Skip to content
This repository was archived by the owner on Mar 24, 2022. It is now read-only.
This repository was archived by the owner on Mar 24, 2022. It is now read-only.

potentially confused mmap code in lucet-runtime internals #513

@froydnj

Description

@froydnj

I was trying to figure out what might be involved in adding Windows support to lucet-runtime-internals and came across these two pieces of code:

unsafe {
// MADV_DONTNEED is not guaranteed to clear pages on non-Linux systems
#[cfg(not(target_os = "linux"))]
{
mprotect(*ptr, *len, ProtFlags::PROT_READ | ProtFlags::PROT_WRITE)
.expect("mprotect succeeds during drop");
memset(*ptr, 0, *len);
}
mprotect(*ptr, *len, ProtFlags::PROT_NONE).expect("mprotect succeeds during drop");
madvise(*ptr, *len, MmapAdvise::MADV_DONTNEED)
.expect("madvise succeeds during drop");
}
}

// zero the whole heap, if any of it is currently accessible
let heap_size = alloc.slot().limits.heap_address_space_size;
unsafe {
// `mprotect()` and `madvise()` are sufficient to zero a page on Linux,
// but not necessarily on all POSIX operating systems, and on macOS in particular.
#[cfg(not(target_os = "linux"))]
{
mprotect(
heap,
alloc.heap_accessible_size,
ProtFlags::PROT_READ | ProtFlags::PROT_WRITE,
)?;
memset(heap, 0, alloc.heap_accessible_size);
}
mprotect(heap, heap_size, ProtFlags::PROT_NONE)?;
madvise(heap, heap_size, MmapAdvise::MADV_DONTNEED)?;
}

The two pieces are subtle enough that it's worth factoring out a separate function to handle them, but the code and the comments in the second one appear to be at odds with one another: zeroing the whole heap would seem to suggest zeroing more than just the currently accessible (?) heap. And the code itself in the second one appears to be at odds with itself as well: why the difference in what we memset vs. what we mprotect(NONE)/madvise?

Am I just insufficiently knowledgeable about what's going on, or is there a real problem here?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions