/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.127 Revision 1.239
1/* 1/*
2 * Copyright 2003-2006 Gentoo Foundation 2 * Copyright 2003-2007 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.127 2006/02/17 07:13:54 solar Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.239 2012/01/23 22:28:17 vapier Exp $
5 * 5 *
6 * Copyright 2003-2006 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2006 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10static const char rcsid[] = "$Id: scanelf.c,v 1.239 2012/01/23 22:28:17 vapier Exp $";
11const char argv0[] = "scanelf";
12
10#include "paxinc.h" 13#include "paxinc.h"
11 14
12static const char *rcsid = "$Id: scanelf.c,v 1.127 2006/02/17 07:13:54 solar Exp $";
13#define argv0 "scanelf"
14
15#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
16
17
18 16
19/* prototypes */ 17/* prototypes */
20static int scanelf_elfobj(elfobj *elf); 18static int file_matches_list(const char *filename, char **matchlist);
21static int scanelf_elf(const char *filename, int fd, size_t len);
22static int scanelf_archive(const char *filename, int fd, size_t len);
23static void scanelf_file(const char *filename);
24static void scanelf_dir(const char *path);
25static void scanelf_ldpath(void);
26static void scanelf_envpath(void);
27static void usage(int status);
28static void parseargs(int argc, char *argv[]);
29static char *xstrdup(const char *s);
30static void *xmalloc(size_t size);
31static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
32#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
33static inline void xchrcat(char **dst, const char append, size_t *curr_len);
34 19
35/* variables to control behavior */ 20/* variables to control behavior */
36static char match_etypes[126] = ""; 21static char *match_etypes = NULL;
37static char *ldpaths[256]; 22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
38static char scan_ldpath = 0; 23static char scan_ldpath = 0;
39static char scan_envpath = 0; 24static char scan_envpath = 0;
40static char scan_symlink = 1; 25static char scan_symlink = 1;
41static char scan_archives = 0; 26static char scan_archives = 0;
42static char dir_recurse = 0; 27static char dir_recurse = 0;
43static char dir_crossmount = 1; 28static char dir_crossmount = 1;
44static char show_pax = 0; 29static char show_pax = 0;
30static char show_perms = 0;
31static char show_size = 0;
45static char show_phdr = 0; 32static char show_phdr = 0;
46static char show_textrel = 0; 33static char show_textrel = 0;
47static char show_rpath = 0; 34static char show_rpath = 0;
48static char show_needed = 0; 35static char show_needed = 0;
49static char show_interp = 0; 36static char show_interp = 0;
50static char show_bind = 0; 37static char show_bind = 0;
51static char show_soname = 0; 38static char show_soname = 0;
52static char show_textrels = 0; 39static char show_textrels = 0;
53static char show_banner = 1; 40static char show_banner = 1;
41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
54static char be_quiet = 0; 44static char be_quiet = 0;
55static char be_verbose = 0; 45static char be_verbose = 0;
56static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
57static char *find_sym = NULL, *versioned_symname = NULL; 47static char be_semi_verbose = 0;
48static char *find_sym = NULL;
58static char *find_lib = NULL; 49static char *find_lib = NULL;
50static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
59static char *find_section = NULL; 51static char *find_section = NULL;
52static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
60static char *out_format = NULL; 53static char *out_format = NULL;
61static char *search_path = NULL; 54static char *search_path = NULL;
62static char fix_elf = 0; 55static char fix_elf = 0;
63static char gmatch = 0; 56static char g_match = 0;
64static char use_ldcache = 0; 57static char use_ldcache = 0;
65 58
59static char **qa_textrels = NULL;
60static char **qa_execstack = NULL;
61static char **qa_wx_load = NULL;
62static int root_fd = AT_FDCWD;
63
66int match_bits = 0; 64static int match_bits = 0;
67caddr_t ldcache = 0; 65static unsigned int match_perms = 0;
66static void *ldcache = NULL;
68size_t ldcache_size = 0; 67static size_t ldcache_size = 0;
69unsigned long setpax = 0UL; 68static unsigned long setpax = 0UL;
70 69
70static int has_objdump = 0;
71
72/* find the path to a file by name */
73static int bin_in_path(const char *fname)
74{
75 char fullpath[__PAX_UTILS_PATH_MAX];
76 char *path, *p;
77
78 path = getenv("PATH");
79 if (!path)
80 return 0;
81
82 while ((p = strrchr(path, ':')) != NULL) {
83 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
84 *p = 0;
85 if (access(fullpath, R_OK) != -1)
86 return 1;
87 }
88
89 return 0;
90}
91
92static FILE *fopenat_r(int dir_fd, const char *path)
93{
94 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
95 if (fd == -1)
96 return NULL;
97 return fdopen(fd, "re");
98}
99
100static const char *root_rel_path(const char *path)
101{
102 /*
103 * openat() will ignore the dirfd if path starts with
104 * a /, so consume all of that noise
105 *
106 * XXX: we don't handle relative paths like ../ that
107 * break out of the --root option, but for now, just
108 * don't do that :P.
109 */
110 if (root_fd != AT_FDCWD) {
111 while (*path == '/')
112 ++path;
113 if (*path == '\0')
114 path = ".";
115 }
116
117 return path;
118}
119
120/* 1 on failure. 0 otherwise */
121static int rematch(const char *regex, const char *match, int cflags)
122{
123 regex_t preg;
124 int ret;
125
126 if ((match == NULL) || (regex == NULL))
127 return EXIT_FAILURE;
128
129 if ((ret = regcomp(&preg, regex, cflags))) {
130 char err[256];
131
132 if (regerror(ret, &preg, err, sizeof(err)))
133 fprintf(stderr, "regcomp failed: %s", err);
134 else
135 fprintf(stderr, "regcomp failed");
136
137 return EXIT_FAILURE;
138 }
139 ret = regexec(&preg, match, 0, NULL, 0);
140 regfree(&preg);
141
142 return ret;
143}
144
71/* sub-funcs for scanelf_file() */ 145/* sub-funcs for scanelf_fileat() */
72static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 146static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
73{ 147{
74 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 148 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
149
150 /* debug sections */
151 void *symtab = elf_findsecbyname(elf, ".symtab");
152 void *strtab = elf_findsecbyname(elf, ".strtab");
153 /* runtime sections */
154 void *dynsym = elf_findsecbyname(elf, ".dynsym");
155 void *dynstr = elf_findsecbyname(elf, ".dynstr");
156
75#define GET_SYMTABS(B) \ 157#define GET_SYMTABS(B) \
76 if (elf->elf_class == ELFCLASS ## B) { \ 158 if (elf->elf_class == ELFCLASS ## B) { \
77 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \
78 /* debug sections */ \
79 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \
80 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \
81 /* runtime sections */ \
82 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \
83 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \
84 if (symtab && dynsym) { \ 159 if (symtab && dynsym) { \
160 Elf ## B ## _Shdr *esymtab = symtab; \
161 Elf ## B ## _Shdr *edynsym = dynsym; \
85 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 162 *sym = (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) ? symtab : dynsym; \
86 } else { \ 163 } else \
87 *sym = (void*)(symtab ? symtab : dynsym); \ 164 *sym = symtab ? symtab : dynsym; \
88 } \
89 if (strtab && dynstr) { \ 165 if (strtab && dynstr) { \
166 Elf ## B ## _Shdr *estrtab = strtab; \
167 Elf ## B ## _Shdr *edynstr = dynstr; \
90 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \ 168 *str = (EGET(estrtab->sh_size) > EGET(edynstr->sh_size)) ? strtab : dynstr; \
91 } else { \ 169 } else \
92 *tab = (void*)(strtab ? strtab : dynstr); \ 170 *str = strtab ? strtab : dynstr; \
93 } \
94 } 171 }
95 GET_SYMTABS(32) 172 GET_SYMTABS(32)
96 GET_SYMTABS(64) 173 GET_SYMTABS(64)
174
175 if (*sym && *str)
176 return;
177
178 /*
179 * damn, they're really going to make us work for it huh?
180 * reconstruct the section header info out of the dynamic
181 * tags so we can see what symbols this guy uses at runtime.
182 */
183#define GET_SYMTABS_DT(B) \
184 if (elf->elf_class == ELFCLASS ## B) { \
185 size_t i; \
186 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
187 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
188 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
189 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
190 Elf ## B ## _Dyn *dyn; \
191 Elf ## B ## _Off offset; \
192 \
193 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
194 vsym = vstr = vhash = vgnu_hash = 0; \
195 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
196 memset(&str_shdr, 0, sizeof(str_shdr)); \
197 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
198 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
199 continue; \
200 \
201 offset = EGET(phdr[i].p_offset); \
202 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
203 continue; \
204 \
205 dyn = DYN ## B (elf->vdata + offset); \
206 while (EGET(dyn->d_tag) != DT_NULL) { \
207 switch (EGET(dyn->d_tag)) { \
208 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
209 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
210 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
211 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
212 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
213 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
214 } \
215 ++dyn; \
216 } \
217 if (vsym && vstr) \
218 break; \
219 } \
220 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
221 return; \
222 \
223 /* calc offset into the ELF by finding the load addr of the syms */ \
224 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
225 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
226 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
227 offset = EGET(phdr[i].p_offset); \
228 \
229 if (EGET(phdr[i].p_type) != PT_LOAD) \
230 continue; \
231 \
232 if (vhash >= vaddr && vhash < vaddr + filesz) { \
233 /* Scan the hash table to see how many entries we have */ \
234 Elf32_Word max_sym_idx = 0; \
235 Elf32_Word *hashtbl = elf->vdata + offset + (vhash - vaddr); \
236 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
237 Elf32_Word nchains = EGET(hashtbl[1]); \
238 Elf32_Word *buckets = &hashtbl[2]; \
239 Elf32_Word *chains = &buckets[nbuckets]; \
240 Elf32_Word sym_idx; \
241 \
242 for (b = 0; b < nbuckets; ++b) { \
243 if (!buckets[b]) \
244 continue; \
245 for (sym_idx = buckets[b]; sym_idx < nchains && sym_idx; sym_idx = chains[sym_idx]) \
246 if (max_sym_idx < sym_idx) \
247 max_sym_idx = sym_idx; \
248 } \
249 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
250 } \
251 \
252 if (vsym >= vaddr && vsym < vaddr + filesz) { \
253 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
254 *sym = &sym_shdr; \
255 } \
256 \
257 if (vstr >= vaddr && vstr < vaddr + filesz) { \
258 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
259 *str = &str_shdr; \
260 } \
261 } \
262 }
263 GET_SYMTABS_DT(32)
264 GET_SYMTABS_DT(64)
97} 265}
98 266
99static char *scanelf_file_pax(elfobj *elf, char *found_pax) 267static char *scanelf_file_pax(elfobj *elf, char *found_pax)
100{ 268{
101 static char ret[7]; 269 static char ret[7];
116 continue; \ 284 continue; \
117 if (fix_elf && setpax) { \ 285 if (fix_elf && setpax) { \
118 /* set the paxctl flags */ \ 286 /* set the paxctl flags */ \
119 ESET(phdr[i].p_flags, setpax); \ 287 ESET(phdr[i].p_flags, setpax); \
120 } \ 288 } \
121 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 289 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
122 continue; \ 290 continue; \
123 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 291 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
124 *found_pax = 1; \ 292 *found_pax = 1; \
125 ++shown; \ 293 ++shown; \
126 break; \ 294 break; \
128 } 296 }
129 SHOW_PAX(32) 297 SHOW_PAX(32)
130 SHOW_PAX(64) 298 SHOW_PAX(64)
131 } 299 }
132 300
301 if (fix_elf && setpax) {
302 /* set the chpax settings */
303 if (elf->elf_class == ELFCLASS32) {
304 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC)
305 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
306 } else {
307 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
308 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
309 }
310 }
311
133 /* fall back to EI_PAX if no PT_PAX was found */ 312 /* fall back to EI_PAX if no PT_PAX was found */
134 if (!*ret) { 313 if (!*ret) {
135 static char *paxflags; 314 static char *paxflags;
136
137 if (fix_elf && setpax) {
138 /* set the chpax settings */
139 // ESET(EHDR ## B (elf->ehdr)->e_ident[EI_PAX]), setpax);
140 }
141
142 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 315 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
143 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) { 316 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) {
144 *found_pax = 1; 317 *found_pax = 1;
145 return (be_wewy_wewy_quiet ? NULL : paxflags); 318 return (be_wewy_wewy_quiet ? NULL : paxflags);
146 } 319 }
176 uint32_t flags, check_flags; \ 349 uint32_t flags, check_flags; \
177 if (elf->phdr != NULL) { \ 350 if (elf->phdr != NULL) { \
178 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 351 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
179 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \ 352 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
180 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 353 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
354 if (multi_stack++) \
181 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 355 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
356 if (file_matches_list(elf->filename, qa_execstack)) \
357 continue; \
182 found = found_phdr; \ 358 found = found_phdr; \
183 offset = 0; \ 359 offset = 0; \
184 check_flags = PF_X; \ 360 check_flags = PF_X; \
185 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 361 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
362 if (multi_relro++) \
186 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 363 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
187 found = found_relro; \ 364 found = found_relro; \
188 offset = 4; \ 365 offset = 4; \
189 check_flags = PF_X; \ 366 check_flags = PF_X; \
190 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 367 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
191 if (ehdr->e_type == ET_DYN || ehdr->e_type == ET_EXEC) \ 368 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
369 if (multi_load++ > max_pt_load) \
192 if (multi_load++ > max_pt_load) warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \ 370 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
371 if (file_matches_list(elf->filename, qa_wx_load)) \
372 continue; \
193 found = found_load; \ 373 found = found_load; \
194 offset = 8; \ 374 offset = 8; \
195 check_flags = PF_W|PF_X; \ 375 check_flags = PF_W|PF_X; \
196 } else \ 376 } else \
197 continue; \ 377 continue; \
198 flags = EGET(phdr[i].p_flags); \ 378 flags = EGET(phdr[i].p_flags); \
199 if (be_quiet && ((flags & check_flags) != check_flags)) \ 379 if (be_quiet && ((flags & check_flags) != check_flags)) \
200 continue; \ 380 continue; \
201 if (fix_elf && ((flags & PF_X) != flags)) { \ 381 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
202 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \ 382 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
203 ret[3] = ret[7] = '!'; \ 383 ret[3] = ret[7] = '!'; \
204 flags = EGET(phdr[i].p_flags); \ 384 flags = EGET(phdr[i].p_flags); \
205 } \ 385 } \
206 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \ 386 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
210 } else if (elf->shdr != NULL) { \ 390 } else if (elf->shdr != NULL) { \
211 /* no program headers which means this is prob an object file */ \ 391 /* no program headers which means this is prob an object file */ \
212 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 392 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
213 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 393 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
214 char *str; \ 394 char *str; \
215 if ((void*)strtbl > (void*)elf->data_end) \ 395 if ((void*)strtbl > elf->data_end) \
216 goto skip_this_shdr##B; \ 396 goto skip_this_shdr##B; \
217 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 397 check_flags = SHF_WRITE|SHF_EXECINSTR; \
218 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 398 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
219 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 399 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
220 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 400 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
234 break; \ 414 break; \
235 } \ 415 } \
236 } \ 416 } \
237 skip_this_shdr##B: \ 417 skip_this_shdr##B: \
238 if (!multi_stack) { \ 418 if (!multi_stack) { \
419 if (file_matches_list(elf->filename, qa_execstack)) \
420 return NULL; \
239 *found_phdr = 1; \ 421 *found_phdr = 1; \
240 shown = 1; \ 422 shown = 1; \
241 memcpy(ret, "!WX", 3); \ 423 memcpy(ret, "!WX", 3); \
242 } \ 424 } \
243 } \ 425 } \
248 if (be_wewy_wewy_quiet || (be_quiet && !shown)) 430 if (be_wewy_wewy_quiet || (be_quiet && !shown))
249 return NULL; 431 return NULL;
250 else 432 else
251 return ret; 433 return ret;
252} 434}
435
436/*
437 * See if this ELF contains a DT_TEXTREL tag in any of its
438 * PT_DYNAMIC sections.
439 */
253static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 440static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
254{ 441{
255 static const char *ret = "TEXTREL"; 442 static const char *ret = "TEXTREL";
256 unsigned long i; 443 unsigned long i;
257 444
258 if (!show_textrel && !show_textrels) return NULL; 445 if (!show_textrel && !show_textrels) return NULL;
446
447 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
259 448
260 if (elf->phdr) { 449 if (elf->phdr) {
261#define SHOW_TEXTREL(B) \ 450#define SHOW_TEXTREL(B) \
262 if (elf->elf_class == ELFCLASS ## B) { \ 451 if (elf->elf_class == ELFCLASS ## B) { \
263 Elf ## B ## _Dyn *dyn; \ 452 Elf ## B ## _Dyn *dyn; \
264 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 453 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
265 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 454 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
266 Elf ## B ## _Off offset; \ 455 Elf ## B ## _Off offset; \
267 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 456 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
268 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 457 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
269 offset = EGET(phdr[i].p_offset); \ 458 offset = EGET(phdr[i].p_offset); \
270 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 459 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
271 dyn = DYN ## B (elf->data + offset); \ 460 dyn = DYN ## B (elf->vdata + offset); \
272 while (EGET(dyn->d_tag) != DT_NULL) { \ 461 while (EGET(dyn->d_tag) != DT_NULL) { \
273 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 462 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
274 *found_textrel = 1; \ 463 *found_textrel = 1; \
275 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 464 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
276 return (be_wewy_wewy_quiet ? NULL : ret); \ 465 return (be_wewy_wewy_quiet ? NULL : ret); \
285 if (be_quiet || be_wewy_wewy_quiet) 474 if (be_quiet || be_wewy_wewy_quiet)
286 return NULL; 475 return NULL;
287 else 476 else
288 return " - "; 477 return " - ";
289} 478}
479
480/*
481 * Scan the .text section to see if there are any relocations in it.
482 * Should rewrite this to check PT_LOAD sections that are marked
483 * Executable rather than the section named '.text'.
484 */
290static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 485static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
291{ 486{
292 unsigned long s, r, rmax; 487 unsigned long s, r, rmax;
293 void *symtab_void, *strtab_void, *text_void; 488 void *symtab_void, *strtab_void, *text_void;
294 489
315 Elf ## B ## _Rela *rela; \ 510 Elf ## B ## _Rela *rela; \
316 /* search the section headers for relocations */ \ 511 /* search the section headers for relocations */ \
317 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 512 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
318 uint32_t sh_type = EGET(shdr[s].sh_type); \ 513 uint32_t sh_type = EGET(shdr[s].sh_type); \
319 if (sh_type == SHT_REL) { \ 514 if (sh_type == SHT_REL) { \
320 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 515 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
321 rela = NULL; \ 516 rela = NULL; \
322 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 517 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
323 } else if (sh_type == SHT_RELA) { \ 518 } else if (sh_type == SHT_RELA) { \
324 rel = NULL; \ 519 rel = NULL; \
325 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 520 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
326 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 521 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
327 } else \ 522 } else \
328 continue; \ 523 continue; \
329 /* now see if any of the relocs are in the .text */ \ 524 /* now see if any of the relocs are in the .text */ \
330 for (r = 0; r < rmax; ++r) { \ 525 for (r = 0; r < rmax; ++r) { \
345 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \ 540 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
346 if (be_verbose <= 2) continue; \ 541 if (be_verbose <= 2) continue; \
347 } else \ 542 } else \
348 *found_textrels = 1; \ 543 *found_textrels = 1; \
349 /* locate this relocation symbol name */ \ 544 /* locate this relocation symbol name */ \
350 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 545 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
351 if ((void*)sym > (void*)elf->data_end) { \ 546 if ((void*)sym > elf->data_end) { \
352 warn("%s: corrupt ELF symbol", elf->filename); \ 547 warn("%s: corrupt ELF symbol", elf->filename); \
353 continue; \ 548 continue; \
354 } \ 549 } \
355 sym_max = ELF ## B ## _R_SYM(r_info); \ 550 sym_max = ELF ## B ## _R_SYM(r_info); \
356 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 551 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
359 sym = NULL; \ 554 sym = NULL; \
360 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 555 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
361 /* show the raw details about this reloc */ \ 556 /* show the raw details about this reloc */ \
362 printf(" %s: ", elf->base_filename); \ 557 printf(" %s: ", elf->base_filename); \
363 if (sym && sym->st_name) \ 558 if (sym && sym->st_name) \
364 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 559 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
365 else \ 560 else \
366 printf("(memory/fake?)"); \ 561 printf("(memory/data?)"); \
367 printf(" [0x%lX]", (unsigned long)r_offset); \ 562 printf(" [0x%lX]", (unsigned long)r_offset); \
368 /* now try to find the closest symbol that this rel is probably in */ \ 563 /* now try to find the closest symbol that this rel is probably in */ \
369 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 564 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
370 func = NULL; \ 565 func = NULL; \
371 offset_tmp = 0; \ 566 offset_tmp = 0; \
372 while (sym_max--) { \ 567 while (sym_max--) { \
373 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \ 568 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
374 func = sym; \ 569 func = sym; \
375 offset_tmp = EGET(sym->st_value); \ 570 offset_tmp = EGET(sym->st_value); \
376 } \ 571 } \
377 ++sym; \ 572 ++sym; \
378 } \ 573 } \
379 printf(" in "); \ 574 printf(" in "); \
380 if (func && func->st_name) \ 575 if (func && func->st_name) { \
381 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 576 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
577 if (r_offset > EGET(func->st_size)) \
578 printf("(optimized out: previous %s)", func_name); \
382 else \ 579 else \
383 printf("(NULL: fake?)"); \ 580 printf("%s", func_name); \
581 } else \
582 printf("(optimized out)"); \
384 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 583 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
584 if (be_verbose && has_objdump) { \
585 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
586 char *sysbuf; \
587 size_t syslen; \
588 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
589 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
590 sysbuf = xmalloc(syslen); \
591 if (end_addr < r_offset) \
592 /* not uncommon when things are optimized out */ \
593 end_addr = r_offset + 0x100; \
594 snprintf(sysbuf, syslen, sysfmt, \
595 (unsigned long)offset_tmp, \
596 (unsigned long)end_addr, \
597 elf->filename, \
598 (unsigned long)r_offset); \
599 fflush(stdout); \
600 if (system(sysbuf)) /* don't care */; \
601 fflush(stdout); \
602 free(sysbuf); \
603 } \
385 } \ 604 } \
386 } } 605 } }
387 SHOW_TEXTRELS(32) 606 SHOW_TEXTRELS(32)
388 SHOW_TEXTRELS(64) 607 SHOW_TEXTRELS(64)
389 } 608 }
391 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 610 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
392 611
393 return NULL; 612 return NULL;
394} 613}
395 614
396static void rpath_security_checks(elfobj *, char *, const char *);
397static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type) 615static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
398{ 616{
399 struct stat st; 617 struct stat st;
400 switch (*item) { 618 switch (*item) {
401 case '/': break; 619 case '/': break;
407 warnf("Security problem NULL %s in %s", dt_type, elf->filename); 625 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
408 break; 626 break;
409 case '$': 627 case '$':
410 if (fstat(elf->fd, &st) != -1) 628 if (fstat(elf->fd, &st) != -1)
411 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 629 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
412 warnf("Security problem with %s='%s' in %s with mode set of %o", 630 warnf("Security problem with %s='%s' in %s with mode set of %o",
413 dt_type, item, elf->filename, st.st_mode & 07777); 631 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
414 break; 632 break;
415 default: 633 default:
416 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename); 634 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
417 break; 635 break;
418 } 636 }
419} 637}
420static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 638static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
421{ 639{
422 unsigned long i, s; 640 unsigned long i;
423 char *rpath, *runpath, **r; 641 char *rpath, *runpath, **r;
424 void *strtbl_void; 642 void *strtbl_void;
425 643
426 if (!show_rpath) return; 644 if (!show_rpath) return;
427 645
438 Elf ## B ## _Off offset; \ 656 Elf ## B ## _Off offset; \
439 Elf ## B ## _Xword word; \ 657 Elf ## B ## _Xword word; \
440 /* Scan all the program headers */ \ 658 /* Scan all the program headers */ \
441 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 659 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
442 /* Just scan dynamic headers */ \ 660 /* Just scan dynamic headers */ \
443 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 661 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
444 offset = EGET(phdr[i].p_offset); \ 662 offset = EGET(phdr[i].p_offset); \
445 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 663 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
446 /* Just scan dynamic RPATH/RUNPATH headers */ \ 664 /* Just scan dynamic RPATH/RUNPATH headers */ \
447 dyn = DYN ## B (elf->data + offset); \ 665 dyn = DYN ## B (elf->vdata + offset); \
448 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 666 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
449 if (word == DT_RPATH) { \ 667 if (word == DT_RPATH) { \
450 r = &rpath; \ 668 r = &rpath; \
451 } else if (word == DT_RUNPATH) { \ 669 } else if (word == DT_RUNPATH) { \
452 r = &runpath; \ 670 r = &runpath; \
456 } \ 674 } \
457 /* Verify the memory is somewhat sane */ \ 675 /* Verify the memory is somewhat sane */ \
458 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 676 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
459 if (offset < (Elf ## B ## _Off)elf->len) { \ 677 if (offset < (Elf ## B ## _Off)elf->len) { \
460 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 678 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
461 *r = (char*)(elf->data + offset); \ 679 *r = elf->data + offset; \
462 /* cache the length in case we need to nuke this section later on */ \ 680 /* cache the length in case we need to nuke this section later on */ \
463 if (fix_elf) \ 681 if (fix_elf) \
464 offset = strlen(*r); \ 682 offset = strlen(*r); \
465 /* If quiet, don't output paths in ld.so.conf */ \ 683 /* If quiet, don't output paths in ld.so.conf */ \
466 if (be_quiet) { \ 684 if (be_quiet) { \
472 /* scan each path in : delimited list */ \ 690 /* scan each path in : delimited list */ \
473 while (start) { \ 691 while (start) { \
474 rpath_security_checks(elf, start, get_elfdtype(word)); \ 692 rpath_security_checks(elf, start, get_elfdtype(word)); \
475 end = strchr(start, ':'); \ 693 end = strchr(start, ':'); \
476 len = (end ? abs(end - start) : strlen(start)); \ 694 len = (end ? abs(end - start) : strlen(start)); \
477 if (use_ldcache) \ 695 if (use_ldcache) { \
478 for (s = 0; ldpaths[s]; ++s) \ 696 size_t n; \
697 const char *ldpath; \
698 array_for_each(ldpaths, n, ldpath) \
479 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 699 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
480 *r = end; \ 700 *r = end; \
481 /* corner case ... if RPATH reads "/usr/lib:", we want \ 701 /* corner case ... if RPATH reads "/usr/lib:", we want \
482 * to show ':' rather than '' */ \ 702 * to show ':' rather than '' */ \
483 if (end && end[1] != '\0') \ 703 if (end && end[1] != '\0') \
484 (*r)++; \ 704 (*r)++; \
485 break; \ 705 break; \
486 } \ 706 } \
707 } \
487 if (!*r || !end) \ 708 if (!*r || !end) \
488 break; \ 709 break; \
489 else \ 710 else \
490 start = start + len + 1; \ 711 start = start + len + 1; \
491 } \ 712 } \
576#define FLAG_S390_LIB64 0x0400 797#define FLAG_S390_LIB64 0x0400
577#define FLAG_POWERPC_LIB64 0x0500 798#define FLAG_POWERPC_LIB64 0x0500
578#define FLAG_MIPS64_LIBN32 0x0600 799#define FLAG_MIPS64_LIBN32 0x0600
579#define FLAG_MIPS64_LIBN64 0x0700 800#define FLAG_MIPS64_LIBN64 0x0700
580 801
581static char *lookup_cache_lib(elfobj *, char *); 802#if defined(__GLIBC__) || defined(__UCLIBC__)
803
582static char *lookup_cache_lib(elfobj *elf, char *fname) 804static char *lookup_cache_lib(elfobj *elf, char *fname)
583{ 805{
584 int fd = 0; 806 int fd;
585 char *strs; 807 char *strs;
586 static char buf[__PAX_UTILS_PATH_MAX] = ""; 808 static char buf[__PAX_UTILS_PATH_MAX] = "";
587 const char *cachefile = "/etc/ld.so.cache"; 809 const char *cachefile = root_rel_path("/etc/ld.so.cache");
588 struct stat st; 810 struct stat st;
589 811
590 typedef struct { 812 typedef struct {
591 char magic[LDSO_CACHE_MAGIC_LEN]; 813 char magic[LDSO_CACHE_MAGIC_LEN];
592 char version[LDSO_CACHE_VER_LEN]; 814 char version[LDSO_CACHE_VER_LEN];
602 libentry_t *libent; 824 libentry_t *libent;
603 825
604 if (fname == NULL) 826 if (fname == NULL)
605 return NULL; 827 return NULL;
606 828
607 if (ldcache == 0) { 829 if (ldcache == NULL) {
608 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1) 830 if (fstatat(root_fd, cachefile, &st, 0))
831 return NULL;
832
833 fd = openat(root_fd, cachefile, O_RDONLY);
834 if (fd == -1)
609 return NULL; 835 return NULL;
610 836
611 /* cache these values so we only map/unmap the cache file once */ 837 /* cache these values so we only map/unmap the cache file once */
612 ldcache_size = st.st_size; 838 ldcache_size = st.st_size;
613 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0); 839 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
614
615 close(fd); 840 close(fd);
616 841
617 if (ldcache == (caddr_t)-1) { 842 if (ldcache == MAP_FAILED) {
618 ldcache = 0; 843 ldcache = NULL;
619 return NULL; 844 return NULL;
620 } 845 }
621 846
622 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 847 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
848 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
849 {
850 munmap(ldcache, ldcache_size);
851 ldcache = NULL;
623 return NULL; 852 return NULL;
624 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
625 return NULL;
626 } 853 }
854 } else
855 header = ldcache;
627 856
628 header = (header_t *) ldcache;
629 libent = (libentry_t *) (ldcache + sizeof(header_t)); 857 libent = ldcache + sizeof(header_t);
630 strs = (char *) &libent[header->nlibs]; 858 strs = (char *) &libent[header->nlibs];
631 859
632 for (fd = 0; fd < header->nlibs; fd++) { 860 for (fd = 0; fd < header->nlibs; ++fd) {
633 /* this should be more fine grained, but for now we assume that 861 /* This should be more fine grained, but for now we assume that
634 * diff arches will not be cached together. and we ignore the 862 * diff arches will not be cached together, and we ignore the
635 * the different multilib mips cases. */ 863 * the different multilib mips cases.
864 */
636 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK)) 865 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
637 continue; 866 continue;
638 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK)) 867 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
639 continue; 868 continue;
640 869
641 if (strcmp(fname, strs + libent[fd].sooffset) != 0) 870 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
642 continue; 871 continue;
872
873 /* Return first hit because that is how the ldso rolls */
643 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 874 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
875 break;
644 } 876 }
877
645 return buf; 878 return buf;
646} 879}
647 880
881#elif defined(__NetBSD__)
882static char *lookup_cache_lib(elfobj *elf, char *fname)
883{
884 static char buf[__PAX_UTILS_PATH_MAX] = "";
885 static struct stat st;
886 size_t n;
887 char *ldpath;
888
889 array_for_each(ldpath, n, ldpath) {
890 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
891 continue; /* if the pathname is too long, or something went wrong, ignore */
892
893 if (stat(buf, &st) != 0)
894 continue; /* if the lib doesn't exist in *ldpath, look further */
895
896 /* NetBSD doesn't actually do sanity checks, it just loads the file
897 * and if that doesn't work, continues looking in other directories.
898 * This cannot easily be safely emulated, unfortunately. For now,
899 * just assume that if it exists, it's a valid library. */
900
901 return buf;
902 }
903
904 /* not found in any path */
905 return NULL;
906}
907#else
908#ifdef __ELF__
909#warning Cache support not implemented for your target
910#endif
911static char *lookup_cache_lib(elfobj *elf, char *fname)
912{
913 return NULL;
914}
915#endif
648 916
649static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 917static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
650{ 918{
651 unsigned long i; 919 unsigned long i;
652 char *needed; 920 char *needed;
653 void *strtbl_void; 921 void *strtbl_void;
654 char *p; 922 char *p;
655 923
924 /*
925 * -n -> op==0 -> print all
926 * -N -> op==1 -> print requested
927 */
656 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 928 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
929 return NULL;
657 930
658 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 931 strtbl_void = elf_findsecbyname(elf, ".dynstr");
659 932
660 if (elf->phdr && strtbl_void) { 933 if (elf->phdr && strtbl_void) {
661#define SHOW_NEEDED(B) \ 934#define SHOW_NEEDED(B) \
663 Elf ## B ## _Dyn *dyn; \ 936 Elf ## B ## _Dyn *dyn; \
664 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 937 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
665 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 938 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
666 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 939 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
667 Elf ## B ## _Off offset; \ 940 Elf ## B ## _Off offset; \
941 size_t matched = 0; \
942 /* Walk all the program headers to find the PT_DYNAMIC */ \
668 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 943 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
669 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 944 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
945 continue; \
670 offset = EGET(phdr[i].p_offset); \ 946 offset = EGET(phdr[i].p_offset); \
671 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 947 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
948 continue; \
949 /* Walk all the dynamic tags to find NEEDED entries */ \
672 dyn = DYN ## B (elf->data + offset); \ 950 dyn = DYN ## B (elf->vdata + offset); \
673 while (EGET(dyn->d_tag) != DT_NULL) { \ 951 while (EGET(dyn->d_tag) != DT_NULL) { \
674 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 952 if (EGET(dyn->d_tag) == DT_NEEDED) { \
675 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 953 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
676 if (offset >= (Elf ## B ## _Off)elf->len) { \ 954 if (offset >= (Elf ## B ## _Off)elf->len) { \
677 ++dyn; \ 955 ++dyn; \
678 continue; \ 956 continue; \
679 } \ 957 } \
680 needed = (char*)(elf->data + offset); \ 958 needed = elf->data + offset; \
681 if (op == 0) { \ 959 if (op == 0) { \
960 /* -n -> print all entries */ \
682 if (!be_wewy_wewy_quiet) { \ 961 if (!be_wewy_wewy_quiet) { \
683 if (*found_needed) xchrcat(ret, ',', ret_len); \ 962 if (*found_needed) xchrcat(ret, ',', ret_len); \
684 if (use_ldcache) \ 963 if (use_ldcache) \
685 if ((p = lookup_cache_lib(elf, needed)) != NULL) \ 964 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
686 needed = p; \ 965 needed = p; \
687 xstrcat(ret, needed, ret_len); \ 966 xstrcat(ret, needed, ret_len); \
688 } \ 967 } \
689 *found_needed = 1; \ 968 *found_needed = 1; \
690 } else { \ 969 } else { \
691 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 970 /* -N -> print matching entries */ \
971 size_t n; \
972 const char *find_lib_name; \
973 \
974 array_for_each(find_lib_arr, n, find_lib_name) { \
975 int invert = 1; \
976 if (find_lib_name[0] == '!') \
977 invert = 0, ++find_lib_name; \
978 if (!strcmp(find_lib_name, needed) == invert) \
979 ++matched; \
980 } \
981 \
982 if (matched == array_cnt(find_lib_arr)) { \
692 *found_lib = 1; \ 983 *found_lib = 1; \
693 return (be_wewy_wewy_quiet ? NULL : needed); \ 984 return (be_wewy_wewy_quiet ? NULL : find_lib); \
694 } \ 985 } \
695 } \ 986 } \
696 } \ 987 } \
697 ++dyn; \ 988 ++dyn; \
698 } \ 989 } \
727} 1018}
728static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1019static char *scanelf_file_bind(elfobj *elf, char *found_bind)
729{ 1020{
730 unsigned long i; 1021 unsigned long i;
731 struct stat s; 1022 struct stat s;
1023 char dynamic = 0;
732 1024
733 if (!show_bind) return NULL; 1025 if (!show_bind) return NULL;
734 if (!elf->phdr) return NULL; 1026 if (!elf->phdr) return NULL;
735 1027
736#define SHOW_BIND(B) \ 1028#define SHOW_BIND(B) \
738 Elf ## B ## _Dyn *dyn; \ 1030 Elf ## B ## _Dyn *dyn; \
739 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1031 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
740 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1032 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
741 Elf ## B ## _Off offset; \ 1033 Elf ## B ## _Off offset; \
742 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1034 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
743 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1035 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
1036 dynamic = 1; \
744 offset = EGET(phdr[i].p_offset); \ 1037 offset = EGET(phdr[i].p_offset); \
745 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1038 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
746 dyn = DYN ## B (elf->data + offset); \ 1039 dyn = DYN ## B (elf->vdata + offset); \
747 while (EGET(dyn->d_tag) != DT_NULL) { \ 1040 while (EGET(dyn->d_tag) != DT_NULL) { \
748 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1041 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
749 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 1042 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
750 { \ 1043 { \
751 if (be_quiet) return NULL; \ 1044 if (be_quiet) return NULL; \
759 SHOW_BIND(32) 1052 SHOW_BIND(32)
760 SHOW_BIND(64) 1053 SHOW_BIND(64)
761 1054
762 if (be_wewy_wewy_quiet) return NULL; 1055 if (be_wewy_wewy_quiet) return NULL;
763 1056
1057 /* don't output anything if quiet mode and the ELF is static or not setuid */
764 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 1058 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
765 return NULL; 1059 return NULL;
766 } else { 1060 } else {
767 *found_bind = 1; 1061 *found_bind = 1;
768 return (char *) "LAZY"; 1062 return (char *)(dynamic ? "LAZY" : "STATIC");
769 } 1063 }
770} 1064}
771static char *scanelf_file_soname(elfobj *elf, char *found_soname) 1065static char *scanelf_file_soname(elfobj *elf, char *found_soname)
772{ 1066{
773 unsigned long i; 1067 unsigned long i;
785 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1079 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
786 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1080 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
787 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1081 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
788 Elf ## B ## _Off offset; \ 1082 Elf ## B ## _Off offset; \
789 /* only look for soname in shared objects */ \ 1083 /* only look for soname in shared objects */ \
790 if (ehdr->e_type != ET_DYN) \ 1084 if (EGET(ehdr->e_type) != ET_DYN) \
791 return NULL; \ 1085 return NULL; \
792 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1086 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
793 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1087 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
794 offset = EGET(phdr[i].p_offset); \ 1088 offset = EGET(phdr[i].p_offset); \
795 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1089 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
796 dyn = DYN ## B (elf->data + offset); \ 1090 dyn = DYN ## B (elf->vdata + offset); \
797 while (EGET(dyn->d_tag) != DT_NULL) { \ 1091 while (EGET(dyn->d_tag) != DT_NULL) { \
798 if (EGET(dyn->d_tag) == DT_SONAME) { \ 1092 if (EGET(dyn->d_tag) == DT_SONAME) { \
799 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1093 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
800 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1094 if (offset >= (Elf ## B ## _Off)elf->len) { \
801 ++dyn; \ 1095 ++dyn; \
802 continue; \ 1096 continue; \
803 } \ 1097 } \
804 soname = (char*)(elf->data + offset); \ 1098 soname = elf->data + offset; \
805 *found_soname = 1; \ 1099 *found_soname = 1; \
806 return (be_wewy_wewy_quiet ? NULL : soname); \ 1100 return (be_wewy_wewy_quiet ? NULL : soname); \
807 } \ 1101 } \
808 ++dyn; \ 1102 ++dyn; \
809 } \ 1103 } \
812 SHOW_SONAME(64) 1106 SHOW_SONAME(64)
813 } 1107 }
814 1108
815 return NULL; 1109 return NULL;
816} 1110}
1111
1112/*
1113 * We support the symbol form:
1114 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
1115 * If the symbol name is empty, then all symbols are matched.
1116 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1117 * Do not rely on this output format at all.
1118 * Otherwise the symbol name is used to search (either regex or string compare).
1119 * If the first char of the symbol name is a plus ("+"), then only match
1120 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1121 * Putting modifiers in between the percent signs allows for more in depth
1122 * filters. There are groups of modifiers. If you don't specify a member
1123 * of a group, then all types in that group are matched. The current
1124 * groups and their types are:
1125 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1126 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1127 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1128 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1129 * You can search for multiple symbols at once by seperating with a comma (",").
1130 *
1131 * Some examples:
1132 * ELFs with a weak function "foo":
1133 * scanelf -s %wf%foo <ELFs>
1134 * ELFs that define the symbol "main":
1135 * scanelf -s +main <ELFs>
1136 * scanelf -s %d%main <ELFs>
1137 * ELFs that refer to the undefined symbol "brk":
1138 * scanelf -s -brk <ELFs>
1139 * scanelf -s %u%brk <ELFs>
1140 * All global defined objects in an ELF:
1141 * scanelf -s %ogd% <ELF>
1142 */
1143static void
1144scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1145 unsigned int stt, unsigned int stb, unsigned int shn, unsigned long size)
1146{
1147 char *this_sym, *next_sym, saved = saved;
1148
1149 /* allow the user to specify a comma delimited list of symbols to search for */
1150 next_sym = NULL;
1151 do {
1152 bool inc_notype, inc_object, inc_func, inc_file,
1153 inc_local, inc_global, inc_weak,
1154 inc_def, inc_undef, inc_abs, inc_common;
1155
1156 if (next_sym) {
1157 next_sym[-1] = saved;
1158 this_sym = next_sym;
1159 } else
1160 this_sym = find_sym;
1161 if ((next_sym = strchr(this_sym, ','))) {
1162 /* make parsing easier by killing the comma temporarily */
1163 saved = *next_sym;
1164 *next_sym = '\0';
1165 next_sym += 1;
1166 }
1167
1168 /* symbol selection! */
1169 inc_notype = inc_object = inc_func = inc_file = \
1170 inc_local = inc_global = inc_weak = \
1171 inc_def = inc_undef = inc_abs = inc_common = \
1172 (*this_sym != '%');
1173
1174 /* parse the contents of %...% */
1175 if (!inc_notype) {
1176 while (*(this_sym++)) {
1177 if (*this_sym == '%') {
1178 ++this_sym;
1179 break;
1180 }
1181 switch (*this_sym) {
1182 case 'n': inc_notype = true; break;
1183 case 'o': inc_object = true; break;
1184 case 'f': inc_func = true; break;
1185 case 'F': inc_file = true; break;
1186 case 'l': inc_local = true; break;
1187 case 'g': inc_global = true; break;
1188 case 'w': inc_weak = true; break;
1189 case 'd': inc_def = true; break;
1190 case 'u': inc_undef = true; break;
1191 case 'a': inc_abs = true; break;
1192 case 'c': inc_common = true; break;
1193 default: err("invalid symbol selector '%c'", *this_sym);
1194 }
1195 }
1196
1197 /* If no types are matched, not match all */
1198 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1199 inc_notype = inc_object = inc_func = inc_file = true;
1200 if (!inc_local && !inc_global && !inc_weak)
1201 inc_local = inc_global = inc_weak = true;
1202 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1203 inc_def = inc_undef = inc_abs = inc_common = true;
1204
1205 /* backwards compat for defined/undefined short hand */
1206 } else if (*this_sym == '+') {
1207 inc_undef = false;
1208 ++this_sym;
1209 } else if (*this_sym == '-') {
1210 inc_def = inc_abs = inc_common = false;
1211 ++this_sym;
1212 }
1213
1214 /* filter symbols */
1215 if ((!inc_notype && stt == STT_NOTYPE) || \
1216 (!inc_object && stt == STT_OBJECT) || \
1217 (!inc_func && stt == STT_FUNC ) || \
1218 (!inc_file && stt == STT_FILE ) || \
1219 (!inc_local && stb == STB_LOCAL ) || \
1220 (!inc_global && stb == STB_GLOBAL) || \
1221 (!inc_weak && stb == STB_WEAK ) || \
1222 (!inc_def && shn && shn < SHN_LORESERVE) || \
1223 (!inc_undef && shn == SHN_UNDEF ) || \
1224 (!inc_abs && shn == SHN_ABS ) || \
1225 (!inc_common && shn == SHN_COMMON))
1226 continue;
1227
1228 if (*this_sym == '*') {
1229 /* a "*" symbol gets you debug output */
1230 printf("%s(%s) %5lX %15s %15s %15s %s\n",
1231 ((*found_sym == 0) ? "\n\t" : "\t"),
1232 elf->base_filename,
1233 size,
1234 get_elfstttype(stt),
1235 get_elfstbtype(stb),
1236 get_elfshntype(shn),
1237 symname);
1238 goto matched;
1239
1240 } else {
1241 if (g_match) {
1242 /* regex match the symbol */
1243 if (rematch(this_sym, symname, REG_EXTENDED) != 0)
1244 continue;
1245
1246 } else if (*this_sym) {
1247 /* give empty symbols a "pass", else do a normal compare */
1248 const size_t len = strlen(this_sym);
1249 if (!(strncmp(this_sym, symname, len) == 0 &&
1250 /* Accept unversioned symbol names */
1251 (symname[len] == '\0' || symname[len] == '@')))
1252 continue;
1253 }
1254
1255 if (be_semi_verbose) {
1256 char buf[1024];
1257 snprintf(buf, sizeof(buf), "%lX %s %s",
1258 size,
1259 get_elfstttype(stt),
1260 this_sym);
1261 *ret = xstrdup(buf);
1262 } else {
1263 if (*ret) xchrcat(ret, ',', ret_len);
1264 xstrcat(ret, symname, ret_len);
1265 }
1266
1267 goto matched;
1268 }
1269 } while (next_sym);
1270
1271 return;
1272
1273 matched:
1274 *found_sym = 1;
1275 if (next_sym)
1276 next_sym[-1] = saved;
1277}
1278
817static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1279static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
818{ 1280{
819 unsigned long i;
820 char *ret; 1281 char *ret;
821 void *symtab_void, *strtab_void; 1282 void *symtab_void, *strtab_void;
822 1283
823 if (!find_sym) return NULL; 1284 if (!find_sym) return NULL;
824 ret = find_sym; 1285 ret = NULL;
825 1286
826 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1287 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
827 1288
828 if (symtab_void && strtab_void) { 1289 if (symtab_void && strtab_void) {
829#define FIND_SYM(B) \ 1290#define FIND_SYM(B) \
830 if (elf->elf_class == ELFCLASS ## B) { \ 1291 if (elf->elf_class == ELFCLASS ## B) { \
831 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1292 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
832 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1293 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
833 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1294 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
834 unsigned long cnt = EGET(symtab->sh_entsize); \ 1295 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
835 char *symname; \ 1296 char *symname; \
1297 size_t ret_len = 0; \
836 if (cnt) \ 1298 if (cnt) \
837 cnt = EGET(symtab->sh_size) / cnt; \ 1299 cnt = EGET(symtab->sh_size) / cnt; \
838 for (i = 0; i < cnt; ++i) { \ 1300 for (i = 0; i < cnt; ++i) { \
1301 if ((void*)sym > elf->data_end) { \
1302 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1303 goto break_out; \
1304 } \
839 if (sym->st_name) { \ 1305 if (sym->st_name) { \
1306 /* make sure the symbol name is in acceptable memory range */ \
840 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1307 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
841 if ((void*)symname > (void*)elf->data_end) { \ 1308 if ((void*)symname > elf->data_end) { \
842 warnf("%s: corrupt ELF symbols", elf->filename); \ 1309 warnf("%s: corrupt ELF symbols", elf->filename); \
1310 ++sym; \
843 continue; \ 1311 continue; \
844 } \ 1312 } \
845 if (*find_sym == '*') { \ 1313 scanelf_match_symname(elf, found_sym, \
846 printf("%s(%s) %5lX %15s %s\n", \ 1314 &ret, &ret_len, symname, \
847 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1315 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
848 elf->base_filename, \ 1316 ELF##B##_ST_BIND(EGET(sym->st_info)), \
849 (unsigned long)sym->st_size, \ 1317 EGET(sym->st_shndx), \
850 get_elfstttype(sym->st_info), \ 1318 /* st_size can be 64bit, but no one is really that big, so screw em */ \
851 symname); \ 1319 EGET(sym->st_size)); \
852 *found_sym = 1; \
853 } else { \
854 char *this_sym, *next_sym; \
855 this_sym = find_sym; \
856 do { \
857 next_sym = strchr(this_sym, ','); \
858 if (next_sym == NULL) \
859 next_sym = this_sym + strlen(this_sym); \
860 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \
861 (strcmp(symname, versioned_symname) == 0)) { \
862 ret = this_sym; \
863 (*found_sym)++; \
864 goto break_out; \
865 } \
866 this_sym = next_sym + 1; \
867 } while (*next_sym != '\0'); \
868 } \
869 } \ 1320 } \
870 ++sym; \ 1321 ++sym; \
871 } } 1322 } \
1323 }
872 FIND_SYM(32) 1324 FIND_SYM(32)
873 FIND_SYM(64) 1325 FIND_SYM(64)
874 } 1326 }
875 1327
876break_out: 1328break_out:
879 if (*find_sym != '*' && *found_sym) 1331 if (*find_sym != '*' && *found_sym)
880 return ret; 1332 return ret;
881 if (be_quiet) 1333 if (be_quiet)
882 return NULL; 1334 return NULL;
883 else 1335 else
884 return (char *)" - "; 1336 return " - ";
885} 1337}
886 1338
887
888static char *scanelf_file_sections(elfobj *elf, char *found_section) 1339static const char *scanelf_file_sections(elfobj *elf, char *found_section)
889{ 1340{
890 if (!find_section) 1341 if (!find_section)
891 return NULL; 1342 return NULL;
892 1343
893#define FIND_SECTION(B) \ 1344#define FIND_SECTION(B) \
894 if (elf->elf_class == ELFCLASS ## B) { \ 1345 if (elf->elf_class == ELFCLASS ## B) { \
1346 size_t matched, n; \
1347 int invert; \
1348 const char *section_name; \
895 Elf ## B ## _Shdr *section; \ 1349 Elf ## B ## _Shdr *section; \
1350 \
1351 matched = 0; \
1352 array_for_each(find_section_arr, n, section_name) { \
1353 invert = (*section_name == '!' ? 1 : 0); \
896 section = SHDR ## B (elf_findsecbyname(elf, find_section)); \ 1354 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
897 if (section != NULL) \ 1355 if ((section == NULL && invert) || (section != NULL && !invert)) \
1356 ++matched; \
1357 } \
1358 \
1359 if (matched == array_cnt(find_section_arr)) \
898 *found_section = 1; \ 1360 *found_section = 1; \
899 } 1361 }
900 FIND_SECTION(32) 1362 FIND_SECTION(32)
901 FIND_SECTION(64) 1363 FIND_SECTION(64)
902 1364
903
904 if (be_wewy_wewy_quiet) return NULL; 1365 if (be_wewy_wewy_quiet)
1366 return NULL;
905 1367
906 if (*found_section) 1368 if (*found_section)
907 return find_section; 1369 return find_section;
908 1370
909 if (be_quiet) 1371 if (be_quiet)
910 return NULL; 1372 return NULL;
911 else 1373 else
912 return (char *)" - "; 1374 return " - ";
913} 1375}
914 1376
915/* scan an elf file and show all the fun stuff */ 1377/* scan an elf file and show all the fun stuff */
916#define prints(str) write(fileno(stdout), str, strlen(str)) 1378#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
917static int scanelf_elfobj(elfobj *elf) 1379static int scanelf_elfobj(elfobj *elf)
918{ 1380{
919 unsigned long i; 1381 unsigned long i;
920 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1382 char found_pax, found_phdr, found_relro, found_load, found_textrel,
921 found_rpath, found_needed, found_interp, found_bind, found_soname, 1383 found_rpath, found_needed, found_interp, found_bind, found_soname,
922 found_sym, found_lib, found_file, found_textrels, found_section; 1384 found_sym, found_lib, found_file, found_textrels, found_section;
923 static char *out_buffer = NULL; 1385 static char *out_buffer = NULL;
924 static size_t out_len; 1386 static size_t out_len;
925 1387
926 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1388 found_pax = found_phdr = found_relro = found_load = found_textrel = \
935 printf("%s: scanning file\n", elf->filename); 1397 printf("%s: scanning file\n", elf->filename);
936 1398
937 /* init output buffer */ 1399 /* init output buffer */
938 if (!out_buffer) { 1400 if (!out_buffer) {
939 out_len = sizeof(char) * 80; 1401 out_len = sizeof(char) * 80;
940 out_buffer = (char*)xmalloc(out_len); 1402 out_buffer = xmalloc(out_len);
941 } 1403 }
942 *out_buffer = '\0'; 1404 *out_buffer = '\0';
943 1405
944 /* show the header */ 1406 /* show the header */
945 if (!be_quiet && show_banner) { 1407 if (!be_quiet && show_banner) {
946 for (i = 0; out_format[i]; ++i) { 1408 for (i = 0; out_format[i]; ++i) {
947 if (!IS_MODIFIER(out_format[i])) continue; 1409 if (!IS_MODIFIER(out_format[i])) continue;
948 1410
949 switch (out_format[++i]) { 1411 switch (out_format[++i]) {
1412 case '+': break;
950 case '%': break; 1413 case '%': break;
951 case '#': break; 1414 case '#': break;
952 case 'F': 1415 case 'F':
953 case 'p': 1416 case 'p':
954 case 'f': prints("FILE "); found_file = 1; break; 1417 case 'f': prints("FILE "); found_file = 1; break;
955 case 'o': prints(" TYPE "); break; 1418 case 'o': prints(" TYPE "); break;
956 case 'x': prints(" PAX "); break; 1419 case 'x': prints(" PAX "); break;
957 case 'e': prints("STK/REL/PTL "); break; 1420 case 'e': prints("STK/REL/PTL "); break;
958 case 't': prints("TEXTREL "); break; 1421 case 't': prints("TEXTREL "); break;
959 case 'r': prints("RPATH "); break; 1422 case 'r': prints("RPATH "); break;
1423 case 'M': prints("CLASS "); break;
960 case 'n': prints("NEEDED "); break; 1424 case 'n': prints("NEEDED "); break;
961 case 'i': prints("INTERP "); break; 1425 case 'i': prints("INTERP "); break;
962 case 'b': prints("BIND "); break; 1426 case 'b': prints("BIND "); break;
1427 case 'Z': prints("SIZE "); break;
963 case 'S': prints("SONAME "); break; 1428 case 'S': prints("SONAME "); break;
964 case 's': prints("SYM "); break; 1429 case 's': prints("SYM "); break;
965 case 'N': prints("LIB "); break; 1430 case 'N': prints("LIB "); break;
966 case 'T': prints("TEXTRELS "); break; 1431 case 'T': prints("TEXTRELS "); break;
967 case 'k': prints("SECTION "); break; 1432 case 'k': prints("SECTION "); break;
1433 case 'a': prints("ARCH "); break;
1434 case 'I': prints("OSABI "); break;
1435 case 'Y': prints("EABI "); break;
1436 case 'O': prints("PERM "); break;
1437 case 'D': prints("ENDIAN "); break;
968 default: warnf("'%c' has no title ?", out_format[i]); 1438 default: warnf("'%c' has no title ?", out_format[i]);
969 } 1439 }
970 } 1440 }
971 if (!found_file) prints("FILE "); 1441 if (!found_file) prints("FILE ");
972 prints("\n"); 1442 prints("\n");
976 1446
977 /* dump all the good stuff */ 1447 /* dump all the good stuff */
978 for (i = 0; out_format[i]; ++i) { 1448 for (i = 0; out_format[i]; ++i) {
979 const char *out; 1449 const char *out;
980 const char *tmp; 1450 const char *tmp;
981 1451 static char ubuf[sizeof(unsigned long)*2];
982 if (!IS_MODIFIER(out_format[i])) { 1452 if (!IS_MODIFIER(out_format[i])) {
983 xchrcat(&out_buffer, out_format[i], &out_len); 1453 xchrcat(&out_buffer, out_format[i], &out_len);
984 continue; 1454 continue;
985 } 1455 }
986 1456
987 out = NULL; 1457 out = NULL;
988 be_wewy_wewy_quiet = (out_format[i] == '#'); 1458 be_wewy_wewy_quiet = (out_format[i] == '#');
1459 be_semi_verbose = (out_format[i] == '+');
989 switch (out_format[++i]) { 1460 switch (out_format[++i]) {
1461 case '+':
990 case '%': 1462 case '%':
991 case '#': 1463 case '#':
992 xchrcat(&out_buffer, out_format[i], &out_len); break; 1464 xchrcat(&out_buffer, out_format[i], &out_len); break;
993 case 'F': 1465 case 'F':
994 found_file = 1; 1466 found_file = 1;
1020 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1492 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
1021 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1493 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
1022 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1494 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
1023 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1495 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
1024 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1496 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1497 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1498 case 'D': out = get_endian(elf); break;
1499 case 'O': out = strfileperms(elf->filename); break;
1025 case 'n': 1500 case 'n':
1026 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1501 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
1027 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1502 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
1028 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1503 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
1029 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1504 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
1030 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1505 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1031 case 'k': out = scanelf_file_sections(elf, &found_section); break; 1506 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1507 case 'a': out = get_elfemtype(elf); break;
1508 case 'I': out = get_elfosabi(elf); break;
1509 case 'Y': out = get_elf_eabi(elf); break;
1510 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
1032 default: warnf("'%c' has no scan code?", out_format[i]); 1511 default: warnf("'%c' has no scan code?", out_format[i]);
1033 } 1512 }
1034 if (out) { 1513 if (out)
1035 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
1036 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
1037 xstrncat(&out_buffer, out, &out_len, (tmp-out));
1038 else
1039 xstrcat(&out_buffer, out, &out_len); 1514 xstrcat(&out_buffer, out, &out_len);
1040 }
1041 } 1515 }
1042 1516
1043#define FOUND_SOMETHING() \ 1517#define FOUND_SOMETHING() \
1044 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1518 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
1045 found_rpath || found_needed || found_interp || found_bind || \ 1519 found_rpath || found_needed || found_interp || found_bind || \
1064 elfobj *elf; 1538 elfobj *elf;
1065 1539
1066 /* verify this is real ELF */ 1540 /* verify this is real ELF */
1067 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) { 1541 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1068 if (be_verbose > 2) printf("%s: not an ELF\n", filename); 1542 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1069 return ret; 1543 return 2;
1070 } 1544 }
1071 switch (match_bits) { 1545 switch (match_bits) {
1072 case 32: 1546 case 32:
1073 if (elf->elf_class != ELFCLASS32) 1547 if (elf->elf_class != ELFCLASS32)
1074 goto label_done; 1548 goto label_done;
1077 if (elf->elf_class != ELFCLASS64) 1551 if (elf->elf_class != ELFCLASS64)
1078 goto label_done; 1552 goto label_done;
1079 break; 1553 break;
1080 default: break; 1554 default: break;
1081 } 1555 }
1082 if (strlen(match_etypes)) { 1556 if (match_etypes) {
1083 char sbuf[126]; 1557 char sbuf[126];
1084 strncpy(sbuf, match_etypes, sizeof(sbuf)); 1558 strncpy(sbuf, match_etypes, sizeof(sbuf));
1085 if (strchr(match_etypes, ',') != NULL) { 1559 if (strchr(match_etypes, ',') != NULL) {
1086 char *p; 1560 char *p;
1087 while((p = strrchr(sbuf, ',')) != NULL) { 1561 while ((p = strrchr(sbuf, ',')) != NULL) {
1088 *p = 0; 1562 *p = 0;
1089 if (atoi(p+1) == get_etype(elf)) 1563 if (etype_lookup(p+1) == get_etype(elf))
1090 goto label_ret; 1564 goto label_ret;
1091 } 1565 }
1092 } 1566 }
1093 if (atoi(sbuf) != get_etype(elf)) 1567 if (etype_lookup(sbuf) != get_etype(elf))
1094 goto label_done; 1568 goto label_done;
1095 } 1569 }
1096 1570
1097label_ret: 1571label_ret:
1098 ret = scanelf_elfobj(elf); 1572 ret = scanelf_elfobj(elf);
1112 1586
1113 ar = ar_open_fd(filename, fd); 1587 ar = ar_open_fd(filename, fd);
1114 if (ar == NULL) 1588 if (ar == NULL)
1115 return 1; 1589 return 1;
1116 1590
1117 ar_buffer = (char*)mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0); 1591 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1118 while ((m=ar_next(ar)) != NULL) { 1592 while ((m = ar_next(ar)) != NULL) {
1593 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1594 if (cur_pos == -1)
1595 errp("lseek() failed");
1119 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size); 1596 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1120 if (elf) { 1597 if (elf) {
1121 scanelf_elfobj(elf); 1598 scanelf_elfobj(elf);
1122 unreadelf(elf); 1599 unreadelf(elf);
1123 } 1600 }
1124 } 1601 }
1125 munmap(ar_buffer, len); 1602 munmap(ar_buffer, len);
1126 1603
1127 return 0; 1604 return 0;
1128} 1605}
1129/* scan a file which may be an elf or an archive or some other magical beast */ 1606/* scan a file which may be an elf or an archive or some other magical beast */
1130static void scanelf_file(const char *filename) 1607static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1131{ 1608{
1609 const struct stat *st = st_cache;
1132 struct stat st; 1610 struct stat symlink_st;
1133 int fd; 1611 int fd;
1134 1612
1135 /* make sure 'filename' exists */
1136 if (lstat(filename, &st) == -1) {
1137 if (be_verbose > 2) printf("%s: does not exist\n", filename);
1138 return;
1139 }
1140
1141 /* always handle regular files and handle symlinked files if no -y */ 1613 /* always handle regular files and handle symlinked files if no -y */
1142 if (S_ISLNK(st.st_mode)) { 1614 if (S_ISLNK(st->st_mode)) {
1143 if (!scan_symlink) return; 1615 if (!scan_symlink)
1144 stat(filename, &st); 1616 return 1;
1617 fstatat(dir_fd, filename, &symlink_st, 0);
1618 st = &symlink_st;
1145 } 1619 }
1620
1146 if (!S_ISREG(st.st_mode)) { 1621 if (!S_ISREG(st->st_mode)) {
1147 if (be_verbose > 2) printf("%s: skipping non-file\n", filename); 1622 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1148 return; 1623 return 1;
1149 } 1624 }
1150 1625
1151 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1) 1626 if (match_perms) {
1627 if ((st->st_mode | match_perms) != st->st_mode)
1628 return 1;
1629 }
1630 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1631 if (fd == -1)
1152 return; 1632 return 1;
1153 1633
1154 if (scanelf_elf(filename, fd, st.st_size) == 1 && scan_archives) 1634 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1155 /* if it isn't an ELF, maybe it's an .a archive */ 1635 /* if it isn't an ELF, maybe it's an .a archive */
1636 if (scan_archives)
1156 scanelf_archive(filename, fd, st.st_size); 1637 scanelf_archive(filename, fd, st->st_size);
1157 1638
1639 /*
1640 * unreadelf() implicitly closes its fd, so only close it
1641 * when we are returning it in the non-ELF case
1642 */
1158 close(fd); 1643 close(fd);
1644 }
1645
1646 return 0;
1159} 1647}
1160 1648
1161/* scan a directory for ET_EXEC files and print when we find one */ 1649/* scan a directory for ET_EXEC files and print when we find one */
1162static void scanelf_dir(const char *path) 1650static int scanelf_dirat(int dir_fd, const char *path)
1163{ 1651{
1164 register DIR *dir; 1652 register DIR *dir;
1165 register struct dirent *dentry; 1653 register struct dirent *dentry;
1166 struct stat st_top, st; 1654 struct stat st_top, st;
1167 char buf[__PAX_UTILS_PATH_MAX]; 1655 char buf[__PAX_UTILS_PATH_MAX], *subpath;
1168 size_t pathlen = 0, len = 0; 1656 size_t pathlen = 0, len = 0;
1657 int ret = 0;
1658 int subdir_fd;
1169 1659
1170 /* make sure path exists */ 1660 /* make sure path exists */
1171 if (lstat(path, &st_top) == -1) { 1661 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
1172 if (be_verbose > 2) printf("%s: does not exist\n", path); 1662 if (be_verbose > 2) printf("%s: does not exist\n", path);
1173 return; 1663 return 1;
1174 } 1664 }
1175 1665
1176 /* ok, if it isn't a directory, assume we can open it */ 1666 /* ok, if it isn't a directory, assume we can open it */
1177 if (!S_ISDIR(st_top.st_mode)) { 1667 if (!S_ISDIR(st_top.st_mode))
1178 scanelf_file(path); 1668 return scanelf_fileat(dir_fd, path, &st_top);
1179 return;
1180 }
1181 1669
1182 /* now scan the dir looking for fun stuff */ 1670 /* now scan the dir looking for fun stuff */
1183 if ((dir = opendir(path)) == NULL) { 1671 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
1184 warnf("could not opendir %s: %s", path, strerror(errno)); 1672 if (subdir_fd == -1)
1673 dir = NULL;
1674 else
1675 dir = fdopendir(subdir_fd);
1676 if (dir == NULL) {
1677 if (subdir_fd != -1)
1678 close(subdir_fd);
1679 warnfp("could not opendir(%s)", path);
1185 return; 1680 return 1;
1186 } 1681 }
1187 if (be_verbose > 1) printf("%s: scanning dir\n", path); 1682 if (be_verbose > 1) printf("%s: scanning dir\n", path);
1188 1683
1189 pathlen = strlen(path); 1684 subpath = stpcpy(buf, path);
1685 *subpath++ = '/';
1686 pathlen = subpath - buf;
1190 while ((dentry = readdir(dir))) { 1687 while ((dentry = readdir(dir))) {
1191 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1688 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
1192 continue; 1689 continue;
1193 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1690
1194 if (len >= sizeof(buf)) { 1691 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
1195 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path,
1196 (unsigned long)len, (unsigned long)sizeof(buf));
1197 continue; 1692 continue;
1693
1694 len = strlen(dentry->d_name);
1695 if (len + pathlen + 1 >= sizeof(buf)) {
1696 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
1697 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
1698 continue;
1198 } 1699 }
1199 sprintf(buf, "%s/%s", path, dentry->d_name); 1700 memcpy(subpath, dentry->d_name, len);
1200 if (lstat(buf, &st) != -1) { 1701 subpath[len] = '\0';
1702
1201 if (S_ISREG(st.st_mode)) 1703 if (S_ISREG(st.st_mode))
1202 scanelf_file(buf); 1704 ret = scanelf_fileat(dir_fd, buf, &st);
1203 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1705 else if (dir_recurse && S_ISDIR(st.st_mode)) {
1204 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1706 if (dir_crossmount || (st_top.st_dev == st.st_dev))
1205 scanelf_dir(buf); 1707 ret = scanelf_dirat(dir_fd, buf);
1206 }
1207 } 1708 }
1208 } 1709 }
1209 closedir(dir); 1710 closedir(dir);
1210}
1211 1711
1712 return ret;
1713}
1714static int scanelf_dir(const char *path)
1715{
1716 return scanelf_dirat(root_fd, root_rel_path(path));
1717}
1718
1212static int scanelf_from_file(char *filename) 1719static int scanelf_from_file(const char *filename)
1213{ 1720{
1214 FILE *fp = NULL; 1721 FILE *fp;
1215 char *p; 1722 char *p, *path;
1216 char path[__PAX_UTILS_PATH_MAX]; 1723 size_t len;
1724 int ret;
1217 1725
1218 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1726 if (strcmp(filename, "-") == 0)
1219 fp = stdin; 1727 fp = stdin;
1220 else if ((fp = fopen(filename, "r")) == NULL) 1728 else if ((fp = fopen(filename, "r")) == NULL)
1221 return 1; 1729 return 1;
1222 1730
1223 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1731 path = NULL;
1732 len = 0;
1733 ret = 0;
1734 while (getline(&path, &len, fp) != -1) {
1224 if ((p = strchr(path, '\n')) != NULL) 1735 if ((p = strchr(path, '\n')) != NULL)
1225 *p = 0; 1736 *p = 0;
1226 search_path = path; 1737 search_path = path;
1227 scanelf_dir(path); 1738 ret = scanelf_dir(path);
1228 } 1739 }
1740 free(path);
1741
1229 if (fp != stdin) 1742 if (fp != stdin)
1230 fclose(fp); 1743 fclose(fp);
1744
1231 return 0; 1745 return ret;
1232} 1746}
1233 1747
1748#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1749
1234static int load_ld_so_conf(int i, const char *fname) 1750static int load_ld_cache_config(int i, const char *fname)
1235{ 1751{
1236 FILE *fp = NULL; 1752 FILE *fp = NULL;
1237 char *p; 1753 char *p, *path;
1238 char path[__PAX_UTILS_PATH_MAX]; 1754 size_t len;
1755 int curr_fd = -1;
1239 1756
1240 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1757 fp = fopenat_r(root_fd, root_rel_path(fname));
1758 if (fp == NULL)
1241 return i; 1759 return i;
1242 1760
1243 if ((fp = fopen(fname, "r")) == NULL) 1761 path = NULL;
1244 return i; 1762 len = 0;
1245 1763 while (getline(&path, &len, fp) != -1) {
1246 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1247 if ((p = strrchr(path, '\r')) != NULL) 1764 if ((p = strrchr(path, '\r')) != NULL)
1248 *p = 0; 1765 *p = 0;
1249 if ((p = strchr(path, '\n')) != NULL) 1766 if ((p = strchr(path, '\n')) != NULL)
1250 *p = 0; 1767 *p = 0;
1251#ifdef HAVE_GLOB 1768
1252 // recursive includes of the same file will make this segfault. 1769 /* recursive includes of the same file will make this segfault. */
1253 if ((*path == 'i') && (strncmp(path, "include", 7) == 0) && isblank(path[7])) { 1770 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1254 glob64_t gl; 1771 glob_t gl;
1255 size_t x; 1772 size_t x;
1256 char gpath[__PAX_UTILS_PATH_MAX]; 1773 const char *gpath;
1257 1774
1258 gpath[sizeof(gpath)] = 0; 1775 /* re-use existing path buffer ... need to be creative */
1259
1260 if (path[8] != '/') 1776 if (path[8] != '/')
1261 snprintf(gpath, sizeof(gpath)-1, "/etc/%s", &path[8]); 1777 gpath = memcpy(path + 3, "/etc/", 5);
1262 else 1778 else
1263 strncpy(gpath, &path[8], sizeof(gpath)-1); 1779 gpath = path + 8;
1780 if (root_fd != AT_FDCWD) {
1781 if (curr_fd == -1) {
1782 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1783 if (fchdir(root_fd))
1784 errp("unable to change to root dir");
1785 }
1786 gpath = root_rel_path(gpath);
1787 }
1264 1788
1265 if ((glob64(gpath, 0, NULL, &gl)) == 0) { 1789 if (glob(gpath, 0, NULL, &gl) == 0) {
1266 for (x = 0; x < gl.gl_pathc; ++x) { 1790 for (x = 0; x < gl.gl_pathc; ++x) {
1267 /* try to avoid direct loops */ 1791 /* try to avoid direct loops */
1268 if (strcmp(gl.gl_pathv[x], fname) == 0) 1792 if (strcmp(gl.gl_pathv[x], fname) == 0)
1269 continue; 1793 continue;
1270 i = load_ld_so_conf(i, gl.gl_pathv[x]); 1794 i = load_ld_cache_config(i, gl.gl_pathv[x]);
1271 if (i + 1 >= sizeof(ldpaths) / sizeof(*ldpaths)) {
1272 globfree64(&gl);
1273 return i;
1274 }
1275 } 1795 }
1276 globfree64 (&gl); 1796 globfree(&gl);
1797 }
1798
1799 /* failed globs are ignored by glibc */
1277 continue; 1800 continue;
1278 } else
1279 abort();
1280 } 1801 }
1281#endif 1802
1282 if (*path != '/') 1803 if (*path != '/')
1283 continue; 1804 continue;
1284 1805
1285 ldpaths[i++] = xstrdup(path); 1806 xarraypush_str(ldpaths, path);
1286
1287 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths))
1288 break;
1289 } 1807 }
1290 ldpaths[i] = NULL; 1808 free(path);
1291 1809
1810 fclose(fp);
1811
1812 if (curr_fd != -1) {
1813 if (fchdir(curr_fd))
1814 /* don't care */;
1815 close(curr_fd);
1816 }
1817
1818 return i;
1819}
1820
1821#elif defined(__FreeBSD__) || defined(__DragonFly__)
1822
1823static int load_ld_cache_config(int i, const char *fname)
1824{
1825 FILE *fp = NULL;
1826 char *b = NULL, *p;
1827 struct elfhints_hdr hdr;
1828
1829 fp = fopenat_r(root_fd, root_rel_path(fname));
1830 if (fp == NULL)
1831 return i;
1832
1833 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1834 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1835 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1836 {
1837 fclose(fp);
1838 return i;
1839 }
1840
1841 b = xmalloc(hdr.dirlistlen + 1);
1842 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1843 fclose(fp);
1844 free(b);
1845 return i;
1846 }
1847
1848 while ((p = strsep(&b, ":"))) {
1849 if (*p == '\0')
1850 continue;
1851 xarraypush_str(ldpaths, p);
1852 }
1853
1854 free(b);
1292 fclose(fp); 1855 fclose(fp);
1293 return i; 1856 return i;
1294} 1857}
1295 1858
1859#else
1860#ifdef __ELF__
1861#warning Cache config support not implemented for your target
1862#endif
1863static int load_ld_cache_config(int i, const char *fname)
1864{
1865 return 0;
1866}
1867#endif
1868
1296/* scan /etc/ld.so.conf for paths */ 1869/* scan /etc/ld.so.conf for paths */
1297static void scanelf_ldpath() 1870static void scanelf_ldpath(void)
1298{ 1871{
1299 char scan_l, scan_ul, scan_ull; 1872 char scan_l, scan_ul, scan_ull;
1873 size_t n;
1874 const char *ldpath;
1300 int i = 0; 1875 int i = 0;
1301 1876
1302 if (!ldpaths[0]) 1877 if (array_cnt(ldpaths) == 0)
1303 err("Unable to load any paths from ld.so.conf"); 1878 err("Unable to load any paths from ld.so.conf");
1304 1879
1305 scan_l = scan_ul = scan_ull = 0; 1880 scan_l = scan_ul = scan_ull = 0;
1306 1881
1307 while (ldpaths[i]) { 1882 array_for_each(ldpaths, n, ldpath) {
1308 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1; 1883 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = 1;
1309 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1; 1884 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = 1;
1310 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1; 1885 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = 1;
1311 scanelf_dir(ldpaths[i]); 1886 scanelf_dir(ldpath);
1312 ++i; 1887 ++i;
1313 } 1888 }
1314 1889
1315 if (!scan_l) scanelf_dir("/lib"); 1890 if (!scan_l) scanelf_dir("/lib");
1316 if (!scan_ul) scanelf_dir("/usr/lib"); 1891 if (!scan_ul) scanelf_dir("/usr/lib");
1317 if (!scan_ull) scanelf_dir("/usr/local/lib"); 1892 if (!scan_ull) scanelf_dir("/usr/local/lib");
1318} 1893}
1319 1894
1320/* scan env PATH for paths */ 1895/* scan env PATH for paths */
1321static void scanelf_envpath() 1896static void scanelf_envpath(void)
1322{ 1897{
1323 char *path, *p; 1898 char *path, *p;
1324 1899
1325 path = getenv("PATH"); 1900 path = getenv("PATH");
1326 if (!path) 1901 if (!path)
1333 } 1908 }
1334 1909
1335 free(path); 1910 free(path);
1336} 1911}
1337 1912
1338/* usage / invocation handling functions */ 1913/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
1339#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:BhV" 1914#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
1340#define a_argument required_argument 1915#define a_argument required_argument
1341static struct option const long_opts[] = { 1916static struct option const long_opts[] = {
1342 {"path", no_argument, NULL, 'p'}, 1917 {"path", no_argument, NULL, 'p'},
1343 {"ldpath", no_argument, NULL, 'l'}, 1918 {"ldpath", no_argument, NULL, 'l'},
1919 {"root", a_argument, NULL, 128},
1344 {"recursive", no_argument, NULL, 'R'}, 1920 {"recursive", no_argument, NULL, 'R'},
1345 {"mount", no_argument, NULL, 'm'}, 1921 {"mount", no_argument, NULL, 'm'},
1346 {"symlink", no_argument, NULL, 'y'}, 1922 {"symlink", no_argument, NULL, 'y'},
1347 {"archives", no_argument, NULL, 'A'}, 1923 {"archives", no_argument, NULL, 'A'},
1348 {"ldcache", no_argument, NULL, 'L'}, 1924 {"ldcache", no_argument, NULL, 'L'},
1361 {"lib", a_argument, NULL, 'N'}, 1937 {"lib", a_argument, NULL, 'N'},
1362 {"gmatch", no_argument, NULL, 'g'}, 1938 {"gmatch", no_argument, NULL, 'g'},
1363 {"textrels", no_argument, NULL, 'T'}, 1939 {"textrels", no_argument, NULL, 'T'},
1364 {"etype", a_argument, NULL, 'E'}, 1940 {"etype", a_argument, NULL, 'E'},
1365 {"bits", a_argument, NULL, 'M'}, 1941 {"bits", a_argument, NULL, 'M'},
1942 {"endian", no_argument, NULL, 'D'},
1943 {"osabi", no_argument, NULL, 'I'},
1944 {"eabi", no_argument, NULL, 'Y'},
1945 {"perms", a_argument, NULL, 'O'},
1946 {"size", no_argument, NULL, 'Z'},
1366 {"all", no_argument, NULL, 'a'}, 1947 {"all", no_argument, NULL, 'a'},
1367 {"quiet", no_argument, NULL, 'q'}, 1948 {"quiet", no_argument, NULL, 'q'},
1368 {"verbose", no_argument, NULL, 'v'}, 1949 {"verbose", no_argument, NULL, 'v'},
1369 {"format", a_argument, NULL, 'F'}, 1950 {"format", a_argument, NULL, 'F'},
1370 {"from", a_argument, NULL, 'f'}, 1951 {"from", a_argument, NULL, 'f'},
1371 {"file", a_argument, NULL, 'o'}, 1952 {"file", a_argument, NULL, 'o'},
1953 {"nocolor", no_argument, NULL, 'C'},
1372 {"nobanner", no_argument, NULL, 'B'}, 1954 {"nobanner", no_argument, NULL, 'B'},
1373 {"help", no_argument, NULL, 'h'}, 1955 {"help", no_argument, NULL, 'h'},
1374 {"version", no_argument, NULL, 'V'}, 1956 {"version", no_argument, NULL, 'V'},
1375 {NULL, no_argument, NULL, 0x0} 1957 {NULL, no_argument, NULL, 0x0}
1376}; 1958};
1377 1959
1378static const char *opts_help[] = { 1960static const char * const opts_help[] = {
1379 "Scan all directories in PATH environment", 1961 "Scan all directories in PATH environment",
1380 "Scan all directories in /etc/ld.so.conf", 1962 "Scan all directories in /etc/ld.so.conf",
1963 "Root directory (use with -l or -p)",
1381 "Scan directories recursively", 1964 "Scan directories recursively",
1382 "Don't recursively cross mount points", 1965 "Don't recursively cross mount points",
1383 "Don't scan symlinks", 1966 "Don't scan symlinks",
1384 "Scan archives (.a files)", 1967 "Scan archives (.a files)",
1385 "Utilize ld.so.cache information (use with -r/-n)", 1968 "Utilize ld.so.cache to show full path (use with -r/-n)",
1386 "Try and 'fix' bad things (use with -r/-e)", 1969 "Try and 'fix' bad things (use with -r/-e)",
1387 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n", 1970 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1388 "Print PaX markings", 1971 "Print PaX markings",
1389 "Print GNU_STACK/PT_LOAD markings", 1972 "Print GNU_STACK/PT_LOAD markings",
1390 "Print TEXTREL information", 1973 "Print TEXTREL information",
1394 "Print BIND information", 1977 "Print BIND information",
1395 "Print SONAME information", 1978 "Print SONAME information",
1396 "Find a specified symbol", 1979 "Find a specified symbol",
1397 "Find a specified section", 1980 "Find a specified section",
1398 "Find a specified library", 1981 "Find a specified library",
1399 "Use strncmp to match libraries. (use with -N)", 1982 "Use regex matching rather than string compare (use with -s)",
1400 "Locate cause of TEXTREL", 1983 "Locate cause of TEXTREL",
1401 "Print only ELF files matching numeric constant type", 1984 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1402 "Print only ELF files matching numeric bits", 1985 "Print only ELF files matching numeric bits",
1403 "Print all scanned info (-x -e -t -r -b)\n", 1986 "Print Endianness",
1987 "Print OSABI",
1988 "Print EABI (EM_ARM Only)",
1989 "Print only ELF files matching octal permissions",
1990 "Print ELF file size",
1991 "Print all useful/simple info\n",
1404 "Only output 'bad' things", 1992 "Only output 'bad' things",
1405 "Be verbose (can be specified more than once)", 1993 "Be verbose (can be specified more than once)",
1406 "Use specified format for output", 1994 "Use specified format for output",
1407 "Read input stream from a filename", 1995 "Read input stream from a filename",
1408 "Write output stream to a filename", 1996 "Write output stream to a filename",
1997 "Don't emit color in output",
1409 "Don't display the header", 1998 "Don't display the header",
1410 "Print this help and exit", 1999 "Print this help and exit",
1411 "Print version and exit", 2000 "Print version and exit",
1412 NULL 2001 NULL
1413}; 2002};
1419 printf("* Scan ELF binaries for stuff\n\n" 2008 printf("* Scan ELF binaries for stuff\n\n"
1420 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0); 2009 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1421 printf("Options: -[%s]\n", PARSE_FLAGS); 2010 printf("Options: -[%s]\n", PARSE_FLAGS);
1422 for (i = 0; long_opts[i].name; ++i) 2011 for (i = 0; long_opts[i].name; ++i)
1423 if (long_opts[i].has_arg == no_argument) 2012 if (long_opts[i].has_arg == no_argument)
1424 printf(" -%c, --%-14s* %s\n", long_opts[i].val, 2013 printf(" -%c, --%-14s* %s\n", long_opts[i].val,
2014 long_opts[i].name, opts_help[i]);
2015 else if (long_opts[i].val > '~')
2016 printf(" --%-7s <arg> * %s\n",
1425 long_opts[i].name, opts_help[i]); 2017 long_opts[i].name, opts_help[i]);
1426 else 2018 else
1427 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val, 2019 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val,
1428 long_opts[i].name, opts_help[i]); 2020 long_opts[i].name, opts_help[i]);
1429 2021
1430 if (status != EXIT_SUCCESS) 2022 puts("\nFor more information, see the scanelf(1) manpage");
1431 exit(status);
1432
1433 puts("\nThe format modifiers for the -F option are:");
1434 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1435 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1436 puts(" i INTERP \tb BIND \ts symbol");
1437 puts(" N library \to Type \tT TEXTRELs");
1438 puts(" S SONAME \tk section");
1439 puts(" p filename (with search path removed)");
1440 puts(" f filename (short name/basename)");
1441 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1442
1443 puts("\nELF Etypes:");
1444 print_etypes(stdout);
1445
1446 exit(status); 2023 exit(status);
1447} 2024}
1448 2025
1449/* parse command line arguments and preform needed actions */ 2026/* parse command line arguments and preform needed actions */
2027#define do_pax_state(option, flag) \
2028 if (islower(option)) { \
2029 flags &= ~PF_##flag; \
2030 flags |= PF_NO##flag; \
2031 } else { \
2032 flags &= ~PF_NO##flag; \
2033 flags |= PF_##flag; \
2034 }
1450static void parseargs(int argc, char *argv[]) 2035static int parseargs(int argc, char *argv[])
1451{ 2036{
1452 int i; 2037 int i;
1453 char *from_file = NULL; 2038 const char *from_file = NULL;
2039 int ret = 0;
1454 2040
1455 opterr = 0; 2041 opterr = 0;
1456 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2042 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1457 switch (i) { 2043 switch (i) {
1458 2044
1466 case 'f': 2052 case 'f':
1467 if (from_file) warn("You prob don't want to specify -f twice"); 2053 if (from_file) warn("You prob don't want to specify -f twice");
1468 from_file = optarg; 2054 from_file = optarg;
1469 break; 2055 break;
1470 case 'E': 2056 case 'E':
1471 strncpy(match_etypes, optarg, sizeof(match_etypes)); 2057 match_etypes = optarg;
1472 break; 2058 break;
1473 case 'M': 2059 case 'M':
1474 match_bits = atoi(optarg); 2060 match_bits = atoi(optarg);
2061 if (match_bits == 0) {
2062 if (strcmp(optarg, "ELFCLASS32") == 0)
2063 match_bits = 32;
2064 if (strcmp(optarg, "ELFCLASS64") == 0)
2065 match_bits = 64;
2066 }
2067 break;
2068 case 'O':
2069 if (sscanf(optarg, "%o", &match_perms) == -1)
2070 match_bits = 0;
1475 break; 2071 break;
1476 case 'o': { 2072 case 'o': {
1477 FILE *fp = NULL;
1478 if ((fp = freopen(optarg, "w", stdout)) == NULL) 2073 if (freopen(optarg, "w", stdout) == NULL)
1479 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2074 errp("Could not freopen(%s)", optarg);
1480 SET_STDOUT(fp);
1481 break; 2075 break;
1482 } 2076 }
1483 case 'k': 2077 case 'k':
1484 if (find_section) warn("You prob don't want to specify -k twice"); 2078 xarraypush_str(find_section_arr, optarg);
1485 find_section = optarg;
1486 break; 2079 break;
1487 case 's': { 2080 case 's': {
1488 if (find_sym) warn("You prob don't want to specify -s twice"); 2081 if (find_sym) warn("You prob don't want to specify -s twice");
1489 find_sym = optarg; 2082 find_sym = optarg;
1490 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1491 sprintf(versioned_symname, "%s@", find_sym);
1492 break; 2083 break;
1493 } 2084 }
1494 case 'N': { 2085 case 'N':
1495 if (find_lib) warn("You prob don't want to specify -N twice"); 2086 xarraypush_str(find_lib_arr, optarg);
1496 find_lib = optarg;
1497 break; 2087 break;
1498 }
1499
1500 case 'F': { 2088 case 'F': {
1501 if (out_format) warn("You prob don't want to specify -F twice"); 2089 if (out_format) warn("You prob don't want to specify -F twice");
1502 out_format = optarg; 2090 out_format = optarg;
1503 break; 2091 break;
1504 } 2092 }
1505 case 'z': { 2093 case 'z': {
1506 unsigned long flags = 10240; 2094 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1507 size_t x; 2095 size_t x;
1508 2096
1509#define do_state(option, flag) \
1510 if (islower(option)) { \
1511 flags &= ~PF_##flag; \
1512 flags |= PF_NO##flag; \
1513 } else { \
1514 flags &= ~PF_NO##flag; \
1515 flags |= PF_##flag; \
1516 }
1517
1518 for (x = 0 ; x < strlen(optarg); x++) { 2097 for (x = 0; x < strlen(optarg); x++) {
1519 switch(optarg[x]) { 2098 switch (optarg[x]) {
1520 case 'p': 2099 case 'p':
1521 case 'P': 2100 case 'P':
1522 do_state(optarg[x], PAGEEXEC); 2101 do_pax_state(optarg[x], PAGEEXEC);
1523 break; 2102 break;
1524 case 's': 2103 case 's':
1525 case 'S': 2104 case 'S':
1526 do_state(optarg[x], SEGMEXEC); 2105 do_pax_state(optarg[x], SEGMEXEC);
1527 break; 2106 break;
1528 case 'm': 2107 case 'm':
1529 case 'M': 2108 case 'M':
1530 do_state(optarg[x], MPROTECT); 2109 do_pax_state(optarg[x], MPROTECT);
1531 break; 2110 break;
1532 case 'e': 2111 case 'e':
1533 case 'E': 2112 case 'E':
1534 do_state(optarg[x], EMUTRAMP); 2113 do_pax_state(optarg[x], EMUTRAMP);
1535 break; 2114 break;
1536 case 'r': 2115 case 'r':
1537 case 'R': 2116 case 'R':
1538 do_state(optarg[x], RANDMMAP); 2117 do_pax_state(optarg[x], RANDMMAP);
1539 break; 2118 break;
1540 case 'x': 2119 case 'x':
1541 case 'X': 2120 case 'X':
1542 do_state(optarg[x], RANDEXEC); 2121 do_pax_state(optarg[x], RANDEXEC);
1543 break; 2122 break;
1544 default: 2123 default:
1545 break; 2124 break;
1546 } 2125 }
1547 } 2126 }
1552 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) || 2131 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
1553 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)))) 2132 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1554 setpax = flags; 2133 setpax = flags;
1555 break; 2134 break;
1556 } 2135 }
2136 case 'Z': show_size = 1; break;
1557 case 'g': gmatch = 1; break; 2137 case 'g': g_match = 1; break;
1558 case 'L': use_ldcache = 1; break; 2138 case 'L': use_ldcache = 1; break;
1559 case 'y': scan_symlink = 0; break; 2139 case 'y': scan_symlink = 0; break;
1560 case 'A': scan_archives = 1; break; 2140 case 'A': scan_archives = 1; break;
2141 case 'C': color_init(true); break;
1561 case 'B': show_banner = 0; break; 2142 case 'B': show_banner = 0; break;
1562 case 'l': scan_ldpath = 1; break; 2143 case 'l': scan_ldpath = 1; break;
1563 case 'p': scan_envpath = 1; break; 2144 case 'p': scan_envpath = 1; break;
1564 case 'R': dir_recurse = 1; break; 2145 case 'R': dir_recurse = 1; break;
1565 case 'm': dir_crossmount = 0; break; 2146 case 'm': dir_crossmount = 0; break;
1573 case 'b': show_bind = 1; break; 2154 case 'b': show_bind = 1; break;
1574 case 'S': show_soname = 1; break; 2155 case 'S': show_soname = 1; break;
1575 case 'T': show_textrels = 1; break; 2156 case 'T': show_textrels = 1; break;
1576 case 'q': be_quiet = 1; break; 2157 case 'q': be_quiet = 1; break;
1577 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2158 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1578 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 2159 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1579 2160 case 'D': show_endian = 1; break;
2161 case 'I': show_osabi = 1; break;
2162 case 'Y': show_eabi = 1; break;
2163 case 128:
2164 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2165 if (root_fd == -1)
2166 err("Could not open root: %s", optarg);
2167 break;
1580 case ':': 2168 case ':':
1581 err("Option '%c' is missing parameter", optopt); 2169 err("Option '%c' is missing parameter", optopt);
1582 case '?': 2170 case '?':
1583 err("Unknown option '%c' or argument missing", optopt); 2171 err("Unknown option '%c' or argument missing", optopt);
1584 default: 2172 default:
1585 err("Unhandled option '%c'; please report this", i); 2173 err("Unhandled option '%c'; please report this", i);
1586 } 2174 }
1587 } 2175 }
1588 2176 if (show_textrels && be_verbose)
2177 has_objdump = bin_in_path("objdump");
2178 /* flatten arrays for display */
2179 if (array_cnt(find_lib_arr))
2180 find_lib = array_flatten_str(find_lib_arr);
2181 if (array_cnt(find_section_arr))
2182 find_section = array_flatten_str(find_section_arr);
1589 /* let the format option override all other options */ 2183 /* let the format option override all other options */
1590 if (out_format) { 2184 if (out_format) {
1591 show_pax = show_phdr = show_textrel = show_rpath = \ 2185 show_pax = show_phdr = show_textrel = show_rpath = \
1592 show_needed = show_interp = show_bind = show_soname = \ 2186 show_needed = show_interp = show_bind = show_soname = \
1593 show_textrels = 0; 2187 show_textrels = show_perms = show_endian = show_size = \
2188 show_osabi = show_eabi = 0;
1594 for (i = 0; out_format[i]; ++i) { 2189 for (i = 0; out_format[i]; ++i) {
1595 if (!IS_MODIFIER(out_format[i])) continue; 2190 if (!IS_MODIFIER(out_format[i])) continue;
1596 2191
1597 switch (out_format[++i]) { 2192 switch (out_format[++i]) {
2193 case '+': break;
1598 case '%': break; 2194 case '%': break;
1599 case '#': break; 2195 case '#': break;
1600 case 'F': break; 2196 case 'F': break;
1601 case 'p': break; 2197 case 'p': break;
1602 case 'f': break; 2198 case 'f': break;
1603 case 'k': break; 2199 case 'k': break;
1604 case 's': break; 2200 case 's': break;
1605 case 'N': break; 2201 case 'N': break;
1606 case 'o': break; 2202 case 'o': break;
2203 case 'a': break;
2204 case 'M': break;
2205 case 'Z': show_size = 1; break;
2206 case 'D': show_endian = 1; break;
2207 case 'I': show_osabi = 1; break;
2208 case 'Y': show_eabi = 1; break;
2209 case 'O': show_perms = 1; break;
1607 case 'x': show_pax = 1; break; 2210 case 'x': show_pax = 1; break;
1608 case 'e': show_phdr = 1; break; 2211 case 'e': show_phdr = 1; break;
1609 case 't': show_textrel = 1; break; 2212 case 't': show_textrel = 1; break;
1610 case 'r': show_rpath = 1; break; 2213 case 'r': show_rpath = 1; break;
1611 case 'n': show_needed = 1; break; 2214 case 'n': show_needed = 1; break;
1612 case 'i': show_interp = 1; break; 2215 case 'i': show_interp = 1; break;
1613 case 'b': show_bind = 1; break; 2216 case 'b': show_bind = 1; break;
1614 case 'S': show_soname = 1; break; 2217 case 'S': show_soname = 1; break;
1615 case 'T': show_textrels = 1; break; 2218 case 'T': show_textrels = 1; break;
1616 default: 2219 default:
1617 err("Invalid format specifier '%c' (byte %i)", 2220 err("Invalid format specifier '%c' (byte %i)",
1618 out_format[i], i+1); 2221 out_format[i], i+1);
1619 } 2222 }
1620 } 2223 }
1621 2224
1622 /* construct our default format */ 2225 /* construct our default format */
1623 } else { 2226 } else {
1624 size_t fmt_len = 30; 2227 size_t fmt_len = 30;
1625 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2228 out_format = xmalloc(sizeof(char) * fmt_len);
2229 *out_format = '\0';
1626 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2230 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1627 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2231 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
2232 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2233 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
2234 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
2235 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2236 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1628 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 2237 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1629 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2238 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1630 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2239 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1631 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2240 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1632 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2241 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1640 } 2249 }
1641 if (be_verbose > 2) printf("Format: %s\n", out_format); 2250 if (be_verbose > 2) printf("Format: %s\n", out_format);
1642 2251
1643 /* now lets actually do the scanning */ 2252 /* now lets actually do the scanning */
1644 if (scan_ldpath || use_ldcache) 2253 if (scan_ldpath || use_ldcache)
1645 load_ld_so_conf(0, "/etc/ld.so.conf"); 2254 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1646 if (scan_ldpath) scanelf_ldpath(); 2255 if (scan_ldpath) scanelf_ldpath();
1647 if (scan_envpath) scanelf_envpath(); 2256 if (scan_envpath) scanelf_envpath();
2257 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
2258 from_file = "-";
1648 if (from_file) { 2259 if (from_file) {
1649 scanelf_from_file(from_file); 2260 scanelf_from_file(from_file);
1650 from_file = *argv; 2261 from_file = *argv;
1651 } 2262 }
1652 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 2263 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1653 err("Nothing to scan !?"); 2264 err("Nothing to scan !?");
1654 while (optind < argc) { 2265 while (optind < argc) {
1655 search_path = argv[optind++]; 2266 search_path = argv[optind++];
1656 scanelf_dir(search_path); 2267 ret = scanelf_dir(search_path);
1657 } 2268 }
1658 2269
1659 /* clean up */ 2270 /* clean up */
1660 if (versioned_symname) free(versioned_symname);
1661 for (i = 0; ldpaths[i]; ++i)
1662 free(ldpaths[i]); 2271 xarrayfree(ldpaths);
2272 xarrayfree(find_lib_arr);
2273 xarrayfree(find_section_arr);
2274 free(find_lib);
2275 free(find_section);
1663 2276
1664 if (ldcache != 0) 2277 if (ldcache != 0)
1665 munmap(ldcache, ldcache_size); 2278 munmap(ldcache, ldcache_size);
1666}
1667
1668
1669
1670/* utility funcs */
1671static char *xstrdup(const char *s)
1672{
1673 char *ret = strdup(s);
1674 if (!ret) err("Could not strdup(): %s", strerror(errno));
1675 return ret; 2279 return ret;
1676} 2280}
1677static void *xmalloc(size_t size)
1678{
1679 void *ret = malloc(size);
1680 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
1681 return ret;
1682}
1683static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
1684{
1685 size_t new_len;
1686 2281
1687 new_len = strlen(*dst) + strlen(src); 2282static char **get_split_env(const char *envvar)
1688 if (*curr_len <= new_len) {
1689 *curr_len = new_len + (*curr_len / 2);
1690 *dst = realloc(*dst, *curr_len);
1691 if (!*dst)
1692 err("could not realloc() %li bytes", (unsigned long)*curr_len);
1693 }
1694
1695 if (n)
1696 strncat(*dst, src, n);
1697 else
1698 strcat(*dst, src);
1699}
1700static inline void xchrcat(char **dst, const char append, size_t *curr_len)
1701{ 2283{
1702 static char my_app[2]; 2284 const char *delims = " \t\n";
1703 my_app[0] = append; 2285 char **envvals = NULL;
1704 my_app[1] = '\0'; 2286 char *env, *s;
1705 xstrcat(dst, my_app, curr_len); 2287 int nentry;
1706}
1707 2288
2289 if ((env = getenv(envvar)) == NULL)
2290 return NULL;
1708 2291
2292 env = xstrdup(env);
2293 if (env == NULL)
2294 return NULL;
2295
2296 s = strtok(env, delims);
2297 if (s == NULL) {
2298 free(env);
2299 return NULL;
2300 }
2301
2302 nentry = 0;
2303 while (s != NULL) {
2304 ++nentry;
2305 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
2306 envvals[nentry-1] = s;
2307 s = strtok(NULL, delims);
2308 }
2309 envvals[nentry] = NULL;
2310
2311 /* don't want to free(env) as it contains the memory that backs
2312 * the envvals array of strings */
2313 return envvals;
2314}
2315
2316static void parseenv(void)
2317{
2318 color_init(false);
2319 qa_textrels = get_split_env("QA_TEXTRELS");
2320 qa_execstack = get_split_env("QA_EXECSTACK");
2321 qa_wx_load = get_split_env("QA_WX_LOAD");
2322}
2323
2324#ifdef __PAX_UTILS_CLEANUP
2325static void cleanup(void)
2326{
2327 free(out_format);
2328 free(qa_textrels);
2329 free(qa_execstack);
2330 free(qa_wx_load);
2331}
2332#endif
1709 2333
1710int main(int argc, char *argv[]) 2334int main(int argc, char *argv[])
1711{ 2335{
2336 int ret;
1712 if (argc < 2) 2337 if (argc < 2)
1713 usage(EXIT_FAILURE); 2338 usage(EXIT_FAILURE);
2339 parseenv();
1714 parseargs(argc, argv); 2340 ret = parseargs(argc, argv);
1715 fclose(stdout); 2341 fclose(stdout);
1716#ifdef __BOUNDS_CHECKING_ON 2342#ifdef __PAX_UTILS_CLEANUP
1717 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2343 cleanup();
2344 warn("The calls to add/delete heap should be off:\n"
2345 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2346 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1718#endif 2347#endif
1719 return EXIT_SUCCESS; 2348 return ret;
1720} 2349}
2350
2351/* Match filename against entries in matchlist, return TRUE
2352 * if the file is listed */
2353static int file_matches_list(const char *filename, char **matchlist)
2354{
2355 char **file;
2356 char *match;
2357 char buf[__PAX_UTILS_PATH_MAX];
2358
2359 if (matchlist == NULL)
2360 return 0;
2361
2362 for (file = matchlist; *file != NULL; file++) {
2363 if (search_path) {
2364 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2365 match = buf;
2366 } else {
2367 match = *file;
2368 }
2369 if (fnmatch(match, filename, 0) == 0)
2370 return 1;
2371 }
2372 return 0;
2373}

Legend:
Removed from v.1.127  
changed lines
  Added in v.1.239

  ViewVC Help
Powered by ViewVC 1.1.20