/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.119 Revision 1.277
1/* 1/*
2 * Copyright 2003-2006 Gentoo Foundation 2 * Copyright 2003-2012 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.119 2006/02/05 02:25:58 solar Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.277 2015/02/28 22:59:34 vapier Exp $
5 * 5 *
6 * Copyright 2003-2006 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2012 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2006 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2012 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10static const char rcsid[] = "$Id: scanelf.c,v 1.277 2015/02/28 22:59:34 vapier Exp $";
11const char argv0[] = "scanelf";
12
10#include "paxinc.h" 13#include "paxinc.h"
11 14
12static const char *rcsid = "$Id: scanelf.c,v 1.119 2006/02/05 02:25:58 solar Exp $";
13#define argv0 "scanelf"
14
15#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
16
17
18 16
19/* prototypes */ 17/* prototypes */
20static int scanelf_elfobj(elfobj *elf); 18static int file_matches_list(const char *filename, char **matchlist);
21static int scanelf_elf(const char *filename, int fd, size_t len);
22static int scanelf_archive(const char *filename, int fd, size_t len);
23static void scanelf_file(const char *filename);
24static void scanelf_dir(const char *path);
25static void scanelf_ldpath(void);
26static void scanelf_envpath(void);
27static void usage(int status);
28static void parseargs(int argc, char *argv[]);
29static char *xstrdup(const char *s);
30static void *xmalloc(size_t size);
31static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
32#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
33static inline void xchrcat(char **dst, const char append, size_t *curr_len);
34 19
35/* variables to control behavior */ 20/* variables to control behavior */
36static char match_etypes[126] = ""; 21static array_t _match_etypes = array_init_decl, *match_etypes = &_match_etypes;
37static char *ldpaths[256]; 22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
38static char scan_ldpath = 0; 23static char scan_ldpath = 0;
39static char scan_envpath = 0; 24static char scan_envpath = 0;
40static char scan_symlink = 1; 25static char scan_symlink = 1;
41static char scan_archives = 0; 26static char scan_archives = 0;
42static char dir_recurse = 0; 27static char dir_recurse = 0;
43static char dir_crossmount = 1; 28static char dir_crossmount = 1;
44static char show_pax = 0; 29static char show_pax = 0;
30static char show_perms = 0;
31static char show_size = 0;
45static char show_phdr = 0; 32static char show_phdr = 0;
46static char show_textrel = 0; 33static char show_textrel = 0;
47static char show_rpath = 0; 34static char show_rpath = 0;
48static char show_needed = 0; 35static char show_needed = 0;
49static char show_interp = 0; 36static char show_interp = 0;
50static char show_bind = 0; 37static char show_bind = 0;
51static char show_soname = 0; 38static char show_soname = 0;
52static char show_textrels = 0; 39static char show_textrels = 0;
53static char show_banner = 1; 40static char show_banner = 1;
41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
54static char be_quiet = 0; 44static char be_quiet = 0;
55static char be_verbose = 0; 45static char be_verbose = 0;
56static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
57static char *find_sym = NULL, *versioned_symname = NULL; 47static char be_semi_verbose = 0;
48static char *find_sym = NULL;
49static array_t _find_sym_arr = array_init_decl, *find_sym_arr = &_find_sym_arr;
50static array_t _find_sym_regex_arr = array_init_decl, *find_sym_regex_arr = &_find_sym_regex_arr;
58static char *find_lib = NULL; 51static char *find_lib = NULL;
52static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
53static char *find_section = NULL;
54static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
59static char *out_format = NULL; 55static char *out_format = NULL;
60static char *search_path = NULL; 56static char *search_path = NULL;
61static char fix_elf = 0; 57static char fix_elf = 0;
62static char gmatch = 0; 58static char g_match = 0;
63static char use_ldcache = 0; 59static char use_ldcache = 0;
60static char use_ldpath = 0;
64 61
62static char **qa_textrels = NULL;
63static char **qa_execstack = NULL;
64static char **qa_wx_load = NULL;
65static int root_fd = AT_FDCWD;
65 66
66caddr_t ldcache = 0; 67static int match_bits = 0;
68static unsigned int match_perms = 0;
69static void *ldcache = NULL;
67size_t ldcache_size = 0; 70static size_t ldcache_size = 0;
71static unsigned long setpax = 0UL;
68 72
73static const char *objdump;
74
75/* Find the path to a file by name. Note: we do not currently handle the
76 * empty path element correctly (should behave by searching $PWD). */
77static const char *which(const char *fname, const char *envvar)
78{
79 size_t path_len, fname_len;
80 const char *env_path;
81 char *path, *p, *ep;
82
83 p = getenv(envvar);
84 if (p)
85 return p;
86
87 env_path = getenv("PATH");
88 if (!env_path)
89 return NULL;
90
91 /* Create a copy of the $PATH that we can safely modify.
92 * Make it a little bigger so we can append "/fname".
93 * We do this twice -- once for a perm copy, and once for
94 * room at the end of the last element. */
95 path_len = strlen(env_path);
96 fname_len = strlen(fname);
97 path = xmalloc(path_len + (fname_len * 2) + 2 + 2);
98 memcpy(path, env_path, path_len + 1);
99
100 p = path + path_len + 1 + fname_len + 1;
101 *p = '/';
102 memcpy(p + 1, fname, fname_len + 1);
103
104 /* Repoint fname to the copy in the env string as it has
105 * the leading slash which we can include in a single memcpy.
106 * Increase the fname len to include the '/' and '\0'. */
107 fname = p;
108 fname_len += 2;
109
110 p = path;
111 while (p) {
112 ep = strchr(p, ':');
113 /* Append the /foo path to the current element. */
114 if (ep)
115 memcpy(ep, fname, fname_len);
116 else
117 memcpy(path + path_len, fname, fname_len);
118
119 if (access(p, R_OK) != -1)
120 return p;
121
122 p = ep;
123 if (ep) {
124 /* If not the last element, restore the chunk we clobbered. */
125 size_t offset = ep - path;
126 size_t restore = min(path_len - offset, fname_len);
127 memcpy(ep, env_path + offset, restore);
128 ++p;
129 }
130 }
131
132 free(path);
133 return NULL;
134}
135
136static FILE *fopenat_r(int dir_fd, const char *path)
137{
138 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
139 if (fd == -1)
140 return NULL;
141 return fdopen(fd, "re");
142}
143
144static const char *root_rel_path(const char *path)
145{
146 /*
147 * openat() will ignore the dirfd if path starts with
148 * a /, so consume all of that noise
149 *
150 * XXX: we don't handle relative paths like ../ that
151 * break out of the --root option, but for now, just
152 * don't do that :P.
153 */
154 if (root_fd != AT_FDCWD) {
155 while (*path == '/')
156 ++path;
157 if (*path == '\0')
158 path = ".";
159 }
160
161 return path;
162}
163
69/* sub-funcs for scanelf_file() */ 164/* sub-funcs for scanelf_fileat() */
70static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 165static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
71{ 166{
72 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 167 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
168
169 /* debug sections */
170 void *symtab = elf_findsecbyname(elf, ".symtab");
171 void *strtab = elf_findsecbyname(elf, ".strtab");
172 /* runtime sections */
173 void *dynsym = elf_findsecbyname(elf, ".dynsym");
174 void *dynstr = elf_findsecbyname(elf, ".dynstr");
175
176 /*
177 * If the sections are marked NOBITS, then they don't exist, so we just
178 * skip them. This let's us work sanely with splitdebug ELFs (rather
179 * than spewing a lot of "corrupt ELF" messages later on). In malformed
180 * ELFs, the section might be wrongly set to NOBITS, but screw em.
181 *
182 * We need to make sure the debug/runtime sym/str sets are used together
183 * as they are generated in sync. Trying to mix them won't work.
184 */
73#define GET_SYMTABS(B) \ 185#define GET_SYMTABS(B) \
74 if (elf->elf_class == ELFCLASS ## B) { \ 186 if (elf->elf_class == ELFCLASS ## B) { \
75 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \ 187 Elf ## B ## _Shdr *esymtab = symtab; \
76 /* debug sections */ \ 188 Elf ## B ## _Shdr *estrtab = strtab; \
77 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \ 189 Elf ## B ## _Shdr *edynsym = dynsym; \
78 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \ 190 Elf ## B ## _Shdr *edynstr = dynstr; \
79 /* runtime sections */ \ 191 \
80 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \ 192 if (!VALID_SHDR(elf, esymtab)) \
81 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \ 193 symtab = NULL; \
82 if (symtab && dynsym) { \ 194 if (!VALID_SHDR(elf, edynsym)) \
83 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 195 dynsym = NULL; \
196 if (!VALID_SHDR(elf, estrtab)) \
197 strtab = NULL; \
198 if (!VALID_SHDR(elf, edynstr)) \
199 dynstr = NULL; \
200 \
201 /* Use the set with more symbols if both exist. */ \
202 if (symtab && dynsym && strtab && dynstr) { \
203 if (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) \
204 goto debug##B; \
205 else \
206 goto runtime##B; \
207 } else if (symtab && strtab) { \
208 debug##B: \
209 *sym = symtab; \
210 *str = strtab; \
211 return; \
212 } else if (dynsym && dynstr) { \
213 runtime##B: \
214 *sym = dynsym; \
215 *str = dynstr; \
216 return; \
84 } else { \ 217 } else { \
85 *sym = (void*)(symtab ? symtab : dynsym); \ 218 *sym = *str = NULL; \
86 } \ 219 } \
87 if (strtab && dynstr) { \
88 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \
89 } else { \
90 *tab = (void*)(strtab ? strtab : dynstr); \
91 } \
92 } 220 }
93 GET_SYMTABS(32) 221 GET_SYMTABS(32)
94 GET_SYMTABS(64) 222 GET_SYMTABS(64)
223
224 if (*sym && *str)
225 return;
226
227 /*
228 * damn, they're really going to make us work for it huh?
229 * reconstruct the section header info out of the dynamic
230 * tags so we can see what symbols this guy uses at runtime.
231 */
232 if (!elf->phdr)
233 return;
234#define GET_SYMTABS_DT(B) \
235 if (elf->elf_class == ELFCLASS ## B) { \
236 size_t i; \
237 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
238 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
239 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
240 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
241 Elf ## B ## _Dyn *dyn; \
242 Elf ## B ## _Off offset; \
243 \
244 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
245 vsym = vstr = vhash = vgnu_hash = 0; \
246 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
247 memset(&str_shdr, 0, sizeof(str_shdr)); \
248 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
249 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
250 continue; \
251 \
252 offset = EGET(phdr[i].p_offset); \
253 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
254 continue; \
255 \
256 dyn = DYN ## B (elf->vdata + offset); \
257 while (EGET(dyn->d_tag) != DT_NULL) { \
258 switch (EGET(dyn->d_tag)) { \
259 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
260 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
261 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
262 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
263 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
264 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
265 } \
266 ++dyn; \
267 } \
268 if (vsym && vstr) \
269 break; \
270 } \
271 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
272 return; \
273 \
274 /* calc offset into the ELF by finding the load addr of the syms */ \
275 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
276 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
277 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
278 Elf ## B ## _Off hash_offset = offset + (vhash - vaddr); \
279 \
280 if (EGET(phdr[i].p_type) != PT_LOAD) \
281 continue; \
282 \
283 offset = EGET(phdr[i].p_offset); \
284 if (offset >= (uint64_t)elf->len) \
285 goto corrupt_hash; \
286 if (filesz >= (uint64_t)elf->len) \
287 goto corrupt_hash; \
288 if (hash_offset + (sizeof(Elf32_Word) * 4) > (uint64_t)elf->len) \
289 goto corrupt_hash; \
290 \
291 if (vhash >= vaddr && vhash < vaddr + filesz) { \
292 /* Scan the hash table to see how many entries we have */ \
293 Elf32_Word max_sym_idx = 0; \
294 Elf32_Word *hashtbl = elf->vdata + hash_offset; \
295 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
296 Elf32_Word nchains = EGET(hashtbl[1]); \
297 Elf32_Word *buckets = &hashtbl[2]; \
298 Elf32_Word *chains = &buckets[nbuckets]; \
299 Elf32_Word sym_idx; \
300 Elf32_Word chained; \
301 \
302 if (hash_offset >= (uint64_t)elf->len) \
303 goto corrupt_hash; \
304 if (nbuckets >= UINT32_MAX / 4) \
305 goto corrupt_hash; \
306 if (nchains >= UINT32_MAX / 4) \
307 goto corrupt_hash; \
308 if (nbuckets * 4 > elf->len - offset) \
309 goto corrupt_hash; \
310 if (nchains * 4 > elf->len - offset) \
311 goto corrupt_hash; \
312 \
313 for (b = 0; b < nbuckets; ++b) { \
314 if (!buckets[b]) \
315 continue; \
316 for (sym_idx = buckets[b], chained = 0; \
317 sym_idx < nchains && sym_idx && chained <= nchains; \
318 sym_idx = chains[sym_idx], ++chained) { \
319 if (max_sym_idx < sym_idx) \
320 max_sym_idx = sym_idx; \
321 } \
322 if (chained > nchains) \
323 goto corrupt_hash; \
324 } \
325 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
326 } \
327 \
328 if (vsym >= vaddr && vsym < vaddr + filesz) { \
329 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
330 *sym = &sym_shdr; \
331 } \
332 \
333 if (vstr >= vaddr && vstr < vaddr + filesz) { \
334 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
335 *str = &str_shdr; \
336 } \
337 } \
338 }
339 GET_SYMTABS_DT(32)
340 GET_SYMTABS_DT(64)
341 return;
342
343 corrupt_hash:
344 warn("%s: ELF hash table is corrupt", elf->filename);
95} 345}
346
96static char *scanelf_file_pax(elfobj *elf, char *found_pax) 347static char *scanelf_file_pax(elfobj *elf, char *found_pax)
97{ 348{
98 static char ret[7]; 349 static char ret[7];
99 unsigned long i, shown; 350 unsigned long i, shown;
100 351
109 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 360 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
110 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 361 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
111 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 362 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
112 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \ 363 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
113 continue; \ 364 continue; \
114 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 365 if (fix_elf && setpax) { \
366 /* set the paxctl flags */ \
367 ESET(phdr[i].p_flags, setpax); \
368 } \
369 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
115 continue; \ 370 continue; \
116 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 371 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
117 *found_pax = 1; \ 372 *found_pax = 1; \
118 ++shown; \ 373 ++shown; \
119 break; \ 374 break; \
120 } \ 375 } \
121 } 376 }
122 SHOW_PAX(32) 377 SHOW_PAX(32)
123 SHOW_PAX(64) 378 SHOW_PAX(64)
124 } 379 }
380
381 /* Note: We do not support setting EI_PAX if not PT_PAX_FLAGS
382 * was found. This is known to break ELFs on glibc systems,
383 * and mainline PaX has deprecated use of this for a long time.
384 * We could support changing PT_GNU_STACK, but that doesn't
385 * seem like it's worth the effort. #411919
386 */
125 387
126 /* fall back to EI_PAX if no PT_PAX was found */ 388 /* fall back to EI_PAX if no PT_PAX was found */
127 if (!*ret) { 389 if (!*ret) {
128 static char *paxflags; 390 static char *paxflags;
129 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 391 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
143static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 405static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
144{ 406{
145 static char ret[12]; 407 static char ret[12];
146 char *found; 408 char *found;
147 unsigned long i, shown, multi_stack, multi_relro, multi_load; 409 unsigned long i, shown, multi_stack, multi_relro, multi_load;
148 int max_pt_load;
149 410
150 if (!show_phdr) return NULL; 411 if (!show_phdr) return NULL;
151 412
152 memcpy(ret, "--- --- ---\0", 12); 413 memcpy(ret, "--- --- ---\0", 12);
153 414
154 shown = 0; 415 shown = 0;
155 multi_stack = multi_relro = multi_load = 0; 416 multi_stack = multi_relro = multi_load = 0;
156 max_pt_load = elf_max_pt_load(elf);
157 417
158#define NOTE_GNU_STACK ".note.GNU-stack" 418#define NOTE_GNU_STACK ".note.GNU-stack"
159#define SHOW_PHDR(B) \ 419#define SHOW_PHDR(B) \
160 if (elf->elf_class == ELFCLASS ## B) { \ 420 if (elf->elf_class == ELFCLASS ## B) { \
161 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 421 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
163 uint32_t flags, check_flags; \ 423 uint32_t flags, check_flags; \
164 if (elf->phdr != NULL) { \ 424 if (elf->phdr != NULL) { \
165 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 425 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
166 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \ 426 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
167 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 427 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
428 if (multi_stack++) \
168 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 429 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
430 if (file_matches_list(elf->filename, qa_execstack)) \
431 continue; \
169 found = found_phdr; \ 432 found = found_phdr; \
170 offset = 0; \ 433 offset = 0; \
171 check_flags = PF_X; \ 434 check_flags = PF_X; \
172 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 435 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
436 if (multi_relro++) \
173 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 437 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
174 found = found_relro; \ 438 found = found_relro; \
175 offset = 4; \ 439 offset = 4; \
176 check_flags = PF_X; \ 440 check_flags = PF_X; \
177 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 441 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
178 if (ehdr->e_type == ET_DYN || ehdr->e_type == ET_EXEC) \ 442 if (file_matches_list(elf->filename, qa_wx_load)) \
179 if (multi_load++ > max_pt_load) warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \ 443 continue; \
180 found = found_load; \ 444 found = found_load; \
181 offset = 8; \ 445 offset = 8; \
182 check_flags = PF_W|PF_X; \ 446 check_flags = PF_W|PF_X; \
183 } else \ 447 } else \
184 continue; \ 448 continue; \
185 flags = EGET(phdr[i].p_flags); \ 449 flags = EGET(phdr[i].p_flags); \
186 if (be_quiet && ((flags & check_flags) != check_flags)) \ 450 if (be_quiet && ((flags & check_flags) != check_flags)) \
187 continue; \ 451 continue; \
188 if (fix_elf && ((flags & PF_X) != flags)) { \ 452 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
189 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \ 453 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
190 ret[3] = ret[7] = '!'; \ 454 ret[3] = ret[7] = '!'; \
191 flags = EGET(phdr[i].p_flags); \ 455 flags = EGET(phdr[i].p_flags); \
192 } \ 456 } \
193 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \ 457 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
195 ++shown; \ 459 ++shown; \
196 } \ 460 } \
197 } else if (elf->shdr != NULL) { \ 461 } else if (elf->shdr != NULL) { \
198 /* no program headers which means this is prob an object file */ \ 462 /* no program headers which means this is prob an object file */ \
199 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 463 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
464 uint16_t shstrndx = EGET(ehdr->e_shstrndx); \
200 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 465 Elf ## B ## _Shdr *strtbl = shdr + shstrndx; \
201 char *str; \ 466 if (shstrndx >= elf->len - sizeof(*strtbl) || !VALID_SHDR(elf, strtbl)) \
202 if ((void*)strtbl > (void*)elf->data_end) \
203 goto skip_this_shdr##B; \ 467 goto skip_this_shdr##B; \
468 /* let's flag -w/+x object files since the final ELF will most likely \
469 * need write access to the stack (who doesn't !?). so the combined \
470 * output will bring in +w automatically and that's bad. \
471 */ \
204 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 472 check_flags = /*SHF_WRITE|*/SHF_EXECINSTR; \
205 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 473 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
206 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 474 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
207 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 475 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
208 str = elf->data + offset; \ 476 if (offset >= elf->len - sizeof(NOTE_GNU_STACK)) \
209 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \ 477 continue; \
210 if (!strcmp(str, NOTE_GNU_STACK)) { \ 478 if (!strcmp(elf->data + offset, NOTE_GNU_STACK)) { \
211 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \ 479 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \
212 flags = EGET(shdr[i].sh_flags); \ 480 flags = EGET(shdr[i].sh_flags); \
213 if (be_quiet && ((flags & check_flags) != check_flags)) \ 481 if (be_quiet && ((flags & check_flags) != check_flags)) \
214 continue; \ 482 continue; \
215 ++*found_phdr; \ 483 ++*found_phdr; \
221 break; \ 489 break; \
222 } \ 490 } \
223 } \ 491 } \
224 skip_this_shdr##B: \ 492 skip_this_shdr##B: \
225 if (!multi_stack) { \ 493 if (!multi_stack) { \
494 if (file_matches_list(elf->filename, qa_execstack)) \
495 return NULL; \
226 *found_phdr = 1; \ 496 *found_phdr = 1; \
227 shown = 1; \ 497 shown = 1; \
228 memcpy(ret, "!WX", 3); \ 498 memcpy(ret, "!WX", 3); \
229 } \ 499 } \
230 } \ 500 } \
235 if (be_wewy_wewy_quiet || (be_quiet && !shown)) 505 if (be_wewy_wewy_quiet || (be_quiet && !shown))
236 return NULL; 506 return NULL;
237 else 507 else
238 return ret; 508 return ret;
239} 509}
510
511/*
512 * See if this ELF contains a DT_TEXTREL tag in any of its
513 * PT_DYNAMIC sections.
514 */
240static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 515static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
241{ 516{
242 static const char *ret = "TEXTREL"; 517 static const char *ret = "TEXTREL";
243 unsigned long i; 518 unsigned long i;
244 519
245 if (!show_textrel && !show_textrels) return NULL; 520 if (!show_textrel && !show_textrels) return NULL;
521
522 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
246 523
247 if (elf->phdr) { 524 if (elf->phdr) {
248#define SHOW_TEXTREL(B) \ 525#define SHOW_TEXTREL(B) \
249 if (elf->elf_class == ELFCLASS ## B) { \ 526 if (elf->elf_class == ELFCLASS ## B) { \
250 Elf ## B ## _Dyn *dyn; \ 527 Elf ## B ## _Dyn *dyn; \
251 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 528 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
252 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 529 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
253 Elf ## B ## _Off offset; \ 530 Elf ## B ## _Off offset; \
254 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 531 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
255 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 532 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
256 offset = EGET(phdr[i].p_offset); \ 533 offset = EGET(phdr[i].p_offset); \
257 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 534 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
258 dyn = DYN ## B (elf->data + offset); \ 535 dyn = DYN ## B (elf->vdata + offset); \
259 while (EGET(dyn->d_tag) != DT_NULL) { \ 536 while (EGET(dyn->d_tag) != DT_NULL) { \
260 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 537 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
261 *found_textrel = 1; \ 538 *found_textrel = 1; \
262 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 539 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
263 return (be_wewy_wewy_quiet ? NULL : ret); \ 540 return (be_wewy_wewy_quiet ? NULL : ret); \
272 if (be_quiet || be_wewy_wewy_quiet) 549 if (be_quiet || be_wewy_wewy_quiet)
273 return NULL; 550 return NULL;
274 else 551 else
275 return " - "; 552 return " - ";
276} 553}
554
555/*
556 * Scan the .text section to see if there are any relocations in it.
557 * Should rewrite this to check PT_LOAD sections that are marked
558 * Executable rather than the section named '.text'.
559 */
277static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 560static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
278{ 561{
279 unsigned long s, r, rmax; 562 unsigned long s, r, rmax;
280 void *symtab_void, *strtab_void, *text_void; 563 void *symtab_void, *strtab_void, *text_void;
281 564
302 Elf ## B ## _Rela *rela; \ 585 Elf ## B ## _Rela *rela; \
303 /* search the section headers for relocations */ \ 586 /* search the section headers for relocations */ \
304 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 587 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
305 uint32_t sh_type = EGET(shdr[s].sh_type); \ 588 uint32_t sh_type = EGET(shdr[s].sh_type); \
306 if (sh_type == SHT_REL) { \ 589 if (sh_type == SHT_REL) { \
307 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 590 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
308 rela = NULL; \ 591 rela = NULL; \
309 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 592 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
310 } else if (sh_type == SHT_RELA) { \ 593 } else if (sh_type == SHT_RELA) { \
311 rel = NULL; \ 594 rel = NULL; \
312 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 595 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
313 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 596 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
314 } else \ 597 } else \
315 continue; \ 598 continue; \
316 /* now see if any of the relocs are in the .text */ \ 599 /* now see if any of the relocs are in the .text */ \
317 for (r = 0; r < rmax; ++r) { \ 600 for (r = 0; r < rmax; ++r) { \
332 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \ 615 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
333 if (be_verbose <= 2) continue; \ 616 if (be_verbose <= 2) continue; \
334 } else \ 617 } else \
335 *found_textrels = 1; \ 618 *found_textrels = 1; \
336 /* locate this relocation symbol name */ \ 619 /* locate this relocation symbol name */ \
337 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 620 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
338 if ((void*)sym > (void*)elf->data_end) { \ 621 if ((void*)sym > elf->data_end) { \
339 warn("%s: corrupt ELF symbol", elf->filename); \ 622 warn("%s: corrupt ELF symbol", elf->filename); \
340 continue; \ 623 continue; \
341 } \ 624 } \
342 sym_max = ELF ## B ## _R_SYM(r_info); \ 625 sym_max = ELF ## B ## _R_SYM(r_info); \
343 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 626 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
346 sym = NULL; \ 629 sym = NULL; \
347 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 630 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
348 /* show the raw details about this reloc */ \ 631 /* show the raw details about this reloc */ \
349 printf(" %s: ", elf->base_filename); \ 632 printf(" %s: ", elf->base_filename); \
350 if (sym && sym->st_name) \ 633 if (sym && sym->st_name) \
351 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 634 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
352 else \ 635 else \
353 printf("(memory/fake?)"); \ 636 printf("(memory/data?)"); \
354 printf(" [0x%lX]", (unsigned long)r_offset); \ 637 printf(" [0x%lX]", (unsigned long)r_offset); \
355 /* now try to find the closest symbol that this rel is probably in */ \ 638 /* now try to find the closest symbol that this rel is probably in */ \
356 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 639 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
357 func = NULL; \ 640 func = NULL; \
358 offset_tmp = 0; \ 641 offset_tmp = 0; \
359 while (sym_max--) { \ 642 while (sym_max--) { \
360 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \ 643 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
361 func = sym; \ 644 func = sym; \
362 offset_tmp = EGET(sym->st_value); \ 645 offset_tmp = EGET(sym->st_value); \
363 } \ 646 } \
364 ++sym; \ 647 ++sym; \
365 } \ 648 } \
366 printf(" in "); \ 649 printf(" in "); \
367 if (func && func->st_name) \ 650 if (func && func->st_name) { \
368 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 651 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
652 if (r_offset > EGET(func->st_size)) \
653 printf("(optimized out: previous %s)", func_name); \
369 else \ 654 else \
370 printf("(NULL: fake?)"); \ 655 printf("%s", func_name); \
656 } else \
657 printf("(optimized out)"); \
371 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 658 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
659 if (be_verbose && objdump) { \
660 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
661 char *sysbuf; \
662 size_t syslen; \
663 const char sysfmt[] = "%s -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
664 syslen = sizeof(sysfmt) + strlen(objdump) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
665 sysbuf = xmalloc(syslen); \
666 if (end_addr < r_offset) \
667 /* not uncommon when things are optimized out */ \
668 end_addr = r_offset + 0x100; \
669 snprintf(sysbuf, syslen, sysfmt, \
670 objdump, \
671 (unsigned long)offset_tmp, \
672 (unsigned long)end_addr, \
673 elf->filename, \
674 (unsigned long)r_offset); \
675 fflush(stdout); \
676 if (system(sysbuf)) {/* don't care */} \
677 fflush(stdout); \
678 free(sysbuf); \
679 } \
372 } \ 680 } \
373 } } 681 } }
374 SHOW_TEXTRELS(32) 682 SHOW_TEXTRELS(32)
375 SHOW_TEXTRELS(64) 683 SHOW_TEXTRELS(64)
376 } 684 }
378 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 686 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
379 687
380 return NULL; 688 return NULL;
381} 689}
382 690
383static void rpath_security_checks(elfobj *, char *, const char *);
384static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type) 691static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
385{ 692{
386 struct stat st; 693 struct stat st;
387 switch (*item) { 694 switch (*item) {
388 case '/': break; 695 case '/': break;
394 warnf("Security problem NULL %s in %s", dt_type, elf->filename); 701 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
395 break; 702 break;
396 case '$': 703 case '$':
397 if (fstat(elf->fd, &st) != -1) 704 if (fstat(elf->fd, &st) != -1)
398 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 705 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
399 warnf("Security problem with %s='%s' in %s with mode set of %o", 706 warnf("Security problem with %s='%s' in %s with mode set of %o",
400 dt_type, item, elf->filename, st.st_mode & 07777); 707 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
401 break; 708 break;
402 default: 709 default:
403 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename); 710 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
404 break; 711 break;
405 } 712 }
713 if (fix_elf)
714 warnf("Note: RPATH has been automatically fixed, but this should be fixed in the package itself");
406} 715}
407static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 716static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
408{ 717{
409 unsigned long i, s; 718 unsigned long i;
410 char *rpath, *runpath, **r; 719 char *rpath, *runpath, **r;
411 void *strtbl_void; 720 void *strtbl_void;
412 721
413 if (!show_rpath) return; 722 if (!show_rpath) return;
414 723
425 Elf ## B ## _Off offset; \ 734 Elf ## B ## _Off offset; \
426 Elf ## B ## _Xword word; \ 735 Elf ## B ## _Xword word; \
427 /* Scan all the program headers */ \ 736 /* Scan all the program headers */ \
428 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 737 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
429 /* Just scan dynamic headers */ \ 738 /* Just scan dynamic headers */ \
430 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 739 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
431 offset = EGET(phdr[i].p_offset); \ 740 offset = EGET(phdr[i].p_offset); \
432 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 741 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
433 /* Just scan dynamic RPATH/RUNPATH headers */ \ 742 /* Just scan dynamic RPATH/RUNPATH headers */ \
434 dyn = DYN ## B (elf->data + offset); \ 743 dyn = DYN ## B (elf->vdata + offset); \
435 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 744 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
436 if (word == DT_RPATH) { \ 745 if (word == DT_RPATH) { \
437 r = &rpath; \ 746 r = &rpath; \
438 } else if (word == DT_RUNPATH) { \ 747 } else if (word == DT_RUNPATH) { \
439 r = &runpath; \ 748 r = &runpath; \
443 } \ 752 } \
444 /* Verify the memory is somewhat sane */ \ 753 /* Verify the memory is somewhat sane */ \
445 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 754 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
446 if (offset < (Elf ## B ## _Off)elf->len) { \ 755 if (offset < (Elf ## B ## _Off)elf->len) { \
447 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 756 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
448 *r = (char*)(elf->data + offset); \ 757 *r = elf->data + offset; \
449 /* cache the length in case we need to nuke this section later on */ \ 758 /* cache the length in case we need to nuke this section later on */ \
450 if (fix_elf) \ 759 if (fix_elf) \
451 offset = strlen(*r); \ 760 offset = strlen(*r); \
452 /* If quiet, don't output paths in ld.so.conf */ \ 761 /* If quiet, don't output paths in ld.so.conf */ \
453 if (be_quiet) { \ 762 if (be_quiet) { \
459 /* scan each path in : delimited list */ \ 768 /* scan each path in : delimited list */ \
460 while (start) { \ 769 while (start) { \
461 rpath_security_checks(elf, start, get_elfdtype(word)); \ 770 rpath_security_checks(elf, start, get_elfdtype(word)); \
462 end = strchr(start, ':'); \ 771 end = strchr(start, ':'); \
463 len = (end ? abs(end - start) : strlen(start)); \ 772 len = (end ? abs(end - start) : strlen(start)); \
464 if (use_ldcache) \ 773 if (use_ldcache) { \
465 for (s = 0; ldpaths[s]; ++s) \ 774 size_t n; \
775 const char *ldpath; \
776 array_for_each(ldpaths, n, ldpath) \
466 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 777 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
467 *r = end; \ 778 *r = end; \
468 /* corner case ... if RPATH reads "/usr/lib:", we want \ 779 /* corner case ... if RPATH reads "/usr/lib:", we want \
469 * to show ':' rather than '' */ \ 780 * to show ':' rather than '' */ \
470 if (end && end[1] != '\0') \ 781 if (end && end[1] != '\0') \
471 (*r)++; \ 782 (*r)++; \
472 break; \ 783 break; \
473 } \ 784 } \
785 } \
474 if (!*r || !end) \ 786 if (!*r || !end) \
475 break; \ 787 break; \
476 else \ 788 else \
477 start = start + len + 1; \ 789 start = start + len + 1; \
478 } \ 790 } \
544 xstrcat(ret, (runpath ? runpath : rpath), ret_len); 856 xstrcat(ret, (runpath ? runpath : rpath), ret_len);
545 else if (!be_quiet) 857 else if (!be_quiet)
546 xstrcat(ret, " - ", ret_len); 858 xstrcat(ret, " - ", ret_len);
547} 859}
548 860
861/* Defines can be seen in glibc's sysdeps/generic/ldconfig.h */
549#define LDSO_CACHE_MAGIC "ld.so-" 862#define LDSO_CACHE_MAGIC "ld.so-"
550#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1) 863#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
551#define LDSO_CACHE_VER "1.7.0" 864#define LDSO_CACHE_VER "1.7.0"
552#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1) 865#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
553#define FLAG_ANY -1 866#define FLAG_ANY -1
562#define FLAG_X8664_LIB64 0x0300 875#define FLAG_X8664_LIB64 0x0300
563#define FLAG_S390_LIB64 0x0400 876#define FLAG_S390_LIB64 0x0400
564#define FLAG_POWERPC_LIB64 0x0500 877#define FLAG_POWERPC_LIB64 0x0500
565#define FLAG_MIPS64_LIBN32 0x0600 878#define FLAG_MIPS64_LIBN32 0x0600
566#define FLAG_MIPS64_LIBN64 0x0700 879#define FLAG_MIPS64_LIBN64 0x0700
880#define FLAG_X8664_LIBX32 0x0800
881#define FLAG_ARM_LIBHF 0x0900
882#define FLAG_AARCH64_LIB64 0x0a00
567 883
568static char *lookup_cache_lib(elfobj *, char *); 884#if defined(__GLIBC__) || defined(__UCLIBC__)
885
569static char *lookup_cache_lib(elfobj *elf, char *fname) 886static char *lookup_cache_lib(elfobj *elf, const char *fname)
570{ 887{
571 int fd = 0; 888 int fd;
572 char *strs; 889 char *strs;
573 static char buf[__PAX_UTILS_PATH_MAX] = ""; 890 static char buf[__PAX_UTILS_PATH_MAX] = "";
574 const char *cachefile = "/etc/ld.so.cache"; 891 const char *cachefile = root_rel_path("/etc/ld.so.cache");
575 struct stat st; 892 struct stat st;
576 893
577 typedef struct { 894 typedef struct {
578 char magic[LDSO_CACHE_MAGIC_LEN]; 895 char magic[LDSO_CACHE_MAGIC_LEN];
579 char version[LDSO_CACHE_VER_LEN]; 896 char version[LDSO_CACHE_VER_LEN];
589 libentry_t *libent; 906 libentry_t *libent;
590 907
591 if (fname == NULL) 908 if (fname == NULL)
592 return NULL; 909 return NULL;
593 910
594 if (ldcache == 0) { 911 if (ldcache == NULL) {
595 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1) 912 if (fstatat(root_fd, cachefile, &st, 0))
913 return NULL;
914
915 fd = openat(root_fd, cachefile, O_RDONLY);
916 if (fd == -1)
596 return NULL; 917 return NULL;
597 918
598 /* cache these values so we only map/unmap the cache file once */ 919 /* cache these values so we only map/unmap the cache file once */
599 ldcache_size = st.st_size; 920 ldcache_size = st.st_size;
600 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0); 921 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
601
602 close(fd); 922 close(fd);
603 923
604 if (ldcache == (caddr_t)-1) { 924 if (ldcache == MAP_FAILED) {
605 ldcache = 0; 925 ldcache = NULL;
606 return NULL; 926 return NULL;
607 } 927 }
608 928
609 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 929 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
930 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
931 {
932 munmap(ldcache, ldcache_size);
933 ldcache = NULL;
610 return NULL; 934 return NULL;
611 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
612 return NULL;
613 } 935 }
936 } else
937 header = ldcache;
614 938
615 header = (header_t *) ldcache;
616 libent = (libentry_t *) (ldcache + sizeof(header_t)); 939 libent = ldcache + sizeof(header_t);
617 strs = (char *) &libent[header->nlibs]; 940 strs = (char *) &libent[header->nlibs];
618 941
619 for (fd = 0; fd < header->nlibs; fd++) { 942 for (fd = 0; fd < header->nlibs; ++fd) {
620 /* this should be more fine grained, but for now we assume that 943 /* This should be more fine grained, but for now we assume that
621 * diff arches will not be cached together. and we ignore the 944 * diff arches will not be cached together, and we ignore the
622 * the different multilib mips cases. */ 945 * the different multilib mips cases.
946 */
623 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK)) 947 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
624 continue; 948 continue;
625 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK)) 949 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
626 continue; 950 continue;
627 951
628 if (strcmp(fname, strs + libent[fd].sooffset) != 0) 952 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
629 continue; 953 continue;
954
955 /* Return first hit because that is how the ldso rolls */
630 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 956 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
957 break;
631 } 958 }
959
632 return buf; 960 return buf;
633} 961}
634 962
963#elif defined(__NetBSD__)
964static char *lookup_cache_lib(elfobj *elf, const char *fname)
965{
966 static char buf[__PAX_UTILS_PATH_MAX] = "";
967 static struct stat st;
968 size_t n;
969 char *ldpath;
970
971 array_for_each(ldpath, n, ldpath) {
972 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
973 continue; /* if the pathname is too long, or something went wrong, ignore */
974
975 if (stat(buf, &st) != 0)
976 continue; /* if the lib doesn't exist in *ldpath, look further */
977
978 /* NetBSD doesn't actually do sanity checks, it just loads the file
979 * and if that doesn't work, continues looking in other directories.
980 * This cannot easily be safely emulated, unfortunately. For now,
981 * just assume that if it exists, it's a valid library. */
982
983 return buf;
984 }
985
986 /* not found in any path */
987 return NULL;
988}
989#else
990#ifdef __ELF__
991#warning Cache support not implemented for your target
992#endif
993static char *lookup_cache_lib(elfobj *elf, const char *fname)
994{
995 return NULL;
996}
997#endif
998
999static char *lookup_config_lib(const char *fname)
1000{
1001 static char buf[__PAX_UTILS_PATH_MAX] = "";
1002 const char *ldpath;
1003 size_t n;
1004
1005 array_for_each(ldpaths, n, ldpath) {
1006 snprintf(buf, sizeof(buf), "%s/%s", root_rel_path(ldpath), fname);
1007 if (faccessat(root_fd, buf, F_OK, AT_SYMLINK_NOFOLLOW) == 0)
1008 return buf;
1009 }
1010
1011 return NULL;
1012}
635 1013
636static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 1014static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
637{ 1015{
638 unsigned long i; 1016 unsigned long i;
639 char *needed; 1017 char *needed;
640 void *strtbl_void; 1018 void *strtbl_void;
641 char *p; 1019 char *p;
642 1020
1021 /*
1022 * -n -> op==0 -> print all
1023 * -N -> op==1 -> print requested
1024 */
643 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 1025 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
1026 return NULL;
644 1027
645 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 1028 strtbl_void = elf_findsecbyname(elf, ".dynstr");
646 1029
647 if (elf->phdr && strtbl_void) { 1030 if (elf->phdr && strtbl_void) {
648#define SHOW_NEEDED(B) \ 1031#define SHOW_NEEDED(B) \
650 Elf ## B ## _Dyn *dyn; \ 1033 Elf ## B ## _Dyn *dyn; \
651 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1034 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
652 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1035 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
653 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1036 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
654 Elf ## B ## _Off offset; \ 1037 Elf ## B ## _Off offset; \
1038 size_t matched = 0; \
1039 /* Walk all the program headers to find the PT_DYNAMIC */ \
655 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1040 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
656 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1041 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
1042 continue; \
657 offset = EGET(phdr[i].p_offset); \ 1043 offset = EGET(phdr[i].p_offset); \
658 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1044 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
1045 continue; \
1046 /* Walk all the dynamic tags to find NEEDED entries */ \
659 dyn = DYN ## B (elf->data + offset); \ 1047 dyn = DYN ## B (elf->vdata + offset); \
660 while (EGET(dyn->d_tag) != DT_NULL) { \ 1048 while (EGET(dyn->d_tag) != DT_NULL) { \
661 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 1049 if (EGET(dyn->d_tag) == DT_NEEDED) { \
662 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1050 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
663 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1051 if (offset >= (Elf ## B ## _Off)elf->len) { \
664 ++dyn; \ 1052 ++dyn; \
665 continue; \ 1053 continue; \
666 } \ 1054 } \
667 needed = (char*)(elf->data + offset); \ 1055 needed = elf->data + offset; \
668 if (op == 0) { \ 1056 if (op == 0) { \
1057 /* -n -> print all entries */ \
669 if (!be_wewy_wewy_quiet) { \ 1058 if (!be_wewy_wewy_quiet) { \
670 if (*found_needed) xchrcat(ret, ',', ret_len); \ 1059 if (*found_needed) xchrcat(ret, ',', ret_len); \
671 if (use_ldcache) \ 1060 if (use_ldpath) { \
1061 if ((p = lookup_config_lib(needed)) != NULL) \
1062 needed = p; \
1063 } else if (use_ldcache) { \
672 if ((p = lookup_cache_lib(elf, needed)) != NULL) \ 1064 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
673 needed = p; \ 1065 needed = p; \
1066 } \
674 xstrcat(ret, needed, ret_len); \ 1067 xstrcat(ret, needed, ret_len); \
675 } \ 1068 } \
676 *found_needed = 1; \ 1069 *found_needed = 1; \
677 } else { \ 1070 } else { \
678 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 1071 /* -N -> print matching entries */ \
1072 size_t n; \
1073 const char *find_lib_name; \
1074 \
1075 array_for_each(find_lib_arr, n, find_lib_name) { \
1076 int invert = 1; \
1077 if (find_lib_name[0] == '!') \
1078 invert = 0, ++find_lib_name; \
1079 if (!strcmp(find_lib_name, needed) == invert) \
1080 ++matched; \
1081 } \
1082 \
1083 if (matched == array_cnt(find_lib_arr)) { \
679 *found_lib = 1; \ 1084 *found_lib = 1; \
680 return (be_wewy_wewy_quiet ? NULL : needed); \ 1085 return (be_wewy_wewy_quiet ? NULL : find_lib); \
681 } \ 1086 } \
682 } \ 1087 } \
683 } \ 1088 } \
684 ++dyn; \ 1089 ++dyn; \
685 } \ 1090 } \
692 1097
693 return NULL; 1098 return NULL;
694} 1099}
695static char *scanelf_file_interp(elfobj *elf, char *found_interp) 1100static char *scanelf_file_interp(elfobj *elf, char *found_interp)
696{ 1101{
697 void *strtbl_void; 1102 uint64_t offset = 0;
698 1103
699 if (!show_interp) return NULL; 1104 if (!show_interp) return NULL;
700 1105
1106 if (elf->phdr) {
1107 /* Walk all the program headers to find the PT_INTERP */
1108#define SHOW_PT_INTERP(B) \
1109 if (elf->elf_class == ELFCLASS ## B) { \
1110 size_t i; \
1111 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
1112 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
1113 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
1114 if (EGET(phdr[i].p_type) == PT_INTERP) { \
1115 offset = EGET(phdr[i].p_offset); \
1116 break; \
1117 } \
1118 } \
1119 }
1120 SHOW_PT_INTERP(32)
1121 SHOW_PT_INTERP(64)
1122 } else if (elf->shdr) {
1123 /* Use the section headers to find it */
701 strtbl_void = elf_findsecbyname(elf, ".interp"); 1124 void *strtbl_void = elf_findsecbyname(elf, ".interp");
702 1125
703 if (strtbl_void) {
704#define SHOW_INTERP(B) \ 1126#define SHOW_INTERP(B) \
705 if (elf->elf_class == ELFCLASS ## B) { \ 1127 if (elf->elf_class == ELFCLASS ## B) { \
706 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1128 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
707 *found_interp = 1; \ 1129 offset = EGET(strtbl->sh_offset); \
708 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \
709 } 1130 }
1131 if (strtbl_void) {
710 SHOW_INTERP(32) 1132 SHOW_INTERP(32)
711 SHOW_INTERP(64) 1133 SHOW_INTERP(64)
712 } 1134 }
1135 }
1136
1137 /* Validate the pointer even if we don't use it in output */
1138 if (offset && offset <= (uint64_t)elf->len) {
1139 char *interp = elf->data + offset;
1140
1141 /* If it isn't a C pointer, it's garbage */
1142 if (memchr(interp, 0, elf->len - offset)) {
1143 *found_interp = 1;
1144 if (!be_wewy_wewy_quiet)
1145 return interp;
1146 }
1147 }
1148
713 return NULL; 1149 return NULL;
714} 1150}
715static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1151static const char *scanelf_file_bind(elfobj *elf, char *found_bind)
716{ 1152{
717 unsigned long i; 1153 unsigned long i;
718 struct stat s; 1154 struct stat s;
1155 bool dynamic = false;
719 1156
720 if (!show_bind) return NULL; 1157 if (!show_bind) return NULL;
721 if (!elf->phdr) return NULL; 1158 if (!elf->phdr) return NULL;
722 1159
723#define SHOW_BIND(B) \ 1160#define SHOW_BIND(B) \
725 Elf ## B ## _Dyn *dyn; \ 1162 Elf ## B ## _Dyn *dyn; \
726 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1163 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
727 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1164 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
728 Elf ## B ## _Off offset; \ 1165 Elf ## B ## _Off offset; \
729 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1166 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
730 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1167 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
1168 dynamic = true; \
731 offset = EGET(phdr[i].p_offset); \ 1169 offset = EGET(phdr[i].p_offset); \
732 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1170 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
733 dyn = DYN ## B (elf->data + offset); \ 1171 dyn = DYN ## B (elf->vdata + offset); \
734 while (EGET(dyn->d_tag) != DT_NULL) { \ 1172 while (EGET(dyn->d_tag) != DT_NULL) { \
735 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1173 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
736 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 1174 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
737 { \ 1175 { \
738 if (be_quiet) return NULL; \ 1176 if (be_quiet) return NULL; \
746 SHOW_BIND(32) 1184 SHOW_BIND(32)
747 SHOW_BIND(64) 1185 SHOW_BIND(64)
748 1186
749 if (be_wewy_wewy_quiet) return NULL; 1187 if (be_wewy_wewy_quiet) return NULL;
750 1188
1189 /* don't output anything if quiet mode and the ELF is static or not setuid */
751 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 1190 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
752 return NULL; 1191 return NULL;
753 } else { 1192 } else {
754 *found_bind = 1; 1193 *found_bind = 1;
755 return (char *) "LAZY"; 1194 return dynamic ? "LAZY" : "STATIC";
756 } 1195 }
757} 1196}
758static char *scanelf_file_soname(elfobj *elf, char *found_soname) 1197static char *scanelf_file_soname(elfobj *elf, char *found_soname)
759{ 1198{
760 unsigned long i; 1199 unsigned long i;
772 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1211 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
773 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1212 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
774 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1213 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
775 Elf ## B ## _Off offset; \ 1214 Elf ## B ## _Off offset; \
776 /* only look for soname in shared objects */ \ 1215 /* only look for soname in shared objects */ \
777 if (ehdr->e_type != ET_DYN) \ 1216 if (EGET(ehdr->e_type) != ET_DYN) \
778 return NULL; \ 1217 return NULL; \
779 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1218 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
780 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1219 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
781 offset = EGET(phdr[i].p_offset); \ 1220 offset = EGET(phdr[i].p_offset); \
782 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1221 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
783 dyn = DYN ## B (elf->data + offset); \ 1222 dyn = DYN ## B (elf->vdata + offset); \
784 while (EGET(dyn->d_tag) != DT_NULL) { \ 1223 while (EGET(dyn->d_tag) != DT_NULL) { \
785 if (EGET(dyn->d_tag) == DT_SONAME) { \ 1224 if (EGET(dyn->d_tag) == DT_SONAME) { \
786 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1225 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
787 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1226 if (offset >= (Elf ## B ## _Off)elf->len) { \
788 ++dyn; \ 1227 ++dyn; \
789 continue; \ 1228 continue; \
790 } \ 1229 } \
791 soname = (char*)(elf->data + offset); \ 1230 soname = elf->data + offset; \
792 *found_soname = 1; \ 1231 *found_soname = 1; \
793 return (be_wewy_wewy_quiet ? NULL : soname); \ 1232 return (be_wewy_wewy_quiet ? NULL : soname); \
794 } \ 1233 } \
795 ++dyn; \ 1234 ++dyn; \
796 } \ 1235 } \
799 SHOW_SONAME(64) 1238 SHOW_SONAME(64)
800 } 1239 }
801 1240
802 return NULL; 1241 return NULL;
803} 1242}
1243
1244/*
1245 * We support the symbol form:
1246 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
1247 * If the symbol name is empty, then all symbols are matched.
1248 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1249 * Do not rely on this output format at all.
1250 * Otherwise the symbol name is used to search (either regex or string compare).
1251 * If the first char of the symbol name is a plus ("+"), then only match
1252 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1253 * Putting modifiers in between the percent signs allows for more in depth
1254 * filters. There are groups of modifiers. If you don't specify a member
1255 * of a group, then all types in that group are matched. The current
1256 * groups and their types are:
1257 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1258 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1259 * STV group: STV_DEFAULT:p STV_INTERNAL:i STV_HIDDEN:h STV_PROTECTED:P
1260 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1261 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1262 * You can search for multiple symbols at once by seperating with a comma (",").
1263 *
1264 * Some examples:
1265 * ELFs with a weak function "foo":
1266 * scanelf -s %wf%foo <ELFs>
1267 * ELFs that define the symbol "main":
1268 * scanelf -s +main <ELFs>
1269 * scanelf -s %d%main <ELFs>
1270 * ELFs that refer to the undefined symbol "brk":
1271 * scanelf -s -brk <ELFs>
1272 * scanelf -s %u%brk <ELFs>
1273 * All global defined objects in an ELF:
1274 * scanelf -s %ogd% <ELF>
1275 */
1276static void
1277scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1278 unsigned int stt, unsigned int stb, unsigned int stv, unsigned int shn, unsigned long size)
1279{
1280 const char *this_sym;
1281 size_t n;
1282
1283 array_for_each(find_sym_arr, n, this_sym) {
1284 bool inc_notype, inc_object, inc_func, inc_file,
1285 inc_local, inc_global, inc_weak,
1286 inc_visdef, inc_intern, inc_hidden, inc_prot,
1287 inc_def, inc_undef, inc_abs, inc_common;
1288
1289 /* symbol selection! */
1290 inc_notype = inc_object = inc_func = inc_file =
1291 inc_local = inc_global = inc_weak =
1292 inc_visdef = inc_intern = inc_hidden = inc_prot =
1293 inc_def = inc_undef = inc_abs = inc_common =
1294 (*this_sym != '%');
1295
1296 /* parse the contents of %...% */
1297 if (!inc_notype) {
1298 while (*(this_sym++)) {
1299 if (*this_sym == '%') {
1300 ++this_sym;
1301 break;
1302 }
1303 switch (*this_sym) {
1304 case 'n': inc_notype = true; break;
1305 case 'o': inc_object = true; break;
1306 case 'f': inc_func = true; break;
1307 case 'F': inc_file = true; break;
1308 case 'l': inc_local = true; break;
1309 case 'g': inc_global = true; break;
1310 case 'w': inc_weak = true; break;
1311 case 'p': inc_visdef = true; break;
1312 case 'i': inc_intern = true; break;
1313 case 'h': inc_hidden = true; break;
1314 case 'P': inc_prot = true; break;
1315 case 'd': inc_def = true; break;
1316 case 'u': inc_undef = true; break;
1317 case 'a': inc_abs = true; break;
1318 case 'c': inc_common = true; break;
1319 default: err("invalid symbol selector '%c'", *this_sym);
1320 }
1321 }
1322
1323 /* If no types are matched, not match all */
1324 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1325 inc_notype = inc_object = inc_func = inc_file = true;
1326 if (!inc_local && !inc_global && !inc_weak)
1327 inc_local = inc_global = inc_weak = true;
1328 if (!inc_visdef && !inc_intern && !inc_hidden && !inc_prot)
1329 inc_visdef = inc_intern = inc_hidden = inc_prot = true;
1330 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1331 inc_def = inc_undef = inc_abs = inc_common = true;
1332
1333 /* backwards compat for defined/undefined short hand */
1334 } else if (*this_sym == '+') {
1335 inc_undef = false;
1336 ++this_sym;
1337 } else if (*this_sym == '-') {
1338 inc_def = inc_abs = inc_common = false;
1339 ++this_sym;
1340 }
1341
1342 /* filter symbols */
1343 if ((!inc_notype && stt == STT_NOTYPE ) || \
1344 (!inc_object && stt == STT_OBJECT ) || \
1345 (!inc_func && stt == STT_FUNC ) || \
1346 (!inc_file && stt == STT_FILE ) || \
1347 (!inc_local && stb == STB_LOCAL ) || \
1348 (!inc_global && stb == STB_GLOBAL ) || \
1349 (!inc_weak && stb == STB_WEAK ) || \
1350 (!inc_visdef && stv == STV_DEFAULT ) || \
1351 (!inc_intern && stv == STV_INTERNAL ) || \
1352 (!inc_hidden && stv == STV_HIDDEN ) || \
1353 (!inc_prot && stv == STV_PROTECTED) || \
1354 (!inc_def && shn && shn < SHN_LORESERVE) || \
1355 (!inc_undef && shn == SHN_UNDEF ) || \
1356 (!inc_abs && shn == SHN_ABS ) || \
1357 (!inc_common && shn == SHN_COMMON ))
1358 continue;
1359
1360 if (*this_sym == '*') {
1361 /* a "*" symbol gets you debug output */
1362 printf("%s(%s) %5lX %-15s %-15s %-15s %-15s %s\n",
1363 ((*found_sym == 0) ? "\n\t" : "\t"),
1364 elf->base_filename,
1365 size,
1366 get_elfstttype(stt),
1367 get_elfstbtype(stb),
1368 get_elfstvtype(stv),
1369 get_elfshntype(shn),
1370 symname);
1371 goto matched;
1372
1373 } else {
1374 if (g_match) {
1375 /* regex match the symbol */
1376 if (regexec(find_sym_regex_arr->eles[n], symname, 0, NULL, 0) == REG_NOMATCH)
1377 continue;
1378
1379 } else if (*this_sym) {
1380 /* give empty symbols a "pass", else do a normal compare */
1381 const size_t len = strlen(this_sym);
1382 if (!(strncmp(this_sym, symname, len) == 0 &&
1383 /* Accept unversioned symbol names */
1384 (symname[len] == '\0' || symname[len] == '@')))
1385 continue;
1386 }
1387
1388 if (be_semi_verbose) {
1389 char buf[1024];
1390 snprintf(buf, sizeof(buf), "%lX %s %s",
1391 size,
1392 get_elfstttype(stt),
1393 this_sym);
1394 *ret = xstrdup(buf);
1395 } else {
1396 if (*ret) xchrcat(ret, ',', ret_len);
1397 xstrcat(ret, symname, ret_len);
1398 }
1399
1400 goto matched;
1401 }
1402 }
1403
1404 return;
1405
1406 matched:
1407 *found_sym = 1;
1408}
1409
804static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1410static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
805{ 1411{
806 unsigned long i;
807 char *ret; 1412 char *ret;
808 void *symtab_void, *strtab_void; 1413 void *symtab_void, *strtab_void;
809 1414
810 if (!find_sym) return NULL; 1415 if (!find_sym) return NULL;
811 ret = find_sym; 1416 ret = NULL;
812 1417
813 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1418 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
814 1419
815 if (symtab_void && strtab_void) { 1420 if (symtab_void && strtab_void) {
816#define FIND_SYM(B) \ 1421#define FIND_SYM(B) \
817 if (elf->elf_class == ELFCLASS ## B) { \ 1422 if (elf->elf_class == ELFCLASS ## B) { \
818 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1423 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
819 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1424 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
820 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1425 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
821 unsigned long cnt = EGET(symtab->sh_entsize); \ 1426 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
822 char *symname; \ 1427 char *symname; \
1428 size_t ret_len = 0; \
1429 if (!VALID_SHDR(elf, symtab) || !VALID_SHDR(elf, strtab)) \
1430 goto break_out; \
823 if (cnt) \ 1431 if (cnt) \
824 cnt = EGET(symtab->sh_size) / cnt; \ 1432 cnt = EGET(symtab->sh_size) / cnt; \
825 for (i = 0; i < cnt; ++i) { \ 1433 for (i = 0; i < cnt; ++i) { \
1434 if ((void *)sym >= elf->data_end - sizeof(*sym)) \
1435 goto break_out; \
826 if (sym->st_name) { \ 1436 if (sym->st_name) { \
1437 /* make sure the symbol name is in acceptable memory range */ \
827 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1438 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
828 if ((void*)symname > (void*)elf->data_end) { \ 1439 if (EGET(sym->st_name) >= (uint64_t)elf->len || \
829 warnf("%s: corrupt ELF symbols", elf->filename); \ 1440 EGET(strtab->sh_offset) + EGET(sym->st_name) >= (uint64_t)elf->len || \
830 continue; \ 1441 !memchr(symname, 0, elf->len - EGET(strtab->sh_offset) + EGET(sym->st_name))) \
831 } \
832 if (*find_sym == '*') { \
833 printf("%s(%s) %5lX %15s %s\n", \
834 ((*found_sym == 0) ? "\n\t" : "\t"), \
835 elf->base_filename, \
836 (unsigned long)sym->st_size, \
837 get_elfstttype(sym->st_info), \
838 symname); \
839 *found_sym = 1; \
840 } else { \
841 char *this_sym, *next_sym; \
842 this_sym = find_sym; \
843 do { \
844 next_sym = strchr(this_sym, ','); \
845 if (next_sym == NULL) \
846 next_sym = this_sym + strlen(this_sym); \
847 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \
848 (strcmp(symname, versioned_symname) == 0)) { \
849 ret = this_sym; \
850 (*found_sym)++; \
851 goto break_out; \ 1442 goto break_out; \
852 } \ 1443 scanelf_match_symname(elf, found_sym, \
853 this_sym = next_sym + 1; \ 1444 &ret, &ret_len, symname, \
854 } while (*next_sym != '\0'); \ 1445 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
855 } \ 1446 ELF##B##_ST_BIND(EGET(sym->st_info)), \
1447 ELF##B##_ST_VISIBILITY(EGET(sym->st_other)), \
1448 EGET(sym->st_shndx), \
1449 /* st_size can be 64bit, but no one is really that big, so screw em */ \
1450 EGET(sym->st_size)); \
856 } \ 1451 } \
857 ++sym; \ 1452 ++sym; \
858 } } 1453 } \
1454 }
859 FIND_SYM(32) 1455 FIND_SYM(32)
860 FIND_SYM(64) 1456 FIND_SYM(64)
861 } 1457 }
862 1458
863break_out:
864 if (be_wewy_wewy_quiet) return NULL; 1459 if (be_wewy_wewy_quiet) return NULL;
865 1460
866 if (*find_sym != '*' && *found_sym) 1461 if (*find_sym != '*' && *found_sym)
867 return ret; 1462 return ret;
868 if (be_quiet) 1463 if (be_quiet)
869 return NULL; 1464 return NULL;
870 else 1465 else
871 return (char *)" - "; 1466 return " - ";
872}
873 1467
1468 break_out:
1469 warnf("%s: corrupt ELF symbols", elf->filename);
1470 return NULL;
1471}
1472
1473static const char *scanelf_file_sections(elfobj *elf, char *found_section)
1474{
1475 if (!find_section)
1476 return NULL;
1477
1478#define FIND_SECTION(B) \
1479 if (elf->elf_class == ELFCLASS ## B) { \
1480 size_t matched, n; \
1481 int invert; \
1482 const char *section_name; \
1483 Elf ## B ## _Shdr *section; \
1484 \
1485 matched = 0; \
1486 array_for_each(find_section_arr, n, section_name) { \
1487 invert = (*section_name == '!' ? 1 : 0); \
1488 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
1489 if ((section == NULL && invert) || (section != NULL && !invert)) \
1490 ++matched; \
1491 } \
1492 \
1493 if (matched == array_cnt(find_section_arr)) \
1494 *found_section = 1; \
1495 }
1496 FIND_SECTION(32)
1497 FIND_SECTION(64)
1498
1499 if (be_wewy_wewy_quiet)
1500 return NULL;
1501
1502 if (*found_section)
1503 return find_section;
1504
1505 if (be_quiet)
1506 return NULL;
1507 else
1508 return " - ";
1509}
874 1510
875/* scan an elf file and show all the fun stuff */ 1511/* scan an elf file and show all the fun stuff */
876#define prints(str) write(fileno(stdout), str, strlen(str)) 1512#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
877static int scanelf_elfobj(elfobj *elf) 1513static int scanelf_elfobj(elfobj *elf)
878{ 1514{
879 unsigned long i; 1515 unsigned long i;
880 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1516 char found_pax, found_phdr, found_relro, found_load, found_textrel,
881 found_rpath, found_needed, found_interp, found_bind, found_soname, 1517 found_rpath, found_needed, found_interp, found_bind, found_soname,
882 found_sym, found_lib, found_file, found_textrels; 1518 found_sym, found_lib, found_file, found_textrels, found_section;
883 static char *out_buffer = NULL; 1519 static char *out_buffer = NULL;
884 static size_t out_len; 1520 static size_t out_len;
885 1521
886 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1522 found_pax = found_phdr = found_relro = found_load = found_textrel = \
887 found_rpath = found_needed = found_interp = found_bind = found_soname = \ 1523 found_rpath = found_needed = found_interp = found_bind = found_soname = \
888 found_sym = found_lib = found_file = found_textrels = 0; 1524 found_sym = found_lib = found_file = found_textrels = found_section = 0;
889 1525
890 if (be_verbose > 2) 1526 if (be_verbose > 2)
891 printf("%s: scanning file {%s,%s}\n", elf->filename, 1527 printf("%s: scanning file {%s,%s}\n", elf->filename,
892 get_elfeitype(EI_CLASS, elf->elf_class), 1528 get_elfeitype(EI_CLASS, elf->elf_class),
893 get_elfeitype(EI_DATA, elf->data[EI_DATA])); 1529 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
895 printf("%s: scanning file\n", elf->filename); 1531 printf("%s: scanning file\n", elf->filename);
896 1532
897 /* init output buffer */ 1533 /* init output buffer */
898 if (!out_buffer) { 1534 if (!out_buffer) {
899 out_len = sizeof(char) * 80; 1535 out_len = sizeof(char) * 80;
900 out_buffer = (char*)xmalloc(out_len); 1536 out_buffer = xmalloc(out_len);
901 } 1537 }
902 *out_buffer = '\0'; 1538 *out_buffer = '\0';
903 1539
904 /* show the header */ 1540 /* show the header */
905 if (!be_quiet && show_banner) { 1541 if (!be_quiet && show_banner) {
906 for (i = 0; out_format[i]; ++i) { 1542 for (i = 0; out_format[i]; ++i) {
907 if (!IS_MODIFIER(out_format[i])) continue; 1543 if (!IS_MODIFIER(out_format[i])) continue;
908 1544
909 switch (out_format[++i]) { 1545 switch (out_format[++i]) {
1546 case '+': break;
910 case '%': break; 1547 case '%': break;
911 case '#': break; 1548 case '#': break;
912 case 'F': 1549 case 'F':
913 case 'p': 1550 case 'p':
914 case 'f': prints("FILE "); found_file = 1; break; 1551 case 'f': prints("FILE "); found_file = 1; break;
915 case 'o': prints(" TYPE "); break; 1552 case 'o': prints(" TYPE "); break;
916 case 'x': prints(" PAX "); break; 1553 case 'x': prints(" PAX "); break;
917 case 'e': prints("STK/REL/PTL "); break; 1554 case 'e': prints("STK/REL/PTL "); break;
918 case 't': prints("TEXTREL "); break; 1555 case 't': prints("TEXTREL "); break;
919 case 'r': prints("RPATH "); break; 1556 case 'r': prints("RPATH "); break;
1557 case 'M': prints("CLASS "); break;
1558 case 'l':
920 case 'n': prints("NEEDED "); break; 1559 case 'n': prints("NEEDED "); break;
921 case 'i': prints("INTERP "); break; 1560 case 'i': prints("INTERP "); break;
922 case 'b': prints("BIND "); break; 1561 case 'b': prints("BIND "); break;
1562 case 'Z': prints("SIZE "); break;
923 case 'S': prints("SONAME "); break; 1563 case 'S': prints("SONAME "); break;
924 case 's': prints("SYM "); break; 1564 case 's': prints("SYM "); break;
925 case 'N': prints("LIB "); break; 1565 case 'N': prints("LIB "); break;
926 case 'T': prints("TEXTRELS "); break; 1566 case 'T': prints("TEXTRELS "); break;
1567 case 'k': prints("SECTION "); break;
1568 case 'a': prints("ARCH "); break;
1569 case 'I': prints("OSABI "); break;
1570 case 'Y': prints("EABI "); break;
1571 case 'O': prints("PERM "); break;
1572 case 'D': prints("ENDIAN "); break;
927 default: warnf("'%c' has no title ?", out_format[i]); 1573 default: warnf("'%c' has no title ?", out_format[i]);
928 } 1574 }
929 } 1575 }
930 if (!found_file) prints("FILE "); 1576 if (!found_file) prints("FILE ");
931 prints("\n"); 1577 prints("\n");
935 1581
936 /* dump all the good stuff */ 1582 /* dump all the good stuff */
937 for (i = 0; out_format[i]; ++i) { 1583 for (i = 0; out_format[i]; ++i) {
938 const char *out; 1584 const char *out;
939 const char *tmp; 1585 const char *tmp;
940 1586 static char ubuf[sizeof(unsigned long)*2];
941 /* make sure we trim leading spaces in quiet mode */
942 if (be_quiet && *out_buffer == ' ' && !out_buffer[1])
943 *out_buffer = '\0';
944
945 if (!IS_MODIFIER(out_format[i])) { 1587 if (!IS_MODIFIER(out_format[i])) {
946 xchrcat(&out_buffer, out_format[i], &out_len); 1588 xchrcat(&out_buffer, out_format[i], &out_len);
947 continue; 1589 continue;
948 } 1590 }
949 1591
950 out = NULL; 1592 out = NULL;
951 be_wewy_wewy_quiet = (out_format[i] == '#'); 1593 be_wewy_wewy_quiet = (out_format[i] == '#');
1594 be_semi_verbose = (out_format[i] == '+');
952 switch (out_format[++i]) { 1595 switch (out_format[++i]) {
1596 case '+':
953 case '%': 1597 case '%':
954 case '#': 1598 case '#':
955 xchrcat(&out_buffer, out_format[i], &out_len); break; 1599 xchrcat(&out_buffer, out_format[i], &out_len); break;
956 case 'F': 1600 case 'F':
957 found_file = 1; 1601 found_file = 1;
983 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1627 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
984 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1628 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
985 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1629 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
986 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1630 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
987 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1631 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1632 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1633 case 'D': out = get_endian(elf); break;
1634 case 'O': out = strfileperms(elf->filename); break;
988 case 'n': 1635 case 'n':
989 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1636 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
990 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1637 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
991 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1638 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
992 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1639 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
993 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1640 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1641 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1642 case 'a': out = get_elfemtype(elf); break;
1643 case 'I': out = get_elfosabi(elf); break;
1644 case 'Y': out = get_elf_eabi(elf); break;
1645 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
994 default: warnf("'%c' has no scan code?", out_format[i]); 1646 default: warnf("'%c' has no scan code?", out_format[i]);
995 } 1647 }
996 if (out) { 1648 if (out)
997 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
998 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
999 xstrncat(&out_buffer, out, &out_len, (tmp-out));
1000 else
1001 xstrcat(&out_buffer, out, &out_len); 1649 xstrcat(&out_buffer, out, &out_len);
1002 }
1003 } 1650 }
1004 1651
1005#define FOUND_SOMETHING() \ 1652#define FOUND_SOMETHING() \
1006 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1653 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
1007 found_rpath || found_needed || found_interp || found_bind || \ 1654 found_rpath || found_needed || found_interp || found_bind || \
1008 found_soname || found_sym || found_lib || found_textrels) 1655 found_soname || found_sym || found_lib || found_textrels || found_section )
1009 1656
1010 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) { 1657 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
1011 xchrcat(&out_buffer, ' ', &out_len); 1658 xchrcat(&out_buffer, ' ', &out_len);
1012 xstrcat(&out_buffer, elf->filename, &out_len); 1659 xstrcat(&out_buffer, elf->filename, &out_len);
1013 } 1660 }
1020} 1667}
1021 1668
1022/* scan a single elf */ 1669/* scan a single elf */
1023static int scanelf_elf(const char *filename, int fd, size_t len) 1670static int scanelf_elf(const char *filename, int fd, size_t len)
1024{ 1671{
1025 int ret; 1672 int ret = 1;
1673 size_t n;
1674 const char *match_etype;
1026 elfobj *elf; 1675 elfobj *elf;
1027 1676
1028 /* verify this is real ELF */ 1677 /* Verify this is a real ELF */
1029 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) { 1678 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1030 if (be_verbose > 2) printf("%s: not an ELF\n", filename); 1679 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1031 return 1; 1680 return 2;
1032 }
1033
1034 if (strlen(match_etypes)) {
1035 char sbuf[126];
1036 strncpy(sbuf, match_etypes, sizeof(sbuf));
1037 if (strchr(match_etypes, ',') != NULL) {
1038 char *p;
1039 while((p = strrchr(sbuf, ',')) != NULL) {
1040 *p = 0;
1041 if (atoi(p+1) == get_etype(elf))
1042 goto label_ret;
1043 }
1044 } 1681 }
1045 if (atoi(sbuf) != get_etype(elf)) { 1682
1046 ret = 1; 1683 /* Possibly filter based on ELF bitness */
1684 switch (match_bits) {
1685 case 32:
1686 if (elf->elf_class != ELFCLASS32)
1047 goto label_done; 1687 goto done;
1688 break;
1689 case 64:
1690 if (elf->elf_class != ELFCLASS64)
1691 goto done;
1692 break;
1048 } 1693 }
1049 }
1050 1694
1051label_ret: 1695 /* Possibly filter based on the ELF's e_type field */
1696 array_for_each(match_etypes, n, match_etype)
1697 if (etype_lookup(match_etype) == get_etype(elf))
1698 goto scanit;
1699 if (array_cnt(match_etypes))
1700 goto done;
1701
1702 scanit:
1052 ret = scanelf_elfobj(elf); 1703 ret = scanelf_elfobj(elf);
1053 1704
1054label_done: 1705 done:
1055 unreadelf(elf); 1706 unreadelf(elf);
1056 return ret; 1707 return ret;
1057} 1708}
1058 1709
1059/* scan an archive of elfs */ 1710/* scan an archive of elfs */
1066 1717
1067 ar = ar_open_fd(filename, fd); 1718 ar = ar_open_fd(filename, fd);
1068 if (ar == NULL) 1719 if (ar == NULL)
1069 return 1; 1720 return 1;
1070 1721
1071 ar_buffer = (char*)mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0); 1722 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1072 while ((m=ar_next(ar)) != NULL) { 1723 while ((m = ar_next(ar)) != NULL) {
1724 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1725 if (cur_pos == -1)
1726 errp("lseek() failed");
1073 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size); 1727 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1074 if (elf) { 1728 if (elf) {
1075 scanelf_elfobj(elf); 1729 scanelf_elfobj(elf);
1076 unreadelf(elf); 1730 unreadelf(elf);
1077 } 1731 }
1078 } 1732 }
1079 munmap(ar_buffer, len); 1733 munmap(ar_buffer, len);
1080 1734
1081 return 0; 1735 return 0;
1082} 1736}
1083/* scan a file which may be an elf or an archive or some other magical beast */ 1737/* scan a file which may be an elf or an archive or some other magical beast */
1084static void scanelf_file(const char *filename) 1738static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1085{ 1739{
1740 const struct stat *st = st_cache;
1086 struct stat st; 1741 struct stat symlink_st;
1087 int fd; 1742 int fd;
1088 1743
1089 /* make sure 'filename' exists */
1090 if (lstat(filename, &st) == -1) {
1091 if (be_verbose > 2) printf("%s: does not exist\n", filename);
1092 return;
1093 }
1094
1095 /* always handle regular files and handle symlinked files if no -y */ 1744 /* always handle regular files and handle symlinked files if no -y */
1096 if (S_ISLNK(st.st_mode)) { 1745 if (S_ISLNK(st->st_mode)) {
1097 if (!scan_symlink) return; 1746 if (!scan_symlink)
1098 stat(filename, &st); 1747 return 1;
1748 fstatat(dir_fd, filename, &symlink_st, 0);
1749 st = &symlink_st;
1099 } 1750 }
1751
1100 if (!S_ISREG(st.st_mode)) { 1752 if (!S_ISREG(st->st_mode)) {
1101 if (be_verbose > 2) printf("%s: skipping non-file\n", filename); 1753 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1102 return; 1754 return 1;
1103 } 1755 }
1104 1756
1105 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1) 1757 if (match_perms) {
1758 if ((st->st_mode | match_perms) != st->st_mode)
1759 return 1;
1760 }
1761 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1762 if (fd == -1) {
1763 if (fix_elf && errno == ETXTBSY)
1764 warnp("%s: could not fix", filename);
1765 else if (be_verbose > 2)
1766 printf("%s: skipping file: %s\n", filename, strerror(errno));
1106 return; 1767 return 1;
1768 }
1107 1769
1108 if (scanelf_elf(filename, fd, st.st_size) == 1 && scan_archives) 1770 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1109 /* if it isn't an ELF, maybe it's an .a archive */ 1771 /* if it isn't an ELF, maybe it's an .a archive */
1772 if (scan_archives)
1110 scanelf_archive(filename, fd, st.st_size); 1773 scanelf_archive(filename, fd, st->st_size);
1111 1774
1775 /*
1776 * unreadelf() implicitly closes its fd, so only close it
1777 * when we are returning it in the non-ELF case
1778 */
1112 close(fd); 1779 close(fd);
1780 }
1781
1782 return 0;
1113} 1783}
1114 1784
1115/* scan a directory for ET_EXEC files and print when we find one */ 1785/* scan a directory for ET_EXEC files and print when we find one */
1116static void scanelf_dir(const char *path) 1786static int scanelf_dirat(int dir_fd, const char *path)
1117{ 1787{
1118 register DIR *dir; 1788 register DIR *dir;
1119 register struct dirent *dentry; 1789 register struct dirent *dentry;
1120 struct stat st_top, st; 1790 struct stat st_top, st;
1121 char buf[__PAX_UTILS_PATH_MAX]; 1791 char buf[__PAX_UTILS_PATH_MAX], *subpath;
1122 size_t pathlen = 0, len = 0; 1792 size_t pathlen = 0, len = 0;
1793 int ret = 0;
1794 int subdir_fd;
1123 1795
1124 /* make sure path exists */ 1796 /* make sure path exists */
1125 if (lstat(path, &st_top) == -1) { 1797 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
1126 if (be_verbose > 2) printf("%s: does not exist\n", path); 1798 if (be_verbose > 2) printf("%s: does not exist\n", path);
1127 return; 1799 return 1;
1128 } 1800 }
1129 1801
1130 /* ok, if it isn't a directory, assume we can open it */ 1802 /* ok, if it isn't a directory, assume we can open it */
1131 if (!S_ISDIR(st_top.st_mode)) { 1803 if (!S_ISDIR(st_top.st_mode))
1132 scanelf_file(path); 1804 return scanelf_fileat(dir_fd, path, &st_top);
1133 return;
1134 }
1135 1805
1136 /* now scan the dir looking for fun stuff */ 1806 /* now scan the dir looking for fun stuff */
1137 if ((dir = opendir(path)) == NULL) { 1807 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
1138 warnf("could not opendir %s: %s", path, strerror(errno)); 1808 if (subdir_fd == -1)
1809 dir = NULL;
1810 else
1811 dir = fdopendir(subdir_fd);
1812 if (dir == NULL) {
1813 if (subdir_fd != -1)
1814 close(subdir_fd);
1815 else if (be_verbose > 2)
1816 printf("%s: skipping dir: %s\n", path, strerror(errno));
1139 return; 1817 return 1;
1140 } 1818 }
1141 if (be_verbose > 1) printf("%s: scanning dir\n", path); 1819 if (be_verbose > 1) printf("%s: scanning dir\n", path);
1142 1820
1143 pathlen = strlen(path); 1821 subpath = stpcpy(buf, path);
1822 if (subpath[-1] != '/')
1823 *subpath++ = '/';
1824 pathlen = subpath - buf;
1144 while ((dentry = readdir(dir))) { 1825 while ((dentry = readdir(dir))) {
1145 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1826 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
1146 continue; 1827 continue;
1828
1829 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
1830 continue;
1831
1147 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1832 len = strlen(dentry->d_name);
1148 if (len >= sizeof(buf)) { 1833 if (len + pathlen + 1 >= sizeof(buf)) {
1149 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1834 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
1150 (unsigned long)len, (unsigned long)sizeof(buf)); 1835 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
1151 continue; 1836 continue;
1152 } 1837 }
1153 sprintf(buf, "%s/%s", path, dentry->d_name); 1838 memcpy(subpath, dentry->d_name, len);
1154 if (lstat(buf, &st) != -1) { 1839 subpath[len] = '\0';
1840
1155 if (S_ISREG(st.st_mode)) 1841 if (S_ISREG(st.st_mode))
1156 scanelf_file(buf); 1842 ret = scanelf_fileat(dir_fd, buf, &st);
1157 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1843 else if (dir_recurse && S_ISDIR(st.st_mode)) {
1158 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1844 if (dir_crossmount || (st_top.st_dev == st.st_dev))
1159 scanelf_dir(buf); 1845 ret = scanelf_dirat(dir_fd, buf);
1160 }
1161 } 1846 }
1162 } 1847 }
1163 closedir(dir); 1848 closedir(dir);
1164}
1165 1849
1850 return ret;
1851}
1852static int scanelf_dir(const char *path)
1853{
1854 return scanelf_dirat(root_fd, root_rel_path(path));
1855}
1856
1166static int scanelf_from_file(char *filename) 1857static int scanelf_from_file(const char *filename)
1167{ 1858{
1168 FILE *fp = NULL; 1859 FILE *fp;
1169 char *p; 1860 char *p, *path;
1170 char path[__PAX_UTILS_PATH_MAX]; 1861 size_t len;
1862 int ret;
1171 1863
1172 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1864 if (strcmp(filename, "-") == 0)
1173 fp = stdin; 1865 fp = stdin;
1174 else if ((fp = fopen(filename, "r")) == NULL) 1866 else if ((fp = fopen(filename, "r")) == NULL)
1175 return 1; 1867 return 1;
1176 1868
1177 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1869 path = NULL;
1870 len = 0;
1871 ret = 0;
1872 while (getline(&path, &len, fp) != -1) {
1178 if ((p = strchr(path, '\n')) != NULL) 1873 if ((p = strchr(path, '\n')) != NULL)
1179 *p = 0; 1874 *p = 0;
1180 search_path = path; 1875 search_path = path;
1181 scanelf_dir(path); 1876 ret = scanelf_dir(path);
1182 } 1877 }
1878 free(path);
1879
1183 if (fp != stdin) 1880 if (fp != stdin)
1184 fclose(fp); 1881 fclose(fp);
1882
1185 return 0; 1883 return ret;
1186} 1884}
1187 1885
1188static void load_ld_so_conf() 1886#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1887
1888static int _load_ld_cache_config(const char *fname)
1189{ 1889{
1190 FILE *fp = NULL; 1890 FILE *fp = NULL;
1191 char *p; 1891 char *p, *path;
1192 char path[__PAX_UTILS_PATH_MAX]; 1892 size_t len;
1193 int i = 0; 1893 int curr_fd = -1;
1194 1894
1195 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1895 fp = fopenat_r(root_fd, root_rel_path(fname));
1896 if (fp == NULL)
1196 return; 1897 return -1;
1197 1898
1198 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1899 path = NULL;
1199 if (*path != '/') 1900 len = 0;
1200 continue; 1901 while (getline(&path, &len, fp) != -1) {
1201
1202 if ((p = strrchr(path, '\r')) != NULL) 1902 if ((p = strrchr(path, '\r')) != NULL)
1203 *p = 0; 1903 *p = 0;
1204 if ((p = strchr(path, '\n')) != NULL) 1904 if ((p = strchr(path, '\n')) != NULL)
1205 *p = 0; 1905 *p = 0;
1206 1906
1207 ldpaths[i++] = xstrdup(path); 1907 /* recursive includes of the same file will make this segfault. */
1908 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1909 glob_t gl;
1910 size_t x;
1911 const char *gpath;
1208 1912
1209 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1913 /* re-use existing path buffer ... need to be creative */
1210 break; 1914 if (path[8] != '/')
1915 gpath = memcpy(path + 3, "/etc/", 5);
1916 else
1917 gpath = path + 8;
1918 if (root_fd != AT_FDCWD) {
1919 if (curr_fd == -1) {
1920 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1921 if (fchdir(root_fd))
1922 errp("unable to change to root dir");
1923 }
1924 gpath = root_rel_path(gpath);
1925 }
1926
1927 if (glob(gpath, 0, NULL, &gl) == 0) {
1928 for (x = 0; x < gl.gl_pathc; ++x) {
1929 /* try to avoid direct loops */
1930 if (strcmp(gl.gl_pathv[x], fname) == 0)
1931 continue;
1932 _load_ld_cache_config(gl.gl_pathv[x]);
1933 }
1934 globfree(&gl);
1935 }
1936
1937 /* failed globs are ignored by glibc */
1938 continue;
1211 } 1939 }
1212 ldpaths[i] = NULL; 1940
1941 if (*path != '/')
1942 continue;
1943
1944 xarraypush_str(ldpaths, path);
1945 }
1946 free(path);
1213 1947
1214 fclose(fp); 1948 fclose(fp);
1949
1950 if (curr_fd != -1) {
1951 if (fchdir(curr_fd))
1952 {/* don't care */}
1953 close(curr_fd);
1954 }
1955
1956 return 0;
1957}
1958
1959#elif defined(__FreeBSD__) || defined(__DragonFly__)
1960
1961static int _load_ld_cache_config(const char *fname)
1962{
1963 FILE *fp = NULL;
1964 char *b = NULL, *p;
1965 struct elfhints_hdr hdr;
1966
1967 fp = fopenat_r(root_fd, root_rel_path(fname));
1968 if (fp == NULL)
1969 return -1;
1970
1971 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1972 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1973 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1974 {
1975 fclose(fp);
1976 return -1;
1977 }
1978
1979 b = xmalloc(hdr.dirlistlen + 1);
1980 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1981 fclose(fp);
1982 free(b);
1983 return -1;
1984 }
1985
1986 while ((p = strsep(&b, ":"))) {
1987 if (*p == '\0')
1988 continue;
1989 xarraypush_str(ldpaths, p);
1990 }
1991
1992 free(b);
1993 fclose(fp);
1994 return 0;
1995}
1996
1997#else
1998#ifdef __ELF__
1999#warning Cache config support not implemented for your target
2000#endif
2001static int _load_ld_cache_config(const char *fname)
2002{
2003 return 0;
2004}
2005#endif
2006
2007static void load_ld_cache_config(const char *fname)
2008{
2009 bool scan_l, scan_ul, scan_ull;
2010 size_t n;
2011 const char *ldpath;
2012
2013 _load_ld_cache_config(fname);
2014
2015 scan_l = scan_ul = scan_ull = false;
2016 array_for_each(ldpaths, n, ldpath) {
2017 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = true;
2018 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = true;
2019 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = true;
2020 }
2021
2022 if (!scan_l) xarraypush_str(ldpaths, "/lib");
2023 if (!scan_ul) xarraypush_str(ldpaths, "/usr/lib");
2024 if (!scan_ull) xarraypush_str(ldpaths, "/usr/local/lib");
1215} 2025}
1216 2026
1217/* scan /etc/ld.so.conf for paths */ 2027/* scan /etc/ld.so.conf for paths */
1218static void scanelf_ldpath() 2028static void scanelf_ldpath(void)
1219{ 2029{
1220 char scan_l, scan_ul, scan_ull; 2030 size_t n;
1221 int i = 0; 2031 const char *ldpath;
1222 2032
1223 if (!ldpaths[0]) 2033 array_for_each(ldpaths, n, ldpath)
1224 err("Unable to load any paths from ld.so.conf");
1225
1226 scan_l = scan_ul = scan_ull = 0;
1227
1228 while (ldpaths[i]) {
1229 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1;
1230 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1;
1231 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1;
1232 scanelf_dir(ldpaths[i]); 2034 scanelf_dir(ldpath);
1233 ++i;
1234 }
1235
1236 if (!scan_l) scanelf_dir("/lib");
1237 if (!scan_ul) scanelf_dir("/usr/lib");
1238 if (!scan_ull) scanelf_dir("/usr/local/lib");
1239} 2035}
1240 2036
1241/* scan env PATH for paths */ 2037/* scan env PATH for paths */
1242static void scanelf_envpath() 2038static void scanelf_envpath(void)
1243{ 2039{
1244 char *path, *p; 2040 char *path, *p;
1245 2041
1246 path = getenv("PATH"); 2042 path = getenv("PATH");
1247 if (!path) 2043 if (!path)
1254 } 2050 }
1255 2051
1256 free(path); 2052 free(path);
1257} 2053}
1258 2054
1259 2055/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
1260/* usage / invocation handling functions */
1261#define PARSE_FLAGS "plRmyAXxetrnLibSs:gN:TaqvF:f:o:E:BhV" 2056#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
1262#define a_argument required_argument 2057#define a_argument required_argument
1263static struct option const long_opts[] = { 2058static struct option const long_opts[] = {
1264 {"path", no_argument, NULL, 'p'}, 2059 {"path", no_argument, NULL, 'p'},
1265 {"ldpath", no_argument, NULL, 'l'}, 2060 {"ldpath", no_argument, NULL, 'l'},
2061 {"use-ldpath",no_argument, NULL, 129},
2062 {"root", a_argument, NULL, 128},
1266 {"recursive", no_argument, NULL, 'R'}, 2063 {"recursive", no_argument, NULL, 'R'},
1267 {"mount", no_argument, NULL, 'm'}, 2064 {"mount", no_argument, NULL, 'm'},
1268 {"symlink", no_argument, NULL, 'y'}, 2065 {"symlink", no_argument, NULL, 'y'},
1269 {"archives", no_argument, NULL, 'A'}, 2066 {"archives", no_argument, NULL, 'A'},
1270 {"ldcache", no_argument, NULL, 'L'}, 2067 {"ldcache", no_argument, NULL, 'L'},
1271 {"fix", no_argument, NULL, 'X'}, 2068 {"fix", no_argument, NULL, 'X'},
2069 {"setpax", a_argument, NULL, 'z'},
1272 {"pax", no_argument, NULL, 'x'}, 2070 {"pax", no_argument, NULL, 'x'},
1273 {"header", no_argument, NULL, 'e'}, 2071 {"header", no_argument, NULL, 'e'},
1274 {"textrel", no_argument, NULL, 't'}, 2072 {"textrel", no_argument, NULL, 't'},
1275 {"rpath", no_argument, NULL, 'r'}, 2073 {"rpath", no_argument, NULL, 'r'},
1276 {"needed", no_argument, NULL, 'n'}, 2074 {"needed", no_argument, NULL, 'n'},
1277 {"interp", no_argument, NULL, 'i'}, 2075 {"interp", no_argument, NULL, 'i'},
1278 {"bind", no_argument, NULL, 'b'}, 2076 {"bind", no_argument, NULL, 'b'},
1279 {"soname", no_argument, NULL, 'S'}, 2077 {"soname", no_argument, NULL, 'S'},
1280 {"symbol", a_argument, NULL, 's'}, 2078 {"symbol", a_argument, NULL, 's'},
2079 {"section", a_argument, NULL, 'k'},
1281 {"lib", a_argument, NULL, 'N'}, 2080 {"lib", a_argument, NULL, 'N'},
1282 {"gmatch", no_argument, NULL, 'g'}, 2081 {"gmatch", no_argument, NULL, 'g'},
1283 {"textrels", no_argument, NULL, 'T'}, 2082 {"textrels", no_argument, NULL, 'T'},
1284 {"etype", a_argument, NULL, 'E'}, 2083 {"etype", a_argument, NULL, 'E'},
2084 {"bits", a_argument, NULL, 'M'},
2085 {"endian", no_argument, NULL, 'D'},
2086 {"osabi", no_argument, NULL, 'I'},
2087 {"eabi", no_argument, NULL, 'Y'},
2088 {"perms", a_argument, NULL, 'O'},
2089 {"size", no_argument, NULL, 'Z'},
1285 {"all", no_argument, NULL, 'a'}, 2090 {"all", no_argument, NULL, 'a'},
1286 {"quiet", no_argument, NULL, 'q'}, 2091 {"quiet", no_argument, NULL, 'q'},
1287 {"verbose", no_argument, NULL, 'v'}, 2092 {"verbose", no_argument, NULL, 'v'},
1288 {"format", a_argument, NULL, 'F'}, 2093 {"format", a_argument, NULL, 'F'},
1289 {"from", a_argument, NULL, 'f'}, 2094 {"from", a_argument, NULL, 'f'},
1290 {"file", a_argument, NULL, 'o'}, 2095 {"file", a_argument, NULL, 'o'},
2096 {"nocolor", no_argument, NULL, 'C'},
1291 {"nobanner", no_argument, NULL, 'B'}, 2097 {"nobanner", no_argument, NULL, 'B'},
1292 {"help", no_argument, NULL, 'h'}, 2098 {"help", no_argument, NULL, 'h'},
1293 {"version", no_argument, NULL, 'V'}, 2099 {"version", no_argument, NULL, 'V'},
1294 {NULL, no_argument, NULL, 0x0} 2100 {NULL, no_argument, NULL, 0x0}
1295}; 2101};
1296 2102
1297static const char *opts_help[] = { 2103static const char * const opts_help[] = {
1298 "Scan all directories in PATH environment", 2104 "Scan all directories in PATH environment",
1299 "Scan all directories in /etc/ld.so.conf", 2105 "Scan all directories in /etc/ld.so.conf",
2106 "Use ld.so.conf to show full path (use with -r/-n)",
2107 "Root directory (use with -l or -p)",
1300 "Scan directories recursively", 2108 "Scan directories recursively",
1301 "Don't recursively cross mount points", 2109 "Don't recursively cross mount points",
1302 "Don't scan symlinks", 2110 "Don't scan symlinks",
1303 "Scan archives (.a files)", 2111 "Scan archives (.a files)",
1304 "Utilize ld.so.cache information (use with -r/-n)", 2112 "Utilize ld.so.cache to show full path (use with -r/-n)",
1305 "Try and 'fix' bad things (use with -r/-e)\n", 2113 "Try and 'fix' bad things (use with -r/-e)",
2114 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1306 "Print PaX markings", 2115 "Print PaX markings",
1307 "Print GNU_STACK/PT_LOAD markings", 2116 "Print GNU_STACK/PT_LOAD markings",
1308 "Print TEXTREL information", 2117 "Print TEXTREL information",
1309 "Print RPATH information", 2118 "Print RPATH information",
1310 "Print NEEDED information", 2119 "Print NEEDED information",
1311 "Print INTERP information", 2120 "Print INTERP information",
1312 "Print BIND information", 2121 "Print BIND information",
1313 "Print SONAME information", 2122 "Print SONAME information",
1314 "Find a specified symbol", 2123 "Find a specified symbol",
2124 "Find a specified section",
1315 "Find a specified library", 2125 "Find a specified library",
1316 "Use strncmp to match libraries. (use with -N)", 2126 "Use regex rather than string compare (with -s); specify twice for case insensitive",
1317 "Locate cause of TEXTREL", 2127 "Locate cause of TEXTREL",
2128 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1318 "Print only ELF files matching numeric constant", 2129 "Print only ELF files matching numeric bits",
1319 "Print all scanned info (-x -e -t -r -b)\n", 2130 "Print Endianness",
2131 "Print OSABI",
2132 "Print EABI (EM_ARM Only)",
2133 "Print only ELF files matching octal permissions",
2134 "Print ELF file size",
2135 "Print all useful/simple info\n",
1320 "Only output 'bad' things", 2136 "Only output 'bad' things",
1321 "Be verbose (can be specified more than once)", 2137 "Be verbose (can be specified more than once)",
1322 "Use specified format for output", 2138 "Use specified format for output",
1323 "Read input stream from a filename", 2139 "Read input stream from a filename",
1324 "Write output stream to a filename", 2140 "Write output stream to a filename",
2141 "Don't emit color in output",
1325 "Don't display the header", 2142 "Don't display the header",
1326 "Print this help and exit", 2143 "Print this help and exit",
1327 "Print version and exit", 2144 "Print version and exit",
1328 NULL 2145 NULL
1329}; 2146};
1330 2147
1331/* display usage and exit */ 2148/* display usage and exit */
1332static void usage(int status) 2149static void usage(int status)
1333{ 2150{
1334 unsigned long i; 2151 const char a_arg[] = "<arg>";
2152 size_t a_arg_len = strlen(a_arg) + 2;
2153 size_t i;
2154 int optlen;
1335 printf("* Scan ELF binaries for stuff\n\n" 2155 printf("* Scan ELF binaries for stuff\n\n"
1336 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0); 2156 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1337 printf("Options: -[%s]\n", PARSE_FLAGS); 2157 printf("Options: -[%s]\n", PARSE_FLAGS);
2158
2159 /* prescan the --long opt length to auto-align */
2160 optlen = 0;
1338 for (i = 0; long_opts[i].name; ++i) 2161 for (i = 0; long_opts[i].name; ++i) {
2162 int l = strlen(long_opts[i].name);
2163 if (long_opts[i].has_arg == a_argument)
2164 l += a_arg_len;
2165 optlen = max(l, optlen);
2166 }
2167
2168 for (i = 0; long_opts[i].name; ++i) {
2169 /* first output the short flag if it has one */
2170 if (long_opts[i].val > '~')
2171 printf(" ");
2172 else
2173 printf(" -%c, ", long_opts[i].val);
2174
2175 /* then the long flag */
1339 if (long_opts[i].has_arg == no_argument) 2176 if (long_opts[i].has_arg == no_argument)
1340 printf(" -%c, --%-13s* %s\n", long_opts[i].val, 2177 printf("--%-*s", optlen, long_opts[i].name);
1341 long_opts[i].name, opts_help[i]);
1342 else 2178 else
1343 printf(" -%c, --%-6s <arg> * %s\n", long_opts[i].val, 2179 printf("--%s %s %*s", long_opts[i].name, a_arg,
1344 long_opts[i].name, opts_help[i]); 2180 (int)(optlen - strlen(long_opts[i].name) - a_arg_len), "");
1345 2181
1346 if (status != EXIT_SUCCESS) 2182 /* finally the help text */
1347 exit(status); 2183 printf("* %s\n", opts_help[i]);
2184 }
1348 2185
1349 puts("\nThe format modifiers for the -F option are:"); 2186 puts("\nFor more information, see the scanelf(1) manpage");
1350 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1351 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1352 puts(" i INTERP \tb BIND \ts symbol");
1353 puts(" N library \to Type \tT TEXTRELs");
1354 puts(" S SONAME");
1355 puts(" p filename (with search path removed)");
1356 puts(" f filename (short name/basename)");
1357 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1358
1359 exit(status); 2187 exit(status);
1360} 2188}
1361 2189
1362/* parse command line arguments and preform needed actions */ 2190/* parse command line arguments and preform needed actions */
2191#define do_pax_state(option, flag) \
2192 if (islower(option)) { \
2193 flags &= ~PF_##flag; \
2194 flags |= PF_NO##flag; \
2195 } else { \
2196 flags &= ~PF_NO##flag; \
2197 flags |= PF_##flag; \
2198 }
2199static void parse_delimited(array_t *arr, char *arg, const char *delim)
2200{
2201 char *ele = strtok(arg, delim);
2202 if (!ele) /* edge case: -s '' */
2203 xarraypush_str(arr, "");
2204 while (ele) {
2205 xarraypush_str(arr, ele);
2206 ele = strtok(NULL, delim);
2207 }
2208}
1363static void parseargs(int argc, char *argv[]) 2209static int parseargs(int argc, char *argv[])
1364{ 2210{
1365 int i; 2211 int i;
1366 char *from_file = NULL; 2212 const char *from_file = NULL;
2213 int ret = 0;
2214 char load_cache_config = 0;
1367 2215
1368 opterr = 0; 2216 opterr = 0;
1369 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2217 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1370 switch (i) { 2218 switch (i) {
1371 2219
1372 case 'V': 2220 case 'V':
1373 printf("pax-utils-%s: %s compiled %s\n%s\n" 2221 printf("pax-utils-%s: %s\n%s\n"
1374 "%s written for Gentoo by <solar and vapier @ gentoo.org>\n", 2222 "%s written for Gentoo by <solar and vapier @ gentoo.org>\n",
1375 VERSION, __FILE__, __DATE__, rcsid, argv0); 2223 VERSION, __FILE__, rcsid, argv0);
1376 exit(EXIT_SUCCESS); 2224 exit(EXIT_SUCCESS);
1377 break; 2225 break;
1378 case 'h': usage(EXIT_SUCCESS); break; 2226 case 'h': usage(EXIT_SUCCESS); break;
1379 case 'f': 2227 case 'f':
1380 if (from_file) warn("You prob don't want to specify -f twice"); 2228 if (from_file) warn("You prob don't want to specify -f twice");
1381 from_file = optarg; 2229 from_file = optarg;
1382 break; 2230 break;
1383 case 'E': 2231 case 'E':
1384 strncpy(match_etypes, optarg, sizeof(match_etypes)); 2232 /* historically, this was comma delimited */
2233 parse_delimited(match_etypes, optarg, ",");
2234 break;
2235 case 'M':
2236 match_bits = atoi(optarg);
2237 if (match_bits == 0) {
2238 if (strcmp(optarg, "ELFCLASS32") == 0)
2239 match_bits = 32;
2240 if (strcmp(optarg, "ELFCLASS64") == 0)
2241 match_bits = 64;
2242 }
2243 break;
2244 case 'O':
2245 if (sscanf(optarg, "%o", &match_perms) == -1)
2246 match_bits = 0;
1385 break; 2247 break;
1386 case 'o': { 2248 case 'o': {
1387 FILE *fp = NULL;
1388 if ((fp = freopen(optarg, "w", stdout)) == NULL) 2249 if (freopen(optarg, "w", stdout) == NULL)
1389 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2250 errp("Could not freopen(%s)", optarg);
1390 SET_STDOUT(fp);
1391 break; 2251 break;
1392 } 2252 }
1393
1394 case 's': { 2253 case 'k':
1395 if (find_sym) warn("You prob don't want to specify -s twice"); 2254 xarraypush_str(find_section_arr, optarg);
1396 find_sym = optarg;
1397 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1398 sprintf(versioned_symname, "%s@", find_sym);
1399 break; 2255 break;
1400 }
1401 case 'N': { 2256 case 's':
1402 if (find_lib) warn("You prob don't want to specify -N twice"); 2257 /* historically, this was comma delimited */
1403 find_lib = optarg; 2258 parse_delimited(find_sym_arr, optarg, ",");
1404 break; 2259 break;
1405 } 2260 case 'N':
1406 2261 xarraypush_str(find_lib_arr, optarg);
2262 break;
1407 case 'F': { 2263 case 'F': {
1408 if (out_format) warn("You prob don't want to specify -F twice"); 2264 if (out_format) warn("You prob don't want to specify -F twice");
1409 out_format = optarg; 2265 out_format = optarg;
1410 break; 2266 break;
1411 } 2267 }
2268 case 'z': {
2269 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
2270 size_t x;
1412 2271
1413 case 'g': gmatch = 1; /* break; any reason we dont breal; here ? */ 2272 for (x = 0; x < strlen(optarg); x++) {
2273 switch (optarg[x]) {
2274 case 'p':
2275 case 'P':
2276 do_pax_state(optarg[x], PAGEEXEC);
2277 break;
2278 case 's':
2279 case 'S':
2280 do_pax_state(optarg[x], SEGMEXEC);
2281 break;
2282 case 'm':
2283 case 'M':
2284 do_pax_state(optarg[x], MPROTECT);
2285 break;
2286 case 'e':
2287 case 'E':
2288 do_pax_state(optarg[x], EMUTRAMP);
2289 break;
2290 case 'r':
2291 case 'R':
2292 do_pax_state(optarg[x], RANDMMAP);
2293 break;
2294 case 'x':
2295 case 'X':
2296 do_pax_state(optarg[x], RANDEXEC);
2297 break;
2298 default:
2299 break;
2300 }
2301 }
2302 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
2303 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
2304 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
2305 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
2306 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
2307 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
2308 setpax = flags;
2309 break;
2310 }
2311 case 'Z': show_size = 1; break;
2312 case 'g': ++g_match; break;
1414 case 'L': use_ldcache = 1; break; 2313 case 'L': load_cache_config = use_ldcache = 1; break;
1415 case 'y': scan_symlink = 0; break; 2314 case 'y': scan_symlink = 0; break;
1416 case 'A': scan_archives = 1; break; 2315 case 'A': scan_archives = 1; break;
2316 case 'C': color_init(true); break;
1417 case 'B': show_banner = 0; break; 2317 case 'B': show_banner = 0; break;
1418 case 'l': scan_ldpath = 1; break; 2318 case 'l': load_cache_config = scan_ldpath = 1; break;
1419 case 'p': scan_envpath = 1; break; 2319 case 'p': scan_envpath = 1; break;
1420 case 'R': dir_recurse = 1; break; 2320 case 'R': dir_recurse = 1; break;
1421 case 'm': dir_crossmount = 0; break; 2321 case 'm': dir_crossmount = 0; break;
1422 case 'X': ++fix_elf; break; 2322 case 'X': ++fix_elf; break;
1423 case 'x': show_pax = 1; break; 2323 case 'x': show_pax = 1; break;
1427 case 'n': show_needed = 1; break; 2327 case 'n': show_needed = 1; break;
1428 case 'i': show_interp = 1; break; 2328 case 'i': show_interp = 1; break;
1429 case 'b': show_bind = 1; break; 2329 case 'b': show_bind = 1; break;
1430 case 'S': show_soname = 1; break; 2330 case 'S': show_soname = 1; break;
1431 case 'T': show_textrels = 1; break; 2331 case 'T': show_textrels = 1; break;
1432 case 'q': be_quiet = 1; break; 2332 case 'q': be_quiet = min(be_quiet, 20) + 1; break;
1433 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2333 case 'v': be_verbose = min(be_verbose, 20) + 1; break;
1434 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 2334 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1435 2335 case 'D': show_endian = 1; break;
2336 case 'I': show_osabi = 1; break;
2337 case 'Y': show_eabi = 1; break;
2338 case 128:
2339 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2340 if (root_fd == -1)
2341 err("Could not open root: %s", optarg);
2342 break;
2343 case 129: load_cache_config = use_ldpath = 1; break;
1436 case ':': 2344 case ':':
1437 err("Option '%c' is missing parameter", optopt); 2345 err("Option '%c' is missing parameter", optopt);
1438 case '?': 2346 case '?':
1439 err("Unknown option '%c' or argument missing", optopt); 2347 err("Unknown option '%c' or argument missing", optopt);
1440 default: 2348 default:
1441 err("Unhandled option '%c'; please report this", i); 2349 err("Unhandled option '%c'; please report this", i);
1442 } 2350 }
1443 } 2351 }
2352 if (show_textrels && be_verbose)
2353 objdump = which("objdump", "OBJDUMP");
2354 /* precompile all the regexes */
2355 if (g_match) {
2356 regex_t preg;
2357 const char *this_sym;
2358 size_t n;
2359 int flags = REG_EXTENDED | REG_NOSUB | (g_match > 1 ? REG_ICASE : 0);
1444 2360
2361 array_for_each(find_sym_arr, n, this_sym) {
2362 /* see scanelf_match_symname for logic info */
2363 switch (this_sym[0]) {
2364 case '%':
2365 while (*(this_sym++))
2366 if (*this_sym == '%') {
2367 ++this_sym;
2368 break;
2369 }
2370 break;
2371 case '+':
2372 case '-':
2373 ++this_sym;
2374 break;
2375 }
2376 if (*this_sym == '*')
2377 ++this_sym;
2378
2379 ret = regcomp(&preg, this_sym, flags);
2380 if (ret) {
2381 char err[256];
2382 regerror(ret, &preg, err, sizeof(err));
2383 err("regcomp of %s failed: %s", this_sym, err);
2384 }
2385 xarraypush(find_sym_regex_arr, &preg, sizeof(preg));
2386 }
2387 }
2388 /* flatten arrays for display */
2389 find_sym = array_flatten_str(find_sym_arr);
2390 find_lib = array_flatten_str(find_lib_arr);
2391 find_section = array_flatten_str(find_section_arr);
1445 /* let the format option override all other options */ 2392 /* let the format option override all other options */
1446 if (out_format) { 2393 if (out_format) {
1447 show_pax = show_phdr = show_textrel = show_rpath = \ 2394 show_pax = show_phdr = show_textrel = show_rpath = \
1448 show_needed = show_interp = show_bind = show_soname = \ 2395 show_needed = show_interp = show_bind = show_soname = \
1449 show_textrels = 0; 2396 show_textrels = show_perms = show_endian = show_size = \
2397 show_osabi = show_eabi = 0;
1450 for (i = 0; out_format[i]; ++i) { 2398 for (i = 0; out_format[i]; ++i) {
1451 if (!IS_MODIFIER(out_format[i])) continue; 2399 if (!IS_MODIFIER(out_format[i])) continue;
1452 2400
1453 switch (out_format[++i]) { 2401 switch (out_format[++i]) {
2402 case '+': break;
1454 case '%': break; 2403 case '%': break;
1455 case '#': break; 2404 case '#': break;
1456 case 'F': break; 2405 case 'F': break;
1457 case 'p': break; 2406 case 'p': break;
1458 case 'f': break; 2407 case 'f': break;
2408 case 'k': break;
1459 case 's': break; 2409 case 's': break;
1460 case 'N': break; 2410 case 'N': break;
1461 case 'o': break; 2411 case 'o': break;
2412 case 'a': break;
2413 case 'M': break;
2414 case 'Z': show_size = 1; break;
2415 case 'D': show_endian = 1; break;
2416 case 'I': show_osabi = 1; break;
2417 case 'Y': show_eabi = 1; break;
2418 case 'O': show_perms = 1; break;
1462 case 'x': show_pax = 1; break; 2419 case 'x': show_pax = 1; break;
1463 case 'e': show_phdr = 1; break; 2420 case 'e': show_phdr = 1; break;
1464 case 't': show_textrel = 1; break; 2421 case 't': show_textrel = 1; break;
1465 case 'r': show_rpath = 1; break; 2422 case 'r': show_rpath = 1; break;
1466 case 'n': show_needed = 1; break; 2423 case 'n': show_needed = 1; break;
1467 case 'i': show_interp = 1; break; 2424 case 'i': show_interp = 1; break;
1468 case 'b': show_bind = 1; break; 2425 case 'b': show_bind = 1; break;
1469 case 'S': show_soname = 1; break; 2426 case 'S': show_soname = 1; break;
1470 case 'T': show_textrels = 1; break; 2427 case 'T': show_textrels = 1; break;
1471 default: 2428 default:
1472 err("Invalid format specifier '%c' (byte %i)", 2429 err("invalid format specifier '%c' (byte %i)",
1473 out_format[i], i+1); 2430 out_format[i], i+1);
1474 } 2431 }
1475 } 2432 }
1476 2433
1477 /* construct our default format */ 2434 /* construct our default format */
1478 } else { 2435 } else {
1479 size_t fmt_len = 30; 2436 size_t fmt_len = 30;
1480 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2437 out_format = xmalloc(sizeof(char) * fmt_len);
2438 *out_format = '\0';
1481 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2439 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1482 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2440 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
2441 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2442 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
2443 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
2444 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2445 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1483 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 2446 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1484 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2447 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1485 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2448 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1486 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2449 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1487 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2450 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1488 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len); 2451 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
1489 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len); 2452 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
1490 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len); 2453 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
1491 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 2454 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
2455 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
1492 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len); 2456 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
1493 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2457 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1494 } 2458 }
1495 if (be_verbose > 2) printf("Format: %s\n", out_format); 2459 if (be_verbose > 2) printf("Format: %s\n", out_format);
1496 2460
1497 /* now lets actually do the scanning */ 2461 /* now lets actually do the scanning */
1498 if (scan_ldpath || use_ldcache) 2462 if (load_cache_config)
1499 load_ld_so_conf(); 2463 load_ld_cache_config(__PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1500 if (scan_ldpath) scanelf_ldpath(); 2464 if (scan_ldpath) scanelf_ldpath();
1501 if (scan_envpath) scanelf_envpath(); 2465 if (scan_envpath) scanelf_envpath();
2466 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
2467 from_file = "-";
1502 if (from_file) { 2468 if (from_file) {
1503 scanelf_from_file(from_file); 2469 scanelf_from_file(from_file);
1504 from_file = *argv; 2470 from_file = *argv;
1505 } 2471 }
1506 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 2472 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1507 err("Nothing to scan !?"); 2473 err("Nothing to scan !?");
1508 while (optind < argc) { 2474 while (optind < argc) {
1509 search_path = argv[optind++]; 2475 search_path = argv[optind++];
1510 scanelf_dir(search_path); 2476 ret = scanelf_dir(search_path);
1511 } 2477 }
1512 2478
2479#ifdef __PAX_UTILS_CLEANUP
1513 /* clean up */ 2480 /* clean up */
1514 if (versioned_symname) free(versioned_symname);
1515 for (i = 0; ldpaths[i]; ++i)
1516 free(ldpaths[i]); 2481 xarrayfree(ldpaths);
2482 xarrayfree(find_sym_arr);
2483 xarrayfree(find_lib_arr);
2484 xarrayfree(find_section_arr);
2485 free(find_sym);
2486 free(find_lib);
2487 free(find_section);
2488 {
2489 size_t n;
2490 regex_t *preg;
2491 array_for_each(find_sym_regex_arr, n, preg)
2492 regfree(preg);
2493 xarrayfree(find_sym_regex_arr);
2494 }
1517 2495
1518 if (ldcache != 0) 2496 if (ldcache != 0)
1519 munmap(ldcache, ldcache_size); 2497 munmap(ldcache, ldcache_size);
1520} 2498#endif
1521 2499
1522
1523
1524/* utility funcs */
1525static char *xstrdup(const char *s)
1526{
1527 char *ret = strdup(s);
1528 if (!ret) err("Could not strdup(): %s", strerror(errno));
1529 return ret; 2500 return ret;
1530} 2501}
1531static void *xmalloc(size_t size)
1532{
1533 void *ret = malloc(size);
1534 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
1535 return ret;
1536}
1537static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
1538{
1539 size_t new_len;
1540 2502
1541 new_len = strlen(*dst) + strlen(src); 2503static char **get_split_env(const char *envvar)
1542 if (*curr_len <= new_len) {
1543 *curr_len = new_len + (*curr_len / 2);
1544 *dst = realloc(*dst, *curr_len);
1545 if (!*dst)
1546 err("could not realloc() %li bytes", (unsigned long)*curr_len);
1547 }
1548
1549 if (n)
1550 strncat(*dst, src, n);
1551 else
1552 strcat(*dst, src);
1553}
1554static inline void xchrcat(char **dst, const char append, size_t *curr_len)
1555{ 2504{
1556 static char my_app[2]; 2505 const char *delims = " \t\n";
1557 my_app[0] = append; 2506 char **envvals = NULL;
1558 my_app[1] = '\0'; 2507 char *env, *s;
1559 xstrcat(dst, my_app, curr_len); 2508 int nentry;
1560}
1561 2509
2510 if ((env = getenv(envvar)) == NULL)
2511 return NULL;
1562 2512
2513 env = xstrdup(env);
2514 if (env == NULL)
2515 return NULL;
2516
2517 s = strtok(env, delims);
2518 if (s == NULL) {
2519 free(env);
2520 return NULL;
2521 }
2522
2523 nentry = 0;
2524 while (s != NULL) {
2525 ++nentry;
2526 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
2527 envvals[nentry-1] = s;
2528 s = strtok(NULL, delims);
2529 }
2530 envvals[nentry] = NULL;
2531
2532 /* don't want to free(env) as it contains the memory that backs
2533 * the envvals array of strings */
2534 return envvals;
2535}
2536
2537static void parseenv(void)
2538{
2539 color_init(false);
2540 qa_textrels = get_split_env("QA_TEXTRELS");
2541 qa_execstack = get_split_env("QA_EXECSTACK");
2542 qa_wx_load = get_split_env("QA_WX_LOAD");
2543}
2544
2545#ifdef __PAX_UTILS_CLEANUP
2546static void cleanup(void)
2547{
2548 free(out_format);
2549 free(qa_textrels);
2550 free(qa_execstack);
2551 free(qa_wx_load);
2552}
2553#endif
1563 2554
1564int main(int argc, char *argv[]) 2555int main(int argc, char *argv[])
1565{ 2556{
2557 int ret;
1566 if (argc < 2) 2558 if (argc < 2)
1567 usage(EXIT_FAILURE); 2559 usage(EXIT_FAILURE);
2560 parseenv();
1568 parseargs(argc, argv); 2561 ret = parseargs(argc, argv);
1569 fclose(stdout); 2562 fclose(stdout);
1570#ifdef __BOUNDS_CHECKING_ON 2563#ifdef __PAX_UTILS_CLEANUP
1571 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2564 cleanup();
2565 warn("The calls to add/delete heap should be off:\n"
2566 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2567 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1572#endif 2568#endif
1573 return EXIT_SUCCESS; 2569 return ret;
1574} 2570}
2571
2572/* Match filename against entries in matchlist, return TRUE
2573 * if the file is listed */
2574static int file_matches_list(const char *filename, char **matchlist)
2575{
2576 char **file;
2577 char *match;
2578 char buf[__PAX_UTILS_PATH_MAX];
2579
2580 if (matchlist == NULL)
2581 return 0;
2582
2583 for (file = matchlist; *file != NULL; file++) {
2584 if (search_path) {
2585 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2586 match = buf;
2587 } else {
2588 match = *file;
2589 }
2590 if (fnmatch(match, filename, 0) == 0)
2591 return 1;
2592 }
2593 return 0;
2594}

Legend:
Removed from v.1.119  
changed lines
  Added in v.1.277

  ViewVC Help
Powered by ViewVC 1.1.20