/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.77 Revision 1.239
1/* 1/*
2 * Copyright 2003-2005 Gentoo Foundation 2 * Copyright 2003-2007 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.77 2005/06/08 05:43:01 vapier Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.239 2012/01/23 22:28:17 vapier Exp $
5 * 5 *
6 ******************************************************************** 6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org>
7 * This program is free software; you can redistribute it and/or 7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org>
8 * modify it under the terms of the GNU General Public License as
9 * published by the Free Software Foundation; either version 2 of the
10 * License, or (at your option) any later version.
11 *
12 * This program is distributed in the hope that it will be useful, but
13 * WITHOUT ANY WARRANTY; without even the implied warranty of
14 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
15 * General Public License for more details.
16 *
17 * You should have received a copy of the GNU General Public License
18 * along with this program; if not, write to the Free Software
19 * Foundation, Inc., 59 Temple Place - Suite 330, Boston,
20 * MA 02111-1307, USA.
21 */ 8 */
22 9
23#include <stdio.h> 10static const char rcsid[] = "$Id: scanelf.c,v 1.239 2012/01/23 22:28:17 vapier Exp $";
24#include <stdlib.h> 11const char argv0[] = "scanelf";
25#include <sys/types.h> 12
26#include <libgen.h>
27#include <limits.h>
28#define __USE_GNU
29#include <string.h>
30#include <errno.h>
31#include <unistd.h>
32#include <sys/stat.h>
33#include <dirent.h>
34#include <getopt.h>
35#include <assert.h>
36#include "paxelf.h" 13#include "paxinc.h"
37 14
38static const char *rcsid = "$Id: scanelf.c,v 1.77 2005/06/08 05:43:01 vapier Exp $";
39#define argv0 "scanelf"
40
41#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
42
43
44 16
45/* prototypes */ 17/* prototypes */
46static void scanelf_file(const char *filename); 18static int file_matches_list(const char *filename, char **matchlist);
47static void scanelf_dir(const char *path);
48static void scanelf_ldpath();
49static void scanelf_envpath();
50static void usage(int status);
51static void parseargs(int argc, char *argv[]);
52static char *xstrdup(const char *s);
53static void *xmalloc(size_t size);
54static void xstrcat(char **dst, const char *src, size_t *curr_len);
55static inline void xchrcat(char **dst, const char append, size_t *curr_len);
56 19
57/* variables to control behavior */ 20/* variables to control behavior */
58static char *ldpaths[256]; 21static char *match_etypes = NULL;
22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
59static char scan_ldpath = 0; 23static char scan_ldpath = 0;
60static char scan_envpath = 0; 24static char scan_envpath = 0;
61static char scan_symlink = 1; 25static char scan_symlink = 1;
26static char scan_archives = 0;
62static char dir_recurse = 0; 27static char dir_recurse = 0;
63static char dir_crossmount = 1; 28static char dir_crossmount = 1;
64static char show_pax = 0; 29static char show_pax = 0;
30static char show_perms = 0;
31static char show_size = 0;
65static char show_phdr = 0; 32static char show_phdr = 0;
66static char show_textrel = 0; 33static char show_textrel = 0;
67static char show_rpath = 0; 34static char show_rpath = 0;
68static char show_needed = 0; 35static char show_needed = 0;
69static char show_interp = 0; 36static char show_interp = 0;
70static char show_bind = 0; 37static char show_bind = 0;
38static char show_soname = 0;
71static char show_textrels = 0; 39static char show_textrels = 0;
72static char show_banner = 1; 40static char show_banner = 1;
41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
73static char be_quiet = 0; 44static char be_quiet = 0;
74static char be_verbose = 0; 45static char be_verbose = 0;
75static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
76static char *find_sym = NULL, *versioned_symname = NULL; 47static char be_semi_verbose = 0;
48static char *find_sym = NULL;
77static char *find_lib = NULL; 49static char *find_lib = NULL;
50static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
51static char *find_section = NULL;
52static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
78static char *out_format = NULL; 53static char *out_format = NULL;
79static char *search_path = NULL; 54static char *search_path = NULL;
55static char fix_elf = 0;
56static char g_match = 0;
57static char use_ldcache = 0;
80 58
59static char **qa_textrels = NULL;
60static char **qa_execstack = NULL;
61static char **qa_wx_load = NULL;
62static int root_fd = AT_FDCWD;
81 63
64static int match_bits = 0;
65static unsigned int match_perms = 0;
66static void *ldcache = NULL;
67static size_t ldcache_size = 0;
68static unsigned long setpax = 0UL;
82 69
70static int has_objdump = 0;
71
72/* find the path to a file by name */
73static int bin_in_path(const char *fname)
74{
75 char fullpath[__PAX_UTILS_PATH_MAX];
76 char *path, *p;
77
78 path = getenv("PATH");
79 if (!path)
80 return 0;
81
82 while ((p = strrchr(path, ':')) != NULL) {
83 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
84 *p = 0;
85 if (access(fullpath, R_OK) != -1)
86 return 1;
87 }
88
89 return 0;
90}
91
92static FILE *fopenat_r(int dir_fd, const char *path)
93{
94 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
95 if (fd == -1)
96 return NULL;
97 return fdopen(fd, "re");
98}
99
100static const char *root_rel_path(const char *path)
101{
102 /*
103 * openat() will ignore the dirfd if path starts with
104 * a /, so consume all of that noise
105 *
106 * XXX: we don't handle relative paths like ../ that
107 * break out of the --root option, but for now, just
108 * don't do that :P.
109 */
110 if (root_fd != AT_FDCWD) {
111 while (*path == '/')
112 ++path;
113 if (*path == '\0')
114 path = ".";
115 }
116
117 return path;
118}
119
120/* 1 on failure. 0 otherwise */
121static int rematch(const char *regex, const char *match, int cflags)
122{
123 regex_t preg;
124 int ret;
125
126 if ((match == NULL) || (regex == NULL))
127 return EXIT_FAILURE;
128
129 if ((ret = regcomp(&preg, regex, cflags))) {
130 char err[256];
131
132 if (regerror(ret, &preg, err, sizeof(err)))
133 fprintf(stderr, "regcomp failed: %s", err);
134 else
135 fprintf(stderr, "regcomp failed");
136
137 return EXIT_FAILURE;
138 }
139 ret = regexec(&preg, match, 0, NULL, 0);
140 regfree(&preg);
141
142 return ret;
143}
144
83/* sub-funcs for scanelf_file() */ 145/* sub-funcs for scanelf_fileat() */
84static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 146static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
85{ 147{
86 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 148 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
149
150 /* debug sections */
151 void *symtab = elf_findsecbyname(elf, ".symtab");
152 void *strtab = elf_findsecbyname(elf, ".strtab");
153 /* runtime sections */
154 void *dynsym = elf_findsecbyname(elf, ".dynsym");
155 void *dynstr = elf_findsecbyname(elf, ".dynstr");
156
87#define GET_SYMTABS(B) \ 157#define GET_SYMTABS(B) \
88 if (elf->elf_class == ELFCLASS ## B) { \ 158 if (elf->elf_class == ELFCLASS ## B) { \
89 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \
90 /* debug sections */ \
91 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \
92 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \
93 /* runtime sections */ \
94 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \
95 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \
96 if (symtab && dynsym) { \ 159 if (symtab && dynsym) { \
160 Elf ## B ## _Shdr *esymtab = symtab; \
161 Elf ## B ## _Shdr *edynsym = dynsym; \
97 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 162 *sym = (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) ? symtab : dynsym; \
98 } else { \ 163 } else \
99 *sym = (void*)(symtab ? symtab : dynsym); \ 164 *sym = symtab ? symtab : dynsym; \
100 } \
101 if (strtab && dynstr) { \ 165 if (strtab && dynstr) { \
166 Elf ## B ## _Shdr *estrtab = strtab; \
167 Elf ## B ## _Shdr *edynstr = dynstr; \
102 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \ 168 *str = (EGET(estrtab->sh_size) > EGET(edynstr->sh_size)) ? strtab : dynstr; \
103 } else { \ 169 } else \
104 *tab = (void*)(strtab ? strtab : dynstr); \ 170 *str = strtab ? strtab : dynstr; \
105 } \
106 } 171 }
107 GET_SYMTABS(32) 172 GET_SYMTABS(32)
108 GET_SYMTABS(64) 173 GET_SYMTABS(64)
174
175 if (*sym && *str)
176 return;
177
178 /*
179 * damn, they're really going to make us work for it huh?
180 * reconstruct the section header info out of the dynamic
181 * tags so we can see what symbols this guy uses at runtime.
182 */
183#define GET_SYMTABS_DT(B) \
184 if (elf->elf_class == ELFCLASS ## B) { \
185 size_t i; \
186 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
187 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
188 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
189 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
190 Elf ## B ## _Dyn *dyn; \
191 Elf ## B ## _Off offset; \
192 \
193 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
194 vsym = vstr = vhash = vgnu_hash = 0; \
195 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
196 memset(&str_shdr, 0, sizeof(str_shdr)); \
197 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
198 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
199 continue; \
200 \
201 offset = EGET(phdr[i].p_offset); \
202 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
203 continue; \
204 \
205 dyn = DYN ## B (elf->vdata + offset); \
206 while (EGET(dyn->d_tag) != DT_NULL) { \
207 switch (EGET(dyn->d_tag)) { \
208 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
209 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
210 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
211 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
212 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
213 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
214 } \
215 ++dyn; \
216 } \
217 if (vsym && vstr) \
218 break; \
219 } \
220 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
221 return; \
222 \
223 /* calc offset into the ELF by finding the load addr of the syms */ \
224 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
225 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
226 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
227 offset = EGET(phdr[i].p_offset); \
228 \
229 if (EGET(phdr[i].p_type) != PT_LOAD) \
230 continue; \
231 \
232 if (vhash >= vaddr && vhash < vaddr + filesz) { \
233 /* Scan the hash table to see how many entries we have */ \
234 Elf32_Word max_sym_idx = 0; \
235 Elf32_Word *hashtbl = elf->vdata + offset + (vhash - vaddr); \
236 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
237 Elf32_Word nchains = EGET(hashtbl[1]); \
238 Elf32_Word *buckets = &hashtbl[2]; \
239 Elf32_Word *chains = &buckets[nbuckets]; \
240 Elf32_Word sym_idx; \
241 \
242 for (b = 0; b < nbuckets; ++b) { \
243 if (!buckets[b]) \
244 continue; \
245 for (sym_idx = buckets[b]; sym_idx < nchains && sym_idx; sym_idx = chains[sym_idx]) \
246 if (max_sym_idx < sym_idx) \
247 max_sym_idx = sym_idx; \
248 } \
249 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
250 } \
251 \
252 if (vsym >= vaddr && vsym < vaddr + filesz) { \
253 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
254 *sym = &sym_shdr; \
255 } \
256 \
257 if (vstr >= vaddr && vstr < vaddr + filesz) { \
258 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
259 *str = &str_shdr; \
260 } \
261 } \
262 }
263 GET_SYMTABS_DT(32)
264 GET_SYMTABS_DT(64)
109} 265}
266
110static char *scanelf_file_pax(elfobj *elf, char *found_pax) 267static char *scanelf_file_pax(elfobj *elf, char *found_pax)
111{ 268{
112 static char *paxflags;
113 static char ret[7]; 269 static char ret[7];
114 unsigned long i, shown; 270 unsigned long i, shown;
115
116 271
117 if (!show_pax) return NULL; 272 if (!show_pax) return NULL;
118 273
119 shown = 0; 274 shown = 0;
120 memset(&ret, 0, sizeof(ret)); 275 memset(&ret, 0, sizeof(ret));
125 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 280 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
126 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 281 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
127 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 282 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
128 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \ 283 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
129 continue; \ 284 continue; \
130 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 285 if (fix_elf && setpax) { \
286 /* set the paxctl flags */ \
287 ESET(phdr[i].p_flags, setpax); \
288 } \
289 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
131 continue; \ 290 continue; \
132 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 291 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
133 *found_pax = 1; \ 292 *found_pax = 1; \
134 ++shown; \ 293 ++shown; \
135 break; \ 294 break; \
137 } 296 }
138 SHOW_PAX(32) 297 SHOW_PAX(32)
139 SHOW_PAX(64) 298 SHOW_PAX(64)
140 } 299 }
141 300
301 if (fix_elf && setpax) {
302 /* set the chpax settings */
303 if (elf->elf_class == ELFCLASS32) {
304 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC)
305 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
306 } else {
307 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
308 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
309 }
310 }
311
142 /* fall back to EI_PAX if no PT_PAX was found */ 312 /* fall back to EI_PAX if no PT_PAX was found */
143 if (!*ret) { 313 if (!*ret) {
314 static char *paxflags;
144 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 315 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
145 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) { 316 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) {
146 *found_pax = 1; 317 *found_pax = 1;
147 return paxflags; 318 return (be_wewy_wewy_quiet ? NULL : paxflags);
148 } 319 }
149 strncpy(ret, paxflags, sizeof(ret)); 320 strncpy(ret, paxflags, sizeof(ret));
150 // ++shown;
151 } 321 }
152 322
153 if (be_quiet && !shown) 323 if (be_wewy_wewy_quiet || (be_quiet && !shown))
154 return NULL; 324 return NULL;
325 else
155 return ret; 326 return ret;
156
157} 327}
328
158static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 329static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
159{ 330{
160 static char ret[12]; 331 static char ret[12];
161 char *found; 332 char *found;
162 unsigned long i, off, shown, check_flags;
163 unsigned char multi_stack, multi_relro, multi_load; 333 unsigned long i, shown, multi_stack, multi_relro, multi_load;
334 int max_pt_load;
164 335
165 if (!show_phdr) return NULL; 336 if (!show_phdr) return NULL;
166 337
167 memcpy(ret, "--- --- ---\0", 12); 338 memcpy(ret, "--- --- ---\0", 12);
168 339
169 shown = 0; 340 shown = 0;
170 multi_stack = multi_relro = multi_load = 0; 341 multi_stack = multi_relro = multi_load = 0;
342 max_pt_load = elf_max_pt_load(elf);
171 343
172 if (elf->phdr) { 344#define NOTE_GNU_STACK ".note.GNU-stack"
173#define SHOW_PHDR(B) \ 345#define SHOW_PHDR(B) \
174 if (elf->elf_class == ELFCLASS ## B) { \ 346 if (elf->elf_class == ELFCLASS ## B) { \
175 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 347 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
348 Elf ## B ## _Off offset; \
349 uint32_t flags, check_flags; \
350 if (elf->phdr != NULL) { \
176 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 351 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
177 uint32_t flags; \
178 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 352 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
179 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 353 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
354 if (multi_stack++) \
180 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 355 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
356 if (file_matches_list(elf->filename, qa_execstack)) \
357 continue; \
181 found = found_phdr; \ 358 found = found_phdr; \
182 off = 0; \ 359 offset = 0; \
183 check_flags = PF_X; \ 360 check_flags = PF_X; \
184 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 361 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
362 if (multi_relro++) \
185 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 363 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
186 found = found_relro; \ 364 found = found_relro; \
187 off = 4; \ 365 offset = 4; \
188 check_flags = PF_X; \ 366 check_flags = PF_X; \
189 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 367 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
190 if (multi_load++ > 2) warnf("%s: more than 2 PT_LOAD's !?", elf->filename); \ 368 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
369 if (multi_load++ > max_pt_load) \
370 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
371 if (file_matches_list(elf->filename, qa_wx_load)) \
372 continue; \
191 found = found_load; \ 373 found = found_load; \
192 off = 8; \ 374 offset = 8; \
193 check_flags = PF_W|PF_X; \ 375 check_flags = PF_W|PF_X; \
194 } else \ 376 } else \
195 continue; \ 377 continue; \
196 flags = EGET(phdr[i].p_flags); \ 378 flags = EGET(phdr[i].p_flags); \
197 if (be_quiet && ((flags & check_flags) != check_flags)) \ 379 if (be_quiet && ((flags & check_flags) != check_flags)) \
198 continue; \ 380 continue; \
381 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
382 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
383 ret[3] = ret[7] = '!'; \
384 flags = EGET(phdr[i].p_flags); \
385 } \
199 memcpy(ret+off, gnu_short_stack_flags(flags), 3); \ 386 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
200 *found = 1; \ 387 *found = 1; \
201 ++shown; \ 388 ++shown; \
389 } \
390 } else if (elf->shdr != NULL) { \
391 /* no program headers which means this is prob an object file */ \
392 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
393 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
394 char *str; \
395 if ((void*)strtbl > elf->data_end) \
396 goto skip_this_shdr##B; \
397 check_flags = SHF_WRITE|SHF_EXECINSTR; \
398 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
399 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
400 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
401 str = elf->data + offset; \
402 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \
403 if (!strcmp(str, NOTE_GNU_STACK)) { \
404 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \
405 flags = EGET(shdr[i].sh_flags); \
406 if (be_quiet && ((flags & check_flags) != check_flags)) \
407 continue; \
408 ++*found_phdr; \
409 shown = 1; \
410 if (flags & SHF_WRITE) ret[0] = 'W'; \
411 if (flags & SHF_ALLOC) ret[1] = 'A'; \
412 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \
413 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \
414 break; \
415 } \
416 } \
417 skip_this_shdr##B: \
418 if (!multi_stack) { \
419 if (file_matches_list(elf->filename, qa_execstack)) \
420 return NULL; \
421 *found_phdr = 1; \
422 shown = 1; \
423 memcpy(ret, "!WX", 3); \
424 } \
202 } \ 425 } \
203 } 426 }
204 SHOW_PHDR(32) 427 SHOW_PHDR(32)
205 SHOW_PHDR(64) 428 SHOW_PHDR(64)
206 }
207 429
208 if (be_quiet && !shown) 430 if (be_wewy_wewy_quiet || (be_quiet && !shown))
209 return NULL; 431 return NULL;
210 else 432 else
211 return ret; 433 return ret;
212} 434}
435
436/*
437 * See if this ELF contains a DT_TEXTREL tag in any of its
438 * PT_DYNAMIC sections.
439 */
213static char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 440static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
214{ 441{
215 static char ret[] = "TEXTREL"; 442 static const char *ret = "TEXTREL";
216 unsigned long i; 443 unsigned long i;
217 444
218 if (!show_textrel) return NULL; 445 if (!show_textrel && !show_textrels) return NULL;
446
447 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
219 448
220 if (elf->phdr) { 449 if (elf->phdr) {
221#define SHOW_TEXTREL(B) \ 450#define SHOW_TEXTREL(B) \
222 if (elf->elf_class == ELFCLASS ## B) { \ 451 if (elf->elf_class == ELFCLASS ## B) { \
223 Elf ## B ## _Dyn *dyn; \ 452 Elf ## B ## _Dyn *dyn; \
224 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 453 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
225 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 454 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
226 Elf ## B ## _Off offset; \ 455 Elf ## B ## _Off offset; \
227 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 456 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
228 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 457 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
229 offset = EGET(phdr[i].p_offset); \ 458 offset = EGET(phdr[i].p_offset); \
230 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 459 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
231 dyn = DYN ## B (elf->data + offset); \ 460 dyn = DYN ## B (elf->vdata + offset); \
232 while (EGET(dyn->d_tag) != DT_NULL) { \ 461 while (EGET(dyn->d_tag) != DT_NULL) { \
233 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 462 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
234 *found_textrel = 1; \ 463 *found_textrel = 1; \
235 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 464 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
236 return (be_wewy_wewy_quiet ? NULL : ret); \ 465 return (be_wewy_wewy_quiet ? NULL : ret); \
243 } 472 }
244 473
245 if (be_quiet || be_wewy_wewy_quiet) 474 if (be_quiet || be_wewy_wewy_quiet)
246 return NULL; 475 return NULL;
247 else 476 else
248 return (char *)" - "; 477 return " - ";
249} 478}
479
480/*
481 * Scan the .text section to see if there are any relocations in it.
482 * Should rewrite this to check PT_LOAD sections that are marked
483 * Executable rather than the section named '.text'.
484 */
250static char *scanelf_file_textrels(elfobj *elf, char *found_textrels) 485static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
251{ 486{
252 unsigned long p, s, r, rmax; 487 unsigned long s, r, rmax;
253 void *symtab_void, *strtab_void; 488 void *symtab_void, *strtab_void, *text_void;
254 489
255 if (!show_textrels) return NULL; 490 if (!show_textrels) return NULL;
256 491
492 /* don't search for TEXTREL's if the ELF doesn't have any */
493 if (!*found_textrel) scanelf_file_textrel(elf, found_textrel);
494 if (!*found_textrel) return NULL;
495
257 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 496 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
497 text_void = elf_findsecbyname(elf, ".text");
258 498
259 if (symtab_void && strtab_void && elf->phdr && elf->shdr) { 499 if (symtab_void && strtab_void && text_void && elf->shdr) {
260#define SHOW_TEXTRELS(B) \ 500#define SHOW_TEXTRELS(B) \
261 if (elf->elf_class == ELFCLASS ## B) { \ 501 if (elf->elf_class == ELFCLASS ## B) { \
262 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 502 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
263 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
264 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 503 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
265 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 504 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
266 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 505 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
506 Elf ## B ## _Shdr *text = SHDR ## B (text_void); \
507 Elf ## B ## _Addr vaddr = EGET(text->sh_addr); \
508 uint ## B ## _t memsz = EGET(text->sh_size); \
267 Elf ## B ## _Rel *rel; \ 509 Elf ## B ## _Rel *rel; \
268 Elf ## B ## _Rela *rela; \ 510 Elf ## B ## _Rela *rela; \
269 /* search the section headers for relocations */ \ 511 /* search the section headers for relocations */ \
270 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 512 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
271 uint32_t sh_type = EGET(shdr[s].sh_type); \ 513 uint32_t sh_type = EGET(shdr[s].sh_type); \
272 if (sh_type == SHT_REL) { \ 514 if (sh_type == SHT_REL) { \
273 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 515 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
274 rela = NULL; \ 516 rela = NULL; \
275 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 517 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
276 } else if (sh_type == SHT_RELA) { \ 518 } else if (sh_type == SHT_RELA) { \
277 rel = NULL; \ 519 rel = NULL; \
278 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 520 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
279 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 521 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
280 } else \ 522 } else \
281 continue; \ 523 continue; \
282 /* search the program headers for PT_LOAD headers */ \
283 for (p = 0; p < EGET(ehdr->e_phnum); ++p) { \
284 Elf ## B ## _Addr vaddr; \
285 uint ## B ## _t memsz; \
286 if (EGET(phdr[p].p_type) != PT_LOAD) continue; \
287 if (EGET(phdr[p].p_flags) & PF_W) continue; \
288 vaddr = EGET(phdr[p].p_vaddr); \
289 memsz = EGET(phdr[p].p_memsz); \
290 *found_textrels = 1; \
291 /* now see if any of the relocs are in the PT_LOAD */ \ 524 /* now see if any of the relocs are in the .text */ \
292 for (r = 0; r < rmax; ++r) { \ 525 for (r = 0; r < rmax; ++r) { \
293 unsigned long sym_max; \ 526 unsigned long sym_max; \
294 Elf ## B ## _Addr offset_tmp; \ 527 Elf ## B ## _Addr offset_tmp; \
295 Elf ## B ## _Sym *func; \ 528 Elf ## B ## _Sym *func; \
296 Elf ## B ## _Sym *sym; \ 529 Elf ## B ## _Sym *sym; \
297 Elf ## B ## _Addr r_offset; \ 530 Elf ## B ## _Addr r_offset; \
298 uint ## B ## _t r_info; \ 531 uint ## B ## _t r_info; \
299 if (sh_type == SHT_REL) { \ 532 if (sh_type == SHT_REL) { \
300 r_offset = EGET(rel[r].r_offset); \ 533 r_offset = EGET(rel[r].r_offset); \
301 r_info = EGET(rel[r].r_info); \ 534 r_info = EGET(rel[r].r_info); \
302 } else { \ 535 } else { \
303 r_offset = EGET(rela[r].r_offset); \ 536 r_offset = EGET(rela[r].r_offset); \
304 r_info = EGET(rela[r].r_info); \ 537 r_info = EGET(rela[r].r_info); \
538 } \
539 /* make sure this relocation is inside of the .text */ \
540 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
541 if (be_verbose <= 2) continue; \
542 } else \
543 *found_textrels = 1; \
544 /* locate this relocation symbol name */ \
545 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
546 if ((void*)sym > elf->data_end) { \
547 warn("%s: corrupt ELF symbol", elf->filename); \
548 continue; \
549 } \
550 sym_max = ELF ## B ## _R_SYM(r_info); \
551 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
552 sym += sym_max; \
553 else \
554 sym = NULL; \
555 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
556 /* show the raw details about this reloc */ \
557 printf(" %s: ", elf->base_filename); \
558 if (sym && sym->st_name) \
559 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
560 else \
561 printf("(memory/data?)"); \
562 printf(" [0x%lX]", (unsigned long)r_offset); \
563 /* now try to find the closest symbol that this rel is probably in */ \
564 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
565 func = NULL; \
566 offset_tmp = 0; \
567 while (sym_max--) { \
568 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
569 func = sym; \
570 offset_tmp = EGET(sym->st_value); \
305 } \ 571 } \
306 /* make sure this relocation is inside of the .text */ \ 572 ++sym; \
307 if (r_offset < vaddr || r_offset >= vaddr + memsz) continue; \ 573 } \
308 /* locate this relocation symbol name */ \ 574 printf(" in "); \
309 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 575 if (func && func->st_name) { \
310 sym_max = ELF ## B ## _R_SYM(r_info); \ 576 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
311 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 577 if (r_offset > EGET(func->st_size)) \
312 sym += sym_max; \ 578 printf("(optimized out: previous %s)", func_name); \
313 else \ 579 else \
314 sym = NULL; \ 580 printf("%s", func_name); \
315 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
316 /* show the raw details about this reloc */ \
317 printf("\tTEXTREL %s: ", elf->base_filename); \
318 if (sym && sym->st_name) \
319 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \
320 else \ 581 } else \
321 printf("(NULL: fake?)"); \ 582 printf("(optimized out)"); \
322 printf(" [0x%lX]", (unsigned long)r_offset); \
323 /* now try to find the closest symbol that this rel is probably in */ \
324 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
325 func = NULL; \
326 offset_tmp = 0; \
327 while (sym_max--) { \
328 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
329 func = sym; \
330 offset_tmp = EGET(sym->st_value); \
331 } \
332 ++sym; \
333 } \
334 printf(" in "); \
335 if (func && func->st_name) \
336 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \
337 else \
338 printf("(NULL: fake?)"); \
339 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 583 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
584 if (be_verbose && has_objdump) { \
585 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
586 char *sysbuf; \
587 size_t syslen; \
588 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
589 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
590 sysbuf = xmalloc(syslen); \
591 if (end_addr < r_offset) \
592 /* not uncommon when things are optimized out */ \
593 end_addr = r_offset + 0x100; \
594 snprintf(sysbuf, syslen, sysfmt, \
595 (unsigned long)offset_tmp, \
596 (unsigned long)end_addr, \
597 elf->filename, \
598 (unsigned long)r_offset); \
599 fflush(stdout); \
600 if (system(sysbuf)) /* don't care */; \
601 fflush(stdout); \
602 free(sysbuf); \
340 } \ 603 } \
341 } \ 604 } \
342 } } 605 } }
343 SHOW_TEXTRELS(32) 606 SHOW_TEXTRELS(32)
344 SHOW_TEXTRELS(64) 607 SHOW_TEXTRELS(64)
345 } 608 }
609 if (!*found_textrels)
610 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
346 611
347 return NULL; 612 return NULL;
348} 613}
614
615static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
616{
617 struct stat st;
618 switch (*item) {
619 case '/': break;
620 case '.':
621 warnf("Security problem with relative %s '%s' in %s", dt_type, item, elf->filename);
622 break;
623 case ':':
624 case '\0':
625 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
626 break;
627 case '$':
628 if (fstat(elf->fd, &st) != -1)
629 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
630 warnf("Security problem with %s='%s' in %s with mode set of %o",
631 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
632 break;
633 default:
634 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
635 break;
636 }
637}
349static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 638static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
350{ 639{
351 unsigned long i, s; 640 unsigned long i;
352 char *rpath, *runpath, **r; 641 char *rpath, *runpath, **r;
353 void *strtbl_void; 642 void *strtbl_void;
354 643
355 if (!show_rpath) return; 644 if (!show_rpath) return;
356 645
367 Elf ## B ## _Off offset; \ 656 Elf ## B ## _Off offset; \
368 Elf ## B ## _Xword word; \ 657 Elf ## B ## _Xword word; \
369 /* Scan all the program headers */ \ 658 /* Scan all the program headers */ \
370 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 659 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
371 /* Just scan dynamic headers */ \ 660 /* Just scan dynamic headers */ \
372 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 661 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
373 offset = EGET(phdr[i].p_offset); \ 662 offset = EGET(phdr[i].p_offset); \
374 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 663 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
375 /* Just scan dynamic RPATH/RUNPATH headers */ \ 664 /* Just scan dynamic RPATH/RUNPATH headers */ \
376 dyn = DYN ## B (elf->data + offset); \ 665 dyn = DYN ## B (elf->vdata + offset); \
377 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 666 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
378 if (word == DT_RPATH) { \ 667 if (word == DT_RPATH) { \
379 r = &rpath; \ 668 r = &rpath; \
380 } else if (word == DT_RUNPATH) { \ 669 } else if (word == DT_RUNPATH) { \
381 r = &runpath; \ 670 r = &runpath; \
385 } \ 674 } \
386 /* Verify the memory is somewhat sane */ \ 675 /* Verify the memory is somewhat sane */ \
387 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 676 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
388 if (offset < (Elf ## B ## _Off)elf->len) { \ 677 if (offset < (Elf ## B ## _Off)elf->len) { \
389 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 678 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
390 *r = (char*)(elf->data + offset); \ 679 *r = elf->data + offset; \
680 /* cache the length in case we need to nuke this section later on */ \
681 if (fix_elf) \
682 offset = strlen(*r); \
391 /* If quiet, don't output paths in ld.so.conf */ \ 683 /* If quiet, don't output paths in ld.so.conf */ \
392 if (be_quiet) { \ 684 if (be_quiet) { \
393 size_t len; \ 685 size_t len; \
394 char *start, *end; \ 686 char *start, *end; \
395 /* note that we only 'chop' off leading known paths. */ \ 687 /* note that we only 'chop' off leading known paths. */ \
396 /* since *r is read-only memory, we can only move the ptr forward. */ \ 688 /* since *r is read-only memory, we can only move the ptr forward. */ \
397 start = *r; \ 689 start = *r; \
398 /* scan each path in : delimited list */ \ 690 /* scan each path in : delimited list */ \
399 while (start) { \ 691 while (start) { \
692 rpath_security_checks(elf, start, get_elfdtype(word)); \
400 end = strchr(start, ':'); \ 693 end = strchr(start, ':'); \
401 len = (end ? abs(end - start) : strlen(start)); \ 694 len = (end ? abs(end - start) : strlen(start)); \
402 for (s = 0; ldpaths[s]; ++s) { \ 695 if (use_ldcache) { \
696 size_t n; \
697 const char *ldpath; \
698 array_for_each(ldpaths, n, ldpath) \
403 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 699 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
404 *r = (end ? end + 1 : NULL); \ 700 *r = end; \
701 /* corner case ... if RPATH reads "/usr/lib:", we want \
702 * to show ':' rather than '' */ \
703 if (end && end[1] != '\0') \
704 (*r)++; \
405 break; \ 705 break; \
406 } \ 706 } \
407 } \ 707 } \
408 if (!*r || !ldpaths[s] || !end) \ 708 if (!*r || !end) \
409 start = NULL; \ 709 break; \
410 else \ 710 else \
411 start = start + len + 1; \ 711 start = start + len + 1; \
412 } \ 712 } \
413 } \ 713 } \
714 if (*r) { \
715 if (fix_elf > 2 || (fix_elf && **r == '\0')) { \
716 /* just nuke it */ \
717 nuke_it##B: \
718 memset(*r, 0x00, offset); \
719 *r = NULL; \
720 ESET(dyn->d_tag, DT_DEBUG); \
721 ESET(dyn->d_un.d_ptr, 0); \
722 } else if (fix_elf) { \
723 /* try to clean "bad" paths */ \
724 size_t len, tmpdir_len; \
725 char *start, *end; \
726 const char *tmpdir; \
727 start = *r; \
728 tmpdir = (getenv("TMPDIR") ? : "."); \
729 tmpdir_len = strlen(tmpdir); \
730 while (1) { \
731 end = strchr(start, ':'); \
732 if (start == end) { \
733 eat_this_path##B: \
734 len = strlen(end); \
735 memmove(start, end+1, len); \
736 start[len-1] = '\0'; \
737 end = start - 1; \
738 } else if (tmpdir && !strncmp(start, tmpdir, tmpdir_len)) { \
739 if (!end) { \
740 if (start == *r) \
741 goto nuke_it##B; \
742 *--start = '\0'; \
743 } else \
744 goto eat_this_path##B; \
745 } \
746 if (!end) \
747 break; \
748 start = end + 1; \
749 } \
750 if (**r == '\0') \
751 goto nuke_it##B; \
752 } \
753 if (*r) \
414 if (*r) *found_rpath = 1; \ 754 *found_rpath = 1; \
755 } \
415 } \ 756 } \
416 ++dyn; \ 757 ++dyn; \
417 } \ 758 } \
418 } } 759 } }
419 SHOW_RPATH(32) 760 SHOW_RPATH(32)
436 } else if (rpath || runpath) 777 } else if (rpath || runpath)
437 xstrcat(ret, (runpath ? runpath : rpath), ret_len); 778 xstrcat(ret, (runpath ? runpath : rpath), ret_len);
438 else if (!be_quiet) 779 else if (!be_quiet)
439 xstrcat(ret, " - ", ret_len); 780 xstrcat(ret, " - ", ret_len);
440} 781}
782
783#define LDSO_CACHE_MAGIC "ld.so-"
784#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
785#define LDSO_CACHE_VER "1.7.0"
786#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
787#define FLAG_ANY -1
788#define FLAG_TYPE_MASK 0x00ff
789#define FLAG_LIBC4 0x0000
790#define FLAG_ELF 0x0001
791#define FLAG_ELF_LIBC5 0x0002
792#define FLAG_ELF_LIBC6 0x0003
793#define FLAG_REQUIRED_MASK 0xff00
794#define FLAG_SPARC_LIB64 0x0100
795#define FLAG_IA64_LIB64 0x0200
796#define FLAG_X8664_LIB64 0x0300
797#define FLAG_S390_LIB64 0x0400
798#define FLAG_POWERPC_LIB64 0x0500
799#define FLAG_MIPS64_LIBN32 0x0600
800#define FLAG_MIPS64_LIBN64 0x0700
801
802#if defined(__GLIBC__) || defined(__UCLIBC__)
803
804static char *lookup_cache_lib(elfobj *elf, char *fname)
805{
806 int fd;
807 char *strs;
808 static char buf[__PAX_UTILS_PATH_MAX] = "";
809 const char *cachefile = root_rel_path("/etc/ld.so.cache");
810 struct stat st;
811
812 typedef struct {
813 char magic[LDSO_CACHE_MAGIC_LEN];
814 char version[LDSO_CACHE_VER_LEN];
815 int nlibs;
816 } header_t;
817 header_t *header;
818
819 typedef struct {
820 int flags;
821 int sooffset;
822 int liboffset;
823 } libentry_t;
824 libentry_t *libent;
825
826 if (fname == NULL)
827 return NULL;
828
829 if (ldcache == NULL) {
830 if (fstatat(root_fd, cachefile, &st, 0))
831 return NULL;
832
833 fd = openat(root_fd, cachefile, O_RDONLY);
834 if (fd == -1)
835 return NULL;
836
837 /* cache these values so we only map/unmap the cache file once */
838 ldcache_size = st.st_size;
839 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
840 close(fd);
841
842 if (ldcache == MAP_FAILED) {
843 ldcache = NULL;
844 return NULL;
845 }
846
847 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
848 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
849 {
850 munmap(ldcache, ldcache_size);
851 ldcache = NULL;
852 return NULL;
853 }
854 } else
855 header = ldcache;
856
857 libent = ldcache + sizeof(header_t);
858 strs = (char *) &libent[header->nlibs];
859
860 for (fd = 0; fd < header->nlibs; ++fd) {
861 /* This should be more fine grained, but for now we assume that
862 * diff arches will not be cached together, and we ignore the
863 * the different multilib mips cases.
864 */
865 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
866 continue;
867 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
868 continue;
869
870 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
871 continue;
872
873 /* Return first hit because that is how the ldso rolls */
874 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
875 break;
876 }
877
878 return buf;
879}
880
881#elif defined(__NetBSD__)
882static char *lookup_cache_lib(elfobj *elf, char *fname)
883{
884 static char buf[__PAX_UTILS_PATH_MAX] = "";
885 static struct stat st;
886 size_t n;
887 char *ldpath;
888
889 array_for_each(ldpath, n, ldpath) {
890 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
891 continue; /* if the pathname is too long, or something went wrong, ignore */
892
893 if (stat(buf, &st) != 0)
894 continue; /* if the lib doesn't exist in *ldpath, look further */
895
896 /* NetBSD doesn't actually do sanity checks, it just loads the file
897 * and if that doesn't work, continues looking in other directories.
898 * This cannot easily be safely emulated, unfortunately. For now,
899 * just assume that if it exists, it's a valid library. */
900
901 return buf;
902 }
903
904 /* not found in any path */
905 return NULL;
906}
907#else
908#ifdef __ELF__
909#warning Cache support not implemented for your target
910#endif
911static char *lookup_cache_lib(elfobj *elf, char *fname)
912{
913 return NULL;
914}
915#endif
916
441static char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 917static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
442{ 918{
443 unsigned long i; 919 unsigned long i;
444 char *needed; 920 char *needed;
445 void *strtbl_void; 921 void *strtbl_void;
922 char *p;
446 923
924 /*
925 * -n -> op==0 -> print all
926 * -N -> op==1 -> print requested
927 */
447 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 928 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
929 return NULL;
448 930
449 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 931 strtbl_void = elf_findsecbyname(elf, ".dynstr");
450 932
451 if (elf->phdr && strtbl_void) { 933 if (elf->phdr && strtbl_void) {
452#define SHOW_NEEDED(B) \ 934#define SHOW_NEEDED(B) \
454 Elf ## B ## _Dyn *dyn; \ 936 Elf ## B ## _Dyn *dyn; \
455 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 937 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
456 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 938 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
457 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 939 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
458 Elf ## B ## _Off offset; \ 940 Elf ## B ## _Off offset; \
941 size_t matched = 0; \
942 /* Walk all the program headers to find the PT_DYNAMIC */ \
459 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 943 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
460 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 944 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
945 continue; \
461 offset = EGET(phdr[i].p_offset); \ 946 offset = EGET(phdr[i].p_offset); \
462 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 947 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
948 continue; \
949 /* Walk all the dynamic tags to find NEEDED entries */ \
463 dyn = DYN ## B (elf->data + offset); \ 950 dyn = DYN ## B (elf->vdata + offset); \
464 while (EGET(dyn->d_tag) != DT_NULL) { \ 951 while (EGET(dyn->d_tag) != DT_NULL) { \
465 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 952 if (EGET(dyn->d_tag) == DT_NEEDED) { \
466 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 953 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
467 if (offset >= (Elf ## B ## _Off)elf->len) { \ 954 if (offset >= (Elf ## B ## _Off)elf->len) { \
468 ++dyn; \ 955 ++dyn; \
469 continue; \ 956 continue; \
470 } \ 957 } \
471 needed = (char*)(elf->data + offset); \ 958 needed = elf->data + offset; \
472 if (op == 0) { \ 959 if (op == 0) { \
960 /* -n -> print all entries */ \
473 if (!be_wewy_wewy_quiet) { \ 961 if (!be_wewy_wewy_quiet) { \
474 if (*found_needed) xchrcat(ret, ',', ret_len); \ 962 if (*found_needed) xchrcat(ret, ',', ret_len); \
963 if (use_ldcache) \
964 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
965 needed = p; \
475 xstrcat(ret, needed, ret_len); \ 966 xstrcat(ret, needed, ret_len); \
476 } \ 967 } \
477 *found_needed = 1; \ 968 *found_needed = 1; \
478 } else { \ 969 } else { \
479 if (strcmp(find_lib, needed)) return NULL; \ 970 /* -N -> print matching entries */ \
971 size_t n; \
972 const char *find_lib_name; \
973 \
974 array_for_each(find_lib_arr, n, find_lib_name) { \
975 int invert = 1; \
976 if (find_lib_name[0] == '!') \
977 invert = 0, ++find_lib_name; \
978 if (!strcmp(find_lib_name, needed) == invert) \
979 ++matched; \
980 } \
981 \
982 if (matched == array_cnt(find_lib_arr)) { \
480 *found_lib = 1; \ 983 *found_lib = 1; \
481 return (be_wewy_wewy_quiet ? NULL : find_lib); \ 984 return (be_wewy_wewy_quiet ? NULL : find_lib); \
985 } \
482 } \ 986 } \
483 } \ 987 } \
484 ++dyn; \ 988 ++dyn; \
485 } \ 989 } \
486 } } 990 } }
487 SHOW_NEEDED(32) 991 SHOW_NEEDED(32)
488 SHOW_NEEDED(64) 992 SHOW_NEEDED(64)
993 if (op == 0 && !*found_needed && be_verbose)
994 warn("ELF lacks DT_NEEDED sections: %s", elf->filename);
489 } 995 }
490 996
491 return NULL; 997 return NULL;
492} 998}
493static char *scanelf_file_interp(elfobj *elf, char *found_interp) 999static char *scanelf_file_interp(elfobj *elf, char *found_interp)
512} 1018}
513static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1019static char *scanelf_file_bind(elfobj *elf, char *found_bind)
514{ 1020{
515 unsigned long i; 1021 unsigned long i;
516 struct stat s; 1022 struct stat s;
1023 char dynamic = 0;
517 1024
518 if (!show_bind) return NULL; 1025 if (!show_bind) return NULL;
519 if (!elf->phdr) return NULL; 1026 if (!elf->phdr) return NULL;
520 1027
521#define SHOW_BIND(B) \ 1028#define SHOW_BIND(B) \
523 Elf ## B ## _Dyn *dyn; \ 1030 Elf ## B ## _Dyn *dyn; \
524 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1031 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
525 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1032 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
526 Elf ## B ## _Off offset; \ 1033 Elf ## B ## _Off offset; \
527 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1034 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
528 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1035 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
1036 dynamic = 1; \
529 offset = EGET(phdr[i].p_offset); \ 1037 offset = EGET(phdr[i].p_offset); \
530 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1038 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
531 dyn = DYN ## B (elf->data + offset); \ 1039 dyn = DYN ## B (elf->vdata + offset); \
532 while (EGET(dyn->d_tag) != DT_NULL) { \ 1040 while (EGET(dyn->d_tag) != DT_NULL) { \
533 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1041 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
534 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 1042 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
535 { \ 1043 { \
536 if (be_quiet) return NULL; \ 1044 if (be_quiet) return NULL; \
544 SHOW_BIND(32) 1052 SHOW_BIND(32)
545 SHOW_BIND(64) 1053 SHOW_BIND(64)
546 1054
547 if (be_wewy_wewy_quiet) return NULL; 1055 if (be_wewy_wewy_quiet) return NULL;
548 1056
1057 /* don't output anything if quiet mode and the ELF is static or not setuid */
549 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 1058 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
550 return NULL; 1059 return NULL;
551 } else { 1060 } else {
552 *found_bind = 1; 1061 *found_bind = 1;
553 return (char *) "LAZY"; 1062 return (char *)(dynamic ? "LAZY" : "STATIC");
554 } 1063 }
555} 1064}
556static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1065static char *scanelf_file_soname(elfobj *elf, char *found_soname)
557{ 1066{
558 unsigned long i; 1067 unsigned long i;
1068 char *soname;
1069 void *strtbl_void;
1070
1071 if (!show_soname) return NULL;
1072
1073 strtbl_void = elf_findsecbyname(elf, ".dynstr");
1074
1075 if (elf->phdr && strtbl_void) {
1076#define SHOW_SONAME(B) \
1077 if (elf->elf_class == ELFCLASS ## B) { \
1078 Elf ## B ## _Dyn *dyn; \
1079 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
1080 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
1081 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
1082 Elf ## B ## _Off offset; \
1083 /* only look for soname in shared objects */ \
1084 if (EGET(ehdr->e_type) != ET_DYN) \
1085 return NULL; \
1086 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
1087 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
1088 offset = EGET(phdr[i].p_offset); \
1089 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
1090 dyn = DYN ## B (elf->vdata + offset); \
1091 while (EGET(dyn->d_tag) != DT_NULL) { \
1092 if (EGET(dyn->d_tag) == DT_SONAME) { \
1093 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
1094 if (offset >= (Elf ## B ## _Off)elf->len) { \
1095 ++dyn; \
1096 continue; \
1097 } \
1098 soname = elf->data + offset; \
1099 *found_soname = 1; \
1100 return (be_wewy_wewy_quiet ? NULL : soname); \
1101 } \
1102 ++dyn; \
1103 } \
1104 } }
1105 SHOW_SONAME(32)
1106 SHOW_SONAME(64)
1107 }
1108
1109 return NULL;
1110}
1111
1112/*
1113 * We support the symbol form:
1114 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
1115 * If the symbol name is empty, then all symbols are matched.
1116 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1117 * Do not rely on this output format at all.
1118 * Otherwise the symbol name is used to search (either regex or string compare).
1119 * If the first char of the symbol name is a plus ("+"), then only match
1120 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1121 * Putting modifiers in between the percent signs allows for more in depth
1122 * filters. There are groups of modifiers. If you don't specify a member
1123 * of a group, then all types in that group are matched. The current
1124 * groups and their types are:
1125 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1126 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1127 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1128 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1129 * You can search for multiple symbols at once by seperating with a comma (",").
1130 *
1131 * Some examples:
1132 * ELFs with a weak function "foo":
1133 * scanelf -s %wf%foo <ELFs>
1134 * ELFs that define the symbol "main":
1135 * scanelf -s +main <ELFs>
1136 * scanelf -s %d%main <ELFs>
1137 * ELFs that refer to the undefined symbol "brk":
1138 * scanelf -s -brk <ELFs>
1139 * scanelf -s %u%brk <ELFs>
1140 * All global defined objects in an ELF:
1141 * scanelf -s %ogd% <ELF>
1142 */
1143static void
1144scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1145 unsigned int stt, unsigned int stb, unsigned int shn, unsigned long size)
1146{
1147 char *this_sym, *next_sym, saved = saved;
1148
1149 /* allow the user to specify a comma delimited list of symbols to search for */
1150 next_sym = NULL;
1151 do {
1152 bool inc_notype, inc_object, inc_func, inc_file,
1153 inc_local, inc_global, inc_weak,
1154 inc_def, inc_undef, inc_abs, inc_common;
1155
1156 if (next_sym) {
1157 next_sym[-1] = saved;
1158 this_sym = next_sym;
1159 } else
1160 this_sym = find_sym;
1161 if ((next_sym = strchr(this_sym, ','))) {
1162 /* make parsing easier by killing the comma temporarily */
1163 saved = *next_sym;
1164 *next_sym = '\0';
1165 next_sym += 1;
1166 }
1167
1168 /* symbol selection! */
1169 inc_notype = inc_object = inc_func = inc_file = \
1170 inc_local = inc_global = inc_weak = \
1171 inc_def = inc_undef = inc_abs = inc_common = \
1172 (*this_sym != '%');
1173
1174 /* parse the contents of %...% */
1175 if (!inc_notype) {
1176 while (*(this_sym++)) {
1177 if (*this_sym == '%') {
1178 ++this_sym;
1179 break;
1180 }
1181 switch (*this_sym) {
1182 case 'n': inc_notype = true; break;
1183 case 'o': inc_object = true; break;
1184 case 'f': inc_func = true; break;
1185 case 'F': inc_file = true; break;
1186 case 'l': inc_local = true; break;
1187 case 'g': inc_global = true; break;
1188 case 'w': inc_weak = true; break;
1189 case 'd': inc_def = true; break;
1190 case 'u': inc_undef = true; break;
1191 case 'a': inc_abs = true; break;
1192 case 'c': inc_common = true; break;
1193 default: err("invalid symbol selector '%c'", *this_sym);
1194 }
1195 }
1196
1197 /* If no types are matched, not match all */
1198 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1199 inc_notype = inc_object = inc_func = inc_file = true;
1200 if (!inc_local && !inc_global && !inc_weak)
1201 inc_local = inc_global = inc_weak = true;
1202 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1203 inc_def = inc_undef = inc_abs = inc_common = true;
1204
1205 /* backwards compat for defined/undefined short hand */
1206 } else if (*this_sym == '+') {
1207 inc_undef = false;
1208 ++this_sym;
1209 } else if (*this_sym == '-') {
1210 inc_def = inc_abs = inc_common = false;
1211 ++this_sym;
1212 }
1213
1214 /* filter symbols */
1215 if ((!inc_notype && stt == STT_NOTYPE) || \
1216 (!inc_object && stt == STT_OBJECT) || \
1217 (!inc_func && stt == STT_FUNC ) || \
1218 (!inc_file && stt == STT_FILE ) || \
1219 (!inc_local && stb == STB_LOCAL ) || \
1220 (!inc_global && stb == STB_GLOBAL) || \
1221 (!inc_weak && stb == STB_WEAK ) || \
1222 (!inc_def && shn && shn < SHN_LORESERVE) || \
1223 (!inc_undef && shn == SHN_UNDEF ) || \
1224 (!inc_abs && shn == SHN_ABS ) || \
1225 (!inc_common && shn == SHN_COMMON))
1226 continue;
1227
1228 if (*this_sym == '*') {
1229 /* a "*" symbol gets you debug output */
1230 printf("%s(%s) %5lX %15s %15s %15s %s\n",
1231 ((*found_sym == 0) ? "\n\t" : "\t"),
1232 elf->base_filename,
1233 size,
1234 get_elfstttype(stt),
1235 get_elfstbtype(stb),
1236 get_elfshntype(shn),
1237 symname);
1238 goto matched;
1239
1240 } else {
1241 if (g_match) {
1242 /* regex match the symbol */
1243 if (rematch(this_sym, symname, REG_EXTENDED) != 0)
1244 continue;
1245
1246 } else if (*this_sym) {
1247 /* give empty symbols a "pass", else do a normal compare */
1248 const size_t len = strlen(this_sym);
1249 if (!(strncmp(this_sym, symname, len) == 0 &&
1250 /* Accept unversioned symbol names */
1251 (symname[len] == '\0' || symname[len] == '@')))
1252 continue;
1253 }
1254
1255 if (be_semi_verbose) {
1256 char buf[1024];
1257 snprintf(buf, sizeof(buf), "%lX %s %s",
1258 size,
1259 get_elfstttype(stt),
1260 this_sym);
1261 *ret = xstrdup(buf);
1262 } else {
1263 if (*ret) xchrcat(ret, ',', ret_len);
1264 xstrcat(ret, symname, ret_len);
1265 }
1266
1267 goto matched;
1268 }
1269 } while (next_sym);
1270
1271 return;
1272
1273 matched:
1274 *found_sym = 1;
1275 if (next_sym)
1276 next_sym[-1] = saved;
1277}
1278
1279static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
1280{
1281 char *ret;
559 void *symtab_void, *strtab_void; 1282 void *symtab_void, *strtab_void;
560 1283
561 if (!find_sym) return NULL; 1284 if (!find_sym) return NULL;
1285 ret = NULL;
562 1286
563 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1287 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
564 1288
565 if (symtab_void && strtab_void) { 1289 if (symtab_void && strtab_void) {
566#define FIND_SYM(B) \ 1290#define FIND_SYM(B) \
567 if (elf->elf_class == ELFCLASS ## B) { \ 1291 if (elf->elf_class == ELFCLASS ## B) { \
568 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1292 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
569 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1293 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
570 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1294 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
571 unsigned long cnt = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 1295 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
572 char *symname; \ 1296 char *symname; \
1297 size_t ret_len = 0; \
1298 if (cnt) \
1299 cnt = EGET(symtab->sh_size) / cnt; \
573 for (i = 0; i < cnt; ++i) { \ 1300 for (i = 0; i < cnt; ++i) { \
1301 if ((void*)sym > elf->data_end) { \
1302 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1303 goto break_out; \
1304 } \
574 if (sym->st_name) { \ 1305 if (sym->st_name) { \
1306 /* make sure the symbol name is in acceptable memory range */ \
575 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1307 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
576 if (*find_sym == '*') { \ 1308 if ((void*)symname > elf->data_end) { \
577 printf("%s(%s) %5lX %15s %s\n", \ 1309 warnf("%s: corrupt ELF symbols", elf->filename); \
578 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1310 ++sym; \
579 elf->base_filename, \ 1311 continue; \
580 (long)sym->st_size, \ 1312 } \
581 (char *)get_elfstttype(sym->st_info), \ 1313 scanelf_match_symname(elf, found_sym, \
582 symname); \ 1314 &ret, &ret_len, symname, \
583 *found_sym = 1; \ 1315 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
584 } else if ((strcmp(find_sym, symname) == 0) || \ 1316 ELF##B##_ST_BIND(EGET(sym->st_info)), \
585 (strcmp(symname, versioned_symname) == 0)) \ 1317 EGET(sym->st_shndx), \
586 (*found_sym)++; \ 1318 /* st_size can be 64bit, but no one is really that big, so screw em */ \
1319 EGET(sym->st_size)); \
587 } \ 1320 } \
588 ++sym; \ 1321 ++sym; \
589 } } 1322 } \
1323 }
590 FIND_SYM(32) 1324 FIND_SYM(32)
591 FIND_SYM(64) 1325 FIND_SYM(64)
592 } 1326 }
593 1327
1328break_out:
594 if (be_wewy_wewy_quiet) return NULL; 1329 if (be_wewy_wewy_quiet) return NULL;
595 1330
596 if (*find_sym != '*' && *found_sym) 1331 if (*find_sym != '*' && *found_sym)
597 return find_sym; 1332 return ret;
598 if (be_quiet) 1333 if (be_quiet)
599 return NULL; 1334 return NULL;
600 else 1335 else
601 return (char *)" - "; 1336 return " - ";
602} 1337}
1338
1339static const char *scanelf_file_sections(elfobj *elf, char *found_section)
1340{
1341 if (!find_section)
1342 return NULL;
1343
1344#define FIND_SECTION(B) \
1345 if (elf->elf_class == ELFCLASS ## B) { \
1346 size_t matched, n; \
1347 int invert; \
1348 const char *section_name; \
1349 Elf ## B ## _Shdr *section; \
1350 \
1351 matched = 0; \
1352 array_for_each(find_section_arr, n, section_name) { \
1353 invert = (*section_name == '!' ? 1 : 0); \
1354 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
1355 if ((section == NULL && invert) || (section != NULL && !invert)) \
1356 ++matched; \
1357 } \
1358 \
1359 if (matched == array_cnt(find_section_arr)) \
1360 *found_section = 1; \
1361 }
1362 FIND_SECTION(32)
1363 FIND_SECTION(64)
1364
1365 if (be_wewy_wewy_quiet)
1366 return NULL;
1367
1368 if (*found_section)
1369 return find_section;
1370
1371 if (be_quiet)
1372 return NULL;
1373 else
1374 return " - ";
1375}
1376
603/* scan an elf file and show all the fun stuff */ 1377/* scan an elf file and show all the fun stuff */
604#define prints(str) write(fileno(stdout), str, strlen(str)) 1378#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
605static void scanelf_file(const char *filename) 1379static int scanelf_elfobj(elfobj *elf)
606{ 1380{
607 unsigned long i; 1381 unsigned long i;
608 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1382 char found_pax, found_phdr, found_relro, found_load, found_textrel,
609 found_rpath, found_needed, found_interp, found_bind, 1383 found_rpath, found_needed, found_interp, found_bind, found_soname,
610 found_sym, found_lib, found_file, found_textrels; 1384 found_sym, found_lib, found_file, found_textrels, found_section;
611 elfobj *elf;
612 struct stat st;
613 static char *out_buffer = NULL; 1385 static char *out_buffer = NULL;
614 static size_t out_len; 1386 static size_t out_len;
615 1387
616 /* make sure 'filename' exists */
617 if (lstat(filename, &st) == -1) {
618 if (be_verbose > 2) printf("%s: does not exist\n", filename);
619 return;
620 }
621 /* always handle regular files and handle symlinked files if no -y */
622 if (S_ISLNK(st.st_mode)) {
623 if (!scan_symlink) return;
624 stat(filename, &st);
625 }
626 if (!S_ISREG(st.st_mode)) {
627 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
628 return;
629 }
630
631 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1388 found_pax = found_phdr = found_relro = found_load = found_textrel = \
632 found_rpath = found_needed = found_interp = found_bind = \ 1389 found_rpath = found_needed = found_interp = found_bind = found_soname = \
633 found_sym = found_lib = found_file = found_textrels = 0; 1390 found_sym = found_lib = found_file = found_textrels = found_section = 0;
634 1391
635 /* verify this is real ELF */
636 if ((elf = readelf(filename)) == NULL) {
637 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
638 return;
639 }
640
641 if (be_verbose > 1) 1392 if (be_verbose > 2)
642 printf("%s: scanning file {%s,%s}\n", filename, 1393 printf("%s: scanning file {%s,%s}\n", elf->filename,
643 get_elfeitype(EI_CLASS, elf->elf_class), 1394 get_elfeitype(EI_CLASS, elf->elf_class),
644 get_elfeitype(EI_DATA, elf->data[EI_DATA])); 1395 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
645 else if (be_verbose) 1396 else if (be_verbose > 1)
646 printf("%s: scanning file\n", filename); 1397 printf("%s: scanning file\n", elf->filename);
647 1398
648 /* init output buffer */ 1399 /* init output buffer */
649 if (!out_buffer) { 1400 if (!out_buffer) {
650 out_len = sizeof(char) * 80; 1401 out_len = sizeof(char) * 80;
651 out_buffer = (char*)xmalloc(out_len); 1402 out_buffer = xmalloc(out_len);
652 } 1403 }
653 *out_buffer = '\0'; 1404 *out_buffer = '\0';
654 1405
655 /* show the header */ 1406 /* show the header */
656 if (!be_quiet && show_banner) { 1407 if (!be_quiet && show_banner) {
657 for (i = 0; out_format[i]; ++i) { 1408 for (i = 0; out_format[i]; ++i) {
658 if (!IS_MODIFIER(out_format[i])) continue; 1409 if (!IS_MODIFIER(out_format[i])) continue;
659 1410
660 switch (out_format[++i]) { 1411 switch (out_format[++i]) {
1412 case '+': break;
661 case '%': break; 1413 case '%': break;
662 case '#': break; 1414 case '#': break;
663 case 'F': 1415 case 'F':
664 case 'p': 1416 case 'p':
665 case 'f': prints("FILE "); found_file = 1; break; 1417 case 'f': prints("FILE "); found_file = 1; break;
666 case 'o': prints(" TYPE "); break; 1418 case 'o': prints(" TYPE "); break;
667 case 'x': prints(" PAX "); break; 1419 case 'x': prints(" PAX "); break;
668 case 'e': prints("STK/REL/PTL "); break; 1420 case 'e': prints("STK/REL/PTL "); break;
669 case 't': prints("TEXTREL "); break; 1421 case 't': prints("TEXTREL "); break;
670 case 'r': prints("RPATH "); break; 1422 case 'r': prints("RPATH "); break;
1423 case 'M': prints("CLASS "); break;
671 case 'n': prints("NEEDED "); break; 1424 case 'n': prints("NEEDED "); break;
672 case 'i': prints("INTERP "); break; 1425 case 'i': prints("INTERP "); break;
673 case 'b': prints("BIND "); break; 1426 case 'b': prints("BIND "); break;
1427 case 'Z': prints("SIZE "); break;
1428 case 'S': prints("SONAME "); break;
674 case 's': prints("SYM "); break; 1429 case 's': prints("SYM "); break;
675 case 'N': prints("LIB "); break; 1430 case 'N': prints("LIB "); break;
676 case 'T': prints("TEXTRELS "); break; 1431 case 'T': prints("TEXTRELS "); break;
1432 case 'k': prints("SECTION "); break;
1433 case 'a': prints("ARCH "); break;
1434 case 'I': prints("OSABI "); break;
1435 case 'Y': prints("EABI "); break;
1436 case 'O': prints("PERM "); break;
1437 case 'D': prints("ENDIAN "); break;
677 default: warnf("'%c' has no title ?", out_format[i]); 1438 default: warnf("'%c' has no title ?", out_format[i]);
678 } 1439 }
679 } 1440 }
680 if (!found_file) prints("FILE "); 1441 if (!found_file) prints("FILE ");
681 prints("\n"); 1442 prints("\n");
685 1446
686 /* dump all the good stuff */ 1447 /* dump all the good stuff */
687 for (i = 0; out_format[i]; ++i) { 1448 for (i = 0; out_format[i]; ++i) {
688 const char *out; 1449 const char *out;
689 const char *tmp; 1450 const char *tmp;
690 1451 static char ubuf[sizeof(unsigned long)*2];
691 /* make sure we trim leading spaces in quiet mode */
692 if (be_quiet && *out_buffer == ' ' && !out_buffer[1])
693 *out_buffer = '\0';
694
695 if (!IS_MODIFIER(out_format[i])) { 1452 if (!IS_MODIFIER(out_format[i])) {
696 xchrcat(&out_buffer, out_format[i], &out_len); 1453 xchrcat(&out_buffer, out_format[i], &out_len);
697 continue; 1454 continue;
698 } 1455 }
699 1456
700 out = NULL; 1457 out = NULL;
701 be_wewy_wewy_quiet = (out_format[i] == '#'); 1458 be_wewy_wewy_quiet = (out_format[i] == '#');
1459 be_semi_verbose = (out_format[i] == '+');
702 switch (out_format[++i]) { 1460 switch (out_format[++i]) {
1461 case '+':
703 case '%': 1462 case '%':
704 case '#': 1463 case '#':
705 xchrcat(&out_buffer, out_format[i], &out_len); break; 1464 xchrcat(&out_buffer, out_format[i], &out_len); break;
706 case 'F': 1465 case 'F':
707 found_file = 1; 1466 found_file = 1;
708 if (be_wewy_wewy_quiet) break; 1467 if (be_wewy_wewy_quiet) break;
709 xstrcat(&out_buffer, filename, &out_len); 1468 xstrcat(&out_buffer, elf->filename, &out_len);
710 break; 1469 break;
711 case 'p': 1470 case 'p':
712 found_file = 1; 1471 found_file = 1;
713 if (be_wewy_wewy_quiet) break; 1472 if (be_wewy_wewy_quiet) break;
714 tmp = filename; 1473 tmp = elf->filename;
715 if (search_path) { 1474 if (search_path) {
716 ssize_t len_search = strlen(search_path); 1475 ssize_t len_search = strlen(search_path);
717 ssize_t len_file = strlen(filename); 1476 ssize_t len_file = strlen(elf->filename);
718 if (!strncmp(filename, search_path, len_search) && \ 1477 if (!strncmp(elf->filename, search_path, len_search) && \
719 len_file > len_search) 1478 len_file > len_search)
720 tmp += len_search; 1479 tmp += len_search;
721 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++; 1480 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++;
722 } 1481 }
723 xstrcat(&out_buffer, tmp, &out_len); 1482 xstrcat(&out_buffer, tmp, &out_len);
724 break; 1483 break;
725 case 'f': 1484 case 'f':
726 found_file = 1; 1485 found_file = 1;
727 if (be_wewy_wewy_quiet) break; 1486 if (be_wewy_wewy_quiet) break;
728 tmp = strrchr(filename, '/'); 1487 tmp = strrchr(elf->filename, '/');
729 tmp = (tmp == NULL ? filename : tmp+1); 1488 tmp = (tmp == NULL ? elf->filename : tmp+1);
730 xstrcat(&out_buffer, tmp, &out_len); 1489 xstrcat(&out_buffer, tmp, &out_len);
731 break; 1490 break;
732 case 'o': out = get_elfetype(elf); break; 1491 case 'o': out = get_elfetype(elf); break;
733 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1492 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
734 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1493 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
735 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1494 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
736 case 'T': out = scanelf_file_textrels(elf, &found_textrels); break; 1495 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
737 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1496 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1497 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1498 case 'D': out = get_endian(elf); break;
1499 case 'O': out = strfileperms(elf->filename); break;
738 case 'n': 1500 case 'n':
739 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1501 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
740 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1502 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
741 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1503 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
1504 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
742 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1505 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1506 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1507 case 'a': out = get_elfemtype(elf); break;
1508 case 'I': out = get_elfosabi(elf); break;
1509 case 'Y': out = get_elf_eabi(elf); break;
1510 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
743 default: warnf("'%c' has no scan code?", out_format[i]); 1511 default: warnf("'%c' has no scan code?", out_format[i]);
744 } 1512 }
1513 if (out)
745 if (out) xstrcat(&out_buffer, out, &out_len); 1514 xstrcat(&out_buffer, out, &out_len);
746 } 1515 }
747 1516
748#define FOUND_SOMETHING() \ 1517#define FOUND_SOMETHING() \
749 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1518 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
750 found_rpath || found_needed || found_interp || found_bind || \ 1519 found_rpath || found_needed || found_interp || found_bind || \
751 found_sym || found_lib || found_textrels) 1520 found_soname || found_sym || found_lib || found_textrels || found_section )
752 1521
753 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) { 1522 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
754 xchrcat(&out_buffer, ' ', &out_len); 1523 xchrcat(&out_buffer, ' ', &out_len);
755 xstrcat(&out_buffer, filename, &out_len); 1524 xstrcat(&out_buffer, elf->filename, &out_len);
756 } 1525 }
757 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) 1526 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) {
758 puts(out_buffer); 1527 puts(out_buffer);
1528 fflush(stdout);
1529 }
759 1530
1531 return 0;
1532}
1533
1534/* scan a single elf */
1535static int scanelf_elf(const char *filename, int fd, size_t len)
1536{
1537 int ret = 1;
1538 elfobj *elf;
1539
1540 /* verify this is real ELF */
1541 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1542 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1543 return 2;
1544 }
1545 switch (match_bits) {
1546 case 32:
1547 if (elf->elf_class != ELFCLASS32)
1548 goto label_done;
1549 break;
1550 case 64:
1551 if (elf->elf_class != ELFCLASS64)
1552 goto label_done;
1553 break;
1554 default: break;
1555 }
1556 if (match_etypes) {
1557 char sbuf[126];
1558 strncpy(sbuf, match_etypes, sizeof(sbuf));
1559 if (strchr(match_etypes, ',') != NULL) {
1560 char *p;
1561 while ((p = strrchr(sbuf, ',')) != NULL) {
1562 *p = 0;
1563 if (etype_lookup(p+1) == get_etype(elf))
1564 goto label_ret;
1565 }
1566 }
1567 if (etype_lookup(sbuf) != get_etype(elf))
1568 goto label_done;
1569 }
1570
1571label_ret:
1572 ret = scanelf_elfobj(elf);
1573
1574label_done:
760 unreadelf(elf); 1575 unreadelf(elf);
1576 return ret;
1577}
1578
1579/* scan an archive of elfs */
1580static int scanelf_archive(const char *filename, int fd, size_t len)
1581{
1582 archive_handle *ar;
1583 archive_member *m;
1584 char *ar_buffer;
1585 elfobj *elf;
1586
1587 ar = ar_open_fd(filename, fd);
1588 if (ar == NULL)
1589 return 1;
1590
1591 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1592 while ((m = ar_next(ar)) != NULL) {
1593 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1594 if (cur_pos == -1)
1595 errp("lseek() failed");
1596 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1597 if (elf) {
1598 scanelf_elfobj(elf);
1599 unreadelf(elf);
1600 }
1601 }
1602 munmap(ar_buffer, len);
1603
1604 return 0;
1605}
1606/* scan a file which may be an elf or an archive or some other magical beast */
1607static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1608{
1609 const struct stat *st = st_cache;
1610 struct stat symlink_st;
1611 int fd;
1612
1613 /* always handle regular files and handle symlinked files if no -y */
1614 if (S_ISLNK(st->st_mode)) {
1615 if (!scan_symlink)
1616 return 1;
1617 fstatat(dir_fd, filename, &symlink_st, 0);
1618 st = &symlink_st;
1619 }
1620
1621 if (!S_ISREG(st->st_mode)) {
1622 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1623 return 1;
1624 }
1625
1626 if (match_perms) {
1627 if ((st->st_mode | match_perms) != st->st_mode)
1628 return 1;
1629 }
1630 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1631 if (fd == -1)
1632 return 1;
1633
1634 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1635 /* if it isn't an ELF, maybe it's an .a archive */
1636 if (scan_archives)
1637 scanelf_archive(filename, fd, st->st_size);
1638
1639 /*
1640 * unreadelf() implicitly closes its fd, so only close it
1641 * when we are returning it in the non-ELF case
1642 */
1643 close(fd);
1644 }
1645
1646 return 0;
761} 1647}
762 1648
763/* scan a directory for ET_EXEC files and print when we find one */ 1649/* scan a directory for ET_EXEC files and print when we find one */
764static void scanelf_dir(const char *path) 1650static int scanelf_dirat(int dir_fd, const char *path)
765{ 1651{
766 register DIR *dir; 1652 register DIR *dir;
767 register struct dirent *dentry; 1653 register struct dirent *dentry;
768 struct stat st_top, st; 1654 struct stat st_top, st;
769 char buf[_POSIX_PATH_MAX]; 1655 char buf[__PAX_UTILS_PATH_MAX], *subpath;
770 size_t pathlen = 0, len = 0; 1656 size_t pathlen = 0, len = 0;
1657 int ret = 0;
1658 int subdir_fd;
771 1659
772 /* make sure path exists */ 1660 /* make sure path exists */
773 if (lstat(path, &st_top) == -1) { 1661 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
774 if (be_verbose > 2) printf("%s: does not exist\n", path); 1662 if (be_verbose > 2) printf("%s: does not exist\n", path);
775 return; 1663 return 1;
776 } 1664 }
777 1665
778 /* ok, if it isn't a directory, assume we can open it */ 1666 /* ok, if it isn't a directory, assume we can open it */
779 if (!S_ISDIR(st_top.st_mode)) { 1667 if (!S_ISDIR(st_top.st_mode))
780 scanelf_file(path); 1668 return scanelf_fileat(dir_fd, path, &st_top);
781 return;
782 }
783 1669
784 /* now scan the dir looking for fun stuff */ 1670 /* now scan the dir looking for fun stuff */
785 if ((dir = opendir(path)) == NULL) { 1671 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
786 warnf("could not opendir %s: %s", path, strerror(errno)); 1672 if (subdir_fd == -1)
1673 dir = NULL;
1674 else
1675 dir = fdopendir(subdir_fd);
1676 if (dir == NULL) {
1677 if (subdir_fd != -1)
1678 close(subdir_fd);
1679 warnfp("could not opendir(%s)", path);
787 return; 1680 return 1;
788 } 1681 }
789 if (be_verbose) printf("%s: scanning dir\n", path); 1682 if (be_verbose > 1) printf("%s: scanning dir\n", path);
790 1683
791 pathlen = strlen(path); 1684 subpath = stpcpy(buf, path);
1685 *subpath++ = '/';
1686 pathlen = subpath - buf;
792 while ((dentry = readdir(dir))) { 1687 while ((dentry = readdir(dir))) {
793 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1688 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
794 continue; 1689 continue;
795 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1690
796 if (len >= sizeof(buf)) { 1691 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
797 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path,
798 (unsigned long)len, (unsigned long)sizeof(buf));
799 continue; 1692 continue;
1693
1694 len = strlen(dentry->d_name);
1695 if (len + pathlen + 1 >= sizeof(buf)) {
1696 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
1697 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
1698 continue;
800 } 1699 }
801 sprintf(buf, "%s/%s", path, dentry->d_name); 1700 memcpy(subpath, dentry->d_name, len);
802 if (lstat(buf, &st) != -1) { 1701 subpath[len] = '\0';
1702
803 if (S_ISREG(st.st_mode)) 1703 if (S_ISREG(st.st_mode))
804 scanelf_file(buf); 1704 ret = scanelf_fileat(dir_fd, buf, &st);
805 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1705 else if (dir_recurse && S_ISDIR(st.st_mode)) {
806 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1706 if (dir_crossmount || (st_top.st_dev == st.st_dev))
807 scanelf_dir(buf); 1707 ret = scanelf_dirat(dir_fd, buf);
808 }
809 } 1708 }
810 } 1709 }
811 closedir(dir); 1710 closedir(dir);
812}
813 1711
1712 return ret;
1713}
1714static int scanelf_dir(const char *path)
1715{
1716 return scanelf_dirat(root_fd, root_rel_path(path));
1717}
1718
814static int scanelf_from_file(char *filename) 1719static int scanelf_from_file(const char *filename)
815{ 1720{
816 FILE *fp = NULL; 1721 FILE *fp;
817 char *p; 1722 char *p, *path;
818 char path[_POSIX_PATH_MAX]; 1723 size_t len;
1724 int ret;
819 1725
820 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1726 if (strcmp(filename, "-") == 0)
821 fp = stdin; 1727 fp = stdin;
822 else if ((fp = fopen(filename, "r")) == NULL) 1728 else if ((fp = fopen(filename, "r")) == NULL)
823 return 1; 1729 return 1;
824 1730
825 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1731 path = NULL;
1732 len = 0;
1733 ret = 0;
1734 while (getline(&path, &len, fp) != -1) {
826 if ((p = strchr(path, '\n')) != NULL) 1735 if ((p = strchr(path, '\n')) != NULL)
827 *p = 0; 1736 *p = 0;
828 search_path = path; 1737 search_path = path;
829 scanelf_dir(path); 1738 ret = scanelf_dir(path);
830 } 1739 }
1740 free(path);
1741
831 if (fp != stdin) 1742 if (fp != stdin)
832 fclose(fp); 1743 fclose(fp);
1744
833 return 0; 1745 return ret;
834} 1746}
835 1747
836static void load_ld_so_conf() 1748#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1749
1750static int load_ld_cache_config(int i, const char *fname)
837{ 1751{
838 FILE *fp = NULL; 1752 FILE *fp = NULL;
839 char *p; 1753 char *p, *path;
840 char path[_POSIX_PATH_MAX]; 1754 size_t len;
841 int i = 0; 1755 int curr_fd = -1;
842 1756
843 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1757 fp = fopenat_r(root_fd, root_rel_path(fname));
1758 if (fp == NULL)
844 return; 1759 return i;
845 1760
846 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1761 path = NULL;
847 if (*path != '/') 1762 len = 0;
848 continue; 1763 while (getline(&path, &len, fp) != -1) {
849
850 if ((p = strrchr(path, '\r')) != NULL) 1764 if ((p = strrchr(path, '\r')) != NULL)
851 *p = 0; 1765 *p = 0;
852 if ((p = strchr(path, '\n')) != NULL) 1766 if ((p = strchr(path, '\n')) != NULL)
853 *p = 0; 1767 *p = 0;
854 1768
855 ldpaths[i++] = xstrdup(path); 1769 /* recursive includes of the same file will make this segfault. */
1770 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1771 glob_t gl;
1772 size_t x;
1773 const char *gpath;
856 1774
857 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1775 /* re-use existing path buffer ... need to be creative */
858 break; 1776 if (path[8] != '/')
1777 gpath = memcpy(path + 3, "/etc/", 5);
1778 else
1779 gpath = path + 8;
1780 if (root_fd != AT_FDCWD) {
1781 if (curr_fd == -1) {
1782 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1783 if (fchdir(root_fd))
1784 errp("unable to change to root dir");
1785 }
1786 gpath = root_rel_path(gpath);
1787 }
1788
1789 if (glob(gpath, 0, NULL, &gl) == 0) {
1790 for (x = 0; x < gl.gl_pathc; ++x) {
1791 /* try to avoid direct loops */
1792 if (strcmp(gl.gl_pathv[x], fname) == 0)
1793 continue;
1794 i = load_ld_cache_config(i, gl.gl_pathv[x]);
1795 }
1796 globfree(&gl);
1797 }
1798
1799 /* failed globs are ignored by glibc */
1800 continue;
859 } 1801 }
860 ldpaths[i] = NULL; 1802
1803 if (*path != '/')
1804 continue;
1805
1806 xarraypush_str(ldpaths, path);
1807 }
1808 free(path);
861 1809
862 fclose(fp); 1810 fclose(fp);
1811
1812 if (curr_fd != -1) {
1813 if (fchdir(curr_fd))
1814 /* don't care */;
1815 close(curr_fd);
1816 }
1817
1818 return i;
863} 1819}
1820
1821#elif defined(__FreeBSD__) || defined(__DragonFly__)
1822
1823static int load_ld_cache_config(int i, const char *fname)
1824{
1825 FILE *fp = NULL;
1826 char *b = NULL, *p;
1827 struct elfhints_hdr hdr;
1828
1829 fp = fopenat_r(root_fd, root_rel_path(fname));
1830 if (fp == NULL)
1831 return i;
1832
1833 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1834 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1835 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1836 {
1837 fclose(fp);
1838 return i;
1839 }
1840
1841 b = xmalloc(hdr.dirlistlen + 1);
1842 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1843 fclose(fp);
1844 free(b);
1845 return i;
1846 }
1847
1848 while ((p = strsep(&b, ":"))) {
1849 if (*p == '\0')
1850 continue;
1851 xarraypush_str(ldpaths, p);
1852 }
1853
1854 free(b);
1855 fclose(fp);
1856 return i;
1857}
1858
1859#else
1860#ifdef __ELF__
1861#warning Cache config support not implemented for your target
1862#endif
1863static int load_ld_cache_config(int i, const char *fname)
1864{
1865 return 0;
1866}
1867#endif
864 1868
865/* scan /etc/ld.so.conf for paths */ 1869/* scan /etc/ld.so.conf for paths */
866static void scanelf_ldpath() 1870static void scanelf_ldpath(void)
867{ 1871{
868 char scan_l, scan_ul, scan_ull; 1872 char scan_l, scan_ul, scan_ull;
1873 size_t n;
1874 const char *ldpath;
869 int i = 0; 1875 int i = 0;
870 1876
871 if (!ldpaths[0]) 1877 if (array_cnt(ldpaths) == 0)
872 err("Unable to load any paths from ld.so.conf"); 1878 err("Unable to load any paths from ld.so.conf");
873 1879
874 scan_l = scan_ul = scan_ull = 0; 1880 scan_l = scan_ul = scan_ull = 0;
875 1881
876 while (ldpaths[i]) { 1882 array_for_each(ldpaths, n, ldpath) {
877 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1; 1883 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = 1;
878 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1; 1884 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = 1;
879 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1; 1885 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = 1;
880 scanelf_dir(ldpaths[i]); 1886 scanelf_dir(ldpath);
881 ++i; 1887 ++i;
882 } 1888 }
883 1889
884 if (!scan_l) scanelf_dir("/lib"); 1890 if (!scan_l) scanelf_dir("/lib");
885 if (!scan_ul) scanelf_dir("/usr/lib"); 1891 if (!scan_ul) scanelf_dir("/usr/lib");
886 if (!scan_ull) scanelf_dir("/usr/local/lib"); 1892 if (!scan_ull) scanelf_dir("/usr/local/lib");
887} 1893}
888 1894
889/* scan env PATH for paths */ 1895/* scan env PATH for paths */
890static void scanelf_envpath() 1896static void scanelf_envpath(void)
891{ 1897{
892 char *path, *p; 1898 char *path, *p;
893 1899
894 path = getenv("PATH"); 1900 path = getenv("PATH");
895 if (!path) 1901 if (!path)
902 } 1908 }
903 1909
904 free(path); 1910 free(path);
905} 1911}
906 1912
907 1913/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
908
909/* usage / invocation handling functions */
910#define PARSE_FLAGS "plRmyxetrnibs:N:TaqvF:f:o:BhV" 1914#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
911#define a_argument required_argument 1915#define a_argument required_argument
912static struct option const long_opts[] = { 1916static struct option const long_opts[] = {
913 {"path", no_argument, NULL, 'p'}, 1917 {"path", no_argument, NULL, 'p'},
914 {"ldpath", no_argument, NULL, 'l'}, 1918 {"ldpath", no_argument, NULL, 'l'},
1919 {"root", a_argument, NULL, 128},
915 {"recursive", no_argument, NULL, 'R'}, 1920 {"recursive", no_argument, NULL, 'R'},
916 {"mount", no_argument, NULL, 'm'}, 1921 {"mount", no_argument, NULL, 'm'},
917 {"symlink", no_argument, NULL, 'y'}, 1922 {"symlink", no_argument, NULL, 'y'},
1923 {"archives", no_argument, NULL, 'A'},
1924 {"ldcache", no_argument, NULL, 'L'},
1925 {"fix", no_argument, NULL, 'X'},
1926 {"setpax", a_argument, NULL, 'z'},
918 {"pax", no_argument, NULL, 'x'}, 1927 {"pax", no_argument, NULL, 'x'},
919 {"header", no_argument, NULL, 'e'}, 1928 {"header", no_argument, NULL, 'e'},
920 {"textrel", no_argument, NULL, 't'}, 1929 {"textrel", no_argument, NULL, 't'},
921 {"rpath", no_argument, NULL, 'r'}, 1930 {"rpath", no_argument, NULL, 'r'},
922 {"needed", no_argument, NULL, 'n'}, 1931 {"needed", no_argument, NULL, 'n'},
923 {"interp", no_argument, NULL, 'i'}, 1932 {"interp", no_argument, NULL, 'i'},
924 {"bind", no_argument, NULL, 'b'}, 1933 {"bind", no_argument, NULL, 'b'},
1934 {"soname", no_argument, NULL, 'S'},
925 {"symbol", a_argument, NULL, 's'}, 1935 {"symbol", a_argument, NULL, 's'},
1936 {"section", a_argument, NULL, 'k'},
926 {"lib", a_argument, NULL, 'N'}, 1937 {"lib", a_argument, NULL, 'N'},
1938 {"gmatch", no_argument, NULL, 'g'},
927 {"textrels", no_argument, NULL, 'T'}, 1939 {"textrels", no_argument, NULL, 'T'},
1940 {"etype", a_argument, NULL, 'E'},
1941 {"bits", a_argument, NULL, 'M'},
1942 {"endian", no_argument, NULL, 'D'},
1943 {"osabi", no_argument, NULL, 'I'},
1944 {"eabi", no_argument, NULL, 'Y'},
1945 {"perms", a_argument, NULL, 'O'},
1946 {"size", no_argument, NULL, 'Z'},
928 {"all", no_argument, NULL, 'a'}, 1947 {"all", no_argument, NULL, 'a'},
929 {"quiet", no_argument, NULL, 'q'}, 1948 {"quiet", no_argument, NULL, 'q'},
930 {"verbose", no_argument, NULL, 'v'}, 1949 {"verbose", no_argument, NULL, 'v'},
931 {"format", a_argument, NULL, 'F'}, 1950 {"format", a_argument, NULL, 'F'},
932 {"from", a_argument, NULL, 'f'}, 1951 {"from", a_argument, NULL, 'f'},
933 {"file", a_argument, NULL, 'o'}, 1952 {"file", a_argument, NULL, 'o'},
1953 {"nocolor", no_argument, NULL, 'C'},
934 {"nobanner", no_argument, NULL, 'B'}, 1954 {"nobanner", no_argument, NULL, 'B'},
935 {"help", no_argument, NULL, 'h'}, 1955 {"help", no_argument, NULL, 'h'},
936 {"version", no_argument, NULL, 'V'}, 1956 {"version", no_argument, NULL, 'V'},
937 {NULL, no_argument, NULL, 0x0} 1957 {NULL, no_argument, NULL, 0x0}
938}; 1958};
939 1959
940static const char *opts_help[] = { 1960static const char * const opts_help[] = {
941 "Scan all directories in PATH environment", 1961 "Scan all directories in PATH environment",
942 "Scan all directories in /etc/ld.so.conf", 1962 "Scan all directories in /etc/ld.so.conf",
1963 "Root directory (use with -l or -p)",
943 "Scan directories recursively", 1964 "Scan directories recursively",
944 "Don't recursively cross mount points", 1965 "Don't recursively cross mount points",
945 "Don't scan symlinks\n", 1966 "Don't scan symlinks",
1967 "Scan archives (.a files)",
1968 "Utilize ld.so.cache to show full path (use with -r/-n)",
1969 "Try and 'fix' bad things (use with -r/-e)",
1970 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
946 "Print PaX markings", 1971 "Print PaX markings",
947 "Print GNU_STACK/PT_LOAD markings", 1972 "Print GNU_STACK/PT_LOAD markings",
948 "Print TEXTREL information", 1973 "Print TEXTREL information",
949 "Print RPATH information", 1974 "Print RPATH information",
950 "Print NEEDED information", 1975 "Print NEEDED information",
951 "Print INTERP information", 1976 "Print INTERP information",
952 "Print BIND information", 1977 "Print BIND information",
1978 "Print SONAME information",
953 "Find a specified symbol", 1979 "Find a specified symbol",
1980 "Find a specified section",
954 "Find a specified library", 1981 "Find a specified library",
1982 "Use regex matching rather than string compare (use with -s)",
955 "Locate cause of TEXTREL", 1983 "Locate cause of TEXTREL",
956 "Print all scanned info (-x -e -t -r -n -i -b)\n", 1984 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1985 "Print only ELF files matching numeric bits",
1986 "Print Endianness",
1987 "Print OSABI",
1988 "Print EABI (EM_ARM Only)",
1989 "Print only ELF files matching octal permissions",
1990 "Print ELF file size",
1991 "Print all useful/simple info\n",
957 "Only output 'bad' things", 1992 "Only output 'bad' things",
958 "Be verbose (can be specified more than once)", 1993 "Be verbose (can be specified more than once)",
959 "Use specified format for output", 1994 "Use specified format for output",
960 "Read input stream from a filename", 1995 "Read input stream from a filename",
961 "Write output stream to a filename", 1996 "Write output stream to a filename",
1997 "Don't emit color in output",
962 "Don't display the header", 1998 "Don't display the header",
963 "Print this help and exit", 1999 "Print this help and exit",
964 "Print version and exit", 2000 "Print version and exit",
965 NULL 2001 NULL
966}; 2002};
968/* display usage and exit */ 2004/* display usage and exit */
969static void usage(int status) 2005static void usage(int status)
970{ 2006{
971 unsigned long i; 2007 unsigned long i;
972 printf("* Scan ELF binaries for stuff\n\n" 2008 printf("* Scan ELF binaries for stuff\n\n"
973 "Usage: %s [options] <dir1/file1> [dir2 dirN fileN ...]\n\n", argv0); 2009 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
974 printf("Options: -[%s]\n", PARSE_FLAGS); 2010 printf("Options: -[%s]\n", PARSE_FLAGS);
975 for (i = 0; long_opts[i].name; ++i) 2011 for (i = 0; long_opts[i].name; ++i)
976 if (long_opts[i].has_arg == no_argument) 2012 if (long_opts[i].has_arg == no_argument)
977 printf(" -%c, --%-13s* %s\n", long_opts[i].val, 2013 printf(" -%c, --%-14s* %s\n", long_opts[i].val,
2014 long_opts[i].name, opts_help[i]);
2015 else if (long_opts[i].val > '~')
2016 printf(" --%-7s <arg> * %s\n",
978 long_opts[i].name, opts_help[i]); 2017 long_opts[i].name, opts_help[i]);
979 else 2018 else
980 printf(" -%c, --%-6s <arg> * %s\n", long_opts[i].val, 2019 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val,
981 long_opts[i].name, opts_help[i]); 2020 long_opts[i].name, opts_help[i]);
982 2021
983 if (status != EXIT_SUCCESS) 2022 puts("\nFor more information, see the scanelf(1) manpage");
984 exit(status);
985
986 puts("\nThe format modifiers for the -F option are:");
987 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
988 puts(" t TEXTREL \tr RPATH \tn NEEDED");
989 puts(" i INTERP \tb BIND \ts symbol");
990 puts(" N library \to Type \tT TEXTRELs");
991 puts(" p filename (with search path removed)");
992 puts(" f base filename");
993 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
994
995 exit(status); 2023 exit(status);
996} 2024}
997 2025
998/* parse command line arguments and preform needed actions */ 2026/* parse command line arguments and preform needed actions */
2027#define do_pax_state(option, flag) \
2028 if (islower(option)) { \
2029 flags &= ~PF_##flag; \
2030 flags |= PF_NO##flag; \
2031 } else { \
2032 flags &= ~PF_NO##flag; \
2033 flags |= PF_##flag; \
2034 }
999static void parseargs(int argc, char *argv[]) 2035static int parseargs(int argc, char *argv[])
1000{ 2036{
1001 int i; 2037 int i;
1002 char *from_file = NULL; 2038 const char *from_file = NULL;
2039 int ret = 0;
1003 2040
1004 opterr = 0; 2041 opterr = 0;
1005 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2042 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1006 switch (i) { 2043 switch (i) {
1007 2044
1008 case 'V': 2045 case 'V':
1009 printf("%s compiled %s\n%s\n" 2046 printf("pax-utils-%s: %s compiled %s\n%s\n"
1010 "%s written for Gentoo Linux by <solar and vapier @ gentoo.org>\n", 2047 "%s written for Gentoo by <solar and vapier @ gentoo.org>\n",
1011 __FILE__, __DATE__, rcsid, argv0); 2048 VERSION, __FILE__, __DATE__, rcsid, argv0);
1012 exit(EXIT_SUCCESS); 2049 exit(EXIT_SUCCESS);
1013 break; 2050 break;
1014 case 'h': usage(EXIT_SUCCESS); break; 2051 case 'h': usage(EXIT_SUCCESS); break;
1015 case 'f': 2052 case 'f':
1016 if (from_file) err("Don't specify -f twice"); 2053 if (from_file) warn("You prob don't want to specify -f twice");
1017 from_file = xstrdup(optarg); 2054 from_file = optarg;
2055 break;
2056 case 'E':
2057 match_etypes = optarg;
2058 break;
2059 case 'M':
2060 match_bits = atoi(optarg);
2061 if (match_bits == 0) {
2062 if (strcmp(optarg, "ELFCLASS32") == 0)
2063 match_bits = 32;
2064 if (strcmp(optarg, "ELFCLASS64") == 0)
2065 match_bits = 64;
2066 }
2067 break;
2068 case 'O':
2069 if (sscanf(optarg, "%o", &match_perms) == -1)
2070 match_bits = 0;
1018 break; 2071 break;
1019 case 'o': { 2072 case 'o': {
1020 FILE *fp = NULL;
1021 if ((fp = freopen(optarg, "w", stdout)) == NULL) 2073 if (freopen(optarg, "w", stdout) == NULL)
1022 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2074 errp("Could not freopen(%s)", optarg);
1023 SET_STDOUT(fp);
1024 break; 2075 break;
1025 } 2076 }
1026 2077 case 'k':
2078 xarraypush_str(find_section_arr, optarg);
2079 break;
1027 case 's': { 2080 case 's': {
1028 size_t len;
1029 if (find_sym) err("Don't specify -s twice"); 2081 if (find_sym) warn("You prob don't want to specify -s twice");
1030 find_sym = xstrdup(optarg); 2082 find_sym = optarg;
1031 len = strlen(find_sym) + 1;
1032 versioned_symname = (char*)xmalloc(sizeof(char) * (len+1));
1033 sprintf(versioned_symname, "%s@", find_sym);
1034 break; 2083 break;
1035 } 2084 }
1036 case 'N': { 2085 case 'N':
1037 if (find_lib) err("Don't specify -N twice"); 2086 xarraypush_str(find_lib_arr, optarg);
1038 find_lib = xstrdup(optarg);
1039 break; 2087 break;
1040 }
1041
1042 case 'F': { 2088 case 'F': {
1043 if (out_format) err("Don't specify -F twice"); 2089 if (out_format) warn("You prob don't want to specify -F twice");
1044 out_format = xstrdup(optarg); 2090 out_format = optarg;
1045 break; 2091 break;
1046 } 2092 }
2093 case 'z': {
2094 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
2095 size_t x;
1047 2096
2097 for (x = 0; x < strlen(optarg); x++) {
2098 switch (optarg[x]) {
2099 case 'p':
2100 case 'P':
2101 do_pax_state(optarg[x], PAGEEXEC);
2102 break;
2103 case 's':
2104 case 'S':
2105 do_pax_state(optarg[x], SEGMEXEC);
2106 break;
2107 case 'm':
2108 case 'M':
2109 do_pax_state(optarg[x], MPROTECT);
2110 break;
2111 case 'e':
2112 case 'E':
2113 do_pax_state(optarg[x], EMUTRAMP);
2114 break;
2115 case 'r':
2116 case 'R':
2117 do_pax_state(optarg[x], RANDMMAP);
2118 break;
2119 case 'x':
2120 case 'X':
2121 do_pax_state(optarg[x], RANDEXEC);
2122 break;
2123 default:
2124 break;
2125 }
2126 }
2127 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
2128 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
2129 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
2130 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
2131 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
2132 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
2133 setpax = flags;
2134 break;
2135 }
2136 case 'Z': show_size = 1; break;
2137 case 'g': g_match = 1; break;
2138 case 'L': use_ldcache = 1; break;
1048 case 'y': scan_symlink = 0; break; 2139 case 'y': scan_symlink = 0; break;
2140 case 'A': scan_archives = 1; break;
2141 case 'C': color_init(true); break;
1049 case 'B': show_banner = 0; break; 2142 case 'B': show_banner = 0; break;
1050 case 'l': scan_ldpath = 1; break; 2143 case 'l': scan_ldpath = 1; break;
1051 case 'p': scan_envpath = 1; break; 2144 case 'p': scan_envpath = 1; break;
1052 case 'R': dir_recurse = 1; break; 2145 case 'R': dir_recurse = 1; break;
1053 case 'm': dir_crossmount = 0; break; 2146 case 'm': dir_crossmount = 0; break;
2147 case 'X': ++fix_elf; break;
1054 case 'x': show_pax = 1; break; 2148 case 'x': show_pax = 1; break;
1055 case 'e': show_phdr = 1; break; 2149 case 'e': show_phdr = 1; break;
1056 case 't': show_textrel = 1; break; 2150 case 't': show_textrel = 1; break;
1057 case 'r': show_rpath = 1; break; 2151 case 'r': show_rpath = 1; break;
1058 case 'n': show_needed = 1; break; 2152 case 'n': show_needed = 1; break;
1059 case 'i': show_interp = 1; break; 2153 case 'i': show_interp = 1; break;
1060 case 'b': show_bind = 1; break; 2154 case 'b': show_bind = 1; break;
2155 case 'S': show_soname = 1; break;
1061 case 'T': show_textrels = 1; break; 2156 case 'T': show_textrels = 1; break;
1062 case 'q': be_quiet = 1; break; 2157 case 'q': be_quiet = 1; break;
1063 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2158 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1064 case 'a': show_pax = show_phdr = show_textrel = show_rpath = \ 2159 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1065 show_needed = show_interp = show_bind = 1; break; 2160 case 'D': show_endian = 1; break;
1066 2161 case 'I': show_osabi = 1; break;
2162 case 'Y': show_eabi = 1; break;
2163 case 128:
2164 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2165 if (root_fd == -1)
2166 err("Could not open root: %s", optarg);
2167 break;
1067 case ':': 2168 case ':':
1068 err("Option missing parameter\n"); 2169 err("Option '%c' is missing parameter", optopt);
1069 case '?': 2170 case '?':
1070 err("Unknown option\n"); 2171 err("Unknown option '%c' or argument missing", optopt);
1071 default: 2172 default:
1072 err("Unhandled option '%c'", i); 2173 err("Unhandled option '%c'; please report this", i);
1073 }
1074 } 2174 }
1075 2175 }
2176 if (show_textrels && be_verbose)
2177 has_objdump = bin_in_path("objdump");
2178 /* flatten arrays for display */
2179 if (array_cnt(find_lib_arr))
2180 find_lib = array_flatten_str(find_lib_arr);
2181 if (array_cnt(find_section_arr))
2182 find_section = array_flatten_str(find_section_arr);
1076 /* let the format option override all other options */ 2183 /* let the format option override all other options */
1077 if (out_format) { 2184 if (out_format) {
1078 show_pax = show_phdr = show_textrel = show_rpath = \ 2185 show_pax = show_phdr = show_textrel = show_rpath = \
1079 show_needed = show_interp = show_bind = show_textrels = 0; 2186 show_needed = show_interp = show_bind = show_soname = \
2187 show_textrels = show_perms = show_endian = show_size = \
2188 show_osabi = show_eabi = 0;
1080 for (i = 0; out_format[i]; ++i) { 2189 for (i = 0; out_format[i]; ++i) {
1081 if (!IS_MODIFIER(out_format[i])) continue; 2190 if (!IS_MODIFIER(out_format[i])) continue;
1082 2191
1083 switch (out_format[++i]) { 2192 switch (out_format[++i]) {
2193 case '+': break;
1084 case '%': break; 2194 case '%': break;
1085 case '#': break; 2195 case '#': break;
1086 case 'F': break; 2196 case 'F': break;
1087 case 'p': break; 2197 case 'p': break;
1088 case 'f': break; 2198 case 'f': break;
2199 case 'k': break;
1089 case 's': break; 2200 case 's': break;
1090 case 'N': break; 2201 case 'N': break;
1091 case 'o': break; 2202 case 'o': break;
2203 case 'a': break;
2204 case 'M': break;
2205 case 'Z': show_size = 1; break;
2206 case 'D': show_endian = 1; break;
2207 case 'I': show_osabi = 1; break;
2208 case 'Y': show_eabi = 1; break;
2209 case 'O': show_perms = 1; break;
1092 case 'x': show_pax = 1; break; 2210 case 'x': show_pax = 1; break;
1093 case 'e': show_phdr = 1; break; 2211 case 'e': show_phdr = 1; break;
1094 case 't': show_textrel = 1; break; 2212 case 't': show_textrel = 1; break;
1095 case 'r': show_rpath = 1; break; 2213 case 'r': show_rpath = 1; break;
1096 case 'n': show_needed = 1; break; 2214 case 'n': show_needed = 1; break;
1097 case 'i': show_interp = 1; break; 2215 case 'i': show_interp = 1; break;
1098 case 'b': show_bind = 1; break; 2216 case 'b': show_bind = 1; break;
2217 case 'S': show_soname = 1; break;
1099 case 'T': show_textrels = 1; break; 2218 case 'T': show_textrels = 1; break;
1100 default: 2219 default:
1101 err("Invalid format specifier '%c' (byte %i)", 2220 err("Invalid format specifier '%c' (byte %i)",
1102 out_format[i], i+1); 2221 out_format[i], i+1);
1103 } 2222 }
1104 } 2223 }
1105 2224
1106 /* construct our default format */ 2225 /* construct our default format */
1107 } else { 2226 } else {
1108 size_t fmt_len = 30; 2227 size_t fmt_len = 30;
1109 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2228 out_format = xmalloc(sizeof(char) * fmt_len);
2229 *out_format = '\0';
1110 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2230 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1111 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2231 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
2232 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2233 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
2234 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
2235 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2236 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1112 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 2237 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1113 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2238 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1114 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2239 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1115 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2240 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1116 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2241 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1117 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len); 2242 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
2243 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
1118 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len); 2244 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
1119 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 2245 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
2246 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
1120 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len); 2247 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
1121 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2248 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1122 } 2249 }
1123 if (be_verbose > 2) printf("Format: %s\n", out_format); 2250 if (be_verbose > 2) printf("Format: %s\n", out_format);
1124 2251
1125 /* now lets actually do the scanning */ 2252 /* now lets actually do the scanning */
1126 if (scan_ldpath || (show_rpath && be_quiet)) 2253 if (scan_ldpath || use_ldcache)
1127 load_ld_so_conf(); 2254 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1128 if (scan_ldpath) scanelf_ldpath(); 2255 if (scan_ldpath) scanelf_ldpath();
1129 if (scan_envpath) scanelf_envpath(); 2256 if (scan_envpath) scanelf_envpath();
2257 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
2258 from_file = "-";
1130 if (from_file) { 2259 if (from_file) {
1131 scanelf_from_file(from_file); 2260 scanelf_from_file(from_file);
1132 free(from_file);
1133 from_file = *argv; 2261 from_file = *argv;
1134 } 2262 }
1135 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 2263 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1136 err("Nothing to scan !?"); 2264 err("Nothing to scan !?");
1137 while (optind < argc) { 2265 while (optind < argc) {
1138 search_path = argv[optind++]; 2266 search_path = argv[optind++];
1139 scanelf_dir(search_path); 2267 ret = scanelf_dir(search_path);
1140 } 2268 }
1141 2269
1142 /* clean up */ 2270 /* clean up */
1143 if (find_sym) { 2271 xarrayfree(ldpaths);
2272 xarrayfree(find_lib_arr);
2273 xarrayfree(find_section_arr);
1144 free(find_sym); 2274 free(find_lib);
1145 free(versioned_symname); 2275 free(find_section);
1146 }
1147 if (find_lib) free(find_lib);
1148 if (out_format) free(out_format);
1149 for (i = 0; ldpaths[i]; ++i)
1150 free(ldpaths[i]);
1151}
1152 2276
1153 2277 if (ldcache != 0)
1154 2278 munmap(ldcache, ldcache_size);
1155/* utility funcs */
1156static char *xstrdup(const char *s)
1157{
1158 char *ret = strdup(s);
1159 if (!ret) err("Could not strdup(): %s", strerror(errno));
1160 return ret; 2279 return ret;
1161} 2280}
1162 2281
1163static void *xmalloc(size_t size) 2282static char **get_split_env(const char *envvar)
1164{ 2283{
1165 void *ret = malloc(size); 2284 const char *delims = " \t\n";
1166 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size); 2285 char **envvals = NULL;
1167 return ret; 2286 char *env, *s;
1168} 2287 int nentry;
1169 2288
1170static void xstrcat(char **dst, const char *src, size_t *curr_len) 2289 if ((env = getenv(envvar)) == NULL)
1171{ 2290 return NULL;
1172 size_t new_len;
1173 2291
1174 new_len = strlen(*dst) + strlen(src); 2292 env = xstrdup(env);
1175 if (*curr_len <= new_len) { 2293 if (env == NULL)
1176 *curr_len = new_len + (*curr_len / 2); 2294 return NULL;
1177 *dst = realloc(*dst, *curr_len);
1178 if (!*dst)
1179 err("could not realloc %li bytes", (unsigned long)*curr_len);
1180 }
1181 2295
1182 strcat(*dst, src); 2296 s = strtok(env, delims);
1183} 2297 if (s == NULL) {
2298 free(env);
2299 return NULL;
2300 }
1184 2301
1185static inline void xchrcat(char **dst, const char append, size_t *curr_len) 2302 nentry = 0;
1186{ 2303 while (s != NULL) {
1187 static char my_app[2]; 2304 ++nentry;
1188 my_app[0] = append; 2305 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
1189 my_app[1] = '\0'; 2306 envvals[nentry-1] = s;
1190 xstrcat(dst, my_app, curr_len); 2307 s = strtok(NULL, delims);
1191} 2308 }
2309 envvals[nentry] = NULL;
1192 2310
2311 /* don't want to free(env) as it contains the memory that backs
2312 * the envvals array of strings */
2313 return envvals;
2314}
1193 2315
2316static void parseenv(void)
2317{
2318 color_init(false);
2319 qa_textrels = get_split_env("QA_TEXTRELS");
2320 qa_execstack = get_split_env("QA_EXECSTACK");
2321 qa_wx_load = get_split_env("QA_WX_LOAD");
2322}
2323
2324#ifdef __PAX_UTILS_CLEANUP
2325static void cleanup(void)
2326{
2327 free(out_format);
2328 free(qa_textrels);
2329 free(qa_execstack);
2330 free(qa_wx_load);
2331}
2332#endif
1194 2333
1195int main(int argc, char *argv[]) 2334int main(int argc, char *argv[])
1196{ 2335{
2336 int ret;
1197 if (argc < 2) 2337 if (argc < 2)
1198 usage(EXIT_FAILURE); 2338 usage(EXIT_FAILURE);
2339 parseenv();
1199 parseargs(argc, argv); 2340 ret = parseargs(argc, argv);
1200 fclose(stdout); 2341 fclose(stdout);
1201#ifdef __BOUNDS_CHECKING_ON 2342#ifdef __PAX_UTILS_CLEANUP
1202 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2343 cleanup();
2344 warn("The calls to add/delete heap should be off:\n"
2345 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2346 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1203#endif 2347#endif
1204 return EXIT_SUCCESS; 2348 return ret;
1205} 2349}
2350
2351/* Match filename against entries in matchlist, return TRUE
2352 * if the file is listed */
2353static int file_matches_list(const char *filename, char **matchlist)
2354{
2355 char **file;
2356 char *match;
2357 char buf[__PAX_UTILS_PATH_MAX];
2358
2359 if (matchlist == NULL)
2360 return 0;
2361
2362 for (file = matchlist; *file != NULL; file++) {
2363 if (search_path) {
2364 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2365 match = buf;
2366 } else {
2367 match = *file;
2368 }
2369 if (fnmatch(match, filename, 0) == 0)
2370 return 1;
2371 }
2372 return 0;
2373}

Legend:
Removed from v.1.77  
changed lines
  Added in v.1.239

  ViewVC Help
Powered by ViewVC 1.1.20