/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.119 Revision 1.273
1/* 1/*
2 * Copyright 2003-2006 Gentoo Foundation 2 * Copyright 2003-2012 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.119 2006/02/05 02:25:58 solar Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.273 2015/02/22 01:38:28 vapier Exp $
5 * 5 *
6 * Copyright 2003-2006 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2012 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2006 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2012 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10static const char rcsid[] = "$Id: scanelf.c,v 1.273 2015/02/22 01:38:28 vapier Exp $";
11const char argv0[] = "scanelf";
12
10#include "paxinc.h" 13#include "paxinc.h"
11 14
12static const char *rcsid = "$Id: scanelf.c,v 1.119 2006/02/05 02:25:58 solar Exp $";
13#define argv0 "scanelf"
14
15#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
16
17
18 16
19/* prototypes */ 17/* prototypes */
20static int scanelf_elfobj(elfobj *elf); 18static int file_matches_list(const char *filename, char **matchlist);
21static int scanelf_elf(const char *filename, int fd, size_t len);
22static int scanelf_archive(const char *filename, int fd, size_t len);
23static void scanelf_file(const char *filename);
24static void scanelf_dir(const char *path);
25static void scanelf_ldpath(void);
26static void scanelf_envpath(void);
27static void usage(int status);
28static void parseargs(int argc, char *argv[]);
29static char *xstrdup(const char *s);
30static void *xmalloc(size_t size);
31static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
32#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
33static inline void xchrcat(char **dst, const char append, size_t *curr_len);
34 19
35/* variables to control behavior */ 20/* variables to control behavior */
36static char match_etypes[126] = ""; 21static array_t _match_etypes = array_init_decl, *match_etypes = &_match_etypes;
37static char *ldpaths[256]; 22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
38static char scan_ldpath = 0; 23static char scan_ldpath = 0;
39static char scan_envpath = 0; 24static char scan_envpath = 0;
40static char scan_symlink = 1; 25static char scan_symlink = 1;
41static char scan_archives = 0; 26static char scan_archives = 0;
42static char dir_recurse = 0; 27static char dir_recurse = 0;
43static char dir_crossmount = 1; 28static char dir_crossmount = 1;
44static char show_pax = 0; 29static char show_pax = 0;
30static char show_perms = 0;
31static char show_size = 0;
45static char show_phdr = 0; 32static char show_phdr = 0;
46static char show_textrel = 0; 33static char show_textrel = 0;
47static char show_rpath = 0; 34static char show_rpath = 0;
48static char show_needed = 0; 35static char show_needed = 0;
49static char show_interp = 0; 36static char show_interp = 0;
50static char show_bind = 0; 37static char show_bind = 0;
51static char show_soname = 0; 38static char show_soname = 0;
52static char show_textrels = 0; 39static char show_textrels = 0;
53static char show_banner = 1; 40static char show_banner = 1;
41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
54static char be_quiet = 0; 44static char be_quiet = 0;
55static char be_verbose = 0; 45static char be_verbose = 0;
56static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
57static char *find_sym = NULL, *versioned_symname = NULL; 47static char be_semi_verbose = 0;
48static char *find_sym = NULL;
49static array_t _find_sym_arr = array_init_decl, *find_sym_arr = &_find_sym_arr;
50static array_t _find_sym_regex_arr = array_init_decl, *find_sym_regex_arr = &_find_sym_regex_arr;
58static char *find_lib = NULL; 51static char *find_lib = NULL;
52static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
53static char *find_section = NULL;
54static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
59static char *out_format = NULL; 55static char *out_format = NULL;
60static char *search_path = NULL; 56static char *search_path = NULL;
61static char fix_elf = 0; 57static char fix_elf = 0;
62static char gmatch = 0; 58static char g_match = 0;
63static char use_ldcache = 0; 59static char use_ldcache = 0;
60static char use_ldpath = 0;
64 61
62static char **qa_textrels = NULL;
63static char **qa_execstack = NULL;
64static char **qa_wx_load = NULL;
65static int root_fd = AT_FDCWD;
65 66
66caddr_t ldcache = 0; 67static int match_bits = 0;
68static unsigned int match_perms = 0;
69static void *ldcache = NULL;
67size_t ldcache_size = 0; 70static size_t ldcache_size = 0;
71static unsigned long setpax = 0UL;
68 72
73static const char *objdump;
74
75/* Find the path to a file by name. Note: we do not currently handle the
76 * empty path element correctly (should behave by searching $PWD). */
77static const char *which(const char *fname, const char *envvar)
78{
79 size_t path_len, fname_len;
80 const char *env_path;
81 char *path, *p, *ep;
82
83 p = getenv(envvar);
84 if (p)
85 return p;
86
87 env_path = getenv("PATH");
88 if (!env_path)
89 return NULL;
90
91 /* Create a copy of the $PATH that we can safely modify.
92 * Make it a little bigger so we can append "/fname".
93 * We do this twice -- once for a perm copy, and once for
94 * room at the end of the last element. */
95 path_len = strlen(env_path);
96 fname_len = strlen(fname);
97 path = xmalloc(path_len + (fname_len * 2) + 2 + 2);
98 memcpy(path, env_path, path_len + 1);
99
100 p = path + path_len + 1 + fname_len + 1;
101 *p = '/';
102 memcpy(p + 1, fname, fname_len + 1);
103
104 /* Repoint fname to the copy in the env string as it has
105 * the leading slash which we can include in a single memcpy.
106 * Increase the fname len to include the '/' and '\0'. */
107 fname = p;
108 fname_len += 2;
109
110 p = path;
111 while (p) {
112 ep = strchr(p, ':');
113 /* Append the /foo path to the current element. */
114 if (ep)
115 memcpy(ep, fname, fname_len);
116 else
117 memcpy(path + path_len, fname, fname_len);
118
119 if (access(p, R_OK) != -1)
120 return p;
121
122 p = ep;
123 if (ep) {
124 /* If not the last element, restore the chunk we clobbered. */
125 size_t offset = ep - path;
126 size_t restore = min(path_len - offset, fname_len);
127 memcpy(ep, env_path + offset, restore);
128 ++p;
129 }
130 }
131
132 free(path);
133 return NULL;
134}
135
136static FILE *fopenat_r(int dir_fd, const char *path)
137{
138 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
139 if (fd == -1)
140 return NULL;
141 return fdopen(fd, "re");
142}
143
144static const char *root_rel_path(const char *path)
145{
146 /*
147 * openat() will ignore the dirfd if path starts with
148 * a /, so consume all of that noise
149 *
150 * XXX: we don't handle relative paths like ../ that
151 * break out of the --root option, but for now, just
152 * don't do that :P.
153 */
154 if (root_fd != AT_FDCWD) {
155 while (*path == '/')
156 ++path;
157 if (*path == '\0')
158 path = ".";
159 }
160
161 return path;
162}
163
69/* sub-funcs for scanelf_file() */ 164/* sub-funcs for scanelf_fileat() */
70static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 165static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
71{ 166{
72 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 167 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
168
169 /* debug sections */
170 void *symtab = elf_findsecbyname(elf, ".symtab");
171 void *strtab = elf_findsecbyname(elf, ".strtab");
172 /* runtime sections */
173 void *dynsym = elf_findsecbyname(elf, ".dynsym");
174 void *dynstr = elf_findsecbyname(elf, ".dynstr");
175
176 /*
177 * If the sections are marked NOBITS, then they don't exist, so we just
178 * skip them. This let's us work sanely with splitdebug ELFs (rather
179 * than spewing a lot of "corrupt ELF" messages later on). In malformed
180 * ELFs, the section might be wrongly set to NOBITS, but screw em.
181 *
182 * We need to make sure the debug/runtime sym/str sets are used together
183 * as they are generated in sync. Trying to mix them won't work.
184 */
73#define GET_SYMTABS(B) \ 185#define GET_SYMTABS(B) \
74 if (elf->elf_class == ELFCLASS ## B) { \ 186 if (elf->elf_class == ELFCLASS ## B) { \
75 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \ 187 Elf ## B ## _Shdr *esymtab = symtab; \
76 /* debug sections */ \ 188 Elf ## B ## _Shdr *estrtab = strtab; \
77 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \ 189 Elf ## B ## _Shdr *edynsym = dynsym; \
78 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \ 190 Elf ## B ## _Shdr *edynstr = dynstr; \
79 /* runtime sections */ \ 191 \
80 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \ 192 if (symtab && EGET(esymtab->sh_type) == SHT_NOBITS) \
81 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \ 193 symtab = NULL; \
82 if (symtab && dynsym) { \ 194 if (dynsym && EGET(edynsym->sh_type) == SHT_NOBITS) \
83 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 195 dynsym = NULL; \
196 if (strtab && EGET(estrtab->sh_type) == SHT_NOBITS) \
197 strtab = NULL; \
198 if (dynstr && EGET(edynstr->sh_type) == SHT_NOBITS) \
199 dynstr = NULL; \
200 \
201 /* Use the set with more symbols if both exist. */ \
202 if (symtab && dynsym && strtab && dynstr) { \
203 if (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) \
204 goto debug##B; \
205 else \
206 goto runtime##B; \
207 } else if (symtab && strtab) { \
208 debug##B: \
209 *sym = symtab; \
210 *str = strtab; \
211 return; \
212 } else if (dynsym && dynstr) { \
213 runtime##B: \
214 *sym = dynsym; \
215 *str = dynstr; \
216 return; \
84 } else { \ 217 } else { \
85 *sym = (void*)(symtab ? symtab : dynsym); \ 218 *sym = *str = NULL; \
86 } \ 219 } \
87 if (strtab && dynstr) { \
88 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \
89 } else { \
90 *tab = (void*)(strtab ? strtab : dynstr); \
91 } \
92 } 220 }
93 GET_SYMTABS(32) 221 GET_SYMTABS(32)
94 GET_SYMTABS(64) 222 GET_SYMTABS(64)
223
224 if (*sym && *str)
225 return;
226
227 /*
228 * damn, they're really going to make us work for it huh?
229 * reconstruct the section header info out of the dynamic
230 * tags so we can see what symbols this guy uses at runtime.
231 */
232 if (!elf->phdr)
233 return;
234#define GET_SYMTABS_DT(B) \
235 if (elf->elf_class == ELFCLASS ## B) { \
236 size_t i; \
237 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
238 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
239 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
240 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
241 Elf ## B ## _Dyn *dyn; \
242 Elf ## B ## _Off offset; \
243 \
244 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
245 vsym = vstr = vhash = vgnu_hash = 0; \
246 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
247 memset(&str_shdr, 0, sizeof(str_shdr)); \
248 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
249 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
250 continue; \
251 \
252 offset = EGET(phdr[i].p_offset); \
253 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
254 continue; \
255 \
256 dyn = DYN ## B (elf->vdata + offset); \
257 while (EGET(dyn->d_tag) != DT_NULL) { \
258 switch (EGET(dyn->d_tag)) { \
259 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
260 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
261 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
262 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
263 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
264 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
265 } \
266 ++dyn; \
267 } \
268 if (vsym && vstr) \
269 break; \
270 } \
271 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
272 return; \
273 \
274 /* calc offset into the ELF by finding the load addr of the syms */ \
275 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
276 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
277 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
278 offset = EGET(phdr[i].p_offset); \
279 \
280 if (EGET(phdr[i].p_type) != PT_LOAD) \
281 continue; \
282 \
283 if (vhash >= vaddr && vhash < vaddr + filesz) { \
284 /* Scan the hash table to see how many entries we have */ \
285 Elf32_Word max_sym_idx = 0; \
286 Elf32_Word *hashtbl = elf->vdata + offset + (vhash - vaddr); \
287 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
288 Elf32_Word nchains = EGET(hashtbl[1]); \
289 Elf32_Word *buckets = &hashtbl[2]; \
290 Elf32_Word *chains = &buckets[nbuckets]; \
291 Elf32_Word sym_idx; \
292 \
293 for (b = 0; b < nbuckets; ++b) { \
294 if (!buckets[b]) \
295 continue; \
296 for (sym_idx = buckets[b]; sym_idx < nchains && sym_idx; sym_idx = chains[sym_idx]) \
297 if (max_sym_idx < sym_idx) \
298 max_sym_idx = sym_idx; \
299 } \
300 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
301 } \
302 \
303 if (vsym >= vaddr && vsym < vaddr + filesz) { \
304 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
305 *sym = &sym_shdr; \
306 } \
307 \
308 if (vstr >= vaddr && vstr < vaddr + filesz) { \
309 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
310 *str = &str_shdr; \
311 } \
312 } \
313 }
314 GET_SYMTABS_DT(32)
315 GET_SYMTABS_DT(64)
95} 316}
317
96static char *scanelf_file_pax(elfobj *elf, char *found_pax) 318static char *scanelf_file_pax(elfobj *elf, char *found_pax)
97{ 319{
98 static char ret[7]; 320 static char ret[7];
99 unsigned long i, shown; 321 unsigned long i, shown;
100 322
109 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 331 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
110 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 332 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
111 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 333 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
112 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \ 334 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
113 continue; \ 335 continue; \
114 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 336 if (fix_elf && setpax) { \
337 /* set the paxctl flags */ \
338 ESET(phdr[i].p_flags, setpax); \
339 } \
340 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
115 continue; \ 341 continue; \
116 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 342 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
117 *found_pax = 1; \ 343 *found_pax = 1; \
118 ++shown; \ 344 ++shown; \
119 break; \ 345 break; \
120 } \ 346 } \
121 } 347 }
122 SHOW_PAX(32) 348 SHOW_PAX(32)
123 SHOW_PAX(64) 349 SHOW_PAX(64)
124 } 350 }
351
352 /* Note: We do not support setting EI_PAX if not PT_PAX_FLAGS
353 * was found. This is known to break ELFs on glibc systems,
354 * and mainline PaX has deprecated use of this for a long time.
355 * We could support changing PT_GNU_STACK, but that doesn't
356 * seem like it's worth the effort. #411919
357 */
125 358
126 /* fall back to EI_PAX if no PT_PAX was found */ 359 /* fall back to EI_PAX if no PT_PAX was found */
127 if (!*ret) { 360 if (!*ret) {
128 static char *paxflags; 361 static char *paxflags;
129 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 362 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
143static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 376static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
144{ 377{
145 static char ret[12]; 378 static char ret[12];
146 char *found; 379 char *found;
147 unsigned long i, shown, multi_stack, multi_relro, multi_load; 380 unsigned long i, shown, multi_stack, multi_relro, multi_load;
148 int max_pt_load;
149 381
150 if (!show_phdr) return NULL; 382 if (!show_phdr) return NULL;
151 383
152 memcpy(ret, "--- --- ---\0", 12); 384 memcpy(ret, "--- --- ---\0", 12);
153 385
154 shown = 0; 386 shown = 0;
155 multi_stack = multi_relro = multi_load = 0; 387 multi_stack = multi_relro = multi_load = 0;
156 max_pt_load = elf_max_pt_load(elf);
157 388
158#define NOTE_GNU_STACK ".note.GNU-stack" 389#define NOTE_GNU_STACK ".note.GNU-stack"
159#define SHOW_PHDR(B) \ 390#define SHOW_PHDR(B) \
160 if (elf->elf_class == ELFCLASS ## B) { \ 391 if (elf->elf_class == ELFCLASS ## B) { \
161 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 392 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
163 uint32_t flags, check_flags; \ 394 uint32_t flags, check_flags; \
164 if (elf->phdr != NULL) { \ 395 if (elf->phdr != NULL) { \
165 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 396 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
166 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \ 397 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
167 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 398 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
399 if (multi_stack++) \
168 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 400 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
401 if (file_matches_list(elf->filename, qa_execstack)) \
402 continue; \
169 found = found_phdr; \ 403 found = found_phdr; \
170 offset = 0; \ 404 offset = 0; \
171 check_flags = PF_X; \ 405 check_flags = PF_X; \
172 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 406 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
407 if (multi_relro++) \
173 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 408 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
174 found = found_relro; \ 409 found = found_relro; \
175 offset = 4; \ 410 offset = 4; \
176 check_flags = PF_X; \ 411 check_flags = PF_X; \
177 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 412 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
178 if (ehdr->e_type == ET_DYN || ehdr->e_type == ET_EXEC) \ 413 if (file_matches_list(elf->filename, qa_wx_load)) \
179 if (multi_load++ > max_pt_load) warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \ 414 continue; \
180 found = found_load; \ 415 found = found_load; \
181 offset = 8; \ 416 offset = 8; \
182 check_flags = PF_W|PF_X; \ 417 check_flags = PF_W|PF_X; \
183 } else \ 418 } else \
184 continue; \ 419 continue; \
185 flags = EGET(phdr[i].p_flags); \ 420 flags = EGET(phdr[i].p_flags); \
186 if (be_quiet && ((flags & check_flags) != check_flags)) \ 421 if (be_quiet && ((flags & check_flags) != check_flags)) \
187 continue; \ 422 continue; \
188 if (fix_elf && ((flags & PF_X) != flags)) { \ 423 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
189 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \ 424 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
190 ret[3] = ret[7] = '!'; \ 425 ret[3] = ret[7] = '!'; \
191 flags = EGET(phdr[i].p_flags); \ 426 flags = EGET(phdr[i].p_flags); \
192 } \ 427 } \
193 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \ 428 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
196 } \ 431 } \
197 } else if (elf->shdr != NULL) { \ 432 } else if (elf->shdr != NULL) { \
198 /* no program headers which means this is prob an object file */ \ 433 /* no program headers which means this is prob an object file */ \
199 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 434 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
200 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 435 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
201 char *str; \
202 if ((void*)strtbl > (void*)elf->data_end) \ 436 if ((void*)strtbl > elf->data_end) \
203 goto skip_this_shdr##B; \ 437 goto skip_this_shdr##B; \
438 /* let's flag -w/+x object files since the final ELF will most likely \
439 * need write access to the stack (who doesn't !?). so the combined \
440 * output will bring in +w automatically and that's bad. \
441 */ \
204 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 442 check_flags = /*SHF_WRITE|*/SHF_EXECINSTR; \
205 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 443 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
206 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 444 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
207 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 445 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
208 str = elf->data + offset; \ 446 if (offset >= elf->len - sizeof(NOTE_GNU_STACK)) \
209 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \ 447 continue; \
210 if (!strcmp(str, NOTE_GNU_STACK)) { \ 448 if (!strcmp(elf->data + offset, NOTE_GNU_STACK)) { \
211 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \ 449 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \
212 flags = EGET(shdr[i].sh_flags); \ 450 flags = EGET(shdr[i].sh_flags); \
213 if (be_quiet && ((flags & check_flags) != check_flags)) \ 451 if (be_quiet && ((flags & check_flags) != check_flags)) \
214 continue; \ 452 continue; \
215 ++*found_phdr; \ 453 ++*found_phdr; \
221 break; \ 459 break; \
222 } \ 460 } \
223 } \ 461 } \
224 skip_this_shdr##B: \ 462 skip_this_shdr##B: \
225 if (!multi_stack) { \ 463 if (!multi_stack) { \
464 if (file_matches_list(elf->filename, qa_execstack)) \
465 return NULL; \
226 *found_phdr = 1; \ 466 *found_phdr = 1; \
227 shown = 1; \ 467 shown = 1; \
228 memcpy(ret, "!WX", 3); \ 468 memcpy(ret, "!WX", 3); \
229 } \ 469 } \
230 } \ 470 } \
235 if (be_wewy_wewy_quiet || (be_quiet && !shown)) 475 if (be_wewy_wewy_quiet || (be_quiet && !shown))
236 return NULL; 476 return NULL;
237 else 477 else
238 return ret; 478 return ret;
239} 479}
480
481/*
482 * See if this ELF contains a DT_TEXTREL tag in any of its
483 * PT_DYNAMIC sections.
484 */
240static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 485static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
241{ 486{
242 static const char *ret = "TEXTREL"; 487 static const char *ret = "TEXTREL";
243 unsigned long i; 488 unsigned long i;
244 489
245 if (!show_textrel && !show_textrels) return NULL; 490 if (!show_textrel && !show_textrels) return NULL;
491
492 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
246 493
247 if (elf->phdr) { 494 if (elf->phdr) {
248#define SHOW_TEXTREL(B) \ 495#define SHOW_TEXTREL(B) \
249 if (elf->elf_class == ELFCLASS ## B) { \ 496 if (elf->elf_class == ELFCLASS ## B) { \
250 Elf ## B ## _Dyn *dyn; \ 497 Elf ## B ## _Dyn *dyn; \
251 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 498 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
252 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 499 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
253 Elf ## B ## _Off offset; \ 500 Elf ## B ## _Off offset; \
254 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 501 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
255 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 502 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
256 offset = EGET(phdr[i].p_offset); \ 503 offset = EGET(phdr[i].p_offset); \
257 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 504 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
258 dyn = DYN ## B (elf->data + offset); \ 505 dyn = DYN ## B (elf->vdata + offset); \
259 while (EGET(dyn->d_tag) != DT_NULL) { \ 506 while (EGET(dyn->d_tag) != DT_NULL) { \
260 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 507 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
261 *found_textrel = 1; \ 508 *found_textrel = 1; \
262 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 509 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
263 return (be_wewy_wewy_quiet ? NULL : ret); \ 510 return (be_wewy_wewy_quiet ? NULL : ret); \
272 if (be_quiet || be_wewy_wewy_quiet) 519 if (be_quiet || be_wewy_wewy_quiet)
273 return NULL; 520 return NULL;
274 else 521 else
275 return " - "; 522 return " - ";
276} 523}
524
525/*
526 * Scan the .text section to see if there are any relocations in it.
527 * Should rewrite this to check PT_LOAD sections that are marked
528 * Executable rather than the section named '.text'.
529 */
277static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 530static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
278{ 531{
279 unsigned long s, r, rmax; 532 unsigned long s, r, rmax;
280 void *symtab_void, *strtab_void, *text_void; 533 void *symtab_void, *strtab_void, *text_void;
281 534
302 Elf ## B ## _Rela *rela; \ 555 Elf ## B ## _Rela *rela; \
303 /* search the section headers for relocations */ \ 556 /* search the section headers for relocations */ \
304 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 557 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
305 uint32_t sh_type = EGET(shdr[s].sh_type); \ 558 uint32_t sh_type = EGET(shdr[s].sh_type); \
306 if (sh_type == SHT_REL) { \ 559 if (sh_type == SHT_REL) { \
307 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 560 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
308 rela = NULL; \ 561 rela = NULL; \
309 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 562 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
310 } else if (sh_type == SHT_RELA) { \ 563 } else if (sh_type == SHT_RELA) { \
311 rel = NULL; \ 564 rel = NULL; \
312 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 565 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
313 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 566 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
314 } else \ 567 } else \
315 continue; \ 568 continue; \
316 /* now see if any of the relocs are in the .text */ \ 569 /* now see if any of the relocs are in the .text */ \
317 for (r = 0; r < rmax; ++r) { \ 570 for (r = 0; r < rmax; ++r) { \
332 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \ 585 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
333 if (be_verbose <= 2) continue; \ 586 if (be_verbose <= 2) continue; \
334 } else \ 587 } else \
335 *found_textrels = 1; \ 588 *found_textrels = 1; \
336 /* locate this relocation symbol name */ \ 589 /* locate this relocation symbol name */ \
337 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 590 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
338 if ((void*)sym > (void*)elf->data_end) { \ 591 if ((void*)sym > elf->data_end) { \
339 warn("%s: corrupt ELF symbol", elf->filename); \ 592 warn("%s: corrupt ELF symbol", elf->filename); \
340 continue; \ 593 continue; \
341 } \ 594 } \
342 sym_max = ELF ## B ## _R_SYM(r_info); \ 595 sym_max = ELF ## B ## _R_SYM(r_info); \
343 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 596 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
346 sym = NULL; \ 599 sym = NULL; \
347 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 600 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
348 /* show the raw details about this reloc */ \ 601 /* show the raw details about this reloc */ \
349 printf(" %s: ", elf->base_filename); \ 602 printf(" %s: ", elf->base_filename); \
350 if (sym && sym->st_name) \ 603 if (sym && sym->st_name) \
351 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 604 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
352 else \ 605 else \
353 printf("(memory/fake?)"); \ 606 printf("(memory/data?)"); \
354 printf(" [0x%lX]", (unsigned long)r_offset); \ 607 printf(" [0x%lX]", (unsigned long)r_offset); \
355 /* now try to find the closest symbol that this rel is probably in */ \ 608 /* now try to find the closest symbol that this rel is probably in */ \
356 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 609 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
357 func = NULL; \ 610 func = NULL; \
358 offset_tmp = 0; \ 611 offset_tmp = 0; \
359 while (sym_max--) { \ 612 while (sym_max--) { \
360 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \ 613 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
361 func = sym; \ 614 func = sym; \
362 offset_tmp = EGET(sym->st_value); \ 615 offset_tmp = EGET(sym->st_value); \
363 } \ 616 } \
364 ++sym; \ 617 ++sym; \
365 } \ 618 } \
366 printf(" in "); \ 619 printf(" in "); \
367 if (func && func->st_name) \ 620 if (func && func->st_name) { \
368 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 621 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
622 if (r_offset > EGET(func->st_size)) \
623 printf("(optimized out: previous %s)", func_name); \
369 else \ 624 else \
370 printf("(NULL: fake?)"); \ 625 printf("%s", func_name); \
626 } else \
627 printf("(optimized out)"); \
371 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 628 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
629 if (be_verbose && objdump) { \
630 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
631 char *sysbuf; \
632 size_t syslen; \
633 const char sysfmt[] = "%s -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
634 syslen = sizeof(sysfmt) + strlen(objdump) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
635 sysbuf = xmalloc(syslen); \
636 if (end_addr < r_offset) \
637 /* not uncommon when things are optimized out */ \
638 end_addr = r_offset + 0x100; \
639 snprintf(sysbuf, syslen, sysfmt, \
640 objdump, \
641 (unsigned long)offset_tmp, \
642 (unsigned long)end_addr, \
643 elf->filename, \
644 (unsigned long)r_offset); \
645 fflush(stdout); \
646 if (system(sysbuf)) {/* don't care */} \
647 fflush(stdout); \
648 free(sysbuf); \
649 } \
372 } \ 650 } \
373 } } 651 } }
374 SHOW_TEXTRELS(32) 652 SHOW_TEXTRELS(32)
375 SHOW_TEXTRELS(64) 653 SHOW_TEXTRELS(64)
376 } 654 }
378 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 656 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
379 657
380 return NULL; 658 return NULL;
381} 659}
382 660
383static void rpath_security_checks(elfobj *, char *, const char *);
384static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type) 661static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
385{ 662{
386 struct stat st; 663 struct stat st;
387 switch (*item) { 664 switch (*item) {
388 case '/': break; 665 case '/': break;
394 warnf("Security problem NULL %s in %s", dt_type, elf->filename); 671 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
395 break; 672 break;
396 case '$': 673 case '$':
397 if (fstat(elf->fd, &st) != -1) 674 if (fstat(elf->fd, &st) != -1)
398 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 675 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
399 warnf("Security problem with %s='%s' in %s with mode set of %o", 676 warnf("Security problem with %s='%s' in %s with mode set of %o",
400 dt_type, item, elf->filename, st.st_mode & 07777); 677 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
401 break; 678 break;
402 default: 679 default:
403 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename); 680 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
404 break; 681 break;
405 } 682 }
683 if (fix_elf)
684 warnf("Note: RPATH has been automatically fixed, but this should be fixed in the package itself");
406} 685}
407static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 686static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
408{ 687{
409 unsigned long i, s; 688 unsigned long i;
410 char *rpath, *runpath, **r; 689 char *rpath, *runpath, **r;
411 void *strtbl_void; 690 void *strtbl_void;
412 691
413 if (!show_rpath) return; 692 if (!show_rpath) return;
414 693
425 Elf ## B ## _Off offset; \ 704 Elf ## B ## _Off offset; \
426 Elf ## B ## _Xword word; \ 705 Elf ## B ## _Xword word; \
427 /* Scan all the program headers */ \ 706 /* Scan all the program headers */ \
428 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 707 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
429 /* Just scan dynamic headers */ \ 708 /* Just scan dynamic headers */ \
430 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 709 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
431 offset = EGET(phdr[i].p_offset); \ 710 offset = EGET(phdr[i].p_offset); \
432 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 711 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
433 /* Just scan dynamic RPATH/RUNPATH headers */ \ 712 /* Just scan dynamic RPATH/RUNPATH headers */ \
434 dyn = DYN ## B (elf->data + offset); \ 713 dyn = DYN ## B (elf->vdata + offset); \
435 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 714 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
436 if (word == DT_RPATH) { \ 715 if (word == DT_RPATH) { \
437 r = &rpath; \ 716 r = &rpath; \
438 } else if (word == DT_RUNPATH) { \ 717 } else if (word == DT_RUNPATH) { \
439 r = &runpath; \ 718 r = &runpath; \
443 } \ 722 } \
444 /* Verify the memory is somewhat sane */ \ 723 /* Verify the memory is somewhat sane */ \
445 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 724 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
446 if (offset < (Elf ## B ## _Off)elf->len) { \ 725 if (offset < (Elf ## B ## _Off)elf->len) { \
447 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 726 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
448 *r = (char*)(elf->data + offset); \ 727 *r = elf->data + offset; \
449 /* cache the length in case we need to nuke this section later on */ \ 728 /* cache the length in case we need to nuke this section later on */ \
450 if (fix_elf) \ 729 if (fix_elf) \
451 offset = strlen(*r); \ 730 offset = strlen(*r); \
452 /* If quiet, don't output paths in ld.so.conf */ \ 731 /* If quiet, don't output paths in ld.so.conf */ \
453 if (be_quiet) { \ 732 if (be_quiet) { \
459 /* scan each path in : delimited list */ \ 738 /* scan each path in : delimited list */ \
460 while (start) { \ 739 while (start) { \
461 rpath_security_checks(elf, start, get_elfdtype(word)); \ 740 rpath_security_checks(elf, start, get_elfdtype(word)); \
462 end = strchr(start, ':'); \ 741 end = strchr(start, ':'); \
463 len = (end ? abs(end - start) : strlen(start)); \ 742 len = (end ? abs(end - start) : strlen(start)); \
464 if (use_ldcache) \ 743 if (use_ldcache) { \
465 for (s = 0; ldpaths[s]; ++s) \ 744 size_t n; \
745 const char *ldpath; \
746 array_for_each(ldpaths, n, ldpath) \
466 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 747 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
467 *r = end; \ 748 *r = end; \
468 /* corner case ... if RPATH reads "/usr/lib:", we want \ 749 /* corner case ... if RPATH reads "/usr/lib:", we want \
469 * to show ':' rather than '' */ \ 750 * to show ':' rather than '' */ \
470 if (end && end[1] != '\0') \ 751 if (end && end[1] != '\0') \
471 (*r)++; \ 752 (*r)++; \
472 break; \ 753 break; \
473 } \ 754 } \
755 } \
474 if (!*r || !end) \ 756 if (!*r || !end) \
475 break; \ 757 break; \
476 else \ 758 else \
477 start = start + len + 1; \ 759 start = start + len + 1; \
478 } \ 760 } \
544 xstrcat(ret, (runpath ? runpath : rpath), ret_len); 826 xstrcat(ret, (runpath ? runpath : rpath), ret_len);
545 else if (!be_quiet) 827 else if (!be_quiet)
546 xstrcat(ret, " - ", ret_len); 828 xstrcat(ret, " - ", ret_len);
547} 829}
548 830
831/* Defines can be seen in glibc's sysdeps/generic/ldconfig.h */
549#define LDSO_CACHE_MAGIC "ld.so-" 832#define LDSO_CACHE_MAGIC "ld.so-"
550#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1) 833#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
551#define LDSO_CACHE_VER "1.7.0" 834#define LDSO_CACHE_VER "1.7.0"
552#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1) 835#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
553#define FLAG_ANY -1 836#define FLAG_ANY -1
562#define FLAG_X8664_LIB64 0x0300 845#define FLAG_X8664_LIB64 0x0300
563#define FLAG_S390_LIB64 0x0400 846#define FLAG_S390_LIB64 0x0400
564#define FLAG_POWERPC_LIB64 0x0500 847#define FLAG_POWERPC_LIB64 0x0500
565#define FLAG_MIPS64_LIBN32 0x0600 848#define FLAG_MIPS64_LIBN32 0x0600
566#define FLAG_MIPS64_LIBN64 0x0700 849#define FLAG_MIPS64_LIBN64 0x0700
850#define FLAG_X8664_LIBX32 0x0800
851#define FLAG_ARM_LIBHF 0x0900
852#define FLAG_AARCH64_LIB64 0x0a00
567 853
568static char *lookup_cache_lib(elfobj *, char *); 854#if defined(__GLIBC__) || defined(__UCLIBC__)
855
569static char *lookup_cache_lib(elfobj *elf, char *fname) 856static char *lookup_cache_lib(elfobj *elf, const char *fname)
570{ 857{
571 int fd = 0; 858 int fd;
572 char *strs; 859 char *strs;
573 static char buf[__PAX_UTILS_PATH_MAX] = ""; 860 static char buf[__PAX_UTILS_PATH_MAX] = "";
574 const char *cachefile = "/etc/ld.so.cache"; 861 const char *cachefile = root_rel_path("/etc/ld.so.cache");
575 struct stat st; 862 struct stat st;
576 863
577 typedef struct { 864 typedef struct {
578 char magic[LDSO_CACHE_MAGIC_LEN]; 865 char magic[LDSO_CACHE_MAGIC_LEN];
579 char version[LDSO_CACHE_VER_LEN]; 866 char version[LDSO_CACHE_VER_LEN];
589 libentry_t *libent; 876 libentry_t *libent;
590 877
591 if (fname == NULL) 878 if (fname == NULL)
592 return NULL; 879 return NULL;
593 880
594 if (ldcache == 0) { 881 if (ldcache == NULL) {
595 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1) 882 if (fstatat(root_fd, cachefile, &st, 0))
883 return NULL;
884
885 fd = openat(root_fd, cachefile, O_RDONLY);
886 if (fd == -1)
596 return NULL; 887 return NULL;
597 888
598 /* cache these values so we only map/unmap the cache file once */ 889 /* cache these values so we only map/unmap the cache file once */
599 ldcache_size = st.st_size; 890 ldcache_size = st.st_size;
600 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0); 891 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
601
602 close(fd); 892 close(fd);
603 893
604 if (ldcache == (caddr_t)-1) { 894 if (ldcache == MAP_FAILED) {
605 ldcache = 0; 895 ldcache = NULL;
606 return NULL; 896 return NULL;
607 } 897 }
608 898
609 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 899 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
900 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
901 {
902 munmap(ldcache, ldcache_size);
903 ldcache = NULL;
610 return NULL; 904 return NULL;
611 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
612 return NULL;
613 } 905 }
906 } else
907 header = ldcache;
614 908
615 header = (header_t *) ldcache;
616 libent = (libentry_t *) (ldcache + sizeof(header_t)); 909 libent = ldcache + sizeof(header_t);
617 strs = (char *) &libent[header->nlibs]; 910 strs = (char *) &libent[header->nlibs];
618 911
619 for (fd = 0; fd < header->nlibs; fd++) { 912 for (fd = 0; fd < header->nlibs; ++fd) {
620 /* this should be more fine grained, but for now we assume that 913 /* This should be more fine grained, but for now we assume that
621 * diff arches will not be cached together. and we ignore the 914 * diff arches will not be cached together, and we ignore the
622 * the different multilib mips cases. */ 915 * the different multilib mips cases.
916 */
623 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK)) 917 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
624 continue; 918 continue;
625 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK)) 919 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
626 continue; 920 continue;
627 921
628 if (strcmp(fname, strs + libent[fd].sooffset) != 0) 922 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
629 continue; 923 continue;
924
925 /* Return first hit because that is how the ldso rolls */
630 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 926 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
927 break;
631 } 928 }
929
632 return buf; 930 return buf;
633} 931}
634 932
933#elif defined(__NetBSD__)
934static char *lookup_cache_lib(elfobj *elf, const char *fname)
935{
936 static char buf[__PAX_UTILS_PATH_MAX] = "";
937 static struct stat st;
938 size_t n;
939 char *ldpath;
940
941 array_for_each(ldpath, n, ldpath) {
942 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
943 continue; /* if the pathname is too long, or something went wrong, ignore */
944
945 if (stat(buf, &st) != 0)
946 continue; /* if the lib doesn't exist in *ldpath, look further */
947
948 /* NetBSD doesn't actually do sanity checks, it just loads the file
949 * and if that doesn't work, continues looking in other directories.
950 * This cannot easily be safely emulated, unfortunately. For now,
951 * just assume that if it exists, it's a valid library. */
952
953 return buf;
954 }
955
956 /* not found in any path */
957 return NULL;
958}
959#else
960#ifdef __ELF__
961#warning Cache support not implemented for your target
962#endif
963static char *lookup_cache_lib(elfobj *elf, const char *fname)
964{
965 return NULL;
966}
967#endif
968
969static char *lookup_config_lib(const char *fname)
970{
971 static char buf[__PAX_UTILS_PATH_MAX] = "";
972 const char *ldpath;
973 size_t n;
974
975 array_for_each(ldpaths, n, ldpath) {
976 snprintf(buf, sizeof(buf), "%s/%s", root_rel_path(ldpath), fname);
977 if (faccessat(root_fd, buf, F_OK, AT_SYMLINK_NOFOLLOW) == 0)
978 return buf;
979 }
980
981 return NULL;
982}
635 983
636static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 984static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
637{ 985{
638 unsigned long i; 986 unsigned long i;
639 char *needed; 987 char *needed;
640 void *strtbl_void; 988 void *strtbl_void;
641 char *p; 989 char *p;
642 990
991 /*
992 * -n -> op==0 -> print all
993 * -N -> op==1 -> print requested
994 */
643 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 995 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
996 return NULL;
644 997
645 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 998 strtbl_void = elf_findsecbyname(elf, ".dynstr");
646 999
647 if (elf->phdr && strtbl_void) { 1000 if (elf->phdr && strtbl_void) {
648#define SHOW_NEEDED(B) \ 1001#define SHOW_NEEDED(B) \
650 Elf ## B ## _Dyn *dyn; \ 1003 Elf ## B ## _Dyn *dyn; \
651 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1004 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
652 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1005 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
653 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1006 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
654 Elf ## B ## _Off offset; \ 1007 Elf ## B ## _Off offset; \
1008 size_t matched = 0; \
1009 /* Walk all the program headers to find the PT_DYNAMIC */ \
655 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1010 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
656 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1011 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
1012 continue; \
657 offset = EGET(phdr[i].p_offset); \ 1013 offset = EGET(phdr[i].p_offset); \
658 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1014 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
1015 continue; \
1016 /* Walk all the dynamic tags to find NEEDED entries */ \
659 dyn = DYN ## B (elf->data + offset); \ 1017 dyn = DYN ## B (elf->vdata + offset); \
660 while (EGET(dyn->d_tag) != DT_NULL) { \ 1018 while (EGET(dyn->d_tag) != DT_NULL) { \
661 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 1019 if (EGET(dyn->d_tag) == DT_NEEDED) { \
662 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1020 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
663 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1021 if (offset >= (Elf ## B ## _Off)elf->len) { \
664 ++dyn; \ 1022 ++dyn; \
665 continue; \ 1023 continue; \
666 } \ 1024 } \
667 needed = (char*)(elf->data + offset); \ 1025 needed = elf->data + offset; \
668 if (op == 0) { \ 1026 if (op == 0) { \
1027 /* -n -> print all entries */ \
669 if (!be_wewy_wewy_quiet) { \ 1028 if (!be_wewy_wewy_quiet) { \
670 if (*found_needed) xchrcat(ret, ',', ret_len); \ 1029 if (*found_needed) xchrcat(ret, ',', ret_len); \
671 if (use_ldcache) \ 1030 if (use_ldpath) { \
1031 if ((p = lookup_config_lib(needed)) != NULL) \
1032 needed = p; \
1033 } else if (use_ldcache) { \
672 if ((p = lookup_cache_lib(elf, needed)) != NULL) \ 1034 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
673 needed = p; \ 1035 needed = p; \
1036 } \
674 xstrcat(ret, needed, ret_len); \ 1037 xstrcat(ret, needed, ret_len); \
675 } \ 1038 } \
676 *found_needed = 1; \ 1039 *found_needed = 1; \
677 } else { \ 1040 } else { \
678 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 1041 /* -N -> print matching entries */ \
1042 size_t n; \
1043 const char *find_lib_name; \
1044 \
1045 array_for_each(find_lib_arr, n, find_lib_name) { \
1046 int invert = 1; \
1047 if (find_lib_name[0] == '!') \
1048 invert = 0, ++find_lib_name; \
1049 if (!strcmp(find_lib_name, needed) == invert) \
1050 ++matched; \
1051 } \
1052 \
1053 if (matched == array_cnt(find_lib_arr)) { \
679 *found_lib = 1; \ 1054 *found_lib = 1; \
680 return (be_wewy_wewy_quiet ? NULL : needed); \ 1055 return (be_wewy_wewy_quiet ? NULL : find_lib); \
681 } \ 1056 } \
682 } \ 1057 } \
683 } \ 1058 } \
684 ++dyn; \ 1059 ++dyn; \
685 } \ 1060 } \
707 *found_interp = 1; \ 1082 *found_interp = 1; \
708 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \ 1083 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \
709 } 1084 }
710 SHOW_INTERP(32) 1085 SHOW_INTERP(32)
711 SHOW_INTERP(64) 1086 SHOW_INTERP(64)
1087 } else if (elf->phdr) {
1088 /* Walk all the program headers to find the PT_INTERP */
1089#define SHOW_PT_INTERP(B) \
1090 if (elf->elf_class == ELFCLASS ## B) { \
1091 unsigned long i; \
1092 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
1093 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
1094 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
1095 if (EGET(phdr[i].p_type) != PT_INTERP) \
1096 continue; \
1097 *found_interp = 1; \
1098 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(phdr[i].p_offset)); \
1099 } \
712 } 1100 }
1101 SHOW_PT_INTERP(32)
1102 SHOW_PT_INTERP(64)
1103 }
1104
713 return NULL; 1105 return NULL;
714} 1106}
715static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1107static const char *scanelf_file_bind(elfobj *elf, char *found_bind)
716{ 1108{
717 unsigned long i; 1109 unsigned long i;
718 struct stat s; 1110 struct stat s;
1111 bool dynamic = false;
719 1112
720 if (!show_bind) return NULL; 1113 if (!show_bind) return NULL;
721 if (!elf->phdr) return NULL; 1114 if (!elf->phdr) return NULL;
722 1115
723#define SHOW_BIND(B) \ 1116#define SHOW_BIND(B) \
725 Elf ## B ## _Dyn *dyn; \ 1118 Elf ## B ## _Dyn *dyn; \
726 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1119 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
727 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1120 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
728 Elf ## B ## _Off offset; \ 1121 Elf ## B ## _Off offset; \
729 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1122 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
730 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1123 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
1124 dynamic = true; \
731 offset = EGET(phdr[i].p_offset); \ 1125 offset = EGET(phdr[i].p_offset); \
732 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1126 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
733 dyn = DYN ## B (elf->data + offset); \ 1127 dyn = DYN ## B (elf->vdata + offset); \
734 while (EGET(dyn->d_tag) != DT_NULL) { \ 1128 while (EGET(dyn->d_tag) != DT_NULL) { \
735 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1129 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
736 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 1130 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
737 { \ 1131 { \
738 if (be_quiet) return NULL; \ 1132 if (be_quiet) return NULL; \
746 SHOW_BIND(32) 1140 SHOW_BIND(32)
747 SHOW_BIND(64) 1141 SHOW_BIND(64)
748 1142
749 if (be_wewy_wewy_quiet) return NULL; 1143 if (be_wewy_wewy_quiet) return NULL;
750 1144
1145 /* don't output anything if quiet mode and the ELF is static or not setuid */
751 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 1146 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
752 return NULL; 1147 return NULL;
753 } else { 1148 } else {
754 *found_bind = 1; 1149 *found_bind = 1;
755 return (char *) "LAZY"; 1150 return dynamic ? "LAZY" : "STATIC";
756 } 1151 }
757} 1152}
758static char *scanelf_file_soname(elfobj *elf, char *found_soname) 1153static char *scanelf_file_soname(elfobj *elf, char *found_soname)
759{ 1154{
760 unsigned long i; 1155 unsigned long i;
772 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1167 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
773 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1168 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
774 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1169 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
775 Elf ## B ## _Off offset; \ 1170 Elf ## B ## _Off offset; \
776 /* only look for soname in shared objects */ \ 1171 /* only look for soname in shared objects */ \
777 if (ehdr->e_type != ET_DYN) \ 1172 if (EGET(ehdr->e_type) != ET_DYN) \
778 return NULL; \ 1173 return NULL; \
779 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1174 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
780 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1175 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
781 offset = EGET(phdr[i].p_offset); \ 1176 offset = EGET(phdr[i].p_offset); \
782 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1177 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
783 dyn = DYN ## B (elf->data + offset); \ 1178 dyn = DYN ## B (elf->vdata + offset); \
784 while (EGET(dyn->d_tag) != DT_NULL) { \ 1179 while (EGET(dyn->d_tag) != DT_NULL) { \
785 if (EGET(dyn->d_tag) == DT_SONAME) { \ 1180 if (EGET(dyn->d_tag) == DT_SONAME) { \
786 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1181 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
787 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1182 if (offset >= (Elf ## B ## _Off)elf->len) { \
788 ++dyn; \ 1183 ++dyn; \
789 continue; \ 1184 continue; \
790 } \ 1185 } \
791 soname = (char*)(elf->data + offset); \ 1186 soname = elf->data + offset; \
792 *found_soname = 1; \ 1187 *found_soname = 1; \
793 return (be_wewy_wewy_quiet ? NULL : soname); \ 1188 return (be_wewy_wewy_quiet ? NULL : soname); \
794 } \ 1189 } \
795 ++dyn; \ 1190 ++dyn; \
796 } \ 1191 } \
799 SHOW_SONAME(64) 1194 SHOW_SONAME(64)
800 } 1195 }
801 1196
802 return NULL; 1197 return NULL;
803} 1198}
1199
1200/*
1201 * We support the symbol form:
1202 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
1203 * If the symbol name is empty, then all symbols are matched.
1204 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1205 * Do not rely on this output format at all.
1206 * Otherwise the symbol name is used to search (either regex or string compare).
1207 * If the first char of the symbol name is a plus ("+"), then only match
1208 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1209 * Putting modifiers in between the percent signs allows for more in depth
1210 * filters. There are groups of modifiers. If you don't specify a member
1211 * of a group, then all types in that group are matched. The current
1212 * groups and their types are:
1213 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1214 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1215 * STV group: STV_DEFAULT:p STV_INTERNAL:i STV_HIDDEN:h STV_PROTECTED:P
1216 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1217 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1218 * You can search for multiple symbols at once by seperating with a comma (",").
1219 *
1220 * Some examples:
1221 * ELFs with a weak function "foo":
1222 * scanelf -s %wf%foo <ELFs>
1223 * ELFs that define the symbol "main":
1224 * scanelf -s +main <ELFs>
1225 * scanelf -s %d%main <ELFs>
1226 * ELFs that refer to the undefined symbol "brk":
1227 * scanelf -s -brk <ELFs>
1228 * scanelf -s %u%brk <ELFs>
1229 * All global defined objects in an ELF:
1230 * scanelf -s %ogd% <ELF>
1231 */
1232static void
1233scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1234 unsigned int stt, unsigned int stb, unsigned int stv, unsigned int shn, unsigned long size)
1235{
1236 const char *this_sym;
1237 size_t n;
1238
1239 array_for_each(find_sym_arr, n, this_sym) {
1240 bool inc_notype, inc_object, inc_func, inc_file,
1241 inc_local, inc_global, inc_weak,
1242 inc_visdef, inc_intern, inc_hidden, inc_prot,
1243 inc_def, inc_undef, inc_abs, inc_common;
1244
1245 /* symbol selection! */
1246 inc_notype = inc_object = inc_func = inc_file =
1247 inc_local = inc_global = inc_weak =
1248 inc_visdef = inc_intern = inc_hidden = inc_prot =
1249 inc_def = inc_undef = inc_abs = inc_common =
1250 (*this_sym != '%');
1251
1252 /* parse the contents of %...% */
1253 if (!inc_notype) {
1254 while (*(this_sym++)) {
1255 if (*this_sym == '%') {
1256 ++this_sym;
1257 break;
1258 }
1259 switch (*this_sym) {
1260 case 'n': inc_notype = true; break;
1261 case 'o': inc_object = true; break;
1262 case 'f': inc_func = true; break;
1263 case 'F': inc_file = true; break;
1264 case 'l': inc_local = true; break;
1265 case 'g': inc_global = true; break;
1266 case 'w': inc_weak = true; break;
1267 case 'p': inc_visdef = true; break;
1268 case 'i': inc_intern = true; break;
1269 case 'h': inc_hidden = true; break;
1270 case 'P': inc_prot = true; break;
1271 case 'd': inc_def = true; break;
1272 case 'u': inc_undef = true; break;
1273 case 'a': inc_abs = true; break;
1274 case 'c': inc_common = true; break;
1275 default: err("invalid symbol selector '%c'", *this_sym);
1276 }
1277 }
1278
1279 /* If no types are matched, not match all */
1280 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1281 inc_notype = inc_object = inc_func = inc_file = true;
1282 if (!inc_local && !inc_global && !inc_weak)
1283 inc_local = inc_global = inc_weak = true;
1284 if (!inc_visdef && !inc_intern && !inc_hidden && !inc_prot)
1285 inc_visdef = inc_intern = inc_hidden = inc_prot = true;
1286 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1287 inc_def = inc_undef = inc_abs = inc_common = true;
1288
1289 /* backwards compat for defined/undefined short hand */
1290 } else if (*this_sym == '+') {
1291 inc_undef = false;
1292 ++this_sym;
1293 } else if (*this_sym == '-') {
1294 inc_def = inc_abs = inc_common = false;
1295 ++this_sym;
1296 }
1297
1298 /* filter symbols */
1299 if ((!inc_notype && stt == STT_NOTYPE ) || \
1300 (!inc_object && stt == STT_OBJECT ) || \
1301 (!inc_func && stt == STT_FUNC ) || \
1302 (!inc_file && stt == STT_FILE ) || \
1303 (!inc_local && stb == STB_LOCAL ) || \
1304 (!inc_global && stb == STB_GLOBAL ) || \
1305 (!inc_weak && stb == STB_WEAK ) || \
1306 (!inc_visdef && stv == STV_DEFAULT ) || \
1307 (!inc_intern && stv == STV_INTERNAL ) || \
1308 (!inc_hidden && stv == STV_HIDDEN ) || \
1309 (!inc_prot && stv == STV_PROTECTED) || \
1310 (!inc_def && shn && shn < SHN_LORESERVE) || \
1311 (!inc_undef && shn == SHN_UNDEF ) || \
1312 (!inc_abs && shn == SHN_ABS ) || \
1313 (!inc_common && shn == SHN_COMMON ))
1314 continue;
1315
1316 if (*this_sym == '*') {
1317 /* a "*" symbol gets you debug output */
1318 printf("%s(%s) %5lX %-15s %-15s %-15s %-15s %s\n",
1319 ((*found_sym == 0) ? "\n\t" : "\t"),
1320 elf->base_filename,
1321 size,
1322 get_elfstttype(stt),
1323 get_elfstbtype(stb),
1324 get_elfstvtype(stv),
1325 get_elfshntype(shn),
1326 symname);
1327 goto matched;
1328
1329 } else {
1330 if (g_match) {
1331 /* regex match the symbol */
1332 if (regexec(find_sym_regex_arr->eles[n], symname, 0, NULL, 0) == REG_NOMATCH)
1333 continue;
1334
1335 } else if (*this_sym) {
1336 /* give empty symbols a "pass", else do a normal compare */
1337 const size_t len = strlen(this_sym);
1338 if (!(strncmp(this_sym, symname, len) == 0 &&
1339 /* Accept unversioned symbol names */
1340 (symname[len] == '\0' || symname[len] == '@')))
1341 continue;
1342 }
1343
1344 if (be_semi_verbose) {
1345 char buf[1024];
1346 snprintf(buf, sizeof(buf), "%lX %s %s",
1347 size,
1348 get_elfstttype(stt),
1349 this_sym);
1350 *ret = xstrdup(buf);
1351 } else {
1352 if (*ret) xchrcat(ret, ',', ret_len);
1353 xstrcat(ret, symname, ret_len);
1354 }
1355
1356 goto matched;
1357 }
1358 }
1359
1360 return;
1361
1362 matched:
1363 *found_sym = 1;
1364}
1365
804static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1366static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
805{ 1367{
806 unsigned long i;
807 char *ret; 1368 char *ret;
808 void *symtab_void, *strtab_void; 1369 void *symtab_void, *strtab_void;
809 1370
810 if (!find_sym) return NULL; 1371 if (!find_sym) return NULL;
811 ret = find_sym; 1372 ret = NULL;
812 1373
813 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1374 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
814 1375
815 if (symtab_void && strtab_void) { 1376 if (symtab_void && strtab_void) {
816#define FIND_SYM(B) \ 1377#define FIND_SYM(B) \
817 if (elf->elf_class == ELFCLASS ## B) { \ 1378 if (elf->elf_class == ELFCLASS ## B) { \
818 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1379 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
819 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1380 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
820 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1381 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
821 unsigned long cnt = EGET(symtab->sh_entsize); \ 1382 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
822 char *symname; \ 1383 char *symname; \
1384 size_t ret_len = 0; \
823 if (cnt) \ 1385 if (cnt) \
824 cnt = EGET(symtab->sh_size) / cnt; \ 1386 cnt = EGET(symtab->sh_size) / cnt; \
825 for (i = 0; i < cnt; ++i) { \ 1387 for (i = 0; i < cnt; ++i) { \
1388 if ((void*)sym > elf->data_end) { \
1389 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1390 goto break_out; \
1391 } \
826 if (sym->st_name) { \ 1392 if (sym->st_name) { \
1393 /* make sure the symbol name is in acceptable memory range */ \
827 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1394 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
828 if ((void*)symname > (void*)elf->data_end) { \ 1395 if ((void*)symname > elf->data_end) { \
829 warnf("%s: corrupt ELF symbols", elf->filename); \ 1396 warnf("%s: corrupt ELF symbols", elf->filename); \
1397 ++sym; \
830 continue; \ 1398 continue; \
831 } \ 1399 } \
832 if (*find_sym == '*') { \ 1400 scanelf_match_symname(elf, found_sym, \
833 printf("%s(%s) %5lX %15s %s\n", \ 1401 &ret, &ret_len, symname, \
834 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1402 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
835 elf->base_filename, \ 1403 ELF##B##_ST_BIND(EGET(sym->st_info)), \
836 (unsigned long)sym->st_size, \ 1404 ELF##B##_ST_VISIBILITY(EGET(sym->st_other)), \
837 get_elfstttype(sym->st_info), \ 1405 EGET(sym->st_shndx), \
838 symname); \ 1406 /* st_size can be 64bit, but no one is really that big, so screw em */ \
839 *found_sym = 1; \ 1407 EGET(sym->st_size)); \
840 } else { \
841 char *this_sym, *next_sym; \
842 this_sym = find_sym; \
843 do { \
844 next_sym = strchr(this_sym, ','); \
845 if (next_sym == NULL) \
846 next_sym = this_sym + strlen(this_sym); \
847 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \
848 (strcmp(symname, versioned_symname) == 0)) { \
849 ret = this_sym; \
850 (*found_sym)++; \
851 goto break_out; \
852 } \
853 this_sym = next_sym + 1; \
854 } while (*next_sym != '\0'); \
855 } \
856 } \ 1408 } \
857 ++sym; \ 1409 ++sym; \
858 } } 1410 } \
1411 }
859 FIND_SYM(32) 1412 FIND_SYM(32)
860 FIND_SYM(64) 1413 FIND_SYM(64)
861 } 1414 }
862 1415
863break_out: 1416break_out:
866 if (*find_sym != '*' && *found_sym) 1419 if (*find_sym != '*' && *found_sym)
867 return ret; 1420 return ret;
868 if (be_quiet) 1421 if (be_quiet)
869 return NULL; 1422 return NULL;
870 else 1423 else
871 return (char *)" - "; 1424 return " - ";
872} 1425}
873 1426
1427static const char *scanelf_file_sections(elfobj *elf, char *found_section)
1428{
1429 if (!find_section)
1430 return NULL;
1431
1432#define FIND_SECTION(B) \
1433 if (elf->elf_class == ELFCLASS ## B) { \
1434 size_t matched, n; \
1435 int invert; \
1436 const char *section_name; \
1437 Elf ## B ## _Shdr *section; \
1438 \
1439 matched = 0; \
1440 array_for_each(find_section_arr, n, section_name) { \
1441 invert = (*section_name == '!' ? 1 : 0); \
1442 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
1443 if ((section == NULL && invert) || (section != NULL && !invert)) \
1444 ++matched; \
1445 } \
1446 \
1447 if (matched == array_cnt(find_section_arr)) \
1448 *found_section = 1; \
1449 }
1450 FIND_SECTION(32)
1451 FIND_SECTION(64)
1452
1453 if (be_wewy_wewy_quiet)
1454 return NULL;
1455
1456 if (*found_section)
1457 return find_section;
1458
1459 if (be_quiet)
1460 return NULL;
1461 else
1462 return " - ";
1463}
874 1464
875/* scan an elf file and show all the fun stuff */ 1465/* scan an elf file and show all the fun stuff */
876#define prints(str) write(fileno(stdout), str, strlen(str)) 1466#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
877static int scanelf_elfobj(elfobj *elf) 1467static int scanelf_elfobj(elfobj *elf)
878{ 1468{
879 unsigned long i; 1469 unsigned long i;
880 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1470 char found_pax, found_phdr, found_relro, found_load, found_textrel,
881 found_rpath, found_needed, found_interp, found_bind, found_soname, 1471 found_rpath, found_needed, found_interp, found_bind, found_soname,
882 found_sym, found_lib, found_file, found_textrels; 1472 found_sym, found_lib, found_file, found_textrels, found_section;
883 static char *out_buffer = NULL; 1473 static char *out_buffer = NULL;
884 static size_t out_len; 1474 static size_t out_len;
885 1475
886 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1476 found_pax = found_phdr = found_relro = found_load = found_textrel = \
887 found_rpath = found_needed = found_interp = found_bind = found_soname = \ 1477 found_rpath = found_needed = found_interp = found_bind = found_soname = \
888 found_sym = found_lib = found_file = found_textrels = 0; 1478 found_sym = found_lib = found_file = found_textrels = found_section = 0;
889 1479
890 if (be_verbose > 2) 1480 if (be_verbose > 2)
891 printf("%s: scanning file {%s,%s}\n", elf->filename, 1481 printf("%s: scanning file {%s,%s}\n", elf->filename,
892 get_elfeitype(EI_CLASS, elf->elf_class), 1482 get_elfeitype(EI_CLASS, elf->elf_class),
893 get_elfeitype(EI_DATA, elf->data[EI_DATA])); 1483 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
895 printf("%s: scanning file\n", elf->filename); 1485 printf("%s: scanning file\n", elf->filename);
896 1486
897 /* init output buffer */ 1487 /* init output buffer */
898 if (!out_buffer) { 1488 if (!out_buffer) {
899 out_len = sizeof(char) * 80; 1489 out_len = sizeof(char) * 80;
900 out_buffer = (char*)xmalloc(out_len); 1490 out_buffer = xmalloc(out_len);
901 } 1491 }
902 *out_buffer = '\0'; 1492 *out_buffer = '\0';
903 1493
904 /* show the header */ 1494 /* show the header */
905 if (!be_quiet && show_banner) { 1495 if (!be_quiet && show_banner) {
906 for (i = 0; out_format[i]; ++i) { 1496 for (i = 0; out_format[i]; ++i) {
907 if (!IS_MODIFIER(out_format[i])) continue; 1497 if (!IS_MODIFIER(out_format[i])) continue;
908 1498
909 switch (out_format[++i]) { 1499 switch (out_format[++i]) {
1500 case '+': break;
910 case '%': break; 1501 case '%': break;
911 case '#': break; 1502 case '#': break;
912 case 'F': 1503 case 'F':
913 case 'p': 1504 case 'p':
914 case 'f': prints("FILE "); found_file = 1; break; 1505 case 'f': prints("FILE "); found_file = 1; break;
915 case 'o': prints(" TYPE "); break; 1506 case 'o': prints(" TYPE "); break;
916 case 'x': prints(" PAX "); break; 1507 case 'x': prints(" PAX "); break;
917 case 'e': prints("STK/REL/PTL "); break; 1508 case 'e': prints("STK/REL/PTL "); break;
918 case 't': prints("TEXTREL "); break; 1509 case 't': prints("TEXTREL "); break;
919 case 'r': prints("RPATH "); break; 1510 case 'r': prints("RPATH "); break;
1511 case 'M': prints("CLASS "); break;
1512 case 'l':
920 case 'n': prints("NEEDED "); break; 1513 case 'n': prints("NEEDED "); break;
921 case 'i': prints("INTERP "); break; 1514 case 'i': prints("INTERP "); break;
922 case 'b': prints("BIND "); break; 1515 case 'b': prints("BIND "); break;
1516 case 'Z': prints("SIZE "); break;
923 case 'S': prints("SONAME "); break; 1517 case 'S': prints("SONAME "); break;
924 case 's': prints("SYM "); break; 1518 case 's': prints("SYM "); break;
925 case 'N': prints("LIB "); break; 1519 case 'N': prints("LIB "); break;
926 case 'T': prints("TEXTRELS "); break; 1520 case 'T': prints("TEXTRELS "); break;
1521 case 'k': prints("SECTION "); break;
1522 case 'a': prints("ARCH "); break;
1523 case 'I': prints("OSABI "); break;
1524 case 'Y': prints("EABI "); break;
1525 case 'O': prints("PERM "); break;
1526 case 'D': prints("ENDIAN "); break;
927 default: warnf("'%c' has no title ?", out_format[i]); 1527 default: warnf("'%c' has no title ?", out_format[i]);
928 } 1528 }
929 } 1529 }
930 if (!found_file) prints("FILE "); 1530 if (!found_file) prints("FILE ");
931 prints("\n"); 1531 prints("\n");
935 1535
936 /* dump all the good stuff */ 1536 /* dump all the good stuff */
937 for (i = 0; out_format[i]; ++i) { 1537 for (i = 0; out_format[i]; ++i) {
938 const char *out; 1538 const char *out;
939 const char *tmp; 1539 const char *tmp;
940 1540 static char ubuf[sizeof(unsigned long)*2];
941 /* make sure we trim leading spaces in quiet mode */
942 if (be_quiet && *out_buffer == ' ' && !out_buffer[1])
943 *out_buffer = '\0';
944
945 if (!IS_MODIFIER(out_format[i])) { 1541 if (!IS_MODIFIER(out_format[i])) {
946 xchrcat(&out_buffer, out_format[i], &out_len); 1542 xchrcat(&out_buffer, out_format[i], &out_len);
947 continue; 1543 continue;
948 } 1544 }
949 1545
950 out = NULL; 1546 out = NULL;
951 be_wewy_wewy_quiet = (out_format[i] == '#'); 1547 be_wewy_wewy_quiet = (out_format[i] == '#');
1548 be_semi_verbose = (out_format[i] == '+');
952 switch (out_format[++i]) { 1549 switch (out_format[++i]) {
1550 case '+':
953 case '%': 1551 case '%':
954 case '#': 1552 case '#':
955 xchrcat(&out_buffer, out_format[i], &out_len); break; 1553 xchrcat(&out_buffer, out_format[i], &out_len); break;
956 case 'F': 1554 case 'F':
957 found_file = 1; 1555 found_file = 1;
983 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1581 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
984 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1582 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
985 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1583 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
986 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1584 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
987 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1585 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1586 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1587 case 'D': out = get_endian(elf); break;
1588 case 'O': out = strfileperms(elf->filename); break;
988 case 'n': 1589 case 'n':
989 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1590 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
990 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1591 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
991 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1592 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
992 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1593 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
993 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1594 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1595 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1596 case 'a': out = get_elfemtype(elf); break;
1597 case 'I': out = get_elfosabi(elf); break;
1598 case 'Y': out = get_elf_eabi(elf); break;
1599 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
994 default: warnf("'%c' has no scan code?", out_format[i]); 1600 default: warnf("'%c' has no scan code?", out_format[i]);
995 } 1601 }
996 if (out) { 1602 if (out)
997 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
998 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
999 xstrncat(&out_buffer, out, &out_len, (tmp-out));
1000 else
1001 xstrcat(&out_buffer, out, &out_len); 1603 xstrcat(&out_buffer, out, &out_len);
1002 }
1003 } 1604 }
1004 1605
1005#define FOUND_SOMETHING() \ 1606#define FOUND_SOMETHING() \
1006 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1607 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
1007 found_rpath || found_needed || found_interp || found_bind || \ 1608 found_rpath || found_needed || found_interp || found_bind || \
1008 found_soname || found_sym || found_lib || found_textrels) 1609 found_soname || found_sym || found_lib || found_textrels || found_section )
1009 1610
1010 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) { 1611 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
1011 xchrcat(&out_buffer, ' ', &out_len); 1612 xchrcat(&out_buffer, ' ', &out_len);
1012 xstrcat(&out_buffer, elf->filename, &out_len); 1613 xstrcat(&out_buffer, elf->filename, &out_len);
1013 } 1614 }
1020} 1621}
1021 1622
1022/* scan a single elf */ 1623/* scan a single elf */
1023static int scanelf_elf(const char *filename, int fd, size_t len) 1624static int scanelf_elf(const char *filename, int fd, size_t len)
1024{ 1625{
1025 int ret; 1626 int ret = 1;
1627 size_t n;
1628 const char *match_etype;
1026 elfobj *elf; 1629 elfobj *elf;
1027 1630
1028 /* verify this is real ELF */ 1631 /* Verify this is a real ELF */
1029 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) { 1632 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1030 if (be_verbose > 2) printf("%s: not an ELF\n", filename); 1633 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1031 return 1; 1634 return 2;
1032 }
1033
1034 if (strlen(match_etypes)) {
1035 char sbuf[126];
1036 strncpy(sbuf, match_etypes, sizeof(sbuf));
1037 if (strchr(match_etypes, ',') != NULL) {
1038 char *p;
1039 while((p = strrchr(sbuf, ',')) != NULL) {
1040 *p = 0;
1041 if (atoi(p+1) == get_etype(elf))
1042 goto label_ret;
1043 }
1044 } 1635 }
1045 if (atoi(sbuf) != get_etype(elf)) { 1636
1046 ret = 1; 1637 /* Possibly filter based on ELF bitness */
1638 switch (match_bits) {
1639 case 32:
1640 if (elf->elf_class != ELFCLASS32)
1047 goto label_done; 1641 goto done;
1642 break;
1643 case 64:
1644 if (elf->elf_class != ELFCLASS64)
1645 goto done;
1646 break;
1048 } 1647 }
1049 }
1050 1648
1051label_ret: 1649 /* Possibly filter based on the ELF's e_type field */
1650 array_for_each(match_etypes, n, match_etype)
1651 if (etype_lookup(match_etype) == get_etype(elf))
1652 goto scanit;
1653 if (array_cnt(match_etypes))
1654 goto done;
1655
1656 scanit:
1052 ret = scanelf_elfobj(elf); 1657 ret = scanelf_elfobj(elf);
1053 1658
1054label_done: 1659 done:
1055 unreadelf(elf); 1660 unreadelf(elf);
1056 return ret; 1661 return ret;
1057} 1662}
1058 1663
1059/* scan an archive of elfs */ 1664/* scan an archive of elfs */
1066 1671
1067 ar = ar_open_fd(filename, fd); 1672 ar = ar_open_fd(filename, fd);
1068 if (ar == NULL) 1673 if (ar == NULL)
1069 return 1; 1674 return 1;
1070 1675
1071 ar_buffer = (char*)mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0); 1676 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1072 while ((m=ar_next(ar)) != NULL) { 1677 while ((m = ar_next(ar)) != NULL) {
1678 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1679 if (cur_pos == -1)
1680 errp("lseek() failed");
1073 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size); 1681 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1074 if (elf) { 1682 if (elf) {
1075 scanelf_elfobj(elf); 1683 scanelf_elfobj(elf);
1076 unreadelf(elf); 1684 unreadelf(elf);
1077 } 1685 }
1078 } 1686 }
1079 munmap(ar_buffer, len); 1687 munmap(ar_buffer, len);
1080 1688
1081 return 0; 1689 return 0;
1082} 1690}
1083/* scan a file which may be an elf or an archive or some other magical beast */ 1691/* scan a file which may be an elf or an archive or some other magical beast */
1084static void scanelf_file(const char *filename) 1692static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1085{ 1693{
1694 const struct stat *st = st_cache;
1086 struct stat st; 1695 struct stat symlink_st;
1087 int fd; 1696 int fd;
1088 1697
1089 /* make sure 'filename' exists */
1090 if (lstat(filename, &st) == -1) {
1091 if (be_verbose > 2) printf("%s: does not exist\n", filename);
1092 return;
1093 }
1094
1095 /* always handle regular files and handle symlinked files if no -y */ 1698 /* always handle regular files and handle symlinked files if no -y */
1096 if (S_ISLNK(st.st_mode)) { 1699 if (S_ISLNK(st->st_mode)) {
1097 if (!scan_symlink) return; 1700 if (!scan_symlink)
1098 stat(filename, &st); 1701 return 1;
1702 fstatat(dir_fd, filename, &symlink_st, 0);
1703 st = &symlink_st;
1099 } 1704 }
1705
1100 if (!S_ISREG(st.st_mode)) { 1706 if (!S_ISREG(st->st_mode)) {
1101 if (be_verbose > 2) printf("%s: skipping non-file\n", filename); 1707 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1102 return; 1708 return 1;
1103 } 1709 }
1104 1710
1105 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1) 1711 if (match_perms) {
1712 if ((st->st_mode | match_perms) != st->st_mode)
1713 return 1;
1714 }
1715 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1716 if (fd == -1) {
1717 if (fix_elf && errno == ETXTBSY)
1718 warnp("%s: could not fix", filename);
1719 else if (be_verbose > 2)
1720 printf("%s: skipping file: %s\n", filename, strerror(errno));
1106 return; 1721 return 1;
1722 }
1107 1723
1108 if (scanelf_elf(filename, fd, st.st_size) == 1 && scan_archives) 1724 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1109 /* if it isn't an ELF, maybe it's an .a archive */ 1725 /* if it isn't an ELF, maybe it's an .a archive */
1726 if (scan_archives)
1110 scanelf_archive(filename, fd, st.st_size); 1727 scanelf_archive(filename, fd, st->st_size);
1111 1728
1729 /*
1730 * unreadelf() implicitly closes its fd, so only close it
1731 * when we are returning it in the non-ELF case
1732 */
1112 close(fd); 1733 close(fd);
1734 }
1735
1736 return 0;
1113} 1737}
1114 1738
1115/* scan a directory for ET_EXEC files and print when we find one */ 1739/* scan a directory for ET_EXEC files and print when we find one */
1116static void scanelf_dir(const char *path) 1740static int scanelf_dirat(int dir_fd, const char *path)
1117{ 1741{
1118 register DIR *dir; 1742 register DIR *dir;
1119 register struct dirent *dentry; 1743 register struct dirent *dentry;
1120 struct stat st_top, st; 1744 struct stat st_top, st;
1121 char buf[__PAX_UTILS_PATH_MAX]; 1745 char buf[__PAX_UTILS_PATH_MAX], *subpath;
1122 size_t pathlen = 0, len = 0; 1746 size_t pathlen = 0, len = 0;
1747 int ret = 0;
1748 int subdir_fd;
1123 1749
1124 /* make sure path exists */ 1750 /* make sure path exists */
1125 if (lstat(path, &st_top) == -1) { 1751 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
1126 if (be_verbose > 2) printf("%s: does not exist\n", path); 1752 if (be_verbose > 2) printf("%s: does not exist\n", path);
1127 return; 1753 return 1;
1128 } 1754 }
1129 1755
1130 /* ok, if it isn't a directory, assume we can open it */ 1756 /* ok, if it isn't a directory, assume we can open it */
1131 if (!S_ISDIR(st_top.st_mode)) { 1757 if (!S_ISDIR(st_top.st_mode))
1132 scanelf_file(path); 1758 return scanelf_fileat(dir_fd, path, &st_top);
1133 return;
1134 }
1135 1759
1136 /* now scan the dir looking for fun stuff */ 1760 /* now scan the dir looking for fun stuff */
1137 if ((dir = opendir(path)) == NULL) { 1761 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
1138 warnf("could not opendir %s: %s", path, strerror(errno)); 1762 if (subdir_fd == -1)
1763 dir = NULL;
1764 else
1765 dir = fdopendir(subdir_fd);
1766 if (dir == NULL) {
1767 if (subdir_fd != -1)
1768 close(subdir_fd);
1769 else if (be_verbose > 2)
1770 printf("%s: skipping dir: %s\n", path, strerror(errno));
1139 return; 1771 return 1;
1140 } 1772 }
1141 if (be_verbose > 1) printf("%s: scanning dir\n", path); 1773 if (be_verbose > 1) printf("%s: scanning dir\n", path);
1142 1774
1143 pathlen = strlen(path); 1775 subpath = stpcpy(buf, path);
1776 if (subpath[-1] != '/')
1777 *subpath++ = '/';
1778 pathlen = subpath - buf;
1144 while ((dentry = readdir(dir))) { 1779 while ((dentry = readdir(dir))) {
1145 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1780 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
1146 continue; 1781 continue;
1782
1783 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
1784 continue;
1785
1147 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1786 len = strlen(dentry->d_name);
1148 if (len >= sizeof(buf)) { 1787 if (len + pathlen + 1 >= sizeof(buf)) {
1149 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1788 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
1150 (unsigned long)len, (unsigned long)sizeof(buf)); 1789 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
1151 continue; 1790 continue;
1152 } 1791 }
1153 sprintf(buf, "%s/%s", path, dentry->d_name); 1792 memcpy(subpath, dentry->d_name, len);
1154 if (lstat(buf, &st) != -1) { 1793 subpath[len] = '\0';
1794
1155 if (S_ISREG(st.st_mode)) 1795 if (S_ISREG(st.st_mode))
1156 scanelf_file(buf); 1796 ret = scanelf_fileat(dir_fd, buf, &st);
1157 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1797 else if (dir_recurse && S_ISDIR(st.st_mode)) {
1158 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1798 if (dir_crossmount || (st_top.st_dev == st.st_dev))
1159 scanelf_dir(buf); 1799 ret = scanelf_dirat(dir_fd, buf);
1160 }
1161 } 1800 }
1162 } 1801 }
1163 closedir(dir); 1802 closedir(dir);
1164}
1165 1803
1804 return ret;
1805}
1806static int scanelf_dir(const char *path)
1807{
1808 return scanelf_dirat(root_fd, root_rel_path(path));
1809}
1810
1166static int scanelf_from_file(char *filename) 1811static int scanelf_from_file(const char *filename)
1167{ 1812{
1168 FILE *fp = NULL; 1813 FILE *fp;
1169 char *p; 1814 char *p, *path;
1170 char path[__PAX_UTILS_PATH_MAX]; 1815 size_t len;
1816 int ret;
1171 1817
1172 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1818 if (strcmp(filename, "-") == 0)
1173 fp = stdin; 1819 fp = stdin;
1174 else if ((fp = fopen(filename, "r")) == NULL) 1820 else if ((fp = fopen(filename, "r")) == NULL)
1175 return 1; 1821 return 1;
1176 1822
1177 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1823 path = NULL;
1824 len = 0;
1825 ret = 0;
1826 while (getline(&path, &len, fp) != -1) {
1178 if ((p = strchr(path, '\n')) != NULL) 1827 if ((p = strchr(path, '\n')) != NULL)
1179 *p = 0; 1828 *p = 0;
1180 search_path = path; 1829 search_path = path;
1181 scanelf_dir(path); 1830 ret = scanelf_dir(path);
1182 } 1831 }
1832 free(path);
1833
1183 if (fp != stdin) 1834 if (fp != stdin)
1184 fclose(fp); 1835 fclose(fp);
1836
1185 return 0; 1837 return ret;
1186} 1838}
1187 1839
1188static void load_ld_so_conf() 1840#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1841
1842static int _load_ld_cache_config(const char *fname)
1189{ 1843{
1190 FILE *fp = NULL; 1844 FILE *fp = NULL;
1191 char *p; 1845 char *p, *path;
1192 char path[__PAX_UTILS_PATH_MAX]; 1846 size_t len;
1193 int i = 0; 1847 int curr_fd = -1;
1194 1848
1195 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1849 fp = fopenat_r(root_fd, root_rel_path(fname));
1850 if (fp == NULL)
1196 return; 1851 return -1;
1197 1852
1198 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1853 path = NULL;
1199 if (*path != '/') 1854 len = 0;
1200 continue; 1855 while (getline(&path, &len, fp) != -1) {
1201
1202 if ((p = strrchr(path, '\r')) != NULL) 1856 if ((p = strrchr(path, '\r')) != NULL)
1203 *p = 0; 1857 *p = 0;
1204 if ((p = strchr(path, '\n')) != NULL) 1858 if ((p = strchr(path, '\n')) != NULL)
1205 *p = 0; 1859 *p = 0;
1206 1860
1207 ldpaths[i++] = xstrdup(path); 1861 /* recursive includes of the same file will make this segfault. */
1862 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1863 glob_t gl;
1864 size_t x;
1865 const char *gpath;
1208 1866
1209 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1867 /* re-use existing path buffer ... need to be creative */
1210 break; 1868 if (path[8] != '/')
1869 gpath = memcpy(path + 3, "/etc/", 5);
1870 else
1871 gpath = path + 8;
1872 if (root_fd != AT_FDCWD) {
1873 if (curr_fd == -1) {
1874 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1875 if (fchdir(root_fd))
1876 errp("unable to change to root dir");
1877 }
1878 gpath = root_rel_path(gpath);
1879 }
1880
1881 if (glob(gpath, 0, NULL, &gl) == 0) {
1882 for (x = 0; x < gl.gl_pathc; ++x) {
1883 /* try to avoid direct loops */
1884 if (strcmp(gl.gl_pathv[x], fname) == 0)
1885 continue;
1886 _load_ld_cache_config(gl.gl_pathv[x]);
1887 }
1888 globfree(&gl);
1889 }
1890
1891 /* failed globs are ignored by glibc */
1892 continue;
1211 } 1893 }
1212 ldpaths[i] = NULL; 1894
1895 if (*path != '/')
1896 continue;
1897
1898 xarraypush_str(ldpaths, path);
1899 }
1900 free(path);
1213 1901
1214 fclose(fp); 1902 fclose(fp);
1903
1904 if (curr_fd != -1) {
1905 if (fchdir(curr_fd))
1906 {/* don't care */}
1907 close(curr_fd);
1908 }
1909
1910 return 0;
1911}
1912
1913#elif defined(__FreeBSD__) || defined(__DragonFly__)
1914
1915static int _load_ld_cache_config(const char *fname)
1916{
1917 FILE *fp = NULL;
1918 char *b = NULL, *p;
1919 struct elfhints_hdr hdr;
1920
1921 fp = fopenat_r(root_fd, root_rel_path(fname));
1922 if (fp == NULL)
1923 return -1;
1924
1925 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1926 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1927 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1928 {
1929 fclose(fp);
1930 return -1;
1931 }
1932
1933 b = xmalloc(hdr.dirlistlen + 1);
1934 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1935 fclose(fp);
1936 free(b);
1937 return -1;
1938 }
1939
1940 while ((p = strsep(&b, ":"))) {
1941 if (*p == '\0')
1942 continue;
1943 xarraypush_str(ldpaths, p);
1944 }
1945
1946 free(b);
1947 fclose(fp);
1948 return 0;
1949}
1950
1951#else
1952#ifdef __ELF__
1953#warning Cache config support not implemented for your target
1954#endif
1955static int _load_ld_cache_config(const char *fname)
1956{
1957 return 0;
1958}
1959#endif
1960
1961static void load_ld_cache_config(const char *fname)
1962{
1963 bool scan_l, scan_ul, scan_ull;
1964 size_t n;
1965 const char *ldpath;
1966
1967 _load_ld_cache_config(fname);
1968
1969 scan_l = scan_ul = scan_ull = false;
1970 array_for_each(ldpaths, n, ldpath) {
1971 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = true;
1972 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = true;
1973 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = true;
1974 }
1975
1976 if (!scan_l) xarraypush_str(ldpaths, "/lib");
1977 if (!scan_ul) xarraypush_str(ldpaths, "/usr/lib");
1978 if (!scan_ull) xarraypush_str(ldpaths, "/usr/local/lib");
1215} 1979}
1216 1980
1217/* scan /etc/ld.so.conf for paths */ 1981/* scan /etc/ld.so.conf for paths */
1218static void scanelf_ldpath() 1982static void scanelf_ldpath(void)
1219{ 1983{
1220 char scan_l, scan_ul, scan_ull; 1984 size_t n;
1221 int i = 0; 1985 const char *ldpath;
1222 1986
1223 if (!ldpaths[0]) 1987 array_for_each(ldpaths, n, ldpath)
1224 err("Unable to load any paths from ld.so.conf");
1225
1226 scan_l = scan_ul = scan_ull = 0;
1227
1228 while (ldpaths[i]) {
1229 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1;
1230 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1;
1231 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1;
1232 scanelf_dir(ldpaths[i]); 1988 scanelf_dir(ldpath);
1233 ++i;
1234 }
1235
1236 if (!scan_l) scanelf_dir("/lib");
1237 if (!scan_ul) scanelf_dir("/usr/lib");
1238 if (!scan_ull) scanelf_dir("/usr/local/lib");
1239} 1989}
1240 1990
1241/* scan env PATH for paths */ 1991/* scan env PATH for paths */
1242static void scanelf_envpath() 1992static void scanelf_envpath(void)
1243{ 1993{
1244 char *path, *p; 1994 char *path, *p;
1245 1995
1246 path = getenv("PATH"); 1996 path = getenv("PATH");
1247 if (!path) 1997 if (!path)
1254 } 2004 }
1255 2005
1256 free(path); 2006 free(path);
1257} 2007}
1258 2008
1259 2009/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
1260/* usage / invocation handling functions */
1261#define PARSE_FLAGS "plRmyAXxetrnLibSs:gN:TaqvF:f:o:E:BhV" 2010#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
1262#define a_argument required_argument 2011#define a_argument required_argument
1263static struct option const long_opts[] = { 2012static struct option const long_opts[] = {
1264 {"path", no_argument, NULL, 'p'}, 2013 {"path", no_argument, NULL, 'p'},
1265 {"ldpath", no_argument, NULL, 'l'}, 2014 {"ldpath", no_argument, NULL, 'l'},
2015 {"use-ldpath",no_argument, NULL, 129},
2016 {"root", a_argument, NULL, 128},
1266 {"recursive", no_argument, NULL, 'R'}, 2017 {"recursive", no_argument, NULL, 'R'},
1267 {"mount", no_argument, NULL, 'm'}, 2018 {"mount", no_argument, NULL, 'm'},
1268 {"symlink", no_argument, NULL, 'y'}, 2019 {"symlink", no_argument, NULL, 'y'},
1269 {"archives", no_argument, NULL, 'A'}, 2020 {"archives", no_argument, NULL, 'A'},
1270 {"ldcache", no_argument, NULL, 'L'}, 2021 {"ldcache", no_argument, NULL, 'L'},
1271 {"fix", no_argument, NULL, 'X'}, 2022 {"fix", no_argument, NULL, 'X'},
2023 {"setpax", a_argument, NULL, 'z'},
1272 {"pax", no_argument, NULL, 'x'}, 2024 {"pax", no_argument, NULL, 'x'},
1273 {"header", no_argument, NULL, 'e'}, 2025 {"header", no_argument, NULL, 'e'},
1274 {"textrel", no_argument, NULL, 't'}, 2026 {"textrel", no_argument, NULL, 't'},
1275 {"rpath", no_argument, NULL, 'r'}, 2027 {"rpath", no_argument, NULL, 'r'},
1276 {"needed", no_argument, NULL, 'n'}, 2028 {"needed", no_argument, NULL, 'n'},
1277 {"interp", no_argument, NULL, 'i'}, 2029 {"interp", no_argument, NULL, 'i'},
1278 {"bind", no_argument, NULL, 'b'}, 2030 {"bind", no_argument, NULL, 'b'},
1279 {"soname", no_argument, NULL, 'S'}, 2031 {"soname", no_argument, NULL, 'S'},
1280 {"symbol", a_argument, NULL, 's'}, 2032 {"symbol", a_argument, NULL, 's'},
2033 {"section", a_argument, NULL, 'k'},
1281 {"lib", a_argument, NULL, 'N'}, 2034 {"lib", a_argument, NULL, 'N'},
1282 {"gmatch", no_argument, NULL, 'g'}, 2035 {"gmatch", no_argument, NULL, 'g'},
1283 {"textrels", no_argument, NULL, 'T'}, 2036 {"textrels", no_argument, NULL, 'T'},
1284 {"etype", a_argument, NULL, 'E'}, 2037 {"etype", a_argument, NULL, 'E'},
2038 {"bits", a_argument, NULL, 'M'},
2039 {"endian", no_argument, NULL, 'D'},
2040 {"osabi", no_argument, NULL, 'I'},
2041 {"eabi", no_argument, NULL, 'Y'},
2042 {"perms", a_argument, NULL, 'O'},
2043 {"size", no_argument, NULL, 'Z'},
1285 {"all", no_argument, NULL, 'a'}, 2044 {"all", no_argument, NULL, 'a'},
1286 {"quiet", no_argument, NULL, 'q'}, 2045 {"quiet", no_argument, NULL, 'q'},
1287 {"verbose", no_argument, NULL, 'v'}, 2046 {"verbose", no_argument, NULL, 'v'},
1288 {"format", a_argument, NULL, 'F'}, 2047 {"format", a_argument, NULL, 'F'},
1289 {"from", a_argument, NULL, 'f'}, 2048 {"from", a_argument, NULL, 'f'},
1290 {"file", a_argument, NULL, 'o'}, 2049 {"file", a_argument, NULL, 'o'},
2050 {"nocolor", no_argument, NULL, 'C'},
1291 {"nobanner", no_argument, NULL, 'B'}, 2051 {"nobanner", no_argument, NULL, 'B'},
1292 {"help", no_argument, NULL, 'h'}, 2052 {"help", no_argument, NULL, 'h'},
1293 {"version", no_argument, NULL, 'V'}, 2053 {"version", no_argument, NULL, 'V'},
1294 {NULL, no_argument, NULL, 0x0} 2054 {NULL, no_argument, NULL, 0x0}
1295}; 2055};
1296 2056
1297static const char *opts_help[] = { 2057static const char * const opts_help[] = {
1298 "Scan all directories in PATH environment", 2058 "Scan all directories in PATH environment",
1299 "Scan all directories in /etc/ld.so.conf", 2059 "Scan all directories in /etc/ld.so.conf",
2060 "Use ld.so.conf to show full path (use with -r/-n)",
2061 "Root directory (use with -l or -p)",
1300 "Scan directories recursively", 2062 "Scan directories recursively",
1301 "Don't recursively cross mount points", 2063 "Don't recursively cross mount points",
1302 "Don't scan symlinks", 2064 "Don't scan symlinks",
1303 "Scan archives (.a files)", 2065 "Scan archives (.a files)",
1304 "Utilize ld.so.cache information (use with -r/-n)", 2066 "Utilize ld.so.cache to show full path (use with -r/-n)",
1305 "Try and 'fix' bad things (use with -r/-e)\n", 2067 "Try and 'fix' bad things (use with -r/-e)",
2068 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1306 "Print PaX markings", 2069 "Print PaX markings",
1307 "Print GNU_STACK/PT_LOAD markings", 2070 "Print GNU_STACK/PT_LOAD markings",
1308 "Print TEXTREL information", 2071 "Print TEXTREL information",
1309 "Print RPATH information", 2072 "Print RPATH information",
1310 "Print NEEDED information", 2073 "Print NEEDED information",
1311 "Print INTERP information", 2074 "Print INTERP information",
1312 "Print BIND information", 2075 "Print BIND information",
1313 "Print SONAME information", 2076 "Print SONAME information",
1314 "Find a specified symbol", 2077 "Find a specified symbol",
2078 "Find a specified section",
1315 "Find a specified library", 2079 "Find a specified library",
1316 "Use strncmp to match libraries. (use with -N)", 2080 "Use regex rather than string compare (with -s); specify twice for case insensitive",
1317 "Locate cause of TEXTREL", 2081 "Locate cause of TEXTREL",
2082 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1318 "Print only ELF files matching numeric constant", 2083 "Print only ELF files matching numeric bits",
1319 "Print all scanned info (-x -e -t -r -b)\n", 2084 "Print Endianness",
2085 "Print OSABI",
2086 "Print EABI (EM_ARM Only)",
2087 "Print only ELF files matching octal permissions",
2088 "Print ELF file size",
2089 "Print all useful/simple info\n",
1320 "Only output 'bad' things", 2090 "Only output 'bad' things",
1321 "Be verbose (can be specified more than once)", 2091 "Be verbose (can be specified more than once)",
1322 "Use specified format for output", 2092 "Use specified format for output",
1323 "Read input stream from a filename", 2093 "Read input stream from a filename",
1324 "Write output stream to a filename", 2094 "Write output stream to a filename",
2095 "Don't emit color in output",
1325 "Don't display the header", 2096 "Don't display the header",
1326 "Print this help and exit", 2097 "Print this help and exit",
1327 "Print version and exit", 2098 "Print version and exit",
1328 NULL 2099 NULL
1329}; 2100};
1330 2101
1331/* display usage and exit */ 2102/* display usage and exit */
1332static void usage(int status) 2103static void usage(int status)
1333{ 2104{
1334 unsigned long i; 2105 const char a_arg[] = "<arg>";
2106 size_t a_arg_len = strlen(a_arg) + 2;
2107 size_t i;
2108 int optlen;
1335 printf("* Scan ELF binaries for stuff\n\n" 2109 printf("* Scan ELF binaries for stuff\n\n"
1336 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0); 2110 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1337 printf("Options: -[%s]\n", PARSE_FLAGS); 2111 printf("Options: -[%s]\n", PARSE_FLAGS);
2112
2113 /* prescan the --long opt length to auto-align */
2114 optlen = 0;
1338 for (i = 0; long_opts[i].name; ++i) 2115 for (i = 0; long_opts[i].name; ++i) {
2116 int l = strlen(long_opts[i].name);
2117 if (long_opts[i].has_arg == a_argument)
2118 l += a_arg_len;
2119 optlen = max(l, optlen);
2120 }
2121
2122 for (i = 0; long_opts[i].name; ++i) {
2123 /* first output the short flag if it has one */
2124 if (long_opts[i].val > '~')
2125 printf(" ");
2126 else
2127 printf(" -%c, ", long_opts[i].val);
2128
2129 /* then the long flag */
1339 if (long_opts[i].has_arg == no_argument) 2130 if (long_opts[i].has_arg == no_argument)
1340 printf(" -%c, --%-13s* %s\n", long_opts[i].val, 2131 printf("--%-*s", optlen, long_opts[i].name);
1341 long_opts[i].name, opts_help[i]);
1342 else 2132 else
1343 printf(" -%c, --%-6s <arg> * %s\n", long_opts[i].val, 2133 printf("--%s %s %*s", long_opts[i].name, a_arg,
1344 long_opts[i].name, opts_help[i]); 2134 (int)(optlen - strlen(long_opts[i].name) - a_arg_len), "");
1345 2135
1346 if (status != EXIT_SUCCESS) 2136 /* finally the help text */
1347 exit(status); 2137 printf("* %s\n", opts_help[i]);
2138 }
1348 2139
1349 puts("\nThe format modifiers for the -F option are:"); 2140 puts("\nFor more information, see the scanelf(1) manpage");
1350 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1351 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1352 puts(" i INTERP \tb BIND \ts symbol");
1353 puts(" N library \to Type \tT TEXTRELs");
1354 puts(" S SONAME");
1355 puts(" p filename (with search path removed)");
1356 puts(" f filename (short name/basename)");
1357 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1358
1359 exit(status); 2141 exit(status);
1360} 2142}
1361 2143
1362/* parse command line arguments and preform needed actions */ 2144/* parse command line arguments and preform needed actions */
2145#define do_pax_state(option, flag) \
2146 if (islower(option)) { \
2147 flags &= ~PF_##flag; \
2148 flags |= PF_NO##flag; \
2149 } else { \
2150 flags &= ~PF_NO##flag; \
2151 flags |= PF_##flag; \
2152 }
2153static void parse_delimited(array_t *arr, char *arg, const char *delim)
2154{
2155 char *ele = strtok(arg, delim);
2156 if (!ele) /* edge case: -s '' */
2157 xarraypush_str(arr, "");
2158 while (ele) {
2159 xarraypush_str(arr, ele);
2160 ele = strtok(NULL, delim);
2161 }
2162}
1363static void parseargs(int argc, char *argv[]) 2163static int parseargs(int argc, char *argv[])
1364{ 2164{
1365 int i; 2165 int i;
1366 char *from_file = NULL; 2166 const char *from_file = NULL;
2167 int ret = 0;
2168 char load_cache_config = 0;
1367 2169
1368 opterr = 0; 2170 opterr = 0;
1369 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2171 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1370 switch (i) { 2172 switch (i) {
1371 2173
1372 case 'V': 2174 case 'V':
1373 printf("pax-utils-%s: %s compiled %s\n%s\n" 2175 printf("pax-utils-%s: %s\n%s\n"
1374 "%s written for Gentoo by <solar and vapier @ gentoo.org>\n", 2176 "%s written for Gentoo by <solar and vapier @ gentoo.org>\n",
1375 VERSION, __FILE__, __DATE__, rcsid, argv0); 2177 VERSION, __FILE__, rcsid, argv0);
1376 exit(EXIT_SUCCESS); 2178 exit(EXIT_SUCCESS);
1377 break; 2179 break;
1378 case 'h': usage(EXIT_SUCCESS); break; 2180 case 'h': usage(EXIT_SUCCESS); break;
1379 case 'f': 2181 case 'f':
1380 if (from_file) warn("You prob don't want to specify -f twice"); 2182 if (from_file) warn("You prob don't want to specify -f twice");
1381 from_file = optarg; 2183 from_file = optarg;
1382 break; 2184 break;
1383 case 'E': 2185 case 'E':
1384 strncpy(match_etypes, optarg, sizeof(match_etypes)); 2186 /* historically, this was comma delimited */
2187 parse_delimited(match_etypes, optarg, ",");
2188 break;
2189 case 'M':
2190 match_bits = atoi(optarg);
2191 if (match_bits == 0) {
2192 if (strcmp(optarg, "ELFCLASS32") == 0)
2193 match_bits = 32;
2194 if (strcmp(optarg, "ELFCLASS64") == 0)
2195 match_bits = 64;
2196 }
2197 break;
2198 case 'O':
2199 if (sscanf(optarg, "%o", &match_perms) == -1)
2200 match_bits = 0;
1385 break; 2201 break;
1386 case 'o': { 2202 case 'o': {
1387 FILE *fp = NULL;
1388 if ((fp = freopen(optarg, "w", stdout)) == NULL) 2203 if (freopen(optarg, "w", stdout) == NULL)
1389 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2204 errp("Could not freopen(%s)", optarg);
1390 SET_STDOUT(fp);
1391 break; 2205 break;
1392 } 2206 }
1393
1394 case 's': { 2207 case 'k':
1395 if (find_sym) warn("You prob don't want to specify -s twice"); 2208 xarraypush_str(find_section_arr, optarg);
1396 find_sym = optarg;
1397 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1398 sprintf(versioned_symname, "%s@", find_sym);
1399 break; 2209 break;
1400 }
1401 case 'N': { 2210 case 's':
1402 if (find_lib) warn("You prob don't want to specify -N twice"); 2211 /* historically, this was comma delimited */
1403 find_lib = optarg; 2212 parse_delimited(find_sym_arr, optarg, ",");
1404 break; 2213 break;
1405 } 2214 case 'N':
1406 2215 xarraypush_str(find_lib_arr, optarg);
2216 break;
1407 case 'F': { 2217 case 'F': {
1408 if (out_format) warn("You prob don't want to specify -F twice"); 2218 if (out_format) warn("You prob don't want to specify -F twice");
1409 out_format = optarg; 2219 out_format = optarg;
1410 break; 2220 break;
1411 } 2221 }
2222 case 'z': {
2223 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
2224 size_t x;
1412 2225
1413 case 'g': gmatch = 1; /* break; any reason we dont breal; here ? */ 2226 for (x = 0; x < strlen(optarg); x++) {
2227 switch (optarg[x]) {
2228 case 'p':
2229 case 'P':
2230 do_pax_state(optarg[x], PAGEEXEC);
2231 break;
2232 case 's':
2233 case 'S':
2234 do_pax_state(optarg[x], SEGMEXEC);
2235 break;
2236 case 'm':
2237 case 'M':
2238 do_pax_state(optarg[x], MPROTECT);
2239 break;
2240 case 'e':
2241 case 'E':
2242 do_pax_state(optarg[x], EMUTRAMP);
2243 break;
2244 case 'r':
2245 case 'R':
2246 do_pax_state(optarg[x], RANDMMAP);
2247 break;
2248 case 'x':
2249 case 'X':
2250 do_pax_state(optarg[x], RANDEXEC);
2251 break;
2252 default:
2253 break;
2254 }
2255 }
2256 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
2257 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
2258 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
2259 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
2260 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
2261 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
2262 setpax = flags;
2263 break;
2264 }
2265 case 'Z': show_size = 1; break;
2266 case 'g': ++g_match; break;
1414 case 'L': use_ldcache = 1; break; 2267 case 'L': load_cache_config = use_ldcache = 1; break;
1415 case 'y': scan_symlink = 0; break; 2268 case 'y': scan_symlink = 0; break;
1416 case 'A': scan_archives = 1; break; 2269 case 'A': scan_archives = 1; break;
2270 case 'C': color_init(true); break;
1417 case 'B': show_banner = 0; break; 2271 case 'B': show_banner = 0; break;
1418 case 'l': scan_ldpath = 1; break; 2272 case 'l': load_cache_config = scan_ldpath = 1; break;
1419 case 'p': scan_envpath = 1; break; 2273 case 'p': scan_envpath = 1; break;
1420 case 'R': dir_recurse = 1; break; 2274 case 'R': dir_recurse = 1; break;
1421 case 'm': dir_crossmount = 0; break; 2275 case 'm': dir_crossmount = 0; break;
1422 case 'X': ++fix_elf; break; 2276 case 'X': ++fix_elf; break;
1423 case 'x': show_pax = 1; break; 2277 case 'x': show_pax = 1; break;
1427 case 'n': show_needed = 1; break; 2281 case 'n': show_needed = 1; break;
1428 case 'i': show_interp = 1; break; 2282 case 'i': show_interp = 1; break;
1429 case 'b': show_bind = 1; break; 2283 case 'b': show_bind = 1; break;
1430 case 'S': show_soname = 1; break; 2284 case 'S': show_soname = 1; break;
1431 case 'T': show_textrels = 1; break; 2285 case 'T': show_textrels = 1; break;
1432 case 'q': be_quiet = 1; break; 2286 case 'q': be_quiet = min(be_quiet, 20) + 1; break;
1433 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2287 case 'v': be_verbose = min(be_verbose, 20) + 1; break;
1434 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 2288 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1435 2289 case 'D': show_endian = 1; break;
2290 case 'I': show_osabi = 1; break;
2291 case 'Y': show_eabi = 1; break;
2292 case 128:
2293 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2294 if (root_fd == -1)
2295 err("Could not open root: %s", optarg);
2296 break;
2297 case 129: load_cache_config = use_ldpath = 1; break;
1436 case ':': 2298 case ':':
1437 err("Option '%c' is missing parameter", optopt); 2299 err("Option '%c' is missing parameter", optopt);
1438 case '?': 2300 case '?':
1439 err("Unknown option '%c' or argument missing", optopt); 2301 err("Unknown option '%c' or argument missing", optopt);
1440 default: 2302 default:
1441 err("Unhandled option '%c'; please report this", i); 2303 err("Unhandled option '%c'; please report this", i);
1442 } 2304 }
1443 } 2305 }
2306 if (show_textrels && be_verbose)
2307 objdump = which("objdump", "OBJDUMP");
2308 /* precompile all the regexes */
2309 if (g_match) {
2310 regex_t preg;
2311 const char *this_sym;
2312 size_t n;
2313 int flags = REG_EXTENDED | REG_NOSUB | (g_match > 1 ? REG_ICASE : 0);
1444 2314
2315 array_for_each(find_sym_arr, n, this_sym) {
2316 /* see scanelf_match_symname for logic info */
2317 switch (this_sym[0]) {
2318 case '%':
2319 while (*(this_sym++))
2320 if (*this_sym == '%') {
2321 ++this_sym;
2322 break;
2323 }
2324 break;
2325 case '+':
2326 case '-':
2327 ++this_sym;
2328 break;
2329 }
2330 if (*this_sym == '*')
2331 ++this_sym;
2332
2333 ret = regcomp(&preg, this_sym, flags);
2334 if (ret) {
2335 char err[256];
2336 regerror(ret, &preg, err, sizeof(err));
2337 err("regcomp of %s failed: %s", this_sym, err);
2338 }
2339 xarraypush(find_sym_regex_arr, &preg, sizeof(preg));
2340 }
2341 }
2342 /* flatten arrays for display */
2343 find_sym = array_flatten_str(find_sym_arr);
2344 find_lib = array_flatten_str(find_lib_arr);
2345 find_section = array_flatten_str(find_section_arr);
1445 /* let the format option override all other options */ 2346 /* let the format option override all other options */
1446 if (out_format) { 2347 if (out_format) {
1447 show_pax = show_phdr = show_textrel = show_rpath = \ 2348 show_pax = show_phdr = show_textrel = show_rpath = \
1448 show_needed = show_interp = show_bind = show_soname = \ 2349 show_needed = show_interp = show_bind = show_soname = \
1449 show_textrels = 0; 2350 show_textrels = show_perms = show_endian = show_size = \
2351 show_osabi = show_eabi = 0;
1450 for (i = 0; out_format[i]; ++i) { 2352 for (i = 0; out_format[i]; ++i) {
1451 if (!IS_MODIFIER(out_format[i])) continue; 2353 if (!IS_MODIFIER(out_format[i])) continue;
1452 2354
1453 switch (out_format[++i]) { 2355 switch (out_format[++i]) {
2356 case '+': break;
1454 case '%': break; 2357 case '%': break;
1455 case '#': break; 2358 case '#': break;
1456 case 'F': break; 2359 case 'F': break;
1457 case 'p': break; 2360 case 'p': break;
1458 case 'f': break; 2361 case 'f': break;
2362 case 'k': break;
1459 case 's': break; 2363 case 's': break;
1460 case 'N': break; 2364 case 'N': break;
1461 case 'o': break; 2365 case 'o': break;
2366 case 'a': break;
2367 case 'M': break;
2368 case 'Z': show_size = 1; break;
2369 case 'D': show_endian = 1; break;
2370 case 'I': show_osabi = 1; break;
2371 case 'Y': show_eabi = 1; break;
2372 case 'O': show_perms = 1; break;
1462 case 'x': show_pax = 1; break; 2373 case 'x': show_pax = 1; break;
1463 case 'e': show_phdr = 1; break; 2374 case 'e': show_phdr = 1; break;
1464 case 't': show_textrel = 1; break; 2375 case 't': show_textrel = 1; break;
1465 case 'r': show_rpath = 1; break; 2376 case 'r': show_rpath = 1; break;
1466 case 'n': show_needed = 1; break; 2377 case 'n': show_needed = 1; break;
1467 case 'i': show_interp = 1; break; 2378 case 'i': show_interp = 1; break;
1468 case 'b': show_bind = 1; break; 2379 case 'b': show_bind = 1; break;
1469 case 'S': show_soname = 1; break; 2380 case 'S': show_soname = 1; break;
1470 case 'T': show_textrels = 1; break; 2381 case 'T': show_textrels = 1; break;
1471 default: 2382 default:
1472 err("Invalid format specifier '%c' (byte %i)", 2383 err("invalid format specifier '%c' (byte %i)",
1473 out_format[i], i+1); 2384 out_format[i], i+1);
1474 } 2385 }
1475 } 2386 }
1476 2387
1477 /* construct our default format */ 2388 /* construct our default format */
1478 } else { 2389 } else {
1479 size_t fmt_len = 30; 2390 size_t fmt_len = 30;
1480 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2391 out_format = xmalloc(sizeof(char) * fmt_len);
2392 *out_format = '\0';
1481 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2393 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1482 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2394 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
2395 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2396 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
2397 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
2398 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2399 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1483 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 2400 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1484 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2401 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1485 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2402 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1486 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2403 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1487 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2404 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1488 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len); 2405 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
1489 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len); 2406 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
1490 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len); 2407 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
1491 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 2408 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
2409 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
1492 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len); 2410 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
1493 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2411 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1494 } 2412 }
1495 if (be_verbose > 2) printf("Format: %s\n", out_format); 2413 if (be_verbose > 2) printf("Format: %s\n", out_format);
1496 2414
1497 /* now lets actually do the scanning */ 2415 /* now lets actually do the scanning */
1498 if (scan_ldpath || use_ldcache) 2416 if (load_cache_config)
1499 load_ld_so_conf(); 2417 load_ld_cache_config(__PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1500 if (scan_ldpath) scanelf_ldpath(); 2418 if (scan_ldpath) scanelf_ldpath();
1501 if (scan_envpath) scanelf_envpath(); 2419 if (scan_envpath) scanelf_envpath();
2420 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
2421 from_file = "-";
1502 if (from_file) { 2422 if (from_file) {
1503 scanelf_from_file(from_file); 2423 scanelf_from_file(from_file);
1504 from_file = *argv; 2424 from_file = *argv;
1505 } 2425 }
1506 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 2426 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1507 err("Nothing to scan !?"); 2427 err("Nothing to scan !?");
1508 while (optind < argc) { 2428 while (optind < argc) {
1509 search_path = argv[optind++]; 2429 search_path = argv[optind++];
1510 scanelf_dir(search_path); 2430 ret = scanelf_dir(search_path);
1511 } 2431 }
1512 2432
2433#ifdef __PAX_UTILS_CLEANUP
1513 /* clean up */ 2434 /* clean up */
1514 if (versioned_symname) free(versioned_symname);
1515 for (i = 0; ldpaths[i]; ++i)
1516 free(ldpaths[i]); 2435 xarrayfree(ldpaths);
2436 xarrayfree(find_sym_arr);
2437 xarrayfree(find_lib_arr);
2438 xarrayfree(find_section_arr);
2439 free(find_sym);
2440 free(find_lib);
2441 free(find_section);
2442 {
2443 size_t n;
2444 regex_t *preg;
2445 array_for_each(find_sym_regex_arr, n, preg)
2446 regfree(preg);
2447 xarrayfree(find_sym_regex_arr);
2448 }
1517 2449
1518 if (ldcache != 0) 2450 if (ldcache != 0)
1519 munmap(ldcache, ldcache_size); 2451 munmap(ldcache, ldcache_size);
1520} 2452#endif
1521 2453
1522
1523
1524/* utility funcs */
1525static char *xstrdup(const char *s)
1526{
1527 char *ret = strdup(s);
1528 if (!ret) err("Could not strdup(): %s", strerror(errno));
1529 return ret; 2454 return ret;
1530} 2455}
1531static void *xmalloc(size_t size)
1532{
1533 void *ret = malloc(size);
1534 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
1535 return ret;
1536}
1537static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
1538{
1539 size_t new_len;
1540 2456
1541 new_len = strlen(*dst) + strlen(src); 2457static char **get_split_env(const char *envvar)
1542 if (*curr_len <= new_len) {
1543 *curr_len = new_len + (*curr_len / 2);
1544 *dst = realloc(*dst, *curr_len);
1545 if (!*dst)
1546 err("could not realloc() %li bytes", (unsigned long)*curr_len);
1547 }
1548
1549 if (n)
1550 strncat(*dst, src, n);
1551 else
1552 strcat(*dst, src);
1553}
1554static inline void xchrcat(char **dst, const char append, size_t *curr_len)
1555{ 2458{
1556 static char my_app[2]; 2459 const char *delims = " \t\n";
1557 my_app[0] = append; 2460 char **envvals = NULL;
1558 my_app[1] = '\0'; 2461 char *env, *s;
1559 xstrcat(dst, my_app, curr_len); 2462 int nentry;
1560}
1561 2463
2464 if ((env = getenv(envvar)) == NULL)
2465 return NULL;
1562 2466
2467 env = xstrdup(env);
2468 if (env == NULL)
2469 return NULL;
2470
2471 s = strtok(env, delims);
2472 if (s == NULL) {
2473 free(env);
2474 return NULL;
2475 }
2476
2477 nentry = 0;
2478 while (s != NULL) {
2479 ++nentry;
2480 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
2481 envvals[nentry-1] = s;
2482 s = strtok(NULL, delims);
2483 }
2484 envvals[nentry] = NULL;
2485
2486 /* don't want to free(env) as it contains the memory that backs
2487 * the envvals array of strings */
2488 return envvals;
2489}
2490
2491static void parseenv(void)
2492{
2493 color_init(false);
2494 qa_textrels = get_split_env("QA_TEXTRELS");
2495 qa_execstack = get_split_env("QA_EXECSTACK");
2496 qa_wx_load = get_split_env("QA_WX_LOAD");
2497}
2498
2499#ifdef __PAX_UTILS_CLEANUP
2500static void cleanup(void)
2501{
2502 free(out_format);
2503 free(qa_textrels);
2504 free(qa_execstack);
2505 free(qa_wx_load);
2506}
2507#endif
1563 2508
1564int main(int argc, char *argv[]) 2509int main(int argc, char *argv[])
1565{ 2510{
2511 int ret;
1566 if (argc < 2) 2512 if (argc < 2)
1567 usage(EXIT_FAILURE); 2513 usage(EXIT_FAILURE);
2514 parseenv();
1568 parseargs(argc, argv); 2515 ret = parseargs(argc, argv);
1569 fclose(stdout); 2516 fclose(stdout);
1570#ifdef __BOUNDS_CHECKING_ON 2517#ifdef __PAX_UTILS_CLEANUP
1571 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2518 cleanup();
2519 warn("The calls to add/delete heap should be off:\n"
2520 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2521 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1572#endif 2522#endif
1573 return EXIT_SUCCESS; 2523 return ret;
1574} 2524}
2525
2526/* Match filename against entries in matchlist, return TRUE
2527 * if the file is listed */
2528static int file_matches_list(const char *filename, char **matchlist)
2529{
2530 char **file;
2531 char *match;
2532 char buf[__PAX_UTILS_PATH_MAX];
2533
2534 if (matchlist == NULL)
2535 return 0;
2536
2537 for (file = matchlist; *file != NULL; file++) {
2538 if (search_path) {
2539 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2540 match = buf;
2541 } else {
2542 match = *file;
2543 }
2544 if (fnmatch(match, filename, 0) == 0)
2545 return 1;
2546 }
2547 return 0;
2548}

Legend:
Removed from v.1.119  
changed lines
  Added in v.1.273

  ViewVC Help
Powered by ViewVC 1.1.20