/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.44 Revision 1.232
1/* 1/*
2 * Copyright 2003 Ned Ludd <solar@gentoo.org>
3 * Copyright 1999-2005 Gentoo Foundation 2 * Copyright 2003-2007 Gentoo Foundation
4 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
5 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.44 2005/05/10 22:54:25 vapier Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.232 2011/09/27 22:20:07 vapier Exp $
6 * 5 *
7 ******************************************************************** 6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org>
8 * This program is free software; you can redistribute it and/or 7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org>
9 * modify it under the terms of the GNU General Public License as
10 * published by the Free Software Foundation; either version 2 of the
11 * License, or (at your option) any later version.
12 *
13 * This program is distributed in the hope that it will be useful, but
14 * WITHOUT ANY WARRANTY; without even the implied warranty of
15 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
16 * General Public License for more details.
17 *
18 * You should have received a copy of the GNU General Public License
19 * along with this program; if not, write to the Free Software
20 * Foundation, Inc., 59 Temple Place - Suite 330, Boston,
21 * MA 02111-1307, USA.
22 */ 8 */
23 9
24#include <stdio.h>
25#include <stdlib.h>
26#include <sys/types.h>
27#define __USE_GNU
28#include <string.h>
29#include <errno.h>
30#include <unistd.h>
31#include <sys/stat.h>
32#include <dirent.h>
33#include <getopt.h>
34#include <assert.h>
35
36#include "paxelf.h"
37
38static const char *rcsid = "$Id: scanelf.c,v 1.44 2005/05/10 22:54:25 vapier Exp $"; 10static const char rcsid[] = "$Id: scanelf.c,v 1.232 2011/09/27 22:20:07 vapier Exp $";
39#define argv0 "scanelf" 11const char argv0[] = "scanelf";
40 12
13#include "paxinc.h"
41 14
15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
42 16
43/* prototypes */ 17/* prototypes */
44static void scanelf_file(const char *filename); 18static int file_matches_list(const char *filename, char **matchlist);
45static void scanelf_dir(const char *path);
46static void scanelf_ldpath();
47static void scanelf_envpath();
48static void usage(int status);
49static void parseargs(int argc, char *argv[]);
50static char *xstrdup(char *s);
51static void *xmalloc(size_t size);
52static void xstrcat(char **dst, const char *src, size_t *curr_len);
53static inline void xchrcat(char **dst, const char append, size_t *curr_len);
54static int xemptybuffer(const char *buff);
55 19
56/* variables to control behavior */ 20/* variables to control behavior */
21static char *match_etypes = NULL;
22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
57static char scan_ldpath = 0; 23static char scan_ldpath = 0;
58static char scan_envpath = 0; 24static char scan_envpath = 0;
59static char scan_symlink = 1; 25static char scan_symlink = 1;
26static char scan_archives = 0;
60static char dir_recurse = 0; 27static char dir_recurse = 0;
61static char dir_crossmount = 1; 28static char dir_crossmount = 1;
62static char show_pax = 0; 29static char show_pax = 0;
30static char show_perms = 0;
63static char show_stack = 0; 31static char show_size = 0;
32static char show_phdr = 0;
64static char show_textrel = 0; 33static char show_textrel = 0;
65static char show_rpath = 0; 34static char show_rpath = 0;
66static char show_needed = 0; 35static char show_needed = 0;
67static char show_interp = 0; 36static char show_interp = 0;
37static char show_bind = 0;
38static char show_soname = 0;
39static char show_textrels = 0;
68static char show_banner = 1; 40static char show_banner = 1;
41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
69static char be_quiet = 0; 44static char be_quiet = 0;
70static char be_verbose = 0; 45static char be_verbose = 0;
71static char *find_sym = NULL, *versioned_symname = NULL; 46static char be_wewy_wewy_quiet = 0;
47static char be_semi_verbose = 0;
48static char *find_sym = NULL;
49static char *find_lib = NULL;
50static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
51static char *find_section = NULL;
52static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
72static char *out_format = NULL; 53static char *out_format = NULL;
54static char *search_path = NULL;
55static char fix_elf = 0;
56static char g_match = 0;
57static char use_ldcache = 0;
73 58
59static char **qa_textrels = NULL;
60static char **qa_execstack = NULL;
61static char **qa_wx_load = NULL;
62static int root_fd = AT_FDCWD;
74 63
64static int match_bits = 0;
65static unsigned int match_perms = 0;
66static void *ldcache = NULL;
67static size_t ldcache_size = 0;
68static unsigned long setpax = 0UL;
75 69
70static int has_objdump = 0;
71
72/* find the path to a file by name */
73static int bin_in_path(const char *fname)
74{
75 char fullpath[__PAX_UTILS_PATH_MAX];
76 char *path, *p;
77
78 path = getenv("PATH");
79 if (!path)
80 return 0;
81
82 while ((p = strrchr(path, ':')) != NULL) {
83 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
84 *p = 0;
85 if (access(fullpath, R_OK) != -1)
86 return 1;
87 }
88
89 return 0;
90}
91
92static FILE *fopenat_r(int dir_fd, const char *path)
93{
94 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
95 if (fd == -1)
96 return NULL;
97 return fdopen(fd, "re");
98}
99
100static const char *root_rel_path(const char *path)
101{
102 /*
103 * openat() will ignore the dirfd if path starts with
104 * a /, so consume all of that noise
105 *
106 * XXX: we don't handle relative paths like ../ that
107 * break out of the --root option, but for now, just
108 * don't do that :P.
109 */
110 if (root_fd != AT_FDCWD) {
111 while (*path == '/')
112 ++path;
113 if (*path == '\0')
114 path = ".";
115 }
116
117 return path;
118}
119
120/* 1 on failure. 0 otherwise */
121static int rematch(const char *regex, const char *match, int cflags)
122{
123 regex_t preg;
124 int ret;
125
126 if ((match == NULL) || (regex == NULL))
127 return EXIT_FAILURE;
128
129 if ((ret = regcomp(&preg, regex, cflags))) {
130 char err[256];
131
132 if (regerror(ret, &preg, err, sizeof(err)))
133 fprintf(stderr, "regcomp failed: %s", err);
134 else
135 fprintf(stderr, "regcomp failed");
136
137 return EXIT_FAILURE;
138 }
139 ret = regexec(&preg, match, 0, NULL, 0);
140 regfree(&preg);
141
142 return ret;
143}
144
76/* sub-funcs for scanelf_file() */ 145/* sub-funcs for scanelf_fileat() */
146static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab)
147{
148 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
149
150 /* debug sections */
151 void *symtab = elf_findsecbyname(elf, ".symtab");
152 void *strtab = elf_findsecbyname(elf, ".strtab");
153 /* runtime sections */
154 void *dynsym = elf_findsecbyname(elf, ".dynsym");
155 void *dynstr = elf_findsecbyname(elf, ".dynstr");
156
157#define GET_SYMTABS(B) \
158 if (elf->elf_class == ELFCLASS ## B) { \
159 if (symtab && dynsym) { \
160 Elf ## B ## _Shdr *esymtab = symtab; \
161 Elf ## B ## _Shdr *edynsym = dynsym; \
162 *sym = (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) ? symtab : dynsym; \
163 } else \
164 *sym = symtab ? symtab : dynsym; \
165 if (strtab && dynstr) { \
166 Elf ## B ## _Shdr *estrtab = strtab; \
167 Elf ## B ## _Shdr *edynstr = dynstr; \
168 *tab = (EGET(estrtab->sh_size) > EGET(edynstr->sh_size)) ? strtab : dynstr; \
169 } else \
170 *tab = strtab ? strtab : dynstr; \
171 }
172 GET_SYMTABS(32)
173 GET_SYMTABS(64)
174}
175
77static char *scanelf_file_pax(elfobj *elf, char *found_pax) 176static char *scanelf_file_pax(elfobj *elf, char *found_pax)
78{ 177{
79 static char *paxflags; 178 static char ret[7];
179 unsigned long i, shown;
80 180
81 if (!show_pax) return NULL; 181 if (!show_pax) return NULL;
82 182
83 paxflags = pax_short_hf_flags(PAX_FLAGS(elf));
84 if (!be_quiet || (be_quiet && strncmp(paxflags, "PeMRxS", 6))) {
85 *found_pax = 1;
86 return paxflags;
87 }
88
89 return NULL;
90}
91static char *scanelf_file_stack(elfobj *elf, char *found_stack, char *found_relro)
92{
93 static char ret[8];
94 char *found;
95 unsigned long i, off, shown;
96
97 if (!show_stack) return NULL;
98
99 shown = 0; 183 shown = 0;
100 strcpy(ret, "--- ---"); 184 memset(&ret, 0, sizeof(ret));
101 185
102 if (elf->phdr) { 186 if (elf->phdr) {
103#define SHOW_STACK(B) \ 187#define SHOW_PAX(B) \
104 if (elf->elf_class == ELFCLASS ## B) { \ 188 if (elf->elf_class == ELFCLASS ## B) { \
105 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 189 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
106 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 190 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
107 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 191 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
108 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 192 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
109 found = found_stack; \
110 off = 0; \
111 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
112 found = found_relro; \
113 off = 3; \
114 } else \
115 continue; \ 193 continue; \
116 if (be_quiet && !(EGET(phdr[i].p_flags) & PF_X)) \ 194 if (fix_elf && setpax) { \
195 /* set the paxctl flags */ \
196 ESET(phdr[i].p_flags, setpax); \
197 } \
198 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
117 continue; \ 199 continue; \
118 memcpy(ret+off, gnu_short_stack_flags(EGET(phdr[i].p_flags)), 3); \ 200 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
119 *found = 1; \ 201 *found_pax = 1; \
120 ++shown; \ 202 ++shown; \
203 break; \
121 } \ 204 } \
122 } 205 }
123 SHOW_STACK(32) 206 SHOW_PAX(32)
124 SHOW_STACK(64) 207 SHOW_PAX(64)
208 }
209
210 if (fix_elf && setpax) {
211 /* set the chpax settings */
212 if (elf->elf_class == ELFCLASS32) {
213 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC)
214 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
215 } else {
216 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
217 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
125 } 218 }
219 }
126 220
127 if (be_quiet && !shown) 221 /* fall back to EI_PAX if no PT_PAX was found */
222 if (!*ret) {
223 static char *paxflags;
224 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
225 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) {
226 *found_pax = 1;
227 return (be_wewy_wewy_quiet ? NULL : paxflags);
228 }
229 strncpy(ret, paxflags, sizeof(ret));
230 }
231
232 if (be_wewy_wewy_quiet || (be_quiet && !shown))
128 return NULL; 233 return NULL;
129 else 234 else
130 return ret; 235 return ret;
131} 236}
237
238static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
239{
240 static char ret[12];
241 char *found;
242 unsigned long i, shown, multi_stack, multi_relro, multi_load;
243 int max_pt_load;
244
245 if (!show_phdr) return NULL;
246
247 memcpy(ret, "--- --- ---\0", 12);
248
249 shown = 0;
250 multi_stack = multi_relro = multi_load = 0;
251 max_pt_load = elf_max_pt_load(elf);
252
253#define NOTE_GNU_STACK ".note.GNU-stack"
254#define SHOW_PHDR(B) \
255 if (elf->elf_class == ELFCLASS ## B) { \
256 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
257 Elf ## B ## _Off offset; \
258 uint32_t flags, check_flags; \
259 if (elf->phdr != NULL) { \
260 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
261 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
262 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
263 if (multi_stack++) \
264 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
265 if (file_matches_list(elf->filename, qa_execstack)) \
266 continue; \
267 found = found_phdr; \
268 offset = 0; \
269 check_flags = PF_X; \
270 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
271 if (multi_relro++) \
272 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
273 found = found_relro; \
274 offset = 4; \
275 check_flags = PF_X; \
276 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
277 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
278 if (multi_load++ > max_pt_load) \
279 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
280 if (file_matches_list(elf->filename, qa_wx_load)) \
281 continue; \
282 found = found_load; \
283 offset = 8; \
284 check_flags = PF_W|PF_X; \
285 } else \
286 continue; \
287 flags = EGET(phdr[i].p_flags); \
288 if (be_quiet && ((flags & check_flags) != check_flags)) \
289 continue; \
290 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
291 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
292 ret[3] = ret[7] = '!'; \
293 flags = EGET(phdr[i].p_flags); \
294 } \
295 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
296 *found = 1; \
297 ++shown; \
298 } \
299 } else if (elf->shdr != NULL) { \
300 /* no program headers which means this is prob an object file */ \
301 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
302 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
303 char *str; \
304 if ((void*)strtbl > elf->data_end) \
305 goto skip_this_shdr##B; \
306 check_flags = SHF_WRITE|SHF_EXECINSTR; \
307 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
308 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
309 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
310 str = elf->data + offset; \
311 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \
312 if (!strcmp(str, NOTE_GNU_STACK)) { \
313 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \
314 flags = EGET(shdr[i].sh_flags); \
315 if (be_quiet && ((flags & check_flags) != check_flags)) \
316 continue; \
317 ++*found_phdr; \
318 shown = 1; \
319 if (flags & SHF_WRITE) ret[0] = 'W'; \
320 if (flags & SHF_ALLOC) ret[1] = 'A'; \
321 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \
322 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \
323 break; \
324 } \
325 } \
326 skip_this_shdr##B: \
327 if (!multi_stack) { \
328 if (file_matches_list(elf->filename, qa_execstack)) \
329 return NULL; \
330 *found_phdr = 1; \
331 shown = 1; \
332 memcpy(ret, "!WX", 3); \
333 } \
334 } \
335 }
336 SHOW_PHDR(32)
337 SHOW_PHDR(64)
338
339 if (be_wewy_wewy_quiet || (be_quiet && !shown))
340 return NULL;
341 else
342 return ret;
343}
344
345/*
346 * See if this ELF contains a DT_TEXTREL tag in any of its
347 * PT_DYNAMIC sections.
348 */
132static char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 349static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
133{ 350{
134 static char *ret = "TEXTREL"; 351 static const char *ret = "TEXTREL";
135 unsigned long i; 352 unsigned long i;
136 353
137 if (!show_textrel) return NULL; 354 if (!show_textrel && !show_textrels) return NULL;
355
356 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
138 357
139 if (elf->phdr) { 358 if (elf->phdr) {
140#define SHOW_TEXTREL(B) \ 359#define SHOW_TEXTREL(B) \
141 if (elf->elf_class == ELFCLASS ## B) { \ 360 if (elf->elf_class == ELFCLASS ## B) { \
142 Elf ## B ## _Dyn *dyn; \ 361 Elf ## B ## _Dyn *dyn; \
143 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 362 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
144 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 363 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
145 Elf ## B ## _Off offset; \ 364 Elf ## B ## _Off offset; \
146 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 365 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
147 if (phdr[i].p_type != PT_DYNAMIC) continue; \ 366 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
148 offset = EGET(phdr[i].p_offset); \ 367 offset = EGET(phdr[i].p_offset); \
149 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 368 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
150 dyn = DYN ## B (elf->data + offset); \ 369 dyn = DYN ## B (elf->vdata + offset); \
151 while (EGET(dyn->d_tag) != DT_NULL) { \ 370 while (EGET(dyn->d_tag) != DT_NULL) { \
152 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 371 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
153 *found_textrel = 1; \ 372 *found_textrel = 1; \
154 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 373 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
155 return ret; \ 374 return (be_wewy_wewy_quiet ? NULL : ret); \
156 } \ 375 } \
157 ++dyn; \ 376 ++dyn; \
158 } \ 377 } \
159 } } 378 } }
160 SHOW_TEXTREL(32) 379 SHOW_TEXTREL(32)
161 SHOW_TEXTREL(64) 380 SHOW_TEXTREL(64)
162 } 381 }
163 382
164 if (be_quiet) 383 if (be_quiet || be_wewy_wewy_quiet)
165 return NULL; 384 return NULL;
166 else 385 else
167 return " - "; 386 return " - ";
168} 387}
388
389/*
390 * Scan the .text section to see if there are any relocations in it.
391 * Should rewrite this to check PT_LOAD sections that are marked
392 * Executable rather than the section named '.text'.
393 */
394static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
395{
396 unsigned long s, r, rmax;
397 void *symtab_void, *strtab_void, *text_void;
398
399 if (!show_textrels) return NULL;
400
401 /* don't search for TEXTREL's if the ELF doesn't have any */
402 if (!*found_textrel) scanelf_file_textrel(elf, found_textrel);
403 if (!*found_textrel) return NULL;
404
405 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
406 text_void = elf_findsecbyname(elf, ".text");
407
408 if (symtab_void && strtab_void && text_void && elf->shdr) {
409#define SHOW_TEXTRELS(B) \
410 if (elf->elf_class == ELFCLASS ## B) { \
411 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
412 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
413 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
414 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
415 Elf ## B ## _Shdr *text = SHDR ## B (text_void); \
416 Elf ## B ## _Addr vaddr = EGET(text->sh_addr); \
417 uint ## B ## _t memsz = EGET(text->sh_size); \
418 Elf ## B ## _Rel *rel; \
419 Elf ## B ## _Rela *rela; \
420 /* search the section headers for relocations */ \
421 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
422 uint32_t sh_type = EGET(shdr[s].sh_type); \
423 if (sh_type == SHT_REL) { \
424 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
425 rela = NULL; \
426 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
427 } else if (sh_type == SHT_RELA) { \
428 rel = NULL; \
429 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
430 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
431 } else \
432 continue; \
433 /* now see if any of the relocs are in the .text */ \
434 for (r = 0; r < rmax; ++r) { \
435 unsigned long sym_max; \
436 Elf ## B ## _Addr offset_tmp; \
437 Elf ## B ## _Sym *func; \
438 Elf ## B ## _Sym *sym; \
439 Elf ## B ## _Addr r_offset; \
440 uint ## B ## _t r_info; \
441 if (sh_type == SHT_REL) { \
442 r_offset = EGET(rel[r].r_offset); \
443 r_info = EGET(rel[r].r_info); \
444 } else { \
445 r_offset = EGET(rela[r].r_offset); \
446 r_info = EGET(rela[r].r_info); \
447 } \
448 /* make sure this relocation is inside of the .text */ \
449 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
450 if (be_verbose <= 2) continue; \
451 } else \
452 *found_textrels = 1; \
453 /* locate this relocation symbol name */ \
454 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
455 if ((void*)sym > elf->data_end) { \
456 warn("%s: corrupt ELF symbol", elf->filename); \
457 continue; \
458 } \
459 sym_max = ELF ## B ## _R_SYM(r_info); \
460 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
461 sym += sym_max; \
462 else \
463 sym = NULL; \
464 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
465 /* show the raw details about this reloc */ \
466 printf(" %s: ", elf->base_filename); \
467 if (sym && sym->st_name) \
468 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
469 else \
470 printf("(memory/data?)"); \
471 printf(" [0x%lX]", (unsigned long)r_offset); \
472 /* now try to find the closest symbol that this rel is probably in */ \
473 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
474 func = NULL; \
475 offset_tmp = 0; \
476 while (sym_max--) { \
477 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
478 func = sym; \
479 offset_tmp = EGET(sym->st_value); \
480 } \
481 ++sym; \
482 } \
483 printf(" in "); \
484 if (func && func->st_name) { \
485 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
486 if (r_offset > EGET(func->st_size)) \
487 printf("(optimized out: previous %s)", func_name); \
488 else \
489 printf("%s", func_name); \
490 } else \
491 printf("(optimized out)"); \
492 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
493 if (be_verbose && has_objdump) { \
494 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
495 char *sysbuf; \
496 size_t syslen; \
497 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
498 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
499 sysbuf = xmalloc(syslen); \
500 if (end_addr < r_offset) \
501 /* not uncommon when things are optimized out */ \
502 end_addr = r_offset + 0x100; \
503 snprintf(sysbuf, syslen, sysfmt, \
504 (unsigned long)offset_tmp, \
505 (unsigned long)end_addr, \
506 elf->filename, \
507 (unsigned long)r_offset); \
508 fflush(stdout); \
509 if (system(sysbuf)) /* don't care */; \
510 fflush(stdout); \
511 free(sysbuf); \
512 } \
513 } \
514 } }
515 SHOW_TEXTRELS(32)
516 SHOW_TEXTRELS(64)
517 }
518 if (!*found_textrels)
519 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
520
521 return NULL;
522}
523
524static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
525{
526 struct stat st;
527 switch (*item) {
528 case '/': break;
529 case '.':
530 warnf("Security problem with relative %s '%s' in %s", dt_type, item, elf->filename);
531 break;
532 case ':':
533 case '\0':
534 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
535 break;
536 case '$':
537 if (fstat(elf->fd, &st) != -1)
538 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
539 warnf("Security problem with %s='%s' in %s with mode set of %o",
540 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
541 break;
542 default:
543 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
544 break;
545 }
546}
169static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 547static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
170{ 548{
171 /* TODO: if be_quiet, only output RPATH's which aren't in /etc/ld.so.conf */
172 unsigned long i; 549 unsigned long i;
173 char *rpath, *runpath; 550 char *rpath, *runpath, **r;
174 void *strtbl_void; 551 void *strtbl_void;
175 552
176 if (!show_rpath) return; 553 if (!show_rpath) return;
177 554
178 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 555 strtbl_void = elf_findsecbyname(elf, ".dynstr");
184 Elf ## B ## _Dyn *dyn; \ 561 Elf ## B ## _Dyn *dyn; \
185 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 562 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
186 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 563 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
187 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 564 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
188 Elf ## B ## _Off offset; \ 565 Elf ## B ## _Off offset; \
566 Elf ## B ## _Xword word; \
567 /* Scan all the program headers */ \
189 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 568 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
569 /* Just scan dynamic headers */ \
190 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 570 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
191 offset = EGET(phdr[i].p_offset); \ 571 offset = EGET(phdr[i].p_offset); \
192 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 572 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
573 /* Just scan dynamic RPATH/RUNPATH headers */ \
193 dyn = DYN ## B (elf->data + offset); \ 574 dyn = DYN ## B (elf->vdata + offset); \
194 while (EGET(dyn->d_tag) != DT_NULL) { \ 575 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
195 if (EGET(dyn->d_tag) == DT_RPATH) { \ 576 if (word == DT_RPATH) { \
196 if (rpath) warn("ELF has multiple DT_RPATH's !?"); \ 577 r = &rpath; \
578 } else if (word == DT_RUNPATH) { \
579 r = &runpath; \
580 } else { \
581 ++dyn; \
582 continue; \
583 } \
584 /* Verify the memory is somewhat sane */ \
197 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 585 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
198 if (offset >= elf->len) continue; \ 586 if (offset < (Elf ## B ## _Off)elf->len) { \
587 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
199 rpath = (char*)(elf->data + offset); \ 588 *r = elf->data + offset; \
589 /* cache the length in case we need to nuke this section later on */ \
590 if (fix_elf) \
591 offset = strlen(*r); \
592 /* If quiet, don't output paths in ld.so.conf */ \
593 if (be_quiet) { \
594 size_t len; \
595 char *start, *end; \
596 /* note that we only 'chop' off leading known paths. */ \
597 /* since *r is read-only memory, we can only move the ptr forward. */ \
598 start = *r; \
599 /* scan each path in : delimited list */ \
600 while (start) { \
601 rpath_security_checks(elf, start, get_elfdtype(word)); \
602 end = strchr(start, ':'); \
603 len = (end ? abs(end - start) : strlen(start)); \
604 if (use_ldcache) { \
605 size_t n; \
606 const char *ldpath; \
607 array_for_each(ldpaths, n, ldpath) \
608 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
609 *r = end; \
610 /* corner case ... if RPATH reads "/usr/lib:", we want \
611 * to show ':' rather than '' */ \
612 if (end && end[1] != '\0') \
613 (*r)++; \
614 break; \
615 } \
616 } \
617 if (!*r || !end) \
618 break; \
619 else \
620 start = start + len + 1; \
621 } \
622 } \
623 if (*r) { \
624 if (fix_elf > 2 || (fix_elf && **r == '\0')) { \
625 /* just nuke it */ \
626 nuke_it##B: \
627 memset(*r, 0x00, offset); \
628 *r = NULL; \
629 ESET(dyn->d_tag, DT_DEBUG); \
630 ESET(dyn->d_un.d_ptr, 0); \
631 } else if (fix_elf) { \
632 /* try to clean "bad" paths */ \
633 size_t len, tmpdir_len; \
634 char *start, *end; \
635 const char *tmpdir; \
636 start = *r; \
637 tmpdir = (getenv("TMPDIR") ? : "."); \
638 tmpdir_len = strlen(tmpdir); \
639 while (1) { \
640 end = strchr(start, ':'); \
641 if (start == end) { \
642 eat_this_path##B: \
643 len = strlen(end); \
644 memmove(start, end+1, len); \
645 start[len-1] = '\0'; \
646 end = start - 1; \
647 } else if (tmpdir && !strncmp(start, tmpdir, tmpdir_len)) { \
648 if (!end) { \
649 if (start == *r) \
650 goto nuke_it##B; \
651 *--start = '\0'; \
652 } else \
653 goto eat_this_path##B; \
654 } \
655 if (!end) \
656 break; \
657 start = end + 1; \
658 } \
659 if (**r == '\0') \
660 goto nuke_it##B; \
661 } \
662 if (*r) \
200 *found_rpath = 1; \ 663 *found_rpath = 1; \
201 } else if (EGET(dyn->d_tag) == DT_RUNPATH) { \ 664 } \
202 if (runpath) warn("ELF has multiple DT_RUNPATH's !?"); \
203 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
204 if (offset >= elf->len) continue; \
205 runpath = (char*)(elf->data + offset); \
206 *found_rpath = 1; \
207 } \ 665 } \
208 ++dyn; \ 666 ++dyn; \
209 } \ 667 } \
210 } } 668 } }
211 SHOW_RPATH(32) 669 SHOW_RPATH(32)
212 SHOW_RPATH(64) 670 SHOW_RPATH(64)
213 } 671 }
672
673 if (be_wewy_wewy_quiet) return;
214 674
215 if (rpath && runpath) { 675 if (rpath && runpath) {
216 if (!strcmp(rpath, runpath)) { 676 if (!strcmp(rpath, runpath)) {
217 xstrcat(ret, runpath, ret_len); 677 xstrcat(ret, runpath, ret_len);
218 } else { 678 } else {
226 } else if (rpath || runpath) 686 } else if (rpath || runpath)
227 xstrcat(ret, (runpath ? runpath : rpath), ret_len); 687 xstrcat(ret, (runpath ? runpath : rpath), ret_len);
228 else if (!be_quiet) 688 else if (!be_quiet)
229 xstrcat(ret, " - ", ret_len); 689 xstrcat(ret, " - ", ret_len);
230} 690}
691
692#define LDSO_CACHE_MAGIC "ld.so-"
693#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
694#define LDSO_CACHE_VER "1.7.0"
695#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
696#define FLAG_ANY -1
697#define FLAG_TYPE_MASK 0x00ff
698#define FLAG_LIBC4 0x0000
699#define FLAG_ELF 0x0001
700#define FLAG_ELF_LIBC5 0x0002
701#define FLAG_ELF_LIBC6 0x0003
702#define FLAG_REQUIRED_MASK 0xff00
703#define FLAG_SPARC_LIB64 0x0100
704#define FLAG_IA64_LIB64 0x0200
705#define FLAG_X8664_LIB64 0x0300
706#define FLAG_S390_LIB64 0x0400
707#define FLAG_POWERPC_LIB64 0x0500
708#define FLAG_MIPS64_LIBN32 0x0600
709#define FLAG_MIPS64_LIBN64 0x0700
710
711#if defined(__GLIBC__) || defined(__UCLIBC__)
712
713static char *lookup_cache_lib(elfobj *elf, char *fname)
714{
715 int fd;
716 char *strs;
717 static char buf[__PAX_UTILS_PATH_MAX] = "";
718 const char *cachefile = root_rel_path("/etc/ld.so.cache");
719 struct stat st;
720
721 typedef struct {
722 char magic[LDSO_CACHE_MAGIC_LEN];
723 char version[LDSO_CACHE_VER_LEN];
724 int nlibs;
725 } header_t;
726 header_t *header;
727
728 typedef struct {
729 int flags;
730 int sooffset;
731 int liboffset;
732 } libentry_t;
733 libentry_t *libent;
734
735 if (fname == NULL)
736 return NULL;
737
738 if (ldcache == NULL) {
739 if (fstatat(root_fd, cachefile, &st, 0))
740 return NULL;
741
742 fd = openat(root_fd, cachefile, O_RDONLY);
743 if (fd == -1)
744 return NULL;
745
746 /* cache these values so we only map/unmap the cache file once */
747 ldcache_size = st.st_size;
748 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
749 close(fd);
750
751 if (ldcache == MAP_FAILED) {
752 ldcache = NULL;
753 return NULL;
754 }
755
756 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
757 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
758 {
759 munmap(ldcache, ldcache_size);
760 ldcache = NULL;
761 return NULL;
762 }
763 } else
764 header = ldcache;
765
766 libent = ldcache + sizeof(header_t);
767 strs = (char *) &libent[header->nlibs];
768
769 for (fd = 0; fd < header->nlibs; ++fd) {
770 /* This should be more fine grained, but for now we assume that
771 * diff arches will not be cached together, and we ignore the
772 * the different multilib mips cases.
773 */
774 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
775 continue;
776 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
777 continue;
778
779 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
780 continue;
781
782 /* Return first hit because that is how the ldso rolls */
783 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
784 break;
785 }
786
787 return buf;
788}
789
790#elif defined(__NetBSD__)
791static char *lookup_cache_lib(elfobj *elf, char *fname)
792{
793 static char buf[__PAX_UTILS_PATH_MAX] = "";
794 static struct stat st;
795 size_t n;
796 char *ldpath;
797
798 array_for_each(ldpath, n, ldpath) {
799 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
800 continue; /* if the pathname is too long, or something went wrong, ignore */
801
802 if (stat(buf, &st) != 0)
803 continue; /* if the lib doesn't exist in *ldpath, look further */
804
805 /* NetBSD doesn't actually do sanity checks, it just loads the file
806 * and if that doesn't work, continues looking in other directories.
807 * This cannot easily be safely emulated, unfortunately. For now,
808 * just assume that if it exists, it's a valid library. */
809
810 return buf;
811 }
812
813 /* not found in any path */
814 return NULL;
815}
816#else
817#ifdef __ELF__
818#warning Cache support not implemented for your target
819#endif
820static char *lookup_cache_lib(elfobj *elf, char *fname)
821{
822 return NULL;
823}
824#endif
825
231static void scanelf_file_needed(elfobj *elf, char *found_needed, char **ret, size_t *ret_len) 826static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
232{ 827{
233 unsigned long i; 828 unsigned long i;
234 char *needed; 829 char *needed;
235 void *strtbl_void; 830 void *strtbl_void;
831 char *p;
236 832
237 if (!show_needed) return; 833 /*
834 * -n -> op==0 -> print all
835 * -N -> op==1 -> print requested
836 */
837 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
838 return NULL;
238 839
239 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 840 strtbl_void = elf_findsecbyname(elf, ".dynstr");
240 841
241 if (elf->phdr && strtbl_void) { 842 if (elf->phdr && strtbl_void) {
242#define SHOW_NEEDED(B) \ 843#define SHOW_NEEDED(B) \
244 Elf ## B ## _Dyn *dyn; \ 845 Elf ## B ## _Dyn *dyn; \
245 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 846 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
246 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 847 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
247 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 848 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
248 Elf ## B ## _Off offset; \ 849 Elf ## B ## _Off offset; \
850 size_t matched = 0; \
851 /* Walk all the program headers to find the PT_DYNAMIC */ \
249 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 852 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
250 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 853 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
854 continue; \
251 offset = EGET(phdr[i].p_offset); \ 855 offset = EGET(phdr[i].p_offset); \
252 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 856 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
857 continue; \
858 /* Walk all the dynamic tags to find NEEDED entries */ \
253 dyn = DYN ## B (elf->data + offset); \ 859 dyn = DYN ## B (elf->vdata + offset); \
254 while (EGET(dyn->d_tag) != DT_NULL) { \ 860 while (EGET(dyn->d_tag) != DT_NULL) { \
255 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 861 if (EGET(dyn->d_tag) == DT_NEEDED) { \
256 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 862 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
257 if (offset >= elf->len) continue; \ 863 if (offset >= (Elf ## B ## _Off)elf->len) { \
864 ++dyn; \
865 continue; \
866 } \
258 needed = (char*)(elf->data + offset); \ 867 needed = elf->data + offset; \
868 if (op == 0) { \
869 /* -n -> print all entries */ \
870 if (!be_wewy_wewy_quiet) { \
259 if (*found_needed) xchrcat(ret, ',', ret_len); \ 871 if (*found_needed) xchrcat(ret, ',', ret_len); \
872 if (use_ldcache) \
873 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
874 needed = p; \
260 xstrcat(ret, needed, ret_len); \ 875 xstrcat(ret, needed, ret_len); \
876 } \
261 *found_needed = 1; \ 877 *found_needed = 1; \
878 } else { \
879 /* -N -> print matching entries */ \
880 size_t n; \
881 const char *find_lib_name; \
882 \
883 array_for_each(find_lib_arr, n, find_lib_name) \
884 if (!strcmp(find_lib_name, needed)) \
885 ++matched; \
886 \
887 if (matched == array_cnt(find_lib_arr)) { \
888 *found_lib = 1; \
889 return (be_wewy_wewy_quiet ? NULL : find_lib); \
890 } \
891 } \
262 } \ 892 } \
263 ++dyn; \ 893 ++dyn; \
264 } \ 894 } \
265 } } 895 } }
266 SHOW_NEEDED(32) 896 SHOW_NEEDED(32)
267 SHOW_NEEDED(64) 897 SHOW_NEEDED(64)
898 if (op == 0 && !*found_needed && be_verbose)
899 warn("ELF lacks DT_NEEDED sections: %s", elf->filename);
268 } 900 }
901
902 return NULL;
269} 903}
270static char *scanelf_file_interp(elfobj *elf, char *found_interp) 904static char *scanelf_file_interp(elfobj *elf, char *found_interp)
271{ 905{
272 void *strtbl_void; 906 void *strtbl_void;
273 907
278 if (strtbl_void) { 912 if (strtbl_void) {
279#define SHOW_INTERP(B) \ 913#define SHOW_INTERP(B) \
280 if (elf->elf_class == ELFCLASS ## B) { \ 914 if (elf->elf_class == ELFCLASS ## B) { \
281 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 915 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
282 *found_interp = 1; \ 916 *found_interp = 1; \
283 return elf->data + EGET(strtbl->sh_offset); \ 917 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \
284 } 918 }
285 SHOW_INTERP(32) 919 SHOW_INTERP(32)
286 SHOW_INTERP(64) 920 SHOW_INTERP(64)
287 } 921 }
288 return NULL; 922 return NULL;
289} 923}
290static char *scanelf_file_sym(elfobj *elf, char *found_sym, const char *filename) 924static char *scanelf_file_bind(elfobj *elf, char *found_bind)
291{ 925{
292 unsigned long i; 926 unsigned long i;
927 struct stat s;
928 char dynamic = 0;
929
930 if (!show_bind) return NULL;
931 if (!elf->phdr) return NULL;
932
933#define SHOW_BIND(B) \
934 if (elf->elf_class == ELFCLASS ## B) { \
935 Elf ## B ## _Dyn *dyn; \
936 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
937 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
938 Elf ## B ## _Off offset; \
939 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
940 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
941 dynamic = 1; \
942 offset = EGET(phdr[i].p_offset); \
943 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
944 dyn = DYN ## B (elf->vdata + offset); \
945 while (EGET(dyn->d_tag) != DT_NULL) { \
946 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
947 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
948 { \
949 if (be_quiet) return NULL; \
950 *found_bind = 1; \
951 return (char *)(be_wewy_wewy_quiet ? NULL : "NOW"); \
952 } \
953 ++dyn; \
954 } \
955 } \
956 }
957 SHOW_BIND(32)
958 SHOW_BIND(64)
959
960 if (be_wewy_wewy_quiet) return NULL;
961
962 /* don't output anything if quiet mode and the ELF is static or not setuid */
963 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
964 return NULL;
965 } else {
966 *found_bind = 1;
967 return (char *)(dynamic ? "LAZY" : "STATIC");
968 }
969}
970static char *scanelf_file_soname(elfobj *elf, char *found_soname)
971{
972 unsigned long i;
973 char *soname;
974 void *strtbl_void;
975
976 if (!show_soname) return NULL;
977
978 strtbl_void = elf_findsecbyname(elf, ".dynstr");
979
980 if (elf->phdr && strtbl_void) {
981#define SHOW_SONAME(B) \
982 if (elf->elf_class == ELFCLASS ## B) { \
983 Elf ## B ## _Dyn *dyn; \
984 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
985 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
986 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
987 Elf ## B ## _Off offset; \
988 /* only look for soname in shared objects */ \
989 if (EGET(ehdr->e_type) != ET_DYN) \
990 return NULL; \
991 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
992 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
993 offset = EGET(phdr[i].p_offset); \
994 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
995 dyn = DYN ## B (elf->vdata + offset); \
996 while (EGET(dyn->d_tag) != DT_NULL) { \
997 if (EGET(dyn->d_tag) == DT_SONAME) { \
998 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
999 if (offset >= (Elf ## B ## _Off)elf->len) { \
1000 ++dyn; \
1001 continue; \
1002 } \
1003 soname = elf->data + offset; \
1004 *found_soname = 1; \
1005 return (be_wewy_wewy_quiet ? NULL : soname); \
1006 } \
1007 ++dyn; \
1008 } \
1009 } }
1010 SHOW_SONAME(32)
1011 SHOW_SONAME(64)
1012 }
1013
1014 return NULL;
1015}
1016
1017/*
1018 * We support the symbol form:
1019 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
1020 * If the symbol name is empty, then all symbols are matched.
1021 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1022 * Do not rely on this output format at all.
1023 * Otherwise the symbol name is used to search (either regex or string compare).
1024 * If the first char of the symbol name is a plus ("+"), then only match
1025 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1026 * Putting modifiers in between the percent signs allows for more in depth
1027 * filters. There are groups of modifiers. If you don't specify a member
1028 * of a group, then all types in that group are matched. The current
1029 * groups and their types are:
1030 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f SST_FILE:F
1031 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1032 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1033 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1034 * You can search for multiple symbols at once by seperating with a comma (",").
1035 *
1036 * Some examples:
1037 * ELFs with a weak function "foo":
1038 * scanelf -s %wf%foo <ELFs>
1039 * ELFs that define the symbol "main":
1040 * scanelf -s +main <ELFs>
1041 * scanelf -s %d%main <ELFs>
1042 * ELFs that refer to the undefined symbol "brk":
1043 * scanelf -s -brk <ELFs>
1044 * scanelf -s %u%brk <ELFs>
1045 * All global defined objects in an ELF:
1046 * scanelf -s %ogd% <ELF>
1047 */
1048static void
1049scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1050 unsigned int stt, unsigned int stb, unsigned int shn, unsigned long size)
1051{
1052 char *this_sym, *next_sym, saved = saved;
1053
1054 /* allow the user to specify a comma delimited list of symbols to search for */
1055 next_sym = NULL;
1056 do {
1057 bool inc_notype, inc_object, inc_func, inc_file,
1058 inc_local, inc_global, inc_weak,
1059 inc_def, inc_undef, inc_abs, inc_common;
1060
1061 if (next_sym) {
1062 next_sym[-1] = saved;
1063 this_sym = next_sym;
1064 } else
1065 this_sym = find_sym;
1066 if ((next_sym = strchr(this_sym, ','))) {
1067 /* make parsing easier by killing the comma temporarily */
1068 saved = *next_sym;
1069 *next_sym = '\0';
1070 next_sym += 1;
1071 }
1072
1073 /* symbol selection! */
1074 inc_notype = inc_object = inc_func = inc_file = \
1075 inc_local = inc_global = inc_weak = \
1076 inc_def = inc_undef = inc_abs = inc_common = \
1077 (*this_sym != '%');
1078
1079 /* parse the contents of %...% */
1080 if (!inc_notype) {
1081 while (*(this_sym++)) {
1082 if (*this_sym == '%') {
1083 ++this_sym;
1084 break;
1085 }
1086 switch (*this_sym) {
1087 case 'n': inc_notype = true; break;
1088 case 'o': inc_object = true; break;
1089 case 'f': inc_func = true; break;
1090 case 'F': inc_file = true; break;
1091 case 'l': inc_local = true; break;
1092 case 'g': inc_global = true; break;
1093 case 'w': inc_weak = true; break;
1094 case 'd': inc_def = true; break;
1095 case 'u': inc_undef = true; break;
1096 case 'a': inc_abs = true; break;
1097 case 'c': inc_common = true; break;
1098 default: err("invalid symbol selector '%c'", *this_sym);
1099 }
1100 }
1101
1102 /* If no types are matched, not match all */
1103 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1104 inc_notype = inc_object = inc_func = inc_file = true;
1105 if (!inc_local && !inc_global && !inc_weak)
1106 inc_local = inc_global = inc_weak = true;
1107 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1108 inc_def = inc_undef = inc_abs = inc_common = true;
1109
1110 /* backwards compat for defined/undefined short hand */
1111 } else if (*this_sym == '+') {
1112 inc_undef = false;
1113 ++this_sym;
1114 } else if (*this_sym == '-') {
1115 inc_def = inc_abs = inc_common = false;
1116 ++this_sym;
1117 }
1118
1119 /* filter symbols */
1120 if ((!inc_notype && stt == STT_NOTYPE) || \
1121 (!inc_object && stt == STT_OBJECT) || \
1122 (!inc_func && stt == STT_FUNC ) || \
1123 (!inc_file && stt == STT_FILE ) || \
1124 (!inc_local && stb == STB_LOCAL ) || \
1125 (!inc_global && stb == STB_GLOBAL) || \
1126 (!inc_weak && stb == STB_WEAK ) || \
1127 (!inc_def && shn && shn < SHN_LORESERVE) || \
1128 (!inc_undef && shn == SHN_UNDEF ) || \
1129 (!inc_abs && shn == SHN_ABS ) || \
1130 (!inc_common && shn == SHN_COMMON))
1131 continue;
1132
1133 if (*this_sym == '*') {
1134 /* a "*" symbol gets you debug output */
1135 printf("%s(%s) %5lX %15s %15s %15s %s\n",
1136 ((*found_sym == 0) ? "\n\t" : "\t"),
1137 elf->base_filename,
1138 size,
1139 get_elfstttype(stt),
1140 get_elfstbtype(stb),
1141 get_elfshntype(shn),
1142 symname);
1143 goto matched;
1144
1145 } else {
1146 if (g_match) {
1147 /* regex match the symbol */
1148 if (rematch(this_sym, symname, REG_EXTENDED) != 0)
1149 continue;
1150
1151 } else if (*this_sym) {
1152 /* give empty symbols a "pass", else do a normal compare */
1153 const size_t len = strlen(this_sym);
1154 if (!(strncmp(this_sym, symname, len) == 0 &&
1155 /* Accept unversioned symbol names */
1156 (symname[len] == '\0' || symname[len] == '@')))
1157 continue;
1158 }
1159
1160 if (be_semi_verbose) {
1161 char buf[1024];
1162 snprintf(buf, sizeof(buf), "%lX %s %s",
1163 size,
1164 get_elfstttype(stt),
1165 this_sym);
1166 *ret = xstrdup(buf);
1167 } else {
1168 if (*ret) xchrcat(ret, ',', ret_len);
1169 xstrcat(ret, symname, ret_len);
1170 }
1171
1172 goto matched;
1173 }
1174 } while (next_sym);
1175
1176 return;
1177
1178 matched:
1179 *found_sym = 1;
1180 if (next_sym)
1181 next_sym[-1] = saved;
1182}
1183
1184static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
1185{
1186 unsigned long i;
1187 char *ret;
293 void *symtab_void, *strtab_void; 1188 void *symtab_void, *strtab_void;
294 1189
295 if (!find_sym) return NULL; 1190 if (!find_sym) return NULL;
1191 ret = NULL;
296 1192
297 symtab_void = elf_findsecbyname(elf, ".symtab"); 1193 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
298 strtab_void = elf_findsecbyname(elf, ".strtab");
299 1194
300 if (symtab_void && strtab_void) { 1195 if (symtab_void && strtab_void) {
301#define FIND_SYM(B) \ 1196#define FIND_SYM(B) \
302 if (elf->elf_class == ELFCLASS ## B) { \ 1197 if (elf->elf_class == ELFCLASS ## B) { \
303 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1198 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
304 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1199 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
305 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1200 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
306 unsigned long cnt = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 1201 unsigned long cnt = EGET(symtab->sh_entsize); \
307 char *symname; \ 1202 char *symname; \
1203 size_t ret_len = 0; \
1204 if (cnt) \
1205 cnt = EGET(symtab->sh_size) / cnt; \
308 for (i = 0; i < cnt; ++i) { \ 1206 for (i = 0; i < cnt; ++i) { \
1207 if ((void*)sym > elf->data_end) { \
1208 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1209 goto break_out; \
1210 } \
309 if (sym->st_name) { \ 1211 if (sym->st_name) { \
1212 /* make sure the symbol name is in acceptable memory range */ \
310 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1213 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
311 if (*find_sym == '*') { \ 1214 if ((void*)symname > elf->data_end) { \
312 printf("%s(%s) %5lX %15s %s\n", \ 1215 warnf("%s: corrupt ELF symbols", elf->filename); \
313 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1216 ++sym; \
314 (char *)basename(filename), \ 1217 continue; \
315 (long)sym->st_size, \ 1218 } \
316 (char *)get_elfstttype(sym->st_info), \ 1219 scanelf_match_symname(elf, found_sym, \
317 symname); \ 1220 &ret, &ret_len, symname, \
318 *found_sym = 1; \ 1221 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
319 } else if ((strcmp(find_sym, symname) == 0) || \ 1222 ELF##B##_ST_BIND(EGET(sym->st_info)), \
320 (strcmp(symname, versioned_symname) == 0)) \ 1223 EGET(sym->st_shndx), \
321 (*found_sym)++; \ 1224 /* st_size can be 64bit, but no one is really that big, so screw em */ \
1225 EGET(sym->st_size)); \
322 } \ 1226 } \
323 ++sym; \ 1227 ++sym; \
324 } } 1228 } }
325 FIND_SYM(32) 1229 FIND_SYM(32)
326 FIND_SYM(64) 1230 FIND_SYM(64)
327 } 1231 }
1232
1233break_out:
1234 if (be_wewy_wewy_quiet) return NULL;
1235
328 if (*find_sym != '*' && *found_sym) 1236 if (*find_sym != '*' && *found_sym)
329 return find_sym; 1237 return ret;
330 if (be_quiet) 1238 if (be_quiet)
331 return NULL; 1239 return NULL;
332 else 1240 else
333 return " - "; 1241 return " - ";
334} 1242}
1243
1244static const char *scanelf_file_sections(elfobj *elf, char *found_section)
1245{
1246 if (!find_section)
1247 return NULL;
1248
1249#define FIND_SECTION(B) \
1250 if (elf->elf_class == ELFCLASS ## B) { \
1251 size_t matched, n; \
1252 int invert; \
1253 const char *section_name; \
1254 Elf ## B ## _Shdr *section; \
1255 \
1256 matched = 0; \
1257 array_for_each(find_section_arr, n, section_name) { \
1258 invert = (*section_name == '!' ? 1 : 0); \
1259 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
1260 if ((section == NULL && invert) || (section != NULL && !invert)) \
1261 ++matched; \
1262 } \
1263 \
1264 if (matched == array_cnt(find_section_arr)) \
1265 *found_section = 1; \
1266 }
1267 FIND_SECTION(32)
1268 FIND_SECTION(64)
1269
1270 if (be_wewy_wewy_quiet)
1271 return NULL;
1272
1273 if (*found_section)
1274 return find_section;
1275
1276 if (be_quiet)
1277 return NULL;
1278 else
1279 return " - ";
1280}
1281
335/* scan an elf file and show all the fun stuff */ 1282/* scan an elf file and show all the fun stuff */
336#define prints(str) fputs(str, stdout) 1283#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
337static void scanelf_file(const char *filename) 1284static int scanelf_elfobj(elfobj *elf)
338{ 1285{
339 unsigned long i; 1286 unsigned long i;
340 char found_pax, found_stack, found_relro, found_textrel, 1287 char found_pax, found_phdr, found_relro, found_load, found_textrel,
341 found_rpath, found_needed, found_interp, found_sym, 1288 found_rpath, found_needed, found_interp, found_bind, found_soname,
342 found_file; 1289 found_sym, found_lib, found_file, found_textrels, found_section;
343 elfobj *elf;
344 struct stat st;
345 static char *out_buffer = NULL; 1290 static char *out_buffer = NULL;
346 static size_t out_len; 1291 static size_t out_len;
347 1292
348 /* make sure 'filename' exists */
349 if (lstat(filename, &st) == -1) {
350 if (be_verbose > 2) printf("%s: does not exist\n", filename);
351 return;
352 }
353 /* always handle regular files and handle symlinked files if no -y */
354 if (!(S_ISREG(st.st_mode) || (S_ISLNK(st.st_mode) && scan_symlink))) {
355 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
356 return;
357 }
358
359 found_pax = found_stack = found_relro = found_textrel = \ 1293 found_pax = found_phdr = found_relro = found_load = found_textrel = \
360 found_rpath = found_needed = found_interp = found_sym = \ 1294 found_rpath = found_needed = found_interp = found_bind = found_soname = \
361 found_file = 0; 1295 found_sym = found_lib = found_file = found_textrels = found_section = 0;
362 1296
363 /* verify this is real ELF */
364 if ((elf = readelf(filename)) == NULL) {
365 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
366 return;
367 }
368
369 if (be_verbose > 1) 1297 if (be_verbose > 2)
370 printf("%s: scanning file {%s,%s}\n", filename, 1298 printf("%s: scanning file {%s,%s}\n", elf->filename,
371 get_elfeitype(elf, EI_CLASS, elf->elf_class), 1299 get_elfeitype(EI_CLASS, elf->elf_class),
372 get_elfeitype(elf, EI_DATA, elf->data[EI_DATA])); 1300 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
373 else if (be_verbose) 1301 else if (be_verbose > 1)
374 printf("%s: scanning file\n", filename); 1302 printf("%s: scanning file\n", elf->filename);
375 1303
376 /* init output buffer */ 1304 /* init output buffer */
377 if (!out_buffer) { 1305 if (!out_buffer) {
378 out_len = sizeof(char) * 80; 1306 out_len = sizeof(char) * 80;
379 out_buffer = (char*)xmalloc(out_len); 1307 out_buffer = xmalloc(out_len);
380 } 1308 }
381 *out_buffer = '\0'; 1309 *out_buffer = '\0';
382 1310
383 /* show the header */ 1311 /* show the header */
384 if (!be_quiet && show_banner) { 1312 if (!be_quiet && show_banner) {
385 for (i=0; out_format[i]; ++i) { 1313 for (i = 0; out_format[i]; ++i) {
386 if (out_format[i] != '%') continue; 1314 if (!IS_MODIFIER(out_format[i])) continue;
387 1315
388 switch (out_format[++i]) { 1316 switch (out_format[++i]) {
1317 case '+': break;
389 case '%': break; 1318 case '%': break;
1319 case '#': break;
1320 case 'F':
1321 case 'p':
390 case 'F': prints("FILE "); break; 1322 case 'f': prints("FILE "); found_file = 1; break;
391 case 'o': prints(" TYPE "); break; 1323 case 'o': prints(" TYPE "); break;
392 case 'x': prints(" PAX "); break; 1324 case 'x': prints(" PAX "); break;
393 case 'e': prints("STK/REL "); break; 1325 case 'e': prints("STK/REL/PTL "); break;
394 case 't': prints("TEXTREL "); break; 1326 case 't': prints("TEXTREL "); break;
395 case 'r': prints("RPATH "); break; 1327 case 'r': prints("RPATH "); break;
1328 case 'M': prints("CLASS "); break;
396 case 'n': prints("NEEDED "); break; 1329 case 'n': prints("NEEDED "); break;
397 case 'i': prints("INTERP "); break; 1330 case 'i': prints("INTERP "); break;
1331 case 'b': prints("BIND "); break;
1332 case 'Z': prints("SIZE "); break;
1333 case 'S': prints("SONAME "); break;
398 case 's': prints("SYM "); break; 1334 case 's': prints("SYM "); break;
1335 case 'N': prints("LIB "); break;
1336 case 'T': prints("TEXTRELS "); break;
1337 case 'k': prints("SECTION "); break;
1338 case 'a': prints("ARCH "); break;
1339 case 'I': prints("OSABI "); break;
1340 case 'Y': prints("EABI "); break;
1341 case 'O': prints("PERM "); break;
1342 case 'D': prints("ENDIAN "); break;
1343 default: warnf("'%c' has no title ?", out_format[i]);
399 } 1344 }
400 } 1345 }
1346 if (!found_file) prints("FILE ");
401 prints("\n"); 1347 prints("\n");
1348 found_file = 0;
402 show_banner = 0; 1349 show_banner = 0;
403 } 1350 }
404 1351
405 /* dump all the good stuff */ 1352 /* dump all the good stuff */
406 for (i=0; out_format[i]; ++i) { 1353 for (i = 0; out_format[i]; ++i) {
407 const char *out; 1354 const char *out;
408 1355 const char *tmp;
409 /* make sure we trim leading spaces in quiet mode */ 1356 static char ubuf[sizeof(unsigned long)*2];
410 if (be_quiet && *out_buffer == ' ' && !out_buffer[1]) 1357 if (!IS_MODIFIER(out_format[i])) {
411 *out_buffer = '\0';
412
413 if (out_format[i] != '%') {
414 xchrcat(&out_buffer, out_format[i], &out_len); 1358 xchrcat(&out_buffer, out_format[i], &out_len);
415 continue; 1359 continue;
416 } 1360 }
417 1361
418 out = NULL; 1362 out = NULL;
1363 be_wewy_wewy_quiet = (out_format[i] == '#');
1364 be_semi_verbose = (out_format[i] == '+');
419 switch (out_format[++i]) { 1365 switch (out_format[++i]) {
1366 case '+':
1367 case '%':
1368 case '#':
420 case '%': xchrcat(&out_buffer, '%', &out_len); break; 1369 xchrcat(&out_buffer, out_format[i], &out_len); break;
421 case 'F': found_file = 1; xstrcat(&out_buffer, filename, &out_len); break; 1370 case 'F':
1371 found_file = 1;
1372 if (be_wewy_wewy_quiet) break;
1373 xstrcat(&out_buffer, elf->filename, &out_len);
1374 break;
1375 case 'p':
1376 found_file = 1;
1377 if (be_wewy_wewy_quiet) break;
1378 tmp = elf->filename;
1379 if (search_path) {
1380 ssize_t len_search = strlen(search_path);
1381 ssize_t len_file = strlen(elf->filename);
1382 if (!strncmp(elf->filename, search_path, len_search) && \
1383 len_file > len_search)
1384 tmp += len_search;
1385 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++;
1386 }
1387 xstrcat(&out_buffer, tmp, &out_len);
1388 break;
1389 case 'f':
1390 found_file = 1;
1391 if (be_wewy_wewy_quiet) break;
1392 tmp = strrchr(elf->filename, '/');
1393 tmp = (tmp == NULL ? elf->filename : tmp+1);
1394 xstrcat(&out_buffer, tmp, &out_len);
1395 break;
422 case 'o': out = get_elfetype(elf); break; 1396 case 'o': out = get_elfetype(elf); break;
423 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1397 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
424 case 'e': out = scanelf_file_stack(elf, &found_stack, &found_relro); break; 1398 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
425 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1399 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
1400 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
426 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1401 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1402 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1403 case 'D': out = get_endian(elf); break;
1404 case 'O': out = strfileperms(elf->filename); break;
1405 case 'n':
427 case 'n': scanelf_file_needed(elf, &found_needed, &out_buffer, &out_len); break; 1406 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
428 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1407 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
1408 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
1409 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
429 case 's': out = scanelf_file_sym(elf, &found_sym, filename); break; 1410 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1411 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1412 case 'a': out = get_elfemtype(elf); break;
1413 case 'I': out = get_elfosabi(elf); break;
1414 case 'Y': out = get_elf_eabi(elf); break;
1415 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
1416 default: warnf("'%c' has no scan code?", out_format[i]);
430 } 1417 }
1418 if (out)
431 if (out) xstrcat(&out_buffer, out, &out_len); 1419 xstrcat(&out_buffer, out, &out_len);
432 } 1420 }
433 1421
434 if (!found_file) { 1422#define FOUND_SOMETHING() \
435 if (!be_quiet || found_pax || found_stack || found_textrel || \ 1423 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
436 found_rpath || found_needed || found_interp || found_sym) 1424 found_rpath || found_needed || found_interp || found_bind || \
1425 found_soname || found_sym || found_lib || found_textrels || found_section )
1426
1427 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
1428 xchrcat(&out_buffer, ' ', &out_len);
437 xstrcat(&out_buffer, filename, &out_len); 1429 xstrcat(&out_buffer, elf->filename, &out_len);
438 } 1430 }
439 if (!(be_quiet && xemptybuffer(out_buffer))) 1431 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) {
440 puts(out_buffer); 1432 puts(out_buffer);
1433 fflush(stdout);
1434 }
441 1435
1436 return 0;
1437}
1438
1439/* scan a single elf */
1440static int scanelf_elf(const char *filename, int fd, size_t len)
1441{
1442 int ret = 1;
1443 elfobj *elf;
1444
1445 /* verify this is real ELF */
1446 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1447 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1448 return ret;
1449 }
1450 switch (match_bits) {
1451 case 32:
1452 if (elf->elf_class != ELFCLASS32)
1453 goto label_done;
1454 break;
1455 case 64:
1456 if (elf->elf_class != ELFCLASS64)
1457 goto label_done;
1458 break;
1459 default: break;
1460 }
1461 if (match_etypes) {
1462 char sbuf[126];
1463 strncpy(sbuf, match_etypes, sizeof(sbuf));
1464 if (strchr(match_etypes, ',') != NULL) {
1465 char *p;
1466 while ((p = strrchr(sbuf, ',')) != NULL) {
1467 *p = 0;
1468 if (etype_lookup(p+1) == get_etype(elf))
1469 goto label_ret;
1470 }
1471 }
1472 if (etype_lookup(sbuf) != get_etype(elf))
1473 goto label_done;
1474 }
1475
1476label_ret:
1477 ret = scanelf_elfobj(elf);
1478
1479label_done:
442 unreadelf(elf); 1480 unreadelf(elf);
1481 return ret;
1482}
1483
1484/* scan an archive of elfs */
1485static int scanelf_archive(const char *filename, int fd, size_t len)
1486{
1487 archive_handle *ar;
1488 archive_member *m;
1489 char *ar_buffer;
1490 elfobj *elf;
1491
1492 ar = ar_open_fd(filename, fd);
1493 if (ar == NULL)
1494 return 1;
1495
1496 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1497 while ((m = ar_next(ar)) != NULL) {
1498 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1499 if (cur_pos == -1)
1500 errp("lseek() failed");
1501 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1502 if (elf) {
1503 scanelf_elfobj(elf);
1504 unreadelf(elf);
1505 }
1506 }
1507 munmap(ar_buffer, len);
1508
1509 return 0;
1510}
1511/* scan a file which may be an elf or an archive or some other magical beast */
1512static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1513{
1514 const struct stat *st = st_cache;
1515 struct stat symlink_st;
1516 int fd;
1517
1518 /* always handle regular files and handle symlinked files if no -y */
1519 if (S_ISLNK(st->st_mode)) {
1520 if (!scan_symlink)
1521 return 1;
1522 fstatat(dir_fd, filename, &symlink_st, 0);
1523 st = &symlink_st;
1524 }
1525
1526 if (!S_ISREG(st->st_mode)) {
1527 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1528 return 1;
1529 }
1530
1531 if (match_perms) {
1532 if ((st->st_mode | match_perms) != st->st_mode)
1533 return 1;
1534 }
1535 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1536 if (fd == -1)
1537 return 1;
1538
1539 if (scanelf_elf(filename, fd, st->st_size) == 1 && scan_archives)
1540 /* if it isn't an ELF, maybe it's an .a archive */
1541 scanelf_archive(filename, fd, st->st_size);
1542
1543 /* XXX: unreadelf() implicitly closes its fd */
1544 close(fd);
1545 return 0;
443} 1546}
444 1547
445/* scan a directory for ET_EXEC files and print when we find one */ 1548/* scan a directory for ET_EXEC files and print when we find one */
446static void scanelf_dir(const char *path) 1549static int scanelf_dirat(int dir_fd, const char *path)
447{ 1550{
448 register DIR *dir; 1551 register DIR *dir;
449 register struct dirent *dentry; 1552 register struct dirent *dentry;
450 struct stat st_top, st; 1553 struct stat st_top, st;
451 char buf[_POSIX_PATH_MAX]; 1554 char buf[__PAX_UTILS_PATH_MAX], *subpath;
452 size_t pathlen = 0, len = 0; 1555 size_t pathlen = 0, len = 0;
1556 int ret = 0;
1557 int subdir_fd;
453 1558
454 /* make sure path exists */ 1559 /* make sure path exists */
455 if (lstat(path, &st_top) == -1) { 1560 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
456 if (be_verbose > 2) printf("%s: does not exist\n", path); 1561 if (be_verbose > 2) printf("%s: does not exist\n", path);
457 return; 1562 return 1;
458 } 1563 }
459 1564
460 /* ok, if it isn't a directory, assume we can open it */ 1565 /* ok, if it isn't a directory, assume we can open it */
461 if (!S_ISDIR(st_top.st_mode)) { 1566 if (!S_ISDIR(st_top.st_mode))
462 scanelf_file(path); 1567 return scanelf_fileat(dir_fd, path, &st_top);
463 return;
464 }
465 1568
466 /* now scan the dir looking for fun stuff */ 1569 /* now scan the dir looking for fun stuff */
467 if ((dir = opendir(path)) == NULL) { 1570 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
1571 if (subdir_fd == -1)
1572 dir = NULL;
1573 else
1574 dir = fdopendir(subdir_fd);
1575 if (dir == NULL) {
1576 if (subdir_fd != -1)
1577 close(subdir_fd);
468 warnf("could not opendir %s: %s", path, strerror(errno)); 1578 warnf("could not opendir %s: %s", path, strerror(errno));
469 return; 1579 return 1;
470 } 1580 }
471 if (be_verbose) printf("%s: scanning dir\n", path); 1581 if (be_verbose > 1) printf("%s: scanning dir\n", path);
472 1582
473 pathlen = strlen(path); 1583 subpath = stpcpy(buf, path);
1584 *subpath++ = '/';
1585 pathlen = subpath - buf;
474 while ((dentry = readdir(dir))) { 1586 while ((dentry = readdir(dir))) {
475 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1587 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
476 continue; 1588 continue;
477 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1589
478 if (len >= sizeof(buf)) { 1590 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
479 warnf("Skipping '%s': len > sizeof(buf); %d > %d\n", path, (int)len, (int)sizeof(buf));
480 continue; 1591 continue;
1592
1593 len = strlen(dentry->d_name);
1594 if (len + pathlen + 1 >= sizeof(buf)) {
1595 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
1596 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
1597 continue;
481 } 1598 }
482 sprintf(buf, "%s/%s", path, dentry->d_name); 1599 memcpy(subpath, dentry->d_name, len);
483 if (lstat(buf, &st) != -1) { 1600 subpath[len] = '\0';
1601
484 if (S_ISREG(st.st_mode)) 1602 if (S_ISREG(st.st_mode))
485 scanelf_file(buf); 1603 ret = scanelf_fileat(dir_fd, buf, &st);
486 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1604 else if (dir_recurse && S_ISDIR(st.st_mode)) {
487 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1605 if (dir_crossmount || (st_top.st_dev == st.st_dev))
488 scanelf_dir(buf); 1606 ret = scanelf_dirat(dir_fd, buf);
1607 }
1608 }
1609 closedir(dir);
1610
1611 return ret;
1612}
1613static int scanelf_dir(const char *path)
1614{
1615 return scanelf_dirat(root_fd, root_rel_path(path));
1616}
1617
1618static int scanelf_from_file(const char *filename)
1619{
1620 FILE *fp;
1621 char *p, *path;
1622 size_t len;
1623 int ret;
1624
1625 if (strcmp(filename, "-") == 0)
1626 fp = stdin;
1627 else if ((fp = fopen(filename, "r")) == NULL)
1628 return 1;
1629
1630 path = NULL;
1631 len = 0;
1632 ret = 0;
1633 while (getline(&path, &len, fp) != -1) {
1634 if ((p = strchr(path, '\n')) != NULL)
1635 *p = 0;
1636 search_path = path;
1637 ret = scanelf_dir(path);
1638 }
1639 free(path);
1640
1641 if (fp != stdin)
1642 fclose(fp);
1643
1644 return ret;
1645}
1646
1647#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1648
1649static int load_ld_cache_config(int i, const char *fname)
1650{
1651 FILE *fp = NULL;
1652 char *p, *path;
1653 size_t len;
1654 int curr_fd = -1;
1655
1656 fp = fopenat_r(root_fd, root_rel_path(fname));
1657 if (fp == NULL)
1658 return i;
1659
1660 path = NULL;
1661 len = 0;
1662 while (getline(&path, &len, fp) != -1) {
1663 if ((p = strrchr(path, '\r')) != NULL)
1664 *p = 0;
1665 if ((p = strchr(path, '\n')) != NULL)
1666 *p = 0;
1667
1668 /* recursive includes of the same file will make this segfault. */
1669 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1670 glob_t gl;
1671 size_t x;
1672 const char *gpath;
1673
1674 /* re-use existing path buffer ... need to be creative */
1675 if (path[8] != '/')
1676 gpath = memcpy(path + 3, "/etc/", 5);
1677 else
1678 gpath = path + 8;
1679 if (root_fd != AT_FDCWD) {
1680 if (curr_fd == -1) {
1681 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1682 if (fchdir(root_fd))
1683 errp("unable to change to root dir");
1684 }
1685 gpath = root_rel_path(gpath);
489 } 1686 }
1687
1688 if (glob(gpath, 0, NULL, &gl) == 0) {
1689 for (x = 0; x < gl.gl_pathc; ++x) {
1690 /* try to avoid direct loops */
1691 if (strcmp(gl.gl_pathv[x], fname) == 0)
1692 continue;
1693 i = load_ld_cache_config(i, gl.gl_pathv[x]);
1694 }
1695 globfree(&gl);
490 } 1696 }
1697
1698 /* failed globs are ignored by glibc */
1699 continue;
491 } 1700 }
492 closedir(dir); 1701
1702 if (*path != '/')
1703 continue;
1704
1705 xarraypush(ldpaths, path, strlen(path));
1706 }
1707 free(path);
1708
1709 fclose(fp);
1710
1711 if (curr_fd != -1) {
1712 if (fchdir(curr_fd))
1713 /* don't care */;
1714 close(curr_fd);
1715 }
1716
1717 return i;
493} 1718}
1719
1720#elif defined(__FreeBSD__) || defined(__DragonFly__)
1721
1722static int load_ld_cache_config(int i, const char *fname)
1723{
1724 FILE *fp = NULL;
1725 char *b = NULL, *p;
1726 struct elfhints_hdr hdr;
1727
1728 fp = fopenat_r(root_fd, root_rel_path(fname));
1729 if (fp == NULL)
1730 return i;
1731
1732 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1733 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1734 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1735 {
1736 fclose(fp);
1737 return i;
1738 }
1739
1740 b = xmalloc(hdr.dirlistlen + 1);
1741 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1742 fclose(fp);
1743 free(b);
1744 return i;
1745 }
1746
1747 while ((p = strsep(&b, ":"))) {
1748 if (*p == '\0')
1749 continue;
1750 xarraypush(ldpaths, p, strlen(p));
1751 }
1752
1753 free(b);
1754 fclose(fp);
1755 return i;
1756}
1757
1758#else
1759#ifdef __ELF__
1760#warning Cache config support not implemented for your target
1761#endif
1762static int load_ld_cache_config(int i, const char *fname)
1763{
1764 return 0;
1765}
1766#endif
494 1767
495/* scan /etc/ld.so.conf for paths */ 1768/* scan /etc/ld.so.conf for paths */
496static void scanelf_ldpath() 1769static void scanelf_ldpath(void)
497{ 1770{
498 char scan_l, scan_ul, scan_ull; 1771 char scan_l, scan_ul, scan_ull;
499 char *path, *p; 1772 size_t n;
500 FILE *fp; 1773 const char *ldpath;
1774 int i = 0;
501 1775
502 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1776 if (array_cnt(ldpaths) == 0)
503 err("Unable to open ld.so.conf: %s", strerror(errno)); 1777 err("Unable to load any paths from ld.so.conf");
504 1778
505 scan_l = scan_ul = scan_ull = 0; 1779 scan_l = scan_ul = scan_ull = 0;
506 1780
507 path = (char*)xmalloc(_POSIX_PATH_MAX); 1781 array_for_each(ldpaths, n, ldpath) {
508 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL)
509 if (*path == '/') {
510 if ((p = strrchr(path, '\r')) != NULL)
511 *p = 0;
512 if ((p = strrchr(path, '\n')) != NULL)
513 *p = 0;
514 if (!scan_l && !strcmp(path, "/lib")) scan_l = 1; 1782 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = 1;
515 if (!scan_ul && !strcmp(path, "/usr/lib")) scan_ul = 1; 1783 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = 1;
516 if (!scan_ull && !strcmp(path, "/usr/local/lib")) scan_ull = 1; 1784 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = 1;
517 scanelf_dir(path); 1785 scanelf_dir(ldpath);
1786 ++i;
518 } 1787 }
519 free(path);
520 fclose(fp);
521 1788
522 if (!scan_l) scanelf_dir("/lib"); 1789 if (!scan_l) scanelf_dir("/lib");
523 if (!scan_ul) scanelf_dir("/usr/lib"); 1790 if (!scan_ul) scanelf_dir("/usr/lib");
524 if (!scan_ull) scanelf_dir("/usr/local/lib"); 1791 if (!scan_ull) scanelf_dir("/usr/local/lib");
525} 1792}
526 1793
527/* scan env PATH for paths */ 1794/* scan env PATH for paths */
528static void scanelf_envpath() 1795static void scanelf_envpath(void)
529{ 1796{
530 char *path, *p; 1797 char *path, *p;
531 1798
532 path = getenv("PATH"); 1799 path = getenv("PATH");
533 if (!path) 1800 if (!path)
540 } 1807 }
541 1808
542 free(path); 1809 free(path);
543} 1810}
544 1811
545 1812/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
546
547/* usage / invocation handling functions */
548#define PARSE_FLAGS "plRmyxetrnis:aqvF:o:BhV" 1813#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
549#define a_argument required_argument 1814#define a_argument required_argument
550static struct option const long_opts[] = { 1815static struct option const long_opts[] = {
551 {"path", no_argument, NULL, 'p'}, 1816 {"path", no_argument, NULL, 'p'},
552 {"ldpath", no_argument, NULL, 'l'}, 1817 {"ldpath", no_argument, NULL, 'l'},
1818 {"root", a_argument, NULL, 128},
553 {"recursive", no_argument, NULL, 'R'}, 1819 {"recursive", no_argument, NULL, 'R'},
554 {"mount", no_argument, NULL, 'm'}, 1820 {"mount", no_argument, NULL, 'm'},
555 {"symlink", no_argument, NULL, 'y'}, 1821 {"symlink", no_argument, NULL, 'y'},
1822 {"archives", no_argument, NULL, 'A'},
1823 {"ldcache", no_argument, NULL, 'L'},
1824 {"fix", no_argument, NULL, 'X'},
1825 {"setpax", a_argument, NULL, 'z'},
556 {"pax", no_argument, NULL, 'x'}, 1826 {"pax", no_argument, NULL, 'x'},
557 {"header", no_argument, NULL, 'e'}, 1827 {"header", no_argument, NULL, 'e'},
558 {"textrel", no_argument, NULL, 't'}, 1828 {"textrel", no_argument, NULL, 't'},
559 {"rpath", no_argument, NULL, 'r'}, 1829 {"rpath", no_argument, NULL, 'r'},
560 {"needed", no_argument, NULL, 'n'}, 1830 {"needed", no_argument, NULL, 'n'},
561 {"interp", no_argument, NULL, 'i'}, 1831 {"interp", no_argument, NULL, 'i'},
1832 {"bind", no_argument, NULL, 'b'},
1833 {"soname", no_argument, NULL, 'S'},
562 {"symbol", a_argument, NULL, 's'}, 1834 {"symbol", a_argument, NULL, 's'},
1835 {"section", a_argument, NULL, 'k'},
1836 {"lib", a_argument, NULL, 'N'},
1837 {"gmatch", no_argument, NULL, 'g'},
1838 {"textrels", no_argument, NULL, 'T'},
1839 {"etype", a_argument, NULL, 'E'},
1840 {"bits", a_argument, NULL, 'M'},
1841 {"endian", no_argument, NULL, 'D'},
1842 {"osabi", no_argument, NULL, 'I'},
1843 {"eabi", no_argument, NULL, 'Y'},
1844 {"perms", a_argument, NULL, 'O'},
1845 {"size", no_argument, NULL, 'Z'},
563 {"all", no_argument, NULL, 'a'}, 1846 {"all", no_argument, NULL, 'a'},
564 {"quiet", no_argument, NULL, 'q'}, 1847 {"quiet", no_argument, NULL, 'q'},
565 {"verbose", no_argument, NULL, 'v'}, 1848 {"verbose", no_argument, NULL, 'v'},
566 {"format", a_argument, NULL, 'F'}, 1849 {"format", a_argument, NULL, 'F'},
1850 {"from", a_argument, NULL, 'f'},
567 {"file", a_argument, NULL, 'o'}, 1851 {"file", a_argument, NULL, 'o'},
1852 {"nocolor", no_argument, NULL, 'C'},
568 {"nobanner", no_argument, NULL, 'B'}, 1853 {"nobanner", no_argument, NULL, 'B'},
569 {"help", no_argument, NULL, 'h'}, 1854 {"help", no_argument, NULL, 'h'},
570 {"version", no_argument, NULL, 'V'}, 1855 {"version", no_argument, NULL, 'V'},
571 {NULL, no_argument, NULL, 0x0} 1856 {NULL, no_argument, NULL, 0x0}
572}; 1857};
1858
573static char *opts_help[] = { 1859static const char * const opts_help[] = {
574 "Scan all directories in PATH environment", 1860 "Scan all directories in PATH environment",
575 "Scan all directories in /etc/ld.so.conf", 1861 "Scan all directories in /etc/ld.so.conf",
1862 "Root directory (use with -l or -p)",
576 "Scan directories recursively", 1863 "Scan directories recursively",
577 "Don't recursively cross mount points", 1864 "Don't recursively cross mount points",
578 "Don't scan symlinks\n", 1865 "Don't scan symlinks",
1866 "Scan archives (.a files)",
1867 "Utilize ld.so.cache information (use with -r/-n)",
1868 "Try and 'fix' bad things (use with -r/-e)",
1869 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
579 "Print PaX markings", 1870 "Print PaX markings",
580 "Print GNU_STACK markings", 1871 "Print GNU_STACK/PT_LOAD markings",
581 "Print TEXTREL information", 1872 "Print TEXTREL information",
582 "Print RPATH information", 1873 "Print RPATH information",
583 "Print NEEDED information", 1874 "Print NEEDED information",
584 "Print INTERP information", 1875 "Print INTERP information",
1876 "Print BIND information",
1877 "Print SONAME information",
585 "Find a specified symbol", 1878 "Find a specified symbol",
586 "Print all scanned info (-x -e -t -r)\n", 1879 "Find a specified section",
1880 "Find a specified library",
1881 "Use regex matching rather than string compare (use with -s)",
1882 "Locate cause of TEXTREL",
1883 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1884 "Print only ELF files matching numeric bits",
1885 "Print Endianness",
1886 "Print OSABI",
1887 "Print EABI (EM_ARM Only)",
1888 "Print only ELF files matching octal permissions",
1889 "Print ELF file size",
1890 "Print all useful/simple info\n",
587 "Only output 'bad' things", 1891 "Only output 'bad' things",
588 "Be verbose (can be specified more than once)", 1892 "Be verbose (can be specified more than once)",
589 "Use specified format for output", 1893 "Use specified format for output",
1894 "Read input stream from a filename",
590 "Write output stream to a filename", 1895 "Write output stream to a filename",
1896 "Don't emit color in output",
591 "Don't display the header", 1897 "Don't display the header",
592 "Print this help and exit", 1898 "Print this help and exit",
593 "Print version and exit", 1899 "Print version and exit",
594 NULL 1900 NULL
595}; 1901};
596 1902
597/* display usage and exit */ 1903/* display usage and exit */
598static void usage(int status) 1904static void usage(int status)
599{ 1905{
600 unsigned long i; 1906 unsigned long i;
601 printf(" Scan ELF binaries for stuff\n\n" 1907 printf("* Scan ELF binaries for stuff\n\n"
602 "Usage: %s [options] <dir1/file1> [dir2 dirN fileN ...]\n\n", argv0); 1908 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
603 printf("Options: -[%s]\n", PARSE_FLAGS); 1909 printf("Options: -[%s]\n", PARSE_FLAGS);
604 for (i = 0; long_opts[i].name; ++i) 1910 for (i = 0; long_opts[i].name; ++i)
605 if (long_opts[i].has_arg == no_argument) 1911 if (long_opts[i].has_arg == no_argument)
606 printf(" -%c, --%-13s %s\n", long_opts[i].val, 1912 printf(" -%c, --%-14s* %s\n", long_opts[i].val,
1913 long_opts[i].name, opts_help[i]);
1914 else if (long_opts[i].val > '~')
1915 printf(" --%-7s <arg> * %s\n",
607 long_opts[i].name, opts_help[i]); 1916 long_opts[i].name, opts_help[i]);
608 else 1917 else
609 printf(" -%c, --%-6s <arg> %s\n", long_opts[i].val, 1918 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val,
610 long_opts[i].name, opts_help[i]); 1919 long_opts[i].name, opts_help[i]);
1920
1921 puts("\nFor more information, see the scanelf(1) manpage");
611 exit(status); 1922 exit(status);
612} 1923}
613 1924
614/* parse command line arguments and preform needed actions */ 1925/* parse command line arguments and preform needed actions */
1926#define do_pax_state(option, flag) \
1927 if (islower(option)) { \
1928 flags &= ~PF_##flag; \
1929 flags |= PF_NO##flag; \
1930 } else { \
1931 flags &= ~PF_NO##flag; \
1932 flags |= PF_##flag; \
1933 }
615static void parseargs(int argc, char *argv[]) 1934static int parseargs(int argc, char *argv[])
616{ 1935{
617 int flag; 1936 int i;
1937 const char *from_file = NULL;
1938 int ret = 0;
618 1939
619 opterr = 0; 1940 opterr = 0;
620 while ((flag=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 1941 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
621 switch (flag) { 1942 switch (i) {
622 1943
623 case 'V': 1944 case 'V':
624 printf("%s compiled %s\n%s\n" 1945 printf("pax-utils-%s: %s compiled %s\n%s\n"
625 "%s written for Gentoo Linux by <solar and vapier @ gentoo.org>\n", 1946 "%s written for Gentoo by <solar and vapier @ gentoo.org>\n",
626 __FILE__, __DATE__, rcsid, argv0); 1947 VERSION, __FILE__, __DATE__, rcsid, argv0);
627 exit(EXIT_SUCCESS); 1948 exit(EXIT_SUCCESS);
628 break; 1949 break;
629 case 'h': usage(EXIT_SUCCESS); break; 1950 case 'h': usage(EXIT_SUCCESS); break;
630 1951 case 'f':
1952 if (from_file) warn("You prob don't want to specify -f twice");
1953 from_file = optarg;
1954 break;
1955 case 'E':
1956 match_etypes = optarg;
1957 break;
1958 case 'M':
1959 match_bits = atoi(optarg);
1960 if (match_bits == 0) {
1961 if (strcmp(optarg, "ELFCLASS32") == 0)
1962 match_bits = 32;
1963 if (strcmp(optarg, "ELFCLASS64") == 0)
1964 match_bits = 64;
1965 }
1966 break;
1967 case 'O':
1968 if (sscanf(optarg, "%o", &match_perms) == -1)
1969 match_bits = 0;
1970 break;
631 case 'o': { 1971 case 'o': {
632 FILE *fp = NULL;
633 fp = freopen(optarg, "w", stdout); 1972 if (freopen(optarg, "w", stdout) == NULL)
634 if (fp == NULL)
635 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 1973 err("Could not open output stream '%s': %s", optarg, strerror(errno));
636 stdout = fp;
637 break; 1974 break;
638 } 1975 }
639 1976 case 'k':
1977 xarraypush(find_section_arr, optarg, strlen(optarg));
1978 break;
640 case 's': { 1979 case 's': {
641 size_t len; 1980 if (find_sym) warn("You prob don't want to specify -s twice");
642 find_sym = xstrdup(optarg); 1981 find_sym = optarg;
643 len = strlen(find_sym) + 1;
644 versioned_symname = (char*)xmalloc(sizeof(char) * (len+1));
645 sprintf(versioned_symname, "%s@", find_sym);
646 break; 1982 break;
647 } 1983 }
648 1984 case 'N':
1985 xarraypush(find_lib_arr, optarg, strlen(optarg));
1986 break;
649 case 'F': { 1987 case 'F': {
1988 if (out_format) warn("You prob don't want to specify -F twice");
650 out_format = strdup(optarg); 1989 out_format = optarg;
651 break; 1990 break;
652 } 1991 }
1992 case 'z': {
1993 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1994 size_t x;
653 1995
1996 for (x = 0; x < strlen(optarg); x++) {
1997 switch (optarg[x]) {
1998 case 'p':
1999 case 'P':
2000 do_pax_state(optarg[x], PAGEEXEC);
2001 break;
2002 case 's':
2003 case 'S':
2004 do_pax_state(optarg[x], SEGMEXEC);
2005 break;
2006 case 'm':
2007 case 'M':
2008 do_pax_state(optarg[x], MPROTECT);
2009 break;
2010 case 'e':
2011 case 'E':
2012 do_pax_state(optarg[x], EMUTRAMP);
2013 break;
2014 case 'r':
2015 case 'R':
2016 do_pax_state(optarg[x], RANDMMAP);
2017 break;
2018 case 'x':
2019 case 'X':
2020 do_pax_state(optarg[x], RANDEXEC);
2021 break;
2022 default:
2023 break;
2024 }
2025 }
2026 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
2027 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
2028 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
2029 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
2030 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
2031 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
2032 setpax = flags;
2033 break;
2034 }
2035 case 'Z': show_size = 1; break;
2036 case 'g': g_match = 1; break;
2037 case 'L': use_ldcache = 1; break;
654 case 'y': scan_symlink = 0; break; 2038 case 'y': scan_symlink = 0; break;
2039 case 'A': scan_archives = 1; break;
2040 case 'C': color_init(true); break;
655 case 'B': show_banner = 0; break; 2041 case 'B': show_banner = 0; break;
656 case 'l': scan_ldpath = 1; break; 2042 case 'l': scan_ldpath = 1; break;
657 case 'p': scan_envpath = 1; break; 2043 case 'p': scan_envpath = 1; break;
658 case 'R': dir_recurse = 1; break; 2044 case 'R': dir_recurse = 1; break;
659 case 'm': dir_crossmount = 0; break; 2045 case 'm': dir_crossmount = 0; break;
2046 case 'X': ++fix_elf; break;
660 case 'x': show_pax = 1; break; 2047 case 'x': show_pax = 1; break;
661 case 'e': show_stack = 1; break; 2048 case 'e': show_phdr = 1; break;
662 case 't': show_textrel = 1; break; 2049 case 't': show_textrel = 1; break;
663 case 'r': show_rpath = 1; break; 2050 case 'r': show_rpath = 1; break;
664 case 'n': show_needed = 1; break; 2051 case 'n': show_needed = 1; break;
665 case 'i': show_interp = 1; break; 2052 case 'i': show_interp = 1; break;
2053 case 'b': show_bind = 1; break;
2054 case 'S': show_soname = 1; break;
2055 case 'T': show_textrels = 1; break;
666 case 'q': be_quiet = 1; break; 2056 case 'q': be_quiet = 1; break;
667 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2057 case 'v': be_verbose = (be_verbose % 20) + 1; break;
668 case 'a': show_pax = show_stack = show_textrel = show_rpath = show_needed = show_interp = 1; break; 2058 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
669 2059 case 'D': show_endian = 1; break;
2060 case 'I': show_osabi = 1; break;
2061 case 'Y': show_eabi = 1; break;
2062 case 128:
2063 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2064 if (root_fd == -1)
2065 err("Could not open root: %s", optarg);
2066 break;
670 case ':': 2067 case ':':
671 warn("Option missing parameter\n"); 2068 err("Option '%c' is missing parameter", optopt);
672 usage(EXIT_FAILURE);
673 break;
674 case '?': 2069 case '?':
675 warn("Unknown option\n"); 2070 err("Unknown option '%c' or argument missing", optopt);
676 usage(EXIT_FAILURE);
677 break;
678 default: 2071 default:
679 err("Unhandled option '%c'", flag); 2072 err("Unhandled option '%c'; please report this", i);
680 break;
681 }
682 } 2073 }
683 2074 }
684 if (be_quiet && be_verbose) 2075 if (show_textrels && be_verbose)
685 err("You can be quiet or you can be verbose, not both, stupid"); 2076 has_objdump = bin_in_path("objdump");
686 2077 /* flatten arrays for display */
2078 if (array_cnt(find_lib_arr))
2079 find_lib = array_flatten_str(find_lib_arr);
2080 if (array_cnt(find_section_arr))
2081 find_section = array_flatten_str(find_section_arr);
687 /* let the format option override all other options */ 2082 /* let the format option override all other options */
688 if (out_format) { 2083 if (out_format) {
689 show_pax = show_stack = show_textrel = show_rpath = show_needed = show_interp = 0; 2084 show_pax = show_phdr = show_textrel = show_rpath = \
2085 show_needed = show_interp = show_bind = show_soname = \
2086 show_textrels = show_perms = show_endian = show_size = \
2087 show_osabi = show_eabi = 0;
690 for (flag=0; out_format[flag]; ++flag) { 2088 for (i = 0; out_format[i]; ++i) {
691 if (out_format[flag] != '%') continue; 2089 if (!IS_MODIFIER(out_format[i])) continue;
692 2090
693 switch (out_format[++flag]) { 2091 switch (out_format[++i]) {
2092 case '+': break;
694 case '%': break; 2093 case '%': break;
2094 case '#': break;
695 case 'F': break; 2095 case 'F': break;
2096 case 'p': break;
2097 case 'f': break;
2098 case 'k': break;
696 case 's': break; 2099 case 's': break;
2100 case 'N': break;
697 case 'o': break; 2101 case 'o': break;
2102 case 'a': break;
2103 case 'M': break;
2104 case 'Z': show_size = 1; break;
2105 case 'D': show_endian = 1; break;
2106 case 'I': show_osabi = 1; break;
2107 case 'Y': show_eabi = 1; break;
2108 case 'O': show_perms = 1; break;
698 case 'x': show_pax = 1; break; 2109 case 'x': show_pax = 1; break;
699 case 'e': show_stack = 1; break; 2110 case 'e': show_phdr = 1; break;
700 case 't': show_textrel = 1; break; 2111 case 't': show_textrel = 1; break;
701 case 'r': show_rpath = 1; break; 2112 case 'r': show_rpath = 1; break;
702 case 'n': show_needed = 1; break; 2113 case 'n': show_needed = 1; break;
703 case 'i': show_interp = 1; break; 2114 case 'i': show_interp = 1; break;
2115 case 'b': show_bind = 1; break;
2116 case 'S': show_soname = 1; break;
2117 case 'T': show_textrels = 1; break;
704 default: 2118 default:
705 err("Invalid format specifier '%c' (byte %i)", 2119 err("Invalid format specifier '%c' (byte %i)",
706 out_format[flag], flag+1); 2120 out_format[i], i+1);
707 } 2121 }
708 } 2122 }
709 2123
710 /* construct our default format */ 2124 /* construct our default format */
711 } else { 2125 } else {
712 size_t fmt_len = 30; 2126 size_t fmt_len = 30;
713 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2127 out_format = xmalloc(sizeof(char) * fmt_len);
2128 *out_format = '\0';
714 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2129 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
715 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2130 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
2131 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2132 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
2133 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
716 if (show_stack) xstrcat(&out_format, "%e ", &fmt_len); 2134 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2135 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
2136 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
717 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2137 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
718 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2138 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
719 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2139 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
720 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2140 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
2141 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
2142 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
2143 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
721 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 2144 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
2145 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
2146 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
722 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2147 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
723 } 2148 }
724 if (be_verbose > 2) printf("Format: %s\n", out_format); 2149 if (be_verbose > 2) printf("Format: %s\n", out_format);
725 2150
726 /* now lets actually do the scanning */ 2151 /* now lets actually do the scanning */
2152 if (scan_ldpath || use_ldcache)
2153 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
727 if (scan_ldpath) scanelf_ldpath(); 2154 if (scan_ldpath) scanelf_ldpath();
728 if (scan_envpath) scanelf_envpath(); 2155 if (scan_envpath) scanelf_envpath();
2156 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
2157 from_file = "-";
2158 if (from_file) {
2159 scanelf_from_file(from_file);
2160 from_file = *argv;
2161 }
729 if (optind == argc && !scan_ldpath && !scan_envpath) 2162 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
730 err("Nothing to scan !?"); 2163 err("Nothing to scan !?");
731 while (optind < argc) 2164 while (optind < argc) {
732 scanelf_dir(argv[optind++]); 2165 search_path = argv[optind++];
2166 ret = scanelf_dir(search_path);
2167 }
733 2168
734 /* clean up */ 2169 /* clean up */
735 if (find_sym) { 2170 xarrayfree(ldpaths);
2171 xarrayfree(find_lib_arr);
2172 xarrayfree(find_section_arr);
736 free(find_sym); 2173 free(find_lib);
737 free(versioned_symname); 2174 free(find_section);
738 }
739 if (out_format) free(out_format);
740}
741 2175
742 2176 if (ldcache != 0)
743 2177 munmap(ldcache, ldcache_size);
744/* utility funcs */
745static char *xstrdup(char *s)
746{
747 char *ret = strdup(s);
748 if (!ret) err("Could not strdup(): %s", strerror(errno));
749 return ret; 2178 return ret;
750} 2179}
751static void *xmalloc(size_t size)
752{
753 void *ret = malloc(size);
754 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
755 return ret;
756}
757static void xstrcat(char **dst, const char *src, size_t *curr_len)
758{
759 long new_len;
760 2180
761 new_len = strlen(*dst) + strlen(src); 2181static char **get_split_env(const char *envvar)
762 if (*curr_len <= new_len) {
763 *curr_len = new_len + (*curr_len / 2);
764 *dst = realloc(*dst, *curr_len);
765 if (!*dst)
766 err("could not realloc %li bytes", (unsigned long)*curr_len);
767 }
768
769 strcat(*dst, src);
770}
771static inline void xchrcat(char **dst, const char append, size_t *curr_len)
772{ 2182{
773 static char my_app[2]; 2183 const char *delims = " \t\n";
774 my_app[0] = append; 2184 char **envvals = NULL;
775 my_app[1] = '\0'; 2185 char *env, *s;
776 xstrcat(dst, my_app, curr_len); 2186 int nentry;
777} 2187
778static int xemptybuffer(const char *buff) 2188 if ((env = getenv(envvar)) == NULL)
779{
780 long i;
781 for (i=0; buff[i]; ++i)
782 if (buff[i] != ' ')
783 return 0; 2189 return NULL;
2190
2191 env = xstrdup(env);
2192 if (env == NULL)
784 return 1; 2193 return NULL;
785}
786 2194
2195 s = strtok(env, delims);
2196 if (s == NULL) {
2197 free(env);
2198 return NULL;
2199 }
787 2200
2201 nentry = 0;
2202 while (s != NULL) {
2203 ++nentry;
2204 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
2205 envvals[nentry-1] = s;
2206 s = strtok(NULL, delims);
2207 }
2208 envvals[nentry] = NULL;
2209
2210 /* don't want to free(env) as it contains the memory that backs
2211 * the envvals array of strings */
2212 return envvals;
2213}
2214
2215static void parseenv(void)
2216{
2217 color_init(false);
2218 qa_textrels = get_split_env("QA_TEXTRELS");
2219 qa_execstack = get_split_env("QA_EXECSTACK");
2220 qa_wx_load = get_split_env("QA_WX_LOAD");
2221}
2222
2223#ifdef __PAX_UTILS_CLEANUP
2224static void cleanup(void)
2225{
2226 free(out_format);
2227 free(qa_textrels);
2228 free(qa_execstack);
2229 free(qa_wx_load);
2230}
2231#endif
788 2232
789int main(int argc, char *argv[]) 2233int main(int argc, char *argv[])
790{ 2234{
2235 int ret;
791 if (argc < 2) 2236 if (argc < 2)
792 usage(EXIT_FAILURE); 2237 usage(EXIT_FAILURE);
2238 parseenv();
793 parseargs(argc, argv); 2239 ret = parseargs(argc, argv);
794 fclose(stdout); 2240 fclose(stdout);
795 return EXIT_SUCCESS; 2241#ifdef __PAX_UTILS_CLEANUP
2242 cleanup();
2243 warn("The calls to add/delete heap should be off:\n"
2244 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2245 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
2246#endif
2247 return ret;
796} 2248}
2249
2250/* Match filename against entries in matchlist, return TRUE
2251 * if the file is listed */
2252static int file_matches_list(const char *filename, char **matchlist)
2253{
2254 char **file;
2255 char *match;
2256 char buf[__PAX_UTILS_PATH_MAX];
2257
2258 if (matchlist == NULL)
2259 return 0;
2260
2261 for (file = matchlist; *file != NULL; file++) {
2262 if (search_path) {
2263 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2264 match = buf;
2265 } else {
2266 match = *file;
2267 }
2268 if (fnmatch(match, filename, 0) == 0)
2269 return 1;
2270 }
2271 return 0;
2272}

Legend:
Removed from v.1.44  
changed lines
  Added in v.1.232

  ViewVC Help
Powered by ViewVC 1.1.20