/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.119 Revision 1.246
1/* 1/*
2 * Copyright 2003-2006 Gentoo Foundation 2 * Copyright 2003-2007 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.119 2006/02/05 02:25:58 solar Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.246 2012/11/04 06:55:04 vapier Exp $
5 * 5 *
6 * Copyright 2003-2006 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2006 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10static const char rcsid[] = "$Id: scanelf.c,v 1.246 2012/11/04 06:55:04 vapier Exp $";
11const char argv0[] = "scanelf";
12
10#include "paxinc.h" 13#include "paxinc.h"
11 14
12static const char *rcsid = "$Id: scanelf.c,v 1.119 2006/02/05 02:25:58 solar Exp $";
13#define argv0 "scanelf"
14
15#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
16
17
18 16
19/* prototypes */ 17/* prototypes */
20static int scanelf_elfobj(elfobj *elf); 18static int file_matches_list(const char *filename, char **matchlist);
21static int scanelf_elf(const char *filename, int fd, size_t len);
22static int scanelf_archive(const char *filename, int fd, size_t len);
23static void scanelf_file(const char *filename);
24static void scanelf_dir(const char *path);
25static void scanelf_ldpath(void);
26static void scanelf_envpath(void);
27static void usage(int status);
28static void parseargs(int argc, char *argv[]);
29static char *xstrdup(const char *s);
30static void *xmalloc(size_t size);
31static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
32#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
33static inline void xchrcat(char **dst, const char append, size_t *curr_len);
34 19
35/* variables to control behavior */ 20/* variables to control behavior */
36static char match_etypes[126] = ""; 21static char *match_etypes = NULL;
37static char *ldpaths[256]; 22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
38static char scan_ldpath = 0; 23static char scan_ldpath = 0;
39static char scan_envpath = 0; 24static char scan_envpath = 0;
40static char scan_symlink = 1; 25static char scan_symlink = 1;
41static char scan_archives = 0; 26static char scan_archives = 0;
42static char dir_recurse = 0; 27static char dir_recurse = 0;
43static char dir_crossmount = 1; 28static char dir_crossmount = 1;
44static char show_pax = 0; 29static char show_pax = 0;
30static char show_perms = 0;
31static char show_size = 0;
45static char show_phdr = 0; 32static char show_phdr = 0;
46static char show_textrel = 0; 33static char show_textrel = 0;
47static char show_rpath = 0; 34static char show_rpath = 0;
48static char show_needed = 0; 35static char show_needed = 0;
49static char show_interp = 0; 36static char show_interp = 0;
50static char show_bind = 0; 37static char show_bind = 0;
51static char show_soname = 0; 38static char show_soname = 0;
52static char show_textrels = 0; 39static char show_textrels = 0;
53static char show_banner = 1; 40static char show_banner = 1;
41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
54static char be_quiet = 0; 44static char be_quiet = 0;
55static char be_verbose = 0; 45static char be_verbose = 0;
56static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
57static char *find_sym = NULL, *versioned_symname = NULL; 47static char be_semi_verbose = 0;
48static char *find_sym = NULL;
58static char *find_lib = NULL; 49static char *find_lib = NULL;
50static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
51static char *find_section = NULL;
52static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
59static char *out_format = NULL; 53static char *out_format = NULL;
60static char *search_path = NULL; 54static char *search_path = NULL;
61static char fix_elf = 0; 55static char fix_elf = 0;
62static char gmatch = 0; 56static char g_match = 0;
63static char use_ldcache = 0; 57static char use_ldcache = 0;
58static char use_ldpath = 0;
64 59
60static char **qa_textrels = NULL;
61static char **qa_execstack = NULL;
62static char **qa_wx_load = NULL;
63static int root_fd = AT_FDCWD;
65 64
66caddr_t ldcache = 0; 65static int match_bits = 0;
66static unsigned int match_perms = 0;
67static void *ldcache = NULL;
67size_t ldcache_size = 0; 68static size_t ldcache_size = 0;
69static unsigned long setpax = 0UL;
68 70
71static int has_objdump = 0;
72
73/* find the path to a file by name */
74static int bin_in_path(const char *fname)
75{
76 char fullpath[__PAX_UTILS_PATH_MAX];
77 char *path, *p;
78
79 path = getenv("PATH");
80 if (!path)
81 return 0;
82
83 while ((p = strrchr(path, ':')) != NULL) {
84 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
85 *p = 0;
86 if (access(fullpath, R_OK) != -1)
87 return 1;
88 }
89
90 return 0;
91}
92
93static FILE *fopenat_r(int dir_fd, const char *path)
94{
95 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
96 if (fd == -1)
97 return NULL;
98 return fdopen(fd, "re");
99}
100
101static const char *root_rel_path(const char *path)
102{
103 /*
104 * openat() will ignore the dirfd if path starts with
105 * a /, so consume all of that noise
106 *
107 * XXX: we don't handle relative paths like ../ that
108 * break out of the --root option, but for now, just
109 * don't do that :P.
110 */
111 if (root_fd != AT_FDCWD) {
112 while (*path == '/')
113 ++path;
114 if (*path == '\0')
115 path = ".";
116 }
117
118 return path;
119}
120
121/* 1 on failure. 0 otherwise */
122static int rematch(const char *regex, const char *match, int cflags)
123{
124 regex_t preg;
125 int ret;
126
127 if ((match == NULL) || (regex == NULL))
128 return EXIT_FAILURE;
129
130 ret = regcomp(&preg, regex, cflags);
131 if (ret) {
132 char err[256];
133 regerror(ret, &preg, err, sizeof(err));
134 warnf("regcomp failed: %s", err);
135 return EXIT_FAILURE;
136 }
137 ret = regexec(&preg, match, 0, NULL, 0);
138 regfree(&preg);
139
140 return ret;
141}
142
69/* sub-funcs for scanelf_file() */ 143/* sub-funcs for scanelf_fileat() */
70static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 144static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
71{ 145{
72 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 146 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
147
148 /* debug sections */
149 void *symtab = elf_findsecbyname(elf, ".symtab");
150 void *strtab = elf_findsecbyname(elf, ".strtab");
151 /* runtime sections */
152 void *dynsym = elf_findsecbyname(elf, ".dynsym");
153 void *dynstr = elf_findsecbyname(elf, ".dynstr");
154
155 /*
156 * If the sections are marked NOBITS, then they don't exist, so we just
157 * skip them. This let's us work sanely with splitdebug ELFs (rather
158 * than spewing a lot of "corrupt ELF" messages later on). In malformed
159 * ELFs, the section might be wrongly set to NOBITS, but screw em.
160 */
73#define GET_SYMTABS(B) \ 161#define GET_SYMTABS(B) \
74 if (elf->elf_class == ELFCLASS ## B) { \ 162 if (elf->elf_class == ELFCLASS ## B) { \
75 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \ 163 Elf ## B ## _Shdr *esymtab = symtab; \
76 /* debug sections */ \ 164 Elf ## B ## _Shdr *estrtab = strtab; \
77 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \ 165 Elf ## B ## _Shdr *edynsym = dynsym; \
78 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \ 166 Elf ## B ## _Shdr *edynstr = dynstr; \
79 /* runtime sections */ \ 167 \
80 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \ 168 if (symtab && EGET(esymtab->sh_type) == SHT_NOBITS) \
81 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \ 169 symtab = NULL; \
170 if (dynsym && EGET(edynsym->sh_type) == SHT_NOBITS) \
171 dynsym = NULL; \
82 if (symtab && dynsym) { \ 172 if (symtab && dynsym) \
83 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 173 *sym = (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) ? symtab : dynsym; \
84 } else { \ 174 else \
85 *sym = (void*)(symtab ? symtab : dynsym); \ 175 *sym = symtab ? symtab : dynsym; \
86 } \ 176 \
177 if (strtab && EGET(estrtab->sh_type) == SHT_NOBITS) \
178 strtab = NULL; \
179 if (dynstr && EGET(edynstr->sh_type) == SHT_NOBITS) \
180 dynstr = NULL; \
87 if (strtab && dynstr) { \ 181 if (strtab && dynstr) \
88 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \ 182 *str = (EGET(estrtab->sh_size) > EGET(edynstr->sh_size)) ? strtab : dynstr; \
89 } else { \ 183 else \
90 *tab = (void*)(strtab ? strtab : dynstr); \ 184 *str = strtab ? strtab : dynstr; \
91 } \
92 } 185 }
93 GET_SYMTABS(32) 186 GET_SYMTABS(32)
94 GET_SYMTABS(64) 187 GET_SYMTABS(64)
188
189 if (*sym && *str)
190 return;
191
192 /*
193 * damn, they're really going to make us work for it huh?
194 * reconstruct the section header info out of the dynamic
195 * tags so we can see what symbols this guy uses at runtime.
196 */
197#define GET_SYMTABS_DT(B) \
198 if (elf->elf_class == ELFCLASS ## B) { \
199 size_t i; \
200 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
201 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
202 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
203 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
204 Elf ## B ## _Dyn *dyn; \
205 Elf ## B ## _Off offset; \
206 \
207 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
208 vsym = vstr = vhash = vgnu_hash = 0; \
209 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
210 memset(&str_shdr, 0, sizeof(str_shdr)); \
211 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
212 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
213 continue; \
214 \
215 offset = EGET(phdr[i].p_offset); \
216 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
217 continue; \
218 \
219 dyn = DYN ## B (elf->vdata + offset); \
220 while (EGET(dyn->d_tag) != DT_NULL) { \
221 switch (EGET(dyn->d_tag)) { \
222 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
223 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
224 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
225 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
226 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
227 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
228 } \
229 ++dyn; \
230 } \
231 if (vsym && vstr) \
232 break; \
233 } \
234 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
235 return; \
236 \
237 /* calc offset into the ELF by finding the load addr of the syms */ \
238 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
239 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
240 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
241 offset = EGET(phdr[i].p_offset); \
242 \
243 if (EGET(phdr[i].p_type) != PT_LOAD) \
244 continue; \
245 \
246 if (vhash >= vaddr && vhash < vaddr + filesz) { \
247 /* Scan the hash table to see how many entries we have */ \
248 Elf32_Word max_sym_idx = 0; \
249 Elf32_Word *hashtbl = elf->vdata + offset + (vhash - vaddr); \
250 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
251 Elf32_Word nchains = EGET(hashtbl[1]); \
252 Elf32_Word *buckets = &hashtbl[2]; \
253 Elf32_Word *chains = &buckets[nbuckets]; \
254 Elf32_Word sym_idx; \
255 \
256 for (b = 0; b < nbuckets; ++b) { \
257 if (!buckets[b]) \
258 continue; \
259 for (sym_idx = buckets[b]; sym_idx < nchains && sym_idx; sym_idx = chains[sym_idx]) \
260 if (max_sym_idx < sym_idx) \
261 max_sym_idx = sym_idx; \
262 } \
263 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
264 } \
265 \
266 if (vsym >= vaddr && vsym < vaddr + filesz) { \
267 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
268 *sym = &sym_shdr; \
269 } \
270 \
271 if (vstr >= vaddr && vstr < vaddr + filesz) { \
272 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
273 *str = &str_shdr; \
274 } \
275 } \
276 }
277 GET_SYMTABS_DT(32)
278 GET_SYMTABS_DT(64)
95} 279}
280
96static char *scanelf_file_pax(elfobj *elf, char *found_pax) 281static char *scanelf_file_pax(elfobj *elf, char *found_pax)
97{ 282{
98 static char ret[7]; 283 static char ret[7];
99 unsigned long i, shown; 284 unsigned long i, shown;
100 285
109 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 294 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
110 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 295 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
111 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 296 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
112 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \ 297 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
113 continue; \ 298 continue; \
114 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 299 if (fix_elf && setpax) { \
300 /* set the paxctl flags */ \
301 ESET(phdr[i].p_flags, setpax); \
302 } \
303 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
115 continue; \ 304 continue; \
116 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 305 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
117 *found_pax = 1; \ 306 *found_pax = 1; \
118 ++shown; \ 307 ++shown; \
119 break; \ 308 break; \
120 } \ 309 } \
121 } 310 }
122 SHOW_PAX(32) 311 SHOW_PAX(32)
123 SHOW_PAX(64) 312 SHOW_PAX(64)
124 } 313 }
314
315 /* Note: We do not support setting EI_PAX if not PT_PAX_FLAGS
316 * was found. This is known to break ELFs on glibc systems,
317 * and mainline PaX has deprecated use of this for a long time.
318 * We could support changing PT_GNU_STACK, but that doesn't
319 * seem like it's worth the effort. #411919
320 */
125 321
126 /* fall back to EI_PAX if no PT_PAX was found */ 322 /* fall back to EI_PAX if no PT_PAX was found */
127 if (!*ret) { 323 if (!*ret) {
128 static char *paxflags; 324 static char *paxflags;
129 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 325 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
163 uint32_t flags, check_flags; \ 359 uint32_t flags, check_flags; \
164 if (elf->phdr != NULL) { \ 360 if (elf->phdr != NULL) { \
165 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 361 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
166 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \ 362 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
167 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 363 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
364 if (multi_stack++) \
168 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 365 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
366 if (file_matches_list(elf->filename, qa_execstack)) \
367 continue; \
169 found = found_phdr; \ 368 found = found_phdr; \
170 offset = 0; \ 369 offset = 0; \
171 check_flags = PF_X; \ 370 check_flags = PF_X; \
172 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 371 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
372 if (multi_relro++) \
173 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 373 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
174 found = found_relro; \ 374 found = found_relro; \
175 offset = 4; \ 375 offset = 4; \
176 check_flags = PF_X; \ 376 check_flags = PF_X; \
177 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 377 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
178 if (ehdr->e_type == ET_DYN || ehdr->e_type == ET_EXEC) \ 378 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
379 if (multi_load++ > max_pt_load) \
179 if (multi_load++ > max_pt_load) warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \ 380 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
381 if (file_matches_list(elf->filename, qa_wx_load)) \
382 continue; \
180 found = found_load; \ 383 found = found_load; \
181 offset = 8; \ 384 offset = 8; \
182 check_flags = PF_W|PF_X; \ 385 check_flags = PF_W|PF_X; \
183 } else \ 386 } else \
184 continue; \ 387 continue; \
185 flags = EGET(phdr[i].p_flags); \ 388 flags = EGET(phdr[i].p_flags); \
186 if (be_quiet && ((flags & check_flags) != check_flags)) \ 389 if (be_quiet && ((flags & check_flags) != check_flags)) \
187 continue; \ 390 continue; \
188 if (fix_elf && ((flags & PF_X) != flags)) { \ 391 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
189 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \ 392 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
190 ret[3] = ret[7] = '!'; \ 393 ret[3] = ret[7] = '!'; \
191 flags = EGET(phdr[i].p_flags); \ 394 flags = EGET(phdr[i].p_flags); \
192 } \ 395 } \
193 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \ 396 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
197 } else if (elf->shdr != NULL) { \ 400 } else if (elf->shdr != NULL) { \
198 /* no program headers which means this is prob an object file */ \ 401 /* no program headers which means this is prob an object file */ \
199 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 402 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
200 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 403 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
201 char *str; \ 404 char *str; \
202 if ((void*)strtbl > (void*)elf->data_end) \ 405 if ((void*)strtbl > elf->data_end) \
203 goto skip_this_shdr##B; \ 406 goto skip_this_shdr##B; \
204 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 407 check_flags = SHF_WRITE|SHF_EXECINSTR; \
205 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 408 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
206 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 409 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
207 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 410 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
221 break; \ 424 break; \
222 } \ 425 } \
223 } \ 426 } \
224 skip_this_shdr##B: \ 427 skip_this_shdr##B: \
225 if (!multi_stack) { \ 428 if (!multi_stack) { \
429 if (file_matches_list(elf->filename, qa_execstack)) \
430 return NULL; \
226 *found_phdr = 1; \ 431 *found_phdr = 1; \
227 shown = 1; \ 432 shown = 1; \
228 memcpy(ret, "!WX", 3); \ 433 memcpy(ret, "!WX", 3); \
229 } \ 434 } \
230 } \ 435 } \
235 if (be_wewy_wewy_quiet || (be_quiet && !shown)) 440 if (be_wewy_wewy_quiet || (be_quiet && !shown))
236 return NULL; 441 return NULL;
237 else 442 else
238 return ret; 443 return ret;
239} 444}
445
446/*
447 * See if this ELF contains a DT_TEXTREL tag in any of its
448 * PT_DYNAMIC sections.
449 */
240static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 450static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
241{ 451{
242 static const char *ret = "TEXTREL"; 452 static const char *ret = "TEXTREL";
243 unsigned long i; 453 unsigned long i;
244 454
245 if (!show_textrel && !show_textrels) return NULL; 455 if (!show_textrel && !show_textrels) return NULL;
456
457 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
246 458
247 if (elf->phdr) { 459 if (elf->phdr) {
248#define SHOW_TEXTREL(B) \ 460#define SHOW_TEXTREL(B) \
249 if (elf->elf_class == ELFCLASS ## B) { \ 461 if (elf->elf_class == ELFCLASS ## B) { \
250 Elf ## B ## _Dyn *dyn; \ 462 Elf ## B ## _Dyn *dyn; \
251 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 463 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
252 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 464 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
253 Elf ## B ## _Off offset; \ 465 Elf ## B ## _Off offset; \
254 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 466 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
255 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 467 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
256 offset = EGET(phdr[i].p_offset); \ 468 offset = EGET(phdr[i].p_offset); \
257 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 469 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
258 dyn = DYN ## B (elf->data + offset); \ 470 dyn = DYN ## B (elf->vdata + offset); \
259 while (EGET(dyn->d_tag) != DT_NULL) { \ 471 while (EGET(dyn->d_tag) != DT_NULL) { \
260 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 472 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
261 *found_textrel = 1; \ 473 *found_textrel = 1; \
262 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 474 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
263 return (be_wewy_wewy_quiet ? NULL : ret); \ 475 return (be_wewy_wewy_quiet ? NULL : ret); \
272 if (be_quiet || be_wewy_wewy_quiet) 484 if (be_quiet || be_wewy_wewy_quiet)
273 return NULL; 485 return NULL;
274 else 486 else
275 return " - "; 487 return " - ";
276} 488}
489
490/*
491 * Scan the .text section to see if there are any relocations in it.
492 * Should rewrite this to check PT_LOAD sections that are marked
493 * Executable rather than the section named '.text'.
494 */
277static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 495static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
278{ 496{
279 unsigned long s, r, rmax; 497 unsigned long s, r, rmax;
280 void *symtab_void, *strtab_void, *text_void; 498 void *symtab_void, *strtab_void, *text_void;
281 499
302 Elf ## B ## _Rela *rela; \ 520 Elf ## B ## _Rela *rela; \
303 /* search the section headers for relocations */ \ 521 /* search the section headers for relocations */ \
304 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 522 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
305 uint32_t sh_type = EGET(shdr[s].sh_type); \ 523 uint32_t sh_type = EGET(shdr[s].sh_type); \
306 if (sh_type == SHT_REL) { \ 524 if (sh_type == SHT_REL) { \
307 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 525 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
308 rela = NULL; \ 526 rela = NULL; \
309 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 527 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
310 } else if (sh_type == SHT_RELA) { \ 528 } else if (sh_type == SHT_RELA) { \
311 rel = NULL; \ 529 rel = NULL; \
312 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 530 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
313 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 531 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
314 } else \ 532 } else \
315 continue; \ 533 continue; \
316 /* now see if any of the relocs are in the .text */ \ 534 /* now see if any of the relocs are in the .text */ \
317 for (r = 0; r < rmax; ++r) { \ 535 for (r = 0; r < rmax; ++r) { \
332 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \ 550 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
333 if (be_verbose <= 2) continue; \ 551 if (be_verbose <= 2) continue; \
334 } else \ 552 } else \
335 *found_textrels = 1; \ 553 *found_textrels = 1; \
336 /* locate this relocation symbol name */ \ 554 /* locate this relocation symbol name */ \
337 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 555 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
338 if ((void*)sym > (void*)elf->data_end) { \ 556 if ((void*)sym > elf->data_end) { \
339 warn("%s: corrupt ELF symbol", elf->filename); \ 557 warn("%s: corrupt ELF symbol", elf->filename); \
340 continue; \ 558 continue; \
341 } \ 559 } \
342 sym_max = ELF ## B ## _R_SYM(r_info); \ 560 sym_max = ELF ## B ## _R_SYM(r_info); \
343 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 561 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
346 sym = NULL; \ 564 sym = NULL; \
347 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 565 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
348 /* show the raw details about this reloc */ \ 566 /* show the raw details about this reloc */ \
349 printf(" %s: ", elf->base_filename); \ 567 printf(" %s: ", elf->base_filename); \
350 if (sym && sym->st_name) \ 568 if (sym && sym->st_name) \
351 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 569 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
352 else \ 570 else \
353 printf("(memory/fake?)"); \ 571 printf("(memory/data?)"); \
354 printf(" [0x%lX]", (unsigned long)r_offset); \ 572 printf(" [0x%lX]", (unsigned long)r_offset); \
355 /* now try to find the closest symbol that this rel is probably in */ \ 573 /* now try to find the closest symbol that this rel is probably in */ \
356 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 574 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
357 func = NULL; \ 575 func = NULL; \
358 offset_tmp = 0; \ 576 offset_tmp = 0; \
359 while (sym_max--) { \ 577 while (sym_max--) { \
360 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \ 578 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
361 func = sym; \ 579 func = sym; \
362 offset_tmp = EGET(sym->st_value); \ 580 offset_tmp = EGET(sym->st_value); \
363 } \ 581 } \
364 ++sym; \ 582 ++sym; \
365 } \ 583 } \
366 printf(" in "); \ 584 printf(" in "); \
367 if (func && func->st_name) \ 585 if (func && func->st_name) { \
368 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 586 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
587 if (r_offset > EGET(func->st_size)) \
588 printf("(optimized out: previous %s)", func_name); \
369 else \ 589 else \
370 printf("(NULL: fake?)"); \ 590 printf("%s", func_name); \
591 } else \
592 printf("(optimized out)"); \
371 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 593 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
594 if (be_verbose && has_objdump) { \
595 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
596 char *sysbuf; \
597 size_t syslen; \
598 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
599 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
600 sysbuf = xmalloc(syslen); \
601 if (end_addr < r_offset) \
602 /* not uncommon when things are optimized out */ \
603 end_addr = r_offset + 0x100; \
604 snprintf(sysbuf, syslen, sysfmt, \
605 (unsigned long)offset_tmp, \
606 (unsigned long)end_addr, \
607 elf->filename, \
608 (unsigned long)r_offset); \
609 fflush(stdout); \
610 if (system(sysbuf)) /* don't care */; \
611 fflush(stdout); \
612 free(sysbuf); \
613 } \
372 } \ 614 } \
373 } } 615 } }
374 SHOW_TEXTRELS(32) 616 SHOW_TEXTRELS(32)
375 SHOW_TEXTRELS(64) 617 SHOW_TEXTRELS(64)
376 } 618 }
378 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 620 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
379 621
380 return NULL; 622 return NULL;
381} 623}
382 624
383static void rpath_security_checks(elfobj *, char *, const char *);
384static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type) 625static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
385{ 626{
386 struct stat st; 627 struct stat st;
387 switch (*item) { 628 switch (*item) {
388 case '/': break; 629 case '/': break;
394 warnf("Security problem NULL %s in %s", dt_type, elf->filename); 635 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
395 break; 636 break;
396 case '$': 637 case '$':
397 if (fstat(elf->fd, &st) != -1) 638 if (fstat(elf->fd, &st) != -1)
398 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 639 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
399 warnf("Security problem with %s='%s' in %s with mode set of %o", 640 warnf("Security problem with %s='%s' in %s with mode set of %o",
400 dt_type, item, elf->filename, st.st_mode & 07777); 641 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
401 break; 642 break;
402 default: 643 default:
403 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename); 644 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
404 break; 645 break;
405 } 646 }
406} 647}
407static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 648static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
408{ 649{
409 unsigned long i, s; 650 unsigned long i;
410 char *rpath, *runpath, **r; 651 char *rpath, *runpath, **r;
411 void *strtbl_void; 652 void *strtbl_void;
412 653
413 if (!show_rpath) return; 654 if (!show_rpath) return;
414 655
425 Elf ## B ## _Off offset; \ 666 Elf ## B ## _Off offset; \
426 Elf ## B ## _Xword word; \ 667 Elf ## B ## _Xword word; \
427 /* Scan all the program headers */ \ 668 /* Scan all the program headers */ \
428 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 669 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
429 /* Just scan dynamic headers */ \ 670 /* Just scan dynamic headers */ \
430 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 671 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
431 offset = EGET(phdr[i].p_offset); \ 672 offset = EGET(phdr[i].p_offset); \
432 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 673 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
433 /* Just scan dynamic RPATH/RUNPATH headers */ \ 674 /* Just scan dynamic RPATH/RUNPATH headers */ \
434 dyn = DYN ## B (elf->data + offset); \ 675 dyn = DYN ## B (elf->vdata + offset); \
435 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 676 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
436 if (word == DT_RPATH) { \ 677 if (word == DT_RPATH) { \
437 r = &rpath; \ 678 r = &rpath; \
438 } else if (word == DT_RUNPATH) { \ 679 } else if (word == DT_RUNPATH) { \
439 r = &runpath; \ 680 r = &runpath; \
443 } \ 684 } \
444 /* Verify the memory is somewhat sane */ \ 685 /* Verify the memory is somewhat sane */ \
445 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 686 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
446 if (offset < (Elf ## B ## _Off)elf->len) { \ 687 if (offset < (Elf ## B ## _Off)elf->len) { \
447 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 688 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
448 *r = (char*)(elf->data + offset); \ 689 *r = elf->data + offset; \
449 /* cache the length in case we need to nuke this section later on */ \ 690 /* cache the length in case we need to nuke this section later on */ \
450 if (fix_elf) \ 691 if (fix_elf) \
451 offset = strlen(*r); \ 692 offset = strlen(*r); \
452 /* If quiet, don't output paths in ld.so.conf */ \ 693 /* If quiet, don't output paths in ld.so.conf */ \
453 if (be_quiet) { \ 694 if (be_quiet) { \
459 /* scan each path in : delimited list */ \ 700 /* scan each path in : delimited list */ \
460 while (start) { \ 701 while (start) { \
461 rpath_security_checks(elf, start, get_elfdtype(word)); \ 702 rpath_security_checks(elf, start, get_elfdtype(word)); \
462 end = strchr(start, ':'); \ 703 end = strchr(start, ':'); \
463 len = (end ? abs(end - start) : strlen(start)); \ 704 len = (end ? abs(end - start) : strlen(start)); \
464 if (use_ldcache) \ 705 if (use_ldcache) { \
465 for (s = 0; ldpaths[s]; ++s) \ 706 size_t n; \
707 const char *ldpath; \
708 array_for_each(ldpaths, n, ldpath) \
466 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 709 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
467 *r = end; \ 710 *r = end; \
468 /* corner case ... if RPATH reads "/usr/lib:", we want \ 711 /* corner case ... if RPATH reads "/usr/lib:", we want \
469 * to show ':' rather than '' */ \ 712 * to show ':' rather than '' */ \
470 if (end && end[1] != '\0') \ 713 if (end && end[1] != '\0') \
471 (*r)++; \ 714 (*r)++; \
472 break; \ 715 break; \
473 } \ 716 } \
717 } \
474 if (!*r || !end) \ 718 if (!*r || !end) \
475 break; \ 719 break; \
476 else \ 720 else \
477 start = start + len + 1; \ 721 start = start + len + 1; \
478 } \ 722 } \
563#define FLAG_S390_LIB64 0x0400 807#define FLAG_S390_LIB64 0x0400
564#define FLAG_POWERPC_LIB64 0x0500 808#define FLAG_POWERPC_LIB64 0x0500
565#define FLAG_MIPS64_LIBN32 0x0600 809#define FLAG_MIPS64_LIBN32 0x0600
566#define FLAG_MIPS64_LIBN64 0x0700 810#define FLAG_MIPS64_LIBN64 0x0700
567 811
568static char *lookup_cache_lib(elfobj *, char *); 812#if defined(__GLIBC__) || defined(__UCLIBC__)
813
569static char *lookup_cache_lib(elfobj *elf, char *fname) 814static char *lookup_cache_lib(elfobj *elf, const char *fname)
570{ 815{
571 int fd = 0; 816 int fd;
572 char *strs; 817 char *strs;
573 static char buf[__PAX_UTILS_PATH_MAX] = ""; 818 static char buf[__PAX_UTILS_PATH_MAX] = "";
574 const char *cachefile = "/etc/ld.so.cache"; 819 const char *cachefile = root_rel_path("/etc/ld.so.cache");
575 struct stat st; 820 struct stat st;
576 821
577 typedef struct { 822 typedef struct {
578 char magic[LDSO_CACHE_MAGIC_LEN]; 823 char magic[LDSO_CACHE_MAGIC_LEN];
579 char version[LDSO_CACHE_VER_LEN]; 824 char version[LDSO_CACHE_VER_LEN];
589 libentry_t *libent; 834 libentry_t *libent;
590 835
591 if (fname == NULL) 836 if (fname == NULL)
592 return NULL; 837 return NULL;
593 838
594 if (ldcache == 0) { 839 if (ldcache == NULL) {
595 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1) 840 if (fstatat(root_fd, cachefile, &st, 0))
841 return NULL;
842
843 fd = openat(root_fd, cachefile, O_RDONLY);
844 if (fd == -1)
596 return NULL; 845 return NULL;
597 846
598 /* cache these values so we only map/unmap the cache file once */ 847 /* cache these values so we only map/unmap the cache file once */
599 ldcache_size = st.st_size; 848 ldcache_size = st.st_size;
600 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0); 849 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
601
602 close(fd); 850 close(fd);
603 851
604 if (ldcache == (caddr_t)-1) { 852 if (ldcache == MAP_FAILED) {
605 ldcache = 0; 853 ldcache = NULL;
606 return NULL; 854 return NULL;
607 } 855 }
608 856
609 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 857 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
858 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
859 {
860 munmap(ldcache, ldcache_size);
861 ldcache = NULL;
610 return NULL; 862 return NULL;
611 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
612 return NULL;
613 } 863 }
864 } else
865 header = ldcache;
614 866
615 header = (header_t *) ldcache;
616 libent = (libentry_t *) (ldcache + sizeof(header_t)); 867 libent = ldcache + sizeof(header_t);
617 strs = (char *) &libent[header->nlibs]; 868 strs = (char *) &libent[header->nlibs];
618 869
619 for (fd = 0; fd < header->nlibs; fd++) { 870 for (fd = 0; fd < header->nlibs; ++fd) {
620 /* this should be more fine grained, but for now we assume that 871 /* This should be more fine grained, but for now we assume that
621 * diff arches will not be cached together. and we ignore the 872 * diff arches will not be cached together, and we ignore the
622 * the different multilib mips cases. */ 873 * the different multilib mips cases.
874 */
623 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK)) 875 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
624 continue; 876 continue;
625 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK)) 877 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
626 continue; 878 continue;
627 879
628 if (strcmp(fname, strs + libent[fd].sooffset) != 0) 880 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
629 continue; 881 continue;
882
883 /* Return first hit because that is how the ldso rolls */
630 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 884 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
885 break;
631 } 886 }
887
632 return buf; 888 return buf;
633} 889}
634 890
891#elif defined(__NetBSD__)
892static char *lookup_cache_lib(elfobj *elf, const char *fname)
893{
894 static char buf[__PAX_UTILS_PATH_MAX] = "";
895 static struct stat st;
896 size_t n;
897 char *ldpath;
898
899 array_for_each(ldpath, n, ldpath) {
900 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
901 continue; /* if the pathname is too long, or something went wrong, ignore */
902
903 if (stat(buf, &st) != 0)
904 continue; /* if the lib doesn't exist in *ldpath, look further */
905
906 /* NetBSD doesn't actually do sanity checks, it just loads the file
907 * and if that doesn't work, continues looking in other directories.
908 * This cannot easily be safely emulated, unfortunately. For now,
909 * just assume that if it exists, it's a valid library. */
910
911 return buf;
912 }
913
914 /* not found in any path */
915 return NULL;
916}
917#else
918#ifdef __ELF__
919#warning Cache support not implemented for your target
920#endif
921static char *lookup_cache_lib(elfobj *elf, const char *fname)
922{
923 return NULL;
924}
925#endif
926
927static char *lookup_config_lib(elfobj *elf, char *fname)
928{
929 static char buf[__PAX_UTILS_PATH_MAX] = "";
930 const char *ldpath;
931 size_t n;
932
933 array_for_each(ldpaths, n, ldpath) {
934 snprintf(buf, sizeof(buf), "%s/%s", root_rel_path(ldpath), fname);
935 if (faccessat(root_fd, buf, F_OK, AT_SYMLINK_NOFOLLOW) == 0)
936 return buf;
937 }
938
939 return NULL;
940}
635 941
636static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 942static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
637{ 943{
638 unsigned long i; 944 unsigned long i;
639 char *needed; 945 char *needed;
640 void *strtbl_void; 946 void *strtbl_void;
641 char *p; 947 char *p;
642 948
949 /*
950 * -n -> op==0 -> print all
951 * -N -> op==1 -> print requested
952 */
643 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 953 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
954 return NULL;
644 955
645 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 956 strtbl_void = elf_findsecbyname(elf, ".dynstr");
646 957
647 if (elf->phdr && strtbl_void) { 958 if (elf->phdr && strtbl_void) {
648#define SHOW_NEEDED(B) \ 959#define SHOW_NEEDED(B) \
650 Elf ## B ## _Dyn *dyn; \ 961 Elf ## B ## _Dyn *dyn; \
651 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 962 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
652 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 963 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
653 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 964 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
654 Elf ## B ## _Off offset; \ 965 Elf ## B ## _Off offset; \
966 size_t matched = 0; \
967 /* Walk all the program headers to find the PT_DYNAMIC */ \
655 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 968 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
656 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 969 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
970 continue; \
657 offset = EGET(phdr[i].p_offset); \ 971 offset = EGET(phdr[i].p_offset); \
658 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 972 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
973 continue; \
974 /* Walk all the dynamic tags to find NEEDED entries */ \
659 dyn = DYN ## B (elf->data + offset); \ 975 dyn = DYN ## B (elf->vdata + offset); \
660 while (EGET(dyn->d_tag) != DT_NULL) { \ 976 while (EGET(dyn->d_tag) != DT_NULL) { \
661 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 977 if (EGET(dyn->d_tag) == DT_NEEDED) { \
662 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 978 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
663 if (offset >= (Elf ## B ## _Off)elf->len) { \ 979 if (offset >= (Elf ## B ## _Off)elf->len) { \
664 ++dyn; \ 980 ++dyn; \
665 continue; \ 981 continue; \
666 } \ 982 } \
667 needed = (char*)(elf->data + offset); \ 983 needed = elf->data + offset; \
668 if (op == 0) { \ 984 if (op == 0) { \
985 /* -n -> print all entries */ \
669 if (!be_wewy_wewy_quiet) { \ 986 if (!be_wewy_wewy_quiet) { \
670 if (*found_needed) xchrcat(ret, ',', ret_len); \ 987 if (*found_needed) xchrcat(ret, ',', ret_len); \
671 if (use_ldcache) \ 988 if (use_ldpath) { \
989 if ((p = lookup_config_lib(elf, needed)) != NULL) \
990 needed = p; \
991 } else if (use_ldcache) { \
672 if ((p = lookup_cache_lib(elf, needed)) != NULL) \ 992 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
673 needed = p; \ 993 needed = p; \
994 } \
674 xstrcat(ret, needed, ret_len); \ 995 xstrcat(ret, needed, ret_len); \
675 } \ 996 } \
676 *found_needed = 1; \ 997 *found_needed = 1; \
677 } else { \ 998 } else { \
678 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 999 /* -N -> print matching entries */ \
1000 size_t n; \
1001 const char *find_lib_name; \
1002 \
1003 array_for_each(find_lib_arr, n, find_lib_name) { \
1004 int invert = 1; \
1005 if (find_lib_name[0] == '!') \
1006 invert = 0, ++find_lib_name; \
1007 if (!strcmp(find_lib_name, needed) == invert) \
1008 ++matched; \
1009 } \
1010 \
1011 if (matched == array_cnt(find_lib_arr)) { \
679 *found_lib = 1; \ 1012 *found_lib = 1; \
680 return (be_wewy_wewy_quiet ? NULL : needed); \ 1013 return (be_wewy_wewy_quiet ? NULL : find_lib); \
681 } \ 1014 } \
682 } \ 1015 } \
683 } \ 1016 } \
684 ++dyn; \ 1017 ++dyn; \
685 } \ 1018 } \
714} 1047}
715static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1048static char *scanelf_file_bind(elfobj *elf, char *found_bind)
716{ 1049{
717 unsigned long i; 1050 unsigned long i;
718 struct stat s; 1051 struct stat s;
1052 char dynamic = 0;
719 1053
720 if (!show_bind) return NULL; 1054 if (!show_bind) return NULL;
721 if (!elf->phdr) return NULL; 1055 if (!elf->phdr) return NULL;
722 1056
723#define SHOW_BIND(B) \ 1057#define SHOW_BIND(B) \
725 Elf ## B ## _Dyn *dyn; \ 1059 Elf ## B ## _Dyn *dyn; \
726 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1060 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
727 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1061 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
728 Elf ## B ## _Off offset; \ 1062 Elf ## B ## _Off offset; \
729 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1063 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
730 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1064 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
1065 dynamic = 1; \
731 offset = EGET(phdr[i].p_offset); \ 1066 offset = EGET(phdr[i].p_offset); \
732 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1067 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
733 dyn = DYN ## B (elf->data + offset); \ 1068 dyn = DYN ## B (elf->vdata + offset); \
734 while (EGET(dyn->d_tag) != DT_NULL) { \ 1069 while (EGET(dyn->d_tag) != DT_NULL) { \
735 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1070 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
736 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 1071 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
737 { \ 1072 { \
738 if (be_quiet) return NULL; \ 1073 if (be_quiet) return NULL; \
746 SHOW_BIND(32) 1081 SHOW_BIND(32)
747 SHOW_BIND(64) 1082 SHOW_BIND(64)
748 1083
749 if (be_wewy_wewy_quiet) return NULL; 1084 if (be_wewy_wewy_quiet) return NULL;
750 1085
1086 /* don't output anything if quiet mode and the ELF is static or not setuid */
751 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 1087 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
752 return NULL; 1088 return NULL;
753 } else { 1089 } else {
754 *found_bind = 1; 1090 *found_bind = 1;
755 return (char *) "LAZY"; 1091 return (char *)(dynamic ? "LAZY" : "STATIC");
756 } 1092 }
757} 1093}
758static char *scanelf_file_soname(elfobj *elf, char *found_soname) 1094static char *scanelf_file_soname(elfobj *elf, char *found_soname)
759{ 1095{
760 unsigned long i; 1096 unsigned long i;
772 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1108 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
773 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1109 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
774 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1110 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
775 Elf ## B ## _Off offset; \ 1111 Elf ## B ## _Off offset; \
776 /* only look for soname in shared objects */ \ 1112 /* only look for soname in shared objects */ \
777 if (ehdr->e_type != ET_DYN) \ 1113 if (EGET(ehdr->e_type) != ET_DYN) \
778 return NULL; \ 1114 return NULL; \
779 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1115 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
780 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1116 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
781 offset = EGET(phdr[i].p_offset); \ 1117 offset = EGET(phdr[i].p_offset); \
782 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1118 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
783 dyn = DYN ## B (elf->data + offset); \ 1119 dyn = DYN ## B (elf->vdata + offset); \
784 while (EGET(dyn->d_tag) != DT_NULL) { \ 1120 while (EGET(dyn->d_tag) != DT_NULL) { \
785 if (EGET(dyn->d_tag) == DT_SONAME) { \ 1121 if (EGET(dyn->d_tag) == DT_SONAME) { \
786 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1122 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
787 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1123 if (offset >= (Elf ## B ## _Off)elf->len) { \
788 ++dyn; \ 1124 ++dyn; \
789 continue; \ 1125 continue; \
790 } \ 1126 } \
791 soname = (char*)(elf->data + offset); \ 1127 soname = elf->data + offset; \
792 *found_soname = 1; \ 1128 *found_soname = 1; \
793 return (be_wewy_wewy_quiet ? NULL : soname); \ 1129 return (be_wewy_wewy_quiet ? NULL : soname); \
794 } \ 1130 } \
795 ++dyn; \ 1131 ++dyn; \
796 } \ 1132 } \
799 SHOW_SONAME(64) 1135 SHOW_SONAME(64)
800 } 1136 }
801 1137
802 return NULL; 1138 return NULL;
803} 1139}
1140
1141/*
1142 * We support the symbol form:
1143 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
1144 * If the symbol name is empty, then all symbols are matched.
1145 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1146 * Do not rely on this output format at all.
1147 * Otherwise the symbol name is used to search (either regex or string compare).
1148 * If the first char of the symbol name is a plus ("+"), then only match
1149 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1150 * Putting modifiers in between the percent signs allows for more in depth
1151 * filters. There are groups of modifiers. If you don't specify a member
1152 * of a group, then all types in that group are matched. The current
1153 * groups and their types are:
1154 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1155 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1156 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1157 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1158 * You can search for multiple symbols at once by seperating with a comma (",").
1159 *
1160 * Some examples:
1161 * ELFs with a weak function "foo":
1162 * scanelf -s %wf%foo <ELFs>
1163 * ELFs that define the symbol "main":
1164 * scanelf -s +main <ELFs>
1165 * scanelf -s %d%main <ELFs>
1166 * ELFs that refer to the undefined symbol "brk":
1167 * scanelf -s -brk <ELFs>
1168 * scanelf -s %u%brk <ELFs>
1169 * All global defined objects in an ELF:
1170 * scanelf -s %ogd% <ELF>
1171 */
1172static void
1173scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1174 unsigned int stt, unsigned int stb, unsigned int shn, unsigned long size)
1175{
1176 char *this_sym, *next_sym, saved = saved;
1177
1178 /* allow the user to specify a comma delimited list of symbols to search for */
1179 next_sym = NULL;
1180 do {
1181 bool inc_notype, inc_object, inc_func, inc_file,
1182 inc_local, inc_global, inc_weak,
1183 inc_def, inc_undef, inc_abs, inc_common;
1184
1185 if (next_sym) {
1186 next_sym[-1] = saved;
1187 this_sym = next_sym;
1188 } else
1189 this_sym = find_sym;
1190 if ((next_sym = strchr(this_sym, ','))) {
1191 /* make parsing easier by killing the comma temporarily */
1192 saved = *next_sym;
1193 *next_sym = '\0';
1194 next_sym += 1;
1195 }
1196
1197 /* symbol selection! */
1198 inc_notype = inc_object = inc_func = inc_file = \
1199 inc_local = inc_global = inc_weak = \
1200 inc_def = inc_undef = inc_abs = inc_common = \
1201 (*this_sym != '%');
1202
1203 /* parse the contents of %...% */
1204 if (!inc_notype) {
1205 while (*(this_sym++)) {
1206 if (*this_sym == '%') {
1207 ++this_sym;
1208 break;
1209 }
1210 switch (*this_sym) {
1211 case 'n': inc_notype = true; break;
1212 case 'o': inc_object = true; break;
1213 case 'f': inc_func = true; break;
1214 case 'F': inc_file = true; break;
1215 case 'l': inc_local = true; break;
1216 case 'g': inc_global = true; break;
1217 case 'w': inc_weak = true; break;
1218 case 'd': inc_def = true; break;
1219 case 'u': inc_undef = true; break;
1220 case 'a': inc_abs = true; break;
1221 case 'c': inc_common = true; break;
1222 default: err("invalid symbol selector '%c'", *this_sym);
1223 }
1224 }
1225
1226 /* If no types are matched, not match all */
1227 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1228 inc_notype = inc_object = inc_func = inc_file = true;
1229 if (!inc_local && !inc_global && !inc_weak)
1230 inc_local = inc_global = inc_weak = true;
1231 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1232 inc_def = inc_undef = inc_abs = inc_common = true;
1233
1234 /* backwards compat for defined/undefined short hand */
1235 } else if (*this_sym == '+') {
1236 inc_undef = false;
1237 ++this_sym;
1238 } else if (*this_sym == '-') {
1239 inc_def = inc_abs = inc_common = false;
1240 ++this_sym;
1241 }
1242
1243 /* filter symbols */
1244 if ((!inc_notype && stt == STT_NOTYPE) || \
1245 (!inc_object && stt == STT_OBJECT) || \
1246 (!inc_func && stt == STT_FUNC ) || \
1247 (!inc_file && stt == STT_FILE ) || \
1248 (!inc_local && stb == STB_LOCAL ) || \
1249 (!inc_global && stb == STB_GLOBAL) || \
1250 (!inc_weak && stb == STB_WEAK ) || \
1251 (!inc_def && shn && shn < SHN_LORESERVE) || \
1252 (!inc_undef && shn == SHN_UNDEF ) || \
1253 (!inc_abs && shn == SHN_ABS ) || \
1254 (!inc_common && shn == SHN_COMMON))
1255 continue;
1256
1257 if (*this_sym == '*') {
1258 /* a "*" symbol gets you debug output */
1259 printf("%s(%s) %5lX %15s %15s %15s %s\n",
1260 ((*found_sym == 0) ? "\n\t" : "\t"),
1261 elf->base_filename,
1262 size,
1263 get_elfstttype(stt),
1264 get_elfstbtype(stb),
1265 get_elfshntype(shn),
1266 symname);
1267 goto matched;
1268
1269 } else {
1270 if (g_match) {
1271 /* regex match the symbol */
1272 int flags = REG_EXTENDED | REG_NOSUB;
1273 if (g_match > 1)
1274 flags |= REG_ICASE;
1275 if (rematch(this_sym, symname, flags) != 0)
1276 continue;
1277
1278 } else if (*this_sym) {
1279 /* give empty symbols a "pass", else do a normal compare */
1280 const size_t len = strlen(this_sym);
1281 if (!(strncmp(this_sym, symname, len) == 0 &&
1282 /* Accept unversioned symbol names */
1283 (symname[len] == '\0' || symname[len] == '@')))
1284 continue;
1285 }
1286
1287 if (be_semi_verbose) {
1288 char buf[1024];
1289 snprintf(buf, sizeof(buf), "%lX %s %s",
1290 size,
1291 get_elfstttype(stt),
1292 this_sym);
1293 *ret = xstrdup(buf);
1294 } else {
1295 if (*ret) xchrcat(ret, ',', ret_len);
1296 xstrcat(ret, symname, ret_len);
1297 }
1298
1299 goto matched;
1300 }
1301 } while (next_sym);
1302
1303 return;
1304
1305 matched:
1306 *found_sym = 1;
1307 if (next_sym)
1308 next_sym[-1] = saved;
1309}
1310
804static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1311static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
805{ 1312{
806 unsigned long i;
807 char *ret; 1313 char *ret;
808 void *symtab_void, *strtab_void; 1314 void *symtab_void, *strtab_void;
809 1315
810 if (!find_sym) return NULL; 1316 if (!find_sym) return NULL;
811 ret = find_sym; 1317 ret = NULL;
812 1318
813 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1319 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
814 1320
815 if (symtab_void && strtab_void) { 1321 if (symtab_void && strtab_void) {
816#define FIND_SYM(B) \ 1322#define FIND_SYM(B) \
817 if (elf->elf_class == ELFCLASS ## B) { \ 1323 if (elf->elf_class == ELFCLASS ## B) { \
818 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1324 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
819 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1325 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
820 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1326 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
821 unsigned long cnt = EGET(symtab->sh_entsize); \ 1327 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
822 char *symname; \ 1328 char *symname; \
1329 size_t ret_len = 0; \
823 if (cnt) \ 1330 if (cnt) \
824 cnt = EGET(symtab->sh_size) / cnt; \ 1331 cnt = EGET(symtab->sh_size) / cnt; \
825 for (i = 0; i < cnt; ++i) { \ 1332 for (i = 0; i < cnt; ++i) { \
1333 if ((void*)sym > elf->data_end) { \
1334 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1335 goto break_out; \
1336 } \
826 if (sym->st_name) { \ 1337 if (sym->st_name) { \
1338 /* make sure the symbol name is in acceptable memory range */ \
827 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1339 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
828 if ((void*)symname > (void*)elf->data_end) { \ 1340 if ((void*)symname > elf->data_end) { \
829 warnf("%s: corrupt ELF symbols", elf->filename); \ 1341 warnf("%s: corrupt ELF symbols", elf->filename); \
1342 ++sym; \
830 continue; \ 1343 continue; \
831 } \ 1344 } \
832 if (*find_sym == '*') { \ 1345 scanelf_match_symname(elf, found_sym, \
833 printf("%s(%s) %5lX %15s %s\n", \ 1346 &ret, &ret_len, symname, \
834 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1347 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
835 elf->base_filename, \ 1348 ELF##B##_ST_BIND(EGET(sym->st_info)), \
836 (unsigned long)sym->st_size, \ 1349 EGET(sym->st_shndx), \
837 get_elfstttype(sym->st_info), \ 1350 /* st_size can be 64bit, but no one is really that big, so screw em */ \
838 symname); \ 1351 EGET(sym->st_size)); \
839 *found_sym = 1; \
840 } else { \
841 char *this_sym, *next_sym; \
842 this_sym = find_sym; \
843 do { \
844 next_sym = strchr(this_sym, ','); \
845 if (next_sym == NULL) \
846 next_sym = this_sym + strlen(this_sym); \
847 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \
848 (strcmp(symname, versioned_symname) == 0)) { \
849 ret = this_sym; \
850 (*found_sym)++; \
851 goto break_out; \
852 } \
853 this_sym = next_sym + 1; \
854 } while (*next_sym != '\0'); \
855 } \
856 } \ 1352 } \
857 ++sym; \ 1353 ++sym; \
858 } } 1354 } \
1355 }
859 FIND_SYM(32) 1356 FIND_SYM(32)
860 FIND_SYM(64) 1357 FIND_SYM(64)
861 } 1358 }
862 1359
863break_out: 1360break_out:
866 if (*find_sym != '*' && *found_sym) 1363 if (*find_sym != '*' && *found_sym)
867 return ret; 1364 return ret;
868 if (be_quiet) 1365 if (be_quiet)
869 return NULL; 1366 return NULL;
870 else 1367 else
871 return (char *)" - "; 1368 return " - ";
872} 1369}
873 1370
1371static const char *scanelf_file_sections(elfobj *elf, char *found_section)
1372{
1373 if (!find_section)
1374 return NULL;
1375
1376#define FIND_SECTION(B) \
1377 if (elf->elf_class == ELFCLASS ## B) { \
1378 size_t matched, n; \
1379 int invert; \
1380 const char *section_name; \
1381 Elf ## B ## _Shdr *section; \
1382 \
1383 matched = 0; \
1384 array_for_each(find_section_arr, n, section_name) { \
1385 invert = (*section_name == '!' ? 1 : 0); \
1386 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
1387 if ((section == NULL && invert) || (section != NULL && !invert)) \
1388 ++matched; \
1389 } \
1390 \
1391 if (matched == array_cnt(find_section_arr)) \
1392 *found_section = 1; \
1393 }
1394 FIND_SECTION(32)
1395 FIND_SECTION(64)
1396
1397 if (be_wewy_wewy_quiet)
1398 return NULL;
1399
1400 if (*found_section)
1401 return find_section;
1402
1403 if (be_quiet)
1404 return NULL;
1405 else
1406 return " - ";
1407}
874 1408
875/* scan an elf file and show all the fun stuff */ 1409/* scan an elf file and show all the fun stuff */
876#define prints(str) write(fileno(stdout), str, strlen(str)) 1410#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
877static int scanelf_elfobj(elfobj *elf) 1411static int scanelf_elfobj(elfobj *elf)
878{ 1412{
879 unsigned long i; 1413 unsigned long i;
880 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1414 char found_pax, found_phdr, found_relro, found_load, found_textrel,
881 found_rpath, found_needed, found_interp, found_bind, found_soname, 1415 found_rpath, found_needed, found_interp, found_bind, found_soname,
882 found_sym, found_lib, found_file, found_textrels; 1416 found_sym, found_lib, found_file, found_textrels, found_section;
883 static char *out_buffer = NULL; 1417 static char *out_buffer = NULL;
884 static size_t out_len; 1418 static size_t out_len;
885 1419
886 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1420 found_pax = found_phdr = found_relro = found_load = found_textrel = \
887 found_rpath = found_needed = found_interp = found_bind = found_soname = \ 1421 found_rpath = found_needed = found_interp = found_bind = found_soname = \
888 found_sym = found_lib = found_file = found_textrels = 0; 1422 found_sym = found_lib = found_file = found_textrels = found_section = 0;
889 1423
890 if (be_verbose > 2) 1424 if (be_verbose > 2)
891 printf("%s: scanning file {%s,%s}\n", elf->filename, 1425 printf("%s: scanning file {%s,%s}\n", elf->filename,
892 get_elfeitype(EI_CLASS, elf->elf_class), 1426 get_elfeitype(EI_CLASS, elf->elf_class),
893 get_elfeitype(EI_DATA, elf->data[EI_DATA])); 1427 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
895 printf("%s: scanning file\n", elf->filename); 1429 printf("%s: scanning file\n", elf->filename);
896 1430
897 /* init output buffer */ 1431 /* init output buffer */
898 if (!out_buffer) { 1432 if (!out_buffer) {
899 out_len = sizeof(char) * 80; 1433 out_len = sizeof(char) * 80;
900 out_buffer = (char*)xmalloc(out_len); 1434 out_buffer = xmalloc(out_len);
901 } 1435 }
902 *out_buffer = '\0'; 1436 *out_buffer = '\0';
903 1437
904 /* show the header */ 1438 /* show the header */
905 if (!be_quiet && show_banner) { 1439 if (!be_quiet && show_banner) {
906 for (i = 0; out_format[i]; ++i) { 1440 for (i = 0; out_format[i]; ++i) {
907 if (!IS_MODIFIER(out_format[i])) continue; 1441 if (!IS_MODIFIER(out_format[i])) continue;
908 1442
909 switch (out_format[++i]) { 1443 switch (out_format[++i]) {
1444 case '+': break;
910 case '%': break; 1445 case '%': break;
911 case '#': break; 1446 case '#': break;
912 case 'F': 1447 case 'F':
913 case 'p': 1448 case 'p':
914 case 'f': prints("FILE "); found_file = 1; break; 1449 case 'f': prints("FILE "); found_file = 1; break;
915 case 'o': prints(" TYPE "); break; 1450 case 'o': prints(" TYPE "); break;
916 case 'x': prints(" PAX "); break; 1451 case 'x': prints(" PAX "); break;
917 case 'e': prints("STK/REL/PTL "); break; 1452 case 'e': prints("STK/REL/PTL "); break;
918 case 't': prints("TEXTREL "); break; 1453 case 't': prints("TEXTREL "); break;
919 case 'r': prints("RPATH "); break; 1454 case 'r': prints("RPATH "); break;
1455 case 'M': prints("CLASS "); break;
1456 case 'l':
920 case 'n': prints("NEEDED "); break; 1457 case 'n': prints("NEEDED "); break;
921 case 'i': prints("INTERP "); break; 1458 case 'i': prints("INTERP "); break;
922 case 'b': prints("BIND "); break; 1459 case 'b': prints("BIND "); break;
1460 case 'Z': prints("SIZE "); break;
923 case 'S': prints("SONAME "); break; 1461 case 'S': prints("SONAME "); break;
924 case 's': prints("SYM "); break; 1462 case 's': prints("SYM "); break;
925 case 'N': prints("LIB "); break; 1463 case 'N': prints("LIB "); break;
926 case 'T': prints("TEXTRELS "); break; 1464 case 'T': prints("TEXTRELS "); break;
1465 case 'k': prints("SECTION "); break;
1466 case 'a': prints("ARCH "); break;
1467 case 'I': prints("OSABI "); break;
1468 case 'Y': prints("EABI "); break;
1469 case 'O': prints("PERM "); break;
1470 case 'D': prints("ENDIAN "); break;
927 default: warnf("'%c' has no title ?", out_format[i]); 1471 default: warnf("'%c' has no title ?", out_format[i]);
928 } 1472 }
929 } 1473 }
930 if (!found_file) prints("FILE "); 1474 if (!found_file) prints("FILE ");
931 prints("\n"); 1475 prints("\n");
935 1479
936 /* dump all the good stuff */ 1480 /* dump all the good stuff */
937 for (i = 0; out_format[i]; ++i) { 1481 for (i = 0; out_format[i]; ++i) {
938 const char *out; 1482 const char *out;
939 const char *tmp; 1483 const char *tmp;
940 1484 static char ubuf[sizeof(unsigned long)*2];
941 /* make sure we trim leading spaces in quiet mode */
942 if (be_quiet && *out_buffer == ' ' && !out_buffer[1])
943 *out_buffer = '\0';
944
945 if (!IS_MODIFIER(out_format[i])) { 1485 if (!IS_MODIFIER(out_format[i])) {
946 xchrcat(&out_buffer, out_format[i], &out_len); 1486 xchrcat(&out_buffer, out_format[i], &out_len);
947 continue; 1487 continue;
948 } 1488 }
949 1489
950 out = NULL; 1490 out = NULL;
951 be_wewy_wewy_quiet = (out_format[i] == '#'); 1491 be_wewy_wewy_quiet = (out_format[i] == '#');
1492 be_semi_verbose = (out_format[i] == '+');
952 switch (out_format[++i]) { 1493 switch (out_format[++i]) {
1494 case '+':
953 case '%': 1495 case '%':
954 case '#': 1496 case '#':
955 xchrcat(&out_buffer, out_format[i], &out_len); break; 1497 xchrcat(&out_buffer, out_format[i], &out_len); break;
956 case 'F': 1498 case 'F':
957 found_file = 1; 1499 found_file = 1;
983 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1525 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
984 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1526 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
985 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1527 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
986 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1528 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
987 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1529 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1530 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1531 case 'D': out = get_endian(elf); break;
1532 case 'O': out = strfileperms(elf->filename); break;
988 case 'n': 1533 case 'n':
989 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1534 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
990 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1535 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
991 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1536 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
992 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1537 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
993 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1538 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1539 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1540 case 'a': out = get_elfemtype(elf); break;
1541 case 'I': out = get_elfosabi(elf); break;
1542 case 'Y': out = get_elf_eabi(elf); break;
1543 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
994 default: warnf("'%c' has no scan code?", out_format[i]); 1544 default: warnf("'%c' has no scan code?", out_format[i]);
995 } 1545 }
996 if (out) { 1546 if (out)
997 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
998 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
999 xstrncat(&out_buffer, out, &out_len, (tmp-out));
1000 else
1001 xstrcat(&out_buffer, out, &out_len); 1547 xstrcat(&out_buffer, out, &out_len);
1002 }
1003 } 1548 }
1004 1549
1005#define FOUND_SOMETHING() \ 1550#define FOUND_SOMETHING() \
1006 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1551 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
1007 found_rpath || found_needed || found_interp || found_bind || \ 1552 found_rpath || found_needed || found_interp || found_bind || \
1008 found_soname || found_sym || found_lib || found_textrels) 1553 found_soname || found_sym || found_lib || found_textrels || found_section )
1009 1554
1010 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) { 1555 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
1011 xchrcat(&out_buffer, ' ', &out_len); 1556 xchrcat(&out_buffer, ' ', &out_len);
1012 xstrcat(&out_buffer, elf->filename, &out_len); 1557 xstrcat(&out_buffer, elf->filename, &out_len);
1013 } 1558 }
1020} 1565}
1021 1566
1022/* scan a single elf */ 1567/* scan a single elf */
1023static int scanelf_elf(const char *filename, int fd, size_t len) 1568static int scanelf_elf(const char *filename, int fd, size_t len)
1024{ 1569{
1025 int ret; 1570 int ret = 1;
1026 elfobj *elf; 1571 elfobj *elf;
1027 1572
1028 /* verify this is real ELF */ 1573 /* verify this is real ELF */
1029 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) { 1574 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1030 if (be_verbose > 2) printf("%s: not an ELF\n", filename); 1575 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1031 return 1; 1576 return 2;
1032 } 1577 }
1033 1578 switch (match_bits) {
1579 case 32:
1580 if (elf->elf_class != ELFCLASS32)
1581 goto label_done;
1582 break;
1583 case 64:
1584 if (elf->elf_class != ELFCLASS64)
1585 goto label_done;
1586 break;
1587 default: break;
1588 }
1034 if (strlen(match_etypes)) { 1589 if (match_etypes) {
1035 char sbuf[126]; 1590 char sbuf[126];
1036 strncpy(sbuf, match_etypes, sizeof(sbuf)); 1591 strncpy(sbuf, match_etypes, sizeof(sbuf));
1037 if (strchr(match_etypes, ',') != NULL) { 1592 if (strchr(match_etypes, ',') != NULL) {
1038 char *p; 1593 char *p;
1039 while((p = strrchr(sbuf, ',')) != NULL) { 1594 while ((p = strrchr(sbuf, ',')) != NULL) {
1040 *p = 0; 1595 *p = 0;
1041 if (atoi(p+1) == get_etype(elf)) 1596 if (etype_lookup(p+1) == get_etype(elf))
1042 goto label_ret; 1597 goto label_ret;
1043 } 1598 }
1044 } 1599 }
1045 if (atoi(sbuf) != get_etype(elf)) { 1600 if (etype_lookup(sbuf) != get_etype(elf))
1046 ret = 1;
1047 goto label_done; 1601 goto label_done;
1048 }
1049 } 1602 }
1050 1603
1051label_ret: 1604label_ret:
1052 ret = scanelf_elfobj(elf); 1605 ret = scanelf_elfobj(elf);
1053 1606
1066 1619
1067 ar = ar_open_fd(filename, fd); 1620 ar = ar_open_fd(filename, fd);
1068 if (ar == NULL) 1621 if (ar == NULL)
1069 return 1; 1622 return 1;
1070 1623
1071 ar_buffer = (char*)mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0); 1624 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1072 while ((m=ar_next(ar)) != NULL) { 1625 while ((m = ar_next(ar)) != NULL) {
1626 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1627 if (cur_pos == -1)
1628 errp("lseek() failed");
1073 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size); 1629 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1074 if (elf) { 1630 if (elf) {
1075 scanelf_elfobj(elf); 1631 scanelf_elfobj(elf);
1076 unreadelf(elf); 1632 unreadelf(elf);
1077 } 1633 }
1078 } 1634 }
1079 munmap(ar_buffer, len); 1635 munmap(ar_buffer, len);
1080 1636
1081 return 0; 1637 return 0;
1082} 1638}
1083/* scan a file which may be an elf or an archive or some other magical beast */ 1639/* scan a file which may be an elf or an archive or some other magical beast */
1084static void scanelf_file(const char *filename) 1640static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1085{ 1641{
1642 const struct stat *st = st_cache;
1086 struct stat st; 1643 struct stat symlink_st;
1087 int fd; 1644 int fd;
1088 1645
1089 /* make sure 'filename' exists */
1090 if (lstat(filename, &st) == -1) {
1091 if (be_verbose > 2) printf("%s: does not exist\n", filename);
1092 return;
1093 }
1094
1095 /* always handle regular files and handle symlinked files if no -y */ 1646 /* always handle regular files and handle symlinked files if no -y */
1096 if (S_ISLNK(st.st_mode)) { 1647 if (S_ISLNK(st->st_mode)) {
1097 if (!scan_symlink) return; 1648 if (!scan_symlink)
1098 stat(filename, &st); 1649 return 1;
1650 fstatat(dir_fd, filename, &symlink_st, 0);
1651 st = &symlink_st;
1099 } 1652 }
1653
1100 if (!S_ISREG(st.st_mode)) { 1654 if (!S_ISREG(st->st_mode)) {
1101 if (be_verbose > 2) printf("%s: skipping non-file\n", filename); 1655 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1102 return; 1656 return 1;
1103 } 1657 }
1104 1658
1105 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1) 1659 if (match_perms) {
1660 if ((st->st_mode | match_perms) != st->st_mode)
1661 return 1;
1662 }
1663 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1664 if (fd == -1) {
1665 if (fix_elf && errno == ETXTBSY)
1666 warnp("%s: could not fix", filename);
1667 else if (be_verbose > 2)
1668 printf("%s: skipping file: %s\n", filename, strerror(errno));
1106 return; 1669 return 1;
1670 }
1107 1671
1108 if (scanelf_elf(filename, fd, st.st_size) == 1 && scan_archives) 1672 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1109 /* if it isn't an ELF, maybe it's an .a archive */ 1673 /* if it isn't an ELF, maybe it's an .a archive */
1674 if (scan_archives)
1110 scanelf_archive(filename, fd, st.st_size); 1675 scanelf_archive(filename, fd, st->st_size);
1111 1676
1677 /*
1678 * unreadelf() implicitly closes its fd, so only close it
1679 * when we are returning it in the non-ELF case
1680 */
1112 close(fd); 1681 close(fd);
1682 }
1683
1684 return 0;
1113} 1685}
1114 1686
1115/* scan a directory for ET_EXEC files and print when we find one */ 1687/* scan a directory for ET_EXEC files and print when we find one */
1116static void scanelf_dir(const char *path) 1688static int scanelf_dirat(int dir_fd, const char *path)
1117{ 1689{
1118 register DIR *dir; 1690 register DIR *dir;
1119 register struct dirent *dentry; 1691 register struct dirent *dentry;
1120 struct stat st_top, st; 1692 struct stat st_top, st;
1121 char buf[__PAX_UTILS_PATH_MAX]; 1693 char buf[__PAX_UTILS_PATH_MAX], *subpath;
1122 size_t pathlen = 0, len = 0; 1694 size_t pathlen = 0, len = 0;
1695 int ret = 0;
1696 int subdir_fd;
1123 1697
1124 /* make sure path exists */ 1698 /* make sure path exists */
1125 if (lstat(path, &st_top) == -1) { 1699 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
1126 if (be_verbose > 2) printf("%s: does not exist\n", path); 1700 if (be_verbose > 2) printf("%s: does not exist\n", path);
1127 return; 1701 return 1;
1128 } 1702 }
1129 1703
1130 /* ok, if it isn't a directory, assume we can open it */ 1704 /* ok, if it isn't a directory, assume we can open it */
1131 if (!S_ISDIR(st_top.st_mode)) { 1705 if (!S_ISDIR(st_top.st_mode))
1132 scanelf_file(path); 1706 return scanelf_fileat(dir_fd, path, &st_top);
1133 return;
1134 }
1135 1707
1136 /* now scan the dir looking for fun stuff */ 1708 /* now scan the dir looking for fun stuff */
1137 if ((dir = opendir(path)) == NULL) { 1709 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
1138 warnf("could not opendir %s: %s", path, strerror(errno)); 1710 if (subdir_fd == -1)
1711 dir = NULL;
1712 else
1713 dir = fdopendir(subdir_fd);
1714 if (dir == NULL) {
1715 if (subdir_fd != -1)
1716 close(subdir_fd);
1717 warnfp("could not opendir(%s)", path);
1139 return; 1718 return 1;
1140 } 1719 }
1141 if (be_verbose > 1) printf("%s: scanning dir\n", path); 1720 if (be_verbose > 1) printf("%s: scanning dir\n", path);
1142 1721
1143 pathlen = strlen(path); 1722 subpath = stpcpy(buf, path);
1723 if (subpath[-1] != '/')
1724 *subpath++ = '/';
1725 pathlen = subpath - buf;
1144 while ((dentry = readdir(dir))) { 1726 while ((dentry = readdir(dir))) {
1145 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1727 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
1146 continue; 1728 continue;
1729
1730 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
1731 continue;
1732
1147 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1733 len = strlen(dentry->d_name);
1148 if (len >= sizeof(buf)) { 1734 if (len + pathlen + 1 >= sizeof(buf)) {
1149 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1735 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
1150 (unsigned long)len, (unsigned long)sizeof(buf)); 1736 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
1151 continue; 1737 continue;
1152 } 1738 }
1153 sprintf(buf, "%s/%s", path, dentry->d_name); 1739 memcpy(subpath, dentry->d_name, len);
1154 if (lstat(buf, &st) != -1) { 1740 subpath[len] = '\0';
1741
1155 if (S_ISREG(st.st_mode)) 1742 if (S_ISREG(st.st_mode))
1156 scanelf_file(buf); 1743 ret = scanelf_fileat(dir_fd, buf, &st);
1157 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1744 else if (dir_recurse && S_ISDIR(st.st_mode)) {
1158 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1745 if (dir_crossmount || (st_top.st_dev == st.st_dev))
1159 scanelf_dir(buf); 1746 ret = scanelf_dirat(dir_fd, buf);
1160 }
1161 } 1747 }
1162 } 1748 }
1163 closedir(dir); 1749 closedir(dir);
1164}
1165 1750
1751 return ret;
1752}
1753static int scanelf_dir(const char *path)
1754{
1755 return scanelf_dirat(root_fd, root_rel_path(path));
1756}
1757
1166static int scanelf_from_file(char *filename) 1758static int scanelf_from_file(const char *filename)
1167{ 1759{
1168 FILE *fp = NULL; 1760 FILE *fp;
1169 char *p; 1761 char *p, *path;
1170 char path[__PAX_UTILS_PATH_MAX]; 1762 size_t len;
1763 int ret;
1171 1764
1172 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1765 if (strcmp(filename, "-") == 0)
1173 fp = stdin; 1766 fp = stdin;
1174 else if ((fp = fopen(filename, "r")) == NULL) 1767 else if ((fp = fopen(filename, "r")) == NULL)
1175 return 1; 1768 return 1;
1176 1769
1177 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1770 path = NULL;
1771 len = 0;
1772 ret = 0;
1773 while (getline(&path, &len, fp) != -1) {
1178 if ((p = strchr(path, '\n')) != NULL) 1774 if ((p = strchr(path, '\n')) != NULL)
1179 *p = 0; 1775 *p = 0;
1180 search_path = path; 1776 search_path = path;
1181 scanelf_dir(path); 1777 ret = scanelf_dir(path);
1182 } 1778 }
1779 free(path);
1780
1183 if (fp != stdin) 1781 if (fp != stdin)
1184 fclose(fp); 1782 fclose(fp);
1783
1185 return 0; 1784 return ret;
1186} 1785}
1187 1786
1188static void load_ld_so_conf() 1787#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1788
1789static int _load_ld_cache_config(const char *fname)
1189{ 1790{
1190 FILE *fp = NULL; 1791 FILE *fp = NULL;
1191 char *p; 1792 char *p, *path;
1192 char path[__PAX_UTILS_PATH_MAX]; 1793 size_t len;
1193 int i = 0; 1794 int curr_fd = -1;
1194 1795
1195 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1796 fp = fopenat_r(root_fd, root_rel_path(fname));
1797 if (fp == NULL)
1196 return; 1798 return -1;
1197 1799
1198 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1800 path = NULL;
1199 if (*path != '/') 1801 len = 0;
1200 continue; 1802 while (getline(&path, &len, fp) != -1) {
1201
1202 if ((p = strrchr(path, '\r')) != NULL) 1803 if ((p = strrchr(path, '\r')) != NULL)
1203 *p = 0; 1804 *p = 0;
1204 if ((p = strchr(path, '\n')) != NULL) 1805 if ((p = strchr(path, '\n')) != NULL)
1205 *p = 0; 1806 *p = 0;
1206 1807
1207 ldpaths[i++] = xstrdup(path); 1808 /* recursive includes of the same file will make this segfault. */
1809 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1810 glob_t gl;
1811 size_t x;
1812 const char *gpath;
1208 1813
1209 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1814 /* re-use existing path buffer ... need to be creative */
1210 break; 1815 if (path[8] != '/')
1816 gpath = memcpy(path + 3, "/etc/", 5);
1817 else
1818 gpath = path + 8;
1819 if (root_fd != AT_FDCWD) {
1820 if (curr_fd == -1) {
1821 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1822 if (fchdir(root_fd))
1823 errp("unable to change to root dir");
1824 }
1825 gpath = root_rel_path(gpath);
1826 }
1827
1828 if (glob(gpath, 0, NULL, &gl) == 0) {
1829 for (x = 0; x < gl.gl_pathc; ++x) {
1830 /* try to avoid direct loops */
1831 if (strcmp(gl.gl_pathv[x], fname) == 0)
1832 continue;
1833 _load_ld_cache_config(gl.gl_pathv[x]);
1834 }
1835 globfree(&gl);
1836 }
1837
1838 /* failed globs are ignored by glibc */
1839 continue;
1211 } 1840 }
1212 ldpaths[i] = NULL; 1841
1842 if (*path != '/')
1843 continue;
1844
1845 xarraypush_str(ldpaths, path);
1846 }
1847 free(path);
1213 1848
1214 fclose(fp); 1849 fclose(fp);
1850
1851 if (curr_fd != -1) {
1852 if (fchdir(curr_fd))
1853 /* don't care */;
1854 close(curr_fd);
1855 }
1856
1857 return 0;
1858}
1859
1860#elif defined(__FreeBSD__) || defined(__DragonFly__)
1861
1862static int _load_ld_cache_config(const char *fname)
1863{
1864 FILE *fp = NULL;
1865 char *b = NULL, *p;
1866 struct elfhints_hdr hdr;
1867
1868 fp = fopenat_r(root_fd, root_rel_path(fname));
1869 if (fp == NULL)
1870 return -1;
1871
1872 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1873 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1874 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1875 {
1876 fclose(fp);
1877 return -1;
1878 }
1879
1880 b = xmalloc(hdr.dirlistlen + 1);
1881 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1882 fclose(fp);
1883 free(b);
1884 return -1;
1885 }
1886
1887 while ((p = strsep(&b, ":"))) {
1888 if (*p == '\0')
1889 continue;
1890 xarraypush_str(ldpaths, p);
1891 }
1892
1893 free(b);
1894 fclose(fp);
1895 return 0;
1896}
1897
1898#else
1899#ifdef __ELF__
1900#warning Cache config support not implemented for your target
1901#endif
1902static int _load_ld_cache_config(const char *fname)
1903{
1904 return 0;
1905}
1906#endif
1907
1908static void load_ld_cache_config(const char *fname)
1909{
1910 bool scan_l, scan_ul, scan_ull;
1911 size_t n;
1912 const char *ldpath;
1913
1914 _load_ld_cache_config(fname);
1915
1916 scan_l = scan_ul = scan_ull = false;
1917 if (array_cnt(ldpaths)) {
1918 array_for_each(ldpaths, n, ldpath) {
1919 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = true;
1920 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = true;
1921 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = true;
1922 }
1923 }
1924
1925 if (!scan_l) xarraypush_str(ldpaths, "/lib");
1926 if (!scan_ul) xarraypush_str(ldpaths, "/usr/lib");
1927 if (!scan_ull) xarraypush_str(ldpaths, "/usr/local/lib");
1215} 1928}
1216 1929
1217/* scan /etc/ld.so.conf for paths */ 1930/* scan /etc/ld.so.conf for paths */
1218static void scanelf_ldpath() 1931static void scanelf_ldpath(void)
1219{ 1932{
1220 char scan_l, scan_ul, scan_ull; 1933 size_t n;
1221 int i = 0; 1934 const char *ldpath;
1222 1935
1223 if (!ldpaths[0]) 1936 array_for_each(ldpaths, n, ldpath)
1224 err("Unable to load any paths from ld.so.conf");
1225
1226 scan_l = scan_ul = scan_ull = 0;
1227
1228 while (ldpaths[i]) {
1229 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1;
1230 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1;
1231 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1;
1232 scanelf_dir(ldpaths[i]); 1937 scanelf_dir(ldpath);
1233 ++i;
1234 }
1235
1236 if (!scan_l) scanelf_dir("/lib");
1237 if (!scan_ul) scanelf_dir("/usr/lib");
1238 if (!scan_ull) scanelf_dir("/usr/local/lib");
1239} 1938}
1240 1939
1241/* scan env PATH for paths */ 1940/* scan env PATH for paths */
1242static void scanelf_envpath() 1941static void scanelf_envpath(void)
1243{ 1942{
1244 char *path, *p; 1943 char *path, *p;
1245 1944
1246 path = getenv("PATH"); 1945 path = getenv("PATH");
1247 if (!path) 1946 if (!path)
1254 } 1953 }
1255 1954
1256 free(path); 1955 free(path);
1257} 1956}
1258 1957
1259 1958/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
1260/* usage / invocation handling functions */
1261#define PARSE_FLAGS "plRmyAXxetrnLibSs:gN:TaqvF:f:o:E:BhV" 1959#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
1262#define a_argument required_argument 1960#define a_argument required_argument
1263static struct option const long_opts[] = { 1961static struct option const long_opts[] = {
1264 {"path", no_argument, NULL, 'p'}, 1962 {"path", no_argument, NULL, 'p'},
1265 {"ldpath", no_argument, NULL, 'l'}, 1963 {"ldpath", no_argument, NULL, 'l'},
1964 {"use-ldpath",no_argument, NULL, 129},
1965 {"root", a_argument, NULL, 128},
1266 {"recursive", no_argument, NULL, 'R'}, 1966 {"recursive", no_argument, NULL, 'R'},
1267 {"mount", no_argument, NULL, 'm'}, 1967 {"mount", no_argument, NULL, 'm'},
1268 {"symlink", no_argument, NULL, 'y'}, 1968 {"symlink", no_argument, NULL, 'y'},
1269 {"archives", no_argument, NULL, 'A'}, 1969 {"archives", no_argument, NULL, 'A'},
1270 {"ldcache", no_argument, NULL, 'L'}, 1970 {"ldcache", no_argument, NULL, 'L'},
1271 {"fix", no_argument, NULL, 'X'}, 1971 {"fix", no_argument, NULL, 'X'},
1972 {"setpax", a_argument, NULL, 'z'},
1272 {"pax", no_argument, NULL, 'x'}, 1973 {"pax", no_argument, NULL, 'x'},
1273 {"header", no_argument, NULL, 'e'}, 1974 {"header", no_argument, NULL, 'e'},
1274 {"textrel", no_argument, NULL, 't'}, 1975 {"textrel", no_argument, NULL, 't'},
1275 {"rpath", no_argument, NULL, 'r'}, 1976 {"rpath", no_argument, NULL, 'r'},
1276 {"needed", no_argument, NULL, 'n'}, 1977 {"needed", no_argument, NULL, 'n'},
1277 {"interp", no_argument, NULL, 'i'}, 1978 {"interp", no_argument, NULL, 'i'},
1278 {"bind", no_argument, NULL, 'b'}, 1979 {"bind", no_argument, NULL, 'b'},
1279 {"soname", no_argument, NULL, 'S'}, 1980 {"soname", no_argument, NULL, 'S'},
1280 {"symbol", a_argument, NULL, 's'}, 1981 {"symbol", a_argument, NULL, 's'},
1982 {"section", a_argument, NULL, 'k'},
1281 {"lib", a_argument, NULL, 'N'}, 1983 {"lib", a_argument, NULL, 'N'},
1282 {"gmatch", no_argument, NULL, 'g'}, 1984 {"gmatch", no_argument, NULL, 'g'},
1283 {"textrels", no_argument, NULL, 'T'}, 1985 {"textrels", no_argument, NULL, 'T'},
1284 {"etype", a_argument, NULL, 'E'}, 1986 {"etype", a_argument, NULL, 'E'},
1987 {"bits", a_argument, NULL, 'M'},
1988 {"endian", no_argument, NULL, 'D'},
1989 {"osabi", no_argument, NULL, 'I'},
1990 {"eabi", no_argument, NULL, 'Y'},
1991 {"perms", a_argument, NULL, 'O'},
1992 {"size", no_argument, NULL, 'Z'},
1285 {"all", no_argument, NULL, 'a'}, 1993 {"all", no_argument, NULL, 'a'},
1286 {"quiet", no_argument, NULL, 'q'}, 1994 {"quiet", no_argument, NULL, 'q'},
1287 {"verbose", no_argument, NULL, 'v'}, 1995 {"verbose", no_argument, NULL, 'v'},
1288 {"format", a_argument, NULL, 'F'}, 1996 {"format", a_argument, NULL, 'F'},
1289 {"from", a_argument, NULL, 'f'}, 1997 {"from", a_argument, NULL, 'f'},
1290 {"file", a_argument, NULL, 'o'}, 1998 {"file", a_argument, NULL, 'o'},
1999 {"nocolor", no_argument, NULL, 'C'},
1291 {"nobanner", no_argument, NULL, 'B'}, 2000 {"nobanner", no_argument, NULL, 'B'},
1292 {"help", no_argument, NULL, 'h'}, 2001 {"help", no_argument, NULL, 'h'},
1293 {"version", no_argument, NULL, 'V'}, 2002 {"version", no_argument, NULL, 'V'},
1294 {NULL, no_argument, NULL, 0x0} 2003 {NULL, no_argument, NULL, 0x0}
1295}; 2004};
1296 2005
1297static const char *opts_help[] = { 2006static const char * const opts_help[] = {
1298 "Scan all directories in PATH environment", 2007 "Scan all directories in PATH environment",
1299 "Scan all directories in /etc/ld.so.conf", 2008 "Scan all directories in /etc/ld.so.conf",
2009 "Use ld.so.conf to show full path (use with -r/-n)",
2010 "Root directory (use with -l or -p)",
1300 "Scan directories recursively", 2011 "Scan directories recursively",
1301 "Don't recursively cross mount points", 2012 "Don't recursively cross mount points",
1302 "Don't scan symlinks", 2013 "Don't scan symlinks",
1303 "Scan archives (.a files)", 2014 "Scan archives (.a files)",
1304 "Utilize ld.so.cache information (use with -r/-n)", 2015 "Utilize ld.so.cache to show full path (use with -r/-n)",
1305 "Try and 'fix' bad things (use with -r/-e)\n", 2016 "Try and 'fix' bad things (use with -r/-e)",
2017 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1306 "Print PaX markings", 2018 "Print PaX markings",
1307 "Print GNU_STACK/PT_LOAD markings", 2019 "Print GNU_STACK/PT_LOAD markings",
1308 "Print TEXTREL information", 2020 "Print TEXTREL information",
1309 "Print RPATH information", 2021 "Print RPATH information",
1310 "Print NEEDED information", 2022 "Print NEEDED information",
1311 "Print INTERP information", 2023 "Print INTERP information",
1312 "Print BIND information", 2024 "Print BIND information",
1313 "Print SONAME information", 2025 "Print SONAME information",
1314 "Find a specified symbol", 2026 "Find a specified symbol",
2027 "Find a specified section",
1315 "Find a specified library", 2028 "Find a specified library",
1316 "Use strncmp to match libraries. (use with -N)", 2029 "Use regex rather than string compare (with -s); specify twice for case insensitive",
1317 "Locate cause of TEXTREL", 2030 "Locate cause of TEXTREL",
2031 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1318 "Print only ELF files matching numeric constant", 2032 "Print only ELF files matching numeric bits",
1319 "Print all scanned info (-x -e -t -r -b)\n", 2033 "Print Endianness",
2034 "Print OSABI",
2035 "Print EABI (EM_ARM Only)",
2036 "Print only ELF files matching octal permissions",
2037 "Print ELF file size",
2038 "Print all useful/simple info\n",
1320 "Only output 'bad' things", 2039 "Only output 'bad' things",
1321 "Be verbose (can be specified more than once)", 2040 "Be verbose (can be specified more than once)",
1322 "Use specified format for output", 2041 "Use specified format for output",
1323 "Read input stream from a filename", 2042 "Read input stream from a filename",
1324 "Write output stream to a filename", 2043 "Write output stream to a filename",
2044 "Don't emit color in output",
1325 "Don't display the header", 2045 "Don't display the header",
1326 "Print this help and exit", 2046 "Print this help and exit",
1327 "Print version and exit", 2047 "Print version and exit",
1328 NULL 2048 NULL
1329}; 2049};
1333{ 2053{
1334 unsigned long i; 2054 unsigned long i;
1335 printf("* Scan ELF binaries for stuff\n\n" 2055 printf("* Scan ELF binaries for stuff\n\n"
1336 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0); 2056 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1337 printf("Options: -[%s]\n", PARSE_FLAGS); 2057 printf("Options: -[%s]\n", PARSE_FLAGS);
1338 for (i = 0; long_opts[i].name; ++i) 2058 for (i = 0; long_opts[i].name; ++i) {
2059 /* first output the short flag if it has one */
2060 if (long_opts[i].val > '~')
2061 printf(" ");
2062 else
2063 printf(" -%c, ", long_opts[i].val);
2064
2065 /* then the long flag */
1339 if (long_opts[i].has_arg == no_argument) 2066 if (long_opts[i].has_arg == no_argument)
1340 printf(" -%c, --%-13s* %s\n", long_opts[i].val, 2067 printf("--%-14s", long_opts[i].name);
1341 long_opts[i].name, opts_help[i]);
1342 else 2068 else
1343 printf(" -%c, --%-6s <arg> * %s\n", long_opts[i].val, 2069 printf("--%-7s <arg> ", long_opts[i].name);
1344 long_opts[i].name, opts_help[i]);
1345 2070
1346 if (status != EXIT_SUCCESS) 2071 /* finally the help text */
1347 exit(status); 2072 printf("* %s\n", opts_help[i]);
2073 }
1348 2074
1349 puts("\nThe format modifiers for the -F option are:"); 2075 puts("\nFor more information, see the scanelf(1) manpage");
1350 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1351 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1352 puts(" i INTERP \tb BIND \ts symbol");
1353 puts(" N library \to Type \tT TEXTRELs");
1354 puts(" S SONAME");
1355 puts(" p filename (with search path removed)");
1356 puts(" f filename (short name/basename)");
1357 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1358
1359 exit(status); 2076 exit(status);
1360} 2077}
1361 2078
1362/* parse command line arguments and preform needed actions */ 2079/* parse command line arguments and preform needed actions */
2080#define do_pax_state(option, flag) \
2081 if (islower(option)) { \
2082 flags &= ~PF_##flag; \
2083 flags |= PF_NO##flag; \
2084 } else { \
2085 flags &= ~PF_NO##flag; \
2086 flags |= PF_##flag; \
2087 }
1363static void parseargs(int argc, char *argv[]) 2088static int parseargs(int argc, char *argv[])
1364{ 2089{
1365 int i; 2090 int i;
1366 char *from_file = NULL; 2091 const char *from_file = NULL;
2092 int ret = 0;
2093 char load_cache_config = 0;
1367 2094
1368 opterr = 0; 2095 opterr = 0;
1369 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2096 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1370 switch (i) { 2097 switch (i) {
1371 2098
1379 case 'f': 2106 case 'f':
1380 if (from_file) warn("You prob don't want to specify -f twice"); 2107 if (from_file) warn("You prob don't want to specify -f twice");
1381 from_file = optarg; 2108 from_file = optarg;
1382 break; 2109 break;
1383 case 'E': 2110 case 'E':
1384 strncpy(match_etypes, optarg, sizeof(match_etypes)); 2111 match_etypes = optarg;
2112 break;
2113 case 'M':
2114 match_bits = atoi(optarg);
2115 if (match_bits == 0) {
2116 if (strcmp(optarg, "ELFCLASS32") == 0)
2117 match_bits = 32;
2118 if (strcmp(optarg, "ELFCLASS64") == 0)
2119 match_bits = 64;
2120 }
2121 break;
2122 case 'O':
2123 if (sscanf(optarg, "%o", &match_perms) == -1)
2124 match_bits = 0;
1385 break; 2125 break;
1386 case 'o': { 2126 case 'o': {
1387 FILE *fp = NULL;
1388 if ((fp = freopen(optarg, "w", stdout)) == NULL) 2127 if (freopen(optarg, "w", stdout) == NULL)
1389 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2128 errp("Could not freopen(%s)", optarg);
1390 SET_STDOUT(fp);
1391 break; 2129 break;
1392 } 2130 }
1393 2131 case 'k':
2132 xarraypush_str(find_section_arr, optarg);
2133 break;
1394 case 's': { 2134 case 's': {
1395 if (find_sym) warn("You prob don't want to specify -s twice"); 2135 if (find_sym) warn("You prob don't want to specify -s twice");
1396 find_sym = optarg; 2136 find_sym = optarg;
1397 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1398 sprintf(versioned_symname, "%s@", find_sym);
1399 break; 2137 break;
1400 } 2138 }
1401 case 'N': { 2139 case 'N':
1402 if (find_lib) warn("You prob don't want to specify -N twice"); 2140 xarraypush_str(find_lib_arr, optarg);
1403 find_lib = optarg;
1404 break; 2141 break;
1405 }
1406
1407 case 'F': { 2142 case 'F': {
1408 if (out_format) warn("You prob don't want to specify -F twice"); 2143 if (out_format) warn("You prob don't want to specify -F twice");
1409 out_format = optarg; 2144 out_format = optarg;
1410 break; 2145 break;
1411 } 2146 }
2147 case 'z': {
2148 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
2149 size_t x;
1412 2150
1413 case 'g': gmatch = 1; /* break; any reason we dont breal; here ? */ 2151 for (x = 0; x < strlen(optarg); x++) {
2152 switch (optarg[x]) {
2153 case 'p':
2154 case 'P':
2155 do_pax_state(optarg[x], PAGEEXEC);
2156 break;
2157 case 's':
2158 case 'S':
2159 do_pax_state(optarg[x], SEGMEXEC);
2160 break;
2161 case 'm':
2162 case 'M':
2163 do_pax_state(optarg[x], MPROTECT);
2164 break;
2165 case 'e':
2166 case 'E':
2167 do_pax_state(optarg[x], EMUTRAMP);
2168 break;
2169 case 'r':
2170 case 'R':
2171 do_pax_state(optarg[x], RANDMMAP);
2172 break;
2173 case 'x':
2174 case 'X':
2175 do_pax_state(optarg[x], RANDEXEC);
2176 break;
2177 default:
2178 break;
2179 }
2180 }
2181 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
2182 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
2183 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
2184 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
2185 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
2186 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
2187 setpax = flags;
2188 break;
2189 }
2190 case 'Z': show_size = 1; break;
2191 case 'g': ++g_match; break;
1414 case 'L': use_ldcache = 1; break; 2192 case 'L': load_cache_config = use_ldcache = 1; break;
1415 case 'y': scan_symlink = 0; break; 2193 case 'y': scan_symlink = 0; break;
1416 case 'A': scan_archives = 1; break; 2194 case 'A': scan_archives = 1; break;
2195 case 'C': color_init(true); break;
1417 case 'B': show_banner = 0; break; 2196 case 'B': show_banner = 0; break;
1418 case 'l': scan_ldpath = 1; break; 2197 case 'l': load_cache_config = scan_ldpath = 1; break;
1419 case 'p': scan_envpath = 1; break; 2198 case 'p': scan_envpath = 1; break;
1420 case 'R': dir_recurse = 1; break; 2199 case 'R': dir_recurse = 1; break;
1421 case 'm': dir_crossmount = 0; break; 2200 case 'm': dir_crossmount = 0; break;
1422 case 'X': ++fix_elf; break; 2201 case 'X': ++fix_elf; break;
1423 case 'x': show_pax = 1; break; 2202 case 'x': show_pax = 1; break;
1429 case 'b': show_bind = 1; break; 2208 case 'b': show_bind = 1; break;
1430 case 'S': show_soname = 1; break; 2209 case 'S': show_soname = 1; break;
1431 case 'T': show_textrels = 1; break; 2210 case 'T': show_textrels = 1; break;
1432 case 'q': be_quiet = 1; break; 2211 case 'q': be_quiet = 1; break;
1433 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2212 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1434 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 2213 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1435 2214 case 'D': show_endian = 1; break;
2215 case 'I': show_osabi = 1; break;
2216 case 'Y': show_eabi = 1; break;
2217 case 128:
2218 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2219 if (root_fd == -1)
2220 err("Could not open root: %s", optarg);
2221 break;
2222 case 129: load_cache_config = use_ldpath = 1; break;
1436 case ':': 2223 case ':':
1437 err("Option '%c' is missing parameter", optopt); 2224 err("Option '%c' is missing parameter", optopt);
1438 case '?': 2225 case '?':
1439 err("Unknown option '%c' or argument missing", optopt); 2226 err("Unknown option '%c' or argument missing", optopt);
1440 default: 2227 default:
1441 err("Unhandled option '%c'; please report this", i); 2228 err("Unhandled option '%c'; please report this", i);
1442 } 2229 }
1443 } 2230 }
1444 2231 if (show_textrels && be_verbose)
2232 has_objdump = bin_in_path("objdump");
2233 /* flatten arrays for display */
2234 if (array_cnt(find_lib_arr))
2235 find_lib = array_flatten_str(find_lib_arr);
2236 if (array_cnt(find_section_arr))
2237 find_section = array_flatten_str(find_section_arr);
1445 /* let the format option override all other options */ 2238 /* let the format option override all other options */
1446 if (out_format) { 2239 if (out_format) {
1447 show_pax = show_phdr = show_textrel = show_rpath = \ 2240 show_pax = show_phdr = show_textrel = show_rpath = \
1448 show_needed = show_interp = show_bind = show_soname = \ 2241 show_needed = show_interp = show_bind = show_soname = \
1449 show_textrels = 0; 2242 show_textrels = show_perms = show_endian = show_size = \
2243 show_osabi = show_eabi = 0;
1450 for (i = 0; out_format[i]; ++i) { 2244 for (i = 0; out_format[i]; ++i) {
1451 if (!IS_MODIFIER(out_format[i])) continue; 2245 if (!IS_MODIFIER(out_format[i])) continue;
1452 2246
1453 switch (out_format[++i]) { 2247 switch (out_format[++i]) {
2248 case '+': break;
1454 case '%': break; 2249 case '%': break;
1455 case '#': break; 2250 case '#': break;
1456 case 'F': break; 2251 case 'F': break;
1457 case 'p': break; 2252 case 'p': break;
1458 case 'f': break; 2253 case 'f': break;
2254 case 'k': break;
1459 case 's': break; 2255 case 's': break;
1460 case 'N': break; 2256 case 'N': break;
1461 case 'o': break; 2257 case 'o': break;
2258 case 'a': break;
2259 case 'M': break;
2260 case 'Z': show_size = 1; break;
2261 case 'D': show_endian = 1; break;
2262 case 'I': show_osabi = 1; break;
2263 case 'Y': show_eabi = 1; break;
2264 case 'O': show_perms = 1; break;
1462 case 'x': show_pax = 1; break; 2265 case 'x': show_pax = 1; break;
1463 case 'e': show_phdr = 1; break; 2266 case 'e': show_phdr = 1; break;
1464 case 't': show_textrel = 1; break; 2267 case 't': show_textrel = 1; break;
1465 case 'r': show_rpath = 1; break; 2268 case 'r': show_rpath = 1; break;
1466 case 'n': show_needed = 1; break; 2269 case 'n': show_needed = 1; break;
1467 case 'i': show_interp = 1; break; 2270 case 'i': show_interp = 1; break;
1468 case 'b': show_bind = 1; break; 2271 case 'b': show_bind = 1; break;
1469 case 'S': show_soname = 1; break; 2272 case 'S': show_soname = 1; break;
1470 case 'T': show_textrels = 1; break; 2273 case 'T': show_textrels = 1; break;
1471 default: 2274 default:
1472 err("Invalid format specifier '%c' (byte %i)", 2275 err("invalid format specifier '%c' (byte %i)",
1473 out_format[i], i+1); 2276 out_format[i], i+1);
1474 } 2277 }
1475 } 2278 }
1476 2279
1477 /* construct our default format */ 2280 /* construct our default format */
1478 } else { 2281 } else {
1479 size_t fmt_len = 30; 2282 size_t fmt_len = 30;
1480 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2283 out_format = xmalloc(sizeof(char) * fmt_len);
2284 *out_format = '\0';
1481 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2285 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1482 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2286 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
2287 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2288 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
2289 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
2290 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2291 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1483 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 2292 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1484 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2293 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1485 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2294 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1486 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2295 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1487 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2296 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1488 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len); 2297 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
1489 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len); 2298 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
1490 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len); 2299 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
1491 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 2300 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
2301 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
1492 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len); 2302 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
1493 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2303 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1494 } 2304 }
1495 if (be_verbose > 2) printf("Format: %s\n", out_format); 2305 if (be_verbose > 2) printf("Format: %s\n", out_format);
1496 2306
1497 /* now lets actually do the scanning */ 2307 /* now lets actually do the scanning */
1498 if (scan_ldpath || use_ldcache) 2308 if (load_cache_config)
1499 load_ld_so_conf(); 2309 load_ld_cache_config(__PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1500 if (scan_ldpath) scanelf_ldpath(); 2310 if (scan_ldpath) scanelf_ldpath();
1501 if (scan_envpath) scanelf_envpath(); 2311 if (scan_envpath) scanelf_envpath();
2312 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
2313 from_file = "-";
1502 if (from_file) { 2314 if (from_file) {
1503 scanelf_from_file(from_file); 2315 scanelf_from_file(from_file);
1504 from_file = *argv; 2316 from_file = *argv;
1505 } 2317 }
1506 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 2318 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1507 err("Nothing to scan !?"); 2319 err("Nothing to scan !?");
1508 while (optind < argc) { 2320 while (optind < argc) {
1509 search_path = argv[optind++]; 2321 search_path = argv[optind++];
1510 scanelf_dir(search_path); 2322 ret = scanelf_dir(search_path);
1511 } 2323 }
1512 2324
1513 /* clean up */ 2325 /* clean up */
1514 if (versioned_symname) free(versioned_symname);
1515 for (i = 0; ldpaths[i]; ++i)
1516 free(ldpaths[i]); 2326 xarrayfree(ldpaths);
2327 xarrayfree(find_lib_arr);
2328 xarrayfree(find_section_arr);
2329 free(find_lib);
2330 free(find_section);
1517 2331
1518 if (ldcache != 0) 2332 if (ldcache != 0)
1519 munmap(ldcache, ldcache_size); 2333 munmap(ldcache, ldcache_size);
1520}
1521
1522
1523
1524/* utility funcs */
1525static char *xstrdup(const char *s)
1526{
1527 char *ret = strdup(s);
1528 if (!ret) err("Could not strdup(): %s", strerror(errno));
1529 return ret; 2334 return ret;
1530} 2335}
1531static void *xmalloc(size_t size)
1532{
1533 void *ret = malloc(size);
1534 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
1535 return ret;
1536}
1537static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
1538{
1539 size_t new_len;
1540 2336
1541 new_len = strlen(*dst) + strlen(src); 2337static char **get_split_env(const char *envvar)
1542 if (*curr_len <= new_len) {
1543 *curr_len = new_len + (*curr_len / 2);
1544 *dst = realloc(*dst, *curr_len);
1545 if (!*dst)
1546 err("could not realloc() %li bytes", (unsigned long)*curr_len);
1547 }
1548
1549 if (n)
1550 strncat(*dst, src, n);
1551 else
1552 strcat(*dst, src);
1553}
1554static inline void xchrcat(char **dst, const char append, size_t *curr_len)
1555{ 2338{
1556 static char my_app[2]; 2339 const char *delims = " \t\n";
1557 my_app[0] = append; 2340 char **envvals = NULL;
1558 my_app[1] = '\0'; 2341 char *env, *s;
1559 xstrcat(dst, my_app, curr_len); 2342 int nentry;
1560}
1561 2343
2344 if ((env = getenv(envvar)) == NULL)
2345 return NULL;
1562 2346
2347 env = xstrdup(env);
2348 if (env == NULL)
2349 return NULL;
2350
2351 s = strtok(env, delims);
2352 if (s == NULL) {
2353 free(env);
2354 return NULL;
2355 }
2356
2357 nentry = 0;
2358 while (s != NULL) {
2359 ++nentry;
2360 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
2361 envvals[nentry-1] = s;
2362 s = strtok(NULL, delims);
2363 }
2364 envvals[nentry] = NULL;
2365
2366 /* don't want to free(env) as it contains the memory that backs
2367 * the envvals array of strings */
2368 return envvals;
2369}
2370
2371static void parseenv(void)
2372{
2373 color_init(false);
2374 qa_textrels = get_split_env("QA_TEXTRELS");
2375 qa_execstack = get_split_env("QA_EXECSTACK");
2376 qa_wx_load = get_split_env("QA_WX_LOAD");
2377}
2378
2379#ifdef __PAX_UTILS_CLEANUP
2380static void cleanup(void)
2381{
2382 free(out_format);
2383 free(qa_textrels);
2384 free(qa_execstack);
2385 free(qa_wx_load);
2386}
2387#endif
1563 2388
1564int main(int argc, char *argv[]) 2389int main(int argc, char *argv[])
1565{ 2390{
2391 int ret;
1566 if (argc < 2) 2392 if (argc < 2)
1567 usage(EXIT_FAILURE); 2393 usage(EXIT_FAILURE);
2394 parseenv();
1568 parseargs(argc, argv); 2395 ret = parseargs(argc, argv);
1569 fclose(stdout); 2396 fclose(stdout);
1570#ifdef __BOUNDS_CHECKING_ON 2397#ifdef __PAX_UTILS_CLEANUP
1571 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2398 cleanup();
2399 warn("The calls to add/delete heap should be off:\n"
2400 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2401 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1572#endif 2402#endif
1573 return EXIT_SUCCESS; 2403 return ret;
1574} 2404}
2405
2406/* Match filename against entries in matchlist, return TRUE
2407 * if the file is listed */
2408static int file_matches_list(const char *filename, char **matchlist)
2409{
2410 char **file;
2411 char *match;
2412 char buf[__PAX_UTILS_PATH_MAX];
2413
2414 if (matchlist == NULL)
2415 return 0;
2416
2417 for (file = matchlist; *file != NULL; file++) {
2418 if (search_path) {
2419 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2420 match = buf;
2421 } else {
2422 match = *file;
2423 }
2424 if (fnmatch(match, filename, 0) == 0)
2425 return 1;
2426 }
2427 return 0;
2428}

Legend:
Removed from v.1.119  
changed lines
  Added in v.1.246

  ViewVC Help
Powered by ViewVC 1.1.20