/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.185 Revision 1.267
1/* 1/*
2 * Copyright 2003-2007 Gentoo Foundation 2 * Copyright 2003-2012 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.185 2007/08/18 04:59:32 vapier Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.267 2014/10/19 07:31:20 vapier Exp $
5 * 5 *
6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2012 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2012 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10static const char rcsid[] = "$Id: scanelf.c,v 1.267 2014/10/19 07:31:20 vapier Exp $";
11const char argv0[] = "scanelf";
12
10#include "paxinc.h" 13#include "paxinc.h"
11
12static const char *rcsid = "$Id: scanelf.c,v 1.185 2007/08/18 04:59:32 vapier Exp $";
13#define argv0 "scanelf"
14 14
15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
16 16
17/* prototypes */ 17/* prototypes */
18static int file_matches_list(const char *filename, char **matchlist); 18static int file_matches_list(const char *filename, char **matchlist);
19static int scanelf_elfobj(elfobj *elf);
20static int scanelf_elf(const char *filename, int fd, size_t len);
21static int scanelf_archive(const char *filename, int fd, size_t len);
22static int scanelf_file(const char *filename, const struct stat *st_cache);
23static int scanelf_dir(const char *path);
24static void scanelf_ldpath(void);
25static void scanelf_envpath(void);
26static void usage(int status);
27static char **get_split_env(const char *envvar);
28static void parseenv(void);
29static int parseargs(int argc, char *argv[]);
30static char *xstrdup(const char *s);
31static void *xmalloc(size_t size);
32static void *xrealloc(void *ptr, size_t size);
33static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
34#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
35static inline void xchrcat(char **dst, const char append, size_t *curr_len);
36static int rematch(const char *regex, const char *match, int cflags);
37 19
38/* variables to control behavior */ 20/* variables to control behavior */
39static char match_etypes[126] = ""; 21static array_t _match_etypes = array_init_decl, *match_etypes = &_match_etypes;
40static char *ldpaths[256]; 22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
41static char scan_ldpath = 0; 23static char scan_ldpath = 0;
42static char scan_envpath = 0; 24static char scan_envpath = 0;
43static char scan_symlink = 1; 25static char scan_symlink = 1;
44static char scan_archives = 0; 26static char scan_archives = 0;
45static char dir_recurse = 0; 27static char dir_recurse = 0;
46static char dir_crossmount = 1; 28static char dir_crossmount = 1;
47static char show_pax = 0; 29static char show_pax = 0;
48static char show_perms = 0; 30static char show_perms = 0;
31static char show_size = 0;
49static char show_phdr = 0; 32static char show_phdr = 0;
50static char show_textrel = 0; 33static char show_textrel = 0;
51static char show_rpath = 0; 34static char show_rpath = 0;
52static char show_needed = 0; 35static char show_needed = 0;
53static char show_interp = 0; 36static char show_interp = 0;
54static char show_bind = 0; 37static char show_bind = 0;
55static char show_soname = 0; 38static char show_soname = 0;
56static char show_textrels = 0; 39static char show_textrels = 0;
57static char show_banner = 1; 40static char show_banner = 1;
58static char show_endian = 0; 41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
59static char be_quiet = 0; 44static char be_quiet = 0;
60static char be_verbose = 0; 45static char be_verbose = 0;
61static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
62static char be_semi_verbose = 0; 47static char be_semi_verbose = 0;
63static char *find_sym = NULL, *versioned_symname = NULL; 48static char *find_sym = NULL;
49static array_t _find_sym_arr = array_init_decl, *find_sym_arr = &_find_sym_arr;
50static array_t _find_sym_regex_arr = array_init_decl, *find_sym_regex_arr = &_find_sym_regex_arr;
64static char *find_lib = NULL; 51static char *find_lib = NULL;
52static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
65static char *find_section = NULL; 53static char *find_section = NULL;
54static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
66static char *out_format = NULL; 55static char *out_format = NULL;
67static char *search_path = NULL; 56static char *search_path = NULL;
68static char fix_elf = 0; 57static char fix_elf = 0;
69static char g_match = 0; 58static char g_match = 0;
70static char use_ldcache = 0; 59static char use_ldcache = 0;
60static char use_ldpath = 0;
71 61
72static char **qa_textrels = NULL; 62static char **qa_textrels = NULL;
73static char **qa_execstack = NULL; 63static char **qa_execstack = NULL;
74static char **qa_wx_load = NULL; 64static char **qa_wx_load = NULL;
65static int root_fd = AT_FDCWD;
75 66
76int match_bits = 0; 67static int match_bits = 0;
77unsigned int match_perms = 0; 68static unsigned int match_perms = 0;
78caddr_t ldcache = 0; 69static void *ldcache = NULL;
79size_t ldcache_size = 0; 70static size_t ldcache_size = 0;
80unsigned long setpax = 0UL; 71static unsigned long setpax = 0UL;
81 72
82int has_objdump = 0; 73static const char *objdump;
83 74
84static char *getstr_perms(const char *fname); 75/* Find the path to a file by name. Note: we do not currently handle the
85static char *getstr_perms(const char *fname) { 76 * empty path element correctly (should behave by searching $PWD). */
86 struct stat st; 77static const char *which(const char *fname, const char *envvar)
87 static char buf[8];
88
89 if ((stat(fname, &st)) == (-1))
90 return (char *) "";
91
92 snprintf(buf, sizeof(buf), "%o", st.st_mode);
93
94 return (char *) buf + 2;
95}
96
97/* find the path to a file by name */
98static char *which(const char *fname)
99{ 78{
100 static char fullpath[BUFSIZ]; 79 size_t path_len, fname_len;
80 const char *env_path;
101 char *path, *p; 81 char *path, *p, *ep;
102 82
83 p = getenv(envvar);
84 if (p)
85 return p;
86
103 path = getenv("PATH"); 87 env_path = getenv("PATH");
104 if (!path) 88 if (!env_path)
105 return NULL; 89 return NULL;
106 90
107 path = xstrdup(path); 91 /* Create a copy of the $PATH that we can safely modify.
108 while ((p = strrchr(path, ':')) != NULL) { 92 * Make it a little bigger so we can append "/fname".
109 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname); 93 * We do this twice -- once for a perm copy, and once for
110 *p = 0; 94 * room at the end of the last element. */
95 path_len = strlen(env_path);
96 fname_len = strlen(fname);
97 path = xmalloc(path_len + (fname_len * 2) + 2 + 2);
98 memcpy(path, env_path, path_len + 1);
99
100 p = path + path_len + 1 + fname_len + 1;
101 *p = '/';
102 memcpy(p + 1, fname, fname_len + 1);
103
104 /* Repoint fname to the copy in the env string as it has
105 * the leading slash which we can include in a single memcpy.
106 * Increase the fname len to include the '/' and '\0'. */
107 fname = p;
108 fname_len += 2;
109
110 p = path;
111 while (p) {
112 ep = strchr(p, ':');
113 /* Append the /foo path to the current element. */
114 if (ep)
115 memcpy(ep, fname, fname_len);
116 else
117 memcpy(path + path_len, fname, fname_len);
118
111 if (access(fullpath, R_OK) != (-1)) { 119 if (access(p, R_OK) != -1)
112 free(path); 120 return p;
113 return (char *) fullpath; 121
122 p = ep;
123 if (ep) {
124 /* If not the last element, restore the chunk we clobbered. */
125 size_t offset = ep - path;
126 size_t restore = min(path_len - offset, fname_len);
127 memcpy(ep, env_path + offset, restore);
128 ++p;
114 } 129 }
115 } 130 }
131
116 free(path); 132 free(path);
117 return NULL; 133 return NULL;
118} 134}
119 135
120/* 1 on failure. 0 otherwise */ 136static FILE *fopenat_r(int dir_fd, const char *path)
121static int rematch(const char *regex, const char *match, int cflags)
122{ 137{
123 regex_t preg; 138 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
124 int ret; 139 if (fd == -1)
140 return NULL;
141 return fdopen(fd, "re");
142}
125 143
126 if ((match == NULL) || (regex == NULL)) 144static const char *root_rel_path(const char *path)
127 return EXIT_FAILURE; 145{
128 146 /*
129 147 * openat() will ignore the dirfd if path starts with
130 if ((ret = regcomp(&preg, regex, cflags))) { 148 * a /, so consume all of that noise
131 char err[256]; 149 *
132 150 * XXX: we don't handle relative paths like ../ that
133 if (regerror(ret, &preg, err, sizeof(err))) 151 * break out of the --root option, but for now, just
134 fprintf(stderr, "regcomp failed: %s", err); 152 * don't do that :P.
135 else 153 */
136 fprintf(stderr, "regcomp failed"); 154 if (root_fd != AT_FDCWD) {
137 155 while (*path == '/')
138 return EXIT_FAILURE; 156 ++path;
157 if (*path == '\0')
158 path = ".";
139 } 159 }
140 ret = regexec(&preg, match, 0, NULL, 0);
141 regfree(&preg);
142 160
143 return ret; 161 return path;
144} 162}
145 163
146/* sub-funcs for scanelf_file() */ 164/* sub-funcs for scanelf_fileat() */
147static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 165static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
148{ 166{
149 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 167 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
168
169 /* debug sections */
170 void *symtab = elf_findsecbyname(elf, ".symtab");
171 void *strtab = elf_findsecbyname(elf, ".strtab");
172 /* runtime sections */
173 void *dynsym = elf_findsecbyname(elf, ".dynsym");
174 void *dynstr = elf_findsecbyname(elf, ".dynstr");
175
176 /*
177 * If the sections are marked NOBITS, then they don't exist, so we just
178 * skip them. This let's us work sanely with splitdebug ELFs (rather
179 * than spewing a lot of "corrupt ELF" messages later on). In malformed
180 * ELFs, the section might be wrongly set to NOBITS, but screw em.
181 *
182 * We need to make sure the debug/runtime sym/str sets are used together
183 * as they are generated in sync. Trying to mix them won't work.
184 */
150#define GET_SYMTABS(B) \ 185#define GET_SYMTABS(B) \
151 if (elf->elf_class == ELFCLASS ## B) { \ 186 if (elf->elf_class == ELFCLASS ## B) { \
152 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \ 187 Elf ## B ## _Shdr *esymtab = symtab; \
153 /* debug sections */ \ 188 Elf ## B ## _Shdr *estrtab = strtab; \
154 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \ 189 Elf ## B ## _Shdr *edynsym = dynsym; \
155 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \ 190 Elf ## B ## _Shdr *edynstr = dynstr; \
156 /* runtime sections */ \ 191 \
157 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \ 192 if (symtab && EGET(esymtab->sh_type) == SHT_NOBITS) \
158 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \ 193 symtab = NULL; \
159 if (symtab && dynsym) { \ 194 if (dynsym && EGET(edynsym->sh_type) == SHT_NOBITS) \
160 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 195 dynsym = NULL; \
196 if (strtab && EGET(estrtab->sh_type) == SHT_NOBITS) \
197 strtab = NULL; \
198 if (dynstr && EGET(edynstr->sh_type) == SHT_NOBITS) \
199 dynstr = NULL; \
200 \
201 /* Use the set with more symbols if both exist. */ \
202 if (symtab && dynsym && strtab && dynstr) { \
203 if (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) \
204 goto debug##B; \
161 } else { \ 205 else \
162 *sym = (void*)(symtab ? symtab : dynsym); \ 206 goto runtime##B; \
207 } else if (symtab && strtab) { \
208 debug##B: \
209 *sym = symtab; \
210 *str = strtab; \
211 return; \
212 } else if (dynsym && dynstr) { \
213 runtime##B: \
214 *sym = dynsym; \
215 *str = dynstr; \
216 return; \
163 } \ 217 } \
164 if (strtab && dynstr) { \
165 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \
166 } else { \
167 *tab = (void*)(strtab ? strtab : dynstr); \
168 } \
169 } 218 }
170 GET_SYMTABS(32) 219 GET_SYMTABS(32)
171 GET_SYMTABS(64) 220 GET_SYMTABS(64)
221
222 if (*sym && *str)
223 return;
224
225 /*
226 * damn, they're really going to make us work for it huh?
227 * reconstruct the section header info out of the dynamic
228 * tags so we can see what symbols this guy uses at runtime.
229 */
230#define GET_SYMTABS_DT(B) \
231 if (elf->elf_class == ELFCLASS ## B) { \
232 size_t i; \
233 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
234 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
235 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
236 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
237 Elf ## B ## _Dyn *dyn; \
238 Elf ## B ## _Off offset; \
239 \
240 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
241 vsym = vstr = vhash = vgnu_hash = 0; \
242 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
243 memset(&str_shdr, 0, sizeof(str_shdr)); \
244 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
245 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
246 continue; \
247 \
248 offset = EGET(phdr[i].p_offset); \
249 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
250 continue; \
251 \
252 dyn = DYN ## B (elf->vdata + offset); \
253 while (EGET(dyn->d_tag) != DT_NULL) { \
254 switch (EGET(dyn->d_tag)) { \
255 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
256 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
257 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
258 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
259 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
260 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
261 } \
262 ++dyn; \
263 } \
264 if (vsym && vstr) \
265 break; \
266 } \
267 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
268 return; \
269 \
270 /* calc offset into the ELF by finding the load addr of the syms */ \
271 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
272 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
273 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
274 offset = EGET(phdr[i].p_offset); \
275 \
276 if (EGET(phdr[i].p_type) != PT_LOAD) \
277 continue; \
278 \
279 if (vhash >= vaddr && vhash < vaddr + filesz) { \
280 /* Scan the hash table to see how many entries we have */ \
281 Elf32_Word max_sym_idx = 0; \
282 Elf32_Word *hashtbl = elf->vdata + offset + (vhash - vaddr); \
283 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
284 Elf32_Word nchains = EGET(hashtbl[1]); \
285 Elf32_Word *buckets = &hashtbl[2]; \
286 Elf32_Word *chains = &buckets[nbuckets]; \
287 Elf32_Word sym_idx; \
288 \
289 for (b = 0; b < nbuckets; ++b) { \
290 if (!buckets[b]) \
291 continue; \
292 for (sym_idx = buckets[b]; sym_idx < nchains && sym_idx; sym_idx = chains[sym_idx]) \
293 if (max_sym_idx < sym_idx) \
294 max_sym_idx = sym_idx; \
295 } \
296 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
297 } \
298 \
299 if (vsym >= vaddr && vsym < vaddr + filesz) { \
300 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
301 *sym = &sym_shdr; \
302 } \
303 \
304 if (vstr >= vaddr && vstr < vaddr + filesz) { \
305 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
306 *str = &str_shdr; \
307 } \
308 } \
309 }
310 GET_SYMTABS_DT(32)
311 GET_SYMTABS_DT(64)
172} 312}
173 313
174static char *scanelf_file_pax(elfobj *elf, char *found_pax) 314static char *scanelf_file_pax(elfobj *elf, char *found_pax)
175{ 315{
176 static char ret[7]; 316 static char ret[7];
203 } 343 }
204 SHOW_PAX(32) 344 SHOW_PAX(32)
205 SHOW_PAX(64) 345 SHOW_PAX(64)
206 } 346 }
207 347
208 348 /* Note: We do not support setting EI_PAX if not PT_PAX_FLAGS
209 if (fix_elf && setpax) { 349 * was found. This is known to break ELFs on glibc systems,
210 /* set the chpax settings */ 350 * and mainline PaX has deprecated use of this for a long time.
211 if (elf->elf_class == ELFCLASS32) { 351 * We could support changing PT_GNU_STACK, but that doesn't
212 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC) 352 * seem like it's worth the effort. #411919
213 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax)); 353 */
214 } else {
215 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
216 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
217 }
218 }
219 354
220 /* fall back to EI_PAX if no PT_PAX was found */ 355 /* fall back to EI_PAX if no PT_PAX was found */
221 if (!*ret) { 356 if (!*ret) {
222 static char *paxflags; 357 static char *paxflags;
223 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 358 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
237static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 372static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
238{ 373{
239 static char ret[12]; 374 static char ret[12];
240 char *found; 375 char *found;
241 unsigned long i, shown, multi_stack, multi_relro, multi_load; 376 unsigned long i, shown, multi_stack, multi_relro, multi_load;
242 int max_pt_load;
243 377
244 if (!show_phdr) return NULL; 378 if (!show_phdr) return NULL;
245 379
246 memcpy(ret, "--- --- ---\0", 12); 380 memcpy(ret, "--- --- ---\0", 12);
247 381
248 shown = 0; 382 shown = 0;
249 multi_stack = multi_relro = multi_load = 0; 383 multi_stack = multi_relro = multi_load = 0;
250 max_pt_load = elf_max_pt_load(elf);
251 384
252#define NOTE_GNU_STACK ".note.GNU-stack" 385#define NOTE_GNU_STACK ".note.GNU-stack"
253#define SHOW_PHDR(B) \ 386#define SHOW_PHDR(B) \
254 if (elf->elf_class == ELFCLASS ## B) { \ 387 if (elf->elf_class == ELFCLASS ## B) { \
255 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 388 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
271 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 404 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
272 found = found_relro; \ 405 found = found_relro; \
273 offset = 4; \ 406 offset = 4; \
274 check_flags = PF_X; \ 407 check_flags = PF_X; \
275 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 408 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
276 if (ehdr->e_type == ET_DYN || ehdr->e_type == ET_EXEC) \
277 if (multi_load++ > max_pt_load) \
278 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
279 if (file_matches_list(elf->filename, qa_wx_load)) \ 409 if (file_matches_list(elf->filename, qa_wx_load)) \
280 continue; \ 410 continue; \
281 found = found_load; \ 411 found = found_load; \
282 offset = 8; \ 412 offset = 8; \
283 check_flags = PF_W|PF_X; \ 413 check_flags = PF_W|PF_X; \
298 } else if (elf->shdr != NULL) { \ 428 } else if (elf->shdr != NULL) { \
299 /* no program headers which means this is prob an object file */ \ 429 /* no program headers which means this is prob an object file */ \
300 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 430 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
301 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 431 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
302 char *str; \ 432 char *str; \
303 if ((void*)strtbl > (void*)elf->data_end) \ 433 if ((void*)strtbl > elf->data_end) \
304 goto skip_this_shdr##B; \ 434 goto skip_this_shdr##B; \
435 /* let's flag -w/+x object files since the final ELF will most likely \
436 * need write access to the stack (who doesn't !?). so the combined \
437 * output will bring in +w automatically and that's bad. \
438 */ \
305 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 439 check_flags = /*SHF_WRITE|*/SHF_EXECINSTR; \
306 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 440 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
307 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 441 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
308 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 442 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
309 str = elf->data + offset; \ 443 str = elf->data + offset; \
310 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \ 444 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \
339 return NULL; 473 return NULL;
340 else 474 else
341 return ret; 475 return ret;
342} 476}
343 477
478/*
479 * See if this ELF contains a DT_TEXTREL tag in any of its
480 * PT_DYNAMIC sections.
481 */
344static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 482static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
345{ 483{
346 static const char *ret = "TEXTREL"; 484 static const char *ret = "TEXTREL";
347 unsigned long i; 485 unsigned long i;
348 486
359 Elf ## B ## _Off offset; \ 497 Elf ## B ## _Off offset; \
360 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 498 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
361 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \ 499 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
362 offset = EGET(phdr[i].p_offset); \ 500 offset = EGET(phdr[i].p_offset); \
363 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 501 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
364 dyn = DYN ## B (elf->data + offset); \ 502 dyn = DYN ## B (elf->vdata + offset); \
365 while (EGET(dyn->d_tag) != DT_NULL) { \ 503 while (EGET(dyn->d_tag) != DT_NULL) { \
366 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 504 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
367 *found_textrel = 1; \ 505 *found_textrel = 1; \
368 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 506 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
369 return (be_wewy_wewy_quiet ? NULL : ret); \ 507 return (be_wewy_wewy_quiet ? NULL : ret); \
379 return NULL; 517 return NULL;
380 else 518 else
381 return " - "; 519 return " - ";
382} 520}
383 521
522/*
523 * Scan the .text section to see if there are any relocations in it.
524 * Should rewrite this to check PT_LOAD sections that are marked
525 * Executable rather than the section named '.text'.
526 */
384static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 527static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
385{ 528{
386 unsigned long s, r, rmax; 529 unsigned long s, r, rmax;
387 void *symtab_void, *strtab_void, *text_void; 530 void *symtab_void, *strtab_void, *text_void;
388 531
409 Elf ## B ## _Rela *rela; \ 552 Elf ## B ## _Rela *rela; \
410 /* search the section headers for relocations */ \ 553 /* search the section headers for relocations */ \
411 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 554 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
412 uint32_t sh_type = EGET(shdr[s].sh_type); \ 555 uint32_t sh_type = EGET(shdr[s].sh_type); \
413 if (sh_type == SHT_REL) { \ 556 if (sh_type == SHT_REL) { \
414 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 557 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
415 rela = NULL; \ 558 rela = NULL; \
416 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 559 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
417 } else if (sh_type == SHT_RELA) { \ 560 } else if (sh_type == SHT_RELA) { \
418 rel = NULL; \ 561 rel = NULL; \
419 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 562 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
420 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 563 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
421 } else \ 564 } else \
422 continue; \ 565 continue; \
423 /* now see if any of the relocs are in the .text */ \ 566 /* now see if any of the relocs are in the .text */ \
424 for (r = 0; r < rmax; ++r) { \ 567 for (r = 0; r < rmax; ++r) { \
439 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \ 582 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
440 if (be_verbose <= 2) continue; \ 583 if (be_verbose <= 2) continue; \
441 } else \ 584 } else \
442 *found_textrels = 1; \ 585 *found_textrels = 1; \
443 /* locate this relocation symbol name */ \ 586 /* locate this relocation symbol name */ \
444 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 587 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
445 if ((void*)sym > (void*)elf->data_end) { \ 588 if ((void*)sym > elf->data_end) { \
446 warn("%s: corrupt ELF symbol", elf->filename); \ 589 warn("%s: corrupt ELF symbol", elf->filename); \
447 continue; \ 590 continue; \
448 } \ 591 } \
449 sym_max = ELF ## B ## _R_SYM(r_info); \ 592 sym_max = ELF ## B ## _R_SYM(r_info); \
450 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 593 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
453 sym = NULL; \ 596 sym = NULL; \
454 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 597 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
455 /* show the raw details about this reloc */ \ 598 /* show the raw details about this reloc */ \
456 printf(" %s: ", elf->base_filename); \ 599 printf(" %s: ", elf->base_filename); \
457 if (sym && sym->st_name) \ 600 if (sym && sym->st_name) \
458 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 601 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
459 else \ 602 else \
460 printf("(memory/data?)"); \ 603 printf("(memory/data?)"); \
461 printf(" [0x%lX]", (unsigned long)r_offset); \ 604 printf(" [0x%lX]", (unsigned long)r_offset); \
462 /* now try to find the closest symbol that this rel is probably in */ \ 605 /* now try to find the closest symbol that this rel is probably in */ \
463 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 606 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
464 func = NULL; \ 607 func = NULL; \
465 offset_tmp = 0; \ 608 offset_tmp = 0; \
466 while (sym_max--) { \ 609 while (sym_max--) { \
467 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \ 610 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
468 func = sym; \ 611 func = sym; \
478 else \ 621 else \
479 printf("%s", func_name); \ 622 printf("%s", func_name); \
480 } else \ 623 } else \
481 printf("(optimized out)"); \ 624 printf("(optimized out)"); \
482 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 625 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
483 if (be_verbose && has_objdump) { \ 626 if (be_verbose && objdump) { \
627 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
484 char *sysbuf; \ 628 char *sysbuf; \
485 size_t syslen; \ 629 size_t syslen; \
486 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \ 630 const char sysfmt[] = "%s -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
487 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \ 631 syslen = sizeof(sysfmt) + strlen(objdump) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
488 sysbuf = xmalloc(syslen); \ 632 sysbuf = xmalloc(syslen); \
489 if (sysbuf) { \
490 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
491 if (end_addr < r_offset) \ 633 if (end_addr < r_offset) \
492 /* not uncommon when things are optimized out */ \ 634 /* not uncommon when things are optimized out */ \
493 end_addr = r_offset + 0x100; \ 635 end_addr = r_offset + 0x100; \
494 snprintf(sysbuf, syslen, sysfmt, \ 636 snprintf(sysbuf, syslen, sysfmt, \
637 objdump, \
495 (unsigned long)offset_tmp, \ 638 (unsigned long)offset_tmp, \
496 (unsigned long)end_addr, \ 639 (unsigned long)end_addr, \
497 elf->filename, \ 640 elf->filename, \
498 (unsigned long)r_offset); \ 641 (unsigned long)r_offset); \
499 fflush(stdout); \ 642 fflush(stdout); \
500 system(sysbuf); \ 643 if (system(sysbuf)) {/* don't care */} \
501 fflush(stdout); \ 644 fflush(stdout); \
502 free(sysbuf); \ 645 free(sysbuf); \
503 } \
504 } \ 646 } \
505 } \ 647 } \
506 } } 648 } }
507 SHOW_TEXTRELS(32) 649 SHOW_TEXTRELS(32)
508 SHOW_TEXTRELS(64) 650 SHOW_TEXTRELS(64)
511 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 653 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
512 654
513 return NULL; 655 return NULL;
514} 656}
515 657
516static void rpath_security_checks(elfobj *, char *, const char *);
517static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type) 658static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
518{ 659{
519 struct stat st; 660 struct stat st;
520 switch (*item) { 661 switch (*item) {
521 case '/': break; 662 case '/': break;
537 break; 678 break;
538 } 679 }
539} 680}
540static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 681static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
541{ 682{
542 unsigned long i, s; 683 unsigned long i;
543 char *rpath, *runpath, **r; 684 char *rpath, *runpath, **r;
544 void *strtbl_void; 685 void *strtbl_void;
545 686
546 if (!show_rpath) return; 687 if (!show_rpath) return;
547 688
562 /* Just scan dynamic headers */ \ 703 /* Just scan dynamic headers */ \
563 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \ 704 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
564 offset = EGET(phdr[i].p_offset); \ 705 offset = EGET(phdr[i].p_offset); \
565 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 706 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
566 /* Just scan dynamic RPATH/RUNPATH headers */ \ 707 /* Just scan dynamic RPATH/RUNPATH headers */ \
567 dyn = DYN ## B (elf->data + offset); \ 708 dyn = DYN ## B (elf->vdata + offset); \
568 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 709 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
569 if (word == DT_RPATH) { \ 710 if (word == DT_RPATH) { \
570 r = &rpath; \ 711 r = &rpath; \
571 } else if (word == DT_RUNPATH) { \ 712 } else if (word == DT_RUNPATH) { \
572 r = &runpath; \ 713 r = &runpath; \
576 } \ 717 } \
577 /* Verify the memory is somewhat sane */ \ 718 /* Verify the memory is somewhat sane */ \
578 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 719 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
579 if (offset < (Elf ## B ## _Off)elf->len) { \ 720 if (offset < (Elf ## B ## _Off)elf->len) { \
580 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 721 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
581 *r = (char*)(elf->data + offset); \ 722 *r = elf->data + offset; \
582 /* cache the length in case we need to nuke this section later on */ \ 723 /* cache the length in case we need to nuke this section later on */ \
583 if (fix_elf) \ 724 if (fix_elf) \
584 offset = strlen(*r); \ 725 offset = strlen(*r); \
585 /* If quiet, don't output paths in ld.so.conf */ \ 726 /* If quiet, don't output paths in ld.so.conf */ \
586 if (be_quiet) { \ 727 if (be_quiet) { \
592 /* scan each path in : delimited list */ \ 733 /* scan each path in : delimited list */ \
593 while (start) { \ 734 while (start) { \
594 rpath_security_checks(elf, start, get_elfdtype(word)); \ 735 rpath_security_checks(elf, start, get_elfdtype(word)); \
595 end = strchr(start, ':'); \ 736 end = strchr(start, ':'); \
596 len = (end ? abs(end - start) : strlen(start)); \ 737 len = (end ? abs(end - start) : strlen(start)); \
597 if (use_ldcache) \ 738 if (use_ldcache) { \
598 for (s = 0; ldpaths[s]; ++s) \ 739 size_t n; \
740 const char *ldpath; \
741 array_for_each(ldpaths, n, ldpath) \
599 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 742 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
600 *r = end; \ 743 *r = end; \
601 /* corner case ... if RPATH reads "/usr/lib:", we want \ 744 /* corner case ... if RPATH reads "/usr/lib:", we want \
602 * to show ':' rather than '' */ \ 745 * to show ':' rather than '' */ \
603 if (end && end[1] != '\0') \ 746 if (end && end[1] != '\0') \
604 (*r)++; \ 747 (*r)++; \
605 break; \ 748 break; \
606 } \ 749 } \
750 } \
607 if (!*r || !end) \ 751 if (!*r || !end) \
608 break; \ 752 break; \
609 else \ 753 else \
610 start = start + len + 1; \ 754 start = start + len + 1; \
611 } \ 755 } \
677 xstrcat(ret, (runpath ? runpath : rpath), ret_len); 821 xstrcat(ret, (runpath ? runpath : rpath), ret_len);
678 else if (!be_quiet) 822 else if (!be_quiet)
679 xstrcat(ret, " - ", ret_len); 823 xstrcat(ret, " - ", ret_len);
680} 824}
681 825
826/* Defines can be seen in glibc's sysdeps/generic/ldconfig.h */
682#define LDSO_CACHE_MAGIC "ld.so-" 827#define LDSO_CACHE_MAGIC "ld.so-"
683#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1) 828#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
684#define LDSO_CACHE_VER "1.7.0" 829#define LDSO_CACHE_VER "1.7.0"
685#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1) 830#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
686#define FLAG_ANY -1 831#define FLAG_ANY -1
695#define FLAG_X8664_LIB64 0x0300 840#define FLAG_X8664_LIB64 0x0300
696#define FLAG_S390_LIB64 0x0400 841#define FLAG_S390_LIB64 0x0400
697#define FLAG_POWERPC_LIB64 0x0500 842#define FLAG_POWERPC_LIB64 0x0500
698#define FLAG_MIPS64_LIBN32 0x0600 843#define FLAG_MIPS64_LIBN32 0x0600
699#define FLAG_MIPS64_LIBN64 0x0700 844#define FLAG_MIPS64_LIBN64 0x0700
700 845#define FLAG_X8664_LIBX32 0x0800
701static char *lookup_cache_lib(elfobj *, char *); 846#define FLAG_ARM_LIBHF 0x0900
847#define FLAG_AARCH64_LIB64 0x0a00
702 848
703#if defined(__GLIBC__) || defined(__UCLIBC__) 849#if defined(__GLIBC__) || defined(__UCLIBC__)
704 850
705static char *lookup_cache_lib(elfobj *elf, char *fname) 851static char *lookup_cache_lib(elfobj *elf, const char *fname)
706{ 852{
707 int fd = 0; 853 int fd;
708 char *strs; 854 char *strs;
709 static char buf[__PAX_UTILS_PATH_MAX] = ""; 855 static char buf[__PAX_UTILS_PATH_MAX] = "";
710 const char *cachefile = "/etc/ld.so.cache"; 856 const char *cachefile = root_rel_path("/etc/ld.so.cache");
711 struct stat st; 857 struct stat st;
712 858
713 typedef struct { 859 typedef struct {
714 char magic[LDSO_CACHE_MAGIC_LEN]; 860 char magic[LDSO_CACHE_MAGIC_LEN];
715 char version[LDSO_CACHE_VER_LEN]; 861 char version[LDSO_CACHE_VER_LEN];
725 libentry_t *libent; 871 libentry_t *libent;
726 872
727 if (fname == NULL) 873 if (fname == NULL)
728 return NULL; 874 return NULL;
729 875
730 if (ldcache == 0) { 876 if (ldcache == NULL) {
731 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1) 877 if (fstatat(root_fd, cachefile, &st, 0))
878 return NULL;
879
880 fd = openat(root_fd, cachefile, O_RDONLY);
881 if (fd == -1)
732 return NULL; 882 return NULL;
733 883
734 /* cache these values so we only map/unmap the cache file once */ 884 /* cache these values so we only map/unmap the cache file once */
735 ldcache_size = st.st_size; 885 ldcache_size = st.st_size;
736 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0); 886 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
737
738 close(fd); 887 close(fd);
739 888
740 if (ldcache == (caddr_t)-1) { 889 if (ldcache == MAP_FAILED) {
741 ldcache = 0; 890 ldcache = NULL;
742 return NULL; 891 return NULL;
743 } 892 }
744 893
745 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 894 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
895 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
896 {
897 munmap(ldcache, ldcache_size);
898 ldcache = NULL;
746 return NULL; 899 return NULL;
747 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
748 return NULL;
749 } 900 }
901 } else
902 header = ldcache;
750 903
751 header = (header_t *) ldcache;
752 libent = (libentry_t *) (ldcache + sizeof(header_t)); 904 libent = ldcache + sizeof(header_t);
753 strs = (char *) &libent[header->nlibs]; 905 strs = (char *) &libent[header->nlibs];
754 906
755 for (fd = 0; fd < header->nlibs; fd++) { 907 for (fd = 0; fd < header->nlibs; ++fd) {
756 /* this should be more fine grained, but for now we assume that 908 /* This should be more fine grained, but for now we assume that
757 * diff arches will not be cached together. and we ignore the 909 * diff arches will not be cached together, and we ignore the
758 * the different multilib mips cases. */ 910 * the different multilib mips cases.
911 */
759 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK)) 912 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
760 continue; 913 continue;
761 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK)) 914 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
762 continue; 915 continue;
763 916
764 if (strcmp(fname, strs + libent[fd].sooffset) != 0) 917 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
765 continue; 918 continue;
919
920 /* Return first hit because that is how the ldso rolls */
766 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 921 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
922 break;
767 } 923 }
924
768 return buf; 925 return buf;
769} 926}
927
770#elif defined(__NetBSD__) 928#elif defined(__NetBSD__)
771static char *lookup_cache_lib(elfobj *elf, char *fname) 929static char *lookup_cache_lib(elfobj *elf, const char *fname)
772{ 930{
773 static char buf[__PAX_UTILS_PATH_MAX] = ""; 931 static char buf[__PAX_UTILS_PATH_MAX] = "";
774 static struct stat st; 932 static struct stat st;
775 933 size_t n;
776 char **ldpath; 934 char *ldpath;
777 for (ldpath = ldpaths; *ldpath != NULL; ldpath++) { 935
936 array_for_each(ldpath, n, ldpath) {
778 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", *ldpath, fname) >= sizeof(buf)) 937 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
779 continue; /* if the pathname is too long, or something went wrong, ignore */ 938 continue; /* if the pathname is too long, or something went wrong, ignore */
780 939
781 if (stat(buf, &st) != 0) 940 if (stat(buf, &st) != 0)
782 continue; /* if the lib doesn't exist in *ldpath, look further */ 941 continue; /* if the lib doesn't exist in *ldpath, look further */
783 942
791 950
792 /* not found in any path */ 951 /* not found in any path */
793 return NULL; 952 return NULL;
794} 953}
795#else 954#else
955#ifdef __ELF__
796#warning Cache support not implemented for your target 956#warning Cache support not implemented for your target
957#endif
797static char *lookup_cache_lib(elfobj *elf, char *fname) 958static char *lookup_cache_lib(elfobj *elf, const char *fname)
798{ 959{
799 return NULL; 960 return NULL;
800} 961}
801#endif 962#endif
963
964static char *lookup_config_lib(const char *fname)
965{
966 static char buf[__PAX_UTILS_PATH_MAX] = "";
967 const char *ldpath;
968 size_t n;
969
970 array_for_each(ldpaths, n, ldpath) {
971 snprintf(buf, sizeof(buf), "%s/%s", root_rel_path(ldpath), fname);
972 if (faccessat(root_fd, buf, F_OK, AT_SYMLINK_NOFOLLOW) == 0)
973 return buf;
974 }
975
976 return NULL;
977}
802 978
803static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 979static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
804{ 980{
805 unsigned long i; 981 unsigned long i;
806 char *needed; 982 char *needed;
807 void *strtbl_void; 983 void *strtbl_void;
808 char *p; 984 char *p;
809 985
986 /*
987 * -n -> op==0 -> print all
988 * -N -> op==1 -> print requested
989 */
810 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 990 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
991 return NULL;
811 992
812 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 993 strtbl_void = elf_findsecbyname(elf, ".dynstr");
813 994
814 if (elf->phdr && strtbl_void) { 995 if (elf->phdr && strtbl_void) {
815#define SHOW_NEEDED(B) \ 996#define SHOW_NEEDED(B) \
817 Elf ## B ## _Dyn *dyn; \ 998 Elf ## B ## _Dyn *dyn; \
818 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 999 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
819 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1000 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
820 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1001 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
821 Elf ## B ## _Off offset; \ 1002 Elf ## B ## _Off offset; \
1003 size_t matched = 0; \
1004 /* Walk all the program headers to find the PT_DYNAMIC */ \
822 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1005 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
823 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \ 1006 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
1007 continue; \
824 offset = EGET(phdr[i].p_offset); \ 1008 offset = EGET(phdr[i].p_offset); \
825 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1009 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
1010 continue; \
1011 /* Walk all the dynamic tags to find NEEDED entries */ \
826 dyn = DYN ## B (elf->data + offset); \ 1012 dyn = DYN ## B (elf->vdata + offset); \
827 while (EGET(dyn->d_tag) != DT_NULL) { \ 1013 while (EGET(dyn->d_tag) != DT_NULL) { \
828 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 1014 if (EGET(dyn->d_tag) == DT_NEEDED) { \
829 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1015 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
830 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1016 if (offset >= (Elf ## B ## _Off)elf->len) { \
831 ++dyn; \ 1017 ++dyn; \
832 continue; \ 1018 continue; \
833 } \ 1019 } \
834 needed = (char*)(elf->data + offset); \ 1020 needed = elf->data + offset; \
835 if (op == 0) { \ 1021 if (op == 0) { \
1022 /* -n -> print all entries */ \
836 if (!be_wewy_wewy_quiet) { \ 1023 if (!be_wewy_wewy_quiet) { \
837 if (*found_needed) xchrcat(ret, ',', ret_len); \ 1024 if (*found_needed) xchrcat(ret, ',', ret_len); \
838 if (use_ldcache) \ 1025 if (use_ldpath) { \
1026 if ((p = lookup_config_lib(needed)) != NULL) \
1027 needed = p; \
1028 } else if (use_ldcache) { \
839 if ((p = lookup_cache_lib(elf, needed)) != NULL) \ 1029 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
840 needed = p; \ 1030 needed = p; \
1031 } \
841 xstrcat(ret, needed, ret_len); \ 1032 xstrcat(ret, needed, ret_len); \
842 } \ 1033 } \
843 *found_needed = 1; \ 1034 *found_needed = 1; \
844 } else { \ 1035 } else { \
845 if (!strncmp(find_lib, needed, strlen( !g_match ? needed : find_lib))) { \ 1036 /* -N -> print matching entries */ \
1037 size_t n; \
1038 const char *find_lib_name; \
1039 \
1040 array_for_each(find_lib_arr, n, find_lib_name) { \
1041 int invert = 1; \
1042 if (find_lib_name[0] == '!') \
1043 invert = 0, ++find_lib_name; \
1044 if (!strcmp(find_lib_name, needed) == invert) \
1045 ++matched; \
1046 } \
1047 \
1048 if (matched == array_cnt(find_lib_arr)) { \
846 *found_lib = 1; \ 1049 *found_lib = 1; \
847 return (be_wewy_wewy_quiet ? NULL : needed); \ 1050 return (be_wewy_wewy_quiet ? NULL : find_lib); \
848 } \ 1051 } \
849 } \ 1052 } \
850 } \ 1053 } \
851 ++dyn; \ 1054 ++dyn; \
852 } \ 1055 } \
874 *found_interp = 1; \ 1077 *found_interp = 1; \
875 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \ 1078 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \
876 } 1079 }
877 SHOW_INTERP(32) 1080 SHOW_INTERP(32)
878 SHOW_INTERP(64) 1081 SHOW_INTERP(64)
1082 } else {
1083 /* Walk all the program headers to find the PT_INTERP */
1084#define SHOW_PT_INTERP(B) \
1085 if (elf->elf_class == ELFCLASS ## B) { \
1086 unsigned long i; \
1087 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
1088 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
1089 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
1090 if (EGET(phdr[i].p_type) != PT_INTERP) \
1091 continue; \
1092 *found_interp = 1; \
1093 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(phdr[i].p_offset)); \
1094 } \
879 } 1095 }
1096 SHOW_PT_INTERP(32)
1097 SHOW_PT_INTERP(64)
1098 }
1099
880 return NULL; 1100 return NULL;
881} 1101}
882static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1102static const char *scanelf_file_bind(elfobj *elf, char *found_bind)
883{ 1103{
884 unsigned long i; 1104 unsigned long i;
885 struct stat s; 1105 struct stat s;
886 char dynamic = 0; 1106 bool dynamic = false;
887 1107
888 if (!show_bind) return NULL; 1108 if (!show_bind) return NULL;
889 if (!elf->phdr) return NULL; 1109 if (!elf->phdr) return NULL;
890 1110
891#define SHOW_BIND(B) \ 1111#define SHOW_BIND(B) \
894 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1114 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
895 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1115 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
896 Elf ## B ## _Off offset; \ 1116 Elf ## B ## _Off offset; \
897 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1117 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
898 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \ 1118 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
899 dynamic = 1; \ 1119 dynamic = true; \
900 offset = EGET(phdr[i].p_offset); \ 1120 offset = EGET(phdr[i].p_offset); \
901 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1121 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
902 dyn = DYN ## B (elf->data + offset); \ 1122 dyn = DYN ## B (elf->vdata + offset); \
903 while (EGET(dyn->d_tag) != DT_NULL) { \ 1123 while (EGET(dyn->d_tag) != DT_NULL) { \
904 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1124 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
905 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 1125 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
906 { \ 1126 { \
907 if (be_quiet) return NULL; \ 1127 if (be_quiet) return NULL; \
920 /* don't output anything if quiet mode and the ELF is static or not setuid */ 1140 /* don't output anything if quiet mode and the ELF is static or not setuid */
921 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) { 1141 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
922 return NULL; 1142 return NULL;
923 } else { 1143 } else {
924 *found_bind = 1; 1144 *found_bind = 1;
925 return (char *) (dynamic ? "LAZY" : "STATIC"); 1145 return dynamic ? "LAZY" : "STATIC";
926 } 1146 }
927} 1147}
928static char *scanelf_file_soname(elfobj *elf, char *found_soname) 1148static char *scanelf_file_soname(elfobj *elf, char *found_soname)
929{ 1149{
930 unsigned long i; 1150 unsigned long i;
942 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1162 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
943 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1163 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
944 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1164 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
945 Elf ## B ## _Off offset; \ 1165 Elf ## B ## _Off offset; \
946 /* only look for soname in shared objects */ \ 1166 /* only look for soname in shared objects */ \
947 if (ehdr->e_type != ET_DYN) \ 1167 if (EGET(ehdr->e_type) != ET_DYN) \
948 return NULL; \ 1168 return NULL; \
949 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1169 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
950 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \ 1170 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
951 offset = EGET(phdr[i].p_offset); \ 1171 offset = EGET(phdr[i].p_offset); \
952 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1172 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
953 dyn = DYN ## B (elf->data + offset); \ 1173 dyn = DYN ## B (elf->vdata + offset); \
954 while (EGET(dyn->d_tag) != DT_NULL) { \ 1174 while (EGET(dyn->d_tag) != DT_NULL) { \
955 if (EGET(dyn->d_tag) == DT_SONAME) { \ 1175 if (EGET(dyn->d_tag) == DT_SONAME) { \
956 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1176 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
957 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1177 if (offset >= (Elf ## B ## _Off)elf->len) { \
958 ++dyn; \ 1178 ++dyn; \
959 continue; \ 1179 continue; \
960 } \ 1180 } \
961 soname = (char*)(elf->data + offset); \ 1181 soname = elf->data + offset; \
962 *found_soname = 1; \ 1182 *found_soname = 1; \
963 return (be_wewy_wewy_quiet ? NULL : soname); \ 1183 return (be_wewy_wewy_quiet ? NULL : soname); \
964 } \ 1184 } \
965 ++dyn; \ 1185 ++dyn; \
966 } \ 1186 } \
970 } 1190 }
971 1191
972 return NULL; 1192 return NULL;
973} 1193}
974 1194
1195/*
1196 * We support the symbol form:
1197 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
1198 * If the symbol name is empty, then all symbols are matched.
1199 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1200 * Do not rely on this output format at all.
1201 * Otherwise the symbol name is used to search (either regex or string compare).
1202 * If the first char of the symbol name is a plus ("+"), then only match
1203 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1204 * Putting modifiers in between the percent signs allows for more in depth
1205 * filters. There are groups of modifiers. If you don't specify a member
1206 * of a group, then all types in that group are matched. The current
1207 * groups and their types are:
1208 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1209 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1210 * STV group: STV_DEFAULT:p STV_INTERNAL:i STV_HIDDEN:h STV_PROTECTED:P
1211 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1212 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1213 * You can search for multiple symbols at once by seperating with a comma (",").
1214 *
1215 * Some examples:
1216 * ELFs with a weak function "foo":
1217 * scanelf -s %wf%foo <ELFs>
1218 * ELFs that define the symbol "main":
1219 * scanelf -s +main <ELFs>
1220 * scanelf -s %d%main <ELFs>
1221 * ELFs that refer to the undefined symbol "brk":
1222 * scanelf -s -brk <ELFs>
1223 * scanelf -s %u%brk <ELFs>
1224 * All global defined objects in an ELF:
1225 * scanelf -s %ogd% <ELF>
1226 */
1227static void
1228scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1229 unsigned int stt, unsigned int stb, unsigned int stv, unsigned int shn, unsigned long size)
1230{
1231 const char *this_sym;
1232 size_t n;
1233
1234 array_for_each(find_sym_arr, n, this_sym) {
1235 bool inc_notype, inc_object, inc_func, inc_file,
1236 inc_local, inc_global, inc_weak,
1237 inc_visdef, inc_intern, inc_hidden, inc_prot,
1238 inc_def, inc_undef, inc_abs, inc_common;
1239
1240 /* symbol selection! */
1241 inc_notype = inc_object = inc_func = inc_file =
1242 inc_local = inc_global = inc_weak =
1243 inc_visdef = inc_intern = inc_hidden = inc_prot =
1244 inc_def = inc_undef = inc_abs = inc_common =
1245 (*this_sym != '%');
1246
1247 /* parse the contents of %...% */
1248 if (!inc_notype) {
1249 while (*(this_sym++)) {
1250 if (*this_sym == '%') {
1251 ++this_sym;
1252 break;
1253 }
1254 switch (*this_sym) {
1255 case 'n': inc_notype = true; break;
1256 case 'o': inc_object = true; break;
1257 case 'f': inc_func = true; break;
1258 case 'F': inc_file = true; break;
1259 case 'l': inc_local = true; break;
1260 case 'g': inc_global = true; break;
1261 case 'w': inc_weak = true; break;
1262 case 'p': inc_visdef = true; break;
1263 case 'i': inc_intern = true; break;
1264 case 'h': inc_hidden = true; break;
1265 case 'P': inc_prot = true; break;
1266 case 'd': inc_def = true; break;
1267 case 'u': inc_undef = true; break;
1268 case 'a': inc_abs = true; break;
1269 case 'c': inc_common = true; break;
1270 default: err("invalid symbol selector '%c'", *this_sym);
1271 }
1272 }
1273
1274 /* If no types are matched, not match all */
1275 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1276 inc_notype = inc_object = inc_func = inc_file = true;
1277 if (!inc_local && !inc_global && !inc_weak)
1278 inc_local = inc_global = inc_weak = true;
1279 if (!inc_visdef && !inc_intern && !inc_hidden && !inc_prot)
1280 inc_visdef = inc_intern = inc_hidden = inc_prot = true;
1281 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1282 inc_def = inc_undef = inc_abs = inc_common = true;
1283
1284 /* backwards compat for defined/undefined short hand */
1285 } else if (*this_sym == '+') {
1286 inc_undef = false;
1287 ++this_sym;
1288 } else if (*this_sym == '-') {
1289 inc_def = inc_abs = inc_common = false;
1290 ++this_sym;
1291 }
1292
1293 /* filter symbols */
1294 if ((!inc_notype && stt == STT_NOTYPE ) || \
1295 (!inc_object && stt == STT_OBJECT ) || \
1296 (!inc_func && stt == STT_FUNC ) || \
1297 (!inc_file && stt == STT_FILE ) || \
1298 (!inc_local && stb == STB_LOCAL ) || \
1299 (!inc_global && stb == STB_GLOBAL ) || \
1300 (!inc_weak && stb == STB_WEAK ) || \
1301 (!inc_visdef && stv == STV_DEFAULT ) || \
1302 (!inc_intern && stv == STV_INTERNAL ) || \
1303 (!inc_hidden && stv == STV_HIDDEN ) || \
1304 (!inc_prot && stv == STV_PROTECTED) || \
1305 (!inc_def && shn && shn < SHN_LORESERVE) || \
1306 (!inc_undef && shn == SHN_UNDEF ) || \
1307 (!inc_abs && shn == SHN_ABS ) || \
1308 (!inc_common && shn == SHN_COMMON ))
1309 continue;
1310
1311 if (*this_sym == '*') {
1312 /* a "*" symbol gets you debug output */
1313 printf("%s(%s) %5lX %-15s %-15s %-15s %-15s %s\n",
1314 ((*found_sym == 0) ? "\n\t" : "\t"),
1315 elf->base_filename,
1316 size,
1317 get_elfstttype(stt),
1318 get_elfstbtype(stb),
1319 get_elfstvtype(stv),
1320 get_elfshntype(shn),
1321 symname);
1322 goto matched;
1323
1324 } else {
1325 if (g_match) {
1326 /* regex match the symbol */
1327 if (regexec(find_sym_regex_arr->eles[n], symname, 0, NULL, 0) == REG_NOMATCH)
1328 continue;
1329
1330 } else if (*this_sym) {
1331 /* give empty symbols a "pass", else do a normal compare */
1332 const size_t len = strlen(this_sym);
1333 if (!(strncmp(this_sym, symname, len) == 0 &&
1334 /* Accept unversioned symbol names */
1335 (symname[len] == '\0' || symname[len] == '@')))
1336 continue;
1337 }
1338
1339 if (be_semi_verbose) {
1340 char buf[1024];
1341 snprintf(buf, sizeof(buf), "%lX %s %s",
1342 size,
1343 get_elfstttype(stt),
1344 this_sym);
1345 *ret = xstrdup(buf);
1346 } else {
1347 if (*ret) xchrcat(ret, ',', ret_len);
1348 xstrcat(ret, symname, ret_len);
1349 }
1350
1351 goto matched;
1352 }
1353 }
1354
1355 return;
1356
1357 matched:
1358 *found_sym = 1;
1359}
1360
975static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1361static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
976{ 1362{
977 unsigned long i;
978 char *ret; 1363 char *ret;
979 void *symtab_void, *strtab_void; 1364 void *symtab_void, *strtab_void;
980 1365
981 if (!find_sym) return NULL; 1366 if (!find_sym) return NULL;
982 ret = find_sym; 1367 ret = NULL;
983 1368
984 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1369 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
985 1370
986 if (symtab_void && strtab_void) { 1371 if (symtab_void && strtab_void) {
987#define FIND_SYM(B) \ 1372#define FIND_SYM(B) \
988 if (elf->elf_class == ELFCLASS ## B) { \ 1373 if (elf->elf_class == ELFCLASS ## B) { \
989 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1374 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
990 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1375 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
991 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1376 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
992 unsigned long cnt = EGET(symtab->sh_entsize); \ 1377 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
993 char *symname; \ 1378 char *symname; \
1379 size_t ret_len = 0; \
994 if (cnt) \ 1380 if (cnt) \
995 cnt = EGET(symtab->sh_size) / cnt; \ 1381 cnt = EGET(symtab->sh_size) / cnt; \
996 for (i = 0; i < cnt; ++i) { \ 1382 for (i = 0; i < cnt; ++i) { \
1383 if ((void*)sym > elf->data_end) { \
1384 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1385 goto break_out; \
1386 } \
997 if (sym->st_name) { \ 1387 if (sym->st_name) { \
998 /* make sure the symbol name is in acceptable memory range */ \ 1388 /* make sure the symbol name is in acceptable memory range */ \
999 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1389 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
1000 if ((void*)symname > (void*)elf->data_end) { \ 1390 if ((void*)symname > elf->data_end) { \
1001 warnf("%s: corrupt ELF symbols", elf->filename); \ 1391 warnf("%s: corrupt ELF symbols", elf->filename); \
1002 ++sym; \ 1392 ++sym; \
1003 continue; \ 1393 continue; \
1004 } \ 1394 } \
1005 /* debug display ... show all symbols and some extra info */ \ 1395 scanelf_match_symname(elf, found_sym, \
1006 if (g_match ? rematch(ret, symname, REG_EXTENDED) == 0 : *ret == '*') { \ 1396 &ret, &ret_len, symname, \
1007 printf("%s(%s) %5lX %15s %s %s\n", \ 1397 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
1008 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1398 ELF##B##_ST_BIND(EGET(sym->st_info)), \
1009 elf->base_filename, \ 1399 ELF##B##_ST_VISIBILITY(EGET(sym->st_other)), \
1010 (unsigned long)sym->st_size, \ 1400 EGET(sym->st_shndx), \
1011 get_elfstttype(sym->st_info), \ 1401 /* st_size can be 64bit, but no one is really that big, so screw em */ \
1012 sym->st_shndx == SHN_UNDEF ? "U" : "D", symname); \ 1402 EGET(sym->st_size)); \
1013 *found_sym = 1; \
1014 } else { \
1015 /* allow the user to specify a comma delimited list of symbols to search for */ \
1016 char *this_sym, *this_sym_ver, *next_sym; \
1017 this_sym = ret; \
1018 this_sym_ver = versioned_symname; \
1019 do { \
1020 next_sym = strchr(this_sym, ','); \
1021 if (next_sym == NULL) \
1022 next_sym = this_sym + strlen(this_sym); \
1023 /* do we want a defined symbol ? */ \
1024 if (*this_sym == '+') { \
1025 if (sym->st_shndx == SHN_UNDEF) \
1026 goto skip_this_sym##B; \
1027 ++this_sym; \
1028 ++this_sym_ver; \
1029 /* do we want an undefined symbol ? */ \
1030 } else if (*this_sym == '-') { \
1031 if (sym->st_shndx != SHN_UNDEF) \
1032 goto skip_this_sym##B; \
1033 ++this_sym; \
1034 ++this_sym_ver; \
1035 } \
1036 /* ok, lets compare the name now */ \
1037 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \
1038 (strncmp(this_sym_ver, symname, strlen(this_sym_ver)) == 0)) { \
1039 if (be_semi_verbose) { \
1040 char buf[126]; \
1041 snprintf(buf, sizeof(buf), "%lX %s %s", \
1042 (unsigned long)sym->st_size, get_elfstttype(sym->st_info), this_sym); \
1043 ret = buf; \
1044 } else \
1045 ret = this_sym; \
1046 (*found_sym)++; \
1047 goto break_out; \
1048 } \
1049 skip_this_sym##B: this_sym = next_sym + 1; \
1050 } while (*next_sym != '\0'); \
1051 } \
1052 } \ 1403 } \
1053 ++sym; \ 1404 ++sym; \
1054 } } 1405 } \
1406 }
1055 FIND_SYM(32) 1407 FIND_SYM(32)
1056 FIND_SYM(64) 1408 FIND_SYM(64)
1057 } 1409 }
1058 1410
1059break_out: 1411break_out:
1062 if (*find_sym != '*' && *found_sym) 1414 if (*find_sym != '*' && *found_sym)
1063 return ret; 1415 return ret;
1064 if (be_quiet) 1416 if (be_quiet)
1065 return NULL; 1417 return NULL;
1066 else 1418 else
1067 return (char *)" - "; 1419 return " - ";
1068} 1420}
1069 1421
1070
1071static char *scanelf_file_sections(elfobj *elf, char *found_section) 1422static const char *scanelf_file_sections(elfobj *elf, char *found_section)
1072{ 1423{
1073 if (!find_section) 1424 if (!find_section)
1074 return NULL; 1425 return NULL;
1075 1426
1076#define FIND_SECTION(B) \ 1427#define FIND_SECTION(B) \
1077 if (elf->elf_class == ELFCLASS ## B) { \ 1428 if (elf->elf_class == ELFCLASS ## B) { \
1429 size_t matched, n; \
1078 int invert; \ 1430 int invert; \
1431 const char *section_name; \
1079 Elf ## B ## _Shdr *section; \ 1432 Elf ## B ## _Shdr *section; \
1433 \
1434 matched = 0; \
1435 array_for_each(find_section_arr, n, section_name) { \
1080 invert = (*find_section == '!' ? 1 : 0); \ 1436 invert = (*section_name == '!' ? 1 : 0); \
1081 section = SHDR ## B (elf_findsecbyname(elf, find_section+invert)); \ 1437 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
1082 if ((section == NULL && invert) || (section != NULL && !invert)) \ 1438 if ((section == NULL && invert) || (section != NULL && !invert)) \
1439 ++matched; \
1440 } \
1441 \
1442 if (matched == array_cnt(find_section_arr)) \
1083 *found_section = 1; \ 1443 *found_section = 1; \
1084 } 1444 }
1085 FIND_SECTION(32) 1445 FIND_SECTION(32)
1086 FIND_SECTION(64) 1446 FIND_SECTION(64)
1087 1447
1092 return find_section; 1452 return find_section;
1093 1453
1094 if (be_quiet) 1454 if (be_quiet)
1095 return NULL; 1455 return NULL;
1096 else 1456 else
1097 return (char *)" - "; 1457 return " - ";
1098} 1458}
1099 1459
1100/* scan an elf file and show all the fun stuff */ 1460/* scan an elf file and show all the fun stuff */
1101#define prints(str) write(fileno(stdout), str, strlen(str)) 1461#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
1102static int scanelf_elfobj(elfobj *elf) 1462static int scanelf_elfobj(elfobj *elf)
1103{ 1463{
1104 unsigned long i; 1464 unsigned long i;
1105 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1465 char found_pax, found_phdr, found_relro, found_load, found_textrel,
1106 found_rpath, found_needed, found_interp, found_bind, found_soname, 1466 found_rpath, found_needed, found_interp, found_bind, found_soname,
1120 printf("%s: scanning file\n", elf->filename); 1480 printf("%s: scanning file\n", elf->filename);
1121 1481
1122 /* init output buffer */ 1482 /* init output buffer */
1123 if (!out_buffer) { 1483 if (!out_buffer) {
1124 out_len = sizeof(char) * 80; 1484 out_len = sizeof(char) * 80;
1125 out_buffer = (char*)xmalloc(out_len); 1485 out_buffer = xmalloc(out_len);
1126 } 1486 }
1127 *out_buffer = '\0'; 1487 *out_buffer = '\0';
1128 1488
1129 /* show the header */ 1489 /* show the header */
1130 if (!be_quiet && show_banner) { 1490 if (!be_quiet && show_banner) {
1142 case 'x': prints(" PAX "); break; 1502 case 'x': prints(" PAX "); break;
1143 case 'e': prints("STK/REL/PTL "); break; 1503 case 'e': prints("STK/REL/PTL "); break;
1144 case 't': prints("TEXTREL "); break; 1504 case 't': prints("TEXTREL "); break;
1145 case 'r': prints("RPATH "); break; 1505 case 'r': prints("RPATH "); break;
1146 case 'M': prints("CLASS "); break; 1506 case 'M': prints("CLASS "); break;
1507 case 'l':
1147 case 'n': prints("NEEDED "); break; 1508 case 'n': prints("NEEDED "); break;
1148 case 'i': prints("INTERP "); break; 1509 case 'i': prints("INTERP "); break;
1149 case 'b': prints("BIND "); break; 1510 case 'b': prints("BIND "); break;
1511 case 'Z': prints("SIZE "); break;
1150 case 'S': prints("SONAME "); break; 1512 case 'S': prints("SONAME "); break;
1151 case 's': prints("SYM "); break; 1513 case 's': prints("SYM "); break;
1152 case 'N': prints("LIB "); break; 1514 case 'N': prints("LIB "); break;
1153 case 'T': prints("TEXTRELS "); break; 1515 case 'T': prints("TEXTRELS "); break;
1154 case 'k': prints("SECTION "); break; 1516 case 'k': prints("SECTION "); break;
1155 case 'a': prints("ARCH "); break; 1517 case 'a': prints("ARCH "); break;
1518 case 'I': prints("OSABI "); break;
1519 case 'Y': prints("EABI "); break;
1156 case 'O': prints("PERM "); break; 1520 case 'O': prints("PERM "); break;
1157 case 'D': prints("ENDIAN "); break; 1521 case 'D': prints("ENDIAN "); break;
1158 default: warnf("'%c' has no title ?", out_format[i]); 1522 default: warnf("'%c' has no title ?", out_format[i]);
1159 } 1523 }
1160 } 1524 }
1166 1530
1167 /* dump all the good stuff */ 1531 /* dump all the good stuff */
1168 for (i = 0; out_format[i]; ++i) { 1532 for (i = 0; out_format[i]; ++i) {
1169 const char *out; 1533 const char *out;
1170 const char *tmp; 1534 const char *tmp;
1171 1535 static char ubuf[sizeof(unsigned long)*2];
1172 if (!IS_MODIFIER(out_format[i])) { 1536 if (!IS_MODIFIER(out_format[i])) {
1173 xchrcat(&out_buffer, out_format[i], &out_len); 1537 xchrcat(&out_buffer, out_format[i], &out_len);
1174 continue; 1538 continue;
1175 } 1539 }
1176 1540
1214 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1578 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
1215 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1579 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
1216 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1580 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1217 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break; 1581 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1218 case 'D': out = get_endian(elf); break; 1582 case 'D': out = get_endian(elf); break;
1219 case 'O': out = getstr_perms(elf->filename); break; 1583 case 'O': out = strfileperms(elf->filename); break;
1220 case 'n': 1584 case 'n':
1221 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1585 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
1222 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1586 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
1223 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1587 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
1224 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1588 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
1225 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1589 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1226 case 'k': out = scanelf_file_sections(elf, &found_section); break; 1590 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1227 case 'a': out = get_elfemtype(elf); break; 1591 case 'a': out = get_elfemtype(elf); break;
1592 case 'I': out = get_elfosabi(elf); break;
1593 case 'Y': out = get_elf_eabi(elf); break;
1594 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
1228 default: warnf("'%c' has no scan code?", out_format[i]); 1595 default: warnf("'%c' has no scan code?", out_format[i]);
1229 } 1596 }
1230 if (out) { 1597 if (out)
1231 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
1232 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
1233 xstrncat(&out_buffer, out, &out_len, (tmp-out));
1234 else
1235 xstrcat(&out_buffer, out, &out_len); 1598 xstrcat(&out_buffer, out, &out_len);
1236 }
1237 } 1599 }
1238 1600
1239#define FOUND_SOMETHING() \ 1601#define FOUND_SOMETHING() \
1240 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1602 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
1241 found_rpath || found_needed || found_interp || found_bind || \ 1603 found_rpath || found_needed || found_interp || found_bind || \
1255 1617
1256/* scan a single elf */ 1618/* scan a single elf */
1257static int scanelf_elf(const char *filename, int fd, size_t len) 1619static int scanelf_elf(const char *filename, int fd, size_t len)
1258{ 1620{
1259 int ret = 1; 1621 int ret = 1;
1622 size_t n;
1623 const char *match_etype;
1260 elfobj *elf; 1624 elfobj *elf;
1261 1625
1262 /* verify this is real ELF */ 1626 /* Verify this is a real ELF */
1263 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) { 1627 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1264 if (be_verbose > 2) printf("%s: not an ELF\n", filename); 1628 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1265 return ret; 1629 return 2;
1266 } 1630 }
1631
1632 /* Possibly filter based on ELF bitness */
1267 switch (match_bits) { 1633 switch (match_bits) {
1268 case 32: 1634 case 32:
1269 if (elf->elf_class != ELFCLASS32) 1635 if (elf->elf_class != ELFCLASS32)
1270 goto label_done; 1636 goto done;
1271 break; 1637 break;
1272 case 64: 1638 case 64:
1273 if (elf->elf_class != ELFCLASS64) 1639 if (elf->elf_class != ELFCLASS64)
1274 goto label_done; 1640 goto done;
1275 break; 1641 break;
1276 default: break;
1277 } 1642 }
1278 if (strlen(match_etypes)) { 1643
1279 char sbuf[126]; 1644 /* Possibly filter based on the ELF's e_type field */
1280 strncpy(sbuf, match_etypes, sizeof(sbuf)); 1645 array_for_each(match_etypes, n, match_etype)
1281 if (strchr(match_etypes, ',') != NULL) {
1282 char *p;
1283 while((p = strrchr(sbuf, ',')) != NULL) {
1284 *p = 0;
1285 if (etype_lookup(p+1) == get_etype(elf)) 1646 if (etype_lookup(match_etype) == get_etype(elf))
1286 goto label_ret; 1647 goto scanit;
1287 } 1648 if (array_cnt(match_etypes))
1288 }
1289 if (etype_lookup(sbuf) != get_etype(elf))
1290 goto label_done; 1649 goto done;
1291 }
1292 1650
1293label_ret: 1651 scanit:
1294 ret = scanelf_elfobj(elf); 1652 ret = scanelf_elfobj(elf);
1295 1653
1296label_done: 1654 done:
1297 unreadelf(elf); 1655 unreadelf(elf);
1298 return ret; 1656 return ret;
1299} 1657}
1300 1658
1301/* scan an archive of elfs */ 1659/* scan an archive of elfs */
1308 1666
1309 ar = ar_open_fd(filename, fd); 1667 ar = ar_open_fd(filename, fd);
1310 if (ar == NULL) 1668 if (ar == NULL)
1311 return 1; 1669 return 1;
1312 1670
1313 ar_buffer = (char*)mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0); 1671 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1314 while ((m=ar_next(ar)) != NULL) { 1672 while ((m = ar_next(ar)) != NULL) {
1673 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1674 if (cur_pos == -1)
1675 errp("lseek() failed");
1315 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size); 1676 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1316 if (elf) { 1677 if (elf) {
1317 scanelf_elfobj(elf); 1678 scanelf_elfobj(elf);
1318 unreadelf(elf); 1679 unreadelf(elf);
1319 } 1680 }
1320 } 1681 }
1321 munmap(ar_buffer, len); 1682 munmap(ar_buffer, len);
1322 1683
1323 return 0; 1684 return 0;
1324} 1685}
1325/* scan a file which may be an elf or an archive or some other magical beast */ 1686/* scan a file which may be an elf or an archive or some other magical beast */
1326static int scanelf_file(const char *filename, const struct stat *st_cache) 1687static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1327{ 1688{
1328 const struct stat *st = st_cache; 1689 const struct stat *st = st_cache;
1329 struct stat symlink_st; 1690 struct stat symlink_st;
1330 int fd; 1691 int fd;
1331 1692
1332 /* always handle regular files and handle symlinked files if no -y */ 1693 /* always handle regular files and handle symlinked files if no -y */
1333 if (S_ISLNK(st->st_mode)) { 1694 if (S_ISLNK(st->st_mode)) {
1334 if (!scan_symlink) return 1; 1695 if (!scan_symlink)
1696 return 1;
1335 stat(filename, &symlink_st); 1697 fstatat(dir_fd, filename, &symlink_st, 0);
1336 st = &symlink_st; 1698 st = &symlink_st;
1337 } 1699 }
1338 1700
1339 if (!S_ISREG(st->st_mode)) { 1701 if (!S_ISREG(st->st_mode)) {
1340 if (be_verbose > 2) printf("%s: skipping non-file\n", filename); 1702 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1343 1705
1344 if (match_perms) { 1706 if (match_perms) {
1345 if ((st->st_mode | match_perms) != st->st_mode) 1707 if ((st->st_mode | match_perms) != st->st_mode)
1346 return 1; 1708 return 1;
1347 } 1709 }
1348 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1) 1710 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1711 if (fd == -1) {
1712 if (fix_elf && errno == ETXTBSY)
1713 warnp("%s: could not fix", filename);
1714 else if (be_verbose > 2)
1715 printf("%s: skipping file: %s\n", filename, strerror(errno));
1349 return 1; 1716 return 1;
1717 }
1350 1718
1351 if (scanelf_elf(filename, fd, st->st_size) == 1 && scan_archives) 1719 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1352 /* if it isn't an ELF, maybe it's an .a archive */ 1720 /* if it isn't an ELF, maybe it's an .a archive */
1721 if (scan_archives)
1353 scanelf_archive(filename, fd, st->st_size); 1722 scanelf_archive(filename, fd, st->st_size);
1354 1723
1724 /*
1725 * unreadelf() implicitly closes its fd, so only close it
1726 * when we are returning it in the non-ELF case
1727 */
1355 close(fd); 1728 close(fd);
1729 }
1730
1356 return 0; 1731 return 0;
1357} 1732}
1358 1733
1359/* scan a directory for ET_EXEC files and print when we find one */ 1734/* scan a directory for ET_EXEC files and print when we find one */
1360static int scanelf_dir(const char *path) 1735static int scanelf_dirat(int dir_fd, const char *path)
1361{ 1736{
1362 register DIR *dir; 1737 register DIR *dir;
1363 register struct dirent *dentry; 1738 register struct dirent *dentry;
1364 struct stat st_top, st; 1739 struct stat st_top, st;
1365 char buf[__PAX_UTILS_PATH_MAX]; 1740 char buf[__PAX_UTILS_PATH_MAX], *subpath;
1366 size_t pathlen = 0, len = 0; 1741 size_t pathlen = 0, len = 0;
1367 int ret = 0; 1742 int ret = 0;
1743 int subdir_fd;
1368 1744
1369 /* make sure path exists */ 1745 /* make sure path exists */
1370 if (lstat(path, &st_top) == -1) { 1746 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
1371 if (be_verbose > 2) printf("%s: does not exist\n", path); 1747 if (be_verbose > 2) printf("%s: does not exist\n", path);
1372 return 1; 1748 return 1;
1373 } 1749 }
1374 1750
1375 /* ok, if it isn't a directory, assume we can open it */ 1751 /* ok, if it isn't a directory, assume we can open it */
1376 if (!S_ISDIR(st_top.st_mode)) { 1752 if (!S_ISDIR(st_top.st_mode))
1377 return scanelf_file(path, &st_top); 1753 return scanelf_fileat(dir_fd, path, &st_top);
1378 }
1379 1754
1380 /* now scan the dir looking for fun stuff */ 1755 /* now scan the dir looking for fun stuff */
1381 if ((dir = opendir(path)) == NULL) { 1756 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
1382 warnf("could not opendir %s: %s", path, strerror(errno)); 1757 if (subdir_fd == -1)
1758 dir = NULL;
1759 else
1760 dir = fdopendir(subdir_fd);
1761 if (dir == NULL) {
1762 if (subdir_fd != -1)
1763 close(subdir_fd);
1764 else if (be_verbose > 2)
1765 printf("%s: skipping dir: %s\n", path, strerror(errno));
1383 return 1; 1766 return 1;
1384 } 1767 }
1385 if (be_verbose > 1) printf("%s: scanning dir\n", path); 1768 if (be_verbose > 1) printf("%s: scanning dir\n", path);
1386 1769
1387 pathlen = strlen(path); 1770 subpath = stpcpy(buf, path);
1771 if (subpath[-1] != '/')
1772 *subpath++ = '/';
1773 pathlen = subpath - buf;
1388 while ((dentry = readdir(dir))) { 1774 while ((dentry = readdir(dir))) {
1389 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1775 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
1390 continue; 1776 continue;
1777
1778 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
1779 continue;
1780
1391 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1781 len = strlen(dentry->d_name);
1392 if (len >= sizeof(buf)) { 1782 if (len + pathlen + 1 >= sizeof(buf)) {
1393 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1783 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
1394 (unsigned long)len, (unsigned long)sizeof(buf)); 1784 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
1395 continue; 1785 continue;
1396 } 1786 }
1397 snprintf(buf, sizeof(buf), "%s%s%s", path, (path[pathlen-1] == '/') ? "" : "/", dentry->d_name); 1787 memcpy(subpath, dentry->d_name, len);
1398 if (lstat(buf, &st) != -1) { 1788 subpath[len] = '\0';
1789
1399 if (S_ISREG(st.st_mode)) 1790 if (S_ISREG(st.st_mode))
1400 ret = scanelf_file(buf, &st); 1791 ret = scanelf_fileat(dir_fd, buf, &st);
1401 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1792 else if (dir_recurse && S_ISDIR(st.st_mode)) {
1402 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1793 if (dir_crossmount || (st_top.st_dev == st.st_dev))
1403 ret = scanelf_dir(buf); 1794 ret = scanelf_dirat(dir_fd, buf);
1404 }
1405 } 1795 }
1406 } 1796 }
1407 closedir(dir); 1797 closedir(dir);
1798
1408 return ret; 1799 return ret;
1409} 1800}
1801static int scanelf_dir(const char *path)
1802{
1803 return scanelf_dirat(root_fd, root_rel_path(path));
1804}
1410 1805
1411static int scanelf_from_file(const char *filename) 1806static int scanelf_from_file(const char *filename)
1412{ 1807{
1413 FILE *fp = NULL; 1808 FILE *fp;
1414 char *p; 1809 char *p, *path;
1415 char path[__PAX_UTILS_PATH_MAX]; 1810 size_t len;
1416 int ret = 0; 1811 int ret;
1417 1812
1418 if (strcmp(filename, "-") == 0) 1813 if (strcmp(filename, "-") == 0)
1419 fp = stdin; 1814 fp = stdin;
1420 else if ((fp = fopen(filename, "r")) == NULL) 1815 else if ((fp = fopen(filename, "r")) == NULL)
1421 return 1; 1816 return 1;
1422 1817
1423 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1818 path = NULL;
1819 len = 0;
1820 ret = 0;
1821 while (getline(&path, &len, fp) != -1) {
1424 if ((p = strchr(path, '\n')) != NULL) 1822 if ((p = strchr(path, '\n')) != NULL)
1425 *p = 0; 1823 *p = 0;
1426 search_path = path; 1824 search_path = path;
1427 ret = scanelf_dir(path); 1825 ret = scanelf_dir(path);
1428 } 1826 }
1827 free(path);
1828
1429 if (fp != stdin) 1829 if (fp != stdin)
1430 fclose(fp); 1830 fclose(fp);
1831
1431 return ret; 1832 return ret;
1432} 1833}
1433 1834
1434#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__) 1835#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1435 1836
1436static int load_ld_cache_config(int i, const char *fname) 1837static int _load_ld_cache_config(const char *fname)
1437{ 1838{
1438 FILE *fp = NULL; 1839 FILE *fp = NULL;
1439 char *p; 1840 char *p, *path;
1440 char path[__PAX_UTILS_PATH_MAX]; 1841 size_t len;
1842 int curr_fd = -1;
1441 1843
1442 if (i + 1 == ARRAY_SIZE(ldpaths)) 1844 fp = fopenat_r(root_fd, root_rel_path(fname));
1845 if (fp == NULL)
1443 return i; 1846 return -1;
1444 1847
1445 if ((fp = fopen(fname, "r")) == NULL) 1848 path = NULL;
1446 return i; 1849 len = 0;
1447 1850 while (getline(&path, &len, fp) != -1) {
1448 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1449 if ((p = strrchr(path, '\r')) != NULL) 1851 if ((p = strrchr(path, '\r')) != NULL)
1450 *p = 0; 1852 *p = 0;
1451 if ((p = strchr(path, '\n')) != NULL) 1853 if ((p = strchr(path, '\n')) != NULL)
1452 *p = 0; 1854 *p = 0;
1453#ifdef __linux__ 1855
1454 // recursive includes of the same file will make this segfault. 1856 /* recursive includes of the same file will make this segfault. */
1455 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) { 1857 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1456 glob64_t gl; 1858 glob_t gl;
1457 size_t x; 1859 size_t x;
1458 char gpath[__PAX_UTILS_PATH_MAX]; 1860 const char *gpath;
1459 1861
1460 memset(gpath, 0, sizeof(gpath)); 1862 /* re-use existing path buffer ... need to be creative */
1461
1462 if (path[8] != '/') 1863 if (path[8] != '/')
1463 snprintf(gpath, sizeof(gpath), "/etc/%s", &path[8]); 1864 gpath = memcpy(path + 3, "/etc/", 5);
1464 else 1865 else
1465 strncpy(gpath, &path[8], sizeof(gpath)); 1866 gpath = path + 8;
1867 if (root_fd != AT_FDCWD) {
1868 if (curr_fd == -1) {
1869 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1870 if (fchdir(root_fd))
1871 errp("unable to change to root dir");
1872 }
1873 gpath = root_rel_path(gpath);
1874 }
1466 1875
1467 if ((glob64(gpath, 0, NULL, &gl)) == 0) { 1876 if (glob(gpath, 0, NULL, &gl) == 0) {
1468 for (x = 0; x < gl.gl_pathc; ++x) { 1877 for (x = 0; x < gl.gl_pathc; ++x) {
1469 /* try to avoid direct loops */ 1878 /* try to avoid direct loops */
1470 if (strcmp(gl.gl_pathv[x], fname) == 0) 1879 if (strcmp(gl.gl_pathv[x], fname) == 0)
1471 continue; 1880 continue;
1472 i = load_ld_cache_config(i, gl.gl_pathv[x]); 1881 _load_ld_cache_config(gl.gl_pathv[x]);
1473 if (i + 1 >= ARRAY_SIZE(ldpaths)) {
1474 globfree64(&gl);
1475 return i;
1476 }
1477 } 1882 }
1478 globfree64 (&gl); 1883 globfree(&gl);
1479 continue;
1480 } 1884 }
1885
1886 /* failed globs are ignored by glibc */
1887 continue;
1481 } 1888 }
1482#endif 1889
1483 if (*path != '/') 1890 if (*path != '/')
1484 continue; 1891 continue;
1485 1892
1486 ldpaths[i++] = xstrdup(path); 1893 xarraypush_str(ldpaths, path);
1487
1488 if (i + 1 == ARRAY_SIZE(ldpaths))
1489 break;
1490 } 1894 }
1491 ldpaths[i] = NULL; 1895 free(path);
1492 1896
1493 fclose(fp); 1897 fclose(fp);
1898
1899 if (curr_fd != -1) {
1900 if (fchdir(curr_fd))
1901 {/* don't care */}
1902 close(curr_fd);
1903 }
1904
1494 return i; 1905 return 0;
1495} 1906}
1496 1907
1497#elif defined(__FreeBSD__) || (__DragonFly__) 1908#elif defined(__FreeBSD__) || defined(__DragonFly__)
1498 1909
1499static int load_ld_cache_config(int i, const char *fname) 1910static int _load_ld_cache_config(const char *fname)
1500{ 1911{
1501 FILE *fp = NULL; 1912 FILE *fp = NULL;
1502 char *b = NULL, *p; 1913 char *b = NULL, *p;
1503 struct elfhints_hdr hdr; 1914 struct elfhints_hdr hdr;
1504 1915
1505 if (i + 1 == ARRAY_SIZE(ldpaths)) 1916 fp = fopenat_r(root_fd, root_rel_path(fname));
1917 if (fp == NULL)
1506 return i; 1918 return -1;
1507
1508 if ((fp = fopen(fname, "r")) == NULL)
1509 return i;
1510 1919
1511 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) || 1920 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1512 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 || 1921 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1513 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1) 1922 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1514 { 1923 {
1515 fclose(fp); 1924 fclose(fp);
1516 return i; 1925 return -1;
1517 } 1926 }
1518 1927
1519 b = (char*)malloc(hdr.dirlistlen+1); 1928 b = xmalloc(hdr.dirlistlen + 1);
1520 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) { 1929 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1521 fclose(fp); 1930 fclose(fp);
1522 free(b); 1931 free(b);
1523 return i; 1932 return -1;
1524 } 1933 }
1525 1934
1526 while ((p = strsep(&b, ":"))) { 1935 while ((p = strsep(&b, ":"))) {
1527 if (*p == '\0') continue; 1936 if (*p == '\0')
1528 ldpaths[i++] = xstrdup(p); 1937 continue;
1529 1938 xarraypush_str(ldpaths, p);
1530 if (i + 1 == ARRAY_SIZE(ldpaths))
1531 break;
1532 } 1939 }
1533 ldpaths[i] = NULL;
1534 1940
1535 free(b); 1941 free(b);
1536 fclose(fp); 1942 fclose(fp);
1537 return i; 1943 return 0;
1538} 1944}
1539 1945
1540#else 1946#else
1541 1947#ifdef __ELF__
1542#warning Cache config support not implemented for your target 1948#warning Cache config support not implemented for your target
1543static int load_ld_cache_config(int i, const char *fname)
1544{
1545 memset(ldpaths, 0x00, sizeof(ldpaths));
1546}
1547
1548#endif 1949#endif
1950static int _load_ld_cache_config(const char *fname)
1951{
1952 return 0;
1953}
1954#endif
1955
1956static void load_ld_cache_config(const char *fname)
1957{
1958 bool scan_l, scan_ul, scan_ull;
1959 size_t n;
1960 const char *ldpath;
1961
1962 _load_ld_cache_config(fname);
1963
1964 scan_l = scan_ul = scan_ull = false;
1965 array_for_each(ldpaths, n, ldpath) {
1966 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = true;
1967 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = true;
1968 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = true;
1969 }
1970
1971 if (!scan_l) xarraypush_str(ldpaths, "/lib");
1972 if (!scan_ul) xarraypush_str(ldpaths, "/usr/lib");
1973 if (!scan_ull) xarraypush_str(ldpaths, "/usr/local/lib");
1974}
1549 1975
1550/* scan /etc/ld.so.conf for paths */ 1976/* scan /etc/ld.so.conf for paths */
1551static void scanelf_ldpath(void) 1977static void scanelf_ldpath(void)
1552{ 1978{
1553 char scan_l, scan_ul, scan_ull; 1979 size_t n;
1554 int i = 0; 1980 const char *ldpath;
1555 1981
1556 if (!ldpaths[0]) 1982 array_for_each(ldpaths, n, ldpath)
1557 err("Unable to load any paths from ld.so.conf");
1558
1559 scan_l = scan_ul = scan_ull = 0;
1560
1561 while (ldpaths[i]) {
1562 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1;
1563 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1;
1564 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1;
1565 scanelf_dir(ldpaths[i]); 1983 scanelf_dir(ldpath);
1566 ++i;
1567 }
1568
1569 if (!scan_l) scanelf_dir("/lib");
1570 if (!scan_ul) scanelf_dir("/usr/lib");
1571 if (!scan_ull) scanelf_dir("/usr/local/lib");
1572} 1984}
1573 1985
1574/* scan env PATH for paths */ 1986/* scan env PATH for paths */
1575static void scanelf_envpath(void) 1987static void scanelf_envpath(void)
1576{ 1988{
1587 } 1999 }
1588 2000
1589 free(path); 2001 free(path);
1590} 2002}
1591 2003
1592
1593/* usage / invocation handling functions */ /* Free Flags: c d j u w C G H I J K P Q U W Y Z */ 2004/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
1594#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DO:BhV" 2005#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
1595#define a_argument required_argument 2006#define a_argument required_argument
1596static struct option const long_opts[] = { 2007static struct option const long_opts[] = {
1597 {"path", no_argument, NULL, 'p'}, 2008 {"path", no_argument, NULL, 'p'},
1598 {"ldpath", no_argument, NULL, 'l'}, 2009 {"ldpath", no_argument, NULL, 'l'},
2010 {"use-ldpath",no_argument, NULL, 129},
2011 {"root", a_argument, NULL, 128},
1599 {"recursive", no_argument, NULL, 'R'}, 2012 {"recursive", no_argument, NULL, 'R'},
1600 {"mount", no_argument, NULL, 'm'}, 2013 {"mount", no_argument, NULL, 'm'},
1601 {"symlink", no_argument, NULL, 'y'}, 2014 {"symlink", no_argument, NULL, 'y'},
1602 {"archives", no_argument, NULL, 'A'}, 2015 {"archives", no_argument, NULL, 'A'},
1603 {"ldcache", no_argument, NULL, 'L'}, 2016 {"ldcache", no_argument, NULL, 'L'},
1617 {"gmatch", no_argument, NULL, 'g'}, 2030 {"gmatch", no_argument, NULL, 'g'},
1618 {"textrels", no_argument, NULL, 'T'}, 2031 {"textrels", no_argument, NULL, 'T'},
1619 {"etype", a_argument, NULL, 'E'}, 2032 {"etype", a_argument, NULL, 'E'},
1620 {"bits", a_argument, NULL, 'M'}, 2033 {"bits", a_argument, NULL, 'M'},
1621 {"endian", no_argument, NULL, 'D'}, 2034 {"endian", no_argument, NULL, 'D'},
2035 {"osabi", no_argument, NULL, 'I'},
2036 {"eabi", no_argument, NULL, 'Y'},
1622 {"perms", a_argument, NULL, 'O'}, 2037 {"perms", a_argument, NULL, 'O'},
2038 {"size", no_argument, NULL, 'Z'},
1623 {"all", no_argument, NULL, 'a'}, 2039 {"all", no_argument, NULL, 'a'},
1624 {"quiet", no_argument, NULL, 'q'}, 2040 {"quiet", no_argument, NULL, 'q'},
1625 {"verbose", no_argument, NULL, 'v'}, 2041 {"verbose", no_argument, NULL, 'v'},
1626 {"format", a_argument, NULL, 'F'}, 2042 {"format", a_argument, NULL, 'F'},
1627 {"from", a_argument, NULL, 'f'}, 2043 {"from", a_argument, NULL, 'f'},
1628 {"file", a_argument, NULL, 'o'}, 2044 {"file", a_argument, NULL, 'o'},
2045 {"nocolor", no_argument, NULL, 'C'},
1629 {"nobanner", no_argument, NULL, 'B'}, 2046 {"nobanner", no_argument, NULL, 'B'},
1630 {"help", no_argument, NULL, 'h'}, 2047 {"help", no_argument, NULL, 'h'},
1631 {"version", no_argument, NULL, 'V'}, 2048 {"version", no_argument, NULL, 'V'},
1632 {NULL, no_argument, NULL, 0x0} 2049 {NULL, no_argument, NULL, 0x0}
1633}; 2050};
1634 2051
1635static const char *opts_help[] = { 2052static const char * const opts_help[] = {
1636 "Scan all directories in PATH environment", 2053 "Scan all directories in PATH environment",
1637 "Scan all directories in /etc/ld.so.conf", 2054 "Scan all directories in /etc/ld.so.conf",
2055 "Use ld.so.conf to show full path (use with -r/-n)",
2056 "Root directory (use with -l or -p)",
1638 "Scan directories recursively", 2057 "Scan directories recursively",
1639 "Don't recursively cross mount points", 2058 "Don't recursively cross mount points",
1640 "Don't scan symlinks", 2059 "Don't scan symlinks",
1641 "Scan archives (.a files)", 2060 "Scan archives (.a files)",
1642 "Utilize ld.so.cache information (use with -r/-n)", 2061 "Utilize ld.so.cache to show full path (use with -r/-n)",
1643 "Try and 'fix' bad things (use with -r/-e)", 2062 "Try and 'fix' bad things (use with -r/-e)",
1644 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n", 2063 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1645 "Print PaX markings", 2064 "Print PaX markings",
1646 "Print GNU_STACK/PT_LOAD markings", 2065 "Print GNU_STACK/PT_LOAD markings",
1647 "Print TEXTREL information", 2066 "Print TEXTREL information",
1651 "Print BIND information", 2070 "Print BIND information",
1652 "Print SONAME information", 2071 "Print SONAME information",
1653 "Find a specified symbol", 2072 "Find a specified symbol",
1654 "Find a specified section", 2073 "Find a specified section",
1655 "Find a specified library", 2074 "Find a specified library",
1656 "Use strncmp to match libraries. (use with -N)", 2075 "Use regex rather than string compare (with -s); specify twice for case insensitive",
1657 "Locate cause of TEXTREL", 2076 "Locate cause of TEXTREL",
1658 "Print only ELF files matching etype ET_DYN,ET_EXEC ...", 2077 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1659 "Print only ELF files matching numeric bits", 2078 "Print only ELF files matching numeric bits",
1660 "Print Endianness", 2079 "Print Endianness",
2080 "Print OSABI",
2081 "Print EABI (EM_ARM Only)",
1661 "Print only ELF files matching octal permissions", 2082 "Print only ELF files matching octal permissions",
1662 "Print all scanned info (-x -e -t -r -b)\n", 2083 "Print ELF file size",
2084 "Print all useful/simple info\n",
1663 "Only output 'bad' things", 2085 "Only output 'bad' things",
1664 "Be verbose (can be specified more than once)", 2086 "Be verbose (can be specified more than once)",
1665 "Use specified format for output", 2087 "Use specified format for output",
1666 "Read input stream from a filename", 2088 "Read input stream from a filename",
1667 "Write output stream to a filename", 2089 "Write output stream to a filename",
2090 "Don't emit color in output",
1668 "Don't display the header", 2091 "Don't display the header",
1669 "Print this help and exit", 2092 "Print this help and exit",
1670 "Print version and exit", 2093 "Print version and exit",
1671 NULL 2094 NULL
1672}; 2095};
1673 2096
1674/* display usage and exit */ 2097/* display usage and exit */
1675static void usage(int status) 2098static void usage(int status)
1676{ 2099{
1677 unsigned long i; 2100 const char a_arg[] = "<arg>";
2101 size_t a_arg_len = strlen(a_arg) + 2;
2102 size_t i;
2103 int optlen;
1678 printf("* Scan ELF binaries for stuff\n\n" 2104 printf("* Scan ELF binaries for stuff\n\n"
1679 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0); 2105 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1680 printf("Options: -[%s]\n", PARSE_FLAGS); 2106 printf("Options: -[%s]\n", PARSE_FLAGS);
2107
2108 /* prescan the --long opt length to auto-align */
2109 optlen = 0;
1681 for (i = 0; long_opts[i].name; ++i) 2110 for (i = 0; long_opts[i].name; ++i) {
2111 int l = strlen(long_opts[i].name);
2112 if (long_opts[i].has_arg == a_argument)
2113 l += a_arg_len;
2114 optlen = max(l, optlen);
2115 }
2116
2117 for (i = 0; long_opts[i].name; ++i) {
2118 /* first output the short flag if it has one */
2119 if (long_opts[i].val > '~')
2120 printf(" ");
2121 else
2122 printf(" -%c, ", long_opts[i].val);
2123
2124 /* then the long flag */
1682 if (long_opts[i].has_arg == no_argument) 2125 if (long_opts[i].has_arg == no_argument)
1683 printf(" -%c, --%-14s* %s\n", long_opts[i].val, 2126 printf("--%-*s", optlen, long_opts[i].name);
1684 long_opts[i].name, opts_help[i]);
1685 else 2127 else
1686 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val, 2128 printf("--%s %s %*s", long_opts[i].name, a_arg,
1687 long_opts[i].name, opts_help[i]); 2129 (int)(optlen - strlen(long_opts[i].name) - a_arg_len), "");
2130
2131 /* finally the help text */
2132 printf("* %s\n", opts_help[i]);
2133 }
1688 2134
1689 puts("\nFor more information, see the scanelf(1) manpage"); 2135 puts("\nFor more information, see the scanelf(1) manpage");
1690 exit(status); 2136 exit(status);
1691} 2137}
1692 2138
1697 flags |= PF_NO##flag; \ 2143 flags |= PF_NO##flag; \
1698 } else { \ 2144 } else { \
1699 flags &= ~PF_NO##flag; \ 2145 flags &= ~PF_NO##flag; \
1700 flags |= PF_##flag; \ 2146 flags |= PF_##flag; \
1701 } 2147 }
2148static void parse_delimited(array_t *arr, char *arg, const char *delim)
2149{
2150 char *ele = strtok(arg, delim);
2151 if (!ele) /* edge case: -s '' */
2152 xarraypush_str(arr, "");
2153 while (ele) {
2154 xarraypush_str(arr, ele);
2155 ele = strtok(NULL, delim);
2156 }
2157}
1702static int parseargs(int argc, char *argv[]) 2158static int parseargs(int argc, char *argv[])
1703{ 2159{
1704 int i; 2160 int i;
1705 const char *from_file = NULL; 2161 const char *from_file = NULL;
1706 int ret = 0; 2162 int ret = 0;
2163 char load_cache_config = 0;
1707 2164
1708 opterr = 0; 2165 opterr = 0;
1709 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2166 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1710 switch (i) { 2167 switch (i) {
1711 2168
1719 case 'f': 2176 case 'f':
1720 if (from_file) warn("You prob don't want to specify -f twice"); 2177 if (from_file) warn("You prob don't want to specify -f twice");
1721 from_file = optarg; 2178 from_file = optarg;
1722 break; 2179 break;
1723 case 'E': 2180 case 'E':
1724 strncpy(match_etypes, optarg, sizeof(match_etypes)); 2181 /* historically, this was comma delimited */
2182 parse_delimited(match_etypes, optarg, ",");
1725 break; 2183 break;
1726 case 'M': 2184 case 'M':
1727 match_bits = atoi(optarg); 2185 match_bits = atoi(optarg);
1728 if (match_bits == 0) { 2186 if (match_bits == 0) {
1729 if (strcmp(optarg, "ELFCLASS32") == 0) 2187 if (strcmp(optarg, "ELFCLASS32") == 0)
1731 if (strcmp(optarg, "ELFCLASS64") == 0) 2189 if (strcmp(optarg, "ELFCLASS64") == 0)
1732 match_bits = 64; 2190 match_bits = 64;
1733 } 2191 }
1734 break; 2192 break;
1735 case 'O': 2193 case 'O':
1736 if (sscanf(optarg, "%o", &match_perms) == (-1)) 2194 if (sscanf(optarg, "%o", &match_perms) == -1)
1737 match_bits = 0; 2195 match_bits = 0;
1738 break; 2196 break;
1739 case 'o': { 2197 case 'o': {
1740 if (freopen(optarg, "w", stdout) == NULL) 2198 if (freopen(optarg, "w", stdout) == NULL)
1741 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2199 errp("Could not freopen(%s)", optarg);
1742 break; 2200 break;
1743 } 2201 }
1744 case 'k': 2202 case 'k':
1745 if (find_section) warn("You prob don't want to specify -k twice"); 2203 xarraypush_str(find_section_arr, optarg);
1746 find_section = optarg;
1747 break; 2204 break;
1748 case 's': { 2205 case 's':
1749 if (find_sym) warn("You prob don't want to specify -s twice"); 2206 /* historically, this was comma delimited */
1750 find_sym = optarg; 2207 parse_delimited(find_sym_arr, optarg, ",");
1751 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1752 sprintf(versioned_symname, "%s@", find_sym);
1753 break; 2208 break;
1754 }
1755 case 'N': { 2209 case 'N':
1756 if (find_lib) warn("You prob don't want to specify -N twice"); 2210 xarraypush_str(find_lib_arr, optarg);
1757 find_lib = optarg;
1758 break; 2211 break;
1759 }
1760
1761 case 'F': { 2212 case 'F': {
1762 if (out_format) warn("You prob don't want to specify -F twice"); 2213 if (out_format) warn("You prob don't want to specify -F twice");
1763 out_format = optarg; 2214 out_format = optarg;
1764 break; 2215 break;
1765 } 2216 }
1766 case 'z': { 2217 case 'z': {
1767 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC); 2218 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1768 size_t x; 2219 size_t x;
1769 2220
1770 for (x = 0 ; x < strlen(optarg); x++) { 2221 for (x = 0; x < strlen(optarg); x++) {
1771 switch(optarg[x]) { 2222 switch (optarg[x]) {
1772 case 'p': 2223 case 'p':
1773 case 'P': 2224 case 'P':
1774 do_pax_state(optarg[x], PAGEEXEC); 2225 do_pax_state(optarg[x], PAGEEXEC);
1775 break; 2226 break;
1776 case 's': 2227 case 's':
1804 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) || 2255 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
1805 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)))) 2256 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1806 setpax = flags; 2257 setpax = flags;
1807 break; 2258 break;
1808 } 2259 }
2260 case 'Z': show_size = 1; break;
1809 case 'g': g_match = 1; break; 2261 case 'g': ++g_match; break;
1810 case 'L': use_ldcache = 1; break; 2262 case 'L': load_cache_config = use_ldcache = 1; break;
1811 case 'y': scan_symlink = 0; break; 2263 case 'y': scan_symlink = 0; break;
1812 case 'A': scan_archives = 1; break; 2264 case 'A': scan_archives = 1; break;
2265 case 'C': color_init(true); break;
1813 case 'B': show_banner = 0; break; 2266 case 'B': show_banner = 0; break;
1814 case 'l': scan_ldpath = 1; break; 2267 case 'l': load_cache_config = scan_ldpath = 1; break;
1815 case 'p': scan_envpath = 1; break; 2268 case 'p': scan_envpath = 1; break;
1816 case 'R': dir_recurse = 1; break; 2269 case 'R': dir_recurse = 1; break;
1817 case 'm': dir_crossmount = 0; break; 2270 case 'm': dir_crossmount = 0; break;
1818 case 'X': ++fix_elf; break; 2271 case 'X': ++fix_elf; break;
1819 case 'x': show_pax = 1; break; 2272 case 'x': show_pax = 1; break;
1823 case 'n': show_needed = 1; break; 2276 case 'n': show_needed = 1; break;
1824 case 'i': show_interp = 1; break; 2277 case 'i': show_interp = 1; break;
1825 case 'b': show_bind = 1; break; 2278 case 'b': show_bind = 1; break;
1826 case 'S': show_soname = 1; break; 2279 case 'S': show_soname = 1; break;
1827 case 'T': show_textrels = 1; break; 2280 case 'T': show_textrels = 1; break;
1828 case 'q': be_quiet = 1; break; 2281 case 'q': be_quiet = min(be_quiet, 20) + 1; break;
1829 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2282 case 'v': be_verbose = min(be_verbose, 20) + 1; break;
1830 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break; 2283 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1831 case 'D': show_endian = 1; break; 2284 case 'D': show_endian = 1; break;
2285 case 'I': show_osabi = 1; break;
2286 case 'Y': show_eabi = 1; break;
2287 case 128:
2288 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2289 if (root_fd == -1)
2290 err("Could not open root: %s", optarg);
2291 break;
2292 case 129: load_cache_config = use_ldpath = 1; break;
1832 case ':': 2293 case ':':
1833 err("Option '%c' is missing parameter", optopt); 2294 err("Option '%c' is missing parameter", optopt);
1834 case '?': 2295 case '?':
1835 err("Unknown option '%c' or argument missing", optopt); 2296 err("Unknown option '%c' or argument missing", optopt);
1836 default: 2297 default:
1837 err("Unhandled option '%c'; please report this", i); 2298 err("Unhandled option '%c'; please report this", i);
1838 } 2299 }
1839 } 2300 }
1840 if (show_textrels && be_verbose) { 2301 if (show_textrels && be_verbose)
1841 if (which("objdump") != NULL) 2302 objdump = which("objdump", "OBJDUMP");
1842 has_objdump = 1; 2303 /* precompile all the regexes */
2304 if (g_match) {
2305 regex_t preg;
2306 const char *this_sym;
2307 size_t n;
2308 int flags = REG_EXTENDED | REG_NOSUB | (g_match > 1 ? REG_ICASE : 0);
2309
2310 array_for_each(find_sym_arr, n, this_sym) {
2311 /* see scanelf_match_symname for logic info */
2312 switch (this_sym[0]) {
2313 case '%':
2314 while (*(this_sym++))
2315 if (*this_sym == '%') {
2316 ++this_sym;
2317 break;
2318 }
2319 break;
2320 case '+':
2321 case '-':
2322 ++this_sym;
2323 break;
2324 }
2325 if (*this_sym == '*')
2326 ++this_sym;
2327
2328 ret = regcomp(&preg, this_sym, flags);
2329 if (ret) {
2330 char err[256];
2331 regerror(ret, &preg, err, sizeof(err));
2332 err("regcomp of %s failed: %s", this_sym, err);
2333 }
2334 xarraypush(find_sym_regex_arr, &preg, sizeof(preg));
1843 } 2335 }
2336 }
2337 /* flatten arrays for display */
2338 find_sym = array_flatten_str(find_sym_arr);
2339 find_lib = array_flatten_str(find_lib_arr);
2340 find_section = array_flatten_str(find_section_arr);
1844 /* let the format option override all other options */ 2341 /* let the format option override all other options */
1845 if (out_format) { 2342 if (out_format) {
1846 show_pax = show_phdr = show_textrel = show_rpath = \ 2343 show_pax = show_phdr = show_textrel = show_rpath = \
1847 show_needed = show_interp = show_bind = show_soname = \ 2344 show_needed = show_interp = show_bind = show_soname = \
1848 show_textrels = show_perms = show_endian = 0; 2345 show_textrels = show_perms = show_endian = show_size = \
2346 show_osabi = show_eabi = 0;
1849 for (i = 0; out_format[i]; ++i) { 2347 for (i = 0; out_format[i]; ++i) {
1850 if (!IS_MODIFIER(out_format[i])) continue; 2348 if (!IS_MODIFIER(out_format[i])) continue;
1851 2349
1852 switch (out_format[++i]) { 2350 switch (out_format[++i]) {
1853 case '+': break; 2351 case '+': break;
1860 case 's': break; 2358 case 's': break;
1861 case 'N': break; 2359 case 'N': break;
1862 case 'o': break; 2360 case 'o': break;
1863 case 'a': break; 2361 case 'a': break;
1864 case 'M': break; 2362 case 'M': break;
2363 case 'Z': show_size = 1; break;
1865 case 'D': show_endian = 1; break; 2364 case 'D': show_endian = 1; break;
2365 case 'I': show_osabi = 1; break;
2366 case 'Y': show_eabi = 1; break;
1866 case 'O': show_perms = 1; break; 2367 case 'O': show_perms = 1; break;
1867 case 'x': show_pax = 1; break; 2368 case 'x': show_pax = 1; break;
1868 case 'e': show_phdr = 1; break; 2369 case 'e': show_phdr = 1; break;
1869 case 't': show_textrel = 1; break; 2370 case 't': show_textrel = 1; break;
1870 case 'r': show_rpath = 1; break; 2371 case 'r': show_rpath = 1; break;
1872 case 'i': show_interp = 1; break; 2373 case 'i': show_interp = 1; break;
1873 case 'b': show_bind = 1; break; 2374 case 'b': show_bind = 1; break;
1874 case 'S': show_soname = 1; break; 2375 case 'S': show_soname = 1; break;
1875 case 'T': show_textrels = 1; break; 2376 case 'T': show_textrels = 1; break;
1876 default: 2377 default:
1877 err("Invalid format specifier '%c' (byte %i)", 2378 err("invalid format specifier '%c' (byte %i)",
1878 out_format[i], i+1); 2379 out_format[i], i+1);
1879 } 2380 }
1880 } 2381 }
1881 2382
1882 /* construct our default format */ 2383 /* construct our default format */
1883 } else { 2384 } else {
1884 size_t fmt_len = 30; 2385 size_t fmt_len = 30;
1885 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2386 out_format = xmalloc(sizeof(char) * fmt_len);
2387 *out_format = '\0';
1886 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2388 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1887 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2389 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
1888 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len); 2390 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2391 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
1889 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len); 2392 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
2393 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2394 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1890 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 2395 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1891 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2396 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1892 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2397 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1893 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2398 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1894 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2399 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1901 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2406 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1902 } 2407 }
1903 if (be_verbose > 2) printf("Format: %s\n", out_format); 2408 if (be_verbose > 2) printf("Format: %s\n", out_format);
1904 2409
1905 /* now lets actually do the scanning */ 2410 /* now lets actually do the scanning */
1906 if (scan_ldpath || use_ldcache) 2411 if (load_cache_config)
1907 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG); 2412 load_ld_cache_config(__PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1908 if (scan_ldpath) scanelf_ldpath(); 2413 if (scan_ldpath) scanelf_ldpath();
1909 if (scan_envpath) scanelf_envpath(); 2414 if (scan_envpath) scanelf_envpath();
1910 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath) 2415 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
1911 from_file = "-"; 2416 from_file = "-";
1912 if (from_file) { 2417 if (from_file) {
1918 while (optind < argc) { 2423 while (optind < argc) {
1919 search_path = argv[optind++]; 2424 search_path = argv[optind++];
1920 ret = scanelf_dir(search_path); 2425 ret = scanelf_dir(search_path);
1921 } 2426 }
1922 2427
2428#ifdef __PAX_UTILS_CLEANUP
1923 /* clean up */ 2429 /* clean up */
1924 free(versioned_symname);
1925 for (i = 0; ldpaths[i]; ++i)
1926 free(ldpaths[i]); 2430 xarrayfree(ldpaths);
2431 xarrayfree(find_sym_arr);
2432 xarrayfree(find_lib_arr);
2433 xarrayfree(find_section_arr);
2434 free(find_sym);
2435 free(find_lib);
2436 free(find_section);
2437 {
2438 size_t n;
2439 regex_t *preg;
2440 array_for_each(find_sym_regex_arr, n, preg)
2441 regfree(preg);
2442 xarrayfree(find_sym_regex_arr);
2443 }
1927 2444
1928 if (ldcache != 0) 2445 if (ldcache != 0)
1929 munmap(ldcache, ldcache_size); 2446 munmap(ldcache, ldcache_size);
2447#endif
2448
1930 return ret; 2449 return ret;
1931} 2450}
1932 2451
1933static char **get_split_env(const char *envvar) 2452static char **get_split_env(const char *envvar)
1934{ 2453{
1964 return envvals; 2483 return envvals;
1965} 2484}
1966 2485
1967static void parseenv(void) 2486static void parseenv(void)
1968{ 2487{
2488 color_init(false);
1969 qa_textrels = get_split_env("QA_TEXTRELS"); 2489 qa_textrels = get_split_env("QA_TEXTRELS");
1970 qa_execstack = get_split_env("QA_EXECSTACK"); 2490 qa_execstack = get_split_env("QA_EXECSTACK");
1971 qa_wx_load = get_split_env("QA_WX_LOAD"); 2491 qa_wx_load = get_split_env("QA_WX_LOAD");
1972} 2492}
1973 2493
1978 free(qa_textrels); 2498 free(qa_textrels);
1979 free(qa_execstack); 2499 free(qa_execstack);
1980 free(qa_wx_load); 2500 free(qa_wx_load);
1981} 2501}
1982#endif 2502#endif
1983
1984 2503
1985int main(int argc, char *argv[]) 2504int main(int argc, char *argv[])
1986{ 2505{
1987 int ret; 2506 int ret;
1988 if (argc < 2) 2507 if (argc < 2)
1991 ret = parseargs(argc, argv); 2510 ret = parseargs(argc, argv);
1992 fclose(stdout); 2511 fclose(stdout);
1993#ifdef __PAX_UTILS_CLEANUP 2512#ifdef __PAX_UTILS_CLEANUP
1994 cleanup(); 2513 cleanup();
1995 warn("The calls to add/delete heap should be off:\n" 2514 warn("The calls to add/delete heap should be off:\n"
1996 "\t- 1 due to the out_buffer not being freed in scanelf_file()\n" 2515 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
1997 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD"); 2516 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1998#endif 2517#endif
1999 return ret; 2518 return ret;
2000}
2001
2002
2003
2004/* utility funcs */
2005static char *xstrdup(const char *s)
2006{
2007 char *ret = strdup(s);
2008 if (!ret) err("Could not strdup(): %s", strerror(errno));
2009 return ret;
2010}
2011static void *xmalloc(size_t size)
2012{
2013 void *ret = malloc(size);
2014 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
2015 return ret;
2016}
2017static void *xrealloc(void *ptr, size_t size)
2018{
2019 void *ret = realloc(ptr, size);
2020 if (!ret) err("Could not realloc() %li bytes", (unsigned long)size);
2021 return ret;
2022}
2023static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
2024{
2025 size_t new_len;
2026
2027 new_len = strlen(*dst) + strlen(src);
2028 if (*curr_len <= new_len) {
2029 *curr_len = new_len + (*curr_len / 2);
2030 *dst = realloc(*dst, *curr_len);
2031 if (!*dst)
2032 err("could not realloc() %li bytes", (unsigned long)*curr_len);
2033 }
2034
2035 if (n)
2036 strncat(*dst, src, n);
2037 else
2038 strcat(*dst, src);
2039}
2040static inline void xchrcat(char **dst, const char append, size_t *curr_len)
2041{
2042 static char my_app[2];
2043 my_app[0] = append;
2044 my_app[1] = '\0';
2045 xstrcat(dst, my_app, curr_len);
2046} 2519}
2047 2520
2048/* Match filename against entries in matchlist, return TRUE 2521/* Match filename against entries in matchlist, return TRUE
2049 * if the file is listed */ 2522 * if the file is listed */
2050static int file_matches_list(const char *filename, char **matchlist) 2523static int file_matches_list(const char *filename, char **matchlist)

Legend:
Removed from v.1.185  
changed lines
  Added in v.1.267

  ViewVC Help
Powered by ViewVC 1.1.20