/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.96 Revision 1.205
1/* 1/*
2 * Copyright 2003-2005 Gentoo Foundation 2 * Copyright 2003-2007 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.96 2005/12/28 22:26:47 solar Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.205 2008/12/30 13:13:15 vapier Exp $
5 * 5 *
6 * Copyright 2003-2005 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2005 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10#include <stdio.h> 10static const char *rcsid = "$Id: scanelf.c,v 1.205 2008/12/30 13:13:15 vapier Exp $";
11#include <stdlib.h> 11const char * const argv0 = "scanelf";
12#include <sys/types.h> 12
13#include <libgen.h>
14#include <limits.h>
15#include <string.h>
16#include <errno.h>
17#include <unistd.h>
18#include <sys/stat.h>
19#include <sys/mman.h>
20#include <fcntl.h>
21#include <dirent.h>
22#include <getopt.h>
23#include <assert.h>
24#include "paxinc.h" 13#include "paxinc.h"
25 14
26static const char *rcsid = "$Id: scanelf.c,v 1.96 2005/12/28 22:26:47 solar Exp $";
27#define argv0 "scanelf"
28
29#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
30
31
32 16
33/* prototypes */ 17/* prototypes */
34static void scanelf_file(const char *filename); 18static int file_matches_list(const char *filename, char **matchlist);
19static int scanelf_elfobj(elfobj *elf);
20static int scanelf_elf(const char *filename, int fd, size_t len);
21static int scanelf_archive(const char *filename, int fd, size_t len);
22static int scanelf_file(const char *filename, const struct stat *st_cache);
35static void scanelf_dir(const char *path); 23static int scanelf_dir(const char *path);
36static void scanelf_ldpath(); 24static void scanelf_ldpath(void);
37static void scanelf_envpath(); 25static void scanelf_envpath(void);
38static void usage(int status); 26static void usage(int status);
27static char **get_split_env(const char *envvar);
28static void parseenv(void);
39static void parseargs(int argc, char *argv[]); 29static int parseargs(int argc, char *argv[]);
40static char *xstrdup(const char *s); 30static int rematch(const char *regex, const char *match, int cflags);
41static void *xmalloc(size_t size);
42static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
43#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
44static inline void xchrcat(char **dst, const char append, size_t *curr_len);
45 31
46/* variables to control behavior */ 32/* variables to control behavior */
33static char match_etypes[126] = "";
47static char *ldpaths[256]; 34static char *ldpaths[256];
48static char scan_ldpath = 0; 35static char scan_ldpath = 0;
49static char scan_envpath = 0; 36static char scan_envpath = 0;
50static char scan_symlink = 1; 37static char scan_symlink = 1;
38static char scan_archives = 0;
51static char dir_recurse = 0; 39static char dir_recurse = 0;
52static char dir_crossmount = 1; 40static char dir_crossmount = 1;
53static char show_pax = 0; 41static char show_pax = 0;
42static char show_perms = 0;
43static char show_size = 0;
54static char show_phdr = 0; 44static char show_phdr = 0;
55static char show_textrel = 0; 45static char show_textrel = 0;
56static char show_rpath = 0; 46static char show_rpath = 0;
57static char show_needed = 0; 47static char show_needed = 0;
58static char show_interp = 0; 48static char show_interp = 0;
59static char show_bind = 0; 49static char show_bind = 0;
60static char show_soname = 0; 50static char show_soname = 0;
61static char show_textrels = 0; 51static char show_textrels = 0;
62static char show_banner = 1; 52static char show_banner = 1;
53static char show_endian = 0;
54static char show_osabi = 0;
55static char show_eabi = 0;
63static char be_quiet = 0; 56static char be_quiet = 0;
64static char be_verbose = 0; 57static char be_verbose = 0;
65static char be_wewy_wewy_quiet = 0; 58static char be_wewy_wewy_quiet = 0;
66static char *find_sym = NULL, *versioned_symname = NULL; 59static char be_semi_verbose = 0;
60static char *find_sym = NULL;
67static char *find_lib = NULL; 61static char *find_lib = NULL;
62static char *find_section = NULL;
68static char *out_format = NULL; 63static char *out_format = NULL;
69static char *search_path = NULL; 64static char *search_path = NULL;
65static char fix_elf = 0;
70static char gmatch = 0; 66static char g_match = 0;
71static char printcache = 0; 67static char use_ldcache = 0;
72 68
69static char **qa_textrels = NULL;
70static char **qa_execstack = NULL;
71static char **qa_wx_load = NULL;
73 72
73static int match_bits = 0;
74static unsigned int match_perms = 0;
74caddr_t ldcache = 0; 75static caddr_t ldcache = 0;
75size_t ldcache_size = 0; 76static size_t ldcache_size = 0;
77static unsigned long setpax = 0UL;
78
79static int has_objdump = 0;
80
81static const char *getstr_perms(const char *fname)
82{
83 struct stat st;
84 static char buf[8];
85
86 if (stat(fname, &st) == -1)
87 return "";
88
89 snprintf(buf, sizeof(buf), "%o", st.st_mode);
90
91 return buf + 2;
92}
93
94/* find the path to a file by name */
95static char *which(const char *fname)
96{
97 static char fullpath[BUFSIZ];
98 char *path, *p;
99
100 path = getenv("PATH");
101 if (!path)
102 return NULL;
103
104 path = xstrdup(path);
105 while ((p = strrchr(path, ':')) != NULL) {
106 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
107 *p = 0;
108 if (access(fullpath, R_OK) != -1) {
109 free(path);
110 return fullpath;
111 }
112 }
113 free(path);
114 return NULL;
115}
116
117/* 1 on failure. 0 otherwise */
118static int rematch(const char *regex, const char *match, int cflags)
119{
120 regex_t preg;
121 int ret;
122
123 if ((match == NULL) || (regex == NULL))
124 return EXIT_FAILURE;
125
126 if ((ret = regcomp(&preg, regex, cflags))) {
127 char err[256];
128
129 if (regerror(ret, &preg, err, sizeof(err)))
130 fprintf(stderr, "regcomp failed: %s", err);
131 else
132 fprintf(stderr, "regcomp failed");
133
134 return EXIT_FAILURE;
135 }
136 ret = regexec(&preg, match, 0, NULL, 0);
137 regfree(&preg);
138
139 return ret;
140}
76 141
77/* sub-funcs for scanelf_file() */ 142/* sub-funcs for scanelf_file() */
78static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 143static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab)
79{ 144{
80 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 145 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
99 } \ 164 } \
100 } 165 }
101 GET_SYMTABS(32) 166 GET_SYMTABS(32)
102 GET_SYMTABS(64) 167 GET_SYMTABS(64)
103} 168}
169
104static char *scanelf_file_pax(elfobj *elf, char *found_pax) 170static char *scanelf_file_pax(elfobj *elf, char *found_pax)
105{ 171{
106 static char ret[7]; 172 static char ret[7];
107 unsigned long i, shown; 173 unsigned long i, shown;
108 174
117 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 183 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
118 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 184 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
119 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 185 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
120 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \ 186 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
121 continue; \ 187 continue; \
122 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 188 if (fix_elf && setpax) { \
189 /* set the paxctl flags */ \
190 ESET(phdr[i].p_flags, setpax); \
191 } \
192 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
123 continue; \ 193 continue; \
124 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 194 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
125 *found_pax = 1; \ 195 *found_pax = 1; \
126 ++shown; \ 196 ++shown; \
127 break; \ 197 break; \
128 } \ 198 } \
129 } 199 }
130 SHOW_PAX(32) 200 SHOW_PAX(32)
131 SHOW_PAX(64) 201 SHOW_PAX(64)
202 }
203
204 if (fix_elf && setpax) {
205 /* set the chpax settings */
206 if (elf->elf_class == ELFCLASS32) {
207 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC)
208 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
209 } else {
210 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
211 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
212 }
132 } 213 }
133 214
134 /* fall back to EI_PAX if no PT_PAX was found */ 215 /* fall back to EI_PAX if no PT_PAX was found */
135 if (!*ret) { 216 if (!*ret) {
136 static char *paxflags; 217 static char *paxflags;
150 231
151static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 232static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
152{ 233{
153 static char ret[12]; 234 static char ret[12];
154 char *found; 235 char *found;
155 unsigned long i, shown;
156 unsigned char multi_stack, multi_relro, multi_load; 236 unsigned long i, shown, multi_stack, multi_relro, multi_load;
237 int max_pt_load;
157 238
158 if (!show_phdr) return NULL; 239 if (!show_phdr) return NULL;
159 240
160 memcpy(ret, "--- --- ---\0", 12); 241 memcpy(ret, "--- --- ---\0", 12);
161 242
162 shown = 0; 243 shown = 0;
163 multi_stack = multi_relro = multi_load = 0; 244 multi_stack = multi_relro = multi_load = 0;
245 max_pt_load = elf_max_pt_load(elf);
164 246
247#define NOTE_GNU_STACK ".note.GNU-stack"
165#define SHOW_PHDR(B) \ 248#define SHOW_PHDR(B) \
166 if (elf->elf_class == ELFCLASS ## B) { \ 249 if (elf->elf_class == ELFCLASS ## B) { \
167 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 250 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
168 Elf ## B ## _Off offset; \ 251 Elf ## B ## _Off offset; \
169 uint32_t flags, check_flags; \ 252 uint32_t flags, check_flags; \
170 if (elf->phdr != NULL) { \ 253 if (elf->phdr != NULL) { \
171 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 254 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
172 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \ 255 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
173 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 256 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
257 if (multi_stack++) \
174 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 258 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
259 if (file_matches_list(elf->filename, qa_execstack)) \
260 continue; \
175 found = found_phdr; \ 261 found = found_phdr; \
176 offset = 0; \ 262 offset = 0; \
177 check_flags = PF_X; \ 263 check_flags = PF_X; \
178 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 264 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
265 if (multi_relro++) \
179 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 266 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
180 found = found_relro; \ 267 found = found_relro; \
181 offset = 4; \ 268 offset = 4; \
182 check_flags = PF_X; \ 269 check_flags = PF_X; \
183 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 270 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
184 if (multi_load++ > 2) warnf("%s: more than 2 PT_LOAD's !?", elf->filename); \ 271 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
272 if (multi_load++ > max_pt_load) \
273 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
274 if (file_matches_list(elf->filename, qa_wx_load)) \
275 continue; \
185 found = found_load; \ 276 found = found_load; \
186 offset = 8; \ 277 offset = 8; \
187 check_flags = PF_W|PF_X; \ 278 check_flags = PF_W|PF_X; \
188 } else \ 279 } else \
189 continue; \ 280 continue; \
190 flags = EGET(phdr[i].p_flags); \ 281 flags = EGET(phdr[i].p_flags); \
191 if (be_quiet && ((flags & check_flags) != check_flags)) \ 282 if (be_quiet && ((flags & check_flags) != check_flags)) \
192 continue; \ 283 continue; \
284 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
285 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
286 ret[3] = ret[7] = '!'; \
287 flags = EGET(phdr[i].p_flags); \
288 } \
193 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \ 289 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
194 *found = 1; \ 290 *found = 1; \
195 ++shown; \ 291 ++shown; \
196 } \ 292 } \
197 } else if (elf->shdr != NULL) { \ 293 } else if (elf->shdr != NULL) { \
198 /* no program headers which means this is prob an object file */ \ 294 /* no program headers which means this is prob an object file */ \
199 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 295 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
200 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 296 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
297 char *str; \
298 if ((void*)strtbl > (void*)elf->data_end) \
299 goto skip_this_shdr##B; \
201 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 300 check_flags = SHF_WRITE|SHF_EXECINSTR; \
202 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 301 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
203 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 302 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
204 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 303 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
205 if (!strcmp((char*)(elf->data + offset), ".note.GNU-stack")) { \ 304 str = elf->data + offset; \
305 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \
306 if (!strcmp(str, NOTE_GNU_STACK)) { \
206 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \ 307 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \
207 flags = EGET(shdr[i].sh_flags); \ 308 flags = EGET(shdr[i].sh_flags); \
208 if (be_quiet && ((flags & check_flags) != check_flags)) \ 309 if (be_quiet && ((flags & check_flags) != check_flags)) \
209 continue; \ 310 continue; \
210 ++*found_phdr; \ 311 ++*found_phdr; \
214 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \ 315 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \
215 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \ 316 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \
216 break; \ 317 break; \
217 } \ 318 } \
218 } \ 319 } \
320 skip_this_shdr##B: \
219 if (!multi_stack) { \ 321 if (!multi_stack) { \
322 if (file_matches_list(elf->filename, qa_execstack)) \
323 return NULL; \
220 *found_phdr = 1; \ 324 *found_phdr = 1; \
221 shown = 1; \ 325 shown = 1; \
222 memcpy(ret, "!WX", 3); \ 326 memcpy(ret, "!WX", 3); \
223 } \ 327 } \
224 } \ 328 } \
229 if (be_wewy_wewy_quiet || (be_quiet && !shown)) 333 if (be_wewy_wewy_quiet || (be_quiet && !shown))
230 return NULL; 334 return NULL;
231 else 335 else
232 return ret; 336 return ret;
233} 337}
338
339/*
340 * See if this ELF contains a DT_TEXTREL tag in any of its
341 * PT_DYNAMIC sections.
342 */
234static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 343static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
235{ 344{
236 static const char *ret = "TEXTREL"; 345 static const char *ret = "TEXTREL";
237 unsigned long i; 346 unsigned long i;
238 347
239 if (!show_textrel && !show_textrels) return NULL; 348 if (!show_textrel && !show_textrels) return NULL;
349
350 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
240 351
241 if (elf->phdr) { 352 if (elf->phdr) {
242#define SHOW_TEXTREL(B) \ 353#define SHOW_TEXTREL(B) \
243 if (elf->elf_class == ELFCLASS ## B) { \ 354 if (elf->elf_class == ELFCLASS ## B) { \
244 Elf ## B ## _Dyn *dyn; \ 355 Elf ## B ## _Dyn *dyn; \
245 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 356 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
246 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 357 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
247 Elf ## B ## _Off offset; \ 358 Elf ## B ## _Off offset; \
248 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 359 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
249 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 360 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
250 offset = EGET(phdr[i].p_offset); \ 361 offset = EGET(phdr[i].p_offset); \
251 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 362 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
252 dyn = DYN ## B (elf->data + offset); \ 363 dyn = DYN ## B (elf->data + offset); \
253 while (EGET(dyn->d_tag) != DT_NULL) { \ 364 while (EGET(dyn->d_tag) != DT_NULL) { \
254 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 365 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
266 if (be_quiet || be_wewy_wewy_quiet) 377 if (be_quiet || be_wewy_wewy_quiet)
267 return NULL; 378 return NULL;
268 else 379 else
269 return " - "; 380 return " - ";
270} 381}
382
383/*
384 * Scan the .text section to see if there are any relocations in it.
385 * Should rewrite this to check PT_LOAD sections that are marked
386 * Executable rather than the section named '.text'.
387 */
271static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 388static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
272{ 389{
273 unsigned long s, r, rmax; 390 unsigned long s, r, rmax;
274 void *symtab_void, *strtab_void, *text_void; 391 void *symtab_void, *strtab_void, *text_void;
275 392
327 if (be_verbose <= 2) continue; \ 444 if (be_verbose <= 2) continue; \
328 } else \ 445 } else \
329 *found_textrels = 1; \ 446 *found_textrels = 1; \
330 /* locate this relocation symbol name */ \ 447 /* locate this relocation symbol name */ \
331 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 448 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
449 if ((void*)sym > (void*)elf->data_end) { \
450 warn("%s: corrupt ELF symbol", elf->filename); \
451 continue; \
452 } \
332 sym_max = ELF ## B ## _R_SYM(r_info); \ 453 sym_max = ELF ## B ## _R_SYM(r_info); \
333 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 454 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
334 sym += sym_max; \ 455 sym += sym_max; \
335 else \ 456 else \
336 sym = NULL; \ 457 sym = NULL; \
338 /* show the raw details about this reloc */ \ 459 /* show the raw details about this reloc */ \
339 printf(" %s: ", elf->base_filename); \ 460 printf(" %s: ", elf->base_filename); \
340 if (sym && sym->st_name) \ 461 if (sym && sym->st_name) \
341 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 462 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \
342 else \ 463 else \
343 printf("(memory/fake?)"); \ 464 printf("(memory/data?)"); \
344 printf(" [0x%lX]", (unsigned long)r_offset); \ 465 printf(" [0x%lX]", (unsigned long)r_offset); \
345 /* now try to find the closest symbol that this rel is probably in */ \ 466 /* now try to find the closest symbol that this rel is probably in */ \
346 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 467 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
347 func = NULL; \ 468 func = NULL; \
348 offset_tmp = 0; \ 469 offset_tmp = 0; \
352 offset_tmp = EGET(sym->st_value); \ 473 offset_tmp = EGET(sym->st_value); \
353 } \ 474 } \
354 ++sym; \ 475 ++sym; \
355 } \ 476 } \
356 printf(" in "); \ 477 printf(" in "); \
357 if (func && func->st_name) \ 478 if (func && func->st_name) { \
358 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 479 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
480 if (r_offset > EGET(func->st_size)) \
481 printf("(optimized out: previous %s)", func_name); \
359 else \ 482 else \
360 printf("(NULL: fake?)"); \ 483 printf("%s", func_name); \
484 } else \
485 printf("(optimized out)"); \
361 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 486 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
487 if (be_verbose && has_objdump) { \
488 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
489 char *sysbuf; \
490 size_t syslen; \
491 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
492 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
493 sysbuf = xmalloc(syslen); \
494 if (end_addr < r_offset) \
495 /* not uncommon when things are optimized out */ \
496 end_addr = r_offset + 0x100; \
497 snprintf(sysbuf, syslen, sysfmt, \
498 (unsigned long)offset_tmp, \
499 (unsigned long)end_addr, \
500 elf->filename, \
501 (unsigned long)r_offset); \
502 fflush(stdout); \
503 system(sysbuf); \
504 fflush(stdout); \
505 free(sysbuf); \
506 } \
362 } \ 507 } \
363 } } 508 } }
364 SHOW_TEXTRELS(32) 509 SHOW_TEXTRELS(32)
365 SHOW_TEXTRELS(64) 510 SHOW_TEXTRELS(64)
366 } 511 }
368 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 513 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
369 514
370 return NULL; 515 return NULL;
371} 516}
372 517
373static void rpath_security_checks(elfobj *, char *); 518static void rpath_security_checks(elfobj *, char *, const char *);
374static void rpath_security_checks(elfobj *elf, char *item) { 519static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
520{
375 struct stat st; 521 struct stat st;
376 switch (*item) { 522 switch (*item) {
377 case '/': break; 523 case '/': break;
378 case '.': 524 case '.':
379 warnf("Security problem with relative RPATH '%s' in %s", item, elf->filename); 525 warnf("Security problem with relative %s '%s' in %s", dt_type, item, elf->filename);
380 break; 526 break;
527 case ':':
381 case '\0': 528 case '\0':
382 warnf("Security problem NULL RPATH in %s", elf->filename); 529 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
383 break; 530 break;
384 case '$': 531 case '$':
385 if (fstat(elf->fd, &st) != -1) 532 if (fstat(elf->fd, &st) != -1)
386 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 533 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
387 warnf("Security problem with RPATH='%s' in %s with mode set of %o", 534 warnf("Security problem with %s='%s' in %s with mode set of %o",
388 item, elf->filename, st.st_mode & 07777); 535 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
389 break; 536 break;
390 default: 537 default:
391 warnf("Maybe? sec problem with RPATH='%s' in %s", item, elf->filename); 538 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
392 break; 539 break;
393 } 540 }
394} 541}
395static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 542static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
396{ 543{
413 Elf ## B ## _Off offset; \ 560 Elf ## B ## _Off offset; \
414 Elf ## B ## _Xword word; \ 561 Elf ## B ## _Xword word; \
415 /* Scan all the program headers */ \ 562 /* Scan all the program headers */ \
416 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 563 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
417 /* Just scan dynamic headers */ \ 564 /* Just scan dynamic headers */ \
418 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 565 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
419 offset = EGET(phdr[i].p_offset); \ 566 offset = EGET(phdr[i].p_offset); \
420 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 567 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
421 /* Just scan dynamic RPATH/RUNPATH headers */ \ 568 /* Just scan dynamic RPATH/RUNPATH headers */ \
422 dyn = DYN ## B (elf->data + offset); \ 569 dyn = DYN ## B (elf->data + offset); \
423 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 570 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
432 /* Verify the memory is somewhat sane */ \ 579 /* Verify the memory is somewhat sane */ \
433 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 580 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
434 if (offset < (Elf ## B ## _Off)elf->len) { \ 581 if (offset < (Elf ## B ## _Off)elf->len) { \
435 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 582 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
436 *r = (char*)(elf->data + offset); \ 583 *r = (char*)(elf->data + offset); \
584 /* cache the length in case we need to nuke this section later on */ \
585 if (fix_elf) \
586 offset = strlen(*r); \
437 /* If quiet, don't output paths in ld.so.conf */ \ 587 /* If quiet, don't output paths in ld.so.conf */ \
438 if (be_quiet) { \ 588 if (be_quiet) { \
439 size_t len; \ 589 size_t len; \
440 char *start, *end; \ 590 char *start, *end; \
441 /* note that we only 'chop' off leading known paths. */ \ 591 /* note that we only 'chop' off leading known paths. */ \
442 /* since *r is read-only memory, we can only move the ptr forward. */ \ 592 /* since *r is read-only memory, we can only move the ptr forward. */ \
443 start = *r; \ 593 start = *r; \
444 /* scan each path in : delimited list */ \ 594 /* scan each path in : delimited list */ \
445 while (start) { \ 595 while (start) { \
446 rpath_security_checks(elf, start); \ 596 rpath_security_checks(elf, start, get_elfdtype(word)); \
447 end = strchr(start, ':'); \ 597 end = strchr(start, ':'); \
448 len = (end ? abs(end - start) : strlen(start)); \ 598 len = (end ? abs(end - start) : strlen(start)); \
599 if (use_ldcache) \
449 for (s = 0; ldpaths[s]; ++s) { \ 600 for (s = 0; ldpaths[s]; ++s) \
450 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 601 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \
451 *r = (end ? end + 1 : NULL); \ 602 *r = end; \
603 /* corner case ... if RPATH reads "/usr/lib:", we want \
604 * to show ':' rather than '' */ \
605 if (end && end[1] != '\0') \
606 (*r)++; \
452 break; \ 607 break; \
453 } \ 608 } \
454 } \
455 if (!*r || !ldpaths[s] || !end) \ 609 if (!*r || !end) \
456 start = NULL; \ 610 break; \
457 else \ 611 else \
458 start = start + len + 1; \ 612 start = start + len + 1; \
459 } \ 613 } \
460 } \ 614 } \
615 if (*r) { \
616 if (fix_elf > 2 || (fix_elf && **r == '\0')) { \
617 /* just nuke it */ \
618 nuke_it##B: \
619 memset(*r, 0x00, offset); \
620 *r = NULL; \
621 ESET(dyn->d_tag, DT_DEBUG); \
622 ESET(dyn->d_un.d_ptr, 0); \
623 } else if (fix_elf) { \
624 /* try to clean "bad" paths */ \
625 size_t len, tmpdir_len; \
626 char *start, *end; \
627 const char *tmpdir; \
628 start = *r; \
629 tmpdir = (getenv("TMPDIR") ? : "."); \
630 tmpdir_len = strlen(tmpdir); \
631 while (1) { \
632 end = strchr(start, ':'); \
633 if (start == end) { \
634 eat_this_path##B: \
635 len = strlen(end); \
636 memmove(start, end+1, len); \
637 start[len-1] = '\0'; \
638 end = start - 1; \
639 } else if (tmpdir && !strncmp(start, tmpdir, tmpdir_len)) { \
640 if (!end) { \
641 if (start == *r) \
642 goto nuke_it##B; \
643 *--start = '\0'; \
644 } else \
645 goto eat_this_path##B; \
646 } \
647 if (!end) \
648 break; \
649 start = end + 1; \
650 } \
651 if (**r == '\0') \
652 goto nuke_it##B; \
653 } \
654 if (*r) \
461 if (*r) *found_rpath = 1; \ 655 *found_rpath = 1; \
656 } \
462 } \ 657 } \
463 ++dyn; \ 658 ++dyn; \
464 } \ 659 } \
465 } } 660 } }
466 SHOW_RPATH(32) 661 SHOW_RPATH(32)
488 683
489#define LDSO_CACHE_MAGIC "ld.so-" 684#define LDSO_CACHE_MAGIC "ld.so-"
490#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1) 685#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
491#define LDSO_CACHE_VER "1.7.0" 686#define LDSO_CACHE_VER "1.7.0"
492#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1) 687#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
688#define FLAG_ANY -1
689#define FLAG_TYPE_MASK 0x00ff
690#define FLAG_LIBC4 0x0000
691#define FLAG_ELF 0x0001
692#define FLAG_ELF_LIBC5 0x0002
693#define FLAG_ELF_LIBC6 0x0003
694#define FLAG_REQUIRED_MASK 0xff00
695#define FLAG_SPARC_LIB64 0x0100
696#define FLAG_IA64_LIB64 0x0200
697#define FLAG_X8664_LIB64 0x0300
698#define FLAG_S390_LIB64 0x0400
699#define FLAG_POWERPC_LIB64 0x0500
700#define FLAG_MIPS64_LIBN32 0x0600
701#define FLAG_MIPS64_LIBN64 0x0700
493 702
494static char *lookup_cache_lib(char *); 703static char *lookup_cache_lib(elfobj *, char *);
704
705#if defined(__GLIBC__) || defined(__UCLIBC__)
706
495static char *lookup_cache_lib(char *fname) 707static char *lookup_cache_lib(elfobj *elf, char *fname)
496{ 708{
497 int fd = 0; 709 int fd = 0;
498 char *strs; 710 char *strs;
499 static char buf[_POSIX_PATH_MAX] = ""; 711 static char buf[__PAX_UTILS_PATH_MAX] = "";
500 const char *cachefile = "/etc/ld.so.cache"; 712 const char *cachefile = "/etc/ld.so.cache";
501 struct stat st; 713 struct stat st;
502 714
503 typedef struct { 715 typedef struct {
504 char magic[LDSO_CACHE_MAGIC_LEN]; 716 char magic[LDSO_CACHE_MAGIC_LEN];
505 char version[LDSO_CACHE_VER_LEN]; 717 char version[LDSO_CACHE_VER_LEN];
506 int nlibs; 718 int nlibs;
507 } header_t; 719 } header_t;
720 header_t *header;
508 721
509 typedef struct { 722 typedef struct {
510 int flags; 723 int flags;
511 int sooffset; 724 int sooffset;
512 int liboffset; 725 int liboffset;
513 } libentry_t; 726 } libentry_t;
514
515 header_t *header;
516 libentry_t *libent; 727 libentry_t *libent;
517 728
518 if (fname == NULL) 729 if (fname == NULL)
519 return NULL; 730 return NULL;
520 731
521 if (ldcache == 0) { 732 if (ldcache == 0) {
522 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) < 0) 733 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1)
523 return NULL; 734 return NULL;
524 /* save the cache size for latter unmapping */ 735
736 /* cache these values so we only map/unmap the cache file once */
525 ldcache_size = st.st_size; 737 ldcache_size = st.st_size;
526
527 if ((ldcache = mmap(0, st.st_size, PROT_READ, MAP_SHARED, fd, 0)) == (caddr_t) -1) 738 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
739
740 close(fd);
741
742 if (ldcache == MAP_FAILED) {
743 ldcache = 0;
528 return NULL; 744 return NULL;
529 745 }
530 close(fd);
531 746
532 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 747 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN))
533 return NULL; 748 return NULL;
534
535 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN)) 749 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
536 return NULL; 750 return NULL;
537 } 751 }
538 752
539 header = (header_t *) ldcache; 753 header = (header_t *) ldcache;
540 libent = (libentry_t *) (ldcache + sizeof(header_t)); 754 libent = (libentry_t *) (ldcache + sizeof(header_t));
541 strs = (char *) &libent[header->nlibs]; 755 strs = (char *) &libent[header->nlibs];
542 756
543 for (fd = 0; fd < header->nlibs; fd++) { 757 for (fd = 0; fd < header->nlibs; fd++) {
758 /* this should be more fine grained, but for now we assume that
759 * diff arches will not be cached together. and we ignore the
760 * the different multilib mips cases. */
761 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
762 continue;
763 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
764 continue;
765
544 if (strcmp(fname, strs + libent[fd].sooffset) != 0) 766 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
545 continue; 767 continue;
546 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 768 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
547 } 769 }
548 return buf; 770 return buf;
549} 771}
772#elif defined(__NetBSD__)
773static char *lookup_cache_lib(elfobj *elf, char *fname)
774{
775 static char buf[__PAX_UTILS_PATH_MAX] = "";
776 static struct stat st;
550 777
778 char **ldpath;
779 for (ldpath = ldpaths; *ldpath != NULL; ldpath++) {
780 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", *ldpath, fname) >= sizeof(buf))
781 continue; /* if the pathname is too long, or something went wrong, ignore */
782
783 if (stat(buf, &st) != 0)
784 continue; /* if the lib doesn't exist in *ldpath, look further */
785
786 /* NetBSD doesn't actually do sanity checks, it just loads the file
787 * and if that doesn't work, continues looking in other directories.
788 * This cannot easily be safely emulated, unfortunately. For now,
789 * just assume that if it exists, it's a valid library. */
790
791 return buf;
792 }
793
794 /* not found in any path */
795 return NULL;
796}
797#else
798#ifdef __ELF__
799#warning Cache support not implemented for your target
800#endif
801static char *lookup_cache_lib(elfobj *elf, char *fname)
802{
803 return NULL;
804}
805#endif
551 806
552static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 807static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
553{ 808{
554 unsigned long i; 809 unsigned long i;
555 char *needed; 810 char *needed;
567 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 822 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
568 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 823 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
569 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 824 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
570 Elf ## B ## _Off offset; \ 825 Elf ## B ## _Off offset; \
571 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 826 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
572 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 827 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
573 offset = EGET(phdr[i].p_offset); \ 828 offset = EGET(phdr[i].p_offset); \
574 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 829 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
575 dyn = DYN ## B (elf->data + offset); \ 830 dyn = DYN ## B (elf->data + offset); \
576 while (EGET(dyn->d_tag) != DT_NULL) { \ 831 while (EGET(dyn->d_tag) != DT_NULL) { \
577 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 832 if (EGET(dyn->d_tag) == DT_NEEDED) { \
582 } \ 837 } \
583 needed = (char*)(elf->data + offset); \ 838 needed = (char*)(elf->data + offset); \
584 if (op == 0) { \ 839 if (op == 0) { \
585 if (!be_wewy_wewy_quiet) { \ 840 if (!be_wewy_wewy_quiet) { \
586 if (*found_needed) xchrcat(ret, ',', ret_len); \ 841 if (*found_needed) xchrcat(ret, ',', ret_len); \
587 if (printcache) \ 842 if (use_ldcache) \
588 if ((p = lookup_cache_lib(needed)) != NULL) \ 843 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
589 needed = p; \ 844 needed = p; \
590 xstrcat(ret, needed, ret_len); \ 845 xstrcat(ret, needed, ret_len); \
591 } \ 846 } \
592 *found_needed = 1; \ 847 *found_needed = 1; \
593 } else { \ 848 } else { \
594 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 849 if (!strncmp(find_lib, needed, strlen( !g_match ? needed : find_lib))) { \
595 *found_lib = 1; \ 850 *found_lib = 1; \
596 return (be_wewy_wewy_quiet ? NULL : needed); \ 851 return (be_wewy_wewy_quiet ? NULL : needed); \
597 } \ 852 } \
598 } \ 853 } \
599 } \ 854 } \
630} 885}
631static char *scanelf_file_bind(elfobj *elf, char *found_bind) 886static char *scanelf_file_bind(elfobj *elf, char *found_bind)
632{ 887{
633 unsigned long i; 888 unsigned long i;
634 struct stat s; 889 struct stat s;
890 char dynamic = 0;
635 891
636 if (!show_bind) return NULL; 892 if (!show_bind) return NULL;
637 if (!elf->phdr) return NULL; 893 if (!elf->phdr) return NULL;
638 894
639#define SHOW_BIND(B) \ 895#define SHOW_BIND(B) \
641 Elf ## B ## _Dyn *dyn; \ 897 Elf ## B ## _Dyn *dyn; \
642 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 898 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
643 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 899 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
644 Elf ## B ## _Off offset; \ 900 Elf ## B ## _Off offset; \
645 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 901 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
646 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 902 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
903 dynamic = 1; \
647 offset = EGET(phdr[i].p_offset); \ 904 offset = EGET(phdr[i].p_offset); \
648 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 905 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
649 dyn = DYN ## B (elf->data + offset); \ 906 dyn = DYN ## B (elf->data + offset); \
650 while (EGET(dyn->d_tag) != DT_NULL) { \ 907 while (EGET(dyn->d_tag) != DT_NULL) { \
651 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 908 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
662 SHOW_BIND(32) 919 SHOW_BIND(32)
663 SHOW_BIND(64) 920 SHOW_BIND(64)
664 921
665 if (be_wewy_wewy_quiet) return NULL; 922 if (be_wewy_wewy_quiet) return NULL;
666 923
924 /* don't output anything if quiet mode and the ELF is static or not setuid */
667 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 925 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
668 return NULL; 926 return NULL;
669 } else { 927 } else {
670 *found_bind = 1; 928 *found_bind = 1;
671 return (char *) "LAZY"; 929 return (char *) (dynamic ? "LAZY" : "STATIC");
672 } 930 }
673} 931}
674static char *scanelf_file_soname(elfobj *elf, char *found_soname) 932static char *scanelf_file_soname(elfobj *elf, char *found_soname)
675{ 933{
676 unsigned long i; 934 unsigned long i;
688 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 946 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
689 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 947 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
690 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 948 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
691 Elf ## B ## _Off offset; \ 949 Elf ## B ## _Off offset; \
692 /* only look for soname in shared objects */ \ 950 /* only look for soname in shared objects */ \
693 if (ehdr->e_type != ET_DYN) \ 951 if (EGET(ehdr->e_type) != ET_DYN) \
694 return NULL; \ 952 return NULL; \
695 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 953 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
696 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 954 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
697 offset = EGET(phdr[i].p_offset); \ 955 offset = EGET(phdr[i].p_offset); \
698 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 956 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
699 dyn = DYN ## B (elf->data + offset); \ 957 dyn = DYN ## B (elf->data + offset); \
700 while (EGET(dyn->d_tag) != DT_NULL) { \ 958 while (EGET(dyn->d_tag) != DT_NULL) { \
701 if (EGET(dyn->d_tag) == DT_SONAME) { \ 959 if (EGET(dyn->d_tag) == DT_SONAME) { \
715 SHOW_SONAME(64) 973 SHOW_SONAME(64)
716 } 974 }
717 975
718 return NULL; 976 return NULL;
719} 977}
978
979static int scanelf_match_symname(const char *symname, const char *tomatch) {
980 /* We do things differently when checking with regexp */
981 if (g_match) {
982 return rematch(symname, tomatch, REG_EXTENDED) == 0;
983 } else {
984 const size_t symname_len = strlen(symname);
985 return (strncmp(symname, tomatch, symname_len) == 0 &&
986 /* Accept unversioned symbol names */
987 (tomatch[symname_len] == '\0' || tomatch[symname_len] == '@'));
988 }
989}
990
720static char *scanelf_file_sym(elfobj *elf, char *found_sym) 991static char *scanelf_file_sym(elfobj *elf, char *found_sym)
721{ 992{
722 unsigned long i; 993 unsigned long i;
723 char *ret; 994 char *ret;
724 void *symtab_void, *strtab_void; 995 void *symtab_void, *strtab_void;
732#define FIND_SYM(B) \ 1003#define FIND_SYM(B) \
733 if (elf->elf_class == ELFCLASS ## B) { \ 1004 if (elf->elf_class == ELFCLASS ## B) { \
734 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1005 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
735 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1006 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
736 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1007 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
737 unsigned long cnt = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 1008 unsigned long cnt = EGET(symtab->sh_entsize); \
738 char *symname; \ 1009 char *symname; \
1010 if (cnt) \
1011 cnt = EGET(symtab->sh_size) / cnt; \
739 for (i = 0; i < cnt; ++i) { \ 1012 for (i = 0; i < cnt; ++i) { \
1013 if ((void*)sym > (void*)elf->data_end) { \
1014 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1015 goto break_out; \
1016 } \
740 if (sym->st_name) { \ 1017 if (sym->st_name) { \
1018 /* make sure the symbol name is in acceptable memory range */ \
741 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1019 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
742 if (*find_sym == '*') { \ 1020 if ((void*)symname > (void*)elf->data_end) { \
1021 warnf("%s: corrupt ELF symbols", elf->filename); \
1022 ++sym; \
1023 continue; \
1024 } \
1025 /* debug display ... show all symbols and some extra info */ \
1026 if (0 && g_match ? rematch(ret, symname, REG_EXTENDED) == 0 : *ret == '*') { \
743 printf("%s(%s) %5lX %15s %s\n", \ 1027 printf("%s(%s) %5lX %15s %s %s\n", \
744 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1028 ((*found_sym == 0) ? "\n\t" : "\t"), \
745 elf->base_filename, \ 1029 elf->base_filename, \
746 (unsigned long)sym->st_size, \ 1030 (unsigned long)sym->st_size, \
747 get_elfstttype(sym->st_info), \ 1031 get_elfstttype(sym->st_info), \
748 symname); \ 1032 sym->st_shndx == SHN_UNDEF ? "U" : "D", symname); \
749 *found_sym = 1; \ 1033 *found_sym = 1; \
750 } else { \ 1034 } else { \
1035 /* allow the user to specify a comma delimited list of symbols to search for */ \
751 char *this_sym, *next_sym; \ 1036 char *this_sym, *next_sym; \
1037 next_sym = ret; \
1038 while (next_sym) { \
752 this_sym = find_sym; \ 1039 this_sym = next_sym; \
753 do { \
754 next_sym = strchr(this_sym, ','); \ 1040 if ((next_sym = strchr(this_sym, ','))) \
755 if (next_sym == NULL) \ 1041 next_sym += 1; /* Skip the comma */ \
756 next_sym = this_sym + strlen(this_sym); \ 1042 /* do we want a defined symbol ? */ \
757 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \ 1043 if (*this_sym == '+') { \
758 (strcmp(symname, versioned_symname) == 0)) { \ 1044 if (sym->st_shndx == SHN_UNDEF) \
1045 continue; \
759 ret = this_sym; \ 1046 ++this_sym; \
1047 /* do we want an undefined symbol ? */ \
1048 } else if (*this_sym == '-') { \
1049 if (sym->st_shndx != SHN_UNDEF) \
1050 continue; \
1051 ++this_sym; \
1052 } \
1053 if (next_sym) /* Copy it so that we don't have to worry about the final , */ \
1054 this_sym = strndup(this_sym, next_sym-this_sym); \
1055 /* ok, lets compare the name now */ \
1056 if (scanelf_match_symname(this_sym, symname)) { \
1057 if (be_semi_verbose) { \
1058 char buf[126]; \
1059 snprintf(buf, sizeof(buf), "%lX %s %s", \
1060 (unsigned long)sym->st_size, get_elfstttype(sym->st_info), this_sym); \
1061 ret = buf; \
1062 } else \
1063 ret = symname; \
760 (*found_sym)++; \ 1064 (*found_sym)++; \
761 goto break_out; \ 1065 goto break_out; \
762 } \ 1066 } \
763 this_sym = next_sym + 1; \ 1067 if (next_sym) free(this_sym); \
764 } while (*next_sym != '\0'); \ 1068 } \
765 } \ 1069 } \
766 } \ 1070 } \
767 ++sym; \ 1071 ++sym; \
768 } } 1072 } }
769 FIND_SYM(32) 1073 FIND_SYM(32)
778 if (be_quiet) 1082 if (be_quiet)
779 return NULL; 1083 return NULL;
780 else 1084 else
781 return (char *)" - "; 1085 return (char *)" - ";
782} 1086}
1087
1088static char *scanelf_file_sections(elfobj *elf, char *found_section)
1089{
1090 if (!find_section)
1091 return NULL;
1092
1093#define FIND_SECTION(B) \
1094 if (elf->elf_class == ELFCLASS ## B) { \
1095 int invert; \
1096 Elf ## B ## _Shdr *section; \
1097 invert = (*find_section == '!' ? 1 : 0); \
1098 section = SHDR ## B (elf_findsecbyname(elf, find_section+invert)); \
1099 if ((section == NULL && invert) || (section != NULL && !invert)) \
1100 *found_section = 1; \
1101 }
1102 FIND_SECTION(32)
1103 FIND_SECTION(64)
1104
1105 if (be_wewy_wewy_quiet)
1106 return NULL;
1107
1108 if (*found_section)
1109 return find_section;
1110
1111 if (be_quiet)
1112 return NULL;
1113 else
1114 return (char *)" - ";
1115}
1116
783/* scan an elf file and show all the fun stuff */ 1117/* scan an elf file and show all the fun stuff */
784#define prints(str) write(fileno(stdout), str, strlen(str)) 1118#define prints(str) write(fileno(stdout), str, strlen(str))
785static void scanelf_file(const char *filename) 1119static int scanelf_elfobj(elfobj *elf)
786{ 1120{
787 unsigned long i; 1121 unsigned long i;
788 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1122 char found_pax, found_phdr, found_relro, found_load, found_textrel,
789 found_rpath, found_needed, found_interp, found_bind, found_soname, 1123 found_rpath, found_needed, found_interp, found_bind, found_soname,
790 found_sym, found_lib, found_file, found_textrels; 1124 found_sym, found_lib, found_file, found_textrels, found_section;
791 elfobj *elf;
792 struct stat st;
793 static char *out_buffer = NULL; 1125 static char *out_buffer = NULL;
794 static size_t out_len; 1126 static size_t out_len;
795 1127
796 /* make sure 'filename' exists */
797 if (lstat(filename, &st) == -1) {
798 if (be_verbose > 2) printf("%s: does not exist\n", filename);
799 return;
800 }
801 /* always handle regular files and handle symlinked files if no -y */
802 if (S_ISLNK(st.st_mode)) {
803 if (!scan_symlink) return;
804 stat(filename, &st);
805 }
806 if (!S_ISREG(st.st_mode)) {
807 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
808 return;
809 }
810
811 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1128 found_pax = found_phdr = found_relro = found_load = found_textrel = \
812 found_rpath = found_needed = found_interp = found_bind = found_soname = \ 1129 found_rpath = found_needed = found_interp = found_bind = found_soname = \
813 found_sym = found_lib = found_file = found_textrels = 0; 1130 found_sym = found_lib = found_file = found_textrels = found_section = 0;
814 1131
815 /* verify this is real ELF */
816 if ((elf = readelf(filename)) == NULL) {
817 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
818 return;
819 }
820
821 if (be_verbose > 1) 1132 if (be_verbose > 2)
822 printf("%s: scanning file {%s,%s}\n", filename, 1133 printf("%s: scanning file {%s,%s}\n", elf->filename,
823 get_elfeitype(EI_CLASS, elf->elf_class), 1134 get_elfeitype(EI_CLASS, elf->elf_class),
824 get_elfeitype(EI_DATA, elf->data[EI_DATA])); 1135 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
825 else if (be_verbose) 1136 else if (be_verbose > 1)
826 printf("%s: scanning file\n", filename); 1137 printf("%s: scanning file\n", elf->filename);
827 1138
828 /* init output buffer */ 1139 /* init output buffer */
829 if (!out_buffer) { 1140 if (!out_buffer) {
830 out_len = sizeof(char) * 80; 1141 out_len = sizeof(char) * 80;
831 out_buffer = (char*)xmalloc(out_len); 1142 out_buffer = xmalloc(out_len);
832 } 1143 }
833 *out_buffer = '\0'; 1144 *out_buffer = '\0';
834 1145
835 /* show the header */ 1146 /* show the header */
836 if (!be_quiet && show_banner) { 1147 if (!be_quiet && show_banner) {
837 for (i = 0; out_format[i]; ++i) { 1148 for (i = 0; out_format[i]; ++i) {
838 if (!IS_MODIFIER(out_format[i])) continue; 1149 if (!IS_MODIFIER(out_format[i])) continue;
839 1150
840 switch (out_format[++i]) { 1151 switch (out_format[++i]) {
1152 case '+': break;
841 case '%': break; 1153 case '%': break;
842 case '#': break; 1154 case '#': break;
843 case 'F': 1155 case 'F':
844 case 'p': 1156 case 'p':
845 case 'f': prints("FILE "); found_file = 1; break; 1157 case 'f': prints("FILE "); found_file = 1; break;
846 case 'o': prints(" TYPE "); break; 1158 case 'o': prints(" TYPE "); break;
847 case 'x': prints(" PAX "); break; 1159 case 'x': prints(" PAX "); break;
848 case 'e': prints("STK/REL/PTL "); break; 1160 case 'e': prints("STK/REL/PTL "); break;
849 case 't': prints("TEXTREL "); break; 1161 case 't': prints("TEXTREL "); break;
850 case 'r': prints("RPATH "); break; 1162 case 'r': prints("RPATH "); break;
1163 case 'M': prints("CLASS "); break;
851 case 'n': prints("NEEDED "); break; 1164 case 'n': prints("NEEDED "); break;
852 case 'i': prints("INTERP "); break; 1165 case 'i': prints("INTERP "); break;
853 case 'b': prints("BIND "); break; 1166 case 'b': prints("BIND "); break;
1167 case 'Z': prints("SIZE "); break;
854 case 'S': prints("SONAME "); break; 1168 case 'S': prints("SONAME "); break;
855 case 's': prints("SYM "); break; 1169 case 's': prints("SYM "); break;
856 case 'N': prints("LIB "); break; 1170 case 'N': prints("LIB "); break;
857 case 'T': prints("TEXTRELS "); break; 1171 case 'T': prints("TEXTRELS "); break;
1172 case 'k': prints("SECTION "); break;
1173 case 'a': prints("ARCH "); break;
1174 case 'I': prints("OSABI "); break;
1175 case 'Y': prints("EABI "); break;
1176 case 'O': prints("PERM "); break;
1177 case 'D': prints("ENDIAN "); break;
858 default: warnf("'%c' has no title ?", out_format[i]); 1178 default: warnf("'%c' has no title ?", out_format[i]);
859 } 1179 }
860 } 1180 }
861 if (!found_file) prints("FILE "); 1181 if (!found_file) prints("FILE ");
862 prints("\n"); 1182 prints("\n");
866 1186
867 /* dump all the good stuff */ 1187 /* dump all the good stuff */
868 for (i = 0; out_format[i]; ++i) { 1188 for (i = 0; out_format[i]; ++i) {
869 const char *out; 1189 const char *out;
870 const char *tmp; 1190 const char *tmp;
871 1191 static char ubuf[sizeof(unsigned long)*2];
872 /* make sure we trim leading spaces in quiet mode */
873 if (be_quiet && *out_buffer == ' ' && !out_buffer[1])
874 *out_buffer = '\0';
875
876 if (!IS_MODIFIER(out_format[i])) { 1192 if (!IS_MODIFIER(out_format[i])) {
877 xchrcat(&out_buffer, out_format[i], &out_len); 1193 xchrcat(&out_buffer, out_format[i], &out_len);
878 continue; 1194 continue;
879 } 1195 }
880 1196
881 out = NULL; 1197 out = NULL;
882 be_wewy_wewy_quiet = (out_format[i] == '#'); 1198 be_wewy_wewy_quiet = (out_format[i] == '#');
1199 be_semi_verbose = (out_format[i] == '+');
883 switch (out_format[++i]) { 1200 switch (out_format[++i]) {
1201 case '+':
884 case '%': 1202 case '%':
885 case '#': 1203 case '#':
886 xchrcat(&out_buffer, out_format[i], &out_len); break; 1204 xchrcat(&out_buffer, out_format[i], &out_len); break;
887 case 'F': 1205 case 'F':
888 found_file = 1; 1206 found_file = 1;
889 if (be_wewy_wewy_quiet) break; 1207 if (be_wewy_wewy_quiet) break;
890 xstrcat(&out_buffer, filename, &out_len); 1208 xstrcat(&out_buffer, elf->filename, &out_len);
891 break; 1209 break;
892 case 'p': 1210 case 'p':
893 found_file = 1; 1211 found_file = 1;
894 if (be_wewy_wewy_quiet) break; 1212 if (be_wewy_wewy_quiet) break;
895 tmp = filename; 1213 tmp = elf->filename;
896 if (search_path) { 1214 if (search_path) {
897 ssize_t len_search = strlen(search_path); 1215 ssize_t len_search = strlen(search_path);
898 ssize_t len_file = strlen(filename); 1216 ssize_t len_file = strlen(elf->filename);
899 if (!strncmp(filename, search_path, len_search) && \ 1217 if (!strncmp(elf->filename, search_path, len_search) && \
900 len_file > len_search) 1218 len_file > len_search)
901 tmp += len_search; 1219 tmp += len_search;
902 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++; 1220 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++;
903 } 1221 }
904 xstrcat(&out_buffer, tmp, &out_len); 1222 xstrcat(&out_buffer, tmp, &out_len);
905 break; 1223 break;
906 case 'f': 1224 case 'f':
907 found_file = 1; 1225 found_file = 1;
908 if (be_wewy_wewy_quiet) break; 1226 if (be_wewy_wewy_quiet) break;
909 tmp = strrchr(filename, '/'); 1227 tmp = strrchr(elf->filename, '/');
910 tmp = (tmp == NULL ? filename : tmp+1); 1228 tmp = (tmp == NULL ? elf->filename : tmp+1);
911 xstrcat(&out_buffer, tmp, &out_len); 1229 xstrcat(&out_buffer, tmp, &out_len);
912 break; 1230 break;
913 case 'o': out = get_elfetype(elf); break; 1231 case 'o': out = get_elfetype(elf); break;
914 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1232 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
915 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1233 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
916 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1234 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
917 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1235 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
918 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1236 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1237 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1238 case 'D': out = get_endian(elf); break;
1239 case 'O': out = getstr_perms(elf->filename); break;
919 case 'n': 1240 case 'n':
920 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1241 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
921 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1242 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
922 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1243 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
923 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1244 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
924 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1245 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1246 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1247 case 'a': out = get_elfemtype(elf); break;
1248 case 'I': out = get_elfosabi(elf); break;
1249 case 'Y': out = get_elf_eabi(elf); break;
1250 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
925 default: warnf("'%c' has no scan code?", out_format[i]); 1251 default: warnf("'%c' has no scan code?", out_format[i]);
926 } 1252 }
927 if (out) { 1253 if (out) {
928 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */ 1254 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
929 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL) 1255 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
934 } 1260 }
935 1261
936#define FOUND_SOMETHING() \ 1262#define FOUND_SOMETHING() \
937 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1263 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
938 found_rpath || found_needed || found_interp || found_bind || \ 1264 found_rpath || found_needed || found_interp || found_bind || \
939 found_soname || found_sym || found_lib || found_textrels) 1265 found_soname || found_sym || found_lib || found_textrels || found_section )
940 1266
941 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) { 1267 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
942 xchrcat(&out_buffer, ' ', &out_len); 1268 xchrcat(&out_buffer, ' ', &out_len);
943 xstrcat(&out_buffer, filename, &out_len); 1269 xstrcat(&out_buffer, elf->filename, &out_len);
944 } 1270 }
945 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) { 1271 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) {
946 puts(out_buffer); 1272 puts(out_buffer);
947 fflush(stdout); 1273 fflush(stdout);
948 } 1274 }
949 1275
1276 return 0;
1277}
1278
1279/* scan a single elf */
1280static int scanelf_elf(const char *filename, int fd, size_t len)
1281{
1282 int ret = 1;
1283 elfobj *elf;
1284
1285 /* verify this is real ELF */
1286 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1287 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1288 return ret;
1289 }
1290 switch (match_bits) {
1291 case 32:
1292 if (elf->elf_class != ELFCLASS32)
1293 goto label_done;
1294 break;
1295 case 64:
1296 if (elf->elf_class != ELFCLASS64)
1297 goto label_done;
1298 break;
1299 default: break;
1300 }
1301 if (strlen(match_etypes)) {
1302 char sbuf[126];
1303 strncpy(sbuf, match_etypes, sizeof(sbuf));
1304 if (strchr(match_etypes, ',') != NULL) {
1305 char *p;
1306 while ((p = strrchr(sbuf, ',')) != NULL) {
1307 *p = 0;
1308 if (etype_lookup(p+1) == get_etype(elf))
1309 goto label_ret;
1310 }
1311 }
1312 if (etype_lookup(sbuf) != get_etype(elf))
1313 goto label_done;
1314 }
1315
1316label_ret:
1317 ret = scanelf_elfobj(elf);
1318
1319label_done:
950 unreadelf(elf); 1320 unreadelf(elf);
1321 return ret;
1322}
1323
1324/* scan an archive of elfs */
1325static int scanelf_archive(const char *filename, int fd, size_t len)
1326{
1327 archive_handle *ar;
1328 archive_member *m;
1329 char *ar_buffer;
1330 elfobj *elf;
1331
1332 ar = ar_open_fd(filename, fd);
1333 if (ar == NULL)
1334 return 1;
1335
1336 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1337 while ((m=ar_next(ar)) != NULL) {
1338 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size);
1339 if (elf) {
1340 scanelf_elfobj(elf);
1341 unreadelf(elf);
1342 }
1343 }
1344 munmap(ar_buffer, len);
1345
1346 return 0;
1347}
1348/* scan a file which may be an elf or an archive or some other magical beast */
1349static int scanelf_file(const char *filename, const struct stat *st_cache)
1350{
1351 const struct stat *st = st_cache;
1352 struct stat symlink_st;
1353 int fd;
1354
1355 /* always handle regular files and handle symlinked files if no -y */
1356 if (S_ISLNK(st->st_mode)) {
1357 if (!scan_symlink) return 1;
1358 stat(filename, &symlink_st);
1359 st = &symlink_st;
1360 }
1361
1362 if (!S_ISREG(st->st_mode)) {
1363 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1364 return 1;
1365 }
1366
1367 if (match_perms) {
1368 if ((st->st_mode | match_perms) != st->st_mode)
1369 return 1;
1370 }
1371 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1)
1372 return 1;
1373
1374 if (scanelf_elf(filename, fd, st->st_size) == 1 && scan_archives)
1375 /* if it isn't an ELF, maybe it's an .a archive */
1376 scanelf_archive(filename, fd, st->st_size);
1377
1378 close(fd);
1379 return 0;
951} 1380}
952 1381
953/* scan a directory for ET_EXEC files and print when we find one */ 1382/* scan a directory for ET_EXEC files and print when we find one */
954static void scanelf_dir(const char *path) 1383static int scanelf_dir(const char *path)
955{ 1384{
956 register DIR *dir; 1385 register DIR *dir;
957 register struct dirent *dentry; 1386 register struct dirent *dentry;
958 struct stat st_top, st; 1387 struct stat st_top, st;
959 char buf[_POSIX_PATH_MAX]; 1388 char buf[__PAX_UTILS_PATH_MAX];
960 size_t pathlen = 0, len = 0; 1389 size_t pathlen = 0, len = 0;
1390 int ret = 0;
961 1391
962 /* make sure path exists */ 1392 /* make sure path exists */
963 if (lstat(path, &st_top) == -1) { 1393 if (lstat(path, &st_top) == -1) {
964 if (be_verbose > 2) printf("%s: does not exist\n", path); 1394 if (be_verbose > 2) printf("%s: does not exist\n", path);
965 return; 1395 return 1;
966 } 1396 }
967 1397
968 /* ok, if it isn't a directory, assume we can open it */ 1398 /* ok, if it isn't a directory, assume we can open it */
969 if (!S_ISDIR(st_top.st_mode)) { 1399 if (!S_ISDIR(st_top.st_mode)) {
970 scanelf_file(path); 1400 return scanelf_file(path, &st_top);
971 return;
972 } 1401 }
973 1402
974 /* now scan the dir looking for fun stuff */ 1403 /* now scan the dir looking for fun stuff */
975 if ((dir = opendir(path)) == NULL) { 1404 if ((dir = opendir(path)) == NULL) {
976 warnf("could not opendir %s: %s", path, strerror(errno)); 1405 warnf("could not opendir %s: %s", path, strerror(errno));
977 return; 1406 return 1;
978 } 1407 }
979 if (be_verbose) printf("%s: scanning dir\n", path); 1408 if (be_verbose > 1) printf("%s: scanning dir\n", path);
980 1409
981 pathlen = strlen(path); 1410 pathlen = strlen(path);
982 while ((dentry = readdir(dir))) { 1411 while ((dentry = readdir(dir))) {
983 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1412 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
984 continue; 1413 continue;
986 if (len >= sizeof(buf)) { 1415 if (len >= sizeof(buf)) {
987 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1416 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path,
988 (unsigned long)len, (unsigned long)sizeof(buf)); 1417 (unsigned long)len, (unsigned long)sizeof(buf));
989 continue; 1418 continue;
990 } 1419 }
991 sprintf(buf, "%s/%s", path, dentry->d_name); 1420 snprintf(buf, sizeof(buf), "%s%s%s", path, (path[pathlen-1] == '/') ? "" : "/", dentry->d_name);
992 if (lstat(buf, &st) != -1) { 1421 if (lstat(buf, &st) != -1) {
993 if (S_ISREG(st.st_mode)) 1422 if (S_ISREG(st.st_mode))
994 scanelf_file(buf); 1423 ret = scanelf_file(buf, &st);
995 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1424 else if (dir_recurse && S_ISDIR(st.st_mode)) {
996 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1425 if (dir_crossmount || (st_top.st_dev == st.st_dev))
997 scanelf_dir(buf); 1426 ret = scanelf_dir(buf);
998 } 1427 }
999 } 1428 }
1000 } 1429 }
1001 closedir(dir); 1430 closedir(dir);
1431 return ret;
1002} 1432}
1003 1433
1004static int scanelf_from_file(char *filename) 1434static int scanelf_from_file(const char *filename)
1005{ 1435{
1006 FILE *fp = NULL; 1436 FILE *fp = NULL;
1007 char *p; 1437 char *p;
1008 char path[_POSIX_PATH_MAX]; 1438 char path[__PAX_UTILS_PATH_MAX];
1439 int ret = 0;
1009 1440
1010 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1441 if (strcmp(filename, "-") == 0)
1011 fp = stdin; 1442 fp = stdin;
1012 else if ((fp = fopen(filename, "r")) == NULL) 1443 else if ((fp = fopen(filename, "r")) == NULL)
1013 return 1; 1444 return 1;
1014 1445
1015 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1446 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1016 if ((p = strchr(path, '\n')) != NULL) 1447 if ((p = strchr(path, '\n')) != NULL)
1017 *p = 0; 1448 *p = 0;
1018 search_path = path; 1449 search_path = path;
1019 scanelf_dir(path); 1450 ret = scanelf_dir(path);
1020 } 1451 }
1021 if (fp != stdin) 1452 if (fp != stdin)
1022 fclose(fp); 1453 fclose(fp);
1023 return 0; 1454 return ret;
1024} 1455}
1025 1456
1026static void load_ld_so_conf() 1457#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1458
1459static int load_ld_cache_config(int i, const char *fname)
1027{ 1460{
1028 FILE *fp = NULL; 1461 FILE *fp = NULL;
1029 char *p; 1462 char *p;
1030 char path[_POSIX_PATH_MAX]; 1463 char path[__PAX_UTILS_PATH_MAX];
1031 int i = 0;
1032 1464
1033 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1465 if (i + 1 == ARRAY_SIZE(ldpaths))
1034 return; 1466 return i;
1035 1467
1468 if ((fp = fopen(fname, "r")) == NULL)
1469 return i;
1470
1036 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1471 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1037 if (*path != '/')
1038 continue;
1039
1040 if ((p = strrchr(path, '\r')) != NULL) 1472 if ((p = strrchr(path, '\r')) != NULL)
1041 *p = 0; 1473 *p = 0;
1042 if ((p = strchr(path, '\n')) != NULL) 1474 if ((p = strchr(path, '\n')) != NULL)
1043 *p = 0; 1475 *p = 0;
1476#ifdef __linux__
1477 /* recursive includes of the same file will make this segfault. */
1478 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1479 glob64_t gl;
1480 size_t x;
1481 char gpath[__PAX_UTILS_PATH_MAX];
1482
1483 memset(gpath, 0, sizeof(gpath));
1484
1485 if (path[8] != '/')
1486 snprintf(gpath, sizeof(gpath), "/etc/%s", &path[8]);
1487 else
1488 strncpy(gpath, &path[8], sizeof(gpath));
1489
1490 if ((glob64(gpath, 0, NULL, &gl)) == 0) {
1491 for (x = 0; x < gl.gl_pathc; ++x) {
1492 /* try to avoid direct loops */
1493 if (strcmp(gl.gl_pathv[x], fname) == 0)
1494 continue;
1495 i = load_ld_cache_config(i, gl.gl_pathv[x]);
1496 if (i + 1 >= ARRAY_SIZE(ldpaths)) {
1497 globfree64(&gl);
1498 return i;
1499 }
1500 }
1501 globfree64 (&gl);
1502 continue;
1503 }
1504 }
1505#endif
1506 if (*path != '/')
1507 continue;
1044 1508
1045 ldpaths[i++] = xstrdup(path); 1509 ldpaths[i++] = xstrdup(path);
1046 1510
1047 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1511 if (i + 1 == ARRAY_SIZE(ldpaths))
1048 break; 1512 break;
1049 } 1513 }
1050 ldpaths[i] = NULL; 1514 ldpaths[i] = NULL;
1051 1515
1052 fclose(fp); 1516 fclose(fp);
1517 return i;
1053} 1518}
1519
1520#elif defined(__FreeBSD__) || (__DragonFly__)
1521
1522static int load_ld_cache_config(int i, const char *fname)
1523{
1524 FILE *fp = NULL;
1525 char *b = NULL, *p;
1526 struct elfhints_hdr hdr;
1527
1528 if (i + 1 == ARRAY_SIZE(ldpaths))
1529 return i;
1530
1531 if ((fp = fopen(fname, "r")) == NULL)
1532 return i;
1533
1534 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1535 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1536 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1537 {
1538 fclose(fp);
1539 return i;
1540 }
1541
1542 b = xmalloc(hdr.dirlistlen + 1);
1543 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1544 fclose(fp);
1545 free(b);
1546 return i;
1547 }
1548
1549 while ((p = strsep(&b, ":"))) {
1550 if (*p == '\0') continue;
1551 ldpaths[i++] = xstrdup(p);
1552
1553 if (i + 1 == ARRAY_SIZE(ldpaths))
1554 break;
1555 }
1556 ldpaths[i] = NULL;
1557
1558 free(b);
1559 fclose(fp);
1560 return i;
1561}
1562
1563#else
1564#ifdef __ELF__
1565#warning Cache config support not implemented for your target
1566#endif
1567static int load_ld_cache_config(int i, const char *fname)
1568{
1569 memset(ldpaths, 0x00, sizeof(ldpaths));
1570 return 0;
1571}
1572#endif
1054 1573
1055/* scan /etc/ld.so.conf for paths */ 1574/* scan /etc/ld.so.conf for paths */
1056static void scanelf_ldpath() 1575static void scanelf_ldpath(void)
1057{ 1576{
1058 char scan_l, scan_ul, scan_ull; 1577 char scan_l, scan_ul, scan_ull;
1059 int i = 0; 1578 int i = 0;
1060 1579
1061 if (!ldpaths[0]) 1580 if (!ldpaths[0])
1075 if (!scan_ul) scanelf_dir("/usr/lib"); 1594 if (!scan_ul) scanelf_dir("/usr/lib");
1076 if (!scan_ull) scanelf_dir("/usr/local/lib"); 1595 if (!scan_ull) scanelf_dir("/usr/local/lib");
1077} 1596}
1078 1597
1079/* scan env PATH for paths */ 1598/* scan env PATH for paths */
1080static void scanelf_envpath() 1599static void scanelf_envpath(void)
1081{ 1600{
1082 char *path, *p; 1601 char *path, *p;
1083 1602
1084 path = getenv("PATH"); 1603 path = getenv("PATH");
1085 if (!path) 1604 if (!path)
1092 } 1611 }
1093 1612
1094 free(path); 1613 free(path);
1095} 1614}
1096 1615
1097 1616/* usage / invocation handling functions */ /* Free Flags: c d j u w C G H J K P Q U W */
1098/* usage / invocation handling functions */
1099#define PARSE_FLAGS "plRmyxetrnLibSs:gN:TaqvF:f:o:BhV" 1617#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZBhV"
1100#define a_argument required_argument 1618#define a_argument required_argument
1101static struct option const long_opts[] = { 1619static struct option const long_opts[] = {
1102 {"path", no_argument, NULL, 'p'}, 1620 {"path", no_argument, NULL, 'p'},
1103 {"ldpath", no_argument, NULL, 'l'}, 1621 {"ldpath", no_argument, NULL, 'l'},
1104 {"recursive", no_argument, NULL, 'R'}, 1622 {"recursive", no_argument, NULL, 'R'},
1105 {"mount", no_argument, NULL, 'm'}, 1623 {"mount", no_argument, NULL, 'm'},
1106 {"symlink", no_argument, NULL, 'y'}, 1624 {"symlink", no_argument, NULL, 'y'},
1625 {"archives", no_argument, NULL, 'A'},
1626 {"ldcache", no_argument, NULL, 'L'},
1627 {"fix", no_argument, NULL, 'X'},
1628 {"setpax", a_argument, NULL, 'z'},
1107 {"pax", no_argument, NULL, 'x'}, 1629 {"pax", no_argument, NULL, 'x'},
1108 {"header", no_argument, NULL, 'e'}, 1630 {"header", no_argument, NULL, 'e'},
1109 {"textrel", no_argument, NULL, 't'}, 1631 {"textrel", no_argument, NULL, 't'},
1110 {"rpath", no_argument, NULL, 'r'}, 1632 {"rpath", no_argument, NULL, 'r'},
1111 {"needed", no_argument, NULL, 'n'}, 1633 {"needed", no_argument, NULL, 'n'},
1112 {"ldcache", no_argument, NULL, 'L'},
1113 {"interp", no_argument, NULL, 'i'}, 1634 {"interp", no_argument, NULL, 'i'},
1114 {"bind", no_argument, NULL, 'b'}, 1635 {"bind", no_argument, NULL, 'b'},
1115 {"soname", no_argument, NULL, 'S'}, 1636 {"soname", no_argument, NULL, 'S'},
1116 {"symbol", a_argument, NULL, 's'}, 1637 {"symbol", a_argument, NULL, 's'},
1638 {"section", a_argument, NULL, 'k'},
1117 {"lib", a_argument, NULL, 'N'}, 1639 {"lib", a_argument, NULL, 'N'},
1118 {"gmatch", no_argument, NULL, 'g'}, 1640 {"gmatch", no_argument, NULL, 'g'},
1119 {"textrels", no_argument, NULL, 'T'}, 1641 {"textrels", no_argument, NULL, 'T'},
1642 {"etype", a_argument, NULL, 'E'},
1643 {"bits", a_argument, NULL, 'M'},
1644 {"endian", no_argument, NULL, 'D'},
1645 {"osabi", no_argument, NULL, 'I'},
1646 {"eabi", no_argument, NULL, 'Y'},
1647 {"perms", a_argument, NULL, 'O'},
1648 {"size", no_argument, NULL, 'Z'},
1120 {"all", no_argument, NULL, 'a'}, 1649 {"all", no_argument, NULL, 'a'},
1121 {"quiet", no_argument, NULL, 'q'}, 1650 {"quiet", no_argument, NULL, 'q'},
1122 {"verbose", no_argument, NULL, 'v'}, 1651 {"verbose", no_argument, NULL, 'v'},
1123 {"format", a_argument, NULL, 'F'}, 1652 {"format", a_argument, NULL, 'F'},
1124 {"from", a_argument, NULL, 'f'}, 1653 {"from", a_argument, NULL, 'f'},
1132static const char *opts_help[] = { 1661static const char *opts_help[] = {
1133 "Scan all directories in PATH environment", 1662 "Scan all directories in PATH environment",
1134 "Scan all directories in /etc/ld.so.conf", 1663 "Scan all directories in /etc/ld.so.conf",
1135 "Scan directories recursively", 1664 "Scan directories recursively",
1136 "Don't recursively cross mount points", 1665 "Don't recursively cross mount points",
1137 "Don't scan symlinks\n", 1666 "Don't scan symlinks",
1667 "Scan archives (.a files)",
1668 "Utilize ld.so.cache information (use with -r/-n)",
1669 "Try and 'fix' bad things (use with -r/-e)",
1670 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1138 "Print PaX markings", 1671 "Print PaX markings",
1139 "Print GNU_STACK/PT_LOAD markings", 1672 "Print GNU_STACK/PT_LOAD markings",
1140 "Print TEXTREL information", 1673 "Print TEXTREL information",
1141 "Print RPATH information", 1674 "Print RPATH information",
1142 "Print NEEDED information", 1675 "Print NEEDED information",
1143 "Resolve NEEDED information (use with -n)",
1144 "Print INTERP information", 1676 "Print INTERP information",
1145 "Print BIND information", 1677 "Print BIND information",
1146 "Print SONAME information", 1678 "Print SONAME information",
1147 "Find a specified symbol", 1679 "Find a specified symbol",
1680 "Find a specified section",
1148 "Find a specified library", 1681 "Find a specified library",
1149 "Use strncmp to match libraries. (use with -N)", 1682 "Use strncmp to match libraries. (use with -N)",
1150 "Locate cause of TEXTREL", 1683 "Locate cause of TEXTREL",
1684 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1685 "Print only ELF files matching numeric bits",
1686 "Print Endianness",
1687 "Print OSABI",
1688 "Print EABI (EM_ARM Only)",
1689 "Print only ELF files matching octal permissions",
1690 "Print ELF file size",
1151 "Print all scanned info (-x -e -t -r -b)\n", 1691 "Print all scanned info (-x -e -t -r -b)\n",
1152 "Only output 'bad' things", 1692 "Only output 'bad' things",
1153 "Be verbose (can be specified more than once)", 1693 "Be verbose (can be specified more than once)",
1154 "Use specified format for output", 1694 "Use specified format for output",
1155 "Read input stream from a filename", 1695 "Read input stream from a filename",
1163/* display usage and exit */ 1703/* display usage and exit */
1164static void usage(int status) 1704static void usage(int status)
1165{ 1705{
1166 unsigned long i; 1706 unsigned long i;
1167 printf("* Scan ELF binaries for stuff\n\n" 1707 printf("* Scan ELF binaries for stuff\n\n"
1168 "Usage: %s [options] <dir1/file1> [dir2 dirN fileN ...]\n\n", argv0); 1708 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1169 printf("Options: -[%s]\n", PARSE_FLAGS); 1709 printf("Options: -[%s]\n", PARSE_FLAGS);
1170 for (i = 0; long_opts[i].name; ++i) 1710 for (i = 0; long_opts[i].name; ++i)
1171 if (long_opts[i].has_arg == no_argument) 1711 if (long_opts[i].has_arg == no_argument)
1172 printf(" -%c, --%-13s* %s\n", long_opts[i].val, 1712 printf(" -%c, --%-14s* %s\n", long_opts[i].val,
1173 long_opts[i].name, opts_help[i]); 1713 long_opts[i].name, opts_help[i]);
1174 else 1714 else
1175 printf(" -%c, --%-6s <arg> * %s\n", long_opts[i].val, 1715 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val,
1176 long_opts[i].name, opts_help[i]); 1716 long_opts[i].name, opts_help[i]);
1177 1717
1178 if (status != EXIT_SUCCESS) 1718 puts("\nFor more information, see the scanelf(1) manpage");
1179 exit(status);
1180
1181 puts("\nThe format modifiers for the -F option are:");
1182 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1183 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1184 puts(" i INTERP \tb BIND \ts symbol");
1185 puts(" N library \to Type \tT TEXTRELs");
1186 puts(" S SONAME");
1187 puts(" p filename (with search path removed)");
1188 puts(" f filename (short name/basename)");
1189 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1190
1191 exit(status); 1719 exit(status);
1192} 1720}
1193 1721
1194/* parse command line arguments and preform needed actions */ 1722/* parse command line arguments and preform needed actions */
1723#define do_pax_state(option, flag) \
1724 if (islower(option)) { \
1725 flags &= ~PF_##flag; \
1726 flags |= PF_NO##flag; \
1727 } else { \
1728 flags &= ~PF_NO##flag; \
1729 flags |= PF_##flag; \
1730 }
1195static void parseargs(int argc, char *argv[]) 1731static int parseargs(int argc, char *argv[])
1196{ 1732{
1197 int i; 1733 int i;
1198 char *from_file = NULL; 1734 const char *from_file = NULL;
1735 int ret = 0;
1199 1736
1200 opterr = 0; 1737 opterr = 0;
1201 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 1738 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1202 switch (i) { 1739 switch (i) {
1203 1740
1207 VERSION, __FILE__, __DATE__, rcsid, argv0); 1744 VERSION, __FILE__, __DATE__, rcsid, argv0);
1208 exit(EXIT_SUCCESS); 1745 exit(EXIT_SUCCESS);
1209 break; 1746 break;
1210 case 'h': usage(EXIT_SUCCESS); break; 1747 case 'h': usage(EXIT_SUCCESS); break;
1211 case 'f': 1748 case 'f':
1212 if (from_file) err("Don't specify -f twice"); 1749 if (from_file) warn("You prob don't want to specify -f twice");
1213 from_file = xstrdup(optarg); 1750 from_file = optarg;
1751 break;
1752 case 'E':
1753 strncpy(match_etypes, optarg, sizeof(match_etypes));
1754 break;
1755 case 'M':
1756 match_bits = atoi(optarg);
1757 if (match_bits == 0) {
1758 if (strcmp(optarg, "ELFCLASS32") == 0)
1759 match_bits = 32;
1760 if (strcmp(optarg, "ELFCLASS64") == 0)
1761 match_bits = 64;
1762 }
1763 break;
1764 case 'O':
1765 if (sscanf(optarg, "%o", &match_perms) == -1)
1766 match_bits = 0;
1214 break; 1767 break;
1215 case 'o': { 1768 case 'o': {
1216 FILE *fp = NULL;
1217 if ((fp = freopen(optarg, "w", stdout)) == NULL) 1769 if (freopen(optarg, "w", stdout) == NULL)
1218 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 1770 err("Could not open output stream '%s': %s", optarg, strerror(errno));
1219 SET_STDOUT(fp);
1220 break; 1771 break;
1221 } 1772 }
1222 1773 case 'k':
1774 if (find_section) warn("You prob don't want to specify -k twice");
1775 find_section = optarg;
1776 break;
1223 case 's': { 1777 case 's': {
1224 if (find_sym) warn("You prob don't want to specify -s twice"); 1778 if (find_sym) warn("You prob don't want to specify -s twice");
1225 find_sym = optarg; 1779 find_sym = optarg;
1226 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1227 sprintf(versioned_symname, "%s@", find_sym);
1228 break; 1780 break;
1229 } 1781 }
1230 case 'N': { 1782 case 'N': {
1231 if (find_lib) warn("You prob don't want to specify -N twice"); 1783 if (find_lib) warn("You prob don't want to specify -N twice");
1232 find_lib = optarg; 1784 find_lib = optarg;
1236 case 'F': { 1788 case 'F': {
1237 if (out_format) warn("You prob don't want to specify -F twice"); 1789 if (out_format) warn("You prob don't want to specify -F twice");
1238 out_format = optarg; 1790 out_format = optarg;
1239 break; 1791 break;
1240 } 1792 }
1793 case 'z': {
1794 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1795 size_t x;
1241 1796
1242 case 'g': gmatch = 1; /* break; any reason we dont breal; here ? */ 1797 for (x = 0; x < strlen(optarg); x++) {
1798 switch (optarg[x]) {
1799 case 'p':
1800 case 'P':
1801 do_pax_state(optarg[x], PAGEEXEC);
1802 break;
1803 case 's':
1804 case 'S':
1805 do_pax_state(optarg[x], SEGMEXEC);
1806 break;
1807 case 'm':
1808 case 'M':
1809 do_pax_state(optarg[x], MPROTECT);
1810 break;
1811 case 'e':
1812 case 'E':
1813 do_pax_state(optarg[x], EMUTRAMP);
1814 break;
1815 case 'r':
1816 case 'R':
1817 do_pax_state(optarg[x], RANDMMAP);
1818 break;
1819 case 'x':
1820 case 'X':
1821 do_pax_state(optarg[x], RANDEXEC);
1822 break;
1823 default:
1824 break;
1825 }
1826 }
1827 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
1828 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
1829 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
1830 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
1831 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
1832 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1833 setpax = flags;
1834 break;
1835 }
1836 case 'Z': show_size = 1; break;
1837 case 'g': g_match = 1; break;
1243 case 'L': printcache = 1; break; 1838 case 'L': use_ldcache = 1; break;
1244 case 'y': scan_symlink = 0; break; 1839 case 'y': scan_symlink = 0; break;
1840 case 'A': scan_archives = 1; break;
1245 case 'B': show_banner = 0; break; 1841 case 'B': show_banner = 0; break;
1246 case 'l': scan_ldpath = 1; break; 1842 case 'l': scan_ldpath = 1; break;
1247 case 'p': scan_envpath = 1; break; 1843 case 'p': scan_envpath = 1; break;
1248 case 'R': dir_recurse = 1; break; 1844 case 'R': dir_recurse = 1; break;
1249 case 'm': dir_crossmount = 0; break; 1845 case 'm': dir_crossmount = 0; break;
1846 case 'X': ++fix_elf; break;
1250 case 'x': show_pax = 1; break; 1847 case 'x': show_pax = 1; break;
1251 case 'e': show_phdr = 1; break; 1848 case 'e': show_phdr = 1; break;
1252 case 't': show_textrel = 1; break; 1849 case 't': show_textrel = 1; break;
1253 case 'r': show_rpath = 1; break; 1850 case 'r': show_rpath = 1; break;
1254 case 'n': show_needed = 1; break; 1851 case 'n': show_needed = 1; break;
1256 case 'b': show_bind = 1; break; 1853 case 'b': show_bind = 1; break;
1257 case 'S': show_soname = 1; break; 1854 case 'S': show_soname = 1; break;
1258 case 'T': show_textrels = 1; break; 1855 case 'T': show_textrels = 1; break;
1259 case 'q': be_quiet = 1; break; 1856 case 'q': be_quiet = 1; break;
1260 case 'v': be_verbose = (be_verbose % 20) + 1; break; 1857 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1261 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 1858 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1262 1859 case 'D': show_endian = 1; break;
1860 case 'I': show_osabi = 1; break;
1861 case 'Y': show_eabi = 1; break;
1263 case ':': 1862 case ':':
1264 err("Option missing parameter\n"); 1863 err("Option '%c' is missing parameter", optopt);
1265 case '?': 1864 case '?':
1266 err("Unknown option\n"); 1865 err("Unknown option '%c' or argument missing", optopt);
1267 default: 1866 default:
1268 err("Unhandled option '%c'", i); 1867 err("Unhandled option '%c'; please report this", i);
1269 }
1270 } 1868 }
1271 1869 }
1870 if (show_textrels && be_verbose) {
1871 if (which("objdump") != NULL)
1872 has_objdump = 1;
1873 }
1272 /* let the format option override all other options */ 1874 /* let the format option override all other options */
1273 if (out_format) { 1875 if (out_format) {
1274 show_pax = show_phdr = show_textrel = show_rpath = \ 1876 show_pax = show_phdr = show_textrel = show_rpath = \
1275 show_needed = show_interp = show_bind = show_soname = \ 1877 show_needed = show_interp = show_bind = show_soname = \
1276 show_textrels = 0; 1878 show_textrels = show_perms = show_endian = show_size = \
1879 show_osabi = show_eabi = 0;
1277 for (i = 0; out_format[i]; ++i) { 1880 for (i = 0; out_format[i]; ++i) {
1278 if (!IS_MODIFIER(out_format[i])) continue; 1881 if (!IS_MODIFIER(out_format[i])) continue;
1279 1882
1280 switch (out_format[++i]) { 1883 switch (out_format[++i]) {
1884 case '+': break;
1281 case '%': break; 1885 case '%': break;
1282 case '#': break; 1886 case '#': break;
1283 case 'F': break; 1887 case 'F': break;
1284 case 'p': break; 1888 case 'p': break;
1285 case 'f': break; 1889 case 'f': break;
1890 case 'k': break;
1286 case 's': break; 1891 case 's': break;
1287 case 'N': break; 1892 case 'N': break;
1288 case 'o': break; 1893 case 'o': break;
1894 case 'a': break;
1895 case 'M': break;
1896 case 'Z': show_size = 1; break;
1897 case 'D': show_endian = 1; break;
1898 case 'I': show_osabi = 1; break;
1899 case 'Y': show_eabi = 1; break;
1900 case 'O': show_perms = 1; break;
1289 case 'x': show_pax = 1; break; 1901 case 'x': show_pax = 1; break;
1290 case 'e': show_phdr = 1; break; 1902 case 'e': show_phdr = 1; break;
1291 case 't': show_textrel = 1; break; 1903 case 't': show_textrel = 1; break;
1292 case 'r': show_rpath = 1; break; 1904 case 'r': show_rpath = 1; break;
1293 case 'n': show_needed = 1; break; 1905 case 'n': show_needed = 1; break;
1294 case 'i': show_interp = 1; break; 1906 case 'i': show_interp = 1; break;
1295 case 'b': show_bind = 1; break; 1907 case 'b': show_bind = 1; break;
1296 case 'S': show_soname = 1; break; 1908 case 'S': show_soname = 1; break;
1297 case 'T': show_textrels = 1; break; 1909 case 'T': show_textrels = 1; break;
1298 default: 1910 default:
1299 err("Invalid format specifier '%c' (byte %i)", 1911 err("Invalid format specifier '%c' (byte %i)",
1300 out_format[i], i+1); 1912 out_format[i], i+1);
1301 } 1913 }
1302 } 1914 }
1303 1915
1304 /* construct our default format */ 1916 /* construct our default format */
1305 } else { 1917 } else {
1306 size_t fmt_len = 30; 1918 size_t fmt_len = 30;
1307 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 1919 out_format = xmalloc(sizeof(char) * fmt_len);
1920 *out_format = '\0';
1308 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 1921 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1309 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 1922 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
1923 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
1924 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
1925 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
1926 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
1927 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1310 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 1928 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1311 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 1929 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1312 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 1930 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1313 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 1931 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1314 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 1932 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1315 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len); 1933 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
1316 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len); 1934 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
1317 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len); 1935 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
1318 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 1936 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
1937 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
1319 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len); 1938 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
1320 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 1939 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1321 } 1940 }
1322 if (be_verbose > 2) printf("Format: %s\n", out_format); 1941 if (be_verbose > 2) printf("Format: %s\n", out_format);
1323 1942
1324 /* now lets actually do the scanning */ 1943 /* now lets actually do the scanning */
1325 if (scan_ldpath || (show_rpath && be_quiet)) 1944 if (scan_ldpath || use_ldcache)
1326 load_ld_so_conf(); 1945 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1327 if (scan_ldpath) scanelf_ldpath(); 1946 if (scan_ldpath) scanelf_ldpath();
1328 if (scan_envpath) scanelf_envpath(); 1947 if (scan_envpath) scanelf_envpath();
1948 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
1949 from_file = "-";
1329 if (from_file) { 1950 if (from_file) {
1330 scanelf_from_file(from_file); 1951 scanelf_from_file(from_file);
1331 free(from_file);
1332 from_file = *argv; 1952 from_file = *argv;
1333 } 1953 }
1334 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 1954 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1335 err("Nothing to scan !?"); 1955 err("Nothing to scan !?");
1336 while (optind < argc) { 1956 while (optind < argc) {
1337 search_path = argv[optind++]; 1957 search_path = argv[optind++];
1338 scanelf_dir(search_path); 1958 ret = scanelf_dir(search_path);
1339 } 1959 }
1340 1960
1341 /* clean up */ 1961 /* clean up */
1342 if (versioned_symname) free(versioned_symname);
1343 for (i = 0; ldpaths[i]; ++i) 1962 for (i = 0; ldpaths[i]; ++i)
1344 free(ldpaths[i]); 1963 free(ldpaths[i]);
1345 1964
1346 if (ldcache != 0) 1965 if (ldcache != 0)
1347 munmap(ldcache, ldcache_size); 1966 munmap(ldcache, ldcache_size);
1348}
1349
1350
1351
1352/* utility funcs */
1353static char *xstrdup(const char *s)
1354{
1355 char *ret = strdup(s);
1356 if (!ret) err("Could not strdup(): %s", strerror(errno));
1357 return ret; 1967 return ret;
1358} 1968}
1359static void *xmalloc(size_t size)
1360{
1361 void *ret = malloc(size);
1362 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
1363 return ret;
1364}
1365static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
1366{
1367 size_t new_len;
1368 1969
1369 new_len = strlen(*dst) + strlen(src); 1970static char **get_split_env(const char *envvar)
1370 if (*curr_len <= new_len) {
1371 *curr_len = new_len + (*curr_len / 2);
1372 *dst = realloc(*dst, *curr_len);
1373 if (!*dst)
1374 err("could not realloc() %li bytes", (unsigned long)*curr_len);
1375 }
1376
1377 if (n)
1378 strncat(*dst, src, n);
1379 else
1380 strcat(*dst, src);
1381}
1382static inline void xchrcat(char **dst, const char append, size_t *curr_len)
1383{ 1971{
1384 static char my_app[2]; 1972 const char *delims = " \t\n";
1385 my_app[0] = append; 1973 char **envvals = NULL;
1386 my_app[1] = '\0'; 1974 char *env, *s;
1387 xstrcat(dst, my_app, curr_len); 1975 int nentry;
1388}
1389 1976
1977 if ((env = getenv(envvar)) == NULL)
1978 return NULL;
1390 1979
1980 env = xstrdup(env);
1981 if (env == NULL)
1982 return NULL;
1983
1984 s = strtok(env, delims);
1985 if (s == NULL) {
1986 free(env);
1987 return NULL;
1988 }
1989
1990 nentry = 0;
1991 while (s != NULL) {
1992 ++nentry;
1993 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
1994 envvals[nentry-1] = s;
1995 s = strtok(NULL, delims);
1996 }
1997 envvals[nentry] = NULL;
1998
1999 /* don't want to free(env) as it contains the memory that backs
2000 * the envvals array of strings */
2001 return envvals;
2002}
2003
2004static void parseenv(void)
2005{
2006 qa_textrels = get_split_env("QA_TEXTRELS");
2007 qa_execstack = get_split_env("QA_EXECSTACK");
2008 qa_wx_load = get_split_env("QA_WX_LOAD");
2009}
2010
2011#ifdef __PAX_UTILS_CLEANUP
2012static void cleanup(void)
2013{
2014 free(out_format);
2015 free(qa_textrels);
2016 free(qa_execstack);
2017 free(qa_wx_load);
2018}
2019#endif
1391 2020
1392int main(int argc, char *argv[]) 2021int main(int argc, char *argv[])
1393{ 2022{
2023 int ret;
1394 if (argc < 2) 2024 if (argc < 2)
1395 usage(EXIT_FAILURE); 2025 usage(EXIT_FAILURE);
2026 parseenv();
1396 parseargs(argc, argv); 2027 ret = parseargs(argc, argv);
1397 fclose(stdout); 2028 fclose(stdout);
1398#ifdef __BOUNDS_CHECKING_ON 2029#ifdef __PAX_UTILS_CLEANUP
1399 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2030 cleanup();
2031 warn("The calls to add/delete heap should be off:\n"
2032 "\t- 1 due to the out_buffer not being freed in scanelf_file()\n"
2033 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1400#endif 2034#endif
1401 return EXIT_SUCCESS; 2035 return ret;
1402} 2036}
2037
2038/* Match filename against entries in matchlist, return TRUE
2039 * if the file is listed */
2040static int file_matches_list(const char *filename, char **matchlist)
2041{
2042 char **file;
2043 char *match;
2044 char buf[__PAX_UTILS_PATH_MAX];
2045
2046 if (matchlist == NULL)
2047 return 0;
2048
2049 for (file = matchlist; *file != NULL; file++) {
2050 if (search_path) {
2051 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2052 match = buf;
2053 } else {
2054 match = *file;
2055 }
2056 if (fnmatch(match, filename, 0) == 0)
2057 return 1;
2058 }
2059 return 0;
2060}

Legend:
Removed from v.1.96  
changed lines
  Added in v.1.205

  ViewVC Help
Powered by ViewVC 1.1.20