xref: /kvm-unit-tests/x86/emulator.c (revision 2d331a4d85f3e05c8d3b62adfeecad4e98081267)
17d36db35SAvi Kivity #include "ioram.h"
27d36db35SAvi Kivity #include "vm.h"
37d36db35SAvi Kivity #include "libcflat.h"
4e7c37968SGleb Natapov #include "desc.h"
5d7143f32SAvi Kivity #include "types.h"
6b39a3e14SNadav Amit #include "processor.h"
7efd8e5aaSPaolo Bonzini #include "vmalloc.h"
85aca024eSPaolo Bonzini #include "alloc_page.h"
97d36db35SAvi Kivity 
107d36db35SAvi Kivity #define memset __builtin_memset
117d36db35SAvi Kivity #define TESTDEV_IO_PORT 0xe0
127d36db35SAvi Kivity 
13d7143f32SAvi Kivity static int exceptions;
14d7143f32SAvi Kivity 
1545fdc228SPaolo Bonzini /* Forced emulation prefix, used to invoke the emulator unconditionally.  */
1645fdc228SPaolo Bonzini #define KVM_FEP "ud2; .byte 'k', 'v', 'm';"
1745fdc228SPaolo Bonzini #define KVM_FEP_LENGTH 5
1845fdc228SPaolo Bonzini static int fep_available = 1;
1945fdc228SPaolo Bonzini 
20c5a2a731SArthur Chunqi Li struct regs {
21c5a2a731SArthur Chunqi Li 	u64 rax, rbx, rcx, rdx;
22c5a2a731SArthur Chunqi Li 	u64 rsi, rdi, rsp, rbp;
23c5a2a731SArthur Chunqi Li 	u64 r8, r9, r10, r11;
24c5a2a731SArthur Chunqi Li 	u64 r12, r13, r14, r15;
25c5a2a731SArthur Chunqi Li 	u64 rip, rflags;
26c5a2a731SArthur Chunqi Li };
27c5a2a731SArthur Chunqi Li struct regs inregs, outregs, save;
28c5a2a731SArthur Chunqi Li 
29c5a2a731SArthur Chunqi Li struct insn_desc {
30c5a2a731SArthur Chunqi Li 	u64 ptr;
31c5a2a731SArthur Chunqi Li 	size_t len;
32c5a2a731SArthur Chunqi Li };
33c5a2a731SArthur Chunqi Li 
347d36db35SAvi Kivity static char st1[] = "abcdefghijklmnop";
357d36db35SAvi Kivity 
367db17e21SThomas Huth static void test_stringio(void)
377d36db35SAvi Kivity {
387d36db35SAvi Kivity 	unsigned char r = 0;
397d36db35SAvi Kivity 	asm volatile("cld \n\t"
407d36db35SAvi Kivity 		     "movw %0, %%dx \n\t"
417d36db35SAvi Kivity 		     "rep outsb \n\t"
427d36db35SAvi Kivity 		     : : "i"((short)TESTDEV_IO_PORT),
437d36db35SAvi Kivity 		       "S"(st1), "c"(sizeof(st1) - 1));
447d36db35SAvi Kivity 	asm volatile("inb %1, %0\n\t" : "=a"(r) : "i"((short)TESTDEV_IO_PORT));
45a299895bSThomas Huth 	report(r == st1[sizeof(st1) - 2], "outsb up"); /* last char */
467d36db35SAvi Kivity 
477d36db35SAvi Kivity 	asm volatile("std \n\t"
487d36db35SAvi Kivity 		     "movw %0, %%dx \n\t"
497d36db35SAvi Kivity 		     "rep outsb \n\t"
507d36db35SAvi Kivity 		     : : "i"((short)TESTDEV_IO_PORT),
517d36db35SAvi Kivity 		       "S"(st1 + sizeof(st1) - 2), "c"(sizeof(st1) - 1));
527d36db35SAvi Kivity 	asm volatile("cld \n\t" : : );
537d36db35SAvi Kivity 	asm volatile("in %1, %0\n\t" : "=a"(r) : "i"((short)TESTDEV_IO_PORT));
54a299895bSThomas Huth 	report(r == st1[0], "outsb down");
557d36db35SAvi Kivity }
567d36db35SAvi Kivity 
57db4898e8SThomas Huth static void test_cmps_one(unsigned char *m1, unsigned char *m3)
587d36db35SAvi Kivity {
597d36db35SAvi Kivity 	void *rsi, *rdi;
607d36db35SAvi Kivity 	long rcx, tmp;
617d36db35SAvi Kivity 
627d36db35SAvi Kivity 	rsi = m1; rdi = m3; rcx = 30;
637d36db35SAvi Kivity 	asm volatile("xor %[tmp], %[tmp] \n\t"
64*2d331a4dSRoman Bolshakov 		     "repe cmpsb"
657d36db35SAvi Kivity 		     : "+S"(rsi), "+D"(rdi), "+c"(rcx), [tmp]"=&r"(tmp)
667d36db35SAvi Kivity 		     : : "cc");
67a299895bSThomas Huth 	report(rcx == 0 && rsi == m1 + 30 && rdi == m3 + 30, "repe/cmpsb (1)");
687d36db35SAvi Kivity 
6951ba4180SAvi Kivity 	rsi = m1; rdi = m3; rcx = 30;
7051ba4180SAvi Kivity 	asm volatile("or $1, %[tmp]\n\t" // clear ZF
71*2d331a4dSRoman Bolshakov 		     "repe cmpsb"
7251ba4180SAvi Kivity 		     : "+S"(rsi), "+D"(rdi), "+c"(rcx), [tmp]"=&r"(tmp)
7351ba4180SAvi Kivity 		     : : "cc");
74a299895bSThomas Huth 	report(rcx == 0 && rsi == m1 + 30 && rdi == m3 + 30,
75*2d331a4dSRoman Bolshakov 	       "repe cmpsb (1.zf)");
7651ba4180SAvi Kivity 
777d36db35SAvi Kivity 	rsi = m1; rdi = m3; rcx = 15;
787d36db35SAvi Kivity 	asm volatile("xor %[tmp], %[tmp] \n\t"
79*2d331a4dSRoman Bolshakov 		     "repe cmpsw"
807d36db35SAvi Kivity 		     : "+S"(rsi), "+D"(rdi), "+c"(rcx), [tmp]"=&r"(tmp)
817d36db35SAvi Kivity 		     : : "cc");
82*2d331a4dSRoman Bolshakov 	report(rcx == 0 && rsi == m1 + 30 && rdi == m3 + 30, "repe cmpsw (1)");
837d36db35SAvi Kivity 
847d36db35SAvi Kivity 	rsi = m1; rdi = m3; rcx = 7;
857d36db35SAvi Kivity 	asm volatile("xor %[tmp], %[tmp] \n\t"
86*2d331a4dSRoman Bolshakov 		     "repe cmpsl"
877d36db35SAvi Kivity 		     : "+S"(rsi), "+D"(rdi), "+c"(rcx), [tmp]"=&r"(tmp)
887d36db35SAvi Kivity 		     : : "cc");
89*2d331a4dSRoman Bolshakov 	report(rcx == 0 && rsi == m1 + 28 && rdi == m3 + 28, "repe cmpll (1)");
907d36db35SAvi Kivity 
917d36db35SAvi Kivity 	rsi = m1; rdi = m3; rcx = 4;
927d36db35SAvi Kivity 	asm volatile("xor %[tmp], %[tmp] \n\t"
93*2d331a4dSRoman Bolshakov 		     "repe cmpsq"
947d36db35SAvi Kivity 		     : "+S"(rsi), "+D"(rdi), "+c"(rcx), [tmp]"=&r"(tmp)
957d36db35SAvi Kivity 		     : : "cc");
96*2d331a4dSRoman Bolshakov 	report(rcx == 0 && rsi == m1 + 32 && rdi == m3 + 32, "repe cmpsq (1)");
977d36db35SAvi Kivity 
987d36db35SAvi Kivity 	rsi = m1; rdi = m3; rcx = 130;
997d36db35SAvi Kivity 	asm volatile("xor %[tmp], %[tmp] \n\t"
100*2d331a4dSRoman Bolshakov 		     "repe cmpsb"
1017d36db35SAvi Kivity 		     : "+S"(rsi), "+D"(rdi), "+c"(rcx), [tmp]"=&r"(tmp)
1027d36db35SAvi Kivity 		     : : "cc");
103a299895bSThomas Huth 	report(rcx == 29 && rsi == m1 + 101 && rdi == m3 + 101,
104*2d331a4dSRoman Bolshakov 	       "repe cmpsb (2)");
1057d36db35SAvi Kivity 
1067d36db35SAvi Kivity 	rsi = m1; rdi = m3; rcx = 65;
1077d36db35SAvi Kivity 	asm volatile("xor %[tmp], %[tmp] \n\t"
108*2d331a4dSRoman Bolshakov 		     "repe cmpsw"
1097d36db35SAvi Kivity 		     : "+S"(rsi), "+D"(rdi), "+c"(rcx), [tmp]"=&r"(tmp)
1107d36db35SAvi Kivity 		     : : "cc");
111a299895bSThomas Huth 	report(rcx == 14 && rsi == m1 + 102 && rdi == m3 + 102,
112*2d331a4dSRoman Bolshakov 	       "repe cmpsw (2)");
1137d36db35SAvi Kivity 
1147d36db35SAvi Kivity 	rsi = m1; rdi = m3; rcx = 32;
1157d36db35SAvi Kivity 	asm volatile("xor %[tmp], %[tmp] \n\t"
116*2d331a4dSRoman Bolshakov 		     "repe cmpsl"
1177d36db35SAvi Kivity 		     : "+S"(rsi), "+D"(rdi), "+c"(rcx), [tmp]"=&r"(tmp)
1187d36db35SAvi Kivity 		     : : "cc");
119a299895bSThomas Huth 	report(rcx == 6 && rsi == m1 + 104 && rdi == m3 + 104,
120*2d331a4dSRoman Bolshakov 	       "repe cmpll (2)");
1217d36db35SAvi Kivity 
1227d36db35SAvi Kivity 	rsi = m1; rdi = m3; rcx = 16;
1237d36db35SAvi Kivity 	asm volatile("xor %[tmp], %[tmp] \n\t"
124*2d331a4dSRoman Bolshakov 		     "repe cmpsq"
1257d36db35SAvi Kivity 		     : "+S"(rsi), "+D"(rdi), "+c"(rcx), [tmp]"=&r"(tmp)
1267d36db35SAvi Kivity 		     : : "cc");
127a299895bSThomas Huth 	report(rcx == 3 && rsi == m1 + 104 && rdi == m3 + 104,
128*2d331a4dSRoman Bolshakov 	       "repe cmpsq (2)");
1297d36db35SAvi Kivity 
1307d36db35SAvi Kivity }
1317d36db35SAvi Kivity 
132db4898e8SThomas Huth static void test_cmps(void *mem)
1337d36db35SAvi Kivity {
1347d36db35SAvi Kivity 	unsigned char *m1 = mem, *m2 = mem + 1024;
1357d36db35SAvi Kivity 	unsigned char m3[1024];
1367d36db35SAvi Kivity 
1377d36db35SAvi Kivity 	for (int i = 0; i < 100; ++i)
1387d36db35SAvi Kivity 		m1[i] = m2[i] = m3[i] = i;
1397d36db35SAvi Kivity 	for (int i = 100; i < 200; ++i)
1407d36db35SAvi Kivity 		m1[i] = (m3[i] = m2[i] = i) + 1;
1417d36db35SAvi Kivity 	test_cmps_one(m1, m3);
1427d36db35SAvi Kivity 	test_cmps_one(m1, m2);
1437d36db35SAvi Kivity }
1447d36db35SAvi Kivity 
145db4898e8SThomas Huth static void test_scas(void *mem)
14680a4ea7bSAvi Kivity {
14780a4ea7bSAvi Kivity     bool z;
14880a4ea7bSAvi Kivity     void *di;
14980a4ea7bSAvi Kivity 
15080a4ea7bSAvi Kivity     *(ulong *)mem = 0x77665544332211;
15180a4ea7bSAvi Kivity 
15280a4ea7bSAvi Kivity     di = mem;
15380a4ea7bSAvi Kivity     asm ("scasb; setz %0" : "=rm"(z), "+D"(di) : "a"(0xff11));
154a299895bSThomas Huth     report(di == mem + 1 && z, "scasb match");
15580a4ea7bSAvi Kivity 
15680a4ea7bSAvi Kivity     di = mem;
15780a4ea7bSAvi Kivity     asm ("scasb; setz %0" : "=rm"(z), "+D"(di) : "a"(0xff54));
158a299895bSThomas Huth     report(di == mem + 1 && !z, "scasb mismatch");
15980a4ea7bSAvi Kivity 
16080a4ea7bSAvi Kivity     di = mem;
16180a4ea7bSAvi Kivity     asm ("scasw; setz %0" : "=rm"(z), "+D"(di) : "a"(0xff2211));
162a299895bSThomas Huth     report(di == mem + 2 && z, "scasw match");
16380a4ea7bSAvi Kivity 
16480a4ea7bSAvi Kivity     di = mem;
16580a4ea7bSAvi Kivity     asm ("scasw; setz %0" : "=rm"(z), "+D"(di) : "a"(0xffdd11));
166a299895bSThomas Huth     report(di == mem + 2 && !z, "scasw mismatch");
16780a4ea7bSAvi Kivity 
16880a4ea7bSAvi Kivity     di = mem;
16980a4ea7bSAvi Kivity     asm ("scasl; setz %0" : "=rm"(z), "+D"(di) : "a"(0xff44332211ul));
170a299895bSThomas Huth     report(di == mem + 4 && z, "scasd match");
17180a4ea7bSAvi Kivity 
17280a4ea7bSAvi Kivity     di = mem;
17380a4ea7bSAvi Kivity     asm ("scasl; setz %0" : "=rm"(z), "+D"(di) : "a"(0x45332211));
174a299895bSThomas Huth     report(di == mem + 4 && !z, "scasd mismatch");
17580a4ea7bSAvi Kivity 
17680a4ea7bSAvi Kivity     di = mem;
17780a4ea7bSAvi Kivity     asm ("scasq; setz %0" : "=rm"(z), "+D"(di) : "a"(0x77665544332211ul));
178a299895bSThomas Huth     report(di == mem + 8 && z, "scasq match");
17980a4ea7bSAvi Kivity 
18080a4ea7bSAvi Kivity     di = mem;
18180a4ea7bSAvi Kivity     asm ("scasq; setz %0" : "=rm"(z), "+D"(di) : "a"(3));
182a299895bSThomas Huth     report(di == mem + 8 && !z, "scasq mismatch");
18380a4ea7bSAvi Kivity }
18480a4ea7bSAvi Kivity 
185db4898e8SThomas Huth static void test_cr8(void)
1867d36db35SAvi Kivity {
1877d36db35SAvi Kivity 	unsigned long src, dst;
1887d36db35SAvi Kivity 
1897d36db35SAvi Kivity 	dst = 777;
1907d36db35SAvi Kivity 	src = 3;
1917d36db35SAvi Kivity 	asm volatile("mov %[src], %%cr8; mov %%cr8, %[dst]"
1927d36db35SAvi Kivity 		     : [dst]"+r"(dst), [src]"+r"(src));
193a299895bSThomas Huth 	report(dst == 3 && src == 3, "mov %%cr8");
1947d36db35SAvi Kivity }
1957d36db35SAvi Kivity 
196db4898e8SThomas Huth static void test_push(void *mem)
1977d36db35SAvi Kivity {
1987d36db35SAvi Kivity 	unsigned long tmp;
1997d36db35SAvi Kivity 	unsigned long *stack_top = mem + 4096;
2007d36db35SAvi Kivity 	unsigned long *new_stack_top;
2017d36db35SAvi Kivity 	unsigned long memw = 0x123456789abcdeful;
2027d36db35SAvi Kivity 
2037d36db35SAvi Kivity 	memset(mem, 0x55, (void *)stack_top - mem);
2047d36db35SAvi Kivity 
2057d36db35SAvi Kivity 	asm volatile("mov %%rsp, %[tmp] \n\t"
2067d36db35SAvi Kivity 		     "mov %[stack_top], %%rsp \n\t"
2077d36db35SAvi Kivity 		     "pushq $-7 \n\t"
2087d36db35SAvi Kivity 		     "pushq %[reg] \n\t"
2097d36db35SAvi Kivity 		     "pushq (%[mem]) \n\t"
2107d36db35SAvi Kivity 		     "pushq $-7070707 \n\t"
2117d36db35SAvi Kivity 		     "mov %%rsp, %[new_stack_top] \n\t"
2127d36db35SAvi Kivity 		     "mov %[tmp], %%rsp"
2137d36db35SAvi Kivity 		     : [tmp]"=&r"(tmp), [new_stack_top]"=r"(new_stack_top)
2147d36db35SAvi Kivity 		     : [stack_top]"r"(stack_top),
2157d36db35SAvi Kivity 		       [reg]"r"(-17l), [mem]"r"(&memw)
2167d36db35SAvi Kivity 		     : "memory");
2177d36db35SAvi Kivity 
218a299895bSThomas Huth 	report(stack_top[-1] == -7ul, "push $imm8");
219a299895bSThomas Huth 	report(stack_top[-2] == -17ul, "push %%reg");
220a299895bSThomas Huth 	report(stack_top[-3] == 0x123456789abcdeful, "push mem");
221a299895bSThomas Huth 	report(stack_top[-4] == -7070707, "push $imm");
2227d36db35SAvi Kivity }
2237d36db35SAvi Kivity 
224db4898e8SThomas Huth static void test_pop(void *mem)
2257d36db35SAvi Kivity {
22628f04f22SAvi Kivity 	unsigned long tmp, tmp3, rsp, rbp;
2277d36db35SAvi Kivity 	unsigned long *stack_top = mem + 4096;
2287d36db35SAvi Kivity 	unsigned long memw = 0x123456789abcdeful;
2297d36db35SAvi Kivity 	static unsigned long tmp2;
2307d36db35SAvi Kivity 
2317d36db35SAvi Kivity 	memset(mem, 0x55, (void *)stack_top - mem);
2327d36db35SAvi Kivity 
2337d36db35SAvi Kivity 	asm volatile("pushq %[val] \n\t"
2347d36db35SAvi Kivity 		     "popq (%[mem])"
2357d36db35SAvi Kivity 		     : : [val]"m"(memw), [mem]"r"(mem) : "memory");
236a299895bSThomas Huth 	report(*(unsigned long *)mem == memw, "pop mem");
2377d36db35SAvi Kivity 
2387d36db35SAvi Kivity 	memw = 7 - memw;
2397d36db35SAvi Kivity 	asm volatile("mov %%rsp, %[tmp] \n\t"
2407d36db35SAvi Kivity 		     "mov %[stack_top], %%rsp \n\t"
2417d36db35SAvi Kivity 		     "pushq %[val] \n\t"
2427d36db35SAvi Kivity 		     "popq %[tmp2] \n\t"
2437d36db35SAvi Kivity 		     "mov %[tmp], %%rsp"
2447d36db35SAvi Kivity 		     : [tmp]"=&r"(tmp), [tmp2]"=m"(tmp2)
2457d36db35SAvi Kivity 		     : [val]"r"(memw), [stack_top]"r"(stack_top)
2467d36db35SAvi Kivity 		     : "memory");
247a299895bSThomas Huth 	report(tmp2 == memw, "pop mem (2)");
2487d36db35SAvi Kivity 
2497d36db35SAvi Kivity 	memw = 129443 - memw;
2507d36db35SAvi Kivity 	asm volatile("mov %%rsp, %[tmp] \n\t"
2517d36db35SAvi Kivity 		     "mov %[stack_top], %%rsp \n\t"
2527d36db35SAvi Kivity 		     "pushq %[val] \n\t"
2537d36db35SAvi Kivity 		     "popq %[tmp2] \n\t"
2547d36db35SAvi Kivity 		     "mov %[tmp], %%rsp"
2557d36db35SAvi Kivity 		     : [tmp]"=&r"(tmp), [tmp2]"=r"(tmp2)
2567d36db35SAvi Kivity 		     : [val]"r"(memw), [stack_top]"r"(stack_top)
2577d36db35SAvi Kivity 		     : "memory");
258a299895bSThomas Huth 	report(tmp2 == memw, "pop reg");
2597d36db35SAvi Kivity 
2607d36db35SAvi Kivity 	asm volatile("mov %%rsp, %[tmp] \n\t"
2617d36db35SAvi Kivity 		     "mov %[stack_top], %%rsp \n\t"
2627d36db35SAvi Kivity 		     "push $1f \n\t"
2637d36db35SAvi Kivity 		     "ret \n\t"
2647d36db35SAvi Kivity 		     "2: jmp 2b \n\t"
2657d36db35SAvi Kivity 		     "1: mov %[tmp], %%rsp"
2667d36db35SAvi Kivity 		     : [tmp]"=&r"(tmp) : [stack_top]"r"(stack_top)
2677d36db35SAvi Kivity 		     : "memory");
268a299895bSThomas Huth 	report(1, "ret");
2695269d6e7SAvi Kivity 
2705269d6e7SAvi Kivity 	stack_top[-1] = 0x778899;
271c2aa6128SPeter Feiner 	asm volatile("mov %[stack_top], %%r8 \n\t"
272c2aa6128SPeter Feiner 		     "mov %%rsp, %%r9 \n\t"
273c2aa6128SPeter Feiner 		     "xchg %%rbp, %%r8 \n\t"
2745269d6e7SAvi Kivity 		     "leave \n\t"
275c2aa6128SPeter Feiner 		     "xchg %%rsp, %%r9 \n\t"
276c2aa6128SPeter Feiner 		     "xchg %%rbp, %%r8 \n\t"
277c2aa6128SPeter Feiner 		     "mov %%r9, %[tmp] \n\t"
278c2aa6128SPeter Feiner 		     "mov %%r8, %[tmp3]"
2795269d6e7SAvi Kivity 		     : [tmp]"=&r"(tmp), [tmp3]"=&r"(tmp3) : [stack_top]"r"(stack_top-1)
280c2aa6128SPeter Feiner 		     : "memory", "r8", "r9");
281a299895bSThomas Huth 	report(tmp == (ulong)stack_top && tmp3 == 0x778899, "leave");
28228f04f22SAvi Kivity 
28328f04f22SAvi Kivity 	rbp = 0xaa55aa55bb66bb66ULL;
28428f04f22SAvi Kivity 	rsp = (unsigned long)stack_top;
285c2aa6128SPeter Feiner 	asm volatile("mov %[rsp], %%r8 \n\t"
286c2aa6128SPeter Feiner 		     "mov %[rbp], %%r9 \n\t"
287c2aa6128SPeter Feiner 		     "xchg %%rsp, %%r8 \n\t"
288c2aa6128SPeter Feiner 		     "xchg %%rbp, %%r9 \n\t"
28928f04f22SAvi Kivity 		     "enter $0x1238, $0 \n\t"
290c2aa6128SPeter Feiner 		     "xchg %%rsp, %%r8 \n\t"
291c2aa6128SPeter Feiner 		     "xchg %%rbp, %%r9 \n\t"
292c2aa6128SPeter Feiner 		     "xchg %%r8, %[rsp] \n\t"
293c2aa6128SPeter Feiner 		     "xchg %%r9, %[rbp]"
294c2aa6128SPeter Feiner 		     : [rsp]"+a"(rsp), [rbp]"+b"(rbp) : : "memory", "r8", "r9");
295a299895bSThomas Huth 	report(rsp == (unsigned long)stack_top - 8 - 0x1238
29628f04f22SAvi Kivity 	       && rbp == (unsigned long)stack_top - 8
297a299895bSThomas Huth 	       && stack_top[-1] == 0xaa55aa55bb66bb66ULL,
298a299895bSThomas Huth 	       "enter");
2997d36db35SAvi Kivity }
3007d36db35SAvi Kivity 
301db4898e8SThomas Huth static void test_ljmp(void *mem)
3027d36db35SAvi Kivity {
3037d36db35SAvi Kivity     unsigned char *m = mem;
3047d36db35SAvi Kivity     volatile int res = 1;
3057d36db35SAvi Kivity 
3067d36db35SAvi Kivity     *(unsigned long**)m = &&jmpf;
307*2d331a4dSRoman Bolshakov     asm volatile ("data16 mov %%cs, %0":"=m"(*(m + sizeof(unsigned long))));
308*2d331a4dSRoman Bolshakov     asm volatile ("rex64 ljmp *%0"::"m"(*m));
3097d36db35SAvi Kivity     res = 0;
3107d36db35SAvi Kivity jmpf:
311a299895bSThomas Huth     report(res, "ljmp");
3127d36db35SAvi Kivity }
3137d36db35SAvi Kivity 
314db4898e8SThomas Huth static void test_incdecnotneg(void *mem)
3157d36db35SAvi Kivity {
3167d36db35SAvi Kivity     unsigned long *m = mem, v = 1234;
3177d36db35SAvi Kivity     unsigned char *mb = mem, vb = 66;
3187d36db35SAvi Kivity 
3197d36db35SAvi Kivity     *m = 0;
3207d36db35SAvi Kivity 
3217d36db35SAvi Kivity     asm volatile ("incl %0":"+m"(*m));
322a299895bSThomas Huth     report(*m == 1, "incl");
3237d36db35SAvi Kivity     asm volatile ("decl %0":"+m"(*m));
324a299895bSThomas Huth     report(*m == 0, "decl");
3257d36db35SAvi Kivity     asm volatile ("incb %0":"+m"(*m));
326a299895bSThomas Huth     report(*m == 1, "incb");
3277d36db35SAvi Kivity     asm volatile ("decb %0":"+m"(*m));
328a299895bSThomas Huth     report(*m == 0, "decb");
3297d36db35SAvi Kivity 
3307d36db35SAvi Kivity     asm volatile ("lock incl %0":"+m"(*m));
331a299895bSThomas Huth     report(*m == 1, "lock incl");
3327d36db35SAvi Kivity     asm volatile ("lock decl %0":"+m"(*m));
333a299895bSThomas Huth     report(*m == 0, "lock decl");
3347d36db35SAvi Kivity     asm volatile ("lock incb %0":"+m"(*m));
335a299895bSThomas Huth     report(*m == 1, "lock incb");
3367d36db35SAvi Kivity     asm volatile ("lock decb %0":"+m"(*m));
337a299895bSThomas Huth     report(*m == 0, "lock decb");
3387d36db35SAvi Kivity 
3397d36db35SAvi Kivity     *m = v;
3407d36db35SAvi Kivity 
3417d36db35SAvi Kivity     asm ("lock negq %0" : "+m"(*m)); v = -v;
342a299895bSThomas Huth     report(*m == v, "lock negl");
3437d36db35SAvi Kivity     asm ("lock notq %0" : "+m"(*m)); v = ~v;
344a299895bSThomas Huth     report(*m == v, "lock notl");
3457d36db35SAvi Kivity 
3467d36db35SAvi Kivity     *mb = vb;
3477d36db35SAvi Kivity 
3487d36db35SAvi Kivity     asm ("lock negb %0" : "+m"(*mb)); vb = -vb;
349a299895bSThomas Huth     report(*mb == vb, "lock negb");
3507d36db35SAvi Kivity     asm ("lock notb %0" : "+m"(*mb)); vb = ~vb;
351a299895bSThomas Huth     report(*mb == vb, "lock notb");
3527d36db35SAvi Kivity }
3537d36db35SAvi Kivity 
354db4898e8SThomas Huth static void test_smsw(uint64_t *h_mem)
3557d36db35SAvi Kivity {
3567d36db35SAvi Kivity 	char mem[16];
3577d36db35SAvi Kivity 	unsigned short msw, msw_orig, *pmsw;
3587d36db35SAvi Kivity 	int i, zero;
3597d36db35SAvi Kivity 
3607d36db35SAvi Kivity 	msw_orig = read_cr0();
3617d36db35SAvi Kivity 
3627d36db35SAvi Kivity 	asm("smsw %0" : "=r"(msw));
363a299895bSThomas Huth 	report(msw == msw_orig, "smsw (1)");
3647d36db35SAvi Kivity 
3657d36db35SAvi Kivity 	memset(mem, 0, 16);
3667d36db35SAvi Kivity 	pmsw = (void *)mem;
3677d36db35SAvi Kivity 	asm("smsw %0" : "=m"(pmsw[4]));
3687d36db35SAvi Kivity 	zero = 1;
3697d36db35SAvi Kivity 	for (i = 0; i < 8; ++i)
3707d36db35SAvi Kivity 		if (i != 4 && pmsw[i])
3717d36db35SAvi Kivity 			zero = 0;
372a299895bSThomas Huth 	report(msw == pmsw[4] && zero, "smsw (2)");
3734003963dSNadav Amit 
3744003963dSNadav Amit 	/* Trigger exit on smsw */
3754003963dSNadav Amit 	*h_mem = 0x12345678abcdeful;
37611147080SChris J Arges 	asm volatile("smsw %0" : "+m"(*h_mem));
377a299895bSThomas Huth 	report(msw == (unsigned short)*h_mem &&
378a299895bSThomas Huth 	       (*h_mem & ~0xfffful) == 0x12345678ab0000ul, "smsw (3)");
3797d36db35SAvi Kivity }
3807d36db35SAvi Kivity 
381db4898e8SThomas Huth static void test_lmsw(void)
3827d36db35SAvi Kivity {
3837d36db35SAvi Kivity 	char mem[16];
3847d36db35SAvi Kivity 	unsigned short msw, *pmsw;
3857d36db35SAvi Kivity 	unsigned long cr0;
3867d36db35SAvi Kivity 
3877d36db35SAvi Kivity 	cr0 = read_cr0();
3887d36db35SAvi Kivity 
3897d36db35SAvi Kivity 	msw = cr0 ^ 8;
3907d36db35SAvi Kivity 	asm("lmsw %0" : : "r"(msw));
3917d36db35SAvi Kivity 	printf("before %lx after %lx\n", cr0, read_cr0());
392a299895bSThomas Huth 	report((cr0 ^ read_cr0()) == 8, "lmsw (1)");
3937d36db35SAvi Kivity 
3947d36db35SAvi Kivity 	pmsw = (void *)mem;
3957d36db35SAvi Kivity 	*pmsw = cr0;
3967d36db35SAvi Kivity 	asm("lmsw %0" : : "m"(*pmsw));
3977d36db35SAvi Kivity 	printf("before %lx after %lx\n", cr0, read_cr0());
398a299895bSThomas Huth 	report(cr0 == read_cr0(), "lmsw (2)");
3997d36db35SAvi Kivity 
4007d36db35SAvi Kivity 	/* lmsw can't clear cr0.pe */
4017d36db35SAvi Kivity 	msw = (cr0 & ~1ul) ^ 4;  /* change EM to force trap */
4027d36db35SAvi Kivity 	asm("lmsw %0" : : "r"(msw));
403a299895bSThomas Huth 	report((cr0 ^ read_cr0()) == 4 && (cr0 & 1), "lmsw (3)");
4047d36db35SAvi Kivity 
4057d36db35SAvi Kivity 	/* back to normal */
4067d36db35SAvi Kivity 	msw = cr0;
4077d36db35SAvi Kivity 	asm("lmsw %0" : : "r"(msw));
4087d36db35SAvi Kivity }
4097d36db35SAvi Kivity 
410db4898e8SThomas Huth static void test_xchg(void *mem)
4117d36db35SAvi Kivity {
4127d36db35SAvi Kivity 	unsigned long *memq = mem;
4137d36db35SAvi Kivity 	unsigned long rax;
4147d36db35SAvi Kivity 
4157d36db35SAvi Kivity 	asm volatile("mov $0x123456789abcdef, %%rax\n\t"
4167d36db35SAvi Kivity 		     "mov %%rax, (%[memq])\n\t"
4177d36db35SAvi Kivity 		     "mov $0xfedcba9876543210, %%rax\n\t"
4187d36db35SAvi Kivity 		     "xchg %%al, (%[memq])\n\t"
4197d36db35SAvi Kivity 		     "mov %%rax, %[rax]\n\t"
4207d36db35SAvi Kivity 		     : [rax]"=r"(rax)
4217d36db35SAvi Kivity 		     : [memq]"r"(memq)
422c2aa6128SPeter Feiner 		     : "memory", "rax");
423a299895bSThomas Huth 	report(rax == 0xfedcba98765432ef && *memq == 0x123456789abcd10,
424a299895bSThomas Huth 	       "xchg reg, r/m (1)");
4257d36db35SAvi Kivity 
4267d36db35SAvi Kivity 	asm volatile("mov $0x123456789abcdef, %%rax\n\t"
4277d36db35SAvi Kivity 		     "mov %%rax, (%[memq])\n\t"
4287d36db35SAvi Kivity 		     "mov $0xfedcba9876543210, %%rax\n\t"
4297d36db35SAvi Kivity 		     "xchg %%ax, (%[memq])\n\t"
4307d36db35SAvi Kivity 		     "mov %%rax, %[rax]\n\t"
4317d36db35SAvi Kivity 		     : [rax]"=r"(rax)
4327d36db35SAvi Kivity 		     : [memq]"r"(memq)
433c2aa6128SPeter Feiner 		     : "memory", "rax");
434a299895bSThomas Huth 	report(rax == 0xfedcba987654cdef && *memq == 0x123456789ab3210,
435a299895bSThomas Huth 	       "xchg reg, r/m (2)");
4367d36db35SAvi Kivity 
4377d36db35SAvi Kivity 	asm volatile("mov $0x123456789abcdef, %%rax\n\t"
4387d36db35SAvi Kivity 		     "mov %%rax, (%[memq])\n\t"
4397d36db35SAvi Kivity 		     "mov $0xfedcba9876543210, %%rax\n\t"
4407d36db35SAvi Kivity 		     "xchg %%eax, (%[memq])\n\t"
4417d36db35SAvi Kivity 		     "mov %%rax, %[rax]\n\t"
4427d36db35SAvi Kivity 		     : [rax]"=r"(rax)
4437d36db35SAvi Kivity 		     : [memq]"r"(memq)
444c2aa6128SPeter Feiner 		     : "memory", "rax");
445a299895bSThomas Huth 	report(rax == 0x89abcdef && *memq == 0x123456776543210,
446a299895bSThomas Huth 	       "xchg reg, r/m (3)");
4477d36db35SAvi Kivity 
4487d36db35SAvi Kivity 	asm volatile("mov $0x123456789abcdef, %%rax\n\t"
4497d36db35SAvi Kivity 		     "mov %%rax, (%[memq])\n\t"
4507d36db35SAvi Kivity 		     "mov $0xfedcba9876543210, %%rax\n\t"
4517d36db35SAvi Kivity 		     "xchg %%rax, (%[memq])\n\t"
4527d36db35SAvi Kivity 		     "mov %%rax, %[rax]\n\t"
4537d36db35SAvi Kivity 		     : [rax]"=r"(rax)
4547d36db35SAvi Kivity 		     : [memq]"r"(memq)
455c2aa6128SPeter Feiner 		     : "memory", "rax");
456a299895bSThomas Huth 	report(rax == 0x123456789abcdef && *memq == 0xfedcba9876543210,
457a299895bSThomas Huth 	       "xchg reg, r/m (4)");
4587d36db35SAvi Kivity }
4597d36db35SAvi Kivity 
460db4898e8SThomas Huth static void test_xadd(void *mem)
4615647d55cSWei Yongjun {
4625647d55cSWei Yongjun 	unsigned long *memq = mem;
4635647d55cSWei Yongjun 	unsigned long rax;
4645647d55cSWei Yongjun 
4655647d55cSWei Yongjun 	asm volatile("mov $0x123456789abcdef, %%rax\n\t"
4665647d55cSWei Yongjun 		     "mov %%rax, (%[memq])\n\t"
4675647d55cSWei Yongjun 		     "mov $0xfedcba9876543210, %%rax\n\t"
4685647d55cSWei Yongjun 		     "xadd %%al, (%[memq])\n\t"
4695647d55cSWei Yongjun 		     "mov %%rax, %[rax]\n\t"
4705647d55cSWei Yongjun 		     : [rax]"=r"(rax)
4715647d55cSWei Yongjun 		     : [memq]"r"(memq)
472c2aa6128SPeter Feiner 		     : "memory", "rax");
473a299895bSThomas Huth 	report(rax == 0xfedcba98765432ef && *memq == 0x123456789abcdff,
474a299895bSThomas Huth 	       "xadd reg, r/m (1)");
4755647d55cSWei Yongjun 
4765647d55cSWei Yongjun 	asm volatile("mov $0x123456789abcdef, %%rax\n\t"
4775647d55cSWei Yongjun 		     "mov %%rax, (%[memq])\n\t"
4785647d55cSWei Yongjun 		     "mov $0xfedcba9876543210, %%rax\n\t"
4795647d55cSWei Yongjun 		     "xadd %%ax, (%[memq])\n\t"
4805647d55cSWei Yongjun 		     "mov %%rax, %[rax]\n\t"
4815647d55cSWei Yongjun 		     : [rax]"=r"(rax)
4825647d55cSWei Yongjun 		     : [memq]"r"(memq)
483c2aa6128SPeter Feiner 		     : "memory", "rax");
484a299895bSThomas Huth 	report(rax == 0xfedcba987654cdef && *memq == 0x123456789abffff,
485a299895bSThomas Huth 	       "xadd reg, r/m (2)");
4865647d55cSWei Yongjun 
4875647d55cSWei Yongjun 	asm volatile("mov $0x123456789abcdef, %%rax\n\t"
4885647d55cSWei Yongjun 		     "mov %%rax, (%[memq])\n\t"
4895647d55cSWei Yongjun 		     "mov $0xfedcba9876543210, %%rax\n\t"
4905647d55cSWei Yongjun 		     "xadd %%eax, (%[memq])\n\t"
4915647d55cSWei Yongjun 		     "mov %%rax, %[rax]\n\t"
4925647d55cSWei Yongjun 		     : [rax]"=r"(rax)
4935647d55cSWei Yongjun 		     : [memq]"r"(memq)
494c2aa6128SPeter Feiner 		     : "memory", "rax");
495a299895bSThomas Huth 	report(rax == 0x89abcdef && *memq == 0x1234567ffffffff,
496a299895bSThomas Huth 	       "xadd reg, r/m (3)");
4975647d55cSWei Yongjun 
4985647d55cSWei Yongjun 	asm volatile("mov $0x123456789abcdef, %%rax\n\t"
4995647d55cSWei Yongjun 		     "mov %%rax, (%[memq])\n\t"
5005647d55cSWei Yongjun 		     "mov $0xfedcba9876543210, %%rax\n\t"
5015647d55cSWei Yongjun 		     "xadd %%rax, (%[memq])\n\t"
5025647d55cSWei Yongjun 		     "mov %%rax, %[rax]\n\t"
5035647d55cSWei Yongjun 		     : [rax]"=r"(rax)
5045647d55cSWei Yongjun 		     : [memq]"r"(memq)
505c2aa6128SPeter Feiner 		     : "memory", "rax");
506a299895bSThomas Huth 	report(rax == 0x123456789abcdef && *memq == 0xffffffffffffffff,
507a299895bSThomas Huth 	       "xadd reg, r/m (4)");
5085647d55cSWei Yongjun }
5095647d55cSWei Yongjun 
510db4898e8SThomas Huth static void test_btc(void *mem)
511d4655eafSWei Yongjun {
512d4655eafSWei Yongjun 	unsigned int *a = mem;
513d4655eafSWei Yongjun 
5147e083f20SNadav Amit 	memset(mem, 0, 4 * sizeof(unsigned int));
515d4655eafSWei Yongjun 
516d4655eafSWei Yongjun 	asm ("btcl $32, %0" :: "m"(a[0]) : "memory");
517d4655eafSWei Yongjun 	asm ("btcl $1, %0" :: "m"(a[1]) : "memory");
518d4655eafSWei Yongjun 	asm ("btcl %1, %0" :: "m"(a[0]), "r"(66) : "memory");
519a299895bSThomas Huth 	report(a[0] == 1 && a[1] == 2 && a[2] == 4, "btcl imm8, r/m");
520d4655eafSWei Yongjun 
521d4655eafSWei Yongjun 	asm ("btcl %1, %0" :: "m"(a[3]), "r"(-1) : "memory");
522a299895bSThomas Huth 	report(a[0] == 1 && a[1] == 2 && a[2] == 0x80000004, "btcl reg, r/m");
5237e083f20SNadav Amit 
5247e083f20SNadav Amit 	asm ("btcq %1, %0" : : "m"(a[2]), "r"(-1l) : "memory");
525a299895bSThomas Huth 	report(a[0] == 1 && a[1] == 0x80000002 && a[2] == 0x80000004 && a[3] == 0,
526a299895bSThomas Huth 	       "btcq reg, r/m");
527d4655eafSWei Yongjun }
528d4655eafSWei Yongjun 
529db4898e8SThomas Huth static void test_bsfbsr(void *mem)
5302e16c7f6SWei Yongjun {
531554de466SAvi Kivity 	unsigned long rax, *memq = mem;
532554de466SAvi Kivity 	unsigned eax, *meml = mem;
533554de466SAvi Kivity 	unsigned short ax, *memw = mem;
534554de466SAvi Kivity 	unsigned char z;
5352e16c7f6SWei Yongjun 
536554de466SAvi Kivity 	*memw = 0xc000;
537554de466SAvi Kivity 	asm("bsfw %[mem], %[a]" : [a]"=a"(ax) : [mem]"m"(*memw));
538a299895bSThomas Huth 	report(ax == 14, "bsfw r/m, reg");
5392e16c7f6SWei Yongjun 
540554de466SAvi Kivity 	*meml = 0xc0000000;
541554de466SAvi Kivity 	asm("bsfl %[mem], %[a]" : [a]"=a"(eax) : [mem]"m"(*meml));
542a299895bSThomas Huth 	report(eax == 30, "bsfl r/m, reg");
5432e16c7f6SWei Yongjun 
544554de466SAvi Kivity 	*memq = 0xc00000000000;
545554de466SAvi Kivity 	asm("bsfq %[mem], %[a]" : [a]"=a"(rax) : [mem]"m"(*memq));
546a299895bSThomas Huth 	report(rax == 46, "bsfq r/m, reg");
5472e16c7f6SWei Yongjun 
548554de466SAvi Kivity 	*memq = 0;
549554de466SAvi Kivity 	asm("bsfq %[mem], %[a]; setz %[z]"
550554de466SAvi Kivity 	    : [a]"=a"(rax), [z]"=rm"(z) : [mem]"m"(*memq));
551a299895bSThomas Huth 	report(z == 1, "bsfq r/m, reg");
5522e16c7f6SWei Yongjun 
553554de466SAvi Kivity 	*memw = 0xc000;
554554de466SAvi Kivity 	asm("bsrw %[mem], %[a]" : [a]"=a"(ax) : [mem]"m"(*memw));
555a299895bSThomas Huth 	report(ax == 15, "bsrw r/m, reg");
5562e16c7f6SWei Yongjun 
557554de466SAvi Kivity 	*meml = 0xc0000000;
558554de466SAvi Kivity 	asm("bsrl %[mem], %[a]" : [a]"=a"(eax) : [mem]"m"(*meml));
559a299895bSThomas Huth 	report(eax == 31, "bsrl r/m, reg");
5602e16c7f6SWei Yongjun 
561554de466SAvi Kivity 	*memq = 0xc00000000000;
562554de466SAvi Kivity 	asm("bsrq %[mem], %[a]" : [a]"=a"(rax) : [mem]"m"(*memq));
563a299895bSThomas Huth 	report(rax == 47, "bsrq r/m, reg");
5642e16c7f6SWei Yongjun 
565554de466SAvi Kivity 	*memq = 0;
566554de466SAvi Kivity 	asm("bsrq %[mem], %[a]; setz %[z]"
567554de466SAvi Kivity 	    : [a]"=a"(rax), [z]"=rm"(z) : [mem]"m"(*memq));
568a299895bSThomas Huth 	report(z == 1, "bsrq r/m, reg");
5692e16c7f6SWei Yongjun }
5702e16c7f6SWei Yongjun 
57151d65a3cSAvi Kivity static void test_imul(ulong *mem)
57251d65a3cSAvi Kivity {
57351d65a3cSAvi Kivity     ulong a;
57451d65a3cSAvi Kivity 
57551d65a3cSAvi Kivity     *mem = 51; a = 0x1234567812345678UL;
57651d65a3cSAvi Kivity     asm ("imulw %1, %%ax" : "+a"(a) : "m"(*mem));
577a299895bSThomas Huth     report(a == 0x12345678123439e8, "imul ax, mem");
57851d65a3cSAvi Kivity 
57951d65a3cSAvi Kivity     *mem = 51; a = 0x1234567812345678UL;
58051d65a3cSAvi Kivity     asm ("imull %1, %%eax" : "+a"(a) : "m"(*mem));
581a299895bSThomas Huth     report(a == 0xa06d39e8, "imul eax, mem");
58251d65a3cSAvi Kivity 
58351d65a3cSAvi Kivity     *mem = 51; a = 0x1234567812345678UL;
58451d65a3cSAvi Kivity     asm ("imulq %1, %%rax" : "+a"(a) : "m"(*mem));
585a299895bSThomas Huth     report(a == 0xA06D39EBA06D39E8UL, "imul rax, mem");
58651d65a3cSAvi Kivity 
58751d65a3cSAvi Kivity     *mem  = 0x1234567812345678UL; a = 0x8765432187654321L;
58851d65a3cSAvi Kivity     asm ("imulw $51, %1, %%ax" : "+a"(a) : "m"(*mem));
589a299895bSThomas Huth     report(a == 0x87654321876539e8, "imul ax, mem, imm8");
59051d65a3cSAvi Kivity 
59151d65a3cSAvi Kivity     *mem = 0x1234567812345678UL;
59251d65a3cSAvi Kivity     asm ("imull $51, %1, %%eax" : "+a"(a) : "m"(*mem));
593a299895bSThomas Huth     report(a == 0xa06d39e8, "imul eax, mem, imm8");
59451d65a3cSAvi Kivity 
59551d65a3cSAvi Kivity     *mem = 0x1234567812345678UL;
59651d65a3cSAvi Kivity     asm ("imulq $51, %1, %%rax" : "+a"(a) : "m"(*mem));
597a299895bSThomas Huth     report(a == 0xA06D39EBA06D39E8UL, "imul rax, mem, imm8");
59851d65a3cSAvi Kivity 
59951d65a3cSAvi Kivity     *mem  = 0x1234567812345678UL; a = 0x8765432187654321L;
60051d65a3cSAvi Kivity     asm ("imulw $311, %1, %%ax" : "+a"(a) : "m"(*mem));
601a299895bSThomas Huth     report(a == 0x8765432187650bc8, "imul ax, mem, imm");
60251d65a3cSAvi Kivity 
60351d65a3cSAvi Kivity     *mem = 0x1234567812345678UL;
60451d65a3cSAvi Kivity     asm ("imull $311, %1, %%eax" : "+a"(a) : "m"(*mem));
605a299895bSThomas Huth     report(a == 0x1d950bc8, "imul eax, mem, imm");
60651d65a3cSAvi Kivity 
60751d65a3cSAvi Kivity     *mem = 0x1234567812345678UL;
60851d65a3cSAvi Kivity     asm ("imulq $311, %1, %%rax" : "+a"(a) : "m"(*mem));
609a299895bSThomas Huth     report(a == 0x1D950BDE1D950BC8L, "imul rax, mem, imm");
61051d65a3cSAvi Kivity }
61151d65a3cSAvi Kivity 
612c2c43fcfSAvi Kivity static void test_muldiv(long *mem)
613f12d86b0SAvi Kivity {
614c2c43fcfSAvi Kivity     long a, d, aa, dd;
615f12d86b0SAvi Kivity     u8 ex = 1;
616f12d86b0SAvi Kivity 
617f12d86b0SAvi Kivity     *mem = 0; a = 1; d = 2;
618f12d86b0SAvi Kivity     asm (ASM_TRY("1f") "divq %3; movb $0, %2; 1:"
619f12d86b0SAvi Kivity 	 : "+a"(a), "+d"(d), "+q"(ex) : "m"(*mem));
620a299895bSThomas Huth     report(a == 1 && d == 2 && ex, "divq (fault)");
621f12d86b0SAvi Kivity 
622f12d86b0SAvi Kivity     *mem = 987654321098765UL; a = 123456789012345UL; d = 123456789012345UL;
623f12d86b0SAvi Kivity     asm (ASM_TRY("1f") "divq %3; movb $0, %2; 1:"
624f12d86b0SAvi Kivity 	 : "+a"(a), "+d"(d), "+q"(ex) : "m"(*mem));
625a299895bSThomas Huth     report(a == 0x1ffffffb1b963b33ul && d == 0x273ba4384ede2ul && !ex,
626a299895bSThomas Huth            "divq (1)");
627c2c43fcfSAvi Kivity     aa = 0x1111111111111111; dd = 0x2222222222222222;
628c2c43fcfSAvi Kivity     *mem = 0x3333333333333333; a = aa; d = dd;
629c2c43fcfSAvi Kivity     asm("mulb %2" : "+a"(a), "+d"(d) : "m"(*mem));
630a299895bSThomas Huth     report(a == 0x1111111111110363 && d == dd, "mulb mem");
631c2c43fcfSAvi Kivity     *mem = 0x3333333333333333; a = aa; d = dd;
632c2c43fcfSAvi Kivity     asm("mulw %2" : "+a"(a), "+d"(d) : "m"(*mem));
633a299895bSThomas Huth     report(a == 0x111111111111c963 && d == 0x2222222222220369, "mulw mem");
634c2c43fcfSAvi Kivity     *mem = 0x3333333333333333; a = aa; d = dd;
635c2c43fcfSAvi Kivity     asm("mull %2" : "+a"(a), "+d"(d) : "m"(*mem));
636a299895bSThomas Huth     report(a == 0x962fc963 && d == 0x369d036, "mull mem");
637c2c43fcfSAvi Kivity     *mem = 0x3333333333333333; a = aa; d = dd;
638c2c43fcfSAvi Kivity     asm("mulq %2" : "+a"(a), "+d"(d) : "m"(*mem));
639a299895bSThomas Huth     report(a == 0x2fc962fc962fc963 && d == 0x369d0369d0369d0, "mulq mem");
640f12d86b0SAvi Kivity }
641f12d86b0SAvi Kivity 
642d7f3ee3cSAvi Kivity typedef unsigned __attribute__((vector_size(16))) sse128;
643d7f3ee3cSAvi Kivity 
644d7f3ee3cSAvi Kivity typedef union {
645d7f3ee3cSAvi Kivity     sse128 sse;
646d7f3ee3cSAvi Kivity     unsigned u[4];
647d7f3ee3cSAvi Kivity } sse_union;
648d7f3ee3cSAvi Kivity 
649d7f3ee3cSAvi Kivity static bool sseeq(sse_union *v1, sse_union *v2)
650d7f3ee3cSAvi Kivity {
651d7f3ee3cSAvi Kivity     bool ok = true;
652d7f3ee3cSAvi Kivity     int i;
653d7f3ee3cSAvi Kivity 
654d7f3ee3cSAvi Kivity     for (i = 0; i < 4; ++i) {
655d7f3ee3cSAvi Kivity 	ok &= v1->u[i] == v2->u[i];
656d7f3ee3cSAvi Kivity     }
657d7f3ee3cSAvi Kivity 
658d7f3ee3cSAvi Kivity     return ok;
659d7f3ee3cSAvi Kivity }
660d7f3ee3cSAvi Kivity 
66131eaca95SBill Wendling static __attribute__((target("sse2"))) void test_sse(sse_union *mem)
662d7f3ee3cSAvi Kivity {
663d7f3ee3cSAvi Kivity     sse_union v;
664d7f3ee3cSAvi Kivity 
665d7f3ee3cSAvi Kivity     write_cr0(read_cr0() & ~6); /* EM, TS */
666d7f3ee3cSAvi Kivity     write_cr4(read_cr4() | 0x200); /* OSFXSR */
667d7f3ee3cSAvi Kivity     v.u[0] = 1; v.u[1] = 2; v.u[2] = 3; v.u[3] = 4;
668d7f3ee3cSAvi Kivity     asm("movdqu %1, %0" : "=m"(*mem) : "x"(v.sse));
669a299895bSThomas Huth     report(sseeq(&v, mem), "movdqu (read)");
670d7f3ee3cSAvi Kivity     mem->u[0] = 5; mem->u[1] = 6; mem->u[2] = 7; mem->u[3] = 8;
671d7f3ee3cSAvi Kivity     asm("movdqu %1, %0" : "=x"(v.sse) : "m"(*mem));
672a299895bSThomas Huth     report(sseeq(mem, &v), "movdqu (write)");
673290ed5d5SIgor Mammedov 
674290ed5d5SIgor Mammedov     v.u[0] = 1; v.u[1] = 2; v.u[2] = 3; v.u[3] = 4;
675290ed5d5SIgor Mammedov     asm("movaps %1, %0" : "=m"(*mem) : "x"(v.sse));
676a299895bSThomas Huth     report(sseeq(mem, &v), "movaps (read)");
677290ed5d5SIgor Mammedov     mem->u[0] = 5; mem->u[1] = 6; mem->u[2] = 7; mem->u[3] = 8;
678290ed5d5SIgor Mammedov     asm("movaps %1, %0" : "=x"(v.sse) : "m"(*mem));
679a299895bSThomas Huth     report(sseeq(&v, mem), "movaps (write)");
680f068a46aSIgor Mammedov 
681f068a46aSIgor Mammedov     v.u[0] = 1; v.u[1] = 2; v.u[2] = 3; v.u[3] = 4;
682f068a46aSIgor Mammedov     asm("movapd %1, %0" : "=m"(*mem) : "x"(v.sse));
683a299895bSThomas Huth     report(sseeq(mem, &v), "movapd (read)");
684f068a46aSIgor Mammedov     mem->u[0] = 5; mem->u[1] = 6; mem->u[2] = 7; mem->u[3] = 8;
685f068a46aSIgor Mammedov     asm("movapd %1, %0" : "=x"(v.sse) : "m"(*mem));
686a299895bSThomas Huth     report(sseeq(&v, mem), "movapd (write)");
687d7f3ee3cSAvi Kivity }
688d7f3ee3cSAvi Kivity 
6893587082bSAvi Kivity static void test_mmx(uint64_t *mem)
6903587082bSAvi Kivity {
6913587082bSAvi Kivity     uint64_t v;
6923587082bSAvi Kivity 
6933587082bSAvi Kivity     write_cr0(read_cr0() & ~6); /* EM, TS */
6943587082bSAvi Kivity     asm volatile("fninit");
6953587082bSAvi Kivity     v = 0x0102030405060708ULL;
6963587082bSAvi Kivity     asm("movq %1, %0" : "=m"(*mem) : "y"(v));
697a299895bSThomas Huth     report(v == *mem, "movq (mmx, read)");
6983587082bSAvi Kivity     *mem = 0x8070605040302010ull;
6993587082bSAvi Kivity     asm("movq %1, %0" : "=y"(v) : "m"(*mem));
700a299895bSThomas Huth     report(v == *mem, "movq (mmx, write)");
7013587082bSAvi Kivity }
7023587082bSAvi Kivity 
7038cfa5a06SAvi Kivity static void test_rip_relative(unsigned *mem, char *insn_ram)
7048cfa5a06SAvi Kivity {
7058cfa5a06SAvi Kivity     /* movb $1, mem+2(%rip) */
7068cfa5a06SAvi Kivity     insn_ram[0] = 0xc6;
7078cfa5a06SAvi Kivity     insn_ram[1] = 0x05;
7088cfa5a06SAvi Kivity     *(unsigned *)&insn_ram[2] = 2 + (char *)mem - (insn_ram + 7);
7098cfa5a06SAvi Kivity     insn_ram[6] = 0x01;
7108cfa5a06SAvi Kivity     /* ret */
7118cfa5a06SAvi Kivity     insn_ram[7] = 0xc3;
7128cfa5a06SAvi Kivity 
7138cfa5a06SAvi Kivity     *mem = 0;
7148cfa5a06SAvi Kivity     asm("callq *%1" : "+m"(*mem) : "r"(insn_ram));
715a299895bSThomas Huth     report(*mem == 0x10000, "movb $imm, 0(%%rip)");
7168cfa5a06SAvi Kivity }
717d7f3ee3cSAvi Kivity 
718b212fcdaSAvi Kivity static void test_shld_shrd(u32 *mem)
719b212fcdaSAvi Kivity {
720b212fcdaSAvi Kivity     *mem = 0x12345678;
721b212fcdaSAvi Kivity     asm("shld %2, %1, %0" : "+m"(*mem) : "r"(0xaaaaaaaaU), "c"((u8)3));
722a299895bSThomas Huth     report(*mem == ((0x12345678 << 3) | 5), "shld (cl)");
723b212fcdaSAvi Kivity     *mem = 0x12345678;
724b212fcdaSAvi Kivity     asm("shrd %2, %1, %0" : "+m"(*mem) : "r"(0x55555555U), "c"((u8)3));
725a299895bSThomas Huth     report(*mem == ((0x12345678 >> 3) | (5u << 29)), "shrd (cl)");
726b212fcdaSAvi Kivity }
727b212fcdaSAvi Kivity 
72830762176SNadav Amit static void test_cmov(u32 *mem)
72930762176SNadav Amit {
73030762176SNadav Amit 	u64 val;
73130762176SNadav Amit 	*mem = 0xabcdef12u;
73230762176SNadav Amit 	asm ("movq $0x1234567812345678, %%rax\n\t"
73330762176SNadav Amit 	     "cmpl %%eax, %%eax\n\t"
73430762176SNadav Amit 	     "cmovnel (%[mem]), %%eax\n\t"
73530762176SNadav Amit 	     "movq %%rax, %[val]\n\t"
73630762176SNadav Amit 	     : [val]"=r"(val) : [mem]"r"(mem) : "%rax", "cc");
737a299895bSThomas Huth 	report(val == 0x12345678ul, "cmovnel");
73830762176SNadav Amit }
73930762176SNadav Amit 
740c2aa6128SPeter Feiner static unsigned long rip_advance;
741c2aa6128SPeter Feiner 
742c2aa6128SPeter Feiner static void advance_rip_and_note_exception(struct ex_regs *regs)
743d7143f32SAvi Kivity {
744d7143f32SAvi Kivity     ++exceptions;
745c2aa6128SPeter Feiner     regs->rip += rip_advance;
746d7143f32SAvi Kivity }
747d7143f32SAvi Kivity 
74845fdc228SPaolo Bonzini static void test_mmx_movq_mf(uint64_t *mem)
749d7143f32SAvi Kivity {
7503af6fbbeSArthur Chunqi Li     /* movq %mm0, (%rax) */
75145fdc228SPaolo Bonzini     extern char movq_start, movq_end;
752d7143f32SAvi Kivity 
75345fdc228SPaolo Bonzini     uint16_t fcw = 0;  /* all exceptions unmasked */
7543af6fbbeSArthur Chunqi Li     write_cr0(read_cr0() & ~6);  /* TS, EM */
755d7143f32SAvi Kivity     exceptions = 0;
756c2aa6128SPeter Feiner     handle_exception(MF_VECTOR, advance_rip_and_note_exception);
757d7143f32SAvi Kivity     asm volatile("fninit; fldcw %0" : : "m"(fcw));
7583af6fbbeSArthur Chunqi Li     asm volatile("fldz; fldz; fdivp"); /* generate exception */
7593af6fbbeSArthur Chunqi Li 
76045fdc228SPaolo Bonzini     rip_advance = &movq_end - &movq_start;
76145fdc228SPaolo Bonzini     asm(KVM_FEP "movq_start: movq %mm0, (%rax); movq_end:");
7623af6fbbeSArthur Chunqi Li     /* exit MMX mode */
763d7143f32SAvi Kivity     asm volatile("fnclex; emms");
764a299895bSThomas Huth     report(exceptions == 1, "movq mmx generates #MF");
765d7143f32SAvi Kivity     handle_exception(MF_VECTOR, 0);
766d7143f32SAvi Kivity }
767d7143f32SAvi Kivity 
768f413c1afSNadav Amit static void test_jmp_noncanonical(uint64_t *mem)
769f413c1afSNadav Amit {
770c2aa6128SPeter Feiner 	extern char nc_jmp_start, nc_jmp_end;
771c2aa6128SPeter Feiner 
772f413c1afSNadav Amit 	*mem = 0x1111111111111111ul;
773f413c1afSNadav Amit 
774f413c1afSNadav Amit 	exceptions = 0;
775c2aa6128SPeter Feiner 	rip_advance = &nc_jmp_end - &nc_jmp_start;
776c2aa6128SPeter Feiner 	handle_exception(GP_VECTOR, advance_rip_and_note_exception);
777c2aa6128SPeter Feiner 	asm volatile ("nc_jmp_start: jmp *%0; nc_jmp_end:" : : "m"(*mem));
778a299895bSThomas Huth 	report(exceptions == 1, "jump to non-canonical address");
779f413c1afSNadav Amit 	handle_exception(GP_VECTOR, 0);
780f413c1afSNadav Amit }
781f413c1afSNadav Amit 
78245fdc228SPaolo Bonzini static void test_movabs(uint64_t *mem)
78359033f47SPaolo Bonzini {
7843af6fbbeSArthur Chunqi Li     /* mov $0x9090909090909090, %rcx */
78545fdc228SPaolo Bonzini     unsigned long rcx;
78645fdc228SPaolo Bonzini     asm(KVM_FEP "mov $0x9090909090909090, %0" : "=c" (rcx) : "0" (0));
787a299895bSThomas Huth     report(rcx == 0x9090909090909090, "64-bit mov imm2");
78859033f47SPaolo Bonzini }
78959033f47SPaolo Bonzini 
79045fdc228SPaolo Bonzini static void test_smsw_reg(uint64_t *mem)
791313f4efeSNadav Amit {
792313f4efeSNadav Amit 	unsigned long cr0 = read_cr0();
79345fdc228SPaolo Bonzini 	unsigned long rax;
79445fdc228SPaolo Bonzini 	const unsigned long in_rax = 0x1234567890abcdeful;
795313f4efeSNadav Amit 
79645fdc228SPaolo Bonzini 	asm(KVM_FEP "smsww %w0\n\t" : "=a" (rax) : "0" (in_rax));
797a299895bSThomas Huth 	report((u16)rax == (u16)cr0 && rax >> 16 == in_rax >> 16,
798a299895bSThomas Huth 	       "16-bit smsw reg");
799313f4efeSNadav Amit 
80045fdc228SPaolo Bonzini 	asm(KVM_FEP "smswl %k0\n\t" : "=a" (rax) : "0" (in_rax));
801a299895bSThomas Huth 	report(rax == (u32)cr0, "32-bit smsw reg");
802313f4efeSNadav Amit 
8032f394044SBill Wendling 	asm(KVM_FEP "smswq %q0\n\t" : "=a" (rax) : "0" (in_rax));
804a299895bSThomas Huth 	report(rax == cr0, "64-bit smsw reg");
805313f4efeSNadav Amit }
806313f4efeSNadav Amit 
80745fdc228SPaolo Bonzini static void test_nop(uint64_t *mem)
808ae399010SNadav Amit {
80945fdc228SPaolo Bonzini 	unsigned long rax;
81045fdc228SPaolo Bonzini 	const unsigned long in_rax = 0x1234567890abcdeful;
81145fdc228SPaolo Bonzini 	asm(KVM_FEP "nop\n\t" : "=a" (rax) : "0" (in_rax));
812a299895bSThomas Huth 	report(rax == in_rax, "nop");
813ae399010SNadav Amit }
814ae399010SNadav Amit 
81545fdc228SPaolo Bonzini static void test_mov_dr(uint64_t *mem)
816b39a3e14SNadav Amit {
81745fdc228SPaolo Bonzini 	unsigned long rax;
81845fdc228SPaolo Bonzini 	const unsigned long in_rax = 0;
819badc98caSKrish Sadhukhan 	bool rtm_support = this_cpu_has(X86_FEATURE_RTM);
820b39a3e14SNadav Amit 	unsigned long dr6_fixed_1 = rtm_support ? 0xfffe0ff0ul : 0xffff0ff0ul;
82145fdc228SPaolo Bonzini 	asm(KVM_FEP "movq %0, %%dr6\n\t"
82245fdc228SPaolo Bonzini 	    KVM_FEP "movq %%dr6, %0\n\t" : "=a" (rax) : "a" (in_rax));
823a299895bSThomas Huth 	report(rax == dr6_fixed_1, "mov_dr6");
824b39a3e14SNadav Amit }
825b39a3e14SNadav Amit 
82626311ca9SNadav Amit static void test_push16(uint64_t *mem)
82726311ca9SNadav Amit {
82826311ca9SNadav Amit 	uint64_t rsp1, rsp2;
82926311ca9SNadav Amit 	uint16_t r;
83026311ca9SNadav Amit 
83126311ca9SNadav Amit 	asm volatile (	"movq %%rsp, %[rsp1]\n\t"
83226311ca9SNadav Amit 			"pushw %[v]\n\t"
83326311ca9SNadav Amit 			"popw %[r]\n\t"
83426311ca9SNadav Amit 			"movq %%rsp, %[rsp2]\n\t"
83526311ca9SNadav Amit 			"movq %[rsp1], %%rsp\n\t" :
83626311ca9SNadav Amit 			[rsp1]"=r"(rsp1), [rsp2]"=r"(rsp2), [r]"=r"(r)
83726311ca9SNadav Amit 			: [v]"m"(*mem) : "memory");
838a299895bSThomas Huth 	report(rsp1 == rsp2, "push16");
83926311ca9SNadav Amit }
84026311ca9SNadav Amit 
841ec278ce3SAvi Kivity static void test_crosspage_mmio(volatile uint8_t *mem)
842ec278ce3SAvi Kivity {
843ec278ce3SAvi Kivity     volatile uint16_t w, *pw;
844ec278ce3SAvi Kivity 
845ec278ce3SAvi Kivity     pw = (volatile uint16_t *)&mem[4095];
846ec278ce3SAvi Kivity     mem[4095] = 0x99;
847ec278ce3SAvi Kivity     mem[4096] = 0x77;
848ec278ce3SAvi Kivity     asm volatile("mov %1, %0" : "=r"(w) : "m"(*pw) : "memory");
849a299895bSThomas Huth     report(w == 0x7799, "cross-page mmio read");
850ec278ce3SAvi Kivity     asm volatile("mov %1, %0" : "=m"(*pw) : "r"((uint16_t)0x88aa));
851a299895bSThomas Huth     report(mem[4095] == 0xaa && mem[4096] == 0x88, "cross-page mmio write");
852ec278ce3SAvi Kivity }
853ec278ce3SAvi Kivity 
854a19c7db7SXiao Guangrong static void test_string_io_mmio(volatile uint8_t *mem)
855a19c7db7SXiao Guangrong {
856a19c7db7SXiao Guangrong 	/* Cross MMIO pages.*/
857a19c7db7SXiao Guangrong 	volatile uint8_t *mmio = mem + 4032;
858a19c7db7SXiao Guangrong 
859a19c7db7SXiao Guangrong 	asm volatile("outw %%ax, %%dx  \n\t" : : "a"(0x9999), "d"(TESTDEV_IO_PORT));
860a19c7db7SXiao Guangrong 
861a19c7db7SXiao Guangrong 	asm volatile ("cld; rep insb" : : "d" (TESTDEV_IO_PORT), "D" (mmio), "c" (1024));
862a19c7db7SXiao Guangrong 
863a299895bSThomas Huth 	report(mmio[1023] == 0x99, "string_io_mmio");
864a19c7db7SXiao Guangrong }
865a19c7db7SXiao Guangrong 
86656c6afa7SJan Kiszka /* kvm doesn't allow lidt/lgdt from mmio, so the test is disabled */
86756c6afa7SJan Kiszka #if 0
86847c1461aSAvi Kivity static void test_lgdt_lidt(volatile uint8_t *mem)
86947c1461aSAvi Kivity {
87047c1461aSAvi Kivity     struct descriptor_table_ptr orig, fresh = {};
87147c1461aSAvi Kivity 
87247c1461aSAvi Kivity     sgdt(&orig);
87347c1461aSAvi Kivity     *(struct descriptor_table_ptr *)mem = (struct descriptor_table_ptr) {
87447c1461aSAvi Kivity 	.limit = 0xf234,
87547c1461aSAvi Kivity 	.base = 0x12345678abcd,
87647c1461aSAvi Kivity     };
87747c1461aSAvi Kivity     cli();
87847c1461aSAvi Kivity     asm volatile("lgdt %0" : : "m"(*(struct descriptor_table_ptr *)mem));
87947c1461aSAvi Kivity     sgdt(&fresh);
88047c1461aSAvi Kivity     lgdt(&orig);
88147c1461aSAvi Kivity     sti();
882a299895bSThomas Huth     report(orig.limit == fresh.limit && orig.base == fresh.base,
883a299895bSThomas Huth            "lgdt (long address)");
88447c1461aSAvi Kivity 
88547c1461aSAvi Kivity     sidt(&orig);
88647c1461aSAvi Kivity     *(struct descriptor_table_ptr *)mem = (struct descriptor_table_ptr) {
88747c1461aSAvi Kivity 	.limit = 0x432f,
88847c1461aSAvi Kivity 	.base = 0xdbca87654321,
88947c1461aSAvi Kivity     };
89047c1461aSAvi Kivity     cli();
89147c1461aSAvi Kivity     asm volatile("lidt %0" : : "m"(*(struct descriptor_table_ptr *)mem));
89247c1461aSAvi Kivity     sidt(&fresh);
89347c1461aSAvi Kivity     lidt(&orig);
89447c1461aSAvi Kivity     sti();
895a299895bSThomas Huth     report(orig.limit == fresh.limit && orig.base == fresh.base,
896a299895bSThomas Huth            "lidt (long address)");
89747c1461aSAvi Kivity }
89856c6afa7SJan Kiszka #endif
89947c1461aSAvi Kivity 
900fc2f880bSAvi Kivity static void ss_bad_rpl(struct ex_regs *regs)
901fc2f880bSAvi Kivity {
902fc2f880bSAvi Kivity     extern char ss_bad_rpl_cont;
903fc2f880bSAvi Kivity 
904fc2f880bSAvi Kivity     ++exceptions;
905fc2f880bSAvi Kivity     regs->rip = (ulong)&ss_bad_rpl_cont;
906fc2f880bSAvi Kivity }
907fc2f880bSAvi Kivity 
908fc2f880bSAvi Kivity static void test_sreg(volatile uint16_t *mem)
909fc2f880bSAvi Kivity {
910fc2f880bSAvi Kivity     u16 ss = read_ss();
911fc2f880bSAvi Kivity 
912fc2f880bSAvi Kivity     // check for null segment load
913fc2f880bSAvi Kivity     *mem = 0;
914fc2f880bSAvi Kivity     asm volatile("mov %0, %%ss" : : "m"(*mem));
915a299895bSThomas Huth     report(read_ss() == 0, "mov null, %%ss");
916fc2f880bSAvi Kivity 
917fc2f880bSAvi Kivity     // check for exception when ss.rpl != cpl on null segment load
918fc2f880bSAvi Kivity     exceptions = 0;
919fc2f880bSAvi Kivity     handle_exception(GP_VECTOR, ss_bad_rpl);
920fc2f880bSAvi Kivity     *mem = 3;
921fc2f880bSAvi Kivity     asm volatile("mov %0, %%ss; ss_bad_rpl_cont:" : : "m"(*mem));
922a299895bSThomas Huth     report(exceptions == 1 && read_ss() == 0,
923a299895bSThomas Huth            "mov null, %%ss (with ss.rpl != cpl)");
924fc2f880bSAvi Kivity     handle_exception(GP_VECTOR, 0);
925fc2f880bSAvi Kivity     write_ss(ss);
926fc2f880bSAvi Kivity }
927fc2f880bSAvi Kivity 
9284425dba6SPeter Feiner /* Broken emulation causes triple fault, which skips the other tests. */
9294425dba6SPeter Feiner #if 0
930cb615a4dSAvi Kivity static void test_lldt(volatile uint16_t *mem)
931cb615a4dSAvi Kivity {
9324425dba6SPeter Feiner     u64 gdt[] = { 0, /* null descriptor */
9334425dba6SPeter Feiner #ifdef __X86_64__
9344425dba6SPeter Feiner 		  0, /* ldt descriptor is 16 bytes in long mode */
9354425dba6SPeter Feiner #endif
9364425dba6SPeter Feiner 		  0x0000f82000000ffffull /* ldt descriptor */ };
9374425dba6SPeter Feiner     struct descriptor_table_ptr gdt_ptr = { .limit = sizeof(gdt) - 1,
9384425dba6SPeter Feiner 					    .base = (ulong)&gdt };
939cb615a4dSAvi Kivity     struct descriptor_table_ptr orig_gdt;
940cb615a4dSAvi Kivity 
941cb615a4dSAvi Kivity     cli();
942cb615a4dSAvi Kivity     sgdt(&orig_gdt);
943cb615a4dSAvi Kivity     lgdt(&gdt_ptr);
944cb615a4dSAvi Kivity     *mem = 0x8;
945cb615a4dSAvi Kivity     asm volatile("lldt %0" : : "m"(*mem));
946cb615a4dSAvi Kivity     lgdt(&orig_gdt);
947cb615a4dSAvi Kivity     sti();
948a299895bSThomas Huth     report(sldt() == *mem, "lldt");
949cb615a4dSAvi Kivity }
9504425dba6SPeter Feiner #endif
951cb615a4dSAvi Kivity 
95258a9d81eSAvi Kivity static void test_ltr(volatile uint16_t *mem)
95358a9d81eSAvi Kivity {
95458a9d81eSAvi Kivity     struct descriptor_table_ptr gdt_ptr;
95558a9d81eSAvi Kivity     uint64_t *gdt, *trp;
95658a9d81eSAvi Kivity     uint16_t tr = str();
95758a9d81eSAvi Kivity     uint64_t busy_mask = (uint64_t)1 << 41;
95858a9d81eSAvi Kivity 
95958a9d81eSAvi Kivity     sgdt(&gdt_ptr);
96058a9d81eSAvi Kivity     gdt = (uint64_t *)gdt_ptr.base;
96158a9d81eSAvi Kivity     trp = &gdt[tr >> 3];
96258a9d81eSAvi Kivity     *trp &= ~busy_mask;
96358a9d81eSAvi Kivity     *mem = tr;
96458a9d81eSAvi Kivity     asm volatile("ltr %0" : : "m"(*mem) : "memory");
965a299895bSThomas Huth     report(str() == tr && (*trp & busy_mask), "ltr");
96658a9d81eSAvi Kivity }
96758a9d81eSAvi Kivity 
9686cff92ddSAvi Kivity static void test_simplealu(u32 *mem)
9696cff92ddSAvi Kivity {
9706cff92ddSAvi Kivity     *mem = 0x1234;
9716cff92ddSAvi Kivity     asm("or %1, %0" : "+m"(*mem) : "r"(0x8001));
972a299895bSThomas Huth     report(*mem == 0x9235, "or");
9736cff92ddSAvi Kivity     asm("add %1, %0" : "+m"(*mem) : "r"(2));
974a299895bSThomas Huth     report(*mem == 0x9237, "add");
9756cff92ddSAvi Kivity     asm("xor %1, %0" : "+m"(*mem) : "r"(0x1111));
976a299895bSThomas Huth     report(*mem == 0x8326, "xor");
9776cff92ddSAvi Kivity     asm("sub %1, %0" : "+m"(*mem) : "r"(0x26));
978a299895bSThomas Huth     report(*mem == 0x8300, "sub");
9796cff92ddSAvi Kivity     asm("clc; adc %1, %0" : "+m"(*mem) : "r"(0x100));
980a299895bSThomas Huth     report(*mem == 0x8400, "adc(0)");
9816cff92ddSAvi Kivity     asm("stc; adc %1, %0" : "+m"(*mem) : "r"(0x100));
982a299895bSThomas Huth     report(*mem == 0x8501, "adc(0)");
9836cff92ddSAvi Kivity     asm("clc; sbb %1, %0" : "+m"(*mem) : "r"(0));
984a299895bSThomas Huth     report(*mem == 0x8501, "sbb(0)");
9856cff92ddSAvi Kivity     asm("stc; sbb %1, %0" : "+m"(*mem) : "r"(0));
986a299895bSThomas Huth     report(*mem == 0x8500, "sbb(1)");
9876cff92ddSAvi Kivity     asm("and %1, %0" : "+m"(*mem) : "r"(0xfe77));
988a299895bSThomas Huth     report(*mem == 0x8400, "and");
9896cff92ddSAvi Kivity     asm("test %1, %0" : "+m"(*mem) : "r"(0xf000));
990a299895bSThomas Huth     report(*mem == 0x8400, "test");
9916cff92ddSAvi Kivity }
9926cff92ddSAvi Kivity 
99370bdcadbSNadav Amit static void illegal_movbe_handler(struct ex_regs *regs)
99470bdcadbSNadav Amit {
99570bdcadbSNadav Amit 	extern char bad_movbe_cont;
99670bdcadbSNadav Amit 
99770bdcadbSNadav Amit 	++exceptions;
99870bdcadbSNadav Amit 	regs->rip = (ulong)&bad_movbe_cont;
99970bdcadbSNadav Amit }
100070bdcadbSNadav Amit 
100170bdcadbSNadav Amit static void test_illegal_movbe(void)
100270bdcadbSNadav Amit {
1003badc98caSKrish Sadhukhan 	if (!this_cpu_has(X86_FEATURE_MOVBE)) {
100432b9603cSRadim Krčmář 		report_skip("illegal movbe");
100570bdcadbSNadav Amit 		return;
100670bdcadbSNadav Amit 	}
100770bdcadbSNadav Amit 
100870bdcadbSNadav Amit 	exceptions = 0;
100970bdcadbSNadav Amit 	handle_exception(UD_VECTOR, illegal_movbe_handler);
101070bdcadbSNadav Amit 	asm volatile(".byte 0x0f; .byte 0x38; .byte 0xf0; .byte 0xc0;\n\t"
101170bdcadbSNadav Amit 		     " bad_movbe_cont:" : : : "rax");
1012a299895bSThomas Huth 	report(exceptions == 1, "illegal movbe");
101370bdcadbSNadav Amit 	handle_exception(UD_VECTOR, 0);
101470bdcadbSNadav Amit }
101570bdcadbSNadav Amit 
101645fdc228SPaolo Bonzini static void record_no_fep(struct ex_regs *regs)
101745fdc228SPaolo Bonzini {
101845fdc228SPaolo Bonzini 	fep_available = 0;
101945fdc228SPaolo Bonzini 	regs->rip += KVM_FEP_LENGTH;
102045fdc228SPaolo Bonzini }
102145fdc228SPaolo Bonzini 
10227db17e21SThomas Huth int main(void)
10237d36db35SAvi Kivity {
10247d36db35SAvi Kivity 	void *mem;
102545fdc228SPaolo Bonzini 	void *insn_page;
10268cfa5a06SAvi Kivity 	void *insn_ram;
10277d36db35SAvi Kivity 	unsigned long t1, t2;
10287d36db35SAvi Kivity 
10297d36db35SAvi Kivity 	setup_vm();
103045fdc228SPaolo Bonzini 	handle_exception(UD_VECTOR, record_no_fep);
103145fdc228SPaolo Bonzini 	asm(KVM_FEP "nop");
103245fdc228SPaolo Bonzini 	handle_exception(UD_VECTOR, 0);
103345fdc228SPaolo Bonzini 
1034ec278ce3SAvi Kivity 	mem = alloc_vpages(2);
1035ec278ce3SAvi Kivity 	install_page((void *)read_cr3(), IORAM_BASE_PHYS, mem);
1036ec278ce3SAvi Kivity 	// install the page twice to test cross-page mmio
1037ec278ce3SAvi Kivity 	install_page((void *)read_cr3(), IORAM_BASE_PHYS, mem + 4096);
1038d7143f32SAvi Kivity 	insn_page = alloc_page();
1039d7143f32SAvi Kivity 	insn_ram = vmap(virt_to_phys(insn_page), 4096);
10407d36db35SAvi Kivity 
10417d36db35SAvi Kivity 	// test mov reg, r/m and mov r/m, reg
10427d36db35SAvi Kivity 	t1 = 0x123456789abcdef;
10437d36db35SAvi Kivity 	asm volatile("mov %[t1], (%[mem]) \n\t"
10447d36db35SAvi Kivity 		     "mov (%[mem]), %[t2]"
10457d36db35SAvi Kivity 		     : [t2]"=r"(t2)
10467d36db35SAvi Kivity 		     : [t1]"r"(t1), [mem]"r"(mem)
10477d36db35SAvi Kivity 		     : "memory");
1048a299895bSThomas Huth 	report(t2 == 0x123456789abcdef, "mov reg, r/m (1)");
10497d36db35SAvi Kivity 
10506cff92ddSAvi Kivity 	test_simplealu(mem);
10517d36db35SAvi Kivity 	test_cmps(mem);
105280a4ea7bSAvi Kivity 	test_scas(mem);
10537d36db35SAvi Kivity 
10547d36db35SAvi Kivity 	test_push(mem);
10557d36db35SAvi Kivity 	test_pop(mem);
10567d36db35SAvi Kivity 
10577d36db35SAvi Kivity 	test_xchg(mem);
10585647d55cSWei Yongjun 	test_xadd(mem);
10597d36db35SAvi Kivity 
10607d36db35SAvi Kivity 	test_cr8();
10617d36db35SAvi Kivity 
10624003963dSNadav Amit 	test_smsw(mem);
10637d36db35SAvi Kivity 	test_lmsw();
10647d36db35SAvi Kivity 	test_ljmp(mem);
10657d36db35SAvi Kivity 	test_stringio();
10667d36db35SAvi Kivity 	test_incdecnotneg(mem);
1067d4655eafSWei Yongjun 	test_btc(mem);
10682e16c7f6SWei Yongjun 	test_bsfbsr(mem);
106951d65a3cSAvi Kivity 	test_imul(mem);
1070c2c43fcfSAvi Kivity 	test_muldiv(mem);
1071d7f3ee3cSAvi Kivity 	test_sse(mem);
10723587082bSAvi Kivity 	test_mmx(mem);
10738cfa5a06SAvi Kivity 	test_rip_relative(mem, insn_ram);
1074b212fcdaSAvi Kivity 	test_shld_shrd(mem);
107547c1461aSAvi Kivity 	//test_lgdt_lidt(mem);
1076fc2f880bSAvi Kivity 	test_sreg(mem);
10774425dba6SPeter Feiner 	//test_lldt(mem);
107858a9d81eSAvi Kivity 	test_ltr(mem);
107930762176SNadav Amit 	test_cmov(mem);
10807d36db35SAvi Kivity 
108145fdc228SPaolo Bonzini 	if (fep_available) {
108245fdc228SPaolo Bonzini 		test_mmx_movq_mf(mem);
108345fdc228SPaolo Bonzini 		test_movabs(mem);
108445fdc228SPaolo Bonzini 		test_smsw_reg(mem);
108545fdc228SPaolo Bonzini 		test_nop(mem);
108645fdc228SPaolo Bonzini 		test_mov_dr(mem);
108745fdc228SPaolo Bonzini 	} else {
108845fdc228SPaolo Bonzini 		report_skip("skipping register-only tests, "
108945fdc228SPaolo Bonzini 			    "use kvm.forced_emulation_prefix=1 to enable");
109045fdc228SPaolo Bonzini 	}
109145fdc228SPaolo Bonzini 
109226311ca9SNadav Amit 	test_push16(mem);
1093ec278ce3SAvi Kivity 	test_crosspage_mmio(mem);
1094ec278ce3SAvi Kivity 
1095a19c7db7SXiao Guangrong 	test_string_io_mmio(mem);
1096a19c7db7SXiao Guangrong 
1097f413c1afSNadav Amit 	test_jmp_noncanonical(mem);
109870bdcadbSNadav Amit 	test_illegal_movbe();
1099f413c1afSNadav Amit 
1100f3cdd159SJan Kiszka 	return report_summary();
11017d36db35SAvi Kivity }
1102