/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.88 Revision 1.209
1/* 1/*
2 * Copyright 2003-2005 Gentoo Foundation 2 * Copyright 2003-2007 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.88 2005/09/30 03:30:54 vapier Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.209 2009/03/15 08:53:29 vapier Exp $
5 * 5 *
6 * Copyright 2003-2005 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2005 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10#include <stdio.h>
11#include <stdlib.h>
12#include <sys/types.h>
13#include <libgen.h>
14#include <limits.h>
15#define __USE_GNU
16#include <string.h>
17#include <errno.h>
18#include <unistd.h>
19#include <sys/stat.h>
20#include <dirent.h>
21#include <getopt.h>
22#include <assert.h>
23#include "paxelf.h"
24
25static const char *rcsid = "$Id: scanelf.c,v 1.88 2005/09/30 03:30:54 vapier Exp $"; 10static const char *rcsid = "$Id: scanelf.c,v 1.209 2009/03/15 08:53:29 vapier Exp $";
26#define argv0 "scanelf" 11const char * const argv0 = "scanelf";
27 12
13#include "paxinc.h"
14
28#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
29
30
31 16
32/* prototypes */ 17/* prototypes */
33static void scanelf_file(const char *filename); 18static int file_matches_list(const char *filename, char **matchlist);
19static int scanelf_elfobj(elfobj *elf);
20static int scanelf_elf(const char *filename, int fd, size_t len);
21static int scanelf_archive(const char *filename, int fd, size_t len);
22static int scanelf_file(const char *filename, const struct stat *st_cache);
34static void scanelf_dir(const char *path); 23static int scanelf_dir(const char *path);
35static void scanelf_ldpath(); 24static void scanelf_ldpath(void);
36static void scanelf_envpath(); 25static void scanelf_envpath(void);
37static void usage(int status); 26static void usage(int status);
27static char **get_split_env(const char *envvar);
28static void parseenv(void);
38static void parseargs(int argc, char *argv[]); 29static int parseargs(int argc, char *argv[]);
39static char *xstrdup(const char *s); 30static int rematch(const char *regex, const char *match, int cflags);
40static void *xmalloc(size_t size);
41static void xstrcat(char **dst, const char *src, size_t *curr_len);
42static inline void xchrcat(char **dst, const char append, size_t *curr_len);
43 31
44/* variables to control behavior */ 32/* variables to control behavior */
33static char match_etypes[126] = "";
45static char *ldpaths[256]; 34static char *ldpaths[256];
46static char scan_ldpath = 0; 35static char scan_ldpath = 0;
47static char scan_envpath = 0; 36static char scan_envpath = 0;
48static char scan_symlink = 1; 37static char scan_symlink = 1;
38static char scan_archives = 0;
49static char dir_recurse = 0; 39static char dir_recurse = 0;
50static char dir_crossmount = 1; 40static char dir_crossmount = 1;
51static char show_pax = 0; 41static char show_pax = 0;
42static char show_perms = 0;
43static char show_size = 0;
52static char show_phdr = 0; 44static char show_phdr = 0;
53static char show_textrel = 0; 45static char show_textrel = 0;
54static char show_rpath = 0; 46static char show_rpath = 0;
55static char show_needed = 0; 47static char show_needed = 0;
56static char show_interp = 0; 48static char show_interp = 0;
57static char show_bind = 0; 49static char show_bind = 0;
58static char show_soname = 0; 50static char show_soname = 0;
59static char show_textrels = 0; 51static char show_textrels = 0;
60static char show_banner = 1; 52static char show_banner = 1;
53static char show_endian = 0;
54static char show_osabi = 0;
55static char show_eabi = 0;
61static char be_quiet = 0; 56static char be_quiet = 0;
62static char be_verbose = 0; 57static char be_verbose = 0;
63static char be_wewy_wewy_quiet = 0; 58static char be_wewy_wewy_quiet = 0;
64static char *find_sym = NULL, *versioned_symname = NULL; 59static char be_semi_verbose = 0;
60static char *find_sym = NULL;
65static char *find_lib = NULL; 61static char *find_lib = NULL;
62static char *find_section = NULL;
66static char *out_format = NULL; 63static char *out_format = NULL;
67static char *search_path = NULL; 64static char *search_path = NULL;
65static char fix_elf = 0;
68static char gmatch = 0; 66static char g_match = 0;
67static char use_ldcache = 0;
69 68
69static char **qa_textrels = NULL;
70static char **qa_execstack = NULL;
71static char **qa_wx_load = NULL;
72
73static int match_bits = 0;
74static unsigned int match_perms = 0;
75static caddr_t ldcache = 0;
76static size_t ldcache_size = 0;
77static unsigned long setpax = 0UL;
78
79static int has_objdump = 0;
80
81/* find the path to a file by name */
82static char *which(const char *fname)
83{
84 static char fullpath[__PAX_UTILS_PATH_MAX];
85 char *path, *p;
86
87 path = getenv("PATH");
88 if (!path)
89 return NULL;
90
91 path = xstrdup(path);
92 while ((p = strrchr(path, ':')) != NULL) {
93 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
94 *p = 0;
95 if (access(fullpath, R_OK) != -1) {
96 free(path);
97 return fullpath;
98 }
99 }
100 free(path);
101 return NULL;
102}
103
104/* 1 on failure. 0 otherwise */
105static int rematch(const char *regex, const char *match, int cflags)
106{
107 regex_t preg;
108 int ret;
109
110 if ((match == NULL) || (regex == NULL))
111 return EXIT_FAILURE;
112
113 if ((ret = regcomp(&preg, regex, cflags))) {
114 char err[256];
115
116 if (regerror(ret, &preg, err, sizeof(err)))
117 fprintf(stderr, "regcomp failed: %s", err);
118 else
119 fprintf(stderr, "regcomp failed");
120
121 return EXIT_FAILURE;
122 }
123 ret = regexec(&preg, match, 0, NULL, 0);
124 regfree(&preg);
125
126 return ret;
127}
70 128
71/* sub-funcs for scanelf_file() */ 129/* sub-funcs for scanelf_file() */
72static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 130static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab)
73{ 131{
74 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 132 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
93 } \ 151 } \
94 } 152 }
95 GET_SYMTABS(32) 153 GET_SYMTABS(32)
96 GET_SYMTABS(64) 154 GET_SYMTABS(64)
97} 155}
156
98static char *scanelf_file_pax(elfobj *elf, char *found_pax) 157static char *scanelf_file_pax(elfobj *elf, char *found_pax)
99{ 158{
100 static char *paxflags;
101 static char ret[7]; 159 static char ret[7];
102 unsigned long i, shown; 160 unsigned long i, shown;
103 161
104 if (!show_pax) return NULL; 162 if (!show_pax) return NULL;
105 163
112 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 170 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
113 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 171 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
114 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 172 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
115 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \ 173 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
116 continue; \ 174 continue; \
117 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 175 if (fix_elf && setpax) { \
176 /* set the paxctl flags */ \
177 ESET(phdr[i].p_flags, setpax); \
178 } \
179 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
118 continue; \ 180 continue; \
119 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 181 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
120 *found_pax = 1; \ 182 *found_pax = 1; \
121 ++shown; \ 183 ++shown; \
122 break; \ 184 break; \
124 } 186 }
125 SHOW_PAX(32) 187 SHOW_PAX(32)
126 SHOW_PAX(64) 188 SHOW_PAX(64)
127 } 189 }
128 190
191 if (fix_elf && setpax) {
192 /* set the chpax settings */
193 if (elf->elf_class == ELFCLASS32) {
194 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC)
195 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
196 } else {
197 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
198 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
199 }
200 }
201
129 /* fall back to EI_PAX if no PT_PAX was found */ 202 /* fall back to EI_PAX if no PT_PAX was found */
130 if (!*ret) { 203 if (!*ret) {
204 static char *paxflags;
131 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 205 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
132 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) { 206 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) {
133 *found_pax = 1; 207 *found_pax = 1;
134 return paxflags; 208 return (be_wewy_wewy_quiet ? NULL : paxflags);
135 } 209 }
136 strncpy(ret, paxflags, sizeof(ret)); 210 strncpy(ret, paxflags, sizeof(ret));
137 } 211 }
138 212
139 if (be_quiet && !shown) 213 if (be_wewy_wewy_quiet || (be_quiet && !shown))
140 return NULL; 214 return NULL;
215 else
141 return ret; 216 return ret;
142
143} 217}
218
144static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 219static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
145{ 220{
146 static char ret[12]; 221 static char ret[12];
147 char *found; 222 char *found;
148 unsigned long i, off, shown, check_flags;
149 unsigned char multi_stack, multi_relro, multi_load; 223 unsigned long i, shown, multi_stack, multi_relro, multi_load;
224 int max_pt_load;
150 225
151 if (!show_phdr) return NULL; 226 if (!show_phdr) return NULL;
152 227
153 memcpy(ret, "--- --- ---\0", 12); 228 memcpy(ret, "--- --- ---\0", 12);
154 229
155 shown = 0; 230 shown = 0;
156 multi_stack = multi_relro = multi_load = 0; 231 multi_stack = multi_relro = multi_load = 0;
232 max_pt_load = elf_max_pt_load(elf);
157 233
158 if (elf->phdr) { 234#define NOTE_GNU_STACK ".note.GNU-stack"
159#define SHOW_PHDR(B) \ 235#define SHOW_PHDR(B) \
160 if (elf->elf_class == ELFCLASS ## B) { \ 236 if (elf->elf_class == ELFCLASS ## B) { \
161 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 237 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
238 Elf ## B ## _Off offset; \
239 uint32_t flags, check_flags; \
240 if (elf->phdr != NULL) { \
162 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 241 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
163 uint32_t flags; \
164 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 242 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
165 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 243 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
244 if (multi_stack++) \
166 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 245 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
246 if (file_matches_list(elf->filename, qa_execstack)) \
247 continue; \
167 found = found_phdr; \ 248 found = found_phdr; \
168 off = 0; \ 249 offset = 0; \
169 check_flags = PF_X; \ 250 check_flags = PF_X; \
170 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 251 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
252 if (multi_relro++) \
171 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 253 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
172 found = found_relro; \ 254 found = found_relro; \
173 off = 4; \ 255 offset = 4; \
174 check_flags = PF_X; \ 256 check_flags = PF_X; \
175 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 257 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
176 if (multi_load++ > 2) warnf("%s: more than 2 PT_LOAD's !?", elf->filename); \ 258 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
259 if (multi_load++ > max_pt_load) \
260 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
261 if (file_matches_list(elf->filename, qa_wx_load)) \
262 continue; \
177 found = found_load; \ 263 found = found_load; \
178 off = 8; \ 264 offset = 8; \
179 check_flags = PF_W|PF_X; \ 265 check_flags = PF_W|PF_X; \
180 } else \ 266 } else \
181 continue; \ 267 continue; \
182 flags = EGET(phdr[i].p_flags); \ 268 flags = EGET(phdr[i].p_flags); \
183 if (be_quiet && ((flags & check_flags) != check_flags)) \ 269 if (be_quiet && ((flags & check_flags) != check_flags)) \
184 continue; \ 270 continue; \
271 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
272 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
273 ret[3] = ret[7] = '!'; \
274 flags = EGET(phdr[i].p_flags); \
275 } \
185 memcpy(ret+off, gnu_short_stack_flags(flags), 3); \ 276 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
186 *found = 1; \ 277 *found = 1; \
187 ++shown; \ 278 ++shown; \
279 } \
280 } else if (elf->shdr != NULL) { \
281 /* no program headers which means this is prob an object file */ \
282 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
283 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
284 char *str; \
285 if ((void*)strtbl > (void*)elf->data_end) \
286 goto skip_this_shdr##B; \
287 check_flags = SHF_WRITE|SHF_EXECINSTR; \
288 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
289 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
290 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
291 str = elf->data + offset; \
292 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \
293 if (!strcmp(str, NOTE_GNU_STACK)) { \
294 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \
295 flags = EGET(shdr[i].sh_flags); \
296 if (be_quiet && ((flags & check_flags) != check_flags)) \
297 continue; \
298 ++*found_phdr; \
299 shown = 1; \
300 if (flags & SHF_WRITE) ret[0] = 'W'; \
301 if (flags & SHF_ALLOC) ret[1] = 'A'; \
302 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \
303 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \
304 break; \
305 } \
306 } \
307 skip_this_shdr##B: \
308 if (!multi_stack) { \
309 if (file_matches_list(elf->filename, qa_execstack)) \
310 return NULL; \
311 *found_phdr = 1; \
312 shown = 1; \
313 memcpy(ret, "!WX", 3); \
314 } \
188 } \ 315 } \
189 } 316 }
190 SHOW_PHDR(32) 317 SHOW_PHDR(32)
191 SHOW_PHDR(64) 318 SHOW_PHDR(64)
192 }
193 319
194 if (be_quiet && !shown) 320 if (be_wewy_wewy_quiet || (be_quiet && !shown))
195 return NULL; 321 return NULL;
196 else 322 else
197 return ret; 323 return ret;
198} 324}
325
326/*
327 * See if this ELF contains a DT_TEXTREL tag in any of its
328 * PT_DYNAMIC sections.
329 */
199static char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 330static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
200{ 331{
201 static char ret[] = "TEXTREL"; 332 static const char *ret = "TEXTREL";
202 unsigned long i; 333 unsigned long i;
203 334
204 if (!show_textrel && !show_textrels) return NULL; 335 if (!show_textrel && !show_textrels) return NULL;
336
337 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
205 338
206 if (elf->phdr) { 339 if (elf->phdr) {
207#define SHOW_TEXTREL(B) \ 340#define SHOW_TEXTREL(B) \
208 if (elf->elf_class == ELFCLASS ## B) { \ 341 if (elf->elf_class == ELFCLASS ## B) { \
209 Elf ## B ## _Dyn *dyn; \ 342 Elf ## B ## _Dyn *dyn; \
210 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 343 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
211 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 344 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
212 Elf ## B ## _Off offset; \ 345 Elf ## B ## _Off offset; \
213 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 346 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
214 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 347 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
215 offset = EGET(phdr[i].p_offset); \ 348 offset = EGET(phdr[i].p_offset); \
216 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 349 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
217 dyn = DYN ## B (elf->data + offset); \ 350 dyn = DYN ## B (elf->data + offset); \
218 while (EGET(dyn->d_tag) != DT_NULL) { \ 351 while (EGET(dyn->d_tag) != DT_NULL) { \
219 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 352 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
229 } 362 }
230 363
231 if (be_quiet || be_wewy_wewy_quiet) 364 if (be_quiet || be_wewy_wewy_quiet)
232 return NULL; 365 return NULL;
233 else 366 else
234 return (char *)" - "; 367 return " - ";
235} 368}
369
370/*
371 * Scan the .text section to see if there are any relocations in it.
372 * Should rewrite this to check PT_LOAD sections that are marked
373 * Executable rather than the section named '.text'.
374 */
236static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 375static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
237{ 376{
238 unsigned long s, r, rmax; 377 unsigned long s, r, rmax;
239 void *symtab_void, *strtab_void, *text_void; 378 void *symtab_void, *strtab_void, *text_void;
240 379
292 if (be_verbose <= 2) continue; \ 431 if (be_verbose <= 2) continue; \
293 } else \ 432 } else \
294 *found_textrels = 1; \ 433 *found_textrels = 1; \
295 /* locate this relocation symbol name */ \ 434 /* locate this relocation symbol name */ \
296 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 435 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
436 if ((void*)sym > (void*)elf->data_end) { \
437 warn("%s: corrupt ELF symbol", elf->filename); \
438 continue; \
439 } \
297 sym_max = ELF ## B ## _R_SYM(r_info); \ 440 sym_max = ELF ## B ## _R_SYM(r_info); \
298 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 441 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
299 sym += sym_max; \ 442 sym += sym_max; \
300 else \ 443 else \
301 sym = NULL; \ 444 sym = NULL; \
303 /* show the raw details about this reloc */ \ 446 /* show the raw details about this reloc */ \
304 printf(" %s: ", elf->base_filename); \ 447 printf(" %s: ", elf->base_filename); \
305 if (sym && sym->st_name) \ 448 if (sym && sym->st_name) \
306 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 449 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \
307 else \ 450 else \
308 printf("(memory/fake?)"); \ 451 printf("(memory/data?)"); \
309 printf(" [0x%lX]", (unsigned long)r_offset); \ 452 printf(" [0x%lX]", (unsigned long)r_offset); \
310 /* now try to find the closest symbol that this rel is probably in */ \ 453 /* now try to find the closest symbol that this rel is probably in */ \
311 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 454 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
312 func = NULL; \ 455 func = NULL; \
313 offset_tmp = 0; \ 456 offset_tmp = 0; \
317 offset_tmp = EGET(sym->st_value); \ 460 offset_tmp = EGET(sym->st_value); \
318 } \ 461 } \
319 ++sym; \ 462 ++sym; \
320 } \ 463 } \
321 printf(" in "); \ 464 printf(" in "); \
322 if (func && func->st_name) \ 465 if (func && func->st_name) { \
323 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 466 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
467 if (r_offset > EGET(func->st_size)) \
468 printf("(optimized out: previous %s)", func_name); \
324 else \ 469 else \
325 printf("(NULL: fake?)"); \ 470 printf("%s", func_name); \
471 } else \
472 printf("(optimized out)"); \
326 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 473 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
474 if (be_verbose && has_objdump) { \
475 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
476 char *sysbuf; \
477 size_t syslen; \
478 int sysret; \
479 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
480 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
481 sysbuf = xmalloc(syslen); \
482 if (end_addr < r_offset) \
483 /* not uncommon when things are optimized out */ \
484 end_addr = r_offset + 0x100; \
485 snprintf(sysbuf, syslen, sysfmt, \
486 (unsigned long)offset_tmp, \
487 (unsigned long)end_addr, \
488 elf->filename, \
489 (unsigned long)r_offset); \
490 fflush(stdout); \
491 sysret = system(sysbuf); \
492 fflush(stdout); \
493 free(sysbuf); \
494 } \
327 } \ 495 } \
328 } } 496 } }
329 SHOW_TEXTRELS(32) 497 SHOW_TEXTRELS(32)
330 SHOW_TEXTRELS(64) 498 SHOW_TEXTRELS(64)
331 } 499 }
333 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 501 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
334 502
335 return NULL; 503 return NULL;
336} 504}
337 505
338static void rpath_security_checks(elfobj *, char *); 506static void rpath_security_checks(elfobj *, char *, const char *);
339static void rpath_security_checks(elfobj *elf, char *item) { 507static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
508{
340 struct stat st; 509 struct stat st;
341 switch (*item) { 510 switch (*item) {
342 case 0:
343 warnf("Security problem NULL RPATH in %s", elf->filename);
344 break;
345 case '/': break; 511 case '/': break;
512 case '.':
513 warnf("Security problem with relative %s '%s' in %s", dt_type, item, elf->filename);
514 break;
515 case ':':
516 case '\0':
517 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
518 break;
346 case '$': 519 case '$':
347 if (fstat(elf->fd, &st) != -1) 520 if (fstat(elf->fd, &st) != -1)
348 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 521 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
349 warnf("Security problem with RPATH='%s' in %s with mode set of %o", 522 warnf("Security problem with %s='%s' in %s with mode set of %o",
350 item, elf->filename, st.st_mode & 07777); 523 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
351 break; 524 break;
352 default: 525 default:
353 warnf("Maybe? sec problem with RPATH='%s' in %s", item, elf->filename); 526 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
354 break; 527 break;
355 } 528 }
356} 529}
357static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 530static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
358{ 531{
375 Elf ## B ## _Off offset; \ 548 Elf ## B ## _Off offset; \
376 Elf ## B ## _Xword word; \ 549 Elf ## B ## _Xword word; \
377 /* Scan all the program headers */ \ 550 /* Scan all the program headers */ \
378 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 551 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
379 /* Just scan dynamic headers */ \ 552 /* Just scan dynamic headers */ \
380 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 553 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
381 offset = EGET(phdr[i].p_offset); \ 554 offset = EGET(phdr[i].p_offset); \
382 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 555 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
383 /* Just scan dynamic RPATH/RUNPATH headers */ \ 556 /* Just scan dynamic RPATH/RUNPATH headers */ \
384 dyn = DYN ## B (elf->data + offset); \ 557 dyn = DYN ## B (elf->data + offset); \
385 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 558 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
394 /* Verify the memory is somewhat sane */ \ 567 /* Verify the memory is somewhat sane */ \
395 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 568 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
396 if (offset < (Elf ## B ## _Off)elf->len) { \ 569 if (offset < (Elf ## B ## _Off)elf->len) { \
397 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 570 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
398 *r = (char*)(elf->data + offset); \ 571 *r = (char*)(elf->data + offset); \
572 /* cache the length in case we need to nuke this section later on */ \
573 if (fix_elf) \
574 offset = strlen(*r); \
399 /* If quiet, don't output paths in ld.so.conf */ \ 575 /* If quiet, don't output paths in ld.so.conf */ \
400 if (be_quiet) { \ 576 if (be_quiet) { \
401 size_t len; \ 577 size_t len; \
402 char *start, *end; \ 578 char *start, *end; \
403 /* note that we only 'chop' off leading known paths. */ \ 579 /* note that we only 'chop' off leading known paths. */ \
404 /* since *r is read-only memory, we can only move the ptr forward. */ \ 580 /* since *r is read-only memory, we can only move the ptr forward. */ \
405 start = *r; \ 581 start = *r; \
406 /* scan each path in : delimited list */ \ 582 /* scan each path in : delimited list */ \
407 while (start) { \ 583 while (start) { \
408 rpath_security_checks(elf, start); \ 584 rpath_security_checks(elf, start, get_elfdtype(word)); \
409 end = strchr(start, ':'); \ 585 end = strchr(start, ':'); \
410 len = (end ? abs(end - start) : strlen(start)); \ 586 len = (end ? abs(end - start) : strlen(start)); \
587 if (use_ldcache) \
411 for (s = 0; ldpaths[s]; ++s) { \ 588 for (s = 0; ldpaths[s]; ++s) \
412 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 589 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \
413 *r = (end ? end + 1 : NULL); \ 590 *r = end; \
591 /* corner case ... if RPATH reads "/usr/lib:", we want \
592 * to show ':' rather than '' */ \
593 if (end && end[1] != '\0') \
594 (*r)++; \
414 break; \ 595 break; \
415 } \ 596 } \
416 } \
417 if (!*r || !ldpaths[s] || !end) \ 597 if (!*r || !end) \
418 start = NULL; \ 598 break; \
419 else \ 599 else \
420 start = start + len + 1; \ 600 start = start + len + 1; \
421 } \ 601 } \
422 } \ 602 } \
603 if (*r) { \
604 if (fix_elf > 2 || (fix_elf && **r == '\0')) { \
605 /* just nuke it */ \
606 nuke_it##B: \
607 memset(*r, 0x00, offset); \
608 *r = NULL; \
609 ESET(dyn->d_tag, DT_DEBUG); \
610 ESET(dyn->d_un.d_ptr, 0); \
611 } else if (fix_elf) { \
612 /* try to clean "bad" paths */ \
613 size_t len, tmpdir_len; \
614 char *start, *end; \
615 const char *tmpdir; \
616 start = *r; \
617 tmpdir = (getenv("TMPDIR") ? : "."); \
618 tmpdir_len = strlen(tmpdir); \
619 while (1) { \
620 end = strchr(start, ':'); \
621 if (start == end) { \
622 eat_this_path##B: \
623 len = strlen(end); \
624 memmove(start, end+1, len); \
625 start[len-1] = '\0'; \
626 end = start - 1; \
627 } else if (tmpdir && !strncmp(start, tmpdir, tmpdir_len)) { \
628 if (!end) { \
629 if (start == *r) \
630 goto nuke_it##B; \
631 *--start = '\0'; \
632 } else \
633 goto eat_this_path##B; \
634 } \
635 if (!end) \
636 break; \
637 start = end + 1; \
638 } \
639 if (**r == '\0') \
640 goto nuke_it##B; \
641 } \
642 if (*r) \
423 if (*r) *found_rpath = 1; \ 643 *found_rpath = 1; \
644 } \
424 } \ 645 } \
425 ++dyn; \ 646 ++dyn; \
426 } \ 647 } \
427 } } 648 } }
428 SHOW_RPATH(32) 649 SHOW_RPATH(32)
445 } else if (rpath || runpath) 666 } else if (rpath || runpath)
446 xstrcat(ret, (runpath ? runpath : rpath), ret_len); 667 xstrcat(ret, (runpath ? runpath : rpath), ret_len);
447 else if (!be_quiet) 668 else if (!be_quiet)
448 xstrcat(ret, " - ", ret_len); 669 xstrcat(ret, " - ", ret_len);
449} 670}
671
672#define LDSO_CACHE_MAGIC "ld.so-"
673#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
674#define LDSO_CACHE_VER "1.7.0"
675#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
676#define FLAG_ANY -1
677#define FLAG_TYPE_MASK 0x00ff
678#define FLAG_LIBC4 0x0000
679#define FLAG_ELF 0x0001
680#define FLAG_ELF_LIBC5 0x0002
681#define FLAG_ELF_LIBC6 0x0003
682#define FLAG_REQUIRED_MASK 0xff00
683#define FLAG_SPARC_LIB64 0x0100
684#define FLAG_IA64_LIB64 0x0200
685#define FLAG_X8664_LIB64 0x0300
686#define FLAG_S390_LIB64 0x0400
687#define FLAG_POWERPC_LIB64 0x0500
688#define FLAG_MIPS64_LIBN32 0x0600
689#define FLAG_MIPS64_LIBN64 0x0700
690
691static char *lookup_cache_lib(elfobj *, char *);
692
693#if defined(__GLIBC__) || defined(__UCLIBC__)
694
695static char *lookup_cache_lib(elfobj *elf, char *fname)
696{
697 int fd = 0;
698 char *strs;
699 static char buf[__PAX_UTILS_PATH_MAX] = "";
700 const char *cachefile = "/etc/ld.so.cache";
701 struct stat st;
702
703 typedef struct {
704 char magic[LDSO_CACHE_MAGIC_LEN];
705 char version[LDSO_CACHE_VER_LEN];
706 int nlibs;
707 } header_t;
708 header_t *header;
709
710 typedef struct {
711 int flags;
712 int sooffset;
713 int liboffset;
714 } libentry_t;
715 libentry_t *libent;
716
717 if (fname == NULL)
718 return NULL;
719
720 if (ldcache == 0) {
721 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1)
722 return NULL;
723
724 /* cache these values so we only map/unmap the cache file once */
725 ldcache_size = st.st_size;
726 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
727
728 close(fd);
729
730 if (ldcache == MAP_FAILED) {
731 ldcache = 0;
732 return NULL;
733 }
734
735 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN))
736 return NULL;
737 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
738 return NULL;
739 }
740
741 header = (header_t *) ldcache;
742 libent = (libentry_t *) (ldcache + sizeof(header_t));
743 strs = (char *) &libent[header->nlibs];
744
745 for (fd = 0; fd < header->nlibs; fd++) {
746 /* this should be more fine grained, but for now we assume that
747 * diff arches will not be cached together. and we ignore the
748 * the different multilib mips cases. */
749 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
750 continue;
751 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
752 continue;
753
754 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
755 continue;
756 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
757 }
758 return buf;
759}
760#elif defined(__NetBSD__)
761static char *lookup_cache_lib(elfobj *elf, char *fname)
762{
763 static char buf[__PAX_UTILS_PATH_MAX] = "";
764 static struct stat st;
765
766 char **ldpath;
767 for (ldpath = ldpaths; *ldpath != NULL; ldpath++) {
768 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", *ldpath, fname) >= sizeof(buf))
769 continue; /* if the pathname is too long, or something went wrong, ignore */
770
771 if (stat(buf, &st) != 0)
772 continue; /* if the lib doesn't exist in *ldpath, look further */
773
774 /* NetBSD doesn't actually do sanity checks, it just loads the file
775 * and if that doesn't work, continues looking in other directories.
776 * This cannot easily be safely emulated, unfortunately. For now,
777 * just assume that if it exists, it's a valid library. */
778
779 return buf;
780 }
781
782 /* not found in any path */
783 return NULL;
784}
785#else
786#ifdef __ELF__
787#warning Cache support not implemented for your target
788#endif
789static char *lookup_cache_lib(elfobj *elf, char *fname)
790{
791 return NULL;
792}
793#endif
794
450static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 795static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
451{ 796{
452 unsigned long i; 797 unsigned long i;
453 char *needed; 798 char *needed;
454 void *strtbl_void; 799 void *strtbl_void;
800 char *p;
455 801
456 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 802 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL;
457 803
458 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 804 strtbl_void = elf_findsecbyname(elf, ".dynstr");
459 805
464 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 810 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
465 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 811 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
466 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 812 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
467 Elf ## B ## _Off offset; \ 813 Elf ## B ## _Off offset; \
468 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 814 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
469 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 815 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
470 offset = EGET(phdr[i].p_offset); \ 816 offset = EGET(phdr[i].p_offset); \
471 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 817 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
472 dyn = DYN ## B (elf->data + offset); \ 818 dyn = DYN ## B (elf->data + offset); \
473 while (EGET(dyn->d_tag) != DT_NULL) { \ 819 while (EGET(dyn->d_tag) != DT_NULL) { \
474 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 820 if (EGET(dyn->d_tag) == DT_NEEDED) { \
479 } \ 825 } \
480 needed = (char*)(elf->data + offset); \ 826 needed = (char*)(elf->data + offset); \
481 if (op == 0) { \ 827 if (op == 0) { \
482 if (!be_wewy_wewy_quiet) { \ 828 if (!be_wewy_wewy_quiet) { \
483 if (*found_needed) xchrcat(ret, ',', ret_len); \ 829 if (*found_needed) xchrcat(ret, ',', ret_len); \
830 if (use_ldcache) \
831 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
832 needed = p; \
484 xstrcat(ret, needed, ret_len); \ 833 xstrcat(ret, needed, ret_len); \
485 } \ 834 } \
486 *found_needed = 1; \ 835 *found_needed = 1; \
487 } else { \ 836 } else { \
488 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 837 if (!strncmp(find_lib, needed, strlen( !g_match ? needed : find_lib))) { \
489 *found_lib = 1; \ 838 *found_lib = 1; \
490 return (be_wewy_wewy_quiet ? NULL : needed); \ 839 return (be_wewy_wewy_quiet ? NULL : needed); \
491 } \ 840 } \
492 } \ 841 } \
493 } \ 842 } \
524} 873}
525static char *scanelf_file_bind(elfobj *elf, char *found_bind) 874static char *scanelf_file_bind(elfobj *elf, char *found_bind)
526{ 875{
527 unsigned long i; 876 unsigned long i;
528 struct stat s; 877 struct stat s;
878 char dynamic = 0;
529 879
530 if (!show_bind) return NULL; 880 if (!show_bind) return NULL;
531 if (!elf->phdr) return NULL; 881 if (!elf->phdr) return NULL;
532 882
533#define SHOW_BIND(B) \ 883#define SHOW_BIND(B) \
535 Elf ## B ## _Dyn *dyn; \ 885 Elf ## B ## _Dyn *dyn; \
536 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 886 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
537 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 887 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
538 Elf ## B ## _Off offset; \ 888 Elf ## B ## _Off offset; \
539 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 889 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
540 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 890 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
891 dynamic = 1; \
541 offset = EGET(phdr[i].p_offset); \ 892 offset = EGET(phdr[i].p_offset); \
542 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 893 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
543 dyn = DYN ## B (elf->data + offset); \ 894 dyn = DYN ## B (elf->data + offset); \
544 while (EGET(dyn->d_tag) != DT_NULL) { \ 895 while (EGET(dyn->d_tag) != DT_NULL) { \
545 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 896 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
556 SHOW_BIND(32) 907 SHOW_BIND(32)
557 SHOW_BIND(64) 908 SHOW_BIND(64)
558 909
559 if (be_wewy_wewy_quiet) return NULL; 910 if (be_wewy_wewy_quiet) return NULL;
560 911
912 /* don't output anything if quiet mode and the ELF is static or not setuid */
561 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 913 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
562 return NULL; 914 return NULL;
563 } else { 915 } else {
564 *found_bind = 1; 916 *found_bind = 1;
565 return (char *) "LAZY"; 917 return (char *) (dynamic ? "LAZY" : "STATIC");
566 } 918 }
567} 919}
568static char *scanelf_file_soname(elfobj *elf, char *found_soname) 920static char *scanelf_file_soname(elfobj *elf, char *found_soname)
569{ 921{
570 unsigned long i; 922 unsigned long i;
582 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 934 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
583 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 935 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
584 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 936 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
585 Elf ## B ## _Off offset; \ 937 Elf ## B ## _Off offset; \
586 /* only look for soname in shared objects */ \ 938 /* only look for soname in shared objects */ \
587 if (ehdr->e_type != ET_DYN) \ 939 if (EGET(ehdr->e_type) != ET_DYN) \
588 return NULL; \ 940 return NULL; \
589 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 941 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
590 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 942 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
591 offset = EGET(phdr[i].p_offset); \ 943 offset = EGET(phdr[i].p_offset); \
592 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 944 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
593 dyn = DYN ## B (elf->data + offset); \ 945 dyn = DYN ## B (elf->data + offset); \
594 while (EGET(dyn->d_tag) != DT_NULL) { \ 946 while (EGET(dyn->d_tag) != DT_NULL) { \
595 if (EGET(dyn->d_tag) == DT_SONAME) { \ 947 if (EGET(dyn->d_tag) == DT_SONAME) { \
609 SHOW_SONAME(64) 961 SHOW_SONAME(64)
610 } 962 }
611 963
612 return NULL; 964 return NULL;
613} 965}
966
967static int scanelf_match_symname(const char *symname, const char *tomatch) {
968 /* We do things differently when checking with regexp */
969 if (g_match) {
970 return rematch(symname, tomatch, REG_EXTENDED) == 0;
971 } else {
972 const size_t symname_len = strlen(symname);
973 return (strncmp(symname, tomatch, symname_len) == 0 &&
974 /* Accept unversioned symbol names */
975 (tomatch[symname_len] == '\0' || tomatch[symname_len] == '@'));
976 }
977}
978
614static char *scanelf_file_sym(elfobj *elf, char *found_sym) 979static char *scanelf_file_sym(elfobj *elf, char *found_sym)
615{ 980{
616 unsigned long i; 981 unsigned long i;
982 char *ret;
617 void *symtab_void, *strtab_void; 983 void *symtab_void, *strtab_void;
618 984
619 if (!find_sym) return NULL; 985 if (!find_sym) return NULL;
986 ret = find_sym;
620 987
621 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 988 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
622 989
623 if (symtab_void && strtab_void) { 990 if (symtab_void && strtab_void) {
624#define FIND_SYM(B) \ 991#define FIND_SYM(B) \
625 if (elf->elf_class == ELFCLASS ## B) { \ 992 if (elf->elf_class == ELFCLASS ## B) { \
626 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 993 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
627 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 994 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
628 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 995 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
629 unsigned long cnt = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 996 unsigned long cnt = EGET(symtab->sh_entsize); \
630 char *symname; \ 997 char *symname; \
998 if (cnt) \
999 cnt = EGET(symtab->sh_size) / cnt; \
631 for (i = 0; i < cnt; ++i) { \ 1000 for (i = 0; i < cnt; ++i) { \
1001 if ((void*)sym > (void*)elf->data_end) { \
1002 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1003 goto break_out; \
1004 } \
632 if (sym->st_name) { \ 1005 if (sym->st_name) { \
1006 /* make sure the symbol name is in acceptable memory range */ \
633 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1007 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
634 if (*find_sym == '*') { \ 1008 if ((void*)symname > (void*)elf->data_end) { \
1009 warnf("%s: corrupt ELF symbols", elf->filename); \
1010 ++sym; \
1011 continue; \
1012 } \
1013 /* debug display ... show all symbols and some extra info */ \
1014 if (0 && g_match ? rematch(ret, symname, REG_EXTENDED) == 0 : *ret == '*') { \
635 printf("%s(%s) %5lX %15s %s\n", \ 1015 printf("%s(%s) %5lX %15s %s %s\n", \
636 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1016 ((*found_sym == 0) ? "\n\t" : "\t"), \
637 elf->base_filename, \ 1017 elf->base_filename, \
638 (long)sym->st_size, \ 1018 (unsigned long)sym->st_size, \
639 (char *)get_elfstttype(sym->st_info), \ 1019 get_elfstttype(sym->st_info), \
640 symname); \ 1020 sym->st_shndx == SHN_UNDEF ? "U" : "D", symname); \
641 *found_sym = 1; \ 1021 *found_sym = 1; \
642 } else if ((strcmp(find_sym, symname) == 0) || \ 1022 } else { \
643 (strcmp(symname, versioned_symname) == 0)) \ 1023 /* allow the user to specify a comma delimited list of symbols to search for */ \
1024 char *this_sym, *next_sym; \
1025 next_sym = ret; \
1026 while (next_sym) { \
1027 this_sym = next_sym; \
1028 if ((next_sym = strchr(this_sym, ','))) \
1029 next_sym += 1; /* Skip the comma */ \
1030 /* do we want a defined symbol ? */ \
1031 if (*this_sym == '+') { \
1032 if (sym->st_shndx == SHN_UNDEF) \
1033 continue; \
1034 ++this_sym; \
1035 /* do we want an undefined symbol ? */ \
1036 } else if (*this_sym == '-') { \
1037 if (sym->st_shndx != SHN_UNDEF) \
1038 continue; \
1039 ++this_sym; \
1040 } \
1041 if (next_sym) /* Copy it so that we don't have to worry about the final , */ \
1042 this_sym = xstrndup(this_sym, next_sym-this_sym); \
1043 /* ok, lets compare the name now */ \
1044 if (scanelf_match_symname(this_sym, symname)) { \
1045 if (be_semi_verbose) { \
1046 char buf[126]; \
1047 snprintf(buf, sizeof(buf), "%lX %s %s", \
1048 (unsigned long)sym->st_size, get_elfstttype(sym->st_info), this_sym); \
1049 ret = buf; \
1050 } else \
1051 ret = symname; \
644 (*found_sym)++; \ 1052 (*found_sym)++; \
1053 goto break_out; \
1054 } \
1055 if (next_sym) free(this_sym); \
1056 } \
1057 } \
645 } \ 1058 } \
646 ++sym; \ 1059 ++sym; \
647 } } 1060 } }
648 FIND_SYM(32) 1061 FIND_SYM(32)
649 FIND_SYM(64) 1062 FIND_SYM(64)
650 } 1063 }
651 1064
1065break_out:
652 if (be_wewy_wewy_quiet) return NULL; 1066 if (be_wewy_wewy_quiet) return NULL;
653 1067
654 if (*find_sym != '*' && *found_sym) 1068 if (*find_sym != '*' && *found_sym)
655 return find_sym; 1069 return ret;
656 if (be_quiet) 1070 if (be_quiet)
657 return NULL; 1071 return NULL;
658 else 1072 else
659 return (char *)" - "; 1073 return (char *)" - ";
660} 1074}
1075
1076static char *scanelf_file_sections(elfobj *elf, char *found_section)
1077{
1078 if (!find_section)
1079 return NULL;
1080
1081#define FIND_SECTION(B) \
1082 if (elf->elf_class == ELFCLASS ## B) { \
1083 int invert; \
1084 Elf ## B ## _Shdr *section; \
1085 invert = (*find_section == '!' ? 1 : 0); \
1086 section = SHDR ## B (elf_findsecbyname(elf, find_section+invert)); \
1087 if ((section == NULL && invert) || (section != NULL && !invert)) \
1088 *found_section = 1; \
1089 }
1090 FIND_SECTION(32)
1091 FIND_SECTION(64)
1092
1093 if (be_wewy_wewy_quiet)
1094 return NULL;
1095
1096 if (*found_section)
1097 return find_section;
1098
1099 if (be_quiet)
1100 return NULL;
1101 else
1102 return (char *)" - ";
1103}
1104
661/* scan an elf file and show all the fun stuff */ 1105/* scan an elf file and show all the fun stuff */
662#define prints(str) write(fileno(stdout), str, strlen(str)) 1106#define prints(str) write(fileno(stdout), str, strlen(str))
663static void scanelf_file(const char *filename) 1107static int scanelf_elfobj(elfobj *elf)
664{ 1108{
665 unsigned long i; 1109 unsigned long i;
666 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1110 char found_pax, found_phdr, found_relro, found_load, found_textrel,
667 found_rpath, found_needed, found_interp, found_bind, found_soname, 1111 found_rpath, found_needed, found_interp, found_bind, found_soname,
668 found_sym, found_lib, found_file, found_textrels; 1112 found_sym, found_lib, found_file, found_textrels, found_section;
669 elfobj *elf;
670 struct stat st;
671 static char *out_buffer = NULL; 1113 static char *out_buffer = NULL;
672 static size_t out_len; 1114 static size_t out_len;
673 1115
674 /* make sure 'filename' exists */
675 if (lstat(filename, &st) == -1) {
676 if (be_verbose > 2) printf("%s: does not exist\n", filename);
677 return;
678 }
679 /* always handle regular files and handle symlinked files if no -y */
680 if (S_ISLNK(st.st_mode)) {
681 if (!scan_symlink) return;
682 stat(filename, &st);
683 }
684 if (!S_ISREG(st.st_mode)) {
685 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
686 return;
687 }
688
689 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1116 found_pax = found_phdr = found_relro = found_load = found_textrel = \
690 found_rpath = found_needed = found_interp = found_bind = found_soname = \ 1117 found_rpath = found_needed = found_interp = found_bind = found_soname = \
691 found_sym = found_lib = found_file = found_textrels = 0; 1118 found_sym = found_lib = found_file = found_textrels = found_section = 0;
692 1119
693 /* verify this is real ELF */
694 if ((elf = readelf(filename)) == NULL) {
695 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
696 return;
697 }
698
699 if (be_verbose > 1) 1120 if (be_verbose > 2)
700 printf("%s: scanning file {%s,%s}\n", filename, 1121 printf("%s: scanning file {%s,%s}\n", elf->filename,
701 get_elfeitype(EI_CLASS, elf->elf_class), 1122 get_elfeitype(EI_CLASS, elf->elf_class),
702 get_elfeitype(EI_DATA, elf->data[EI_DATA])); 1123 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
703 else if (be_verbose) 1124 else if (be_verbose > 1)
704 printf("%s: scanning file\n", filename); 1125 printf("%s: scanning file\n", elf->filename);
705 1126
706 /* init output buffer */ 1127 /* init output buffer */
707 if (!out_buffer) { 1128 if (!out_buffer) {
708 out_len = sizeof(char) * 80; 1129 out_len = sizeof(char) * 80;
709 out_buffer = (char*)xmalloc(out_len); 1130 out_buffer = xmalloc(out_len);
710 } 1131 }
711 *out_buffer = '\0'; 1132 *out_buffer = '\0';
712 1133
713 /* show the header */ 1134 /* show the header */
714 if (!be_quiet && show_banner) { 1135 if (!be_quiet && show_banner) {
715 for (i = 0; out_format[i]; ++i) { 1136 for (i = 0; out_format[i]; ++i) {
716 if (!IS_MODIFIER(out_format[i])) continue; 1137 if (!IS_MODIFIER(out_format[i])) continue;
717 1138
718 switch (out_format[++i]) { 1139 switch (out_format[++i]) {
1140 case '+': break;
719 case '%': break; 1141 case '%': break;
720 case '#': break; 1142 case '#': break;
721 case 'F': 1143 case 'F':
722 case 'p': 1144 case 'p':
723 case 'f': prints("FILE "); found_file = 1; break; 1145 case 'f': prints("FILE "); found_file = 1; break;
724 case 'o': prints(" TYPE "); break; 1146 case 'o': prints(" TYPE "); break;
725 case 'x': prints(" PAX "); break; 1147 case 'x': prints(" PAX "); break;
726 case 'e': prints("STK/REL/PTL "); break; 1148 case 'e': prints("STK/REL/PTL "); break;
727 case 't': prints("TEXTREL "); break; 1149 case 't': prints("TEXTREL "); break;
728 case 'r': prints("RPATH "); break; 1150 case 'r': prints("RPATH "); break;
1151 case 'M': prints("CLASS "); break;
729 case 'n': prints("NEEDED "); break; 1152 case 'n': prints("NEEDED "); break;
730 case 'i': prints("INTERP "); break; 1153 case 'i': prints("INTERP "); break;
731 case 'b': prints("BIND "); break; 1154 case 'b': prints("BIND "); break;
1155 case 'Z': prints("SIZE "); break;
732 case 'S': prints("SONAME "); break; 1156 case 'S': prints("SONAME "); break;
733 case 's': prints("SYM "); break; 1157 case 's': prints("SYM "); break;
734 case 'N': prints("LIB "); break; 1158 case 'N': prints("LIB "); break;
735 case 'T': prints("TEXTRELS "); break; 1159 case 'T': prints("TEXTRELS "); break;
1160 case 'k': prints("SECTION "); break;
1161 case 'a': prints("ARCH "); break;
1162 case 'I': prints("OSABI "); break;
1163 case 'Y': prints("EABI "); break;
1164 case 'O': prints("PERM "); break;
1165 case 'D': prints("ENDIAN "); break;
736 default: warnf("'%c' has no title ?", out_format[i]); 1166 default: warnf("'%c' has no title ?", out_format[i]);
737 } 1167 }
738 } 1168 }
739 if (!found_file) prints("FILE "); 1169 if (!found_file) prints("FILE ");
740 prints("\n"); 1170 prints("\n");
744 1174
745 /* dump all the good stuff */ 1175 /* dump all the good stuff */
746 for (i = 0; out_format[i]; ++i) { 1176 for (i = 0; out_format[i]; ++i) {
747 const char *out; 1177 const char *out;
748 const char *tmp; 1178 const char *tmp;
749 1179 static char ubuf[sizeof(unsigned long)*2];
750 /* make sure we trim leading spaces in quiet mode */
751 if (be_quiet && *out_buffer == ' ' && !out_buffer[1])
752 *out_buffer = '\0';
753
754 if (!IS_MODIFIER(out_format[i])) { 1180 if (!IS_MODIFIER(out_format[i])) {
755 xchrcat(&out_buffer, out_format[i], &out_len); 1181 xchrcat(&out_buffer, out_format[i], &out_len);
756 continue; 1182 continue;
757 } 1183 }
758 1184
759 out = NULL; 1185 out = NULL;
760 be_wewy_wewy_quiet = (out_format[i] == '#'); 1186 be_wewy_wewy_quiet = (out_format[i] == '#');
1187 be_semi_verbose = (out_format[i] == '+');
761 switch (out_format[++i]) { 1188 switch (out_format[++i]) {
1189 case '+':
762 case '%': 1190 case '%':
763 case '#': 1191 case '#':
764 xchrcat(&out_buffer, out_format[i], &out_len); break; 1192 xchrcat(&out_buffer, out_format[i], &out_len); break;
765 case 'F': 1193 case 'F':
766 found_file = 1; 1194 found_file = 1;
767 if (be_wewy_wewy_quiet) break; 1195 if (be_wewy_wewy_quiet) break;
768 xstrcat(&out_buffer, filename, &out_len); 1196 xstrcat(&out_buffer, elf->filename, &out_len);
769 break; 1197 break;
770 case 'p': 1198 case 'p':
771 found_file = 1; 1199 found_file = 1;
772 if (be_wewy_wewy_quiet) break; 1200 if (be_wewy_wewy_quiet) break;
773 tmp = filename; 1201 tmp = elf->filename;
774 if (search_path) { 1202 if (search_path) {
775 ssize_t len_search = strlen(search_path); 1203 ssize_t len_search = strlen(search_path);
776 ssize_t len_file = strlen(filename); 1204 ssize_t len_file = strlen(elf->filename);
777 if (!strncmp(filename, search_path, len_search) && \ 1205 if (!strncmp(elf->filename, search_path, len_search) && \
778 len_file > len_search) 1206 len_file > len_search)
779 tmp += len_search; 1207 tmp += len_search;
780 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++; 1208 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++;
781 } 1209 }
782 xstrcat(&out_buffer, tmp, &out_len); 1210 xstrcat(&out_buffer, tmp, &out_len);
783 break; 1211 break;
784 case 'f': 1212 case 'f':
785 found_file = 1; 1213 found_file = 1;
786 if (be_wewy_wewy_quiet) break; 1214 if (be_wewy_wewy_quiet) break;
787 tmp = strrchr(filename, '/'); 1215 tmp = strrchr(elf->filename, '/');
788 tmp = (tmp == NULL ? filename : tmp+1); 1216 tmp = (tmp == NULL ? elf->filename : tmp+1);
789 xstrcat(&out_buffer, tmp, &out_len); 1217 xstrcat(&out_buffer, tmp, &out_len);
790 break; 1218 break;
791 case 'o': out = get_elfetype(elf); break; 1219 case 'o': out = get_elfetype(elf); break;
792 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1220 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
793 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1221 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
794 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1222 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
795 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1223 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
796 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1224 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1225 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1226 case 'D': out = get_endian(elf); break;
1227 case 'O': out = strfileperms(elf->filename); break;
797 case 'n': 1228 case 'n':
798 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1229 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
799 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1230 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
800 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1231 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
801 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1232 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
802 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1233 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1234 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1235 case 'a': out = get_elfemtype(elf); break;
1236 case 'I': out = get_elfosabi(elf); break;
1237 case 'Y': out = get_elf_eabi(elf); break;
1238 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
803 default: warnf("'%c' has no scan code?", out_format[i]); 1239 default: warnf("'%c' has no scan code?", out_format[i]);
804 } 1240 }
1241 if (out) {
1242 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
1243 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
1244 xstrncat(&out_buffer, out, &out_len, (tmp-out));
1245 else
805 if (out) xstrcat(&out_buffer, out, &out_len); 1246 xstrcat(&out_buffer, out, &out_len);
1247 }
806 } 1248 }
807 1249
808#define FOUND_SOMETHING() \ 1250#define FOUND_SOMETHING() \
809 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1251 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
810 found_rpath || found_needed || found_interp || found_bind || \ 1252 found_rpath || found_needed || found_interp || found_bind || \
811 found_soname || found_sym || found_lib || found_textrels) 1253 found_soname || found_sym || found_lib || found_textrels || found_section )
812 1254
813 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) { 1255 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
814 xchrcat(&out_buffer, ' ', &out_len); 1256 xchrcat(&out_buffer, ' ', &out_len);
815 xstrcat(&out_buffer, filename, &out_len); 1257 xstrcat(&out_buffer, elf->filename, &out_len);
816 } 1258 }
817 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) { 1259 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) {
818 puts(out_buffer); 1260 puts(out_buffer);
819 fflush(stdout); 1261 fflush(stdout);
820 } 1262 }
821 1263
1264 return 0;
1265}
1266
1267/* scan a single elf */
1268static int scanelf_elf(const char *filename, int fd, size_t len)
1269{
1270 int ret = 1;
1271 elfobj *elf;
1272
1273 /* verify this is real ELF */
1274 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1275 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1276 return ret;
1277 }
1278 switch (match_bits) {
1279 case 32:
1280 if (elf->elf_class != ELFCLASS32)
1281 goto label_done;
1282 break;
1283 case 64:
1284 if (elf->elf_class != ELFCLASS64)
1285 goto label_done;
1286 break;
1287 default: break;
1288 }
1289 if (strlen(match_etypes)) {
1290 char sbuf[126];
1291 strncpy(sbuf, match_etypes, sizeof(sbuf));
1292 if (strchr(match_etypes, ',') != NULL) {
1293 char *p;
1294 while ((p = strrchr(sbuf, ',')) != NULL) {
1295 *p = 0;
1296 if (etype_lookup(p+1) == get_etype(elf))
1297 goto label_ret;
1298 }
1299 }
1300 if (etype_lookup(sbuf) != get_etype(elf))
1301 goto label_done;
1302 }
1303
1304label_ret:
1305 ret = scanelf_elfobj(elf);
1306
1307label_done:
822 unreadelf(elf); 1308 unreadelf(elf);
1309 return ret;
1310}
1311
1312/* scan an archive of elfs */
1313static int scanelf_archive(const char *filename, int fd, size_t len)
1314{
1315 archive_handle *ar;
1316 archive_member *m;
1317 char *ar_buffer;
1318 elfobj *elf;
1319
1320 ar = ar_open_fd(filename, fd);
1321 if (ar == NULL)
1322 return 1;
1323
1324 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1325 while ((m=ar_next(ar)) != NULL) {
1326 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size);
1327 if (elf) {
1328 scanelf_elfobj(elf);
1329 unreadelf(elf);
1330 }
1331 }
1332 munmap(ar_buffer, len);
1333
1334 return 0;
1335}
1336/* scan a file which may be an elf or an archive or some other magical beast */
1337static int scanelf_file(const char *filename, const struct stat *st_cache)
1338{
1339 const struct stat *st = st_cache;
1340 struct stat symlink_st;
1341 int fd;
1342
1343 /* always handle regular files and handle symlinked files if no -y */
1344 if (S_ISLNK(st->st_mode)) {
1345 if (!scan_symlink) return 1;
1346 stat(filename, &symlink_st);
1347 st = &symlink_st;
1348 }
1349
1350 if (!S_ISREG(st->st_mode)) {
1351 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1352 return 1;
1353 }
1354
1355 if (match_perms) {
1356 if ((st->st_mode | match_perms) != st->st_mode)
1357 return 1;
1358 }
1359 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1)
1360 return 1;
1361
1362 if (scanelf_elf(filename, fd, st->st_size) == 1 && scan_archives)
1363 /* if it isn't an ELF, maybe it's an .a archive */
1364 scanelf_archive(filename, fd, st->st_size);
1365
1366 close(fd);
1367 return 0;
823} 1368}
824 1369
825/* scan a directory for ET_EXEC files and print when we find one */ 1370/* scan a directory for ET_EXEC files and print when we find one */
826static void scanelf_dir(const char *path) 1371static int scanelf_dir(const char *path)
827{ 1372{
828 register DIR *dir; 1373 register DIR *dir;
829 register struct dirent *dentry; 1374 register struct dirent *dentry;
830 struct stat st_top, st; 1375 struct stat st_top, st;
831 char buf[_POSIX_PATH_MAX]; 1376 char buf[__PAX_UTILS_PATH_MAX];
832 size_t pathlen = 0, len = 0; 1377 size_t pathlen = 0, len = 0;
1378 int ret = 0;
833 1379
834 /* make sure path exists */ 1380 /* make sure path exists */
835 if (lstat(path, &st_top) == -1) { 1381 if (lstat(path, &st_top) == -1) {
836 if (be_verbose > 2) printf("%s: does not exist\n", path); 1382 if (be_verbose > 2) printf("%s: does not exist\n", path);
837 return; 1383 return 1;
838 } 1384 }
839 1385
840 /* ok, if it isn't a directory, assume we can open it */ 1386 /* ok, if it isn't a directory, assume we can open it */
841 if (!S_ISDIR(st_top.st_mode)) { 1387 if (!S_ISDIR(st_top.st_mode)) {
842 scanelf_file(path); 1388 return scanelf_file(path, &st_top);
843 return;
844 } 1389 }
845 1390
846 /* now scan the dir looking for fun stuff */ 1391 /* now scan the dir looking for fun stuff */
847 if ((dir = opendir(path)) == NULL) { 1392 if ((dir = opendir(path)) == NULL) {
848 warnf("could not opendir %s: %s", path, strerror(errno)); 1393 warnf("could not opendir %s: %s", path, strerror(errno));
849 return; 1394 return 1;
850 } 1395 }
851 if (be_verbose) printf("%s: scanning dir\n", path); 1396 if (be_verbose > 1) printf("%s: scanning dir\n", path);
852 1397
853 pathlen = strlen(path); 1398 pathlen = strlen(path);
854 while ((dentry = readdir(dir))) { 1399 while ((dentry = readdir(dir))) {
855 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1400 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
856 continue; 1401 continue;
858 if (len >= sizeof(buf)) { 1403 if (len >= sizeof(buf)) {
859 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1404 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path,
860 (unsigned long)len, (unsigned long)sizeof(buf)); 1405 (unsigned long)len, (unsigned long)sizeof(buf));
861 continue; 1406 continue;
862 } 1407 }
863 sprintf(buf, "%s/%s", path, dentry->d_name); 1408 snprintf(buf, sizeof(buf), "%s%s%s", path, (path[pathlen-1] == '/') ? "" : "/", dentry->d_name);
864 if (lstat(buf, &st) != -1) { 1409 if (lstat(buf, &st) != -1) {
865 if (S_ISREG(st.st_mode)) 1410 if (S_ISREG(st.st_mode))
866 scanelf_file(buf); 1411 ret = scanelf_file(buf, &st);
867 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1412 else if (dir_recurse && S_ISDIR(st.st_mode)) {
868 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1413 if (dir_crossmount || (st_top.st_dev == st.st_dev))
869 scanelf_dir(buf); 1414 ret = scanelf_dir(buf);
870 } 1415 }
871 } 1416 }
872 } 1417 }
873 closedir(dir); 1418 closedir(dir);
1419 return ret;
874} 1420}
875 1421
876static int scanelf_from_file(char *filename) 1422static int scanelf_from_file(const char *filename)
877{ 1423{
878 FILE *fp = NULL; 1424 FILE *fp = NULL;
879 char *p; 1425 char *p;
880 char path[_POSIX_PATH_MAX]; 1426 char path[__PAX_UTILS_PATH_MAX];
1427 int ret = 0;
881 1428
882 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1429 if (strcmp(filename, "-") == 0)
883 fp = stdin; 1430 fp = stdin;
884 else if ((fp = fopen(filename, "r")) == NULL) 1431 else if ((fp = fopen(filename, "r")) == NULL)
885 return 1; 1432 return 1;
886 1433
887 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1434 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
888 if ((p = strchr(path, '\n')) != NULL) 1435 if ((p = strchr(path, '\n')) != NULL)
889 *p = 0; 1436 *p = 0;
890 search_path = path; 1437 search_path = path;
891 scanelf_dir(path); 1438 ret = scanelf_dir(path);
892 } 1439 }
893 if (fp != stdin) 1440 if (fp != stdin)
894 fclose(fp); 1441 fclose(fp);
895 return 0; 1442 return ret;
896} 1443}
897 1444
898static void load_ld_so_conf() 1445#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1446
1447static int load_ld_cache_config(int i, const char *fname)
899{ 1448{
900 FILE *fp = NULL; 1449 FILE *fp = NULL;
901 char *p; 1450 char *p;
902 char path[_POSIX_PATH_MAX]; 1451 char path[__PAX_UTILS_PATH_MAX];
903 int i = 0;
904 1452
905 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1453 if (i + 1 == ARRAY_SIZE(ldpaths))
906 return; 1454 return i;
907 1455
1456 if ((fp = fopen(fname, "r")) == NULL)
1457 return i;
1458
908 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1459 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
909 if (*path != '/')
910 continue;
911
912 if ((p = strrchr(path, '\r')) != NULL) 1460 if ((p = strrchr(path, '\r')) != NULL)
913 *p = 0; 1461 *p = 0;
914 if ((p = strchr(path, '\n')) != NULL) 1462 if ((p = strchr(path, '\n')) != NULL)
915 *p = 0; 1463 *p = 0;
1464#ifdef __linux__
1465 /* recursive includes of the same file will make this segfault. */
1466 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1467 glob64_t gl;
1468 size_t x;
1469 char gpath[__PAX_UTILS_PATH_MAX];
1470
1471 memset(gpath, 0, sizeof(gpath));
1472
1473 if (path[8] != '/')
1474 snprintf(gpath, sizeof(gpath), "/etc/%s", &path[8]);
1475 else
1476 strncpy(gpath, &path[8], sizeof(gpath));
1477
1478 if ((glob64(gpath, 0, NULL, &gl)) == 0) {
1479 for (x = 0; x < gl.gl_pathc; ++x) {
1480 /* try to avoid direct loops */
1481 if (strcmp(gl.gl_pathv[x], fname) == 0)
1482 continue;
1483 i = load_ld_cache_config(i, gl.gl_pathv[x]);
1484 if (i + 1 >= ARRAY_SIZE(ldpaths)) {
1485 globfree64(&gl);
1486 return i;
1487 }
1488 }
1489 globfree64 (&gl);
1490 continue;
1491 }
1492 }
1493#endif
1494 if (*path != '/')
1495 continue;
916 1496
917 ldpaths[i++] = xstrdup(path); 1497 ldpaths[i++] = xstrdup(path);
918 1498
919 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1499 if (i + 1 == ARRAY_SIZE(ldpaths))
920 break; 1500 break;
921 } 1501 }
922 ldpaths[i] = NULL; 1502 ldpaths[i] = NULL;
923 1503
924 fclose(fp); 1504 fclose(fp);
1505 return i;
925} 1506}
1507
1508#elif defined(__FreeBSD__) || (__DragonFly__)
1509
1510static int load_ld_cache_config(int i, const char *fname)
1511{
1512 FILE *fp = NULL;
1513 char *b = NULL, *p;
1514 struct elfhints_hdr hdr;
1515
1516 if (i + 1 == ARRAY_SIZE(ldpaths))
1517 return i;
1518
1519 if ((fp = fopen(fname, "r")) == NULL)
1520 return i;
1521
1522 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1523 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1524 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1525 {
1526 fclose(fp);
1527 return i;
1528 }
1529
1530 b = xmalloc(hdr.dirlistlen + 1);
1531 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1532 fclose(fp);
1533 free(b);
1534 return i;
1535 }
1536
1537 while ((p = strsep(&b, ":"))) {
1538 if (*p == '\0') continue;
1539 ldpaths[i++] = xstrdup(p);
1540
1541 if (i + 1 == ARRAY_SIZE(ldpaths))
1542 break;
1543 }
1544 ldpaths[i] = NULL;
1545
1546 free(b);
1547 fclose(fp);
1548 return i;
1549}
1550
1551#else
1552#ifdef __ELF__
1553#warning Cache config support not implemented for your target
1554#endif
1555static int load_ld_cache_config(int i, const char *fname)
1556{
1557 memset(ldpaths, 0x00, sizeof(ldpaths));
1558 return 0;
1559}
1560#endif
926 1561
927/* scan /etc/ld.so.conf for paths */ 1562/* scan /etc/ld.so.conf for paths */
928static void scanelf_ldpath() 1563static void scanelf_ldpath(void)
929{ 1564{
930 char scan_l, scan_ul, scan_ull; 1565 char scan_l, scan_ul, scan_ull;
931 int i = 0; 1566 int i = 0;
932 1567
933 if (!ldpaths[0]) 1568 if (!ldpaths[0])
947 if (!scan_ul) scanelf_dir("/usr/lib"); 1582 if (!scan_ul) scanelf_dir("/usr/lib");
948 if (!scan_ull) scanelf_dir("/usr/local/lib"); 1583 if (!scan_ull) scanelf_dir("/usr/local/lib");
949} 1584}
950 1585
951/* scan env PATH for paths */ 1586/* scan env PATH for paths */
952static void scanelf_envpath() 1587static void scanelf_envpath(void)
953{ 1588{
954 char *path, *p; 1589 char *path, *p;
955 1590
956 path = getenv("PATH"); 1591 path = getenv("PATH");
957 if (!path) 1592 if (!path)
964 } 1599 }
965 1600
966 free(path); 1601 free(path);
967} 1602}
968 1603
969 1604/* usage / invocation handling functions */ /* Free Flags: c d j u w C G H J K P Q U W */
970
971/* usage / invocation handling functions */
972#define PARSE_FLAGS "plRmyxetrnibSs:gN:TaqvF:f:o:BhV" 1605#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZBhV"
973#define a_argument required_argument 1606#define a_argument required_argument
974static struct option const long_opts[] = { 1607static struct option const long_opts[] = {
975 {"path", no_argument, NULL, 'p'}, 1608 {"path", no_argument, NULL, 'p'},
976 {"ldpath", no_argument, NULL, 'l'}, 1609 {"ldpath", no_argument, NULL, 'l'},
977 {"recursive", no_argument, NULL, 'R'}, 1610 {"recursive", no_argument, NULL, 'R'},
978 {"mount", no_argument, NULL, 'm'}, 1611 {"mount", no_argument, NULL, 'm'},
979 {"symlink", no_argument, NULL, 'y'}, 1612 {"symlink", no_argument, NULL, 'y'},
1613 {"archives", no_argument, NULL, 'A'},
1614 {"ldcache", no_argument, NULL, 'L'},
1615 {"fix", no_argument, NULL, 'X'},
1616 {"setpax", a_argument, NULL, 'z'},
980 {"pax", no_argument, NULL, 'x'}, 1617 {"pax", no_argument, NULL, 'x'},
981 {"header", no_argument, NULL, 'e'}, 1618 {"header", no_argument, NULL, 'e'},
982 {"textrel", no_argument, NULL, 't'}, 1619 {"textrel", no_argument, NULL, 't'},
983 {"rpath", no_argument, NULL, 'r'}, 1620 {"rpath", no_argument, NULL, 'r'},
984 {"needed", no_argument, NULL, 'n'}, 1621 {"needed", no_argument, NULL, 'n'},
985 {"interp", no_argument, NULL, 'i'}, 1622 {"interp", no_argument, NULL, 'i'},
986 {"bind", no_argument, NULL, 'b'}, 1623 {"bind", no_argument, NULL, 'b'},
987 {"soname", no_argument, NULL, 'S'}, 1624 {"soname", no_argument, NULL, 'S'},
988 {"symbol", a_argument, NULL, 's'}, 1625 {"symbol", a_argument, NULL, 's'},
1626 {"section", a_argument, NULL, 'k'},
989 {"lib", a_argument, NULL, 'N'}, 1627 {"lib", a_argument, NULL, 'N'},
990 {"gmatch", no_argument, NULL, 'g'}, 1628 {"gmatch", no_argument, NULL, 'g'},
991 {"textrels", no_argument, NULL, 'T'}, 1629 {"textrels", no_argument, NULL, 'T'},
1630 {"etype", a_argument, NULL, 'E'},
1631 {"bits", a_argument, NULL, 'M'},
1632 {"endian", no_argument, NULL, 'D'},
1633 {"osabi", no_argument, NULL, 'I'},
1634 {"eabi", no_argument, NULL, 'Y'},
1635 {"perms", a_argument, NULL, 'O'},
1636 {"size", no_argument, NULL, 'Z'},
992 {"all", no_argument, NULL, 'a'}, 1637 {"all", no_argument, NULL, 'a'},
993 {"quiet", no_argument, NULL, 'q'}, 1638 {"quiet", no_argument, NULL, 'q'},
994 {"verbose", no_argument, NULL, 'v'}, 1639 {"verbose", no_argument, NULL, 'v'},
995 {"format", a_argument, NULL, 'F'}, 1640 {"format", a_argument, NULL, 'F'},
996 {"from", a_argument, NULL, 'f'}, 1641 {"from", a_argument, NULL, 'f'},
1004static const char *opts_help[] = { 1649static const char *opts_help[] = {
1005 "Scan all directories in PATH environment", 1650 "Scan all directories in PATH environment",
1006 "Scan all directories in /etc/ld.so.conf", 1651 "Scan all directories in /etc/ld.so.conf",
1007 "Scan directories recursively", 1652 "Scan directories recursively",
1008 "Don't recursively cross mount points", 1653 "Don't recursively cross mount points",
1009 "Don't scan symlinks\n", 1654 "Don't scan symlinks",
1655 "Scan archives (.a files)",
1656 "Utilize ld.so.cache information (use with -r/-n)",
1657 "Try and 'fix' bad things (use with -r/-e)",
1658 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1010 "Print PaX markings", 1659 "Print PaX markings",
1011 "Print GNU_STACK/PT_LOAD markings", 1660 "Print GNU_STACK/PT_LOAD markings",
1012 "Print TEXTREL information", 1661 "Print TEXTREL information",
1013 "Print RPATH information", 1662 "Print RPATH information",
1014 "Print NEEDED information", 1663 "Print NEEDED information",
1015 "Print INTERP information", 1664 "Print INTERP information",
1016 "Print BIND information", 1665 "Print BIND information",
1017 "Print SONAME information", 1666 "Print SONAME information",
1018 "Find a specified symbol", 1667 "Find a specified symbol",
1668 "Find a specified section",
1019 "Find a specified library", 1669 "Find a specified library",
1020 "Use strncmp to match libraries. (use with -N)", 1670 "Use strncmp to match libraries. (use with -N)",
1021 "Locate cause of TEXTREL", 1671 "Locate cause of TEXTREL",
1672 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1673 "Print only ELF files matching numeric bits",
1674 "Print Endianness",
1675 "Print OSABI",
1676 "Print EABI (EM_ARM Only)",
1677 "Print only ELF files matching octal permissions",
1678 "Print ELF file size",
1022 "Print all scanned info (-x -e -t -r -b)\n", 1679 "Print all scanned info (-x -e -t -r -b)\n",
1023 "Only output 'bad' things", 1680 "Only output 'bad' things",
1024 "Be verbose (can be specified more than once)", 1681 "Be verbose (can be specified more than once)",
1025 "Use specified format for output", 1682 "Use specified format for output",
1026 "Read input stream from a filename", 1683 "Read input stream from a filename",
1034/* display usage and exit */ 1691/* display usage and exit */
1035static void usage(int status) 1692static void usage(int status)
1036{ 1693{
1037 unsigned long i; 1694 unsigned long i;
1038 printf("* Scan ELF binaries for stuff\n\n" 1695 printf("* Scan ELF binaries for stuff\n\n"
1039 "Usage: %s [options] <dir1/file1> [dir2 dirN fileN ...]\n\n", argv0); 1696 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1040 printf("Options: -[%s]\n", PARSE_FLAGS); 1697 printf("Options: -[%s]\n", PARSE_FLAGS);
1041 for (i = 0; long_opts[i].name; ++i) 1698 for (i = 0; long_opts[i].name; ++i)
1042 if (long_opts[i].has_arg == no_argument) 1699 if (long_opts[i].has_arg == no_argument)
1043 printf(" -%c, --%-13s* %s\n", long_opts[i].val, 1700 printf(" -%c, --%-14s* %s\n", long_opts[i].val,
1044 long_opts[i].name, opts_help[i]); 1701 long_opts[i].name, opts_help[i]);
1045 else 1702 else
1046 printf(" -%c, --%-6s <arg> * %s\n", long_opts[i].val, 1703 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val,
1047 long_opts[i].name, opts_help[i]); 1704 long_opts[i].name, opts_help[i]);
1048 1705
1049 if (status != EXIT_SUCCESS) 1706 puts("\nFor more information, see the scanelf(1) manpage");
1050 exit(status);
1051
1052 puts("\nThe format modifiers for the -F option are:");
1053 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1054 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1055 puts(" i INTERP \tb BIND \ts symbol");
1056 puts(" N library \to Type \tT TEXTRELs");
1057 puts(" S SONAME");
1058 puts(" p filename (with search path removed)");
1059 puts(" f filename (short name/basename)");
1060 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1061
1062 exit(status); 1707 exit(status);
1063} 1708}
1064 1709
1065/* parse command line arguments and preform needed actions */ 1710/* parse command line arguments and preform needed actions */
1711#define do_pax_state(option, flag) \
1712 if (islower(option)) { \
1713 flags &= ~PF_##flag; \
1714 flags |= PF_NO##flag; \
1715 } else { \
1716 flags &= ~PF_NO##flag; \
1717 flags |= PF_##flag; \
1718 }
1066static void parseargs(int argc, char *argv[]) 1719static int parseargs(int argc, char *argv[])
1067{ 1720{
1068 int i; 1721 int i;
1069 char *from_file = NULL; 1722 const char *from_file = NULL;
1723 int ret = 0;
1070 1724
1071 opterr = 0; 1725 opterr = 0;
1072 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 1726 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1073 switch (i) { 1727 switch (i) {
1074 1728
1078 VERSION, __FILE__, __DATE__, rcsid, argv0); 1732 VERSION, __FILE__, __DATE__, rcsid, argv0);
1079 exit(EXIT_SUCCESS); 1733 exit(EXIT_SUCCESS);
1080 break; 1734 break;
1081 case 'h': usage(EXIT_SUCCESS); break; 1735 case 'h': usage(EXIT_SUCCESS); break;
1082 case 'f': 1736 case 'f':
1083 if (from_file) err("Don't specify -f twice"); 1737 if (from_file) warn("You prob don't want to specify -f twice");
1084 from_file = xstrdup(optarg); 1738 from_file = optarg;
1739 break;
1740 case 'E':
1741 strncpy(match_etypes, optarg, sizeof(match_etypes));
1742 break;
1743 case 'M':
1744 match_bits = atoi(optarg);
1745 if (match_bits == 0) {
1746 if (strcmp(optarg, "ELFCLASS32") == 0)
1747 match_bits = 32;
1748 if (strcmp(optarg, "ELFCLASS64") == 0)
1749 match_bits = 64;
1750 }
1751 break;
1752 case 'O':
1753 if (sscanf(optarg, "%o", &match_perms) == -1)
1754 match_bits = 0;
1085 break; 1755 break;
1086 case 'o': { 1756 case 'o': {
1087 FILE *fp = NULL;
1088 if ((fp = freopen(optarg, "w", stdout)) == NULL) 1757 if (freopen(optarg, "w", stdout) == NULL)
1089 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 1758 err("Could not open output stream '%s': %s", optarg, strerror(errno));
1090 SET_STDOUT(fp);
1091 break; 1759 break;
1092 } 1760 }
1093 1761 case 'k':
1762 if (find_section) warn("You prob don't want to specify -k twice");
1763 find_section = optarg;
1764 break;
1094 case 's': { 1765 case 's': {
1095 size_t len;
1096 if (find_sym) err("Don't specify -s twice"); 1766 if (find_sym) warn("You prob don't want to specify -s twice");
1097 find_sym = xstrdup(optarg); 1767 find_sym = optarg;
1098 len = strlen(find_sym) + 1;
1099 versioned_symname = (char*)xmalloc(sizeof(char) * (len+1));
1100 sprintf(versioned_symname, "%s@", find_sym);
1101 break; 1768 break;
1102 } 1769 }
1103 case 'N': { 1770 case 'N': {
1104 if (find_lib) err("Don't specify -N twice"); 1771 if (find_lib) warn("You prob don't want to specify -N twice");
1105 find_lib = xstrdup(optarg); 1772 find_lib = optarg;
1106 break; 1773 break;
1107 } 1774 }
1108 1775
1109 case 'F': { 1776 case 'F': {
1110 if (out_format) err("Don't specify -F twice"); 1777 if (out_format) warn("You prob don't want to specify -F twice");
1111 out_format = xstrdup(optarg); 1778 out_format = optarg;
1779 break;
1780 }
1781 case 'z': {
1782 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1783 size_t x;
1784
1785 for (x = 0; x < strlen(optarg); x++) {
1786 switch (optarg[x]) {
1787 case 'p':
1788 case 'P':
1789 do_pax_state(optarg[x], PAGEEXEC);
1112 break; 1790 break;
1791 case 's':
1792 case 'S':
1793 do_pax_state(optarg[x], SEGMEXEC);
1794 break;
1795 case 'm':
1796 case 'M':
1797 do_pax_state(optarg[x], MPROTECT);
1798 break;
1799 case 'e':
1800 case 'E':
1801 do_pax_state(optarg[x], EMUTRAMP);
1802 break;
1803 case 'r':
1804 case 'R':
1805 do_pax_state(optarg[x], RANDMMAP);
1806 break;
1807 case 'x':
1808 case 'X':
1809 do_pax_state(optarg[x], RANDEXEC);
1810 break;
1811 default:
1812 break;
1813 }
1113 } 1814 }
1114 1815 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
1816 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
1817 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
1818 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
1819 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
1820 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1821 setpax = flags;
1822 break;
1823 }
1824 case 'Z': show_size = 1; break;
1115 case 'g': gmatch = 1; 1825 case 'g': g_match = 1; break;
1826 case 'L': use_ldcache = 1; break;
1116 case 'y': scan_symlink = 0; break; 1827 case 'y': scan_symlink = 0; break;
1828 case 'A': scan_archives = 1; break;
1117 case 'B': show_banner = 0; break; 1829 case 'B': show_banner = 0; break;
1118 case 'l': scan_ldpath = 1; break; 1830 case 'l': scan_ldpath = 1; break;
1119 case 'p': scan_envpath = 1; break; 1831 case 'p': scan_envpath = 1; break;
1120 case 'R': dir_recurse = 1; break; 1832 case 'R': dir_recurse = 1; break;
1121 case 'm': dir_crossmount = 0; break; 1833 case 'm': dir_crossmount = 0; break;
1834 case 'X': ++fix_elf; break;
1122 case 'x': show_pax = 1; break; 1835 case 'x': show_pax = 1; break;
1123 case 'e': show_phdr = 1; break; 1836 case 'e': show_phdr = 1; break;
1124 case 't': show_textrel = 1; break; 1837 case 't': show_textrel = 1; break;
1125 case 'r': show_rpath = 1; break; 1838 case 'r': show_rpath = 1; break;
1126 case 'n': show_needed = 1; break; 1839 case 'n': show_needed = 1; break;
1128 case 'b': show_bind = 1; break; 1841 case 'b': show_bind = 1; break;
1129 case 'S': show_soname = 1; break; 1842 case 'S': show_soname = 1; break;
1130 case 'T': show_textrels = 1; break; 1843 case 'T': show_textrels = 1; break;
1131 case 'q': be_quiet = 1; break; 1844 case 'q': be_quiet = 1; break;
1132 case 'v': be_verbose = (be_verbose % 20) + 1; break; 1845 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1133 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 1846 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1134 1847 case 'D': show_endian = 1; break;
1848 case 'I': show_osabi = 1; break;
1849 case 'Y': show_eabi = 1; break;
1135 case ':': 1850 case ':':
1136 err("Option missing parameter\n"); 1851 err("Option '%c' is missing parameter", optopt);
1137 case '?': 1852 case '?':
1138 err("Unknown option\n"); 1853 err("Unknown option '%c' or argument missing", optopt);
1139 default: 1854 default:
1140 err("Unhandled option '%c'", i); 1855 err("Unhandled option '%c'; please report this", i);
1141 }
1142 } 1856 }
1143 1857 }
1858 if (show_textrels && be_verbose) {
1859 if (which("objdump") != NULL)
1860 has_objdump = 1;
1861 }
1144 /* let the format option override all other options */ 1862 /* let the format option override all other options */
1145 if (out_format) { 1863 if (out_format) {
1146 show_pax = show_phdr = show_textrel = show_rpath = \ 1864 show_pax = show_phdr = show_textrel = show_rpath = \
1147 show_needed = show_interp = show_bind = show_soname = \ 1865 show_needed = show_interp = show_bind = show_soname = \
1148 show_textrels = 0; 1866 show_textrels = show_perms = show_endian = show_size = \
1867 show_osabi = show_eabi = 0;
1149 for (i = 0; out_format[i]; ++i) { 1868 for (i = 0; out_format[i]; ++i) {
1150 if (!IS_MODIFIER(out_format[i])) continue; 1869 if (!IS_MODIFIER(out_format[i])) continue;
1151 1870
1152 switch (out_format[++i]) { 1871 switch (out_format[++i]) {
1872 case '+': break;
1153 case '%': break; 1873 case '%': break;
1154 case '#': break; 1874 case '#': break;
1155 case 'F': break; 1875 case 'F': break;
1156 case 'p': break; 1876 case 'p': break;
1157 case 'f': break; 1877 case 'f': break;
1878 case 'k': break;
1158 case 's': break; 1879 case 's': break;
1159 case 'N': break; 1880 case 'N': break;
1160 case 'o': break; 1881 case 'o': break;
1882 case 'a': break;
1883 case 'M': break;
1884 case 'Z': show_size = 1; break;
1885 case 'D': show_endian = 1; break;
1886 case 'I': show_osabi = 1; break;
1887 case 'Y': show_eabi = 1; break;
1888 case 'O': show_perms = 1; break;
1161 case 'x': show_pax = 1; break; 1889 case 'x': show_pax = 1; break;
1162 case 'e': show_phdr = 1; break; 1890 case 'e': show_phdr = 1; break;
1163 case 't': show_textrel = 1; break; 1891 case 't': show_textrel = 1; break;
1164 case 'r': show_rpath = 1; break; 1892 case 'r': show_rpath = 1; break;
1165 case 'n': show_needed = 1; break; 1893 case 'n': show_needed = 1; break;
1166 case 'i': show_interp = 1; break; 1894 case 'i': show_interp = 1; break;
1167 case 'b': show_bind = 1; break; 1895 case 'b': show_bind = 1; break;
1168 case 'S': show_soname = 1; break; 1896 case 'S': show_soname = 1; break;
1169 case 'T': show_textrels = 1; break; 1897 case 'T': show_textrels = 1; break;
1170 default: 1898 default:
1171 err("Invalid format specifier '%c' (byte %i)", 1899 err("Invalid format specifier '%c' (byte %i)",
1172 out_format[i], i+1); 1900 out_format[i], i+1);
1173 } 1901 }
1174 } 1902 }
1175 1903
1176 /* construct our default format */ 1904 /* construct our default format */
1177 } else { 1905 } else {
1178 size_t fmt_len = 30; 1906 size_t fmt_len = 30;
1179 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 1907 out_format = xmalloc(sizeof(char) * fmt_len);
1908 *out_format = '\0';
1180 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 1909 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1181 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 1910 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
1911 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
1912 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
1913 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
1914 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
1915 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1182 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 1916 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1183 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 1917 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1184 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 1918 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1185 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 1919 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1186 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 1920 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1187 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len); 1921 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
1188 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len); 1922 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
1189 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len); 1923 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
1190 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 1924 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
1925 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
1191 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len); 1926 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
1192 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 1927 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1193 } 1928 }
1194 if (be_verbose > 2) printf("Format: %s\n", out_format); 1929 if (be_verbose > 2) printf("Format: %s\n", out_format);
1195 1930
1196 /* now lets actually do the scanning */ 1931 /* now lets actually do the scanning */
1197 if (scan_ldpath || (show_rpath && be_quiet)) 1932 if (scan_ldpath || use_ldcache)
1198 load_ld_so_conf(); 1933 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1199 if (scan_ldpath) scanelf_ldpath(); 1934 if (scan_ldpath) scanelf_ldpath();
1200 if (scan_envpath) scanelf_envpath(); 1935 if (scan_envpath) scanelf_envpath();
1936 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
1937 from_file = "-";
1201 if (from_file) { 1938 if (from_file) {
1202 scanelf_from_file(from_file); 1939 scanelf_from_file(from_file);
1203 free(from_file);
1204 from_file = *argv; 1940 from_file = *argv;
1205 } 1941 }
1206 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 1942 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1207 err("Nothing to scan !?"); 1943 err("Nothing to scan !?");
1208 while (optind < argc) { 1944 while (optind < argc) {
1209 search_path = argv[optind++]; 1945 search_path = argv[optind++];
1210 scanelf_dir(search_path); 1946 ret = scanelf_dir(search_path);
1211 } 1947 }
1212 1948
1213 /* clean up */ 1949 /* clean up */
1214 if (find_sym) {
1215 free(find_sym);
1216 free(versioned_symname);
1217 }
1218 if (find_lib) free(find_lib);
1219 if (out_format) free(out_format);
1220 for (i = 0; ldpaths[i]; ++i) 1950 for (i = 0; ldpaths[i]; ++i)
1221 free(ldpaths[i]); 1951 free(ldpaths[i]);
1222}
1223 1952
1224 1953 if (ldcache != 0)
1225 1954 munmap(ldcache, ldcache_size);
1226/* utility funcs */
1227static char *xstrdup(const char *s)
1228{
1229 char *ret = strdup(s);
1230 if (!ret) err("Could not strdup(): %s", strerror(errno));
1231 return ret; 1955 return ret;
1232} 1956}
1233 1957
1234static void *xmalloc(size_t size) 1958static char **get_split_env(const char *envvar)
1235{ 1959{
1236 void *ret = malloc(size); 1960 const char *delims = " \t\n";
1237 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size); 1961 char **envvals = NULL;
1238 return ret; 1962 char *env, *s;
1239} 1963 int nentry;
1240 1964
1241static void xstrcat(char **dst, const char *src, size_t *curr_len) 1965 if ((env = getenv(envvar)) == NULL)
1242{ 1966 return NULL;
1243 size_t new_len;
1244 1967
1245 new_len = strlen(*dst) + strlen(src); 1968 env = xstrdup(env);
1246 if (*curr_len <= new_len) { 1969 if (env == NULL)
1247 *curr_len = new_len + (*curr_len / 2); 1970 return NULL;
1248 *dst = realloc(*dst, *curr_len);
1249 if (!*dst)
1250 err("could not realloc %li bytes", (unsigned long)*curr_len);
1251 }
1252 1971
1253 strcat(*dst, src); 1972 s = strtok(env, delims);
1254} 1973 if (s == NULL) {
1974 free(env);
1975 return NULL;
1976 }
1255 1977
1256static inline void xchrcat(char **dst, const char append, size_t *curr_len) 1978 nentry = 0;
1257{ 1979 while (s != NULL) {
1258 static char my_app[2]; 1980 ++nentry;
1259 my_app[0] = append; 1981 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
1260 my_app[1] = '\0'; 1982 envvals[nentry-1] = s;
1261 xstrcat(dst, my_app, curr_len); 1983 s = strtok(NULL, delims);
1262} 1984 }
1985 envvals[nentry] = NULL;
1263 1986
1987 /* don't want to free(env) as it contains the memory that backs
1988 * the envvals array of strings */
1989 return envvals;
1990}
1264 1991
1992static void parseenv(void)
1993{
1994 qa_textrels = get_split_env("QA_TEXTRELS");
1995 qa_execstack = get_split_env("QA_EXECSTACK");
1996 qa_wx_load = get_split_env("QA_WX_LOAD");
1997}
1998
1999#ifdef __PAX_UTILS_CLEANUP
2000static void cleanup(void)
2001{
2002 free(out_format);
2003 free(qa_textrels);
2004 free(qa_execstack);
2005 free(qa_wx_load);
2006}
2007#endif
1265 2008
1266int main(int argc, char *argv[]) 2009int main(int argc, char *argv[])
1267{ 2010{
2011 int ret;
1268 if (argc < 2) 2012 if (argc < 2)
1269 usage(EXIT_FAILURE); 2013 usage(EXIT_FAILURE);
2014 parseenv();
1270 parseargs(argc, argv); 2015 ret = parseargs(argc, argv);
1271 fclose(stdout); 2016 fclose(stdout);
1272#ifdef __BOUNDS_CHECKING_ON 2017#ifdef __PAX_UTILS_CLEANUP
1273 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2018 cleanup();
2019 warn("The calls to add/delete heap should be off:\n"
2020 "\t- 1 due to the out_buffer not being freed in scanelf_file()\n"
2021 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1274#endif 2022#endif
1275 return EXIT_SUCCESS; 2023 return ret;
1276} 2024}
2025
2026/* Match filename against entries in matchlist, return TRUE
2027 * if the file is listed */
2028static int file_matches_list(const char *filename, char **matchlist)
2029{
2030 char **file;
2031 char *match;
2032 char buf[__PAX_UTILS_PATH_MAX];
2033
2034 if (matchlist == NULL)
2035 return 0;
2036
2037 for (file = matchlist; *file != NULL; file++) {
2038 if (search_path) {
2039 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2040 match = buf;
2041 } else {
2042 match = *file;
2043 }
2044 if (fnmatch(match, filename, 0) == 0)
2045 return 1;
2046 }
2047 return 0;
2048}

Legend:
Removed from v.1.88  
changed lines
  Added in v.1.209

  ViewVC Help
Powered by ViewVC 1.1.20