/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.88 Revision 1.249
1/* 1/*
2 * Copyright 2003-2005 Gentoo Foundation 2 * Copyright 2003-2012 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.88 2005/09/30 03:30:54 vapier Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.249 2012/11/04 08:23:12 vapier Exp $
5 * 5 *
6 * Copyright 2003-2005 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2012 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2005 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2012 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10#include <stdio.h> 10static const char rcsid[] = "$Id: scanelf.c,v 1.249 2012/11/04 08:23:12 vapier Exp $";
11#include <stdlib.h> 11const char argv0[] = "scanelf";
12#include <sys/types.h> 12
13#include <libgen.h>
14#include <limits.h>
15#define __USE_GNU
16#include <string.h>
17#include <errno.h>
18#include <unistd.h>
19#include <sys/stat.h>
20#include <dirent.h>
21#include <getopt.h>
22#include <assert.h>
23#include "paxelf.h" 13#include "paxinc.h"
24 14
25static const char *rcsid = "$Id: scanelf.c,v 1.88 2005/09/30 03:30:54 vapier Exp $";
26#define argv0 "scanelf"
27
28#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
29
30
31 16
32/* prototypes */ 17/* prototypes */
33static void scanelf_file(const char *filename); 18static int file_matches_list(const char *filename, char **matchlist);
34static void scanelf_dir(const char *path);
35static void scanelf_ldpath();
36static void scanelf_envpath();
37static void usage(int status);
38static void parseargs(int argc, char *argv[]);
39static char *xstrdup(const char *s);
40static void *xmalloc(size_t size);
41static void xstrcat(char **dst, const char *src, size_t *curr_len);
42static inline void xchrcat(char **dst, const char append, size_t *curr_len);
43 19
44/* variables to control behavior */ 20/* variables to control behavior */
45static char *ldpaths[256]; 21static char *match_etypes = NULL;
22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
46static char scan_ldpath = 0; 23static char scan_ldpath = 0;
47static char scan_envpath = 0; 24static char scan_envpath = 0;
48static char scan_symlink = 1; 25static char scan_symlink = 1;
26static char scan_archives = 0;
49static char dir_recurse = 0; 27static char dir_recurse = 0;
50static char dir_crossmount = 1; 28static char dir_crossmount = 1;
51static char show_pax = 0; 29static char show_pax = 0;
30static char show_perms = 0;
31static char show_size = 0;
52static char show_phdr = 0; 32static char show_phdr = 0;
53static char show_textrel = 0; 33static char show_textrel = 0;
54static char show_rpath = 0; 34static char show_rpath = 0;
55static char show_needed = 0; 35static char show_needed = 0;
56static char show_interp = 0; 36static char show_interp = 0;
57static char show_bind = 0; 37static char show_bind = 0;
58static char show_soname = 0; 38static char show_soname = 0;
59static char show_textrels = 0; 39static char show_textrels = 0;
60static char show_banner = 1; 40static char show_banner = 1;
41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
61static char be_quiet = 0; 44static char be_quiet = 0;
62static char be_verbose = 0; 45static char be_verbose = 0;
63static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
64static char *find_sym = NULL, *versioned_symname = NULL; 47static char be_semi_verbose = 0;
48static char *find_sym = NULL;
49static array_t _find_sym_arr = array_init_decl, *find_sym_arr = &_find_sym_arr;
50static array_t _find_sym_regex_arr = array_init_decl, *find_sym_regex_arr = &_find_sym_regex_arr;
65static char *find_lib = NULL; 51static char *find_lib = NULL;
52static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
53static char *find_section = NULL;
54static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
66static char *out_format = NULL; 55static char *out_format = NULL;
67static char *search_path = NULL; 56static char *search_path = NULL;
57static char fix_elf = 0;
68static char gmatch = 0; 58static char g_match = 0;
59static char use_ldcache = 0;
60static char use_ldpath = 0;
69 61
62static char **qa_textrels = NULL;
63static char **qa_execstack = NULL;
64static char **qa_wx_load = NULL;
65static int root_fd = AT_FDCWD;
70 66
67static int match_bits = 0;
68static unsigned int match_perms = 0;
69static void *ldcache = NULL;
70static size_t ldcache_size = 0;
71static unsigned long setpax = 0UL;
72
73static int has_objdump = 0;
74
75/* find the path to a file by name */
76static int bin_in_path(const char *fname)
77{
78 char fullpath[__PAX_UTILS_PATH_MAX];
79 char *path, *p;
80
81 path = getenv("PATH");
82 if (!path)
83 return 0;
84
85 while ((p = strrchr(path, ':')) != NULL) {
86 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
87 *p = 0;
88 if (access(fullpath, R_OK) != -1)
89 return 1;
90 }
91
92 return 0;
93}
94
95static FILE *fopenat_r(int dir_fd, const char *path)
96{
97 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
98 if (fd == -1)
99 return NULL;
100 return fdopen(fd, "re");
101}
102
103static const char *root_rel_path(const char *path)
104{
105 /*
106 * openat() will ignore the dirfd if path starts with
107 * a /, so consume all of that noise
108 *
109 * XXX: we don't handle relative paths like ../ that
110 * break out of the --root option, but for now, just
111 * don't do that :P.
112 */
113 if (root_fd != AT_FDCWD) {
114 while (*path == '/')
115 ++path;
116 if (*path == '\0')
117 path = ".";
118 }
119
120 return path;
121}
122
71/* sub-funcs for scanelf_file() */ 123/* sub-funcs for scanelf_fileat() */
72static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 124static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
73{ 125{
74 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 126 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
127
128 /* debug sections */
129 void *symtab = elf_findsecbyname(elf, ".symtab");
130 void *strtab = elf_findsecbyname(elf, ".strtab");
131 /* runtime sections */
132 void *dynsym = elf_findsecbyname(elf, ".dynsym");
133 void *dynstr = elf_findsecbyname(elf, ".dynstr");
134
135 /*
136 * If the sections are marked NOBITS, then they don't exist, so we just
137 * skip them. This let's us work sanely with splitdebug ELFs (rather
138 * than spewing a lot of "corrupt ELF" messages later on). In malformed
139 * ELFs, the section might be wrongly set to NOBITS, but screw em.
140 */
75#define GET_SYMTABS(B) \ 141#define GET_SYMTABS(B) \
76 if (elf->elf_class == ELFCLASS ## B) { \ 142 if (elf->elf_class == ELFCLASS ## B) { \
77 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \ 143 Elf ## B ## _Shdr *esymtab = symtab; \
78 /* debug sections */ \ 144 Elf ## B ## _Shdr *estrtab = strtab; \
79 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \ 145 Elf ## B ## _Shdr *edynsym = dynsym; \
80 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \ 146 Elf ## B ## _Shdr *edynstr = dynstr; \
81 /* runtime sections */ \ 147 \
82 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \ 148 if (symtab && EGET(esymtab->sh_type) == SHT_NOBITS) \
83 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \ 149 symtab = NULL; \
150 if (dynsym && EGET(edynsym->sh_type) == SHT_NOBITS) \
151 dynsym = NULL; \
84 if (symtab && dynsym) { \ 152 if (symtab && dynsym) \
85 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 153 *sym = (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) ? symtab : dynsym; \
86 } else { \ 154 else \
87 *sym = (void*)(symtab ? symtab : dynsym); \ 155 *sym = symtab ? symtab : dynsym; \
88 } \ 156 \
157 if (strtab && EGET(estrtab->sh_type) == SHT_NOBITS) \
158 strtab = NULL; \
159 if (dynstr && EGET(edynstr->sh_type) == SHT_NOBITS) \
160 dynstr = NULL; \
89 if (strtab && dynstr) { \ 161 if (strtab && dynstr) \
90 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \ 162 *str = (EGET(estrtab->sh_size) > EGET(edynstr->sh_size)) ? strtab : dynstr; \
91 } else { \ 163 else \
92 *tab = (void*)(strtab ? strtab : dynstr); \ 164 *str = strtab ? strtab : dynstr; \
93 } \
94 } 165 }
95 GET_SYMTABS(32) 166 GET_SYMTABS(32)
96 GET_SYMTABS(64) 167 GET_SYMTABS(64)
168
169 if (*sym && *str)
170 return;
171
172 /*
173 * damn, they're really going to make us work for it huh?
174 * reconstruct the section header info out of the dynamic
175 * tags so we can see what symbols this guy uses at runtime.
176 */
177#define GET_SYMTABS_DT(B) \
178 if (elf->elf_class == ELFCLASS ## B) { \
179 size_t i; \
180 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
181 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
182 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
183 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
184 Elf ## B ## _Dyn *dyn; \
185 Elf ## B ## _Off offset; \
186 \
187 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
188 vsym = vstr = vhash = vgnu_hash = 0; \
189 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
190 memset(&str_shdr, 0, sizeof(str_shdr)); \
191 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
192 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
193 continue; \
194 \
195 offset = EGET(phdr[i].p_offset); \
196 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
197 continue; \
198 \
199 dyn = DYN ## B (elf->vdata + offset); \
200 while (EGET(dyn->d_tag) != DT_NULL) { \
201 switch (EGET(dyn->d_tag)) { \
202 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
203 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
204 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
205 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
206 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
207 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
208 } \
209 ++dyn; \
210 } \
211 if (vsym && vstr) \
212 break; \
213 } \
214 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
215 return; \
216 \
217 /* calc offset into the ELF by finding the load addr of the syms */ \
218 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
219 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
220 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
221 offset = EGET(phdr[i].p_offset); \
222 \
223 if (EGET(phdr[i].p_type) != PT_LOAD) \
224 continue; \
225 \
226 if (vhash >= vaddr && vhash < vaddr + filesz) { \
227 /* Scan the hash table to see how many entries we have */ \
228 Elf32_Word max_sym_idx = 0; \
229 Elf32_Word *hashtbl = elf->vdata + offset + (vhash - vaddr); \
230 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
231 Elf32_Word nchains = EGET(hashtbl[1]); \
232 Elf32_Word *buckets = &hashtbl[2]; \
233 Elf32_Word *chains = &buckets[nbuckets]; \
234 Elf32_Word sym_idx; \
235 \
236 for (b = 0; b < nbuckets; ++b) { \
237 if (!buckets[b]) \
238 continue; \
239 for (sym_idx = buckets[b]; sym_idx < nchains && sym_idx; sym_idx = chains[sym_idx]) \
240 if (max_sym_idx < sym_idx) \
241 max_sym_idx = sym_idx; \
242 } \
243 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
244 } \
245 \
246 if (vsym >= vaddr && vsym < vaddr + filesz) { \
247 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
248 *sym = &sym_shdr; \
249 } \
250 \
251 if (vstr >= vaddr && vstr < vaddr + filesz) { \
252 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
253 *str = &str_shdr; \
254 } \
255 } \
256 }
257 GET_SYMTABS_DT(32)
258 GET_SYMTABS_DT(64)
97} 259}
260
98static char *scanelf_file_pax(elfobj *elf, char *found_pax) 261static char *scanelf_file_pax(elfobj *elf, char *found_pax)
99{ 262{
100 static char *paxflags;
101 static char ret[7]; 263 static char ret[7];
102 unsigned long i, shown; 264 unsigned long i, shown;
103 265
104 if (!show_pax) return NULL; 266 if (!show_pax) return NULL;
105 267
112 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 274 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
113 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 275 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
114 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 276 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
115 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \ 277 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
116 continue; \ 278 continue; \
117 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 279 if (fix_elf && setpax) { \
280 /* set the paxctl flags */ \
281 ESET(phdr[i].p_flags, setpax); \
282 } \
283 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
118 continue; \ 284 continue; \
119 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 285 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
120 *found_pax = 1; \ 286 *found_pax = 1; \
121 ++shown; \ 287 ++shown; \
122 break; \ 288 break; \
124 } 290 }
125 SHOW_PAX(32) 291 SHOW_PAX(32)
126 SHOW_PAX(64) 292 SHOW_PAX(64)
127 } 293 }
128 294
295 /* Note: We do not support setting EI_PAX if not PT_PAX_FLAGS
296 * was found. This is known to break ELFs on glibc systems,
297 * and mainline PaX has deprecated use of this for a long time.
298 * We could support changing PT_GNU_STACK, but that doesn't
299 * seem like it's worth the effort. #411919
300 */
301
129 /* fall back to EI_PAX if no PT_PAX was found */ 302 /* fall back to EI_PAX if no PT_PAX was found */
130 if (!*ret) { 303 if (!*ret) {
304 static char *paxflags;
131 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 305 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
132 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) { 306 if (!be_quiet || (be_quiet && EI_PAX_FLAGS(elf))) {
133 *found_pax = 1; 307 *found_pax = 1;
134 return paxflags; 308 return (be_wewy_wewy_quiet ? NULL : paxflags);
135 } 309 }
136 strncpy(ret, paxflags, sizeof(ret)); 310 strncpy(ret, paxflags, sizeof(ret));
137 } 311 }
138 312
139 if (be_quiet && !shown) 313 if (be_wewy_wewy_quiet || (be_quiet && !shown))
140 return NULL; 314 return NULL;
315 else
141 return ret; 316 return ret;
142
143} 317}
318
144static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 319static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
145{ 320{
146 static char ret[12]; 321 static char ret[12];
147 char *found; 322 char *found;
148 unsigned long i, off, shown, check_flags;
149 unsigned char multi_stack, multi_relro, multi_load; 323 unsigned long i, shown, multi_stack, multi_relro, multi_load;
324 int max_pt_load;
150 325
151 if (!show_phdr) return NULL; 326 if (!show_phdr) return NULL;
152 327
153 memcpy(ret, "--- --- ---\0", 12); 328 memcpy(ret, "--- --- ---\0", 12);
154 329
155 shown = 0; 330 shown = 0;
156 multi_stack = multi_relro = multi_load = 0; 331 multi_stack = multi_relro = multi_load = 0;
332 max_pt_load = elf_max_pt_load(elf);
157 333
158 if (elf->phdr) { 334#define NOTE_GNU_STACK ".note.GNU-stack"
159#define SHOW_PHDR(B) \ 335#define SHOW_PHDR(B) \
160 if (elf->elf_class == ELFCLASS ## B) { \ 336 if (elf->elf_class == ELFCLASS ## B) { \
161 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 337 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
338 Elf ## B ## _Off offset; \
339 uint32_t flags, check_flags; \
340 if (elf->phdr != NULL) { \
162 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 341 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
163 uint32_t flags; \
164 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 342 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
165 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 343 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
344 if (multi_stack++) \
166 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 345 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
346 if (file_matches_list(elf->filename, qa_execstack)) \
347 continue; \
167 found = found_phdr; \ 348 found = found_phdr; \
168 off = 0; \ 349 offset = 0; \
169 check_flags = PF_X; \ 350 check_flags = PF_X; \
170 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 351 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
352 if (multi_relro++) \
171 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 353 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
172 found = found_relro; \ 354 found = found_relro; \
173 off = 4; \ 355 offset = 4; \
174 check_flags = PF_X; \ 356 check_flags = PF_X; \
175 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 357 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
176 if (multi_load++ > 2) warnf("%s: more than 2 PT_LOAD's !?", elf->filename); \ 358 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
359 if (multi_load++ > max_pt_load) \
360 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
361 if (file_matches_list(elf->filename, qa_wx_load)) \
362 continue; \
177 found = found_load; \ 363 found = found_load; \
178 off = 8; \ 364 offset = 8; \
179 check_flags = PF_W|PF_X; \ 365 check_flags = PF_W|PF_X; \
180 } else \ 366 } else \
181 continue; \ 367 continue; \
182 flags = EGET(phdr[i].p_flags); \ 368 flags = EGET(phdr[i].p_flags); \
183 if (be_quiet && ((flags & check_flags) != check_flags)) \ 369 if (be_quiet && ((flags & check_flags) != check_flags)) \
184 continue; \ 370 continue; \
371 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
372 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
373 ret[3] = ret[7] = '!'; \
374 flags = EGET(phdr[i].p_flags); \
375 } \
185 memcpy(ret+off, gnu_short_stack_flags(flags), 3); \ 376 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
186 *found = 1; \ 377 *found = 1; \
187 ++shown; \ 378 ++shown; \
379 } \
380 } else if (elf->shdr != NULL) { \
381 /* no program headers which means this is prob an object file */ \
382 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
383 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
384 char *str; \
385 if ((void*)strtbl > elf->data_end) \
386 goto skip_this_shdr##B; \
387 check_flags = SHF_WRITE|SHF_EXECINSTR; \
388 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
389 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
390 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
391 str = elf->data + offset; \
392 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \
393 if (!strcmp(str, NOTE_GNU_STACK)) { \
394 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \
395 flags = EGET(shdr[i].sh_flags); \
396 if (be_quiet && ((flags & check_flags) != check_flags)) \
397 continue; \
398 ++*found_phdr; \
399 shown = 1; \
400 if (flags & SHF_WRITE) ret[0] = 'W'; \
401 if (flags & SHF_ALLOC) ret[1] = 'A'; \
402 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \
403 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \
404 break; \
405 } \
406 } \
407 skip_this_shdr##B: \
408 if (!multi_stack) { \
409 if (file_matches_list(elf->filename, qa_execstack)) \
410 return NULL; \
411 *found_phdr = 1; \
412 shown = 1; \
413 memcpy(ret, "!WX", 3); \
414 } \
188 } \ 415 } \
189 } 416 }
190 SHOW_PHDR(32) 417 SHOW_PHDR(32)
191 SHOW_PHDR(64) 418 SHOW_PHDR(64)
192 }
193 419
194 if (be_quiet && !shown) 420 if (be_wewy_wewy_quiet || (be_quiet && !shown))
195 return NULL; 421 return NULL;
196 else 422 else
197 return ret; 423 return ret;
198} 424}
425
426/*
427 * See if this ELF contains a DT_TEXTREL tag in any of its
428 * PT_DYNAMIC sections.
429 */
199static char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 430static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
200{ 431{
201 static char ret[] = "TEXTREL"; 432 static const char *ret = "TEXTREL";
202 unsigned long i; 433 unsigned long i;
203 434
204 if (!show_textrel && !show_textrels) return NULL; 435 if (!show_textrel && !show_textrels) return NULL;
436
437 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
205 438
206 if (elf->phdr) { 439 if (elf->phdr) {
207#define SHOW_TEXTREL(B) \ 440#define SHOW_TEXTREL(B) \
208 if (elf->elf_class == ELFCLASS ## B) { \ 441 if (elf->elf_class == ELFCLASS ## B) { \
209 Elf ## B ## _Dyn *dyn; \ 442 Elf ## B ## _Dyn *dyn; \
210 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 443 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
211 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 444 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
212 Elf ## B ## _Off offset; \ 445 Elf ## B ## _Off offset; \
213 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 446 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
214 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 447 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
215 offset = EGET(phdr[i].p_offset); \ 448 offset = EGET(phdr[i].p_offset); \
216 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 449 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
217 dyn = DYN ## B (elf->data + offset); \ 450 dyn = DYN ## B (elf->vdata + offset); \
218 while (EGET(dyn->d_tag) != DT_NULL) { \ 451 while (EGET(dyn->d_tag) != DT_NULL) { \
219 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 452 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
220 *found_textrel = 1; \ 453 *found_textrel = 1; \
221 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 454 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
222 return (be_wewy_wewy_quiet ? NULL : ret); \ 455 return (be_wewy_wewy_quiet ? NULL : ret); \
229 } 462 }
230 463
231 if (be_quiet || be_wewy_wewy_quiet) 464 if (be_quiet || be_wewy_wewy_quiet)
232 return NULL; 465 return NULL;
233 else 466 else
234 return (char *)" - "; 467 return " - ";
235} 468}
469
470/*
471 * Scan the .text section to see if there are any relocations in it.
472 * Should rewrite this to check PT_LOAD sections that are marked
473 * Executable rather than the section named '.text'.
474 */
236static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 475static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
237{ 476{
238 unsigned long s, r, rmax; 477 unsigned long s, r, rmax;
239 void *symtab_void, *strtab_void, *text_void; 478 void *symtab_void, *strtab_void, *text_void;
240 479
261 Elf ## B ## _Rela *rela; \ 500 Elf ## B ## _Rela *rela; \
262 /* search the section headers for relocations */ \ 501 /* search the section headers for relocations */ \
263 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 502 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
264 uint32_t sh_type = EGET(shdr[s].sh_type); \ 503 uint32_t sh_type = EGET(shdr[s].sh_type); \
265 if (sh_type == SHT_REL) { \ 504 if (sh_type == SHT_REL) { \
266 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 505 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
267 rela = NULL; \ 506 rela = NULL; \
268 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 507 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
269 } else if (sh_type == SHT_RELA) { \ 508 } else if (sh_type == SHT_RELA) { \
270 rel = NULL; \ 509 rel = NULL; \
271 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 510 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
272 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 511 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
273 } else \ 512 } else \
274 continue; \ 513 continue; \
275 /* now see if any of the relocs are in the .text */ \ 514 /* now see if any of the relocs are in the .text */ \
276 for (r = 0; r < rmax; ++r) { \ 515 for (r = 0; r < rmax; ++r) { \
291 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \ 530 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
292 if (be_verbose <= 2) continue; \ 531 if (be_verbose <= 2) continue; \
293 } else \ 532 } else \
294 *found_textrels = 1; \ 533 *found_textrels = 1; \
295 /* locate this relocation symbol name */ \ 534 /* locate this relocation symbol name */ \
296 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 535 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
536 if ((void*)sym > elf->data_end) { \
537 warn("%s: corrupt ELF symbol", elf->filename); \
538 continue; \
539 } \
297 sym_max = ELF ## B ## _R_SYM(r_info); \ 540 sym_max = ELF ## B ## _R_SYM(r_info); \
298 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 541 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
299 sym += sym_max; \ 542 sym += sym_max; \
300 else \ 543 else \
301 sym = NULL; \ 544 sym = NULL; \
302 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 545 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
303 /* show the raw details about this reloc */ \ 546 /* show the raw details about this reloc */ \
304 printf(" %s: ", elf->base_filename); \ 547 printf(" %s: ", elf->base_filename); \
305 if (sym && sym->st_name) \ 548 if (sym && sym->st_name) \
306 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 549 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
307 else \ 550 else \
308 printf("(memory/fake?)"); \ 551 printf("(memory/data?)"); \
309 printf(" [0x%lX]", (unsigned long)r_offset); \ 552 printf(" [0x%lX]", (unsigned long)r_offset); \
310 /* now try to find the closest symbol that this rel is probably in */ \ 553 /* now try to find the closest symbol that this rel is probably in */ \
311 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 554 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
312 func = NULL; \ 555 func = NULL; \
313 offset_tmp = 0; \ 556 offset_tmp = 0; \
314 while (sym_max--) { \ 557 while (sym_max--) { \
315 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \ 558 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
316 func = sym; \ 559 func = sym; \
317 offset_tmp = EGET(sym->st_value); \ 560 offset_tmp = EGET(sym->st_value); \
318 } \ 561 } \
319 ++sym; \ 562 ++sym; \
320 } \ 563 } \
321 printf(" in "); \ 564 printf(" in "); \
322 if (func && func->st_name) \ 565 if (func && func->st_name) { \
323 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 566 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
567 if (r_offset > EGET(func->st_size)) \
568 printf("(optimized out: previous %s)", func_name); \
324 else \ 569 else \
325 printf("(NULL: fake?)"); \ 570 printf("%s", func_name); \
571 } else \
572 printf("(optimized out)"); \
326 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 573 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
574 if (be_verbose && has_objdump) { \
575 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
576 char *sysbuf; \
577 size_t syslen; \
578 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
579 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
580 sysbuf = xmalloc(syslen); \
581 if (end_addr < r_offset) \
582 /* not uncommon when things are optimized out */ \
583 end_addr = r_offset + 0x100; \
584 snprintf(sysbuf, syslen, sysfmt, \
585 (unsigned long)offset_tmp, \
586 (unsigned long)end_addr, \
587 elf->filename, \
588 (unsigned long)r_offset); \
589 fflush(stdout); \
590 if (system(sysbuf)) /* don't care */; \
591 fflush(stdout); \
592 free(sysbuf); \
593 } \
327 } \ 594 } \
328 } } 595 } }
329 SHOW_TEXTRELS(32) 596 SHOW_TEXTRELS(32)
330 SHOW_TEXTRELS(64) 597 SHOW_TEXTRELS(64)
331 } 598 }
333 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 600 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
334 601
335 return NULL; 602 return NULL;
336} 603}
337 604
338static void rpath_security_checks(elfobj *, char *);
339static void rpath_security_checks(elfobj *elf, char *item) { 605static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
606{
340 struct stat st; 607 struct stat st;
341 switch (*item) { 608 switch (*item) {
609 case '/': break;
342 case 0: 610 case '.':
343 warnf("Security problem NULL RPATH in %s", elf->filename); 611 warnf("Security problem with relative %s '%s' in %s", dt_type, item, elf->filename);
344 break; 612 break;
345 case '/': break; 613 case ':':
614 case '\0':
615 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
616 break;
346 case '$': 617 case '$':
347 if (fstat(elf->fd, &st) != -1) 618 if (fstat(elf->fd, &st) != -1)
348 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 619 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
349 warnf("Security problem with RPATH='%s' in %s with mode set of %o", 620 warnf("Security problem with %s='%s' in %s with mode set of %o",
350 item, elf->filename, st.st_mode & 07777); 621 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
351 break; 622 break;
352 default: 623 default:
353 warnf("Maybe? sec problem with RPATH='%s' in %s", item, elf->filename); 624 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
354 break; 625 break;
355 } 626 }
356} 627}
357static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 628static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
358{ 629{
359 unsigned long i, s; 630 unsigned long i;
360 char *rpath, *runpath, **r; 631 char *rpath, *runpath, **r;
361 void *strtbl_void; 632 void *strtbl_void;
362 633
363 if (!show_rpath) return; 634 if (!show_rpath) return;
364 635
375 Elf ## B ## _Off offset; \ 646 Elf ## B ## _Off offset; \
376 Elf ## B ## _Xword word; \ 647 Elf ## B ## _Xword word; \
377 /* Scan all the program headers */ \ 648 /* Scan all the program headers */ \
378 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 649 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
379 /* Just scan dynamic headers */ \ 650 /* Just scan dynamic headers */ \
380 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 651 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
381 offset = EGET(phdr[i].p_offset); \ 652 offset = EGET(phdr[i].p_offset); \
382 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 653 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
383 /* Just scan dynamic RPATH/RUNPATH headers */ \ 654 /* Just scan dynamic RPATH/RUNPATH headers */ \
384 dyn = DYN ## B (elf->data + offset); \ 655 dyn = DYN ## B (elf->vdata + offset); \
385 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 656 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
386 if (word == DT_RPATH) { \ 657 if (word == DT_RPATH) { \
387 r = &rpath; \ 658 r = &rpath; \
388 } else if (word == DT_RUNPATH) { \ 659 } else if (word == DT_RUNPATH) { \
389 r = &runpath; \ 660 r = &runpath; \
393 } \ 664 } \
394 /* Verify the memory is somewhat sane */ \ 665 /* Verify the memory is somewhat sane */ \
395 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 666 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
396 if (offset < (Elf ## B ## _Off)elf->len) { \ 667 if (offset < (Elf ## B ## _Off)elf->len) { \
397 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 668 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
398 *r = (char*)(elf->data + offset); \ 669 *r = elf->data + offset; \
670 /* cache the length in case we need to nuke this section later on */ \
671 if (fix_elf) \
672 offset = strlen(*r); \
399 /* If quiet, don't output paths in ld.so.conf */ \ 673 /* If quiet, don't output paths in ld.so.conf */ \
400 if (be_quiet) { \ 674 if (be_quiet) { \
401 size_t len; \ 675 size_t len; \
402 char *start, *end; \ 676 char *start, *end; \
403 /* note that we only 'chop' off leading known paths. */ \ 677 /* note that we only 'chop' off leading known paths. */ \
404 /* since *r is read-only memory, we can only move the ptr forward. */ \ 678 /* since *r is read-only memory, we can only move the ptr forward. */ \
405 start = *r; \ 679 start = *r; \
406 /* scan each path in : delimited list */ \ 680 /* scan each path in : delimited list */ \
407 while (start) { \ 681 while (start) { \
408 rpath_security_checks(elf, start); \ 682 rpath_security_checks(elf, start, get_elfdtype(word)); \
409 end = strchr(start, ':'); \ 683 end = strchr(start, ':'); \
410 len = (end ? abs(end - start) : strlen(start)); \ 684 len = (end ? abs(end - start) : strlen(start)); \
411 for (s = 0; ldpaths[s]; ++s) { \ 685 if (use_ldcache) { \
686 size_t n; \
687 const char *ldpath; \
688 array_for_each(ldpaths, n, ldpath) \
412 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 689 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
413 *r = (end ? end + 1 : NULL); \ 690 *r = end; \
691 /* corner case ... if RPATH reads "/usr/lib:", we want \
692 * to show ':' rather than '' */ \
693 if (end && end[1] != '\0') \
694 (*r)++; \
414 break; \ 695 break; \
415 } \ 696 } \
416 } \ 697 } \
417 if (!*r || !ldpaths[s] || !end) \ 698 if (!*r || !end) \
418 start = NULL; \ 699 break; \
419 else \ 700 else \
420 start = start + len + 1; \ 701 start = start + len + 1; \
421 } \ 702 } \
422 } \ 703 } \
704 if (*r) { \
705 if (fix_elf > 2 || (fix_elf && **r == '\0')) { \
706 /* just nuke it */ \
707 nuke_it##B: \
708 memset(*r, 0x00, offset); \
709 *r = NULL; \
710 ESET(dyn->d_tag, DT_DEBUG); \
711 ESET(dyn->d_un.d_ptr, 0); \
712 } else if (fix_elf) { \
713 /* try to clean "bad" paths */ \
714 size_t len, tmpdir_len; \
715 char *start, *end; \
716 const char *tmpdir; \
717 start = *r; \
718 tmpdir = (getenv("TMPDIR") ? : "."); \
719 tmpdir_len = strlen(tmpdir); \
720 while (1) { \
721 end = strchr(start, ':'); \
722 if (start == end) { \
723 eat_this_path##B: \
724 len = strlen(end); \
725 memmove(start, end+1, len); \
726 start[len-1] = '\0'; \
727 end = start - 1; \
728 } else if (tmpdir && !strncmp(start, tmpdir, tmpdir_len)) { \
729 if (!end) { \
730 if (start == *r) \
731 goto nuke_it##B; \
732 *--start = '\0'; \
733 } else \
734 goto eat_this_path##B; \
735 } \
736 if (!end) \
737 break; \
738 start = end + 1; \
739 } \
740 if (**r == '\0') \
741 goto nuke_it##B; \
742 } \
743 if (*r) \
423 if (*r) *found_rpath = 1; \ 744 *found_rpath = 1; \
745 } \
424 } \ 746 } \
425 ++dyn; \ 747 ++dyn; \
426 } \ 748 } \
427 } } 749 } }
428 SHOW_RPATH(32) 750 SHOW_RPATH(32)
445 } else if (rpath || runpath) 767 } else if (rpath || runpath)
446 xstrcat(ret, (runpath ? runpath : rpath), ret_len); 768 xstrcat(ret, (runpath ? runpath : rpath), ret_len);
447 else if (!be_quiet) 769 else if (!be_quiet)
448 xstrcat(ret, " - ", ret_len); 770 xstrcat(ret, " - ", ret_len);
449} 771}
772
773#define LDSO_CACHE_MAGIC "ld.so-"
774#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
775#define LDSO_CACHE_VER "1.7.0"
776#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
777#define FLAG_ANY -1
778#define FLAG_TYPE_MASK 0x00ff
779#define FLAG_LIBC4 0x0000
780#define FLAG_ELF 0x0001
781#define FLAG_ELF_LIBC5 0x0002
782#define FLAG_ELF_LIBC6 0x0003
783#define FLAG_REQUIRED_MASK 0xff00
784#define FLAG_SPARC_LIB64 0x0100
785#define FLAG_IA64_LIB64 0x0200
786#define FLAG_X8664_LIB64 0x0300
787#define FLAG_S390_LIB64 0x0400
788#define FLAG_POWERPC_LIB64 0x0500
789#define FLAG_MIPS64_LIBN32 0x0600
790#define FLAG_MIPS64_LIBN64 0x0700
791
792#if defined(__GLIBC__) || defined(__UCLIBC__)
793
794static char *lookup_cache_lib(elfobj *elf, const char *fname)
795{
796 int fd;
797 char *strs;
798 static char buf[__PAX_UTILS_PATH_MAX] = "";
799 const char *cachefile = root_rel_path("/etc/ld.so.cache");
800 struct stat st;
801
802 typedef struct {
803 char magic[LDSO_CACHE_MAGIC_LEN];
804 char version[LDSO_CACHE_VER_LEN];
805 int nlibs;
806 } header_t;
807 header_t *header;
808
809 typedef struct {
810 int flags;
811 int sooffset;
812 int liboffset;
813 } libentry_t;
814 libentry_t *libent;
815
816 if (fname == NULL)
817 return NULL;
818
819 if (ldcache == NULL) {
820 if (fstatat(root_fd, cachefile, &st, 0))
821 return NULL;
822
823 fd = openat(root_fd, cachefile, O_RDONLY);
824 if (fd == -1)
825 return NULL;
826
827 /* cache these values so we only map/unmap the cache file once */
828 ldcache_size = st.st_size;
829 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
830 close(fd);
831
832 if (ldcache == MAP_FAILED) {
833 ldcache = NULL;
834 return NULL;
835 }
836
837 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
838 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
839 {
840 munmap(ldcache, ldcache_size);
841 ldcache = NULL;
842 return NULL;
843 }
844 } else
845 header = ldcache;
846
847 libent = ldcache + sizeof(header_t);
848 strs = (char *) &libent[header->nlibs];
849
850 for (fd = 0; fd < header->nlibs; ++fd) {
851 /* This should be more fine grained, but for now we assume that
852 * diff arches will not be cached together, and we ignore the
853 * the different multilib mips cases.
854 */
855 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
856 continue;
857 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
858 continue;
859
860 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
861 continue;
862
863 /* Return first hit because that is how the ldso rolls */
864 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
865 break;
866 }
867
868 return buf;
869}
870
871#elif defined(__NetBSD__)
872static char *lookup_cache_lib(elfobj *elf, const char *fname)
873{
874 static char buf[__PAX_UTILS_PATH_MAX] = "";
875 static struct stat st;
876 size_t n;
877 char *ldpath;
878
879 array_for_each(ldpath, n, ldpath) {
880 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
881 continue; /* if the pathname is too long, or something went wrong, ignore */
882
883 if (stat(buf, &st) != 0)
884 continue; /* if the lib doesn't exist in *ldpath, look further */
885
886 /* NetBSD doesn't actually do sanity checks, it just loads the file
887 * and if that doesn't work, continues looking in other directories.
888 * This cannot easily be safely emulated, unfortunately. For now,
889 * just assume that if it exists, it's a valid library. */
890
891 return buf;
892 }
893
894 /* not found in any path */
895 return NULL;
896}
897#else
898#ifdef __ELF__
899#warning Cache support not implemented for your target
900#endif
901static char *lookup_cache_lib(elfobj *elf, const char *fname)
902{
903 return NULL;
904}
905#endif
906
907static char *lookup_config_lib(elfobj *elf, char *fname)
908{
909 static char buf[__PAX_UTILS_PATH_MAX] = "";
910 const char *ldpath;
911 size_t n;
912
913 array_for_each(ldpaths, n, ldpath) {
914 snprintf(buf, sizeof(buf), "%s/%s", root_rel_path(ldpath), fname);
915 if (faccessat(root_fd, buf, F_OK, AT_SYMLINK_NOFOLLOW) == 0)
916 return buf;
917 }
918
919 return NULL;
920}
921
450static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 922static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
451{ 923{
452 unsigned long i; 924 unsigned long i;
453 char *needed; 925 char *needed;
454 void *strtbl_void; 926 void *strtbl_void;
927 char *p;
455 928
929 /*
930 * -n -> op==0 -> print all
931 * -N -> op==1 -> print requested
932 */
456 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 933 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
934 return NULL;
457 935
458 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 936 strtbl_void = elf_findsecbyname(elf, ".dynstr");
459 937
460 if (elf->phdr && strtbl_void) { 938 if (elf->phdr && strtbl_void) {
461#define SHOW_NEEDED(B) \ 939#define SHOW_NEEDED(B) \
463 Elf ## B ## _Dyn *dyn; \ 941 Elf ## B ## _Dyn *dyn; \
464 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 942 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
465 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 943 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
466 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 944 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
467 Elf ## B ## _Off offset; \ 945 Elf ## B ## _Off offset; \
946 size_t matched = 0; \
947 /* Walk all the program headers to find the PT_DYNAMIC */ \
468 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 948 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
469 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 949 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
950 continue; \
470 offset = EGET(phdr[i].p_offset); \ 951 offset = EGET(phdr[i].p_offset); \
471 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 952 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
953 continue; \
954 /* Walk all the dynamic tags to find NEEDED entries */ \
472 dyn = DYN ## B (elf->data + offset); \ 955 dyn = DYN ## B (elf->vdata + offset); \
473 while (EGET(dyn->d_tag) != DT_NULL) { \ 956 while (EGET(dyn->d_tag) != DT_NULL) { \
474 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 957 if (EGET(dyn->d_tag) == DT_NEEDED) { \
475 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 958 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
476 if (offset >= (Elf ## B ## _Off)elf->len) { \ 959 if (offset >= (Elf ## B ## _Off)elf->len) { \
477 ++dyn; \ 960 ++dyn; \
478 continue; \ 961 continue; \
479 } \ 962 } \
480 needed = (char*)(elf->data + offset); \ 963 needed = elf->data + offset; \
481 if (op == 0) { \ 964 if (op == 0) { \
965 /* -n -> print all entries */ \
482 if (!be_wewy_wewy_quiet) { \ 966 if (!be_wewy_wewy_quiet) { \
483 if (*found_needed) xchrcat(ret, ',', ret_len); \ 967 if (*found_needed) xchrcat(ret, ',', ret_len); \
968 if (use_ldpath) { \
969 if ((p = lookup_config_lib(elf, needed)) != NULL) \
970 needed = p; \
971 } else if (use_ldcache) { \
972 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
973 needed = p; \
974 } \
484 xstrcat(ret, needed, ret_len); \ 975 xstrcat(ret, needed, ret_len); \
485 } \ 976 } \
486 *found_needed = 1; \ 977 *found_needed = 1; \
487 } else { \ 978 } else { \
488 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 979 /* -N -> print matching entries */ \
980 size_t n; \
981 const char *find_lib_name; \
982 \
983 array_for_each(find_lib_arr, n, find_lib_name) { \
984 int invert = 1; \
985 if (find_lib_name[0] == '!') \
986 invert = 0, ++find_lib_name; \
987 if (!strcmp(find_lib_name, needed) == invert) \
988 ++matched; \
989 } \
990 \
991 if (matched == array_cnt(find_lib_arr)) { \
489 *found_lib = 1; \ 992 *found_lib = 1; \
490 return (be_wewy_wewy_quiet ? NULL : needed); \ 993 return (be_wewy_wewy_quiet ? NULL : find_lib); \
491 } \ 994 } \
492 } \ 995 } \
493 } \ 996 } \
494 ++dyn; \ 997 ++dyn; \
495 } \ 998 } \
524} 1027}
525static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1028static char *scanelf_file_bind(elfobj *elf, char *found_bind)
526{ 1029{
527 unsigned long i; 1030 unsigned long i;
528 struct stat s; 1031 struct stat s;
1032 char dynamic = 0;
529 1033
530 if (!show_bind) return NULL; 1034 if (!show_bind) return NULL;
531 if (!elf->phdr) return NULL; 1035 if (!elf->phdr) return NULL;
532 1036
533#define SHOW_BIND(B) \ 1037#define SHOW_BIND(B) \
535 Elf ## B ## _Dyn *dyn; \ 1039 Elf ## B ## _Dyn *dyn; \
536 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1040 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
537 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1041 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
538 Elf ## B ## _Off offset; \ 1042 Elf ## B ## _Off offset; \
539 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1043 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
540 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1044 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
1045 dynamic = 1; \
541 offset = EGET(phdr[i].p_offset); \ 1046 offset = EGET(phdr[i].p_offset); \
542 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1047 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
543 dyn = DYN ## B (elf->data + offset); \ 1048 dyn = DYN ## B (elf->vdata + offset); \
544 while (EGET(dyn->d_tag) != DT_NULL) { \ 1049 while (EGET(dyn->d_tag) != DT_NULL) { \
545 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1050 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
546 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 1051 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
547 { \ 1052 { \
548 if (be_quiet) return NULL; \ 1053 if (be_quiet) return NULL; \
556 SHOW_BIND(32) 1061 SHOW_BIND(32)
557 SHOW_BIND(64) 1062 SHOW_BIND(64)
558 1063
559 if (be_wewy_wewy_quiet) return NULL; 1064 if (be_wewy_wewy_quiet) return NULL;
560 1065
1066 /* don't output anything if quiet mode and the ELF is static or not setuid */
561 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 1067 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
562 return NULL; 1068 return NULL;
563 } else { 1069 } else {
564 *found_bind = 1; 1070 *found_bind = 1;
565 return (char *) "LAZY"; 1071 return (char *)(dynamic ? "LAZY" : "STATIC");
566 } 1072 }
567} 1073}
568static char *scanelf_file_soname(elfobj *elf, char *found_soname) 1074static char *scanelf_file_soname(elfobj *elf, char *found_soname)
569{ 1075{
570 unsigned long i; 1076 unsigned long i;
582 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1088 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
583 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1089 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
584 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1090 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
585 Elf ## B ## _Off offset; \ 1091 Elf ## B ## _Off offset; \
586 /* only look for soname in shared objects */ \ 1092 /* only look for soname in shared objects */ \
587 if (ehdr->e_type != ET_DYN) \ 1093 if (EGET(ehdr->e_type) != ET_DYN) \
588 return NULL; \ 1094 return NULL; \
589 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1095 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
590 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1096 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
591 offset = EGET(phdr[i].p_offset); \ 1097 offset = EGET(phdr[i].p_offset); \
592 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1098 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
593 dyn = DYN ## B (elf->data + offset); \ 1099 dyn = DYN ## B (elf->vdata + offset); \
594 while (EGET(dyn->d_tag) != DT_NULL) { \ 1100 while (EGET(dyn->d_tag) != DT_NULL) { \
595 if (EGET(dyn->d_tag) == DT_SONAME) { \ 1101 if (EGET(dyn->d_tag) == DT_SONAME) { \
596 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1102 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
597 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1103 if (offset >= (Elf ## B ## _Off)elf->len) { \
598 ++dyn; \ 1104 ++dyn; \
599 continue; \ 1105 continue; \
600 } \ 1106 } \
601 soname = (char*)(elf->data + offset); \ 1107 soname = elf->data + offset; \
602 *found_soname = 1; \ 1108 *found_soname = 1; \
603 return (be_wewy_wewy_quiet ? NULL : soname); \ 1109 return (be_wewy_wewy_quiet ? NULL : soname); \
604 } \ 1110 } \
605 ++dyn; \ 1111 ++dyn; \
606 } \ 1112 } \
609 SHOW_SONAME(64) 1115 SHOW_SONAME(64)
610 } 1116 }
611 1117
612 return NULL; 1118 return NULL;
613} 1119}
1120
1121/*
1122 * We support the symbol form:
1123 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
1124 * If the symbol name is empty, then all symbols are matched.
1125 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1126 * Do not rely on this output format at all.
1127 * Otherwise the symbol name is used to search (either regex or string compare).
1128 * If the first char of the symbol name is a plus ("+"), then only match
1129 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1130 * Putting modifiers in between the percent signs allows for more in depth
1131 * filters. There are groups of modifiers. If you don't specify a member
1132 * of a group, then all types in that group are matched. The current
1133 * groups and their types are:
1134 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1135 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1136 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1137 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1138 * You can search for multiple symbols at once by seperating with a comma (",").
1139 *
1140 * Some examples:
1141 * ELFs with a weak function "foo":
1142 * scanelf -s %wf%foo <ELFs>
1143 * ELFs that define the symbol "main":
1144 * scanelf -s +main <ELFs>
1145 * scanelf -s %d%main <ELFs>
1146 * ELFs that refer to the undefined symbol "brk":
1147 * scanelf -s -brk <ELFs>
1148 * scanelf -s %u%brk <ELFs>
1149 * All global defined objects in an ELF:
1150 * scanelf -s %ogd% <ELF>
1151 */
1152static void
1153scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1154 unsigned int stt, unsigned int stb, unsigned int shn, unsigned long size)
1155{
1156 const char *this_sym;
1157 size_t n;
1158
1159 array_for_each(find_sym_arr, n, this_sym) {
1160 bool inc_notype, inc_object, inc_func, inc_file,
1161 inc_local, inc_global, inc_weak,
1162 inc_def, inc_undef, inc_abs, inc_common;
1163
1164 /* symbol selection! */
1165 inc_notype = inc_object = inc_func = inc_file = \
1166 inc_local = inc_global = inc_weak = \
1167 inc_def = inc_undef = inc_abs = inc_common = \
1168 (*this_sym != '%');
1169
1170 /* parse the contents of %...% */
1171 if (!inc_notype) {
1172 while (*(this_sym++)) {
1173 if (*this_sym == '%') {
1174 ++this_sym;
1175 break;
1176 }
1177 switch (*this_sym) {
1178 case 'n': inc_notype = true; break;
1179 case 'o': inc_object = true; break;
1180 case 'f': inc_func = true; break;
1181 case 'F': inc_file = true; break;
1182 case 'l': inc_local = true; break;
1183 case 'g': inc_global = true; break;
1184 case 'w': inc_weak = true; break;
1185 case 'd': inc_def = true; break;
1186 case 'u': inc_undef = true; break;
1187 case 'a': inc_abs = true; break;
1188 case 'c': inc_common = true; break;
1189 default: err("invalid symbol selector '%c'", *this_sym);
1190 }
1191 }
1192
1193 /* If no types are matched, not match all */
1194 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1195 inc_notype = inc_object = inc_func = inc_file = true;
1196 if (!inc_local && !inc_global && !inc_weak)
1197 inc_local = inc_global = inc_weak = true;
1198 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1199 inc_def = inc_undef = inc_abs = inc_common = true;
1200
1201 /* backwards compat for defined/undefined short hand */
1202 } else if (*this_sym == '+') {
1203 inc_undef = false;
1204 ++this_sym;
1205 } else if (*this_sym == '-') {
1206 inc_def = inc_abs = inc_common = false;
1207 ++this_sym;
1208 }
1209
1210 /* filter symbols */
1211 if ((!inc_notype && stt == STT_NOTYPE) || \
1212 (!inc_object && stt == STT_OBJECT) || \
1213 (!inc_func && stt == STT_FUNC ) || \
1214 (!inc_file && stt == STT_FILE ) || \
1215 (!inc_local && stb == STB_LOCAL ) || \
1216 (!inc_global && stb == STB_GLOBAL) || \
1217 (!inc_weak && stb == STB_WEAK ) || \
1218 (!inc_def && shn && shn < SHN_LORESERVE) || \
1219 (!inc_undef && shn == SHN_UNDEF ) || \
1220 (!inc_abs && shn == SHN_ABS ) || \
1221 (!inc_common && shn == SHN_COMMON))
1222 continue;
1223
1224 if (*this_sym == '*') {
1225 /* a "*" symbol gets you debug output */
1226 printf("%s(%s) %5lX %15s %15s %15s %s\n",
1227 ((*found_sym == 0) ? "\n\t" : "\t"),
1228 elf->base_filename,
1229 size,
1230 get_elfstttype(stt),
1231 get_elfstbtype(stb),
1232 get_elfshntype(shn),
1233 symname);
1234 goto matched;
1235
1236 } else {
1237 if (g_match) {
1238 /* regex match the symbol */
1239 if (regexec(find_sym_regex_arr->eles[n], symname, 0, NULL, 0) == REG_NOMATCH)
1240 continue;
1241
1242 } else if (*this_sym) {
1243 /* give empty symbols a "pass", else do a normal compare */
1244 const size_t len = strlen(this_sym);
1245 if (!(strncmp(this_sym, symname, len) == 0 &&
1246 /* Accept unversioned symbol names */
1247 (symname[len] == '\0' || symname[len] == '@')))
1248 continue;
1249 }
1250
1251 if (be_semi_verbose) {
1252 char buf[1024];
1253 snprintf(buf, sizeof(buf), "%lX %s %s",
1254 size,
1255 get_elfstttype(stt),
1256 this_sym);
1257 *ret = xstrdup(buf);
1258 } else {
1259 if (*ret) xchrcat(ret, ',', ret_len);
1260 xstrcat(ret, symname, ret_len);
1261 }
1262
1263 goto matched;
1264 }
1265 }
1266
1267 return;
1268
1269 matched:
1270 *found_sym = 1;
1271}
1272
614static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1273static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
615{ 1274{
616 unsigned long i; 1275 char *ret;
617 void *symtab_void, *strtab_void; 1276 void *symtab_void, *strtab_void;
618 1277
619 if (!find_sym) return NULL; 1278 if (!find_sym) return NULL;
1279 ret = NULL;
620 1280
621 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1281 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
622 1282
623 if (symtab_void && strtab_void) { 1283 if (symtab_void && strtab_void) {
624#define FIND_SYM(B) \ 1284#define FIND_SYM(B) \
625 if (elf->elf_class == ELFCLASS ## B) { \ 1285 if (elf->elf_class == ELFCLASS ## B) { \
626 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1286 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
627 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1287 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
628 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1288 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
629 unsigned long cnt = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 1289 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
630 char *symname; \ 1290 char *symname; \
1291 size_t ret_len = 0; \
1292 if (cnt) \
1293 cnt = EGET(symtab->sh_size) / cnt; \
631 for (i = 0; i < cnt; ++i) { \ 1294 for (i = 0; i < cnt; ++i) { \
1295 if ((void*)sym > elf->data_end) { \
1296 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1297 goto break_out; \
1298 } \
632 if (sym->st_name) { \ 1299 if (sym->st_name) { \
1300 /* make sure the symbol name is in acceptable memory range */ \
633 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1301 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
634 if (*find_sym == '*') { \ 1302 if ((void*)symname > elf->data_end) { \
635 printf("%s(%s) %5lX %15s %s\n", \ 1303 warnf("%s: corrupt ELF symbols", elf->filename); \
636 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1304 ++sym; \
637 elf->base_filename, \ 1305 continue; \
638 (long)sym->st_size, \ 1306 } \
639 (char *)get_elfstttype(sym->st_info), \ 1307 scanelf_match_symname(elf, found_sym, \
640 symname); \ 1308 &ret, &ret_len, symname, \
641 *found_sym = 1; \ 1309 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
642 } else if ((strcmp(find_sym, symname) == 0) || \ 1310 ELF##B##_ST_BIND(EGET(sym->st_info)), \
643 (strcmp(symname, versioned_symname) == 0)) \ 1311 EGET(sym->st_shndx), \
644 (*found_sym)++; \ 1312 /* st_size can be 64bit, but no one is really that big, so screw em */ \
1313 EGET(sym->st_size)); \
645 } \ 1314 } \
646 ++sym; \ 1315 ++sym; \
647 } } 1316 } \
1317 }
648 FIND_SYM(32) 1318 FIND_SYM(32)
649 FIND_SYM(64) 1319 FIND_SYM(64)
650 } 1320 }
651 1321
1322break_out:
652 if (be_wewy_wewy_quiet) return NULL; 1323 if (be_wewy_wewy_quiet) return NULL;
653 1324
654 if (*find_sym != '*' && *found_sym) 1325 if (*find_sym != '*' && *found_sym)
655 return find_sym; 1326 return ret;
656 if (be_quiet) 1327 if (be_quiet)
657 return NULL; 1328 return NULL;
658 else 1329 else
659 return (char *)" - "; 1330 return " - ";
660} 1331}
1332
1333static const char *scanelf_file_sections(elfobj *elf, char *found_section)
1334{
1335 if (!find_section)
1336 return NULL;
1337
1338#define FIND_SECTION(B) \
1339 if (elf->elf_class == ELFCLASS ## B) { \
1340 size_t matched, n; \
1341 int invert; \
1342 const char *section_name; \
1343 Elf ## B ## _Shdr *section; \
1344 \
1345 matched = 0; \
1346 array_for_each(find_section_arr, n, section_name) { \
1347 invert = (*section_name == '!' ? 1 : 0); \
1348 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
1349 if ((section == NULL && invert) || (section != NULL && !invert)) \
1350 ++matched; \
1351 } \
1352 \
1353 if (matched == array_cnt(find_section_arr)) \
1354 *found_section = 1; \
1355 }
1356 FIND_SECTION(32)
1357 FIND_SECTION(64)
1358
1359 if (be_wewy_wewy_quiet)
1360 return NULL;
1361
1362 if (*found_section)
1363 return find_section;
1364
1365 if (be_quiet)
1366 return NULL;
1367 else
1368 return " - ";
1369}
1370
661/* scan an elf file and show all the fun stuff */ 1371/* scan an elf file and show all the fun stuff */
662#define prints(str) write(fileno(stdout), str, strlen(str)) 1372#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
663static void scanelf_file(const char *filename) 1373static int scanelf_elfobj(elfobj *elf)
664{ 1374{
665 unsigned long i; 1375 unsigned long i;
666 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1376 char found_pax, found_phdr, found_relro, found_load, found_textrel,
667 found_rpath, found_needed, found_interp, found_bind, found_soname, 1377 found_rpath, found_needed, found_interp, found_bind, found_soname,
668 found_sym, found_lib, found_file, found_textrels; 1378 found_sym, found_lib, found_file, found_textrels, found_section;
669 elfobj *elf;
670 struct stat st;
671 static char *out_buffer = NULL; 1379 static char *out_buffer = NULL;
672 static size_t out_len; 1380 static size_t out_len;
673 1381
674 /* make sure 'filename' exists */
675 if (lstat(filename, &st) == -1) {
676 if (be_verbose > 2) printf("%s: does not exist\n", filename);
677 return;
678 }
679 /* always handle regular files and handle symlinked files if no -y */
680 if (S_ISLNK(st.st_mode)) {
681 if (!scan_symlink) return;
682 stat(filename, &st);
683 }
684 if (!S_ISREG(st.st_mode)) {
685 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
686 return;
687 }
688
689 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1382 found_pax = found_phdr = found_relro = found_load = found_textrel = \
690 found_rpath = found_needed = found_interp = found_bind = found_soname = \ 1383 found_rpath = found_needed = found_interp = found_bind = found_soname = \
691 found_sym = found_lib = found_file = found_textrels = 0; 1384 found_sym = found_lib = found_file = found_textrels = found_section = 0;
692 1385
693 /* verify this is real ELF */
694 if ((elf = readelf(filename)) == NULL) {
695 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
696 return;
697 }
698
699 if (be_verbose > 1) 1386 if (be_verbose > 2)
700 printf("%s: scanning file {%s,%s}\n", filename, 1387 printf("%s: scanning file {%s,%s}\n", elf->filename,
701 get_elfeitype(EI_CLASS, elf->elf_class), 1388 get_elfeitype(EI_CLASS, elf->elf_class),
702 get_elfeitype(EI_DATA, elf->data[EI_DATA])); 1389 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
703 else if (be_verbose) 1390 else if (be_verbose > 1)
704 printf("%s: scanning file\n", filename); 1391 printf("%s: scanning file\n", elf->filename);
705 1392
706 /* init output buffer */ 1393 /* init output buffer */
707 if (!out_buffer) { 1394 if (!out_buffer) {
708 out_len = sizeof(char) * 80; 1395 out_len = sizeof(char) * 80;
709 out_buffer = (char*)xmalloc(out_len); 1396 out_buffer = xmalloc(out_len);
710 } 1397 }
711 *out_buffer = '\0'; 1398 *out_buffer = '\0';
712 1399
713 /* show the header */ 1400 /* show the header */
714 if (!be_quiet && show_banner) { 1401 if (!be_quiet && show_banner) {
715 for (i = 0; out_format[i]; ++i) { 1402 for (i = 0; out_format[i]; ++i) {
716 if (!IS_MODIFIER(out_format[i])) continue; 1403 if (!IS_MODIFIER(out_format[i])) continue;
717 1404
718 switch (out_format[++i]) { 1405 switch (out_format[++i]) {
1406 case '+': break;
719 case '%': break; 1407 case '%': break;
720 case '#': break; 1408 case '#': break;
721 case 'F': 1409 case 'F':
722 case 'p': 1410 case 'p':
723 case 'f': prints("FILE "); found_file = 1; break; 1411 case 'f': prints("FILE "); found_file = 1; break;
724 case 'o': prints(" TYPE "); break; 1412 case 'o': prints(" TYPE "); break;
725 case 'x': prints(" PAX "); break; 1413 case 'x': prints(" PAX "); break;
726 case 'e': prints("STK/REL/PTL "); break; 1414 case 'e': prints("STK/REL/PTL "); break;
727 case 't': prints("TEXTREL "); break; 1415 case 't': prints("TEXTREL "); break;
728 case 'r': prints("RPATH "); break; 1416 case 'r': prints("RPATH "); break;
1417 case 'M': prints("CLASS "); break;
1418 case 'l':
729 case 'n': prints("NEEDED "); break; 1419 case 'n': prints("NEEDED "); break;
730 case 'i': prints("INTERP "); break; 1420 case 'i': prints("INTERP "); break;
731 case 'b': prints("BIND "); break; 1421 case 'b': prints("BIND "); break;
1422 case 'Z': prints("SIZE "); break;
732 case 'S': prints("SONAME "); break; 1423 case 'S': prints("SONAME "); break;
733 case 's': prints("SYM "); break; 1424 case 's': prints("SYM "); break;
734 case 'N': prints("LIB "); break; 1425 case 'N': prints("LIB "); break;
735 case 'T': prints("TEXTRELS "); break; 1426 case 'T': prints("TEXTRELS "); break;
1427 case 'k': prints("SECTION "); break;
1428 case 'a': prints("ARCH "); break;
1429 case 'I': prints("OSABI "); break;
1430 case 'Y': prints("EABI "); break;
1431 case 'O': prints("PERM "); break;
1432 case 'D': prints("ENDIAN "); break;
736 default: warnf("'%c' has no title ?", out_format[i]); 1433 default: warnf("'%c' has no title ?", out_format[i]);
737 } 1434 }
738 } 1435 }
739 if (!found_file) prints("FILE "); 1436 if (!found_file) prints("FILE ");
740 prints("\n"); 1437 prints("\n");
744 1441
745 /* dump all the good stuff */ 1442 /* dump all the good stuff */
746 for (i = 0; out_format[i]; ++i) { 1443 for (i = 0; out_format[i]; ++i) {
747 const char *out; 1444 const char *out;
748 const char *tmp; 1445 const char *tmp;
749 1446 static char ubuf[sizeof(unsigned long)*2];
750 /* make sure we trim leading spaces in quiet mode */
751 if (be_quiet && *out_buffer == ' ' && !out_buffer[1])
752 *out_buffer = '\0';
753
754 if (!IS_MODIFIER(out_format[i])) { 1447 if (!IS_MODIFIER(out_format[i])) {
755 xchrcat(&out_buffer, out_format[i], &out_len); 1448 xchrcat(&out_buffer, out_format[i], &out_len);
756 continue; 1449 continue;
757 } 1450 }
758 1451
759 out = NULL; 1452 out = NULL;
760 be_wewy_wewy_quiet = (out_format[i] == '#'); 1453 be_wewy_wewy_quiet = (out_format[i] == '#');
1454 be_semi_verbose = (out_format[i] == '+');
761 switch (out_format[++i]) { 1455 switch (out_format[++i]) {
1456 case '+':
762 case '%': 1457 case '%':
763 case '#': 1458 case '#':
764 xchrcat(&out_buffer, out_format[i], &out_len); break; 1459 xchrcat(&out_buffer, out_format[i], &out_len); break;
765 case 'F': 1460 case 'F':
766 found_file = 1; 1461 found_file = 1;
767 if (be_wewy_wewy_quiet) break; 1462 if (be_wewy_wewy_quiet) break;
768 xstrcat(&out_buffer, filename, &out_len); 1463 xstrcat(&out_buffer, elf->filename, &out_len);
769 break; 1464 break;
770 case 'p': 1465 case 'p':
771 found_file = 1; 1466 found_file = 1;
772 if (be_wewy_wewy_quiet) break; 1467 if (be_wewy_wewy_quiet) break;
773 tmp = filename; 1468 tmp = elf->filename;
774 if (search_path) { 1469 if (search_path) {
775 ssize_t len_search = strlen(search_path); 1470 ssize_t len_search = strlen(search_path);
776 ssize_t len_file = strlen(filename); 1471 ssize_t len_file = strlen(elf->filename);
777 if (!strncmp(filename, search_path, len_search) && \ 1472 if (!strncmp(elf->filename, search_path, len_search) && \
778 len_file > len_search) 1473 len_file > len_search)
779 tmp += len_search; 1474 tmp += len_search;
780 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++; 1475 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++;
781 } 1476 }
782 xstrcat(&out_buffer, tmp, &out_len); 1477 xstrcat(&out_buffer, tmp, &out_len);
783 break; 1478 break;
784 case 'f': 1479 case 'f':
785 found_file = 1; 1480 found_file = 1;
786 if (be_wewy_wewy_quiet) break; 1481 if (be_wewy_wewy_quiet) break;
787 tmp = strrchr(filename, '/'); 1482 tmp = strrchr(elf->filename, '/');
788 tmp = (tmp == NULL ? filename : tmp+1); 1483 tmp = (tmp == NULL ? elf->filename : tmp+1);
789 xstrcat(&out_buffer, tmp, &out_len); 1484 xstrcat(&out_buffer, tmp, &out_len);
790 break; 1485 break;
791 case 'o': out = get_elfetype(elf); break; 1486 case 'o': out = get_elfetype(elf); break;
792 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1487 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
793 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1488 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
794 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1489 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
795 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1490 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
796 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1491 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1492 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1493 case 'D': out = get_endian(elf); break;
1494 case 'O': out = strfileperms(elf->filename); break;
797 case 'n': 1495 case 'n':
798 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1496 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
799 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1497 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
800 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1498 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
801 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1499 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
802 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1500 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1501 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1502 case 'a': out = get_elfemtype(elf); break;
1503 case 'I': out = get_elfosabi(elf); break;
1504 case 'Y': out = get_elf_eabi(elf); break;
1505 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
803 default: warnf("'%c' has no scan code?", out_format[i]); 1506 default: warnf("'%c' has no scan code?", out_format[i]);
804 } 1507 }
1508 if (out)
805 if (out) xstrcat(&out_buffer, out, &out_len); 1509 xstrcat(&out_buffer, out, &out_len);
806 } 1510 }
807 1511
808#define FOUND_SOMETHING() \ 1512#define FOUND_SOMETHING() \
809 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1513 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
810 found_rpath || found_needed || found_interp || found_bind || \ 1514 found_rpath || found_needed || found_interp || found_bind || \
811 found_soname || found_sym || found_lib || found_textrels) 1515 found_soname || found_sym || found_lib || found_textrels || found_section )
812 1516
813 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) { 1517 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
814 xchrcat(&out_buffer, ' ', &out_len); 1518 xchrcat(&out_buffer, ' ', &out_len);
815 xstrcat(&out_buffer, filename, &out_len); 1519 xstrcat(&out_buffer, elf->filename, &out_len);
816 } 1520 }
817 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) { 1521 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) {
818 puts(out_buffer); 1522 puts(out_buffer);
819 fflush(stdout); 1523 fflush(stdout);
820 } 1524 }
821 1525
1526 return 0;
1527}
1528
1529/* scan a single elf */
1530static int scanelf_elf(const char *filename, int fd, size_t len)
1531{
1532 int ret = 1;
1533 elfobj *elf;
1534
1535 /* verify this is real ELF */
1536 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1537 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1538 return 2;
1539 }
1540 switch (match_bits) {
1541 case 32:
1542 if (elf->elf_class != ELFCLASS32)
1543 goto label_done;
1544 break;
1545 case 64:
1546 if (elf->elf_class != ELFCLASS64)
1547 goto label_done;
1548 break;
1549 default: break;
1550 }
1551 if (match_etypes) {
1552 char sbuf[126];
1553 strncpy(sbuf, match_etypes, sizeof(sbuf));
1554 if (strchr(match_etypes, ',') != NULL) {
1555 char *p;
1556 while ((p = strrchr(sbuf, ',')) != NULL) {
1557 *p = 0;
1558 if (etype_lookup(p+1) == get_etype(elf))
1559 goto label_ret;
1560 }
1561 }
1562 if (etype_lookup(sbuf) != get_etype(elf))
1563 goto label_done;
1564 }
1565
1566label_ret:
1567 ret = scanelf_elfobj(elf);
1568
1569label_done:
822 unreadelf(elf); 1570 unreadelf(elf);
1571 return ret;
1572}
1573
1574/* scan an archive of elfs */
1575static int scanelf_archive(const char *filename, int fd, size_t len)
1576{
1577 archive_handle *ar;
1578 archive_member *m;
1579 char *ar_buffer;
1580 elfobj *elf;
1581
1582 ar = ar_open_fd(filename, fd);
1583 if (ar == NULL)
1584 return 1;
1585
1586 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1587 while ((m = ar_next(ar)) != NULL) {
1588 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1589 if (cur_pos == -1)
1590 errp("lseek() failed");
1591 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1592 if (elf) {
1593 scanelf_elfobj(elf);
1594 unreadelf(elf);
1595 }
1596 }
1597 munmap(ar_buffer, len);
1598
1599 return 0;
1600}
1601/* scan a file which may be an elf or an archive or some other magical beast */
1602static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1603{
1604 const struct stat *st = st_cache;
1605 struct stat symlink_st;
1606 int fd;
1607
1608 /* always handle regular files and handle symlinked files if no -y */
1609 if (S_ISLNK(st->st_mode)) {
1610 if (!scan_symlink)
1611 return 1;
1612 fstatat(dir_fd, filename, &symlink_st, 0);
1613 st = &symlink_st;
1614 }
1615
1616 if (!S_ISREG(st->st_mode)) {
1617 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1618 return 1;
1619 }
1620
1621 if (match_perms) {
1622 if ((st->st_mode | match_perms) != st->st_mode)
1623 return 1;
1624 }
1625 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1626 if (fd == -1) {
1627 if (fix_elf && errno == ETXTBSY)
1628 warnp("%s: could not fix", filename);
1629 else if (be_verbose > 2)
1630 printf("%s: skipping file: %s\n", filename, strerror(errno));
1631 return 1;
1632 }
1633
1634 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1635 /* if it isn't an ELF, maybe it's an .a archive */
1636 if (scan_archives)
1637 scanelf_archive(filename, fd, st->st_size);
1638
1639 /*
1640 * unreadelf() implicitly closes its fd, so only close it
1641 * when we are returning it in the non-ELF case
1642 */
1643 close(fd);
1644 }
1645
1646 return 0;
823} 1647}
824 1648
825/* scan a directory for ET_EXEC files and print when we find one */ 1649/* scan a directory for ET_EXEC files and print when we find one */
826static void scanelf_dir(const char *path) 1650static int scanelf_dirat(int dir_fd, const char *path)
827{ 1651{
828 register DIR *dir; 1652 register DIR *dir;
829 register struct dirent *dentry; 1653 register struct dirent *dentry;
830 struct stat st_top, st; 1654 struct stat st_top, st;
831 char buf[_POSIX_PATH_MAX]; 1655 char buf[__PAX_UTILS_PATH_MAX], *subpath;
832 size_t pathlen = 0, len = 0; 1656 size_t pathlen = 0, len = 0;
1657 int ret = 0;
1658 int subdir_fd;
833 1659
834 /* make sure path exists */ 1660 /* make sure path exists */
835 if (lstat(path, &st_top) == -1) { 1661 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
836 if (be_verbose > 2) printf("%s: does not exist\n", path); 1662 if (be_verbose > 2) printf("%s: does not exist\n", path);
837 return; 1663 return 1;
838 } 1664 }
839 1665
840 /* ok, if it isn't a directory, assume we can open it */ 1666 /* ok, if it isn't a directory, assume we can open it */
841 if (!S_ISDIR(st_top.st_mode)) { 1667 if (!S_ISDIR(st_top.st_mode))
842 scanelf_file(path); 1668 return scanelf_fileat(dir_fd, path, &st_top);
843 return;
844 }
845 1669
846 /* now scan the dir looking for fun stuff */ 1670 /* now scan the dir looking for fun stuff */
847 if ((dir = opendir(path)) == NULL) { 1671 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
848 warnf("could not opendir %s: %s", path, strerror(errno)); 1672 if (subdir_fd == -1)
1673 dir = NULL;
1674 else
1675 dir = fdopendir(subdir_fd);
1676 if (dir == NULL) {
1677 if (subdir_fd != -1)
1678 close(subdir_fd);
1679 warnfp("could not opendir(%s)", path);
849 return; 1680 return 1;
850 } 1681 }
851 if (be_verbose) printf("%s: scanning dir\n", path); 1682 if (be_verbose > 1) printf("%s: scanning dir\n", path);
852 1683
853 pathlen = strlen(path); 1684 subpath = stpcpy(buf, path);
1685 if (subpath[-1] != '/')
1686 *subpath++ = '/';
1687 pathlen = subpath - buf;
854 while ((dentry = readdir(dir))) { 1688 while ((dentry = readdir(dir))) {
855 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1689 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
856 continue; 1690 continue;
1691
1692 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
1693 continue;
1694
857 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1695 len = strlen(dentry->d_name);
858 if (len >= sizeof(buf)) { 1696 if (len + pathlen + 1 >= sizeof(buf)) {
859 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1697 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
860 (unsigned long)len, (unsigned long)sizeof(buf)); 1698 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
861 continue; 1699 continue;
862 } 1700 }
863 sprintf(buf, "%s/%s", path, dentry->d_name); 1701 memcpy(subpath, dentry->d_name, len);
864 if (lstat(buf, &st) != -1) { 1702 subpath[len] = '\0';
1703
865 if (S_ISREG(st.st_mode)) 1704 if (S_ISREG(st.st_mode))
866 scanelf_file(buf); 1705 ret = scanelf_fileat(dir_fd, buf, &st);
867 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1706 else if (dir_recurse && S_ISDIR(st.st_mode)) {
868 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1707 if (dir_crossmount || (st_top.st_dev == st.st_dev))
869 scanelf_dir(buf); 1708 ret = scanelf_dirat(dir_fd, buf);
870 }
871 } 1709 }
872 } 1710 }
873 closedir(dir); 1711 closedir(dir);
874}
875 1712
1713 return ret;
1714}
1715static int scanelf_dir(const char *path)
1716{
1717 return scanelf_dirat(root_fd, root_rel_path(path));
1718}
1719
876static int scanelf_from_file(char *filename) 1720static int scanelf_from_file(const char *filename)
877{ 1721{
878 FILE *fp = NULL; 1722 FILE *fp;
879 char *p; 1723 char *p, *path;
880 char path[_POSIX_PATH_MAX]; 1724 size_t len;
1725 int ret;
881 1726
882 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1727 if (strcmp(filename, "-") == 0)
883 fp = stdin; 1728 fp = stdin;
884 else if ((fp = fopen(filename, "r")) == NULL) 1729 else if ((fp = fopen(filename, "r")) == NULL)
885 return 1; 1730 return 1;
886 1731
887 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1732 path = NULL;
1733 len = 0;
1734 ret = 0;
1735 while (getline(&path, &len, fp) != -1) {
888 if ((p = strchr(path, '\n')) != NULL) 1736 if ((p = strchr(path, '\n')) != NULL)
889 *p = 0; 1737 *p = 0;
890 search_path = path; 1738 search_path = path;
891 scanelf_dir(path); 1739 ret = scanelf_dir(path);
892 } 1740 }
1741 free(path);
1742
893 if (fp != stdin) 1743 if (fp != stdin)
894 fclose(fp); 1744 fclose(fp);
1745
895 return 0; 1746 return ret;
896} 1747}
897 1748
898static void load_ld_so_conf() 1749#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1750
1751static int _load_ld_cache_config(const char *fname)
899{ 1752{
900 FILE *fp = NULL; 1753 FILE *fp = NULL;
901 char *p; 1754 char *p, *path;
902 char path[_POSIX_PATH_MAX]; 1755 size_t len;
903 int i = 0; 1756 int curr_fd = -1;
904 1757
905 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1758 fp = fopenat_r(root_fd, root_rel_path(fname));
1759 if (fp == NULL)
906 return; 1760 return -1;
907 1761
908 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1762 path = NULL;
909 if (*path != '/') 1763 len = 0;
910 continue; 1764 while (getline(&path, &len, fp) != -1) {
911
912 if ((p = strrchr(path, '\r')) != NULL) 1765 if ((p = strrchr(path, '\r')) != NULL)
913 *p = 0; 1766 *p = 0;
914 if ((p = strchr(path, '\n')) != NULL) 1767 if ((p = strchr(path, '\n')) != NULL)
915 *p = 0; 1768 *p = 0;
916 1769
917 ldpaths[i++] = xstrdup(path); 1770 /* recursive includes of the same file will make this segfault. */
1771 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1772 glob_t gl;
1773 size_t x;
1774 const char *gpath;
918 1775
919 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1776 /* re-use existing path buffer ... need to be creative */
920 break; 1777 if (path[8] != '/')
1778 gpath = memcpy(path + 3, "/etc/", 5);
1779 else
1780 gpath = path + 8;
1781 if (root_fd != AT_FDCWD) {
1782 if (curr_fd == -1) {
1783 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1784 if (fchdir(root_fd))
1785 errp("unable to change to root dir");
1786 }
1787 gpath = root_rel_path(gpath);
1788 }
1789
1790 if (glob(gpath, 0, NULL, &gl) == 0) {
1791 for (x = 0; x < gl.gl_pathc; ++x) {
1792 /* try to avoid direct loops */
1793 if (strcmp(gl.gl_pathv[x], fname) == 0)
1794 continue;
1795 _load_ld_cache_config(gl.gl_pathv[x]);
1796 }
1797 globfree(&gl);
1798 }
1799
1800 /* failed globs are ignored by glibc */
1801 continue;
921 } 1802 }
922 ldpaths[i] = NULL; 1803
1804 if (*path != '/')
1805 continue;
1806
1807 xarraypush_str(ldpaths, path);
1808 }
1809 free(path);
923 1810
924 fclose(fp); 1811 fclose(fp);
1812
1813 if (curr_fd != -1) {
1814 if (fchdir(curr_fd))
1815 /* don't care */;
1816 close(curr_fd);
1817 }
1818
1819 return 0;
1820}
1821
1822#elif defined(__FreeBSD__) || defined(__DragonFly__)
1823
1824static int _load_ld_cache_config(const char *fname)
1825{
1826 FILE *fp = NULL;
1827 char *b = NULL, *p;
1828 struct elfhints_hdr hdr;
1829
1830 fp = fopenat_r(root_fd, root_rel_path(fname));
1831 if (fp == NULL)
1832 return -1;
1833
1834 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1835 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1836 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1837 {
1838 fclose(fp);
1839 return -1;
1840 }
1841
1842 b = xmalloc(hdr.dirlistlen + 1);
1843 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1844 fclose(fp);
1845 free(b);
1846 return -1;
1847 }
1848
1849 while ((p = strsep(&b, ":"))) {
1850 if (*p == '\0')
1851 continue;
1852 xarraypush_str(ldpaths, p);
1853 }
1854
1855 free(b);
1856 fclose(fp);
1857 return 0;
1858}
1859
1860#else
1861#ifdef __ELF__
1862#warning Cache config support not implemented for your target
1863#endif
1864static int _load_ld_cache_config(const char *fname)
1865{
1866 return 0;
1867}
1868#endif
1869
1870static void load_ld_cache_config(const char *fname)
1871{
1872 bool scan_l, scan_ul, scan_ull;
1873 size_t n;
1874 const char *ldpath;
1875
1876 _load_ld_cache_config(fname);
1877
1878 scan_l = scan_ul = scan_ull = false;
1879 if (array_cnt(ldpaths)) {
1880 array_for_each(ldpaths, n, ldpath) {
1881 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = true;
1882 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = true;
1883 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = true;
1884 }
1885 }
1886
1887 if (!scan_l) xarraypush_str(ldpaths, "/lib");
1888 if (!scan_ul) xarraypush_str(ldpaths, "/usr/lib");
1889 if (!scan_ull) xarraypush_str(ldpaths, "/usr/local/lib");
925} 1890}
926 1891
927/* scan /etc/ld.so.conf for paths */ 1892/* scan /etc/ld.so.conf for paths */
928static void scanelf_ldpath() 1893static void scanelf_ldpath(void)
929{ 1894{
930 char scan_l, scan_ul, scan_ull; 1895 size_t n;
931 int i = 0; 1896 const char *ldpath;
932 1897
933 if (!ldpaths[0]) 1898 array_for_each(ldpaths, n, ldpath)
934 err("Unable to load any paths from ld.so.conf");
935
936 scan_l = scan_ul = scan_ull = 0;
937
938 while (ldpaths[i]) {
939 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1;
940 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1;
941 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1;
942 scanelf_dir(ldpaths[i]); 1899 scanelf_dir(ldpath);
943 ++i;
944 }
945
946 if (!scan_l) scanelf_dir("/lib");
947 if (!scan_ul) scanelf_dir("/usr/lib");
948 if (!scan_ull) scanelf_dir("/usr/local/lib");
949} 1900}
950 1901
951/* scan env PATH for paths */ 1902/* scan env PATH for paths */
952static void scanelf_envpath() 1903static void scanelf_envpath(void)
953{ 1904{
954 char *path, *p; 1905 char *path, *p;
955 1906
956 path = getenv("PATH"); 1907 path = getenv("PATH");
957 if (!path) 1908 if (!path)
964 } 1915 }
965 1916
966 free(path); 1917 free(path);
967} 1918}
968 1919
969 1920/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
970
971/* usage / invocation handling functions */
972#define PARSE_FLAGS "plRmyxetrnibSs:gN:TaqvF:f:o:BhV" 1921#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
973#define a_argument required_argument 1922#define a_argument required_argument
974static struct option const long_opts[] = { 1923static struct option const long_opts[] = {
975 {"path", no_argument, NULL, 'p'}, 1924 {"path", no_argument, NULL, 'p'},
976 {"ldpath", no_argument, NULL, 'l'}, 1925 {"ldpath", no_argument, NULL, 'l'},
1926 {"use-ldpath",no_argument, NULL, 129},
1927 {"root", a_argument, NULL, 128},
977 {"recursive", no_argument, NULL, 'R'}, 1928 {"recursive", no_argument, NULL, 'R'},
978 {"mount", no_argument, NULL, 'm'}, 1929 {"mount", no_argument, NULL, 'm'},
979 {"symlink", no_argument, NULL, 'y'}, 1930 {"symlink", no_argument, NULL, 'y'},
1931 {"archives", no_argument, NULL, 'A'},
1932 {"ldcache", no_argument, NULL, 'L'},
1933 {"fix", no_argument, NULL, 'X'},
1934 {"setpax", a_argument, NULL, 'z'},
980 {"pax", no_argument, NULL, 'x'}, 1935 {"pax", no_argument, NULL, 'x'},
981 {"header", no_argument, NULL, 'e'}, 1936 {"header", no_argument, NULL, 'e'},
982 {"textrel", no_argument, NULL, 't'}, 1937 {"textrel", no_argument, NULL, 't'},
983 {"rpath", no_argument, NULL, 'r'}, 1938 {"rpath", no_argument, NULL, 'r'},
984 {"needed", no_argument, NULL, 'n'}, 1939 {"needed", no_argument, NULL, 'n'},
985 {"interp", no_argument, NULL, 'i'}, 1940 {"interp", no_argument, NULL, 'i'},
986 {"bind", no_argument, NULL, 'b'}, 1941 {"bind", no_argument, NULL, 'b'},
987 {"soname", no_argument, NULL, 'S'}, 1942 {"soname", no_argument, NULL, 'S'},
988 {"symbol", a_argument, NULL, 's'}, 1943 {"symbol", a_argument, NULL, 's'},
1944 {"section", a_argument, NULL, 'k'},
989 {"lib", a_argument, NULL, 'N'}, 1945 {"lib", a_argument, NULL, 'N'},
990 {"gmatch", no_argument, NULL, 'g'}, 1946 {"gmatch", no_argument, NULL, 'g'},
991 {"textrels", no_argument, NULL, 'T'}, 1947 {"textrels", no_argument, NULL, 'T'},
1948 {"etype", a_argument, NULL, 'E'},
1949 {"bits", a_argument, NULL, 'M'},
1950 {"endian", no_argument, NULL, 'D'},
1951 {"osabi", no_argument, NULL, 'I'},
1952 {"eabi", no_argument, NULL, 'Y'},
1953 {"perms", a_argument, NULL, 'O'},
1954 {"size", no_argument, NULL, 'Z'},
992 {"all", no_argument, NULL, 'a'}, 1955 {"all", no_argument, NULL, 'a'},
993 {"quiet", no_argument, NULL, 'q'}, 1956 {"quiet", no_argument, NULL, 'q'},
994 {"verbose", no_argument, NULL, 'v'}, 1957 {"verbose", no_argument, NULL, 'v'},
995 {"format", a_argument, NULL, 'F'}, 1958 {"format", a_argument, NULL, 'F'},
996 {"from", a_argument, NULL, 'f'}, 1959 {"from", a_argument, NULL, 'f'},
997 {"file", a_argument, NULL, 'o'}, 1960 {"file", a_argument, NULL, 'o'},
1961 {"nocolor", no_argument, NULL, 'C'},
998 {"nobanner", no_argument, NULL, 'B'}, 1962 {"nobanner", no_argument, NULL, 'B'},
999 {"help", no_argument, NULL, 'h'}, 1963 {"help", no_argument, NULL, 'h'},
1000 {"version", no_argument, NULL, 'V'}, 1964 {"version", no_argument, NULL, 'V'},
1001 {NULL, no_argument, NULL, 0x0} 1965 {NULL, no_argument, NULL, 0x0}
1002}; 1966};
1003 1967
1004static const char *opts_help[] = { 1968static const char * const opts_help[] = {
1005 "Scan all directories in PATH environment", 1969 "Scan all directories in PATH environment",
1006 "Scan all directories in /etc/ld.so.conf", 1970 "Scan all directories in /etc/ld.so.conf",
1971 "Use ld.so.conf to show full path (use with -r/-n)",
1972 "Root directory (use with -l or -p)",
1007 "Scan directories recursively", 1973 "Scan directories recursively",
1008 "Don't recursively cross mount points", 1974 "Don't recursively cross mount points",
1009 "Don't scan symlinks\n", 1975 "Don't scan symlinks",
1976 "Scan archives (.a files)",
1977 "Utilize ld.so.cache to show full path (use with -r/-n)",
1978 "Try and 'fix' bad things (use with -r/-e)",
1979 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1010 "Print PaX markings", 1980 "Print PaX markings",
1011 "Print GNU_STACK/PT_LOAD markings", 1981 "Print GNU_STACK/PT_LOAD markings",
1012 "Print TEXTREL information", 1982 "Print TEXTREL information",
1013 "Print RPATH information", 1983 "Print RPATH information",
1014 "Print NEEDED information", 1984 "Print NEEDED information",
1015 "Print INTERP information", 1985 "Print INTERP information",
1016 "Print BIND information", 1986 "Print BIND information",
1017 "Print SONAME information", 1987 "Print SONAME information",
1018 "Find a specified symbol", 1988 "Find a specified symbol",
1989 "Find a specified section",
1019 "Find a specified library", 1990 "Find a specified library",
1020 "Use strncmp to match libraries. (use with -N)", 1991 "Use regex rather than string compare (with -s); specify twice for case insensitive",
1021 "Locate cause of TEXTREL", 1992 "Locate cause of TEXTREL",
1022 "Print all scanned info (-x -e -t -r -b)\n", 1993 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1994 "Print only ELF files matching numeric bits",
1995 "Print Endianness",
1996 "Print OSABI",
1997 "Print EABI (EM_ARM Only)",
1998 "Print only ELF files matching octal permissions",
1999 "Print ELF file size",
2000 "Print all useful/simple info\n",
1023 "Only output 'bad' things", 2001 "Only output 'bad' things",
1024 "Be verbose (can be specified more than once)", 2002 "Be verbose (can be specified more than once)",
1025 "Use specified format for output", 2003 "Use specified format for output",
1026 "Read input stream from a filename", 2004 "Read input stream from a filename",
1027 "Write output stream to a filename", 2005 "Write output stream to a filename",
2006 "Don't emit color in output",
1028 "Don't display the header", 2007 "Don't display the header",
1029 "Print this help and exit", 2008 "Print this help and exit",
1030 "Print version and exit", 2009 "Print version and exit",
1031 NULL 2010 NULL
1032}; 2011};
1034/* display usage and exit */ 2013/* display usage and exit */
1035static void usage(int status) 2014static void usage(int status)
1036{ 2015{
1037 unsigned long i; 2016 unsigned long i;
1038 printf("* Scan ELF binaries for stuff\n\n" 2017 printf("* Scan ELF binaries for stuff\n\n"
1039 "Usage: %s [options] <dir1/file1> [dir2 dirN fileN ...]\n\n", argv0); 2018 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1040 printf("Options: -[%s]\n", PARSE_FLAGS); 2019 printf("Options: -[%s]\n", PARSE_FLAGS);
1041 for (i = 0; long_opts[i].name; ++i) 2020 for (i = 0; long_opts[i].name; ++i) {
2021 /* first output the short flag if it has one */
2022 if (long_opts[i].val > '~')
2023 printf(" ");
2024 else
2025 printf(" -%c, ", long_opts[i].val);
2026
2027 /* then the long flag */
1042 if (long_opts[i].has_arg == no_argument) 2028 if (long_opts[i].has_arg == no_argument)
1043 printf(" -%c, --%-13s* %s\n", long_opts[i].val, 2029 printf("--%-14s", long_opts[i].name);
1044 long_opts[i].name, opts_help[i]);
1045 else 2030 else
1046 printf(" -%c, --%-6s <arg> * %s\n", long_opts[i].val, 2031 printf("--%-7s <arg> ", long_opts[i].name);
1047 long_opts[i].name, opts_help[i]);
1048 2032
1049 if (status != EXIT_SUCCESS) 2033 /* finally the help text */
1050 exit(status); 2034 printf("* %s\n", opts_help[i]);
2035 }
1051 2036
1052 puts("\nThe format modifiers for the -F option are:"); 2037 puts("\nFor more information, see the scanelf(1) manpage");
1053 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1054 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1055 puts(" i INTERP \tb BIND \ts symbol");
1056 puts(" N library \to Type \tT TEXTRELs");
1057 puts(" S SONAME");
1058 puts(" p filename (with search path removed)");
1059 puts(" f filename (short name/basename)");
1060 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1061
1062 exit(status); 2038 exit(status);
1063} 2039}
1064 2040
1065/* parse command line arguments and preform needed actions */ 2041/* parse command line arguments and preform needed actions */
2042#define do_pax_state(option, flag) \
2043 if (islower(option)) { \
2044 flags &= ~PF_##flag; \
2045 flags |= PF_NO##flag; \
2046 } else { \
2047 flags &= ~PF_NO##flag; \
2048 flags |= PF_##flag; \
2049 }
1066static void parseargs(int argc, char *argv[]) 2050static int parseargs(int argc, char *argv[])
1067{ 2051{
1068 int i; 2052 int i;
1069 char *from_file = NULL; 2053 const char *from_file = NULL;
2054 int ret = 0;
2055 char load_cache_config = 0;
1070 2056
1071 opterr = 0; 2057 opterr = 0;
1072 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2058 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1073 switch (i) { 2059 switch (i) {
1074 2060
1078 VERSION, __FILE__, __DATE__, rcsid, argv0); 2064 VERSION, __FILE__, __DATE__, rcsid, argv0);
1079 exit(EXIT_SUCCESS); 2065 exit(EXIT_SUCCESS);
1080 break; 2066 break;
1081 case 'h': usage(EXIT_SUCCESS); break; 2067 case 'h': usage(EXIT_SUCCESS); break;
1082 case 'f': 2068 case 'f':
1083 if (from_file) err("Don't specify -f twice"); 2069 if (from_file) warn("You prob don't want to specify -f twice");
1084 from_file = xstrdup(optarg); 2070 from_file = optarg;
2071 break;
2072 case 'E':
2073 match_etypes = optarg;
2074 break;
2075 case 'M':
2076 match_bits = atoi(optarg);
2077 if (match_bits == 0) {
2078 if (strcmp(optarg, "ELFCLASS32") == 0)
2079 match_bits = 32;
2080 if (strcmp(optarg, "ELFCLASS64") == 0)
2081 match_bits = 64;
2082 }
2083 break;
2084 case 'O':
2085 if (sscanf(optarg, "%o", &match_perms) == -1)
2086 match_bits = 0;
1085 break; 2087 break;
1086 case 'o': { 2088 case 'o': {
1087 FILE *fp = NULL;
1088 if ((fp = freopen(optarg, "w", stdout)) == NULL) 2089 if (freopen(optarg, "w", stdout) == NULL)
1089 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2090 errp("Could not freopen(%s)", optarg);
1090 SET_STDOUT(fp);
1091 break; 2091 break;
1092 } 2092 }
1093 2093 case 'k':
2094 xarraypush_str(find_section_arr, optarg);
2095 break;
1094 case 's': { 2096 case 's': {
1095 size_t len; 2097 /* historically, this was comma delimited */
1096 if (find_sym) err("Don't specify -s twice"); 2098 char *this_sym = strtok(optarg, ",");
1097 find_sym = xstrdup(optarg); 2099 if (!this_sym) /* edge case: -s '' */
1098 len = strlen(find_sym) + 1; 2100 xarraypush_str(find_sym_arr, "");
1099 versioned_symname = (char*)xmalloc(sizeof(char) * (len+1)); 2101 while (this_sym) {
1100 sprintf(versioned_symname, "%s@", find_sym); 2102 xarraypush_str(find_sym_arr, this_sym);
2103 this_sym = strtok(NULL, ",");
2104 }
1101 break; 2105 break;
1102 } 2106 }
2107 case 'N':
2108 xarraypush_str(find_lib_arr, optarg);
2109 break;
1103 case 'N': { 2110 case 'F': {
1104 if (find_lib) err("Don't specify -N twice"); 2111 if (out_format) warn("You prob don't want to specify -F twice");
1105 find_lib = xstrdup(optarg); 2112 out_format = optarg;
1106 break; 2113 break;
1107 } 2114 }
1108
1109 case 'F': { 2115 case 'z': {
1110 if (out_format) err("Don't specify -F twice"); 2116 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1111 out_format = xstrdup(optarg); 2117 size_t x;
2118
2119 for (x = 0; x < strlen(optarg); x++) {
2120 switch (optarg[x]) {
2121 case 'p':
2122 case 'P':
2123 do_pax_state(optarg[x], PAGEEXEC);
2124 break;
2125 case 's':
2126 case 'S':
2127 do_pax_state(optarg[x], SEGMEXEC);
2128 break;
2129 case 'm':
2130 case 'M':
2131 do_pax_state(optarg[x], MPROTECT);
2132 break;
2133 case 'e':
2134 case 'E':
2135 do_pax_state(optarg[x], EMUTRAMP);
2136 break;
2137 case 'r':
2138 case 'R':
2139 do_pax_state(optarg[x], RANDMMAP);
2140 break;
2141 case 'x':
2142 case 'X':
2143 do_pax_state(optarg[x], RANDEXEC);
2144 break;
2145 default:
2146 break;
2147 }
2148 }
2149 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
2150 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
2151 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
2152 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
2153 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
2154 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
2155 setpax = flags;
1112 break; 2156 break;
1113 } 2157 }
1114 2158 case 'Z': show_size = 1; break;
1115 case 'g': gmatch = 1; 2159 case 'g': ++g_match; break;
2160 case 'L': load_cache_config = use_ldcache = 1; break;
1116 case 'y': scan_symlink = 0; break; 2161 case 'y': scan_symlink = 0; break;
2162 case 'A': scan_archives = 1; break;
2163 case 'C': color_init(true); break;
1117 case 'B': show_banner = 0; break; 2164 case 'B': show_banner = 0; break;
1118 case 'l': scan_ldpath = 1; break; 2165 case 'l': load_cache_config = scan_ldpath = 1; break;
1119 case 'p': scan_envpath = 1; break; 2166 case 'p': scan_envpath = 1; break;
1120 case 'R': dir_recurse = 1; break; 2167 case 'R': dir_recurse = 1; break;
1121 case 'm': dir_crossmount = 0; break; 2168 case 'm': dir_crossmount = 0; break;
2169 case 'X': ++fix_elf; break;
1122 case 'x': show_pax = 1; break; 2170 case 'x': show_pax = 1; break;
1123 case 'e': show_phdr = 1; break; 2171 case 'e': show_phdr = 1; break;
1124 case 't': show_textrel = 1; break; 2172 case 't': show_textrel = 1; break;
1125 case 'r': show_rpath = 1; break; 2173 case 'r': show_rpath = 1; break;
1126 case 'n': show_needed = 1; break; 2174 case 'n': show_needed = 1; break;
1128 case 'b': show_bind = 1; break; 2176 case 'b': show_bind = 1; break;
1129 case 'S': show_soname = 1; break; 2177 case 'S': show_soname = 1; break;
1130 case 'T': show_textrels = 1; break; 2178 case 'T': show_textrels = 1; break;
1131 case 'q': be_quiet = 1; break; 2179 case 'q': be_quiet = 1; break;
1132 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2180 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1133 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 2181 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1134 2182 case 'D': show_endian = 1; break;
2183 case 'I': show_osabi = 1; break;
2184 case 'Y': show_eabi = 1; break;
2185 case 128:
2186 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2187 if (root_fd == -1)
2188 err("Could not open root: %s", optarg);
2189 break;
2190 case 129: load_cache_config = use_ldpath = 1; break;
1135 case ':': 2191 case ':':
1136 err("Option missing parameter\n"); 2192 err("Option '%c' is missing parameter", optopt);
1137 case '?': 2193 case '?':
1138 err("Unknown option\n"); 2194 err("Unknown option '%c' or argument missing", optopt);
1139 default: 2195 default:
1140 err("Unhandled option '%c'", i); 2196 err("Unhandled option '%c'; please report this", i);
1141 } 2197 }
1142 } 2198 }
2199 if (show_textrels && be_verbose)
2200 has_objdump = bin_in_path("objdump");
2201 /* precompile all the regexes */
2202 if (g_match) {
2203 regex_t preg;
2204 const char *this_sym;
2205 size_t n;
2206 int flags = REG_EXTENDED | REG_NOSUB | (g_match > 1 ? REG_ICASE : 0);
1143 2207
2208 array_for_each(find_sym_arr, n, this_sym) {
2209 /* see scanelf_match_symname for logic info */
2210 switch (this_sym[0]) {
2211 case '%':
2212 while (*(this_sym++))
2213 if (*this_sym == '%') {
2214 ++this_sym;
2215 break;
2216 }
2217 break;
2218 case '+':
2219 case '-':
2220 ++this_sym;
2221 break;
2222 }
2223 if (*this_sym == '*')
2224 ++this_sym;
2225
2226 ret = regcomp(&preg, this_sym, flags);
2227 if (ret) {
2228 char err[256];
2229 regerror(ret, &preg, err, sizeof(err));
2230 err("regcomp of %s failed: %s", this_sym, err);
2231 }
2232 xarraypush(find_sym_regex_arr, &preg, sizeof(preg));
2233 }
2234 }
2235 /* flatten arrays for display */
2236 if (array_cnt(find_sym_arr))
2237 find_sym = array_flatten_str(find_sym_arr);
2238 if (array_cnt(find_lib_arr))
2239 find_lib = array_flatten_str(find_lib_arr);
2240 if (array_cnt(find_section_arr))
2241 find_section = array_flatten_str(find_section_arr);
1144 /* let the format option override all other options */ 2242 /* let the format option override all other options */
1145 if (out_format) { 2243 if (out_format) {
1146 show_pax = show_phdr = show_textrel = show_rpath = \ 2244 show_pax = show_phdr = show_textrel = show_rpath = \
1147 show_needed = show_interp = show_bind = show_soname = \ 2245 show_needed = show_interp = show_bind = show_soname = \
1148 show_textrels = 0; 2246 show_textrels = show_perms = show_endian = show_size = \
2247 show_osabi = show_eabi = 0;
1149 for (i = 0; out_format[i]; ++i) { 2248 for (i = 0; out_format[i]; ++i) {
1150 if (!IS_MODIFIER(out_format[i])) continue; 2249 if (!IS_MODIFIER(out_format[i])) continue;
1151 2250
1152 switch (out_format[++i]) { 2251 switch (out_format[++i]) {
2252 case '+': break;
1153 case '%': break; 2253 case '%': break;
1154 case '#': break; 2254 case '#': break;
1155 case 'F': break; 2255 case 'F': break;
1156 case 'p': break; 2256 case 'p': break;
1157 case 'f': break; 2257 case 'f': break;
2258 case 'k': break;
1158 case 's': break; 2259 case 's': break;
1159 case 'N': break; 2260 case 'N': break;
1160 case 'o': break; 2261 case 'o': break;
2262 case 'a': break;
2263 case 'M': break;
2264 case 'Z': show_size = 1; break;
2265 case 'D': show_endian = 1; break;
2266 case 'I': show_osabi = 1; break;
2267 case 'Y': show_eabi = 1; break;
2268 case 'O': show_perms = 1; break;
1161 case 'x': show_pax = 1; break; 2269 case 'x': show_pax = 1; break;
1162 case 'e': show_phdr = 1; break; 2270 case 'e': show_phdr = 1; break;
1163 case 't': show_textrel = 1; break; 2271 case 't': show_textrel = 1; break;
1164 case 'r': show_rpath = 1; break; 2272 case 'r': show_rpath = 1; break;
1165 case 'n': show_needed = 1; break; 2273 case 'n': show_needed = 1; break;
1166 case 'i': show_interp = 1; break; 2274 case 'i': show_interp = 1; break;
1167 case 'b': show_bind = 1; break; 2275 case 'b': show_bind = 1; break;
1168 case 'S': show_soname = 1; break; 2276 case 'S': show_soname = 1; break;
1169 case 'T': show_textrels = 1; break; 2277 case 'T': show_textrels = 1; break;
1170 default: 2278 default:
1171 err("Invalid format specifier '%c' (byte %i)", 2279 err("invalid format specifier '%c' (byte %i)",
1172 out_format[i], i+1); 2280 out_format[i], i+1);
1173 } 2281 }
1174 } 2282 }
1175 2283
1176 /* construct our default format */ 2284 /* construct our default format */
1177 } else { 2285 } else {
1178 size_t fmt_len = 30; 2286 size_t fmt_len = 30;
1179 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2287 out_format = xmalloc(sizeof(char) * fmt_len);
2288 *out_format = '\0';
1180 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2289 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1181 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2290 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
2291 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2292 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
2293 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
2294 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2295 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1182 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 2296 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1183 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2297 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1184 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2298 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1185 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2299 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1186 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2300 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1187 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len); 2301 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
1188 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len); 2302 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
1189 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len); 2303 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
1190 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 2304 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
2305 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
1191 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len); 2306 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
1192 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2307 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1193 } 2308 }
1194 if (be_verbose > 2) printf("Format: %s\n", out_format); 2309 if (be_verbose > 2) printf("Format: %s\n", out_format);
1195 2310
1196 /* now lets actually do the scanning */ 2311 /* now lets actually do the scanning */
1197 if (scan_ldpath || (show_rpath && be_quiet)) 2312 if (load_cache_config)
1198 load_ld_so_conf(); 2313 load_ld_cache_config(__PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1199 if (scan_ldpath) scanelf_ldpath(); 2314 if (scan_ldpath) scanelf_ldpath();
1200 if (scan_envpath) scanelf_envpath(); 2315 if (scan_envpath) scanelf_envpath();
2316 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
2317 from_file = "-";
1201 if (from_file) { 2318 if (from_file) {
1202 scanelf_from_file(from_file); 2319 scanelf_from_file(from_file);
1203 free(from_file);
1204 from_file = *argv; 2320 from_file = *argv;
1205 } 2321 }
1206 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 2322 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1207 err("Nothing to scan !?"); 2323 err("Nothing to scan !?");
1208 while (optind < argc) { 2324 while (optind < argc) {
1209 search_path = argv[optind++]; 2325 search_path = argv[optind++];
1210 scanelf_dir(search_path); 2326 ret = scanelf_dir(search_path);
1211 } 2327 }
1212 2328
1213 /* clean up */ 2329 /* clean up */
1214 if (find_sym) { 2330 xarrayfree(ldpaths);
2331 xarrayfree(find_sym_arr);
2332 xarrayfree(find_lib_arr);
2333 xarrayfree(find_section_arr);
1215 free(find_sym); 2334 free(find_sym);
1216 free(versioned_symname); 2335 free(find_lib);
2336 free(find_section);
2337 {
2338 size_t n;
2339 regex_t *preg;
2340 array_for_each(find_sym_regex_arr, n, preg)
2341 regfree(preg);
2342 xarrayfree(find_sym_regex_arr);
1217 } 2343 }
1218 if (find_lib) free(find_lib);
1219 if (out_format) free(out_format);
1220 for (i = 0; ldpaths[i]; ++i)
1221 free(ldpaths[i]);
1222}
1223 2344
1224 2345 if (ldcache != 0)
1225 2346 munmap(ldcache, ldcache_size);
1226/* utility funcs */
1227static char *xstrdup(const char *s)
1228{
1229 char *ret = strdup(s);
1230 if (!ret) err("Could not strdup(): %s", strerror(errno));
1231 return ret; 2347 return ret;
1232} 2348}
1233 2349
1234static void *xmalloc(size_t size) 2350static char **get_split_env(const char *envvar)
1235{ 2351{
1236 void *ret = malloc(size); 2352 const char *delims = " \t\n";
1237 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size); 2353 char **envvals = NULL;
1238 return ret; 2354 char *env, *s;
1239} 2355 int nentry;
1240 2356
1241static void xstrcat(char **dst, const char *src, size_t *curr_len) 2357 if ((env = getenv(envvar)) == NULL)
1242{ 2358 return NULL;
1243 size_t new_len;
1244 2359
1245 new_len = strlen(*dst) + strlen(src); 2360 env = xstrdup(env);
1246 if (*curr_len <= new_len) { 2361 if (env == NULL)
1247 *curr_len = new_len + (*curr_len / 2); 2362 return NULL;
1248 *dst = realloc(*dst, *curr_len);
1249 if (!*dst)
1250 err("could not realloc %li bytes", (unsigned long)*curr_len);
1251 }
1252 2363
1253 strcat(*dst, src); 2364 s = strtok(env, delims);
1254} 2365 if (s == NULL) {
2366 free(env);
2367 return NULL;
2368 }
1255 2369
1256static inline void xchrcat(char **dst, const char append, size_t *curr_len) 2370 nentry = 0;
1257{ 2371 while (s != NULL) {
1258 static char my_app[2]; 2372 ++nentry;
1259 my_app[0] = append; 2373 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
1260 my_app[1] = '\0'; 2374 envvals[nentry-1] = s;
1261 xstrcat(dst, my_app, curr_len); 2375 s = strtok(NULL, delims);
1262} 2376 }
2377 envvals[nentry] = NULL;
1263 2378
2379 /* don't want to free(env) as it contains the memory that backs
2380 * the envvals array of strings */
2381 return envvals;
2382}
1264 2383
2384static void parseenv(void)
2385{
2386 color_init(false);
2387 qa_textrels = get_split_env("QA_TEXTRELS");
2388 qa_execstack = get_split_env("QA_EXECSTACK");
2389 qa_wx_load = get_split_env("QA_WX_LOAD");
2390}
2391
2392#ifdef __PAX_UTILS_CLEANUP
2393static void cleanup(void)
2394{
2395 free(out_format);
2396 free(qa_textrels);
2397 free(qa_execstack);
2398 free(qa_wx_load);
2399}
2400#endif
1265 2401
1266int main(int argc, char *argv[]) 2402int main(int argc, char *argv[])
1267{ 2403{
2404 int ret;
1268 if (argc < 2) 2405 if (argc < 2)
1269 usage(EXIT_FAILURE); 2406 usage(EXIT_FAILURE);
2407 parseenv();
1270 parseargs(argc, argv); 2408 ret = parseargs(argc, argv);
1271 fclose(stdout); 2409 fclose(stdout);
1272#ifdef __BOUNDS_CHECKING_ON 2410#ifdef __PAX_UTILS_CLEANUP
1273 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2411 cleanup();
2412 warn("The calls to add/delete heap should be off:\n"
2413 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2414 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1274#endif 2415#endif
1275 return EXIT_SUCCESS; 2416 return ret;
1276} 2417}
2418
2419/* Match filename against entries in matchlist, return TRUE
2420 * if the file is listed */
2421static int file_matches_list(const char *filename, char **matchlist)
2422{
2423 char **file;
2424 char *match;
2425 char buf[__PAX_UTILS_PATH_MAX];
2426
2427 if (matchlist == NULL)
2428 return 0;
2429
2430 for (file = matchlist; *file != NULL; file++) {
2431 if (search_path) {
2432 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2433 match = buf;
2434 } else {
2435 match = *file;
2436 }
2437 if (fnmatch(match, filename, 0) == 0)
2438 return 1;
2439 }
2440 return 0;
2441}

Legend:
Removed from v.1.88  
changed lines
  Added in v.1.249

  ViewVC Help
Powered by ViewVC 1.1.20