Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
15 changes: 15 additions & 0 deletions testing/sig_sp_test/CMakeLists.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,15 @@
# ##############################################################################
# apps/testing/sig_sp_test/CMakeLists.txt
#
# SPDX-License-Identifier: Apache-2.0
#
# ##############################################################################

if(CONFIG_TESTING_SIG_SP_TEST)
nuttx_add_application(
NAME ${CONFIG_TESTING_SIG_SP_TEST_PROGNAME}
PRIORITY ${CONFIG_TESTING_SIG_SP_TEST_PRIORITY}
STACKSIZE ${CONFIG_TESTING_SIG_SP_TEST_STACKSIZE}
MODULE ${CONFIG_TESTING_SIG_SP_TEST}
SRCS sig_sp_test_main.c)
endif()
31 changes: 31 additions & 0 deletions testing/sig_sp_test/Kconfig
Original file line number Diff line number Diff line change
@@ -0,0 +1,31 @@
#
# For a description of the syntax of this configuration file,
# see the file kconfig-language.txt in the NuttX tools repository.
#

config TESTING_SIG_SP_TEST
tristate "Signal SP restore test"
default n
depends on BUILD_FLAT && ARCH_ARM
---help---
Test that modifying SP (REG_R13) in saved register context
during a signal handler is honored on exception return.

This verifies the SP context relocation in arm_sigdeliver.
Only available for flat builds on ARM.

if TESTING_SIG_SP_TEST

config TESTING_SIG_SP_TEST_PROGNAME
string "Program name"
default "sig_sp_test"

config TESTING_SIG_SP_TEST_PRIORITY
int "Task priority"
default 100

config TESTING_SIG_SP_TEST_STACKSIZE
int "Stack size"
default 4096

endif
10 changes: 10 additions & 0 deletions testing/sig_sp_test/Make.defs
Original file line number Diff line number Diff line change
@@ -0,0 +1,10 @@
############################################################################
# apps/testing/sig_sp_test/Make.defs
#
# SPDX-License-Identifier: Apache-2.0
#
############################################################################

ifneq ($(CONFIG_TESTING_SIG_SP_TEST),)
CONFIGURED_APPS += $(APPDIR)/testing/sig_sp_test
endif
17 changes: 17 additions & 0 deletions testing/sig_sp_test/Makefile
Original file line number Diff line number Diff line change
@@ -0,0 +1,17 @@
############################################################################
# apps/testing/sig_sp_test/Makefile
#
# SPDX-License-Identifier: Apache-2.0
#
############################################################################

include $(APPDIR)/Make.defs

PROGNAME = $(CONFIG_TESTING_SIG_SP_TEST_PROGNAME)
PRIORITY = $(CONFIG_TESTING_SIG_SP_TEST_PRIORITY)
STACKSIZE = $(CONFIG_TESTING_SIG_SP_TEST_STACKSIZE)
MODULE = $(CONFIG_TESTING_SIG_SP_TEST)

MAINSRC = sig_sp_test_main.c

include $(APPDIR)/Application.mk
198 changes: 198 additions & 0 deletions testing/sig_sp_test/sig_sp_test_main.c
Original file line number Diff line number Diff line change
@@ -0,0 +1,198 @@
/****************************************************************************
* apps/testing/sig_sp_test/sig_sp_test_main.c
*
* SPDX-License-Identifier: Apache-2.0
*
* Test: Verify that modifying SP (REG_R13) in the saved register context
* is honored on context restore (exception return path).
*
* Scenario (simulates runtime unwinding past a trampoline):
* 1. Push values 1 and 2 onto the stack (simulating a trampoline push)
* 2. Busy-wait for a timer signal (SIGALRM)
* 3. In the handler, "emulate a pop" by advancing SP by 4
* (simulating a runtime deciding the top frame was a stub)
* 4. Redirect PC to resume_after_signal
* 5. After signal return, pop a value — it should be 1
*
* This exercises:
* - The SP relocation fix in arm_exception.S
* - The backward sliding copy (new SP > old SP, stack shrinks)
* - A realistic use case: unwinding past a trampoline frame
*
* Requirements:
* - Flat build only (accesses nxsched_self() for saved_regs)
* - ARM architecture (uses ARMv7-M register layout)
*
****************************************************************************/

#include <nuttx/config.h>

Check warning on line 28 in testing/sig_sp_test/sig_sp_test_main.c

View workflow job for this annotation

GitHub Actions / check

#include outside of 'Included Files' section
#include <stdio.h>

Check warning on line 29 in testing/sig_sp_test/sig_sp_test_main.c

View workflow job for this annotation

GitHub Actions / check

#include outside of 'Included Files' section
#include <stdlib.h>

Check warning on line 30 in testing/sig_sp_test/sig_sp_test_main.c

View workflow job for this annotation

GitHub Actions / check

#include outside of 'Included Files' section
#include <signal.h>

Check warning on line 31 in testing/sig_sp_test/sig_sp_test_main.c

View workflow job for this annotation

GitHub Actions / check

#include outside of 'Included Files' section
#include <string.h>

Check warning on line 32 in testing/sig_sp_test/sig_sp_test_main.c

View workflow job for this annotation

GitHub Actions / check

#include outside of 'Included Files' section
#include <stdint.h>

Check warning on line 33 in testing/sig_sp_test/sig_sp_test_main.c

View workflow job for this annotation

GitHub Actions / check

#include outside of 'Included Files' section
#include <unistd.h>

Check warning on line 34 in testing/sig_sp_test/sig_sp_test_main.c

View workflow job for this annotation

GitHub Actions / check

#include outside of 'Included Files' section
#include <sys/types.h>

Check warning on line 35 in testing/sig_sp_test/sig_sp_test_main.c

View workflow job for this annotation

GitHub Actions / check

#include outside of 'Included Files' section
#include <nuttx/arch.h>

Check warning on line 36 in testing/sig_sp_test/sig_sp_test_main.c

View workflow job for this annotation

GitHub Actions / check

#include outside of 'Included Files' section
#include <nuttx/sched.h>

Check warning on line 37 in testing/sig_sp_test/sig_sp_test_main.c

View workflow job for this annotation

GitHub Actions / check

#include outside of 'Included Files' section
#include <arch/irq.h>

static volatile int g_result = -1;
static volatile int g_ready = 0;

/* Forward declarations */

void verify_result(uint32_t value);

/****************************************************************************
* Name: verify_result
*
* Description:
* Called with the popped value in r0. Verifies it equals 1.
****************************************************************************/

void __attribute__((noinline, used)) verify_result(uint32_t value)
{
printf("sig_sp_test: popped value = %lu (expected 1)\n",
(unsigned long)value);

if (value == 1)
{
printf("sig_sp_test: PASS\n");
g_result = 0;
}
else
{
printf("sig_sp_test: FAIL - expected 1, got %lu\n",
(unsigned long)value);
g_result = 1;
}

exit(g_result);
}

/****************************************************************************
* Name: resume_after_signal
*
* Description:
* We land here after the signal handler adjusts SP and PC.
* Stack now has [SP] = 1 (the '2' was skipped by SP += 4).
* Pop one value and verify it equals 1.
****************************************************************************/

static void __attribute__((naked, used)) resume_after_signal(void)
{
__asm__ __volatile__(
"pop {r0}\n\t"
"b verify_result\n\t"
);
}

/****************************************************************************
* Name: sigalrm_handler
*
* Description:
* Called from the timer interrupt path (async signal delivery).
* Accesses saved_regs via nxsched_self() to modify the context
* that will be restored after signal return.
****************************************************************************/

static void sigalrm_handler(int signo, siginfo_t *info, void *ucontext)
{
struct tcb_s *rtcb = nxsched_self();
uint32_t *regs;

(void)signo;
(void)info;
(void)ucontext;

regs = rtcb->xcp.saved_regs;

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

it's better to pass regs context through ucontext, and remove depends on BUILD_FLAT

Copy link
Copy Markdown
Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the suggestion. I looked into passing the register context through ucontext (the 3rd argument to the signal handler).

Currently, sig_deliver.c passes NULL for ucontext on all three dispatch paths (lines 142, 164, 173). To pass the saved register context there, we'd need to address a few concerns:

  1. Protected/kernel builds: saved_regs resides in kernel memory and cannot be directly exposed to userspace. Supporting ucontext in protected mode would require copying the context to the user stack before dispatch and copying it back after — adding unconditional overhead to every signal delivery, even when the handler doesn't use ucontext.

  2. NULL on synchronous signals: saved_regs is only populated on the async path (interrupt → arm_schedulesigaction). For synchronous signals (e.g., raise()), it is NULL, so the handler cannot assume ucontext is always valid.

  3. Cross-architecture scope: sig_deliver.c is arch-independent. Changing the ucontext passing behavior affects all architectures, which seems like a larger change than this test PR should drive.

Given these constraints, I think keeping the BUILD_FLAT dependency is appropriate for now. The test validates the SP restoration fix using nxsched_self()->xcp.saved_regs, which is the simplest correct approach for flat builds. A proper ucontext implementation could be a separate effort if there's broader interest.

if (regs == NULL)
{
printf("sig_sp_test: ERROR - saved_regs is NULL\n");
exit(2);
}

printf("sig_sp_test: handler - PC=0x%08lx SP=0x%08lx\n",
(unsigned long)regs[REG_R15],
(unsigned long)regs[REG_R13]);

/* Only act when the main code is ready (in the asm loop) */

if (!g_ready)
{
alarm(1);
return;
}

/* Emulate a pop: advance SP by 4 (skip top-of-stack value '2') */

regs[REG_R13] += 4;

/* Redirect execution to resume_after_signal */

regs[REG_R15] = ((uint32_t)(uintptr_t)resume_after_signal) & ~1u;
regs[REG_XPSR] |= (1 << 24);

printf("sig_sp_test: handler - new SP=0x%08lx PC=0x%08lx\n",
(unsigned long)regs[REG_R13],
(unsigned long)regs[REG_R15]);
}

/****************************************************************************
* Name: wait_with_values_on_stack
*
* Description:
* Push 1 and 2 on the stack, set g_ready, then loop forever.
* The alarm handler will redirect us out of the loop.
* Stack after pushes: [SP] = 2, [SP+4] = 1
****************************************************************************/

static void __attribute__((naked, used)) wait_with_values_on_stack(void)
{
__asm__ __volatile__(
"mov r0, #1\n\t"
"push {r0}\n\t"
"mov r0, #2\n\t"
"push {r0}\n\t"
"ldr r0, =g_ready\n\t"
"mov r1, #1\n\t"
"str r1, [r0]\n\t"
"1: nop\n\t"
"b 1b\n\t"
);
}

/****************************************************************************
* sig_sp_test_main
****************************************************************************/

int main(int argc, char *argv[])
{
struct sigaction sa;

(void)argc;
(void)argv;

printf("sig_sp_test: Signal SP restore test\n");
printf("sig_sp_test: push 1, push 2, alarm, handler SP+=4, pop => 1\n");

memset(&sa, 0, sizeof(sa));
sa.sa_sigaction = sigalrm_handler;
sa.sa_flags = SA_SIGINFO;
sigemptyset(&sa.sa_mask);

if (sigaction(SIGALRM, &sa, NULL) < 0)
{
printf("sig_sp_test: ERROR sigaction failed\n");
return 1;
}

alarm(1);
wait_with_values_on_stack();

/* Should never reach here */

printf("sig_sp_test: ERROR - returned from wait\n");
return 1;
}

Check failure on line 198 in testing/sig_sp_test/sig_sp_test_main.c

View workflow job for this annotation

GitHub Actions / check

"Private/Public Functions" not found! File will not be checked
Loading