diff options
author | Peter Maydell <peter.maydell@linaro.org> | 2018-10-08 14:55:05 +0100 |
---|---|---|
committer | Peter Maydell <peter.maydell@linaro.org> | 2018-10-08 14:55:05 +0100 |
commit | aa369e5c08bbe2748d2be96f13f4ef469a4d3080 (patch) | |
tree | 189a78f02e07f5d92be8220751839a746b16a743 /target | |
parent | 0bc003bad9752afc61624cb680226c922f34f82c (diff) | |
download | qemu-aa369e5c08bbe2748d2be96f13f4ef469a4d3080.zip qemu-aa369e5c08bbe2748d2be96f13f4ef469a4d3080.tar.gz qemu-aa369e5c08bbe2748d2be96f13f4ef469a4d3080.tar.bz2 |
target/arm: Add v8M stack checks for Thumb push/pop
Add v8M stack checks for the 16-bit Thumb push/pop
encodings: STMDB, STMFD, LDM, LDMIA, LDMFD.
Signed-off-by: Peter Maydell <peter.maydell@linaro.org>
Reviewed-by: Philippe Mathieu-Daudé <philmd@redhat.com>
Reviewed-by: Richard Henderson <richard.henderson@linaro.org>
Message-id: 20181002163556.10279-12-peter.maydell@linaro.org
Diffstat (limited to 'target')
-rw-r--r-- | target/arm/translate.c | 16 |
1 files changed, 15 insertions, 1 deletions
diff --git a/target/arm/translate.c b/target/arm/translate.c index 65df8d6..ef64d25 100644 --- a/target/arm/translate.c +++ b/target/arm/translate.c @@ -12251,7 +12251,10 @@ static void disas_thumb_insn(DisasContext *s, uint32_t insn) store_reg(s, rd, tmp); break; case 4: case 5: case 0xc: case 0xd: - /* push/pop */ + /* + * 0b1011_x10x_xxxx_xxxx + * - push/pop + */ addr = load_reg(s, 13); if (insn & (1 << 8)) offset = 4; @@ -12264,6 +12267,17 @@ static void disas_thumb_insn(DisasContext *s, uint32_t insn) if ((insn & (1 << 11)) == 0) { tcg_gen_addi_i32(addr, addr, -offset); } + + if (s->v8m_stackcheck) { + /* + * Here 'addr' is the lower of "old SP" and "new SP"; + * if this is a pop that starts below the limit and ends + * above it, it is UNKNOWN whether the limit check triggers; + * we choose to trigger. + */ + gen_helper_v8m_stackcheck(cpu_env, addr); + } + for (i = 0; i < 8; i++) { if (insn & (1 << i)) { if (insn & (1 << 11)) { |