/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.206 Revision 1.251
1/* 1/*
2 * Copyright 2003-2007 Gentoo Foundation 2 * Copyright 2003-2012 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.206 2008/12/30 13:34:46 vapier Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.251 2012/11/10 09:43:00 vapier Exp $
5 * 5 *
6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2012 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2012 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10static const char *rcsid = "$Id: scanelf.c,v 1.206 2008/12/30 13:34:46 vapier Exp $"; 10static const char rcsid[] = "$Id: scanelf.c,v 1.251 2012/11/10 09:43:00 vapier Exp $";
11const char * const argv0 = "scanelf"; 11const char argv0[] = "scanelf";
12 12
13#include "paxinc.h" 13#include "paxinc.h"
14 14
15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
16 16
17/* prototypes */ 17/* prototypes */
18static int file_matches_list(const char *filename, char **matchlist); 18static int file_matches_list(const char *filename, char **matchlist);
19static int scanelf_elfobj(elfobj *elf);
20static int scanelf_elf(const char *filename, int fd, size_t len);
21static int scanelf_archive(const char *filename, int fd, size_t len);
22static int scanelf_file(const char *filename, const struct stat *st_cache);
23static int scanelf_dir(const char *path);
24static void scanelf_ldpath(void);
25static void scanelf_envpath(void);
26static void usage(int status);
27static char **get_split_env(const char *envvar);
28static void parseenv(void);
29static int parseargs(int argc, char *argv[]);
30static int rematch(const char *regex, const char *match, int cflags);
31 19
32/* variables to control behavior */ 20/* variables to control behavior */
33static char match_etypes[126] = ""; 21static char *match_etypes = NULL;
34static char *ldpaths[256]; 22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
35static char scan_ldpath = 0; 23static char scan_ldpath = 0;
36static char scan_envpath = 0; 24static char scan_envpath = 0;
37static char scan_symlink = 1; 25static char scan_symlink = 1;
38static char scan_archives = 0; 26static char scan_archives = 0;
39static char dir_recurse = 0; 27static char dir_recurse = 0;
56static char be_quiet = 0; 44static char be_quiet = 0;
57static char be_verbose = 0; 45static char be_verbose = 0;
58static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
59static char be_semi_verbose = 0; 47static char be_semi_verbose = 0;
60static char *find_sym = NULL; 48static char *find_sym = NULL;
49static array_t _find_sym_arr = array_init_decl, *find_sym_arr = &_find_sym_arr;
50static array_t _find_sym_regex_arr = array_init_decl, *find_sym_regex_arr = &_find_sym_regex_arr;
61static char *find_lib = NULL; 51static char *find_lib = NULL;
52static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
62static char *find_section = NULL; 53static char *find_section = NULL;
54static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
63static char *out_format = NULL; 55static char *out_format = NULL;
64static char *search_path = NULL; 56static char *search_path = NULL;
65static char fix_elf = 0; 57static char fix_elf = 0;
66static char g_match = 0; 58static char g_match = 0;
67static char use_ldcache = 0; 59static char use_ldcache = 0;
60static char use_ldpath = 0;
68 61
69static char **qa_textrels = NULL; 62static char **qa_textrels = NULL;
70static char **qa_execstack = NULL; 63static char **qa_execstack = NULL;
71static char **qa_wx_load = NULL; 64static char **qa_wx_load = NULL;
65static int root_fd = AT_FDCWD;
72 66
73static int match_bits = 0; 67static int match_bits = 0;
74static unsigned int match_perms = 0; 68static unsigned int match_perms = 0;
75static caddr_t ldcache = 0; 69static void *ldcache = NULL;
76static size_t ldcache_size = 0; 70static size_t ldcache_size = 0;
77static unsigned long setpax = 0UL; 71static unsigned long setpax = 0UL;
78 72
79static int has_objdump = 0; 73static int has_objdump = 0;
80 74
81/* find the path to a file by name */ 75/* find the path to a file by name */
82static char *which(const char *fname) 76static int bin_in_path(const char *fname)
83{ 77{
84 static char fullpath[BUFSIZ]; 78 char fullpath[__PAX_UTILS_PATH_MAX];
85 char *path, *p; 79 char *path, *p;
86 80
87 path = getenv("PATH"); 81 path = getenv("PATH");
88 if (!path) 82 if (!path)
89 return NULL; 83 return 0;
90 84
91 path = xstrdup(path);
92 while ((p = strrchr(path, ':')) != NULL) { 85 while ((p = strrchr(path, ':')) != NULL) {
93 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname); 86 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
94 *p = 0; 87 *p = 0;
95 if (access(fullpath, R_OK) != -1) { 88 if (access(fullpath, R_OK) != -1)
96 free(path); 89 return 1;
97 return fullpath;
98 } 90 }
99 } 91
100 free(path); 92 return 0;
93}
94
95static FILE *fopenat_r(int dir_fd, const char *path)
96{
97 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
98 if (fd == -1)
101 return NULL; 99 return NULL;
100 return fdopen(fd, "re");
102} 101}
103 102
104/* 1 on failure. 0 otherwise */ 103static const char *root_rel_path(const char *path)
105static int rematch(const char *regex, const char *match, int cflags)
106{ 104{
107 regex_t preg; 105 /*
108 int ret; 106 * openat() will ignore the dirfd if path starts with
109 107 * a /, so consume all of that noise
110 if ((match == NULL) || (regex == NULL)) 108 *
111 return EXIT_FAILURE; 109 * XXX: we don't handle relative paths like ../ that
112 110 * break out of the --root option, but for now, just
113 if ((ret = regcomp(&preg, regex, cflags))) { 111 * don't do that :P.
114 char err[256]; 112 */
115 113 if (root_fd != AT_FDCWD) {
116 if (regerror(ret, &preg, err, sizeof(err))) 114 while (*path == '/')
117 fprintf(stderr, "regcomp failed: %s", err); 115 ++path;
118 else 116 if (*path == '\0')
119 fprintf(stderr, "regcomp failed"); 117 path = ".";
120
121 return EXIT_FAILURE;
122 } 118 }
123 ret = regexec(&preg, match, 0, NULL, 0);
124 regfree(&preg);
125 119
126 return ret; 120 return path;
127} 121}
128 122
129/* sub-funcs for scanelf_file() */ 123/* sub-funcs for scanelf_fileat() */
130static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 124static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
131{ 125{
132 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 126 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
127
128 /* debug sections */
129 void *symtab = elf_findsecbyname(elf, ".symtab");
130 void *strtab = elf_findsecbyname(elf, ".strtab");
131 /* runtime sections */
132 void *dynsym = elf_findsecbyname(elf, ".dynsym");
133 void *dynstr = elf_findsecbyname(elf, ".dynstr");
134
135 /*
136 * If the sections are marked NOBITS, then they don't exist, so we just
137 * skip them. This let's us work sanely with splitdebug ELFs (rather
138 * than spewing a lot of "corrupt ELF" messages later on). In malformed
139 * ELFs, the section might be wrongly set to NOBITS, but screw em.
140 */
133#define GET_SYMTABS(B) \ 141#define GET_SYMTABS(B) \
134 if (elf->elf_class == ELFCLASS ## B) { \ 142 if (elf->elf_class == ELFCLASS ## B) { \
135 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \ 143 Elf ## B ## _Shdr *esymtab = symtab; \
136 /* debug sections */ \ 144 Elf ## B ## _Shdr *estrtab = strtab; \
137 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \ 145 Elf ## B ## _Shdr *edynsym = dynsym; \
138 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \ 146 Elf ## B ## _Shdr *edynstr = dynstr; \
139 /* runtime sections */ \ 147 \
140 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \ 148 if (symtab && EGET(esymtab->sh_type) == SHT_NOBITS) \
141 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \ 149 symtab = NULL; \
150 if (dynsym && EGET(edynsym->sh_type) == SHT_NOBITS) \
151 dynsym = NULL; \
142 if (symtab && dynsym) { \ 152 if (symtab && dynsym) \
143 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 153 *sym = (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) ? symtab : dynsym; \
144 } else { \ 154 else \
145 *sym = (void*)(symtab ? symtab : dynsym); \ 155 *sym = symtab ? symtab : dynsym; \
146 } \ 156 \
157 if (strtab && EGET(estrtab->sh_type) == SHT_NOBITS) \
158 strtab = NULL; \
159 if (dynstr && EGET(edynstr->sh_type) == SHT_NOBITS) \
160 dynstr = NULL; \
147 if (strtab && dynstr) { \ 161 if (strtab && dynstr) \
148 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \ 162 *str = (EGET(estrtab->sh_size) > EGET(edynstr->sh_size)) ? strtab : dynstr; \
149 } else { \ 163 else \
150 *tab = (void*)(strtab ? strtab : dynstr); \ 164 *str = strtab ? strtab : dynstr; \
151 } \
152 } 165 }
153 GET_SYMTABS(32) 166 GET_SYMTABS(32)
154 GET_SYMTABS(64) 167 GET_SYMTABS(64)
168
169 if (*sym && *str)
170 return;
171
172 /*
173 * damn, they're really going to make us work for it huh?
174 * reconstruct the section header info out of the dynamic
175 * tags so we can see what symbols this guy uses at runtime.
176 */
177#define GET_SYMTABS_DT(B) \
178 if (elf->elf_class == ELFCLASS ## B) { \
179 size_t i; \
180 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
181 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
182 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
183 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
184 Elf ## B ## _Dyn *dyn; \
185 Elf ## B ## _Off offset; \
186 \
187 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
188 vsym = vstr = vhash = vgnu_hash = 0; \
189 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
190 memset(&str_shdr, 0, sizeof(str_shdr)); \
191 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
192 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
193 continue; \
194 \
195 offset = EGET(phdr[i].p_offset); \
196 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
197 continue; \
198 \
199 dyn = DYN ## B (elf->vdata + offset); \
200 while (EGET(dyn->d_tag) != DT_NULL) { \
201 switch (EGET(dyn->d_tag)) { \
202 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
203 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
204 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
205 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
206 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
207 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
208 } \
209 ++dyn; \
210 } \
211 if (vsym && vstr) \
212 break; \
213 } \
214 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
215 return; \
216 \
217 /* calc offset into the ELF by finding the load addr of the syms */ \
218 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
219 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
220 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
221 offset = EGET(phdr[i].p_offset); \
222 \
223 if (EGET(phdr[i].p_type) != PT_LOAD) \
224 continue; \
225 \
226 if (vhash >= vaddr && vhash < vaddr + filesz) { \
227 /* Scan the hash table to see how many entries we have */ \
228 Elf32_Word max_sym_idx = 0; \
229 Elf32_Word *hashtbl = elf->vdata + offset + (vhash - vaddr); \
230 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
231 Elf32_Word nchains = EGET(hashtbl[1]); \
232 Elf32_Word *buckets = &hashtbl[2]; \
233 Elf32_Word *chains = &buckets[nbuckets]; \
234 Elf32_Word sym_idx; \
235 \
236 for (b = 0; b < nbuckets; ++b) { \
237 if (!buckets[b]) \
238 continue; \
239 for (sym_idx = buckets[b]; sym_idx < nchains && sym_idx; sym_idx = chains[sym_idx]) \
240 if (max_sym_idx < sym_idx) \
241 max_sym_idx = sym_idx; \
242 } \
243 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
244 } \
245 \
246 if (vsym >= vaddr && vsym < vaddr + filesz) { \
247 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
248 *sym = &sym_shdr; \
249 } \
250 \
251 if (vstr >= vaddr && vstr < vaddr + filesz) { \
252 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
253 *str = &str_shdr; \
254 } \
255 } \
256 }
257 GET_SYMTABS_DT(32)
258 GET_SYMTABS_DT(64)
155} 259}
156 260
157static char *scanelf_file_pax(elfobj *elf, char *found_pax) 261static char *scanelf_file_pax(elfobj *elf, char *found_pax)
158{ 262{
159 static char ret[7]; 263 static char ret[7];
186 } 290 }
187 SHOW_PAX(32) 291 SHOW_PAX(32)
188 SHOW_PAX(64) 292 SHOW_PAX(64)
189 } 293 }
190 294
191 if (fix_elf && setpax) { 295 /* Note: We do not support setting EI_PAX if not PT_PAX_FLAGS
192 /* set the chpax settings */ 296 * was found. This is known to break ELFs on glibc systems,
193 if (elf->elf_class == ELFCLASS32) { 297 * and mainline PaX has deprecated use of this for a long time.
194 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC) 298 * We could support changing PT_GNU_STACK, but that doesn't
195 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax)); 299 * seem like it's worth the effort. #411919
196 } else { 300 */
197 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
198 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
199 }
200 }
201 301
202 /* fall back to EI_PAX if no PT_PAX was found */ 302 /* fall back to EI_PAX if no PT_PAX was found */
203 if (!*ret) { 303 if (!*ret) {
204 static char *paxflags; 304 static char *paxflags;
205 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 305 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
280 } else if (elf->shdr != NULL) { \ 380 } else if (elf->shdr != NULL) { \
281 /* no program headers which means this is prob an object file */ \ 381 /* no program headers which means this is prob an object file */ \
282 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 382 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
283 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 383 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
284 char *str; \ 384 char *str; \
285 if ((void*)strtbl > (void*)elf->data_end) \ 385 if ((void*)strtbl > elf->data_end) \
286 goto skip_this_shdr##B; \ 386 goto skip_this_shdr##B; \
287 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 387 check_flags = SHF_WRITE|SHF_EXECINSTR; \
288 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 388 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
289 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 389 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
290 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 390 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
345 Elf ## B ## _Off offset; \ 445 Elf ## B ## _Off offset; \
346 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 446 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
347 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \ 447 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
348 offset = EGET(phdr[i].p_offset); \ 448 offset = EGET(phdr[i].p_offset); \
349 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 449 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
350 dyn = DYN ## B (elf->data + offset); \ 450 dyn = DYN ## B (elf->vdata + offset); \
351 while (EGET(dyn->d_tag) != DT_NULL) { \ 451 while (EGET(dyn->d_tag) != DT_NULL) { \
352 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 452 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
353 *found_textrel = 1; \ 453 *found_textrel = 1; \
354 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 454 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
355 return (be_wewy_wewy_quiet ? NULL : ret); \ 455 return (be_wewy_wewy_quiet ? NULL : ret); \
400 Elf ## B ## _Rela *rela; \ 500 Elf ## B ## _Rela *rela; \
401 /* search the section headers for relocations */ \ 501 /* search the section headers for relocations */ \
402 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 502 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
403 uint32_t sh_type = EGET(shdr[s].sh_type); \ 503 uint32_t sh_type = EGET(shdr[s].sh_type); \
404 if (sh_type == SHT_REL) { \ 504 if (sh_type == SHT_REL) { \
405 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 505 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
406 rela = NULL; \ 506 rela = NULL; \
407 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 507 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
408 } else if (sh_type == SHT_RELA) { \ 508 } else if (sh_type == SHT_RELA) { \
409 rel = NULL; \ 509 rel = NULL; \
410 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 510 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
411 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 511 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
412 } else \ 512 } else \
413 continue; \ 513 continue; \
414 /* now see if any of the relocs are in the .text */ \ 514 /* now see if any of the relocs are in the .text */ \
415 for (r = 0; r < rmax; ++r) { \ 515 for (r = 0; r < rmax; ++r) { \
430 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \ 530 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
431 if (be_verbose <= 2) continue; \ 531 if (be_verbose <= 2) continue; \
432 } else \ 532 } else \
433 *found_textrels = 1; \ 533 *found_textrels = 1; \
434 /* locate this relocation symbol name */ \ 534 /* locate this relocation symbol name */ \
435 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 535 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
436 if ((void*)sym > (void*)elf->data_end) { \ 536 if ((void*)sym > elf->data_end) { \
437 warn("%s: corrupt ELF symbol", elf->filename); \ 537 warn("%s: corrupt ELF symbol", elf->filename); \
438 continue; \ 538 continue; \
439 } \ 539 } \
440 sym_max = ELF ## B ## _R_SYM(r_info); \ 540 sym_max = ELF ## B ## _R_SYM(r_info); \
441 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 541 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
444 sym = NULL; \ 544 sym = NULL; \
445 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 545 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
446 /* show the raw details about this reloc */ \ 546 /* show the raw details about this reloc */ \
447 printf(" %s: ", elf->base_filename); \ 547 printf(" %s: ", elf->base_filename); \
448 if (sym && sym->st_name) \ 548 if (sym && sym->st_name) \
449 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 549 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
450 else \ 550 else \
451 printf("(memory/data?)"); \ 551 printf("(memory/data?)"); \
452 printf(" [0x%lX]", (unsigned long)r_offset); \ 552 printf(" [0x%lX]", (unsigned long)r_offset); \
453 /* now try to find the closest symbol that this rel is probably in */ \ 553 /* now try to find the closest symbol that this rel is probably in */ \
454 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 554 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
455 func = NULL; \ 555 func = NULL; \
456 offset_tmp = 0; \ 556 offset_tmp = 0; \
457 while (sym_max--) { \ 557 while (sym_max--) { \
458 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \ 558 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
459 func = sym; \ 559 func = sym; \
485 (unsigned long)offset_tmp, \ 585 (unsigned long)offset_tmp, \
486 (unsigned long)end_addr, \ 586 (unsigned long)end_addr, \
487 elf->filename, \ 587 elf->filename, \
488 (unsigned long)r_offset); \ 588 (unsigned long)r_offset); \
489 fflush(stdout); \ 589 fflush(stdout); \
490 system(sysbuf); \ 590 if (system(sysbuf)) /* don't care */; \
491 fflush(stdout); \ 591 fflush(stdout); \
492 free(sysbuf); \ 592 free(sysbuf); \
493 } \ 593 } \
494 } \ 594 } \
495 } } 595 } }
500 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 600 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
501 601
502 return NULL; 602 return NULL;
503} 603}
504 604
505static void rpath_security_checks(elfobj *, char *, const char *);
506static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type) 605static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
507{ 606{
508 struct stat st; 607 struct stat st;
509 switch (*item) { 608 switch (*item) {
510 case '/': break; 609 case '/': break;
526 break; 625 break;
527 } 626 }
528} 627}
529static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 628static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
530{ 629{
531 unsigned long i, s; 630 unsigned long i;
532 char *rpath, *runpath, **r; 631 char *rpath, *runpath, **r;
533 void *strtbl_void; 632 void *strtbl_void;
534 633
535 if (!show_rpath) return; 634 if (!show_rpath) return;
536 635
551 /* Just scan dynamic headers */ \ 650 /* Just scan dynamic headers */ \
552 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \ 651 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
553 offset = EGET(phdr[i].p_offset); \ 652 offset = EGET(phdr[i].p_offset); \
554 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 653 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
555 /* Just scan dynamic RPATH/RUNPATH headers */ \ 654 /* Just scan dynamic RPATH/RUNPATH headers */ \
556 dyn = DYN ## B (elf->data + offset); \ 655 dyn = DYN ## B (elf->vdata + offset); \
557 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 656 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
558 if (word == DT_RPATH) { \ 657 if (word == DT_RPATH) { \
559 r = &rpath; \ 658 r = &rpath; \
560 } else if (word == DT_RUNPATH) { \ 659 } else if (word == DT_RUNPATH) { \
561 r = &runpath; \ 660 r = &runpath; \
565 } \ 664 } \
566 /* Verify the memory is somewhat sane */ \ 665 /* Verify the memory is somewhat sane */ \
567 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 666 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
568 if (offset < (Elf ## B ## _Off)elf->len) { \ 667 if (offset < (Elf ## B ## _Off)elf->len) { \
569 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 668 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
570 *r = (char*)(elf->data + offset); \ 669 *r = elf->data + offset; \
571 /* cache the length in case we need to nuke this section later on */ \ 670 /* cache the length in case we need to nuke this section later on */ \
572 if (fix_elf) \ 671 if (fix_elf) \
573 offset = strlen(*r); \ 672 offset = strlen(*r); \
574 /* If quiet, don't output paths in ld.so.conf */ \ 673 /* If quiet, don't output paths in ld.so.conf */ \
575 if (be_quiet) { \ 674 if (be_quiet) { \
581 /* scan each path in : delimited list */ \ 680 /* scan each path in : delimited list */ \
582 while (start) { \ 681 while (start) { \
583 rpath_security_checks(elf, start, get_elfdtype(word)); \ 682 rpath_security_checks(elf, start, get_elfdtype(word)); \
584 end = strchr(start, ':'); \ 683 end = strchr(start, ':'); \
585 len = (end ? abs(end - start) : strlen(start)); \ 684 len = (end ? abs(end - start) : strlen(start)); \
586 if (use_ldcache) \ 685 if (use_ldcache) { \
587 for (s = 0; ldpaths[s]; ++s) \ 686 size_t n; \
687 const char *ldpath; \
688 array_for_each(ldpaths, n, ldpath) \
588 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 689 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
589 *r = end; \ 690 *r = end; \
590 /* corner case ... if RPATH reads "/usr/lib:", we want \ 691 /* corner case ... if RPATH reads "/usr/lib:", we want \
591 * to show ':' rather than '' */ \ 692 * to show ':' rather than '' */ \
592 if (end && end[1] != '\0') \ 693 if (end && end[1] != '\0') \
593 (*r)++; \ 694 (*r)++; \
594 break; \ 695 break; \
595 } \ 696 } \
697 } \
596 if (!*r || !end) \ 698 if (!*r || !end) \
597 break; \ 699 break; \
598 else \ 700 else \
599 start = start + len + 1; \ 701 start = start + len + 1; \
600 } \ 702 } \
685#define FLAG_S390_LIB64 0x0400 787#define FLAG_S390_LIB64 0x0400
686#define FLAG_POWERPC_LIB64 0x0500 788#define FLAG_POWERPC_LIB64 0x0500
687#define FLAG_MIPS64_LIBN32 0x0600 789#define FLAG_MIPS64_LIBN32 0x0600
688#define FLAG_MIPS64_LIBN64 0x0700 790#define FLAG_MIPS64_LIBN64 0x0700
689 791
690static char *lookup_cache_lib(elfobj *, char *);
691
692#if defined(__GLIBC__) || defined(__UCLIBC__) 792#if defined(__GLIBC__) || defined(__UCLIBC__)
693 793
694static char *lookup_cache_lib(elfobj *elf, char *fname) 794static char *lookup_cache_lib(elfobj *elf, const char *fname)
695{ 795{
696 int fd = 0; 796 int fd;
697 char *strs; 797 char *strs;
698 static char buf[__PAX_UTILS_PATH_MAX] = ""; 798 static char buf[__PAX_UTILS_PATH_MAX] = "";
699 const char *cachefile = "/etc/ld.so.cache"; 799 const char *cachefile = root_rel_path("/etc/ld.so.cache");
700 struct stat st; 800 struct stat st;
701 801
702 typedef struct { 802 typedef struct {
703 char magic[LDSO_CACHE_MAGIC_LEN]; 803 char magic[LDSO_CACHE_MAGIC_LEN];
704 char version[LDSO_CACHE_VER_LEN]; 804 char version[LDSO_CACHE_VER_LEN];
714 libentry_t *libent; 814 libentry_t *libent;
715 815
716 if (fname == NULL) 816 if (fname == NULL)
717 return NULL; 817 return NULL;
718 818
719 if (ldcache == 0) { 819 if (ldcache == NULL) {
720 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1) 820 if (fstatat(root_fd, cachefile, &st, 0))
821 return NULL;
822
823 fd = openat(root_fd, cachefile, O_RDONLY);
824 if (fd == -1)
721 return NULL; 825 return NULL;
722 826
723 /* cache these values so we only map/unmap the cache file once */ 827 /* cache these values so we only map/unmap the cache file once */
724 ldcache_size = st.st_size; 828 ldcache_size = st.st_size;
725 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0); 829 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
726
727 close(fd); 830 close(fd);
728 831
729 if (ldcache == MAP_FAILED) { 832 if (ldcache == MAP_FAILED) {
730 ldcache = 0; 833 ldcache = NULL;
731 return NULL; 834 return NULL;
732 } 835 }
733 836
734 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 837 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
838 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
839 {
840 munmap(ldcache, ldcache_size);
841 ldcache = NULL;
735 return NULL; 842 return NULL;
736 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
737 return NULL;
738 } 843 }
844 } else
845 header = ldcache;
739 846
740 header = (header_t *) ldcache;
741 libent = (libentry_t *) (ldcache + sizeof(header_t)); 847 libent = ldcache + sizeof(header_t);
742 strs = (char *) &libent[header->nlibs]; 848 strs = (char *) &libent[header->nlibs];
743 849
744 for (fd = 0; fd < header->nlibs; fd++) { 850 for (fd = 0; fd < header->nlibs; ++fd) {
745 /* this should be more fine grained, but for now we assume that 851 /* This should be more fine grained, but for now we assume that
746 * diff arches will not be cached together. and we ignore the 852 * diff arches will not be cached together, and we ignore the
747 * the different multilib mips cases. */ 853 * the different multilib mips cases.
854 */
748 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK)) 855 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
749 continue; 856 continue;
750 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK)) 857 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
751 continue; 858 continue;
752 859
753 if (strcmp(fname, strs + libent[fd].sooffset) != 0) 860 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
754 continue; 861 continue;
862
863 /* Return first hit because that is how the ldso rolls */
755 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 864 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
865 break;
756 } 866 }
867
757 return buf; 868 return buf;
758} 869}
870
759#elif defined(__NetBSD__) 871#elif defined(__NetBSD__)
760static char *lookup_cache_lib(elfobj *elf, char *fname) 872static char *lookup_cache_lib(elfobj *elf, const char *fname)
761{ 873{
762 static char buf[__PAX_UTILS_PATH_MAX] = ""; 874 static char buf[__PAX_UTILS_PATH_MAX] = "";
763 static struct stat st; 875 static struct stat st;
764 876 size_t n;
765 char **ldpath; 877 char *ldpath;
766 for (ldpath = ldpaths; *ldpath != NULL; ldpath++) { 878
879 array_for_each(ldpath, n, ldpath) {
767 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", *ldpath, fname) >= sizeof(buf)) 880 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
768 continue; /* if the pathname is too long, or something went wrong, ignore */ 881 continue; /* if the pathname is too long, or something went wrong, ignore */
769 882
770 if (stat(buf, &st) != 0) 883 if (stat(buf, &st) != 0)
771 continue; /* if the lib doesn't exist in *ldpath, look further */ 884 continue; /* if the lib doesn't exist in *ldpath, look further */
772 885
783} 896}
784#else 897#else
785#ifdef __ELF__ 898#ifdef __ELF__
786#warning Cache support not implemented for your target 899#warning Cache support not implemented for your target
787#endif 900#endif
788static char *lookup_cache_lib(elfobj *elf, char *fname) 901static char *lookup_cache_lib(elfobj *elf, const char *fname)
789{ 902{
790 return NULL; 903 return NULL;
791} 904}
792#endif 905#endif
906
907static char *lookup_config_lib(elfobj *elf, char *fname)
908{
909 static char buf[__PAX_UTILS_PATH_MAX] = "";
910 const char *ldpath;
911 size_t n;
912
913 array_for_each(ldpaths, n, ldpath) {
914 snprintf(buf, sizeof(buf), "%s/%s", root_rel_path(ldpath), fname);
915 if (faccessat(root_fd, buf, F_OK, AT_SYMLINK_NOFOLLOW) == 0)
916 return buf;
917 }
918
919 return NULL;
920}
793 921
794static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 922static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
795{ 923{
796 unsigned long i; 924 unsigned long i;
797 char *needed; 925 char *needed;
798 void *strtbl_void; 926 void *strtbl_void;
799 char *p; 927 char *p;
800 928
929 /*
930 * -n -> op==0 -> print all
931 * -N -> op==1 -> print requested
932 */
801 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 933 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
934 return NULL;
802 935
803 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 936 strtbl_void = elf_findsecbyname(elf, ".dynstr");
804 937
805 if (elf->phdr && strtbl_void) { 938 if (elf->phdr && strtbl_void) {
806#define SHOW_NEEDED(B) \ 939#define SHOW_NEEDED(B) \
808 Elf ## B ## _Dyn *dyn; \ 941 Elf ## B ## _Dyn *dyn; \
809 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 942 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
810 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 943 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
811 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 944 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
812 Elf ## B ## _Off offset; \ 945 Elf ## B ## _Off offset; \
946 size_t matched = 0; \
947 /* Walk all the program headers to find the PT_DYNAMIC */ \
813 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 948 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
814 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \ 949 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
950 continue; \
815 offset = EGET(phdr[i].p_offset); \ 951 offset = EGET(phdr[i].p_offset); \
816 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 952 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
953 continue; \
954 /* Walk all the dynamic tags to find NEEDED entries */ \
817 dyn = DYN ## B (elf->data + offset); \ 955 dyn = DYN ## B (elf->vdata + offset); \
818 while (EGET(dyn->d_tag) != DT_NULL) { \ 956 while (EGET(dyn->d_tag) != DT_NULL) { \
819 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 957 if (EGET(dyn->d_tag) == DT_NEEDED) { \
820 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 958 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
821 if (offset >= (Elf ## B ## _Off)elf->len) { \ 959 if (offset >= (Elf ## B ## _Off)elf->len) { \
822 ++dyn; \ 960 ++dyn; \
823 continue; \ 961 continue; \
824 } \ 962 } \
825 needed = (char*)(elf->data + offset); \ 963 needed = elf->data + offset; \
826 if (op == 0) { \ 964 if (op == 0) { \
965 /* -n -> print all entries */ \
827 if (!be_wewy_wewy_quiet) { \ 966 if (!be_wewy_wewy_quiet) { \
828 if (*found_needed) xchrcat(ret, ',', ret_len); \ 967 if (*found_needed) xchrcat(ret, ',', ret_len); \
829 if (use_ldcache) \ 968 if (use_ldpath) { \
969 if ((p = lookup_config_lib(elf, needed)) != NULL) \
970 needed = p; \
971 } else if (use_ldcache) { \
830 if ((p = lookup_cache_lib(elf, needed)) != NULL) \ 972 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
831 needed = p; \ 973 needed = p; \
974 } \
832 xstrcat(ret, needed, ret_len); \ 975 xstrcat(ret, needed, ret_len); \
833 } \ 976 } \
834 *found_needed = 1; \ 977 *found_needed = 1; \
835 } else { \ 978 } else { \
836 if (!strncmp(find_lib, needed, strlen( !g_match ? needed : find_lib))) { \ 979 /* -N -> print matching entries */ \
980 size_t n; \
981 const char *find_lib_name; \
982 \
983 array_for_each(find_lib_arr, n, find_lib_name) { \
984 int invert = 1; \
985 if (find_lib_name[0] == '!') \
986 invert = 0, ++find_lib_name; \
987 if (!strcmp(find_lib_name, needed) == invert) \
988 ++matched; \
989 } \
990 \
991 if (matched == array_cnt(find_lib_arr)) { \
837 *found_lib = 1; \ 992 *found_lib = 1; \
838 return (be_wewy_wewy_quiet ? NULL : needed); \ 993 return (be_wewy_wewy_quiet ? NULL : find_lib); \
839 } \ 994 } \
840 } \ 995 } \
841 } \ 996 } \
842 ++dyn; \ 997 ++dyn; \
843 } \ 998 } \
865 *found_interp = 1; \ 1020 *found_interp = 1; \
866 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \ 1021 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \
867 } 1022 }
868 SHOW_INTERP(32) 1023 SHOW_INTERP(32)
869 SHOW_INTERP(64) 1024 SHOW_INTERP(64)
1025 } else {
1026 /* Walk all the program headers to find the PT_INTERP */
1027#define SHOW_PT_INTERP(B) \
1028 if (elf->elf_class == ELFCLASS ## B) { \
1029 unsigned long i; \
1030 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
1031 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
1032 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
1033 if (EGET(phdr[i].p_type) != PT_INTERP) \
1034 continue; \
1035 *found_interp = 1; \
1036 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(phdr[i].p_offset)); \
1037 } \
870 } 1038 }
1039 SHOW_PT_INTERP(32)
1040 SHOW_PT_INTERP(64)
1041 }
1042
871 return NULL; 1043 return NULL;
872} 1044}
873static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1045static char *scanelf_file_bind(elfobj *elf, char *found_bind)
874{ 1046{
875 unsigned long i; 1047 unsigned long i;
888 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1060 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
889 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \ 1061 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
890 dynamic = 1; \ 1062 dynamic = 1; \
891 offset = EGET(phdr[i].p_offset); \ 1063 offset = EGET(phdr[i].p_offset); \
892 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1064 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
893 dyn = DYN ## B (elf->data + offset); \ 1065 dyn = DYN ## B (elf->vdata + offset); \
894 while (EGET(dyn->d_tag) != DT_NULL) { \ 1066 while (EGET(dyn->d_tag) != DT_NULL) { \
895 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1067 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
896 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 1068 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
897 { \ 1069 { \
898 if (be_quiet) return NULL; \ 1070 if (be_quiet) return NULL; \
911 /* don't output anything if quiet mode and the ELF is static or not setuid */ 1083 /* don't output anything if quiet mode and the ELF is static or not setuid */
912 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) { 1084 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
913 return NULL; 1085 return NULL;
914 } else { 1086 } else {
915 *found_bind = 1; 1087 *found_bind = 1;
916 return (char *) (dynamic ? "LAZY" : "STATIC"); 1088 return (char *)(dynamic ? "LAZY" : "STATIC");
917 } 1089 }
918} 1090}
919static char *scanelf_file_soname(elfobj *elf, char *found_soname) 1091static char *scanelf_file_soname(elfobj *elf, char *found_soname)
920{ 1092{
921 unsigned long i; 1093 unsigned long i;
939 return NULL; \ 1111 return NULL; \
940 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1112 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
941 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \ 1113 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
942 offset = EGET(phdr[i].p_offset); \ 1114 offset = EGET(phdr[i].p_offset); \
943 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1115 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
944 dyn = DYN ## B (elf->data + offset); \ 1116 dyn = DYN ## B (elf->vdata + offset); \
945 while (EGET(dyn->d_tag) != DT_NULL) { \ 1117 while (EGET(dyn->d_tag) != DT_NULL) { \
946 if (EGET(dyn->d_tag) == DT_SONAME) { \ 1118 if (EGET(dyn->d_tag) == DT_SONAME) { \
947 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1119 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
948 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1120 if (offset >= (Elf ## B ## _Off)elf->len) { \
949 ++dyn; \ 1121 ++dyn; \
950 continue; \ 1122 continue; \
951 } \ 1123 } \
952 soname = (char*)(elf->data + offset); \ 1124 soname = elf->data + offset; \
953 *found_soname = 1; \ 1125 *found_soname = 1; \
954 return (be_wewy_wewy_quiet ? NULL : soname); \ 1126 return (be_wewy_wewy_quiet ? NULL : soname); \
955 } \ 1127 } \
956 ++dyn; \ 1128 ++dyn; \
957 } \ 1129 } \
961 } 1133 }
962 1134
963 return NULL; 1135 return NULL;
964} 1136}
965 1137
966static int scanelf_match_symname(const char *symname, const char *tomatch) { 1138/*
967 /* We do things differently when checking with regexp */ 1139 * We support the symbol form:
968 if (g_match) { 1140 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
969 return rematch(symname, tomatch, REG_EXTENDED) == 0; 1141 * If the symbol name is empty, then all symbols are matched.
1142 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1143 * Do not rely on this output format at all.
1144 * Otherwise the symbol name is used to search (either regex or string compare).
1145 * If the first char of the symbol name is a plus ("+"), then only match
1146 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1147 * Putting modifiers in between the percent signs allows for more in depth
1148 * filters. There are groups of modifiers. If you don't specify a member
1149 * of a group, then all types in that group are matched. The current
1150 * groups and their types are:
1151 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1152 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1153 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1154 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1155 * You can search for multiple symbols at once by seperating with a comma (",").
1156 *
1157 * Some examples:
1158 * ELFs with a weak function "foo":
1159 * scanelf -s %wf%foo <ELFs>
1160 * ELFs that define the symbol "main":
1161 * scanelf -s +main <ELFs>
1162 * scanelf -s %d%main <ELFs>
1163 * ELFs that refer to the undefined symbol "brk":
1164 * scanelf -s -brk <ELFs>
1165 * scanelf -s %u%brk <ELFs>
1166 * All global defined objects in an ELF:
1167 * scanelf -s %ogd% <ELF>
1168 */
1169static void
1170scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1171 unsigned int stt, unsigned int stb, unsigned int shn, unsigned long size)
1172{
1173 const char *this_sym;
1174 size_t n;
1175
1176 array_for_each(find_sym_arr, n, this_sym) {
1177 bool inc_notype, inc_object, inc_func, inc_file,
1178 inc_local, inc_global, inc_weak,
1179 inc_def, inc_undef, inc_abs, inc_common;
1180
1181 /* symbol selection! */
1182 inc_notype = inc_object = inc_func = inc_file = \
1183 inc_local = inc_global = inc_weak = \
1184 inc_def = inc_undef = inc_abs = inc_common = \
1185 (*this_sym != '%');
1186
1187 /* parse the contents of %...% */
1188 if (!inc_notype) {
1189 while (*(this_sym++)) {
1190 if (*this_sym == '%') {
1191 ++this_sym;
1192 break;
1193 }
1194 switch (*this_sym) {
1195 case 'n': inc_notype = true; break;
1196 case 'o': inc_object = true; break;
1197 case 'f': inc_func = true; break;
1198 case 'F': inc_file = true; break;
1199 case 'l': inc_local = true; break;
1200 case 'g': inc_global = true; break;
1201 case 'w': inc_weak = true; break;
1202 case 'd': inc_def = true; break;
1203 case 'u': inc_undef = true; break;
1204 case 'a': inc_abs = true; break;
1205 case 'c': inc_common = true; break;
1206 default: err("invalid symbol selector '%c'", *this_sym);
1207 }
1208 }
1209
1210 /* If no types are matched, not match all */
1211 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1212 inc_notype = inc_object = inc_func = inc_file = true;
1213 if (!inc_local && !inc_global && !inc_weak)
1214 inc_local = inc_global = inc_weak = true;
1215 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1216 inc_def = inc_undef = inc_abs = inc_common = true;
1217
1218 /* backwards compat for defined/undefined short hand */
1219 } else if (*this_sym == '+') {
1220 inc_undef = false;
1221 ++this_sym;
1222 } else if (*this_sym == '-') {
1223 inc_def = inc_abs = inc_common = false;
1224 ++this_sym;
1225 }
1226
1227 /* filter symbols */
1228 if ((!inc_notype && stt == STT_NOTYPE) || \
1229 (!inc_object && stt == STT_OBJECT) || \
1230 (!inc_func && stt == STT_FUNC ) || \
1231 (!inc_file && stt == STT_FILE ) || \
1232 (!inc_local && stb == STB_LOCAL ) || \
1233 (!inc_global && stb == STB_GLOBAL) || \
1234 (!inc_weak && stb == STB_WEAK ) || \
1235 (!inc_def && shn && shn < SHN_LORESERVE) || \
1236 (!inc_undef && shn == SHN_UNDEF ) || \
1237 (!inc_abs && shn == SHN_ABS ) || \
1238 (!inc_common && shn == SHN_COMMON))
1239 continue;
1240
1241 if (*this_sym == '*') {
1242 /* a "*" symbol gets you debug output */
1243 printf("%s(%s) %5lX %15s %15s %15s %s\n",
1244 ((*found_sym == 0) ? "\n\t" : "\t"),
1245 elf->base_filename,
1246 size,
1247 get_elfstttype(stt),
1248 get_elfstbtype(stb),
1249 get_elfshntype(shn),
1250 symname);
1251 goto matched;
1252
970 } else { 1253 } else {
1254 if (g_match) {
1255 /* regex match the symbol */
1256 if (regexec(find_sym_regex_arr->eles[n], symname, 0, NULL, 0) == REG_NOMATCH)
1257 continue;
1258
1259 } else if (*this_sym) {
1260 /* give empty symbols a "pass", else do a normal compare */
971 const size_t symname_len = strlen(symname); 1261 const size_t len = strlen(this_sym);
972 return (strncmp(symname, tomatch, symname_len) == 0 && 1262 if (!(strncmp(this_sym, symname, len) == 0 &&
973 /* Accept unversioned symbol names */ 1263 /* Accept unversioned symbol names */
974 (tomatch[symname_len] == '\0' || tomatch[symname_len] == '@')); 1264 (symname[len] == '\0' || symname[len] == '@')))
1265 continue;
1266 }
1267
1268 if (be_semi_verbose) {
1269 char buf[1024];
1270 snprintf(buf, sizeof(buf), "%lX %s %s",
1271 size,
1272 get_elfstttype(stt),
1273 this_sym);
1274 *ret = xstrdup(buf);
1275 } else {
1276 if (*ret) xchrcat(ret, ',', ret_len);
1277 xstrcat(ret, symname, ret_len);
1278 }
1279
1280 goto matched;
975 } 1281 }
976} 1282 }
977 1283
1284 return;
1285
1286 matched:
1287 *found_sym = 1;
1288}
1289
978static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1290static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
979{ 1291{
980 unsigned long i;
981 char *ret; 1292 char *ret;
982 void *symtab_void, *strtab_void; 1293 void *symtab_void, *strtab_void;
983 1294
984 if (!find_sym) return NULL; 1295 if (!find_sym) return NULL;
985 ret = find_sym; 1296 ret = NULL;
986 1297
987 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1298 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
988 1299
989 if (symtab_void && strtab_void) { 1300 if (symtab_void && strtab_void) {
990#define FIND_SYM(B) \ 1301#define FIND_SYM(B) \
991 if (elf->elf_class == ELFCLASS ## B) { \ 1302 if (elf->elf_class == ELFCLASS ## B) { \
992 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1303 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
993 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1304 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
994 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1305 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
995 unsigned long cnt = EGET(symtab->sh_entsize); \ 1306 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
996 char *symname; \ 1307 char *symname; \
1308 size_t ret_len = 0; \
997 if (cnt) \ 1309 if (cnt) \
998 cnt = EGET(symtab->sh_size) / cnt; \ 1310 cnt = EGET(symtab->sh_size) / cnt; \
999 for (i = 0; i < cnt; ++i) { \ 1311 for (i = 0; i < cnt; ++i) { \
1000 if ((void*)sym > (void*)elf->data_end) { \ 1312 if ((void*)sym > elf->data_end) { \
1001 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \ 1313 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1002 goto break_out; \ 1314 goto break_out; \
1003 } \ 1315 } \
1004 if (sym->st_name) { \ 1316 if (sym->st_name) { \
1005 /* make sure the symbol name is in acceptable memory range */ \ 1317 /* make sure the symbol name is in acceptable memory range */ \
1006 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1318 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
1007 if ((void*)symname > (void*)elf->data_end) { \ 1319 if ((void*)symname > elf->data_end) { \
1008 warnf("%s: corrupt ELF symbols", elf->filename); \ 1320 warnf("%s: corrupt ELF symbols", elf->filename); \
1009 ++sym; \ 1321 ++sym; \
1010 continue; \ 1322 continue; \
1011 } \ 1323 } \
1012 /* debug display ... show all symbols and some extra info */ \ 1324 scanelf_match_symname(elf, found_sym, \
1013 if (0 && g_match ? rematch(ret, symname, REG_EXTENDED) == 0 : *ret == '*') { \ 1325 &ret, &ret_len, symname, \
1014 printf("%s(%s) %5lX %15s %s %s\n", \ 1326 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
1015 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1327 ELF##B##_ST_BIND(EGET(sym->st_info)), \
1016 elf->base_filename, \ 1328 EGET(sym->st_shndx), \
1017 (unsigned long)sym->st_size, \ 1329 /* st_size can be 64bit, but no one is really that big, so screw em */ \
1018 get_elfstttype(sym->st_info), \ 1330 EGET(sym->st_size)); \
1019 sym->st_shndx == SHN_UNDEF ? "U" : "D", symname); \
1020 *found_sym = 1; \
1021 } else { \
1022 /* allow the user to specify a comma delimited list of symbols to search for */ \
1023 char *this_sym, *next_sym; \
1024 next_sym = ret; \
1025 while (next_sym) { \
1026 this_sym = next_sym; \
1027 if ((next_sym = strchr(this_sym, ','))) \
1028 next_sym += 1; /* Skip the comma */ \
1029 /* do we want a defined symbol ? */ \
1030 if (*this_sym == '+') { \
1031 if (sym->st_shndx == SHN_UNDEF) \
1032 continue; \
1033 ++this_sym; \
1034 /* do we want an undefined symbol ? */ \
1035 } else if (*this_sym == '-') { \
1036 if (sym->st_shndx != SHN_UNDEF) \
1037 continue; \
1038 ++this_sym; \
1039 } \
1040 if (next_sym) /* Copy it so that we don't have to worry about the final , */ \
1041 this_sym = strndup(this_sym, next_sym-this_sym); \
1042 /* ok, lets compare the name now */ \
1043 if (scanelf_match_symname(this_sym, symname)) { \
1044 if (be_semi_verbose) { \
1045 char buf[126]; \
1046 snprintf(buf, sizeof(buf), "%lX %s %s", \
1047 (unsigned long)sym->st_size, get_elfstttype(sym->st_info), this_sym); \
1048 ret = buf; \
1049 } else \
1050 ret = symname; \
1051 (*found_sym)++; \
1052 goto break_out; \
1053 } \
1054 if (next_sym) free(this_sym); \
1055 } \
1056 } \
1057 } \ 1331 } \
1058 ++sym; \ 1332 ++sym; \
1059 } } 1333 } \
1334 }
1060 FIND_SYM(32) 1335 FIND_SYM(32)
1061 FIND_SYM(64) 1336 FIND_SYM(64)
1062 } 1337 }
1063 1338
1064break_out: 1339break_out:
1067 if (*find_sym != '*' && *found_sym) 1342 if (*find_sym != '*' && *found_sym)
1068 return ret; 1343 return ret;
1069 if (be_quiet) 1344 if (be_quiet)
1070 return NULL; 1345 return NULL;
1071 else 1346 else
1072 return (char *)" - "; 1347 return " - ";
1073} 1348}
1074 1349
1075static char *scanelf_file_sections(elfobj *elf, char *found_section) 1350static const char *scanelf_file_sections(elfobj *elf, char *found_section)
1076{ 1351{
1077 if (!find_section) 1352 if (!find_section)
1078 return NULL; 1353 return NULL;
1079 1354
1080#define FIND_SECTION(B) \ 1355#define FIND_SECTION(B) \
1081 if (elf->elf_class == ELFCLASS ## B) { \ 1356 if (elf->elf_class == ELFCLASS ## B) { \
1357 size_t matched, n; \
1082 int invert; \ 1358 int invert; \
1359 const char *section_name; \
1083 Elf ## B ## _Shdr *section; \ 1360 Elf ## B ## _Shdr *section; \
1361 \
1362 matched = 0; \
1363 array_for_each(find_section_arr, n, section_name) { \
1084 invert = (*find_section == '!' ? 1 : 0); \ 1364 invert = (*section_name == '!' ? 1 : 0); \
1085 section = SHDR ## B (elf_findsecbyname(elf, find_section+invert)); \ 1365 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
1086 if ((section == NULL && invert) || (section != NULL && !invert)) \ 1366 if ((section == NULL && invert) || (section != NULL && !invert)) \
1367 ++matched; \
1368 } \
1369 \
1370 if (matched == array_cnt(find_section_arr)) \
1087 *found_section = 1; \ 1371 *found_section = 1; \
1088 } 1372 }
1089 FIND_SECTION(32) 1373 FIND_SECTION(32)
1090 FIND_SECTION(64) 1374 FIND_SECTION(64)
1091 1375
1096 return find_section; 1380 return find_section;
1097 1381
1098 if (be_quiet) 1382 if (be_quiet)
1099 return NULL; 1383 return NULL;
1100 else 1384 else
1101 return (char *)" - "; 1385 return " - ";
1102} 1386}
1103 1387
1104/* scan an elf file and show all the fun stuff */ 1388/* scan an elf file and show all the fun stuff */
1105#define prints(str) write(fileno(stdout), str, strlen(str)) 1389#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
1106static int scanelf_elfobj(elfobj *elf) 1390static int scanelf_elfobj(elfobj *elf)
1107{ 1391{
1108 unsigned long i; 1392 unsigned long i;
1109 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1393 char found_pax, found_phdr, found_relro, found_load, found_textrel,
1110 found_rpath, found_needed, found_interp, found_bind, found_soname, 1394 found_rpath, found_needed, found_interp, found_bind, found_soname,
1146 case 'x': prints(" PAX "); break; 1430 case 'x': prints(" PAX "); break;
1147 case 'e': prints("STK/REL/PTL "); break; 1431 case 'e': prints("STK/REL/PTL "); break;
1148 case 't': prints("TEXTREL "); break; 1432 case 't': prints("TEXTREL "); break;
1149 case 'r': prints("RPATH "); break; 1433 case 'r': prints("RPATH "); break;
1150 case 'M': prints("CLASS "); break; 1434 case 'M': prints("CLASS "); break;
1435 case 'l':
1151 case 'n': prints("NEEDED "); break; 1436 case 'n': prints("NEEDED "); break;
1152 case 'i': prints("INTERP "); break; 1437 case 'i': prints("INTERP "); break;
1153 case 'b': prints("BIND "); break; 1438 case 'b': prints("BIND "); break;
1154 case 'Z': prints("SIZE "); break; 1439 case 'Z': prints("SIZE "); break;
1155 case 'S': prints("SONAME "); break; 1440 case 'S': prints("SONAME "); break;
1235 case 'I': out = get_elfosabi(elf); break; 1520 case 'I': out = get_elfosabi(elf); break;
1236 case 'Y': out = get_elf_eabi(elf); break; 1521 case 'Y': out = get_elf_eabi(elf); break;
1237 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;; 1522 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
1238 default: warnf("'%c' has no scan code?", out_format[i]); 1523 default: warnf("'%c' has no scan code?", out_format[i]);
1239 } 1524 }
1240 if (out) { 1525 if (out)
1241 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
1242 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
1243 xstrncat(&out_buffer, out, &out_len, (tmp-out));
1244 else
1245 xstrcat(&out_buffer, out, &out_len); 1526 xstrcat(&out_buffer, out, &out_len);
1246 }
1247 } 1527 }
1248 1528
1249#define FOUND_SOMETHING() \ 1529#define FOUND_SOMETHING() \
1250 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1530 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
1251 found_rpath || found_needed || found_interp || found_bind || \ 1531 found_rpath || found_needed || found_interp || found_bind || \
1270 elfobj *elf; 1550 elfobj *elf;
1271 1551
1272 /* verify this is real ELF */ 1552 /* verify this is real ELF */
1273 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) { 1553 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1274 if (be_verbose > 2) printf("%s: not an ELF\n", filename); 1554 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1275 return ret; 1555 return 2;
1276 } 1556 }
1277 switch (match_bits) { 1557 switch (match_bits) {
1278 case 32: 1558 case 32:
1279 if (elf->elf_class != ELFCLASS32) 1559 if (elf->elf_class != ELFCLASS32)
1280 goto label_done; 1560 goto label_done;
1283 if (elf->elf_class != ELFCLASS64) 1563 if (elf->elf_class != ELFCLASS64)
1284 goto label_done; 1564 goto label_done;
1285 break; 1565 break;
1286 default: break; 1566 default: break;
1287 } 1567 }
1288 if (strlen(match_etypes)) { 1568 if (match_etypes) {
1289 char sbuf[126]; 1569 char sbuf[126];
1290 strncpy(sbuf, match_etypes, sizeof(sbuf)); 1570 strncpy(sbuf, match_etypes, sizeof(sbuf));
1291 if (strchr(match_etypes, ',') != NULL) { 1571 if (strchr(match_etypes, ',') != NULL) {
1292 char *p; 1572 char *p;
1293 while ((p = strrchr(sbuf, ',')) != NULL) { 1573 while ((p = strrchr(sbuf, ',')) != NULL) {
1319 ar = ar_open_fd(filename, fd); 1599 ar = ar_open_fd(filename, fd);
1320 if (ar == NULL) 1600 if (ar == NULL)
1321 return 1; 1601 return 1;
1322 1602
1323 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0); 1603 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1324 while ((m=ar_next(ar)) != NULL) { 1604 while ((m = ar_next(ar)) != NULL) {
1605 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1606 if (cur_pos == -1)
1607 errp("lseek() failed");
1325 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size); 1608 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1326 if (elf) { 1609 if (elf) {
1327 scanelf_elfobj(elf); 1610 scanelf_elfobj(elf);
1328 unreadelf(elf); 1611 unreadelf(elf);
1329 } 1612 }
1330 } 1613 }
1331 munmap(ar_buffer, len); 1614 munmap(ar_buffer, len);
1332 1615
1333 return 0; 1616 return 0;
1334} 1617}
1335/* scan a file which may be an elf or an archive or some other magical beast */ 1618/* scan a file which may be an elf or an archive or some other magical beast */
1336static int scanelf_file(const char *filename, const struct stat *st_cache) 1619static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1337{ 1620{
1338 const struct stat *st = st_cache; 1621 const struct stat *st = st_cache;
1339 struct stat symlink_st; 1622 struct stat symlink_st;
1340 int fd; 1623 int fd;
1341 1624
1342 /* always handle regular files and handle symlinked files if no -y */ 1625 /* always handle regular files and handle symlinked files if no -y */
1343 if (S_ISLNK(st->st_mode)) { 1626 if (S_ISLNK(st->st_mode)) {
1344 if (!scan_symlink) return 1; 1627 if (!scan_symlink)
1628 return 1;
1345 stat(filename, &symlink_st); 1629 fstatat(dir_fd, filename, &symlink_st, 0);
1346 st = &symlink_st; 1630 st = &symlink_st;
1347 } 1631 }
1348 1632
1349 if (!S_ISREG(st->st_mode)) { 1633 if (!S_ISREG(st->st_mode)) {
1350 if (be_verbose > 2) printf("%s: skipping non-file\n", filename); 1634 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1353 1637
1354 if (match_perms) { 1638 if (match_perms) {
1355 if ((st->st_mode | match_perms) != st->st_mode) 1639 if ((st->st_mode | match_perms) != st->st_mode)
1356 return 1; 1640 return 1;
1357 } 1641 }
1358 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1) 1642 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1643 if (fd == -1) {
1644 if (fix_elf && errno == ETXTBSY)
1645 warnp("%s: could not fix", filename);
1646 else if (be_verbose > 2)
1647 printf("%s: skipping file: %s\n", filename, strerror(errno));
1359 return 1; 1648 return 1;
1649 }
1360 1650
1361 if (scanelf_elf(filename, fd, st->st_size) == 1 && scan_archives) 1651 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1362 /* if it isn't an ELF, maybe it's an .a archive */ 1652 /* if it isn't an ELF, maybe it's an .a archive */
1653 if (scan_archives)
1363 scanelf_archive(filename, fd, st->st_size); 1654 scanelf_archive(filename, fd, st->st_size);
1364 1655
1656 /*
1657 * unreadelf() implicitly closes its fd, so only close it
1658 * when we are returning it in the non-ELF case
1659 */
1365 close(fd); 1660 close(fd);
1661 }
1662
1366 return 0; 1663 return 0;
1367} 1664}
1368 1665
1369/* scan a directory for ET_EXEC files and print when we find one */ 1666/* scan a directory for ET_EXEC files and print when we find one */
1370static int scanelf_dir(const char *path) 1667static int scanelf_dirat(int dir_fd, const char *path)
1371{ 1668{
1372 register DIR *dir; 1669 register DIR *dir;
1373 register struct dirent *dentry; 1670 register struct dirent *dentry;
1374 struct stat st_top, st; 1671 struct stat st_top, st;
1375 char buf[__PAX_UTILS_PATH_MAX]; 1672 char buf[__PAX_UTILS_PATH_MAX], *subpath;
1376 size_t pathlen = 0, len = 0; 1673 size_t pathlen = 0, len = 0;
1377 int ret = 0; 1674 int ret = 0;
1675 int subdir_fd;
1378 1676
1379 /* make sure path exists */ 1677 /* make sure path exists */
1380 if (lstat(path, &st_top) == -1) { 1678 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
1381 if (be_verbose > 2) printf("%s: does not exist\n", path); 1679 if (be_verbose > 2) printf("%s: does not exist\n", path);
1382 return 1; 1680 return 1;
1383 } 1681 }
1384 1682
1385 /* ok, if it isn't a directory, assume we can open it */ 1683 /* ok, if it isn't a directory, assume we can open it */
1386 if (!S_ISDIR(st_top.st_mode)) { 1684 if (!S_ISDIR(st_top.st_mode))
1387 return scanelf_file(path, &st_top); 1685 return scanelf_fileat(dir_fd, path, &st_top);
1388 }
1389 1686
1390 /* now scan the dir looking for fun stuff */ 1687 /* now scan the dir looking for fun stuff */
1391 if ((dir = opendir(path)) == NULL) { 1688 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
1392 warnf("could not opendir %s: %s", path, strerror(errno)); 1689 if (subdir_fd == -1)
1690 dir = NULL;
1691 else
1692 dir = fdopendir(subdir_fd);
1693 if (dir == NULL) {
1694 if (subdir_fd != -1)
1695 close(subdir_fd);
1696 warnfp("could not opendir(%s)", path);
1393 return 1; 1697 return 1;
1394 } 1698 }
1395 if (be_verbose > 1) printf("%s: scanning dir\n", path); 1699 if (be_verbose > 1) printf("%s: scanning dir\n", path);
1396 1700
1397 pathlen = strlen(path); 1701 subpath = stpcpy(buf, path);
1702 if (subpath[-1] != '/')
1703 *subpath++ = '/';
1704 pathlen = subpath - buf;
1398 while ((dentry = readdir(dir))) { 1705 while ((dentry = readdir(dir))) {
1399 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1706 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
1400 continue; 1707 continue;
1401 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1708
1402 if (len >= sizeof(buf)) { 1709 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
1403 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path,
1404 (unsigned long)len, (unsigned long)sizeof(buf));
1405 continue; 1710 continue;
1711
1712 len = strlen(dentry->d_name);
1713 if (len + pathlen + 1 >= sizeof(buf)) {
1714 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
1715 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
1716 continue;
1406 } 1717 }
1407 snprintf(buf, sizeof(buf), "%s%s%s", path, (path[pathlen-1] == '/') ? "" : "/", dentry->d_name); 1718 memcpy(subpath, dentry->d_name, len);
1408 if (lstat(buf, &st) != -1) { 1719 subpath[len] = '\0';
1720
1409 if (S_ISREG(st.st_mode)) 1721 if (S_ISREG(st.st_mode))
1410 ret = scanelf_file(buf, &st); 1722 ret = scanelf_fileat(dir_fd, buf, &st);
1411 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1723 else if (dir_recurse && S_ISDIR(st.st_mode)) {
1412 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1724 if (dir_crossmount || (st_top.st_dev == st.st_dev))
1413 ret = scanelf_dir(buf); 1725 ret = scanelf_dirat(dir_fd, buf);
1414 }
1415 } 1726 }
1416 } 1727 }
1417 closedir(dir); 1728 closedir(dir);
1729
1418 return ret; 1730 return ret;
1419} 1731}
1732static int scanelf_dir(const char *path)
1733{
1734 return scanelf_dirat(root_fd, root_rel_path(path));
1735}
1420 1736
1421static int scanelf_from_file(const char *filename) 1737static int scanelf_from_file(const char *filename)
1422{ 1738{
1423 FILE *fp = NULL; 1739 FILE *fp;
1424 char *p; 1740 char *p, *path;
1425 char path[__PAX_UTILS_PATH_MAX]; 1741 size_t len;
1426 int ret = 0; 1742 int ret;
1427 1743
1428 if (strcmp(filename, "-") == 0) 1744 if (strcmp(filename, "-") == 0)
1429 fp = stdin; 1745 fp = stdin;
1430 else if ((fp = fopen(filename, "r")) == NULL) 1746 else if ((fp = fopen(filename, "r")) == NULL)
1431 return 1; 1747 return 1;
1432 1748
1433 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1749 path = NULL;
1750 len = 0;
1751 ret = 0;
1752 while (getline(&path, &len, fp) != -1) {
1434 if ((p = strchr(path, '\n')) != NULL) 1753 if ((p = strchr(path, '\n')) != NULL)
1435 *p = 0; 1754 *p = 0;
1436 search_path = path; 1755 search_path = path;
1437 ret = scanelf_dir(path); 1756 ret = scanelf_dir(path);
1438 } 1757 }
1758 free(path);
1759
1439 if (fp != stdin) 1760 if (fp != stdin)
1440 fclose(fp); 1761 fclose(fp);
1762
1441 return ret; 1763 return ret;
1442} 1764}
1443 1765
1444#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__) 1766#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1445 1767
1446static int load_ld_cache_config(int i, const char *fname) 1768static int _load_ld_cache_config(const char *fname)
1447{ 1769{
1448 FILE *fp = NULL; 1770 FILE *fp = NULL;
1449 char *p; 1771 char *p, *path;
1450 char path[__PAX_UTILS_PATH_MAX]; 1772 size_t len;
1773 int curr_fd = -1;
1451 1774
1452 if (i + 1 == ARRAY_SIZE(ldpaths)) 1775 fp = fopenat_r(root_fd, root_rel_path(fname));
1776 if (fp == NULL)
1453 return i; 1777 return -1;
1454 1778
1455 if ((fp = fopen(fname, "r")) == NULL) 1779 path = NULL;
1456 return i; 1780 len = 0;
1457 1781 while (getline(&path, &len, fp) != -1) {
1458 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1459 if ((p = strrchr(path, '\r')) != NULL) 1782 if ((p = strrchr(path, '\r')) != NULL)
1460 *p = 0; 1783 *p = 0;
1461 if ((p = strchr(path, '\n')) != NULL) 1784 if ((p = strchr(path, '\n')) != NULL)
1462 *p = 0; 1785 *p = 0;
1463#ifdef __linux__ 1786
1464 /* recursive includes of the same file will make this segfault. */ 1787 /* recursive includes of the same file will make this segfault. */
1465 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) { 1788 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1466 glob64_t gl; 1789 glob_t gl;
1467 size_t x; 1790 size_t x;
1468 char gpath[__PAX_UTILS_PATH_MAX]; 1791 const char *gpath;
1469 1792
1470 memset(gpath, 0, sizeof(gpath)); 1793 /* re-use existing path buffer ... need to be creative */
1471
1472 if (path[8] != '/') 1794 if (path[8] != '/')
1473 snprintf(gpath, sizeof(gpath), "/etc/%s", &path[8]); 1795 gpath = memcpy(path + 3, "/etc/", 5);
1474 else 1796 else
1475 strncpy(gpath, &path[8], sizeof(gpath)); 1797 gpath = path + 8;
1798 if (root_fd != AT_FDCWD) {
1799 if (curr_fd == -1) {
1800 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1801 if (fchdir(root_fd))
1802 errp("unable to change to root dir");
1803 }
1804 gpath = root_rel_path(gpath);
1805 }
1476 1806
1477 if ((glob64(gpath, 0, NULL, &gl)) == 0) { 1807 if (glob(gpath, 0, NULL, &gl) == 0) {
1478 for (x = 0; x < gl.gl_pathc; ++x) { 1808 for (x = 0; x < gl.gl_pathc; ++x) {
1479 /* try to avoid direct loops */ 1809 /* try to avoid direct loops */
1480 if (strcmp(gl.gl_pathv[x], fname) == 0) 1810 if (strcmp(gl.gl_pathv[x], fname) == 0)
1481 continue; 1811 continue;
1482 i = load_ld_cache_config(i, gl.gl_pathv[x]); 1812 _load_ld_cache_config(gl.gl_pathv[x]);
1483 if (i + 1 >= ARRAY_SIZE(ldpaths)) {
1484 globfree64(&gl);
1485 return i;
1486 }
1487 } 1813 }
1488 globfree64 (&gl); 1814 globfree(&gl);
1489 continue;
1490 } 1815 }
1816
1817 /* failed globs are ignored by glibc */
1818 continue;
1491 } 1819 }
1492#endif 1820
1493 if (*path != '/') 1821 if (*path != '/')
1494 continue; 1822 continue;
1495 1823
1496 ldpaths[i++] = xstrdup(path); 1824 xarraypush_str(ldpaths, path);
1497
1498 if (i + 1 == ARRAY_SIZE(ldpaths))
1499 break;
1500 } 1825 }
1501 ldpaths[i] = NULL; 1826 free(path);
1502 1827
1503 fclose(fp); 1828 fclose(fp);
1829
1830 if (curr_fd != -1) {
1831 if (fchdir(curr_fd))
1832 /* don't care */;
1833 close(curr_fd);
1834 }
1835
1504 return i; 1836 return 0;
1505} 1837}
1506 1838
1507#elif defined(__FreeBSD__) || (__DragonFly__) 1839#elif defined(__FreeBSD__) || defined(__DragonFly__)
1508 1840
1509static int load_ld_cache_config(int i, const char *fname) 1841static int _load_ld_cache_config(const char *fname)
1510{ 1842{
1511 FILE *fp = NULL; 1843 FILE *fp = NULL;
1512 char *b = NULL, *p; 1844 char *b = NULL, *p;
1513 struct elfhints_hdr hdr; 1845 struct elfhints_hdr hdr;
1514 1846
1515 if (i + 1 == ARRAY_SIZE(ldpaths)) 1847 fp = fopenat_r(root_fd, root_rel_path(fname));
1848 if (fp == NULL)
1516 return i; 1849 return -1;
1517
1518 if ((fp = fopen(fname, "r")) == NULL)
1519 return i;
1520 1850
1521 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) || 1851 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1522 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 || 1852 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1523 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1) 1853 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1524 { 1854 {
1525 fclose(fp); 1855 fclose(fp);
1526 return i; 1856 return -1;
1527 } 1857 }
1528 1858
1529 b = xmalloc(hdr.dirlistlen + 1); 1859 b = xmalloc(hdr.dirlistlen + 1);
1530 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) { 1860 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1531 fclose(fp); 1861 fclose(fp);
1532 free(b); 1862 free(b);
1533 return i; 1863 return -1;
1534 } 1864 }
1535 1865
1536 while ((p = strsep(&b, ":"))) { 1866 while ((p = strsep(&b, ":"))) {
1537 if (*p == '\0') continue; 1867 if (*p == '\0')
1538 ldpaths[i++] = xstrdup(p); 1868 continue;
1539 1869 xarraypush_str(ldpaths, p);
1540 if (i + 1 == ARRAY_SIZE(ldpaths))
1541 break;
1542 } 1870 }
1543 ldpaths[i] = NULL;
1544 1871
1545 free(b); 1872 free(b);
1546 fclose(fp); 1873 fclose(fp);
1547 return i; 1874 return 0;
1548} 1875}
1549 1876
1550#else 1877#else
1551#ifdef __ELF__ 1878#ifdef __ELF__
1552#warning Cache config support not implemented for your target 1879#warning Cache config support not implemented for your target
1553#endif 1880#endif
1554static int load_ld_cache_config(int i, const char *fname) 1881static int _load_ld_cache_config(const char *fname)
1555{ 1882{
1556 memset(ldpaths, 0x00, sizeof(ldpaths));
1557 return 0; 1883 return 0;
1558} 1884}
1559#endif 1885#endif
1886
1887static void load_ld_cache_config(const char *fname)
1888{
1889 bool scan_l, scan_ul, scan_ull;
1890 size_t n;
1891 const char *ldpath;
1892
1893 _load_ld_cache_config(fname);
1894
1895 scan_l = scan_ul = scan_ull = false;
1896 if (array_cnt(ldpaths)) {
1897 array_for_each(ldpaths, n, ldpath) {
1898 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = true;
1899 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = true;
1900 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = true;
1901 }
1902 }
1903
1904 if (!scan_l) xarraypush_str(ldpaths, "/lib");
1905 if (!scan_ul) xarraypush_str(ldpaths, "/usr/lib");
1906 if (!scan_ull) xarraypush_str(ldpaths, "/usr/local/lib");
1907}
1560 1908
1561/* scan /etc/ld.so.conf for paths */ 1909/* scan /etc/ld.so.conf for paths */
1562static void scanelf_ldpath(void) 1910static void scanelf_ldpath(void)
1563{ 1911{
1564 char scan_l, scan_ul, scan_ull; 1912 size_t n;
1565 int i = 0; 1913 const char *ldpath;
1566 1914
1567 if (!ldpaths[0]) 1915 array_for_each(ldpaths, n, ldpath)
1568 err("Unable to load any paths from ld.so.conf");
1569
1570 scan_l = scan_ul = scan_ull = 0;
1571
1572 while (ldpaths[i]) {
1573 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1;
1574 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1;
1575 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1;
1576 scanelf_dir(ldpaths[i]); 1916 scanelf_dir(ldpath);
1577 ++i;
1578 }
1579
1580 if (!scan_l) scanelf_dir("/lib");
1581 if (!scan_ul) scanelf_dir("/usr/lib");
1582 if (!scan_ull) scanelf_dir("/usr/local/lib");
1583} 1917}
1584 1918
1585/* scan env PATH for paths */ 1919/* scan env PATH for paths */
1586static void scanelf_envpath(void) 1920static void scanelf_envpath(void)
1587{ 1921{
1598 } 1932 }
1599 1933
1600 free(path); 1934 free(path);
1601} 1935}
1602 1936
1603/* usage / invocation handling functions */ /* Free Flags: c d j u w C G H J K P Q U W */ 1937/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
1604#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZBhV" 1938#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
1605#define a_argument required_argument 1939#define a_argument required_argument
1606static struct option const long_opts[] = { 1940static struct option const long_opts[] = {
1607 {"path", no_argument, NULL, 'p'}, 1941 {"path", no_argument, NULL, 'p'},
1608 {"ldpath", no_argument, NULL, 'l'}, 1942 {"ldpath", no_argument, NULL, 'l'},
1943 {"use-ldpath",no_argument, NULL, 129},
1944 {"root", a_argument, NULL, 128},
1609 {"recursive", no_argument, NULL, 'R'}, 1945 {"recursive", no_argument, NULL, 'R'},
1610 {"mount", no_argument, NULL, 'm'}, 1946 {"mount", no_argument, NULL, 'm'},
1611 {"symlink", no_argument, NULL, 'y'}, 1947 {"symlink", no_argument, NULL, 'y'},
1612 {"archives", no_argument, NULL, 'A'}, 1948 {"archives", no_argument, NULL, 'A'},
1613 {"ldcache", no_argument, NULL, 'L'}, 1949 {"ldcache", no_argument, NULL, 'L'},
1637 {"quiet", no_argument, NULL, 'q'}, 1973 {"quiet", no_argument, NULL, 'q'},
1638 {"verbose", no_argument, NULL, 'v'}, 1974 {"verbose", no_argument, NULL, 'v'},
1639 {"format", a_argument, NULL, 'F'}, 1975 {"format", a_argument, NULL, 'F'},
1640 {"from", a_argument, NULL, 'f'}, 1976 {"from", a_argument, NULL, 'f'},
1641 {"file", a_argument, NULL, 'o'}, 1977 {"file", a_argument, NULL, 'o'},
1978 {"nocolor", no_argument, NULL, 'C'},
1642 {"nobanner", no_argument, NULL, 'B'}, 1979 {"nobanner", no_argument, NULL, 'B'},
1643 {"help", no_argument, NULL, 'h'}, 1980 {"help", no_argument, NULL, 'h'},
1644 {"version", no_argument, NULL, 'V'}, 1981 {"version", no_argument, NULL, 'V'},
1645 {NULL, no_argument, NULL, 0x0} 1982 {NULL, no_argument, NULL, 0x0}
1646}; 1983};
1647 1984
1648static const char *opts_help[] = { 1985static const char * const opts_help[] = {
1649 "Scan all directories in PATH environment", 1986 "Scan all directories in PATH environment",
1650 "Scan all directories in /etc/ld.so.conf", 1987 "Scan all directories in /etc/ld.so.conf",
1988 "Use ld.so.conf to show full path (use with -r/-n)",
1989 "Root directory (use with -l or -p)",
1651 "Scan directories recursively", 1990 "Scan directories recursively",
1652 "Don't recursively cross mount points", 1991 "Don't recursively cross mount points",
1653 "Don't scan symlinks", 1992 "Don't scan symlinks",
1654 "Scan archives (.a files)", 1993 "Scan archives (.a files)",
1655 "Utilize ld.so.cache information (use with -r/-n)", 1994 "Utilize ld.so.cache to show full path (use with -r/-n)",
1656 "Try and 'fix' bad things (use with -r/-e)", 1995 "Try and 'fix' bad things (use with -r/-e)",
1657 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n", 1996 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1658 "Print PaX markings", 1997 "Print PaX markings",
1659 "Print GNU_STACK/PT_LOAD markings", 1998 "Print GNU_STACK/PT_LOAD markings",
1660 "Print TEXTREL information", 1999 "Print TEXTREL information",
1664 "Print BIND information", 2003 "Print BIND information",
1665 "Print SONAME information", 2004 "Print SONAME information",
1666 "Find a specified symbol", 2005 "Find a specified symbol",
1667 "Find a specified section", 2006 "Find a specified section",
1668 "Find a specified library", 2007 "Find a specified library",
1669 "Use strncmp to match libraries. (use with -N)", 2008 "Use regex rather than string compare (with -s); specify twice for case insensitive",
1670 "Locate cause of TEXTREL", 2009 "Locate cause of TEXTREL",
1671 "Print only ELF files matching etype ET_DYN,ET_EXEC ...", 2010 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1672 "Print only ELF files matching numeric bits", 2011 "Print only ELF files matching numeric bits",
1673 "Print Endianness", 2012 "Print Endianness",
1674 "Print OSABI", 2013 "Print OSABI",
1675 "Print EABI (EM_ARM Only)", 2014 "Print EABI (EM_ARM Only)",
1676 "Print only ELF files matching octal permissions", 2015 "Print only ELF files matching octal permissions",
1677 "Print ELF file size", 2016 "Print ELF file size",
1678 "Print all scanned info (-x -e -t -r -b)\n", 2017 "Print all useful/simple info\n",
1679 "Only output 'bad' things", 2018 "Only output 'bad' things",
1680 "Be verbose (can be specified more than once)", 2019 "Be verbose (can be specified more than once)",
1681 "Use specified format for output", 2020 "Use specified format for output",
1682 "Read input stream from a filename", 2021 "Read input stream from a filename",
1683 "Write output stream to a filename", 2022 "Write output stream to a filename",
2023 "Don't emit color in output",
1684 "Don't display the header", 2024 "Don't display the header",
1685 "Print this help and exit", 2025 "Print this help and exit",
1686 "Print version and exit", 2026 "Print version and exit",
1687 NULL 2027 NULL
1688}; 2028};
1692{ 2032{
1693 unsigned long i; 2033 unsigned long i;
1694 printf("* Scan ELF binaries for stuff\n\n" 2034 printf("* Scan ELF binaries for stuff\n\n"
1695 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0); 2035 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1696 printf("Options: -[%s]\n", PARSE_FLAGS); 2036 printf("Options: -[%s]\n", PARSE_FLAGS);
1697 for (i = 0; long_opts[i].name; ++i) 2037 for (i = 0; long_opts[i].name; ++i) {
2038 /* first output the short flag if it has one */
2039 if (long_opts[i].val > '~')
2040 printf(" ");
2041 else
2042 printf(" -%c, ", long_opts[i].val);
2043
2044 /* then the long flag */
1698 if (long_opts[i].has_arg == no_argument) 2045 if (long_opts[i].has_arg == no_argument)
1699 printf(" -%c, --%-14s* %s\n", long_opts[i].val, 2046 printf("--%-14s", long_opts[i].name);
1700 long_opts[i].name, opts_help[i]);
1701 else 2047 else
1702 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val, 2048 printf("--%-7s <arg> ", long_opts[i].name);
1703 long_opts[i].name, opts_help[i]); 2049
2050 /* finally the help text */
2051 printf("* %s\n", opts_help[i]);
2052 }
1704 2053
1705 puts("\nFor more information, see the scanelf(1) manpage"); 2054 puts("\nFor more information, see the scanelf(1) manpage");
1706 exit(status); 2055 exit(status);
1707} 2056}
1708 2057
1718static int parseargs(int argc, char *argv[]) 2067static int parseargs(int argc, char *argv[])
1719{ 2068{
1720 int i; 2069 int i;
1721 const char *from_file = NULL; 2070 const char *from_file = NULL;
1722 int ret = 0; 2071 int ret = 0;
2072 char load_cache_config = 0;
1723 2073
1724 opterr = 0; 2074 opterr = 0;
1725 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2075 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1726 switch (i) { 2076 switch (i) {
1727 2077
1735 case 'f': 2085 case 'f':
1736 if (from_file) warn("You prob don't want to specify -f twice"); 2086 if (from_file) warn("You prob don't want to specify -f twice");
1737 from_file = optarg; 2087 from_file = optarg;
1738 break; 2088 break;
1739 case 'E': 2089 case 'E':
1740 strncpy(match_etypes, optarg, sizeof(match_etypes)); 2090 match_etypes = optarg;
1741 break; 2091 break;
1742 case 'M': 2092 case 'M':
1743 match_bits = atoi(optarg); 2093 match_bits = atoi(optarg);
1744 if (match_bits == 0) { 2094 if (match_bits == 0) {
1745 if (strcmp(optarg, "ELFCLASS32") == 0) 2095 if (strcmp(optarg, "ELFCLASS32") == 0)
1752 if (sscanf(optarg, "%o", &match_perms) == -1) 2102 if (sscanf(optarg, "%o", &match_perms) == -1)
1753 match_bits = 0; 2103 match_bits = 0;
1754 break; 2104 break;
1755 case 'o': { 2105 case 'o': {
1756 if (freopen(optarg, "w", stdout) == NULL) 2106 if (freopen(optarg, "w", stdout) == NULL)
1757 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2107 errp("Could not freopen(%s)", optarg);
1758 break; 2108 break;
1759 } 2109 }
1760 case 'k': 2110 case 'k':
1761 if (find_section) warn("You prob don't want to specify -k twice"); 2111 xarraypush_str(find_section_arr, optarg);
1762 find_section = optarg;
1763 break; 2112 break;
1764 case 's': { 2113 case 's': {
1765 if (find_sym) warn("You prob don't want to specify -s twice"); 2114 /* historically, this was comma delimited */
1766 find_sym = optarg; 2115 char *this_sym = strtok(optarg, ",");
2116 if (!this_sym) /* edge case: -s '' */
2117 xarraypush_str(find_sym_arr, "");
2118 while (this_sym) {
2119 xarraypush_str(find_sym_arr, this_sym);
2120 this_sym = strtok(NULL, ",");
2121 }
1767 break; 2122 break;
1768 } 2123 }
1769 case 'N': { 2124 case 'N':
1770 if (find_lib) warn("You prob don't want to specify -N twice"); 2125 xarraypush_str(find_lib_arr, optarg);
1771 find_lib = optarg;
1772 break; 2126 break;
1773 }
1774
1775 case 'F': { 2127 case 'F': {
1776 if (out_format) warn("You prob don't want to specify -F twice"); 2128 if (out_format) warn("You prob don't want to specify -F twice");
1777 out_format = optarg; 2129 out_format = optarg;
1778 break; 2130 break;
1779 } 2131 }
1819 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)))) 2171 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1820 setpax = flags; 2172 setpax = flags;
1821 break; 2173 break;
1822 } 2174 }
1823 case 'Z': show_size = 1; break; 2175 case 'Z': show_size = 1; break;
1824 case 'g': g_match = 1; break; 2176 case 'g': ++g_match; break;
1825 case 'L': use_ldcache = 1; break; 2177 case 'L': load_cache_config = use_ldcache = 1; break;
1826 case 'y': scan_symlink = 0; break; 2178 case 'y': scan_symlink = 0; break;
1827 case 'A': scan_archives = 1; break; 2179 case 'A': scan_archives = 1; break;
2180 case 'C': color_init(true); break;
1828 case 'B': show_banner = 0; break; 2181 case 'B': show_banner = 0; break;
1829 case 'l': scan_ldpath = 1; break; 2182 case 'l': load_cache_config = scan_ldpath = 1; break;
1830 case 'p': scan_envpath = 1; break; 2183 case 'p': scan_envpath = 1; break;
1831 case 'R': dir_recurse = 1; break; 2184 case 'R': dir_recurse = 1; break;
1832 case 'm': dir_crossmount = 0; break; 2185 case 'm': dir_crossmount = 0; break;
1833 case 'X': ++fix_elf; break; 2186 case 'X': ++fix_elf; break;
1834 case 'x': show_pax = 1; break; 2187 case 'x': show_pax = 1; break;
1844 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2197 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1845 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break; 2198 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1846 case 'D': show_endian = 1; break; 2199 case 'D': show_endian = 1; break;
1847 case 'I': show_osabi = 1; break; 2200 case 'I': show_osabi = 1; break;
1848 case 'Y': show_eabi = 1; break; 2201 case 'Y': show_eabi = 1; break;
2202 case 128:
2203 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2204 if (root_fd == -1)
2205 err("Could not open root: %s", optarg);
2206 break;
2207 case 129: load_cache_config = use_ldpath = 1; break;
1849 case ':': 2208 case ':':
1850 err("Option '%c' is missing parameter", optopt); 2209 err("Option '%c' is missing parameter", optopt);
1851 case '?': 2210 case '?':
1852 err("Unknown option '%c' or argument missing", optopt); 2211 err("Unknown option '%c' or argument missing", optopt);
1853 default: 2212 default:
1854 err("Unhandled option '%c'; please report this", i); 2213 err("Unhandled option '%c'; please report this", i);
1855 } 2214 }
1856 } 2215 }
1857 if (show_textrels && be_verbose) { 2216 if (show_textrels && be_verbose)
1858 if (which("objdump") != NULL) 2217 has_objdump = bin_in_path("objdump");
1859 has_objdump = 1; 2218 /* precompile all the regexes */
2219 if (g_match) {
2220 regex_t preg;
2221 const char *this_sym;
2222 size_t n;
2223 int flags = REG_EXTENDED | REG_NOSUB | (g_match > 1 ? REG_ICASE : 0);
2224
2225 array_for_each(find_sym_arr, n, this_sym) {
2226 /* see scanelf_match_symname for logic info */
2227 switch (this_sym[0]) {
2228 case '%':
2229 while (*(this_sym++))
2230 if (*this_sym == '%') {
2231 ++this_sym;
2232 break;
2233 }
2234 break;
2235 case '+':
2236 case '-':
2237 ++this_sym;
2238 break;
2239 }
2240 if (*this_sym == '*')
2241 ++this_sym;
2242
2243 ret = regcomp(&preg, this_sym, flags);
2244 if (ret) {
2245 char err[256];
2246 regerror(ret, &preg, err, sizeof(err));
2247 err("regcomp of %s failed: %s", this_sym, err);
2248 }
2249 xarraypush(find_sym_regex_arr, &preg, sizeof(preg));
1860 } 2250 }
2251 }
2252 /* flatten arrays for display */
2253 if (array_cnt(find_sym_arr))
2254 find_sym = array_flatten_str(find_sym_arr);
2255 if (array_cnt(find_lib_arr))
2256 find_lib = array_flatten_str(find_lib_arr);
2257 if (array_cnt(find_section_arr))
2258 find_section = array_flatten_str(find_section_arr);
1861 /* let the format option override all other options */ 2259 /* let the format option override all other options */
1862 if (out_format) { 2260 if (out_format) {
1863 show_pax = show_phdr = show_textrel = show_rpath = \ 2261 show_pax = show_phdr = show_textrel = show_rpath = \
1864 show_needed = show_interp = show_bind = show_soname = \ 2262 show_needed = show_interp = show_bind = show_soname = \
1865 show_textrels = show_perms = show_endian = show_size = \ 2263 show_textrels = show_perms = show_endian = show_size = \
1893 case 'i': show_interp = 1; break; 2291 case 'i': show_interp = 1; break;
1894 case 'b': show_bind = 1; break; 2292 case 'b': show_bind = 1; break;
1895 case 'S': show_soname = 1; break; 2293 case 'S': show_soname = 1; break;
1896 case 'T': show_textrels = 1; break; 2294 case 'T': show_textrels = 1; break;
1897 default: 2295 default:
1898 err("Invalid format specifier '%c' (byte %i)", 2296 err("invalid format specifier '%c' (byte %i)",
1899 out_format[i], i+1); 2297 out_format[i], i+1);
1900 } 2298 }
1901 } 2299 }
1902 2300
1903 /* construct our default format */ 2301 /* construct our default format */
1926 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2324 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1927 } 2325 }
1928 if (be_verbose > 2) printf("Format: %s\n", out_format); 2326 if (be_verbose > 2) printf("Format: %s\n", out_format);
1929 2327
1930 /* now lets actually do the scanning */ 2328 /* now lets actually do the scanning */
1931 if (scan_ldpath || use_ldcache) 2329 if (load_cache_config)
1932 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG); 2330 load_ld_cache_config(__PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1933 if (scan_ldpath) scanelf_ldpath(); 2331 if (scan_ldpath) scanelf_ldpath();
1934 if (scan_envpath) scanelf_envpath(); 2332 if (scan_envpath) scanelf_envpath();
1935 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath) 2333 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
1936 from_file = "-"; 2334 from_file = "-";
1937 if (from_file) { 2335 if (from_file) {
1943 while (optind < argc) { 2341 while (optind < argc) {
1944 search_path = argv[optind++]; 2342 search_path = argv[optind++];
1945 ret = scanelf_dir(search_path); 2343 ret = scanelf_dir(search_path);
1946 } 2344 }
1947 2345
2346#ifdef __PAX_UTILS_CLEANUP
1948 /* clean up */ 2347 /* clean up */
1949 for (i = 0; ldpaths[i]; ++i)
1950 free(ldpaths[i]); 2348 xarrayfree(ldpaths);
2349 xarrayfree(find_sym_arr);
2350 xarrayfree(find_lib_arr);
2351 xarrayfree(find_section_arr);
2352 free(find_sym);
2353 free(find_lib);
2354 free(find_section);
2355 {
2356 size_t n;
2357 regex_t *preg;
2358 array_for_each(find_sym_regex_arr, n, preg)
2359 regfree(preg);
2360 xarrayfree(find_sym_regex_arr);
2361 }
1951 2362
1952 if (ldcache != 0) 2363 if (ldcache != 0)
1953 munmap(ldcache, ldcache_size); 2364 munmap(ldcache, ldcache_size);
2365#endif
2366
1954 return ret; 2367 return ret;
1955} 2368}
1956 2369
1957static char **get_split_env(const char *envvar) 2370static char **get_split_env(const char *envvar)
1958{ 2371{
1988 return envvals; 2401 return envvals;
1989} 2402}
1990 2403
1991static void parseenv(void) 2404static void parseenv(void)
1992{ 2405{
2406 color_init(false);
1993 qa_textrels = get_split_env("QA_TEXTRELS"); 2407 qa_textrels = get_split_env("QA_TEXTRELS");
1994 qa_execstack = get_split_env("QA_EXECSTACK"); 2408 qa_execstack = get_split_env("QA_EXECSTACK");
1995 qa_wx_load = get_split_env("QA_WX_LOAD"); 2409 qa_wx_load = get_split_env("QA_WX_LOAD");
1996} 2410}
1997 2411
2014 ret = parseargs(argc, argv); 2428 ret = parseargs(argc, argv);
2015 fclose(stdout); 2429 fclose(stdout);
2016#ifdef __PAX_UTILS_CLEANUP 2430#ifdef __PAX_UTILS_CLEANUP
2017 cleanup(); 2431 cleanup();
2018 warn("The calls to add/delete heap should be off:\n" 2432 warn("The calls to add/delete heap should be off:\n"
2019 "\t- 1 due to the out_buffer not being freed in scanelf_file()\n" 2433 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2020 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD"); 2434 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
2021#endif 2435#endif
2022 return ret; 2436 return ret;
2023} 2437}
2024 2438

Legend:
Removed from v.1.206  
changed lines
  Added in v.1.251

  ViewVC Help
Powered by ViewVC 1.1.20