/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.127 Revision 1.205
1/* 1/*
2 * Copyright 2003-2006 Gentoo Foundation 2 * Copyright 2003-2007 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.127 2006/02/17 07:13:54 solar Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.205 2008/12/30 13:13:15 vapier Exp $
5 * 5 *
6 * Copyright 2003-2006 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2006 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10static const char *rcsid = "$Id: scanelf.c,v 1.205 2008/12/30 13:13:15 vapier Exp $";
11const char * const argv0 = "scanelf";
12
10#include "paxinc.h" 13#include "paxinc.h"
11 14
12static const char *rcsid = "$Id: scanelf.c,v 1.127 2006/02/17 07:13:54 solar Exp $";
13#define argv0 "scanelf"
14
15#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
16
17
18 16
19/* prototypes */ 17/* prototypes */
18static int file_matches_list(const char *filename, char **matchlist);
20static int scanelf_elfobj(elfobj *elf); 19static int scanelf_elfobj(elfobj *elf);
21static int scanelf_elf(const char *filename, int fd, size_t len); 20static int scanelf_elf(const char *filename, int fd, size_t len);
22static int scanelf_archive(const char *filename, int fd, size_t len); 21static int scanelf_archive(const char *filename, int fd, size_t len);
23static void scanelf_file(const char *filename); 22static int scanelf_file(const char *filename, const struct stat *st_cache);
24static void scanelf_dir(const char *path); 23static int scanelf_dir(const char *path);
25static void scanelf_ldpath(void); 24static void scanelf_ldpath(void);
26static void scanelf_envpath(void); 25static void scanelf_envpath(void);
27static void usage(int status); 26static void usage(int status);
27static char **get_split_env(const char *envvar);
28static void parseenv(void);
28static void parseargs(int argc, char *argv[]); 29static int parseargs(int argc, char *argv[]);
29static char *xstrdup(const char *s); 30static int rematch(const char *regex, const char *match, int cflags);
30static void *xmalloc(size_t size);
31static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
32#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
33static inline void xchrcat(char **dst, const char append, size_t *curr_len);
34 31
35/* variables to control behavior */ 32/* variables to control behavior */
36static char match_etypes[126] = ""; 33static char match_etypes[126] = "";
37static char *ldpaths[256]; 34static char *ldpaths[256];
38static char scan_ldpath = 0; 35static char scan_ldpath = 0;
40static char scan_symlink = 1; 37static char scan_symlink = 1;
41static char scan_archives = 0; 38static char scan_archives = 0;
42static char dir_recurse = 0; 39static char dir_recurse = 0;
43static char dir_crossmount = 1; 40static char dir_crossmount = 1;
44static char show_pax = 0; 41static char show_pax = 0;
42static char show_perms = 0;
43static char show_size = 0;
45static char show_phdr = 0; 44static char show_phdr = 0;
46static char show_textrel = 0; 45static char show_textrel = 0;
47static char show_rpath = 0; 46static char show_rpath = 0;
48static char show_needed = 0; 47static char show_needed = 0;
49static char show_interp = 0; 48static char show_interp = 0;
50static char show_bind = 0; 49static char show_bind = 0;
51static char show_soname = 0; 50static char show_soname = 0;
52static char show_textrels = 0; 51static char show_textrels = 0;
53static char show_banner = 1; 52static char show_banner = 1;
53static char show_endian = 0;
54static char show_osabi = 0;
55static char show_eabi = 0;
54static char be_quiet = 0; 56static char be_quiet = 0;
55static char be_verbose = 0; 57static char be_verbose = 0;
56static char be_wewy_wewy_quiet = 0; 58static char be_wewy_wewy_quiet = 0;
57static char *find_sym = NULL, *versioned_symname = NULL; 59static char be_semi_verbose = 0;
60static char *find_sym = NULL;
58static char *find_lib = NULL; 61static char *find_lib = NULL;
59static char *find_section = NULL; 62static char *find_section = NULL;
60static char *out_format = NULL; 63static char *out_format = NULL;
61static char *search_path = NULL; 64static char *search_path = NULL;
62static char fix_elf = 0; 65static char fix_elf = 0;
63static char gmatch = 0; 66static char g_match = 0;
64static char use_ldcache = 0; 67static char use_ldcache = 0;
65 68
69static char **qa_textrels = NULL;
70static char **qa_execstack = NULL;
71static char **qa_wx_load = NULL;
72
66int match_bits = 0; 73static int match_bits = 0;
74static unsigned int match_perms = 0;
67caddr_t ldcache = 0; 75static caddr_t ldcache = 0;
68size_t ldcache_size = 0; 76static size_t ldcache_size = 0;
69unsigned long setpax = 0UL; 77static unsigned long setpax = 0UL;
78
79static int has_objdump = 0;
80
81static const char *getstr_perms(const char *fname)
82{
83 struct stat st;
84 static char buf[8];
85
86 if (stat(fname, &st) == -1)
87 return "";
88
89 snprintf(buf, sizeof(buf), "%o", st.st_mode);
90
91 return buf + 2;
92}
93
94/* find the path to a file by name */
95static char *which(const char *fname)
96{
97 static char fullpath[BUFSIZ];
98 char *path, *p;
99
100 path = getenv("PATH");
101 if (!path)
102 return NULL;
103
104 path = xstrdup(path);
105 while ((p = strrchr(path, ':')) != NULL) {
106 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
107 *p = 0;
108 if (access(fullpath, R_OK) != -1) {
109 free(path);
110 return fullpath;
111 }
112 }
113 free(path);
114 return NULL;
115}
116
117/* 1 on failure. 0 otherwise */
118static int rematch(const char *regex, const char *match, int cflags)
119{
120 regex_t preg;
121 int ret;
122
123 if ((match == NULL) || (regex == NULL))
124 return EXIT_FAILURE;
125
126 if ((ret = regcomp(&preg, regex, cflags))) {
127 char err[256];
128
129 if (regerror(ret, &preg, err, sizeof(err)))
130 fprintf(stderr, "regcomp failed: %s", err);
131 else
132 fprintf(stderr, "regcomp failed");
133
134 return EXIT_FAILURE;
135 }
136 ret = regexec(&preg, match, 0, NULL, 0);
137 regfree(&preg);
138
139 return ret;
140}
70 141
71/* sub-funcs for scanelf_file() */ 142/* sub-funcs for scanelf_file() */
72static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 143static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab)
73{ 144{
74 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 145 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
116 continue; \ 187 continue; \
117 if (fix_elf && setpax) { \ 188 if (fix_elf && setpax) { \
118 /* set the paxctl flags */ \ 189 /* set the paxctl flags */ \
119 ESET(phdr[i].p_flags, setpax); \ 190 ESET(phdr[i].p_flags, setpax); \
120 } \ 191 } \
121 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 192 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
122 continue; \ 193 continue; \
123 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 194 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
124 *found_pax = 1; \ 195 *found_pax = 1; \
125 ++shown; \ 196 ++shown; \
126 break; \ 197 break; \
128 } 199 }
129 SHOW_PAX(32) 200 SHOW_PAX(32)
130 SHOW_PAX(64) 201 SHOW_PAX(64)
131 } 202 }
132 203
204 if (fix_elf && setpax) {
205 /* set the chpax settings */
206 if (elf->elf_class == ELFCLASS32) {
207 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC)
208 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
209 } else {
210 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
211 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
212 }
213 }
214
133 /* fall back to EI_PAX if no PT_PAX was found */ 215 /* fall back to EI_PAX if no PT_PAX was found */
134 if (!*ret) { 216 if (!*ret) {
135 static char *paxflags; 217 static char *paxflags;
136
137 if (fix_elf && setpax) {
138 /* set the chpax settings */
139 // ESET(EHDR ## B (elf->ehdr)->e_ident[EI_PAX]), setpax);
140 }
141
142 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 218 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
143 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) { 219 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) {
144 *found_pax = 1; 220 *found_pax = 1;
145 return (be_wewy_wewy_quiet ? NULL : paxflags); 221 return (be_wewy_wewy_quiet ? NULL : paxflags);
146 } 222 }
176 uint32_t flags, check_flags; \ 252 uint32_t flags, check_flags; \
177 if (elf->phdr != NULL) { \ 253 if (elf->phdr != NULL) { \
178 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 254 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
179 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \ 255 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
180 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 256 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
257 if (multi_stack++) \
181 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 258 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
259 if (file_matches_list(elf->filename, qa_execstack)) \
260 continue; \
182 found = found_phdr; \ 261 found = found_phdr; \
183 offset = 0; \ 262 offset = 0; \
184 check_flags = PF_X; \ 263 check_flags = PF_X; \
185 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 264 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
265 if (multi_relro++) \
186 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 266 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
187 found = found_relro; \ 267 found = found_relro; \
188 offset = 4; \ 268 offset = 4; \
189 check_flags = PF_X; \ 269 check_flags = PF_X; \
190 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 270 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
191 if (ehdr->e_type == ET_DYN || ehdr->e_type == ET_EXEC) \ 271 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
272 if (multi_load++ > max_pt_load) \
192 if (multi_load++ > max_pt_load) warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \ 273 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
274 if (file_matches_list(elf->filename, qa_wx_load)) \
275 continue; \
193 found = found_load; \ 276 found = found_load; \
194 offset = 8; \ 277 offset = 8; \
195 check_flags = PF_W|PF_X; \ 278 check_flags = PF_W|PF_X; \
196 } else \ 279 } else \
197 continue; \ 280 continue; \
198 flags = EGET(phdr[i].p_flags); \ 281 flags = EGET(phdr[i].p_flags); \
199 if (be_quiet && ((flags & check_flags) != check_flags)) \ 282 if (be_quiet && ((flags & check_flags) != check_flags)) \
200 continue; \ 283 continue; \
201 if (fix_elf && ((flags & PF_X) != flags)) { \ 284 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
202 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \ 285 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
203 ret[3] = ret[7] = '!'; \ 286 ret[3] = ret[7] = '!'; \
204 flags = EGET(phdr[i].p_flags); \ 287 flags = EGET(phdr[i].p_flags); \
205 } \ 288 } \
206 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \ 289 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
234 break; \ 317 break; \
235 } \ 318 } \
236 } \ 319 } \
237 skip_this_shdr##B: \ 320 skip_this_shdr##B: \
238 if (!multi_stack) { \ 321 if (!multi_stack) { \
322 if (file_matches_list(elf->filename, qa_execstack)) \
323 return NULL; \
239 *found_phdr = 1; \ 324 *found_phdr = 1; \
240 shown = 1; \ 325 shown = 1; \
241 memcpy(ret, "!WX", 3); \ 326 memcpy(ret, "!WX", 3); \
242 } \ 327 } \
243 } \ 328 } \
248 if (be_wewy_wewy_quiet || (be_quiet && !shown)) 333 if (be_wewy_wewy_quiet || (be_quiet && !shown))
249 return NULL; 334 return NULL;
250 else 335 else
251 return ret; 336 return ret;
252} 337}
338
339/*
340 * See if this ELF contains a DT_TEXTREL tag in any of its
341 * PT_DYNAMIC sections.
342 */
253static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 343static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
254{ 344{
255 static const char *ret = "TEXTREL"; 345 static const char *ret = "TEXTREL";
256 unsigned long i; 346 unsigned long i;
257 347
258 if (!show_textrel && !show_textrels) return NULL; 348 if (!show_textrel && !show_textrels) return NULL;
349
350 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
259 351
260 if (elf->phdr) { 352 if (elf->phdr) {
261#define SHOW_TEXTREL(B) \ 353#define SHOW_TEXTREL(B) \
262 if (elf->elf_class == ELFCLASS ## B) { \ 354 if (elf->elf_class == ELFCLASS ## B) { \
263 Elf ## B ## _Dyn *dyn; \ 355 Elf ## B ## _Dyn *dyn; \
264 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 356 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
265 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 357 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
266 Elf ## B ## _Off offset; \ 358 Elf ## B ## _Off offset; \
267 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 359 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
268 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 360 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
269 offset = EGET(phdr[i].p_offset); \ 361 offset = EGET(phdr[i].p_offset); \
270 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 362 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
271 dyn = DYN ## B (elf->data + offset); \ 363 dyn = DYN ## B (elf->data + offset); \
272 while (EGET(dyn->d_tag) != DT_NULL) { \ 364 while (EGET(dyn->d_tag) != DT_NULL) { \
273 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 365 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
285 if (be_quiet || be_wewy_wewy_quiet) 377 if (be_quiet || be_wewy_wewy_quiet)
286 return NULL; 378 return NULL;
287 else 379 else
288 return " - "; 380 return " - ";
289} 381}
382
383/*
384 * Scan the .text section to see if there are any relocations in it.
385 * Should rewrite this to check PT_LOAD sections that are marked
386 * Executable rather than the section named '.text'.
387 */
290static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 388static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
291{ 389{
292 unsigned long s, r, rmax; 390 unsigned long s, r, rmax;
293 void *symtab_void, *strtab_void, *text_void; 391 void *symtab_void, *strtab_void, *text_void;
294 392
361 /* show the raw details about this reloc */ \ 459 /* show the raw details about this reloc */ \
362 printf(" %s: ", elf->base_filename); \ 460 printf(" %s: ", elf->base_filename); \
363 if (sym && sym->st_name) \ 461 if (sym && sym->st_name) \
364 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 462 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \
365 else \ 463 else \
366 printf("(memory/fake?)"); \ 464 printf("(memory/data?)"); \
367 printf(" [0x%lX]", (unsigned long)r_offset); \ 465 printf(" [0x%lX]", (unsigned long)r_offset); \
368 /* now try to find the closest symbol that this rel is probably in */ \ 466 /* now try to find the closest symbol that this rel is probably in */ \
369 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 467 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
370 func = NULL; \ 468 func = NULL; \
371 offset_tmp = 0; \ 469 offset_tmp = 0; \
375 offset_tmp = EGET(sym->st_value); \ 473 offset_tmp = EGET(sym->st_value); \
376 } \ 474 } \
377 ++sym; \ 475 ++sym; \
378 } \ 476 } \
379 printf(" in "); \ 477 printf(" in "); \
380 if (func && func->st_name) \ 478 if (func && func->st_name) { \
381 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 479 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
480 if (r_offset > EGET(func->st_size)) \
481 printf("(optimized out: previous %s)", func_name); \
382 else \ 482 else \
383 printf("(NULL: fake?)"); \ 483 printf("%s", func_name); \
484 } else \
485 printf("(optimized out)"); \
384 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 486 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
487 if (be_verbose && has_objdump) { \
488 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
489 char *sysbuf; \
490 size_t syslen; \
491 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
492 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
493 sysbuf = xmalloc(syslen); \
494 if (end_addr < r_offset) \
495 /* not uncommon when things are optimized out */ \
496 end_addr = r_offset + 0x100; \
497 snprintf(sysbuf, syslen, sysfmt, \
498 (unsigned long)offset_tmp, \
499 (unsigned long)end_addr, \
500 elf->filename, \
501 (unsigned long)r_offset); \
502 fflush(stdout); \
503 system(sysbuf); \
504 fflush(stdout); \
505 free(sysbuf); \
506 } \
385 } \ 507 } \
386 } } 508 } }
387 SHOW_TEXTRELS(32) 509 SHOW_TEXTRELS(32)
388 SHOW_TEXTRELS(64) 510 SHOW_TEXTRELS(64)
389 } 511 }
407 warnf("Security problem NULL %s in %s", dt_type, elf->filename); 529 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
408 break; 530 break;
409 case '$': 531 case '$':
410 if (fstat(elf->fd, &st) != -1) 532 if (fstat(elf->fd, &st) != -1)
411 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 533 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
412 warnf("Security problem with %s='%s' in %s with mode set of %o", 534 warnf("Security problem with %s='%s' in %s with mode set of %o",
413 dt_type, item, elf->filename, st.st_mode & 07777); 535 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
414 break; 536 break;
415 default: 537 default:
416 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename); 538 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
417 break; 539 break;
418 } 540 }
438 Elf ## B ## _Off offset; \ 560 Elf ## B ## _Off offset; \
439 Elf ## B ## _Xword word; \ 561 Elf ## B ## _Xword word; \
440 /* Scan all the program headers */ \ 562 /* Scan all the program headers */ \
441 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 563 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
442 /* Just scan dynamic headers */ \ 564 /* Just scan dynamic headers */ \
443 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 565 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
444 offset = EGET(phdr[i].p_offset); \ 566 offset = EGET(phdr[i].p_offset); \
445 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 567 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
446 /* Just scan dynamic RPATH/RUNPATH headers */ \ 568 /* Just scan dynamic RPATH/RUNPATH headers */ \
447 dyn = DYN ## B (elf->data + offset); \ 569 dyn = DYN ## B (elf->data + offset); \
448 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 570 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
577#define FLAG_POWERPC_LIB64 0x0500 699#define FLAG_POWERPC_LIB64 0x0500
578#define FLAG_MIPS64_LIBN32 0x0600 700#define FLAG_MIPS64_LIBN32 0x0600
579#define FLAG_MIPS64_LIBN64 0x0700 701#define FLAG_MIPS64_LIBN64 0x0700
580 702
581static char *lookup_cache_lib(elfobj *, char *); 703static char *lookup_cache_lib(elfobj *, char *);
704
705#if defined(__GLIBC__) || defined(__UCLIBC__)
706
582static char *lookup_cache_lib(elfobj *elf, char *fname) 707static char *lookup_cache_lib(elfobj *elf, char *fname)
583{ 708{
584 int fd = 0; 709 int fd = 0;
585 char *strs; 710 char *strs;
586 static char buf[__PAX_UTILS_PATH_MAX] = ""; 711 static char buf[__PAX_UTILS_PATH_MAX] = "";
612 ldcache_size = st.st_size; 737 ldcache_size = st.st_size;
613 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0); 738 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
614 739
615 close(fd); 740 close(fd);
616 741
617 if (ldcache == (caddr_t)-1) { 742 if (ldcache == MAP_FAILED) {
618 ldcache = 0; 743 ldcache = 0;
619 return NULL; 744 return NULL;
620 } 745 }
621 746
622 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 747 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN))
642 continue; 767 continue;
643 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 768 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
644 } 769 }
645 return buf; 770 return buf;
646} 771}
772#elif defined(__NetBSD__)
773static char *lookup_cache_lib(elfobj *elf, char *fname)
774{
775 static char buf[__PAX_UTILS_PATH_MAX] = "";
776 static struct stat st;
647 777
778 char **ldpath;
779 for (ldpath = ldpaths; *ldpath != NULL; ldpath++) {
780 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", *ldpath, fname) >= sizeof(buf))
781 continue; /* if the pathname is too long, or something went wrong, ignore */
782
783 if (stat(buf, &st) != 0)
784 continue; /* if the lib doesn't exist in *ldpath, look further */
785
786 /* NetBSD doesn't actually do sanity checks, it just loads the file
787 * and if that doesn't work, continues looking in other directories.
788 * This cannot easily be safely emulated, unfortunately. For now,
789 * just assume that if it exists, it's a valid library. */
790
791 return buf;
792 }
793
794 /* not found in any path */
795 return NULL;
796}
797#else
798#ifdef __ELF__
799#warning Cache support not implemented for your target
800#endif
801static char *lookup_cache_lib(elfobj *elf, char *fname)
802{
803 return NULL;
804}
805#endif
648 806
649static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 807static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
650{ 808{
651 unsigned long i; 809 unsigned long i;
652 char *needed; 810 char *needed;
664 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 822 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
665 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 823 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
666 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 824 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
667 Elf ## B ## _Off offset; \ 825 Elf ## B ## _Off offset; \
668 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 826 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
669 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 827 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
670 offset = EGET(phdr[i].p_offset); \ 828 offset = EGET(phdr[i].p_offset); \
671 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 829 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
672 dyn = DYN ## B (elf->data + offset); \ 830 dyn = DYN ## B (elf->data + offset); \
673 while (EGET(dyn->d_tag) != DT_NULL) { \ 831 while (EGET(dyn->d_tag) != DT_NULL) { \
674 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 832 if (EGET(dyn->d_tag) == DT_NEEDED) { \
686 needed = p; \ 844 needed = p; \
687 xstrcat(ret, needed, ret_len); \ 845 xstrcat(ret, needed, ret_len); \
688 } \ 846 } \
689 *found_needed = 1; \ 847 *found_needed = 1; \
690 } else { \ 848 } else { \
691 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 849 if (!strncmp(find_lib, needed, strlen( !g_match ? needed : find_lib))) { \
692 *found_lib = 1; \ 850 *found_lib = 1; \
693 return (be_wewy_wewy_quiet ? NULL : needed); \ 851 return (be_wewy_wewy_quiet ? NULL : needed); \
694 } \ 852 } \
695 } \ 853 } \
696 } \ 854 } \
727} 885}
728static char *scanelf_file_bind(elfobj *elf, char *found_bind) 886static char *scanelf_file_bind(elfobj *elf, char *found_bind)
729{ 887{
730 unsigned long i; 888 unsigned long i;
731 struct stat s; 889 struct stat s;
890 char dynamic = 0;
732 891
733 if (!show_bind) return NULL; 892 if (!show_bind) return NULL;
734 if (!elf->phdr) return NULL; 893 if (!elf->phdr) return NULL;
735 894
736#define SHOW_BIND(B) \ 895#define SHOW_BIND(B) \
738 Elf ## B ## _Dyn *dyn; \ 897 Elf ## B ## _Dyn *dyn; \
739 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 898 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
740 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 899 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
741 Elf ## B ## _Off offset; \ 900 Elf ## B ## _Off offset; \
742 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 901 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
743 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 902 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
903 dynamic = 1; \
744 offset = EGET(phdr[i].p_offset); \ 904 offset = EGET(phdr[i].p_offset); \
745 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 905 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
746 dyn = DYN ## B (elf->data + offset); \ 906 dyn = DYN ## B (elf->data + offset); \
747 while (EGET(dyn->d_tag) != DT_NULL) { \ 907 while (EGET(dyn->d_tag) != DT_NULL) { \
748 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 908 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
759 SHOW_BIND(32) 919 SHOW_BIND(32)
760 SHOW_BIND(64) 920 SHOW_BIND(64)
761 921
762 if (be_wewy_wewy_quiet) return NULL; 922 if (be_wewy_wewy_quiet) return NULL;
763 923
924 /* don't output anything if quiet mode and the ELF is static or not setuid */
764 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 925 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
765 return NULL; 926 return NULL;
766 } else { 927 } else {
767 *found_bind = 1; 928 *found_bind = 1;
768 return (char *) "LAZY"; 929 return (char *) (dynamic ? "LAZY" : "STATIC");
769 } 930 }
770} 931}
771static char *scanelf_file_soname(elfobj *elf, char *found_soname) 932static char *scanelf_file_soname(elfobj *elf, char *found_soname)
772{ 933{
773 unsigned long i; 934 unsigned long i;
785 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 946 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
786 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 947 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
787 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 948 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
788 Elf ## B ## _Off offset; \ 949 Elf ## B ## _Off offset; \
789 /* only look for soname in shared objects */ \ 950 /* only look for soname in shared objects */ \
790 if (ehdr->e_type != ET_DYN) \ 951 if (EGET(ehdr->e_type) != ET_DYN) \
791 return NULL; \ 952 return NULL; \
792 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 953 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
793 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 954 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
794 offset = EGET(phdr[i].p_offset); \ 955 offset = EGET(phdr[i].p_offset); \
795 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 956 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
796 dyn = DYN ## B (elf->data + offset); \ 957 dyn = DYN ## B (elf->data + offset); \
797 while (EGET(dyn->d_tag) != DT_NULL) { \ 958 while (EGET(dyn->d_tag) != DT_NULL) { \
798 if (EGET(dyn->d_tag) == DT_SONAME) { \ 959 if (EGET(dyn->d_tag) == DT_SONAME) { \
812 SHOW_SONAME(64) 973 SHOW_SONAME(64)
813 } 974 }
814 975
815 return NULL; 976 return NULL;
816} 977}
978
979static int scanelf_match_symname(const char *symname, const char *tomatch) {
980 /* We do things differently when checking with regexp */
981 if (g_match) {
982 return rematch(symname, tomatch, REG_EXTENDED) == 0;
983 } else {
984 const size_t symname_len = strlen(symname);
985 return (strncmp(symname, tomatch, symname_len) == 0 &&
986 /* Accept unversioned symbol names */
987 (tomatch[symname_len] == '\0' || tomatch[symname_len] == '@'));
988 }
989}
990
817static char *scanelf_file_sym(elfobj *elf, char *found_sym) 991static char *scanelf_file_sym(elfobj *elf, char *found_sym)
818{ 992{
819 unsigned long i; 993 unsigned long i;
820 char *ret; 994 char *ret;
821 void *symtab_void, *strtab_void; 995 void *symtab_void, *strtab_void;
834 unsigned long cnt = EGET(symtab->sh_entsize); \ 1008 unsigned long cnt = EGET(symtab->sh_entsize); \
835 char *symname; \ 1009 char *symname; \
836 if (cnt) \ 1010 if (cnt) \
837 cnt = EGET(symtab->sh_size) / cnt; \ 1011 cnt = EGET(symtab->sh_size) / cnt; \
838 for (i = 0; i < cnt; ++i) { \ 1012 for (i = 0; i < cnt; ++i) { \
1013 if ((void*)sym > (void*)elf->data_end) { \
1014 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1015 goto break_out; \
1016 } \
839 if (sym->st_name) { \ 1017 if (sym->st_name) { \
1018 /* make sure the symbol name is in acceptable memory range */ \
840 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1019 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
841 if ((void*)symname > (void*)elf->data_end) { \ 1020 if ((void*)symname > (void*)elf->data_end) { \
842 warnf("%s: corrupt ELF symbols", elf->filename); \ 1021 warnf("%s: corrupt ELF symbols", elf->filename); \
1022 ++sym; \
843 continue; \ 1023 continue; \
844 } \ 1024 } \
845 if (*find_sym == '*') { \ 1025 /* debug display ... show all symbols and some extra info */ \
1026 if (0 && g_match ? rematch(ret, symname, REG_EXTENDED) == 0 : *ret == '*') { \
846 printf("%s(%s) %5lX %15s %s\n", \ 1027 printf("%s(%s) %5lX %15s %s %s\n", \
847 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1028 ((*found_sym == 0) ? "\n\t" : "\t"), \
848 elf->base_filename, \ 1029 elf->base_filename, \
849 (unsigned long)sym->st_size, \ 1030 (unsigned long)sym->st_size, \
850 get_elfstttype(sym->st_info), \ 1031 get_elfstttype(sym->st_info), \
851 symname); \ 1032 sym->st_shndx == SHN_UNDEF ? "U" : "D", symname); \
852 *found_sym = 1; \ 1033 *found_sym = 1; \
853 } else { \ 1034 } else { \
1035 /* allow the user to specify a comma delimited list of symbols to search for */ \
854 char *this_sym, *next_sym; \ 1036 char *this_sym, *next_sym; \
1037 next_sym = ret; \
1038 while (next_sym) { \
855 this_sym = find_sym; \ 1039 this_sym = next_sym; \
856 do { \
857 next_sym = strchr(this_sym, ','); \ 1040 if ((next_sym = strchr(this_sym, ','))) \
858 if (next_sym == NULL) \ 1041 next_sym += 1; /* Skip the comma */ \
859 next_sym = this_sym + strlen(this_sym); \ 1042 /* do we want a defined symbol ? */ \
860 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \ 1043 if (*this_sym == '+') { \
861 (strcmp(symname, versioned_symname) == 0)) { \ 1044 if (sym->st_shndx == SHN_UNDEF) \
1045 continue; \
862 ret = this_sym; \ 1046 ++this_sym; \
1047 /* do we want an undefined symbol ? */ \
1048 } else if (*this_sym == '-') { \
1049 if (sym->st_shndx != SHN_UNDEF) \
1050 continue; \
1051 ++this_sym; \
1052 } \
1053 if (next_sym) /* Copy it so that we don't have to worry about the final , */ \
1054 this_sym = strndup(this_sym, next_sym-this_sym); \
1055 /* ok, lets compare the name now */ \
1056 if (scanelf_match_symname(this_sym, symname)) { \
1057 if (be_semi_verbose) { \
1058 char buf[126]; \
1059 snprintf(buf, sizeof(buf), "%lX %s %s", \
1060 (unsigned long)sym->st_size, get_elfstttype(sym->st_info), this_sym); \
1061 ret = buf; \
1062 } else \
1063 ret = symname; \
863 (*found_sym)++; \ 1064 (*found_sym)++; \
864 goto break_out; \ 1065 goto break_out; \
865 } \ 1066 } \
866 this_sym = next_sym + 1; \ 1067 if (next_sym) free(this_sym); \
867 } while (*next_sym != '\0'); \ 1068 } \
868 } \ 1069 } \
869 } \ 1070 } \
870 ++sym; \ 1071 ++sym; \
871 } } 1072 } }
872 FIND_SYM(32) 1073 FIND_SYM(32)
882 return NULL; 1083 return NULL;
883 else 1084 else
884 return (char *)" - "; 1085 return (char *)" - ";
885} 1086}
886 1087
887
888static char *scanelf_file_sections(elfobj *elf, char *found_section) 1088static char *scanelf_file_sections(elfobj *elf, char *found_section)
889{ 1089{
890 if (!find_section) 1090 if (!find_section)
891 return NULL; 1091 return NULL;
892 1092
893#define FIND_SECTION(B) \ 1093#define FIND_SECTION(B) \
894 if (elf->elf_class == ELFCLASS ## B) { \ 1094 if (elf->elf_class == ELFCLASS ## B) { \
1095 int invert; \
895 Elf ## B ## _Shdr *section; \ 1096 Elf ## B ## _Shdr *section; \
1097 invert = (*find_section == '!' ? 1 : 0); \
896 section = SHDR ## B (elf_findsecbyname(elf, find_section)); \ 1098 section = SHDR ## B (elf_findsecbyname(elf, find_section+invert)); \
897 if (section != NULL) \ 1099 if ((section == NULL && invert) || (section != NULL && !invert)) \
898 *found_section = 1; \ 1100 *found_section = 1; \
899 } 1101 }
900 FIND_SECTION(32) 1102 FIND_SECTION(32)
901 FIND_SECTION(64) 1103 FIND_SECTION(64)
902 1104
903
904 if (be_wewy_wewy_quiet) return NULL; 1105 if (be_wewy_wewy_quiet)
1106 return NULL;
905 1107
906 if (*found_section) 1108 if (*found_section)
907 return find_section; 1109 return find_section;
908 1110
909 if (be_quiet) 1111 if (be_quiet)
915/* scan an elf file and show all the fun stuff */ 1117/* scan an elf file and show all the fun stuff */
916#define prints(str) write(fileno(stdout), str, strlen(str)) 1118#define prints(str) write(fileno(stdout), str, strlen(str))
917static int scanelf_elfobj(elfobj *elf) 1119static int scanelf_elfobj(elfobj *elf)
918{ 1120{
919 unsigned long i; 1121 unsigned long i;
920 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1122 char found_pax, found_phdr, found_relro, found_load, found_textrel,
921 found_rpath, found_needed, found_interp, found_bind, found_soname, 1123 found_rpath, found_needed, found_interp, found_bind, found_soname,
922 found_sym, found_lib, found_file, found_textrels, found_section; 1124 found_sym, found_lib, found_file, found_textrels, found_section;
923 static char *out_buffer = NULL; 1125 static char *out_buffer = NULL;
924 static size_t out_len; 1126 static size_t out_len;
925 1127
926 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1128 found_pax = found_phdr = found_relro = found_load = found_textrel = \
935 printf("%s: scanning file\n", elf->filename); 1137 printf("%s: scanning file\n", elf->filename);
936 1138
937 /* init output buffer */ 1139 /* init output buffer */
938 if (!out_buffer) { 1140 if (!out_buffer) {
939 out_len = sizeof(char) * 80; 1141 out_len = sizeof(char) * 80;
940 out_buffer = (char*)xmalloc(out_len); 1142 out_buffer = xmalloc(out_len);
941 } 1143 }
942 *out_buffer = '\0'; 1144 *out_buffer = '\0';
943 1145
944 /* show the header */ 1146 /* show the header */
945 if (!be_quiet && show_banner) { 1147 if (!be_quiet && show_banner) {
946 for (i = 0; out_format[i]; ++i) { 1148 for (i = 0; out_format[i]; ++i) {
947 if (!IS_MODIFIER(out_format[i])) continue; 1149 if (!IS_MODIFIER(out_format[i])) continue;
948 1150
949 switch (out_format[++i]) { 1151 switch (out_format[++i]) {
1152 case '+': break;
950 case '%': break; 1153 case '%': break;
951 case '#': break; 1154 case '#': break;
952 case 'F': 1155 case 'F':
953 case 'p': 1156 case 'p':
954 case 'f': prints("FILE "); found_file = 1; break; 1157 case 'f': prints("FILE "); found_file = 1; break;
955 case 'o': prints(" TYPE "); break; 1158 case 'o': prints(" TYPE "); break;
956 case 'x': prints(" PAX "); break; 1159 case 'x': prints(" PAX "); break;
957 case 'e': prints("STK/REL/PTL "); break; 1160 case 'e': prints("STK/REL/PTL "); break;
958 case 't': prints("TEXTREL "); break; 1161 case 't': prints("TEXTREL "); break;
959 case 'r': prints("RPATH "); break; 1162 case 'r': prints("RPATH "); break;
1163 case 'M': prints("CLASS "); break;
960 case 'n': prints("NEEDED "); break; 1164 case 'n': prints("NEEDED "); break;
961 case 'i': prints("INTERP "); break; 1165 case 'i': prints("INTERP "); break;
962 case 'b': prints("BIND "); break; 1166 case 'b': prints("BIND "); break;
1167 case 'Z': prints("SIZE "); break;
963 case 'S': prints("SONAME "); break; 1168 case 'S': prints("SONAME "); break;
964 case 's': prints("SYM "); break; 1169 case 's': prints("SYM "); break;
965 case 'N': prints("LIB "); break; 1170 case 'N': prints("LIB "); break;
966 case 'T': prints("TEXTRELS "); break; 1171 case 'T': prints("TEXTRELS "); break;
967 case 'k': prints("SECTION "); break; 1172 case 'k': prints("SECTION "); break;
1173 case 'a': prints("ARCH "); break;
1174 case 'I': prints("OSABI "); break;
1175 case 'Y': prints("EABI "); break;
1176 case 'O': prints("PERM "); break;
1177 case 'D': prints("ENDIAN "); break;
968 default: warnf("'%c' has no title ?", out_format[i]); 1178 default: warnf("'%c' has no title ?", out_format[i]);
969 } 1179 }
970 } 1180 }
971 if (!found_file) prints("FILE "); 1181 if (!found_file) prints("FILE ");
972 prints("\n"); 1182 prints("\n");
976 1186
977 /* dump all the good stuff */ 1187 /* dump all the good stuff */
978 for (i = 0; out_format[i]; ++i) { 1188 for (i = 0; out_format[i]; ++i) {
979 const char *out; 1189 const char *out;
980 const char *tmp; 1190 const char *tmp;
981 1191 static char ubuf[sizeof(unsigned long)*2];
982 if (!IS_MODIFIER(out_format[i])) { 1192 if (!IS_MODIFIER(out_format[i])) {
983 xchrcat(&out_buffer, out_format[i], &out_len); 1193 xchrcat(&out_buffer, out_format[i], &out_len);
984 continue; 1194 continue;
985 } 1195 }
986 1196
987 out = NULL; 1197 out = NULL;
988 be_wewy_wewy_quiet = (out_format[i] == '#'); 1198 be_wewy_wewy_quiet = (out_format[i] == '#');
1199 be_semi_verbose = (out_format[i] == '+');
989 switch (out_format[++i]) { 1200 switch (out_format[++i]) {
1201 case '+':
990 case '%': 1202 case '%':
991 case '#': 1203 case '#':
992 xchrcat(&out_buffer, out_format[i], &out_len); break; 1204 xchrcat(&out_buffer, out_format[i], &out_len); break;
993 case 'F': 1205 case 'F':
994 found_file = 1; 1206 found_file = 1;
1020 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1232 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
1021 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1233 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
1022 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1234 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
1023 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1235 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
1024 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1236 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1237 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1238 case 'D': out = get_endian(elf); break;
1239 case 'O': out = getstr_perms(elf->filename); break;
1025 case 'n': 1240 case 'n':
1026 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1241 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
1027 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1242 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
1028 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1243 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
1029 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1244 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
1030 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1245 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1031 case 'k': out = scanelf_file_sections(elf, &found_section); break; 1246 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1247 case 'a': out = get_elfemtype(elf); break;
1248 case 'I': out = get_elfosabi(elf); break;
1249 case 'Y': out = get_elf_eabi(elf); break;
1250 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
1032 default: warnf("'%c' has no scan code?", out_format[i]); 1251 default: warnf("'%c' has no scan code?", out_format[i]);
1033 } 1252 }
1034 if (out) { 1253 if (out) {
1035 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */ 1254 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
1036 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL) 1255 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
1082 if (strlen(match_etypes)) { 1301 if (strlen(match_etypes)) {
1083 char sbuf[126]; 1302 char sbuf[126];
1084 strncpy(sbuf, match_etypes, sizeof(sbuf)); 1303 strncpy(sbuf, match_etypes, sizeof(sbuf));
1085 if (strchr(match_etypes, ',') != NULL) { 1304 if (strchr(match_etypes, ',') != NULL) {
1086 char *p; 1305 char *p;
1087 while((p = strrchr(sbuf, ',')) != NULL) { 1306 while ((p = strrchr(sbuf, ',')) != NULL) {
1088 *p = 0; 1307 *p = 0;
1089 if (atoi(p+1) == get_etype(elf)) 1308 if (etype_lookup(p+1) == get_etype(elf))
1090 goto label_ret; 1309 goto label_ret;
1091 } 1310 }
1092 } 1311 }
1093 if (atoi(sbuf) != get_etype(elf)) 1312 if (etype_lookup(sbuf) != get_etype(elf))
1094 goto label_done; 1313 goto label_done;
1095 } 1314 }
1096 1315
1097label_ret: 1316label_ret:
1098 ret = scanelf_elfobj(elf); 1317 ret = scanelf_elfobj(elf);
1112 1331
1113 ar = ar_open_fd(filename, fd); 1332 ar = ar_open_fd(filename, fd);
1114 if (ar == NULL) 1333 if (ar == NULL)
1115 return 1; 1334 return 1;
1116 1335
1117 ar_buffer = (char*)mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0); 1336 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1118 while ((m=ar_next(ar)) != NULL) { 1337 while ((m=ar_next(ar)) != NULL) {
1119 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size); 1338 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size);
1120 if (elf) { 1339 if (elf) {
1121 scanelf_elfobj(elf); 1340 scanelf_elfobj(elf);
1122 unreadelf(elf); 1341 unreadelf(elf);
1125 munmap(ar_buffer, len); 1344 munmap(ar_buffer, len);
1126 1345
1127 return 0; 1346 return 0;
1128} 1347}
1129/* scan a file which may be an elf or an archive or some other magical beast */ 1348/* scan a file which may be an elf or an archive or some other magical beast */
1130static void scanelf_file(const char *filename) 1349static int scanelf_file(const char *filename, const struct stat *st_cache)
1131{ 1350{
1351 const struct stat *st = st_cache;
1132 struct stat st; 1352 struct stat symlink_st;
1133 int fd; 1353 int fd;
1134 1354
1135 /* make sure 'filename' exists */
1136 if (lstat(filename, &st) == -1) {
1137 if (be_verbose > 2) printf("%s: does not exist\n", filename);
1138 return;
1139 }
1140
1141 /* always handle regular files and handle symlinked files if no -y */ 1355 /* always handle regular files and handle symlinked files if no -y */
1142 if (S_ISLNK(st.st_mode)) { 1356 if (S_ISLNK(st->st_mode)) {
1143 if (!scan_symlink) return; 1357 if (!scan_symlink) return 1;
1144 stat(filename, &st); 1358 stat(filename, &symlink_st);
1359 st = &symlink_st;
1145 } 1360 }
1361
1146 if (!S_ISREG(st.st_mode)) { 1362 if (!S_ISREG(st->st_mode)) {
1147 if (be_verbose > 2) printf("%s: skipping non-file\n", filename); 1363 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1148 return; 1364 return 1;
1149 } 1365 }
1150 1366
1367 if (match_perms) {
1368 if ((st->st_mode | match_perms) != st->st_mode)
1369 return 1;
1370 }
1151 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1) 1371 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1)
1152 return; 1372 return 1;
1153 1373
1154 if (scanelf_elf(filename, fd, st.st_size) == 1 && scan_archives) 1374 if (scanelf_elf(filename, fd, st->st_size) == 1 && scan_archives)
1155 /* if it isn't an ELF, maybe it's an .a archive */ 1375 /* if it isn't an ELF, maybe it's an .a archive */
1156 scanelf_archive(filename, fd, st.st_size); 1376 scanelf_archive(filename, fd, st->st_size);
1157 1377
1158 close(fd); 1378 close(fd);
1379 return 0;
1159} 1380}
1160 1381
1161/* scan a directory for ET_EXEC files and print when we find one */ 1382/* scan a directory for ET_EXEC files and print when we find one */
1162static void scanelf_dir(const char *path) 1383static int scanelf_dir(const char *path)
1163{ 1384{
1164 register DIR *dir; 1385 register DIR *dir;
1165 register struct dirent *dentry; 1386 register struct dirent *dentry;
1166 struct stat st_top, st; 1387 struct stat st_top, st;
1167 char buf[__PAX_UTILS_PATH_MAX]; 1388 char buf[__PAX_UTILS_PATH_MAX];
1168 size_t pathlen = 0, len = 0; 1389 size_t pathlen = 0, len = 0;
1390 int ret = 0;
1169 1391
1170 /* make sure path exists */ 1392 /* make sure path exists */
1171 if (lstat(path, &st_top) == -1) { 1393 if (lstat(path, &st_top) == -1) {
1172 if (be_verbose > 2) printf("%s: does not exist\n", path); 1394 if (be_verbose > 2) printf("%s: does not exist\n", path);
1173 return; 1395 return 1;
1174 } 1396 }
1175 1397
1176 /* ok, if it isn't a directory, assume we can open it */ 1398 /* ok, if it isn't a directory, assume we can open it */
1177 if (!S_ISDIR(st_top.st_mode)) { 1399 if (!S_ISDIR(st_top.st_mode)) {
1178 scanelf_file(path); 1400 return scanelf_file(path, &st_top);
1179 return;
1180 } 1401 }
1181 1402
1182 /* now scan the dir looking for fun stuff */ 1403 /* now scan the dir looking for fun stuff */
1183 if ((dir = opendir(path)) == NULL) { 1404 if ((dir = opendir(path)) == NULL) {
1184 warnf("could not opendir %s: %s", path, strerror(errno)); 1405 warnf("could not opendir %s: %s", path, strerror(errno));
1185 return; 1406 return 1;
1186 } 1407 }
1187 if (be_verbose > 1) printf("%s: scanning dir\n", path); 1408 if (be_verbose > 1) printf("%s: scanning dir\n", path);
1188 1409
1189 pathlen = strlen(path); 1410 pathlen = strlen(path);
1190 while ((dentry = readdir(dir))) { 1411 while ((dentry = readdir(dir))) {
1194 if (len >= sizeof(buf)) { 1415 if (len >= sizeof(buf)) {
1195 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1416 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path,
1196 (unsigned long)len, (unsigned long)sizeof(buf)); 1417 (unsigned long)len, (unsigned long)sizeof(buf));
1197 continue; 1418 continue;
1198 } 1419 }
1199 sprintf(buf, "%s/%s", path, dentry->d_name); 1420 snprintf(buf, sizeof(buf), "%s%s%s", path, (path[pathlen-1] == '/') ? "" : "/", dentry->d_name);
1200 if (lstat(buf, &st) != -1) { 1421 if (lstat(buf, &st) != -1) {
1201 if (S_ISREG(st.st_mode)) 1422 if (S_ISREG(st.st_mode))
1202 scanelf_file(buf); 1423 ret = scanelf_file(buf, &st);
1203 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1424 else if (dir_recurse && S_ISDIR(st.st_mode)) {
1204 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1425 if (dir_crossmount || (st_top.st_dev == st.st_dev))
1205 scanelf_dir(buf); 1426 ret = scanelf_dir(buf);
1206 } 1427 }
1207 } 1428 }
1208 } 1429 }
1209 closedir(dir); 1430 closedir(dir);
1431 return ret;
1210} 1432}
1211 1433
1212static int scanelf_from_file(char *filename) 1434static int scanelf_from_file(const char *filename)
1213{ 1435{
1214 FILE *fp = NULL; 1436 FILE *fp = NULL;
1215 char *p; 1437 char *p;
1216 char path[__PAX_UTILS_PATH_MAX]; 1438 char path[__PAX_UTILS_PATH_MAX];
1439 int ret = 0;
1217 1440
1218 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1441 if (strcmp(filename, "-") == 0)
1219 fp = stdin; 1442 fp = stdin;
1220 else if ((fp = fopen(filename, "r")) == NULL) 1443 else if ((fp = fopen(filename, "r")) == NULL)
1221 return 1; 1444 return 1;
1222 1445
1223 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1446 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1224 if ((p = strchr(path, '\n')) != NULL) 1447 if ((p = strchr(path, '\n')) != NULL)
1225 *p = 0; 1448 *p = 0;
1226 search_path = path; 1449 search_path = path;
1227 scanelf_dir(path); 1450 ret = scanelf_dir(path);
1228 } 1451 }
1229 if (fp != stdin) 1452 if (fp != stdin)
1230 fclose(fp); 1453 fclose(fp);
1231 return 0; 1454 return ret;
1232} 1455}
1233 1456
1457#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1458
1234static int load_ld_so_conf(int i, const char *fname) 1459static int load_ld_cache_config(int i, const char *fname)
1235{ 1460{
1236 FILE *fp = NULL; 1461 FILE *fp = NULL;
1237 char *p; 1462 char *p;
1238 char path[__PAX_UTILS_PATH_MAX]; 1463 char path[__PAX_UTILS_PATH_MAX];
1239 1464
1240 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1465 if (i + 1 == ARRAY_SIZE(ldpaths))
1241 return i; 1466 return i;
1242 1467
1243 if ((fp = fopen(fname, "r")) == NULL) 1468 if ((fp = fopen(fname, "r")) == NULL)
1244 return i; 1469 return i;
1245 1470
1246 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1471 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1247 if ((p = strrchr(path, '\r')) != NULL) 1472 if ((p = strrchr(path, '\r')) != NULL)
1248 *p = 0; 1473 *p = 0;
1249 if ((p = strchr(path, '\n')) != NULL) 1474 if ((p = strchr(path, '\n')) != NULL)
1250 *p = 0; 1475 *p = 0;
1251#ifdef HAVE_GLOB 1476#ifdef __linux__
1252 // recursive includes of the same file will make this segfault. 1477 /* recursive includes of the same file will make this segfault. */
1253 if ((*path == 'i') && (strncmp(path, "include", 7) == 0) && isblank(path[7])) { 1478 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1254 glob64_t gl; 1479 glob64_t gl;
1255 size_t x; 1480 size_t x;
1256 char gpath[__PAX_UTILS_PATH_MAX]; 1481 char gpath[__PAX_UTILS_PATH_MAX];
1257 1482
1258 gpath[sizeof(gpath)] = 0; 1483 memset(gpath, 0, sizeof(gpath));
1259 1484
1260 if (path[8] != '/') 1485 if (path[8] != '/')
1261 snprintf(gpath, sizeof(gpath)-1, "/etc/%s", &path[8]); 1486 snprintf(gpath, sizeof(gpath), "/etc/%s", &path[8]);
1262 else 1487 else
1263 strncpy(gpath, &path[8], sizeof(gpath)-1); 1488 strncpy(gpath, &path[8], sizeof(gpath));
1264 1489
1265 if ((glob64(gpath, 0, NULL, &gl)) == 0) { 1490 if ((glob64(gpath, 0, NULL, &gl)) == 0) {
1266 for (x = 0; x < gl.gl_pathc; ++x) { 1491 for (x = 0; x < gl.gl_pathc; ++x) {
1267 /* try to avoid direct loops */ 1492 /* try to avoid direct loops */
1268 if (strcmp(gl.gl_pathv[x], fname) == 0) 1493 if (strcmp(gl.gl_pathv[x], fname) == 0)
1269 continue; 1494 continue;
1270 i = load_ld_so_conf(i, gl.gl_pathv[x]); 1495 i = load_ld_cache_config(i, gl.gl_pathv[x]);
1271 if (i + 1 >= sizeof(ldpaths) / sizeof(*ldpaths)) { 1496 if (i + 1 >= ARRAY_SIZE(ldpaths)) {
1272 globfree64(&gl); 1497 globfree64(&gl);
1273 return i; 1498 return i;
1274 } 1499 }
1275 } 1500 }
1276 globfree64 (&gl); 1501 globfree64 (&gl);
1277 continue; 1502 continue;
1278 } else 1503 }
1279 abort();
1280 } 1504 }
1281#endif 1505#endif
1282 if (*path != '/') 1506 if (*path != '/')
1283 continue; 1507 continue;
1284 1508
1285 ldpaths[i++] = xstrdup(path); 1509 ldpaths[i++] = xstrdup(path);
1286 1510
1287 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1511 if (i + 1 == ARRAY_SIZE(ldpaths))
1288 break; 1512 break;
1289 } 1513 }
1290 ldpaths[i] = NULL; 1514 ldpaths[i] = NULL;
1291 1515
1292 fclose(fp); 1516 fclose(fp);
1293 return i; 1517 return i;
1294} 1518}
1295 1519
1520#elif defined(__FreeBSD__) || (__DragonFly__)
1521
1522static int load_ld_cache_config(int i, const char *fname)
1523{
1524 FILE *fp = NULL;
1525 char *b = NULL, *p;
1526 struct elfhints_hdr hdr;
1527
1528 if (i + 1 == ARRAY_SIZE(ldpaths))
1529 return i;
1530
1531 if ((fp = fopen(fname, "r")) == NULL)
1532 return i;
1533
1534 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1535 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1536 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1537 {
1538 fclose(fp);
1539 return i;
1540 }
1541
1542 b = xmalloc(hdr.dirlistlen + 1);
1543 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1544 fclose(fp);
1545 free(b);
1546 return i;
1547 }
1548
1549 while ((p = strsep(&b, ":"))) {
1550 if (*p == '\0') continue;
1551 ldpaths[i++] = xstrdup(p);
1552
1553 if (i + 1 == ARRAY_SIZE(ldpaths))
1554 break;
1555 }
1556 ldpaths[i] = NULL;
1557
1558 free(b);
1559 fclose(fp);
1560 return i;
1561}
1562
1563#else
1564#ifdef __ELF__
1565#warning Cache config support not implemented for your target
1566#endif
1567static int load_ld_cache_config(int i, const char *fname)
1568{
1569 memset(ldpaths, 0x00, sizeof(ldpaths));
1570 return 0;
1571}
1572#endif
1573
1296/* scan /etc/ld.so.conf for paths */ 1574/* scan /etc/ld.so.conf for paths */
1297static void scanelf_ldpath() 1575static void scanelf_ldpath(void)
1298{ 1576{
1299 char scan_l, scan_ul, scan_ull; 1577 char scan_l, scan_ul, scan_ull;
1300 int i = 0; 1578 int i = 0;
1301 1579
1302 if (!ldpaths[0]) 1580 if (!ldpaths[0])
1316 if (!scan_ul) scanelf_dir("/usr/lib"); 1594 if (!scan_ul) scanelf_dir("/usr/lib");
1317 if (!scan_ull) scanelf_dir("/usr/local/lib"); 1595 if (!scan_ull) scanelf_dir("/usr/local/lib");
1318} 1596}
1319 1597
1320/* scan env PATH for paths */ 1598/* scan env PATH for paths */
1321static void scanelf_envpath() 1599static void scanelf_envpath(void)
1322{ 1600{
1323 char *path, *p; 1601 char *path, *p;
1324 1602
1325 path = getenv("PATH"); 1603 path = getenv("PATH");
1326 if (!path) 1604 if (!path)
1333 } 1611 }
1334 1612
1335 free(path); 1613 free(path);
1336} 1614}
1337 1615
1338/* usage / invocation handling functions */ 1616/* usage / invocation handling functions */ /* Free Flags: c d j u w C G H J K P Q U W */
1339#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:BhV" 1617#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZBhV"
1340#define a_argument required_argument 1618#define a_argument required_argument
1341static struct option const long_opts[] = { 1619static struct option const long_opts[] = {
1342 {"path", no_argument, NULL, 'p'}, 1620 {"path", no_argument, NULL, 'p'},
1343 {"ldpath", no_argument, NULL, 'l'}, 1621 {"ldpath", no_argument, NULL, 'l'},
1344 {"recursive", no_argument, NULL, 'R'}, 1622 {"recursive", no_argument, NULL, 'R'},
1361 {"lib", a_argument, NULL, 'N'}, 1639 {"lib", a_argument, NULL, 'N'},
1362 {"gmatch", no_argument, NULL, 'g'}, 1640 {"gmatch", no_argument, NULL, 'g'},
1363 {"textrels", no_argument, NULL, 'T'}, 1641 {"textrels", no_argument, NULL, 'T'},
1364 {"etype", a_argument, NULL, 'E'}, 1642 {"etype", a_argument, NULL, 'E'},
1365 {"bits", a_argument, NULL, 'M'}, 1643 {"bits", a_argument, NULL, 'M'},
1644 {"endian", no_argument, NULL, 'D'},
1645 {"osabi", no_argument, NULL, 'I'},
1646 {"eabi", no_argument, NULL, 'Y'},
1647 {"perms", a_argument, NULL, 'O'},
1648 {"size", no_argument, NULL, 'Z'},
1366 {"all", no_argument, NULL, 'a'}, 1649 {"all", no_argument, NULL, 'a'},
1367 {"quiet", no_argument, NULL, 'q'}, 1650 {"quiet", no_argument, NULL, 'q'},
1368 {"verbose", no_argument, NULL, 'v'}, 1651 {"verbose", no_argument, NULL, 'v'},
1369 {"format", a_argument, NULL, 'F'}, 1652 {"format", a_argument, NULL, 'F'},
1370 {"from", a_argument, NULL, 'f'}, 1653 {"from", a_argument, NULL, 'f'},
1396 "Find a specified symbol", 1679 "Find a specified symbol",
1397 "Find a specified section", 1680 "Find a specified section",
1398 "Find a specified library", 1681 "Find a specified library",
1399 "Use strncmp to match libraries. (use with -N)", 1682 "Use strncmp to match libraries. (use with -N)",
1400 "Locate cause of TEXTREL", 1683 "Locate cause of TEXTREL",
1401 "Print only ELF files matching numeric constant type", 1684 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1402 "Print only ELF files matching numeric bits", 1685 "Print only ELF files matching numeric bits",
1686 "Print Endianness",
1687 "Print OSABI",
1688 "Print EABI (EM_ARM Only)",
1689 "Print only ELF files matching octal permissions",
1690 "Print ELF file size",
1403 "Print all scanned info (-x -e -t -r -b)\n", 1691 "Print all scanned info (-x -e -t -r -b)\n",
1404 "Only output 'bad' things", 1692 "Only output 'bad' things",
1405 "Be verbose (can be specified more than once)", 1693 "Be verbose (can be specified more than once)",
1406 "Use specified format for output", 1694 "Use specified format for output",
1407 "Read input stream from a filename", 1695 "Read input stream from a filename",
1419 printf("* Scan ELF binaries for stuff\n\n" 1707 printf("* Scan ELF binaries for stuff\n\n"
1420 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0); 1708 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1421 printf("Options: -[%s]\n", PARSE_FLAGS); 1709 printf("Options: -[%s]\n", PARSE_FLAGS);
1422 for (i = 0; long_opts[i].name; ++i) 1710 for (i = 0; long_opts[i].name; ++i)
1423 if (long_opts[i].has_arg == no_argument) 1711 if (long_opts[i].has_arg == no_argument)
1424 printf(" -%c, --%-14s* %s\n", long_opts[i].val, 1712 printf(" -%c, --%-14s* %s\n", long_opts[i].val,
1425 long_opts[i].name, opts_help[i]); 1713 long_opts[i].name, opts_help[i]);
1426 else 1714 else
1427 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val, 1715 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val,
1428 long_opts[i].name, opts_help[i]); 1716 long_opts[i].name, opts_help[i]);
1429 1717
1430 if (status != EXIT_SUCCESS) 1718 puts("\nFor more information, see the scanelf(1) manpage");
1431 exit(status);
1432
1433 puts("\nThe format modifiers for the -F option are:");
1434 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1435 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1436 puts(" i INTERP \tb BIND \ts symbol");
1437 puts(" N library \to Type \tT TEXTRELs");
1438 puts(" S SONAME \tk section");
1439 puts(" p filename (with search path removed)");
1440 puts(" f filename (short name/basename)");
1441 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1442
1443 puts("\nELF Etypes:");
1444 print_etypes(stdout);
1445
1446 exit(status); 1719 exit(status);
1447} 1720}
1448 1721
1449/* parse command line arguments and preform needed actions */ 1722/* parse command line arguments and preform needed actions */
1723#define do_pax_state(option, flag) \
1724 if (islower(option)) { \
1725 flags &= ~PF_##flag; \
1726 flags |= PF_NO##flag; \
1727 } else { \
1728 flags &= ~PF_NO##flag; \
1729 flags |= PF_##flag; \
1730 }
1450static void parseargs(int argc, char *argv[]) 1731static int parseargs(int argc, char *argv[])
1451{ 1732{
1452 int i; 1733 int i;
1453 char *from_file = NULL; 1734 const char *from_file = NULL;
1735 int ret = 0;
1454 1736
1455 opterr = 0; 1737 opterr = 0;
1456 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 1738 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1457 switch (i) { 1739 switch (i) {
1458 1740
1470 case 'E': 1752 case 'E':
1471 strncpy(match_etypes, optarg, sizeof(match_etypes)); 1753 strncpy(match_etypes, optarg, sizeof(match_etypes));
1472 break; 1754 break;
1473 case 'M': 1755 case 'M':
1474 match_bits = atoi(optarg); 1756 match_bits = atoi(optarg);
1757 if (match_bits == 0) {
1758 if (strcmp(optarg, "ELFCLASS32") == 0)
1759 match_bits = 32;
1760 if (strcmp(optarg, "ELFCLASS64") == 0)
1761 match_bits = 64;
1762 }
1763 break;
1764 case 'O':
1765 if (sscanf(optarg, "%o", &match_perms) == -1)
1766 match_bits = 0;
1475 break; 1767 break;
1476 case 'o': { 1768 case 'o': {
1477 FILE *fp = NULL;
1478 if ((fp = freopen(optarg, "w", stdout)) == NULL) 1769 if (freopen(optarg, "w", stdout) == NULL)
1479 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 1770 err("Could not open output stream '%s': %s", optarg, strerror(errno));
1480 SET_STDOUT(fp);
1481 break; 1771 break;
1482 } 1772 }
1483 case 'k': 1773 case 'k':
1484 if (find_section) warn("You prob don't want to specify -k twice"); 1774 if (find_section) warn("You prob don't want to specify -k twice");
1485 find_section = optarg; 1775 find_section = optarg;
1486 break; 1776 break;
1487 case 's': { 1777 case 's': {
1488 if (find_sym) warn("You prob don't want to specify -s twice"); 1778 if (find_sym) warn("You prob don't want to specify -s twice");
1489 find_sym = optarg; 1779 find_sym = optarg;
1490 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1491 sprintf(versioned_symname, "%s@", find_sym);
1492 break; 1780 break;
1493 } 1781 }
1494 case 'N': { 1782 case 'N': {
1495 if (find_lib) warn("You prob don't want to specify -N twice"); 1783 if (find_lib) warn("You prob don't want to specify -N twice");
1496 find_lib = optarg; 1784 find_lib = optarg;
1501 if (out_format) warn("You prob don't want to specify -F twice"); 1789 if (out_format) warn("You prob don't want to specify -F twice");
1502 out_format = optarg; 1790 out_format = optarg;
1503 break; 1791 break;
1504 } 1792 }
1505 case 'z': { 1793 case 'z': {
1506 unsigned long flags = 10240; 1794 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1507 size_t x; 1795 size_t x;
1508 1796
1509#define do_state(option, flag) \
1510 if (islower(option)) { \
1511 flags &= ~PF_##flag; \
1512 flags |= PF_NO##flag; \
1513 } else { \
1514 flags &= ~PF_NO##flag; \
1515 flags |= PF_##flag; \
1516 }
1517
1518 for (x = 0 ; x < strlen(optarg); x++) { 1797 for (x = 0; x < strlen(optarg); x++) {
1519 switch(optarg[x]) { 1798 switch (optarg[x]) {
1520 case 'p': 1799 case 'p':
1521 case 'P': 1800 case 'P':
1522 do_state(optarg[x], PAGEEXEC); 1801 do_pax_state(optarg[x], PAGEEXEC);
1523 break; 1802 break;
1524 case 's': 1803 case 's':
1525 case 'S': 1804 case 'S':
1526 do_state(optarg[x], SEGMEXEC); 1805 do_pax_state(optarg[x], SEGMEXEC);
1527 break; 1806 break;
1528 case 'm': 1807 case 'm':
1529 case 'M': 1808 case 'M':
1530 do_state(optarg[x], MPROTECT); 1809 do_pax_state(optarg[x], MPROTECT);
1531 break; 1810 break;
1532 case 'e': 1811 case 'e':
1533 case 'E': 1812 case 'E':
1534 do_state(optarg[x], EMUTRAMP); 1813 do_pax_state(optarg[x], EMUTRAMP);
1535 break; 1814 break;
1536 case 'r': 1815 case 'r':
1537 case 'R': 1816 case 'R':
1538 do_state(optarg[x], RANDMMAP); 1817 do_pax_state(optarg[x], RANDMMAP);
1539 break; 1818 break;
1540 case 'x': 1819 case 'x':
1541 case 'X': 1820 case 'X':
1542 do_state(optarg[x], RANDEXEC); 1821 do_pax_state(optarg[x], RANDEXEC);
1543 break; 1822 break;
1544 default: 1823 default:
1545 break; 1824 break;
1546 } 1825 }
1547 } 1826 }
1552 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) || 1831 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
1553 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)))) 1832 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1554 setpax = flags; 1833 setpax = flags;
1555 break; 1834 break;
1556 } 1835 }
1836 case 'Z': show_size = 1; break;
1557 case 'g': gmatch = 1; break; 1837 case 'g': g_match = 1; break;
1558 case 'L': use_ldcache = 1; break; 1838 case 'L': use_ldcache = 1; break;
1559 case 'y': scan_symlink = 0; break; 1839 case 'y': scan_symlink = 0; break;
1560 case 'A': scan_archives = 1; break; 1840 case 'A': scan_archives = 1; break;
1561 case 'B': show_banner = 0; break; 1841 case 'B': show_banner = 0; break;
1562 case 'l': scan_ldpath = 1; break; 1842 case 'l': scan_ldpath = 1; break;
1573 case 'b': show_bind = 1; break; 1853 case 'b': show_bind = 1; break;
1574 case 'S': show_soname = 1; break; 1854 case 'S': show_soname = 1; break;
1575 case 'T': show_textrels = 1; break; 1855 case 'T': show_textrels = 1; break;
1576 case 'q': be_quiet = 1; break; 1856 case 'q': be_quiet = 1; break;
1577 case 'v': be_verbose = (be_verbose % 20) + 1; break; 1857 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1578 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 1858 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1579 1859 case 'D': show_endian = 1; break;
1860 case 'I': show_osabi = 1; break;
1861 case 'Y': show_eabi = 1; break;
1580 case ':': 1862 case ':':
1581 err("Option '%c' is missing parameter", optopt); 1863 err("Option '%c' is missing parameter", optopt);
1582 case '?': 1864 case '?':
1583 err("Unknown option '%c' or argument missing", optopt); 1865 err("Unknown option '%c' or argument missing", optopt);
1584 default: 1866 default:
1585 err("Unhandled option '%c'; please report this", i); 1867 err("Unhandled option '%c'; please report this", i);
1586 } 1868 }
1587 } 1869 }
1588 1870 if (show_textrels && be_verbose) {
1871 if (which("objdump") != NULL)
1872 has_objdump = 1;
1873 }
1589 /* let the format option override all other options */ 1874 /* let the format option override all other options */
1590 if (out_format) { 1875 if (out_format) {
1591 show_pax = show_phdr = show_textrel = show_rpath = \ 1876 show_pax = show_phdr = show_textrel = show_rpath = \
1592 show_needed = show_interp = show_bind = show_soname = \ 1877 show_needed = show_interp = show_bind = show_soname = \
1593 show_textrels = 0; 1878 show_textrels = show_perms = show_endian = show_size = \
1879 show_osabi = show_eabi = 0;
1594 for (i = 0; out_format[i]; ++i) { 1880 for (i = 0; out_format[i]; ++i) {
1595 if (!IS_MODIFIER(out_format[i])) continue; 1881 if (!IS_MODIFIER(out_format[i])) continue;
1596 1882
1597 switch (out_format[++i]) { 1883 switch (out_format[++i]) {
1884 case '+': break;
1598 case '%': break; 1885 case '%': break;
1599 case '#': break; 1886 case '#': break;
1600 case 'F': break; 1887 case 'F': break;
1601 case 'p': break; 1888 case 'p': break;
1602 case 'f': break; 1889 case 'f': break;
1603 case 'k': break; 1890 case 'k': break;
1604 case 's': break; 1891 case 's': break;
1605 case 'N': break; 1892 case 'N': break;
1606 case 'o': break; 1893 case 'o': break;
1894 case 'a': break;
1895 case 'M': break;
1896 case 'Z': show_size = 1; break;
1897 case 'D': show_endian = 1; break;
1898 case 'I': show_osabi = 1; break;
1899 case 'Y': show_eabi = 1; break;
1900 case 'O': show_perms = 1; break;
1607 case 'x': show_pax = 1; break; 1901 case 'x': show_pax = 1; break;
1608 case 'e': show_phdr = 1; break; 1902 case 'e': show_phdr = 1; break;
1609 case 't': show_textrel = 1; break; 1903 case 't': show_textrel = 1; break;
1610 case 'r': show_rpath = 1; break; 1904 case 'r': show_rpath = 1; break;
1611 case 'n': show_needed = 1; break; 1905 case 'n': show_needed = 1; break;
1612 case 'i': show_interp = 1; break; 1906 case 'i': show_interp = 1; break;
1613 case 'b': show_bind = 1; break; 1907 case 'b': show_bind = 1; break;
1614 case 'S': show_soname = 1; break; 1908 case 'S': show_soname = 1; break;
1615 case 'T': show_textrels = 1; break; 1909 case 'T': show_textrels = 1; break;
1616 default: 1910 default:
1617 err("Invalid format specifier '%c' (byte %i)", 1911 err("Invalid format specifier '%c' (byte %i)",
1618 out_format[i], i+1); 1912 out_format[i], i+1);
1619 } 1913 }
1620 } 1914 }
1621 1915
1622 /* construct our default format */ 1916 /* construct our default format */
1623 } else { 1917 } else {
1624 size_t fmt_len = 30; 1918 size_t fmt_len = 30;
1625 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 1919 out_format = xmalloc(sizeof(char) * fmt_len);
1920 *out_format = '\0';
1626 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 1921 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1627 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 1922 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
1923 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
1924 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
1925 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
1926 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
1927 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1628 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 1928 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1629 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 1929 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1630 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 1930 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1631 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 1931 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1632 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 1932 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1640 } 1940 }
1641 if (be_verbose > 2) printf("Format: %s\n", out_format); 1941 if (be_verbose > 2) printf("Format: %s\n", out_format);
1642 1942
1643 /* now lets actually do the scanning */ 1943 /* now lets actually do the scanning */
1644 if (scan_ldpath || use_ldcache) 1944 if (scan_ldpath || use_ldcache)
1645 load_ld_so_conf(0, "/etc/ld.so.conf"); 1945 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1646 if (scan_ldpath) scanelf_ldpath(); 1946 if (scan_ldpath) scanelf_ldpath();
1647 if (scan_envpath) scanelf_envpath(); 1947 if (scan_envpath) scanelf_envpath();
1948 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
1949 from_file = "-";
1648 if (from_file) { 1950 if (from_file) {
1649 scanelf_from_file(from_file); 1951 scanelf_from_file(from_file);
1650 from_file = *argv; 1952 from_file = *argv;
1651 } 1953 }
1652 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 1954 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1653 err("Nothing to scan !?"); 1955 err("Nothing to scan !?");
1654 while (optind < argc) { 1956 while (optind < argc) {
1655 search_path = argv[optind++]; 1957 search_path = argv[optind++];
1656 scanelf_dir(search_path); 1958 ret = scanelf_dir(search_path);
1657 } 1959 }
1658 1960
1659 /* clean up */ 1961 /* clean up */
1660 if (versioned_symname) free(versioned_symname);
1661 for (i = 0; ldpaths[i]; ++i) 1962 for (i = 0; ldpaths[i]; ++i)
1662 free(ldpaths[i]); 1963 free(ldpaths[i]);
1663 1964
1664 if (ldcache != 0) 1965 if (ldcache != 0)
1665 munmap(ldcache, ldcache_size); 1966 munmap(ldcache, ldcache_size);
1666}
1667
1668
1669
1670/* utility funcs */
1671static char *xstrdup(const char *s)
1672{
1673 char *ret = strdup(s);
1674 if (!ret) err("Could not strdup(): %s", strerror(errno));
1675 return ret; 1967 return ret;
1676} 1968}
1677static void *xmalloc(size_t size)
1678{
1679 void *ret = malloc(size);
1680 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
1681 return ret;
1682}
1683static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
1684{
1685 size_t new_len;
1686 1969
1687 new_len = strlen(*dst) + strlen(src); 1970static char **get_split_env(const char *envvar)
1688 if (*curr_len <= new_len) {
1689 *curr_len = new_len + (*curr_len / 2);
1690 *dst = realloc(*dst, *curr_len);
1691 if (!*dst)
1692 err("could not realloc() %li bytes", (unsigned long)*curr_len);
1693 }
1694
1695 if (n)
1696 strncat(*dst, src, n);
1697 else
1698 strcat(*dst, src);
1699}
1700static inline void xchrcat(char **dst, const char append, size_t *curr_len)
1701{ 1971{
1702 static char my_app[2]; 1972 const char *delims = " \t\n";
1703 my_app[0] = append; 1973 char **envvals = NULL;
1704 my_app[1] = '\0'; 1974 char *env, *s;
1705 xstrcat(dst, my_app, curr_len); 1975 int nentry;
1706}
1707 1976
1977 if ((env = getenv(envvar)) == NULL)
1978 return NULL;
1708 1979
1980 env = xstrdup(env);
1981 if (env == NULL)
1982 return NULL;
1983
1984 s = strtok(env, delims);
1985 if (s == NULL) {
1986 free(env);
1987 return NULL;
1988 }
1989
1990 nentry = 0;
1991 while (s != NULL) {
1992 ++nentry;
1993 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
1994 envvals[nentry-1] = s;
1995 s = strtok(NULL, delims);
1996 }
1997 envvals[nentry] = NULL;
1998
1999 /* don't want to free(env) as it contains the memory that backs
2000 * the envvals array of strings */
2001 return envvals;
2002}
2003
2004static void parseenv(void)
2005{
2006 qa_textrels = get_split_env("QA_TEXTRELS");
2007 qa_execstack = get_split_env("QA_EXECSTACK");
2008 qa_wx_load = get_split_env("QA_WX_LOAD");
2009}
2010
2011#ifdef __PAX_UTILS_CLEANUP
2012static void cleanup(void)
2013{
2014 free(out_format);
2015 free(qa_textrels);
2016 free(qa_execstack);
2017 free(qa_wx_load);
2018}
2019#endif
1709 2020
1710int main(int argc, char *argv[]) 2021int main(int argc, char *argv[])
1711{ 2022{
2023 int ret;
1712 if (argc < 2) 2024 if (argc < 2)
1713 usage(EXIT_FAILURE); 2025 usage(EXIT_FAILURE);
2026 parseenv();
1714 parseargs(argc, argv); 2027 ret = parseargs(argc, argv);
1715 fclose(stdout); 2028 fclose(stdout);
1716#ifdef __BOUNDS_CHECKING_ON 2029#ifdef __PAX_UTILS_CLEANUP
1717 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2030 cleanup();
2031 warn("The calls to add/delete heap should be off:\n"
2032 "\t- 1 due to the out_buffer not being freed in scanelf_file()\n"
2033 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1718#endif 2034#endif
1719 return EXIT_SUCCESS; 2035 return ret;
1720} 2036}
2037
2038/* Match filename against entries in matchlist, return TRUE
2039 * if the file is listed */
2040static int file_matches_list(const char *filename, char **matchlist)
2041{
2042 char **file;
2043 char *match;
2044 char buf[__PAX_UTILS_PATH_MAX];
2045
2046 if (matchlist == NULL)
2047 return 0;
2048
2049 for (file = matchlist; *file != NULL; file++) {
2050 if (search_path) {
2051 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2052 match = buf;
2053 } else {
2054 match = *file;
2055 }
2056 if (fnmatch(match, filename, 0) == 0)
2057 return 1;
2058 }
2059 return 0;
2060}

Legend:
Removed from v.1.127  
changed lines
  Added in v.1.205

  ViewVC Help
Powered by ViewVC 1.1.20