/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.127 Revision 1.208
1/* 1/*
2 * Copyright 2003-2006 Gentoo Foundation 2 * Copyright 2003-2007 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.127 2006/02/17 07:13:54 solar Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.208 2009/01/31 17:58:37 grobian Exp $
5 * 5 *
6 * Copyright 2003-2006 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2006 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10static const char *rcsid = "$Id: scanelf.c,v 1.208 2009/01/31 17:58:37 grobian Exp $";
11const char * const argv0 = "scanelf";
12
10#include "paxinc.h" 13#include "paxinc.h"
11 14
12static const char *rcsid = "$Id: scanelf.c,v 1.127 2006/02/17 07:13:54 solar Exp $";
13#define argv0 "scanelf"
14
15#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
16
17
18 16
19/* prototypes */ 17/* prototypes */
18static int file_matches_list(const char *filename, char **matchlist);
20static int scanelf_elfobj(elfobj *elf); 19static int scanelf_elfobj(elfobj *elf);
21static int scanelf_elf(const char *filename, int fd, size_t len); 20static int scanelf_elf(const char *filename, int fd, size_t len);
22static int scanelf_archive(const char *filename, int fd, size_t len); 21static int scanelf_archive(const char *filename, int fd, size_t len);
23static void scanelf_file(const char *filename); 22static int scanelf_file(const char *filename, const struct stat *st_cache);
24static void scanelf_dir(const char *path); 23static int scanelf_dir(const char *path);
25static void scanelf_ldpath(void); 24static void scanelf_ldpath(void);
26static void scanelf_envpath(void); 25static void scanelf_envpath(void);
27static void usage(int status); 26static void usage(int status);
27static char **get_split_env(const char *envvar);
28static void parseenv(void);
28static void parseargs(int argc, char *argv[]); 29static int parseargs(int argc, char *argv[]);
29static char *xstrdup(const char *s); 30static int rematch(const char *regex, const char *match, int cflags);
30static void *xmalloc(size_t size);
31static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
32#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
33static inline void xchrcat(char **dst, const char append, size_t *curr_len);
34 31
35/* variables to control behavior */ 32/* variables to control behavior */
36static char match_etypes[126] = ""; 33static char match_etypes[126] = "";
37static char *ldpaths[256]; 34static char *ldpaths[256];
38static char scan_ldpath = 0; 35static char scan_ldpath = 0;
40static char scan_symlink = 1; 37static char scan_symlink = 1;
41static char scan_archives = 0; 38static char scan_archives = 0;
42static char dir_recurse = 0; 39static char dir_recurse = 0;
43static char dir_crossmount = 1; 40static char dir_crossmount = 1;
44static char show_pax = 0; 41static char show_pax = 0;
42static char show_perms = 0;
43static char show_size = 0;
45static char show_phdr = 0; 44static char show_phdr = 0;
46static char show_textrel = 0; 45static char show_textrel = 0;
47static char show_rpath = 0; 46static char show_rpath = 0;
48static char show_needed = 0; 47static char show_needed = 0;
49static char show_interp = 0; 48static char show_interp = 0;
50static char show_bind = 0; 49static char show_bind = 0;
51static char show_soname = 0; 50static char show_soname = 0;
52static char show_textrels = 0; 51static char show_textrels = 0;
53static char show_banner = 1; 52static char show_banner = 1;
53static char show_endian = 0;
54static char show_osabi = 0;
55static char show_eabi = 0;
54static char be_quiet = 0; 56static char be_quiet = 0;
55static char be_verbose = 0; 57static char be_verbose = 0;
56static char be_wewy_wewy_quiet = 0; 58static char be_wewy_wewy_quiet = 0;
57static char *find_sym = NULL, *versioned_symname = NULL; 59static char be_semi_verbose = 0;
60static char *find_sym = NULL;
58static char *find_lib = NULL; 61static char *find_lib = NULL;
59static char *find_section = NULL; 62static char *find_section = NULL;
60static char *out_format = NULL; 63static char *out_format = NULL;
61static char *search_path = NULL; 64static char *search_path = NULL;
62static char fix_elf = 0; 65static char fix_elf = 0;
63static char gmatch = 0; 66static char g_match = 0;
64static char use_ldcache = 0; 67static char use_ldcache = 0;
65 68
69static char **qa_textrels = NULL;
70static char **qa_execstack = NULL;
71static char **qa_wx_load = NULL;
72
66int match_bits = 0; 73static int match_bits = 0;
74static unsigned int match_perms = 0;
67caddr_t ldcache = 0; 75static caddr_t ldcache = 0;
68size_t ldcache_size = 0; 76static size_t ldcache_size = 0;
69unsigned long setpax = 0UL; 77static unsigned long setpax = 0UL;
78
79static int has_objdump = 0;
80
81/* find the path to a file by name */
82static char *which(const char *fname)
83{
84 static char fullpath[__PAX_UTILS_PATH_MAX];
85 char *path, *p;
86
87 path = getenv("PATH");
88 if (!path)
89 return NULL;
90
91 path = xstrdup(path);
92 while ((p = strrchr(path, ':')) != NULL) {
93 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
94 *p = 0;
95 if (access(fullpath, R_OK) != -1) {
96 free(path);
97 return fullpath;
98 }
99 }
100 free(path);
101 return NULL;
102}
103
104/* 1 on failure. 0 otherwise */
105static int rematch(const char *regex, const char *match, int cflags)
106{
107 regex_t preg;
108 int ret;
109
110 if ((match == NULL) || (regex == NULL))
111 return EXIT_FAILURE;
112
113 if ((ret = regcomp(&preg, regex, cflags))) {
114 char err[256];
115
116 if (regerror(ret, &preg, err, sizeof(err)))
117 fprintf(stderr, "regcomp failed: %s", err);
118 else
119 fprintf(stderr, "regcomp failed");
120
121 return EXIT_FAILURE;
122 }
123 ret = regexec(&preg, match, 0, NULL, 0);
124 regfree(&preg);
125
126 return ret;
127}
70 128
71/* sub-funcs for scanelf_file() */ 129/* sub-funcs for scanelf_file() */
72static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 130static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab)
73{ 131{
74 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 132 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
116 continue; \ 174 continue; \
117 if (fix_elf && setpax) { \ 175 if (fix_elf && setpax) { \
118 /* set the paxctl flags */ \ 176 /* set the paxctl flags */ \
119 ESET(phdr[i].p_flags, setpax); \ 177 ESET(phdr[i].p_flags, setpax); \
120 } \ 178 } \
121 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 179 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
122 continue; \ 180 continue; \
123 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 181 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
124 *found_pax = 1; \ 182 *found_pax = 1; \
125 ++shown; \ 183 ++shown; \
126 break; \ 184 break; \
128 } 186 }
129 SHOW_PAX(32) 187 SHOW_PAX(32)
130 SHOW_PAX(64) 188 SHOW_PAX(64)
131 } 189 }
132 190
191 if (fix_elf && setpax) {
192 /* set the chpax settings */
193 if (elf->elf_class == ELFCLASS32) {
194 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC)
195 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
196 } else {
197 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
198 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
199 }
200 }
201
133 /* fall back to EI_PAX if no PT_PAX was found */ 202 /* fall back to EI_PAX if no PT_PAX was found */
134 if (!*ret) { 203 if (!*ret) {
135 static char *paxflags; 204 static char *paxflags;
136
137 if (fix_elf && setpax) {
138 /* set the chpax settings */
139 // ESET(EHDR ## B (elf->ehdr)->e_ident[EI_PAX]), setpax);
140 }
141
142 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 205 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
143 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) { 206 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) {
144 *found_pax = 1; 207 *found_pax = 1;
145 return (be_wewy_wewy_quiet ? NULL : paxflags); 208 return (be_wewy_wewy_quiet ? NULL : paxflags);
146 } 209 }
176 uint32_t flags, check_flags; \ 239 uint32_t flags, check_flags; \
177 if (elf->phdr != NULL) { \ 240 if (elf->phdr != NULL) { \
178 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 241 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
179 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \ 242 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
180 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 243 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
244 if (multi_stack++) \
181 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 245 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
246 if (file_matches_list(elf->filename, qa_execstack)) \
247 continue; \
182 found = found_phdr; \ 248 found = found_phdr; \
183 offset = 0; \ 249 offset = 0; \
184 check_flags = PF_X; \ 250 check_flags = PF_X; \
185 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 251 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
252 if (multi_relro++) \
186 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 253 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
187 found = found_relro; \ 254 found = found_relro; \
188 offset = 4; \ 255 offset = 4; \
189 check_flags = PF_X; \ 256 check_flags = PF_X; \
190 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 257 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
191 if (ehdr->e_type == ET_DYN || ehdr->e_type == ET_EXEC) \ 258 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
259 if (multi_load++ > max_pt_load) \
192 if (multi_load++ > max_pt_load) warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \ 260 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
261 if (file_matches_list(elf->filename, qa_wx_load)) \
262 continue; \
193 found = found_load; \ 263 found = found_load; \
194 offset = 8; \ 264 offset = 8; \
195 check_flags = PF_W|PF_X; \ 265 check_flags = PF_W|PF_X; \
196 } else \ 266 } else \
197 continue; \ 267 continue; \
198 flags = EGET(phdr[i].p_flags); \ 268 flags = EGET(phdr[i].p_flags); \
199 if (be_quiet && ((flags & check_flags) != check_flags)) \ 269 if (be_quiet && ((flags & check_flags) != check_flags)) \
200 continue; \ 270 continue; \
201 if (fix_elf && ((flags & PF_X) != flags)) { \ 271 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
202 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \ 272 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
203 ret[3] = ret[7] = '!'; \ 273 ret[3] = ret[7] = '!'; \
204 flags = EGET(phdr[i].p_flags); \ 274 flags = EGET(phdr[i].p_flags); \
205 } \ 275 } \
206 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \ 276 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
234 break; \ 304 break; \
235 } \ 305 } \
236 } \ 306 } \
237 skip_this_shdr##B: \ 307 skip_this_shdr##B: \
238 if (!multi_stack) { \ 308 if (!multi_stack) { \
309 if (file_matches_list(elf->filename, qa_execstack)) \
310 return NULL; \
239 *found_phdr = 1; \ 311 *found_phdr = 1; \
240 shown = 1; \ 312 shown = 1; \
241 memcpy(ret, "!WX", 3); \ 313 memcpy(ret, "!WX", 3); \
242 } \ 314 } \
243 } \ 315 } \
248 if (be_wewy_wewy_quiet || (be_quiet && !shown)) 320 if (be_wewy_wewy_quiet || (be_quiet && !shown))
249 return NULL; 321 return NULL;
250 else 322 else
251 return ret; 323 return ret;
252} 324}
325
326/*
327 * See if this ELF contains a DT_TEXTREL tag in any of its
328 * PT_DYNAMIC sections.
329 */
253static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 330static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
254{ 331{
255 static const char *ret = "TEXTREL"; 332 static const char *ret = "TEXTREL";
256 unsigned long i; 333 unsigned long i;
257 334
258 if (!show_textrel && !show_textrels) return NULL; 335 if (!show_textrel && !show_textrels) return NULL;
336
337 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
259 338
260 if (elf->phdr) { 339 if (elf->phdr) {
261#define SHOW_TEXTREL(B) \ 340#define SHOW_TEXTREL(B) \
262 if (elf->elf_class == ELFCLASS ## B) { \ 341 if (elf->elf_class == ELFCLASS ## B) { \
263 Elf ## B ## _Dyn *dyn; \ 342 Elf ## B ## _Dyn *dyn; \
264 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 343 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
265 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 344 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
266 Elf ## B ## _Off offset; \ 345 Elf ## B ## _Off offset; \
267 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 346 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
268 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 347 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
269 offset = EGET(phdr[i].p_offset); \ 348 offset = EGET(phdr[i].p_offset); \
270 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 349 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
271 dyn = DYN ## B (elf->data + offset); \ 350 dyn = DYN ## B (elf->data + offset); \
272 while (EGET(dyn->d_tag) != DT_NULL) { \ 351 while (EGET(dyn->d_tag) != DT_NULL) { \
273 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 352 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
285 if (be_quiet || be_wewy_wewy_quiet) 364 if (be_quiet || be_wewy_wewy_quiet)
286 return NULL; 365 return NULL;
287 else 366 else
288 return " - "; 367 return " - ";
289} 368}
369
370/*
371 * Scan the .text section to see if there are any relocations in it.
372 * Should rewrite this to check PT_LOAD sections that are marked
373 * Executable rather than the section named '.text'.
374 */
290static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 375static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
291{ 376{
292 unsigned long s, r, rmax; 377 unsigned long s, r, rmax;
293 void *symtab_void, *strtab_void, *text_void; 378 void *symtab_void, *strtab_void, *text_void;
294 379
361 /* show the raw details about this reloc */ \ 446 /* show the raw details about this reloc */ \
362 printf(" %s: ", elf->base_filename); \ 447 printf(" %s: ", elf->base_filename); \
363 if (sym && sym->st_name) \ 448 if (sym && sym->st_name) \
364 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 449 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \
365 else \ 450 else \
366 printf("(memory/fake?)"); \ 451 printf("(memory/data?)"); \
367 printf(" [0x%lX]", (unsigned long)r_offset); \ 452 printf(" [0x%lX]", (unsigned long)r_offset); \
368 /* now try to find the closest symbol that this rel is probably in */ \ 453 /* now try to find the closest symbol that this rel is probably in */ \
369 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 454 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
370 func = NULL; \ 455 func = NULL; \
371 offset_tmp = 0; \ 456 offset_tmp = 0; \
375 offset_tmp = EGET(sym->st_value); \ 460 offset_tmp = EGET(sym->st_value); \
376 } \ 461 } \
377 ++sym; \ 462 ++sym; \
378 } \ 463 } \
379 printf(" in "); \ 464 printf(" in "); \
380 if (func && func->st_name) \ 465 if (func && func->st_name) { \
381 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 466 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
467 if (r_offset > EGET(func->st_size)) \
468 printf("(optimized out: previous %s)", func_name); \
382 else \ 469 else \
383 printf("(NULL: fake?)"); \ 470 printf("%s", func_name); \
471 } else \
472 printf("(optimized out)"); \
384 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 473 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
474 if (be_verbose && has_objdump) { \
475 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
476 char *sysbuf; \
477 size_t syslen; \
478 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
479 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
480 sysbuf = xmalloc(syslen); \
481 if (end_addr < r_offset) \
482 /* not uncommon when things are optimized out */ \
483 end_addr = r_offset + 0x100; \
484 snprintf(sysbuf, syslen, sysfmt, \
485 (unsigned long)offset_tmp, \
486 (unsigned long)end_addr, \
487 elf->filename, \
488 (unsigned long)r_offset); \
489 fflush(stdout); \
490 system(sysbuf); \
491 fflush(stdout); \
492 free(sysbuf); \
493 } \
385 } \ 494 } \
386 } } 495 } }
387 SHOW_TEXTRELS(32) 496 SHOW_TEXTRELS(32)
388 SHOW_TEXTRELS(64) 497 SHOW_TEXTRELS(64)
389 } 498 }
407 warnf("Security problem NULL %s in %s", dt_type, elf->filename); 516 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
408 break; 517 break;
409 case '$': 518 case '$':
410 if (fstat(elf->fd, &st) != -1) 519 if (fstat(elf->fd, &st) != -1)
411 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 520 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
412 warnf("Security problem with %s='%s' in %s with mode set of %o", 521 warnf("Security problem with %s='%s' in %s with mode set of %o",
413 dt_type, item, elf->filename, st.st_mode & 07777); 522 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
414 break; 523 break;
415 default: 524 default:
416 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename); 525 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
417 break; 526 break;
418 } 527 }
438 Elf ## B ## _Off offset; \ 547 Elf ## B ## _Off offset; \
439 Elf ## B ## _Xword word; \ 548 Elf ## B ## _Xword word; \
440 /* Scan all the program headers */ \ 549 /* Scan all the program headers */ \
441 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 550 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
442 /* Just scan dynamic headers */ \ 551 /* Just scan dynamic headers */ \
443 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 552 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
444 offset = EGET(phdr[i].p_offset); \ 553 offset = EGET(phdr[i].p_offset); \
445 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 554 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
446 /* Just scan dynamic RPATH/RUNPATH headers */ \ 555 /* Just scan dynamic RPATH/RUNPATH headers */ \
447 dyn = DYN ## B (elf->data + offset); \ 556 dyn = DYN ## B (elf->data + offset); \
448 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 557 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
577#define FLAG_POWERPC_LIB64 0x0500 686#define FLAG_POWERPC_LIB64 0x0500
578#define FLAG_MIPS64_LIBN32 0x0600 687#define FLAG_MIPS64_LIBN32 0x0600
579#define FLAG_MIPS64_LIBN64 0x0700 688#define FLAG_MIPS64_LIBN64 0x0700
580 689
581static char *lookup_cache_lib(elfobj *, char *); 690static char *lookup_cache_lib(elfobj *, char *);
691
692#if defined(__GLIBC__) || defined(__UCLIBC__)
693
582static char *lookup_cache_lib(elfobj *elf, char *fname) 694static char *lookup_cache_lib(elfobj *elf, char *fname)
583{ 695{
584 int fd = 0; 696 int fd = 0;
585 char *strs; 697 char *strs;
586 static char buf[__PAX_UTILS_PATH_MAX] = ""; 698 static char buf[__PAX_UTILS_PATH_MAX] = "";
612 ldcache_size = st.st_size; 724 ldcache_size = st.st_size;
613 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0); 725 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
614 726
615 close(fd); 727 close(fd);
616 728
617 if (ldcache == (caddr_t)-1) { 729 if (ldcache == MAP_FAILED) {
618 ldcache = 0; 730 ldcache = 0;
619 return NULL; 731 return NULL;
620 } 732 }
621 733
622 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 734 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN))
642 continue; 754 continue;
643 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 755 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
644 } 756 }
645 return buf; 757 return buf;
646} 758}
759#elif defined(__NetBSD__)
760static char *lookup_cache_lib(elfobj *elf, char *fname)
761{
762 static char buf[__PAX_UTILS_PATH_MAX] = "";
763 static struct stat st;
647 764
765 char **ldpath;
766 for (ldpath = ldpaths; *ldpath != NULL; ldpath++) {
767 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", *ldpath, fname) >= sizeof(buf))
768 continue; /* if the pathname is too long, or something went wrong, ignore */
769
770 if (stat(buf, &st) != 0)
771 continue; /* if the lib doesn't exist in *ldpath, look further */
772
773 /* NetBSD doesn't actually do sanity checks, it just loads the file
774 * and if that doesn't work, continues looking in other directories.
775 * This cannot easily be safely emulated, unfortunately. For now,
776 * just assume that if it exists, it's a valid library. */
777
778 return buf;
779 }
780
781 /* not found in any path */
782 return NULL;
783}
784#else
785#ifdef __ELF__
786#warning Cache support not implemented for your target
787#endif
788static char *lookup_cache_lib(elfobj *elf, char *fname)
789{
790 return NULL;
791}
792#endif
648 793
649static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 794static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
650{ 795{
651 unsigned long i; 796 unsigned long i;
652 char *needed; 797 char *needed;
664 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 809 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
665 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 810 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
666 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 811 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
667 Elf ## B ## _Off offset; \ 812 Elf ## B ## _Off offset; \
668 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 813 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
669 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 814 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
670 offset = EGET(phdr[i].p_offset); \ 815 offset = EGET(phdr[i].p_offset); \
671 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 816 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
672 dyn = DYN ## B (elf->data + offset); \ 817 dyn = DYN ## B (elf->data + offset); \
673 while (EGET(dyn->d_tag) != DT_NULL) { \ 818 while (EGET(dyn->d_tag) != DT_NULL) { \
674 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 819 if (EGET(dyn->d_tag) == DT_NEEDED) { \
686 needed = p; \ 831 needed = p; \
687 xstrcat(ret, needed, ret_len); \ 832 xstrcat(ret, needed, ret_len); \
688 } \ 833 } \
689 *found_needed = 1; \ 834 *found_needed = 1; \
690 } else { \ 835 } else { \
691 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 836 if (!strncmp(find_lib, needed, strlen( !g_match ? needed : find_lib))) { \
692 *found_lib = 1; \ 837 *found_lib = 1; \
693 return (be_wewy_wewy_quiet ? NULL : needed); \ 838 return (be_wewy_wewy_quiet ? NULL : needed); \
694 } \ 839 } \
695 } \ 840 } \
696 } \ 841 } \
727} 872}
728static char *scanelf_file_bind(elfobj *elf, char *found_bind) 873static char *scanelf_file_bind(elfobj *elf, char *found_bind)
729{ 874{
730 unsigned long i; 875 unsigned long i;
731 struct stat s; 876 struct stat s;
877 char dynamic = 0;
732 878
733 if (!show_bind) return NULL; 879 if (!show_bind) return NULL;
734 if (!elf->phdr) return NULL; 880 if (!elf->phdr) return NULL;
735 881
736#define SHOW_BIND(B) \ 882#define SHOW_BIND(B) \
738 Elf ## B ## _Dyn *dyn; \ 884 Elf ## B ## _Dyn *dyn; \
739 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 885 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
740 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 886 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
741 Elf ## B ## _Off offset; \ 887 Elf ## B ## _Off offset; \
742 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 888 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
743 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 889 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
890 dynamic = 1; \
744 offset = EGET(phdr[i].p_offset); \ 891 offset = EGET(phdr[i].p_offset); \
745 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 892 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
746 dyn = DYN ## B (elf->data + offset); \ 893 dyn = DYN ## B (elf->data + offset); \
747 while (EGET(dyn->d_tag) != DT_NULL) { \ 894 while (EGET(dyn->d_tag) != DT_NULL) { \
748 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 895 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
759 SHOW_BIND(32) 906 SHOW_BIND(32)
760 SHOW_BIND(64) 907 SHOW_BIND(64)
761 908
762 if (be_wewy_wewy_quiet) return NULL; 909 if (be_wewy_wewy_quiet) return NULL;
763 910
911 /* don't output anything if quiet mode and the ELF is static or not setuid */
764 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 912 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
765 return NULL; 913 return NULL;
766 } else { 914 } else {
767 *found_bind = 1; 915 *found_bind = 1;
768 return (char *) "LAZY"; 916 return (char *) (dynamic ? "LAZY" : "STATIC");
769 } 917 }
770} 918}
771static char *scanelf_file_soname(elfobj *elf, char *found_soname) 919static char *scanelf_file_soname(elfobj *elf, char *found_soname)
772{ 920{
773 unsigned long i; 921 unsigned long i;
785 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 933 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
786 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 934 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
787 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 935 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
788 Elf ## B ## _Off offset; \ 936 Elf ## B ## _Off offset; \
789 /* only look for soname in shared objects */ \ 937 /* only look for soname in shared objects */ \
790 if (ehdr->e_type != ET_DYN) \ 938 if (EGET(ehdr->e_type) != ET_DYN) \
791 return NULL; \ 939 return NULL; \
792 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 940 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
793 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 941 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
794 offset = EGET(phdr[i].p_offset); \ 942 offset = EGET(phdr[i].p_offset); \
795 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 943 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
796 dyn = DYN ## B (elf->data + offset); \ 944 dyn = DYN ## B (elf->data + offset); \
797 while (EGET(dyn->d_tag) != DT_NULL) { \ 945 while (EGET(dyn->d_tag) != DT_NULL) { \
798 if (EGET(dyn->d_tag) == DT_SONAME) { \ 946 if (EGET(dyn->d_tag) == DT_SONAME) { \
812 SHOW_SONAME(64) 960 SHOW_SONAME(64)
813 } 961 }
814 962
815 return NULL; 963 return NULL;
816} 964}
965
966static int scanelf_match_symname(const char *symname, const char *tomatch) {
967 /* We do things differently when checking with regexp */
968 if (g_match) {
969 return rematch(symname, tomatch, REG_EXTENDED) == 0;
970 } else {
971 const size_t symname_len = strlen(symname);
972 return (strncmp(symname, tomatch, symname_len) == 0 &&
973 /* Accept unversioned symbol names */
974 (tomatch[symname_len] == '\0' || tomatch[symname_len] == '@'));
975 }
976}
977
817static char *scanelf_file_sym(elfobj *elf, char *found_sym) 978static char *scanelf_file_sym(elfobj *elf, char *found_sym)
818{ 979{
819 unsigned long i; 980 unsigned long i;
820 char *ret; 981 char *ret;
821 void *symtab_void, *strtab_void; 982 void *symtab_void, *strtab_void;
834 unsigned long cnt = EGET(symtab->sh_entsize); \ 995 unsigned long cnt = EGET(symtab->sh_entsize); \
835 char *symname; \ 996 char *symname; \
836 if (cnt) \ 997 if (cnt) \
837 cnt = EGET(symtab->sh_size) / cnt; \ 998 cnt = EGET(symtab->sh_size) / cnt; \
838 for (i = 0; i < cnt; ++i) { \ 999 for (i = 0; i < cnt; ++i) { \
1000 if ((void*)sym > (void*)elf->data_end) { \
1001 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1002 goto break_out; \
1003 } \
839 if (sym->st_name) { \ 1004 if (sym->st_name) { \
1005 /* make sure the symbol name is in acceptable memory range */ \
840 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1006 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
841 if ((void*)symname > (void*)elf->data_end) { \ 1007 if ((void*)symname > (void*)elf->data_end) { \
842 warnf("%s: corrupt ELF symbols", elf->filename); \ 1008 warnf("%s: corrupt ELF symbols", elf->filename); \
1009 ++sym; \
843 continue; \ 1010 continue; \
844 } \ 1011 } \
845 if (*find_sym == '*') { \ 1012 /* debug display ... show all symbols and some extra info */ \
1013 if (0 && g_match ? rematch(ret, symname, REG_EXTENDED) == 0 : *ret == '*') { \
846 printf("%s(%s) %5lX %15s %s\n", \ 1014 printf("%s(%s) %5lX %15s %s %s\n", \
847 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1015 ((*found_sym == 0) ? "\n\t" : "\t"), \
848 elf->base_filename, \ 1016 elf->base_filename, \
849 (unsigned long)sym->st_size, \ 1017 (unsigned long)sym->st_size, \
850 get_elfstttype(sym->st_info), \ 1018 get_elfstttype(sym->st_info), \
851 symname); \ 1019 sym->st_shndx == SHN_UNDEF ? "U" : "D", symname); \
852 *found_sym = 1; \ 1020 *found_sym = 1; \
853 } else { \ 1021 } else { \
1022 /* allow the user to specify a comma delimited list of symbols to search for */ \
854 char *this_sym, *next_sym; \ 1023 char *this_sym, *next_sym; \
1024 next_sym = ret; \
1025 while (next_sym) { \
855 this_sym = find_sym; \ 1026 this_sym = next_sym; \
856 do { \
857 next_sym = strchr(this_sym, ','); \ 1027 if ((next_sym = strchr(this_sym, ','))) \
858 if (next_sym == NULL) \ 1028 next_sym += 1; /* Skip the comma */ \
859 next_sym = this_sym + strlen(this_sym); \ 1029 /* do we want a defined symbol ? */ \
860 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \ 1030 if (*this_sym == '+') { \
861 (strcmp(symname, versioned_symname) == 0)) { \ 1031 if (sym->st_shndx == SHN_UNDEF) \
1032 continue; \
862 ret = this_sym; \ 1033 ++this_sym; \
1034 /* do we want an undefined symbol ? */ \
1035 } else if (*this_sym == '-') { \
1036 if (sym->st_shndx != SHN_UNDEF) \
1037 continue; \
1038 ++this_sym; \
1039 } \
1040 if (next_sym) /* Copy it so that we don't have to worry about the final , */ \
1041 this_sym = xstrndup(this_sym, next_sym-this_sym); \
1042 /* ok, lets compare the name now */ \
1043 if (scanelf_match_symname(this_sym, symname)) { \
1044 if (be_semi_verbose) { \
1045 char buf[126]; \
1046 snprintf(buf, sizeof(buf), "%lX %s %s", \
1047 (unsigned long)sym->st_size, get_elfstttype(sym->st_info), this_sym); \
1048 ret = buf; \
1049 } else \
1050 ret = symname; \
863 (*found_sym)++; \ 1051 (*found_sym)++; \
864 goto break_out; \ 1052 goto break_out; \
865 } \ 1053 } \
866 this_sym = next_sym + 1; \ 1054 if (next_sym) free(this_sym); \
867 } while (*next_sym != '\0'); \ 1055 } \
868 } \ 1056 } \
869 } \ 1057 } \
870 ++sym; \ 1058 ++sym; \
871 } } 1059 } }
872 FIND_SYM(32) 1060 FIND_SYM(32)
882 return NULL; 1070 return NULL;
883 else 1071 else
884 return (char *)" - "; 1072 return (char *)" - ";
885} 1073}
886 1074
887
888static char *scanelf_file_sections(elfobj *elf, char *found_section) 1075static char *scanelf_file_sections(elfobj *elf, char *found_section)
889{ 1076{
890 if (!find_section) 1077 if (!find_section)
891 return NULL; 1078 return NULL;
892 1079
893#define FIND_SECTION(B) \ 1080#define FIND_SECTION(B) \
894 if (elf->elf_class == ELFCLASS ## B) { \ 1081 if (elf->elf_class == ELFCLASS ## B) { \
1082 int invert; \
895 Elf ## B ## _Shdr *section; \ 1083 Elf ## B ## _Shdr *section; \
1084 invert = (*find_section == '!' ? 1 : 0); \
896 section = SHDR ## B (elf_findsecbyname(elf, find_section)); \ 1085 section = SHDR ## B (elf_findsecbyname(elf, find_section+invert)); \
897 if (section != NULL) \ 1086 if ((section == NULL && invert) || (section != NULL && !invert)) \
898 *found_section = 1; \ 1087 *found_section = 1; \
899 } 1088 }
900 FIND_SECTION(32) 1089 FIND_SECTION(32)
901 FIND_SECTION(64) 1090 FIND_SECTION(64)
902 1091
903
904 if (be_wewy_wewy_quiet) return NULL; 1092 if (be_wewy_wewy_quiet)
1093 return NULL;
905 1094
906 if (*found_section) 1095 if (*found_section)
907 return find_section; 1096 return find_section;
908 1097
909 if (be_quiet) 1098 if (be_quiet)
915/* scan an elf file and show all the fun stuff */ 1104/* scan an elf file and show all the fun stuff */
916#define prints(str) write(fileno(stdout), str, strlen(str)) 1105#define prints(str) write(fileno(stdout), str, strlen(str))
917static int scanelf_elfobj(elfobj *elf) 1106static int scanelf_elfobj(elfobj *elf)
918{ 1107{
919 unsigned long i; 1108 unsigned long i;
920 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1109 char found_pax, found_phdr, found_relro, found_load, found_textrel,
921 found_rpath, found_needed, found_interp, found_bind, found_soname, 1110 found_rpath, found_needed, found_interp, found_bind, found_soname,
922 found_sym, found_lib, found_file, found_textrels, found_section; 1111 found_sym, found_lib, found_file, found_textrels, found_section;
923 static char *out_buffer = NULL; 1112 static char *out_buffer = NULL;
924 static size_t out_len; 1113 static size_t out_len;
925 1114
926 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1115 found_pax = found_phdr = found_relro = found_load = found_textrel = \
935 printf("%s: scanning file\n", elf->filename); 1124 printf("%s: scanning file\n", elf->filename);
936 1125
937 /* init output buffer */ 1126 /* init output buffer */
938 if (!out_buffer) { 1127 if (!out_buffer) {
939 out_len = sizeof(char) * 80; 1128 out_len = sizeof(char) * 80;
940 out_buffer = (char*)xmalloc(out_len); 1129 out_buffer = xmalloc(out_len);
941 } 1130 }
942 *out_buffer = '\0'; 1131 *out_buffer = '\0';
943 1132
944 /* show the header */ 1133 /* show the header */
945 if (!be_quiet && show_banner) { 1134 if (!be_quiet && show_banner) {
946 for (i = 0; out_format[i]; ++i) { 1135 for (i = 0; out_format[i]; ++i) {
947 if (!IS_MODIFIER(out_format[i])) continue; 1136 if (!IS_MODIFIER(out_format[i])) continue;
948 1137
949 switch (out_format[++i]) { 1138 switch (out_format[++i]) {
1139 case '+': break;
950 case '%': break; 1140 case '%': break;
951 case '#': break; 1141 case '#': break;
952 case 'F': 1142 case 'F':
953 case 'p': 1143 case 'p':
954 case 'f': prints("FILE "); found_file = 1; break; 1144 case 'f': prints("FILE "); found_file = 1; break;
955 case 'o': prints(" TYPE "); break; 1145 case 'o': prints(" TYPE "); break;
956 case 'x': prints(" PAX "); break; 1146 case 'x': prints(" PAX "); break;
957 case 'e': prints("STK/REL/PTL "); break; 1147 case 'e': prints("STK/REL/PTL "); break;
958 case 't': prints("TEXTREL "); break; 1148 case 't': prints("TEXTREL "); break;
959 case 'r': prints("RPATH "); break; 1149 case 'r': prints("RPATH "); break;
1150 case 'M': prints("CLASS "); break;
960 case 'n': prints("NEEDED "); break; 1151 case 'n': prints("NEEDED "); break;
961 case 'i': prints("INTERP "); break; 1152 case 'i': prints("INTERP "); break;
962 case 'b': prints("BIND "); break; 1153 case 'b': prints("BIND "); break;
1154 case 'Z': prints("SIZE "); break;
963 case 'S': prints("SONAME "); break; 1155 case 'S': prints("SONAME "); break;
964 case 's': prints("SYM "); break; 1156 case 's': prints("SYM "); break;
965 case 'N': prints("LIB "); break; 1157 case 'N': prints("LIB "); break;
966 case 'T': prints("TEXTRELS "); break; 1158 case 'T': prints("TEXTRELS "); break;
967 case 'k': prints("SECTION "); break; 1159 case 'k': prints("SECTION "); break;
1160 case 'a': prints("ARCH "); break;
1161 case 'I': prints("OSABI "); break;
1162 case 'Y': prints("EABI "); break;
1163 case 'O': prints("PERM "); break;
1164 case 'D': prints("ENDIAN "); break;
968 default: warnf("'%c' has no title ?", out_format[i]); 1165 default: warnf("'%c' has no title ?", out_format[i]);
969 } 1166 }
970 } 1167 }
971 if (!found_file) prints("FILE "); 1168 if (!found_file) prints("FILE ");
972 prints("\n"); 1169 prints("\n");
976 1173
977 /* dump all the good stuff */ 1174 /* dump all the good stuff */
978 for (i = 0; out_format[i]; ++i) { 1175 for (i = 0; out_format[i]; ++i) {
979 const char *out; 1176 const char *out;
980 const char *tmp; 1177 const char *tmp;
981 1178 static char ubuf[sizeof(unsigned long)*2];
982 if (!IS_MODIFIER(out_format[i])) { 1179 if (!IS_MODIFIER(out_format[i])) {
983 xchrcat(&out_buffer, out_format[i], &out_len); 1180 xchrcat(&out_buffer, out_format[i], &out_len);
984 continue; 1181 continue;
985 } 1182 }
986 1183
987 out = NULL; 1184 out = NULL;
988 be_wewy_wewy_quiet = (out_format[i] == '#'); 1185 be_wewy_wewy_quiet = (out_format[i] == '#');
1186 be_semi_verbose = (out_format[i] == '+');
989 switch (out_format[++i]) { 1187 switch (out_format[++i]) {
1188 case '+':
990 case '%': 1189 case '%':
991 case '#': 1190 case '#':
992 xchrcat(&out_buffer, out_format[i], &out_len); break; 1191 xchrcat(&out_buffer, out_format[i], &out_len); break;
993 case 'F': 1192 case 'F':
994 found_file = 1; 1193 found_file = 1;
1020 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1219 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
1021 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1220 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
1022 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1221 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
1023 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1222 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
1024 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1223 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1224 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1225 case 'D': out = get_endian(elf); break;
1226 case 'O': out = strfileperms(elf->filename); break;
1025 case 'n': 1227 case 'n':
1026 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1228 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
1027 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1229 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
1028 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1230 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
1029 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1231 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
1030 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1232 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1031 case 'k': out = scanelf_file_sections(elf, &found_section); break; 1233 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1234 case 'a': out = get_elfemtype(elf); break;
1235 case 'I': out = get_elfosabi(elf); break;
1236 case 'Y': out = get_elf_eabi(elf); break;
1237 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
1032 default: warnf("'%c' has no scan code?", out_format[i]); 1238 default: warnf("'%c' has no scan code?", out_format[i]);
1033 } 1239 }
1034 if (out) { 1240 if (out) {
1035 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */ 1241 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
1036 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL) 1242 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
1082 if (strlen(match_etypes)) { 1288 if (strlen(match_etypes)) {
1083 char sbuf[126]; 1289 char sbuf[126];
1084 strncpy(sbuf, match_etypes, sizeof(sbuf)); 1290 strncpy(sbuf, match_etypes, sizeof(sbuf));
1085 if (strchr(match_etypes, ',') != NULL) { 1291 if (strchr(match_etypes, ',') != NULL) {
1086 char *p; 1292 char *p;
1087 while((p = strrchr(sbuf, ',')) != NULL) { 1293 while ((p = strrchr(sbuf, ',')) != NULL) {
1088 *p = 0; 1294 *p = 0;
1089 if (atoi(p+1) == get_etype(elf)) 1295 if (etype_lookup(p+1) == get_etype(elf))
1090 goto label_ret; 1296 goto label_ret;
1091 } 1297 }
1092 } 1298 }
1093 if (atoi(sbuf) != get_etype(elf)) 1299 if (etype_lookup(sbuf) != get_etype(elf))
1094 goto label_done; 1300 goto label_done;
1095 } 1301 }
1096 1302
1097label_ret: 1303label_ret:
1098 ret = scanelf_elfobj(elf); 1304 ret = scanelf_elfobj(elf);
1112 1318
1113 ar = ar_open_fd(filename, fd); 1319 ar = ar_open_fd(filename, fd);
1114 if (ar == NULL) 1320 if (ar == NULL)
1115 return 1; 1321 return 1;
1116 1322
1117 ar_buffer = (char*)mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0); 1323 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1118 while ((m=ar_next(ar)) != NULL) { 1324 while ((m=ar_next(ar)) != NULL) {
1119 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size); 1325 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size);
1120 if (elf) { 1326 if (elf) {
1121 scanelf_elfobj(elf); 1327 scanelf_elfobj(elf);
1122 unreadelf(elf); 1328 unreadelf(elf);
1125 munmap(ar_buffer, len); 1331 munmap(ar_buffer, len);
1126 1332
1127 return 0; 1333 return 0;
1128} 1334}
1129/* scan a file which may be an elf or an archive or some other magical beast */ 1335/* scan a file which may be an elf or an archive or some other magical beast */
1130static void scanelf_file(const char *filename) 1336static int scanelf_file(const char *filename, const struct stat *st_cache)
1131{ 1337{
1338 const struct stat *st = st_cache;
1132 struct stat st; 1339 struct stat symlink_st;
1133 int fd; 1340 int fd;
1134 1341
1135 /* make sure 'filename' exists */
1136 if (lstat(filename, &st) == -1) {
1137 if (be_verbose > 2) printf("%s: does not exist\n", filename);
1138 return;
1139 }
1140
1141 /* always handle regular files and handle symlinked files if no -y */ 1342 /* always handle regular files and handle symlinked files if no -y */
1142 if (S_ISLNK(st.st_mode)) { 1343 if (S_ISLNK(st->st_mode)) {
1143 if (!scan_symlink) return; 1344 if (!scan_symlink) return 1;
1144 stat(filename, &st); 1345 stat(filename, &symlink_st);
1346 st = &symlink_st;
1145 } 1347 }
1348
1146 if (!S_ISREG(st.st_mode)) { 1349 if (!S_ISREG(st->st_mode)) {
1147 if (be_verbose > 2) printf("%s: skipping non-file\n", filename); 1350 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1148 return; 1351 return 1;
1149 } 1352 }
1150 1353
1354 if (match_perms) {
1355 if ((st->st_mode | match_perms) != st->st_mode)
1356 return 1;
1357 }
1151 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1) 1358 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1)
1152 return; 1359 return 1;
1153 1360
1154 if (scanelf_elf(filename, fd, st.st_size) == 1 && scan_archives) 1361 if (scanelf_elf(filename, fd, st->st_size) == 1 && scan_archives)
1155 /* if it isn't an ELF, maybe it's an .a archive */ 1362 /* if it isn't an ELF, maybe it's an .a archive */
1156 scanelf_archive(filename, fd, st.st_size); 1363 scanelf_archive(filename, fd, st->st_size);
1157 1364
1158 close(fd); 1365 close(fd);
1366 return 0;
1159} 1367}
1160 1368
1161/* scan a directory for ET_EXEC files and print when we find one */ 1369/* scan a directory for ET_EXEC files and print when we find one */
1162static void scanelf_dir(const char *path) 1370static int scanelf_dir(const char *path)
1163{ 1371{
1164 register DIR *dir; 1372 register DIR *dir;
1165 register struct dirent *dentry; 1373 register struct dirent *dentry;
1166 struct stat st_top, st; 1374 struct stat st_top, st;
1167 char buf[__PAX_UTILS_PATH_MAX]; 1375 char buf[__PAX_UTILS_PATH_MAX];
1168 size_t pathlen = 0, len = 0; 1376 size_t pathlen = 0, len = 0;
1377 int ret = 0;
1169 1378
1170 /* make sure path exists */ 1379 /* make sure path exists */
1171 if (lstat(path, &st_top) == -1) { 1380 if (lstat(path, &st_top) == -1) {
1172 if (be_verbose > 2) printf("%s: does not exist\n", path); 1381 if (be_verbose > 2) printf("%s: does not exist\n", path);
1173 return; 1382 return 1;
1174 } 1383 }
1175 1384
1176 /* ok, if it isn't a directory, assume we can open it */ 1385 /* ok, if it isn't a directory, assume we can open it */
1177 if (!S_ISDIR(st_top.st_mode)) { 1386 if (!S_ISDIR(st_top.st_mode)) {
1178 scanelf_file(path); 1387 return scanelf_file(path, &st_top);
1179 return;
1180 } 1388 }
1181 1389
1182 /* now scan the dir looking for fun stuff */ 1390 /* now scan the dir looking for fun stuff */
1183 if ((dir = opendir(path)) == NULL) { 1391 if ((dir = opendir(path)) == NULL) {
1184 warnf("could not opendir %s: %s", path, strerror(errno)); 1392 warnf("could not opendir %s: %s", path, strerror(errno));
1185 return; 1393 return 1;
1186 } 1394 }
1187 if (be_verbose > 1) printf("%s: scanning dir\n", path); 1395 if (be_verbose > 1) printf("%s: scanning dir\n", path);
1188 1396
1189 pathlen = strlen(path); 1397 pathlen = strlen(path);
1190 while ((dentry = readdir(dir))) { 1398 while ((dentry = readdir(dir))) {
1194 if (len >= sizeof(buf)) { 1402 if (len >= sizeof(buf)) {
1195 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1403 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path,
1196 (unsigned long)len, (unsigned long)sizeof(buf)); 1404 (unsigned long)len, (unsigned long)sizeof(buf));
1197 continue; 1405 continue;
1198 } 1406 }
1199 sprintf(buf, "%s/%s", path, dentry->d_name); 1407 snprintf(buf, sizeof(buf), "%s%s%s", path, (path[pathlen-1] == '/') ? "" : "/", dentry->d_name);
1200 if (lstat(buf, &st) != -1) { 1408 if (lstat(buf, &st) != -1) {
1201 if (S_ISREG(st.st_mode)) 1409 if (S_ISREG(st.st_mode))
1202 scanelf_file(buf); 1410 ret = scanelf_file(buf, &st);
1203 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1411 else if (dir_recurse && S_ISDIR(st.st_mode)) {
1204 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1412 if (dir_crossmount || (st_top.st_dev == st.st_dev))
1205 scanelf_dir(buf); 1413 ret = scanelf_dir(buf);
1206 } 1414 }
1207 } 1415 }
1208 } 1416 }
1209 closedir(dir); 1417 closedir(dir);
1418 return ret;
1210} 1419}
1211 1420
1212static int scanelf_from_file(char *filename) 1421static int scanelf_from_file(const char *filename)
1213{ 1422{
1214 FILE *fp = NULL; 1423 FILE *fp = NULL;
1215 char *p; 1424 char *p;
1216 char path[__PAX_UTILS_PATH_MAX]; 1425 char path[__PAX_UTILS_PATH_MAX];
1426 int ret = 0;
1217 1427
1218 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1428 if (strcmp(filename, "-") == 0)
1219 fp = stdin; 1429 fp = stdin;
1220 else if ((fp = fopen(filename, "r")) == NULL) 1430 else if ((fp = fopen(filename, "r")) == NULL)
1221 return 1; 1431 return 1;
1222 1432
1223 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1433 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1224 if ((p = strchr(path, '\n')) != NULL) 1434 if ((p = strchr(path, '\n')) != NULL)
1225 *p = 0; 1435 *p = 0;
1226 search_path = path; 1436 search_path = path;
1227 scanelf_dir(path); 1437 ret = scanelf_dir(path);
1228 } 1438 }
1229 if (fp != stdin) 1439 if (fp != stdin)
1230 fclose(fp); 1440 fclose(fp);
1231 return 0; 1441 return ret;
1232} 1442}
1233 1443
1444#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1445
1234static int load_ld_so_conf(int i, const char *fname) 1446static int load_ld_cache_config(int i, const char *fname)
1235{ 1447{
1236 FILE *fp = NULL; 1448 FILE *fp = NULL;
1237 char *p; 1449 char *p;
1238 char path[__PAX_UTILS_PATH_MAX]; 1450 char path[__PAX_UTILS_PATH_MAX];
1239 1451
1240 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1452 if (i + 1 == ARRAY_SIZE(ldpaths))
1241 return i; 1453 return i;
1242 1454
1243 if ((fp = fopen(fname, "r")) == NULL) 1455 if ((fp = fopen(fname, "r")) == NULL)
1244 return i; 1456 return i;
1245 1457
1246 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1458 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1247 if ((p = strrchr(path, '\r')) != NULL) 1459 if ((p = strrchr(path, '\r')) != NULL)
1248 *p = 0; 1460 *p = 0;
1249 if ((p = strchr(path, '\n')) != NULL) 1461 if ((p = strchr(path, '\n')) != NULL)
1250 *p = 0; 1462 *p = 0;
1251#ifdef HAVE_GLOB 1463#ifdef __linux__
1252 // recursive includes of the same file will make this segfault. 1464 /* recursive includes of the same file will make this segfault. */
1253 if ((*path == 'i') && (strncmp(path, "include", 7) == 0) && isblank(path[7])) { 1465 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1254 glob64_t gl; 1466 glob64_t gl;
1255 size_t x; 1467 size_t x;
1256 char gpath[__PAX_UTILS_PATH_MAX]; 1468 char gpath[__PAX_UTILS_PATH_MAX];
1257 1469
1258 gpath[sizeof(gpath)] = 0; 1470 memset(gpath, 0, sizeof(gpath));
1259 1471
1260 if (path[8] != '/') 1472 if (path[8] != '/')
1261 snprintf(gpath, sizeof(gpath)-1, "/etc/%s", &path[8]); 1473 snprintf(gpath, sizeof(gpath), "/etc/%s", &path[8]);
1262 else 1474 else
1263 strncpy(gpath, &path[8], sizeof(gpath)-1); 1475 strncpy(gpath, &path[8], sizeof(gpath));
1264 1476
1265 if ((glob64(gpath, 0, NULL, &gl)) == 0) { 1477 if ((glob64(gpath, 0, NULL, &gl)) == 0) {
1266 for (x = 0; x < gl.gl_pathc; ++x) { 1478 for (x = 0; x < gl.gl_pathc; ++x) {
1267 /* try to avoid direct loops */ 1479 /* try to avoid direct loops */
1268 if (strcmp(gl.gl_pathv[x], fname) == 0) 1480 if (strcmp(gl.gl_pathv[x], fname) == 0)
1269 continue; 1481 continue;
1270 i = load_ld_so_conf(i, gl.gl_pathv[x]); 1482 i = load_ld_cache_config(i, gl.gl_pathv[x]);
1271 if (i + 1 >= sizeof(ldpaths) / sizeof(*ldpaths)) { 1483 if (i + 1 >= ARRAY_SIZE(ldpaths)) {
1272 globfree64(&gl); 1484 globfree64(&gl);
1273 return i; 1485 return i;
1274 } 1486 }
1275 } 1487 }
1276 globfree64 (&gl); 1488 globfree64 (&gl);
1277 continue; 1489 continue;
1278 } else 1490 }
1279 abort();
1280 } 1491 }
1281#endif 1492#endif
1282 if (*path != '/') 1493 if (*path != '/')
1283 continue; 1494 continue;
1284 1495
1285 ldpaths[i++] = xstrdup(path); 1496 ldpaths[i++] = xstrdup(path);
1286 1497
1287 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1498 if (i + 1 == ARRAY_SIZE(ldpaths))
1288 break; 1499 break;
1289 } 1500 }
1290 ldpaths[i] = NULL; 1501 ldpaths[i] = NULL;
1291 1502
1292 fclose(fp); 1503 fclose(fp);
1293 return i; 1504 return i;
1294} 1505}
1295 1506
1507#elif defined(__FreeBSD__) || (__DragonFly__)
1508
1509static int load_ld_cache_config(int i, const char *fname)
1510{
1511 FILE *fp = NULL;
1512 char *b = NULL, *p;
1513 struct elfhints_hdr hdr;
1514
1515 if (i + 1 == ARRAY_SIZE(ldpaths))
1516 return i;
1517
1518 if ((fp = fopen(fname, "r")) == NULL)
1519 return i;
1520
1521 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1522 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1523 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1524 {
1525 fclose(fp);
1526 return i;
1527 }
1528
1529 b = xmalloc(hdr.dirlistlen + 1);
1530 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1531 fclose(fp);
1532 free(b);
1533 return i;
1534 }
1535
1536 while ((p = strsep(&b, ":"))) {
1537 if (*p == '\0') continue;
1538 ldpaths[i++] = xstrdup(p);
1539
1540 if (i + 1 == ARRAY_SIZE(ldpaths))
1541 break;
1542 }
1543 ldpaths[i] = NULL;
1544
1545 free(b);
1546 fclose(fp);
1547 return i;
1548}
1549
1550#else
1551#ifdef __ELF__
1552#warning Cache config support not implemented for your target
1553#endif
1554static int load_ld_cache_config(int i, const char *fname)
1555{
1556 memset(ldpaths, 0x00, sizeof(ldpaths));
1557 return 0;
1558}
1559#endif
1560
1296/* scan /etc/ld.so.conf for paths */ 1561/* scan /etc/ld.so.conf for paths */
1297static void scanelf_ldpath() 1562static void scanelf_ldpath(void)
1298{ 1563{
1299 char scan_l, scan_ul, scan_ull; 1564 char scan_l, scan_ul, scan_ull;
1300 int i = 0; 1565 int i = 0;
1301 1566
1302 if (!ldpaths[0]) 1567 if (!ldpaths[0])
1316 if (!scan_ul) scanelf_dir("/usr/lib"); 1581 if (!scan_ul) scanelf_dir("/usr/lib");
1317 if (!scan_ull) scanelf_dir("/usr/local/lib"); 1582 if (!scan_ull) scanelf_dir("/usr/local/lib");
1318} 1583}
1319 1584
1320/* scan env PATH for paths */ 1585/* scan env PATH for paths */
1321static void scanelf_envpath() 1586static void scanelf_envpath(void)
1322{ 1587{
1323 char *path, *p; 1588 char *path, *p;
1324 1589
1325 path = getenv("PATH"); 1590 path = getenv("PATH");
1326 if (!path) 1591 if (!path)
1333 } 1598 }
1334 1599
1335 free(path); 1600 free(path);
1336} 1601}
1337 1602
1338/* usage / invocation handling functions */ 1603/* usage / invocation handling functions */ /* Free Flags: c d j u w C G H J K P Q U W */
1339#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:BhV" 1604#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZBhV"
1340#define a_argument required_argument 1605#define a_argument required_argument
1341static struct option const long_opts[] = { 1606static struct option const long_opts[] = {
1342 {"path", no_argument, NULL, 'p'}, 1607 {"path", no_argument, NULL, 'p'},
1343 {"ldpath", no_argument, NULL, 'l'}, 1608 {"ldpath", no_argument, NULL, 'l'},
1344 {"recursive", no_argument, NULL, 'R'}, 1609 {"recursive", no_argument, NULL, 'R'},
1361 {"lib", a_argument, NULL, 'N'}, 1626 {"lib", a_argument, NULL, 'N'},
1362 {"gmatch", no_argument, NULL, 'g'}, 1627 {"gmatch", no_argument, NULL, 'g'},
1363 {"textrels", no_argument, NULL, 'T'}, 1628 {"textrels", no_argument, NULL, 'T'},
1364 {"etype", a_argument, NULL, 'E'}, 1629 {"etype", a_argument, NULL, 'E'},
1365 {"bits", a_argument, NULL, 'M'}, 1630 {"bits", a_argument, NULL, 'M'},
1631 {"endian", no_argument, NULL, 'D'},
1632 {"osabi", no_argument, NULL, 'I'},
1633 {"eabi", no_argument, NULL, 'Y'},
1634 {"perms", a_argument, NULL, 'O'},
1635 {"size", no_argument, NULL, 'Z'},
1366 {"all", no_argument, NULL, 'a'}, 1636 {"all", no_argument, NULL, 'a'},
1367 {"quiet", no_argument, NULL, 'q'}, 1637 {"quiet", no_argument, NULL, 'q'},
1368 {"verbose", no_argument, NULL, 'v'}, 1638 {"verbose", no_argument, NULL, 'v'},
1369 {"format", a_argument, NULL, 'F'}, 1639 {"format", a_argument, NULL, 'F'},
1370 {"from", a_argument, NULL, 'f'}, 1640 {"from", a_argument, NULL, 'f'},
1396 "Find a specified symbol", 1666 "Find a specified symbol",
1397 "Find a specified section", 1667 "Find a specified section",
1398 "Find a specified library", 1668 "Find a specified library",
1399 "Use strncmp to match libraries. (use with -N)", 1669 "Use strncmp to match libraries. (use with -N)",
1400 "Locate cause of TEXTREL", 1670 "Locate cause of TEXTREL",
1401 "Print only ELF files matching numeric constant type", 1671 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1402 "Print only ELF files matching numeric bits", 1672 "Print only ELF files matching numeric bits",
1673 "Print Endianness",
1674 "Print OSABI",
1675 "Print EABI (EM_ARM Only)",
1676 "Print only ELF files matching octal permissions",
1677 "Print ELF file size",
1403 "Print all scanned info (-x -e -t -r -b)\n", 1678 "Print all scanned info (-x -e -t -r -b)\n",
1404 "Only output 'bad' things", 1679 "Only output 'bad' things",
1405 "Be verbose (can be specified more than once)", 1680 "Be verbose (can be specified more than once)",
1406 "Use specified format for output", 1681 "Use specified format for output",
1407 "Read input stream from a filename", 1682 "Read input stream from a filename",
1419 printf("* Scan ELF binaries for stuff\n\n" 1694 printf("* Scan ELF binaries for stuff\n\n"
1420 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0); 1695 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1421 printf("Options: -[%s]\n", PARSE_FLAGS); 1696 printf("Options: -[%s]\n", PARSE_FLAGS);
1422 for (i = 0; long_opts[i].name; ++i) 1697 for (i = 0; long_opts[i].name; ++i)
1423 if (long_opts[i].has_arg == no_argument) 1698 if (long_opts[i].has_arg == no_argument)
1424 printf(" -%c, --%-14s* %s\n", long_opts[i].val, 1699 printf(" -%c, --%-14s* %s\n", long_opts[i].val,
1425 long_opts[i].name, opts_help[i]); 1700 long_opts[i].name, opts_help[i]);
1426 else 1701 else
1427 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val, 1702 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val,
1428 long_opts[i].name, opts_help[i]); 1703 long_opts[i].name, opts_help[i]);
1429 1704
1430 if (status != EXIT_SUCCESS) 1705 puts("\nFor more information, see the scanelf(1) manpage");
1431 exit(status);
1432
1433 puts("\nThe format modifiers for the -F option are:");
1434 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1435 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1436 puts(" i INTERP \tb BIND \ts symbol");
1437 puts(" N library \to Type \tT TEXTRELs");
1438 puts(" S SONAME \tk section");
1439 puts(" p filename (with search path removed)");
1440 puts(" f filename (short name/basename)");
1441 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1442
1443 puts("\nELF Etypes:");
1444 print_etypes(stdout);
1445
1446 exit(status); 1706 exit(status);
1447} 1707}
1448 1708
1449/* parse command line arguments and preform needed actions */ 1709/* parse command line arguments and preform needed actions */
1710#define do_pax_state(option, flag) \
1711 if (islower(option)) { \
1712 flags &= ~PF_##flag; \
1713 flags |= PF_NO##flag; \
1714 } else { \
1715 flags &= ~PF_NO##flag; \
1716 flags |= PF_##flag; \
1717 }
1450static void parseargs(int argc, char *argv[]) 1718static int parseargs(int argc, char *argv[])
1451{ 1719{
1452 int i; 1720 int i;
1453 char *from_file = NULL; 1721 const char *from_file = NULL;
1722 int ret = 0;
1454 1723
1455 opterr = 0; 1724 opterr = 0;
1456 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 1725 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1457 switch (i) { 1726 switch (i) {
1458 1727
1470 case 'E': 1739 case 'E':
1471 strncpy(match_etypes, optarg, sizeof(match_etypes)); 1740 strncpy(match_etypes, optarg, sizeof(match_etypes));
1472 break; 1741 break;
1473 case 'M': 1742 case 'M':
1474 match_bits = atoi(optarg); 1743 match_bits = atoi(optarg);
1744 if (match_bits == 0) {
1745 if (strcmp(optarg, "ELFCLASS32") == 0)
1746 match_bits = 32;
1747 if (strcmp(optarg, "ELFCLASS64") == 0)
1748 match_bits = 64;
1749 }
1750 break;
1751 case 'O':
1752 if (sscanf(optarg, "%o", &match_perms) == -1)
1753 match_bits = 0;
1475 break; 1754 break;
1476 case 'o': { 1755 case 'o': {
1477 FILE *fp = NULL;
1478 if ((fp = freopen(optarg, "w", stdout)) == NULL) 1756 if (freopen(optarg, "w", stdout) == NULL)
1479 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 1757 err("Could not open output stream '%s': %s", optarg, strerror(errno));
1480 SET_STDOUT(fp);
1481 break; 1758 break;
1482 } 1759 }
1483 case 'k': 1760 case 'k':
1484 if (find_section) warn("You prob don't want to specify -k twice"); 1761 if (find_section) warn("You prob don't want to specify -k twice");
1485 find_section = optarg; 1762 find_section = optarg;
1486 break; 1763 break;
1487 case 's': { 1764 case 's': {
1488 if (find_sym) warn("You prob don't want to specify -s twice"); 1765 if (find_sym) warn("You prob don't want to specify -s twice");
1489 find_sym = optarg; 1766 find_sym = optarg;
1490 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1491 sprintf(versioned_symname, "%s@", find_sym);
1492 break; 1767 break;
1493 } 1768 }
1494 case 'N': { 1769 case 'N': {
1495 if (find_lib) warn("You prob don't want to specify -N twice"); 1770 if (find_lib) warn("You prob don't want to specify -N twice");
1496 find_lib = optarg; 1771 find_lib = optarg;
1501 if (out_format) warn("You prob don't want to specify -F twice"); 1776 if (out_format) warn("You prob don't want to specify -F twice");
1502 out_format = optarg; 1777 out_format = optarg;
1503 break; 1778 break;
1504 } 1779 }
1505 case 'z': { 1780 case 'z': {
1506 unsigned long flags = 10240; 1781 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1507 size_t x; 1782 size_t x;
1508 1783
1509#define do_state(option, flag) \
1510 if (islower(option)) { \
1511 flags &= ~PF_##flag; \
1512 flags |= PF_NO##flag; \
1513 } else { \
1514 flags &= ~PF_NO##flag; \
1515 flags |= PF_##flag; \
1516 }
1517
1518 for (x = 0 ; x < strlen(optarg); x++) { 1784 for (x = 0; x < strlen(optarg); x++) {
1519 switch(optarg[x]) { 1785 switch (optarg[x]) {
1520 case 'p': 1786 case 'p':
1521 case 'P': 1787 case 'P':
1522 do_state(optarg[x], PAGEEXEC); 1788 do_pax_state(optarg[x], PAGEEXEC);
1523 break; 1789 break;
1524 case 's': 1790 case 's':
1525 case 'S': 1791 case 'S':
1526 do_state(optarg[x], SEGMEXEC); 1792 do_pax_state(optarg[x], SEGMEXEC);
1527 break; 1793 break;
1528 case 'm': 1794 case 'm':
1529 case 'M': 1795 case 'M':
1530 do_state(optarg[x], MPROTECT); 1796 do_pax_state(optarg[x], MPROTECT);
1531 break; 1797 break;
1532 case 'e': 1798 case 'e':
1533 case 'E': 1799 case 'E':
1534 do_state(optarg[x], EMUTRAMP); 1800 do_pax_state(optarg[x], EMUTRAMP);
1535 break; 1801 break;
1536 case 'r': 1802 case 'r':
1537 case 'R': 1803 case 'R':
1538 do_state(optarg[x], RANDMMAP); 1804 do_pax_state(optarg[x], RANDMMAP);
1539 break; 1805 break;
1540 case 'x': 1806 case 'x':
1541 case 'X': 1807 case 'X':
1542 do_state(optarg[x], RANDEXEC); 1808 do_pax_state(optarg[x], RANDEXEC);
1543 break; 1809 break;
1544 default: 1810 default:
1545 break; 1811 break;
1546 } 1812 }
1547 } 1813 }
1552 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) || 1818 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
1553 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)))) 1819 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1554 setpax = flags; 1820 setpax = flags;
1555 break; 1821 break;
1556 } 1822 }
1823 case 'Z': show_size = 1; break;
1557 case 'g': gmatch = 1; break; 1824 case 'g': g_match = 1; break;
1558 case 'L': use_ldcache = 1; break; 1825 case 'L': use_ldcache = 1; break;
1559 case 'y': scan_symlink = 0; break; 1826 case 'y': scan_symlink = 0; break;
1560 case 'A': scan_archives = 1; break; 1827 case 'A': scan_archives = 1; break;
1561 case 'B': show_banner = 0; break; 1828 case 'B': show_banner = 0; break;
1562 case 'l': scan_ldpath = 1; break; 1829 case 'l': scan_ldpath = 1; break;
1573 case 'b': show_bind = 1; break; 1840 case 'b': show_bind = 1; break;
1574 case 'S': show_soname = 1; break; 1841 case 'S': show_soname = 1; break;
1575 case 'T': show_textrels = 1; break; 1842 case 'T': show_textrels = 1; break;
1576 case 'q': be_quiet = 1; break; 1843 case 'q': be_quiet = 1; break;
1577 case 'v': be_verbose = (be_verbose % 20) + 1; break; 1844 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1578 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 1845 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1579 1846 case 'D': show_endian = 1; break;
1847 case 'I': show_osabi = 1; break;
1848 case 'Y': show_eabi = 1; break;
1580 case ':': 1849 case ':':
1581 err("Option '%c' is missing parameter", optopt); 1850 err("Option '%c' is missing parameter", optopt);
1582 case '?': 1851 case '?':
1583 err("Unknown option '%c' or argument missing", optopt); 1852 err("Unknown option '%c' or argument missing", optopt);
1584 default: 1853 default:
1585 err("Unhandled option '%c'; please report this", i); 1854 err("Unhandled option '%c'; please report this", i);
1586 } 1855 }
1587 } 1856 }
1588 1857 if (show_textrels && be_verbose) {
1858 if (which("objdump") != NULL)
1859 has_objdump = 1;
1860 }
1589 /* let the format option override all other options */ 1861 /* let the format option override all other options */
1590 if (out_format) { 1862 if (out_format) {
1591 show_pax = show_phdr = show_textrel = show_rpath = \ 1863 show_pax = show_phdr = show_textrel = show_rpath = \
1592 show_needed = show_interp = show_bind = show_soname = \ 1864 show_needed = show_interp = show_bind = show_soname = \
1593 show_textrels = 0; 1865 show_textrels = show_perms = show_endian = show_size = \
1866 show_osabi = show_eabi = 0;
1594 for (i = 0; out_format[i]; ++i) { 1867 for (i = 0; out_format[i]; ++i) {
1595 if (!IS_MODIFIER(out_format[i])) continue; 1868 if (!IS_MODIFIER(out_format[i])) continue;
1596 1869
1597 switch (out_format[++i]) { 1870 switch (out_format[++i]) {
1871 case '+': break;
1598 case '%': break; 1872 case '%': break;
1599 case '#': break; 1873 case '#': break;
1600 case 'F': break; 1874 case 'F': break;
1601 case 'p': break; 1875 case 'p': break;
1602 case 'f': break; 1876 case 'f': break;
1603 case 'k': break; 1877 case 'k': break;
1604 case 's': break; 1878 case 's': break;
1605 case 'N': break; 1879 case 'N': break;
1606 case 'o': break; 1880 case 'o': break;
1881 case 'a': break;
1882 case 'M': break;
1883 case 'Z': show_size = 1; break;
1884 case 'D': show_endian = 1; break;
1885 case 'I': show_osabi = 1; break;
1886 case 'Y': show_eabi = 1; break;
1887 case 'O': show_perms = 1; break;
1607 case 'x': show_pax = 1; break; 1888 case 'x': show_pax = 1; break;
1608 case 'e': show_phdr = 1; break; 1889 case 'e': show_phdr = 1; break;
1609 case 't': show_textrel = 1; break; 1890 case 't': show_textrel = 1; break;
1610 case 'r': show_rpath = 1; break; 1891 case 'r': show_rpath = 1; break;
1611 case 'n': show_needed = 1; break; 1892 case 'n': show_needed = 1; break;
1612 case 'i': show_interp = 1; break; 1893 case 'i': show_interp = 1; break;
1613 case 'b': show_bind = 1; break; 1894 case 'b': show_bind = 1; break;
1614 case 'S': show_soname = 1; break; 1895 case 'S': show_soname = 1; break;
1615 case 'T': show_textrels = 1; break; 1896 case 'T': show_textrels = 1; break;
1616 default: 1897 default:
1617 err("Invalid format specifier '%c' (byte %i)", 1898 err("Invalid format specifier '%c' (byte %i)",
1618 out_format[i], i+1); 1899 out_format[i], i+1);
1619 } 1900 }
1620 } 1901 }
1621 1902
1622 /* construct our default format */ 1903 /* construct our default format */
1623 } else { 1904 } else {
1624 size_t fmt_len = 30; 1905 size_t fmt_len = 30;
1625 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 1906 out_format = xmalloc(sizeof(char) * fmt_len);
1907 *out_format = '\0';
1626 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 1908 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1627 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 1909 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
1910 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
1911 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
1912 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
1913 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
1914 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1628 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 1915 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1629 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 1916 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1630 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 1917 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1631 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 1918 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1632 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 1919 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1640 } 1927 }
1641 if (be_verbose > 2) printf("Format: %s\n", out_format); 1928 if (be_verbose > 2) printf("Format: %s\n", out_format);
1642 1929
1643 /* now lets actually do the scanning */ 1930 /* now lets actually do the scanning */
1644 if (scan_ldpath || use_ldcache) 1931 if (scan_ldpath || use_ldcache)
1645 load_ld_so_conf(0, "/etc/ld.so.conf"); 1932 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1646 if (scan_ldpath) scanelf_ldpath(); 1933 if (scan_ldpath) scanelf_ldpath();
1647 if (scan_envpath) scanelf_envpath(); 1934 if (scan_envpath) scanelf_envpath();
1935 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
1936 from_file = "-";
1648 if (from_file) { 1937 if (from_file) {
1649 scanelf_from_file(from_file); 1938 scanelf_from_file(from_file);
1650 from_file = *argv; 1939 from_file = *argv;
1651 } 1940 }
1652 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 1941 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1653 err("Nothing to scan !?"); 1942 err("Nothing to scan !?");
1654 while (optind < argc) { 1943 while (optind < argc) {
1655 search_path = argv[optind++]; 1944 search_path = argv[optind++];
1656 scanelf_dir(search_path); 1945 ret = scanelf_dir(search_path);
1657 } 1946 }
1658 1947
1659 /* clean up */ 1948 /* clean up */
1660 if (versioned_symname) free(versioned_symname);
1661 for (i = 0; ldpaths[i]; ++i) 1949 for (i = 0; ldpaths[i]; ++i)
1662 free(ldpaths[i]); 1950 free(ldpaths[i]);
1663 1951
1664 if (ldcache != 0) 1952 if (ldcache != 0)
1665 munmap(ldcache, ldcache_size); 1953 munmap(ldcache, ldcache_size);
1666}
1667
1668
1669
1670/* utility funcs */
1671static char *xstrdup(const char *s)
1672{
1673 char *ret = strdup(s);
1674 if (!ret) err("Could not strdup(): %s", strerror(errno));
1675 return ret; 1954 return ret;
1676} 1955}
1677static void *xmalloc(size_t size)
1678{
1679 void *ret = malloc(size);
1680 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
1681 return ret;
1682}
1683static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
1684{
1685 size_t new_len;
1686 1956
1687 new_len = strlen(*dst) + strlen(src); 1957static char **get_split_env(const char *envvar)
1688 if (*curr_len <= new_len) {
1689 *curr_len = new_len + (*curr_len / 2);
1690 *dst = realloc(*dst, *curr_len);
1691 if (!*dst)
1692 err("could not realloc() %li bytes", (unsigned long)*curr_len);
1693 }
1694
1695 if (n)
1696 strncat(*dst, src, n);
1697 else
1698 strcat(*dst, src);
1699}
1700static inline void xchrcat(char **dst, const char append, size_t *curr_len)
1701{ 1958{
1702 static char my_app[2]; 1959 const char *delims = " \t\n";
1703 my_app[0] = append; 1960 char **envvals = NULL;
1704 my_app[1] = '\0'; 1961 char *env, *s;
1705 xstrcat(dst, my_app, curr_len); 1962 int nentry;
1706}
1707 1963
1964 if ((env = getenv(envvar)) == NULL)
1965 return NULL;
1708 1966
1967 env = xstrdup(env);
1968 if (env == NULL)
1969 return NULL;
1970
1971 s = strtok(env, delims);
1972 if (s == NULL) {
1973 free(env);
1974 return NULL;
1975 }
1976
1977 nentry = 0;
1978 while (s != NULL) {
1979 ++nentry;
1980 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
1981 envvals[nentry-1] = s;
1982 s = strtok(NULL, delims);
1983 }
1984 envvals[nentry] = NULL;
1985
1986 /* don't want to free(env) as it contains the memory that backs
1987 * the envvals array of strings */
1988 return envvals;
1989}
1990
1991static void parseenv(void)
1992{
1993 qa_textrels = get_split_env("QA_TEXTRELS");
1994 qa_execstack = get_split_env("QA_EXECSTACK");
1995 qa_wx_load = get_split_env("QA_WX_LOAD");
1996}
1997
1998#ifdef __PAX_UTILS_CLEANUP
1999static void cleanup(void)
2000{
2001 free(out_format);
2002 free(qa_textrels);
2003 free(qa_execstack);
2004 free(qa_wx_load);
2005}
2006#endif
1709 2007
1710int main(int argc, char *argv[]) 2008int main(int argc, char *argv[])
1711{ 2009{
2010 int ret;
1712 if (argc < 2) 2011 if (argc < 2)
1713 usage(EXIT_FAILURE); 2012 usage(EXIT_FAILURE);
2013 parseenv();
1714 parseargs(argc, argv); 2014 ret = parseargs(argc, argv);
1715 fclose(stdout); 2015 fclose(stdout);
1716#ifdef __BOUNDS_CHECKING_ON 2016#ifdef __PAX_UTILS_CLEANUP
1717 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2017 cleanup();
2018 warn("The calls to add/delete heap should be off:\n"
2019 "\t- 1 due to the out_buffer not being freed in scanelf_file()\n"
2020 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1718#endif 2021#endif
1719 return EXIT_SUCCESS; 2022 return ret;
1720} 2023}
2024
2025/* Match filename against entries in matchlist, return TRUE
2026 * if the file is listed */
2027static int file_matches_list(const char *filename, char **matchlist)
2028{
2029 char **file;
2030 char *match;
2031 char buf[__PAX_UTILS_PATH_MAX];
2032
2033 if (matchlist == NULL)
2034 return 0;
2035
2036 for (file = matchlist; *file != NULL; file++) {
2037 if (search_path) {
2038 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2039 match = buf;
2040 } else {
2041 match = *file;
2042 }
2043 if (fnmatch(match, filename, 0) == 0)
2044 return 1;
2045 }
2046 return 0;
2047}

Legend:
Removed from v.1.127  
changed lines
  Added in v.1.208

  ViewVC Help
Powered by ViewVC 1.1.20