[PATCH 2/3] lib/sbm: Use dynamically sized bitmap in sbm_leaf
From: Chen Yu
Date: Sun May 10 2026 - 12:08:56 EST
The original sbm_leaf uses a single unsigned long (u64) as its bitmap,
which limits each leaf to representing at most 64 CPUs. When a LLC
domain contains more than 64 logical CPUs, the within-leaf bit
position (computed as apicid & arch_sbm_mask) can exceed 63.
Since set_bit(nr, addr) treats addr as an arbitrarily long bitmap
array, set_bit(65, &leaf->bitmap) would write to (&leaf->bitmap)[1],
memory beyond the single unsigned long field. While
____cacheline_aligned padding may prevent corrupting adjacent
leaves, the bits written into the padding are never read back by
sbm_find_next_bit(), silently making those CPUs invisible.
Fix this by converting the fixed u64 bitmap to a flexible array
member (unsigned long bitmap[]) whose size is determined at
allocation time from the number of CPUs that of the TILE
domain(1 << arch_sbm_shift). A subsequent patch will switch
to use the number CPUs shared LLC rather than TILE domain.
---
include/linux/sbm.h | 5 +++--
lib/sbm.c | 28 +++++++++++++++++-----------
2 files changed, 20 insertions(+), 13 deletions(-)
diff --git a/include/linux/sbm.h b/include/linux/sbm.h
index a25a96366694..8d60f4bc7004 100644
--- a/include/linux/sbm.h
+++ b/include/linux/sbm.h
@@ -28,7 +28,8 @@ struct sbm_root {
struct sbm_leaf {
enum sbm_type type;
- unsigned long bitmap;
+ unsigned int nbits;
+ unsigned long bitmap[];
} ____cacheline_aligned;
struct sbm {
@@ -48,7 +49,7 @@ extern int sbm_find_next_bit(struct sbm *sbm, int start);
leaf = root->leafs[nr]; \
} \
int bit = idx & arch_sbm_mask; \
- func(bit, &leaf->bitmap); \
+ func(bit, leaf->bitmap); \
})
static inline void sbm_cpu_set(struct sbm *sbm, int cpu)
diff --git a/lib/sbm.c b/lib/sbm.c
index 8006f9b04b62..76670ce14291 100644
--- a/lib/sbm.c
+++ b/lib/sbm.c
@@ -4,6 +4,8 @@
struct sbm *sbm_alloc(void)
{
unsigned int nr = arch_sbm_leafs;
+ unsigned int nbits = 1U << arch_sbm_shift;
+ unsigned int nlongs = BITS_TO_LONGS(nbits);
struct sbm_root *root = kzalloc_flex(*root, leafs, nr);
struct sbm_leaf *leaf;
if (!root)
@@ -12,10 +14,12 @@ struct sbm *sbm_alloc(void)
root->type = st_root;
for (int i = 0; i < nr; i++) {
- leaf = kzalloc_obj(*leaf);
+ leaf = kzalloc(struct_size(leaf, bitmap, nlongs),
+ GFP_KERNEL);
if (!leaf)
goto fail;
leaf->type = st_leaf;
+ leaf->nbits = nbits;
root->leafs[i] = leaf;
}
@@ -40,18 +44,20 @@ int sbm_find_next_bit(struct sbm *sbm, int start)
struct sbm_root *root = (void *)sbm;
int nr = start >> arch_sbm_shift;
int bit = start & arch_sbm_mask;
- unsigned long tmp, mask = (~0UL) << bit;
+ unsigned int found;
+
if (sbm->type == st_root) {
- for (; nr < arch_sbm_leafs; nr++, mask = ~0UL) {
+ do {
leaf = root->leafs[nr];
- tmp = leaf->bitmap & mask;
- if (tmp)
- break;
- }
+ found = find_next_bit(leaf->bitmap, leaf->nbits, bit);
+ if (found < leaf->nbits)
+ return (nr << arch_sbm_shift) | found;
+ bit = 0;
+ } while (++nr < arch_sbm_leafs);
} else {
- tmp = leaf->bitmap & mask;
+ found = find_next_bit(leaf->bitmap, leaf->nbits, bit);
+ if (found < leaf->nbits)
+ return found;
}
- if (!tmp)
- return -1;
- return (nr << arch_sbm_shift) | __ffs(tmp);
+ return -1;
}
--
2.25.1