From 68f645dd4f1ca5909f99ca93b8321ee03d496ba2 Mon Sep 17 00:00:00 2001 From: Peter Maydell Date: Wed, 3 Mar 2021 20:17:09 -0500 Subject: [PATCH] target/arm: Don't decode insns in the XScale/iWMMXt space as cp insns In commit cd8be50e58f63413c0 we converted the A32 coprocessor insns to decodetree. This accidentally broke XScale/iWMMXt insns, because it moved the handling of "cp insns which are handled by looking up the cp register in the hashtable" from after the call to the legacy disas_xscale_insn() decode to before it, with the result that all XScale/iWMMXt insns now UNDEF. Update valid_cp() so that it knows that on XScale cp 0 and 1 are not standard coprocessor instructions; this will cause the decodetree trans_ functions to ignore them, so that execution will correctly get through to the legacy decode again. Backports e4d51ac6921dc861bfb3d20e4c7dcf345840a9da --- qemu/target/arm/translate.c | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/qemu/target/arm/translate.c b/qemu/target/arm/translate.c index ff7a0ed6..81b2d7e8 100644 --- a/qemu/target/arm/translate.c +++ b/qemu/target/arm/translate.c @@ -5362,7 +5362,14 @@ static bool valid_cp(DisasContext *s, int cp) * only cp14 and cp15 are valid, and other values aren't considered * to be in the coprocessor-instruction space at all. v8M still * permits coprocessors 0..7. + * For XScale, we must not decode the XScale cp0, cp1 space as + * a standard coprocessor insn, because we want to fall through to + * the legacy disas_xscale_insn() decoder after decodetree is done. */ + if (arm_dc_feature(s, ARM_FEATURE_XSCALE) && (cp == 0 || cp == 1)) { + return false; + } + if (arm_dc_feature(s, ARM_FEATURE_V8) && !arm_dc_feature(s, ARM_FEATURE_M)) { return cp >= 14;