee_uta_cache_operation(s, op, va, len); 942fa530828SPascal Brand } 943fa530828SPascal Brand #endif 944