/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.88 Revision 1.195
1/* 1/*
2 * Copyright 2003-2005 Gentoo Foundation 2 * Copyright 2003-2007 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.88 2005/09/30 03:30:54 vapier Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.195 2008/10/22 15:20:21 flameeyes Exp $
5 * 5 *
6 * Copyright 2003-2005 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2005 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10#include <stdio.h> 10static const char *rcsid = "$Id: scanelf.c,v 1.195 2008/10/22 15:20:21 flameeyes Exp $";
11#include <stdlib.h> 11const char * const argv0 = "scanelf";
12#include <sys/types.h> 12
13#include <libgen.h>
14#include <limits.h>
15#define __USE_GNU
16#include <string.h>
17#include <errno.h>
18#include <unistd.h>
19#include <sys/stat.h>
20#include <dirent.h>
21#include <getopt.h>
22#include <assert.h>
23#include "paxelf.h" 13#include "paxinc.h"
24 14
25static const char *rcsid = "$Id: scanelf.c,v 1.88 2005/09/30 03:30:54 vapier Exp $";
26#define argv0 "scanelf"
27
28#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
29
30
31 16
32/* prototypes */ 17/* prototypes */
33static void scanelf_file(const char *filename); 18static int file_matches_list(const char *filename, char **matchlist);
19static int scanelf_elfobj(elfobj *elf);
20static int scanelf_elf(const char *filename, int fd, size_t len);
21static int scanelf_archive(const char *filename, int fd, size_t len);
22static int scanelf_file(const char *filename, const struct stat *st_cache);
34static void scanelf_dir(const char *path); 23static int scanelf_dir(const char *path);
35static void scanelf_ldpath(); 24static void scanelf_ldpath(void);
36static void scanelf_envpath(); 25static void scanelf_envpath(void);
37static void usage(int status); 26static void usage(int status);
27static char **get_split_env(const char *envvar);
28static void parseenv(void);
38static void parseargs(int argc, char *argv[]); 29static int parseargs(int argc, char *argv[]);
39static char *xstrdup(const char *s); 30static int rematch(const char *regex, const char *match, int cflags);
40static void *xmalloc(size_t size);
41static void xstrcat(char **dst, const char *src, size_t *curr_len);
42static inline void xchrcat(char **dst, const char append, size_t *curr_len);
43 31
44/* variables to control behavior */ 32/* variables to control behavior */
33static char match_etypes[126] = "";
45static char *ldpaths[256]; 34static char *ldpaths[256];
46static char scan_ldpath = 0; 35static char scan_ldpath = 0;
47static char scan_envpath = 0; 36static char scan_envpath = 0;
48static char scan_symlink = 1; 37static char scan_symlink = 1;
38static char scan_archives = 0;
49static char dir_recurse = 0; 39static char dir_recurse = 0;
50static char dir_crossmount = 1; 40static char dir_crossmount = 1;
51static char show_pax = 0; 41static char show_pax = 0;
42static char show_perms = 0;
43static char show_size = 0;
52static char show_phdr = 0; 44static char show_phdr = 0;
53static char show_textrel = 0; 45static char show_textrel = 0;
54static char show_rpath = 0; 46static char show_rpath = 0;
55static char show_needed = 0; 47static char show_needed = 0;
56static char show_interp = 0; 48static char show_interp = 0;
57static char show_bind = 0; 49static char show_bind = 0;
58static char show_soname = 0; 50static char show_soname = 0;
59static char show_textrels = 0; 51static char show_textrels = 0;
60static char show_banner = 1; 52static char show_banner = 1;
53static char show_endian = 0;
54static char show_osabi = 0;
55static char show_eabi = 0;
61static char be_quiet = 0; 56static char be_quiet = 0;
62static char be_verbose = 0; 57static char be_verbose = 0;
63static char be_wewy_wewy_quiet = 0; 58static char be_wewy_wewy_quiet = 0;
59static char be_semi_verbose = 0;
64static char *find_sym = NULL, *versioned_symname = NULL; 60static char *find_sym = NULL, *versioned_symname = NULL;
65static char *find_lib = NULL; 61static char *find_lib = NULL;
62static char *find_section = NULL;
66static char *out_format = NULL; 63static char *out_format = NULL;
67static char *search_path = NULL; 64static char *search_path = NULL;
65static char fix_elf = 0;
68static char gmatch = 0; 66static char g_match = 0;
67static char use_ldcache = 0;
69 68
69static char **qa_textrels = NULL;
70static char **qa_execstack = NULL;
71static char **qa_wx_load = NULL;
72
73int match_bits = 0;
74unsigned int match_perms = 0;
75caddr_t ldcache = 0;
76size_t ldcache_size = 0;
77unsigned long setpax = 0UL;
78
79int has_objdump = 0;
80
81static char *getstr_perms(const char *fname);
82static char *getstr_perms(const char *fname)
83{
84 struct stat st;
85 static char buf[8];
86
87 if ((stat(fname, &st)) == (-1))
88 return (char *) "";
89
90 snprintf(buf, sizeof(buf), "%o", st.st_mode);
91
92 return (char *) buf + 2;
93}
94
95/* find the path to a file by name */
96static char *which(const char *fname)
97{
98 static char fullpath[BUFSIZ];
99 char *path, *p;
100
101 path = getenv("PATH");
102 if (!path)
103 return NULL;
104
105 path = xstrdup(path);
106 while ((p = strrchr(path, ':')) != NULL) {
107 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
108 *p = 0;
109 if (access(fullpath, R_OK) != (-1)) {
110 free(path);
111 return (char *) fullpath;
112 }
113 }
114 free(path);
115 return NULL;
116}
117
118/* 1 on failure. 0 otherwise */
119static int rematch(const char *regex, const char *match, int cflags)
120{
121 regex_t preg;
122 int ret;
123
124 if ((match == NULL) || (regex == NULL))
125 return EXIT_FAILURE;
126
127 if ((ret = regcomp(&preg, regex, cflags))) {
128 char err[256];
129
130 if (regerror(ret, &preg, err, sizeof(err)))
131 fprintf(stderr, "regcomp failed: %s", err);
132 else
133 fprintf(stderr, "regcomp failed");
134
135 return EXIT_FAILURE;
136 }
137 ret = regexec(&preg, match, 0, NULL, 0);
138 regfree(&preg);
139
140 return ret;
141}
70 142
71/* sub-funcs for scanelf_file() */ 143/* sub-funcs for scanelf_file() */
72static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 144static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab)
73{ 145{
74 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 146 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
93 } \ 165 } \
94 } 166 }
95 GET_SYMTABS(32) 167 GET_SYMTABS(32)
96 GET_SYMTABS(64) 168 GET_SYMTABS(64)
97} 169}
170
98static char *scanelf_file_pax(elfobj *elf, char *found_pax) 171static char *scanelf_file_pax(elfobj *elf, char *found_pax)
99{ 172{
100 static char *paxflags;
101 static char ret[7]; 173 static char ret[7];
102 unsigned long i, shown; 174 unsigned long i, shown;
103 175
104 if (!show_pax) return NULL; 176 if (!show_pax) return NULL;
105 177
112 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 184 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
113 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 185 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
114 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 186 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
115 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \ 187 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
116 continue; \ 188 continue; \
117 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 189 if (fix_elf && setpax) { \
190 /* set the paxctl flags */ \
191 ESET(phdr[i].p_flags, setpax); \
192 } \
193 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
118 continue; \ 194 continue; \
119 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 195 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
120 *found_pax = 1; \ 196 *found_pax = 1; \
121 ++shown; \ 197 ++shown; \
122 break; \ 198 break; \
124 } 200 }
125 SHOW_PAX(32) 201 SHOW_PAX(32)
126 SHOW_PAX(64) 202 SHOW_PAX(64)
127 } 203 }
128 204
205 if (fix_elf && setpax) {
206 /* set the chpax settings */
207 if (elf->elf_class == ELFCLASS32) {
208 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC)
209 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
210 } else {
211 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
212 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
213 }
214 }
215
129 /* fall back to EI_PAX if no PT_PAX was found */ 216 /* fall back to EI_PAX if no PT_PAX was found */
130 if (!*ret) { 217 if (!*ret) {
218 static char *paxflags;
131 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 219 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
132 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) { 220 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) {
133 *found_pax = 1; 221 *found_pax = 1;
134 return paxflags; 222 return (be_wewy_wewy_quiet ? NULL : paxflags);
135 } 223 }
136 strncpy(ret, paxflags, sizeof(ret)); 224 strncpy(ret, paxflags, sizeof(ret));
137 } 225 }
138 226
139 if (be_quiet && !shown) 227 if (be_wewy_wewy_quiet || (be_quiet && !shown))
140 return NULL; 228 return NULL;
229 else
141 return ret; 230 return ret;
142
143} 231}
232
144static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 233static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
145{ 234{
146 static char ret[12]; 235 static char ret[12];
147 char *found; 236 char *found;
148 unsigned long i, off, shown, check_flags;
149 unsigned char multi_stack, multi_relro, multi_load; 237 unsigned long i, shown, multi_stack, multi_relro, multi_load;
238 int max_pt_load;
150 239
151 if (!show_phdr) return NULL; 240 if (!show_phdr) return NULL;
152 241
153 memcpy(ret, "--- --- ---\0", 12); 242 memcpy(ret, "--- --- ---\0", 12);
154 243
155 shown = 0; 244 shown = 0;
156 multi_stack = multi_relro = multi_load = 0; 245 multi_stack = multi_relro = multi_load = 0;
246 max_pt_load = elf_max_pt_load(elf);
157 247
158 if (elf->phdr) { 248#define NOTE_GNU_STACK ".note.GNU-stack"
159#define SHOW_PHDR(B) \ 249#define SHOW_PHDR(B) \
160 if (elf->elf_class == ELFCLASS ## B) { \ 250 if (elf->elf_class == ELFCLASS ## B) { \
161 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 251 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
252 Elf ## B ## _Off offset; \
253 uint32_t flags, check_flags; \
254 if (elf->phdr != NULL) { \
162 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 255 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
163 uint32_t flags; \
164 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 256 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
165 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 257 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
258 if (multi_stack++) \
166 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 259 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
260 if (file_matches_list(elf->filename, qa_execstack)) \
261 continue; \
167 found = found_phdr; \ 262 found = found_phdr; \
168 off = 0; \ 263 offset = 0; \
169 check_flags = PF_X; \ 264 check_flags = PF_X; \
170 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 265 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
266 if (multi_relro++) \
171 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 267 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
172 found = found_relro; \ 268 found = found_relro; \
173 off = 4; \ 269 offset = 4; \
174 check_flags = PF_X; \ 270 check_flags = PF_X; \
175 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 271 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
176 if (multi_load++ > 2) warnf("%s: more than 2 PT_LOAD's !?", elf->filename); \ 272 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
273 if (multi_load++ > max_pt_load) \
274 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
275 if (file_matches_list(elf->filename, qa_wx_load)) \
276 continue; \
177 found = found_load; \ 277 found = found_load; \
178 off = 8; \ 278 offset = 8; \
179 check_flags = PF_W|PF_X; \ 279 check_flags = PF_W|PF_X; \
180 } else \ 280 } else \
181 continue; \ 281 continue; \
182 flags = EGET(phdr[i].p_flags); \ 282 flags = EGET(phdr[i].p_flags); \
183 if (be_quiet && ((flags & check_flags) != check_flags)) \ 283 if (be_quiet && ((flags & check_flags) != check_flags)) \
184 continue; \ 284 continue; \
285 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
286 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
287 ret[3] = ret[7] = '!'; \
288 flags = EGET(phdr[i].p_flags); \
289 } \
185 memcpy(ret+off, gnu_short_stack_flags(flags), 3); \ 290 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
186 *found = 1; \ 291 *found = 1; \
187 ++shown; \ 292 ++shown; \
293 } \
294 } else if (elf->shdr != NULL) { \
295 /* no program headers which means this is prob an object file */ \
296 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
297 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
298 char *str; \
299 if ((void*)strtbl > (void*)elf->data_end) \
300 goto skip_this_shdr##B; \
301 check_flags = SHF_WRITE|SHF_EXECINSTR; \
302 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
303 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
304 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
305 str = elf->data + offset; \
306 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \
307 if (!strcmp(str, NOTE_GNU_STACK)) { \
308 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \
309 flags = EGET(shdr[i].sh_flags); \
310 if (be_quiet && ((flags & check_flags) != check_flags)) \
311 continue; \
312 ++*found_phdr; \
313 shown = 1; \
314 if (flags & SHF_WRITE) ret[0] = 'W'; \
315 if (flags & SHF_ALLOC) ret[1] = 'A'; \
316 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \
317 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \
318 break; \
319 } \
320 } \
321 skip_this_shdr##B: \
322 if (!multi_stack) { \
323 if (file_matches_list(elf->filename, qa_execstack)) \
324 return NULL; \
325 *found_phdr = 1; \
326 shown = 1; \
327 memcpy(ret, "!WX", 3); \
328 } \
188 } \ 329 } \
189 } 330 }
190 SHOW_PHDR(32) 331 SHOW_PHDR(32)
191 SHOW_PHDR(64) 332 SHOW_PHDR(64)
192 }
193 333
194 if (be_quiet && !shown) 334 if (be_wewy_wewy_quiet || (be_quiet && !shown))
195 return NULL; 335 return NULL;
196 else 336 else
197 return ret; 337 return ret;
198} 338}
339
340/*
341 * See if this ELF contains a DT_TEXTREL tag in any of its
342 * PT_DYNAMIC sections.
343 */
199static char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 344static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
200{ 345{
201 static char ret[] = "TEXTREL"; 346 static const char *ret = "TEXTREL";
202 unsigned long i; 347 unsigned long i;
203 348
204 if (!show_textrel && !show_textrels) return NULL; 349 if (!show_textrel && !show_textrels) return NULL;
350
351 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
205 352
206 if (elf->phdr) { 353 if (elf->phdr) {
207#define SHOW_TEXTREL(B) \ 354#define SHOW_TEXTREL(B) \
208 if (elf->elf_class == ELFCLASS ## B) { \ 355 if (elf->elf_class == ELFCLASS ## B) { \
209 Elf ## B ## _Dyn *dyn; \ 356 Elf ## B ## _Dyn *dyn; \
210 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 357 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
211 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 358 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
212 Elf ## B ## _Off offset; \ 359 Elf ## B ## _Off offset; \
213 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 360 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
214 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 361 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
215 offset = EGET(phdr[i].p_offset); \ 362 offset = EGET(phdr[i].p_offset); \
216 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 363 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
217 dyn = DYN ## B (elf->data + offset); \ 364 dyn = DYN ## B (elf->data + offset); \
218 while (EGET(dyn->d_tag) != DT_NULL) { \ 365 while (EGET(dyn->d_tag) != DT_NULL) { \
219 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 366 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
229 } 376 }
230 377
231 if (be_quiet || be_wewy_wewy_quiet) 378 if (be_quiet || be_wewy_wewy_quiet)
232 return NULL; 379 return NULL;
233 else 380 else
234 return (char *)" - "; 381 return " - ";
235} 382}
383
384/*
385 * Scan the .text section to see if there are any relocations in it.
386 * Should rewrite this to check PT_LOAD sections that are marked
387 * Executable rather than the section named '.text'.
388 */
236static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 389static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
237{ 390{
238 unsigned long s, r, rmax; 391 unsigned long s, r, rmax;
239 void *symtab_void, *strtab_void, *text_void; 392 void *symtab_void, *strtab_void, *text_void;
240 393
292 if (be_verbose <= 2) continue; \ 445 if (be_verbose <= 2) continue; \
293 } else \ 446 } else \
294 *found_textrels = 1; \ 447 *found_textrels = 1; \
295 /* locate this relocation symbol name */ \ 448 /* locate this relocation symbol name */ \
296 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 449 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
450 if ((void*)sym > (void*)elf->data_end) { \
451 warn("%s: corrupt ELF symbol", elf->filename); \
452 continue; \
453 } \
297 sym_max = ELF ## B ## _R_SYM(r_info); \ 454 sym_max = ELF ## B ## _R_SYM(r_info); \
298 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 455 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
299 sym += sym_max; \ 456 sym += sym_max; \
300 else \ 457 else \
301 sym = NULL; \ 458 sym = NULL; \
303 /* show the raw details about this reloc */ \ 460 /* show the raw details about this reloc */ \
304 printf(" %s: ", elf->base_filename); \ 461 printf(" %s: ", elf->base_filename); \
305 if (sym && sym->st_name) \ 462 if (sym && sym->st_name) \
306 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 463 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \
307 else \ 464 else \
308 printf("(memory/fake?)"); \ 465 printf("(memory/data?)"); \
309 printf(" [0x%lX]", (unsigned long)r_offset); \ 466 printf(" [0x%lX]", (unsigned long)r_offset); \
310 /* now try to find the closest symbol that this rel is probably in */ \ 467 /* now try to find the closest symbol that this rel is probably in */ \
311 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 468 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
312 func = NULL; \ 469 func = NULL; \
313 offset_tmp = 0; \ 470 offset_tmp = 0; \
317 offset_tmp = EGET(sym->st_value); \ 474 offset_tmp = EGET(sym->st_value); \
318 } \ 475 } \
319 ++sym; \ 476 ++sym; \
320 } \ 477 } \
321 printf(" in "); \ 478 printf(" in "); \
322 if (func && func->st_name) \ 479 if (func && func->st_name) { \
323 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 480 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
481 if (r_offset > EGET(func->st_size)) \
482 printf("(optimized out: previous %s)", func_name); \
324 else \ 483 else \
325 printf("(NULL: fake?)"); \ 484 printf("%s", func_name); \
485 } else \
486 printf("(optimized out)"); \
326 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 487 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
488 if (be_verbose && has_objdump) { \
489 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
490 char *sysbuf; \
491 size_t syslen; \
492 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
493 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
494 sysbuf = xmalloc(syslen); \
495 if (end_addr < r_offset) \
496 /* not uncommon when things are optimized out */ \
497 end_addr = r_offset + 0x100; \
498 snprintf(sysbuf, syslen, sysfmt, \
499 (unsigned long)offset_tmp, \
500 (unsigned long)end_addr, \
501 elf->filename, \
502 (unsigned long)r_offset); \
503 fflush(stdout); \
504 system(sysbuf); \
505 fflush(stdout); \
506 free(sysbuf); \
507 } \
327 } \ 508 } \
328 } } 509 } }
329 SHOW_TEXTRELS(32) 510 SHOW_TEXTRELS(32)
330 SHOW_TEXTRELS(64) 511 SHOW_TEXTRELS(64)
331 } 512 }
333 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 514 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
334 515
335 return NULL; 516 return NULL;
336} 517}
337 518
338static void rpath_security_checks(elfobj *, char *); 519static void rpath_security_checks(elfobj *, char *, const char *);
339static void rpath_security_checks(elfobj *elf, char *item) { 520static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
521{
340 struct stat st; 522 struct stat st;
341 switch (*item) { 523 switch (*item) {
342 case 0:
343 warnf("Security problem NULL RPATH in %s", elf->filename);
344 break;
345 case '/': break; 524 case '/': break;
525 case '.':
526 warnf("Security problem with relative %s '%s' in %s", dt_type, item, elf->filename);
527 break;
528 case ':':
529 case '\0':
530 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
531 break;
346 case '$': 532 case '$':
347 if (fstat(elf->fd, &st) != -1) 533 if (fstat(elf->fd, &st) != -1)
348 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 534 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
349 warnf("Security problem with RPATH='%s' in %s with mode set of %o", 535 warnf("Security problem with %s='%s' in %s with mode set of %o",
350 item, elf->filename, st.st_mode & 07777); 536 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
351 break; 537 break;
352 default: 538 default:
353 warnf("Maybe? sec problem with RPATH='%s' in %s", item, elf->filename); 539 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
354 break; 540 break;
355 } 541 }
356} 542}
357static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 543static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
358{ 544{
375 Elf ## B ## _Off offset; \ 561 Elf ## B ## _Off offset; \
376 Elf ## B ## _Xword word; \ 562 Elf ## B ## _Xword word; \
377 /* Scan all the program headers */ \ 563 /* Scan all the program headers */ \
378 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 564 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
379 /* Just scan dynamic headers */ \ 565 /* Just scan dynamic headers */ \
380 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 566 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
381 offset = EGET(phdr[i].p_offset); \ 567 offset = EGET(phdr[i].p_offset); \
382 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 568 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
383 /* Just scan dynamic RPATH/RUNPATH headers */ \ 569 /* Just scan dynamic RPATH/RUNPATH headers */ \
384 dyn = DYN ## B (elf->data + offset); \ 570 dyn = DYN ## B (elf->data + offset); \
385 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 571 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
394 /* Verify the memory is somewhat sane */ \ 580 /* Verify the memory is somewhat sane */ \
395 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 581 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
396 if (offset < (Elf ## B ## _Off)elf->len) { \ 582 if (offset < (Elf ## B ## _Off)elf->len) { \
397 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 583 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
398 *r = (char*)(elf->data + offset); \ 584 *r = (char*)(elf->data + offset); \
585 /* cache the length in case we need to nuke this section later on */ \
586 if (fix_elf) \
587 offset = strlen(*r); \
399 /* If quiet, don't output paths in ld.so.conf */ \ 588 /* If quiet, don't output paths in ld.so.conf */ \
400 if (be_quiet) { \ 589 if (be_quiet) { \
401 size_t len; \ 590 size_t len; \
402 char *start, *end; \ 591 char *start, *end; \
403 /* note that we only 'chop' off leading known paths. */ \ 592 /* note that we only 'chop' off leading known paths. */ \
404 /* since *r is read-only memory, we can only move the ptr forward. */ \ 593 /* since *r is read-only memory, we can only move the ptr forward. */ \
405 start = *r; \ 594 start = *r; \
406 /* scan each path in : delimited list */ \ 595 /* scan each path in : delimited list */ \
407 while (start) { \ 596 while (start) { \
408 rpath_security_checks(elf, start); \ 597 rpath_security_checks(elf, start, get_elfdtype(word)); \
409 end = strchr(start, ':'); \ 598 end = strchr(start, ':'); \
410 len = (end ? abs(end - start) : strlen(start)); \ 599 len = (end ? abs(end - start) : strlen(start)); \
600 if (use_ldcache) \
411 for (s = 0; ldpaths[s]; ++s) { \ 601 for (s = 0; ldpaths[s]; ++s) \
412 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 602 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \
413 *r = (end ? end + 1 : NULL); \ 603 *r = end; \
604 /* corner case ... if RPATH reads "/usr/lib:", we want \
605 * to show ':' rather than '' */ \
606 if (end && end[1] != '\0') \
607 (*r)++; \
414 break; \ 608 break; \
415 } \ 609 } \
416 } \
417 if (!*r || !ldpaths[s] || !end) \ 610 if (!*r || !end) \
418 start = NULL; \ 611 break; \
419 else \ 612 else \
420 start = start + len + 1; \ 613 start = start + len + 1; \
421 } \ 614 } \
422 } \ 615 } \
616 if (*r) { \
617 if (fix_elf > 2 || (fix_elf && **r == '\0')) { \
618 /* just nuke it */ \
619 nuke_it##B: \
620 memset(*r, 0x00, offset); \
621 *r = NULL; \
622 ESET(dyn->d_tag, DT_DEBUG); \
623 ESET(dyn->d_un.d_ptr, 0); \
624 } else if (fix_elf) { \
625 /* try to clean "bad" paths */ \
626 size_t len, tmpdir_len; \
627 char *start, *end; \
628 const char *tmpdir; \
629 start = *r; \
630 tmpdir = (getenv("TMPDIR") ? : "."); \
631 tmpdir_len = strlen(tmpdir); \
632 while (1) { \
633 end = strchr(start, ':'); \
634 if (start == end) { \
635 eat_this_path##B: \
636 len = strlen(end); \
637 memmove(start, end+1, len); \
638 start[len-1] = '\0'; \
639 end = start - 1; \
640 } else if (tmpdir && !strncmp(start, tmpdir, tmpdir_len)) { \
641 if (!end) { \
642 if (start == *r) \
643 goto nuke_it##B; \
644 *--start = '\0'; \
645 } else \
646 goto eat_this_path##B; \
647 } \
648 if (!end) \
649 break; \
650 start = end + 1; \
651 } \
652 if (**r == '\0') \
653 goto nuke_it##B; \
654 } \
655 if (*r) \
423 if (*r) *found_rpath = 1; \ 656 *found_rpath = 1; \
657 } \
424 } \ 658 } \
425 ++dyn; \ 659 ++dyn; \
426 } \ 660 } \
427 } } 661 } }
428 SHOW_RPATH(32) 662 SHOW_RPATH(32)
445 } else if (rpath || runpath) 679 } else if (rpath || runpath)
446 xstrcat(ret, (runpath ? runpath : rpath), ret_len); 680 xstrcat(ret, (runpath ? runpath : rpath), ret_len);
447 else if (!be_quiet) 681 else if (!be_quiet)
448 xstrcat(ret, " - ", ret_len); 682 xstrcat(ret, " - ", ret_len);
449} 683}
684
685#define LDSO_CACHE_MAGIC "ld.so-"
686#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
687#define LDSO_CACHE_VER "1.7.0"
688#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
689#define FLAG_ANY -1
690#define FLAG_TYPE_MASK 0x00ff
691#define FLAG_LIBC4 0x0000
692#define FLAG_ELF 0x0001
693#define FLAG_ELF_LIBC5 0x0002
694#define FLAG_ELF_LIBC6 0x0003
695#define FLAG_REQUIRED_MASK 0xff00
696#define FLAG_SPARC_LIB64 0x0100
697#define FLAG_IA64_LIB64 0x0200
698#define FLAG_X8664_LIB64 0x0300
699#define FLAG_S390_LIB64 0x0400
700#define FLAG_POWERPC_LIB64 0x0500
701#define FLAG_MIPS64_LIBN32 0x0600
702#define FLAG_MIPS64_LIBN64 0x0700
703
704static char *lookup_cache_lib(elfobj *, char *);
705
706#if defined(__GLIBC__) || defined(__UCLIBC__)
707
708static char *lookup_cache_lib(elfobj *elf, char *fname)
709{
710 int fd = 0;
711 char *strs;
712 static char buf[__PAX_UTILS_PATH_MAX] = "";
713 const char *cachefile = "/etc/ld.so.cache";
714 struct stat st;
715
716 typedef struct {
717 char magic[LDSO_CACHE_MAGIC_LEN];
718 char version[LDSO_CACHE_VER_LEN];
719 int nlibs;
720 } header_t;
721 header_t *header;
722
723 typedef struct {
724 int flags;
725 int sooffset;
726 int liboffset;
727 } libentry_t;
728 libentry_t *libent;
729
730 if (fname == NULL)
731 return NULL;
732
733 if (ldcache == 0) {
734 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1)
735 return NULL;
736
737 /* cache these values so we only map/unmap the cache file once */
738 ldcache_size = st.st_size;
739 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
740
741 close(fd);
742
743 if (ldcache == (caddr_t)-1) {
744 ldcache = 0;
745 return NULL;
746 }
747
748 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN))
749 return NULL;
750 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
751 return NULL;
752 }
753
754 header = (header_t *) ldcache;
755 libent = (libentry_t *) (ldcache + sizeof(header_t));
756 strs = (char *) &libent[header->nlibs];
757
758 for (fd = 0; fd < header->nlibs; fd++) {
759 /* this should be more fine grained, but for now we assume that
760 * diff arches will not be cached together. and we ignore the
761 * the different multilib mips cases. */
762 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
763 continue;
764 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
765 continue;
766
767 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
768 continue;
769 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
770 }
771 return buf;
772}
773#elif defined(__NetBSD__)
774static char *lookup_cache_lib(elfobj *elf, char *fname)
775{
776 static char buf[__PAX_UTILS_PATH_MAX] = "";
777 static struct stat st;
778
779 char **ldpath;
780 for (ldpath = ldpaths; *ldpath != NULL; ldpath++) {
781 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", *ldpath, fname) >= sizeof(buf))
782 continue; /* if the pathname is too long, or something went wrong, ignore */
783
784 if (stat(buf, &st) != 0)
785 continue; /* if the lib doesn't exist in *ldpath, look further */
786
787 /* NetBSD doesn't actually do sanity checks, it just loads the file
788 * and if that doesn't work, continues looking in other directories.
789 * This cannot easily be safely emulated, unfortunately. For now,
790 * just assume that if it exists, it's a valid library. */
791
792 return buf;
793 }
794
795 /* not found in any path */
796 return NULL;
797}
798#else
799#ifdef __ELF__
800#warning Cache support not implemented for your target
801#endif
802static char *lookup_cache_lib(elfobj *elf, char *fname)
803{
804 return NULL;
805}
806#endif
807
450static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 808static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
451{ 809{
452 unsigned long i; 810 unsigned long i;
453 char *needed; 811 char *needed;
454 void *strtbl_void; 812 void *strtbl_void;
813 char *p;
455 814
456 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 815 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL;
457 816
458 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 817 strtbl_void = elf_findsecbyname(elf, ".dynstr");
459 818
464 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 823 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
465 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 824 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
466 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 825 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
467 Elf ## B ## _Off offset; \ 826 Elf ## B ## _Off offset; \
468 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 827 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
469 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 828 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
470 offset = EGET(phdr[i].p_offset); \ 829 offset = EGET(phdr[i].p_offset); \
471 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 830 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
472 dyn = DYN ## B (elf->data + offset); \ 831 dyn = DYN ## B (elf->data + offset); \
473 while (EGET(dyn->d_tag) != DT_NULL) { \ 832 while (EGET(dyn->d_tag) != DT_NULL) { \
474 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 833 if (EGET(dyn->d_tag) == DT_NEEDED) { \
479 } \ 838 } \
480 needed = (char*)(elf->data + offset); \ 839 needed = (char*)(elf->data + offset); \
481 if (op == 0) { \ 840 if (op == 0) { \
482 if (!be_wewy_wewy_quiet) { \ 841 if (!be_wewy_wewy_quiet) { \
483 if (*found_needed) xchrcat(ret, ',', ret_len); \ 842 if (*found_needed) xchrcat(ret, ',', ret_len); \
843 if (use_ldcache) \
844 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
845 needed = p; \
484 xstrcat(ret, needed, ret_len); \ 846 xstrcat(ret, needed, ret_len); \
485 } \ 847 } \
486 *found_needed = 1; \ 848 *found_needed = 1; \
487 } else { \ 849 } else { \
488 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 850 if (!strncmp(find_lib, needed, strlen( !g_match ? needed : find_lib))) { \
489 *found_lib = 1; \ 851 *found_lib = 1; \
490 return (be_wewy_wewy_quiet ? NULL : needed); \ 852 return (be_wewy_wewy_quiet ? NULL : needed); \
491 } \ 853 } \
492 } \ 854 } \
493 } \ 855 } \
524} 886}
525static char *scanelf_file_bind(elfobj *elf, char *found_bind) 887static char *scanelf_file_bind(elfobj *elf, char *found_bind)
526{ 888{
527 unsigned long i; 889 unsigned long i;
528 struct stat s; 890 struct stat s;
891 char dynamic = 0;
529 892
530 if (!show_bind) return NULL; 893 if (!show_bind) return NULL;
531 if (!elf->phdr) return NULL; 894 if (!elf->phdr) return NULL;
532 895
533#define SHOW_BIND(B) \ 896#define SHOW_BIND(B) \
535 Elf ## B ## _Dyn *dyn; \ 898 Elf ## B ## _Dyn *dyn; \
536 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 899 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
537 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 900 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
538 Elf ## B ## _Off offset; \ 901 Elf ## B ## _Off offset; \
539 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 902 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
540 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 903 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
904 dynamic = 1; \
541 offset = EGET(phdr[i].p_offset); \ 905 offset = EGET(phdr[i].p_offset); \
542 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 906 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
543 dyn = DYN ## B (elf->data + offset); \ 907 dyn = DYN ## B (elf->data + offset); \
544 while (EGET(dyn->d_tag) != DT_NULL) { \ 908 while (EGET(dyn->d_tag) != DT_NULL) { \
545 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 909 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
556 SHOW_BIND(32) 920 SHOW_BIND(32)
557 SHOW_BIND(64) 921 SHOW_BIND(64)
558 922
559 if (be_wewy_wewy_quiet) return NULL; 923 if (be_wewy_wewy_quiet) return NULL;
560 924
925 /* don't output anything if quiet mode and the ELF is static or not setuid */
561 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 926 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
562 return NULL; 927 return NULL;
563 } else { 928 } else {
564 *found_bind = 1; 929 *found_bind = 1;
565 return (char *) "LAZY"; 930 return (char *) (dynamic ? "LAZY" : "STATIC");
566 } 931 }
567} 932}
568static char *scanelf_file_soname(elfobj *elf, char *found_soname) 933static char *scanelf_file_soname(elfobj *elf, char *found_soname)
569{ 934{
570 unsigned long i; 935 unsigned long i;
582 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 947 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
583 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 948 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
584 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 949 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
585 Elf ## B ## _Off offset; \ 950 Elf ## B ## _Off offset; \
586 /* only look for soname in shared objects */ \ 951 /* only look for soname in shared objects */ \
587 if (ehdr->e_type != ET_DYN) \ 952 if (EGET(ehdr->e_type) != ET_DYN) \
588 return NULL; \ 953 return NULL; \
589 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 954 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
590 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 955 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
591 offset = EGET(phdr[i].p_offset); \ 956 offset = EGET(phdr[i].p_offset); \
592 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 957 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
593 dyn = DYN ## B (elf->data + offset); \ 958 dyn = DYN ## B (elf->data + offset); \
594 while (EGET(dyn->d_tag) != DT_NULL) { \ 959 while (EGET(dyn->d_tag) != DT_NULL) { \
595 if (EGET(dyn->d_tag) == DT_SONAME) { \ 960 if (EGET(dyn->d_tag) == DT_SONAME) { \
609 SHOW_SONAME(64) 974 SHOW_SONAME(64)
610 } 975 }
611 976
612 return NULL; 977 return NULL;
613} 978}
979
614static char *scanelf_file_sym(elfobj *elf, char *found_sym) 980static char *scanelf_file_sym(elfobj *elf, char *found_sym)
615{ 981{
616 unsigned long i; 982 unsigned long i;
983 char *ret;
617 void *symtab_void, *strtab_void; 984 void *symtab_void, *strtab_void;
618 985
619 if (!find_sym) return NULL; 986 if (!find_sym) return NULL;
987 ret = find_sym;
620 988
621 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 989 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
622 990
623 if (symtab_void && strtab_void) { 991 if (symtab_void && strtab_void) {
624#define FIND_SYM(B) \ 992#define FIND_SYM(B) \
625 if (elf->elf_class == ELFCLASS ## B) { \ 993 if (elf->elf_class == ELFCLASS ## B) { \
626 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 994 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
627 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 995 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
628 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 996 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
629 unsigned long cnt = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 997 unsigned long cnt = EGET(symtab->sh_entsize); \
630 char *symname; \ 998 char *symname; \
999 if (cnt) \
1000 cnt = EGET(symtab->sh_size) / cnt; \
631 for (i = 0; i < cnt; ++i) { \ 1001 for (i = 0; i < cnt; ++i) { \
1002 if ( (void*)sym > (void*)elf->data_end ) { \
1003 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1004 goto break_out; \
1005 } \
632 if (sym->st_name) { \ 1006 if (sym->st_name) { \
1007 /* make sure the symbol name is in acceptable memory range */ \
633 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1008 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
634 if (*find_sym == '*') { \ 1009 if ((void*)symname > (void*)elf->data_end) { \
1010 warnf("%s: corrupt ELF symbols", elf->filename); \
1011 ++sym; \
1012 continue; \
1013 } \
1014 /* debug display ... show all symbols and some extra info */ \
1015 if (g_match ? rematch(ret, symname, REG_EXTENDED) == 0 : *ret == '*') { \
635 printf("%s(%s) %5lX %15s %s\n", \ 1016 printf("%s(%s) %5lX %15s %s %s\n", \
636 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1017 ((*found_sym == 0) ? "\n\t" : "\t"), \
637 elf->base_filename, \ 1018 elf->base_filename, \
638 (long)sym->st_size, \ 1019 (unsigned long)sym->st_size, \
639 (char *)get_elfstttype(sym->st_info), \ 1020 get_elfstttype(sym->st_info), \
640 symname); \ 1021 sym->st_shndx == SHN_UNDEF ? "U" : "D", symname); \
641 *found_sym = 1; \ 1022 *found_sym = 1; \
642 } else if ((strcmp(find_sym, symname) == 0) || \ 1023 } else { \
643 (strcmp(symname, versioned_symname) == 0)) \ 1024 /* allow the user to specify a comma delimited list of symbols to search for */ \
1025 char *this_sym, *this_sym_ver, *next_sym; \
1026 this_sym = ret; \
1027 this_sym_ver = versioned_symname; \
1028 do { \
1029 next_sym = strchr(this_sym, ','); \
1030 if (next_sym == NULL) \
1031 next_sym = this_sym + strlen(this_sym); \
1032 /* do we want a defined symbol ? */ \
1033 if (*this_sym == '+') { \
1034 if (sym->st_shndx == SHN_UNDEF) \
1035 goto skip_this_sym##B; \
1036 ++this_sym; \
1037 ++this_sym_ver; \
1038 /* do we want an undefined symbol ? */ \
1039 } else if (*this_sym == '-') { \
1040 if (sym->st_shndx != SHN_UNDEF) \
1041 goto skip_this_sym##B; \
1042 ++this_sym; \
1043 ++this_sym_ver; \
1044 } \
1045 /* ok, lets compare the name now */ \
1046 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \
1047 (strncmp(this_sym_ver, symname, strlen(this_sym_ver)) == 0)) { \
1048 if (be_semi_verbose) { \
1049 char buf[126]; \
1050 snprintf(buf, sizeof(buf), "%lX %s %s", \
1051 (unsigned long)sym->st_size, get_elfstttype(sym->st_info), this_sym); \
1052 ret = buf; \
1053 } else \
1054 ret = this_sym; \
644 (*found_sym)++; \ 1055 (*found_sym)++; \
1056 goto break_out; \
1057 } \
1058 skip_this_sym##B: this_sym = next_sym + 1; \
1059 } while (*next_sym != '\0'); \
1060 } \
645 } \ 1061 } \
646 ++sym; \ 1062 ++sym; \
647 } } 1063 } }
648 FIND_SYM(32) 1064 FIND_SYM(32)
649 FIND_SYM(64) 1065 FIND_SYM(64)
650 } 1066 }
651 1067
1068break_out:
652 if (be_wewy_wewy_quiet) return NULL; 1069 if (be_wewy_wewy_quiet) return NULL;
653 1070
654 if (*find_sym != '*' && *found_sym) 1071 if (*find_sym != '*' && *found_sym)
655 return find_sym; 1072 return ret;
656 if (be_quiet) 1073 if (be_quiet)
657 return NULL; 1074 return NULL;
658 else 1075 else
659 return (char *)" - "; 1076 return (char *)" - ";
660} 1077}
1078
1079static char *scanelf_file_sections(elfobj *elf, char *found_section)
1080{
1081 if (!find_section)
1082 return NULL;
1083
1084#define FIND_SECTION(B) \
1085 if (elf->elf_class == ELFCLASS ## B) { \
1086 int invert; \
1087 Elf ## B ## _Shdr *section; \
1088 invert = (*find_section == '!' ? 1 : 0); \
1089 section = SHDR ## B (elf_findsecbyname(elf, find_section+invert)); \
1090 if ((section == NULL && invert) || (section != NULL && !invert)) \
1091 *found_section = 1; \
1092 }
1093 FIND_SECTION(32)
1094 FIND_SECTION(64)
1095
1096 if (be_wewy_wewy_quiet)
1097 return NULL;
1098
1099 if (*found_section)
1100 return find_section;
1101
1102 if (be_quiet)
1103 return NULL;
1104 else
1105 return (char *)" - ";
1106}
1107
661/* scan an elf file and show all the fun stuff */ 1108/* scan an elf file and show all the fun stuff */
662#define prints(str) write(fileno(stdout), str, strlen(str)) 1109#define prints(str) write(fileno(stdout), str, strlen(str))
663static void scanelf_file(const char *filename) 1110static int scanelf_elfobj(elfobj *elf)
664{ 1111{
665 unsigned long i; 1112 unsigned long i;
666 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1113 char found_pax, found_phdr, found_relro, found_load, found_textrel,
667 found_rpath, found_needed, found_interp, found_bind, found_soname, 1114 found_rpath, found_needed, found_interp, found_bind, found_soname,
668 found_sym, found_lib, found_file, found_textrels; 1115 found_sym, found_lib, found_file, found_textrels, found_section;
669 elfobj *elf;
670 struct stat st;
671 static char *out_buffer = NULL; 1116 static char *out_buffer = NULL;
672 static size_t out_len; 1117 static size_t out_len;
673 1118
674 /* make sure 'filename' exists */
675 if (lstat(filename, &st) == -1) {
676 if (be_verbose > 2) printf("%s: does not exist\n", filename);
677 return;
678 }
679 /* always handle regular files and handle symlinked files if no -y */
680 if (S_ISLNK(st.st_mode)) {
681 if (!scan_symlink) return;
682 stat(filename, &st);
683 }
684 if (!S_ISREG(st.st_mode)) {
685 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
686 return;
687 }
688
689 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1119 found_pax = found_phdr = found_relro = found_load = found_textrel = \
690 found_rpath = found_needed = found_interp = found_bind = found_soname = \ 1120 found_rpath = found_needed = found_interp = found_bind = found_soname = \
691 found_sym = found_lib = found_file = found_textrels = 0; 1121 found_sym = found_lib = found_file = found_textrels = found_section = 0;
692 1122
693 /* verify this is real ELF */
694 if ((elf = readelf(filename)) == NULL) {
695 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
696 return;
697 }
698
699 if (be_verbose > 1) 1123 if (be_verbose > 2)
700 printf("%s: scanning file {%s,%s}\n", filename, 1124 printf("%s: scanning file {%s,%s}\n", elf->filename,
701 get_elfeitype(EI_CLASS, elf->elf_class), 1125 get_elfeitype(EI_CLASS, elf->elf_class),
702 get_elfeitype(EI_DATA, elf->data[EI_DATA])); 1126 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
703 else if (be_verbose) 1127 else if (be_verbose > 1)
704 printf("%s: scanning file\n", filename); 1128 printf("%s: scanning file\n", elf->filename);
705 1129
706 /* init output buffer */ 1130 /* init output buffer */
707 if (!out_buffer) { 1131 if (!out_buffer) {
708 out_len = sizeof(char) * 80; 1132 out_len = sizeof(char) * 80;
709 out_buffer = (char*)xmalloc(out_len); 1133 out_buffer = xmalloc(out_len);
710 } 1134 }
711 *out_buffer = '\0'; 1135 *out_buffer = '\0';
712 1136
713 /* show the header */ 1137 /* show the header */
714 if (!be_quiet && show_banner) { 1138 if (!be_quiet && show_banner) {
715 for (i = 0; out_format[i]; ++i) { 1139 for (i = 0; out_format[i]; ++i) {
716 if (!IS_MODIFIER(out_format[i])) continue; 1140 if (!IS_MODIFIER(out_format[i])) continue;
717 1141
718 switch (out_format[++i]) { 1142 switch (out_format[++i]) {
1143 case '+': break;
719 case '%': break; 1144 case '%': break;
720 case '#': break; 1145 case '#': break;
721 case 'F': 1146 case 'F':
722 case 'p': 1147 case 'p':
723 case 'f': prints("FILE "); found_file = 1; break; 1148 case 'f': prints("FILE "); found_file = 1; break;
724 case 'o': prints(" TYPE "); break; 1149 case 'o': prints(" TYPE "); break;
725 case 'x': prints(" PAX "); break; 1150 case 'x': prints(" PAX "); break;
726 case 'e': prints("STK/REL/PTL "); break; 1151 case 'e': prints("STK/REL/PTL "); break;
727 case 't': prints("TEXTREL "); break; 1152 case 't': prints("TEXTREL "); break;
728 case 'r': prints("RPATH "); break; 1153 case 'r': prints("RPATH "); break;
1154 case 'M': prints("CLASS "); break;
729 case 'n': prints("NEEDED "); break; 1155 case 'n': prints("NEEDED "); break;
730 case 'i': prints("INTERP "); break; 1156 case 'i': prints("INTERP "); break;
731 case 'b': prints("BIND "); break; 1157 case 'b': prints("BIND "); break;
1158 case 'Z': prints("SIZE "); break;
732 case 'S': prints("SONAME "); break; 1159 case 'S': prints("SONAME "); break;
733 case 's': prints("SYM "); break; 1160 case 's': prints("SYM "); break;
734 case 'N': prints("LIB "); break; 1161 case 'N': prints("LIB "); break;
735 case 'T': prints("TEXTRELS "); break; 1162 case 'T': prints("TEXTRELS "); break;
1163 case 'k': prints("SECTION "); break;
1164 case 'a': prints("ARCH "); break;
1165 case 'I': prints("OSABI "); break;
1166 case 'Y': prints("EABI "); break;
1167 case 'O': prints("PERM "); break;
1168 case 'D': prints("ENDIAN "); break;
736 default: warnf("'%c' has no title ?", out_format[i]); 1169 default: warnf("'%c' has no title ?", out_format[i]);
737 } 1170 }
738 } 1171 }
739 if (!found_file) prints("FILE "); 1172 if (!found_file) prints("FILE ");
740 prints("\n"); 1173 prints("\n");
744 1177
745 /* dump all the good stuff */ 1178 /* dump all the good stuff */
746 for (i = 0; out_format[i]; ++i) { 1179 for (i = 0; out_format[i]; ++i) {
747 const char *out; 1180 const char *out;
748 const char *tmp; 1181 const char *tmp;
749 1182 static char ubuf[sizeof(unsigned long)*2];
750 /* make sure we trim leading spaces in quiet mode */
751 if (be_quiet && *out_buffer == ' ' && !out_buffer[1])
752 *out_buffer = '\0';
753
754 if (!IS_MODIFIER(out_format[i])) { 1183 if (!IS_MODIFIER(out_format[i])) {
755 xchrcat(&out_buffer, out_format[i], &out_len); 1184 xchrcat(&out_buffer, out_format[i], &out_len);
756 continue; 1185 continue;
757 } 1186 }
758 1187
759 out = NULL; 1188 out = NULL;
760 be_wewy_wewy_quiet = (out_format[i] == '#'); 1189 be_wewy_wewy_quiet = (out_format[i] == '#');
1190 be_semi_verbose = (out_format[i] == '+');
761 switch (out_format[++i]) { 1191 switch (out_format[++i]) {
1192 case '+':
762 case '%': 1193 case '%':
763 case '#': 1194 case '#':
764 xchrcat(&out_buffer, out_format[i], &out_len); break; 1195 xchrcat(&out_buffer, out_format[i], &out_len); break;
765 case 'F': 1196 case 'F':
766 found_file = 1; 1197 found_file = 1;
767 if (be_wewy_wewy_quiet) break; 1198 if (be_wewy_wewy_quiet) break;
768 xstrcat(&out_buffer, filename, &out_len); 1199 xstrcat(&out_buffer, elf->filename, &out_len);
769 break; 1200 break;
770 case 'p': 1201 case 'p':
771 found_file = 1; 1202 found_file = 1;
772 if (be_wewy_wewy_quiet) break; 1203 if (be_wewy_wewy_quiet) break;
773 tmp = filename; 1204 tmp = elf->filename;
774 if (search_path) { 1205 if (search_path) {
775 ssize_t len_search = strlen(search_path); 1206 ssize_t len_search = strlen(search_path);
776 ssize_t len_file = strlen(filename); 1207 ssize_t len_file = strlen(elf->filename);
777 if (!strncmp(filename, search_path, len_search) && \ 1208 if (!strncmp(elf->filename, search_path, len_search) && \
778 len_file > len_search) 1209 len_file > len_search)
779 tmp += len_search; 1210 tmp += len_search;
780 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++; 1211 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++;
781 } 1212 }
782 xstrcat(&out_buffer, tmp, &out_len); 1213 xstrcat(&out_buffer, tmp, &out_len);
783 break; 1214 break;
784 case 'f': 1215 case 'f':
785 found_file = 1; 1216 found_file = 1;
786 if (be_wewy_wewy_quiet) break; 1217 if (be_wewy_wewy_quiet) break;
787 tmp = strrchr(filename, '/'); 1218 tmp = strrchr(elf->filename, '/');
788 tmp = (tmp == NULL ? filename : tmp+1); 1219 tmp = (tmp == NULL ? elf->filename : tmp+1);
789 xstrcat(&out_buffer, tmp, &out_len); 1220 xstrcat(&out_buffer, tmp, &out_len);
790 break; 1221 break;
791 case 'o': out = get_elfetype(elf); break; 1222 case 'o': out = get_elfetype(elf); break;
792 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1223 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
793 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1224 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
794 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1225 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
795 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1226 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
796 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1227 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1228 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1229 case 'D': out = get_endian(elf); break;
1230 case 'O': out = getstr_perms(elf->filename); break;
797 case 'n': 1231 case 'n':
798 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1232 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
799 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1233 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
800 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1234 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
801 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1235 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
802 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1236 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1237 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1238 case 'a': out = get_elfemtype(elf); break;
1239 case 'I': out = get_elfosabi(elf); break;
1240 case 'Y': out = get_elf_eabi(elf); break;
1241 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
803 default: warnf("'%c' has no scan code?", out_format[i]); 1242 default: warnf("'%c' has no scan code?", out_format[i]);
804 } 1243 }
1244 if (out) {
1245 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
1246 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
1247 xstrncat(&out_buffer, out, &out_len, (tmp-out));
1248 else
805 if (out) xstrcat(&out_buffer, out, &out_len); 1249 xstrcat(&out_buffer, out, &out_len);
1250 }
806 } 1251 }
807 1252
808#define FOUND_SOMETHING() \ 1253#define FOUND_SOMETHING() \
809 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1254 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
810 found_rpath || found_needed || found_interp || found_bind || \ 1255 found_rpath || found_needed || found_interp || found_bind || \
811 found_soname || found_sym || found_lib || found_textrels) 1256 found_soname || found_sym || found_lib || found_textrels || found_section )
812 1257
813 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) { 1258 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
814 xchrcat(&out_buffer, ' ', &out_len); 1259 xchrcat(&out_buffer, ' ', &out_len);
815 xstrcat(&out_buffer, filename, &out_len); 1260 xstrcat(&out_buffer, elf->filename, &out_len);
816 } 1261 }
817 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) { 1262 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) {
818 puts(out_buffer); 1263 puts(out_buffer);
819 fflush(stdout); 1264 fflush(stdout);
820 } 1265 }
821 1266
1267 return 0;
1268}
1269
1270/* scan a single elf */
1271static int scanelf_elf(const char *filename, int fd, size_t len)
1272{
1273 int ret = 1;
1274 elfobj *elf;
1275
1276 /* verify this is real ELF */
1277 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1278 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1279 return ret;
1280 }
1281 switch (match_bits) {
1282 case 32:
1283 if (elf->elf_class != ELFCLASS32)
1284 goto label_done;
1285 break;
1286 case 64:
1287 if (elf->elf_class != ELFCLASS64)
1288 goto label_done;
1289 break;
1290 default: break;
1291 }
1292 if (strlen(match_etypes)) {
1293 char sbuf[126];
1294 strncpy(sbuf, match_etypes, sizeof(sbuf));
1295 if (strchr(match_etypes, ',') != NULL) {
1296 char *p;
1297 while ((p = strrchr(sbuf, ',')) != NULL) {
1298 *p = 0;
1299 if (etype_lookup(p+1) == get_etype(elf))
1300 goto label_ret;
1301 }
1302 }
1303 if (etype_lookup(sbuf) != get_etype(elf))
1304 goto label_done;
1305 }
1306
1307label_ret:
1308 ret = scanelf_elfobj(elf);
1309
1310label_done:
822 unreadelf(elf); 1311 unreadelf(elf);
1312 return ret;
1313}
1314
1315/* scan an archive of elfs */
1316static int scanelf_archive(const char *filename, int fd, size_t len)
1317{
1318 archive_handle *ar;
1319 archive_member *m;
1320 char *ar_buffer;
1321 elfobj *elf;
1322
1323 ar = ar_open_fd(filename, fd);
1324 if (ar == NULL)
1325 return 1;
1326
1327 ar_buffer = (char*)mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1328 while ((m=ar_next(ar)) != NULL) {
1329 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size);
1330 if (elf) {
1331 scanelf_elfobj(elf);
1332 unreadelf(elf);
1333 }
1334 }
1335 munmap(ar_buffer, len);
1336
1337 return 0;
1338}
1339/* scan a file which may be an elf or an archive or some other magical beast */
1340static int scanelf_file(const char *filename, const struct stat *st_cache)
1341{
1342 const struct stat *st = st_cache;
1343 struct stat symlink_st;
1344 int fd;
1345
1346 /* always handle regular files and handle symlinked files if no -y */
1347 if (S_ISLNK(st->st_mode)) {
1348 if (!scan_symlink) return 1;
1349 stat(filename, &symlink_st);
1350 st = &symlink_st;
1351 }
1352
1353 if (!S_ISREG(st->st_mode)) {
1354 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1355 return 1;
1356 }
1357
1358 if (match_perms) {
1359 if ((st->st_mode | match_perms) != st->st_mode)
1360 return 1;
1361 }
1362 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1)
1363 return 1;
1364
1365 if (scanelf_elf(filename, fd, st->st_size) == 1 && scan_archives)
1366 /* if it isn't an ELF, maybe it's an .a archive */
1367 scanelf_archive(filename, fd, st->st_size);
1368
1369 close(fd);
1370 return 0;
823} 1371}
824 1372
825/* scan a directory for ET_EXEC files and print when we find one */ 1373/* scan a directory for ET_EXEC files and print when we find one */
826static void scanelf_dir(const char *path) 1374static int scanelf_dir(const char *path)
827{ 1375{
828 register DIR *dir; 1376 register DIR *dir;
829 register struct dirent *dentry; 1377 register struct dirent *dentry;
830 struct stat st_top, st; 1378 struct stat st_top, st;
831 char buf[_POSIX_PATH_MAX]; 1379 char buf[__PAX_UTILS_PATH_MAX];
832 size_t pathlen = 0, len = 0; 1380 size_t pathlen = 0, len = 0;
1381 int ret = 0;
833 1382
834 /* make sure path exists */ 1383 /* make sure path exists */
835 if (lstat(path, &st_top) == -1) { 1384 if (lstat(path, &st_top) == -1) {
836 if (be_verbose > 2) printf("%s: does not exist\n", path); 1385 if (be_verbose > 2) printf("%s: does not exist\n", path);
837 return; 1386 return 1;
838 } 1387 }
839 1388
840 /* ok, if it isn't a directory, assume we can open it */ 1389 /* ok, if it isn't a directory, assume we can open it */
841 if (!S_ISDIR(st_top.st_mode)) { 1390 if (!S_ISDIR(st_top.st_mode)) {
842 scanelf_file(path); 1391 return scanelf_file(path, &st_top);
843 return;
844 } 1392 }
845 1393
846 /* now scan the dir looking for fun stuff */ 1394 /* now scan the dir looking for fun stuff */
847 if ((dir = opendir(path)) == NULL) { 1395 if ((dir = opendir(path)) == NULL) {
848 warnf("could not opendir %s: %s", path, strerror(errno)); 1396 warnf("could not opendir %s: %s", path, strerror(errno));
849 return; 1397 return 1;
850 } 1398 }
851 if (be_verbose) printf("%s: scanning dir\n", path); 1399 if (be_verbose > 1) printf("%s: scanning dir\n", path);
852 1400
853 pathlen = strlen(path); 1401 pathlen = strlen(path);
854 while ((dentry = readdir(dir))) { 1402 while ((dentry = readdir(dir))) {
855 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1403 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
856 continue; 1404 continue;
858 if (len >= sizeof(buf)) { 1406 if (len >= sizeof(buf)) {
859 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1407 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path,
860 (unsigned long)len, (unsigned long)sizeof(buf)); 1408 (unsigned long)len, (unsigned long)sizeof(buf));
861 continue; 1409 continue;
862 } 1410 }
863 sprintf(buf, "%s/%s", path, dentry->d_name); 1411 snprintf(buf, sizeof(buf), "%s%s%s", path, (path[pathlen-1] == '/') ? "" : "/", dentry->d_name);
864 if (lstat(buf, &st) != -1) { 1412 if (lstat(buf, &st) != -1) {
865 if (S_ISREG(st.st_mode)) 1413 if (S_ISREG(st.st_mode))
866 scanelf_file(buf); 1414 ret = scanelf_file(buf, &st);
867 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1415 else if (dir_recurse && S_ISDIR(st.st_mode)) {
868 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1416 if (dir_crossmount || (st_top.st_dev == st.st_dev))
869 scanelf_dir(buf); 1417 ret = scanelf_dir(buf);
870 } 1418 }
871 } 1419 }
872 } 1420 }
873 closedir(dir); 1421 closedir(dir);
1422 return ret;
874} 1423}
875 1424
876static int scanelf_from_file(char *filename) 1425static int scanelf_from_file(const char *filename)
877{ 1426{
878 FILE *fp = NULL; 1427 FILE *fp = NULL;
879 char *p; 1428 char *p;
880 char path[_POSIX_PATH_MAX]; 1429 char path[__PAX_UTILS_PATH_MAX];
1430 int ret = 0;
881 1431
882 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1432 if (strcmp(filename, "-") == 0)
883 fp = stdin; 1433 fp = stdin;
884 else if ((fp = fopen(filename, "r")) == NULL) 1434 else if ((fp = fopen(filename, "r")) == NULL)
885 return 1; 1435 return 1;
886 1436
887 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1437 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
888 if ((p = strchr(path, '\n')) != NULL) 1438 if ((p = strchr(path, '\n')) != NULL)
889 *p = 0; 1439 *p = 0;
890 search_path = path; 1440 search_path = path;
891 scanelf_dir(path); 1441 ret = scanelf_dir(path);
892 } 1442 }
893 if (fp != stdin) 1443 if (fp != stdin)
894 fclose(fp); 1444 fclose(fp);
895 return 0; 1445 return ret;
896} 1446}
897 1447
898static void load_ld_so_conf() 1448#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1449
1450static int load_ld_cache_config(int i, const char *fname)
899{ 1451{
900 FILE *fp = NULL; 1452 FILE *fp = NULL;
901 char *p; 1453 char *p;
902 char path[_POSIX_PATH_MAX]; 1454 char path[__PAX_UTILS_PATH_MAX];
903 int i = 0;
904 1455
905 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1456 if (i + 1 == ARRAY_SIZE(ldpaths))
906 return; 1457 return i;
907 1458
1459 if ((fp = fopen(fname, "r")) == NULL)
1460 return i;
1461
908 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1462 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
909 if (*path != '/')
910 continue;
911
912 if ((p = strrchr(path, '\r')) != NULL) 1463 if ((p = strrchr(path, '\r')) != NULL)
913 *p = 0; 1464 *p = 0;
914 if ((p = strchr(path, '\n')) != NULL) 1465 if ((p = strchr(path, '\n')) != NULL)
915 *p = 0; 1466 *p = 0;
1467#ifdef __linux__
1468 /* recursive includes of the same file will make this segfault. */
1469 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1470 glob64_t gl;
1471 size_t x;
1472 char gpath[__PAX_UTILS_PATH_MAX];
1473
1474 memset(gpath, 0, sizeof(gpath));
1475
1476 if (path[8] != '/')
1477 snprintf(gpath, sizeof(gpath), "/etc/%s", &path[8]);
1478 else
1479 strncpy(gpath, &path[8], sizeof(gpath));
1480
1481 if ((glob64(gpath, 0, NULL, &gl)) == 0) {
1482 for (x = 0; x < gl.gl_pathc; ++x) {
1483 /* try to avoid direct loops */
1484 if (strcmp(gl.gl_pathv[x], fname) == 0)
1485 continue;
1486 i = load_ld_cache_config(i, gl.gl_pathv[x]);
1487 if (i + 1 >= ARRAY_SIZE(ldpaths)) {
1488 globfree64(&gl);
1489 return i;
1490 }
1491 }
1492 globfree64 (&gl);
1493 continue;
1494 }
1495 }
1496#endif
1497 if (*path != '/')
1498 continue;
916 1499
917 ldpaths[i++] = xstrdup(path); 1500 ldpaths[i++] = xstrdup(path);
918 1501
919 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1502 if (i + 1 == ARRAY_SIZE(ldpaths))
920 break; 1503 break;
921 } 1504 }
922 ldpaths[i] = NULL; 1505 ldpaths[i] = NULL;
923 1506
924 fclose(fp); 1507 fclose(fp);
1508 return i;
925} 1509}
1510
1511#elif defined(__FreeBSD__) || (__DragonFly__)
1512
1513static int load_ld_cache_config(int i, const char *fname)
1514{
1515 FILE *fp = NULL;
1516 char *b = NULL, *p;
1517 struct elfhints_hdr hdr;
1518
1519 if (i + 1 == ARRAY_SIZE(ldpaths))
1520 return i;
1521
1522 if ((fp = fopen(fname, "r")) == NULL)
1523 return i;
1524
1525 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1526 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1527 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1528 {
1529 fclose(fp);
1530 return i;
1531 }
1532
1533 b = xmalloc(hdr.dirlistlen + 1);
1534 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1535 fclose(fp);
1536 free(b);
1537 return i;
1538 }
1539
1540 while ((p = strsep(&b, ":"))) {
1541 if (*p == '\0') continue;
1542 ldpaths[i++] = xstrdup(p);
1543
1544 if (i + 1 == ARRAY_SIZE(ldpaths))
1545 break;
1546 }
1547 ldpaths[i] = NULL;
1548
1549 free(b);
1550 fclose(fp);
1551 return i;
1552}
1553
1554#else
1555#ifdef __ELF__
1556#warning Cache config support not implemented for your target
1557#endif
1558static int load_ld_cache_config(int i, const char *fname)
1559{
1560 memset(ldpaths, 0x00, sizeof(ldpaths));
1561 return 0;
1562}
1563#endif
926 1564
927/* scan /etc/ld.so.conf for paths */ 1565/* scan /etc/ld.so.conf for paths */
928static void scanelf_ldpath() 1566static void scanelf_ldpath(void)
929{ 1567{
930 char scan_l, scan_ul, scan_ull; 1568 char scan_l, scan_ul, scan_ull;
931 int i = 0; 1569 int i = 0;
932 1570
933 if (!ldpaths[0]) 1571 if (!ldpaths[0])
947 if (!scan_ul) scanelf_dir("/usr/lib"); 1585 if (!scan_ul) scanelf_dir("/usr/lib");
948 if (!scan_ull) scanelf_dir("/usr/local/lib"); 1586 if (!scan_ull) scanelf_dir("/usr/local/lib");
949} 1587}
950 1588
951/* scan env PATH for paths */ 1589/* scan env PATH for paths */
952static void scanelf_envpath() 1590static void scanelf_envpath(void)
953{ 1591{
954 char *path, *p; 1592 char *path, *p;
955 1593
956 path = getenv("PATH"); 1594 path = getenv("PATH");
957 if (!path) 1595 if (!path)
964 } 1602 }
965 1603
966 free(path); 1604 free(path);
967} 1605}
968 1606
969 1607/* usage / invocation handling functions */ /* Free Flags: c d j u w C G H J K P Q U W */
970
971/* usage / invocation handling functions */
972#define PARSE_FLAGS "plRmyxetrnibSs:gN:TaqvF:f:o:BhV" 1608#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZBhV"
973#define a_argument required_argument 1609#define a_argument required_argument
974static struct option const long_opts[] = { 1610static struct option const long_opts[] = {
975 {"path", no_argument, NULL, 'p'}, 1611 {"path", no_argument, NULL, 'p'},
976 {"ldpath", no_argument, NULL, 'l'}, 1612 {"ldpath", no_argument, NULL, 'l'},
977 {"recursive", no_argument, NULL, 'R'}, 1613 {"recursive", no_argument, NULL, 'R'},
978 {"mount", no_argument, NULL, 'm'}, 1614 {"mount", no_argument, NULL, 'm'},
979 {"symlink", no_argument, NULL, 'y'}, 1615 {"symlink", no_argument, NULL, 'y'},
1616 {"archives", no_argument, NULL, 'A'},
1617 {"ldcache", no_argument, NULL, 'L'},
1618 {"fix", no_argument, NULL, 'X'},
1619 {"setpax", a_argument, NULL, 'z'},
980 {"pax", no_argument, NULL, 'x'}, 1620 {"pax", no_argument, NULL, 'x'},
981 {"header", no_argument, NULL, 'e'}, 1621 {"header", no_argument, NULL, 'e'},
982 {"textrel", no_argument, NULL, 't'}, 1622 {"textrel", no_argument, NULL, 't'},
983 {"rpath", no_argument, NULL, 'r'}, 1623 {"rpath", no_argument, NULL, 'r'},
984 {"needed", no_argument, NULL, 'n'}, 1624 {"needed", no_argument, NULL, 'n'},
985 {"interp", no_argument, NULL, 'i'}, 1625 {"interp", no_argument, NULL, 'i'},
986 {"bind", no_argument, NULL, 'b'}, 1626 {"bind", no_argument, NULL, 'b'},
987 {"soname", no_argument, NULL, 'S'}, 1627 {"soname", no_argument, NULL, 'S'},
988 {"symbol", a_argument, NULL, 's'}, 1628 {"symbol", a_argument, NULL, 's'},
1629 {"section", a_argument, NULL, 'k'},
989 {"lib", a_argument, NULL, 'N'}, 1630 {"lib", a_argument, NULL, 'N'},
990 {"gmatch", no_argument, NULL, 'g'}, 1631 {"gmatch", no_argument, NULL, 'g'},
991 {"textrels", no_argument, NULL, 'T'}, 1632 {"textrels", no_argument, NULL, 'T'},
1633 {"etype", a_argument, NULL, 'E'},
1634 {"bits", a_argument, NULL, 'M'},
1635 {"endian", no_argument, NULL, 'D'},
1636 {"osabi", no_argument, NULL, 'I'},
1637 {"eabi", no_argument, NULL, 'Y'},
1638 {"perms", a_argument, NULL, 'O'},
1639 {"size", no_argument, NULL, 'Z'},
992 {"all", no_argument, NULL, 'a'}, 1640 {"all", no_argument, NULL, 'a'},
993 {"quiet", no_argument, NULL, 'q'}, 1641 {"quiet", no_argument, NULL, 'q'},
994 {"verbose", no_argument, NULL, 'v'}, 1642 {"verbose", no_argument, NULL, 'v'},
995 {"format", a_argument, NULL, 'F'}, 1643 {"format", a_argument, NULL, 'F'},
996 {"from", a_argument, NULL, 'f'}, 1644 {"from", a_argument, NULL, 'f'},
1004static const char *opts_help[] = { 1652static const char *opts_help[] = {
1005 "Scan all directories in PATH environment", 1653 "Scan all directories in PATH environment",
1006 "Scan all directories in /etc/ld.so.conf", 1654 "Scan all directories in /etc/ld.so.conf",
1007 "Scan directories recursively", 1655 "Scan directories recursively",
1008 "Don't recursively cross mount points", 1656 "Don't recursively cross mount points",
1009 "Don't scan symlinks\n", 1657 "Don't scan symlinks",
1658 "Scan archives (.a files)",
1659 "Utilize ld.so.cache information (use with -r/-n)",
1660 "Try and 'fix' bad things (use with -r/-e)",
1661 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1010 "Print PaX markings", 1662 "Print PaX markings",
1011 "Print GNU_STACK/PT_LOAD markings", 1663 "Print GNU_STACK/PT_LOAD markings",
1012 "Print TEXTREL information", 1664 "Print TEXTREL information",
1013 "Print RPATH information", 1665 "Print RPATH information",
1014 "Print NEEDED information", 1666 "Print NEEDED information",
1015 "Print INTERP information", 1667 "Print INTERP information",
1016 "Print BIND information", 1668 "Print BIND information",
1017 "Print SONAME information", 1669 "Print SONAME information",
1018 "Find a specified symbol", 1670 "Find a specified symbol",
1671 "Find a specified section",
1019 "Find a specified library", 1672 "Find a specified library",
1020 "Use strncmp to match libraries. (use with -N)", 1673 "Use strncmp to match libraries. (use with -N)",
1021 "Locate cause of TEXTREL", 1674 "Locate cause of TEXTREL",
1675 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1676 "Print only ELF files matching numeric bits",
1677 "Print Endianness",
1678 "Print OSABI",
1679 "Print EABI (EM_ARM Only)",
1680 "Print only ELF files matching octal permissions",
1681 "Print ELF file size",
1022 "Print all scanned info (-x -e -t -r -b)\n", 1682 "Print all scanned info (-x -e -t -r -b)\n",
1023 "Only output 'bad' things", 1683 "Only output 'bad' things",
1024 "Be verbose (can be specified more than once)", 1684 "Be verbose (can be specified more than once)",
1025 "Use specified format for output", 1685 "Use specified format for output",
1026 "Read input stream from a filename", 1686 "Read input stream from a filename",
1034/* display usage and exit */ 1694/* display usage and exit */
1035static void usage(int status) 1695static void usage(int status)
1036{ 1696{
1037 unsigned long i; 1697 unsigned long i;
1038 printf("* Scan ELF binaries for stuff\n\n" 1698 printf("* Scan ELF binaries for stuff\n\n"
1039 "Usage: %s [options] <dir1/file1> [dir2 dirN fileN ...]\n\n", argv0); 1699 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1040 printf("Options: -[%s]\n", PARSE_FLAGS); 1700 printf("Options: -[%s]\n", PARSE_FLAGS);
1041 for (i = 0; long_opts[i].name; ++i) 1701 for (i = 0; long_opts[i].name; ++i)
1042 if (long_opts[i].has_arg == no_argument) 1702 if (long_opts[i].has_arg == no_argument)
1043 printf(" -%c, --%-13s* %s\n", long_opts[i].val, 1703 printf(" -%c, --%-14s* %s\n", long_opts[i].val,
1044 long_opts[i].name, opts_help[i]); 1704 long_opts[i].name, opts_help[i]);
1045 else 1705 else
1046 printf(" -%c, --%-6s <arg> * %s\n", long_opts[i].val, 1706 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val,
1047 long_opts[i].name, opts_help[i]); 1707 long_opts[i].name, opts_help[i]);
1048 1708
1049 if (status != EXIT_SUCCESS) 1709 puts("\nFor more information, see the scanelf(1) manpage");
1050 exit(status);
1051
1052 puts("\nThe format modifiers for the -F option are:");
1053 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1054 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1055 puts(" i INTERP \tb BIND \ts symbol");
1056 puts(" N library \to Type \tT TEXTRELs");
1057 puts(" S SONAME");
1058 puts(" p filename (with search path removed)");
1059 puts(" f filename (short name/basename)");
1060 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1061
1062 exit(status); 1710 exit(status);
1063} 1711}
1064 1712
1065/* parse command line arguments and preform needed actions */ 1713/* parse command line arguments and preform needed actions */
1714#define do_pax_state(option, flag) \
1715 if (islower(option)) { \
1716 flags &= ~PF_##flag; \
1717 flags |= PF_NO##flag; \
1718 } else { \
1719 flags &= ~PF_NO##flag; \
1720 flags |= PF_##flag; \
1721 }
1066static void parseargs(int argc, char *argv[]) 1722static int parseargs(int argc, char *argv[])
1067{ 1723{
1068 int i; 1724 int i;
1069 char *from_file = NULL; 1725 const char *from_file = NULL;
1726 int ret = 0;
1070 1727
1071 opterr = 0; 1728 opterr = 0;
1072 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 1729 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1073 switch (i) { 1730 switch (i) {
1074 1731
1078 VERSION, __FILE__, __DATE__, rcsid, argv0); 1735 VERSION, __FILE__, __DATE__, rcsid, argv0);
1079 exit(EXIT_SUCCESS); 1736 exit(EXIT_SUCCESS);
1080 break; 1737 break;
1081 case 'h': usage(EXIT_SUCCESS); break; 1738 case 'h': usage(EXIT_SUCCESS); break;
1082 case 'f': 1739 case 'f':
1083 if (from_file) err("Don't specify -f twice"); 1740 if (from_file) warn("You prob don't want to specify -f twice");
1084 from_file = xstrdup(optarg); 1741 from_file = optarg;
1742 break;
1743 case 'E':
1744 strncpy(match_etypes, optarg, sizeof(match_etypes));
1745 break;
1746 case 'M':
1747 match_bits = atoi(optarg);
1748 if (match_bits == 0) {
1749 if (strcmp(optarg, "ELFCLASS32") == 0)
1750 match_bits = 32;
1751 if (strcmp(optarg, "ELFCLASS64") == 0)
1752 match_bits = 64;
1753 }
1754 break;
1755 case 'O':
1756 if (sscanf(optarg, "%o", &match_perms) == (-1))
1757 match_bits = 0;
1085 break; 1758 break;
1086 case 'o': { 1759 case 'o': {
1087 FILE *fp = NULL;
1088 if ((fp = freopen(optarg, "w", stdout)) == NULL) 1760 if (freopen(optarg, "w", stdout) == NULL)
1089 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 1761 err("Could not open output stream '%s': %s", optarg, strerror(errno));
1090 SET_STDOUT(fp);
1091 break; 1762 break;
1092 } 1763 }
1093 1764 case 'k':
1765 if (find_section) warn("You prob don't want to specify -k twice");
1766 find_section = optarg;
1767 break;
1094 case 's': { 1768 case 's': {
1095 size_t len;
1096 if (find_sym) err("Don't specify -s twice"); 1769 if (find_sym) warn("You prob don't want to specify -s twice");
1097 find_sym = xstrdup(optarg); 1770 find_sym = optarg;
1098 len = strlen(find_sym) + 1;
1099 versioned_symname = (char*)xmalloc(sizeof(char) * (len+1)); 1771 versioned_symname = xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1100 sprintf(versioned_symname, "%s@", find_sym); 1772 sprintf(versioned_symname, "%s@", find_sym);
1101 break; 1773 break;
1102 } 1774 }
1103 case 'N': { 1775 case 'N': {
1104 if (find_lib) err("Don't specify -N twice"); 1776 if (find_lib) warn("You prob don't want to specify -N twice");
1105 find_lib = xstrdup(optarg); 1777 find_lib = optarg;
1106 break; 1778 break;
1107 } 1779 }
1108 1780
1109 case 'F': { 1781 case 'F': {
1110 if (out_format) err("Don't specify -F twice"); 1782 if (out_format) warn("You prob don't want to specify -F twice");
1111 out_format = xstrdup(optarg); 1783 out_format = optarg;
1784 break;
1785 }
1786 case 'z': {
1787 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1788 size_t x;
1789
1790 for (x = 0; x < strlen(optarg); x++) {
1791 switch (optarg[x]) {
1792 case 'p':
1793 case 'P':
1794 do_pax_state(optarg[x], PAGEEXEC);
1112 break; 1795 break;
1796 case 's':
1797 case 'S':
1798 do_pax_state(optarg[x], SEGMEXEC);
1799 break;
1800 case 'm':
1801 case 'M':
1802 do_pax_state(optarg[x], MPROTECT);
1803 break;
1804 case 'e':
1805 case 'E':
1806 do_pax_state(optarg[x], EMUTRAMP);
1807 break;
1808 case 'r':
1809 case 'R':
1810 do_pax_state(optarg[x], RANDMMAP);
1811 break;
1812 case 'x':
1813 case 'X':
1814 do_pax_state(optarg[x], RANDEXEC);
1815 break;
1816 default:
1817 break;
1818 }
1113 } 1819 }
1114 1820 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
1821 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
1822 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
1823 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
1824 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
1825 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1826 setpax = flags;
1827 break;
1828 }
1829 case 'Z': show_size = 1; break;
1115 case 'g': gmatch = 1; 1830 case 'g': g_match = 1; break;
1831 case 'L': use_ldcache = 1; break;
1116 case 'y': scan_symlink = 0; break; 1832 case 'y': scan_symlink = 0; break;
1833 case 'A': scan_archives = 1; break;
1117 case 'B': show_banner = 0; break; 1834 case 'B': show_banner = 0; break;
1118 case 'l': scan_ldpath = 1; break; 1835 case 'l': scan_ldpath = 1; break;
1119 case 'p': scan_envpath = 1; break; 1836 case 'p': scan_envpath = 1; break;
1120 case 'R': dir_recurse = 1; break; 1837 case 'R': dir_recurse = 1; break;
1121 case 'm': dir_crossmount = 0; break; 1838 case 'm': dir_crossmount = 0; break;
1839 case 'X': ++fix_elf; break;
1122 case 'x': show_pax = 1; break; 1840 case 'x': show_pax = 1; break;
1123 case 'e': show_phdr = 1; break; 1841 case 'e': show_phdr = 1; break;
1124 case 't': show_textrel = 1; break; 1842 case 't': show_textrel = 1; break;
1125 case 'r': show_rpath = 1; break; 1843 case 'r': show_rpath = 1; break;
1126 case 'n': show_needed = 1; break; 1844 case 'n': show_needed = 1; break;
1128 case 'b': show_bind = 1; break; 1846 case 'b': show_bind = 1; break;
1129 case 'S': show_soname = 1; break; 1847 case 'S': show_soname = 1; break;
1130 case 'T': show_textrels = 1; break; 1848 case 'T': show_textrels = 1; break;
1131 case 'q': be_quiet = 1; break; 1849 case 'q': be_quiet = 1; break;
1132 case 'v': be_verbose = (be_verbose % 20) + 1; break; 1850 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1133 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 1851 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1134 1852 case 'D': show_endian = 1; break;
1853 case 'I': show_osabi = 1; break;
1854 case 'Y': show_eabi = 1; break;
1135 case ':': 1855 case ':':
1136 err("Option missing parameter\n"); 1856 err("Option '%c' is missing parameter", optopt);
1137 case '?': 1857 case '?':
1138 err("Unknown option\n"); 1858 err("Unknown option '%c' or argument missing", optopt);
1139 default: 1859 default:
1140 err("Unhandled option '%c'", i); 1860 err("Unhandled option '%c'; please report this", i);
1141 }
1142 } 1861 }
1143 1862 }
1863 if (show_textrels && be_verbose) {
1864 if (which("objdump") != NULL)
1865 has_objdump = 1;
1866 }
1144 /* let the format option override all other options */ 1867 /* let the format option override all other options */
1145 if (out_format) { 1868 if (out_format) {
1146 show_pax = show_phdr = show_textrel = show_rpath = \ 1869 show_pax = show_phdr = show_textrel = show_rpath = \
1147 show_needed = show_interp = show_bind = show_soname = \ 1870 show_needed = show_interp = show_bind = show_soname = \
1148 show_textrels = 0; 1871 show_textrels = show_perms = show_endian = show_size = \
1872 show_osabi = show_eabi = 0;
1149 for (i = 0; out_format[i]; ++i) { 1873 for (i = 0; out_format[i]; ++i) {
1150 if (!IS_MODIFIER(out_format[i])) continue; 1874 if (!IS_MODIFIER(out_format[i])) continue;
1151 1875
1152 switch (out_format[++i]) { 1876 switch (out_format[++i]) {
1877 case '+': break;
1153 case '%': break; 1878 case '%': break;
1154 case '#': break; 1879 case '#': break;
1155 case 'F': break; 1880 case 'F': break;
1156 case 'p': break; 1881 case 'p': break;
1157 case 'f': break; 1882 case 'f': break;
1883 case 'k': break;
1158 case 's': break; 1884 case 's': break;
1159 case 'N': break; 1885 case 'N': break;
1160 case 'o': break; 1886 case 'o': break;
1887 case 'a': break;
1888 case 'M': break;
1889 case 'Z': show_size = 1; break;
1890 case 'D': show_endian = 1; break;
1891 case 'I': show_osabi = 1; break;
1892 case 'Y': show_eabi = 1; break;
1893 case 'O': show_perms = 1; break;
1161 case 'x': show_pax = 1; break; 1894 case 'x': show_pax = 1; break;
1162 case 'e': show_phdr = 1; break; 1895 case 'e': show_phdr = 1; break;
1163 case 't': show_textrel = 1; break; 1896 case 't': show_textrel = 1; break;
1164 case 'r': show_rpath = 1; break; 1897 case 'r': show_rpath = 1; break;
1165 case 'n': show_needed = 1; break; 1898 case 'n': show_needed = 1; break;
1166 case 'i': show_interp = 1; break; 1899 case 'i': show_interp = 1; break;
1167 case 'b': show_bind = 1; break; 1900 case 'b': show_bind = 1; break;
1168 case 'S': show_soname = 1; break; 1901 case 'S': show_soname = 1; break;
1169 case 'T': show_textrels = 1; break; 1902 case 'T': show_textrels = 1; break;
1170 default: 1903 default:
1171 err("Invalid format specifier '%c' (byte %i)", 1904 err("Invalid format specifier '%c' (byte %i)",
1172 out_format[i], i+1); 1905 out_format[i], i+1);
1173 } 1906 }
1174 } 1907 }
1175 1908
1176 /* construct our default format */ 1909 /* construct our default format */
1177 } else { 1910 } else {
1178 size_t fmt_len = 30; 1911 size_t fmt_len = 30;
1179 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 1912 out_format = xmalloc(sizeof(char) * fmt_len);
1913 *out_format = '\0';
1180 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 1914 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1181 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 1915 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
1916 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
1917 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
1918 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
1919 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
1920 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1182 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 1921 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1183 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 1922 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1184 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 1923 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1185 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 1924 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1186 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 1925 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1187 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len); 1926 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
1188 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len); 1927 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
1189 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len); 1928 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
1190 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 1929 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
1930 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
1191 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len); 1931 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
1192 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 1932 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1193 } 1933 }
1194 if (be_verbose > 2) printf("Format: %s\n", out_format); 1934 if (be_verbose > 2) printf("Format: %s\n", out_format);
1195 1935
1196 /* now lets actually do the scanning */ 1936 /* now lets actually do the scanning */
1197 if (scan_ldpath || (show_rpath && be_quiet)) 1937 if (scan_ldpath || use_ldcache)
1198 load_ld_so_conf(); 1938 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1199 if (scan_ldpath) scanelf_ldpath(); 1939 if (scan_ldpath) scanelf_ldpath();
1200 if (scan_envpath) scanelf_envpath(); 1940 if (scan_envpath) scanelf_envpath();
1941 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
1942 from_file = "-";
1201 if (from_file) { 1943 if (from_file) {
1202 scanelf_from_file(from_file); 1944 scanelf_from_file(from_file);
1203 free(from_file);
1204 from_file = *argv; 1945 from_file = *argv;
1205 } 1946 }
1206 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 1947 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1207 err("Nothing to scan !?"); 1948 err("Nothing to scan !?");
1208 while (optind < argc) { 1949 while (optind < argc) {
1209 search_path = argv[optind++]; 1950 search_path = argv[optind++];
1210 scanelf_dir(search_path); 1951 ret = scanelf_dir(search_path);
1211 } 1952 }
1212 1953
1213 /* clean up */ 1954 /* clean up */
1214 if (find_sym) {
1215 free(find_sym);
1216 free(versioned_symname); 1955 free(versioned_symname);
1217 }
1218 if (find_lib) free(find_lib);
1219 if (out_format) free(out_format);
1220 for (i = 0; ldpaths[i]; ++i) 1956 for (i = 0; ldpaths[i]; ++i)
1221 free(ldpaths[i]); 1957 free(ldpaths[i]);
1222}
1223 1958
1224 1959 if (ldcache != 0)
1225 1960 munmap(ldcache, ldcache_size);
1226/* utility funcs */
1227static char *xstrdup(const char *s)
1228{
1229 char *ret = strdup(s);
1230 if (!ret) err("Could not strdup(): %s", strerror(errno));
1231 return ret; 1961 return ret;
1232} 1962}
1233 1963
1234static void *xmalloc(size_t size) 1964static char **get_split_env(const char *envvar)
1235{ 1965{
1236 void *ret = malloc(size); 1966 const char *delims = " \t\n";
1237 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size); 1967 char **envvals = NULL;
1238 return ret; 1968 char *env, *s;
1239} 1969 int nentry;
1240 1970
1241static void xstrcat(char **dst, const char *src, size_t *curr_len) 1971 if ((env = getenv(envvar)) == NULL)
1242{ 1972 return NULL;
1243 size_t new_len;
1244 1973
1245 new_len = strlen(*dst) + strlen(src); 1974 env = xstrdup(env);
1246 if (*curr_len <= new_len) { 1975 if (env == NULL)
1247 *curr_len = new_len + (*curr_len / 2); 1976 return NULL;
1248 *dst = realloc(*dst, *curr_len);
1249 if (!*dst)
1250 err("could not realloc %li bytes", (unsigned long)*curr_len);
1251 }
1252 1977
1253 strcat(*dst, src); 1978 s = strtok(env, delims);
1254} 1979 if (s == NULL) {
1980 free(env);
1981 return NULL;
1982 }
1255 1983
1256static inline void xchrcat(char **dst, const char append, size_t *curr_len) 1984 nentry = 0;
1257{ 1985 while (s != NULL) {
1258 static char my_app[2]; 1986 ++nentry;
1259 my_app[0] = append; 1987 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
1260 my_app[1] = '\0'; 1988 envvals[nentry-1] = s;
1261 xstrcat(dst, my_app, curr_len); 1989 s = strtok(NULL, delims);
1262} 1990 }
1991 envvals[nentry] = NULL;
1263 1992
1993 /* don't want to free(env) as it contains the memory that backs
1994 * the envvals array of strings */
1995 return envvals;
1996}
1264 1997
1998static void parseenv(void)
1999{
2000 qa_textrels = get_split_env("QA_TEXTRELS");
2001 qa_execstack = get_split_env("QA_EXECSTACK");
2002 qa_wx_load = get_split_env("QA_WX_LOAD");
2003}
2004
2005#ifdef __PAX_UTILS_CLEANUP
2006static void cleanup(void)
2007{
2008 free(out_format);
2009 free(qa_textrels);
2010 free(qa_execstack);
2011 free(qa_wx_load);
2012}
2013#endif
1265 2014
1266int main(int argc, char *argv[]) 2015int main(int argc, char *argv[])
1267{ 2016{
2017 int ret;
1268 if (argc < 2) 2018 if (argc < 2)
1269 usage(EXIT_FAILURE); 2019 usage(EXIT_FAILURE);
2020 parseenv();
1270 parseargs(argc, argv); 2021 ret = parseargs(argc, argv);
1271 fclose(stdout); 2022 fclose(stdout);
1272#ifdef __BOUNDS_CHECKING_ON 2023#ifdef __PAX_UTILS_CLEANUP
1273 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2024 cleanup();
2025 warn("The calls to add/delete heap should be off:\n"
2026 "\t- 1 due to the out_buffer not being freed in scanelf_file()\n"
2027 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1274#endif 2028#endif
1275 return EXIT_SUCCESS; 2029 return ret;
1276} 2030}
2031
2032/* Match filename against entries in matchlist, return TRUE
2033 * if the file is listed */
2034static int file_matches_list(const char *filename, char **matchlist)
2035{
2036 char **file;
2037 char *match;
2038 char buf[__PAX_UTILS_PATH_MAX];
2039
2040 if (matchlist == NULL)
2041 return 0;
2042
2043 for (file = matchlist; *file != NULL; file++) {
2044 if (search_path) {
2045 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2046 match = buf;
2047 } else {
2048 match = *file;
2049 }
2050 if (fnmatch(match, filename, 0) == 0)
2051 return 1;
2052 }
2053 return 0;
2054}

Legend:
Removed from v.1.88  
changed lines
  Added in v.1.195

  ViewVC Help
Powered by ViewVC 1.1.20