/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.88 Revision 1.248
1/* 1/*
2 * Copyright 2003-2005 Gentoo Foundation 2 * Copyright 2003-2012 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.88 2005/09/30 03:30:54 vapier Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.248 2012/11/04 07:48:42 vapier Exp $
5 * 5 *
6 * Copyright 2003-2005 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2012 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2005 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2012 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10#include <stdio.h> 10static const char rcsid[] = "$Id: scanelf.c,v 1.248 2012/11/04 07:48:42 vapier Exp $";
11#include <stdlib.h> 11const char argv0[] = "scanelf";
12#include <sys/types.h> 12
13#include <libgen.h>
14#include <limits.h>
15#define __USE_GNU
16#include <string.h>
17#include <errno.h>
18#include <unistd.h>
19#include <sys/stat.h>
20#include <dirent.h>
21#include <getopt.h>
22#include <assert.h>
23#include "paxelf.h" 13#include "paxinc.h"
24 14
25static const char *rcsid = "$Id: scanelf.c,v 1.88 2005/09/30 03:30:54 vapier Exp $";
26#define argv0 "scanelf"
27
28#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
29
30
31 16
32/* prototypes */ 17/* prototypes */
33static void scanelf_file(const char *filename); 18static int file_matches_list(const char *filename, char **matchlist);
34static void scanelf_dir(const char *path);
35static void scanelf_ldpath();
36static void scanelf_envpath();
37static void usage(int status);
38static void parseargs(int argc, char *argv[]);
39static char *xstrdup(const char *s);
40static void *xmalloc(size_t size);
41static void xstrcat(char **dst, const char *src, size_t *curr_len);
42static inline void xchrcat(char **dst, const char append, size_t *curr_len);
43 19
44/* variables to control behavior */ 20/* variables to control behavior */
45static char *ldpaths[256]; 21static char *match_etypes = NULL;
22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
46static char scan_ldpath = 0; 23static char scan_ldpath = 0;
47static char scan_envpath = 0; 24static char scan_envpath = 0;
48static char scan_symlink = 1; 25static char scan_symlink = 1;
26static char scan_archives = 0;
49static char dir_recurse = 0; 27static char dir_recurse = 0;
50static char dir_crossmount = 1; 28static char dir_crossmount = 1;
51static char show_pax = 0; 29static char show_pax = 0;
30static char show_perms = 0;
31static char show_size = 0;
52static char show_phdr = 0; 32static char show_phdr = 0;
53static char show_textrel = 0; 33static char show_textrel = 0;
54static char show_rpath = 0; 34static char show_rpath = 0;
55static char show_needed = 0; 35static char show_needed = 0;
56static char show_interp = 0; 36static char show_interp = 0;
57static char show_bind = 0; 37static char show_bind = 0;
58static char show_soname = 0; 38static char show_soname = 0;
59static char show_textrels = 0; 39static char show_textrels = 0;
60static char show_banner = 1; 40static char show_banner = 1;
41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
61static char be_quiet = 0; 44static char be_quiet = 0;
62static char be_verbose = 0; 45static char be_verbose = 0;
63static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
64static char *find_sym = NULL, *versioned_symname = NULL; 47static char be_semi_verbose = 0;
48static char *find_sym = NULL;
49static array_t _find_sym_arr = array_init_decl, *find_sym_arr = &_find_sym_arr;
65static char *find_lib = NULL; 50static char *find_lib = NULL;
51static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
52static char *find_section = NULL;
53static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
66static char *out_format = NULL; 54static char *out_format = NULL;
67static char *search_path = NULL; 55static char *search_path = NULL;
56static char fix_elf = 0;
68static char gmatch = 0; 57static char g_match = 0;
58static char use_ldcache = 0;
59static char use_ldpath = 0;
69 60
61static char **qa_textrels = NULL;
62static char **qa_execstack = NULL;
63static char **qa_wx_load = NULL;
64static int root_fd = AT_FDCWD;
70 65
66static int match_bits = 0;
67static unsigned int match_perms = 0;
68static void *ldcache = NULL;
69static size_t ldcache_size = 0;
70static unsigned long setpax = 0UL;
71
72static int has_objdump = 0;
73
74/* find the path to a file by name */
75static int bin_in_path(const char *fname)
76{
77 char fullpath[__PAX_UTILS_PATH_MAX];
78 char *path, *p;
79
80 path = getenv("PATH");
81 if (!path)
82 return 0;
83
84 while ((p = strrchr(path, ':')) != NULL) {
85 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
86 *p = 0;
87 if (access(fullpath, R_OK) != -1)
88 return 1;
89 }
90
91 return 0;
92}
93
94static FILE *fopenat_r(int dir_fd, const char *path)
95{
96 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
97 if (fd == -1)
98 return NULL;
99 return fdopen(fd, "re");
100}
101
102static const char *root_rel_path(const char *path)
103{
104 /*
105 * openat() will ignore the dirfd if path starts with
106 * a /, so consume all of that noise
107 *
108 * XXX: we don't handle relative paths like ../ that
109 * break out of the --root option, but for now, just
110 * don't do that :P.
111 */
112 if (root_fd != AT_FDCWD) {
113 while (*path == '/')
114 ++path;
115 if (*path == '\0')
116 path = ".";
117 }
118
119 return path;
120}
121
122/* 1 on failure. 0 otherwise */
123static int rematch(const char *regex, const char *match, int cflags)
124{
125 regex_t preg;
126 int ret;
127
128 if ((match == NULL) || (regex == NULL))
129 return EXIT_FAILURE;
130
131 ret = regcomp(&preg, regex, cflags);
132 if (ret) {
133 char err[256];
134 regerror(ret, &preg, err, sizeof(err));
135 warnf("regcomp failed: %s", err);
136 return EXIT_FAILURE;
137 }
138 ret = regexec(&preg, match, 0, NULL, 0);
139 regfree(&preg);
140
141 return ret;
142}
143
71/* sub-funcs for scanelf_file() */ 144/* sub-funcs for scanelf_fileat() */
72static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 145static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
73{ 146{
74 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 147 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
148
149 /* debug sections */
150 void *symtab = elf_findsecbyname(elf, ".symtab");
151 void *strtab = elf_findsecbyname(elf, ".strtab");
152 /* runtime sections */
153 void *dynsym = elf_findsecbyname(elf, ".dynsym");
154 void *dynstr = elf_findsecbyname(elf, ".dynstr");
155
156 /*
157 * If the sections are marked NOBITS, then they don't exist, so we just
158 * skip them. This let's us work sanely with splitdebug ELFs (rather
159 * than spewing a lot of "corrupt ELF" messages later on). In malformed
160 * ELFs, the section might be wrongly set to NOBITS, but screw em.
161 */
75#define GET_SYMTABS(B) \ 162#define GET_SYMTABS(B) \
76 if (elf->elf_class == ELFCLASS ## B) { \ 163 if (elf->elf_class == ELFCLASS ## B) { \
77 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \ 164 Elf ## B ## _Shdr *esymtab = symtab; \
78 /* debug sections */ \ 165 Elf ## B ## _Shdr *estrtab = strtab; \
79 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \ 166 Elf ## B ## _Shdr *edynsym = dynsym; \
80 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \ 167 Elf ## B ## _Shdr *edynstr = dynstr; \
81 /* runtime sections */ \ 168 \
82 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \ 169 if (symtab && EGET(esymtab->sh_type) == SHT_NOBITS) \
83 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \ 170 symtab = NULL; \
171 if (dynsym && EGET(edynsym->sh_type) == SHT_NOBITS) \
172 dynsym = NULL; \
84 if (symtab && dynsym) { \ 173 if (symtab && dynsym) \
85 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 174 *sym = (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) ? symtab : dynsym; \
86 } else { \ 175 else \
87 *sym = (void*)(symtab ? symtab : dynsym); \ 176 *sym = symtab ? symtab : dynsym; \
88 } \ 177 \
178 if (strtab && EGET(estrtab->sh_type) == SHT_NOBITS) \
179 strtab = NULL; \
180 if (dynstr && EGET(edynstr->sh_type) == SHT_NOBITS) \
181 dynstr = NULL; \
89 if (strtab && dynstr) { \ 182 if (strtab && dynstr) \
90 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \ 183 *str = (EGET(estrtab->sh_size) > EGET(edynstr->sh_size)) ? strtab : dynstr; \
91 } else { \ 184 else \
92 *tab = (void*)(strtab ? strtab : dynstr); \ 185 *str = strtab ? strtab : dynstr; \
93 } \
94 } 186 }
95 GET_SYMTABS(32) 187 GET_SYMTABS(32)
96 GET_SYMTABS(64) 188 GET_SYMTABS(64)
189
190 if (*sym && *str)
191 return;
192
193 /*
194 * damn, they're really going to make us work for it huh?
195 * reconstruct the section header info out of the dynamic
196 * tags so we can see what symbols this guy uses at runtime.
197 */
198#define GET_SYMTABS_DT(B) \
199 if (elf->elf_class == ELFCLASS ## B) { \
200 size_t i; \
201 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
202 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
203 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
204 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
205 Elf ## B ## _Dyn *dyn; \
206 Elf ## B ## _Off offset; \
207 \
208 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
209 vsym = vstr = vhash = vgnu_hash = 0; \
210 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
211 memset(&str_shdr, 0, sizeof(str_shdr)); \
212 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
213 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
214 continue; \
215 \
216 offset = EGET(phdr[i].p_offset); \
217 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
218 continue; \
219 \
220 dyn = DYN ## B (elf->vdata + offset); \
221 while (EGET(dyn->d_tag) != DT_NULL) { \
222 switch (EGET(dyn->d_tag)) { \
223 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
224 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
225 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
226 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
227 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
228 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
229 } \
230 ++dyn; \
231 } \
232 if (vsym && vstr) \
233 break; \
234 } \
235 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
236 return; \
237 \
238 /* calc offset into the ELF by finding the load addr of the syms */ \
239 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
240 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
241 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
242 offset = EGET(phdr[i].p_offset); \
243 \
244 if (EGET(phdr[i].p_type) != PT_LOAD) \
245 continue; \
246 \
247 if (vhash >= vaddr && vhash < vaddr + filesz) { \
248 /* Scan the hash table to see how many entries we have */ \
249 Elf32_Word max_sym_idx = 0; \
250 Elf32_Word *hashtbl = elf->vdata + offset + (vhash - vaddr); \
251 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
252 Elf32_Word nchains = EGET(hashtbl[1]); \
253 Elf32_Word *buckets = &hashtbl[2]; \
254 Elf32_Word *chains = &buckets[nbuckets]; \
255 Elf32_Word sym_idx; \
256 \
257 for (b = 0; b < nbuckets; ++b) { \
258 if (!buckets[b]) \
259 continue; \
260 for (sym_idx = buckets[b]; sym_idx < nchains && sym_idx; sym_idx = chains[sym_idx]) \
261 if (max_sym_idx < sym_idx) \
262 max_sym_idx = sym_idx; \
263 } \
264 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
265 } \
266 \
267 if (vsym >= vaddr && vsym < vaddr + filesz) { \
268 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
269 *sym = &sym_shdr; \
270 } \
271 \
272 if (vstr >= vaddr && vstr < vaddr + filesz) { \
273 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
274 *str = &str_shdr; \
275 } \
276 } \
277 }
278 GET_SYMTABS_DT(32)
279 GET_SYMTABS_DT(64)
97} 280}
281
98static char *scanelf_file_pax(elfobj *elf, char *found_pax) 282static char *scanelf_file_pax(elfobj *elf, char *found_pax)
99{ 283{
100 static char *paxflags;
101 static char ret[7]; 284 static char ret[7];
102 unsigned long i, shown; 285 unsigned long i, shown;
103 286
104 if (!show_pax) return NULL; 287 if (!show_pax) return NULL;
105 288
112 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 295 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
113 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 296 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
114 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 297 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
115 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \ 298 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
116 continue; \ 299 continue; \
117 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 300 if (fix_elf && setpax) { \
301 /* set the paxctl flags */ \
302 ESET(phdr[i].p_flags, setpax); \
303 } \
304 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
118 continue; \ 305 continue; \
119 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 306 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
120 *found_pax = 1; \ 307 *found_pax = 1; \
121 ++shown; \ 308 ++shown; \
122 break; \ 309 break; \
124 } 311 }
125 SHOW_PAX(32) 312 SHOW_PAX(32)
126 SHOW_PAX(64) 313 SHOW_PAX(64)
127 } 314 }
128 315
316 /* Note: We do not support setting EI_PAX if not PT_PAX_FLAGS
317 * was found. This is known to break ELFs on glibc systems,
318 * and mainline PaX has deprecated use of this for a long time.
319 * We could support changing PT_GNU_STACK, but that doesn't
320 * seem like it's worth the effort. #411919
321 */
322
129 /* fall back to EI_PAX if no PT_PAX was found */ 323 /* fall back to EI_PAX if no PT_PAX was found */
130 if (!*ret) { 324 if (!*ret) {
325 static char *paxflags;
131 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 326 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
132 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) { 327 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) {
133 *found_pax = 1; 328 *found_pax = 1;
134 return paxflags; 329 return (be_wewy_wewy_quiet ? NULL : paxflags);
135 } 330 }
136 strncpy(ret, paxflags, sizeof(ret)); 331 strncpy(ret, paxflags, sizeof(ret));
137 } 332 }
138 333
139 if (be_quiet && !shown) 334 if (be_wewy_wewy_quiet || (be_quiet && !shown))
140 return NULL; 335 return NULL;
336 else
141 return ret; 337 return ret;
142
143} 338}
339
144static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 340static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
145{ 341{
146 static char ret[12]; 342 static char ret[12];
147 char *found; 343 char *found;
148 unsigned long i, off, shown, check_flags;
149 unsigned char multi_stack, multi_relro, multi_load; 344 unsigned long i, shown, multi_stack, multi_relro, multi_load;
345 int max_pt_load;
150 346
151 if (!show_phdr) return NULL; 347 if (!show_phdr) return NULL;
152 348
153 memcpy(ret, "--- --- ---\0", 12); 349 memcpy(ret, "--- --- ---\0", 12);
154 350
155 shown = 0; 351 shown = 0;
156 multi_stack = multi_relro = multi_load = 0; 352 multi_stack = multi_relro = multi_load = 0;
353 max_pt_load = elf_max_pt_load(elf);
157 354
158 if (elf->phdr) { 355#define NOTE_GNU_STACK ".note.GNU-stack"
159#define SHOW_PHDR(B) \ 356#define SHOW_PHDR(B) \
160 if (elf->elf_class == ELFCLASS ## B) { \ 357 if (elf->elf_class == ELFCLASS ## B) { \
161 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 358 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
359 Elf ## B ## _Off offset; \
360 uint32_t flags, check_flags; \
361 if (elf->phdr != NULL) { \
162 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 362 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
163 uint32_t flags; \
164 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 363 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
165 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 364 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
365 if (multi_stack++) \
166 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 366 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
367 if (file_matches_list(elf->filename, qa_execstack)) \
368 continue; \
167 found = found_phdr; \ 369 found = found_phdr; \
168 off = 0; \ 370 offset = 0; \
169 check_flags = PF_X; \ 371 check_flags = PF_X; \
170 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 372 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
373 if (multi_relro++) \
171 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 374 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
172 found = found_relro; \ 375 found = found_relro; \
173 off = 4; \ 376 offset = 4; \
174 check_flags = PF_X; \ 377 check_flags = PF_X; \
175 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 378 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
176 if (multi_load++ > 2) warnf("%s: more than 2 PT_LOAD's !?", elf->filename); \ 379 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
380 if (multi_load++ > max_pt_load) \
381 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
382 if (file_matches_list(elf->filename, qa_wx_load)) \
383 continue; \
177 found = found_load; \ 384 found = found_load; \
178 off = 8; \ 385 offset = 8; \
179 check_flags = PF_W|PF_X; \ 386 check_flags = PF_W|PF_X; \
180 } else \ 387 } else \
181 continue; \ 388 continue; \
182 flags = EGET(phdr[i].p_flags); \ 389 flags = EGET(phdr[i].p_flags); \
183 if (be_quiet && ((flags & check_flags) != check_flags)) \ 390 if (be_quiet && ((flags & check_flags) != check_flags)) \
184 continue; \ 391 continue; \
392 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
393 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
394 ret[3] = ret[7] = '!'; \
395 flags = EGET(phdr[i].p_flags); \
396 } \
185 memcpy(ret+off, gnu_short_stack_flags(flags), 3); \ 397 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
186 *found = 1; \ 398 *found = 1; \
187 ++shown; \ 399 ++shown; \
400 } \
401 } else if (elf->shdr != NULL) { \
402 /* no program headers which means this is prob an object file */ \
403 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
404 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
405 char *str; \
406 if ((void*)strtbl > elf->data_end) \
407 goto skip_this_shdr##B; \
408 check_flags = SHF_WRITE|SHF_EXECINSTR; \
409 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
410 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
411 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
412 str = elf->data + offset; \
413 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \
414 if (!strcmp(str, NOTE_GNU_STACK)) { \
415 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \
416 flags = EGET(shdr[i].sh_flags); \
417 if (be_quiet && ((flags & check_flags) != check_flags)) \
418 continue; \
419 ++*found_phdr; \
420 shown = 1; \
421 if (flags & SHF_WRITE) ret[0] = 'W'; \
422 if (flags & SHF_ALLOC) ret[1] = 'A'; \
423 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \
424 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \
425 break; \
426 } \
427 } \
428 skip_this_shdr##B: \
429 if (!multi_stack) { \
430 if (file_matches_list(elf->filename, qa_execstack)) \
431 return NULL; \
432 *found_phdr = 1; \
433 shown = 1; \
434 memcpy(ret, "!WX", 3); \
435 } \
188 } \ 436 } \
189 } 437 }
190 SHOW_PHDR(32) 438 SHOW_PHDR(32)
191 SHOW_PHDR(64) 439 SHOW_PHDR(64)
192 }
193 440
194 if (be_quiet && !shown) 441 if (be_wewy_wewy_quiet || (be_quiet && !shown))
195 return NULL; 442 return NULL;
196 else 443 else
197 return ret; 444 return ret;
198} 445}
446
447/*
448 * See if this ELF contains a DT_TEXTREL tag in any of its
449 * PT_DYNAMIC sections.
450 */
199static char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 451static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
200{ 452{
201 static char ret[] = "TEXTREL"; 453 static const char *ret = "TEXTREL";
202 unsigned long i; 454 unsigned long i;
203 455
204 if (!show_textrel && !show_textrels) return NULL; 456 if (!show_textrel && !show_textrels) return NULL;
457
458 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
205 459
206 if (elf->phdr) { 460 if (elf->phdr) {
207#define SHOW_TEXTREL(B) \ 461#define SHOW_TEXTREL(B) \
208 if (elf->elf_class == ELFCLASS ## B) { \ 462 if (elf->elf_class == ELFCLASS ## B) { \
209 Elf ## B ## _Dyn *dyn; \ 463 Elf ## B ## _Dyn *dyn; \
210 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 464 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
211 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 465 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
212 Elf ## B ## _Off offset; \ 466 Elf ## B ## _Off offset; \
213 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 467 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
214 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 468 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
215 offset = EGET(phdr[i].p_offset); \ 469 offset = EGET(phdr[i].p_offset); \
216 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 470 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
217 dyn = DYN ## B (elf->data + offset); \ 471 dyn = DYN ## B (elf->vdata + offset); \
218 while (EGET(dyn->d_tag) != DT_NULL) { \ 472 while (EGET(dyn->d_tag) != DT_NULL) { \
219 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 473 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
220 *found_textrel = 1; \ 474 *found_textrel = 1; \
221 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 475 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
222 return (be_wewy_wewy_quiet ? NULL : ret); \ 476 return (be_wewy_wewy_quiet ? NULL : ret); \
229 } 483 }
230 484
231 if (be_quiet || be_wewy_wewy_quiet) 485 if (be_quiet || be_wewy_wewy_quiet)
232 return NULL; 486 return NULL;
233 else 487 else
234 return (char *)" - "; 488 return " - ";
235} 489}
490
491/*
492 * Scan the .text section to see if there are any relocations in it.
493 * Should rewrite this to check PT_LOAD sections that are marked
494 * Executable rather than the section named '.text'.
495 */
236static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 496static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
237{ 497{
238 unsigned long s, r, rmax; 498 unsigned long s, r, rmax;
239 void *symtab_void, *strtab_void, *text_void; 499 void *symtab_void, *strtab_void, *text_void;
240 500
261 Elf ## B ## _Rela *rela; \ 521 Elf ## B ## _Rela *rela; \
262 /* search the section headers for relocations */ \ 522 /* search the section headers for relocations */ \
263 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 523 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
264 uint32_t sh_type = EGET(shdr[s].sh_type); \ 524 uint32_t sh_type = EGET(shdr[s].sh_type); \
265 if (sh_type == SHT_REL) { \ 525 if (sh_type == SHT_REL) { \
266 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 526 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
267 rela = NULL; \ 527 rela = NULL; \
268 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 528 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
269 } else if (sh_type == SHT_RELA) { \ 529 } else if (sh_type == SHT_RELA) { \
270 rel = NULL; \ 530 rel = NULL; \
271 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 531 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
272 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 532 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
273 } else \ 533 } else \
274 continue; \ 534 continue; \
275 /* now see if any of the relocs are in the .text */ \ 535 /* now see if any of the relocs are in the .text */ \
276 for (r = 0; r < rmax; ++r) { \ 536 for (r = 0; r < rmax; ++r) { \
291 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \ 551 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
292 if (be_verbose <= 2) continue; \ 552 if (be_verbose <= 2) continue; \
293 } else \ 553 } else \
294 *found_textrels = 1; \ 554 *found_textrels = 1; \
295 /* locate this relocation symbol name */ \ 555 /* locate this relocation symbol name */ \
296 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 556 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
557 if ((void*)sym > elf->data_end) { \
558 warn("%s: corrupt ELF symbol", elf->filename); \
559 continue; \
560 } \
297 sym_max = ELF ## B ## _R_SYM(r_info); \ 561 sym_max = ELF ## B ## _R_SYM(r_info); \
298 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 562 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
299 sym += sym_max; \ 563 sym += sym_max; \
300 else \ 564 else \
301 sym = NULL; \ 565 sym = NULL; \
302 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 566 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
303 /* show the raw details about this reloc */ \ 567 /* show the raw details about this reloc */ \
304 printf(" %s: ", elf->base_filename); \ 568 printf(" %s: ", elf->base_filename); \
305 if (sym && sym->st_name) \ 569 if (sym && sym->st_name) \
306 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 570 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
307 else \ 571 else \
308 printf("(memory/fake?)"); \ 572 printf("(memory/data?)"); \
309 printf(" [0x%lX]", (unsigned long)r_offset); \ 573 printf(" [0x%lX]", (unsigned long)r_offset); \
310 /* now try to find the closest symbol that this rel is probably in */ \ 574 /* now try to find the closest symbol that this rel is probably in */ \
311 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 575 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
312 func = NULL; \ 576 func = NULL; \
313 offset_tmp = 0; \ 577 offset_tmp = 0; \
314 while (sym_max--) { \ 578 while (sym_max--) { \
315 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \ 579 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
316 func = sym; \ 580 func = sym; \
317 offset_tmp = EGET(sym->st_value); \ 581 offset_tmp = EGET(sym->st_value); \
318 } \ 582 } \
319 ++sym; \ 583 ++sym; \
320 } \ 584 } \
321 printf(" in "); \ 585 printf(" in "); \
322 if (func && func->st_name) \ 586 if (func && func->st_name) { \
323 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 587 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
588 if (r_offset > EGET(func->st_size)) \
589 printf("(optimized out: previous %s)", func_name); \
324 else \ 590 else \
325 printf("(NULL: fake?)"); \ 591 printf("%s", func_name); \
592 } else \
593 printf("(optimized out)"); \
326 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 594 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
595 if (be_verbose && has_objdump) { \
596 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
597 char *sysbuf; \
598 size_t syslen; \
599 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
600 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
601 sysbuf = xmalloc(syslen); \
602 if (end_addr < r_offset) \
603 /* not uncommon when things are optimized out */ \
604 end_addr = r_offset + 0x100; \
605 snprintf(sysbuf, syslen, sysfmt, \
606 (unsigned long)offset_tmp, \
607 (unsigned long)end_addr, \
608 elf->filename, \
609 (unsigned long)r_offset); \
610 fflush(stdout); \
611 if (system(sysbuf)) /* don't care */; \
612 fflush(stdout); \
613 free(sysbuf); \
614 } \
327 } \ 615 } \
328 } } 616 } }
329 SHOW_TEXTRELS(32) 617 SHOW_TEXTRELS(32)
330 SHOW_TEXTRELS(64) 618 SHOW_TEXTRELS(64)
331 } 619 }
333 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 621 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
334 622
335 return NULL; 623 return NULL;
336} 624}
337 625
338static void rpath_security_checks(elfobj *, char *);
339static void rpath_security_checks(elfobj *elf, char *item) { 626static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
627{
340 struct stat st; 628 struct stat st;
341 switch (*item) { 629 switch (*item) {
630 case '/': break;
342 case 0: 631 case '.':
343 warnf("Security problem NULL RPATH in %s", elf->filename); 632 warnf("Security problem with relative %s '%s' in %s", dt_type, item, elf->filename);
344 break; 633 break;
345 case '/': break; 634 case ':':
635 case '\0':
636 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
637 break;
346 case '$': 638 case '$':
347 if (fstat(elf->fd, &st) != -1) 639 if (fstat(elf->fd, &st) != -1)
348 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 640 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
349 warnf("Security problem with RPATH='%s' in %s with mode set of %o", 641 warnf("Security problem with %s='%s' in %s with mode set of %o",
350 item, elf->filename, st.st_mode & 07777); 642 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
351 break; 643 break;
352 default: 644 default:
353 warnf("Maybe? sec problem with RPATH='%s' in %s", item, elf->filename); 645 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
354 break; 646 break;
355 } 647 }
356} 648}
357static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 649static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
358{ 650{
359 unsigned long i, s; 651 unsigned long i;
360 char *rpath, *runpath, **r; 652 char *rpath, *runpath, **r;
361 void *strtbl_void; 653 void *strtbl_void;
362 654
363 if (!show_rpath) return; 655 if (!show_rpath) return;
364 656
375 Elf ## B ## _Off offset; \ 667 Elf ## B ## _Off offset; \
376 Elf ## B ## _Xword word; \ 668 Elf ## B ## _Xword word; \
377 /* Scan all the program headers */ \ 669 /* Scan all the program headers */ \
378 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 670 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
379 /* Just scan dynamic headers */ \ 671 /* Just scan dynamic headers */ \
380 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 672 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
381 offset = EGET(phdr[i].p_offset); \ 673 offset = EGET(phdr[i].p_offset); \
382 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 674 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
383 /* Just scan dynamic RPATH/RUNPATH headers */ \ 675 /* Just scan dynamic RPATH/RUNPATH headers */ \
384 dyn = DYN ## B (elf->data + offset); \ 676 dyn = DYN ## B (elf->vdata + offset); \
385 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 677 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
386 if (word == DT_RPATH) { \ 678 if (word == DT_RPATH) { \
387 r = &rpath; \ 679 r = &rpath; \
388 } else if (word == DT_RUNPATH) { \ 680 } else if (word == DT_RUNPATH) { \
389 r = &runpath; \ 681 r = &runpath; \
393 } \ 685 } \
394 /* Verify the memory is somewhat sane */ \ 686 /* Verify the memory is somewhat sane */ \
395 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 687 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
396 if (offset < (Elf ## B ## _Off)elf->len) { \ 688 if (offset < (Elf ## B ## _Off)elf->len) { \
397 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 689 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
398 *r = (char*)(elf->data + offset); \ 690 *r = elf->data + offset; \
691 /* cache the length in case we need to nuke this section later on */ \
692 if (fix_elf) \
693 offset = strlen(*r); \
399 /* If quiet, don't output paths in ld.so.conf */ \ 694 /* If quiet, don't output paths in ld.so.conf */ \
400 if (be_quiet) { \ 695 if (be_quiet) { \
401 size_t len; \ 696 size_t len; \
402 char *start, *end; \ 697 char *start, *end; \
403 /* note that we only 'chop' off leading known paths. */ \ 698 /* note that we only 'chop' off leading known paths. */ \
404 /* since *r is read-only memory, we can only move the ptr forward. */ \ 699 /* since *r is read-only memory, we can only move the ptr forward. */ \
405 start = *r; \ 700 start = *r; \
406 /* scan each path in : delimited list */ \ 701 /* scan each path in : delimited list */ \
407 while (start) { \ 702 while (start) { \
408 rpath_security_checks(elf, start); \ 703 rpath_security_checks(elf, start, get_elfdtype(word)); \
409 end = strchr(start, ':'); \ 704 end = strchr(start, ':'); \
410 len = (end ? abs(end - start) : strlen(start)); \ 705 len = (end ? abs(end - start) : strlen(start)); \
411 for (s = 0; ldpaths[s]; ++s) { \ 706 if (use_ldcache) { \
707 size_t n; \
708 const char *ldpath; \
709 array_for_each(ldpaths, n, ldpath) \
412 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 710 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
413 *r = (end ? end + 1 : NULL); \ 711 *r = end; \
712 /* corner case ... if RPATH reads "/usr/lib:", we want \
713 * to show ':' rather than '' */ \
714 if (end && end[1] != '\0') \
715 (*r)++; \
414 break; \ 716 break; \
415 } \ 717 } \
416 } \ 718 } \
417 if (!*r || !ldpaths[s] || !end) \ 719 if (!*r || !end) \
418 start = NULL; \ 720 break; \
419 else \ 721 else \
420 start = start + len + 1; \ 722 start = start + len + 1; \
421 } \ 723 } \
422 } \ 724 } \
725 if (*r) { \
726 if (fix_elf > 2 || (fix_elf && **r == '\0')) { \
727 /* just nuke it */ \
728 nuke_it##B: \
729 memset(*r, 0x00, offset); \
730 *r = NULL; \
731 ESET(dyn->d_tag, DT_DEBUG); \
732 ESET(dyn->d_un.d_ptr, 0); \
733 } else if (fix_elf) { \
734 /* try to clean "bad" paths */ \
735 size_t len, tmpdir_len; \
736 char *start, *end; \
737 const char *tmpdir; \
738 start = *r; \
739 tmpdir = (getenv("TMPDIR") ? : "."); \
740 tmpdir_len = strlen(tmpdir); \
741 while (1) { \
742 end = strchr(start, ':'); \
743 if (start == end) { \
744 eat_this_path##B: \
745 len = strlen(end); \
746 memmove(start, end+1, len); \
747 start[len-1] = '\0'; \
748 end = start - 1; \
749 } else if (tmpdir && !strncmp(start, tmpdir, tmpdir_len)) { \
750 if (!end) { \
751 if (start == *r) \
752 goto nuke_it##B; \
753 *--start = '\0'; \
754 } else \
755 goto eat_this_path##B; \
756 } \
757 if (!end) \
758 break; \
759 start = end + 1; \
760 } \
761 if (**r == '\0') \
762 goto nuke_it##B; \
763 } \
764 if (*r) \
423 if (*r) *found_rpath = 1; \ 765 *found_rpath = 1; \
766 } \
424 } \ 767 } \
425 ++dyn; \ 768 ++dyn; \
426 } \ 769 } \
427 } } 770 } }
428 SHOW_RPATH(32) 771 SHOW_RPATH(32)
445 } else if (rpath || runpath) 788 } else if (rpath || runpath)
446 xstrcat(ret, (runpath ? runpath : rpath), ret_len); 789 xstrcat(ret, (runpath ? runpath : rpath), ret_len);
447 else if (!be_quiet) 790 else if (!be_quiet)
448 xstrcat(ret, " - ", ret_len); 791 xstrcat(ret, " - ", ret_len);
449} 792}
793
794#define LDSO_CACHE_MAGIC "ld.so-"
795#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
796#define LDSO_CACHE_VER "1.7.0"
797#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
798#define FLAG_ANY -1
799#define FLAG_TYPE_MASK 0x00ff
800#define FLAG_LIBC4 0x0000
801#define FLAG_ELF 0x0001
802#define FLAG_ELF_LIBC5 0x0002
803#define FLAG_ELF_LIBC6 0x0003
804#define FLAG_REQUIRED_MASK 0xff00
805#define FLAG_SPARC_LIB64 0x0100
806#define FLAG_IA64_LIB64 0x0200
807#define FLAG_X8664_LIB64 0x0300
808#define FLAG_S390_LIB64 0x0400
809#define FLAG_POWERPC_LIB64 0x0500
810#define FLAG_MIPS64_LIBN32 0x0600
811#define FLAG_MIPS64_LIBN64 0x0700
812
813#if defined(__GLIBC__) || defined(__UCLIBC__)
814
815static char *lookup_cache_lib(elfobj *elf, const char *fname)
816{
817 int fd;
818 char *strs;
819 static char buf[__PAX_UTILS_PATH_MAX] = "";
820 const char *cachefile = root_rel_path("/etc/ld.so.cache");
821 struct stat st;
822
823 typedef struct {
824 char magic[LDSO_CACHE_MAGIC_LEN];
825 char version[LDSO_CACHE_VER_LEN];
826 int nlibs;
827 } header_t;
828 header_t *header;
829
830 typedef struct {
831 int flags;
832 int sooffset;
833 int liboffset;
834 } libentry_t;
835 libentry_t *libent;
836
837 if (fname == NULL)
838 return NULL;
839
840 if (ldcache == NULL) {
841 if (fstatat(root_fd, cachefile, &st, 0))
842 return NULL;
843
844 fd = openat(root_fd, cachefile, O_RDONLY);
845 if (fd == -1)
846 return NULL;
847
848 /* cache these values so we only map/unmap the cache file once */
849 ldcache_size = st.st_size;
850 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
851 close(fd);
852
853 if (ldcache == MAP_FAILED) {
854 ldcache = NULL;
855 return NULL;
856 }
857
858 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
859 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
860 {
861 munmap(ldcache, ldcache_size);
862 ldcache = NULL;
863 return NULL;
864 }
865 } else
866 header = ldcache;
867
868 libent = ldcache + sizeof(header_t);
869 strs = (char *) &libent[header->nlibs];
870
871 for (fd = 0; fd < header->nlibs; ++fd) {
872 /* This should be more fine grained, but for now we assume that
873 * diff arches will not be cached together, and we ignore the
874 * the different multilib mips cases.
875 */
876 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
877 continue;
878 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
879 continue;
880
881 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
882 continue;
883
884 /* Return first hit because that is how the ldso rolls */
885 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
886 break;
887 }
888
889 return buf;
890}
891
892#elif defined(__NetBSD__)
893static char *lookup_cache_lib(elfobj *elf, const char *fname)
894{
895 static char buf[__PAX_UTILS_PATH_MAX] = "";
896 static struct stat st;
897 size_t n;
898 char *ldpath;
899
900 array_for_each(ldpath, n, ldpath) {
901 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
902 continue; /* if the pathname is too long, or something went wrong, ignore */
903
904 if (stat(buf, &st) != 0)
905 continue; /* if the lib doesn't exist in *ldpath, look further */
906
907 /* NetBSD doesn't actually do sanity checks, it just loads the file
908 * and if that doesn't work, continues looking in other directories.
909 * This cannot easily be safely emulated, unfortunately. For now,
910 * just assume that if it exists, it's a valid library. */
911
912 return buf;
913 }
914
915 /* not found in any path */
916 return NULL;
917}
918#else
919#ifdef __ELF__
920#warning Cache support not implemented for your target
921#endif
922static char *lookup_cache_lib(elfobj *elf, const char *fname)
923{
924 return NULL;
925}
926#endif
927
928static char *lookup_config_lib(elfobj *elf, char *fname)
929{
930 static char buf[__PAX_UTILS_PATH_MAX] = "";
931 const char *ldpath;
932 size_t n;
933
934 array_for_each(ldpaths, n, ldpath) {
935 snprintf(buf, sizeof(buf), "%s/%s", root_rel_path(ldpath), fname);
936 if (faccessat(root_fd, buf, F_OK, AT_SYMLINK_NOFOLLOW) == 0)
937 return buf;
938 }
939
940 return NULL;
941}
942
450static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 943static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
451{ 944{
452 unsigned long i; 945 unsigned long i;
453 char *needed; 946 char *needed;
454 void *strtbl_void; 947 void *strtbl_void;
948 char *p;
455 949
950 /*
951 * -n -> op==0 -> print all
952 * -N -> op==1 -> print requested
953 */
456 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 954 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
955 return NULL;
457 956
458 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 957 strtbl_void = elf_findsecbyname(elf, ".dynstr");
459 958
460 if (elf->phdr && strtbl_void) { 959 if (elf->phdr && strtbl_void) {
461#define SHOW_NEEDED(B) \ 960#define SHOW_NEEDED(B) \
463 Elf ## B ## _Dyn *dyn; \ 962 Elf ## B ## _Dyn *dyn; \
464 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 963 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
465 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 964 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
466 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 965 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
467 Elf ## B ## _Off offset; \ 966 Elf ## B ## _Off offset; \
967 size_t matched = 0; \
968 /* Walk all the program headers to find the PT_DYNAMIC */ \
468 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 969 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
469 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 970 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
971 continue; \
470 offset = EGET(phdr[i].p_offset); \ 972 offset = EGET(phdr[i].p_offset); \
471 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 973 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
974 continue; \
975 /* Walk all the dynamic tags to find NEEDED entries */ \
472 dyn = DYN ## B (elf->data + offset); \ 976 dyn = DYN ## B (elf->vdata + offset); \
473 while (EGET(dyn->d_tag) != DT_NULL) { \ 977 while (EGET(dyn->d_tag) != DT_NULL) { \
474 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 978 if (EGET(dyn->d_tag) == DT_NEEDED) { \
475 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 979 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
476 if (offset >= (Elf ## B ## _Off)elf->len) { \ 980 if (offset >= (Elf ## B ## _Off)elf->len) { \
477 ++dyn; \ 981 ++dyn; \
478 continue; \ 982 continue; \
479 } \ 983 } \
480 needed = (char*)(elf->data + offset); \ 984 needed = elf->data + offset; \
481 if (op == 0) { \ 985 if (op == 0) { \
986 /* -n -> print all entries */ \
482 if (!be_wewy_wewy_quiet) { \ 987 if (!be_wewy_wewy_quiet) { \
483 if (*found_needed) xchrcat(ret, ',', ret_len); \ 988 if (*found_needed) xchrcat(ret, ',', ret_len); \
989 if (use_ldpath) { \
990 if ((p = lookup_config_lib(elf, needed)) != NULL) \
991 needed = p; \
992 } else if (use_ldcache) { \
993 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
994 needed = p; \
995 } \
484 xstrcat(ret, needed, ret_len); \ 996 xstrcat(ret, needed, ret_len); \
485 } \ 997 } \
486 *found_needed = 1; \ 998 *found_needed = 1; \
487 } else { \ 999 } else { \
488 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 1000 /* -N -> print matching entries */ \
1001 size_t n; \
1002 const char *find_lib_name; \
1003 \
1004 array_for_each(find_lib_arr, n, find_lib_name) { \
1005 int invert = 1; \
1006 if (find_lib_name[0] == '!') \
1007 invert = 0, ++find_lib_name; \
1008 if (!strcmp(find_lib_name, needed) == invert) \
1009 ++matched; \
1010 } \
1011 \
1012 if (matched == array_cnt(find_lib_arr)) { \
489 *found_lib = 1; \ 1013 *found_lib = 1; \
490 return (be_wewy_wewy_quiet ? NULL : needed); \ 1014 return (be_wewy_wewy_quiet ? NULL : find_lib); \
491 } \ 1015 } \
492 } \ 1016 } \
493 } \ 1017 } \
494 ++dyn; \ 1018 ++dyn; \
495 } \ 1019 } \
524} 1048}
525static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1049static char *scanelf_file_bind(elfobj *elf, char *found_bind)
526{ 1050{
527 unsigned long i; 1051 unsigned long i;
528 struct stat s; 1052 struct stat s;
1053 char dynamic = 0;
529 1054
530 if (!show_bind) return NULL; 1055 if (!show_bind) return NULL;
531 if (!elf->phdr) return NULL; 1056 if (!elf->phdr) return NULL;
532 1057
533#define SHOW_BIND(B) \ 1058#define SHOW_BIND(B) \
535 Elf ## B ## _Dyn *dyn; \ 1060 Elf ## B ## _Dyn *dyn; \
536 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1061 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
537 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1062 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
538 Elf ## B ## _Off offset; \ 1063 Elf ## B ## _Off offset; \
539 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1064 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
540 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1065 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
1066 dynamic = 1; \
541 offset = EGET(phdr[i].p_offset); \ 1067 offset = EGET(phdr[i].p_offset); \
542 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1068 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
543 dyn = DYN ## B (elf->data + offset); \ 1069 dyn = DYN ## B (elf->vdata + offset); \
544 while (EGET(dyn->d_tag) != DT_NULL) { \ 1070 while (EGET(dyn->d_tag) != DT_NULL) { \
545 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1071 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
546 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 1072 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
547 { \ 1073 { \
548 if (be_quiet) return NULL; \ 1074 if (be_quiet) return NULL; \
556 SHOW_BIND(32) 1082 SHOW_BIND(32)
557 SHOW_BIND(64) 1083 SHOW_BIND(64)
558 1084
559 if (be_wewy_wewy_quiet) return NULL; 1085 if (be_wewy_wewy_quiet) return NULL;
560 1086
1087 /* don't output anything if quiet mode and the ELF is static or not setuid */
561 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 1088 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
562 return NULL; 1089 return NULL;
563 } else { 1090 } else {
564 *found_bind = 1; 1091 *found_bind = 1;
565 return (char *) "LAZY"; 1092 return (char *)(dynamic ? "LAZY" : "STATIC");
566 } 1093 }
567} 1094}
568static char *scanelf_file_soname(elfobj *elf, char *found_soname) 1095static char *scanelf_file_soname(elfobj *elf, char *found_soname)
569{ 1096{
570 unsigned long i; 1097 unsigned long i;
582 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1109 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
583 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1110 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
584 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1111 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
585 Elf ## B ## _Off offset; \ 1112 Elf ## B ## _Off offset; \
586 /* only look for soname in shared objects */ \ 1113 /* only look for soname in shared objects */ \
587 if (ehdr->e_type != ET_DYN) \ 1114 if (EGET(ehdr->e_type) != ET_DYN) \
588 return NULL; \ 1115 return NULL; \
589 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1116 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
590 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1117 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
591 offset = EGET(phdr[i].p_offset); \ 1118 offset = EGET(phdr[i].p_offset); \
592 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1119 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
593 dyn = DYN ## B (elf->data + offset); \ 1120 dyn = DYN ## B (elf->vdata + offset); \
594 while (EGET(dyn->d_tag) != DT_NULL) { \ 1121 while (EGET(dyn->d_tag) != DT_NULL) { \
595 if (EGET(dyn->d_tag) == DT_SONAME) { \ 1122 if (EGET(dyn->d_tag) == DT_SONAME) { \
596 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1123 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
597 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1124 if (offset >= (Elf ## B ## _Off)elf->len) { \
598 ++dyn; \ 1125 ++dyn; \
599 continue; \ 1126 continue; \
600 } \ 1127 } \
601 soname = (char*)(elf->data + offset); \ 1128 soname = elf->data + offset; \
602 *found_soname = 1; \ 1129 *found_soname = 1; \
603 return (be_wewy_wewy_quiet ? NULL : soname); \ 1130 return (be_wewy_wewy_quiet ? NULL : soname); \
604 } \ 1131 } \
605 ++dyn; \ 1132 ++dyn; \
606 } \ 1133 } \
609 SHOW_SONAME(64) 1136 SHOW_SONAME(64)
610 } 1137 }
611 1138
612 return NULL; 1139 return NULL;
613} 1140}
1141
1142/*
1143 * We support the symbol form:
1144 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
1145 * If the symbol name is empty, then all symbols are matched.
1146 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1147 * Do not rely on this output format at all.
1148 * Otherwise the symbol name is used to search (either regex or string compare).
1149 * If the first char of the symbol name is a plus ("+"), then only match
1150 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1151 * Putting modifiers in between the percent signs allows for more in depth
1152 * filters. There are groups of modifiers. If you don't specify a member
1153 * of a group, then all types in that group are matched. The current
1154 * groups and their types are:
1155 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1156 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1157 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1158 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1159 * You can search for multiple symbols at once by seperating with a comma (",").
1160 *
1161 * Some examples:
1162 * ELFs with a weak function "foo":
1163 * scanelf -s %wf%foo <ELFs>
1164 * ELFs that define the symbol "main":
1165 * scanelf -s +main <ELFs>
1166 * scanelf -s %d%main <ELFs>
1167 * ELFs that refer to the undefined symbol "brk":
1168 * scanelf -s -brk <ELFs>
1169 * scanelf -s %u%brk <ELFs>
1170 * All global defined objects in an ELF:
1171 * scanelf -s %ogd% <ELF>
1172 */
1173static void
1174scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1175 unsigned int stt, unsigned int stb, unsigned int shn, unsigned long size)
1176{
1177 const char *this_sym;
1178 size_t n;
1179
1180 array_for_each(find_sym_arr, n, this_sym) {
1181 bool inc_notype, inc_object, inc_func, inc_file,
1182 inc_local, inc_global, inc_weak,
1183 inc_def, inc_undef, inc_abs, inc_common;
1184
1185 /* symbol selection! */
1186 inc_notype = inc_object = inc_func = inc_file = \
1187 inc_local = inc_global = inc_weak = \
1188 inc_def = inc_undef = inc_abs = inc_common = \
1189 (*this_sym != '%');
1190
1191 /* parse the contents of %...% */
1192 if (!inc_notype) {
1193 while (*(this_sym++)) {
1194 if (*this_sym == '%') {
1195 ++this_sym;
1196 break;
1197 }
1198 switch (*this_sym) {
1199 case 'n': inc_notype = true; break;
1200 case 'o': inc_object = true; break;
1201 case 'f': inc_func = true; break;
1202 case 'F': inc_file = true; break;
1203 case 'l': inc_local = true; break;
1204 case 'g': inc_global = true; break;
1205 case 'w': inc_weak = true; break;
1206 case 'd': inc_def = true; break;
1207 case 'u': inc_undef = true; break;
1208 case 'a': inc_abs = true; break;
1209 case 'c': inc_common = true; break;
1210 default: err("invalid symbol selector '%c'", *this_sym);
1211 }
1212 }
1213
1214 /* If no types are matched, not match all */
1215 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1216 inc_notype = inc_object = inc_func = inc_file = true;
1217 if (!inc_local && !inc_global && !inc_weak)
1218 inc_local = inc_global = inc_weak = true;
1219 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1220 inc_def = inc_undef = inc_abs = inc_common = true;
1221
1222 /* backwards compat for defined/undefined short hand */
1223 } else if (*this_sym == '+') {
1224 inc_undef = false;
1225 ++this_sym;
1226 } else if (*this_sym == '-') {
1227 inc_def = inc_abs = inc_common = false;
1228 ++this_sym;
1229 }
1230
1231 /* filter symbols */
1232 if ((!inc_notype && stt == STT_NOTYPE) || \
1233 (!inc_object && stt == STT_OBJECT) || \
1234 (!inc_func && stt == STT_FUNC ) || \
1235 (!inc_file && stt == STT_FILE ) || \
1236 (!inc_local && stb == STB_LOCAL ) || \
1237 (!inc_global && stb == STB_GLOBAL) || \
1238 (!inc_weak && stb == STB_WEAK ) || \
1239 (!inc_def && shn && shn < SHN_LORESERVE) || \
1240 (!inc_undef && shn == SHN_UNDEF ) || \
1241 (!inc_abs && shn == SHN_ABS ) || \
1242 (!inc_common && shn == SHN_COMMON))
1243 continue;
1244
1245 if (*this_sym == '*') {
1246 /* a "*" symbol gets you debug output */
1247 printf("%s(%s) %5lX %15s %15s %15s %s\n",
1248 ((*found_sym == 0) ? "\n\t" : "\t"),
1249 elf->base_filename,
1250 size,
1251 get_elfstttype(stt),
1252 get_elfstbtype(stb),
1253 get_elfshntype(shn),
1254 symname);
1255 goto matched;
1256
1257 } else {
1258 if (g_match) {
1259 /* regex match the symbol */
1260 int flags = REG_EXTENDED | REG_NOSUB;
1261 if (g_match > 1)
1262 flags |= REG_ICASE;
1263 if (rematch(this_sym, symname, flags) != 0)
1264 continue;
1265
1266 } else if (*this_sym) {
1267 /* give empty symbols a "pass", else do a normal compare */
1268 const size_t len = strlen(this_sym);
1269 if (!(strncmp(this_sym, symname, len) == 0 &&
1270 /* Accept unversioned symbol names */
1271 (symname[len] == '\0' || symname[len] == '@')))
1272 continue;
1273 }
1274
1275 if (be_semi_verbose) {
1276 char buf[1024];
1277 snprintf(buf, sizeof(buf), "%lX %s %s",
1278 size,
1279 get_elfstttype(stt),
1280 this_sym);
1281 *ret = xstrdup(buf);
1282 } else {
1283 if (*ret) xchrcat(ret, ',', ret_len);
1284 xstrcat(ret, symname, ret_len);
1285 }
1286
1287 goto matched;
1288 }
1289 }
1290
1291 return;
1292
1293 matched:
1294 *found_sym = 1;
1295}
1296
614static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1297static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
615{ 1298{
616 unsigned long i; 1299 char *ret;
617 void *symtab_void, *strtab_void; 1300 void *symtab_void, *strtab_void;
618 1301
619 if (!find_sym) return NULL; 1302 if (!find_sym) return NULL;
1303 ret = NULL;
620 1304
621 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1305 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
622 1306
623 if (symtab_void && strtab_void) { 1307 if (symtab_void && strtab_void) {
624#define FIND_SYM(B) \ 1308#define FIND_SYM(B) \
625 if (elf->elf_class == ELFCLASS ## B) { \ 1309 if (elf->elf_class == ELFCLASS ## B) { \
626 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1310 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
627 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1311 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
628 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1312 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
629 unsigned long cnt = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 1313 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
630 char *symname; \ 1314 char *symname; \
1315 size_t ret_len = 0; \
1316 if (cnt) \
1317 cnt = EGET(symtab->sh_size) / cnt; \
631 for (i = 0; i < cnt; ++i) { \ 1318 for (i = 0; i < cnt; ++i) { \
1319 if ((void*)sym > elf->data_end) { \
1320 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1321 goto break_out; \
1322 } \
632 if (sym->st_name) { \ 1323 if (sym->st_name) { \
1324 /* make sure the symbol name is in acceptable memory range */ \
633 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1325 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
634 if (*find_sym == '*') { \ 1326 if ((void*)symname > elf->data_end) { \
635 printf("%s(%s) %5lX %15s %s\n", \ 1327 warnf("%s: corrupt ELF symbols", elf->filename); \
636 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1328 ++sym; \
637 elf->base_filename, \ 1329 continue; \
638 (long)sym->st_size, \ 1330 } \
639 (char *)get_elfstttype(sym->st_info), \ 1331 scanelf_match_symname(elf, found_sym, \
640 symname); \ 1332 &ret, &ret_len, symname, \
641 *found_sym = 1; \ 1333 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
642 } else if ((strcmp(find_sym, symname) == 0) || \ 1334 ELF##B##_ST_BIND(EGET(sym->st_info)), \
643 (strcmp(symname, versioned_symname) == 0)) \ 1335 EGET(sym->st_shndx), \
644 (*found_sym)++; \ 1336 /* st_size can be 64bit, but no one is really that big, so screw em */ \
1337 EGET(sym->st_size)); \
645 } \ 1338 } \
646 ++sym; \ 1339 ++sym; \
647 } } 1340 } \
1341 }
648 FIND_SYM(32) 1342 FIND_SYM(32)
649 FIND_SYM(64) 1343 FIND_SYM(64)
650 } 1344 }
651 1345
1346break_out:
652 if (be_wewy_wewy_quiet) return NULL; 1347 if (be_wewy_wewy_quiet) return NULL;
653 1348
654 if (*find_sym != '*' && *found_sym) 1349 if (*find_sym != '*' && *found_sym)
655 return find_sym; 1350 return ret;
656 if (be_quiet) 1351 if (be_quiet)
657 return NULL; 1352 return NULL;
658 else 1353 else
659 return (char *)" - "; 1354 return " - ";
660} 1355}
1356
1357static const char *scanelf_file_sections(elfobj *elf, char *found_section)
1358{
1359 if (!find_section)
1360 return NULL;
1361
1362#define FIND_SECTION(B) \
1363 if (elf->elf_class == ELFCLASS ## B) { \
1364 size_t matched, n; \
1365 int invert; \
1366 const char *section_name; \
1367 Elf ## B ## _Shdr *section; \
1368 \
1369 matched = 0; \
1370 array_for_each(find_section_arr, n, section_name) { \
1371 invert = (*section_name == '!' ? 1 : 0); \
1372 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
1373 if ((section == NULL && invert) || (section != NULL && !invert)) \
1374 ++matched; \
1375 } \
1376 \
1377 if (matched == array_cnt(find_section_arr)) \
1378 *found_section = 1; \
1379 }
1380 FIND_SECTION(32)
1381 FIND_SECTION(64)
1382
1383 if (be_wewy_wewy_quiet)
1384 return NULL;
1385
1386 if (*found_section)
1387 return find_section;
1388
1389 if (be_quiet)
1390 return NULL;
1391 else
1392 return " - ";
1393}
1394
661/* scan an elf file and show all the fun stuff */ 1395/* scan an elf file and show all the fun stuff */
662#define prints(str) write(fileno(stdout), str, strlen(str)) 1396#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
663static void scanelf_file(const char *filename) 1397static int scanelf_elfobj(elfobj *elf)
664{ 1398{
665 unsigned long i; 1399 unsigned long i;
666 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1400 char found_pax, found_phdr, found_relro, found_load, found_textrel,
667 found_rpath, found_needed, found_interp, found_bind, found_soname, 1401 found_rpath, found_needed, found_interp, found_bind, found_soname,
668 found_sym, found_lib, found_file, found_textrels; 1402 found_sym, found_lib, found_file, found_textrels, found_section;
669 elfobj *elf;
670 struct stat st;
671 static char *out_buffer = NULL; 1403 static char *out_buffer = NULL;
672 static size_t out_len; 1404 static size_t out_len;
673 1405
674 /* make sure 'filename' exists */
675 if (lstat(filename, &st) == -1) {
676 if (be_verbose > 2) printf("%s: does not exist\n", filename);
677 return;
678 }
679 /* always handle regular files and handle symlinked files if no -y */
680 if (S_ISLNK(st.st_mode)) {
681 if (!scan_symlink) return;
682 stat(filename, &st);
683 }
684 if (!S_ISREG(st.st_mode)) {
685 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
686 return;
687 }
688
689 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1406 found_pax = found_phdr = found_relro = found_load = found_textrel = \
690 found_rpath = found_needed = found_interp = found_bind = found_soname = \ 1407 found_rpath = found_needed = found_interp = found_bind = found_soname = \
691 found_sym = found_lib = found_file = found_textrels = 0; 1408 found_sym = found_lib = found_file = found_textrels = found_section = 0;
692 1409
693 /* verify this is real ELF */
694 if ((elf = readelf(filename)) == NULL) {
695 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
696 return;
697 }
698
699 if (be_verbose > 1) 1410 if (be_verbose > 2)
700 printf("%s: scanning file {%s,%s}\n", filename, 1411 printf("%s: scanning file {%s,%s}\n", elf->filename,
701 get_elfeitype(EI_CLASS, elf->elf_class), 1412 get_elfeitype(EI_CLASS, elf->elf_class),
702 get_elfeitype(EI_DATA, elf->data[EI_DATA])); 1413 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
703 else if (be_verbose) 1414 else if (be_verbose > 1)
704 printf("%s: scanning file\n", filename); 1415 printf("%s: scanning file\n", elf->filename);
705 1416
706 /* init output buffer */ 1417 /* init output buffer */
707 if (!out_buffer) { 1418 if (!out_buffer) {
708 out_len = sizeof(char) * 80; 1419 out_len = sizeof(char) * 80;
709 out_buffer = (char*)xmalloc(out_len); 1420 out_buffer = xmalloc(out_len);
710 } 1421 }
711 *out_buffer = '\0'; 1422 *out_buffer = '\0';
712 1423
713 /* show the header */ 1424 /* show the header */
714 if (!be_quiet && show_banner) { 1425 if (!be_quiet && show_banner) {
715 for (i = 0; out_format[i]; ++i) { 1426 for (i = 0; out_format[i]; ++i) {
716 if (!IS_MODIFIER(out_format[i])) continue; 1427 if (!IS_MODIFIER(out_format[i])) continue;
717 1428
718 switch (out_format[++i]) { 1429 switch (out_format[++i]) {
1430 case '+': break;
719 case '%': break; 1431 case '%': break;
720 case '#': break; 1432 case '#': break;
721 case 'F': 1433 case 'F':
722 case 'p': 1434 case 'p':
723 case 'f': prints("FILE "); found_file = 1; break; 1435 case 'f': prints("FILE "); found_file = 1; break;
724 case 'o': prints(" TYPE "); break; 1436 case 'o': prints(" TYPE "); break;
725 case 'x': prints(" PAX "); break; 1437 case 'x': prints(" PAX "); break;
726 case 'e': prints("STK/REL/PTL "); break; 1438 case 'e': prints("STK/REL/PTL "); break;
727 case 't': prints("TEXTREL "); break; 1439 case 't': prints("TEXTREL "); break;
728 case 'r': prints("RPATH "); break; 1440 case 'r': prints("RPATH "); break;
1441 case 'M': prints("CLASS "); break;
1442 case 'l':
729 case 'n': prints("NEEDED "); break; 1443 case 'n': prints("NEEDED "); break;
730 case 'i': prints("INTERP "); break; 1444 case 'i': prints("INTERP "); break;
731 case 'b': prints("BIND "); break; 1445 case 'b': prints("BIND "); break;
1446 case 'Z': prints("SIZE "); break;
732 case 'S': prints("SONAME "); break; 1447 case 'S': prints("SONAME "); break;
733 case 's': prints("SYM "); break; 1448 case 's': prints("SYM "); break;
734 case 'N': prints("LIB "); break; 1449 case 'N': prints("LIB "); break;
735 case 'T': prints("TEXTRELS "); break; 1450 case 'T': prints("TEXTRELS "); break;
1451 case 'k': prints("SECTION "); break;
1452 case 'a': prints("ARCH "); break;
1453 case 'I': prints("OSABI "); break;
1454 case 'Y': prints("EABI "); break;
1455 case 'O': prints("PERM "); break;
1456 case 'D': prints("ENDIAN "); break;
736 default: warnf("'%c' has no title ?", out_format[i]); 1457 default: warnf("'%c' has no title ?", out_format[i]);
737 } 1458 }
738 } 1459 }
739 if (!found_file) prints("FILE "); 1460 if (!found_file) prints("FILE ");
740 prints("\n"); 1461 prints("\n");
744 1465
745 /* dump all the good stuff */ 1466 /* dump all the good stuff */
746 for (i = 0; out_format[i]; ++i) { 1467 for (i = 0; out_format[i]; ++i) {
747 const char *out; 1468 const char *out;
748 const char *tmp; 1469 const char *tmp;
749 1470 static char ubuf[sizeof(unsigned long)*2];
750 /* make sure we trim leading spaces in quiet mode */
751 if (be_quiet && *out_buffer == ' ' && !out_buffer[1])
752 *out_buffer = '\0';
753
754 if (!IS_MODIFIER(out_format[i])) { 1471 if (!IS_MODIFIER(out_format[i])) {
755 xchrcat(&out_buffer, out_format[i], &out_len); 1472 xchrcat(&out_buffer, out_format[i], &out_len);
756 continue; 1473 continue;
757 } 1474 }
758 1475
759 out = NULL; 1476 out = NULL;
760 be_wewy_wewy_quiet = (out_format[i] == '#'); 1477 be_wewy_wewy_quiet = (out_format[i] == '#');
1478 be_semi_verbose = (out_format[i] == '+');
761 switch (out_format[++i]) { 1479 switch (out_format[++i]) {
1480 case '+':
762 case '%': 1481 case '%':
763 case '#': 1482 case '#':
764 xchrcat(&out_buffer, out_format[i], &out_len); break; 1483 xchrcat(&out_buffer, out_format[i], &out_len); break;
765 case 'F': 1484 case 'F':
766 found_file = 1; 1485 found_file = 1;
767 if (be_wewy_wewy_quiet) break; 1486 if (be_wewy_wewy_quiet) break;
768 xstrcat(&out_buffer, filename, &out_len); 1487 xstrcat(&out_buffer, elf->filename, &out_len);
769 break; 1488 break;
770 case 'p': 1489 case 'p':
771 found_file = 1; 1490 found_file = 1;
772 if (be_wewy_wewy_quiet) break; 1491 if (be_wewy_wewy_quiet) break;
773 tmp = filename; 1492 tmp = elf->filename;
774 if (search_path) { 1493 if (search_path) {
775 ssize_t len_search = strlen(search_path); 1494 ssize_t len_search = strlen(search_path);
776 ssize_t len_file = strlen(filename); 1495 ssize_t len_file = strlen(elf->filename);
777 if (!strncmp(filename, search_path, len_search) && \ 1496 if (!strncmp(elf->filename, search_path, len_search) && \
778 len_file > len_search) 1497 len_file > len_search)
779 tmp += len_search; 1498 tmp += len_search;
780 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++; 1499 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++;
781 } 1500 }
782 xstrcat(&out_buffer, tmp, &out_len); 1501 xstrcat(&out_buffer, tmp, &out_len);
783 break; 1502 break;
784 case 'f': 1503 case 'f':
785 found_file = 1; 1504 found_file = 1;
786 if (be_wewy_wewy_quiet) break; 1505 if (be_wewy_wewy_quiet) break;
787 tmp = strrchr(filename, '/'); 1506 tmp = strrchr(elf->filename, '/');
788 tmp = (tmp == NULL ? filename : tmp+1); 1507 tmp = (tmp == NULL ? elf->filename : tmp+1);
789 xstrcat(&out_buffer, tmp, &out_len); 1508 xstrcat(&out_buffer, tmp, &out_len);
790 break; 1509 break;
791 case 'o': out = get_elfetype(elf); break; 1510 case 'o': out = get_elfetype(elf); break;
792 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1511 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
793 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1512 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
794 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1513 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
795 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1514 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
796 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1515 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1516 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1517 case 'D': out = get_endian(elf); break;
1518 case 'O': out = strfileperms(elf->filename); break;
797 case 'n': 1519 case 'n':
798 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1520 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
799 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1521 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
800 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1522 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
801 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1523 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
802 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1524 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1525 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1526 case 'a': out = get_elfemtype(elf); break;
1527 case 'I': out = get_elfosabi(elf); break;
1528 case 'Y': out = get_elf_eabi(elf); break;
1529 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
803 default: warnf("'%c' has no scan code?", out_format[i]); 1530 default: warnf("'%c' has no scan code?", out_format[i]);
804 } 1531 }
1532 if (out)
805 if (out) xstrcat(&out_buffer, out, &out_len); 1533 xstrcat(&out_buffer, out, &out_len);
806 } 1534 }
807 1535
808#define FOUND_SOMETHING() \ 1536#define FOUND_SOMETHING() \
809 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1537 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
810 found_rpath || found_needed || found_interp || found_bind || \ 1538 found_rpath || found_needed || found_interp || found_bind || \
811 found_soname || found_sym || found_lib || found_textrels) 1539 found_soname || found_sym || found_lib || found_textrels || found_section )
812 1540
813 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) { 1541 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
814 xchrcat(&out_buffer, ' ', &out_len); 1542 xchrcat(&out_buffer, ' ', &out_len);
815 xstrcat(&out_buffer, filename, &out_len); 1543 xstrcat(&out_buffer, elf->filename, &out_len);
816 } 1544 }
817 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) { 1545 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) {
818 puts(out_buffer); 1546 puts(out_buffer);
819 fflush(stdout); 1547 fflush(stdout);
820 } 1548 }
821 1549
1550 return 0;
1551}
1552
1553/* scan a single elf */
1554static int scanelf_elf(const char *filename, int fd, size_t len)
1555{
1556 int ret = 1;
1557 elfobj *elf;
1558
1559 /* verify this is real ELF */
1560 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1561 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1562 return 2;
1563 }
1564 switch (match_bits) {
1565 case 32:
1566 if (elf->elf_class != ELFCLASS32)
1567 goto label_done;
1568 break;
1569 case 64:
1570 if (elf->elf_class != ELFCLASS64)
1571 goto label_done;
1572 break;
1573 default: break;
1574 }
1575 if (match_etypes) {
1576 char sbuf[126];
1577 strncpy(sbuf, match_etypes, sizeof(sbuf));
1578 if (strchr(match_etypes, ',') != NULL) {
1579 char *p;
1580 while ((p = strrchr(sbuf, ',')) != NULL) {
1581 *p = 0;
1582 if (etype_lookup(p+1) == get_etype(elf))
1583 goto label_ret;
1584 }
1585 }
1586 if (etype_lookup(sbuf) != get_etype(elf))
1587 goto label_done;
1588 }
1589
1590label_ret:
1591 ret = scanelf_elfobj(elf);
1592
1593label_done:
822 unreadelf(elf); 1594 unreadelf(elf);
1595 return ret;
1596}
1597
1598/* scan an archive of elfs */
1599static int scanelf_archive(const char *filename, int fd, size_t len)
1600{
1601 archive_handle *ar;
1602 archive_member *m;
1603 char *ar_buffer;
1604 elfobj *elf;
1605
1606 ar = ar_open_fd(filename, fd);
1607 if (ar == NULL)
1608 return 1;
1609
1610 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1611 while ((m = ar_next(ar)) != NULL) {
1612 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1613 if (cur_pos == -1)
1614 errp("lseek() failed");
1615 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1616 if (elf) {
1617 scanelf_elfobj(elf);
1618 unreadelf(elf);
1619 }
1620 }
1621 munmap(ar_buffer, len);
1622
1623 return 0;
1624}
1625/* scan a file which may be an elf or an archive or some other magical beast */
1626static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1627{
1628 const struct stat *st = st_cache;
1629 struct stat symlink_st;
1630 int fd;
1631
1632 /* always handle regular files and handle symlinked files if no -y */
1633 if (S_ISLNK(st->st_mode)) {
1634 if (!scan_symlink)
1635 return 1;
1636 fstatat(dir_fd, filename, &symlink_st, 0);
1637 st = &symlink_st;
1638 }
1639
1640 if (!S_ISREG(st->st_mode)) {
1641 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1642 return 1;
1643 }
1644
1645 if (match_perms) {
1646 if ((st->st_mode | match_perms) != st->st_mode)
1647 return 1;
1648 }
1649 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1650 if (fd == -1) {
1651 if (fix_elf && errno == ETXTBSY)
1652 warnp("%s: could not fix", filename);
1653 else if (be_verbose > 2)
1654 printf("%s: skipping file: %s\n", filename, strerror(errno));
1655 return 1;
1656 }
1657
1658 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1659 /* if it isn't an ELF, maybe it's an .a archive */
1660 if (scan_archives)
1661 scanelf_archive(filename, fd, st->st_size);
1662
1663 /*
1664 * unreadelf() implicitly closes its fd, so only close it
1665 * when we are returning it in the non-ELF case
1666 */
1667 close(fd);
1668 }
1669
1670 return 0;
823} 1671}
824 1672
825/* scan a directory for ET_EXEC files and print when we find one */ 1673/* scan a directory for ET_EXEC files and print when we find one */
826static void scanelf_dir(const char *path) 1674static int scanelf_dirat(int dir_fd, const char *path)
827{ 1675{
828 register DIR *dir; 1676 register DIR *dir;
829 register struct dirent *dentry; 1677 register struct dirent *dentry;
830 struct stat st_top, st; 1678 struct stat st_top, st;
831 char buf[_POSIX_PATH_MAX]; 1679 char buf[__PAX_UTILS_PATH_MAX], *subpath;
832 size_t pathlen = 0, len = 0; 1680 size_t pathlen = 0, len = 0;
1681 int ret = 0;
1682 int subdir_fd;
833 1683
834 /* make sure path exists */ 1684 /* make sure path exists */
835 if (lstat(path, &st_top) == -1) { 1685 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
836 if (be_verbose > 2) printf("%s: does not exist\n", path); 1686 if (be_verbose > 2) printf("%s: does not exist\n", path);
837 return; 1687 return 1;
838 } 1688 }
839 1689
840 /* ok, if it isn't a directory, assume we can open it */ 1690 /* ok, if it isn't a directory, assume we can open it */
841 if (!S_ISDIR(st_top.st_mode)) { 1691 if (!S_ISDIR(st_top.st_mode))
842 scanelf_file(path); 1692 return scanelf_fileat(dir_fd, path, &st_top);
843 return;
844 }
845 1693
846 /* now scan the dir looking for fun stuff */ 1694 /* now scan the dir looking for fun stuff */
847 if ((dir = opendir(path)) == NULL) { 1695 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
848 warnf("could not opendir %s: %s", path, strerror(errno)); 1696 if (subdir_fd == -1)
1697 dir = NULL;
1698 else
1699 dir = fdopendir(subdir_fd);
1700 if (dir == NULL) {
1701 if (subdir_fd != -1)
1702 close(subdir_fd);
1703 warnfp("could not opendir(%s)", path);
849 return; 1704 return 1;
850 } 1705 }
851 if (be_verbose) printf("%s: scanning dir\n", path); 1706 if (be_verbose > 1) printf("%s: scanning dir\n", path);
852 1707
853 pathlen = strlen(path); 1708 subpath = stpcpy(buf, path);
1709 if (subpath[-1] != '/')
1710 *subpath++ = '/';
1711 pathlen = subpath - buf;
854 while ((dentry = readdir(dir))) { 1712 while ((dentry = readdir(dir))) {
855 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1713 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
856 continue; 1714 continue;
1715
1716 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
1717 continue;
1718
857 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1719 len = strlen(dentry->d_name);
858 if (len >= sizeof(buf)) { 1720 if (len + pathlen + 1 >= sizeof(buf)) {
859 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1721 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
860 (unsigned long)len, (unsigned long)sizeof(buf)); 1722 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
861 continue; 1723 continue;
862 } 1724 }
863 sprintf(buf, "%s/%s", path, dentry->d_name); 1725 memcpy(subpath, dentry->d_name, len);
864 if (lstat(buf, &st) != -1) { 1726 subpath[len] = '\0';
1727
865 if (S_ISREG(st.st_mode)) 1728 if (S_ISREG(st.st_mode))
866 scanelf_file(buf); 1729 ret = scanelf_fileat(dir_fd, buf, &st);
867 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1730 else if (dir_recurse && S_ISDIR(st.st_mode)) {
868 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1731 if (dir_crossmount || (st_top.st_dev == st.st_dev))
869 scanelf_dir(buf); 1732 ret = scanelf_dirat(dir_fd, buf);
870 }
871 } 1733 }
872 } 1734 }
873 closedir(dir); 1735 closedir(dir);
874}
875 1736
1737 return ret;
1738}
1739static int scanelf_dir(const char *path)
1740{
1741 return scanelf_dirat(root_fd, root_rel_path(path));
1742}
1743
876static int scanelf_from_file(char *filename) 1744static int scanelf_from_file(const char *filename)
877{ 1745{
878 FILE *fp = NULL; 1746 FILE *fp;
879 char *p; 1747 char *p, *path;
880 char path[_POSIX_PATH_MAX]; 1748 size_t len;
1749 int ret;
881 1750
882 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1751 if (strcmp(filename, "-") == 0)
883 fp = stdin; 1752 fp = stdin;
884 else if ((fp = fopen(filename, "r")) == NULL) 1753 else if ((fp = fopen(filename, "r")) == NULL)
885 return 1; 1754 return 1;
886 1755
887 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1756 path = NULL;
1757 len = 0;
1758 ret = 0;
1759 while (getline(&path, &len, fp) != -1) {
888 if ((p = strchr(path, '\n')) != NULL) 1760 if ((p = strchr(path, '\n')) != NULL)
889 *p = 0; 1761 *p = 0;
890 search_path = path; 1762 search_path = path;
891 scanelf_dir(path); 1763 ret = scanelf_dir(path);
892 } 1764 }
1765 free(path);
1766
893 if (fp != stdin) 1767 if (fp != stdin)
894 fclose(fp); 1768 fclose(fp);
1769
895 return 0; 1770 return ret;
896} 1771}
897 1772
898static void load_ld_so_conf() 1773#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1774
1775static int _load_ld_cache_config(const char *fname)
899{ 1776{
900 FILE *fp = NULL; 1777 FILE *fp = NULL;
901 char *p; 1778 char *p, *path;
902 char path[_POSIX_PATH_MAX]; 1779 size_t len;
903 int i = 0; 1780 int curr_fd = -1;
904 1781
905 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1782 fp = fopenat_r(root_fd, root_rel_path(fname));
1783 if (fp == NULL)
906 return; 1784 return -1;
907 1785
908 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1786 path = NULL;
909 if (*path != '/') 1787 len = 0;
910 continue; 1788 while (getline(&path, &len, fp) != -1) {
911
912 if ((p = strrchr(path, '\r')) != NULL) 1789 if ((p = strrchr(path, '\r')) != NULL)
913 *p = 0; 1790 *p = 0;
914 if ((p = strchr(path, '\n')) != NULL) 1791 if ((p = strchr(path, '\n')) != NULL)
915 *p = 0; 1792 *p = 0;
916 1793
917 ldpaths[i++] = xstrdup(path); 1794 /* recursive includes of the same file will make this segfault. */
1795 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1796 glob_t gl;
1797 size_t x;
1798 const char *gpath;
918 1799
919 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1800 /* re-use existing path buffer ... need to be creative */
920 break; 1801 if (path[8] != '/')
1802 gpath = memcpy(path + 3, "/etc/", 5);
1803 else
1804 gpath = path + 8;
1805 if (root_fd != AT_FDCWD) {
1806 if (curr_fd == -1) {
1807 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1808 if (fchdir(root_fd))
1809 errp("unable to change to root dir");
1810 }
1811 gpath = root_rel_path(gpath);
1812 }
1813
1814 if (glob(gpath, 0, NULL, &gl) == 0) {
1815 for (x = 0; x < gl.gl_pathc; ++x) {
1816 /* try to avoid direct loops */
1817 if (strcmp(gl.gl_pathv[x], fname) == 0)
1818 continue;
1819 _load_ld_cache_config(gl.gl_pathv[x]);
1820 }
1821 globfree(&gl);
1822 }
1823
1824 /* failed globs are ignored by glibc */
1825 continue;
921 } 1826 }
922 ldpaths[i] = NULL; 1827
1828 if (*path != '/')
1829 continue;
1830
1831 xarraypush_str(ldpaths, path);
1832 }
1833 free(path);
923 1834
924 fclose(fp); 1835 fclose(fp);
1836
1837 if (curr_fd != -1) {
1838 if (fchdir(curr_fd))
1839 /* don't care */;
1840 close(curr_fd);
1841 }
1842
1843 return 0;
1844}
1845
1846#elif defined(__FreeBSD__) || defined(__DragonFly__)
1847
1848static int _load_ld_cache_config(const char *fname)
1849{
1850 FILE *fp = NULL;
1851 char *b = NULL, *p;
1852 struct elfhints_hdr hdr;
1853
1854 fp = fopenat_r(root_fd, root_rel_path(fname));
1855 if (fp == NULL)
1856 return -1;
1857
1858 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1859 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1860 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1861 {
1862 fclose(fp);
1863 return -1;
1864 }
1865
1866 b = xmalloc(hdr.dirlistlen + 1);
1867 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1868 fclose(fp);
1869 free(b);
1870 return -1;
1871 }
1872
1873 while ((p = strsep(&b, ":"))) {
1874 if (*p == '\0')
1875 continue;
1876 xarraypush_str(ldpaths, p);
1877 }
1878
1879 free(b);
1880 fclose(fp);
1881 return 0;
1882}
1883
1884#else
1885#ifdef __ELF__
1886#warning Cache config support not implemented for your target
1887#endif
1888static int _load_ld_cache_config(const char *fname)
1889{
1890 return 0;
1891}
1892#endif
1893
1894static void load_ld_cache_config(const char *fname)
1895{
1896 bool scan_l, scan_ul, scan_ull;
1897 size_t n;
1898 const char *ldpath;
1899
1900 _load_ld_cache_config(fname);
1901
1902 scan_l = scan_ul = scan_ull = false;
1903 if (array_cnt(ldpaths)) {
1904 array_for_each(ldpaths, n, ldpath) {
1905 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = true;
1906 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = true;
1907 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = true;
1908 }
1909 }
1910
1911 if (!scan_l) xarraypush_str(ldpaths, "/lib");
1912 if (!scan_ul) xarraypush_str(ldpaths, "/usr/lib");
1913 if (!scan_ull) xarraypush_str(ldpaths, "/usr/local/lib");
925} 1914}
926 1915
927/* scan /etc/ld.so.conf for paths */ 1916/* scan /etc/ld.so.conf for paths */
928static void scanelf_ldpath() 1917static void scanelf_ldpath(void)
929{ 1918{
930 char scan_l, scan_ul, scan_ull; 1919 size_t n;
931 int i = 0; 1920 const char *ldpath;
932 1921
933 if (!ldpaths[0]) 1922 array_for_each(ldpaths, n, ldpath)
934 err("Unable to load any paths from ld.so.conf");
935
936 scan_l = scan_ul = scan_ull = 0;
937
938 while (ldpaths[i]) {
939 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1;
940 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1;
941 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1;
942 scanelf_dir(ldpaths[i]); 1923 scanelf_dir(ldpath);
943 ++i;
944 }
945
946 if (!scan_l) scanelf_dir("/lib");
947 if (!scan_ul) scanelf_dir("/usr/lib");
948 if (!scan_ull) scanelf_dir("/usr/local/lib");
949} 1924}
950 1925
951/* scan env PATH for paths */ 1926/* scan env PATH for paths */
952static void scanelf_envpath() 1927static void scanelf_envpath(void)
953{ 1928{
954 char *path, *p; 1929 char *path, *p;
955 1930
956 path = getenv("PATH"); 1931 path = getenv("PATH");
957 if (!path) 1932 if (!path)
964 } 1939 }
965 1940
966 free(path); 1941 free(path);
967} 1942}
968 1943
969 1944/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
970
971/* usage / invocation handling functions */
972#define PARSE_FLAGS "plRmyxetrnibSs:gN:TaqvF:f:o:BhV" 1945#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
973#define a_argument required_argument 1946#define a_argument required_argument
974static struct option const long_opts[] = { 1947static struct option const long_opts[] = {
975 {"path", no_argument, NULL, 'p'}, 1948 {"path", no_argument, NULL, 'p'},
976 {"ldpath", no_argument, NULL, 'l'}, 1949 {"ldpath", no_argument, NULL, 'l'},
1950 {"use-ldpath",no_argument, NULL, 129},
1951 {"root", a_argument, NULL, 128},
977 {"recursive", no_argument, NULL, 'R'}, 1952 {"recursive", no_argument, NULL, 'R'},
978 {"mount", no_argument, NULL, 'm'}, 1953 {"mount", no_argument, NULL, 'm'},
979 {"symlink", no_argument, NULL, 'y'}, 1954 {"symlink", no_argument, NULL, 'y'},
1955 {"archives", no_argument, NULL, 'A'},
1956 {"ldcache", no_argument, NULL, 'L'},
1957 {"fix", no_argument, NULL, 'X'},
1958 {"setpax", a_argument, NULL, 'z'},
980 {"pax", no_argument, NULL, 'x'}, 1959 {"pax", no_argument, NULL, 'x'},
981 {"header", no_argument, NULL, 'e'}, 1960 {"header", no_argument, NULL, 'e'},
982 {"textrel", no_argument, NULL, 't'}, 1961 {"textrel", no_argument, NULL, 't'},
983 {"rpath", no_argument, NULL, 'r'}, 1962 {"rpath", no_argument, NULL, 'r'},
984 {"needed", no_argument, NULL, 'n'}, 1963 {"needed", no_argument, NULL, 'n'},
985 {"interp", no_argument, NULL, 'i'}, 1964 {"interp", no_argument, NULL, 'i'},
986 {"bind", no_argument, NULL, 'b'}, 1965 {"bind", no_argument, NULL, 'b'},
987 {"soname", no_argument, NULL, 'S'}, 1966 {"soname", no_argument, NULL, 'S'},
988 {"symbol", a_argument, NULL, 's'}, 1967 {"symbol", a_argument, NULL, 's'},
1968 {"section", a_argument, NULL, 'k'},
989 {"lib", a_argument, NULL, 'N'}, 1969 {"lib", a_argument, NULL, 'N'},
990 {"gmatch", no_argument, NULL, 'g'}, 1970 {"gmatch", no_argument, NULL, 'g'},
991 {"textrels", no_argument, NULL, 'T'}, 1971 {"textrels", no_argument, NULL, 'T'},
1972 {"etype", a_argument, NULL, 'E'},
1973 {"bits", a_argument, NULL, 'M'},
1974 {"endian", no_argument, NULL, 'D'},
1975 {"osabi", no_argument, NULL, 'I'},
1976 {"eabi", no_argument, NULL, 'Y'},
1977 {"perms", a_argument, NULL, 'O'},
1978 {"size", no_argument, NULL, 'Z'},
992 {"all", no_argument, NULL, 'a'}, 1979 {"all", no_argument, NULL, 'a'},
993 {"quiet", no_argument, NULL, 'q'}, 1980 {"quiet", no_argument, NULL, 'q'},
994 {"verbose", no_argument, NULL, 'v'}, 1981 {"verbose", no_argument, NULL, 'v'},
995 {"format", a_argument, NULL, 'F'}, 1982 {"format", a_argument, NULL, 'F'},
996 {"from", a_argument, NULL, 'f'}, 1983 {"from", a_argument, NULL, 'f'},
997 {"file", a_argument, NULL, 'o'}, 1984 {"file", a_argument, NULL, 'o'},
1985 {"nocolor", no_argument, NULL, 'C'},
998 {"nobanner", no_argument, NULL, 'B'}, 1986 {"nobanner", no_argument, NULL, 'B'},
999 {"help", no_argument, NULL, 'h'}, 1987 {"help", no_argument, NULL, 'h'},
1000 {"version", no_argument, NULL, 'V'}, 1988 {"version", no_argument, NULL, 'V'},
1001 {NULL, no_argument, NULL, 0x0} 1989 {NULL, no_argument, NULL, 0x0}
1002}; 1990};
1003 1991
1004static const char *opts_help[] = { 1992static const char * const opts_help[] = {
1005 "Scan all directories in PATH environment", 1993 "Scan all directories in PATH environment",
1006 "Scan all directories in /etc/ld.so.conf", 1994 "Scan all directories in /etc/ld.so.conf",
1995 "Use ld.so.conf to show full path (use with -r/-n)",
1996 "Root directory (use with -l or -p)",
1007 "Scan directories recursively", 1997 "Scan directories recursively",
1008 "Don't recursively cross mount points", 1998 "Don't recursively cross mount points",
1009 "Don't scan symlinks\n", 1999 "Don't scan symlinks",
2000 "Scan archives (.a files)",
2001 "Utilize ld.so.cache to show full path (use with -r/-n)",
2002 "Try and 'fix' bad things (use with -r/-e)",
2003 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1010 "Print PaX markings", 2004 "Print PaX markings",
1011 "Print GNU_STACK/PT_LOAD markings", 2005 "Print GNU_STACK/PT_LOAD markings",
1012 "Print TEXTREL information", 2006 "Print TEXTREL information",
1013 "Print RPATH information", 2007 "Print RPATH information",
1014 "Print NEEDED information", 2008 "Print NEEDED information",
1015 "Print INTERP information", 2009 "Print INTERP information",
1016 "Print BIND information", 2010 "Print BIND information",
1017 "Print SONAME information", 2011 "Print SONAME information",
1018 "Find a specified symbol", 2012 "Find a specified symbol",
2013 "Find a specified section",
1019 "Find a specified library", 2014 "Find a specified library",
1020 "Use strncmp to match libraries. (use with -N)", 2015 "Use regex rather than string compare (with -s); specify twice for case insensitive",
1021 "Locate cause of TEXTREL", 2016 "Locate cause of TEXTREL",
1022 "Print all scanned info (-x -e -t -r -b)\n", 2017 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
2018 "Print only ELF files matching numeric bits",
2019 "Print Endianness",
2020 "Print OSABI",
2021 "Print EABI (EM_ARM Only)",
2022 "Print only ELF files matching octal permissions",
2023 "Print ELF file size",
2024 "Print all useful/simple info\n",
1023 "Only output 'bad' things", 2025 "Only output 'bad' things",
1024 "Be verbose (can be specified more than once)", 2026 "Be verbose (can be specified more than once)",
1025 "Use specified format for output", 2027 "Use specified format for output",
1026 "Read input stream from a filename", 2028 "Read input stream from a filename",
1027 "Write output stream to a filename", 2029 "Write output stream to a filename",
2030 "Don't emit color in output",
1028 "Don't display the header", 2031 "Don't display the header",
1029 "Print this help and exit", 2032 "Print this help and exit",
1030 "Print version and exit", 2033 "Print version and exit",
1031 NULL 2034 NULL
1032}; 2035};
1034/* display usage and exit */ 2037/* display usage and exit */
1035static void usage(int status) 2038static void usage(int status)
1036{ 2039{
1037 unsigned long i; 2040 unsigned long i;
1038 printf("* Scan ELF binaries for stuff\n\n" 2041 printf("* Scan ELF binaries for stuff\n\n"
1039 "Usage: %s [options] <dir1/file1> [dir2 dirN fileN ...]\n\n", argv0); 2042 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1040 printf("Options: -[%s]\n", PARSE_FLAGS); 2043 printf("Options: -[%s]\n", PARSE_FLAGS);
1041 for (i = 0; long_opts[i].name; ++i) 2044 for (i = 0; long_opts[i].name; ++i) {
2045 /* first output the short flag if it has one */
2046 if (long_opts[i].val > '~')
2047 printf(" ");
2048 else
2049 printf(" -%c, ", long_opts[i].val);
2050
2051 /* then the long flag */
1042 if (long_opts[i].has_arg == no_argument) 2052 if (long_opts[i].has_arg == no_argument)
1043 printf(" -%c, --%-13s* %s\n", long_opts[i].val, 2053 printf("--%-14s", long_opts[i].name);
1044 long_opts[i].name, opts_help[i]);
1045 else 2054 else
1046 printf(" -%c, --%-6s <arg> * %s\n", long_opts[i].val, 2055 printf("--%-7s <arg> ", long_opts[i].name);
1047 long_opts[i].name, opts_help[i]);
1048 2056
1049 if (status != EXIT_SUCCESS) 2057 /* finally the help text */
1050 exit(status); 2058 printf("* %s\n", opts_help[i]);
2059 }
1051 2060
1052 puts("\nThe format modifiers for the -F option are:"); 2061 puts("\nFor more information, see the scanelf(1) manpage");
1053 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1054 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1055 puts(" i INTERP \tb BIND \ts symbol");
1056 puts(" N library \to Type \tT TEXTRELs");
1057 puts(" S SONAME");
1058 puts(" p filename (with search path removed)");
1059 puts(" f filename (short name/basename)");
1060 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1061
1062 exit(status); 2062 exit(status);
1063} 2063}
1064 2064
1065/* parse command line arguments and preform needed actions */ 2065/* parse command line arguments and preform needed actions */
2066#define do_pax_state(option, flag) \
2067 if (islower(option)) { \
2068 flags &= ~PF_##flag; \
2069 flags |= PF_NO##flag; \
2070 } else { \
2071 flags &= ~PF_NO##flag; \
2072 flags |= PF_##flag; \
2073 }
1066static void parseargs(int argc, char *argv[]) 2074static int parseargs(int argc, char *argv[])
1067{ 2075{
1068 int i; 2076 int i;
1069 char *from_file = NULL; 2077 const char *from_file = NULL;
2078 int ret = 0;
2079 char load_cache_config = 0;
1070 2080
1071 opterr = 0; 2081 opterr = 0;
1072 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2082 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1073 switch (i) { 2083 switch (i) {
1074 2084
1078 VERSION, __FILE__, __DATE__, rcsid, argv0); 2088 VERSION, __FILE__, __DATE__, rcsid, argv0);
1079 exit(EXIT_SUCCESS); 2089 exit(EXIT_SUCCESS);
1080 break; 2090 break;
1081 case 'h': usage(EXIT_SUCCESS); break; 2091 case 'h': usage(EXIT_SUCCESS); break;
1082 case 'f': 2092 case 'f':
1083 if (from_file) err("Don't specify -f twice"); 2093 if (from_file) warn("You prob don't want to specify -f twice");
1084 from_file = xstrdup(optarg); 2094 from_file = optarg;
2095 break;
2096 case 'E':
2097 match_etypes = optarg;
2098 break;
2099 case 'M':
2100 match_bits = atoi(optarg);
2101 if (match_bits == 0) {
2102 if (strcmp(optarg, "ELFCLASS32") == 0)
2103 match_bits = 32;
2104 if (strcmp(optarg, "ELFCLASS64") == 0)
2105 match_bits = 64;
2106 }
2107 break;
2108 case 'O':
2109 if (sscanf(optarg, "%o", &match_perms) == -1)
2110 match_bits = 0;
1085 break; 2111 break;
1086 case 'o': { 2112 case 'o': {
1087 FILE *fp = NULL;
1088 if ((fp = freopen(optarg, "w", stdout)) == NULL) 2113 if (freopen(optarg, "w", stdout) == NULL)
1089 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2114 errp("Could not freopen(%s)", optarg);
1090 SET_STDOUT(fp);
1091 break; 2115 break;
1092 } 2116 }
1093 2117 case 'k':
2118 xarraypush_str(find_section_arr, optarg);
2119 break;
1094 case 's': { 2120 case 's': {
1095 size_t len; 2121 /* historically, this was comma delimited */
1096 if (find_sym) err("Don't specify -s twice"); 2122 char *this_sym = strtok(optarg, ",");
1097 find_sym = xstrdup(optarg); 2123 while (this_sym) {
1098 len = strlen(find_sym) + 1; 2124 xarraypush_str(find_sym_arr, this_sym);
1099 versioned_symname = (char*)xmalloc(sizeof(char) * (len+1)); 2125 this_sym = strtok(NULL, ",");
1100 sprintf(versioned_symname, "%s@", find_sym); 2126 }
1101 break; 2127 break;
1102 } 2128 }
2129 case 'N':
2130 xarraypush_str(find_lib_arr, optarg);
2131 break;
1103 case 'N': { 2132 case 'F': {
1104 if (find_lib) err("Don't specify -N twice"); 2133 if (out_format) warn("You prob don't want to specify -F twice");
1105 find_lib = xstrdup(optarg); 2134 out_format = optarg;
1106 break; 2135 break;
1107 } 2136 }
1108
1109 case 'F': { 2137 case 'z': {
1110 if (out_format) err("Don't specify -F twice"); 2138 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1111 out_format = xstrdup(optarg); 2139 size_t x;
2140
2141 for (x = 0; x < strlen(optarg); x++) {
2142 switch (optarg[x]) {
2143 case 'p':
2144 case 'P':
2145 do_pax_state(optarg[x], PAGEEXEC);
2146 break;
2147 case 's':
2148 case 'S':
2149 do_pax_state(optarg[x], SEGMEXEC);
2150 break;
2151 case 'm':
2152 case 'M':
2153 do_pax_state(optarg[x], MPROTECT);
2154 break;
2155 case 'e':
2156 case 'E':
2157 do_pax_state(optarg[x], EMUTRAMP);
2158 break;
2159 case 'r':
2160 case 'R':
2161 do_pax_state(optarg[x], RANDMMAP);
2162 break;
2163 case 'x':
2164 case 'X':
2165 do_pax_state(optarg[x], RANDEXEC);
2166 break;
2167 default:
2168 break;
2169 }
2170 }
2171 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
2172 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
2173 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
2174 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
2175 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
2176 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
2177 setpax = flags;
1112 break; 2178 break;
1113 } 2179 }
1114 2180 case 'Z': show_size = 1; break;
1115 case 'g': gmatch = 1; 2181 case 'g': ++g_match; break;
2182 case 'L': load_cache_config = use_ldcache = 1; break;
1116 case 'y': scan_symlink = 0; break; 2183 case 'y': scan_symlink = 0; break;
2184 case 'A': scan_archives = 1; break;
2185 case 'C': color_init(true); break;
1117 case 'B': show_banner = 0; break; 2186 case 'B': show_banner = 0; break;
1118 case 'l': scan_ldpath = 1; break; 2187 case 'l': load_cache_config = scan_ldpath = 1; break;
1119 case 'p': scan_envpath = 1; break; 2188 case 'p': scan_envpath = 1; break;
1120 case 'R': dir_recurse = 1; break; 2189 case 'R': dir_recurse = 1; break;
1121 case 'm': dir_crossmount = 0; break; 2190 case 'm': dir_crossmount = 0; break;
2191 case 'X': ++fix_elf; break;
1122 case 'x': show_pax = 1; break; 2192 case 'x': show_pax = 1; break;
1123 case 'e': show_phdr = 1; break; 2193 case 'e': show_phdr = 1; break;
1124 case 't': show_textrel = 1; break; 2194 case 't': show_textrel = 1; break;
1125 case 'r': show_rpath = 1; break; 2195 case 'r': show_rpath = 1; break;
1126 case 'n': show_needed = 1; break; 2196 case 'n': show_needed = 1; break;
1128 case 'b': show_bind = 1; break; 2198 case 'b': show_bind = 1; break;
1129 case 'S': show_soname = 1; break; 2199 case 'S': show_soname = 1; break;
1130 case 'T': show_textrels = 1; break; 2200 case 'T': show_textrels = 1; break;
1131 case 'q': be_quiet = 1; break; 2201 case 'q': be_quiet = 1; break;
1132 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2202 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1133 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 2203 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1134 2204 case 'D': show_endian = 1; break;
2205 case 'I': show_osabi = 1; break;
2206 case 'Y': show_eabi = 1; break;
2207 case 128:
2208 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2209 if (root_fd == -1)
2210 err("Could not open root: %s", optarg);
2211 break;
2212 case 129: load_cache_config = use_ldpath = 1; break;
1135 case ':': 2213 case ':':
1136 err("Option missing parameter\n"); 2214 err("Option '%c' is missing parameter", optopt);
1137 case '?': 2215 case '?':
1138 err("Unknown option\n"); 2216 err("Unknown option '%c' or argument missing", optopt);
1139 default: 2217 default:
1140 err("Unhandled option '%c'", i); 2218 err("Unhandled option '%c'; please report this", i);
1141 } 2219 }
1142 } 2220 }
1143 2221 if (show_textrels && be_verbose)
2222 has_objdump = bin_in_path("objdump");
2223 /* flatten arrays for display */
2224 if (array_cnt(find_sym_arr))
2225 find_sym = array_flatten_str(find_sym_arr);
2226 if (array_cnt(find_lib_arr))
2227 find_lib = array_flatten_str(find_lib_arr);
2228 if (array_cnt(find_section_arr))
2229 find_section = array_flatten_str(find_section_arr);
1144 /* let the format option override all other options */ 2230 /* let the format option override all other options */
1145 if (out_format) { 2231 if (out_format) {
1146 show_pax = show_phdr = show_textrel = show_rpath = \ 2232 show_pax = show_phdr = show_textrel = show_rpath = \
1147 show_needed = show_interp = show_bind = show_soname = \ 2233 show_needed = show_interp = show_bind = show_soname = \
1148 show_textrels = 0; 2234 show_textrels = show_perms = show_endian = show_size = \
2235 show_osabi = show_eabi = 0;
1149 for (i = 0; out_format[i]; ++i) { 2236 for (i = 0; out_format[i]; ++i) {
1150 if (!IS_MODIFIER(out_format[i])) continue; 2237 if (!IS_MODIFIER(out_format[i])) continue;
1151 2238
1152 switch (out_format[++i]) { 2239 switch (out_format[++i]) {
2240 case '+': break;
1153 case '%': break; 2241 case '%': break;
1154 case '#': break; 2242 case '#': break;
1155 case 'F': break; 2243 case 'F': break;
1156 case 'p': break; 2244 case 'p': break;
1157 case 'f': break; 2245 case 'f': break;
2246 case 'k': break;
1158 case 's': break; 2247 case 's': break;
1159 case 'N': break; 2248 case 'N': break;
1160 case 'o': break; 2249 case 'o': break;
2250 case 'a': break;
2251 case 'M': break;
2252 case 'Z': show_size = 1; break;
2253 case 'D': show_endian = 1; break;
2254 case 'I': show_osabi = 1; break;
2255 case 'Y': show_eabi = 1; break;
2256 case 'O': show_perms = 1; break;
1161 case 'x': show_pax = 1; break; 2257 case 'x': show_pax = 1; break;
1162 case 'e': show_phdr = 1; break; 2258 case 'e': show_phdr = 1; break;
1163 case 't': show_textrel = 1; break; 2259 case 't': show_textrel = 1; break;
1164 case 'r': show_rpath = 1; break; 2260 case 'r': show_rpath = 1; break;
1165 case 'n': show_needed = 1; break; 2261 case 'n': show_needed = 1; break;
1166 case 'i': show_interp = 1; break; 2262 case 'i': show_interp = 1; break;
1167 case 'b': show_bind = 1; break; 2263 case 'b': show_bind = 1; break;
1168 case 'S': show_soname = 1; break; 2264 case 'S': show_soname = 1; break;
1169 case 'T': show_textrels = 1; break; 2265 case 'T': show_textrels = 1; break;
1170 default: 2266 default:
1171 err("Invalid format specifier '%c' (byte %i)", 2267 err("invalid format specifier '%c' (byte %i)",
1172 out_format[i], i+1); 2268 out_format[i], i+1);
1173 } 2269 }
1174 } 2270 }
1175 2271
1176 /* construct our default format */ 2272 /* construct our default format */
1177 } else { 2273 } else {
1178 size_t fmt_len = 30; 2274 size_t fmt_len = 30;
1179 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2275 out_format = xmalloc(sizeof(char) * fmt_len);
2276 *out_format = '\0';
1180 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2277 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1181 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2278 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
2279 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2280 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
2281 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
2282 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2283 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1182 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 2284 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1183 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2285 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1184 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2286 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1185 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2287 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1186 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2288 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1187 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len); 2289 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
1188 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len); 2290 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
1189 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len); 2291 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
1190 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 2292 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
2293 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
1191 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len); 2294 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
1192 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2295 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1193 } 2296 }
1194 if (be_verbose > 2) printf("Format: %s\n", out_format); 2297 if (be_verbose > 2) printf("Format: %s\n", out_format);
1195 2298
1196 /* now lets actually do the scanning */ 2299 /* now lets actually do the scanning */
1197 if (scan_ldpath || (show_rpath && be_quiet)) 2300 if (load_cache_config)
1198 load_ld_so_conf(); 2301 load_ld_cache_config(__PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1199 if (scan_ldpath) scanelf_ldpath(); 2302 if (scan_ldpath) scanelf_ldpath();
1200 if (scan_envpath) scanelf_envpath(); 2303 if (scan_envpath) scanelf_envpath();
2304 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
2305 from_file = "-";
1201 if (from_file) { 2306 if (from_file) {
1202 scanelf_from_file(from_file); 2307 scanelf_from_file(from_file);
1203 free(from_file);
1204 from_file = *argv; 2308 from_file = *argv;
1205 } 2309 }
1206 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 2310 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1207 err("Nothing to scan !?"); 2311 err("Nothing to scan !?");
1208 while (optind < argc) { 2312 while (optind < argc) {
1209 search_path = argv[optind++]; 2313 search_path = argv[optind++];
1210 scanelf_dir(search_path); 2314 ret = scanelf_dir(search_path);
1211 } 2315 }
1212 2316
1213 /* clean up */ 2317 /* clean up */
1214 if (find_sym) { 2318 xarrayfree(ldpaths);
2319 xarrayfree(find_sym_arr);
2320 xarrayfree(find_lib_arr);
2321 xarrayfree(find_section_arr);
1215 free(find_sym); 2322 free(find_sym);
1216 free(versioned_symname); 2323 free(find_lib);
1217 } 2324 free(find_section);
1218 if (find_lib) free(find_lib);
1219 if (out_format) free(out_format);
1220 for (i = 0; ldpaths[i]; ++i)
1221 free(ldpaths[i]);
1222}
1223 2325
1224 2326 if (ldcache != 0)
1225 2327 munmap(ldcache, ldcache_size);
1226/* utility funcs */
1227static char *xstrdup(const char *s)
1228{
1229 char *ret = strdup(s);
1230 if (!ret) err("Could not strdup(): %s", strerror(errno));
1231 return ret; 2328 return ret;
1232} 2329}
1233 2330
1234static void *xmalloc(size_t size) 2331static char **get_split_env(const char *envvar)
1235{ 2332{
1236 void *ret = malloc(size); 2333 const char *delims = " \t\n";
1237 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size); 2334 char **envvals = NULL;
1238 return ret; 2335 char *env, *s;
1239} 2336 int nentry;
1240 2337
1241static void xstrcat(char **dst, const char *src, size_t *curr_len) 2338 if ((env = getenv(envvar)) == NULL)
1242{ 2339 return NULL;
1243 size_t new_len;
1244 2340
1245 new_len = strlen(*dst) + strlen(src); 2341 env = xstrdup(env);
1246 if (*curr_len <= new_len) { 2342 if (env == NULL)
1247 *curr_len = new_len + (*curr_len / 2); 2343 return NULL;
1248 *dst = realloc(*dst, *curr_len);
1249 if (!*dst)
1250 err("could not realloc %li bytes", (unsigned long)*curr_len);
1251 }
1252 2344
1253 strcat(*dst, src); 2345 s = strtok(env, delims);
1254} 2346 if (s == NULL) {
2347 free(env);
2348 return NULL;
2349 }
1255 2350
1256static inline void xchrcat(char **dst, const char append, size_t *curr_len) 2351 nentry = 0;
1257{ 2352 while (s != NULL) {
1258 static char my_app[2]; 2353 ++nentry;
1259 my_app[0] = append; 2354 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
1260 my_app[1] = '\0'; 2355 envvals[nentry-1] = s;
1261 xstrcat(dst, my_app, curr_len); 2356 s = strtok(NULL, delims);
1262} 2357 }
2358 envvals[nentry] = NULL;
1263 2359
2360 /* don't want to free(env) as it contains the memory that backs
2361 * the envvals array of strings */
2362 return envvals;
2363}
1264 2364
2365static void parseenv(void)
2366{
2367 color_init(false);
2368 qa_textrels = get_split_env("QA_TEXTRELS");
2369 qa_execstack = get_split_env("QA_EXECSTACK");
2370 qa_wx_load = get_split_env("QA_WX_LOAD");
2371}
2372
2373#ifdef __PAX_UTILS_CLEANUP
2374static void cleanup(void)
2375{
2376 free(out_format);
2377 free(qa_textrels);
2378 free(qa_execstack);
2379 free(qa_wx_load);
2380}
2381#endif
1265 2382
1266int main(int argc, char *argv[]) 2383int main(int argc, char *argv[])
1267{ 2384{
2385 int ret;
1268 if (argc < 2) 2386 if (argc < 2)
1269 usage(EXIT_FAILURE); 2387 usage(EXIT_FAILURE);
2388 parseenv();
1270 parseargs(argc, argv); 2389 ret = parseargs(argc, argv);
1271 fclose(stdout); 2390 fclose(stdout);
1272#ifdef __BOUNDS_CHECKING_ON 2391#ifdef __PAX_UTILS_CLEANUP
1273 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2392 cleanup();
2393 warn("The calls to add/delete heap should be off:\n"
2394 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2395 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1274#endif 2396#endif
1275 return EXIT_SUCCESS; 2397 return ret;
1276} 2398}
2399
2400/* Match filename against entries in matchlist, return TRUE
2401 * if the file is listed */
2402static int file_matches_list(const char *filename, char **matchlist)
2403{
2404 char **file;
2405 char *match;
2406 char buf[__PAX_UTILS_PATH_MAX];
2407
2408 if (matchlist == NULL)
2409 return 0;
2410
2411 for (file = matchlist; *file != NULL; file++) {
2412 if (search_path) {
2413 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2414 match = buf;
2415 } else {
2416 match = *file;
2417 }
2418 if (fnmatch(match, filename, 0) == 0)
2419 return 1;
2420 }
2421 return 0;
2422}

Legend:
Removed from v.1.88  
changed lines
  Added in v.1.248

  ViewVC Help
Powered by ViewVC 1.1.20