mirror of https://github.com/acidanthera/audk.git
MdeModulePkg/Tpl: Fix negative value left shift
REF: https://bugzilla.tianocore.org/show_bug.cgi?id=695 Within function CoreRestoreTpl(), left shift a negative value -2 is used in: "while (((-2 << NewTpl) & gEventPending) != 0) {" which involves undefined behavior. According to the C11 spec, Section 6.5.7: > 4 The result of E1 << E2 is E1 left-shifted E2 bit positions; vacated > bits are filled with zeros. If E1 has an unsigned type, the value > of the result is E1 * 2^E2 , reduced modulo one more than the > maximum value representable in the result type. If E1 has a signed > type and nonnegative value, and E1 * 2^E2 is representable in the > result type, then that is the resulting value; otherwise, the > behavior is undefined. This commit refines the code logic to avoid left shifting the negative value. Cc: Steven Shi <steven.shi@intel.com> Cc: Eric Dong <eric.dong@intel.com> Cc: Paolo Bonzini <pbonzini@redhat.com> Cc: Michael Kinney <michael.d.kinney@intel.com> Cc: Liming Gao <liming.gao@intel.com> Contributed-under: TianoCore Contribution Agreement 1.1 Signed-off-by: Hao Wu <hao.a.wu@intel.com> Reviewed-by: Star Zeng <star.zeng@intel.com>
This commit is contained in:
parent
1dfb0bf20e
commit
d9be0f66ff
|
@ -1,7 +1,7 @@
|
||||||
/** @file
|
/** @file
|
||||||
Task priority (TPL) functions.
|
Task priority (TPL) functions.
|
||||||
|
|
||||||
Copyright (c) 2006 - 2015, Intel Corporation. All rights reserved.<BR>
|
Copyright (c) 2006 - 2017, Intel Corporation. All rights reserved.<BR>
|
||||||
This program and the accompanying materials
|
This program and the accompanying materials
|
||||||
are licensed and made available under the terms and conditions of the BSD License
|
are licensed and made available under the terms and conditions of the BSD License
|
||||||
which accompanies this distribution. The full text of the license may be found at
|
which accompanies this distribution. The full text of the license may be found at
|
||||||
|
@ -103,6 +103,7 @@ CoreRestoreTpl (
|
||||||
)
|
)
|
||||||
{
|
{
|
||||||
EFI_TPL OldTpl;
|
EFI_TPL OldTpl;
|
||||||
|
EFI_TPL PendingTpl;
|
||||||
|
|
||||||
OldTpl = gEfiCurrentTpl;
|
OldTpl = gEfiCurrentTpl;
|
||||||
if (NewTpl > OldTpl) {
|
if (NewTpl > OldTpl) {
|
||||||
|
@ -123,8 +124,13 @@ CoreRestoreTpl (
|
||||||
//
|
//
|
||||||
// Dispatch any pending events
|
// Dispatch any pending events
|
||||||
//
|
//
|
||||||
while (((-2 << NewTpl) & gEventPending) != 0) {
|
while (gEventPending != 0) {
|
||||||
gEfiCurrentTpl = (UINTN) HighBitSet64 (gEventPending);
|
PendingTpl = (UINTN) HighBitSet64 (gEventPending);
|
||||||
|
if (PendingTpl <= NewTpl) {
|
||||||
|
break;
|
||||||
|
}
|
||||||
|
|
||||||
|
gEfiCurrentTpl = PendingTpl;
|
||||||
if (gEfiCurrentTpl < TPL_HIGH_LEVEL) {
|
if (gEfiCurrentTpl < TPL_HIGH_LEVEL) {
|
||||||
CoreSetInterruptState (TRUE);
|
CoreSetInterruptState (TRUE);
|
||||||
}
|
}
|
||||||
|
|
Loading…
Reference in New Issue