/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.127 Revision 1.250
1/* 1/*
2 * Copyright 2003-2006 Gentoo Foundation 2 * Copyright 2003-2012 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.127 2006/02/17 07:13:54 solar Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.250 2012/11/04 08:25:41 vapier Exp $
5 * 5 *
6 * Copyright 2003-2006 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2012 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2006 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2012 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10static const char rcsid[] = "$Id: scanelf.c,v 1.250 2012/11/04 08:25:41 vapier Exp $";
11const char argv0[] = "scanelf";
12
10#include "paxinc.h" 13#include "paxinc.h"
11 14
12static const char *rcsid = "$Id: scanelf.c,v 1.127 2006/02/17 07:13:54 solar Exp $";
13#define argv0 "scanelf"
14
15#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
16
17
18 16
19/* prototypes */ 17/* prototypes */
20static int scanelf_elfobj(elfobj *elf); 18static int file_matches_list(const char *filename, char **matchlist);
21static int scanelf_elf(const char *filename, int fd, size_t len);
22static int scanelf_archive(const char *filename, int fd, size_t len);
23static void scanelf_file(const char *filename);
24static void scanelf_dir(const char *path);
25static void scanelf_ldpath(void);
26static void scanelf_envpath(void);
27static void usage(int status);
28static void parseargs(int argc, char *argv[]);
29static char *xstrdup(const char *s);
30static void *xmalloc(size_t size);
31static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
32#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
33static inline void xchrcat(char **dst, const char append, size_t *curr_len);
34 19
35/* variables to control behavior */ 20/* variables to control behavior */
36static char match_etypes[126] = ""; 21static char *match_etypes = NULL;
37static char *ldpaths[256]; 22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
38static char scan_ldpath = 0; 23static char scan_ldpath = 0;
39static char scan_envpath = 0; 24static char scan_envpath = 0;
40static char scan_symlink = 1; 25static char scan_symlink = 1;
41static char scan_archives = 0; 26static char scan_archives = 0;
42static char dir_recurse = 0; 27static char dir_recurse = 0;
43static char dir_crossmount = 1; 28static char dir_crossmount = 1;
44static char show_pax = 0; 29static char show_pax = 0;
30static char show_perms = 0;
31static char show_size = 0;
45static char show_phdr = 0; 32static char show_phdr = 0;
46static char show_textrel = 0; 33static char show_textrel = 0;
47static char show_rpath = 0; 34static char show_rpath = 0;
48static char show_needed = 0; 35static char show_needed = 0;
49static char show_interp = 0; 36static char show_interp = 0;
50static char show_bind = 0; 37static char show_bind = 0;
51static char show_soname = 0; 38static char show_soname = 0;
52static char show_textrels = 0; 39static char show_textrels = 0;
53static char show_banner = 1; 40static char show_banner = 1;
41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
54static char be_quiet = 0; 44static char be_quiet = 0;
55static char be_verbose = 0; 45static char be_verbose = 0;
56static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
57static char *find_sym = NULL, *versioned_symname = NULL; 47static char be_semi_verbose = 0;
48static char *find_sym = NULL;
49static array_t _find_sym_arr = array_init_decl, *find_sym_arr = &_find_sym_arr;
50static array_t _find_sym_regex_arr = array_init_decl, *find_sym_regex_arr = &_find_sym_regex_arr;
58static char *find_lib = NULL; 51static char *find_lib = NULL;
52static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
59static char *find_section = NULL; 53static char *find_section = NULL;
54static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
60static char *out_format = NULL; 55static char *out_format = NULL;
61static char *search_path = NULL; 56static char *search_path = NULL;
62static char fix_elf = 0; 57static char fix_elf = 0;
63static char gmatch = 0; 58static char g_match = 0;
64static char use_ldcache = 0; 59static char use_ldcache = 0;
60static char use_ldpath = 0;
65 61
62static char **qa_textrels = NULL;
63static char **qa_execstack = NULL;
64static char **qa_wx_load = NULL;
65static int root_fd = AT_FDCWD;
66
66int match_bits = 0; 67static int match_bits = 0;
67caddr_t ldcache = 0; 68static unsigned int match_perms = 0;
69static void *ldcache = NULL;
68size_t ldcache_size = 0; 70static size_t ldcache_size = 0;
69unsigned long setpax = 0UL; 71static unsigned long setpax = 0UL;
70 72
73static int has_objdump = 0;
74
75/* find the path to a file by name */
76static int bin_in_path(const char *fname)
77{
78 char fullpath[__PAX_UTILS_PATH_MAX];
79 char *path, *p;
80
81 path = getenv("PATH");
82 if (!path)
83 return 0;
84
85 while ((p = strrchr(path, ':')) != NULL) {
86 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
87 *p = 0;
88 if (access(fullpath, R_OK) != -1)
89 return 1;
90 }
91
92 return 0;
93}
94
95static FILE *fopenat_r(int dir_fd, const char *path)
96{
97 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
98 if (fd == -1)
99 return NULL;
100 return fdopen(fd, "re");
101}
102
103static const char *root_rel_path(const char *path)
104{
105 /*
106 * openat() will ignore the dirfd if path starts with
107 * a /, so consume all of that noise
108 *
109 * XXX: we don't handle relative paths like ../ that
110 * break out of the --root option, but for now, just
111 * don't do that :P.
112 */
113 if (root_fd != AT_FDCWD) {
114 while (*path == '/')
115 ++path;
116 if (*path == '\0')
117 path = ".";
118 }
119
120 return path;
121}
122
71/* sub-funcs for scanelf_file() */ 123/* sub-funcs for scanelf_fileat() */
72static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 124static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
73{ 125{
74 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 126 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
127
128 /* debug sections */
129 void *symtab = elf_findsecbyname(elf, ".symtab");
130 void *strtab = elf_findsecbyname(elf, ".strtab");
131 /* runtime sections */
132 void *dynsym = elf_findsecbyname(elf, ".dynsym");
133 void *dynstr = elf_findsecbyname(elf, ".dynstr");
134
135 /*
136 * If the sections are marked NOBITS, then they don't exist, so we just
137 * skip them. This let's us work sanely with splitdebug ELFs (rather
138 * than spewing a lot of "corrupt ELF" messages later on). In malformed
139 * ELFs, the section might be wrongly set to NOBITS, but screw em.
140 */
75#define GET_SYMTABS(B) \ 141#define GET_SYMTABS(B) \
76 if (elf->elf_class == ELFCLASS ## B) { \ 142 if (elf->elf_class == ELFCLASS ## B) { \
77 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \ 143 Elf ## B ## _Shdr *esymtab = symtab; \
78 /* debug sections */ \ 144 Elf ## B ## _Shdr *estrtab = strtab; \
79 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \ 145 Elf ## B ## _Shdr *edynsym = dynsym; \
80 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \ 146 Elf ## B ## _Shdr *edynstr = dynstr; \
81 /* runtime sections */ \ 147 \
82 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \ 148 if (symtab && EGET(esymtab->sh_type) == SHT_NOBITS) \
83 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \ 149 symtab = NULL; \
150 if (dynsym && EGET(edynsym->sh_type) == SHT_NOBITS) \
151 dynsym = NULL; \
84 if (symtab && dynsym) { \ 152 if (symtab && dynsym) \
85 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 153 *sym = (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) ? symtab : dynsym; \
86 } else { \ 154 else \
87 *sym = (void*)(symtab ? symtab : dynsym); \ 155 *sym = symtab ? symtab : dynsym; \
88 } \ 156 \
157 if (strtab && EGET(estrtab->sh_type) == SHT_NOBITS) \
158 strtab = NULL; \
159 if (dynstr && EGET(edynstr->sh_type) == SHT_NOBITS) \
160 dynstr = NULL; \
89 if (strtab && dynstr) { \ 161 if (strtab && dynstr) \
90 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \ 162 *str = (EGET(estrtab->sh_size) > EGET(edynstr->sh_size)) ? strtab : dynstr; \
91 } else { \ 163 else \
92 *tab = (void*)(strtab ? strtab : dynstr); \ 164 *str = strtab ? strtab : dynstr; \
93 } \
94 } 165 }
95 GET_SYMTABS(32) 166 GET_SYMTABS(32)
96 GET_SYMTABS(64) 167 GET_SYMTABS(64)
168
169 if (*sym && *str)
170 return;
171
172 /*
173 * damn, they're really going to make us work for it huh?
174 * reconstruct the section header info out of the dynamic
175 * tags so we can see what symbols this guy uses at runtime.
176 */
177#define GET_SYMTABS_DT(B) \
178 if (elf->elf_class == ELFCLASS ## B) { \
179 size_t i; \
180 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
181 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
182 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
183 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
184 Elf ## B ## _Dyn *dyn; \
185 Elf ## B ## _Off offset; \
186 \
187 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
188 vsym = vstr = vhash = vgnu_hash = 0; \
189 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
190 memset(&str_shdr, 0, sizeof(str_shdr)); \
191 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
192 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
193 continue; \
194 \
195 offset = EGET(phdr[i].p_offset); \
196 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
197 continue; \
198 \
199 dyn = DYN ## B (elf->vdata + offset); \
200 while (EGET(dyn->d_tag) != DT_NULL) { \
201 switch (EGET(dyn->d_tag)) { \
202 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
203 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
204 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
205 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
206 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
207 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
208 } \
209 ++dyn; \
210 } \
211 if (vsym && vstr) \
212 break; \
213 } \
214 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
215 return; \
216 \
217 /* calc offset into the ELF by finding the load addr of the syms */ \
218 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
219 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
220 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
221 offset = EGET(phdr[i].p_offset); \
222 \
223 if (EGET(phdr[i].p_type) != PT_LOAD) \
224 continue; \
225 \
226 if (vhash >= vaddr && vhash < vaddr + filesz) { \
227 /* Scan the hash table to see how many entries we have */ \
228 Elf32_Word max_sym_idx = 0; \
229 Elf32_Word *hashtbl = elf->vdata + offset + (vhash - vaddr); \
230 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
231 Elf32_Word nchains = EGET(hashtbl[1]); \
232 Elf32_Word *buckets = &hashtbl[2]; \
233 Elf32_Word *chains = &buckets[nbuckets]; \
234 Elf32_Word sym_idx; \
235 \
236 for (b = 0; b < nbuckets; ++b) { \
237 if (!buckets[b]) \
238 continue; \
239 for (sym_idx = buckets[b]; sym_idx < nchains && sym_idx; sym_idx = chains[sym_idx]) \
240 if (max_sym_idx < sym_idx) \
241 max_sym_idx = sym_idx; \
242 } \
243 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
244 } \
245 \
246 if (vsym >= vaddr && vsym < vaddr + filesz) { \
247 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
248 *sym = &sym_shdr; \
249 } \
250 \
251 if (vstr >= vaddr && vstr < vaddr + filesz) { \
252 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
253 *str = &str_shdr; \
254 } \
255 } \
256 }
257 GET_SYMTABS_DT(32)
258 GET_SYMTABS_DT(64)
97} 259}
98 260
99static char *scanelf_file_pax(elfobj *elf, char *found_pax) 261static char *scanelf_file_pax(elfobj *elf, char *found_pax)
100{ 262{
101 static char ret[7]; 263 static char ret[7];
116 continue; \ 278 continue; \
117 if (fix_elf && setpax) { \ 279 if (fix_elf && setpax) { \
118 /* set the paxctl flags */ \ 280 /* set the paxctl flags */ \
119 ESET(phdr[i].p_flags, setpax); \ 281 ESET(phdr[i].p_flags, setpax); \
120 } \ 282 } \
121 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 283 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
122 continue; \ 284 continue; \
123 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 285 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
124 *found_pax = 1; \ 286 *found_pax = 1; \
125 ++shown; \ 287 ++shown; \
126 break; \ 288 break; \
128 } 290 }
129 SHOW_PAX(32) 291 SHOW_PAX(32)
130 SHOW_PAX(64) 292 SHOW_PAX(64)
131 } 293 }
132 294
295 /* Note: We do not support setting EI_PAX if not PT_PAX_FLAGS
296 * was found. This is known to break ELFs on glibc systems,
297 * and mainline PaX has deprecated use of this for a long time.
298 * We could support changing PT_GNU_STACK, but that doesn't
299 * seem like it's worth the effort. #411919
300 */
301
133 /* fall back to EI_PAX if no PT_PAX was found */ 302 /* fall back to EI_PAX if no PT_PAX was found */
134 if (!*ret) { 303 if (!*ret) {
135 static char *paxflags; 304 static char *paxflags;
136
137 if (fix_elf && setpax) {
138 /* set the chpax settings */
139 // ESET(EHDR ## B (elf->ehdr)->e_ident[EI_PAX]), setpax);
140 }
141
142 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 305 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
143 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) { 306 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) {
144 *found_pax = 1; 307 *found_pax = 1;
145 return (be_wewy_wewy_quiet ? NULL : paxflags); 308 return (be_wewy_wewy_quiet ? NULL : paxflags);
146 } 309 }
176 uint32_t flags, check_flags; \ 339 uint32_t flags, check_flags; \
177 if (elf->phdr != NULL) { \ 340 if (elf->phdr != NULL) { \
178 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 341 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
179 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \ 342 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
180 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 343 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
344 if (multi_stack++) \
181 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 345 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
346 if (file_matches_list(elf->filename, qa_execstack)) \
347 continue; \
182 found = found_phdr; \ 348 found = found_phdr; \
183 offset = 0; \ 349 offset = 0; \
184 check_flags = PF_X; \ 350 check_flags = PF_X; \
185 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 351 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
352 if (multi_relro++) \
186 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 353 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
187 found = found_relro; \ 354 found = found_relro; \
188 offset = 4; \ 355 offset = 4; \
189 check_flags = PF_X; \ 356 check_flags = PF_X; \
190 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 357 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
191 if (ehdr->e_type == ET_DYN || ehdr->e_type == ET_EXEC) \ 358 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
359 if (multi_load++ > max_pt_load) \
192 if (multi_load++ > max_pt_load) warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \ 360 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
361 if (file_matches_list(elf->filename, qa_wx_load)) \
362 continue; \
193 found = found_load; \ 363 found = found_load; \
194 offset = 8; \ 364 offset = 8; \
195 check_flags = PF_W|PF_X; \ 365 check_flags = PF_W|PF_X; \
196 } else \ 366 } else \
197 continue; \ 367 continue; \
198 flags = EGET(phdr[i].p_flags); \ 368 flags = EGET(phdr[i].p_flags); \
199 if (be_quiet && ((flags & check_flags) != check_flags)) \ 369 if (be_quiet && ((flags & check_flags) != check_flags)) \
200 continue; \ 370 continue; \
201 if (fix_elf && ((flags & PF_X) != flags)) { \ 371 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
202 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \ 372 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
203 ret[3] = ret[7] = '!'; \ 373 ret[3] = ret[7] = '!'; \
204 flags = EGET(phdr[i].p_flags); \ 374 flags = EGET(phdr[i].p_flags); \
205 } \ 375 } \
206 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \ 376 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
210 } else if (elf->shdr != NULL) { \ 380 } else if (elf->shdr != NULL) { \
211 /* no program headers which means this is prob an object file */ \ 381 /* no program headers which means this is prob an object file */ \
212 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 382 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
213 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 383 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
214 char *str; \ 384 char *str; \
215 if ((void*)strtbl > (void*)elf->data_end) \ 385 if ((void*)strtbl > elf->data_end) \
216 goto skip_this_shdr##B; \ 386 goto skip_this_shdr##B; \
217 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 387 check_flags = SHF_WRITE|SHF_EXECINSTR; \
218 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 388 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
219 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 389 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
220 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 390 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
234 break; \ 404 break; \
235 } \ 405 } \
236 } \ 406 } \
237 skip_this_shdr##B: \ 407 skip_this_shdr##B: \
238 if (!multi_stack) { \ 408 if (!multi_stack) { \
409 if (file_matches_list(elf->filename, qa_execstack)) \
410 return NULL; \
239 *found_phdr = 1; \ 411 *found_phdr = 1; \
240 shown = 1; \ 412 shown = 1; \
241 memcpy(ret, "!WX", 3); \ 413 memcpy(ret, "!WX", 3); \
242 } \ 414 } \
243 } \ 415 } \
248 if (be_wewy_wewy_quiet || (be_quiet && !shown)) 420 if (be_wewy_wewy_quiet || (be_quiet && !shown))
249 return NULL; 421 return NULL;
250 else 422 else
251 return ret; 423 return ret;
252} 424}
425
426/*
427 * See if this ELF contains a DT_TEXTREL tag in any of its
428 * PT_DYNAMIC sections.
429 */
253static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 430static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
254{ 431{
255 static const char *ret = "TEXTREL"; 432 static const char *ret = "TEXTREL";
256 unsigned long i; 433 unsigned long i;
257 434
258 if (!show_textrel && !show_textrels) return NULL; 435 if (!show_textrel && !show_textrels) return NULL;
436
437 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
259 438
260 if (elf->phdr) { 439 if (elf->phdr) {
261#define SHOW_TEXTREL(B) \ 440#define SHOW_TEXTREL(B) \
262 if (elf->elf_class == ELFCLASS ## B) { \ 441 if (elf->elf_class == ELFCLASS ## B) { \
263 Elf ## B ## _Dyn *dyn; \ 442 Elf ## B ## _Dyn *dyn; \
264 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 443 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
265 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 444 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
266 Elf ## B ## _Off offset; \ 445 Elf ## B ## _Off offset; \
267 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 446 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
268 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 447 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
269 offset = EGET(phdr[i].p_offset); \ 448 offset = EGET(phdr[i].p_offset); \
270 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 449 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
271 dyn = DYN ## B (elf->data + offset); \ 450 dyn = DYN ## B (elf->vdata + offset); \
272 while (EGET(dyn->d_tag) != DT_NULL) { \ 451 while (EGET(dyn->d_tag) != DT_NULL) { \
273 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 452 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
274 *found_textrel = 1; \ 453 *found_textrel = 1; \
275 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 454 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
276 return (be_wewy_wewy_quiet ? NULL : ret); \ 455 return (be_wewy_wewy_quiet ? NULL : ret); \
285 if (be_quiet || be_wewy_wewy_quiet) 464 if (be_quiet || be_wewy_wewy_quiet)
286 return NULL; 465 return NULL;
287 else 466 else
288 return " - "; 467 return " - ";
289} 468}
469
470/*
471 * Scan the .text section to see if there are any relocations in it.
472 * Should rewrite this to check PT_LOAD sections that are marked
473 * Executable rather than the section named '.text'.
474 */
290static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 475static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
291{ 476{
292 unsigned long s, r, rmax; 477 unsigned long s, r, rmax;
293 void *symtab_void, *strtab_void, *text_void; 478 void *symtab_void, *strtab_void, *text_void;
294 479
315 Elf ## B ## _Rela *rela; \ 500 Elf ## B ## _Rela *rela; \
316 /* search the section headers for relocations */ \ 501 /* search the section headers for relocations */ \
317 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 502 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
318 uint32_t sh_type = EGET(shdr[s].sh_type); \ 503 uint32_t sh_type = EGET(shdr[s].sh_type); \
319 if (sh_type == SHT_REL) { \ 504 if (sh_type == SHT_REL) { \
320 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 505 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
321 rela = NULL; \ 506 rela = NULL; \
322 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 507 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
323 } else if (sh_type == SHT_RELA) { \ 508 } else if (sh_type == SHT_RELA) { \
324 rel = NULL; \ 509 rel = NULL; \
325 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 510 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
326 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 511 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
327 } else \ 512 } else \
328 continue; \ 513 continue; \
329 /* now see if any of the relocs are in the .text */ \ 514 /* now see if any of the relocs are in the .text */ \
330 for (r = 0; r < rmax; ++r) { \ 515 for (r = 0; r < rmax; ++r) { \
345 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \ 530 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
346 if (be_verbose <= 2) continue; \ 531 if (be_verbose <= 2) continue; \
347 } else \ 532 } else \
348 *found_textrels = 1; \ 533 *found_textrels = 1; \
349 /* locate this relocation symbol name */ \ 534 /* locate this relocation symbol name */ \
350 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 535 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
351 if ((void*)sym > (void*)elf->data_end) { \ 536 if ((void*)sym > elf->data_end) { \
352 warn("%s: corrupt ELF symbol", elf->filename); \ 537 warn("%s: corrupt ELF symbol", elf->filename); \
353 continue; \ 538 continue; \
354 } \ 539 } \
355 sym_max = ELF ## B ## _R_SYM(r_info); \ 540 sym_max = ELF ## B ## _R_SYM(r_info); \
356 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 541 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
359 sym = NULL; \ 544 sym = NULL; \
360 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 545 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
361 /* show the raw details about this reloc */ \ 546 /* show the raw details about this reloc */ \
362 printf(" %s: ", elf->base_filename); \ 547 printf(" %s: ", elf->base_filename); \
363 if (sym && sym->st_name) \ 548 if (sym && sym->st_name) \
364 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 549 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
365 else \ 550 else \
366 printf("(memory/fake?)"); \ 551 printf("(memory/data?)"); \
367 printf(" [0x%lX]", (unsigned long)r_offset); \ 552 printf(" [0x%lX]", (unsigned long)r_offset); \
368 /* now try to find the closest symbol that this rel is probably in */ \ 553 /* now try to find the closest symbol that this rel is probably in */ \
369 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 554 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
370 func = NULL; \ 555 func = NULL; \
371 offset_tmp = 0; \ 556 offset_tmp = 0; \
372 while (sym_max--) { \ 557 while (sym_max--) { \
373 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \ 558 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
374 func = sym; \ 559 func = sym; \
375 offset_tmp = EGET(sym->st_value); \ 560 offset_tmp = EGET(sym->st_value); \
376 } \ 561 } \
377 ++sym; \ 562 ++sym; \
378 } \ 563 } \
379 printf(" in "); \ 564 printf(" in "); \
380 if (func && func->st_name) \ 565 if (func && func->st_name) { \
381 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 566 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
567 if (r_offset > EGET(func->st_size)) \
568 printf("(optimized out: previous %s)", func_name); \
382 else \ 569 else \
383 printf("(NULL: fake?)"); \ 570 printf("%s", func_name); \
571 } else \
572 printf("(optimized out)"); \
384 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 573 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
574 if (be_verbose && has_objdump) { \
575 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
576 char *sysbuf; \
577 size_t syslen; \
578 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
579 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
580 sysbuf = xmalloc(syslen); \
581 if (end_addr < r_offset) \
582 /* not uncommon when things are optimized out */ \
583 end_addr = r_offset + 0x100; \
584 snprintf(sysbuf, syslen, sysfmt, \
585 (unsigned long)offset_tmp, \
586 (unsigned long)end_addr, \
587 elf->filename, \
588 (unsigned long)r_offset); \
589 fflush(stdout); \
590 if (system(sysbuf)) /* don't care */; \
591 fflush(stdout); \
592 free(sysbuf); \
593 } \
385 } \ 594 } \
386 } } 595 } }
387 SHOW_TEXTRELS(32) 596 SHOW_TEXTRELS(32)
388 SHOW_TEXTRELS(64) 597 SHOW_TEXTRELS(64)
389 } 598 }
391 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 600 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
392 601
393 return NULL; 602 return NULL;
394} 603}
395 604
396static void rpath_security_checks(elfobj *, char *, const char *);
397static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type) 605static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
398{ 606{
399 struct stat st; 607 struct stat st;
400 switch (*item) { 608 switch (*item) {
401 case '/': break; 609 case '/': break;
407 warnf("Security problem NULL %s in %s", dt_type, elf->filename); 615 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
408 break; 616 break;
409 case '$': 617 case '$':
410 if (fstat(elf->fd, &st) != -1) 618 if (fstat(elf->fd, &st) != -1)
411 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 619 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
412 warnf("Security problem with %s='%s' in %s with mode set of %o", 620 warnf("Security problem with %s='%s' in %s with mode set of %o",
413 dt_type, item, elf->filename, st.st_mode & 07777); 621 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
414 break; 622 break;
415 default: 623 default:
416 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename); 624 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
417 break; 625 break;
418 } 626 }
419} 627}
420static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 628static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
421{ 629{
422 unsigned long i, s; 630 unsigned long i;
423 char *rpath, *runpath, **r; 631 char *rpath, *runpath, **r;
424 void *strtbl_void; 632 void *strtbl_void;
425 633
426 if (!show_rpath) return; 634 if (!show_rpath) return;
427 635
438 Elf ## B ## _Off offset; \ 646 Elf ## B ## _Off offset; \
439 Elf ## B ## _Xword word; \ 647 Elf ## B ## _Xword word; \
440 /* Scan all the program headers */ \ 648 /* Scan all the program headers */ \
441 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 649 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
442 /* Just scan dynamic headers */ \ 650 /* Just scan dynamic headers */ \
443 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 651 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
444 offset = EGET(phdr[i].p_offset); \ 652 offset = EGET(phdr[i].p_offset); \
445 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 653 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
446 /* Just scan dynamic RPATH/RUNPATH headers */ \ 654 /* Just scan dynamic RPATH/RUNPATH headers */ \
447 dyn = DYN ## B (elf->data + offset); \ 655 dyn = DYN ## B (elf->vdata + offset); \
448 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 656 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
449 if (word == DT_RPATH) { \ 657 if (word == DT_RPATH) { \
450 r = &rpath; \ 658 r = &rpath; \
451 } else if (word == DT_RUNPATH) { \ 659 } else if (word == DT_RUNPATH) { \
452 r = &runpath; \ 660 r = &runpath; \
456 } \ 664 } \
457 /* Verify the memory is somewhat sane */ \ 665 /* Verify the memory is somewhat sane */ \
458 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 666 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
459 if (offset < (Elf ## B ## _Off)elf->len) { \ 667 if (offset < (Elf ## B ## _Off)elf->len) { \
460 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 668 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
461 *r = (char*)(elf->data + offset); \ 669 *r = elf->data + offset; \
462 /* cache the length in case we need to nuke this section later on */ \ 670 /* cache the length in case we need to nuke this section later on */ \
463 if (fix_elf) \ 671 if (fix_elf) \
464 offset = strlen(*r); \ 672 offset = strlen(*r); \
465 /* If quiet, don't output paths in ld.so.conf */ \ 673 /* If quiet, don't output paths in ld.so.conf */ \
466 if (be_quiet) { \ 674 if (be_quiet) { \
472 /* scan each path in : delimited list */ \ 680 /* scan each path in : delimited list */ \
473 while (start) { \ 681 while (start) { \
474 rpath_security_checks(elf, start, get_elfdtype(word)); \ 682 rpath_security_checks(elf, start, get_elfdtype(word)); \
475 end = strchr(start, ':'); \ 683 end = strchr(start, ':'); \
476 len = (end ? abs(end - start) : strlen(start)); \ 684 len = (end ? abs(end - start) : strlen(start)); \
477 if (use_ldcache) \ 685 if (use_ldcache) { \
478 for (s = 0; ldpaths[s]; ++s) \ 686 size_t n; \
687 const char *ldpath; \
688 array_for_each(ldpaths, n, ldpath) \
479 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 689 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
480 *r = end; \ 690 *r = end; \
481 /* corner case ... if RPATH reads "/usr/lib:", we want \ 691 /* corner case ... if RPATH reads "/usr/lib:", we want \
482 * to show ':' rather than '' */ \ 692 * to show ':' rather than '' */ \
483 if (end && end[1] != '\0') \ 693 if (end && end[1] != '\0') \
484 (*r)++; \ 694 (*r)++; \
485 break; \ 695 break; \
486 } \ 696 } \
697 } \
487 if (!*r || !end) \ 698 if (!*r || !end) \
488 break; \ 699 break; \
489 else \ 700 else \
490 start = start + len + 1; \ 701 start = start + len + 1; \
491 } \ 702 } \
576#define FLAG_S390_LIB64 0x0400 787#define FLAG_S390_LIB64 0x0400
577#define FLAG_POWERPC_LIB64 0x0500 788#define FLAG_POWERPC_LIB64 0x0500
578#define FLAG_MIPS64_LIBN32 0x0600 789#define FLAG_MIPS64_LIBN32 0x0600
579#define FLAG_MIPS64_LIBN64 0x0700 790#define FLAG_MIPS64_LIBN64 0x0700
580 791
581static char *lookup_cache_lib(elfobj *, char *); 792#if defined(__GLIBC__) || defined(__UCLIBC__)
793
582static char *lookup_cache_lib(elfobj *elf, char *fname) 794static char *lookup_cache_lib(elfobj *elf, const char *fname)
583{ 795{
584 int fd = 0; 796 int fd;
585 char *strs; 797 char *strs;
586 static char buf[__PAX_UTILS_PATH_MAX] = ""; 798 static char buf[__PAX_UTILS_PATH_MAX] = "";
587 const char *cachefile = "/etc/ld.so.cache"; 799 const char *cachefile = root_rel_path("/etc/ld.so.cache");
588 struct stat st; 800 struct stat st;
589 801
590 typedef struct { 802 typedef struct {
591 char magic[LDSO_CACHE_MAGIC_LEN]; 803 char magic[LDSO_CACHE_MAGIC_LEN];
592 char version[LDSO_CACHE_VER_LEN]; 804 char version[LDSO_CACHE_VER_LEN];
602 libentry_t *libent; 814 libentry_t *libent;
603 815
604 if (fname == NULL) 816 if (fname == NULL)
605 return NULL; 817 return NULL;
606 818
607 if (ldcache == 0) { 819 if (ldcache == NULL) {
608 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1) 820 if (fstatat(root_fd, cachefile, &st, 0))
821 return NULL;
822
823 fd = openat(root_fd, cachefile, O_RDONLY);
824 if (fd == -1)
609 return NULL; 825 return NULL;
610 826
611 /* cache these values so we only map/unmap the cache file once */ 827 /* cache these values so we only map/unmap the cache file once */
612 ldcache_size = st.st_size; 828 ldcache_size = st.st_size;
613 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0); 829 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
614
615 close(fd); 830 close(fd);
616 831
617 if (ldcache == (caddr_t)-1) { 832 if (ldcache == MAP_FAILED) {
618 ldcache = 0; 833 ldcache = NULL;
619 return NULL; 834 return NULL;
620 } 835 }
621 836
622 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 837 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
838 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
839 {
840 munmap(ldcache, ldcache_size);
841 ldcache = NULL;
623 return NULL; 842 return NULL;
624 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
625 return NULL;
626 } 843 }
844 } else
845 header = ldcache;
627 846
628 header = (header_t *) ldcache;
629 libent = (libentry_t *) (ldcache + sizeof(header_t)); 847 libent = ldcache + sizeof(header_t);
630 strs = (char *) &libent[header->nlibs]; 848 strs = (char *) &libent[header->nlibs];
631 849
632 for (fd = 0; fd < header->nlibs; fd++) { 850 for (fd = 0; fd < header->nlibs; ++fd) {
633 /* this should be more fine grained, but for now we assume that 851 /* This should be more fine grained, but for now we assume that
634 * diff arches will not be cached together. and we ignore the 852 * diff arches will not be cached together, and we ignore the
635 * the different multilib mips cases. */ 853 * the different multilib mips cases.
854 */
636 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK)) 855 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
637 continue; 856 continue;
638 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK)) 857 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
639 continue; 858 continue;
640 859
641 if (strcmp(fname, strs + libent[fd].sooffset) != 0) 860 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
642 continue; 861 continue;
862
863 /* Return first hit because that is how the ldso rolls */
643 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 864 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
865 break;
644 } 866 }
867
645 return buf; 868 return buf;
646} 869}
647 870
871#elif defined(__NetBSD__)
872static char *lookup_cache_lib(elfobj *elf, const char *fname)
873{
874 static char buf[__PAX_UTILS_PATH_MAX] = "";
875 static struct stat st;
876 size_t n;
877 char *ldpath;
878
879 array_for_each(ldpath, n, ldpath) {
880 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
881 continue; /* if the pathname is too long, or something went wrong, ignore */
882
883 if (stat(buf, &st) != 0)
884 continue; /* if the lib doesn't exist in *ldpath, look further */
885
886 /* NetBSD doesn't actually do sanity checks, it just loads the file
887 * and if that doesn't work, continues looking in other directories.
888 * This cannot easily be safely emulated, unfortunately. For now,
889 * just assume that if it exists, it's a valid library. */
890
891 return buf;
892 }
893
894 /* not found in any path */
895 return NULL;
896}
897#else
898#ifdef __ELF__
899#warning Cache support not implemented for your target
900#endif
901static char *lookup_cache_lib(elfobj *elf, const char *fname)
902{
903 return NULL;
904}
905#endif
906
907static char *lookup_config_lib(elfobj *elf, char *fname)
908{
909 static char buf[__PAX_UTILS_PATH_MAX] = "";
910 const char *ldpath;
911 size_t n;
912
913 array_for_each(ldpaths, n, ldpath) {
914 snprintf(buf, sizeof(buf), "%s/%s", root_rel_path(ldpath), fname);
915 if (faccessat(root_fd, buf, F_OK, AT_SYMLINK_NOFOLLOW) == 0)
916 return buf;
917 }
918
919 return NULL;
920}
648 921
649static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 922static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
650{ 923{
651 unsigned long i; 924 unsigned long i;
652 char *needed; 925 char *needed;
653 void *strtbl_void; 926 void *strtbl_void;
654 char *p; 927 char *p;
655 928
929 /*
930 * -n -> op==0 -> print all
931 * -N -> op==1 -> print requested
932 */
656 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 933 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
934 return NULL;
657 935
658 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 936 strtbl_void = elf_findsecbyname(elf, ".dynstr");
659 937
660 if (elf->phdr && strtbl_void) { 938 if (elf->phdr && strtbl_void) {
661#define SHOW_NEEDED(B) \ 939#define SHOW_NEEDED(B) \
663 Elf ## B ## _Dyn *dyn; \ 941 Elf ## B ## _Dyn *dyn; \
664 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 942 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
665 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 943 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
666 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 944 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
667 Elf ## B ## _Off offset; \ 945 Elf ## B ## _Off offset; \
946 size_t matched = 0; \
947 /* Walk all the program headers to find the PT_DYNAMIC */ \
668 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 948 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
669 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 949 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
950 continue; \
670 offset = EGET(phdr[i].p_offset); \ 951 offset = EGET(phdr[i].p_offset); \
671 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 952 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
953 continue; \
954 /* Walk all the dynamic tags to find NEEDED entries */ \
672 dyn = DYN ## B (elf->data + offset); \ 955 dyn = DYN ## B (elf->vdata + offset); \
673 while (EGET(dyn->d_tag) != DT_NULL) { \ 956 while (EGET(dyn->d_tag) != DT_NULL) { \
674 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 957 if (EGET(dyn->d_tag) == DT_NEEDED) { \
675 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 958 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
676 if (offset >= (Elf ## B ## _Off)elf->len) { \ 959 if (offset >= (Elf ## B ## _Off)elf->len) { \
677 ++dyn; \ 960 ++dyn; \
678 continue; \ 961 continue; \
679 } \ 962 } \
680 needed = (char*)(elf->data + offset); \ 963 needed = elf->data + offset; \
681 if (op == 0) { \ 964 if (op == 0) { \
965 /* -n -> print all entries */ \
682 if (!be_wewy_wewy_quiet) { \ 966 if (!be_wewy_wewy_quiet) { \
683 if (*found_needed) xchrcat(ret, ',', ret_len); \ 967 if (*found_needed) xchrcat(ret, ',', ret_len); \
684 if (use_ldcache) \ 968 if (use_ldpath) { \
969 if ((p = lookup_config_lib(elf, needed)) != NULL) \
970 needed = p; \
971 } else if (use_ldcache) { \
685 if ((p = lookup_cache_lib(elf, needed)) != NULL) \ 972 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
686 needed = p; \ 973 needed = p; \
974 } \
687 xstrcat(ret, needed, ret_len); \ 975 xstrcat(ret, needed, ret_len); \
688 } \ 976 } \
689 *found_needed = 1; \ 977 *found_needed = 1; \
690 } else { \ 978 } else { \
691 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 979 /* -N -> print matching entries */ \
980 size_t n; \
981 const char *find_lib_name; \
982 \
983 array_for_each(find_lib_arr, n, find_lib_name) { \
984 int invert = 1; \
985 if (find_lib_name[0] == '!') \
986 invert = 0, ++find_lib_name; \
987 if (!strcmp(find_lib_name, needed) == invert) \
988 ++matched; \
989 } \
990 \
991 if (matched == array_cnt(find_lib_arr)) { \
692 *found_lib = 1; \ 992 *found_lib = 1; \
693 return (be_wewy_wewy_quiet ? NULL : needed); \ 993 return (be_wewy_wewy_quiet ? NULL : find_lib); \
694 } \ 994 } \
695 } \ 995 } \
696 } \ 996 } \
697 ++dyn; \ 997 ++dyn; \
698 } \ 998 } \
727} 1027}
728static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1028static char *scanelf_file_bind(elfobj *elf, char *found_bind)
729{ 1029{
730 unsigned long i; 1030 unsigned long i;
731 struct stat s; 1031 struct stat s;
1032 char dynamic = 0;
732 1033
733 if (!show_bind) return NULL; 1034 if (!show_bind) return NULL;
734 if (!elf->phdr) return NULL; 1035 if (!elf->phdr) return NULL;
735 1036
736#define SHOW_BIND(B) \ 1037#define SHOW_BIND(B) \
738 Elf ## B ## _Dyn *dyn; \ 1039 Elf ## B ## _Dyn *dyn; \
739 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1040 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
740 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1041 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
741 Elf ## B ## _Off offset; \ 1042 Elf ## B ## _Off offset; \
742 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1043 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
743 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1044 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
1045 dynamic = 1; \
744 offset = EGET(phdr[i].p_offset); \ 1046 offset = EGET(phdr[i].p_offset); \
745 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1047 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
746 dyn = DYN ## B (elf->data + offset); \ 1048 dyn = DYN ## B (elf->vdata + offset); \
747 while (EGET(dyn->d_tag) != DT_NULL) { \ 1049 while (EGET(dyn->d_tag) != DT_NULL) { \
748 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1050 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
749 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 1051 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
750 { \ 1052 { \
751 if (be_quiet) return NULL; \ 1053 if (be_quiet) return NULL; \
759 SHOW_BIND(32) 1061 SHOW_BIND(32)
760 SHOW_BIND(64) 1062 SHOW_BIND(64)
761 1063
762 if (be_wewy_wewy_quiet) return NULL; 1064 if (be_wewy_wewy_quiet) return NULL;
763 1065
1066 /* don't output anything if quiet mode and the ELF is static or not setuid */
764 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 1067 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
765 return NULL; 1068 return NULL;
766 } else { 1069 } else {
767 *found_bind = 1; 1070 *found_bind = 1;
768 return (char *) "LAZY"; 1071 return (char *)(dynamic ? "LAZY" : "STATIC");
769 } 1072 }
770} 1073}
771static char *scanelf_file_soname(elfobj *elf, char *found_soname) 1074static char *scanelf_file_soname(elfobj *elf, char *found_soname)
772{ 1075{
773 unsigned long i; 1076 unsigned long i;
785 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1088 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
786 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1089 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
787 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1090 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
788 Elf ## B ## _Off offset; \ 1091 Elf ## B ## _Off offset; \
789 /* only look for soname in shared objects */ \ 1092 /* only look for soname in shared objects */ \
790 if (ehdr->e_type != ET_DYN) \ 1093 if (EGET(ehdr->e_type) != ET_DYN) \
791 return NULL; \ 1094 return NULL; \
792 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1095 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
793 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1096 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
794 offset = EGET(phdr[i].p_offset); \ 1097 offset = EGET(phdr[i].p_offset); \
795 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1098 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
796 dyn = DYN ## B (elf->data + offset); \ 1099 dyn = DYN ## B (elf->vdata + offset); \
797 while (EGET(dyn->d_tag) != DT_NULL) { \ 1100 while (EGET(dyn->d_tag) != DT_NULL) { \
798 if (EGET(dyn->d_tag) == DT_SONAME) { \ 1101 if (EGET(dyn->d_tag) == DT_SONAME) { \
799 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1102 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
800 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1103 if (offset >= (Elf ## B ## _Off)elf->len) { \
801 ++dyn; \ 1104 ++dyn; \
802 continue; \ 1105 continue; \
803 } \ 1106 } \
804 soname = (char*)(elf->data + offset); \ 1107 soname = elf->data + offset; \
805 *found_soname = 1; \ 1108 *found_soname = 1; \
806 return (be_wewy_wewy_quiet ? NULL : soname); \ 1109 return (be_wewy_wewy_quiet ? NULL : soname); \
807 } \ 1110 } \
808 ++dyn; \ 1111 ++dyn; \
809 } \ 1112 } \
812 SHOW_SONAME(64) 1115 SHOW_SONAME(64)
813 } 1116 }
814 1117
815 return NULL; 1118 return NULL;
816} 1119}
1120
1121/*
1122 * We support the symbol form:
1123 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
1124 * If the symbol name is empty, then all symbols are matched.
1125 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1126 * Do not rely on this output format at all.
1127 * Otherwise the symbol name is used to search (either regex or string compare).
1128 * If the first char of the symbol name is a plus ("+"), then only match
1129 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1130 * Putting modifiers in between the percent signs allows for more in depth
1131 * filters. There are groups of modifiers. If you don't specify a member
1132 * of a group, then all types in that group are matched. The current
1133 * groups and their types are:
1134 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1135 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1136 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1137 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1138 * You can search for multiple symbols at once by seperating with a comma (",").
1139 *
1140 * Some examples:
1141 * ELFs with a weak function "foo":
1142 * scanelf -s %wf%foo <ELFs>
1143 * ELFs that define the symbol "main":
1144 * scanelf -s +main <ELFs>
1145 * scanelf -s %d%main <ELFs>
1146 * ELFs that refer to the undefined symbol "brk":
1147 * scanelf -s -brk <ELFs>
1148 * scanelf -s %u%brk <ELFs>
1149 * All global defined objects in an ELF:
1150 * scanelf -s %ogd% <ELF>
1151 */
1152static void
1153scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1154 unsigned int stt, unsigned int stb, unsigned int shn, unsigned long size)
1155{
1156 const char *this_sym;
1157 size_t n;
1158
1159 array_for_each(find_sym_arr, n, this_sym) {
1160 bool inc_notype, inc_object, inc_func, inc_file,
1161 inc_local, inc_global, inc_weak,
1162 inc_def, inc_undef, inc_abs, inc_common;
1163
1164 /* symbol selection! */
1165 inc_notype = inc_object = inc_func = inc_file = \
1166 inc_local = inc_global = inc_weak = \
1167 inc_def = inc_undef = inc_abs = inc_common = \
1168 (*this_sym != '%');
1169
1170 /* parse the contents of %...% */
1171 if (!inc_notype) {
1172 while (*(this_sym++)) {
1173 if (*this_sym == '%') {
1174 ++this_sym;
1175 break;
1176 }
1177 switch (*this_sym) {
1178 case 'n': inc_notype = true; break;
1179 case 'o': inc_object = true; break;
1180 case 'f': inc_func = true; break;
1181 case 'F': inc_file = true; break;
1182 case 'l': inc_local = true; break;
1183 case 'g': inc_global = true; break;
1184 case 'w': inc_weak = true; break;
1185 case 'd': inc_def = true; break;
1186 case 'u': inc_undef = true; break;
1187 case 'a': inc_abs = true; break;
1188 case 'c': inc_common = true; break;
1189 default: err("invalid symbol selector '%c'", *this_sym);
1190 }
1191 }
1192
1193 /* If no types are matched, not match all */
1194 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1195 inc_notype = inc_object = inc_func = inc_file = true;
1196 if (!inc_local && !inc_global && !inc_weak)
1197 inc_local = inc_global = inc_weak = true;
1198 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1199 inc_def = inc_undef = inc_abs = inc_common = true;
1200
1201 /* backwards compat for defined/undefined short hand */
1202 } else if (*this_sym == '+') {
1203 inc_undef = false;
1204 ++this_sym;
1205 } else if (*this_sym == '-') {
1206 inc_def = inc_abs = inc_common = false;
1207 ++this_sym;
1208 }
1209
1210 /* filter symbols */
1211 if ((!inc_notype && stt == STT_NOTYPE) || \
1212 (!inc_object && stt == STT_OBJECT) || \
1213 (!inc_func && stt == STT_FUNC ) || \
1214 (!inc_file && stt == STT_FILE ) || \
1215 (!inc_local && stb == STB_LOCAL ) || \
1216 (!inc_global && stb == STB_GLOBAL) || \
1217 (!inc_weak && stb == STB_WEAK ) || \
1218 (!inc_def && shn && shn < SHN_LORESERVE) || \
1219 (!inc_undef && shn == SHN_UNDEF ) || \
1220 (!inc_abs && shn == SHN_ABS ) || \
1221 (!inc_common && shn == SHN_COMMON))
1222 continue;
1223
1224 if (*this_sym == '*') {
1225 /* a "*" symbol gets you debug output */
1226 printf("%s(%s) %5lX %15s %15s %15s %s\n",
1227 ((*found_sym == 0) ? "\n\t" : "\t"),
1228 elf->base_filename,
1229 size,
1230 get_elfstttype(stt),
1231 get_elfstbtype(stb),
1232 get_elfshntype(shn),
1233 symname);
1234 goto matched;
1235
1236 } else {
1237 if (g_match) {
1238 /* regex match the symbol */
1239 if (regexec(find_sym_regex_arr->eles[n], symname, 0, NULL, 0) == REG_NOMATCH)
1240 continue;
1241
1242 } else if (*this_sym) {
1243 /* give empty symbols a "pass", else do a normal compare */
1244 const size_t len = strlen(this_sym);
1245 if (!(strncmp(this_sym, symname, len) == 0 &&
1246 /* Accept unversioned symbol names */
1247 (symname[len] == '\0' || symname[len] == '@')))
1248 continue;
1249 }
1250
1251 if (be_semi_verbose) {
1252 char buf[1024];
1253 snprintf(buf, sizeof(buf), "%lX %s %s",
1254 size,
1255 get_elfstttype(stt),
1256 this_sym);
1257 *ret = xstrdup(buf);
1258 } else {
1259 if (*ret) xchrcat(ret, ',', ret_len);
1260 xstrcat(ret, symname, ret_len);
1261 }
1262
1263 goto matched;
1264 }
1265 }
1266
1267 return;
1268
1269 matched:
1270 *found_sym = 1;
1271}
1272
817static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1273static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
818{ 1274{
819 unsigned long i;
820 char *ret; 1275 char *ret;
821 void *symtab_void, *strtab_void; 1276 void *symtab_void, *strtab_void;
822 1277
823 if (!find_sym) return NULL; 1278 if (!find_sym) return NULL;
824 ret = find_sym; 1279 ret = NULL;
825 1280
826 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1281 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
827 1282
828 if (symtab_void && strtab_void) { 1283 if (symtab_void && strtab_void) {
829#define FIND_SYM(B) \ 1284#define FIND_SYM(B) \
830 if (elf->elf_class == ELFCLASS ## B) { \ 1285 if (elf->elf_class == ELFCLASS ## B) { \
831 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1286 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
832 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1287 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
833 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1288 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
834 unsigned long cnt = EGET(symtab->sh_entsize); \ 1289 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
835 char *symname; \ 1290 char *symname; \
1291 size_t ret_len = 0; \
836 if (cnt) \ 1292 if (cnt) \
837 cnt = EGET(symtab->sh_size) / cnt; \ 1293 cnt = EGET(symtab->sh_size) / cnt; \
838 for (i = 0; i < cnt; ++i) { \ 1294 for (i = 0; i < cnt; ++i) { \
1295 if ((void*)sym > elf->data_end) { \
1296 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1297 goto break_out; \
1298 } \
839 if (sym->st_name) { \ 1299 if (sym->st_name) { \
1300 /* make sure the symbol name is in acceptable memory range */ \
840 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1301 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
841 if ((void*)symname > (void*)elf->data_end) { \ 1302 if ((void*)symname > elf->data_end) { \
842 warnf("%s: corrupt ELF symbols", elf->filename); \ 1303 warnf("%s: corrupt ELF symbols", elf->filename); \
1304 ++sym; \
843 continue; \ 1305 continue; \
844 } \ 1306 } \
845 if (*find_sym == '*') { \ 1307 scanelf_match_symname(elf, found_sym, \
846 printf("%s(%s) %5lX %15s %s\n", \ 1308 &ret, &ret_len, symname, \
847 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1309 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
848 elf->base_filename, \ 1310 ELF##B##_ST_BIND(EGET(sym->st_info)), \
849 (unsigned long)sym->st_size, \ 1311 EGET(sym->st_shndx), \
850 get_elfstttype(sym->st_info), \ 1312 /* st_size can be 64bit, but no one is really that big, so screw em */ \
851 symname); \ 1313 EGET(sym->st_size)); \
852 *found_sym = 1; \
853 } else { \
854 char *this_sym, *next_sym; \
855 this_sym = find_sym; \
856 do { \
857 next_sym = strchr(this_sym, ','); \
858 if (next_sym == NULL) \
859 next_sym = this_sym + strlen(this_sym); \
860 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \
861 (strcmp(symname, versioned_symname) == 0)) { \
862 ret = this_sym; \
863 (*found_sym)++; \
864 goto break_out; \
865 } \
866 this_sym = next_sym + 1; \
867 } while (*next_sym != '\0'); \
868 } \
869 } \ 1314 } \
870 ++sym; \ 1315 ++sym; \
871 } } 1316 } \
1317 }
872 FIND_SYM(32) 1318 FIND_SYM(32)
873 FIND_SYM(64) 1319 FIND_SYM(64)
874 } 1320 }
875 1321
876break_out: 1322break_out:
879 if (*find_sym != '*' && *found_sym) 1325 if (*find_sym != '*' && *found_sym)
880 return ret; 1326 return ret;
881 if (be_quiet) 1327 if (be_quiet)
882 return NULL; 1328 return NULL;
883 else 1329 else
884 return (char *)" - "; 1330 return " - ";
885} 1331}
886 1332
887
888static char *scanelf_file_sections(elfobj *elf, char *found_section) 1333static const char *scanelf_file_sections(elfobj *elf, char *found_section)
889{ 1334{
890 if (!find_section) 1335 if (!find_section)
891 return NULL; 1336 return NULL;
892 1337
893#define FIND_SECTION(B) \ 1338#define FIND_SECTION(B) \
894 if (elf->elf_class == ELFCLASS ## B) { \ 1339 if (elf->elf_class == ELFCLASS ## B) { \
1340 size_t matched, n; \
1341 int invert; \
1342 const char *section_name; \
895 Elf ## B ## _Shdr *section; \ 1343 Elf ## B ## _Shdr *section; \
1344 \
1345 matched = 0; \
1346 array_for_each(find_section_arr, n, section_name) { \
1347 invert = (*section_name == '!' ? 1 : 0); \
896 section = SHDR ## B (elf_findsecbyname(elf, find_section)); \ 1348 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
897 if (section != NULL) \ 1349 if ((section == NULL && invert) || (section != NULL && !invert)) \
1350 ++matched; \
1351 } \
1352 \
1353 if (matched == array_cnt(find_section_arr)) \
898 *found_section = 1; \ 1354 *found_section = 1; \
899 } 1355 }
900 FIND_SECTION(32) 1356 FIND_SECTION(32)
901 FIND_SECTION(64) 1357 FIND_SECTION(64)
902 1358
903
904 if (be_wewy_wewy_quiet) return NULL; 1359 if (be_wewy_wewy_quiet)
1360 return NULL;
905 1361
906 if (*found_section) 1362 if (*found_section)
907 return find_section; 1363 return find_section;
908 1364
909 if (be_quiet) 1365 if (be_quiet)
910 return NULL; 1366 return NULL;
911 else 1367 else
912 return (char *)" - "; 1368 return " - ";
913} 1369}
914 1370
915/* scan an elf file and show all the fun stuff */ 1371/* scan an elf file and show all the fun stuff */
916#define prints(str) write(fileno(stdout), str, strlen(str)) 1372#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
917static int scanelf_elfobj(elfobj *elf) 1373static int scanelf_elfobj(elfobj *elf)
918{ 1374{
919 unsigned long i; 1375 unsigned long i;
920 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1376 char found_pax, found_phdr, found_relro, found_load, found_textrel,
921 found_rpath, found_needed, found_interp, found_bind, found_soname, 1377 found_rpath, found_needed, found_interp, found_bind, found_soname,
922 found_sym, found_lib, found_file, found_textrels, found_section; 1378 found_sym, found_lib, found_file, found_textrels, found_section;
923 static char *out_buffer = NULL; 1379 static char *out_buffer = NULL;
924 static size_t out_len; 1380 static size_t out_len;
925 1381
926 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1382 found_pax = found_phdr = found_relro = found_load = found_textrel = \
935 printf("%s: scanning file\n", elf->filename); 1391 printf("%s: scanning file\n", elf->filename);
936 1392
937 /* init output buffer */ 1393 /* init output buffer */
938 if (!out_buffer) { 1394 if (!out_buffer) {
939 out_len = sizeof(char) * 80; 1395 out_len = sizeof(char) * 80;
940 out_buffer = (char*)xmalloc(out_len); 1396 out_buffer = xmalloc(out_len);
941 } 1397 }
942 *out_buffer = '\0'; 1398 *out_buffer = '\0';
943 1399
944 /* show the header */ 1400 /* show the header */
945 if (!be_quiet && show_banner) { 1401 if (!be_quiet && show_banner) {
946 for (i = 0; out_format[i]; ++i) { 1402 for (i = 0; out_format[i]; ++i) {
947 if (!IS_MODIFIER(out_format[i])) continue; 1403 if (!IS_MODIFIER(out_format[i])) continue;
948 1404
949 switch (out_format[++i]) { 1405 switch (out_format[++i]) {
1406 case '+': break;
950 case '%': break; 1407 case '%': break;
951 case '#': break; 1408 case '#': break;
952 case 'F': 1409 case 'F':
953 case 'p': 1410 case 'p':
954 case 'f': prints("FILE "); found_file = 1; break; 1411 case 'f': prints("FILE "); found_file = 1; break;
955 case 'o': prints(" TYPE "); break; 1412 case 'o': prints(" TYPE "); break;
956 case 'x': prints(" PAX "); break; 1413 case 'x': prints(" PAX "); break;
957 case 'e': prints("STK/REL/PTL "); break; 1414 case 'e': prints("STK/REL/PTL "); break;
958 case 't': prints("TEXTREL "); break; 1415 case 't': prints("TEXTREL "); break;
959 case 'r': prints("RPATH "); break; 1416 case 'r': prints("RPATH "); break;
1417 case 'M': prints("CLASS "); break;
1418 case 'l':
960 case 'n': prints("NEEDED "); break; 1419 case 'n': prints("NEEDED "); break;
961 case 'i': prints("INTERP "); break; 1420 case 'i': prints("INTERP "); break;
962 case 'b': prints("BIND "); break; 1421 case 'b': prints("BIND "); break;
1422 case 'Z': prints("SIZE "); break;
963 case 'S': prints("SONAME "); break; 1423 case 'S': prints("SONAME "); break;
964 case 's': prints("SYM "); break; 1424 case 's': prints("SYM "); break;
965 case 'N': prints("LIB "); break; 1425 case 'N': prints("LIB "); break;
966 case 'T': prints("TEXTRELS "); break; 1426 case 'T': prints("TEXTRELS "); break;
967 case 'k': prints("SECTION "); break; 1427 case 'k': prints("SECTION "); break;
1428 case 'a': prints("ARCH "); break;
1429 case 'I': prints("OSABI "); break;
1430 case 'Y': prints("EABI "); break;
1431 case 'O': prints("PERM "); break;
1432 case 'D': prints("ENDIAN "); break;
968 default: warnf("'%c' has no title ?", out_format[i]); 1433 default: warnf("'%c' has no title ?", out_format[i]);
969 } 1434 }
970 } 1435 }
971 if (!found_file) prints("FILE "); 1436 if (!found_file) prints("FILE ");
972 prints("\n"); 1437 prints("\n");
976 1441
977 /* dump all the good stuff */ 1442 /* dump all the good stuff */
978 for (i = 0; out_format[i]; ++i) { 1443 for (i = 0; out_format[i]; ++i) {
979 const char *out; 1444 const char *out;
980 const char *tmp; 1445 const char *tmp;
981 1446 static char ubuf[sizeof(unsigned long)*2];
982 if (!IS_MODIFIER(out_format[i])) { 1447 if (!IS_MODIFIER(out_format[i])) {
983 xchrcat(&out_buffer, out_format[i], &out_len); 1448 xchrcat(&out_buffer, out_format[i], &out_len);
984 continue; 1449 continue;
985 } 1450 }
986 1451
987 out = NULL; 1452 out = NULL;
988 be_wewy_wewy_quiet = (out_format[i] == '#'); 1453 be_wewy_wewy_quiet = (out_format[i] == '#');
1454 be_semi_verbose = (out_format[i] == '+');
989 switch (out_format[++i]) { 1455 switch (out_format[++i]) {
1456 case '+':
990 case '%': 1457 case '%':
991 case '#': 1458 case '#':
992 xchrcat(&out_buffer, out_format[i], &out_len); break; 1459 xchrcat(&out_buffer, out_format[i], &out_len); break;
993 case 'F': 1460 case 'F':
994 found_file = 1; 1461 found_file = 1;
1020 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1487 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
1021 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1488 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
1022 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1489 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
1023 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1490 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
1024 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1491 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1492 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1493 case 'D': out = get_endian(elf); break;
1494 case 'O': out = strfileperms(elf->filename); break;
1025 case 'n': 1495 case 'n':
1026 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1496 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
1027 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1497 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
1028 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1498 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
1029 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1499 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
1030 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1500 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1031 case 'k': out = scanelf_file_sections(elf, &found_section); break; 1501 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1502 case 'a': out = get_elfemtype(elf); break;
1503 case 'I': out = get_elfosabi(elf); break;
1504 case 'Y': out = get_elf_eabi(elf); break;
1505 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
1032 default: warnf("'%c' has no scan code?", out_format[i]); 1506 default: warnf("'%c' has no scan code?", out_format[i]);
1033 } 1507 }
1034 if (out) { 1508 if (out)
1035 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
1036 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
1037 xstrncat(&out_buffer, out, &out_len, (tmp-out));
1038 else
1039 xstrcat(&out_buffer, out, &out_len); 1509 xstrcat(&out_buffer, out, &out_len);
1040 }
1041 } 1510 }
1042 1511
1043#define FOUND_SOMETHING() \ 1512#define FOUND_SOMETHING() \
1044 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1513 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
1045 found_rpath || found_needed || found_interp || found_bind || \ 1514 found_rpath || found_needed || found_interp || found_bind || \
1064 elfobj *elf; 1533 elfobj *elf;
1065 1534
1066 /* verify this is real ELF */ 1535 /* verify this is real ELF */
1067 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) { 1536 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1068 if (be_verbose > 2) printf("%s: not an ELF\n", filename); 1537 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1069 return ret; 1538 return 2;
1070 } 1539 }
1071 switch (match_bits) { 1540 switch (match_bits) {
1072 case 32: 1541 case 32:
1073 if (elf->elf_class != ELFCLASS32) 1542 if (elf->elf_class != ELFCLASS32)
1074 goto label_done; 1543 goto label_done;
1077 if (elf->elf_class != ELFCLASS64) 1546 if (elf->elf_class != ELFCLASS64)
1078 goto label_done; 1547 goto label_done;
1079 break; 1548 break;
1080 default: break; 1549 default: break;
1081 } 1550 }
1082 if (strlen(match_etypes)) { 1551 if (match_etypes) {
1083 char sbuf[126]; 1552 char sbuf[126];
1084 strncpy(sbuf, match_etypes, sizeof(sbuf)); 1553 strncpy(sbuf, match_etypes, sizeof(sbuf));
1085 if (strchr(match_etypes, ',') != NULL) { 1554 if (strchr(match_etypes, ',') != NULL) {
1086 char *p; 1555 char *p;
1087 while((p = strrchr(sbuf, ',')) != NULL) { 1556 while ((p = strrchr(sbuf, ',')) != NULL) {
1088 *p = 0; 1557 *p = 0;
1089 if (atoi(p+1) == get_etype(elf)) 1558 if (etype_lookup(p+1) == get_etype(elf))
1090 goto label_ret; 1559 goto label_ret;
1091 } 1560 }
1092 } 1561 }
1093 if (atoi(sbuf) != get_etype(elf)) 1562 if (etype_lookup(sbuf) != get_etype(elf))
1094 goto label_done; 1563 goto label_done;
1095 } 1564 }
1096 1565
1097label_ret: 1566label_ret:
1098 ret = scanelf_elfobj(elf); 1567 ret = scanelf_elfobj(elf);
1112 1581
1113 ar = ar_open_fd(filename, fd); 1582 ar = ar_open_fd(filename, fd);
1114 if (ar == NULL) 1583 if (ar == NULL)
1115 return 1; 1584 return 1;
1116 1585
1117 ar_buffer = (char*)mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0); 1586 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1118 while ((m=ar_next(ar)) != NULL) { 1587 while ((m = ar_next(ar)) != NULL) {
1588 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1589 if (cur_pos == -1)
1590 errp("lseek() failed");
1119 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size); 1591 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1120 if (elf) { 1592 if (elf) {
1121 scanelf_elfobj(elf); 1593 scanelf_elfobj(elf);
1122 unreadelf(elf); 1594 unreadelf(elf);
1123 } 1595 }
1124 } 1596 }
1125 munmap(ar_buffer, len); 1597 munmap(ar_buffer, len);
1126 1598
1127 return 0; 1599 return 0;
1128} 1600}
1129/* scan a file which may be an elf or an archive or some other magical beast */ 1601/* scan a file which may be an elf or an archive or some other magical beast */
1130static void scanelf_file(const char *filename) 1602static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1131{ 1603{
1604 const struct stat *st = st_cache;
1132 struct stat st; 1605 struct stat symlink_st;
1133 int fd; 1606 int fd;
1134 1607
1135 /* make sure 'filename' exists */
1136 if (lstat(filename, &st) == -1) {
1137 if (be_verbose > 2) printf("%s: does not exist\n", filename);
1138 return;
1139 }
1140
1141 /* always handle regular files and handle symlinked files if no -y */ 1608 /* always handle regular files and handle symlinked files if no -y */
1142 if (S_ISLNK(st.st_mode)) { 1609 if (S_ISLNK(st->st_mode)) {
1143 if (!scan_symlink) return; 1610 if (!scan_symlink)
1144 stat(filename, &st); 1611 return 1;
1612 fstatat(dir_fd, filename, &symlink_st, 0);
1613 st = &symlink_st;
1145 } 1614 }
1615
1146 if (!S_ISREG(st.st_mode)) { 1616 if (!S_ISREG(st->st_mode)) {
1147 if (be_verbose > 2) printf("%s: skipping non-file\n", filename); 1617 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1148 return; 1618 return 1;
1149 } 1619 }
1150 1620
1151 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1) 1621 if (match_perms) {
1622 if ((st->st_mode | match_perms) != st->st_mode)
1623 return 1;
1624 }
1625 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1626 if (fd == -1) {
1627 if (fix_elf && errno == ETXTBSY)
1628 warnp("%s: could not fix", filename);
1629 else if (be_verbose > 2)
1630 printf("%s: skipping file: %s\n", filename, strerror(errno));
1152 return; 1631 return 1;
1632 }
1153 1633
1154 if (scanelf_elf(filename, fd, st.st_size) == 1 && scan_archives) 1634 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1155 /* if it isn't an ELF, maybe it's an .a archive */ 1635 /* if it isn't an ELF, maybe it's an .a archive */
1636 if (scan_archives)
1156 scanelf_archive(filename, fd, st.st_size); 1637 scanelf_archive(filename, fd, st->st_size);
1157 1638
1639 /*
1640 * unreadelf() implicitly closes its fd, so only close it
1641 * when we are returning it in the non-ELF case
1642 */
1158 close(fd); 1643 close(fd);
1644 }
1645
1646 return 0;
1159} 1647}
1160 1648
1161/* scan a directory for ET_EXEC files and print when we find one */ 1649/* scan a directory for ET_EXEC files and print when we find one */
1162static void scanelf_dir(const char *path) 1650static int scanelf_dirat(int dir_fd, const char *path)
1163{ 1651{
1164 register DIR *dir; 1652 register DIR *dir;
1165 register struct dirent *dentry; 1653 register struct dirent *dentry;
1166 struct stat st_top, st; 1654 struct stat st_top, st;
1167 char buf[__PAX_UTILS_PATH_MAX]; 1655 char buf[__PAX_UTILS_PATH_MAX], *subpath;
1168 size_t pathlen = 0, len = 0; 1656 size_t pathlen = 0, len = 0;
1657 int ret = 0;
1658 int subdir_fd;
1169 1659
1170 /* make sure path exists */ 1660 /* make sure path exists */
1171 if (lstat(path, &st_top) == -1) { 1661 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
1172 if (be_verbose > 2) printf("%s: does not exist\n", path); 1662 if (be_verbose > 2) printf("%s: does not exist\n", path);
1173 return; 1663 return 1;
1174 } 1664 }
1175 1665
1176 /* ok, if it isn't a directory, assume we can open it */ 1666 /* ok, if it isn't a directory, assume we can open it */
1177 if (!S_ISDIR(st_top.st_mode)) { 1667 if (!S_ISDIR(st_top.st_mode))
1178 scanelf_file(path); 1668 return scanelf_fileat(dir_fd, path, &st_top);
1179 return;
1180 }
1181 1669
1182 /* now scan the dir looking for fun stuff */ 1670 /* now scan the dir looking for fun stuff */
1183 if ((dir = opendir(path)) == NULL) { 1671 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
1184 warnf("could not opendir %s: %s", path, strerror(errno)); 1672 if (subdir_fd == -1)
1673 dir = NULL;
1674 else
1675 dir = fdopendir(subdir_fd);
1676 if (dir == NULL) {
1677 if (subdir_fd != -1)
1678 close(subdir_fd);
1679 warnfp("could not opendir(%s)", path);
1185 return; 1680 return 1;
1186 } 1681 }
1187 if (be_verbose > 1) printf("%s: scanning dir\n", path); 1682 if (be_verbose > 1) printf("%s: scanning dir\n", path);
1188 1683
1189 pathlen = strlen(path); 1684 subpath = stpcpy(buf, path);
1685 if (subpath[-1] != '/')
1686 *subpath++ = '/';
1687 pathlen = subpath - buf;
1190 while ((dentry = readdir(dir))) { 1688 while ((dentry = readdir(dir))) {
1191 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1689 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
1192 continue; 1690 continue;
1691
1692 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
1693 continue;
1694
1193 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1695 len = strlen(dentry->d_name);
1194 if (len >= sizeof(buf)) { 1696 if (len + pathlen + 1 >= sizeof(buf)) {
1195 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1697 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
1196 (unsigned long)len, (unsigned long)sizeof(buf)); 1698 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
1197 continue; 1699 continue;
1198 } 1700 }
1199 sprintf(buf, "%s/%s", path, dentry->d_name); 1701 memcpy(subpath, dentry->d_name, len);
1200 if (lstat(buf, &st) != -1) { 1702 subpath[len] = '\0';
1703
1201 if (S_ISREG(st.st_mode)) 1704 if (S_ISREG(st.st_mode))
1202 scanelf_file(buf); 1705 ret = scanelf_fileat(dir_fd, buf, &st);
1203 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1706 else if (dir_recurse && S_ISDIR(st.st_mode)) {
1204 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1707 if (dir_crossmount || (st_top.st_dev == st.st_dev))
1205 scanelf_dir(buf); 1708 ret = scanelf_dirat(dir_fd, buf);
1206 }
1207 } 1709 }
1208 } 1710 }
1209 closedir(dir); 1711 closedir(dir);
1210}
1211 1712
1713 return ret;
1714}
1715static int scanelf_dir(const char *path)
1716{
1717 return scanelf_dirat(root_fd, root_rel_path(path));
1718}
1719
1212static int scanelf_from_file(char *filename) 1720static int scanelf_from_file(const char *filename)
1213{ 1721{
1214 FILE *fp = NULL; 1722 FILE *fp;
1215 char *p; 1723 char *p, *path;
1216 char path[__PAX_UTILS_PATH_MAX]; 1724 size_t len;
1725 int ret;
1217 1726
1218 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1727 if (strcmp(filename, "-") == 0)
1219 fp = stdin; 1728 fp = stdin;
1220 else if ((fp = fopen(filename, "r")) == NULL) 1729 else if ((fp = fopen(filename, "r")) == NULL)
1221 return 1; 1730 return 1;
1222 1731
1223 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1732 path = NULL;
1733 len = 0;
1734 ret = 0;
1735 while (getline(&path, &len, fp) != -1) {
1224 if ((p = strchr(path, '\n')) != NULL) 1736 if ((p = strchr(path, '\n')) != NULL)
1225 *p = 0; 1737 *p = 0;
1226 search_path = path; 1738 search_path = path;
1227 scanelf_dir(path); 1739 ret = scanelf_dir(path);
1228 } 1740 }
1741 free(path);
1742
1229 if (fp != stdin) 1743 if (fp != stdin)
1230 fclose(fp); 1744 fclose(fp);
1745
1231 return 0; 1746 return ret;
1232} 1747}
1233 1748
1749#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1750
1234static int load_ld_so_conf(int i, const char *fname) 1751static int _load_ld_cache_config(const char *fname)
1235{ 1752{
1236 FILE *fp = NULL; 1753 FILE *fp = NULL;
1237 char *p; 1754 char *p, *path;
1238 char path[__PAX_UTILS_PATH_MAX]; 1755 size_t len;
1756 int curr_fd = -1;
1239 1757
1240 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1758 fp = fopenat_r(root_fd, root_rel_path(fname));
1759 if (fp == NULL)
1241 return i; 1760 return -1;
1242 1761
1243 if ((fp = fopen(fname, "r")) == NULL) 1762 path = NULL;
1244 return i; 1763 len = 0;
1245 1764 while (getline(&path, &len, fp) != -1) {
1246 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1247 if ((p = strrchr(path, '\r')) != NULL) 1765 if ((p = strrchr(path, '\r')) != NULL)
1248 *p = 0; 1766 *p = 0;
1249 if ((p = strchr(path, '\n')) != NULL) 1767 if ((p = strchr(path, '\n')) != NULL)
1250 *p = 0; 1768 *p = 0;
1251#ifdef HAVE_GLOB 1769
1252 // recursive includes of the same file will make this segfault. 1770 /* recursive includes of the same file will make this segfault. */
1253 if ((*path == 'i') && (strncmp(path, "include", 7) == 0) && isblank(path[7])) { 1771 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1254 glob64_t gl; 1772 glob_t gl;
1255 size_t x; 1773 size_t x;
1256 char gpath[__PAX_UTILS_PATH_MAX]; 1774 const char *gpath;
1257 1775
1258 gpath[sizeof(gpath)] = 0; 1776 /* re-use existing path buffer ... need to be creative */
1259
1260 if (path[8] != '/') 1777 if (path[8] != '/')
1261 snprintf(gpath, sizeof(gpath)-1, "/etc/%s", &path[8]); 1778 gpath = memcpy(path + 3, "/etc/", 5);
1262 else 1779 else
1263 strncpy(gpath, &path[8], sizeof(gpath)-1); 1780 gpath = path + 8;
1781 if (root_fd != AT_FDCWD) {
1782 if (curr_fd == -1) {
1783 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1784 if (fchdir(root_fd))
1785 errp("unable to change to root dir");
1786 }
1787 gpath = root_rel_path(gpath);
1788 }
1264 1789
1265 if ((glob64(gpath, 0, NULL, &gl)) == 0) { 1790 if (glob(gpath, 0, NULL, &gl) == 0) {
1266 for (x = 0; x < gl.gl_pathc; ++x) { 1791 for (x = 0; x < gl.gl_pathc; ++x) {
1267 /* try to avoid direct loops */ 1792 /* try to avoid direct loops */
1268 if (strcmp(gl.gl_pathv[x], fname) == 0) 1793 if (strcmp(gl.gl_pathv[x], fname) == 0)
1269 continue; 1794 continue;
1270 i = load_ld_so_conf(i, gl.gl_pathv[x]); 1795 _load_ld_cache_config(gl.gl_pathv[x]);
1271 if (i + 1 >= sizeof(ldpaths) / sizeof(*ldpaths)) {
1272 globfree64(&gl);
1273 return i;
1274 }
1275 } 1796 }
1276 globfree64 (&gl); 1797 globfree(&gl);
1798 }
1799
1800 /* failed globs are ignored by glibc */
1277 continue; 1801 continue;
1278 } else
1279 abort();
1280 } 1802 }
1281#endif 1803
1282 if (*path != '/') 1804 if (*path != '/')
1283 continue; 1805 continue;
1284 1806
1285 ldpaths[i++] = xstrdup(path); 1807 xarraypush_str(ldpaths, path);
1286
1287 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths))
1288 break;
1289 } 1808 }
1290 ldpaths[i] = NULL; 1809 free(path);
1291 1810
1292 fclose(fp); 1811 fclose(fp);
1812
1813 if (curr_fd != -1) {
1814 if (fchdir(curr_fd))
1815 /* don't care */;
1816 close(curr_fd);
1817 }
1818
1293 return i; 1819 return 0;
1820}
1821
1822#elif defined(__FreeBSD__) || defined(__DragonFly__)
1823
1824static int _load_ld_cache_config(const char *fname)
1825{
1826 FILE *fp = NULL;
1827 char *b = NULL, *p;
1828 struct elfhints_hdr hdr;
1829
1830 fp = fopenat_r(root_fd, root_rel_path(fname));
1831 if (fp == NULL)
1832 return -1;
1833
1834 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1835 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1836 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1837 {
1838 fclose(fp);
1839 return -1;
1840 }
1841
1842 b = xmalloc(hdr.dirlistlen + 1);
1843 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1844 fclose(fp);
1845 free(b);
1846 return -1;
1847 }
1848
1849 while ((p = strsep(&b, ":"))) {
1850 if (*p == '\0')
1851 continue;
1852 xarraypush_str(ldpaths, p);
1853 }
1854
1855 free(b);
1856 fclose(fp);
1857 return 0;
1858}
1859
1860#else
1861#ifdef __ELF__
1862#warning Cache config support not implemented for your target
1863#endif
1864static int _load_ld_cache_config(const char *fname)
1865{
1866 return 0;
1867}
1868#endif
1869
1870static void load_ld_cache_config(const char *fname)
1871{
1872 bool scan_l, scan_ul, scan_ull;
1873 size_t n;
1874 const char *ldpath;
1875
1876 _load_ld_cache_config(fname);
1877
1878 scan_l = scan_ul = scan_ull = false;
1879 if (array_cnt(ldpaths)) {
1880 array_for_each(ldpaths, n, ldpath) {
1881 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = true;
1882 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = true;
1883 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = true;
1884 }
1885 }
1886
1887 if (!scan_l) xarraypush_str(ldpaths, "/lib");
1888 if (!scan_ul) xarraypush_str(ldpaths, "/usr/lib");
1889 if (!scan_ull) xarraypush_str(ldpaths, "/usr/local/lib");
1294} 1890}
1295 1891
1296/* scan /etc/ld.so.conf for paths */ 1892/* scan /etc/ld.so.conf for paths */
1297static void scanelf_ldpath() 1893static void scanelf_ldpath(void)
1298{ 1894{
1299 char scan_l, scan_ul, scan_ull; 1895 size_t n;
1300 int i = 0; 1896 const char *ldpath;
1301 1897
1302 if (!ldpaths[0]) 1898 array_for_each(ldpaths, n, ldpath)
1303 err("Unable to load any paths from ld.so.conf");
1304
1305 scan_l = scan_ul = scan_ull = 0;
1306
1307 while (ldpaths[i]) {
1308 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1;
1309 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1;
1310 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1;
1311 scanelf_dir(ldpaths[i]); 1899 scanelf_dir(ldpath);
1312 ++i;
1313 }
1314
1315 if (!scan_l) scanelf_dir("/lib");
1316 if (!scan_ul) scanelf_dir("/usr/lib");
1317 if (!scan_ull) scanelf_dir("/usr/local/lib");
1318} 1900}
1319 1901
1320/* scan env PATH for paths */ 1902/* scan env PATH for paths */
1321static void scanelf_envpath() 1903static void scanelf_envpath(void)
1322{ 1904{
1323 char *path, *p; 1905 char *path, *p;
1324 1906
1325 path = getenv("PATH"); 1907 path = getenv("PATH");
1326 if (!path) 1908 if (!path)
1333 } 1915 }
1334 1916
1335 free(path); 1917 free(path);
1336} 1918}
1337 1919
1338/* usage / invocation handling functions */ 1920/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
1339#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:BhV" 1921#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
1340#define a_argument required_argument 1922#define a_argument required_argument
1341static struct option const long_opts[] = { 1923static struct option const long_opts[] = {
1342 {"path", no_argument, NULL, 'p'}, 1924 {"path", no_argument, NULL, 'p'},
1343 {"ldpath", no_argument, NULL, 'l'}, 1925 {"ldpath", no_argument, NULL, 'l'},
1926 {"use-ldpath",no_argument, NULL, 129},
1927 {"root", a_argument, NULL, 128},
1344 {"recursive", no_argument, NULL, 'R'}, 1928 {"recursive", no_argument, NULL, 'R'},
1345 {"mount", no_argument, NULL, 'm'}, 1929 {"mount", no_argument, NULL, 'm'},
1346 {"symlink", no_argument, NULL, 'y'}, 1930 {"symlink", no_argument, NULL, 'y'},
1347 {"archives", no_argument, NULL, 'A'}, 1931 {"archives", no_argument, NULL, 'A'},
1348 {"ldcache", no_argument, NULL, 'L'}, 1932 {"ldcache", no_argument, NULL, 'L'},
1361 {"lib", a_argument, NULL, 'N'}, 1945 {"lib", a_argument, NULL, 'N'},
1362 {"gmatch", no_argument, NULL, 'g'}, 1946 {"gmatch", no_argument, NULL, 'g'},
1363 {"textrels", no_argument, NULL, 'T'}, 1947 {"textrels", no_argument, NULL, 'T'},
1364 {"etype", a_argument, NULL, 'E'}, 1948 {"etype", a_argument, NULL, 'E'},
1365 {"bits", a_argument, NULL, 'M'}, 1949 {"bits", a_argument, NULL, 'M'},
1950 {"endian", no_argument, NULL, 'D'},
1951 {"osabi", no_argument, NULL, 'I'},
1952 {"eabi", no_argument, NULL, 'Y'},
1953 {"perms", a_argument, NULL, 'O'},
1954 {"size", no_argument, NULL, 'Z'},
1366 {"all", no_argument, NULL, 'a'}, 1955 {"all", no_argument, NULL, 'a'},
1367 {"quiet", no_argument, NULL, 'q'}, 1956 {"quiet", no_argument, NULL, 'q'},
1368 {"verbose", no_argument, NULL, 'v'}, 1957 {"verbose", no_argument, NULL, 'v'},
1369 {"format", a_argument, NULL, 'F'}, 1958 {"format", a_argument, NULL, 'F'},
1370 {"from", a_argument, NULL, 'f'}, 1959 {"from", a_argument, NULL, 'f'},
1371 {"file", a_argument, NULL, 'o'}, 1960 {"file", a_argument, NULL, 'o'},
1961 {"nocolor", no_argument, NULL, 'C'},
1372 {"nobanner", no_argument, NULL, 'B'}, 1962 {"nobanner", no_argument, NULL, 'B'},
1373 {"help", no_argument, NULL, 'h'}, 1963 {"help", no_argument, NULL, 'h'},
1374 {"version", no_argument, NULL, 'V'}, 1964 {"version", no_argument, NULL, 'V'},
1375 {NULL, no_argument, NULL, 0x0} 1965 {NULL, no_argument, NULL, 0x0}
1376}; 1966};
1377 1967
1378static const char *opts_help[] = { 1968static const char * const opts_help[] = {
1379 "Scan all directories in PATH environment", 1969 "Scan all directories in PATH environment",
1380 "Scan all directories in /etc/ld.so.conf", 1970 "Scan all directories in /etc/ld.so.conf",
1971 "Use ld.so.conf to show full path (use with -r/-n)",
1972 "Root directory (use with -l or -p)",
1381 "Scan directories recursively", 1973 "Scan directories recursively",
1382 "Don't recursively cross mount points", 1974 "Don't recursively cross mount points",
1383 "Don't scan symlinks", 1975 "Don't scan symlinks",
1384 "Scan archives (.a files)", 1976 "Scan archives (.a files)",
1385 "Utilize ld.so.cache information (use with -r/-n)", 1977 "Utilize ld.so.cache to show full path (use with -r/-n)",
1386 "Try and 'fix' bad things (use with -r/-e)", 1978 "Try and 'fix' bad things (use with -r/-e)",
1387 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n", 1979 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1388 "Print PaX markings", 1980 "Print PaX markings",
1389 "Print GNU_STACK/PT_LOAD markings", 1981 "Print GNU_STACK/PT_LOAD markings",
1390 "Print TEXTREL information", 1982 "Print TEXTREL information",
1394 "Print BIND information", 1986 "Print BIND information",
1395 "Print SONAME information", 1987 "Print SONAME information",
1396 "Find a specified symbol", 1988 "Find a specified symbol",
1397 "Find a specified section", 1989 "Find a specified section",
1398 "Find a specified library", 1990 "Find a specified library",
1399 "Use strncmp to match libraries. (use with -N)", 1991 "Use regex rather than string compare (with -s); specify twice for case insensitive",
1400 "Locate cause of TEXTREL", 1992 "Locate cause of TEXTREL",
1401 "Print only ELF files matching numeric constant type", 1993 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1402 "Print only ELF files matching numeric bits", 1994 "Print only ELF files matching numeric bits",
1403 "Print all scanned info (-x -e -t -r -b)\n", 1995 "Print Endianness",
1996 "Print OSABI",
1997 "Print EABI (EM_ARM Only)",
1998 "Print only ELF files matching octal permissions",
1999 "Print ELF file size",
2000 "Print all useful/simple info\n",
1404 "Only output 'bad' things", 2001 "Only output 'bad' things",
1405 "Be verbose (can be specified more than once)", 2002 "Be verbose (can be specified more than once)",
1406 "Use specified format for output", 2003 "Use specified format for output",
1407 "Read input stream from a filename", 2004 "Read input stream from a filename",
1408 "Write output stream to a filename", 2005 "Write output stream to a filename",
2006 "Don't emit color in output",
1409 "Don't display the header", 2007 "Don't display the header",
1410 "Print this help and exit", 2008 "Print this help and exit",
1411 "Print version and exit", 2009 "Print version and exit",
1412 NULL 2010 NULL
1413}; 2011};
1417{ 2015{
1418 unsigned long i; 2016 unsigned long i;
1419 printf("* Scan ELF binaries for stuff\n\n" 2017 printf("* Scan ELF binaries for stuff\n\n"
1420 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0); 2018 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1421 printf("Options: -[%s]\n", PARSE_FLAGS); 2019 printf("Options: -[%s]\n", PARSE_FLAGS);
1422 for (i = 0; long_opts[i].name; ++i) 2020 for (i = 0; long_opts[i].name; ++i) {
2021 /* first output the short flag if it has one */
2022 if (long_opts[i].val > '~')
2023 printf(" ");
2024 else
2025 printf(" -%c, ", long_opts[i].val);
2026
2027 /* then the long flag */
1423 if (long_opts[i].has_arg == no_argument) 2028 if (long_opts[i].has_arg == no_argument)
1424 printf(" -%c, --%-14s* %s\n", long_opts[i].val, 2029 printf("--%-14s", long_opts[i].name);
1425 long_opts[i].name, opts_help[i]);
1426 else 2030 else
1427 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val, 2031 printf("--%-7s <arg> ", long_opts[i].name);
1428 long_opts[i].name, opts_help[i]);
1429 2032
1430 if (status != EXIT_SUCCESS) 2033 /* finally the help text */
1431 exit(status); 2034 printf("* %s\n", opts_help[i]);
1432 2035 }
1433 puts("\nThe format modifiers for the -F option are:");
1434 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1435 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1436 puts(" i INTERP \tb BIND \ts symbol");
1437 puts(" N library \to Type \tT TEXTRELs");
1438 puts(" S SONAME \tk section");
1439 puts(" p filename (with search path removed)");
1440 puts(" f filename (short name/basename)");
1441 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1442 2036
1443 puts("\nELF Etypes:"); 2037 puts("\nFor more information, see the scanelf(1) manpage");
1444 print_etypes(stdout);
1445
1446 exit(status); 2038 exit(status);
1447} 2039}
1448 2040
1449/* parse command line arguments and preform needed actions */ 2041/* parse command line arguments and preform needed actions */
2042#define do_pax_state(option, flag) \
2043 if (islower(option)) { \
2044 flags &= ~PF_##flag; \
2045 flags |= PF_NO##flag; \
2046 } else { \
2047 flags &= ~PF_NO##flag; \
2048 flags |= PF_##flag; \
2049 }
1450static void parseargs(int argc, char *argv[]) 2050static int parseargs(int argc, char *argv[])
1451{ 2051{
1452 int i; 2052 int i;
1453 char *from_file = NULL; 2053 const char *from_file = NULL;
2054 int ret = 0;
2055 char load_cache_config = 0;
1454 2056
1455 opterr = 0; 2057 opterr = 0;
1456 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2058 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1457 switch (i) { 2059 switch (i) {
1458 2060
1466 case 'f': 2068 case 'f':
1467 if (from_file) warn("You prob don't want to specify -f twice"); 2069 if (from_file) warn("You prob don't want to specify -f twice");
1468 from_file = optarg; 2070 from_file = optarg;
1469 break; 2071 break;
1470 case 'E': 2072 case 'E':
1471 strncpy(match_etypes, optarg, sizeof(match_etypes)); 2073 match_etypes = optarg;
1472 break; 2074 break;
1473 case 'M': 2075 case 'M':
1474 match_bits = atoi(optarg); 2076 match_bits = atoi(optarg);
2077 if (match_bits == 0) {
2078 if (strcmp(optarg, "ELFCLASS32") == 0)
2079 match_bits = 32;
2080 if (strcmp(optarg, "ELFCLASS64") == 0)
2081 match_bits = 64;
2082 }
2083 break;
2084 case 'O':
2085 if (sscanf(optarg, "%o", &match_perms) == -1)
2086 match_bits = 0;
1475 break; 2087 break;
1476 case 'o': { 2088 case 'o': {
1477 FILE *fp = NULL;
1478 if ((fp = freopen(optarg, "w", stdout)) == NULL) 2089 if (freopen(optarg, "w", stdout) == NULL)
1479 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2090 errp("Could not freopen(%s)", optarg);
1480 SET_STDOUT(fp);
1481 break; 2091 break;
1482 } 2092 }
1483 case 'k': 2093 case 'k':
1484 if (find_section) warn("You prob don't want to specify -k twice"); 2094 xarraypush_str(find_section_arr, optarg);
1485 find_section = optarg;
1486 break; 2095 break;
1487 case 's': { 2096 case 's': {
1488 if (find_sym) warn("You prob don't want to specify -s twice"); 2097 /* historically, this was comma delimited */
1489 find_sym = optarg; 2098 char *this_sym = strtok(optarg, ",");
1490 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1)); 2099 if (!this_sym) /* edge case: -s '' */
1491 sprintf(versioned_symname, "%s@", find_sym); 2100 xarraypush_str(find_sym_arr, "");
2101 while (this_sym) {
2102 xarraypush_str(find_sym_arr, this_sym);
2103 this_sym = strtok(NULL, ",");
2104 }
1492 break; 2105 break;
1493 } 2106 }
1494 case 'N': { 2107 case 'N':
1495 if (find_lib) warn("You prob don't want to specify -N twice"); 2108 xarraypush_str(find_lib_arr, optarg);
1496 find_lib = optarg;
1497 break; 2109 break;
1498 }
1499
1500 case 'F': { 2110 case 'F': {
1501 if (out_format) warn("You prob don't want to specify -F twice"); 2111 if (out_format) warn("You prob don't want to specify -F twice");
1502 out_format = optarg; 2112 out_format = optarg;
1503 break; 2113 break;
1504 } 2114 }
1505 case 'z': { 2115 case 'z': {
1506 unsigned long flags = 10240; 2116 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1507 size_t x; 2117 size_t x;
1508 2118
1509#define do_state(option, flag) \
1510 if (islower(option)) { \
1511 flags &= ~PF_##flag; \
1512 flags |= PF_NO##flag; \
1513 } else { \
1514 flags &= ~PF_NO##flag; \
1515 flags |= PF_##flag; \
1516 }
1517
1518 for (x = 0 ; x < strlen(optarg); x++) { 2119 for (x = 0; x < strlen(optarg); x++) {
1519 switch(optarg[x]) { 2120 switch (optarg[x]) {
1520 case 'p': 2121 case 'p':
1521 case 'P': 2122 case 'P':
1522 do_state(optarg[x], PAGEEXEC); 2123 do_pax_state(optarg[x], PAGEEXEC);
1523 break; 2124 break;
1524 case 's': 2125 case 's':
1525 case 'S': 2126 case 'S':
1526 do_state(optarg[x], SEGMEXEC); 2127 do_pax_state(optarg[x], SEGMEXEC);
1527 break; 2128 break;
1528 case 'm': 2129 case 'm':
1529 case 'M': 2130 case 'M':
1530 do_state(optarg[x], MPROTECT); 2131 do_pax_state(optarg[x], MPROTECT);
1531 break; 2132 break;
1532 case 'e': 2133 case 'e':
1533 case 'E': 2134 case 'E':
1534 do_state(optarg[x], EMUTRAMP); 2135 do_pax_state(optarg[x], EMUTRAMP);
1535 break; 2136 break;
1536 case 'r': 2137 case 'r':
1537 case 'R': 2138 case 'R':
1538 do_state(optarg[x], RANDMMAP); 2139 do_pax_state(optarg[x], RANDMMAP);
1539 break; 2140 break;
1540 case 'x': 2141 case 'x':
1541 case 'X': 2142 case 'X':
1542 do_state(optarg[x], RANDEXEC); 2143 do_pax_state(optarg[x], RANDEXEC);
1543 break; 2144 break;
1544 default: 2145 default:
1545 break; 2146 break;
1546 } 2147 }
1547 } 2148 }
1552 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) || 2153 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
1553 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)))) 2154 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1554 setpax = flags; 2155 setpax = flags;
1555 break; 2156 break;
1556 } 2157 }
2158 case 'Z': show_size = 1; break;
1557 case 'g': gmatch = 1; break; 2159 case 'g': ++g_match; break;
1558 case 'L': use_ldcache = 1; break; 2160 case 'L': load_cache_config = use_ldcache = 1; break;
1559 case 'y': scan_symlink = 0; break; 2161 case 'y': scan_symlink = 0; break;
1560 case 'A': scan_archives = 1; break; 2162 case 'A': scan_archives = 1; break;
2163 case 'C': color_init(true); break;
1561 case 'B': show_banner = 0; break; 2164 case 'B': show_banner = 0; break;
1562 case 'l': scan_ldpath = 1; break; 2165 case 'l': load_cache_config = scan_ldpath = 1; break;
1563 case 'p': scan_envpath = 1; break; 2166 case 'p': scan_envpath = 1; break;
1564 case 'R': dir_recurse = 1; break; 2167 case 'R': dir_recurse = 1; break;
1565 case 'm': dir_crossmount = 0; break; 2168 case 'm': dir_crossmount = 0; break;
1566 case 'X': ++fix_elf; break; 2169 case 'X': ++fix_elf; break;
1567 case 'x': show_pax = 1; break; 2170 case 'x': show_pax = 1; break;
1573 case 'b': show_bind = 1; break; 2176 case 'b': show_bind = 1; break;
1574 case 'S': show_soname = 1; break; 2177 case 'S': show_soname = 1; break;
1575 case 'T': show_textrels = 1; break; 2178 case 'T': show_textrels = 1; break;
1576 case 'q': be_quiet = 1; break; 2179 case 'q': be_quiet = 1; break;
1577 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2180 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1578 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 2181 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1579 2182 case 'D': show_endian = 1; break;
2183 case 'I': show_osabi = 1; break;
2184 case 'Y': show_eabi = 1; break;
2185 case 128:
2186 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2187 if (root_fd == -1)
2188 err("Could not open root: %s", optarg);
2189 break;
2190 case 129: load_cache_config = use_ldpath = 1; break;
1580 case ':': 2191 case ':':
1581 err("Option '%c' is missing parameter", optopt); 2192 err("Option '%c' is missing parameter", optopt);
1582 case '?': 2193 case '?':
1583 err("Unknown option '%c' or argument missing", optopt); 2194 err("Unknown option '%c' or argument missing", optopt);
1584 default: 2195 default:
1585 err("Unhandled option '%c'; please report this", i); 2196 err("Unhandled option '%c'; please report this", i);
1586 } 2197 }
1587 } 2198 }
2199 if (show_textrels && be_verbose)
2200 has_objdump = bin_in_path("objdump");
2201 /* precompile all the regexes */
2202 if (g_match) {
2203 regex_t preg;
2204 const char *this_sym;
2205 size_t n;
2206 int flags = REG_EXTENDED | REG_NOSUB | (g_match > 1 ? REG_ICASE : 0);
1588 2207
2208 array_for_each(find_sym_arr, n, this_sym) {
2209 /* see scanelf_match_symname for logic info */
2210 switch (this_sym[0]) {
2211 case '%':
2212 while (*(this_sym++))
2213 if (*this_sym == '%') {
2214 ++this_sym;
2215 break;
2216 }
2217 break;
2218 case '+':
2219 case '-':
2220 ++this_sym;
2221 break;
2222 }
2223 if (*this_sym == '*')
2224 ++this_sym;
2225
2226 ret = regcomp(&preg, this_sym, flags);
2227 if (ret) {
2228 char err[256];
2229 regerror(ret, &preg, err, sizeof(err));
2230 err("regcomp of %s failed: %s", this_sym, err);
2231 }
2232 xarraypush(find_sym_regex_arr, &preg, sizeof(preg));
2233 }
2234 }
2235 /* flatten arrays for display */
2236 if (array_cnt(find_sym_arr))
2237 find_sym = array_flatten_str(find_sym_arr);
2238 if (array_cnt(find_lib_arr))
2239 find_lib = array_flatten_str(find_lib_arr);
2240 if (array_cnt(find_section_arr))
2241 find_section = array_flatten_str(find_section_arr);
1589 /* let the format option override all other options */ 2242 /* let the format option override all other options */
1590 if (out_format) { 2243 if (out_format) {
1591 show_pax = show_phdr = show_textrel = show_rpath = \ 2244 show_pax = show_phdr = show_textrel = show_rpath = \
1592 show_needed = show_interp = show_bind = show_soname = \ 2245 show_needed = show_interp = show_bind = show_soname = \
1593 show_textrels = 0; 2246 show_textrels = show_perms = show_endian = show_size = \
2247 show_osabi = show_eabi = 0;
1594 for (i = 0; out_format[i]; ++i) { 2248 for (i = 0; out_format[i]; ++i) {
1595 if (!IS_MODIFIER(out_format[i])) continue; 2249 if (!IS_MODIFIER(out_format[i])) continue;
1596 2250
1597 switch (out_format[++i]) { 2251 switch (out_format[++i]) {
2252 case '+': break;
1598 case '%': break; 2253 case '%': break;
1599 case '#': break; 2254 case '#': break;
1600 case 'F': break; 2255 case 'F': break;
1601 case 'p': break; 2256 case 'p': break;
1602 case 'f': break; 2257 case 'f': break;
1603 case 'k': break; 2258 case 'k': break;
1604 case 's': break; 2259 case 's': break;
1605 case 'N': break; 2260 case 'N': break;
1606 case 'o': break; 2261 case 'o': break;
2262 case 'a': break;
2263 case 'M': break;
2264 case 'Z': show_size = 1; break;
2265 case 'D': show_endian = 1; break;
2266 case 'I': show_osabi = 1; break;
2267 case 'Y': show_eabi = 1; break;
2268 case 'O': show_perms = 1; break;
1607 case 'x': show_pax = 1; break; 2269 case 'x': show_pax = 1; break;
1608 case 'e': show_phdr = 1; break; 2270 case 'e': show_phdr = 1; break;
1609 case 't': show_textrel = 1; break; 2271 case 't': show_textrel = 1; break;
1610 case 'r': show_rpath = 1; break; 2272 case 'r': show_rpath = 1; break;
1611 case 'n': show_needed = 1; break; 2273 case 'n': show_needed = 1; break;
1612 case 'i': show_interp = 1; break; 2274 case 'i': show_interp = 1; break;
1613 case 'b': show_bind = 1; break; 2275 case 'b': show_bind = 1; break;
1614 case 'S': show_soname = 1; break; 2276 case 'S': show_soname = 1; break;
1615 case 'T': show_textrels = 1; break; 2277 case 'T': show_textrels = 1; break;
1616 default: 2278 default:
1617 err("Invalid format specifier '%c' (byte %i)", 2279 err("invalid format specifier '%c' (byte %i)",
1618 out_format[i], i+1); 2280 out_format[i], i+1);
1619 } 2281 }
1620 } 2282 }
1621 2283
1622 /* construct our default format */ 2284 /* construct our default format */
1623 } else { 2285 } else {
1624 size_t fmt_len = 30; 2286 size_t fmt_len = 30;
1625 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2287 out_format = xmalloc(sizeof(char) * fmt_len);
2288 *out_format = '\0';
1626 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2289 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1627 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2290 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
2291 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2292 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
2293 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
2294 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2295 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1628 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 2296 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1629 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2297 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1630 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2298 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1631 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2299 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1632 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2300 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1639 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2307 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1640 } 2308 }
1641 if (be_verbose > 2) printf("Format: %s\n", out_format); 2309 if (be_verbose > 2) printf("Format: %s\n", out_format);
1642 2310
1643 /* now lets actually do the scanning */ 2311 /* now lets actually do the scanning */
1644 if (scan_ldpath || use_ldcache) 2312 if (load_cache_config)
1645 load_ld_so_conf(0, "/etc/ld.so.conf"); 2313 load_ld_cache_config(__PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1646 if (scan_ldpath) scanelf_ldpath(); 2314 if (scan_ldpath) scanelf_ldpath();
1647 if (scan_envpath) scanelf_envpath(); 2315 if (scan_envpath) scanelf_envpath();
2316 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
2317 from_file = "-";
1648 if (from_file) { 2318 if (from_file) {
1649 scanelf_from_file(from_file); 2319 scanelf_from_file(from_file);
1650 from_file = *argv; 2320 from_file = *argv;
1651 } 2321 }
1652 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 2322 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1653 err("Nothing to scan !?"); 2323 err("Nothing to scan !?");
1654 while (optind < argc) { 2324 while (optind < argc) {
1655 search_path = argv[optind++]; 2325 search_path = argv[optind++];
1656 scanelf_dir(search_path); 2326 ret = scanelf_dir(search_path);
1657 } 2327 }
1658 2328
2329#ifdef __PAX_UTILS_CLEANUP
1659 /* clean up */ 2330 /* clean up */
1660 if (versioned_symname) free(versioned_symname);
1661 for (i = 0; ldpaths[i]; ++i)
1662 free(ldpaths[i]); 2331 xarrayfree(ldpaths);
2332 xarrayfree(find_sym_arr);
2333 xarrayfree(find_lib_arr);
2334 xarrayfree(find_section_arr);
2335 free(find_sym);
2336 free(find_lib);
2337 free(find_section);
2338 {
2339 size_t n;
2340 regex_t *preg;
2341 array_for_each(find_sym_regex_arr, n, preg)
2342 regfree(preg);
2343 xarrayfree(find_sym_regex_arr);
2344 }
1663 2345
1664 if (ldcache != 0) 2346 if (ldcache != 0)
1665 munmap(ldcache, ldcache_size); 2347 munmap(ldcache, ldcache_size);
1666} 2348#endif
1667 2349
1668
1669
1670/* utility funcs */
1671static char *xstrdup(const char *s)
1672{
1673 char *ret = strdup(s);
1674 if (!ret) err("Could not strdup(): %s", strerror(errno));
1675 return ret; 2350 return ret;
1676} 2351}
1677static void *xmalloc(size_t size)
1678{
1679 void *ret = malloc(size);
1680 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
1681 return ret;
1682}
1683static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
1684{
1685 size_t new_len;
1686 2352
1687 new_len = strlen(*dst) + strlen(src); 2353static char **get_split_env(const char *envvar)
1688 if (*curr_len <= new_len) {
1689 *curr_len = new_len + (*curr_len / 2);
1690 *dst = realloc(*dst, *curr_len);
1691 if (!*dst)
1692 err("could not realloc() %li bytes", (unsigned long)*curr_len);
1693 }
1694
1695 if (n)
1696 strncat(*dst, src, n);
1697 else
1698 strcat(*dst, src);
1699}
1700static inline void xchrcat(char **dst, const char append, size_t *curr_len)
1701{ 2354{
1702 static char my_app[2]; 2355 const char *delims = " \t\n";
1703 my_app[0] = append; 2356 char **envvals = NULL;
1704 my_app[1] = '\0'; 2357 char *env, *s;
1705 xstrcat(dst, my_app, curr_len); 2358 int nentry;
1706}
1707 2359
2360 if ((env = getenv(envvar)) == NULL)
2361 return NULL;
1708 2362
2363 env = xstrdup(env);
2364 if (env == NULL)
2365 return NULL;
2366
2367 s = strtok(env, delims);
2368 if (s == NULL) {
2369 free(env);
2370 return NULL;
2371 }
2372
2373 nentry = 0;
2374 while (s != NULL) {
2375 ++nentry;
2376 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
2377 envvals[nentry-1] = s;
2378 s = strtok(NULL, delims);
2379 }
2380 envvals[nentry] = NULL;
2381
2382 /* don't want to free(env) as it contains the memory that backs
2383 * the envvals array of strings */
2384 return envvals;
2385}
2386
2387static void parseenv(void)
2388{
2389 color_init(false);
2390 qa_textrels = get_split_env("QA_TEXTRELS");
2391 qa_execstack = get_split_env("QA_EXECSTACK");
2392 qa_wx_load = get_split_env("QA_WX_LOAD");
2393}
2394
2395#ifdef __PAX_UTILS_CLEANUP
2396static void cleanup(void)
2397{
2398 free(out_format);
2399 free(qa_textrels);
2400 free(qa_execstack);
2401 free(qa_wx_load);
2402}
2403#endif
1709 2404
1710int main(int argc, char *argv[]) 2405int main(int argc, char *argv[])
1711{ 2406{
2407 int ret;
1712 if (argc < 2) 2408 if (argc < 2)
1713 usage(EXIT_FAILURE); 2409 usage(EXIT_FAILURE);
2410 parseenv();
1714 parseargs(argc, argv); 2411 ret = parseargs(argc, argv);
1715 fclose(stdout); 2412 fclose(stdout);
1716#ifdef __BOUNDS_CHECKING_ON 2413#ifdef __PAX_UTILS_CLEANUP
1717 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2414 cleanup();
2415 warn("The calls to add/delete heap should be off:\n"
2416 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2417 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1718#endif 2418#endif
1719 return EXIT_SUCCESS; 2419 return ret;
1720} 2420}
2421
2422/* Match filename against entries in matchlist, return TRUE
2423 * if the file is listed */
2424static int file_matches_list(const char *filename, char **matchlist)
2425{
2426 char **file;
2427 char *match;
2428 char buf[__PAX_UTILS_PATH_MAX];
2429
2430 if (matchlist == NULL)
2431 return 0;
2432
2433 for (file = matchlist; *file != NULL; file++) {
2434 if (search_path) {
2435 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2436 match = buf;
2437 } else {
2438 match = *file;
2439 }
2440 if (fnmatch(match, filename, 0) == 0)
2441 return 1;
2442 }
2443 return 0;
2444}

Legend:
Removed from v.1.127  
changed lines
  Added in v.1.250

  ViewVC Help
Powered by ViewVC 1.1.20