/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.229 Revision 1.268
1/* 1/*
2 * Copyright 2003-2007 Gentoo Foundation 2 * Copyright 2003-2012 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.229 2011/09/27 19:29:19 vapier Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.268 2014/11/05 02:02:03 vapier Exp $
5 * 5 *
6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2012 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2012 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10static const char *rcsid = "$Id: scanelf.c,v 1.229 2011/09/27 19:29:19 vapier Exp $"; 10static const char rcsid[] = "$Id: scanelf.c,v 1.268 2014/11/05 02:02:03 vapier Exp $";
11const char argv0[] = "scanelf"; 11const char argv0[] = "scanelf";
12 12
13#include "paxinc.h" 13#include "paxinc.h"
14 14
15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
16 16
17/* prototypes */ 17/* prototypes */
18static int file_matches_list(const char *filename, char **matchlist); 18static int file_matches_list(const char *filename, char **matchlist);
19 19
20/* variables to control behavior */ 20/* variables to control behavior */
21static char *match_etypes = NULL; 21static array_t _match_etypes = array_init_decl, *match_etypes = &_match_etypes;
22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths; 22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
23static char scan_ldpath = 0; 23static char scan_ldpath = 0;
24static char scan_envpath = 0; 24static char scan_envpath = 0;
25static char scan_symlink = 1; 25static char scan_symlink = 1;
26static char scan_archives = 0; 26static char scan_archives = 0;
44static char be_quiet = 0; 44static char be_quiet = 0;
45static char be_verbose = 0; 45static char be_verbose = 0;
46static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
47static char be_semi_verbose = 0; 47static char be_semi_verbose = 0;
48static char *find_sym = NULL; 48static char *find_sym = NULL;
49static array_t _find_sym_arr = array_init_decl, *find_sym_arr = &_find_sym_arr;
50static array_t _find_sym_regex_arr = array_init_decl, *find_sym_regex_arr = &_find_sym_regex_arr;
49static char *find_lib = NULL; 51static char *find_lib = NULL;
50static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr; 52static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
51static char *find_section = NULL; 53static char *find_section = NULL;
52static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr; 54static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
53static char *out_format = NULL; 55static char *out_format = NULL;
54static char *search_path = NULL; 56static char *search_path = NULL;
55static char fix_elf = 0; 57static char fix_elf = 0;
56static char g_match = 0; 58static char g_match = 0;
57static char use_ldcache = 0; 59static char use_ldcache = 0;
60static char use_ldpath = 0;
58 61
59static char **qa_textrels = NULL; 62static char **qa_textrels = NULL;
60static char **qa_execstack = NULL; 63static char **qa_execstack = NULL;
61static char **qa_wx_load = NULL; 64static char **qa_wx_load = NULL;
62static char *root; 65static int root_fd = AT_FDCWD;
63 66
64static int match_bits = 0; 67static int match_bits = 0;
65static unsigned int match_perms = 0; 68static unsigned int match_perms = 0;
66static void *ldcache = NULL; 69static void *ldcache = NULL;
67static size_t ldcache_size = 0; 70static size_t ldcache_size = 0;
68static unsigned long setpax = 0UL; 71static unsigned long setpax = 0UL;
69 72
70static int has_objdump = 0; 73static const char *objdump;
71 74
72/* find the path to a file by name */ 75/* Find the path to a file by name. Note: we do not currently handle the
73static char *which(const char *fname) 76 * empty path element correctly (should behave by searching $PWD). */
77static const char *which(const char *fname, const char *envvar)
74{ 78{
75 static char fullpath[__PAX_UTILS_PATH_MAX]; 79 size_t path_len, fname_len;
80 const char *env_path;
76 char *path, *p; 81 char *path, *p, *ep;
77 82
83 p = getenv(envvar);
84 if (p)
85 return p;
86
78 path = getenv("PATH"); 87 env_path = getenv("PATH");
79 if (!path) 88 if (!env_path)
80 return NULL; 89 return NULL;
81 90
82 path = xstrdup(path); 91 /* Create a copy of the $PATH that we can safely modify.
83 while ((p = strrchr(path, ':')) != NULL) { 92 * Make it a little bigger so we can append "/fname".
84 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname); 93 * We do this twice -- once for a perm copy, and once for
85 *p = 0; 94 * room at the end of the last element. */
95 path_len = strlen(env_path);
96 fname_len = strlen(fname);
97 path = xmalloc(path_len + (fname_len * 2) + 2 + 2);
98 memcpy(path, env_path, path_len + 1);
99
100 p = path + path_len + 1 + fname_len + 1;
101 *p = '/';
102 memcpy(p + 1, fname, fname_len + 1);
103
104 /* Repoint fname to the copy in the env string as it has
105 * the leading slash which we can include in a single memcpy.
106 * Increase the fname len to include the '/' and '\0'. */
107 fname = p;
108 fname_len += 2;
109
110 p = path;
111 while (p) {
112 ep = strchr(p, ':');
113 /* Append the /foo path to the current element. */
114 if (ep)
115 memcpy(ep, fname, fname_len);
116 else
117 memcpy(path + path_len, fname, fname_len);
118
86 if (access(fullpath, R_OK) != -1) { 119 if (access(p, R_OK) != -1)
87 free(path);
88 return fullpath; 120 return p;
121
122 p = ep;
123 if (ep) {
124 /* If not the last element, restore the chunk we clobbered. */
125 size_t offset = ep - path;
126 size_t restore = min(path_len - offset, fname_len);
127 memcpy(ep, env_path + offset, restore);
128 ++p;
89 } 129 }
90 } 130 }
131
91 free(path); 132 free(path);
92 return NULL; 133 return NULL;
93} 134}
94 135
95/* 1 on failure. 0 otherwise */ 136static FILE *fopenat_r(int dir_fd, const char *path)
96static int rematch(const char *regex, const char *match, int cflags)
97{ 137{
98 regex_t preg; 138 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
99 int ret; 139 if (fd == -1)
140 return NULL;
141 return fdopen(fd, "re");
142}
100 143
101 if ((match == NULL) || (regex == NULL)) 144static const char *root_rel_path(const char *path)
102 return EXIT_FAILURE; 145{
103 146 /*
104 if ((ret = regcomp(&preg, regex, cflags))) { 147 * openat() will ignore the dirfd if path starts with
105 char err[256]; 148 * a /, so consume all of that noise
106 149 *
107 if (regerror(ret, &preg, err, sizeof(err))) 150 * XXX: we don't handle relative paths like ../ that
108 fprintf(stderr, "regcomp failed: %s", err); 151 * break out of the --root option, but for now, just
109 else 152 * don't do that :P.
110 fprintf(stderr, "regcomp failed"); 153 */
111 154 if (root_fd != AT_FDCWD) {
112 return EXIT_FAILURE; 155 while (*path == '/')
156 ++path;
157 if (*path == '\0')
158 path = ".";
113 } 159 }
114 ret = regexec(&preg, match, 0, NULL, 0);
115 regfree(&preg);
116 160
117 return ret; 161 return path;
118} 162}
119 163
120/* sub-funcs for scanelf_file() */ 164/* sub-funcs for scanelf_fileat() */
121static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 165static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
122{ 166{
123 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 167 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
124 168
125 /* debug sections */ 169 /* debug sections */
126 void *symtab = elf_findsecbyname(elf, ".symtab"); 170 void *symtab = elf_findsecbyname(elf, ".symtab");
127 void *strtab = elf_findsecbyname(elf, ".strtab"); 171 void *strtab = elf_findsecbyname(elf, ".strtab");
128 /* runtime sections */ 172 /* runtime sections */
129 void *dynsym = elf_findsecbyname(elf, ".dynsym"); 173 void *dynsym = elf_findsecbyname(elf, ".dynsym");
130 void *dynstr = elf_findsecbyname(elf, ".dynstr"); 174 void *dynstr = elf_findsecbyname(elf, ".dynstr");
131 175
176 /*
177 * If the sections are marked NOBITS, then they don't exist, so we just
178 * skip them. This let's us work sanely with splitdebug ELFs (rather
179 * than spewing a lot of "corrupt ELF" messages later on). In malformed
180 * ELFs, the section might be wrongly set to NOBITS, but screw em.
181 *
182 * We need to make sure the debug/runtime sym/str sets are used together
183 * as they are generated in sync. Trying to mix them won't work.
184 */
132#define GET_SYMTABS(B) \ 185#define GET_SYMTABS(B) \
133 if (elf->elf_class == ELFCLASS ## B) { \ 186 if (elf->elf_class == ELFCLASS ## B) { \
134 if (symtab && dynsym) { \
135 Elf ## B ## _Shdr *esymtab = symtab; \ 187 Elf ## B ## _Shdr *esymtab = symtab; \
136 Elf ## B ## _Shdr *edynsym = dynsym; \
137 *sym = (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) ? symtab : dynsym; \
138 } else \
139 *sym = symtab ? symtab : dynsym; \
140 if (strtab && dynstr) { \
141 Elf ## B ## _Shdr *estrtab = strtab; \ 188 Elf ## B ## _Shdr *estrtab = strtab; \
189 Elf ## B ## _Shdr *edynsym = dynsym; \
142 Elf ## B ## _Shdr *edynstr = dynstr; \ 190 Elf ## B ## _Shdr *edynstr = dynstr; \
143 *tab = (EGET(estrtab->sh_size) > EGET(edynstr->sh_size)) ? strtab : dynstr; \ 191 \
192 if (symtab && EGET(esymtab->sh_type) == SHT_NOBITS) \
193 symtab = NULL; \
194 if (dynsym && EGET(edynsym->sh_type) == SHT_NOBITS) \
195 dynsym = NULL; \
196 if (strtab && EGET(estrtab->sh_type) == SHT_NOBITS) \
197 strtab = NULL; \
198 if (dynstr && EGET(edynstr->sh_type) == SHT_NOBITS) \
199 dynstr = NULL; \
200 \
201 /* Use the set with more symbols if both exist. */ \
202 if (symtab && dynsym && strtab && dynstr) { \
203 if (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) \
204 goto debug##B; \
205 else \
206 goto runtime##B; \
207 } else if (symtab && strtab) { \
208 debug##B: \
209 *sym = symtab; \
210 *str = strtab; \
211 return; \
212 } else if (dynsym && dynstr) { \
213 runtime##B: \
214 *sym = dynsym; \
215 *str = dynstr; \
216 return; \
144 } else \ 217 } else { \
145 *tab = strtab ? strtab : dynstr; \ 218 *sym = *str = NULL; \
219 } \
146 } 220 }
147 GET_SYMTABS(32) 221 GET_SYMTABS(32)
148 GET_SYMTABS(64) 222 GET_SYMTABS(64)
223
224 if (*sym && *str)
225 return;
226
227 /*
228 * damn, they're really going to make us work for it huh?
229 * reconstruct the section header info out of the dynamic
230 * tags so we can see what symbols this guy uses at runtime.
231 */
232#define GET_SYMTABS_DT(B) \
233 if (elf->elf_class == ELFCLASS ## B) { \
234 size_t i; \
235 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
236 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
237 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
238 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
239 Elf ## B ## _Dyn *dyn; \
240 Elf ## B ## _Off offset; \
241 \
242 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
243 vsym = vstr = vhash = vgnu_hash = 0; \
244 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
245 memset(&str_shdr, 0, sizeof(str_shdr)); \
246 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
247 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
248 continue; \
249 \
250 offset = EGET(phdr[i].p_offset); \
251 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
252 continue; \
253 \
254 dyn = DYN ## B (elf->vdata + offset); \
255 while (EGET(dyn->d_tag) != DT_NULL) { \
256 switch (EGET(dyn->d_tag)) { \
257 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
258 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
259 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
260 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
261 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
262 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
263 } \
264 ++dyn; \
265 } \
266 if (vsym && vstr) \
267 break; \
268 } \
269 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
270 return; \
271 \
272 /* calc offset into the ELF by finding the load addr of the syms */ \
273 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
274 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
275 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
276 offset = EGET(phdr[i].p_offset); \
277 \
278 if (EGET(phdr[i].p_type) != PT_LOAD) \
279 continue; \
280 \
281 if (vhash >= vaddr && vhash < vaddr + filesz) { \
282 /* Scan the hash table to see how many entries we have */ \
283 Elf32_Word max_sym_idx = 0; \
284 Elf32_Word *hashtbl = elf->vdata + offset + (vhash - vaddr); \
285 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
286 Elf32_Word nchains = EGET(hashtbl[1]); \
287 Elf32_Word *buckets = &hashtbl[2]; \
288 Elf32_Word *chains = &buckets[nbuckets]; \
289 Elf32_Word sym_idx; \
290 \
291 for (b = 0; b < nbuckets; ++b) { \
292 if (!buckets[b]) \
293 continue; \
294 for (sym_idx = buckets[b]; sym_idx < nchains && sym_idx; sym_idx = chains[sym_idx]) \
295 if (max_sym_idx < sym_idx) \
296 max_sym_idx = sym_idx; \
297 } \
298 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
299 } \
300 \
301 if (vsym >= vaddr && vsym < vaddr + filesz) { \
302 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
303 *sym = &sym_shdr; \
304 } \
305 \
306 if (vstr >= vaddr && vstr < vaddr + filesz) { \
307 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
308 *str = &str_shdr; \
309 } \
310 } \
311 }
312 GET_SYMTABS_DT(32)
313 GET_SYMTABS_DT(64)
149} 314}
150 315
151static char *scanelf_file_pax(elfobj *elf, char *found_pax) 316static char *scanelf_file_pax(elfobj *elf, char *found_pax)
152{ 317{
153 static char ret[7]; 318 static char ret[7];
180 } 345 }
181 SHOW_PAX(32) 346 SHOW_PAX(32)
182 SHOW_PAX(64) 347 SHOW_PAX(64)
183 } 348 }
184 349
185 if (fix_elf && setpax) { 350 /* Note: We do not support setting EI_PAX if not PT_PAX_FLAGS
186 /* set the chpax settings */ 351 * was found. This is known to break ELFs on glibc systems,
187 if (elf->elf_class == ELFCLASS32) { 352 * and mainline PaX has deprecated use of this for a long time.
188 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC) 353 * We could support changing PT_GNU_STACK, but that doesn't
189 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax)); 354 * seem like it's worth the effort. #411919
190 } else { 355 */
191 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
192 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
193 }
194 }
195 356
196 /* fall back to EI_PAX if no PT_PAX was found */ 357 /* fall back to EI_PAX if no PT_PAX was found */
197 if (!*ret) { 358 if (!*ret) {
198 static char *paxflags; 359 static char *paxflags;
199 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 360 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
213static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 374static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
214{ 375{
215 static char ret[12]; 376 static char ret[12];
216 char *found; 377 char *found;
217 unsigned long i, shown, multi_stack, multi_relro, multi_load; 378 unsigned long i, shown, multi_stack, multi_relro, multi_load;
218 int max_pt_load;
219 379
220 if (!show_phdr) return NULL; 380 if (!show_phdr) return NULL;
221 381
222 memcpy(ret, "--- --- ---\0", 12); 382 memcpy(ret, "--- --- ---\0", 12);
223 383
224 shown = 0; 384 shown = 0;
225 multi_stack = multi_relro = multi_load = 0; 385 multi_stack = multi_relro = multi_load = 0;
226 max_pt_load = elf_max_pt_load(elf);
227 386
228#define NOTE_GNU_STACK ".note.GNU-stack" 387#define NOTE_GNU_STACK ".note.GNU-stack"
229#define SHOW_PHDR(B) \ 388#define SHOW_PHDR(B) \
230 if (elf->elf_class == ELFCLASS ## B) { \ 389 if (elf->elf_class == ELFCLASS ## B) { \
231 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 390 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
247 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 406 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
248 found = found_relro; \ 407 found = found_relro; \
249 offset = 4; \ 408 offset = 4; \
250 check_flags = PF_X; \ 409 check_flags = PF_X; \
251 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 410 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
252 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
253 if (multi_load++ > max_pt_load) \
254 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
255 if (file_matches_list(elf->filename, qa_wx_load)) \ 411 if (file_matches_list(elf->filename, qa_wx_load)) \
256 continue; \ 412 continue; \
257 found = found_load; \ 413 found = found_load; \
258 offset = 8; \ 414 offset = 8; \
259 check_flags = PF_W|PF_X; \ 415 check_flags = PF_W|PF_X; \
276 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 432 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
277 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 433 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
278 char *str; \ 434 char *str; \
279 if ((void*)strtbl > elf->data_end) \ 435 if ((void*)strtbl > elf->data_end) \
280 goto skip_this_shdr##B; \ 436 goto skip_this_shdr##B; \
437 /* let's flag -w/+x object files since the final ELF will most likely \
438 * need write access to the stack (who doesn't !?). so the combined \
439 * output will bring in +w automatically and that's bad. \
440 */ \
281 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 441 check_flags = /*SHF_WRITE|*/SHF_EXECINSTR; \
282 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 442 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
283 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 443 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
284 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 444 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
285 str = elf->data + offset; \ 445 str = elf->data + offset; \
286 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \ 446 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \
463 else \ 623 else \
464 printf("%s", func_name); \ 624 printf("%s", func_name); \
465 } else \ 625 } else \
466 printf("(optimized out)"); \ 626 printf("(optimized out)"); \
467 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 627 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
468 if (be_verbose && has_objdump) { \ 628 if (be_verbose && objdump) { \
469 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \ 629 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
470 char *sysbuf; \ 630 char *sysbuf; \
471 size_t syslen; \ 631 size_t syslen; \
472 int sysret; \
473 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \ 632 const char sysfmt[] = "%s -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
474 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \ 633 syslen = sizeof(sysfmt) + strlen(objdump) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
475 sysbuf = xmalloc(syslen); \ 634 sysbuf = xmalloc(syslen); \
476 if (end_addr < r_offset) \ 635 if (end_addr < r_offset) \
477 /* not uncommon when things are optimized out */ \ 636 /* not uncommon when things are optimized out */ \
478 end_addr = r_offset + 0x100; \ 637 end_addr = r_offset + 0x100; \
479 snprintf(sysbuf, syslen, sysfmt, \ 638 snprintf(sysbuf, syslen, sysfmt, \
639 objdump, \
480 (unsigned long)offset_tmp, \ 640 (unsigned long)offset_tmp, \
481 (unsigned long)end_addr, \ 641 (unsigned long)end_addr, \
482 elf->filename, \ 642 elf->filename, \
483 (unsigned long)r_offset); \ 643 (unsigned long)r_offset); \
484 fflush(stdout); \ 644 fflush(stdout); \
485 sysret = system(sysbuf); \ 645 if (system(sysbuf)) {/* don't care */} \
486 fflush(stdout); \ 646 fflush(stdout); \
487 free(sysbuf); \ 647 free(sysbuf); \
488 } \ 648 } \
489 } \ 649 } \
490 } } 650 } }
663 xstrcat(ret, (runpath ? runpath : rpath), ret_len); 823 xstrcat(ret, (runpath ? runpath : rpath), ret_len);
664 else if (!be_quiet) 824 else if (!be_quiet)
665 xstrcat(ret, " - ", ret_len); 825 xstrcat(ret, " - ", ret_len);
666} 826}
667 827
828/* Defines can be seen in glibc's sysdeps/generic/ldconfig.h */
668#define LDSO_CACHE_MAGIC "ld.so-" 829#define LDSO_CACHE_MAGIC "ld.so-"
669#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1) 830#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
670#define LDSO_CACHE_VER "1.7.0" 831#define LDSO_CACHE_VER "1.7.0"
671#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1) 832#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
672#define FLAG_ANY -1 833#define FLAG_ANY -1
681#define FLAG_X8664_LIB64 0x0300 842#define FLAG_X8664_LIB64 0x0300
682#define FLAG_S390_LIB64 0x0400 843#define FLAG_S390_LIB64 0x0400
683#define FLAG_POWERPC_LIB64 0x0500 844#define FLAG_POWERPC_LIB64 0x0500
684#define FLAG_MIPS64_LIBN32 0x0600 845#define FLAG_MIPS64_LIBN32 0x0600
685#define FLAG_MIPS64_LIBN64 0x0700 846#define FLAG_MIPS64_LIBN64 0x0700
847#define FLAG_X8664_LIBX32 0x0800
848#define FLAG_ARM_LIBHF 0x0900
849#define FLAG_AARCH64_LIB64 0x0a00
686 850
687#if defined(__GLIBC__) || defined(__UCLIBC__) 851#if defined(__GLIBC__) || defined(__UCLIBC__)
688 852
689static char *lookup_cache_lib(elfobj *elf, char *fname) 853static char *lookup_cache_lib(elfobj *elf, const char *fname)
690{ 854{
691 int fd; 855 int fd;
692 char *strs; 856 char *strs;
693 static char buf[__PAX_UTILS_PATH_MAX] = ""; 857 static char buf[__PAX_UTILS_PATH_MAX] = "";
694 const char cachefile[] = "/etc/ld.so.cache"; 858 const char *cachefile = root_rel_path("/etc/ld.so.cache");
695 struct stat st; 859 struct stat st;
696 860
697 typedef struct { 861 typedef struct {
698 char magic[LDSO_CACHE_MAGIC_LEN]; 862 char magic[LDSO_CACHE_MAGIC_LEN];
699 char version[LDSO_CACHE_VER_LEN]; 863 char version[LDSO_CACHE_VER_LEN];
710 874
711 if (fname == NULL) 875 if (fname == NULL)
712 return NULL; 876 return NULL;
713 877
714 if (ldcache == NULL) { 878 if (ldcache == NULL) {
715 if (stat(cachefile, &st)) 879 if (fstatat(root_fd, cachefile, &st, 0))
716 return NULL; 880 return NULL;
717 881
718 fd = open(cachefile, O_RDONLY); 882 fd = openat(root_fd, cachefile, O_RDONLY);
719 if (fd == -1) 883 if (fd == -1)
720 return NULL; 884 return NULL;
721 885
722 /* cache these values so we only map/unmap the cache file once */ 886 /* cache these values so we only map/unmap the cache file once */
723 ldcache_size = st.st_size; 887 ldcache_size = st.st_size;
762 926
763 return buf; 927 return buf;
764} 928}
765 929
766#elif defined(__NetBSD__) 930#elif defined(__NetBSD__)
767static char *lookup_cache_lib(elfobj *elf, char *fname) 931static char *lookup_cache_lib(elfobj *elf, const char *fname)
768{ 932{
769 static char buf[__PAX_UTILS_PATH_MAX] = ""; 933 static char buf[__PAX_UTILS_PATH_MAX] = "";
770 static struct stat st; 934 static struct stat st;
771 size_t n; 935 size_t n;
772 char *ldpath; 936 char *ldpath;
791} 955}
792#else 956#else
793#ifdef __ELF__ 957#ifdef __ELF__
794#warning Cache support not implemented for your target 958#warning Cache support not implemented for your target
795#endif 959#endif
796static char *lookup_cache_lib(elfobj *elf, char *fname) 960static char *lookup_cache_lib(elfobj *elf, const char *fname)
797{ 961{
798 return NULL; 962 return NULL;
799} 963}
800#endif 964#endif
965
966static char *lookup_config_lib(const char *fname)
967{
968 static char buf[__PAX_UTILS_PATH_MAX] = "";
969 const char *ldpath;
970 size_t n;
971
972 array_for_each(ldpaths, n, ldpath) {
973 snprintf(buf, sizeof(buf), "%s/%s", root_rel_path(ldpath), fname);
974 if (faccessat(root_fd, buf, F_OK, AT_SYMLINK_NOFOLLOW) == 0)
975 return buf;
976 }
977
978 return NULL;
979}
801 980
802static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 981static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
803{ 982{
804 unsigned long i; 983 unsigned long i;
805 char *needed; 984 char *needed;
843 needed = elf->data + offset; \ 1022 needed = elf->data + offset; \
844 if (op == 0) { \ 1023 if (op == 0) { \
845 /* -n -> print all entries */ \ 1024 /* -n -> print all entries */ \
846 if (!be_wewy_wewy_quiet) { \ 1025 if (!be_wewy_wewy_quiet) { \
847 if (*found_needed) xchrcat(ret, ',', ret_len); \ 1026 if (*found_needed) xchrcat(ret, ',', ret_len); \
848 if (use_ldcache) \ 1027 if (use_ldpath) { \
1028 if ((p = lookup_config_lib(needed)) != NULL) \
1029 needed = p; \
1030 } else if (use_ldcache) { \
849 if ((p = lookup_cache_lib(elf, needed)) != NULL) \ 1031 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
850 needed = p; \ 1032 needed = p; \
1033 } \
851 xstrcat(ret, needed, ret_len); \ 1034 xstrcat(ret, needed, ret_len); \
852 } \ 1035 } \
853 *found_needed = 1; \ 1036 *found_needed = 1; \
854 } else { \ 1037 } else { \
855 /* -N -> print matching entries */ \ 1038 /* -N -> print matching entries */ \
856 size_t n; \ 1039 size_t n; \
857 const char *find_lib_name; \ 1040 const char *find_lib_name; \
858 \ 1041 \
859 array_for_each(find_lib_arr, n, find_lib_name) \ 1042 array_for_each(find_lib_arr, n, find_lib_name) { \
1043 int invert = 1; \
1044 if (find_lib_name[0] == '!') \
1045 invert = 0, ++find_lib_name; \
860 if (!strcmp(find_lib_name, needed)) \ 1046 if (!strcmp(find_lib_name, needed) == invert) \
861 ++matched; \ 1047 ++matched; \
1048 } \
862 \ 1049 \
863 if (matched == array_cnt(find_lib_arr)) { \ 1050 if (matched == array_cnt(find_lib_arr)) { \
864 *found_lib = 1; \ 1051 *found_lib = 1; \
865 return (be_wewy_wewy_quiet ? NULL : find_lib); \ 1052 return (be_wewy_wewy_quiet ? NULL : find_lib); \
866 } \ 1053 } \
892 *found_interp = 1; \ 1079 *found_interp = 1; \
893 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \ 1080 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \
894 } 1081 }
895 SHOW_INTERP(32) 1082 SHOW_INTERP(32)
896 SHOW_INTERP(64) 1083 SHOW_INTERP(64)
1084 } else {
1085 /* Walk all the program headers to find the PT_INTERP */
1086#define SHOW_PT_INTERP(B) \
1087 if (elf->elf_class == ELFCLASS ## B) { \
1088 unsigned long i; \
1089 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
1090 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
1091 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
1092 if (EGET(phdr[i].p_type) != PT_INTERP) \
1093 continue; \
1094 *found_interp = 1; \
1095 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(phdr[i].p_offset)); \
1096 } \
897 } 1097 }
1098 SHOW_PT_INTERP(32)
1099 SHOW_PT_INTERP(64)
1100 }
1101
898 return NULL; 1102 return NULL;
899} 1103}
900static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1104static const char *scanelf_file_bind(elfobj *elf, char *found_bind)
901{ 1105{
902 unsigned long i; 1106 unsigned long i;
903 struct stat s; 1107 struct stat s;
904 char dynamic = 0; 1108 bool dynamic = false;
905 1109
906 if (!show_bind) return NULL; 1110 if (!show_bind) return NULL;
907 if (!elf->phdr) return NULL; 1111 if (!elf->phdr) return NULL;
908 1112
909#define SHOW_BIND(B) \ 1113#define SHOW_BIND(B) \
912 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1116 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
913 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1117 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
914 Elf ## B ## _Off offset; \ 1118 Elf ## B ## _Off offset; \
915 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1119 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
916 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \ 1120 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
917 dynamic = 1; \ 1121 dynamic = true; \
918 offset = EGET(phdr[i].p_offset); \ 1122 offset = EGET(phdr[i].p_offset); \
919 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1123 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
920 dyn = DYN ## B (elf->vdata + offset); \ 1124 dyn = DYN ## B (elf->vdata + offset); \
921 while (EGET(dyn->d_tag) != DT_NULL) { \ 1125 while (EGET(dyn->d_tag) != DT_NULL) { \
922 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1126 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
938 /* don't output anything if quiet mode and the ELF is static or not setuid */ 1142 /* don't output anything if quiet mode and the ELF is static or not setuid */
939 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) { 1143 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
940 return NULL; 1144 return NULL;
941 } else { 1145 } else {
942 *found_bind = 1; 1146 *found_bind = 1;
943 return (char *)(dynamic ? "LAZY" : "STATIC"); 1147 return dynamic ? "LAZY" : "STATIC";
944 } 1148 }
945} 1149}
946static char *scanelf_file_soname(elfobj *elf, char *found_soname) 1150static char *scanelf_file_soname(elfobj *elf, char *found_soname)
947{ 1151{
948 unsigned long i; 1152 unsigned long i;
1001 * defined symbols. If it's a minus ("-"), only match undefined symbols. 1205 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1002 * Putting modifiers in between the percent signs allows for more in depth 1206 * Putting modifiers in between the percent signs allows for more in depth
1003 * filters. There are groups of modifiers. If you don't specify a member 1207 * filters. There are groups of modifiers. If you don't specify a member
1004 * of a group, then all types in that group are matched. The current 1208 * of a group, then all types in that group are matched. The current
1005 * groups and their types are: 1209 * groups and their types are:
1006 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f SST_FILE:F 1210 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1007 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w 1211 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1212 * STV group: STV_DEFAULT:p STV_INTERNAL:i STV_HIDDEN:h STV_PROTECTED:P
1008 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d 1213 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1009 * The "defined" value in the SHN group does not correspond to a SHN_xxx define. 1214 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1010 * You can search for multiple symbols at once by seperating with a comma (","). 1215 * You can search for multiple symbols at once by seperating with a comma (",").
1011 * 1216 *
1012 * Some examples: 1217 * Some examples:
1021 * All global defined objects in an ELF: 1226 * All global defined objects in an ELF:
1022 * scanelf -s %ogd% <ELF> 1227 * scanelf -s %ogd% <ELF>
1023 */ 1228 */
1024static void 1229static void
1025scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname, 1230scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1026 unsigned int stt, unsigned int stb, unsigned int shn, unsigned long size) 1231 unsigned int stt, unsigned int stb, unsigned int stv, unsigned int shn, unsigned long size)
1027{ 1232{
1028 char *this_sym, *next_sym, saved = saved; 1233 const char *this_sym;
1234 size_t n;
1029 1235
1030 /* allow the user to specify a comma delimited list of symbols to search for */ 1236 array_for_each(find_sym_arr, n, this_sym) {
1031 next_sym = NULL;
1032 do {
1033 bool inc_notype, inc_object, inc_func, inc_file, 1237 bool inc_notype, inc_object, inc_func, inc_file,
1034 inc_local, inc_global, inc_weak, 1238 inc_local, inc_global, inc_weak,
1239 inc_visdef, inc_intern, inc_hidden, inc_prot,
1035 inc_def, inc_undef, inc_abs, inc_common; 1240 inc_def, inc_undef, inc_abs, inc_common;
1036 1241
1037 if (next_sym) {
1038 next_sym[-1] = saved;
1039 this_sym = next_sym;
1040 } else
1041 this_sym = find_sym;
1042 if ((next_sym = strchr(this_sym, ','))) {
1043 /* make parsing easier by killing the comma temporarily */
1044 saved = *next_sym;
1045 *next_sym = '\0';
1046 next_sym += 1;
1047 }
1048
1049 /* symbol selection! */ 1242 /* symbol selection! */
1050 inc_notype = inc_object = inc_func = inc_file = \ 1243 inc_notype = inc_object = inc_func = inc_file =
1051 inc_local = inc_global = inc_weak = \ 1244 inc_local = inc_global = inc_weak =
1245 inc_visdef = inc_intern = inc_hidden = inc_prot =
1052 inc_def = inc_undef = inc_abs = inc_common = \ 1246 inc_def = inc_undef = inc_abs = inc_common =
1053 (*this_sym != '%'); 1247 (*this_sym != '%');
1054 1248
1055 /* parse the contents of %...% */ 1249 /* parse the contents of %...% */
1056 if (!inc_notype) { 1250 if (!inc_notype) {
1057 while (*(this_sym++)) { 1251 while (*(this_sym++)) {
1065 case 'f': inc_func = true; break; 1259 case 'f': inc_func = true; break;
1066 case 'F': inc_file = true; break; 1260 case 'F': inc_file = true; break;
1067 case 'l': inc_local = true; break; 1261 case 'l': inc_local = true; break;
1068 case 'g': inc_global = true; break; 1262 case 'g': inc_global = true; break;
1069 case 'w': inc_weak = true; break; 1263 case 'w': inc_weak = true; break;
1264 case 'p': inc_visdef = true; break;
1265 case 'i': inc_intern = true; break;
1266 case 'h': inc_hidden = true; break;
1267 case 'P': inc_prot = true; break;
1070 case 'd': inc_def = true; break; 1268 case 'd': inc_def = true; break;
1071 case 'u': inc_undef = true; break; 1269 case 'u': inc_undef = true; break;
1072 case 'a': inc_abs = true; break; 1270 case 'a': inc_abs = true; break;
1073 case 'c': inc_common = true; break; 1271 case 'c': inc_common = true; break;
1074 default: err("invalid symbol selector '%c'", *this_sym); 1272 default: err("invalid symbol selector '%c'", *this_sym);
1078 /* If no types are matched, not match all */ 1276 /* If no types are matched, not match all */
1079 if (!inc_notype && !inc_object && !inc_func && !inc_file) 1277 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1080 inc_notype = inc_object = inc_func = inc_file = true; 1278 inc_notype = inc_object = inc_func = inc_file = true;
1081 if (!inc_local && !inc_global && !inc_weak) 1279 if (!inc_local && !inc_global && !inc_weak)
1082 inc_local = inc_global = inc_weak = true; 1280 inc_local = inc_global = inc_weak = true;
1281 if (!inc_visdef && !inc_intern && !inc_hidden && !inc_prot)
1282 inc_visdef = inc_intern = inc_hidden = inc_prot = true;
1083 if (!inc_def && !inc_undef && !inc_abs && !inc_common) 1283 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1084 inc_def = inc_undef = inc_abs = inc_common = true; 1284 inc_def = inc_undef = inc_abs = inc_common = true;
1085 1285
1086 /* backwards compat for defined/undefined short hand */ 1286 /* backwards compat for defined/undefined short hand */
1087 } else if (*this_sym == '+') { 1287 } else if (*this_sym == '+') {
1091 inc_def = inc_abs = inc_common = false; 1291 inc_def = inc_abs = inc_common = false;
1092 ++this_sym; 1292 ++this_sym;
1093 } 1293 }
1094 1294
1095 /* filter symbols */ 1295 /* filter symbols */
1096 if ((!inc_notype && stt == STT_NOTYPE) || \ 1296 if ((!inc_notype && stt == STT_NOTYPE ) || \
1097 (!inc_object && stt == STT_OBJECT) || \ 1297 (!inc_object && stt == STT_OBJECT ) || \
1098 (!inc_func && stt == STT_FUNC ) || \ 1298 (!inc_func && stt == STT_FUNC ) || \
1099 (!inc_file && stt == STT_FILE ) || \ 1299 (!inc_file && stt == STT_FILE ) || \
1100 (!inc_local && stb == STB_LOCAL ) || \ 1300 (!inc_local && stb == STB_LOCAL ) || \
1101 (!inc_global && stb == STB_GLOBAL) || \ 1301 (!inc_global && stb == STB_GLOBAL ) || \
1102 (!inc_weak && stb == STB_WEAK ) || \ 1302 (!inc_weak && stb == STB_WEAK ) || \
1303 (!inc_visdef && stv == STV_DEFAULT ) || \
1304 (!inc_intern && stv == STV_INTERNAL ) || \
1305 (!inc_hidden && stv == STV_HIDDEN ) || \
1306 (!inc_prot && stv == STV_PROTECTED) || \
1103 (!inc_def && shn && shn < SHN_LORESERVE) || \ 1307 (!inc_def && shn && shn < SHN_LORESERVE) || \
1104 (!inc_undef && shn == SHN_UNDEF ) || \ 1308 (!inc_undef && shn == SHN_UNDEF ) || \
1105 (!inc_abs && shn == SHN_ABS ) || \ 1309 (!inc_abs && shn == SHN_ABS ) || \
1106 (!inc_common && shn == SHN_COMMON)) 1310 (!inc_common && shn == SHN_COMMON ))
1107 continue; 1311 continue;
1108 1312
1109 if (*this_sym == '*') { 1313 if (*this_sym == '*') {
1110 /* a "*" symbol gets you debug output */ 1314 /* a "*" symbol gets you debug output */
1111 printf("%s(%s) %5lX %15s %15s %15s %s\n", 1315 printf("%s(%s) %5lX %-15s %-15s %-15s %-15s %s\n",
1112 ((*found_sym == 0) ? "\n\t" : "\t"), 1316 ((*found_sym == 0) ? "\n\t" : "\t"),
1113 elf->base_filename, 1317 elf->base_filename,
1114 size, 1318 size,
1115 get_elfstttype(stt), 1319 get_elfstttype(stt),
1116 get_elfstbtype(stb), 1320 get_elfstbtype(stb),
1321 get_elfstvtype(stv),
1117 get_elfshntype(shn), 1322 get_elfshntype(shn),
1118 symname); 1323 symname);
1119 goto matched; 1324 goto matched;
1120 1325
1121 } else { 1326 } else {
1122 if (g_match) { 1327 if (g_match) {
1123 /* regex match the symbol */ 1328 /* regex match the symbol */
1124 if (rematch(this_sym, symname, REG_EXTENDED) != 0) 1329 if (regexec(find_sym_regex_arr->eles[n], symname, 0, NULL, 0) == REG_NOMATCH)
1125 continue; 1330 continue;
1126 1331
1127 } else if (*this_sym) { 1332 } else if (*this_sym) {
1128 /* give empty symbols a "pass", else do a normal compare */ 1333 /* give empty symbols a "pass", else do a normal compare */
1129 const size_t len = strlen(this_sym); 1334 const size_t len = strlen(this_sym);
1145 xstrcat(ret, symname, ret_len); 1350 xstrcat(ret, symname, ret_len);
1146 } 1351 }
1147 1352
1148 goto matched; 1353 goto matched;
1149 } 1354 }
1150 } while (next_sym); 1355 }
1151 1356
1152 return; 1357 return;
1153 1358
1154 matched: 1359 matched:
1155 *found_sym = 1; 1360 *found_sym = 1;
1156 if (next_sym)
1157 next_sym[-1] = saved;
1158} 1361}
1159 1362
1160static const char *scanelf_file_sym(elfobj *elf, char *found_sym) 1363static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
1161{ 1364{
1162 unsigned long i;
1163 char *ret; 1365 char *ret;
1164 void *symtab_void, *strtab_void; 1366 void *symtab_void, *strtab_void;
1165 1367
1166 if (!find_sym) return NULL; 1368 if (!find_sym) return NULL;
1167 ret = NULL; 1369 ret = NULL;
1172#define FIND_SYM(B) \ 1374#define FIND_SYM(B) \
1173 if (elf->elf_class == ELFCLASS ## B) { \ 1375 if (elf->elf_class == ELFCLASS ## B) { \
1174 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1376 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
1175 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1377 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
1176 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \ 1378 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
1177 unsigned long cnt = EGET(symtab->sh_entsize); \ 1379 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
1178 char *symname; \ 1380 char *symname; \
1179 size_t ret_len = 0; \ 1381 size_t ret_len = 0; \
1180 if (cnt) \ 1382 if (cnt) \
1181 cnt = EGET(symtab->sh_size) / cnt; \ 1383 cnt = EGET(symtab->sh_size) / cnt; \
1182 for (i = 0; i < cnt; ++i) { \ 1384 for (i = 0; i < cnt; ++i) { \
1194 } \ 1396 } \
1195 scanelf_match_symname(elf, found_sym, \ 1397 scanelf_match_symname(elf, found_sym, \
1196 &ret, &ret_len, symname, \ 1398 &ret, &ret_len, symname, \
1197 ELF##B##_ST_TYPE(EGET(sym->st_info)), \ 1399 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
1198 ELF##B##_ST_BIND(EGET(sym->st_info)), \ 1400 ELF##B##_ST_BIND(EGET(sym->st_info)), \
1401 ELF##B##_ST_VISIBILITY(EGET(sym->st_other)), \
1199 EGET(sym->st_shndx), \ 1402 EGET(sym->st_shndx), \
1200 /* st_size can be 64bit, but no one is really that big, so screw em */ \ 1403 /* st_size can be 64bit, but no one is really that big, so screw em */ \
1201 EGET(sym->st_size)); \ 1404 EGET(sym->st_size)); \
1202 } \ 1405 } \
1203 ++sym; \ 1406 ++sym; \
1204 } } 1407 } \
1408 }
1205 FIND_SYM(32) 1409 FIND_SYM(32)
1206 FIND_SYM(64) 1410 FIND_SYM(64)
1207 } 1411 }
1208 1412
1209break_out: 1413break_out:
1300 case 'x': prints(" PAX "); break; 1504 case 'x': prints(" PAX "); break;
1301 case 'e': prints("STK/REL/PTL "); break; 1505 case 'e': prints("STK/REL/PTL "); break;
1302 case 't': prints("TEXTREL "); break; 1506 case 't': prints("TEXTREL "); break;
1303 case 'r': prints("RPATH "); break; 1507 case 'r': prints("RPATH "); break;
1304 case 'M': prints("CLASS "); break; 1508 case 'M': prints("CLASS "); break;
1509 case 'l':
1305 case 'n': prints("NEEDED "); break; 1510 case 'n': prints("NEEDED "); break;
1306 case 'i': prints("INTERP "); break; 1511 case 'i': prints("INTERP "); break;
1307 case 'b': prints("BIND "); break; 1512 case 'b': prints("BIND "); break;
1308 case 'Z': prints("SIZE "); break; 1513 case 'Z': prints("SIZE "); break;
1309 case 'S': prints("SONAME "); break; 1514 case 'S': prints("SONAME "); break;
1414 1619
1415/* scan a single elf */ 1620/* scan a single elf */
1416static int scanelf_elf(const char *filename, int fd, size_t len) 1621static int scanelf_elf(const char *filename, int fd, size_t len)
1417{ 1622{
1418 int ret = 1; 1623 int ret = 1;
1624 size_t n;
1625 const char *match_etype;
1419 elfobj *elf; 1626 elfobj *elf;
1420 1627
1421 /* verify this is real ELF */ 1628 /* Verify this is a real ELF */
1422 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) { 1629 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1423 if (be_verbose > 2) printf("%s: not an ELF\n", filename); 1630 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1424 return ret; 1631 return 2;
1425 } 1632 }
1633
1634 /* Possibly filter based on ELF bitness */
1426 switch (match_bits) { 1635 switch (match_bits) {
1427 case 32: 1636 case 32:
1428 if (elf->elf_class != ELFCLASS32) 1637 if (elf->elf_class != ELFCLASS32)
1429 goto label_done; 1638 goto done;
1430 break; 1639 break;
1431 case 64: 1640 case 64:
1432 if (elf->elf_class != ELFCLASS64) 1641 if (elf->elf_class != ELFCLASS64)
1433 goto label_done; 1642 goto done;
1434 break; 1643 break;
1435 default: break;
1436 } 1644 }
1437 if (match_etypes) { 1645
1438 char sbuf[126]; 1646 /* Possibly filter based on the ELF's e_type field */
1439 strncpy(sbuf, match_etypes, sizeof(sbuf)); 1647 array_for_each(match_etypes, n, match_etype)
1440 if (strchr(match_etypes, ',') != NULL) {
1441 char *p;
1442 while ((p = strrchr(sbuf, ',')) != NULL) {
1443 *p = 0;
1444 if (etype_lookup(p+1) == get_etype(elf)) 1648 if (etype_lookup(match_etype) == get_etype(elf))
1445 goto label_ret; 1649 goto scanit;
1446 } 1650 if (array_cnt(match_etypes))
1447 }
1448 if (etype_lookup(sbuf) != get_etype(elf))
1449 goto label_done; 1651 goto done;
1450 }
1451 1652
1452label_ret: 1653 scanit:
1453 ret = scanelf_elfobj(elf); 1654 ret = scanelf_elfobj(elf);
1454 1655
1455label_done: 1656 done:
1456 unreadelf(elf); 1657 unreadelf(elf);
1457 return ret; 1658 return ret;
1458} 1659}
1459 1660
1460/* scan an archive of elfs */ 1661/* scan an archive of elfs */
1483 munmap(ar_buffer, len); 1684 munmap(ar_buffer, len);
1484 1685
1485 return 0; 1686 return 0;
1486} 1687}
1487/* scan a file which may be an elf or an archive or some other magical beast */ 1688/* scan a file which may be an elf or an archive or some other magical beast */
1488static int scanelf_file(const char *filename, const struct stat *st_cache) 1689static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1489{ 1690{
1490 const struct stat *st = st_cache; 1691 const struct stat *st = st_cache;
1491 struct stat symlink_st; 1692 struct stat symlink_st;
1492 int fd; 1693 int fd;
1493 1694
1494 /* always handle regular files and handle symlinked files if no -y */ 1695 /* always handle regular files and handle symlinked files if no -y */
1495 if (S_ISLNK(st->st_mode)) { 1696 if (S_ISLNK(st->st_mode)) {
1496 if (!scan_symlink) return 1; 1697 if (!scan_symlink)
1698 return 1;
1497 stat(filename, &symlink_st); 1699 fstatat(dir_fd, filename, &symlink_st, 0);
1498 st = &symlink_st; 1700 st = &symlink_st;
1499 } 1701 }
1500 1702
1501 if (!S_ISREG(st->st_mode)) { 1703 if (!S_ISREG(st->st_mode)) {
1502 if (be_verbose > 2) printf("%s: skipping non-file\n", filename); 1704 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1505 1707
1506 if (match_perms) { 1708 if (match_perms) {
1507 if ((st->st_mode | match_perms) != st->st_mode) 1709 if ((st->st_mode | match_perms) != st->st_mode)
1508 return 1; 1710 return 1;
1509 } 1711 }
1510 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1) 1712 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1713 if (fd == -1) {
1714 if (fix_elf && errno == ETXTBSY)
1715 warnp("%s: could not fix", filename);
1716 else if (be_verbose > 2)
1717 printf("%s: skipping file: %s\n", filename, strerror(errno));
1511 return 1; 1718 return 1;
1719 }
1512 1720
1513 if (scanelf_elf(filename, fd, st->st_size) == 1 && scan_archives) 1721 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1514 /* if it isn't an ELF, maybe it's an .a archive */ 1722 /* if it isn't an ELF, maybe it's an .a archive */
1723 if (scan_archives)
1515 scanelf_archive(filename, fd, st->st_size); 1724 scanelf_archive(filename, fd, st->st_size);
1516 1725
1726 /*
1727 * unreadelf() implicitly closes its fd, so only close it
1728 * when we are returning it in the non-ELF case
1729 */
1517 close(fd); 1730 close(fd);
1731 }
1732
1518 return 0; 1733 return 0;
1519} 1734}
1520 1735
1521static const char *maybe_add_root(const char *fname, char *buf)
1522{
1523 if (root && strncmp(fname, root, strlen(root))) {
1524 strcpy(buf, root);
1525 strncat(buf, fname, __PAX_UTILS_PATH_MAX - strlen(root) - 1);
1526 fname = buf;
1527 }
1528 return fname;
1529}
1530
1531/* scan a directory for ET_EXEC files and print when we find one */ 1736/* scan a directory for ET_EXEC files and print when we find one */
1532static int scanelf_dir(const char *path) 1737static int scanelf_dirat(int dir_fd, const char *path)
1533{ 1738{
1534 register DIR *dir; 1739 register DIR *dir;
1535 register struct dirent *dentry; 1740 register struct dirent *dentry;
1536 struct stat st_top, st; 1741 struct stat st_top, st;
1537 char buf[__PAX_UTILS_PATH_MAX]; 1742 char buf[__PAX_UTILS_PATH_MAX], *subpath;
1538 char _path[__PAX_UTILS_PATH_MAX];
1539 size_t pathlen = 0, len = 0; 1743 size_t pathlen = 0, len = 0;
1540 int ret = 0; 1744 int ret = 0;
1541 1745 int subdir_fd;
1542 path = maybe_add_root(path, _path);
1543 1746
1544 /* make sure path exists */ 1747 /* make sure path exists */
1545 if (lstat(path, &st_top) == -1) { 1748 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
1546 if (be_verbose > 2) printf("%s: does not exist\n", path); 1749 if (be_verbose > 2) printf("%s: does not exist\n", path);
1547 return 1; 1750 return 1;
1548 } 1751 }
1549 1752
1550 /* ok, if it isn't a directory, assume we can open it */ 1753 /* ok, if it isn't a directory, assume we can open it */
1551 if (!S_ISDIR(st_top.st_mode)) { 1754 if (!S_ISDIR(st_top.st_mode))
1552 return scanelf_file(path, &st_top); 1755 return scanelf_fileat(dir_fd, path, &st_top);
1553 }
1554 1756
1555 /* now scan the dir looking for fun stuff */ 1757 /* now scan the dir looking for fun stuff */
1556 if ((dir = opendir(path)) == NULL) { 1758 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
1557 warnf("could not opendir %s: %s", path, strerror(errno)); 1759 if (subdir_fd == -1)
1760 dir = NULL;
1761 else
1762 dir = fdopendir(subdir_fd);
1763 if (dir == NULL) {
1764 if (subdir_fd != -1)
1765 close(subdir_fd);
1766 else if (be_verbose > 2)
1767 printf("%s: skipping dir: %s\n", path, strerror(errno));
1558 return 1; 1768 return 1;
1559 } 1769 }
1560 if (be_verbose > 1) printf("%s: scanning dir\n", path); 1770 if (be_verbose > 1) printf("%s: scanning dir\n", path);
1561 1771
1562 pathlen = strlen(path); 1772 subpath = stpcpy(buf, path);
1773 if (subpath[-1] != '/')
1774 *subpath++ = '/';
1775 pathlen = subpath - buf;
1563 while ((dentry = readdir(dir))) { 1776 while ((dentry = readdir(dir))) {
1564 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1777 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
1565 continue; 1778 continue;
1779
1780 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
1781 continue;
1782
1566 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1783 len = strlen(dentry->d_name);
1567 if (len >= sizeof(buf)) { 1784 if (len + pathlen + 1 >= sizeof(buf)) {
1568 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1785 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
1569 (unsigned long)len, (unsigned long)sizeof(buf)); 1786 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
1570 continue; 1787 continue;
1571 } 1788 }
1572 snprintf(buf, sizeof(buf), "%s%s%s", path, (path[pathlen-1] == '/') ? "" : "/", dentry->d_name); 1789 memcpy(subpath, dentry->d_name, len);
1573 if (lstat(buf, &st) != -1) { 1790 subpath[len] = '\0';
1791
1574 if (S_ISREG(st.st_mode)) 1792 if (S_ISREG(st.st_mode))
1575 ret = scanelf_file(buf, &st); 1793 ret = scanelf_fileat(dir_fd, buf, &st);
1576 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1794 else if (dir_recurse && S_ISDIR(st.st_mode)) {
1577 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1795 if (dir_crossmount || (st_top.st_dev == st.st_dev))
1578 ret = scanelf_dir(buf); 1796 ret = scanelf_dirat(dir_fd, buf);
1579 }
1580 } 1797 }
1581 } 1798 }
1582 closedir(dir); 1799 closedir(dir);
1800
1583 return ret; 1801 return ret;
1584} 1802}
1803static int scanelf_dir(const char *path)
1804{
1805 return scanelf_dirat(root_fd, root_rel_path(path));
1806}
1585 1807
1586static int scanelf_from_file(const char *filename) 1808static int scanelf_from_file(const char *filename)
1587{ 1809{
1588 FILE *fp = NULL; 1810 FILE *fp;
1589 char *p; 1811 char *p, *path;
1590 char path[__PAX_UTILS_PATH_MAX]; 1812 size_t len;
1591 int ret = 0; 1813 int ret;
1592 1814
1593 if (strcmp(filename, "-") == 0) 1815 if (strcmp(filename, "-") == 0)
1594 fp = stdin; 1816 fp = stdin;
1595 else if ((fp = fopen(filename, "r")) == NULL) 1817 else if ((fp = fopen(filename, "r")) == NULL)
1596 return 1; 1818 return 1;
1597 1819
1598 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1820 path = NULL;
1821 len = 0;
1822 ret = 0;
1823 while (getline(&path, &len, fp) != -1) {
1599 if ((p = strchr(path, '\n')) != NULL) 1824 if ((p = strchr(path, '\n')) != NULL)
1600 *p = 0; 1825 *p = 0;
1601 search_path = path; 1826 search_path = path;
1602 ret = scanelf_dir(path); 1827 ret = scanelf_dir(path);
1603 } 1828 }
1829 free(path);
1830
1604 if (fp != stdin) 1831 if (fp != stdin)
1605 fclose(fp); 1832 fclose(fp);
1833
1606 return ret; 1834 return ret;
1607} 1835}
1608 1836
1609#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__) 1837#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1610 1838
1611static int load_ld_cache_config(int i, const char *fname) 1839static int _load_ld_cache_config(const char *fname)
1612{ 1840{
1613 FILE *fp = NULL; 1841 FILE *fp = NULL;
1614 char *p; 1842 char *p, *path;
1615 char path[__PAX_UTILS_PATH_MAX]; 1843 size_t len;
1616 char _fname[__PAX_UTILS_PATH_MAX]; 1844 int curr_fd = -1;
1617 1845
1618 fname = maybe_add_root(fname, _fname); 1846 fp = fopenat_r(root_fd, root_rel_path(fname));
1619 1847 if (fp == NULL)
1620 if ((fp = fopen(fname, "r")) == NULL)
1621 return i; 1848 return -1;
1622 1849
1623 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) { 1850 path = NULL;
1851 len = 0;
1852 while (getline(&path, &len, fp) != -1) {
1624 if ((p = strrchr(path, '\r')) != NULL) 1853 if ((p = strrchr(path, '\r')) != NULL)
1625 *p = 0; 1854 *p = 0;
1626 if ((p = strchr(path, '\n')) != NULL) 1855 if ((p = strchr(path, '\n')) != NULL)
1627 *p = 0; 1856 *p = 0;
1628 1857
1629 /* recursive includes of the same file will make this segfault. */ 1858 /* recursive includes of the same file will make this segfault. */
1630 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) { 1859 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1631 glob_t gl; 1860 glob_t gl;
1632 size_t x; 1861 size_t x;
1633 char gpath[__PAX_UTILS_PATH_MAX]; 1862 const char *gpath;
1634 1863
1635 memset(gpath, 0, sizeof(gpath)); 1864 /* re-use existing path buffer ... need to be creative */
1636 if (root)
1637 strcpy(gpath, root);
1638
1639 if (path[8] != '/') 1865 if (path[8] != '/')
1640 snprintf(gpath+strlen(gpath), sizeof(gpath)-strlen(gpath), "/etc/%s", &path[8]); 1866 gpath = memcpy(path + 3, "/etc/", 5);
1641 else 1867 else
1642 strncpy(gpath+strlen(gpath), &path[8], sizeof(gpath)-strlen(gpath)); 1868 gpath = path + 8;
1869 if (root_fd != AT_FDCWD) {
1870 if (curr_fd == -1) {
1871 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1872 if (fchdir(root_fd))
1873 errp("unable to change to root dir");
1874 }
1875 gpath = root_rel_path(gpath);
1876 }
1643 1877
1644 if (glob(gpath, 0, NULL, &gl) == 0) { 1878 if (glob(gpath, 0, NULL, &gl) == 0) {
1645 for (x = 0; x < gl.gl_pathc; ++x) { 1879 for (x = 0; x < gl.gl_pathc; ++x) {
1646 /* try to avoid direct loops */ 1880 /* try to avoid direct loops */
1647 if (strcmp(gl.gl_pathv[x], fname) == 0) 1881 if (strcmp(gl.gl_pathv[x], fname) == 0)
1648 continue; 1882 continue;
1649 i = load_ld_cache_config(i, gl.gl_pathv[x]); 1883 _load_ld_cache_config(gl.gl_pathv[x]);
1650 } 1884 }
1651 globfree(&gl); 1885 globfree(&gl);
1652 continue;
1653 } 1886 }
1887
1888 /* failed globs are ignored by glibc */
1889 continue;
1654 } 1890 }
1655 1891
1656 if (*path != '/') 1892 if (*path != '/')
1657 continue; 1893 continue;
1658 1894
1659 xarraypush(ldpaths, path, strlen(path)); 1895 xarraypush_str(ldpaths, path);
1660 } 1896 }
1897 free(path);
1661 1898
1662 fclose(fp); 1899 fclose(fp);
1900
1901 if (curr_fd != -1) {
1902 if (fchdir(curr_fd))
1903 {/* don't care */}
1904 close(curr_fd);
1905 }
1906
1663 return i; 1907 return 0;
1664} 1908}
1665 1909
1666#elif defined(__FreeBSD__) || defined(__DragonFly__) 1910#elif defined(__FreeBSD__) || defined(__DragonFly__)
1667 1911
1668static int load_ld_cache_config(int i, const char *fname) 1912static int _load_ld_cache_config(const char *fname)
1669{ 1913{
1670 FILE *fp = NULL; 1914 FILE *fp = NULL;
1671 char *b = NULL, *p; 1915 char *b = NULL, *p;
1672 struct elfhints_hdr hdr; 1916 struct elfhints_hdr hdr;
1673 char _fname[__PAX_UTILS_PATH_MAX];
1674 1917
1675 fname = maybe_add_root(fname, _fname); 1918 fp = fopenat_r(root_fd, root_rel_path(fname));
1676 1919 if (fp == NULL)
1677 if ((fp = fopen(fname, "r")) == NULL)
1678 return i; 1920 return -1;
1679 1921
1680 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) || 1922 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1681 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 || 1923 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1682 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1) 1924 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1683 { 1925 {
1684 fclose(fp); 1926 fclose(fp);
1685 return i; 1927 return -1;
1686 } 1928 }
1687 1929
1688 b = xmalloc(hdr.dirlistlen + 1); 1930 b = xmalloc(hdr.dirlistlen + 1);
1689 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) { 1931 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1690 fclose(fp); 1932 fclose(fp);
1691 free(b); 1933 free(b);
1692 return i; 1934 return -1;
1693 } 1935 }
1694 1936
1695 while ((p = strsep(&b, ":"))) { 1937 while ((p = strsep(&b, ":"))) {
1696 if (*p == '\0') 1938 if (*p == '\0')
1697 continue; 1939 continue;
1698 xarraypush(ldpaths, p, strlen(p)); 1940 xarraypush_str(ldpaths, p);
1699 } 1941 }
1700 1942
1701 free(b); 1943 free(b);
1702 fclose(fp); 1944 fclose(fp);
1703 return i; 1945 return 0;
1704} 1946}
1705 1947
1706#else 1948#else
1707#ifdef __ELF__ 1949#ifdef __ELF__
1708#warning Cache config support not implemented for your target 1950#warning Cache config support not implemented for your target
1709#endif 1951#endif
1710static int load_ld_cache_config(int i, const char *fname) 1952static int _load_ld_cache_config(const char *fname)
1711{ 1953{
1712 return 0; 1954 return 0;
1713} 1955}
1714#endif 1956#endif
1957
1958static void load_ld_cache_config(const char *fname)
1959{
1960 bool scan_l, scan_ul, scan_ull;
1961 size_t n;
1962 const char *ldpath;
1963
1964 _load_ld_cache_config(fname);
1965
1966 scan_l = scan_ul = scan_ull = false;
1967 array_for_each(ldpaths, n, ldpath) {
1968 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = true;
1969 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = true;
1970 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = true;
1971 }
1972
1973 if (!scan_l) xarraypush_str(ldpaths, "/lib");
1974 if (!scan_ul) xarraypush_str(ldpaths, "/usr/lib");
1975 if (!scan_ull) xarraypush_str(ldpaths, "/usr/local/lib");
1976}
1715 1977
1716/* scan /etc/ld.so.conf for paths */ 1978/* scan /etc/ld.so.conf for paths */
1717static void scanelf_ldpath(void) 1979static void scanelf_ldpath(void)
1718{ 1980{
1719 char scan_l, scan_ul, scan_ull;
1720 size_t n; 1981 size_t n;
1721 const char *ldpath; 1982 const char *ldpath;
1722 int i = 0;
1723 1983
1724 if (array_cnt(ldpaths) == 0)
1725 err("Unable to load any paths from ld.so.conf");
1726
1727 scan_l = scan_ul = scan_ull = 0;
1728
1729 array_for_each(ldpaths, n, ldpath) { 1984 array_for_each(ldpaths, n, ldpath)
1730 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = 1;
1731 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = 1;
1732 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = 1;
1733 scanelf_dir(ldpath); 1985 scanelf_dir(ldpath);
1734 ++i;
1735 }
1736
1737 if (!scan_l) scanelf_dir("/lib");
1738 if (!scan_ul) scanelf_dir("/usr/lib");
1739 if (!scan_ull) scanelf_dir("/usr/local/lib");
1740} 1986}
1741 1987
1742/* scan env PATH for paths */ 1988/* scan env PATH for paths */
1743static void scanelf_envpath(void) 1989static void scanelf_envpath(void)
1744{ 1990{
1761#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV" 2007#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
1762#define a_argument required_argument 2008#define a_argument required_argument
1763static struct option const long_opts[] = { 2009static struct option const long_opts[] = {
1764 {"path", no_argument, NULL, 'p'}, 2010 {"path", no_argument, NULL, 'p'},
1765 {"ldpath", no_argument, NULL, 'l'}, 2011 {"ldpath", no_argument, NULL, 'l'},
2012 {"use-ldpath",no_argument, NULL, 129},
1766 {"root", a_argument, NULL, 128}, 2013 {"root", a_argument, NULL, 128},
1767 {"recursive", no_argument, NULL, 'R'}, 2014 {"recursive", no_argument, NULL, 'R'},
1768 {"mount", no_argument, NULL, 'm'}, 2015 {"mount", no_argument, NULL, 'm'},
1769 {"symlink", no_argument, NULL, 'y'}, 2016 {"symlink", no_argument, NULL, 'y'},
1770 {"archives", no_argument, NULL, 'A'}, 2017 {"archives", no_argument, NULL, 'A'},
1805}; 2052};
1806 2053
1807static const char * const opts_help[] = { 2054static const char * const opts_help[] = {
1808 "Scan all directories in PATH environment", 2055 "Scan all directories in PATH environment",
1809 "Scan all directories in /etc/ld.so.conf", 2056 "Scan all directories in /etc/ld.so.conf",
2057 "Use ld.so.conf to show full path (use with -r/-n)",
1810 "Root directory (use with -l or -p)", 2058 "Root directory (use with -l or -p)",
1811 "Scan directories recursively", 2059 "Scan directories recursively",
1812 "Don't recursively cross mount points", 2060 "Don't recursively cross mount points",
1813 "Don't scan symlinks", 2061 "Don't scan symlinks",
1814 "Scan archives (.a files)", 2062 "Scan archives (.a files)",
1815 "Utilize ld.so.cache information (use with -r/-n)", 2063 "Utilize ld.so.cache to show full path (use with -r/-n)",
1816 "Try and 'fix' bad things (use with -r/-e)", 2064 "Try and 'fix' bad things (use with -r/-e)",
1817 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n", 2065 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1818 "Print PaX markings", 2066 "Print PaX markings",
1819 "Print GNU_STACK/PT_LOAD markings", 2067 "Print GNU_STACK/PT_LOAD markings",
1820 "Print TEXTREL information", 2068 "Print TEXTREL information",
1824 "Print BIND information", 2072 "Print BIND information",
1825 "Print SONAME information", 2073 "Print SONAME information",
1826 "Find a specified symbol", 2074 "Find a specified symbol",
1827 "Find a specified section", 2075 "Find a specified section",
1828 "Find a specified library", 2076 "Find a specified library",
1829 "Use regex matching rather than string compare (use with -s)", 2077 "Use regex rather than string compare (with -s); specify twice for case insensitive",
1830 "Locate cause of TEXTREL", 2078 "Locate cause of TEXTREL",
1831 "Print only ELF files matching etype ET_DYN,ET_EXEC ...", 2079 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1832 "Print only ELF files matching numeric bits", 2080 "Print only ELF files matching numeric bits",
1833 "Print Endianness", 2081 "Print Endianness",
1834 "Print OSABI", 2082 "Print OSABI",
1849}; 2097};
1850 2098
1851/* display usage and exit */ 2099/* display usage and exit */
1852static void usage(int status) 2100static void usage(int status)
1853{ 2101{
1854 unsigned long i; 2102 const char a_arg[] = "<arg>";
2103 size_t a_arg_len = strlen(a_arg) + 2;
2104 size_t i;
2105 int optlen;
1855 printf("* Scan ELF binaries for stuff\n\n" 2106 printf("* Scan ELF binaries for stuff\n\n"
1856 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0); 2107 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1857 printf("Options: -[%s]\n", PARSE_FLAGS); 2108 printf("Options: -[%s]\n", PARSE_FLAGS);
2109
2110 /* prescan the --long opt length to auto-align */
2111 optlen = 0;
1858 for (i = 0; long_opts[i].name; ++i) 2112 for (i = 0; long_opts[i].name; ++i) {
2113 int l = strlen(long_opts[i].name);
2114 if (long_opts[i].has_arg == a_argument)
2115 l += a_arg_len;
2116 optlen = max(l, optlen);
2117 }
2118
2119 for (i = 0; long_opts[i].name; ++i) {
2120 /* first output the short flag if it has one */
2121 if (long_opts[i].val > '~')
2122 printf(" ");
2123 else
2124 printf(" -%c, ", long_opts[i].val);
2125
2126 /* then the long flag */
1859 if (long_opts[i].has_arg == no_argument) 2127 if (long_opts[i].has_arg == no_argument)
1860 printf(" -%c, --%-14s* %s\n", long_opts[i].val, 2128 printf("--%-*s", optlen, long_opts[i].name);
1861 long_opts[i].name, opts_help[i]);
1862 else if (long_opts[i].val > '~')
1863 printf(" --%-7s <arg> * %s\n",
1864 long_opts[i].name, opts_help[i]);
1865 else 2129 else
1866 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val, 2130 printf("--%s %s %*s", long_opts[i].name, a_arg,
1867 long_opts[i].name, opts_help[i]); 2131 (int)(optlen - strlen(long_opts[i].name) - a_arg_len), "");
2132
2133 /* finally the help text */
2134 printf("* %s\n", opts_help[i]);
2135 }
1868 2136
1869 puts("\nFor more information, see the scanelf(1) manpage"); 2137 puts("\nFor more information, see the scanelf(1) manpage");
1870 exit(status); 2138 exit(status);
1871} 2139}
1872 2140
1877 flags |= PF_NO##flag; \ 2145 flags |= PF_NO##flag; \
1878 } else { \ 2146 } else { \
1879 flags &= ~PF_NO##flag; \ 2147 flags &= ~PF_NO##flag; \
1880 flags |= PF_##flag; \ 2148 flags |= PF_##flag; \
1881 } 2149 }
2150static void parse_delimited(array_t *arr, char *arg, const char *delim)
2151{
2152 char *ele = strtok(arg, delim);
2153 if (!ele) /* edge case: -s '' */
2154 xarraypush_str(arr, "");
2155 while (ele) {
2156 xarraypush_str(arr, ele);
2157 ele = strtok(NULL, delim);
2158 }
2159}
1882static int parseargs(int argc, char *argv[]) 2160static int parseargs(int argc, char *argv[])
1883{ 2161{
1884 int i; 2162 int i;
1885 const char *from_file = NULL; 2163 const char *from_file = NULL;
1886 int ret = 0; 2164 int ret = 0;
2165 char load_cache_config = 0;
1887 2166
1888 opterr = 0; 2167 opterr = 0;
1889 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2168 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1890 switch (i) { 2169 switch (i) {
1891 2170
1899 case 'f': 2178 case 'f':
1900 if (from_file) warn("You prob don't want to specify -f twice"); 2179 if (from_file) warn("You prob don't want to specify -f twice");
1901 from_file = optarg; 2180 from_file = optarg;
1902 break; 2181 break;
1903 case 'E': 2182 case 'E':
1904 match_etypes = optarg; 2183 /* historically, this was comma delimited */
2184 parse_delimited(match_etypes, optarg, ",");
1905 break; 2185 break;
1906 case 'M': 2186 case 'M':
1907 match_bits = atoi(optarg); 2187 match_bits = atoi(optarg);
1908 if (match_bits == 0) { 2188 if (match_bits == 0) {
1909 if (strcmp(optarg, "ELFCLASS32") == 0) 2189 if (strcmp(optarg, "ELFCLASS32") == 0)
1916 if (sscanf(optarg, "%o", &match_perms) == -1) 2196 if (sscanf(optarg, "%o", &match_perms) == -1)
1917 match_bits = 0; 2197 match_bits = 0;
1918 break; 2198 break;
1919 case 'o': { 2199 case 'o': {
1920 if (freopen(optarg, "w", stdout) == NULL) 2200 if (freopen(optarg, "w", stdout) == NULL)
1921 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2201 errp("Could not freopen(%s)", optarg);
1922 break; 2202 break;
1923 } 2203 }
1924 case 'k': 2204 case 'k':
1925 xarraypush(find_section_arr, optarg, strlen(optarg)); 2205 xarraypush_str(find_section_arr, optarg);
1926 break; 2206 break;
1927 case 's': { 2207 case 's':
1928 if (find_sym) warn("You prob don't want to specify -s twice"); 2208 /* historically, this was comma delimited */
1929 find_sym = optarg; 2209 parse_delimited(find_sym_arr, optarg, ",");
1930 break; 2210 break;
1931 }
1932 case 'N': 2211 case 'N':
1933 xarraypush(find_lib_arr, optarg, strlen(optarg)); 2212 xarraypush_str(find_lib_arr, optarg);
1934 break; 2213 break;
1935 case 'F': { 2214 case 'F': {
1936 if (out_format) warn("You prob don't want to specify -F twice"); 2215 if (out_format) warn("You prob don't want to specify -F twice");
1937 out_format = optarg; 2216 out_format = optarg;
1938 break; 2217 break;
1979 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)))) 2258 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1980 setpax = flags; 2259 setpax = flags;
1981 break; 2260 break;
1982 } 2261 }
1983 case 'Z': show_size = 1; break; 2262 case 'Z': show_size = 1; break;
1984 case 'g': g_match = 1; break; 2263 case 'g': ++g_match; break;
1985 case 'L': use_ldcache = 1; break; 2264 case 'L': load_cache_config = use_ldcache = 1; break;
1986 case 'y': scan_symlink = 0; break; 2265 case 'y': scan_symlink = 0; break;
1987 case 'A': scan_archives = 1; break; 2266 case 'A': scan_archives = 1; break;
1988 case 'C': color_init(true); break; 2267 case 'C': color_init(true); break;
1989 case 'B': show_banner = 0; break; 2268 case 'B': show_banner = 0; break;
1990 case 'l': scan_ldpath = 1; break; 2269 case 'l': load_cache_config = scan_ldpath = 1; break;
1991 case 'p': scan_envpath = 1; break; 2270 case 'p': scan_envpath = 1; break;
1992 case 'R': dir_recurse = 1; break; 2271 case 'R': dir_recurse = 1; break;
1993 case 'm': dir_crossmount = 0; break; 2272 case 'm': dir_crossmount = 0; break;
1994 case 'X': ++fix_elf; break; 2273 case 'X': ++fix_elf; break;
1995 case 'x': show_pax = 1; break; 2274 case 'x': show_pax = 1; break;
1999 case 'n': show_needed = 1; break; 2278 case 'n': show_needed = 1; break;
2000 case 'i': show_interp = 1; break; 2279 case 'i': show_interp = 1; break;
2001 case 'b': show_bind = 1; break; 2280 case 'b': show_bind = 1; break;
2002 case 'S': show_soname = 1; break; 2281 case 'S': show_soname = 1; break;
2003 case 'T': show_textrels = 1; break; 2282 case 'T': show_textrels = 1; break;
2004 case 'q': be_quiet = 1; break; 2283 case 'q': be_quiet = min(be_quiet, 20) + 1; break;
2005 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2284 case 'v': be_verbose = min(be_verbose, 20) + 1; break;
2006 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break; 2285 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
2007 case 'D': show_endian = 1; break; 2286 case 'D': show_endian = 1; break;
2008 case 'I': show_osabi = 1; break; 2287 case 'I': show_osabi = 1; break;
2009 case 'Y': show_eabi = 1; break; 2288 case 'Y': show_eabi = 1; break;
2010 case 128: 2289 case 128:
2011 root = optarg; 2290 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2291 if (root_fd == -1)
2292 err("Could not open root: %s", optarg);
2012 break; 2293 break;
2294 case 129: load_cache_config = use_ldpath = 1; break;
2013 case ':': 2295 case ':':
2014 err("Option '%c' is missing parameter", optopt); 2296 err("Option '%c' is missing parameter", optopt);
2015 case '?': 2297 case '?':
2016 err("Unknown option '%c' or argument missing", optopt); 2298 err("Unknown option '%c' or argument missing", optopt);
2017 default: 2299 default:
2018 err("Unhandled option '%c'; please report this", i); 2300 err("Unhandled option '%c'; please report this", i);
2019 } 2301 }
2020 } 2302 }
2021 if (show_textrels && be_verbose) { 2303 if (show_textrels && be_verbose)
2022 if (which("objdump") != NULL) 2304 objdump = which("objdump", "OBJDUMP");
2023 has_objdump = 1; 2305 /* precompile all the regexes */
2306 if (g_match) {
2307 regex_t preg;
2308 const char *this_sym;
2309 size_t n;
2310 int flags = REG_EXTENDED | REG_NOSUB | (g_match > 1 ? REG_ICASE : 0);
2311
2312 array_for_each(find_sym_arr, n, this_sym) {
2313 /* see scanelf_match_symname for logic info */
2314 switch (this_sym[0]) {
2315 case '%':
2316 while (*(this_sym++))
2317 if (*this_sym == '%') {
2318 ++this_sym;
2319 break;
2320 }
2321 break;
2322 case '+':
2323 case '-':
2324 ++this_sym;
2325 break;
2326 }
2327 if (*this_sym == '*')
2328 ++this_sym;
2329
2330 ret = regcomp(&preg, this_sym, flags);
2331 if (ret) {
2332 char err[256];
2333 regerror(ret, &preg, err, sizeof(err));
2334 err("regcomp of %s failed: %s", this_sym, err);
2335 }
2336 xarraypush(find_sym_regex_arr, &preg, sizeof(preg));
2337 }
2024 } 2338 }
2025 /* flatten arrays for display */ 2339 /* flatten arrays for display */
2026 if (array_cnt(find_lib_arr)) 2340 find_sym = array_flatten_str(find_sym_arr);
2027 find_lib = array_flatten_str(find_lib_arr); 2341 find_lib = array_flatten_str(find_lib_arr);
2028 if (array_cnt(find_section_arr))
2029 find_section = array_flatten_str(find_section_arr); 2342 find_section = array_flatten_str(find_section_arr);
2030 /* let the format option override all other options */ 2343 /* let the format option override all other options */
2031 if (out_format) { 2344 if (out_format) {
2032 show_pax = show_phdr = show_textrel = show_rpath = \ 2345 show_pax = show_phdr = show_textrel = show_rpath = \
2033 show_needed = show_interp = show_bind = show_soname = \ 2346 show_needed = show_interp = show_bind = show_soname = \
2034 show_textrels = show_perms = show_endian = show_size = \ 2347 show_textrels = show_perms = show_endian = show_size = \
2062 case 'i': show_interp = 1; break; 2375 case 'i': show_interp = 1; break;
2063 case 'b': show_bind = 1; break; 2376 case 'b': show_bind = 1; break;
2064 case 'S': show_soname = 1; break; 2377 case 'S': show_soname = 1; break;
2065 case 'T': show_textrels = 1; break; 2378 case 'T': show_textrels = 1; break;
2066 default: 2379 default:
2067 err("Invalid format specifier '%c' (byte %i)", 2380 err("invalid format specifier '%c' (byte %i)",
2068 out_format[i], i+1); 2381 out_format[i], i+1);
2069 } 2382 }
2070 } 2383 }
2071 2384
2072 /* construct our default format */ 2385 /* construct our default format */
2095 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2408 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
2096 } 2409 }
2097 if (be_verbose > 2) printf("Format: %s\n", out_format); 2410 if (be_verbose > 2) printf("Format: %s\n", out_format);
2098 2411
2099 /* now lets actually do the scanning */ 2412 /* now lets actually do the scanning */
2100 if (scan_ldpath || use_ldcache) 2413 if (load_cache_config)
2101 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG); 2414 load_ld_cache_config(__PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
2102 if (scan_ldpath) scanelf_ldpath(); 2415 if (scan_ldpath) scanelf_ldpath();
2103 if (scan_envpath) scanelf_envpath(); 2416 if (scan_envpath) scanelf_envpath();
2104 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath) 2417 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
2105 from_file = "-"; 2418 from_file = "-";
2106 if (from_file) { 2419 if (from_file) {
2112 while (optind < argc) { 2425 while (optind < argc) {
2113 search_path = argv[optind++]; 2426 search_path = argv[optind++];
2114 ret = scanelf_dir(search_path); 2427 ret = scanelf_dir(search_path);
2115 } 2428 }
2116 2429
2430#ifdef __PAX_UTILS_CLEANUP
2117 /* clean up */ 2431 /* clean up */
2118 xarrayfree(ldpaths); 2432 xarrayfree(ldpaths);
2433 xarrayfree(find_sym_arr);
2119 xarrayfree(find_lib_arr); 2434 xarrayfree(find_lib_arr);
2120 xarrayfree(find_section_arr); 2435 xarrayfree(find_section_arr);
2436 free(find_sym);
2121 free(find_lib); 2437 free(find_lib);
2122 free(find_section); 2438 free(find_section);
2439 {
2440 size_t n;
2441 regex_t *preg;
2442 array_for_each(find_sym_regex_arr, n, preg)
2443 regfree(preg);
2444 xarrayfree(find_sym_regex_arr);
2445 }
2123 2446
2124 if (ldcache != 0) 2447 if (ldcache != 0)
2125 munmap(ldcache, ldcache_size); 2448 munmap(ldcache, ldcache_size);
2449#endif
2450
2126 return ret; 2451 return ret;
2127} 2452}
2128 2453
2129static char **get_split_env(const char *envvar) 2454static char **get_split_env(const char *envvar)
2130{ 2455{
2187 ret = parseargs(argc, argv); 2512 ret = parseargs(argc, argv);
2188 fclose(stdout); 2513 fclose(stdout);
2189#ifdef __PAX_UTILS_CLEANUP 2514#ifdef __PAX_UTILS_CLEANUP
2190 cleanup(); 2515 cleanup();
2191 warn("The calls to add/delete heap should be off:\n" 2516 warn("The calls to add/delete heap should be off:\n"
2192 "\t- 1 due to the out_buffer not being freed in scanelf_file()\n" 2517 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2193 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD"); 2518 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
2194#endif 2519#endif
2195 return ret; 2520 return ret;
2196} 2521}
2197 2522

Legend:
Removed from v.1.229  
changed lines
  Added in v.1.268

  ViewVC Help
Powered by ViewVC 1.1.20