/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.138 Revision 1.229
1/* 1/*
2 * Copyright 2003-2006 Gentoo Foundation 2 * Copyright 2003-2007 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.138 2006/03/31 06:07:47 vapier Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.229 2011/09/27 19:29:19 vapier Exp $
5 * 5 *
6 * Copyright 2003-2006 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2006 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10static const char *rcsid = "$Id: scanelf.c,v 1.229 2011/09/27 19:29:19 vapier Exp $";
11const char argv0[] = "scanelf";
12
10#include "paxinc.h" 13#include "paxinc.h"
11#ifdef __linux__
12 #include <glob.h>
13#endif
14static const char *rcsid = "$Id: scanelf.c,v 1.138 2006/03/31 06:07:47 vapier Exp $";
15#define argv0 "scanelf"
16 14
17#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
18 16
19#define do_state(option, flag) \
20 if (islower(option)) { \
21 flags &= ~PF_##flag; \
22 flags |= PF_NO##flag; \
23 } else { \
24 flags &= ~PF_NO##flag; \
25 flags |= PF_##flag; \
26 }
27
28
29/* prototypes */ 17/* prototypes */
30static int scanelf_elfobj(elfobj *elf); 18static int file_matches_list(const char *filename, char **matchlist);
31static int scanelf_elf(const char *filename, int fd, size_t len);
32static int scanelf_archive(const char *filename, int fd, size_t len);
33static void scanelf_file(const char *filename);
34static void scanelf_dir(const char *path);
35static void scanelf_ldpath(void);
36static void scanelf_envpath(void);
37static void usage(int status);
38static void parseargs(int argc, char *argv[]);
39static char *xstrdup(const char *s);
40static void *xmalloc(size_t size);
41static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
42#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
43static inline void xchrcat(char **dst, const char append, size_t *curr_len);
44 19
45/* variables to control behavior */ 20/* variables to control behavior */
46static char match_etypes[126] = ""; 21static char *match_etypes = NULL;
47static char *ldpaths[256]; 22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
48static char scan_ldpath = 0; 23static char scan_ldpath = 0;
49static char scan_envpath = 0; 24static char scan_envpath = 0;
50static char scan_symlink = 1; 25static char scan_symlink = 1;
51static char scan_archives = 0; 26static char scan_archives = 0;
52static char dir_recurse = 0; 27static char dir_recurse = 0;
53static char dir_crossmount = 1; 28static char dir_crossmount = 1;
54static char show_pax = 0; 29static char show_pax = 0;
30static char show_perms = 0;
31static char show_size = 0;
55static char show_phdr = 0; 32static char show_phdr = 0;
56static char show_textrel = 0; 33static char show_textrel = 0;
57static char show_rpath = 0; 34static char show_rpath = 0;
58static char show_needed = 0; 35static char show_needed = 0;
59static char show_interp = 0; 36static char show_interp = 0;
60static char show_bind = 0; 37static char show_bind = 0;
61static char show_soname = 0; 38static char show_soname = 0;
62static char show_textrels = 0; 39static char show_textrels = 0;
63static char show_banner = 1; 40static char show_banner = 1;
41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
64static char be_quiet = 0; 44static char be_quiet = 0;
65static char be_verbose = 0; 45static char be_verbose = 0;
66static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
67static char be_semi_verbose = 0; 47static char be_semi_verbose = 0;
68static char *find_sym = NULL, *versioned_symname = NULL; 48static char *find_sym = NULL;
69static char *find_lib = NULL; 49static char *find_lib = NULL;
50static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
70static char *find_section = NULL; 51static char *find_section = NULL;
52static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
71static char *out_format = NULL; 53static char *out_format = NULL;
72static char *search_path = NULL; 54static char *search_path = NULL;
73static char fix_elf = 0; 55static char fix_elf = 0;
74static char gmatch = 0; 56static char g_match = 0;
75static char use_ldcache = 0; 57static char use_ldcache = 0;
76 58
59static char **qa_textrels = NULL;
60static char **qa_execstack = NULL;
61static char **qa_wx_load = NULL;
62static char *root;
63
77int match_bits = 0; 64static int match_bits = 0;
78caddr_t ldcache = 0; 65static unsigned int match_perms = 0;
66static void *ldcache = NULL;
79size_t ldcache_size = 0; 67static size_t ldcache_size = 0;
80unsigned long setpax = 0UL; 68static unsigned long setpax = 0UL;
69
70static int has_objdump = 0;
71
72/* find the path to a file by name */
73static char *which(const char *fname)
74{
75 static char fullpath[__PAX_UTILS_PATH_MAX];
76 char *path, *p;
77
78 path = getenv("PATH");
79 if (!path)
80 return NULL;
81
82 path = xstrdup(path);
83 while ((p = strrchr(path, ':')) != NULL) {
84 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
85 *p = 0;
86 if (access(fullpath, R_OK) != -1) {
87 free(path);
88 return fullpath;
89 }
90 }
91 free(path);
92 return NULL;
93}
94
95/* 1 on failure. 0 otherwise */
96static int rematch(const char *regex, const char *match, int cflags)
97{
98 regex_t preg;
99 int ret;
100
101 if ((match == NULL) || (regex == NULL))
102 return EXIT_FAILURE;
103
104 if ((ret = regcomp(&preg, regex, cflags))) {
105 char err[256];
106
107 if (regerror(ret, &preg, err, sizeof(err)))
108 fprintf(stderr, "regcomp failed: %s", err);
109 else
110 fprintf(stderr, "regcomp failed");
111
112 return EXIT_FAILURE;
113 }
114 ret = regexec(&preg, match, 0, NULL, 0);
115 regfree(&preg);
116
117 return ret;
118}
81 119
82/* sub-funcs for scanelf_file() */ 120/* sub-funcs for scanelf_file() */
83static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 121static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab)
84{ 122{
85 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 123 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
124
125 /* debug sections */
126 void *symtab = elf_findsecbyname(elf, ".symtab");
127 void *strtab = elf_findsecbyname(elf, ".strtab");
128 /* runtime sections */
129 void *dynsym = elf_findsecbyname(elf, ".dynsym");
130 void *dynstr = elf_findsecbyname(elf, ".dynstr");
131
86#define GET_SYMTABS(B) \ 132#define GET_SYMTABS(B) \
87 if (elf->elf_class == ELFCLASS ## B) { \ 133 if (elf->elf_class == ELFCLASS ## B) { \
88 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \
89 /* debug sections */ \
90 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \
91 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \
92 /* runtime sections */ \
93 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \
94 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \
95 if (symtab && dynsym) { \ 134 if (symtab && dynsym) { \
135 Elf ## B ## _Shdr *esymtab = symtab; \
136 Elf ## B ## _Shdr *edynsym = dynsym; \
96 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 137 *sym = (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) ? symtab : dynsym; \
97 } else { \ 138 } else \
98 *sym = (void*)(symtab ? symtab : dynsym); \ 139 *sym = symtab ? symtab : dynsym; \
99 } \
100 if (strtab && dynstr) { \ 140 if (strtab && dynstr) { \
141 Elf ## B ## _Shdr *estrtab = strtab; \
142 Elf ## B ## _Shdr *edynstr = dynstr; \
101 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \ 143 *tab = (EGET(estrtab->sh_size) > EGET(edynstr->sh_size)) ? strtab : dynstr; \
102 } else { \ 144 } else \
103 *tab = (void*)(strtab ? strtab : dynstr); \ 145 *tab = strtab ? strtab : dynstr; \
104 } \
105 } 146 }
106 GET_SYMTABS(32) 147 GET_SYMTABS(32)
107 GET_SYMTABS(64) 148 GET_SYMTABS(64)
108} 149}
109 150
139 } 180 }
140 SHOW_PAX(32) 181 SHOW_PAX(32)
141 SHOW_PAX(64) 182 SHOW_PAX(64)
142 } 183 }
143 184
144
145 if (fix_elf && setpax) { 185 if (fix_elf && setpax) {
146 /* set the chpax settings */ 186 /* set the chpax settings */
147 if (elf->elf_class == ELFCLASS32) { 187 if (elf->elf_class == ELFCLASS32) {
148 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC) 188 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC)
149 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax)); 189 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
193 uint32_t flags, check_flags; \ 233 uint32_t flags, check_flags; \
194 if (elf->phdr != NULL) { \ 234 if (elf->phdr != NULL) { \
195 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 235 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
196 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \ 236 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
197 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 237 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
238 if (multi_stack++) \
198 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 239 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
240 if (file_matches_list(elf->filename, qa_execstack)) \
241 continue; \
199 found = found_phdr; \ 242 found = found_phdr; \
200 offset = 0; \ 243 offset = 0; \
201 check_flags = PF_X; \ 244 check_flags = PF_X; \
202 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 245 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
246 if (multi_relro++) \
203 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 247 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
204 found = found_relro; \ 248 found = found_relro; \
205 offset = 4; \ 249 offset = 4; \
206 check_flags = PF_X; \ 250 check_flags = PF_X; \
207 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 251 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
208 if (ehdr->e_type == ET_DYN || ehdr->e_type == ET_EXEC) \ 252 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
253 if (multi_load++ > max_pt_load) \
209 if (multi_load++ > max_pt_load) warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \ 254 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
255 if (file_matches_list(elf->filename, qa_wx_load)) \
256 continue; \
210 found = found_load; \ 257 found = found_load; \
211 offset = 8; \ 258 offset = 8; \
212 check_flags = PF_W|PF_X; \ 259 check_flags = PF_W|PF_X; \
213 } else \ 260 } else \
214 continue; \ 261 continue; \
227 } else if (elf->shdr != NULL) { \ 274 } else if (elf->shdr != NULL) { \
228 /* no program headers which means this is prob an object file */ \ 275 /* no program headers which means this is prob an object file */ \
229 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 276 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
230 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 277 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
231 char *str; \ 278 char *str; \
232 if ((void*)strtbl > (void*)elf->data_end) \ 279 if ((void*)strtbl > elf->data_end) \
233 goto skip_this_shdr##B; \ 280 goto skip_this_shdr##B; \
234 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 281 check_flags = SHF_WRITE|SHF_EXECINSTR; \
235 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 282 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
236 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 283 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
237 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 284 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
251 break; \ 298 break; \
252 } \ 299 } \
253 } \ 300 } \
254 skip_this_shdr##B: \ 301 skip_this_shdr##B: \
255 if (!multi_stack) { \ 302 if (!multi_stack) { \
303 if (file_matches_list(elf->filename, qa_execstack)) \
304 return NULL; \
256 *found_phdr = 1; \ 305 *found_phdr = 1; \
257 shown = 1; \ 306 shown = 1; \
258 memcpy(ret, "!WX", 3); \ 307 memcpy(ret, "!WX", 3); \
259 } \ 308 } \
260 } \ 309 } \
265 if (be_wewy_wewy_quiet || (be_quiet && !shown)) 314 if (be_wewy_wewy_quiet || (be_quiet && !shown))
266 return NULL; 315 return NULL;
267 else 316 else
268 return ret; 317 return ret;
269} 318}
319
320/*
321 * See if this ELF contains a DT_TEXTREL tag in any of its
322 * PT_DYNAMIC sections.
323 */
270static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 324static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
271{ 325{
272 static const char *ret = "TEXTREL"; 326 static const char *ret = "TEXTREL";
273 unsigned long i; 327 unsigned long i;
274 328
275 if (!show_textrel && !show_textrels) return NULL; 329 if (!show_textrel && !show_textrels) return NULL;
330
331 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
276 332
277 if (elf->phdr) { 333 if (elf->phdr) {
278#define SHOW_TEXTREL(B) \ 334#define SHOW_TEXTREL(B) \
279 if (elf->elf_class == ELFCLASS ## B) { \ 335 if (elf->elf_class == ELFCLASS ## B) { \
280 Elf ## B ## _Dyn *dyn; \ 336 Elf ## B ## _Dyn *dyn; \
281 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 337 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
282 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 338 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
283 Elf ## B ## _Off offset; \ 339 Elf ## B ## _Off offset; \
284 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 340 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
285 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 341 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
286 offset = EGET(phdr[i].p_offset); \ 342 offset = EGET(phdr[i].p_offset); \
287 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 343 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
288 dyn = DYN ## B (elf->data + offset); \ 344 dyn = DYN ## B (elf->vdata + offset); \
289 while (EGET(dyn->d_tag) != DT_NULL) { \ 345 while (EGET(dyn->d_tag) != DT_NULL) { \
290 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 346 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
291 *found_textrel = 1; \ 347 *found_textrel = 1; \
292 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 348 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
293 return (be_wewy_wewy_quiet ? NULL : ret); \ 349 return (be_wewy_wewy_quiet ? NULL : ret); \
302 if (be_quiet || be_wewy_wewy_quiet) 358 if (be_quiet || be_wewy_wewy_quiet)
303 return NULL; 359 return NULL;
304 else 360 else
305 return " - "; 361 return " - ";
306} 362}
363
364/*
365 * Scan the .text section to see if there are any relocations in it.
366 * Should rewrite this to check PT_LOAD sections that are marked
367 * Executable rather than the section named '.text'.
368 */
307static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 369static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
308{ 370{
309 unsigned long s, r, rmax; 371 unsigned long s, r, rmax;
310 void *symtab_void, *strtab_void, *text_void; 372 void *symtab_void, *strtab_void, *text_void;
311 373
332 Elf ## B ## _Rela *rela; \ 394 Elf ## B ## _Rela *rela; \
333 /* search the section headers for relocations */ \ 395 /* search the section headers for relocations */ \
334 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 396 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
335 uint32_t sh_type = EGET(shdr[s].sh_type); \ 397 uint32_t sh_type = EGET(shdr[s].sh_type); \
336 if (sh_type == SHT_REL) { \ 398 if (sh_type == SHT_REL) { \
337 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 399 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
338 rela = NULL; \ 400 rela = NULL; \
339 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 401 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
340 } else if (sh_type == SHT_RELA) { \ 402 } else if (sh_type == SHT_RELA) { \
341 rel = NULL; \ 403 rel = NULL; \
342 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 404 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
343 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 405 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
344 } else \ 406 } else \
345 continue; \ 407 continue; \
346 /* now see if any of the relocs are in the .text */ \ 408 /* now see if any of the relocs are in the .text */ \
347 for (r = 0; r < rmax; ++r) { \ 409 for (r = 0; r < rmax; ++r) { \
362 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \ 424 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
363 if (be_verbose <= 2) continue; \ 425 if (be_verbose <= 2) continue; \
364 } else \ 426 } else \
365 *found_textrels = 1; \ 427 *found_textrels = 1; \
366 /* locate this relocation symbol name */ \ 428 /* locate this relocation symbol name */ \
367 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 429 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
368 if ((void*)sym > (void*)elf->data_end) { \ 430 if ((void*)sym > elf->data_end) { \
369 warn("%s: corrupt ELF symbol", elf->filename); \ 431 warn("%s: corrupt ELF symbol", elf->filename); \
370 continue; \ 432 continue; \
371 } \ 433 } \
372 sym_max = ELF ## B ## _R_SYM(r_info); \ 434 sym_max = ELF ## B ## _R_SYM(r_info); \
373 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 435 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
376 sym = NULL; \ 438 sym = NULL; \
377 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 439 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
378 /* show the raw details about this reloc */ \ 440 /* show the raw details about this reloc */ \
379 printf(" %s: ", elf->base_filename); \ 441 printf(" %s: ", elf->base_filename); \
380 if (sym && sym->st_name) \ 442 if (sym && sym->st_name) \
381 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 443 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
382 else \ 444 else \
383 printf("(memory/fake?)"); \ 445 printf("(memory/data?)"); \
384 printf(" [0x%lX]", (unsigned long)r_offset); \ 446 printf(" [0x%lX]", (unsigned long)r_offset); \
385 /* now try to find the closest symbol that this rel is probably in */ \ 447 /* now try to find the closest symbol that this rel is probably in */ \
386 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 448 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
387 func = NULL; \ 449 func = NULL; \
388 offset_tmp = 0; \ 450 offset_tmp = 0; \
389 while (sym_max--) { \ 451 while (sym_max--) { \
390 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \ 452 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
391 func = sym; \ 453 func = sym; \
392 offset_tmp = EGET(sym->st_value); \ 454 offset_tmp = EGET(sym->st_value); \
393 } \ 455 } \
394 ++sym; \ 456 ++sym; \
395 } \ 457 } \
396 printf(" in "); \ 458 printf(" in "); \
397 if (func && func->st_name) \ 459 if (func && func->st_name) { \
398 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 460 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
461 if (r_offset > EGET(func->st_size)) \
462 printf("(optimized out: previous %s)", func_name); \
399 else \ 463 else \
400 printf("(NULL: fake?)"); \ 464 printf("%s", func_name); \
465 } else \
466 printf("(optimized out)"); \
401 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 467 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
468 if (be_verbose && has_objdump) { \
469 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
470 char *sysbuf; \
471 size_t syslen; \
472 int sysret; \
473 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
474 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
475 sysbuf = xmalloc(syslen); \
476 if (end_addr < r_offset) \
477 /* not uncommon when things are optimized out */ \
478 end_addr = r_offset + 0x100; \
479 snprintf(sysbuf, syslen, sysfmt, \
480 (unsigned long)offset_tmp, \
481 (unsigned long)end_addr, \
482 elf->filename, \
483 (unsigned long)r_offset); \
484 fflush(stdout); \
485 sysret = system(sysbuf); \
486 fflush(stdout); \
487 free(sysbuf); \
488 } \
402 } \ 489 } \
403 } } 490 } }
404 SHOW_TEXTRELS(32) 491 SHOW_TEXTRELS(32)
405 SHOW_TEXTRELS(64) 492 SHOW_TEXTRELS(64)
406 } 493 }
408 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 495 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
409 496
410 return NULL; 497 return NULL;
411} 498}
412 499
413static void rpath_security_checks(elfobj *, char *, const char *);
414static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type) 500static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
415{ 501{
416 struct stat st; 502 struct stat st;
417 switch (*item) { 503 switch (*item) {
418 case '/': break; 504 case '/': break;
424 warnf("Security problem NULL %s in %s", dt_type, elf->filename); 510 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
425 break; 511 break;
426 case '$': 512 case '$':
427 if (fstat(elf->fd, &st) != -1) 513 if (fstat(elf->fd, &st) != -1)
428 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 514 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
429 warnf("Security problem with %s='%s' in %s with mode set of %o", 515 warnf("Security problem with %s='%s' in %s with mode set of %o",
430 dt_type, item, elf->filename, st.st_mode & 07777); 516 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
431 break; 517 break;
432 default: 518 default:
433 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename); 519 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
434 break; 520 break;
435 } 521 }
436} 522}
437static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 523static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
438{ 524{
439 unsigned long i, s; 525 unsigned long i;
440 char *rpath, *runpath, **r; 526 char *rpath, *runpath, **r;
441 void *strtbl_void; 527 void *strtbl_void;
442 528
443 if (!show_rpath) return; 529 if (!show_rpath) return;
444 530
455 Elf ## B ## _Off offset; \ 541 Elf ## B ## _Off offset; \
456 Elf ## B ## _Xword word; \ 542 Elf ## B ## _Xword word; \
457 /* Scan all the program headers */ \ 543 /* Scan all the program headers */ \
458 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 544 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
459 /* Just scan dynamic headers */ \ 545 /* Just scan dynamic headers */ \
460 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 546 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
461 offset = EGET(phdr[i].p_offset); \ 547 offset = EGET(phdr[i].p_offset); \
462 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 548 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
463 /* Just scan dynamic RPATH/RUNPATH headers */ \ 549 /* Just scan dynamic RPATH/RUNPATH headers */ \
464 dyn = DYN ## B (elf->data + offset); \ 550 dyn = DYN ## B (elf->vdata + offset); \
465 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 551 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
466 if (word == DT_RPATH) { \ 552 if (word == DT_RPATH) { \
467 r = &rpath; \ 553 r = &rpath; \
468 } else if (word == DT_RUNPATH) { \ 554 } else if (word == DT_RUNPATH) { \
469 r = &runpath; \ 555 r = &runpath; \
473 } \ 559 } \
474 /* Verify the memory is somewhat sane */ \ 560 /* Verify the memory is somewhat sane */ \
475 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 561 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
476 if (offset < (Elf ## B ## _Off)elf->len) { \ 562 if (offset < (Elf ## B ## _Off)elf->len) { \
477 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 563 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
478 *r = (char*)(elf->data + offset); \ 564 *r = elf->data + offset; \
479 /* cache the length in case we need to nuke this section later on */ \ 565 /* cache the length in case we need to nuke this section later on */ \
480 if (fix_elf) \ 566 if (fix_elf) \
481 offset = strlen(*r); \ 567 offset = strlen(*r); \
482 /* If quiet, don't output paths in ld.so.conf */ \ 568 /* If quiet, don't output paths in ld.so.conf */ \
483 if (be_quiet) { \ 569 if (be_quiet) { \
489 /* scan each path in : delimited list */ \ 575 /* scan each path in : delimited list */ \
490 while (start) { \ 576 while (start) { \
491 rpath_security_checks(elf, start, get_elfdtype(word)); \ 577 rpath_security_checks(elf, start, get_elfdtype(word)); \
492 end = strchr(start, ':'); \ 578 end = strchr(start, ':'); \
493 len = (end ? abs(end - start) : strlen(start)); \ 579 len = (end ? abs(end - start) : strlen(start)); \
494 if (use_ldcache) \ 580 if (use_ldcache) { \
495 for (s = 0; ldpaths[s]; ++s) \ 581 size_t n; \
582 const char *ldpath; \
583 array_for_each(ldpaths, n, ldpath) \
496 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 584 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
497 *r = end; \ 585 *r = end; \
498 /* corner case ... if RPATH reads "/usr/lib:", we want \ 586 /* corner case ... if RPATH reads "/usr/lib:", we want \
499 * to show ':' rather than '' */ \ 587 * to show ':' rather than '' */ \
500 if (end && end[1] != '\0') \ 588 if (end && end[1] != '\0') \
501 (*r)++; \ 589 (*r)++; \
502 break; \ 590 break; \
503 } \ 591 } \
592 } \
504 if (!*r || !end) \ 593 if (!*r || !end) \
505 break; \ 594 break; \
506 else \ 595 else \
507 start = start + len + 1; \ 596 start = start + len + 1; \
508 } \ 597 } \
593#define FLAG_S390_LIB64 0x0400 682#define FLAG_S390_LIB64 0x0400
594#define FLAG_POWERPC_LIB64 0x0500 683#define FLAG_POWERPC_LIB64 0x0500
595#define FLAG_MIPS64_LIBN32 0x0600 684#define FLAG_MIPS64_LIBN32 0x0600
596#define FLAG_MIPS64_LIBN64 0x0700 685#define FLAG_MIPS64_LIBN64 0x0700
597 686
598static char *lookup_cache_lib(elfobj *, char *); 687#if defined(__GLIBC__) || defined(__UCLIBC__)
688
599static char *lookup_cache_lib(elfobj *elf, char *fname) 689static char *lookup_cache_lib(elfobj *elf, char *fname)
600{ 690{
601 int fd = 0; 691 int fd;
602 char *strs; 692 char *strs;
603 static char buf[__PAX_UTILS_PATH_MAX] = ""; 693 static char buf[__PAX_UTILS_PATH_MAX] = "";
604 const char *cachefile = "/etc/ld.so.cache"; 694 const char cachefile[] = "/etc/ld.so.cache";
605 struct stat st; 695 struct stat st;
606 696
607 typedef struct { 697 typedef struct {
608 char magic[LDSO_CACHE_MAGIC_LEN]; 698 char magic[LDSO_CACHE_MAGIC_LEN];
609 char version[LDSO_CACHE_VER_LEN]; 699 char version[LDSO_CACHE_VER_LEN];
619 libentry_t *libent; 709 libentry_t *libent;
620 710
621 if (fname == NULL) 711 if (fname == NULL)
622 return NULL; 712 return NULL;
623 713
624 if (ldcache == 0) { 714 if (ldcache == NULL) {
625 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1) 715 if (stat(cachefile, &st))
716 return NULL;
717
718 fd = open(cachefile, O_RDONLY);
719 if (fd == -1)
626 return NULL; 720 return NULL;
627 721
628 /* cache these values so we only map/unmap the cache file once */ 722 /* cache these values so we only map/unmap the cache file once */
629 ldcache_size = st.st_size; 723 ldcache_size = st.st_size;
630 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0); 724 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
631
632 close(fd); 725 close(fd);
633 726
634 if (ldcache == (caddr_t)-1) { 727 if (ldcache == MAP_FAILED) {
635 ldcache = 0; 728 ldcache = NULL;
636 return NULL; 729 return NULL;
637 } 730 }
638 731
639 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 732 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
733 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
734 {
735 munmap(ldcache, ldcache_size);
736 ldcache = NULL;
640 return NULL; 737 return NULL;
641 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
642 return NULL;
643 } 738 }
739 } else
740 header = ldcache;
644 741
645 header = (header_t *) ldcache;
646 libent = (libentry_t *) (ldcache + sizeof(header_t)); 742 libent = ldcache + sizeof(header_t);
647 strs = (char *) &libent[header->nlibs]; 743 strs = (char *) &libent[header->nlibs];
648 744
649 for (fd = 0; fd < header->nlibs; fd++) { 745 for (fd = 0; fd < header->nlibs; ++fd) {
650 /* this should be more fine grained, but for now we assume that 746 /* This should be more fine grained, but for now we assume that
651 * diff arches will not be cached together. and we ignore the 747 * diff arches will not be cached together, and we ignore the
652 * the different multilib mips cases. */ 748 * the different multilib mips cases.
749 */
653 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK)) 750 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
654 continue; 751 continue;
655 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK)) 752 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
656 continue; 753 continue;
657 754
658 if (strcmp(fname, strs + libent[fd].sooffset) != 0) 755 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
659 continue; 756 continue;
757
758 /* Return first hit because that is how the ldso rolls */
660 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 759 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
760 break;
661 } 761 }
762
662 return buf; 763 return buf;
663} 764}
664 765
766#elif defined(__NetBSD__)
767static char *lookup_cache_lib(elfobj *elf, char *fname)
768{
769 static char buf[__PAX_UTILS_PATH_MAX] = "";
770 static struct stat st;
771 size_t n;
772 char *ldpath;
773
774 array_for_each(ldpath, n, ldpath) {
775 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
776 continue; /* if the pathname is too long, or something went wrong, ignore */
777
778 if (stat(buf, &st) != 0)
779 continue; /* if the lib doesn't exist in *ldpath, look further */
780
781 /* NetBSD doesn't actually do sanity checks, it just loads the file
782 * and if that doesn't work, continues looking in other directories.
783 * This cannot easily be safely emulated, unfortunately. For now,
784 * just assume that if it exists, it's a valid library. */
785
786 return buf;
787 }
788
789 /* not found in any path */
790 return NULL;
791}
792#else
793#ifdef __ELF__
794#warning Cache support not implemented for your target
795#endif
796static char *lookup_cache_lib(elfobj *elf, char *fname)
797{
798 return NULL;
799}
800#endif
665 801
666static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 802static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
667{ 803{
668 unsigned long i; 804 unsigned long i;
669 char *needed; 805 char *needed;
670 void *strtbl_void; 806 void *strtbl_void;
671 char *p; 807 char *p;
672 808
809 /*
810 * -n -> op==0 -> print all
811 * -N -> op==1 -> print requested
812 */
673 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 813 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
814 return NULL;
674 815
675 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 816 strtbl_void = elf_findsecbyname(elf, ".dynstr");
676 817
677 if (elf->phdr && strtbl_void) { 818 if (elf->phdr && strtbl_void) {
678#define SHOW_NEEDED(B) \ 819#define SHOW_NEEDED(B) \
680 Elf ## B ## _Dyn *dyn; \ 821 Elf ## B ## _Dyn *dyn; \
681 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 822 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
682 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 823 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
683 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 824 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
684 Elf ## B ## _Off offset; \ 825 Elf ## B ## _Off offset; \
826 size_t matched = 0; \
827 /* Walk all the program headers to find the PT_DYNAMIC */ \
685 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 828 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
686 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 829 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
830 continue; \
687 offset = EGET(phdr[i].p_offset); \ 831 offset = EGET(phdr[i].p_offset); \
688 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 832 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
833 continue; \
834 /* Walk all the dynamic tags to find NEEDED entries */ \
689 dyn = DYN ## B (elf->data + offset); \ 835 dyn = DYN ## B (elf->vdata + offset); \
690 while (EGET(dyn->d_tag) != DT_NULL) { \ 836 while (EGET(dyn->d_tag) != DT_NULL) { \
691 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 837 if (EGET(dyn->d_tag) == DT_NEEDED) { \
692 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 838 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
693 if (offset >= (Elf ## B ## _Off)elf->len) { \ 839 if (offset >= (Elf ## B ## _Off)elf->len) { \
694 ++dyn; \ 840 ++dyn; \
695 continue; \ 841 continue; \
696 } \ 842 } \
697 needed = (char*)(elf->data + offset); \ 843 needed = elf->data + offset; \
698 if (op == 0) { \ 844 if (op == 0) { \
845 /* -n -> print all entries */ \
699 if (!be_wewy_wewy_quiet) { \ 846 if (!be_wewy_wewy_quiet) { \
700 if (*found_needed) xchrcat(ret, ',', ret_len); \ 847 if (*found_needed) xchrcat(ret, ',', ret_len); \
701 if (use_ldcache) \ 848 if (use_ldcache) \
702 if ((p = lookup_cache_lib(elf, needed)) != NULL) \ 849 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
703 needed = p; \ 850 needed = p; \
704 xstrcat(ret, needed, ret_len); \ 851 xstrcat(ret, needed, ret_len); \
705 } \ 852 } \
706 *found_needed = 1; \ 853 *found_needed = 1; \
707 } else { \ 854 } else { \
708 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 855 /* -N -> print matching entries */ \
856 size_t n; \
857 const char *find_lib_name; \
858 \
859 array_for_each(find_lib_arr, n, find_lib_name) \
860 if (!strcmp(find_lib_name, needed)) \
861 ++matched; \
862 \
863 if (matched == array_cnt(find_lib_arr)) { \
709 *found_lib = 1; \ 864 *found_lib = 1; \
710 return (be_wewy_wewy_quiet ? NULL : needed); \ 865 return (be_wewy_wewy_quiet ? NULL : find_lib); \
711 } \ 866 } \
712 } \ 867 } \
713 } \ 868 } \
714 ++dyn; \ 869 ++dyn; \
715 } \ 870 } \
756 Elf ## B ## _Dyn *dyn; \ 911 Elf ## B ## _Dyn *dyn; \
757 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 912 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
758 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 913 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
759 Elf ## B ## _Off offset; \ 914 Elf ## B ## _Off offset; \
760 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 915 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
761 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 916 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
762 dynamic = 1; \ 917 dynamic = 1; \
763 offset = EGET(phdr[i].p_offset); \ 918 offset = EGET(phdr[i].p_offset); \
764 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 919 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
765 dyn = DYN ## B (elf->data + offset); \ 920 dyn = DYN ## B (elf->vdata + offset); \
766 while (EGET(dyn->d_tag) != DT_NULL) { \ 921 while (EGET(dyn->d_tag) != DT_NULL) { \
767 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 922 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
768 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 923 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
769 { \ 924 { \
770 if (be_quiet) return NULL; \ 925 if (be_quiet) return NULL; \
778 SHOW_BIND(32) 933 SHOW_BIND(32)
779 SHOW_BIND(64) 934 SHOW_BIND(64)
780 935
781 if (be_wewy_wewy_quiet) return NULL; 936 if (be_wewy_wewy_quiet) return NULL;
782 937
938 /* don't output anything if quiet mode and the ELF is static or not setuid */
783 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 939 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
784 return NULL; 940 return NULL;
785 } else { 941 } else {
786 *found_bind = 1; 942 *found_bind = 1;
787 return (char *) (dynamic ? "LAZY" : "STATIC"); 943 return (char *)(dynamic ? "LAZY" : "STATIC");
788 } 944 }
789} 945}
790static char *scanelf_file_soname(elfobj *elf, char *found_soname) 946static char *scanelf_file_soname(elfobj *elf, char *found_soname)
791{ 947{
792 unsigned long i; 948 unsigned long i;
804 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 960 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
805 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 961 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
806 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 962 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
807 Elf ## B ## _Off offset; \ 963 Elf ## B ## _Off offset; \
808 /* only look for soname in shared objects */ \ 964 /* only look for soname in shared objects */ \
809 if (ehdr->e_type != ET_DYN) \ 965 if (EGET(ehdr->e_type) != ET_DYN) \
810 return NULL; \ 966 return NULL; \
811 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 967 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
812 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 968 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
813 offset = EGET(phdr[i].p_offset); \ 969 offset = EGET(phdr[i].p_offset); \
814 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 970 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
815 dyn = DYN ## B (elf->data + offset); \ 971 dyn = DYN ## B (elf->vdata + offset); \
816 while (EGET(dyn->d_tag) != DT_NULL) { \ 972 while (EGET(dyn->d_tag) != DT_NULL) { \
817 if (EGET(dyn->d_tag) == DT_SONAME) { \ 973 if (EGET(dyn->d_tag) == DT_SONAME) { \
818 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 974 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
819 if (offset >= (Elf ## B ## _Off)elf->len) { \ 975 if (offset >= (Elf ## B ## _Off)elf->len) { \
820 ++dyn; \ 976 ++dyn; \
821 continue; \ 977 continue; \
822 } \ 978 } \
823 soname = (char*)(elf->data + offset); \ 979 soname = elf->data + offset; \
824 *found_soname = 1; \ 980 *found_soname = 1; \
825 return (be_wewy_wewy_quiet ? NULL : soname); \ 981 return (be_wewy_wewy_quiet ? NULL : soname); \
826 } \ 982 } \
827 ++dyn; \ 983 ++dyn; \
828 } \ 984 } \
831 SHOW_SONAME(64) 987 SHOW_SONAME(64)
832 } 988 }
833 989
834 return NULL; 990 return NULL;
835} 991}
992
993/*
994 * We support the symbol form:
995 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
996 * If the symbol name is empty, then all symbols are matched.
997 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
998 * Do not rely on this output format at all.
999 * Otherwise the symbol name is used to search (either regex or string compare).
1000 * If the first char of the symbol name is a plus ("+"), then only match
1001 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1002 * Putting modifiers in between the percent signs allows for more in depth
1003 * filters. There are groups of modifiers. If you don't specify a member
1004 * of a group, then all types in that group are matched. The current
1005 * groups and their types are:
1006 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f SST_FILE:F
1007 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1008 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1009 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1010 * You can search for multiple symbols at once by seperating with a comma (",").
1011 *
1012 * Some examples:
1013 * ELFs with a weak function "foo":
1014 * scanelf -s %wf%foo <ELFs>
1015 * ELFs that define the symbol "main":
1016 * scanelf -s +main <ELFs>
1017 * scanelf -s %d%main <ELFs>
1018 * ELFs that refer to the undefined symbol "brk":
1019 * scanelf -s -brk <ELFs>
1020 * scanelf -s %u%brk <ELFs>
1021 * All global defined objects in an ELF:
1022 * scanelf -s %ogd% <ELF>
1023 */
1024static void
1025scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1026 unsigned int stt, unsigned int stb, unsigned int shn, unsigned long size)
1027{
1028 char *this_sym, *next_sym, saved = saved;
1029
1030 /* allow the user to specify a comma delimited list of symbols to search for */
1031 next_sym = NULL;
1032 do {
1033 bool inc_notype, inc_object, inc_func, inc_file,
1034 inc_local, inc_global, inc_weak,
1035 inc_def, inc_undef, inc_abs, inc_common;
1036
1037 if (next_sym) {
1038 next_sym[-1] = saved;
1039 this_sym = next_sym;
1040 } else
1041 this_sym = find_sym;
1042 if ((next_sym = strchr(this_sym, ','))) {
1043 /* make parsing easier by killing the comma temporarily */
1044 saved = *next_sym;
1045 *next_sym = '\0';
1046 next_sym += 1;
1047 }
1048
1049 /* symbol selection! */
1050 inc_notype = inc_object = inc_func = inc_file = \
1051 inc_local = inc_global = inc_weak = \
1052 inc_def = inc_undef = inc_abs = inc_common = \
1053 (*this_sym != '%');
1054
1055 /* parse the contents of %...% */
1056 if (!inc_notype) {
1057 while (*(this_sym++)) {
1058 if (*this_sym == '%') {
1059 ++this_sym;
1060 break;
1061 }
1062 switch (*this_sym) {
1063 case 'n': inc_notype = true; break;
1064 case 'o': inc_object = true; break;
1065 case 'f': inc_func = true; break;
1066 case 'F': inc_file = true; break;
1067 case 'l': inc_local = true; break;
1068 case 'g': inc_global = true; break;
1069 case 'w': inc_weak = true; break;
1070 case 'd': inc_def = true; break;
1071 case 'u': inc_undef = true; break;
1072 case 'a': inc_abs = true; break;
1073 case 'c': inc_common = true; break;
1074 default: err("invalid symbol selector '%c'", *this_sym);
1075 }
1076 }
1077
1078 /* If no types are matched, not match all */
1079 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1080 inc_notype = inc_object = inc_func = inc_file = true;
1081 if (!inc_local && !inc_global && !inc_weak)
1082 inc_local = inc_global = inc_weak = true;
1083 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1084 inc_def = inc_undef = inc_abs = inc_common = true;
1085
1086 /* backwards compat for defined/undefined short hand */
1087 } else if (*this_sym == '+') {
1088 inc_undef = false;
1089 ++this_sym;
1090 } else if (*this_sym == '-') {
1091 inc_def = inc_abs = inc_common = false;
1092 ++this_sym;
1093 }
1094
1095 /* filter symbols */
1096 if ((!inc_notype && stt == STT_NOTYPE) || \
1097 (!inc_object && stt == STT_OBJECT) || \
1098 (!inc_func && stt == STT_FUNC ) || \
1099 (!inc_file && stt == STT_FILE ) || \
1100 (!inc_local && stb == STB_LOCAL ) || \
1101 (!inc_global && stb == STB_GLOBAL) || \
1102 (!inc_weak && stb == STB_WEAK ) || \
1103 (!inc_def && shn && shn < SHN_LORESERVE) || \
1104 (!inc_undef && shn == SHN_UNDEF ) || \
1105 (!inc_abs && shn == SHN_ABS ) || \
1106 (!inc_common && shn == SHN_COMMON))
1107 continue;
1108
1109 if (*this_sym == '*') {
1110 /* a "*" symbol gets you debug output */
1111 printf("%s(%s) %5lX %15s %15s %15s %s\n",
1112 ((*found_sym == 0) ? "\n\t" : "\t"),
1113 elf->base_filename,
1114 size,
1115 get_elfstttype(stt),
1116 get_elfstbtype(stb),
1117 get_elfshntype(shn),
1118 symname);
1119 goto matched;
1120
1121 } else {
1122 if (g_match) {
1123 /* regex match the symbol */
1124 if (rematch(this_sym, symname, REG_EXTENDED) != 0)
1125 continue;
1126
1127 } else if (*this_sym) {
1128 /* give empty symbols a "pass", else do a normal compare */
1129 const size_t len = strlen(this_sym);
1130 if (!(strncmp(this_sym, symname, len) == 0 &&
1131 /* Accept unversioned symbol names */
1132 (symname[len] == '\0' || symname[len] == '@')))
1133 continue;
1134 }
1135
1136 if (be_semi_verbose) {
1137 char buf[1024];
1138 snprintf(buf, sizeof(buf), "%lX %s %s",
1139 size,
1140 get_elfstttype(stt),
1141 this_sym);
1142 *ret = xstrdup(buf);
1143 } else {
1144 if (*ret) xchrcat(ret, ',', ret_len);
1145 xstrcat(ret, symname, ret_len);
1146 }
1147
1148 goto matched;
1149 }
1150 } while (next_sym);
1151
1152 return;
1153
1154 matched:
1155 *found_sym = 1;
1156 if (next_sym)
1157 next_sym[-1] = saved;
1158}
1159
836static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1160static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
837{ 1161{
838 unsigned long i; 1162 unsigned long i;
839 char *ret; 1163 char *ret;
840 void *symtab_void, *strtab_void; 1164 void *symtab_void, *strtab_void;
841 1165
842 if (!find_sym) return NULL; 1166 if (!find_sym) return NULL;
843 ret = find_sym; 1167 ret = NULL;
844 1168
845 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1169 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
846 1170
847 if (symtab_void && strtab_void) { 1171 if (symtab_void && strtab_void) {
848#define FIND_SYM(B) \ 1172#define FIND_SYM(B) \
849 if (elf->elf_class == ELFCLASS ## B) { \ 1173 if (elf->elf_class == ELFCLASS ## B) { \
850 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1174 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
851 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1175 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
852 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1176 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
853 unsigned long cnt = EGET(symtab->sh_entsize); \ 1177 unsigned long cnt = EGET(symtab->sh_entsize); \
854 char *symname; \ 1178 char *symname; \
1179 size_t ret_len = 0; \
855 if (cnt) \ 1180 if (cnt) \
856 cnt = EGET(symtab->sh_size) / cnt; \ 1181 cnt = EGET(symtab->sh_size) / cnt; \
857 for (i = 0; i < cnt; ++i) { \ 1182 for (i = 0; i < cnt; ++i) { \
1183 if ((void*)sym > elf->data_end) { \
1184 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1185 goto break_out; \
1186 } \
858 if (sym->st_name) { \ 1187 if (sym->st_name) { \
859 /* make sure the symbol name is in acceptable memory range */ \ 1188 /* make sure the symbol name is in acceptable memory range */ \
860 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1189 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
861 if ((void*)symname > (void*)elf->data_end) { \ 1190 if ((void*)symname > elf->data_end) { \
862 warnf("%s: corrupt ELF symbols", elf->filename); \ 1191 warnf("%s: corrupt ELF symbols", elf->filename); \
863 ++sym; \ 1192 ++sym; \
864 continue; \ 1193 continue; \
865 } \ 1194 } \
866 /* debug display ... show all symbols and some extra info */ \ 1195 scanelf_match_symname(elf, found_sym, \
867 if (*ret == '*') { \ 1196 &ret, &ret_len, symname, \
868 printf("%s(%s) %5lX %15s %s\n", \ 1197 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
869 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1198 ELF##B##_ST_BIND(EGET(sym->st_info)), \
870 elf->base_filename, \ 1199 EGET(sym->st_shndx), \
871 (unsigned long)sym->st_size, \ 1200 /* st_size can be 64bit, but no one is really that big, so screw em */ \
872 get_elfstttype(sym->st_info), \ 1201 EGET(sym->st_size)); \
873 symname); \
874 *found_sym = 1; \
875 } else { \
876 /* allow the user to specify a comma delimited list of symbols to search for */ \
877 char *this_sym, *next_sym; \
878 this_sym = ret; \
879 do { \
880 next_sym = strchr(this_sym, ','); \
881 if (next_sym == NULL) \
882 next_sym = this_sym + strlen(this_sym); \
883 /* do we want a defined symbol ? */ \
884 if (*this_sym == '+') { \
885 if (sym->st_value == 0) \
886 goto skip_this_sym##B; \
887 ++this_sym; \
888 /* do we want an undefined symbol ? */ \
889 } else if (*this_sym == '-') { \
890 if (sym->st_value != 0) \
891 goto skip_this_sym##B; \
892 ++this_sym; \
893 } \
894 /* ok, lets compare the name now */ \
895 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \
896 (strcmp(symname, versioned_symname) == 0)) { \
897 if (be_semi_verbose) { \
898 char buf[126]; \
899 snprintf(buf, sizeof(buf), "%lX %s %s", \
900 (unsigned long)sym->st_size, get_elfstttype(sym->st_info), this_sym); \
901 ret = buf; \
902 } else \
903 ret = this_sym; \
904 (*found_sym)++; \
905 goto break_out; \
906 } \
907 skip_this_sym##B: this_sym = next_sym + 1; \
908 } while (*next_sym != '\0'); \
909 } \
910 } \ 1202 } \
911 ++sym; \ 1203 ++sym; \
912 } } 1204 } }
913 FIND_SYM(32) 1205 FIND_SYM(32)
914 FIND_SYM(64) 1206 FIND_SYM(64)
920 if (*find_sym != '*' && *found_sym) 1212 if (*find_sym != '*' && *found_sym)
921 return ret; 1213 return ret;
922 if (be_quiet) 1214 if (be_quiet)
923 return NULL; 1215 return NULL;
924 else 1216 else
925 return (char *)" - "; 1217 return " - ";
926} 1218}
927 1219
928
929static char *scanelf_file_sections(elfobj *elf, char *found_section) 1220static const char *scanelf_file_sections(elfobj *elf, char *found_section)
930{ 1221{
931 if (!find_section) 1222 if (!find_section)
932 return NULL; 1223 return NULL;
933 1224
934#define FIND_SECTION(B) \ 1225#define FIND_SECTION(B) \
935 if (elf->elf_class == ELFCLASS ## B) { \ 1226 if (elf->elf_class == ELFCLASS ## B) { \
1227 size_t matched, n; \
936 int invert; \ 1228 int invert; \
1229 const char *section_name; \
937 Elf ## B ## _Shdr *section; \ 1230 Elf ## B ## _Shdr *section; \
1231 \
1232 matched = 0; \
1233 array_for_each(find_section_arr, n, section_name) { \
938 invert = (*find_section == '!' ? 1 : 0); \ 1234 invert = (*section_name == '!' ? 1 : 0); \
939 section = SHDR ## B (elf_findsecbyname(elf, find_section+invert)); \ 1235 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
940 if ((section == NULL && invert) || (section != NULL && !invert)) \ 1236 if ((section == NULL && invert) || (section != NULL && !invert)) \
1237 ++matched; \
1238 } \
1239 \
1240 if (matched == array_cnt(find_section_arr)) \
941 *found_section = 1; \ 1241 *found_section = 1; \
942 } 1242 }
943 FIND_SECTION(32) 1243 FIND_SECTION(32)
944 FIND_SECTION(64) 1244 FIND_SECTION(64)
945 1245
950 return find_section; 1250 return find_section;
951 1251
952 if (be_quiet) 1252 if (be_quiet)
953 return NULL; 1253 return NULL;
954 else 1254 else
955 return (char *)" - "; 1255 return " - ";
956} 1256}
957 1257
958/* scan an elf file and show all the fun stuff */ 1258/* scan an elf file and show all the fun stuff */
959#define prints(str) write(fileno(stdout), str, strlen(str)) 1259#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
960static int scanelf_elfobj(elfobj *elf) 1260static int scanelf_elfobj(elfobj *elf)
961{ 1261{
962 unsigned long i; 1262 unsigned long i;
963 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1263 char found_pax, found_phdr, found_relro, found_load, found_textrel,
964 found_rpath, found_needed, found_interp, found_bind, found_soname, 1264 found_rpath, found_needed, found_interp, found_bind, found_soname,
965 found_sym, found_lib, found_file, found_textrels, found_section; 1265 found_sym, found_lib, found_file, found_textrels, found_section;
966 static char *out_buffer = NULL; 1266 static char *out_buffer = NULL;
967 static size_t out_len; 1267 static size_t out_len;
968 1268
969 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1269 found_pax = found_phdr = found_relro = found_load = found_textrel = \
978 printf("%s: scanning file\n", elf->filename); 1278 printf("%s: scanning file\n", elf->filename);
979 1279
980 /* init output buffer */ 1280 /* init output buffer */
981 if (!out_buffer) { 1281 if (!out_buffer) {
982 out_len = sizeof(char) * 80; 1282 out_len = sizeof(char) * 80;
983 out_buffer = (char*)xmalloc(out_len); 1283 out_buffer = xmalloc(out_len);
984 } 1284 }
985 *out_buffer = '\0'; 1285 *out_buffer = '\0';
986 1286
987 /* show the header */ 1287 /* show the header */
988 if (!be_quiet && show_banner) { 1288 if (!be_quiet && show_banner) {
999 case 'o': prints(" TYPE "); break; 1299 case 'o': prints(" TYPE "); break;
1000 case 'x': prints(" PAX "); break; 1300 case 'x': prints(" PAX "); break;
1001 case 'e': prints("STK/REL/PTL "); break; 1301 case 'e': prints("STK/REL/PTL "); break;
1002 case 't': prints("TEXTREL "); break; 1302 case 't': prints("TEXTREL "); break;
1003 case 'r': prints("RPATH "); break; 1303 case 'r': prints("RPATH "); break;
1304 case 'M': prints("CLASS "); break;
1004 case 'n': prints("NEEDED "); break; 1305 case 'n': prints("NEEDED "); break;
1005 case 'i': prints("INTERP "); break; 1306 case 'i': prints("INTERP "); break;
1006 case 'b': prints("BIND "); break; 1307 case 'b': prints("BIND "); break;
1308 case 'Z': prints("SIZE "); break;
1007 case 'S': prints("SONAME "); break; 1309 case 'S': prints("SONAME "); break;
1008 case 's': prints("SYM "); break; 1310 case 's': prints("SYM "); break;
1009 case 'N': prints("LIB "); break; 1311 case 'N': prints("LIB "); break;
1010 case 'T': prints("TEXTRELS "); break; 1312 case 'T': prints("TEXTRELS "); break;
1011 case 'k': prints("SECTION "); break; 1313 case 'k': prints("SECTION "); break;
1314 case 'a': prints("ARCH "); break;
1315 case 'I': prints("OSABI "); break;
1316 case 'Y': prints("EABI "); break;
1317 case 'O': prints("PERM "); break;
1318 case 'D': prints("ENDIAN "); break;
1012 default: warnf("'%c' has no title ?", out_format[i]); 1319 default: warnf("'%c' has no title ?", out_format[i]);
1013 } 1320 }
1014 } 1321 }
1015 if (!found_file) prints("FILE "); 1322 if (!found_file) prints("FILE ");
1016 prints("\n"); 1323 prints("\n");
1020 1327
1021 /* dump all the good stuff */ 1328 /* dump all the good stuff */
1022 for (i = 0; out_format[i]; ++i) { 1329 for (i = 0; out_format[i]; ++i) {
1023 const char *out; 1330 const char *out;
1024 const char *tmp; 1331 const char *tmp;
1025 1332 static char ubuf[sizeof(unsigned long)*2];
1026 if (!IS_MODIFIER(out_format[i])) { 1333 if (!IS_MODIFIER(out_format[i])) {
1027 xchrcat(&out_buffer, out_format[i], &out_len); 1334 xchrcat(&out_buffer, out_format[i], &out_len);
1028 continue; 1335 continue;
1029 } 1336 }
1030 1337
1066 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1373 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
1067 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1374 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
1068 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1375 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
1069 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1376 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
1070 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1377 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1378 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1379 case 'D': out = get_endian(elf); break;
1380 case 'O': out = strfileperms(elf->filename); break;
1071 case 'n': 1381 case 'n':
1072 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1382 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
1073 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1383 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
1074 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1384 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
1075 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1385 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
1076 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1386 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1077 case 'k': out = scanelf_file_sections(elf, &found_section); break; 1387 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1388 case 'a': out = get_elfemtype(elf); break;
1389 case 'I': out = get_elfosabi(elf); break;
1390 case 'Y': out = get_elf_eabi(elf); break;
1391 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
1078 default: warnf("'%c' has no scan code?", out_format[i]); 1392 default: warnf("'%c' has no scan code?", out_format[i]);
1079 } 1393 }
1080 if (out) { 1394 if (out)
1081 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
1082 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
1083 xstrncat(&out_buffer, out, &out_len, (tmp-out));
1084 else
1085 xstrcat(&out_buffer, out, &out_len); 1395 xstrcat(&out_buffer, out, &out_len);
1086 }
1087 } 1396 }
1088 1397
1089#define FOUND_SOMETHING() \ 1398#define FOUND_SOMETHING() \
1090 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1399 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
1091 found_rpath || found_needed || found_interp || found_bind || \ 1400 found_rpath || found_needed || found_interp || found_bind || \
1123 if (elf->elf_class != ELFCLASS64) 1432 if (elf->elf_class != ELFCLASS64)
1124 goto label_done; 1433 goto label_done;
1125 break; 1434 break;
1126 default: break; 1435 default: break;
1127 } 1436 }
1128 if (strlen(match_etypes)) { 1437 if (match_etypes) {
1129 char sbuf[126]; 1438 char sbuf[126];
1130 strncpy(sbuf, match_etypes, sizeof(sbuf)); 1439 strncpy(sbuf, match_etypes, sizeof(sbuf));
1131 if (strchr(match_etypes, ',') != NULL) { 1440 if (strchr(match_etypes, ',') != NULL) {
1132 char *p; 1441 char *p;
1133 while((p = strrchr(sbuf, ',')) != NULL) { 1442 while ((p = strrchr(sbuf, ',')) != NULL) {
1134 *p = 0; 1443 *p = 0;
1135 if (etype_lookup(p+1) == get_etype(elf)) 1444 if (etype_lookup(p+1) == get_etype(elf))
1136 goto label_ret; 1445 goto label_ret;
1137 } 1446 }
1138 } 1447 }
1158 1467
1159 ar = ar_open_fd(filename, fd); 1468 ar = ar_open_fd(filename, fd);
1160 if (ar == NULL) 1469 if (ar == NULL)
1161 return 1; 1470 return 1;
1162 1471
1163 ar_buffer = (char*)mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0); 1472 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1164 while ((m=ar_next(ar)) != NULL) { 1473 while ((m = ar_next(ar)) != NULL) {
1474 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1475 if (cur_pos == -1)
1476 errp("lseek() failed");
1165 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size); 1477 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1166 if (elf) { 1478 if (elf) {
1167 scanelf_elfobj(elf); 1479 scanelf_elfobj(elf);
1168 unreadelf(elf); 1480 unreadelf(elf);
1169 } 1481 }
1170 } 1482 }
1171 munmap(ar_buffer, len); 1483 munmap(ar_buffer, len);
1172 1484
1173 return 0; 1485 return 0;
1174} 1486}
1175/* scan a file which may be an elf or an archive or some other magical beast */ 1487/* scan a file which may be an elf or an archive or some other magical beast */
1176static void scanelf_file(const char *filename) 1488static int scanelf_file(const char *filename, const struct stat *st_cache)
1177{ 1489{
1490 const struct stat *st = st_cache;
1178 struct stat st; 1491 struct stat symlink_st;
1179 int fd; 1492 int fd;
1180 1493
1181 /* make sure 'filename' exists */
1182 if (lstat(filename, &st) == -1) {
1183 if (be_verbose > 2) printf("%s: does not exist\n", filename);
1184 return;
1185 }
1186
1187 /* always handle regular files and handle symlinked files if no -y */ 1494 /* always handle regular files and handle symlinked files if no -y */
1188 if (S_ISLNK(st.st_mode)) { 1495 if (S_ISLNK(st->st_mode)) {
1189 if (!scan_symlink) return; 1496 if (!scan_symlink) return 1;
1190 stat(filename, &st); 1497 stat(filename, &symlink_st);
1498 st = &symlink_st;
1191 } 1499 }
1500
1192 if (!S_ISREG(st.st_mode)) { 1501 if (!S_ISREG(st->st_mode)) {
1193 if (be_verbose > 2) printf("%s: skipping non-file\n", filename); 1502 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1194 return; 1503 return 1;
1195 } 1504 }
1196 1505
1506 if (match_perms) {
1507 if ((st->st_mode | match_perms) != st->st_mode)
1508 return 1;
1509 }
1197 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1) 1510 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1)
1198 return; 1511 return 1;
1199 1512
1200 if (scanelf_elf(filename, fd, st.st_size) == 1 && scan_archives) 1513 if (scanelf_elf(filename, fd, st->st_size) == 1 && scan_archives)
1201 /* if it isn't an ELF, maybe it's an .a archive */ 1514 /* if it isn't an ELF, maybe it's an .a archive */
1202 scanelf_archive(filename, fd, st.st_size); 1515 scanelf_archive(filename, fd, st->st_size);
1203 1516
1204 close(fd); 1517 close(fd);
1518 return 0;
1519}
1520
1521static const char *maybe_add_root(const char *fname, char *buf)
1522{
1523 if (root && strncmp(fname, root, strlen(root))) {
1524 strcpy(buf, root);
1525 strncat(buf, fname, __PAX_UTILS_PATH_MAX - strlen(root) - 1);
1526 fname = buf;
1527 }
1528 return fname;
1205} 1529}
1206 1530
1207/* scan a directory for ET_EXEC files and print when we find one */ 1531/* scan a directory for ET_EXEC files and print when we find one */
1208static void scanelf_dir(const char *path) 1532static int scanelf_dir(const char *path)
1209{ 1533{
1210 register DIR *dir; 1534 register DIR *dir;
1211 register struct dirent *dentry; 1535 register struct dirent *dentry;
1212 struct stat st_top, st; 1536 struct stat st_top, st;
1213 char buf[__PAX_UTILS_PATH_MAX]; 1537 char buf[__PAX_UTILS_PATH_MAX];
1538 char _path[__PAX_UTILS_PATH_MAX];
1214 size_t pathlen = 0, len = 0; 1539 size_t pathlen = 0, len = 0;
1540 int ret = 0;
1541
1542 path = maybe_add_root(path, _path);
1215 1543
1216 /* make sure path exists */ 1544 /* make sure path exists */
1217 if (lstat(path, &st_top) == -1) { 1545 if (lstat(path, &st_top) == -1) {
1218 if (be_verbose > 2) printf("%s: does not exist\n", path); 1546 if (be_verbose > 2) printf("%s: does not exist\n", path);
1219 return; 1547 return 1;
1220 } 1548 }
1221 1549
1222 /* ok, if it isn't a directory, assume we can open it */ 1550 /* ok, if it isn't a directory, assume we can open it */
1223 if (!S_ISDIR(st_top.st_mode)) { 1551 if (!S_ISDIR(st_top.st_mode)) {
1224 scanelf_file(path); 1552 return scanelf_file(path, &st_top);
1225 return;
1226 } 1553 }
1227 1554
1228 /* now scan the dir looking for fun stuff */ 1555 /* now scan the dir looking for fun stuff */
1229 if ((dir = opendir(path)) == NULL) { 1556 if ((dir = opendir(path)) == NULL) {
1230 warnf("could not opendir %s: %s", path, strerror(errno)); 1557 warnf("could not opendir %s: %s", path, strerror(errno));
1231 return; 1558 return 1;
1232 } 1559 }
1233 if (be_verbose > 1) printf("%s: scanning dir\n", path); 1560 if (be_verbose > 1) printf("%s: scanning dir\n", path);
1234 1561
1235 pathlen = strlen(path); 1562 pathlen = strlen(path);
1236 while ((dentry = readdir(dir))) { 1563 while ((dentry = readdir(dir))) {
1240 if (len >= sizeof(buf)) { 1567 if (len >= sizeof(buf)) {
1241 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1568 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path,
1242 (unsigned long)len, (unsigned long)sizeof(buf)); 1569 (unsigned long)len, (unsigned long)sizeof(buf));
1243 continue; 1570 continue;
1244 } 1571 }
1245 sprintf(buf, "%s/%s", path, dentry->d_name); 1572 snprintf(buf, sizeof(buf), "%s%s%s", path, (path[pathlen-1] == '/') ? "" : "/", dentry->d_name);
1246 if (lstat(buf, &st) != -1) { 1573 if (lstat(buf, &st) != -1) {
1247 if (S_ISREG(st.st_mode)) 1574 if (S_ISREG(st.st_mode))
1248 scanelf_file(buf); 1575 ret = scanelf_file(buf, &st);
1249 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1576 else if (dir_recurse && S_ISDIR(st.st_mode)) {
1250 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1577 if (dir_crossmount || (st_top.st_dev == st.st_dev))
1251 scanelf_dir(buf); 1578 ret = scanelf_dir(buf);
1252 } 1579 }
1253 } 1580 }
1254 } 1581 }
1255 closedir(dir); 1582 closedir(dir);
1583 return ret;
1256} 1584}
1257 1585
1258static int scanelf_from_file(const char *filename) 1586static int scanelf_from_file(const char *filename)
1259{ 1587{
1260 FILE *fp = NULL; 1588 FILE *fp = NULL;
1261 char *p; 1589 char *p;
1262 char path[__PAX_UTILS_PATH_MAX]; 1590 char path[__PAX_UTILS_PATH_MAX];
1591 int ret = 0;
1263 1592
1264 if (strcmp(filename, "-") == 0) 1593 if (strcmp(filename, "-") == 0)
1265 fp = stdin; 1594 fp = stdin;
1266 else if ((fp = fopen(filename, "r")) == NULL) 1595 else if ((fp = fopen(filename, "r")) == NULL)
1267 return 1; 1596 return 1;
1268 1597
1269 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1598 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1270 if ((p = strchr(path, '\n')) != NULL) 1599 if ((p = strchr(path, '\n')) != NULL)
1271 *p = 0; 1600 *p = 0;
1272 search_path = path; 1601 search_path = path;
1273 scanelf_dir(path); 1602 ret = scanelf_dir(path);
1274 } 1603 }
1275 if (fp != stdin) 1604 if (fp != stdin)
1276 fclose(fp); 1605 fclose(fp);
1277 return 0; 1606 return ret;
1278} 1607}
1279 1608
1609#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1610
1280static int load_ld_so_conf(int i, const char *fname) 1611static int load_ld_cache_config(int i, const char *fname)
1281{ 1612{
1282 FILE *fp = NULL; 1613 FILE *fp = NULL;
1283 char *p; 1614 char *p;
1284 char path[__PAX_UTILS_PATH_MAX]; 1615 char path[__PAX_UTILS_PATH_MAX];
1616 char _fname[__PAX_UTILS_PATH_MAX];
1285 1617
1286 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1618 fname = maybe_add_root(fname, _fname);
1287 return i;
1288 1619
1289 if ((fp = fopen(fname, "r")) == NULL) 1620 if ((fp = fopen(fname, "r")) == NULL)
1290 return i; 1621 return i;
1291 1622
1292 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1623 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1293 if ((p = strrchr(path, '\r')) != NULL) 1624 if ((p = strrchr(path, '\r')) != NULL)
1294 *p = 0; 1625 *p = 0;
1295 if ((p = strchr(path, '\n')) != NULL) 1626 if ((p = strchr(path, '\n')) != NULL)
1296 *p = 0; 1627 *p = 0;
1297#ifdef __linux__ 1628
1298 // recursive includes of the same file will make this segfault. 1629 /* recursive includes of the same file will make this segfault. */
1299 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) { 1630 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1300 glob64_t gl; 1631 glob_t gl;
1301 size_t x; 1632 size_t x;
1302 char gpath[__PAX_UTILS_PATH_MAX]; 1633 char gpath[__PAX_UTILS_PATH_MAX];
1303 1634
1304 memset(gpath, 0, sizeof(gpath)); 1635 memset(gpath, 0, sizeof(gpath));
1636 if (root)
1637 strcpy(gpath, root);
1305 1638
1306 if (path[8] != '/') 1639 if (path[8] != '/')
1307 snprintf(gpath, sizeof(gpath), "/etc/%s", &path[8]); 1640 snprintf(gpath+strlen(gpath), sizeof(gpath)-strlen(gpath), "/etc/%s", &path[8]);
1308 else 1641 else
1309 strncpy(gpath, &path[8], sizeof(gpath)); 1642 strncpy(gpath+strlen(gpath), &path[8], sizeof(gpath)-strlen(gpath));
1310 1643
1311 if ((glob64(gpath, 0, NULL, &gl)) == 0) { 1644 if (glob(gpath, 0, NULL, &gl) == 0) {
1312 for (x = 0; x < gl.gl_pathc; ++x) { 1645 for (x = 0; x < gl.gl_pathc; ++x) {
1313 /* try to avoid direct loops */ 1646 /* try to avoid direct loops */
1314 if (strcmp(gl.gl_pathv[x], fname) == 0) 1647 if (strcmp(gl.gl_pathv[x], fname) == 0)
1315 continue; 1648 continue;
1316 i = load_ld_so_conf(i, gl.gl_pathv[x]); 1649 i = load_ld_cache_config(i, gl.gl_pathv[x]);
1317 if (i + 1 >= sizeof(ldpaths) / sizeof(*ldpaths)) {
1318 globfree64(&gl);
1319 return i;
1320 }
1321 } 1650 }
1322 globfree64 (&gl); 1651 globfree(&gl);
1323 continue; 1652 continue;
1324 } else
1325 abort();
1326 } 1653 }
1327#endif 1654 }
1655
1328 if (*path != '/') 1656 if (*path != '/')
1329 continue; 1657 continue;
1330 1658
1331 ldpaths[i++] = xstrdup(path); 1659 xarraypush(ldpaths, path, strlen(path));
1332
1333 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths))
1334 break;
1335 } 1660 }
1336 ldpaths[i] = NULL;
1337 1661
1338 fclose(fp); 1662 fclose(fp);
1339 return i; 1663 return i;
1340} 1664}
1341 1665
1666#elif defined(__FreeBSD__) || defined(__DragonFly__)
1667
1668static int load_ld_cache_config(int i, const char *fname)
1669{
1670 FILE *fp = NULL;
1671 char *b = NULL, *p;
1672 struct elfhints_hdr hdr;
1673 char _fname[__PAX_UTILS_PATH_MAX];
1674
1675 fname = maybe_add_root(fname, _fname);
1676
1677 if ((fp = fopen(fname, "r")) == NULL)
1678 return i;
1679
1680 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1681 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1682 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1683 {
1684 fclose(fp);
1685 return i;
1686 }
1687
1688 b = xmalloc(hdr.dirlistlen + 1);
1689 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1690 fclose(fp);
1691 free(b);
1692 return i;
1693 }
1694
1695 while ((p = strsep(&b, ":"))) {
1696 if (*p == '\0')
1697 continue;
1698 xarraypush(ldpaths, p, strlen(p));
1699 }
1700
1701 free(b);
1702 fclose(fp);
1703 return i;
1704}
1705
1706#else
1707#ifdef __ELF__
1708#warning Cache config support not implemented for your target
1709#endif
1710static int load_ld_cache_config(int i, const char *fname)
1711{
1712 return 0;
1713}
1714#endif
1715
1342/* scan /etc/ld.so.conf for paths */ 1716/* scan /etc/ld.so.conf for paths */
1343static void scanelf_ldpath() 1717static void scanelf_ldpath(void)
1344{ 1718{
1345 char scan_l, scan_ul, scan_ull; 1719 char scan_l, scan_ul, scan_ull;
1720 size_t n;
1721 const char *ldpath;
1346 int i = 0; 1722 int i = 0;
1347 1723
1348 if (!ldpaths[0]) 1724 if (array_cnt(ldpaths) == 0)
1349 err("Unable to load any paths from ld.so.conf"); 1725 err("Unable to load any paths from ld.so.conf");
1350 1726
1351 scan_l = scan_ul = scan_ull = 0; 1727 scan_l = scan_ul = scan_ull = 0;
1352 1728
1353 while (ldpaths[i]) { 1729 array_for_each(ldpaths, n, ldpath) {
1354 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1; 1730 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = 1;
1355 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1; 1731 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = 1;
1356 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1; 1732 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = 1;
1357 scanelf_dir(ldpaths[i]); 1733 scanelf_dir(ldpath);
1358 ++i; 1734 ++i;
1359 } 1735 }
1360 1736
1361 if (!scan_l) scanelf_dir("/lib"); 1737 if (!scan_l) scanelf_dir("/lib");
1362 if (!scan_ul) scanelf_dir("/usr/lib"); 1738 if (!scan_ul) scanelf_dir("/usr/lib");
1363 if (!scan_ull) scanelf_dir("/usr/local/lib"); 1739 if (!scan_ull) scanelf_dir("/usr/local/lib");
1364} 1740}
1365 1741
1366/* scan env PATH for paths */ 1742/* scan env PATH for paths */
1367static void scanelf_envpath() 1743static void scanelf_envpath(void)
1368{ 1744{
1369 char *path, *p; 1745 char *path, *p;
1370 1746
1371 path = getenv("PATH"); 1747 path = getenv("PATH");
1372 if (!path) 1748 if (!path)
1379 } 1755 }
1380 1756
1381 free(path); 1757 free(path);
1382} 1758}
1383 1759
1384/* usage / invocation handling functions */ 1760/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
1385#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:BhV" 1761#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
1386#define a_argument required_argument 1762#define a_argument required_argument
1387static struct option const long_opts[] = { 1763static struct option const long_opts[] = {
1388 {"path", no_argument, NULL, 'p'}, 1764 {"path", no_argument, NULL, 'p'},
1389 {"ldpath", no_argument, NULL, 'l'}, 1765 {"ldpath", no_argument, NULL, 'l'},
1766 {"root", a_argument, NULL, 128},
1390 {"recursive", no_argument, NULL, 'R'}, 1767 {"recursive", no_argument, NULL, 'R'},
1391 {"mount", no_argument, NULL, 'm'}, 1768 {"mount", no_argument, NULL, 'm'},
1392 {"symlink", no_argument, NULL, 'y'}, 1769 {"symlink", no_argument, NULL, 'y'},
1393 {"archives", no_argument, NULL, 'A'}, 1770 {"archives", no_argument, NULL, 'A'},
1394 {"ldcache", no_argument, NULL, 'L'}, 1771 {"ldcache", no_argument, NULL, 'L'},
1407 {"lib", a_argument, NULL, 'N'}, 1784 {"lib", a_argument, NULL, 'N'},
1408 {"gmatch", no_argument, NULL, 'g'}, 1785 {"gmatch", no_argument, NULL, 'g'},
1409 {"textrels", no_argument, NULL, 'T'}, 1786 {"textrels", no_argument, NULL, 'T'},
1410 {"etype", a_argument, NULL, 'E'}, 1787 {"etype", a_argument, NULL, 'E'},
1411 {"bits", a_argument, NULL, 'M'}, 1788 {"bits", a_argument, NULL, 'M'},
1789 {"endian", no_argument, NULL, 'D'},
1790 {"osabi", no_argument, NULL, 'I'},
1791 {"eabi", no_argument, NULL, 'Y'},
1792 {"perms", a_argument, NULL, 'O'},
1793 {"size", no_argument, NULL, 'Z'},
1412 {"all", no_argument, NULL, 'a'}, 1794 {"all", no_argument, NULL, 'a'},
1413 {"quiet", no_argument, NULL, 'q'}, 1795 {"quiet", no_argument, NULL, 'q'},
1414 {"verbose", no_argument, NULL, 'v'}, 1796 {"verbose", no_argument, NULL, 'v'},
1415 {"format", a_argument, NULL, 'F'}, 1797 {"format", a_argument, NULL, 'F'},
1416 {"from", a_argument, NULL, 'f'}, 1798 {"from", a_argument, NULL, 'f'},
1417 {"file", a_argument, NULL, 'o'}, 1799 {"file", a_argument, NULL, 'o'},
1800 {"nocolor", no_argument, NULL, 'C'},
1418 {"nobanner", no_argument, NULL, 'B'}, 1801 {"nobanner", no_argument, NULL, 'B'},
1419 {"help", no_argument, NULL, 'h'}, 1802 {"help", no_argument, NULL, 'h'},
1420 {"version", no_argument, NULL, 'V'}, 1803 {"version", no_argument, NULL, 'V'},
1421 {NULL, no_argument, NULL, 0x0} 1804 {NULL, no_argument, NULL, 0x0}
1422}; 1805};
1423 1806
1424static const char *opts_help[] = { 1807static const char * const opts_help[] = {
1425 "Scan all directories in PATH environment", 1808 "Scan all directories in PATH environment",
1426 "Scan all directories in /etc/ld.so.conf", 1809 "Scan all directories in /etc/ld.so.conf",
1810 "Root directory (use with -l or -p)",
1427 "Scan directories recursively", 1811 "Scan directories recursively",
1428 "Don't recursively cross mount points", 1812 "Don't recursively cross mount points",
1429 "Don't scan symlinks", 1813 "Don't scan symlinks",
1430 "Scan archives (.a files)", 1814 "Scan archives (.a files)",
1431 "Utilize ld.so.cache information (use with -r/-n)", 1815 "Utilize ld.so.cache information (use with -r/-n)",
1440 "Print BIND information", 1824 "Print BIND information",
1441 "Print SONAME information", 1825 "Print SONAME information",
1442 "Find a specified symbol", 1826 "Find a specified symbol",
1443 "Find a specified section", 1827 "Find a specified section",
1444 "Find a specified library", 1828 "Find a specified library",
1445 "Use strncmp to match libraries. (use with -N)", 1829 "Use regex matching rather than string compare (use with -s)",
1446 "Locate cause of TEXTREL", 1830 "Locate cause of TEXTREL",
1447 "Print only ELF files matching etype ET_DYN,ET_EXEC ...", 1831 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1448 "Print only ELF files matching numeric bits", 1832 "Print only ELF files matching numeric bits",
1449 "Print all scanned info (-x -e -t -r -b)\n", 1833 "Print Endianness",
1834 "Print OSABI",
1835 "Print EABI (EM_ARM Only)",
1836 "Print only ELF files matching octal permissions",
1837 "Print ELF file size",
1838 "Print all useful/simple info\n",
1450 "Only output 'bad' things", 1839 "Only output 'bad' things",
1451 "Be verbose (can be specified more than once)", 1840 "Be verbose (can be specified more than once)",
1452 "Use specified format for output", 1841 "Use specified format for output",
1453 "Read input stream from a filename", 1842 "Read input stream from a filename",
1454 "Write output stream to a filename", 1843 "Write output stream to a filename",
1844 "Don't emit color in output",
1455 "Don't display the header", 1845 "Don't display the header",
1456 "Print this help and exit", 1846 "Print this help and exit",
1457 "Print version and exit", 1847 "Print version and exit",
1458 NULL 1848 NULL
1459}; 1849};
1465 printf("* Scan ELF binaries for stuff\n\n" 1855 printf("* Scan ELF binaries for stuff\n\n"
1466 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0); 1856 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1467 printf("Options: -[%s]\n", PARSE_FLAGS); 1857 printf("Options: -[%s]\n", PARSE_FLAGS);
1468 for (i = 0; long_opts[i].name; ++i) 1858 for (i = 0; long_opts[i].name; ++i)
1469 if (long_opts[i].has_arg == no_argument) 1859 if (long_opts[i].has_arg == no_argument)
1470 printf(" -%c, --%-14s* %s\n", long_opts[i].val, 1860 printf(" -%c, --%-14s* %s\n", long_opts[i].val,
1861 long_opts[i].name, opts_help[i]);
1862 else if (long_opts[i].val > '~')
1863 printf(" --%-7s <arg> * %s\n",
1471 long_opts[i].name, opts_help[i]); 1864 long_opts[i].name, opts_help[i]);
1472 else 1865 else
1473 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val, 1866 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val,
1474 long_opts[i].name, opts_help[i]); 1867 long_opts[i].name, opts_help[i]);
1475 1868
1476 if (status != EXIT_SUCCESS) 1869 puts("\nFor more information, see the scanelf(1) manpage");
1477 exit(status);
1478
1479 puts("\nThe format modifiers for the -F option are:");
1480 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1481 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1482 puts(" i INTERP \tb BIND \ts symbol");
1483 puts(" N library \to Type \tT TEXTRELs");
1484 puts(" S SONAME \tk section");
1485 puts(" p filename (with search path removed)");
1486 puts(" f filename (short name/basename)");
1487 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1488
1489 puts("\nELF Etypes:");
1490 print_etypes(stdout);
1491
1492 exit(status); 1870 exit(status);
1493} 1871}
1494 1872
1495/* parse command line arguments and preform needed actions */ 1873/* parse command line arguments and preform needed actions */
1874#define do_pax_state(option, flag) \
1875 if (islower(option)) { \
1876 flags &= ~PF_##flag; \
1877 flags |= PF_NO##flag; \
1878 } else { \
1879 flags &= ~PF_NO##flag; \
1880 flags |= PF_##flag; \
1881 }
1496static void parseargs(int argc, char *argv[]) 1882static int parseargs(int argc, char *argv[])
1497{ 1883{
1498 int i; 1884 int i;
1499 const char *from_file = NULL; 1885 const char *from_file = NULL;
1886 int ret = 0;
1500 1887
1501 opterr = 0; 1888 opterr = 0;
1502 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 1889 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1503 switch (i) { 1890 switch (i) {
1504 1891
1512 case 'f': 1899 case 'f':
1513 if (from_file) warn("You prob don't want to specify -f twice"); 1900 if (from_file) warn("You prob don't want to specify -f twice");
1514 from_file = optarg; 1901 from_file = optarg;
1515 break; 1902 break;
1516 case 'E': 1903 case 'E':
1517 strncpy(match_etypes, optarg, sizeof(match_etypes)); 1904 match_etypes = optarg;
1518 break; 1905 break;
1519 case 'M': 1906 case 'M':
1520 match_bits = atoi(optarg); 1907 match_bits = atoi(optarg);
1908 if (match_bits == 0) {
1909 if (strcmp(optarg, "ELFCLASS32") == 0)
1910 match_bits = 32;
1911 if (strcmp(optarg, "ELFCLASS64") == 0)
1912 match_bits = 64;
1913 }
1914 break;
1915 case 'O':
1916 if (sscanf(optarg, "%o", &match_perms) == -1)
1917 match_bits = 0;
1521 break; 1918 break;
1522 case 'o': { 1919 case 'o': {
1523 FILE *fp = NULL;
1524 if ((fp = freopen(optarg, "w", stdout)) == NULL) 1920 if (freopen(optarg, "w", stdout) == NULL)
1525 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 1921 err("Could not open output stream '%s': %s", optarg, strerror(errno));
1526 SET_STDOUT(fp);
1527 break; 1922 break;
1528 } 1923 }
1529 case 'k': 1924 case 'k':
1530 if (find_section) warn("You prob don't want to specify -k twice"); 1925 xarraypush(find_section_arr, optarg, strlen(optarg));
1531 find_section = optarg;
1532 break; 1926 break;
1533 case 's': { 1927 case 's': {
1534 if (find_sym) warn("You prob don't want to specify -s twice"); 1928 if (find_sym) warn("You prob don't want to specify -s twice");
1535 find_sym = optarg; 1929 find_sym = optarg;
1536 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1537 sprintf(versioned_symname, "%s@", find_sym);
1538 break; 1930 break;
1539 } 1931 }
1540 case 'N': { 1932 case 'N':
1541 if (find_lib) warn("You prob don't want to specify -N twice"); 1933 xarraypush(find_lib_arr, optarg, strlen(optarg));
1542 find_lib = optarg;
1543 break; 1934 break;
1544 }
1545
1546 case 'F': { 1935 case 'F': {
1547 if (out_format) warn("You prob don't want to specify -F twice"); 1936 if (out_format) warn("You prob don't want to specify -F twice");
1548 out_format = optarg; 1937 out_format = optarg;
1549 break; 1938 break;
1550 } 1939 }
1551 case 'z': { 1940 case 'z': {
1552 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC); 1941 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1553 size_t x; 1942 size_t x;
1554 1943
1555 for (x = 0 ; x < strlen(optarg); x++) { 1944 for (x = 0; x < strlen(optarg); x++) {
1556 switch(optarg[x]) { 1945 switch (optarg[x]) {
1557 case 'p': 1946 case 'p':
1558 case 'P': 1947 case 'P':
1559 do_state(optarg[x], PAGEEXEC); 1948 do_pax_state(optarg[x], PAGEEXEC);
1560 break; 1949 break;
1561 case 's': 1950 case 's':
1562 case 'S': 1951 case 'S':
1563 do_state(optarg[x], SEGMEXEC); 1952 do_pax_state(optarg[x], SEGMEXEC);
1564 break; 1953 break;
1565 case 'm': 1954 case 'm':
1566 case 'M': 1955 case 'M':
1567 do_state(optarg[x], MPROTECT); 1956 do_pax_state(optarg[x], MPROTECT);
1568 break; 1957 break;
1569 case 'e': 1958 case 'e':
1570 case 'E': 1959 case 'E':
1571 do_state(optarg[x], EMUTRAMP); 1960 do_pax_state(optarg[x], EMUTRAMP);
1572 break; 1961 break;
1573 case 'r': 1962 case 'r':
1574 case 'R': 1963 case 'R':
1575 do_state(optarg[x], RANDMMAP); 1964 do_pax_state(optarg[x], RANDMMAP);
1576 break; 1965 break;
1577 case 'x': 1966 case 'x':
1578 case 'X': 1967 case 'X':
1579 do_state(optarg[x], RANDEXEC); 1968 do_pax_state(optarg[x], RANDEXEC);
1580 break; 1969 break;
1581 default: 1970 default:
1582 break; 1971 break;
1583 } 1972 }
1584 } 1973 }
1589 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) || 1978 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
1590 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)))) 1979 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1591 setpax = flags; 1980 setpax = flags;
1592 break; 1981 break;
1593 } 1982 }
1983 case 'Z': show_size = 1; break;
1594 case 'g': gmatch = 1; break; 1984 case 'g': g_match = 1; break;
1595 case 'L': use_ldcache = 1; break; 1985 case 'L': use_ldcache = 1; break;
1596 case 'y': scan_symlink = 0; break; 1986 case 'y': scan_symlink = 0; break;
1597 case 'A': scan_archives = 1; break; 1987 case 'A': scan_archives = 1; break;
1988 case 'C': color_init(true); break;
1598 case 'B': show_banner = 0; break; 1989 case 'B': show_banner = 0; break;
1599 case 'l': scan_ldpath = 1; break; 1990 case 'l': scan_ldpath = 1; break;
1600 case 'p': scan_envpath = 1; break; 1991 case 'p': scan_envpath = 1; break;
1601 case 'R': dir_recurse = 1; break; 1992 case 'R': dir_recurse = 1; break;
1602 case 'm': dir_crossmount = 0; break; 1993 case 'm': dir_crossmount = 0; break;
1610 case 'b': show_bind = 1; break; 2001 case 'b': show_bind = 1; break;
1611 case 'S': show_soname = 1; break; 2002 case 'S': show_soname = 1; break;
1612 case 'T': show_textrels = 1; break; 2003 case 'T': show_textrels = 1; break;
1613 case 'q': be_quiet = 1; break; 2004 case 'q': be_quiet = 1; break;
1614 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2005 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1615 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 2006 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1616 2007 case 'D': show_endian = 1; break;
2008 case 'I': show_osabi = 1; break;
2009 case 'Y': show_eabi = 1; break;
2010 case 128:
2011 root = optarg;
2012 break;
1617 case ':': 2013 case ':':
1618 err("Option '%c' is missing parameter", optopt); 2014 err("Option '%c' is missing parameter", optopt);
1619 case '?': 2015 case '?':
1620 err("Unknown option '%c' or argument missing", optopt); 2016 err("Unknown option '%c' or argument missing", optopt);
1621 default: 2017 default:
1622 err("Unhandled option '%c'; please report this", i); 2018 err("Unhandled option '%c'; please report this", i);
1623 } 2019 }
1624 } 2020 }
1625 2021 if (show_textrels && be_verbose) {
2022 if (which("objdump") != NULL)
2023 has_objdump = 1;
2024 }
2025 /* flatten arrays for display */
2026 if (array_cnt(find_lib_arr))
2027 find_lib = array_flatten_str(find_lib_arr);
2028 if (array_cnt(find_section_arr))
2029 find_section = array_flatten_str(find_section_arr);
1626 /* let the format option override all other options */ 2030 /* let the format option override all other options */
1627 if (out_format) { 2031 if (out_format) {
1628 show_pax = show_phdr = show_textrel = show_rpath = \ 2032 show_pax = show_phdr = show_textrel = show_rpath = \
1629 show_needed = show_interp = show_bind = show_soname = \ 2033 show_needed = show_interp = show_bind = show_soname = \
1630 show_textrels = 0; 2034 show_textrels = show_perms = show_endian = show_size = \
2035 show_osabi = show_eabi = 0;
1631 for (i = 0; out_format[i]; ++i) { 2036 for (i = 0; out_format[i]; ++i) {
1632 if (!IS_MODIFIER(out_format[i])) continue; 2037 if (!IS_MODIFIER(out_format[i])) continue;
1633 2038
1634 switch (out_format[++i]) { 2039 switch (out_format[++i]) {
1635 case '+': break; 2040 case '+': break;
1640 case 'f': break; 2045 case 'f': break;
1641 case 'k': break; 2046 case 'k': break;
1642 case 's': break; 2047 case 's': break;
1643 case 'N': break; 2048 case 'N': break;
1644 case 'o': break; 2049 case 'o': break;
2050 case 'a': break;
2051 case 'M': break;
2052 case 'Z': show_size = 1; break;
2053 case 'D': show_endian = 1; break;
2054 case 'I': show_osabi = 1; break;
2055 case 'Y': show_eabi = 1; break;
2056 case 'O': show_perms = 1; break;
1645 case 'x': show_pax = 1; break; 2057 case 'x': show_pax = 1; break;
1646 case 'e': show_phdr = 1; break; 2058 case 'e': show_phdr = 1; break;
1647 case 't': show_textrel = 1; break; 2059 case 't': show_textrel = 1; break;
1648 case 'r': show_rpath = 1; break; 2060 case 'r': show_rpath = 1; break;
1649 case 'n': show_needed = 1; break; 2061 case 'n': show_needed = 1; break;
1650 case 'i': show_interp = 1; break; 2062 case 'i': show_interp = 1; break;
1651 case 'b': show_bind = 1; break; 2063 case 'b': show_bind = 1; break;
1652 case 'S': show_soname = 1; break; 2064 case 'S': show_soname = 1; break;
1653 case 'T': show_textrels = 1; break; 2065 case 'T': show_textrels = 1; break;
1654 default: 2066 default:
1655 err("Invalid format specifier '%c' (byte %i)", 2067 err("Invalid format specifier '%c' (byte %i)",
1656 out_format[i], i+1); 2068 out_format[i], i+1);
1657 } 2069 }
1658 } 2070 }
1659 2071
1660 /* construct our default format */ 2072 /* construct our default format */
1661 } else { 2073 } else {
1662 size_t fmt_len = 30; 2074 size_t fmt_len = 30;
1663 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2075 out_format = xmalloc(sizeof(char) * fmt_len);
2076 *out_format = '\0';
1664 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2077 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1665 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2078 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
2079 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2080 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
2081 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
2082 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2083 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1666 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 2084 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1667 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2085 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1668 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2086 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1669 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2087 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1670 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2088 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1678 } 2096 }
1679 if (be_verbose > 2) printf("Format: %s\n", out_format); 2097 if (be_verbose > 2) printf("Format: %s\n", out_format);
1680 2098
1681 /* now lets actually do the scanning */ 2099 /* now lets actually do the scanning */
1682 if (scan_ldpath || use_ldcache) 2100 if (scan_ldpath || use_ldcache)
1683 load_ld_so_conf(0, "/etc/ld.so.conf"); 2101 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1684 if (scan_ldpath) scanelf_ldpath(); 2102 if (scan_ldpath) scanelf_ldpath();
1685 if (scan_envpath) scanelf_envpath(); 2103 if (scan_envpath) scanelf_envpath();
1686 if (!from_file && ttyname(0) == NULL) 2104 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
1687 from_file = "-"; 2105 from_file = "-";
1688 if (from_file) { 2106 if (from_file) {
1689 scanelf_from_file(from_file); 2107 scanelf_from_file(from_file);
1690 from_file = *argv; 2108 from_file = *argv;
1691 } 2109 }
1692 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 2110 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1693 err("Nothing to scan !?"); 2111 err("Nothing to scan !?");
1694 while (optind < argc) { 2112 while (optind < argc) {
1695 search_path = argv[optind++]; 2113 search_path = argv[optind++];
1696 scanelf_dir(search_path); 2114 ret = scanelf_dir(search_path);
1697 } 2115 }
1698 2116
1699 /* clean up */ 2117 /* clean up */
1700 if (versioned_symname) free(versioned_symname);
1701 for (i = 0; ldpaths[i]; ++i)
1702 free(ldpaths[i]); 2118 xarrayfree(ldpaths);
2119 xarrayfree(find_lib_arr);
2120 xarrayfree(find_section_arr);
2121 free(find_lib);
2122 free(find_section);
1703 2123
1704 if (ldcache != 0) 2124 if (ldcache != 0)
1705 munmap(ldcache, ldcache_size); 2125 munmap(ldcache, ldcache_size);
1706}
1707
1708
1709
1710/* utility funcs */
1711static char *xstrdup(const char *s)
1712{
1713 char *ret = strdup(s);
1714 if (!ret) err("Could not strdup(): %s", strerror(errno));
1715 return ret; 2126 return ret;
1716} 2127}
1717static void *xmalloc(size_t size)
1718{
1719 void *ret = malloc(size);
1720 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
1721 return ret;
1722}
1723static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
1724{
1725 size_t new_len;
1726 2128
1727 new_len = strlen(*dst) + strlen(src); 2129static char **get_split_env(const char *envvar)
1728 if (*curr_len <= new_len) {
1729 *curr_len = new_len + (*curr_len / 2);
1730 *dst = realloc(*dst, *curr_len);
1731 if (!*dst)
1732 err("could not realloc() %li bytes", (unsigned long)*curr_len);
1733 }
1734
1735 if (n)
1736 strncat(*dst, src, n);
1737 else
1738 strcat(*dst, src);
1739}
1740static inline void xchrcat(char **dst, const char append, size_t *curr_len)
1741{ 2130{
1742 static char my_app[2]; 2131 const char *delims = " \t\n";
1743 my_app[0] = append; 2132 char **envvals = NULL;
1744 my_app[1] = '\0'; 2133 char *env, *s;
1745 xstrcat(dst, my_app, curr_len); 2134 int nentry;
1746}
1747 2135
2136 if ((env = getenv(envvar)) == NULL)
2137 return NULL;
1748 2138
2139 env = xstrdup(env);
2140 if (env == NULL)
2141 return NULL;
2142
2143 s = strtok(env, delims);
2144 if (s == NULL) {
2145 free(env);
2146 return NULL;
2147 }
2148
2149 nentry = 0;
2150 while (s != NULL) {
2151 ++nentry;
2152 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
2153 envvals[nentry-1] = s;
2154 s = strtok(NULL, delims);
2155 }
2156 envvals[nentry] = NULL;
2157
2158 /* don't want to free(env) as it contains the memory that backs
2159 * the envvals array of strings */
2160 return envvals;
2161}
2162
2163static void parseenv(void)
2164{
2165 color_init(false);
2166 qa_textrels = get_split_env("QA_TEXTRELS");
2167 qa_execstack = get_split_env("QA_EXECSTACK");
2168 qa_wx_load = get_split_env("QA_WX_LOAD");
2169}
2170
2171#ifdef __PAX_UTILS_CLEANUP
2172static void cleanup(void)
2173{
2174 free(out_format);
2175 free(qa_textrels);
2176 free(qa_execstack);
2177 free(qa_wx_load);
2178}
2179#endif
1749 2180
1750int main(int argc, char *argv[]) 2181int main(int argc, char *argv[])
1751{ 2182{
2183 int ret;
1752 if (argc < 2) 2184 if (argc < 2)
1753 usage(EXIT_FAILURE); 2185 usage(EXIT_FAILURE);
2186 parseenv();
1754 parseargs(argc, argv); 2187 ret = parseargs(argc, argv);
1755 fclose(stdout); 2188 fclose(stdout);
1756#ifdef __BOUNDS_CHECKING_ON 2189#ifdef __PAX_UTILS_CLEANUP
1757 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2190 cleanup();
2191 warn("The calls to add/delete heap should be off:\n"
2192 "\t- 1 due to the out_buffer not being freed in scanelf_file()\n"
2193 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1758#endif 2194#endif
1759 return EXIT_SUCCESS; 2195 return ret;
1760} 2196}
2197
2198/* Match filename against entries in matchlist, return TRUE
2199 * if the file is listed */
2200static int file_matches_list(const char *filename, char **matchlist)
2201{
2202 char **file;
2203 char *match;
2204 char buf[__PAX_UTILS_PATH_MAX];
2205
2206 if (matchlist == NULL)
2207 return 0;
2208
2209 for (file = matchlist; *file != NULL; file++) {
2210 if (search_path) {
2211 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2212 match = buf;
2213 } else {
2214 match = *file;
2215 }
2216 if (fnmatch(match, filename, 0) == 0)
2217 return 1;
2218 }
2219 return 0;
2220}

Legend:
Removed from v.1.138  
changed lines
  Added in v.1.229

  ViewVC Help
Powered by ViewVC 1.1.20