/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.96 Revision 1.207
1/* 1/*
2 * Copyright 2003-2005 Gentoo Foundation 2 * Copyright 2003-2007 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.96 2005/12/28 22:26:47 solar Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.207 2008/12/30 13:38:35 vapier Exp $
5 * 5 *
6 * Copyright 2003-2005 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2007 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2005 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2007 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10#include <stdio.h> 10static const char *rcsid = "$Id: scanelf.c,v 1.207 2008/12/30 13:38:35 vapier Exp $";
11#include <stdlib.h> 11const char * const argv0 = "scanelf";
12#include <sys/types.h> 12
13#include <libgen.h>
14#include <limits.h>
15#include <string.h>
16#include <errno.h>
17#include <unistd.h>
18#include <sys/stat.h>
19#include <sys/mman.h>
20#include <fcntl.h>
21#include <dirent.h>
22#include <getopt.h>
23#include <assert.h>
24#include "paxinc.h" 13#include "paxinc.h"
25 14
26static const char *rcsid = "$Id: scanelf.c,v 1.96 2005/12/28 22:26:47 solar Exp $";
27#define argv0 "scanelf"
28
29#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
30
31
32 16
33/* prototypes */ 17/* prototypes */
34static void scanelf_file(const char *filename); 18static int file_matches_list(const char *filename, char **matchlist);
19static int scanelf_elfobj(elfobj *elf);
20static int scanelf_elf(const char *filename, int fd, size_t len);
21static int scanelf_archive(const char *filename, int fd, size_t len);
22static int scanelf_file(const char *filename, const struct stat *st_cache);
35static void scanelf_dir(const char *path); 23static int scanelf_dir(const char *path);
36static void scanelf_ldpath(); 24static void scanelf_ldpath(void);
37static void scanelf_envpath(); 25static void scanelf_envpath(void);
38static void usage(int status); 26static void usage(int status);
27static char **get_split_env(const char *envvar);
28static void parseenv(void);
39static void parseargs(int argc, char *argv[]); 29static int parseargs(int argc, char *argv[]);
40static char *xstrdup(const char *s); 30static int rematch(const char *regex, const char *match, int cflags);
41static void *xmalloc(size_t size);
42static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
43#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
44static inline void xchrcat(char **dst, const char append, size_t *curr_len);
45 31
46/* variables to control behavior */ 32/* variables to control behavior */
33static char match_etypes[126] = "";
47static char *ldpaths[256]; 34static char *ldpaths[256];
48static char scan_ldpath = 0; 35static char scan_ldpath = 0;
49static char scan_envpath = 0; 36static char scan_envpath = 0;
50static char scan_symlink = 1; 37static char scan_symlink = 1;
38static char scan_archives = 0;
51static char dir_recurse = 0; 39static char dir_recurse = 0;
52static char dir_crossmount = 1; 40static char dir_crossmount = 1;
53static char show_pax = 0; 41static char show_pax = 0;
42static char show_perms = 0;
43static char show_size = 0;
54static char show_phdr = 0; 44static char show_phdr = 0;
55static char show_textrel = 0; 45static char show_textrel = 0;
56static char show_rpath = 0; 46static char show_rpath = 0;
57static char show_needed = 0; 47static char show_needed = 0;
58static char show_interp = 0; 48static char show_interp = 0;
59static char show_bind = 0; 49static char show_bind = 0;
60static char show_soname = 0; 50static char show_soname = 0;
61static char show_textrels = 0; 51static char show_textrels = 0;
62static char show_banner = 1; 52static char show_banner = 1;
53static char show_endian = 0;
54static char show_osabi = 0;
55static char show_eabi = 0;
63static char be_quiet = 0; 56static char be_quiet = 0;
64static char be_verbose = 0; 57static char be_verbose = 0;
65static char be_wewy_wewy_quiet = 0; 58static char be_wewy_wewy_quiet = 0;
66static char *find_sym = NULL, *versioned_symname = NULL; 59static char be_semi_verbose = 0;
60static char *find_sym = NULL;
67static char *find_lib = NULL; 61static char *find_lib = NULL;
62static char *find_section = NULL;
68static char *out_format = NULL; 63static char *out_format = NULL;
69static char *search_path = NULL; 64static char *search_path = NULL;
65static char fix_elf = 0;
70static char gmatch = 0; 66static char g_match = 0;
71static char printcache = 0; 67static char use_ldcache = 0;
72 68
69static char **qa_textrels = NULL;
70static char **qa_execstack = NULL;
71static char **qa_wx_load = NULL;
73 72
73static int match_bits = 0;
74static unsigned int match_perms = 0;
74caddr_t ldcache = 0; 75static caddr_t ldcache = 0;
75size_t ldcache_size = 0; 76static size_t ldcache_size = 0;
77static unsigned long setpax = 0UL;
78
79static int has_objdump = 0;
80
81/* find the path to a file by name */
82static char *which(const char *fname)
83{
84 static char fullpath[__PAX_UTILS_PATH_MAX];
85 char *path, *p;
86
87 path = getenv("PATH");
88 if (!path)
89 return NULL;
90
91 path = xstrdup(path);
92 while ((p = strrchr(path, ':')) != NULL) {
93 snprintf(fullpath, sizeof(fullpath), "%s/%s", p + 1, fname);
94 *p = 0;
95 if (access(fullpath, R_OK) != -1) {
96 free(path);
97 return fullpath;
98 }
99 }
100 free(path);
101 return NULL;
102}
103
104/* 1 on failure. 0 otherwise */
105static int rematch(const char *regex, const char *match, int cflags)
106{
107 regex_t preg;
108 int ret;
109
110 if ((match == NULL) || (regex == NULL))
111 return EXIT_FAILURE;
112
113 if ((ret = regcomp(&preg, regex, cflags))) {
114 char err[256];
115
116 if (regerror(ret, &preg, err, sizeof(err)))
117 fprintf(stderr, "regcomp failed: %s", err);
118 else
119 fprintf(stderr, "regcomp failed");
120
121 return EXIT_FAILURE;
122 }
123 ret = regexec(&preg, match, 0, NULL, 0);
124 regfree(&preg);
125
126 return ret;
127}
76 128
77/* sub-funcs for scanelf_file() */ 129/* sub-funcs for scanelf_file() */
78static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 130static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab)
79{ 131{
80 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 132 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
99 } \ 151 } \
100 } 152 }
101 GET_SYMTABS(32) 153 GET_SYMTABS(32)
102 GET_SYMTABS(64) 154 GET_SYMTABS(64)
103} 155}
156
104static char *scanelf_file_pax(elfobj *elf, char *found_pax) 157static char *scanelf_file_pax(elfobj *elf, char *found_pax)
105{ 158{
106 static char ret[7]; 159 static char ret[7];
107 unsigned long i, shown; 160 unsigned long i, shown;
108 161
117 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 170 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
118 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 171 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
119 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 172 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
120 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \ 173 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
121 continue; \ 174 continue; \
122 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 175 if (fix_elf && setpax) { \
176 /* set the paxctl flags */ \
177 ESET(phdr[i].p_flags, setpax); \
178 } \
179 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
123 continue; \ 180 continue; \
124 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 181 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
125 *found_pax = 1; \ 182 *found_pax = 1; \
126 ++shown; \ 183 ++shown; \
127 break; \ 184 break; \
128 } \ 185 } \
129 } 186 }
130 SHOW_PAX(32) 187 SHOW_PAX(32)
131 SHOW_PAX(64) 188 SHOW_PAX(64)
189 }
190
191 if (fix_elf && setpax) {
192 /* set the chpax settings */
193 if (elf->elf_class == ELFCLASS32) {
194 if (EHDR32(elf->ehdr)->e_type == ET_DYN || EHDR32(elf->ehdr)->e_type == ET_EXEC)
195 ESET(EHDR32(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
196 } else {
197 if (EHDR64(elf->ehdr)->e_type == ET_DYN || EHDR64(elf->ehdr)->e_type == ET_EXEC)
198 ESET(EHDR64(elf->ehdr)->e_ident[EI_PAX], pax_pf2hf_flags(setpax));
199 }
132 } 200 }
133 201
134 /* fall back to EI_PAX if no PT_PAX was found */ 202 /* fall back to EI_PAX if no PT_PAX was found */
135 if (!*ret) { 203 if (!*ret) {
136 static char *paxflags; 204 static char *paxflags;
150 218
151static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 219static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
152{ 220{
153 static char ret[12]; 221 static char ret[12];
154 char *found; 222 char *found;
155 unsigned long i, shown;
156 unsigned char multi_stack, multi_relro, multi_load; 223 unsigned long i, shown, multi_stack, multi_relro, multi_load;
224 int max_pt_load;
157 225
158 if (!show_phdr) return NULL; 226 if (!show_phdr) return NULL;
159 227
160 memcpy(ret, "--- --- ---\0", 12); 228 memcpy(ret, "--- --- ---\0", 12);
161 229
162 shown = 0; 230 shown = 0;
163 multi_stack = multi_relro = multi_load = 0; 231 multi_stack = multi_relro = multi_load = 0;
232 max_pt_load = elf_max_pt_load(elf);
164 233
234#define NOTE_GNU_STACK ".note.GNU-stack"
165#define SHOW_PHDR(B) \ 235#define SHOW_PHDR(B) \
166 if (elf->elf_class == ELFCLASS ## B) { \ 236 if (elf->elf_class == ELFCLASS ## B) { \
167 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 237 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
168 Elf ## B ## _Off offset; \ 238 Elf ## B ## _Off offset; \
169 uint32_t flags, check_flags; \ 239 uint32_t flags, check_flags; \
170 if (elf->phdr != NULL) { \ 240 if (elf->phdr != NULL) { \
171 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 241 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
172 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \ 242 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
173 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 243 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
244 if (multi_stack++) \
174 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 245 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
246 if (file_matches_list(elf->filename, qa_execstack)) \
247 continue; \
175 found = found_phdr; \ 248 found = found_phdr; \
176 offset = 0; \ 249 offset = 0; \
177 check_flags = PF_X; \ 250 check_flags = PF_X; \
178 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 251 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
252 if (multi_relro++) \
179 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 253 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
180 found = found_relro; \ 254 found = found_relro; \
181 offset = 4; \ 255 offset = 4; \
182 check_flags = PF_X; \ 256 check_flags = PF_X; \
183 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 257 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
184 if (multi_load++ > 2) warnf("%s: more than 2 PT_LOAD's !?", elf->filename); \ 258 if (EGET(ehdr->e_type) == ET_DYN || EGET(ehdr->e_type) == ET_EXEC) \
259 if (multi_load++ > max_pt_load) \
260 warnf("%s: more than %i PT_LOAD's !?", elf->filename, max_pt_load); \
261 if (file_matches_list(elf->filename, qa_wx_load)) \
262 continue; \
185 found = found_load; \ 263 found = found_load; \
186 offset = 8; \ 264 offset = 8; \
187 check_flags = PF_W|PF_X; \ 265 check_flags = PF_W|PF_X; \
188 } else \ 266 } else \
189 continue; \ 267 continue; \
190 flags = EGET(phdr[i].p_flags); \ 268 flags = EGET(phdr[i].p_flags); \
191 if (be_quiet && ((flags & check_flags) != check_flags)) \ 269 if (be_quiet && ((flags & check_flags) != check_flags)) \
192 continue; \ 270 continue; \
271 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
272 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
273 ret[3] = ret[7] = '!'; \
274 flags = EGET(phdr[i].p_flags); \
275 } \
193 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \ 276 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
194 *found = 1; \ 277 *found = 1; \
195 ++shown; \ 278 ++shown; \
196 } \ 279 } \
197 } else if (elf->shdr != NULL) { \ 280 } else if (elf->shdr != NULL) { \
198 /* no program headers which means this is prob an object file */ \ 281 /* no program headers which means this is prob an object file */ \
199 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 282 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
200 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 283 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
284 char *str; \
285 if ((void*)strtbl > (void*)elf->data_end) \
286 goto skip_this_shdr##B; \
201 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 287 check_flags = SHF_WRITE|SHF_EXECINSTR; \
202 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 288 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
203 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 289 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
204 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 290 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
205 if (!strcmp((char*)(elf->data + offset), ".note.GNU-stack")) { \ 291 str = elf->data + offset; \
292 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \
293 if (!strcmp(str, NOTE_GNU_STACK)) { \
206 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \ 294 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \
207 flags = EGET(shdr[i].sh_flags); \ 295 flags = EGET(shdr[i].sh_flags); \
208 if (be_quiet && ((flags & check_flags) != check_flags)) \ 296 if (be_quiet && ((flags & check_flags) != check_flags)) \
209 continue; \ 297 continue; \
210 ++*found_phdr; \ 298 ++*found_phdr; \
214 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \ 302 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \
215 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \ 303 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \
216 break; \ 304 break; \
217 } \ 305 } \
218 } \ 306 } \
307 skip_this_shdr##B: \
219 if (!multi_stack) { \ 308 if (!multi_stack) { \
309 if (file_matches_list(elf->filename, qa_execstack)) \
310 return NULL; \
220 *found_phdr = 1; \ 311 *found_phdr = 1; \
221 shown = 1; \ 312 shown = 1; \
222 memcpy(ret, "!WX", 3); \ 313 memcpy(ret, "!WX", 3); \
223 } \ 314 } \
224 } \ 315 } \
229 if (be_wewy_wewy_quiet || (be_quiet && !shown)) 320 if (be_wewy_wewy_quiet || (be_quiet && !shown))
230 return NULL; 321 return NULL;
231 else 322 else
232 return ret; 323 return ret;
233} 324}
325
326/*
327 * See if this ELF contains a DT_TEXTREL tag in any of its
328 * PT_DYNAMIC sections.
329 */
234static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 330static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
235{ 331{
236 static const char *ret = "TEXTREL"; 332 static const char *ret = "TEXTREL";
237 unsigned long i; 333 unsigned long i;
238 334
239 if (!show_textrel && !show_textrels) return NULL; 335 if (!show_textrel && !show_textrels) return NULL;
336
337 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
240 338
241 if (elf->phdr) { 339 if (elf->phdr) {
242#define SHOW_TEXTREL(B) \ 340#define SHOW_TEXTREL(B) \
243 if (elf->elf_class == ELFCLASS ## B) { \ 341 if (elf->elf_class == ELFCLASS ## B) { \
244 Elf ## B ## _Dyn *dyn; \ 342 Elf ## B ## _Dyn *dyn; \
245 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 343 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
246 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 344 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
247 Elf ## B ## _Off offset; \ 345 Elf ## B ## _Off offset; \
248 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 346 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
249 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 347 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
250 offset = EGET(phdr[i].p_offset); \ 348 offset = EGET(phdr[i].p_offset); \
251 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 349 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
252 dyn = DYN ## B (elf->data + offset); \ 350 dyn = DYN ## B (elf->data + offset); \
253 while (EGET(dyn->d_tag) != DT_NULL) { \ 351 while (EGET(dyn->d_tag) != DT_NULL) { \
254 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 352 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
266 if (be_quiet || be_wewy_wewy_quiet) 364 if (be_quiet || be_wewy_wewy_quiet)
267 return NULL; 365 return NULL;
268 else 366 else
269 return " - "; 367 return " - ";
270} 368}
369
370/*
371 * Scan the .text section to see if there are any relocations in it.
372 * Should rewrite this to check PT_LOAD sections that are marked
373 * Executable rather than the section named '.text'.
374 */
271static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 375static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
272{ 376{
273 unsigned long s, r, rmax; 377 unsigned long s, r, rmax;
274 void *symtab_void, *strtab_void, *text_void; 378 void *symtab_void, *strtab_void, *text_void;
275 379
327 if (be_verbose <= 2) continue; \ 431 if (be_verbose <= 2) continue; \
328 } else \ 432 } else \
329 *found_textrels = 1; \ 433 *found_textrels = 1; \
330 /* locate this relocation symbol name */ \ 434 /* locate this relocation symbol name */ \
331 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 435 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
436 if ((void*)sym > (void*)elf->data_end) { \
437 warn("%s: corrupt ELF symbol", elf->filename); \
438 continue; \
439 } \
332 sym_max = ELF ## B ## _R_SYM(r_info); \ 440 sym_max = ELF ## B ## _R_SYM(r_info); \
333 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 441 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
334 sym += sym_max; \ 442 sym += sym_max; \
335 else \ 443 else \
336 sym = NULL; \ 444 sym = NULL; \
338 /* show the raw details about this reloc */ \ 446 /* show the raw details about this reloc */ \
339 printf(" %s: ", elf->base_filename); \ 447 printf(" %s: ", elf->base_filename); \
340 if (sym && sym->st_name) \ 448 if (sym && sym->st_name) \
341 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 449 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \
342 else \ 450 else \
343 printf("(memory/fake?)"); \ 451 printf("(memory/data?)"); \
344 printf(" [0x%lX]", (unsigned long)r_offset); \ 452 printf(" [0x%lX]", (unsigned long)r_offset); \
345 /* now try to find the closest symbol that this rel is probably in */ \ 453 /* now try to find the closest symbol that this rel is probably in */ \
346 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 454 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
347 func = NULL; \ 455 func = NULL; \
348 offset_tmp = 0; \ 456 offset_tmp = 0; \
352 offset_tmp = EGET(sym->st_value); \ 460 offset_tmp = EGET(sym->st_value); \
353 } \ 461 } \
354 ++sym; \ 462 ++sym; \
355 } \ 463 } \
356 printf(" in "); \ 464 printf(" in "); \
357 if (func && func->st_name) \ 465 if (func && func->st_name) { \
358 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 466 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
467 if (r_offset > EGET(func->st_size)) \
468 printf("(optimized out: previous %s)", func_name); \
359 else \ 469 else \
360 printf("(NULL: fake?)"); \ 470 printf("%s", func_name); \
471 } else \
472 printf("(optimized out)"); \
361 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 473 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
474 if (be_verbose && has_objdump) { \
475 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
476 char *sysbuf; \
477 size_t syslen; \
478 const char sysfmt[] = "objdump -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
479 syslen = sizeof(sysfmt) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
480 sysbuf = xmalloc(syslen); \
481 if (end_addr < r_offset) \
482 /* not uncommon when things are optimized out */ \
483 end_addr = r_offset + 0x100; \
484 snprintf(sysbuf, syslen, sysfmt, \
485 (unsigned long)offset_tmp, \
486 (unsigned long)end_addr, \
487 elf->filename, \
488 (unsigned long)r_offset); \
489 fflush(stdout); \
490 system(sysbuf); \
491 fflush(stdout); \
492 free(sysbuf); \
493 } \
362 } \ 494 } \
363 } } 495 } }
364 SHOW_TEXTRELS(32) 496 SHOW_TEXTRELS(32)
365 SHOW_TEXTRELS(64) 497 SHOW_TEXTRELS(64)
366 } 498 }
368 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 500 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
369 501
370 return NULL; 502 return NULL;
371} 503}
372 504
373static void rpath_security_checks(elfobj *, char *); 505static void rpath_security_checks(elfobj *, char *, const char *);
374static void rpath_security_checks(elfobj *elf, char *item) { 506static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
507{
375 struct stat st; 508 struct stat st;
376 switch (*item) { 509 switch (*item) {
377 case '/': break; 510 case '/': break;
378 case '.': 511 case '.':
379 warnf("Security problem with relative RPATH '%s' in %s", item, elf->filename); 512 warnf("Security problem with relative %s '%s' in %s", dt_type, item, elf->filename);
380 break; 513 break;
514 case ':':
381 case '\0': 515 case '\0':
382 warnf("Security problem NULL RPATH in %s", elf->filename); 516 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
383 break; 517 break;
384 case '$': 518 case '$':
385 if (fstat(elf->fd, &st) != -1) 519 if (fstat(elf->fd, &st) != -1)
386 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 520 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
387 warnf("Security problem with RPATH='%s' in %s with mode set of %o", 521 warnf("Security problem with %s='%s' in %s with mode set of %o",
388 item, elf->filename, st.st_mode & 07777); 522 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
389 break; 523 break;
390 default: 524 default:
391 warnf("Maybe? sec problem with RPATH='%s' in %s", item, elf->filename); 525 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
392 break; 526 break;
393 } 527 }
394} 528}
395static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 529static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
396{ 530{
413 Elf ## B ## _Off offset; \ 547 Elf ## B ## _Off offset; \
414 Elf ## B ## _Xword word; \ 548 Elf ## B ## _Xword word; \
415 /* Scan all the program headers */ \ 549 /* Scan all the program headers */ \
416 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 550 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
417 /* Just scan dynamic headers */ \ 551 /* Just scan dynamic headers */ \
418 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 552 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
419 offset = EGET(phdr[i].p_offset); \ 553 offset = EGET(phdr[i].p_offset); \
420 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 554 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
421 /* Just scan dynamic RPATH/RUNPATH headers */ \ 555 /* Just scan dynamic RPATH/RUNPATH headers */ \
422 dyn = DYN ## B (elf->data + offset); \ 556 dyn = DYN ## B (elf->data + offset); \
423 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 557 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
432 /* Verify the memory is somewhat sane */ \ 566 /* Verify the memory is somewhat sane */ \
433 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 567 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
434 if (offset < (Elf ## B ## _Off)elf->len) { \ 568 if (offset < (Elf ## B ## _Off)elf->len) { \
435 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 569 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
436 *r = (char*)(elf->data + offset); \ 570 *r = (char*)(elf->data + offset); \
571 /* cache the length in case we need to nuke this section later on */ \
572 if (fix_elf) \
573 offset = strlen(*r); \
437 /* If quiet, don't output paths in ld.so.conf */ \ 574 /* If quiet, don't output paths in ld.so.conf */ \
438 if (be_quiet) { \ 575 if (be_quiet) { \
439 size_t len; \ 576 size_t len; \
440 char *start, *end; \ 577 char *start, *end; \
441 /* note that we only 'chop' off leading known paths. */ \ 578 /* note that we only 'chop' off leading known paths. */ \
442 /* since *r is read-only memory, we can only move the ptr forward. */ \ 579 /* since *r is read-only memory, we can only move the ptr forward. */ \
443 start = *r; \ 580 start = *r; \
444 /* scan each path in : delimited list */ \ 581 /* scan each path in : delimited list */ \
445 while (start) { \ 582 while (start) { \
446 rpath_security_checks(elf, start); \ 583 rpath_security_checks(elf, start, get_elfdtype(word)); \
447 end = strchr(start, ':'); \ 584 end = strchr(start, ':'); \
448 len = (end ? abs(end - start) : strlen(start)); \ 585 len = (end ? abs(end - start) : strlen(start)); \
586 if (use_ldcache) \
449 for (s = 0; ldpaths[s]; ++s) { \ 587 for (s = 0; ldpaths[s]; ++s) \
450 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 588 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \
451 *r = (end ? end + 1 : NULL); \ 589 *r = end; \
590 /* corner case ... if RPATH reads "/usr/lib:", we want \
591 * to show ':' rather than '' */ \
592 if (end && end[1] != '\0') \
593 (*r)++; \
452 break; \ 594 break; \
453 } \ 595 } \
454 } \
455 if (!*r || !ldpaths[s] || !end) \ 596 if (!*r || !end) \
456 start = NULL; \ 597 break; \
457 else \ 598 else \
458 start = start + len + 1; \ 599 start = start + len + 1; \
459 } \ 600 } \
460 } \ 601 } \
602 if (*r) { \
603 if (fix_elf > 2 || (fix_elf && **r == '\0')) { \
604 /* just nuke it */ \
605 nuke_it##B: \
606 memset(*r, 0x00, offset); \
607 *r = NULL; \
608 ESET(dyn->d_tag, DT_DEBUG); \
609 ESET(dyn->d_un.d_ptr, 0); \
610 } else if (fix_elf) { \
611 /* try to clean "bad" paths */ \
612 size_t len, tmpdir_len; \
613 char *start, *end; \
614 const char *tmpdir; \
615 start = *r; \
616 tmpdir = (getenv("TMPDIR") ? : "."); \
617 tmpdir_len = strlen(tmpdir); \
618 while (1) { \
619 end = strchr(start, ':'); \
620 if (start == end) { \
621 eat_this_path##B: \
622 len = strlen(end); \
623 memmove(start, end+1, len); \
624 start[len-1] = '\0'; \
625 end = start - 1; \
626 } else if (tmpdir && !strncmp(start, tmpdir, tmpdir_len)) { \
627 if (!end) { \
628 if (start == *r) \
629 goto nuke_it##B; \
630 *--start = '\0'; \
631 } else \
632 goto eat_this_path##B; \
633 } \
634 if (!end) \
635 break; \
636 start = end + 1; \
637 } \
638 if (**r == '\0') \
639 goto nuke_it##B; \
640 } \
641 if (*r) \
461 if (*r) *found_rpath = 1; \ 642 *found_rpath = 1; \
643 } \
462 } \ 644 } \
463 ++dyn; \ 645 ++dyn; \
464 } \ 646 } \
465 } } 647 } }
466 SHOW_RPATH(32) 648 SHOW_RPATH(32)
488 670
489#define LDSO_CACHE_MAGIC "ld.so-" 671#define LDSO_CACHE_MAGIC "ld.so-"
490#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1) 672#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
491#define LDSO_CACHE_VER "1.7.0" 673#define LDSO_CACHE_VER "1.7.0"
492#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1) 674#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
675#define FLAG_ANY -1
676#define FLAG_TYPE_MASK 0x00ff
677#define FLAG_LIBC4 0x0000
678#define FLAG_ELF 0x0001
679#define FLAG_ELF_LIBC5 0x0002
680#define FLAG_ELF_LIBC6 0x0003
681#define FLAG_REQUIRED_MASK 0xff00
682#define FLAG_SPARC_LIB64 0x0100
683#define FLAG_IA64_LIB64 0x0200
684#define FLAG_X8664_LIB64 0x0300
685#define FLAG_S390_LIB64 0x0400
686#define FLAG_POWERPC_LIB64 0x0500
687#define FLAG_MIPS64_LIBN32 0x0600
688#define FLAG_MIPS64_LIBN64 0x0700
493 689
494static char *lookup_cache_lib(char *); 690static char *lookup_cache_lib(elfobj *, char *);
691
692#if defined(__GLIBC__) || defined(__UCLIBC__)
693
495static char *lookup_cache_lib(char *fname) 694static char *lookup_cache_lib(elfobj *elf, char *fname)
496{ 695{
497 int fd = 0; 696 int fd = 0;
498 char *strs; 697 char *strs;
499 static char buf[_POSIX_PATH_MAX] = ""; 698 static char buf[__PAX_UTILS_PATH_MAX] = "";
500 const char *cachefile = "/etc/ld.so.cache"; 699 const char *cachefile = "/etc/ld.so.cache";
501 struct stat st; 700 struct stat st;
502 701
503 typedef struct { 702 typedef struct {
504 char magic[LDSO_CACHE_MAGIC_LEN]; 703 char magic[LDSO_CACHE_MAGIC_LEN];
505 char version[LDSO_CACHE_VER_LEN]; 704 char version[LDSO_CACHE_VER_LEN];
506 int nlibs; 705 int nlibs;
507 } header_t; 706 } header_t;
707 header_t *header;
508 708
509 typedef struct { 709 typedef struct {
510 int flags; 710 int flags;
511 int sooffset; 711 int sooffset;
512 int liboffset; 712 int liboffset;
513 } libentry_t; 713 } libentry_t;
514
515 header_t *header;
516 libentry_t *libent; 714 libentry_t *libent;
517 715
518 if (fname == NULL) 716 if (fname == NULL)
519 return NULL; 717 return NULL;
520 718
521 if (ldcache == 0) { 719 if (ldcache == 0) {
522 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) < 0) 720 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) == -1)
523 return NULL; 721 return NULL;
524 /* save the cache size for latter unmapping */ 722
723 /* cache these values so we only map/unmap the cache file once */
525 ldcache_size = st.st_size; 724 ldcache_size = st.st_size;
526
527 if ((ldcache = mmap(0, st.st_size, PROT_READ, MAP_SHARED, fd, 0)) == (caddr_t) -1) 725 ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
726
727 close(fd);
728
729 if (ldcache == MAP_FAILED) {
730 ldcache = 0;
528 return NULL; 731 return NULL;
529 732 }
530 close(fd);
531 733
532 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 734 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN))
533 return NULL; 735 return NULL;
534
535 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN)) 736 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
536 return NULL; 737 return NULL;
537 } 738 }
538 739
539 header = (header_t *) ldcache; 740 header = (header_t *) ldcache;
540 libent = (libentry_t *) (ldcache + sizeof(header_t)); 741 libent = (libentry_t *) (ldcache + sizeof(header_t));
541 strs = (char *) &libent[header->nlibs]; 742 strs = (char *) &libent[header->nlibs];
542 743
543 for (fd = 0; fd < header->nlibs; fd++) { 744 for (fd = 0; fd < header->nlibs; fd++) {
745 /* this should be more fine grained, but for now we assume that
746 * diff arches will not be cached together. and we ignore the
747 * the different multilib mips cases. */
748 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
749 continue;
750 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
751 continue;
752
544 if (strcmp(fname, strs + libent[fd].sooffset) != 0) 753 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
545 continue; 754 continue;
546 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 755 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
547 } 756 }
548 return buf; 757 return buf;
549} 758}
759#elif defined(__NetBSD__)
760static char *lookup_cache_lib(elfobj *elf, char *fname)
761{
762 static char buf[__PAX_UTILS_PATH_MAX] = "";
763 static struct stat st;
550 764
765 char **ldpath;
766 for (ldpath = ldpaths; *ldpath != NULL; ldpath++) {
767 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", *ldpath, fname) >= sizeof(buf))
768 continue; /* if the pathname is too long, or something went wrong, ignore */
769
770 if (stat(buf, &st) != 0)
771 continue; /* if the lib doesn't exist in *ldpath, look further */
772
773 /* NetBSD doesn't actually do sanity checks, it just loads the file
774 * and if that doesn't work, continues looking in other directories.
775 * This cannot easily be safely emulated, unfortunately. For now,
776 * just assume that if it exists, it's a valid library. */
777
778 return buf;
779 }
780
781 /* not found in any path */
782 return NULL;
783}
784#else
785#ifdef __ELF__
786#warning Cache support not implemented for your target
787#endif
788static char *lookup_cache_lib(elfobj *elf, char *fname)
789{
790 return NULL;
791}
792#endif
551 793
552static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 794static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
553{ 795{
554 unsigned long i; 796 unsigned long i;
555 char *needed; 797 char *needed;
567 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 809 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
568 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 810 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
569 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 811 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
570 Elf ## B ## _Off offset; \ 812 Elf ## B ## _Off offset; \
571 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 813 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
572 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 814 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
573 offset = EGET(phdr[i].p_offset); \ 815 offset = EGET(phdr[i].p_offset); \
574 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 816 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
575 dyn = DYN ## B (elf->data + offset); \ 817 dyn = DYN ## B (elf->data + offset); \
576 while (EGET(dyn->d_tag) != DT_NULL) { \ 818 while (EGET(dyn->d_tag) != DT_NULL) { \
577 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 819 if (EGET(dyn->d_tag) == DT_NEEDED) { \
582 } \ 824 } \
583 needed = (char*)(elf->data + offset); \ 825 needed = (char*)(elf->data + offset); \
584 if (op == 0) { \ 826 if (op == 0) { \
585 if (!be_wewy_wewy_quiet) { \ 827 if (!be_wewy_wewy_quiet) { \
586 if (*found_needed) xchrcat(ret, ',', ret_len); \ 828 if (*found_needed) xchrcat(ret, ',', ret_len); \
587 if (printcache) \ 829 if (use_ldcache) \
588 if ((p = lookup_cache_lib(needed)) != NULL) \ 830 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
589 needed = p; \ 831 needed = p; \
590 xstrcat(ret, needed, ret_len); \ 832 xstrcat(ret, needed, ret_len); \
591 } \ 833 } \
592 *found_needed = 1; \ 834 *found_needed = 1; \
593 } else { \ 835 } else { \
594 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 836 if (!strncmp(find_lib, needed, strlen( !g_match ? needed : find_lib))) { \
595 *found_lib = 1; \ 837 *found_lib = 1; \
596 return (be_wewy_wewy_quiet ? NULL : needed); \ 838 return (be_wewy_wewy_quiet ? NULL : needed); \
597 } \ 839 } \
598 } \ 840 } \
599 } \ 841 } \
630} 872}
631static char *scanelf_file_bind(elfobj *elf, char *found_bind) 873static char *scanelf_file_bind(elfobj *elf, char *found_bind)
632{ 874{
633 unsigned long i; 875 unsigned long i;
634 struct stat s; 876 struct stat s;
877 char dynamic = 0;
635 878
636 if (!show_bind) return NULL; 879 if (!show_bind) return NULL;
637 if (!elf->phdr) return NULL; 880 if (!elf->phdr) return NULL;
638 881
639#define SHOW_BIND(B) \ 882#define SHOW_BIND(B) \
641 Elf ## B ## _Dyn *dyn; \ 884 Elf ## B ## _Dyn *dyn; \
642 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 885 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
643 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 886 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
644 Elf ## B ## _Off offset; \ 887 Elf ## B ## _Off offset; \
645 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 888 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
646 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 889 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
890 dynamic = 1; \
647 offset = EGET(phdr[i].p_offset); \ 891 offset = EGET(phdr[i].p_offset); \
648 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 892 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
649 dyn = DYN ## B (elf->data + offset); \ 893 dyn = DYN ## B (elf->data + offset); \
650 while (EGET(dyn->d_tag) != DT_NULL) { \ 894 while (EGET(dyn->d_tag) != DT_NULL) { \
651 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 895 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
662 SHOW_BIND(32) 906 SHOW_BIND(32)
663 SHOW_BIND(64) 907 SHOW_BIND(64)
664 908
665 if (be_wewy_wewy_quiet) return NULL; 909 if (be_wewy_wewy_quiet) return NULL;
666 910
911 /* don't output anything if quiet mode and the ELF is static or not setuid */
667 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 912 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
668 return NULL; 913 return NULL;
669 } else { 914 } else {
670 *found_bind = 1; 915 *found_bind = 1;
671 return (char *) "LAZY"; 916 return (char *) (dynamic ? "LAZY" : "STATIC");
672 } 917 }
673} 918}
674static char *scanelf_file_soname(elfobj *elf, char *found_soname) 919static char *scanelf_file_soname(elfobj *elf, char *found_soname)
675{ 920{
676 unsigned long i; 921 unsigned long i;
688 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 933 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
689 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 934 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
690 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 935 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
691 Elf ## B ## _Off offset; \ 936 Elf ## B ## _Off offset; \
692 /* only look for soname in shared objects */ \ 937 /* only look for soname in shared objects */ \
693 if (ehdr->e_type != ET_DYN) \ 938 if (EGET(ehdr->e_type) != ET_DYN) \
694 return NULL; \ 939 return NULL; \
695 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 940 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
696 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 941 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
697 offset = EGET(phdr[i].p_offset); \ 942 offset = EGET(phdr[i].p_offset); \
698 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 943 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
699 dyn = DYN ## B (elf->data + offset); \ 944 dyn = DYN ## B (elf->data + offset); \
700 while (EGET(dyn->d_tag) != DT_NULL) { \ 945 while (EGET(dyn->d_tag) != DT_NULL) { \
701 if (EGET(dyn->d_tag) == DT_SONAME) { \ 946 if (EGET(dyn->d_tag) == DT_SONAME) { \
715 SHOW_SONAME(64) 960 SHOW_SONAME(64)
716 } 961 }
717 962
718 return NULL; 963 return NULL;
719} 964}
965
966static int scanelf_match_symname(const char *symname, const char *tomatch) {
967 /* We do things differently when checking with regexp */
968 if (g_match) {
969 return rematch(symname, tomatch, REG_EXTENDED) == 0;
970 } else {
971 const size_t symname_len = strlen(symname);
972 return (strncmp(symname, tomatch, symname_len) == 0 &&
973 /* Accept unversioned symbol names */
974 (tomatch[symname_len] == '\0' || tomatch[symname_len] == '@'));
975 }
976}
977
720static char *scanelf_file_sym(elfobj *elf, char *found_sym) 978static char *scanelf_file_sym(elfobj *elf, char *found_sym)
721{ 979{
722 unsigned long i; 980 unsigned long i;
723 char *ret; 981 char *ret;
724 void *symtab_void, *strtab_void; 982 void *symtab_void, *strtab_void;
732#define FIND_SYM(B) \ 990#define FIND_SYM(B) \
733 if (elf->elf_class == ELFCLASS ## B) { \ 991 if (elf->elf_class == ELFCLASS ## B) { \
734 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 992 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
735 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 993 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
736 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 994 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \
737 unsigned long cnt = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 995 unsigned long cnt = EGET(symtab->sh_entsize); \
738 char *symname; \ 996 char *symname; \
997 if (cnt) \
998 cnt = EGET(symtab->sh_size) / cnt; \
739 for (i = 0; i < cnt; ++i) { \ 999 for (i = 0; i < cnt; ++i) { \
1000 if ((void*)sym > (void*)elf->data_end) { \
1001 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1002 goto break_out; \
1003 } \
740 if (sym->st_name) { \ 1004 if (sym->st_name) { \
1005 /* make sure the symbol name is in acceptable memory range */ \
741 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1006 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
742 if (*find_sym == '*') { \ 1007 if ((void*)symname > (void*)elf->data_end) { \
1008 warnf("%s: corrupt ELF symbols", elf->filename); \
1009 ++sym; \
1010 continue; \
1011 } \
1012 /* debug display ... show all symbols and some extra info */ \
1013 if (0 && g_match ? rematch(ret, symname, REG_EXTENDED) == 0 : *ret == '*') { \
743 printf("%s(%s) %5lX %15s %s\n", \ 1014 printf("%s(%s) %5lX %15s %s %s\n", \
744 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1015 ((*found_sym == 0) ? "\n\t" : "\t"), \
745 elf->base_filename, \ 1016 elf->base_filename, \
746 (unsigned long)sym->st_size, \ 1017 (unsigned long)sym->st_size, \
747 get_elfstttype(sym->st_info), \ 1018 get_elfstttype(sym->st_info), \
748 symname); \ 1019 sym->st_shndx == SHN_UNDEF ? "U" : "D", symname); \
749 *found_sym = 1; \ 1020 *found_sym = 1; \
750 } else { \ 1021 } else { \
1022 /* allow the user to specify a comma delimited list of symbols to search for */ \
751 char *this_sym, *next_sym; \ 1023 char *this_sym, *next_sym; \
1024 next_sym = ret; \
1025 while (next_sym) { \
752 this_sym = find_sym; \ 1026 this_sym = next_sym; \
753 do { \
754 next_sym = strchr(this_sym, ','); \ 1027 if ((next_sym = strchr(this_sym, ','))) \
755 if (next_sym == NULL) \ 1028 next_sym += 1; /* Skip the comma */ \
756 next_sym = this_sym + strlen(this_sym); \ 1029 /* do we want a defined symbol ? */ \
757 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \ 1030 if (*this_sym == '+') { \
758 (strcmp(symname, versioned_symname) == 0)) { \ 1031 if (sym->st_shndx == SHN_UNDEF) \
1032 continue; \
759 ret = this_sym; \ 1033 ++this_sym; \
1034 /* do we want an undefined symbol ? */ \
1035 } else if (*this_sym == '-') { \
1036 if (sym->st_shndx != SHN_UNDEF) \
1037 continue; \
1038 ++this_sym; \
1039 } \
1040 if (next_sym) /* Copy it so that we don't have to worry about the final , */ \
1041 this_sym = strndup(this_sym, next_sym-this_sym); \
1042 /* ok, lets compare the name now */ \
1043 if (scanelf_match_symname(this_sym, symname)) { \
1044 if (be_semi_verbose) { \
1045 char buf[126]; \
1046 snprintf(buf, sizeof(buf), "%lX %s %s", \
1047 (unsigned long)sym->st_size, get_elfstttype(sym->st_info), this_sym); \
1048 ret = buf; \
1049 } else \
1050 ret = symname; \
760 (*found_sym)++; \ 1051 (*found_sym)++; \
761 goto break_out; \ 1052 goto break_out; \
762 } \ 1053 } \
763 this_sym = next_sym + 1; \ 1054 if (next_sym) free(this_sym); \
764 } while (*next_sym != '\0'); \ 1055 } \
765 } \ 1056 } \
766 } \ 1057 } \
767 ++sym; \ 1058 ++sym; \
768 } } 1059 } }
769 FIND_SYM(32) 1060 FIND_SYM(32)
778 if (be_quiet) 1069 if (be_quiet)
779 return NULL; 1070 return NULL;
780 else 1071 else
781 return (char *)" - "; 1072 return (char *)" - ";
782} 1073}
1074
1075static char *scanelf_file_sections(elfobj *elf, char *found_section)
1076{
1077 if (!find_section)
1078 return NULL;
1079
1080#define FIND_SECTION(B) \
1081 if (elf->elf_class == ELFCLASS ## B) { \
1082 int invert; \
1083 Elf ## B ## _Shdr *section; \
1084 invert = (*find_section == '!' ? 1 : 0); \
1085 section = SHDR ## B (elf_findsecbyname(elf, find_section+invert)); \
1086 if ((section == NULL && invert) || (section != NULL && !invert)) \
1087 *found_section = 1; \
1088 }
1089 FIND_SECTION(32)
1090 FIND_SECTION(64)
1091
1092 if (be_wewy_wewy_quiet)
1093 return NULL;
1094
1095 if (*found_section)
1096 return find_section;
1097
1098 if (be_quiet)
1099 return NULL;
1100 else
1101 return (char *)" - ";
1102}
1103
783/* scan an elf file and show all the fun stuff */ 1104/* scan an elf file and show all the fun stuff */
784#define prints(str) write(fileno(stdout), str, strlen(str)) 1105#define prints(str) write(fileno(stdout), str, strlen(str))
785static void scanelf_file(const char *filename) 1106static int scanelf_elfobj(elfobj *elf)
786{ 1107{
787 unsigned long i; 1108 unsigned long i;
788 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1109 char found_pax, found_phdr, found_relro, found_load, found_textrel,
789 found_rpath, found_needed, found_interp, found_bind, found_soname, 1110 found_rpath, found_needed, found_interp, found_bind, found_soname,
790 found_sym, found_lib, found_file, found_textrels; 1111 found_sym, found_lib, found_file, found_textrels, found_section;
791 elfobj *elf;
792 struct stat st;
793 static char *out_buffer = NULL; 1112 static char *out_buffer = NULL;
794 static size_t out_len; 1113 static size_t out_len;
795 1114
796 /* make sure 'filename' exists */
797 if (lstat(filename, &st) == -1) {
798 if (be_verbose > 2) printf("%s: does not exist\n", filename);
799 return;
800 }
801 /* always handle regular files and handle symlinked files if no -y */
802 if (S_ISLNK(st.st_mode)) {
803 if (!scan_symlink) return;
804 stat(filename, &st);
805 }
806 if (!S_ISREG(st.st_mode)) {
807 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
808 return;
809 }
810
811 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1115 found_pax = found_phdr = found_relro = found_load = found_textrel = \
812 found_rpath = found_needed = found_interp = found_bind = found_soname = \ 1116 found_rpath = found_needed = found_interp = found_bind = found_soname = \
813 found_sym = found_lib = found_file = found_textrels = 0; 1117 found_sym = found_lib = found_file = found_textrels = found_section = 0;
814 1118
815 /* verify this is real ELF */
816 if ((elf = readelf(filename)) == NULL) {
817 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
818 return;
819 }
820
821 if (be_verbose > 1) 1119 if (be_verbose > 2)
822 printf("%s: scanning file {%s,%s}\n", filename, 1120 printf("%s: scanning file {%s,%s}\n", elf->filename,
823 get_elfeitype(EI_CLASS, elf->elf_class), 1121 get_elfeitype(EI_CLASS, elf->elf_class),
824 get_elfeitype(EI_DATA, elf->data[EI_DATA])); 1122 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
825 else if (be_verbose) 1123 else if (be_verbose > 1)
826 printf("%s: scanning file\n", filename); 1124 printf("%s: scanning file\n", elf->filename);
827 1125
828 /* init output buffer */ 1126 /* init output buffer */
829 if (!out_buffer) { 1127 if (!out_buffer) {
830 out_len = sizeof(char) * 80; 1128 out_len = sizeof(char) * 80;
831 out_buffer = (char*)xmalloc(out_len); 1129 out_buffer = xmalloc(out_len);
832 } 1130 }
833 *out_buffer = '\0'; 1131 *out_buffer = '\0';
834 1132
835 /* show the header */ 1133 /* show the header */
836 if (!be_quiet && show_banner) { 1134 if (!be_quiet && show_banner) {
837 for (i = 0; out_format[i]; ++i) { 1135 for (i = 0; out_format[i]; ++i) {
838 if (!IS_MODIFIER(out_format[i])) continue; 1136 if (!IS_MODIFIER(out_format[i])) continue;
839 1137
840 switch (out_format[++i]) { 1138 switch (out_format[++i]) {
1139 case '+': break;
841 case '%': break; 1140 case '%': break;
842 case '#': break; 1141 case '#': break;
843 case 'F': 1142 case 'F':
844 case 'p': 1143 case 'p':
845 case 'f': prints("FILE "); found_file = 1; break; 1144 case 'f': prints("FILE "); found_file = 1; break;
846 case 'o': prints(" TYPE "); break; 1145 case 'o': prints(" TYPE "); break;
847 case 'x': prints(" PAX "); break; 1146 case 'x': prints(" PAX "); break;
848 case 'e': prints("STK/REL/PTL "); break; 1147 case 'e': prints("STK/REL/PTL "); break;
849 case 't': prints("TEXTREL "); break; 1148 case 't': prints("TEXTREL "); break;
850 case 'r': prints("RPATH "); break; 1149 case 'r': prints("RPATH "); break;
1150 case 'M': prints("CLASS "); break;
851 case 'n': prints("NEEDED "); break; 1151 case 'n': prints("NEEDED "); break;
852 case 'i': prints("INTERP "); break; 1152 case 'i': prints("INTERP "); break;
853 case 'b': prints("BIND "); break; 1153 case 'b': prints("BIND "); break;
1154 case 'Z': prints("SIZE "); break;
854 case 'S': prints("SONAME "); break; 1155 case 'S': prints("SONAME "); break;
855 case 's': prints("SYM "); break; 1156 case 's': prints("SYM "); break;
856 case 'N': prints("LIB "); break; 1157 case 'N': prints("LIB "); break;
857 case 'T': prints("TEXTRELS "); break; 1158 case 'T': prints("TEXTRELS "); break;
1159 case 'k': prints("SECTION "); break;
1160 case 'a': prints("ARCH "); break;
1161 case 'I': prints("OSABI "); break;
1162 case 'Y': prints("EABI "); break;
1163 case 'O': prints("PERM "); break;
1164 case 'D': prints("ENDIAN "); break;
858 default: warnf("'%c' has no title ?", out_format[i]); 1165 default: warnf("'%c' has no title ?", out_format[i]);
859 } 1166 }
860 } 1167 }
861 if (!found_file) prints("FILE "); 1168 if (!found_file) prints("FILE ");
862 prints("\n"); 1169 prints("\n");
866 1173
867 /* dump all the good stuff */ 1174 /* dump all the good stuff */
868 for (i = 0; out_format[i]; ++i) { 1175 for (i = 0; out_format[i]; ++i) {
869 const char *out; 1176 const char *out;
870 const char *tmp; 1177 const char *tmp;
871 1178 static char ubuf[sizeof(unsigned long)*2];
872 /* make sure we trim leading spaces in quiet mode */
873 if (be_quiet && *out_buffer == ' ' && !out_buffer[1])
874 *out_buffer = '\0';
875
876 if (!IS_MODIFIER(out_format[i])) { 1179 if (!IS_MODIFIER(out_format[i])) {
877 xchrcat(&out_buffer, out_format[i], &out_len); 1180 xchrcat(&out_buffer, out_format[i], &out_len);
878 continue; 1181 continue;
879 } 1182 }
880 1183
881 out = NULL; 1184 out = NULL;
882 be_wewy_wewy_quiet = (out_format[i] == '#'); 1185 be_wewy_wewy_quiet = (out_format[i] == '#');
1186 be_semi_verbose = (out_format[i] == '+');
883 switch (out_format[++i]) { 1187 switch (out_format[++i]) {
1188 case '+':
884 case '%': 1189 case '%':
885 case '#': 1190 case '#':
886 xchrcat(&out_buffer, out_format[i], &out_len); break; 1191 xchrcat(&out_buffer, out_format[i], &out_len); break;
887 case 'F': 1192 case 'F':
888 found_file = 1; 1193 found_file = 1;
889 if (be_wewy_wewy_quiet) break; 1194 if (be_wewy_wewy_quiet) break;
890 xstrcat(&out_buffer, filename, &out_len); 1195 xstrcat(&out_buffer, elf->filename, &out_len);
891 break; 1196 break;
892 case 'p': 1197 case 'p':
893 found_file = 1; 1198 found_file = 1;
894 if (be_wewy_wewy_quiet) break; 1199 if (be_wewy_wewy_quiet) break;
895 tmp = filename; 1200 tmp = elf->filename;
896 if (search_path) { 1201 if (search_path) {
897 ssize_t len_search = strlen(search_path); 1202 ssize_t len_search = strlen(search_path);
898 ssize_t len_file = strlen(filename); 1203 ssize_t len_file = strlen(elf->filename);
899 if (!strncmp(filename, search_path, len_search) && \ 1204 if (!strncmp(elf->filename, search_path, len_search) && \
900 len_file > len_search) 1205 len_file > len_search)
901 tmp += len_search; 1206 tmp += len_search;
902 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++; 1207 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++;
903 } 1208 }
904 xstrcat(&out_buffer, tmp, &out_len); 1209 xstrcat(&out_buffer, tmp, &out_len);
905 break; 1210 break;
906 case 'f': 1211 case 'f':
907 found_file = 1; 1212 found_file = 1;
908 if (be_wewy_wewy_quiet) break; 1213 if (be_wewy_wewy_quiet) break;
909 tmp = strrchr(filename, '/'); 1214 tmp = strrchr(elf->filename, '/');
910 tmp = (tmp == NULL ? filename : tmp+1); 1215 tmp = (tmp == NULL ? elf->filename : tmp+1);
911 xstrcat(&out_buffer, tmp, &out_len); 1216 xstrcat(&out_buffer, tmp, &out_len);
912 break; 1217 break;
913 case 'o': out = get_elfetype(elf); break; 1218 case 'o': out = get_elfetype(elf); break;
914 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1219 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
915 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1220 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
916 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1221 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
917 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1222 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
918 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1223 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1224 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1225 case 'D': out = get_endian(elf); break;
1226 case 'O': out = strfileperms(elf->filename); break;
919 case 'n': 1227 case 'n':
920 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1228 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
921 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1229 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
922 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1230 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
923 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1231 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
924 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1232 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1233 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1234 case 'a': out = get_elfemtype(elf); break;
1235 case 'I': out = get_elfosabi(elf); break;
1236 case 'Y': out = get_elf_eabi(elf); break;
1237 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
925 default: warnf("'%c' has no scan code?", out_format[i]); 1238 default: warnf("'%c' has no scan code?", out_format[i]);
926 } 1239 }
927 if (out) { 1240 if (out) {
928 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */ 1241 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
929 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL) 1242 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
934 } 1247 }
935 1248
936#define FOUND_SOMETHING() \ 1249#define FOUND_SOMETHING() \
937 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1250 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
938 found_rpath || found_needed || found_interp || found_bind || \ 1251 found_rpath || found_needed || found_interp || found_bind || \
939 found_soname || found_sym || found_lib || found_textrels) 1252 found_soname || found_sym || found_lib || found_textrels || found_section )
940 1253
941 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) { 1254 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
942 xchrcat(&out_buffer, ' ', &out_len); 1255 xchrcat(&out_buffer, ' ', &out_len);
943 xstrcat(&out_buffer, filename, &out_len); 1256 xstrcat(&out_buffer, elf->filename, &out_len);
944 } 1257 }
945 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) { 1258 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) {
946 puts(out_buffer); 1259 puts(out_buffer);
947 fflush(stdout); 1260 fflush(stdout);
948 } 1261 }
949 1262
1263 return 0;
1264}
1265
1266/* scan a single elf */
1267static int scanelf_elf(const char *filename, int fd, size_t len)
1268{
1269 int ret = 1;
1270 elfobj *elf;
1271
1272 /* verify this is real ELF */
1273 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1274 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1275 return ret;
1276 }
1277 switch (match_bits) {
1278 case 32:
1279 if (elf->elf_class != ELFCLASS32)
1280 goto label_done;
1281 break;
1282 case 64:
1283 if (elf->elf_class != ELFCLASS64)
1284 goto label_done;
1285 break;
1286 default: break;
1287 }
1288 if (strlen(match_etypes)) {
1289 char sbuf[126];
1290 strncpy(sbuf, match_etypes, sizeof(sbuf));
1291 if (strchr(match_etypes, ',') != NULL) {
1292 char *p;
1293 while ((p = strrchr(sbuf, ',')) != NULL) {
1294 *p = 0;
1295 if (etype_lookup(p+1) == get_etype(elf))
1296 goto label_ret;
1297 }
1298 }
1299 if (etype_lookup(sbuf) != get_etype(elf))
1300 goto label_done;
1301 }
1302
1303label_ret:
1304 ret = scanelf_elfobj(elf);
1305
1306label_done:
950 unreadelf(elf); 1307 unreadelf(elf);
1308 return ret;
1309}
1310
1311/* scan an archive of elfs */
1312static int scanelf_archive(const char *filename, int fd, size_t len)
1313{
1314 archive_handle *ar;
1315 archive_member *m;
1316 char *ar_buffer;
1317 elfobj *elf;
1318
1319 ar = ar_open_fd(filename, fd);
1320 if (ar == NULL)
1321 return 1;
1322
1323 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1324 while ((m=ar_next(ar)) != NULL) {
1325 elf = readelf_buffer(m->name, ar_buffer+lseek(fd,0,SEEK_CUR), m->size);
1326 if (elf) {
1327 scanelf_elfobj(elf);
1328 unreadelf(elf);
1329 }
1330 }
1331 munmap(ar_buffer, len);
1332
1333 return 0;
1334}
1335/* scan a file which may be an elf or an archive or some other magical beast */
1336static int scanelf_file(const char *filename, const struct stat *st_cache)
1337{
1338 const struct stat *st = st_cache;
1339 struct stat symlink_st;
1340 int fd;
1341
1342 /* always handle regular files and handle symlinked files if no -y */
1343 if (S_ISLNK(st->st_mode)) {
1344 if (!scan_symlink) return 1;
1345 stat(filename, &symlink_st);
1346 st = &symlink_st;
1347 }
1348
1349 if (!S_ISREG(st->st_mode)) {
1350 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1351 return 1;
1352 }
1353
1354 if (match_perms) {
1355 if ((st->st_mode | match_perms) != st->st_mode)
1356 return 1;
1357 }
1358 if ((fd=open(filename, (fix_elf ? O_RDWR : O_RDONLY))) == -1)
1359 return 1;
1360
1361 if (scanelf_elf(filename, fd, st->st_size) == 1 && scan_archives)
1362 /* if it isn't an ELF, maybe it's an .a archive */
1363 scanelf_archive(filename, fd, st->st_size);
1364
1365 close(fd);
1366 return 0;
951} 1367}
952 1368
953/* scan a directory for ET_EXEC files and print when we find one */ 1369/* scan a directory for ET_EXEC files and print when we find one */
954static void scanelf_dir(const char *path) 1370static int scanelf_dir(const char *path)
955{ 1371{
956 register DIR *dir; 1372 register DIR *dir;
957 register struct dirent *dentry; 1373 register struct dirent *dentry;
958 struct stat st_top, st; 1374 struct stat st_top, st;
959 char buf[_POSIX_PATH_MAX]; 1375 char buf[__PAX_UTILS_PATH_MAX];
960 size_t pathlen = 0, len = 0; 1376 size_t pathlen = 0, len = 0;
1377 int ret = 0;
961 1378
962 /* make sure path exists */ 1379 /* make sure path exists */
963 if (lstat(path, &st_top) == -1) { 1380 if (lstat(path, &st_top) == -1) {
964 if (be_verbose > 2) printf("%s: does not exist\n", path); 1381 if (be_verbose > 2) printf("%s: does not exist\n", path);
965 return; 1382 return 1;
966 } 1383 }
967 1384
968 /* ok, if it isn't a directory, assume we can open it */ 1385 /* ok, if it isn't a directory, assume we can open it */
969 if (!S_ISDIR(st_top.st_mode)) { 1386 if (!S_ISDIR(st_top.st_mode)) {
970 scanelf_file(path); 1387 return scanelf_file(path, &st_top);
971 return;
972 } 1388 }
973 1389
974 /* now scan the dir looking for fun stuff */ 1390 /* now scan the dir looking for fun stuff */
975 if ((dir = opendir(path)) == NULL) { 1391 if ((dir = opendir(path)) == NULL) {
976 warnf("could not opendir %s: %s", path, strerror(errno)); 1392 warnf("could not opendir %s: %s", path, strerror(errno));
977 return; 1393 return 1;
978 } 1394 }
979 if (be_verbose) printf("%s: scanning dir\n", path); 1395 if (be_verbose > 1) printf("%s: scanning dir\n", path);
980 1396
981 pathlen = strlen(path); 1397 pathlen = strlen(path);
982 while ((dentry = readdir(dir))) { 1398 while ((dentry = readdir(dir))) {
983 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1399 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
984 continue; 1400 continue;
986 if (len >= sizeof(buf)) { 1402 if (len >= sizeof(buf)) {
987 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1403 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path,
988 (unsigned long)len, (unsigned long)sizeof(buf)); 1404 (unsigned long)len, (unsigned long)sizeof(buf));
989 continue; 1405 continue;
990 } 1406 }
991 sprintf(buf, "%s/%s", path, dentry->d_name); 1407 snprintf(buf, sizeof(buf), "%s%s%s", path, (path[pathlen-1] == '/') ? "" : "/", dentry->d_name);
992 if (lstat(buf, &st) != -1) { 1408 if (lstat(buf, &st) != -1) {
993 if (S_ISREG(st.st_mode)) 1409 if (S_ISREG(st.st_mode))
994 scanelf_file(buf); 1410 ret = scanelf_file(buf, &st);
995 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1411 else if (dir_recurse && S_ISDIR(st.st_mode)) {
996 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1412 if (dir_crossmount || (st_top.st_dev == st.st_dev))
997 scanelf_dir(buf); 1413 ret = scanelf_dir(buf);
998 } 1414 }
999 } 1415 }
1000 } 1416 }
1001 closedir(dir); 1417 closedir(dir);
1418 return ret;
1002} 1419}
1003 1420
1004static int scanelf_from_file(char *filename) 1421static int scanelf_from_file(const char *filename)
1005{ 1422{
1006 FILE *fp = NULL; 1423 FILE *fp = NULL;
1007 char *p; 1424 char *p;
1008 char path[_POSIX_PATH_MAX]; 1425 char path[__PAX_UTILS_PATH_MAX];
1426 int ret = 0;
1009 1427
1010 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1428 if (strcmp(filename, "-") == 0)
1011 fp = stdin; 1429 fp = stdin;
1012 else if ((fp = fopen(filename, "r")) == NULL) 1430 else if ((fp = fopen(filename, "r")) == NULL)
1013 return 1; 1431 return 1;
1014 1432
1015 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1433 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1016 if ((p = strchr(path, '\n')) != NULL) 1434 if ((p = strchr(path, '\n')) != NULL)
1017 *p = 0; 1435 *p = 0;
1018 search_path = path; 1436 search_path = path;
1019 scanelf_dir(path); 1437 ret = scanelf_dir(path);
1020 } 1438 }
1021 if (fp != stdin) 1439 if (fp != stdin)
1022 fclose(fp); 1440 fclose(fp);
1023 return 0; 1441 return ret;
1024} 1442}
1025 1443
1026static void load_ld_so_conf() 1444#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1445
1446static int load_ld_cache_config(int i, const char *fname)
1027{ 1447{
1028 FILE *fp = NULL; 1448 FILE *fp = NULL;
1029 char *p; 1449 char *p;
1030 char path[_POSIX_PATH_MAX]; 1450 char path[__PAX_UTILS_PATH_MAX];
1031 int i = 0;
1032 1451
1033 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1452 if (i + 1 == ARRAY_SIZE(ldpaths))
1034 return; 1453 return i;
1035 1454
1455 if ((fp = fopen(fname, "r")) == NULL)
1456 return i;
1457
1036 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1458 while ((fgets(path, __PAX_UTILS_PATH_MAX, fp)) != NULL) {
1037 if (*path != '/')
1038 continue;
1039
1040 if ((p = strrchr(path, '\r')) != NULL) 1459 if ((p = strrchr(path, '\r')) != NULL)
1041 *p = 0; 1460 *p = 0;
1042 if ((p = strchr(path, '\n')) != NULL) 1461 if ((p = strchr(path, '\n')) != NULL)
1043 *p = 0; 1462 *p = 0;
1463#ifdef __linux__
1464 /* recursive includes of the same file will make this segfault. */
1465 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1466 glob64_t gl;
1467 size_t x;
1468 char gpath[__PAX_UTILS_PATH_MAX];
1469
1470 memset(gpath, 0, sizeof(gpath));
1471
1472 if (path[8] != '/')
1473 snprintf(gpath, sizeof(gpath), "/etc/%s", &path[8]);
1474 else
1475 strncpy(gpath, &path[8], sizeof(gpath));
1476
1477 if ((glob64(gpath, 0, NULL, &gl)) == 0) {
1478 for (x = 0; x < gl.gl_pathc; ++x) {
1479 /* try to avoid direct loops */
1480 if (strcmp(gl.gl_pathv[x], fname) == 0)
1481 continue;
1482 i = load_ld_cache_config(i, gl.gl_pathv[x]);
1483 if (i + 1 >= ARRAY_SIZE(ldpaths)) {
1484 globfree64(&gl);
1485 return i;
1486 }
1487 }
1488 globfree64 (&gl);
1489 continue;
1490 }
1491 }
1492#endif
1493 if (*path != '/')
1494 continue;
1044 1495
1045 ldpaths[i++] = xstrdup(path); 1496 ldpaths[i++] = xstrdup(path);
1046 1497
1047 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1498 if (i + 1 == ARRAY_SIZE(ldpaths))
1048 break; 1499 break;
1049 } 1500 }
1050 ldpaths[i] = NULL; 1501 ldpaths[i] = NULL;
1051 1502
1052 fclose(fp); 1503 fclose(fp);
1504 return i;
1053} 1505}
1506
1507#elif defined(__FreeBSD__) || (__DragonFly__)
1508
1509static int load_ld_cache_config(int i, const char *fname)
1510{
1511 FILE *fp = NULL;
1512 char *b = NULL, *p;
1513 struct elfhints_hdr hdr;
1514
1515 if (i + 1 == ARRAY_SIZE(ldpaths))
1516 return i;
1517
1518 if ((fp = fopen(fname, "r")) == NULL)
1519 return i;
1520
1521 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1522 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1523 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1524 {
1525 fclose(fp);
1526 return i;
1527 }
1528
1529 b = xmalloc(hdr.dirlistlen + 1);
1530 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1531 fclose(fp);
1532 free(b);
1533 return i;
1534 }
1535
1536 while ((p = strsep(&b, ":"))) {
1537 if (*p == '\0') continue;
1538 ldpaths[i++] = xstrdup(p);
1539
1540 if (i + 1 == ARRAY_SIZE(ldpaths))
1541 break;
1542 }
1543 ldpaths[i] = NULL;
1544
1545 free(b);
1546 fclose(fp);
1547 return i;
1548}
1549
1550#else
1551#ifdef __ELF__
1552#warning Cache config support not implemented for your target
1553#endif
1554static int load_ld_cache_config(int i, const char *fname)
1555{
1556 memset(ldpaths, 0x00, sizeof(ldpaths));
1557 return 0;
1558}
1559#endif
1054 1560
1055/* scan /etc/ld.so.conf for paths */ 1561/* scan /etc/ld.so.conf for paths */
1056static void scanelf_ldpath() 1562static void scanelf_ldpath(void)
1057{ 1563{
1058 char scan_l, scan_ul, scan_ull; 1564 char scan_l, scan_ul, scan_ull;
1059 int i = 0; 1565 int i = 0;
1060 1566
1061 if (!ldpaths[0]) 1567 if (!ldpaths[0])
1075 if (!scan_ul) scanelf_dir("/usr/lib"); 1581 if (!scan_ul) scanelf_dir("/usr/lib");
1076 if (!scan_ull) scanelf_dir("/usr/local/lib"); 1582 if (!scan_ull) scanelf_dir("/usr/local/lib");
1077} 1583}
1078 1584
1079/* scan env PATH for paths */ 1585/* scan env PATH for paths */
1080static void scanelf_envpath() 1586static void scanelf_envpath(void)
1081{ 1587{
1082 char *path, *p; 1588 char *path, *p;
1083 1589
1084 path = getenv("PATH"); 1590 path = getenv("PATH");
1085 if (!path) 1591 if (!path)
1092 } 1598 }
1093 1599
1094 free(path); 1600 free(path);
1095} 1601}
1096 1602
1097 1603/* usage / invocation handling functions */ /* Free Flags: c d j u w C G H J K P Q U W */
1098/* usage / invocation handling functions */
1099#define PARSE_FLAGS "plRmyxetrnLibSs:gN:TaqvF:f:o:BhV" 1604#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZBhV"
1100#define a_argument required_argument 1605#define a_argument required_argument
1101static struct option const long_opts[] = { 1606static struct option const long_opts[] = {
1102 {"path", no_argument, NULL, 'p'}, 1607 {"path", no_argument, NULL, 'p'},
1103 {"ldpath", no_argument, NULL, 'l'}, 1608 {"ldpath", no_argument, NULL, 'l'},
1104 {"recursive", no_argument, NULL, 'R'}, 1609 {"recursive", no_argument, NULL, 'R'},
1105 {"mount", no_argument, NULL, 'm'}, 1610 {"mount", no_argument, NULL, 'm'},
1106 {"symlink", no_argument, NULL, 'y'}, 1611 {"symlink", no_argument, NULL, 'y'},
1612 {"archives", no_argument, NULL, 'A'},
1613 {"ldcache", no_argument, NULL, 'L'},
1614 {"fix", no_argument, NULL, 'X'},
1615 {"setpax", a_argument, NULL, 'z'},
1107 {"pax", no_argument, NULL, 'x'}, 1616 {"pax", no_argument, NULL, 'x'},
1108 {"header", no_argument, NULL, 'e'}, 1617 {"header", no_argument, NULL, 'e'},
1109 {"textrel", no_argument, NULL, 't'}, 1618 {"textrel", no_argument, NULL, 't'},
1110 {"rpath", no_argument, NULL, 'r'}, 1619 {"rpath", no_argument, NULL, 'r'},
1111 {"needed", no_argument, NULL, 'n'}, 1620 {"needed", no_argument, NULL, 'n'},
1112 {"ldcache", no_argument, NULL, 'L'},
1113 {"interp", no_argument, NULL, 'i'}, 1621 {"interp", no_argument, NULL, 'i'},
1114 {"bind", no_argument, NULL, 'b'}, 1622 {"bind", no_argument, NULL, 'b'},
1115 {"soname", no_argument, NULL, 'S'}, 1623 {"soname", no_argument, NULL, 'S'},
1116 {"symbol", a_argument, NULL, 's'}, 1624 {"symbol", a_argument, NULL, 's'},
1625 {"section", a_argument, NULL, 'k'},
1117 {"lib", a_argument, NULL, 'N'}, 1626 {"lib", a_argument, NULL, 'N'},
1118 {"gmatch", no_argument, NULL, 'g'}, 1627 {"gmatch", no_argument, NULL, 'g'},
1119 {"textrels", no_argument, NULL, 'T'}, 1628 {"textrels", no_argument, NULL, 'T'},
1629 {"etype", a_argument, NULL, 'E'},
1630 {"bits", a_argument, NULL, 'M'},
1631 {"endian", no_argument, NULL, 'D'},
1632 {"osabi", no_argument, NULL, 'I'},
1633 {"eabi", no_argument, NULL, 'Y'},
1634 {"perms", a_argument, NULL, 'O'},
1635 {"size", no_argument, NULL, 'Z'},
1120 {"all", no_argument, NULL, 'a'}, 1636 {"all", no_argument, NULL, 'a'},
1121 {"quiet", no_argument, NULL, 'q'}, 1637 {"quiet", no_argument, NULL, 'q'},
1122 {"verbose", no_argument, NULL, 'v'}, 1638 {"verbose", no_argument, NULL, 'v'},
1123 {"format", a_argument, NULL, 'F'}, 1639 {"format", a_argument, NULL, 'F'},
1124 {"from", a_argument, NULL, 'f'}, 1640 {"from", a_argument, NULL, 'f'},
1132static const char *opts_help[] = { 1648static const char *opts_help[] = {
1133 "Scan all directories in PATH environment", 1649 "Scan all directories in PATH environment",
1134 "Scan all directories in /etc/ld.so.conf", 1650 "Scan all directories in /etc/ld.so.conf",
1135 "Scan directories recursively", 1651 "Scan directories recursively",
1136 "Don't recursively cross mount points", 1652 "Don't recursively cross mount points",
1137 "Don't scan symlinks\n", 1653 "Don't scan symlinks",
1654 "Scan archives (.a files)",
1655 "Utilize ld.so.cache information (use with -r/-n)",
1656 "Try and 'fix' bad things (use with -r/-e)",
1657 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1138 "Print PaX markings", 1658 "Print PaX markings",
1139 "Print GNU_STACK/PT_LOAD markings", 1659 "Print GNU_STACK/PT_LOAD markings",
1140 "Print TEXTREL information", 1660 "Print TEXTREL information",
1141 "Print RPATH information", 1661 "Print RPATH information",
1142 "Print NEEDED information", 1662 "Print NEEDED information",
1143 "Resolve NEEDED information (use with -n)",
1144 "Print INTERP information", 1663 "Print INTERP information",
1145 "Print BIND information", 1664 "Print BIND information",
1146 "Print SONAME information", 1665 "Print SONAME information",
1147 "Find a specified symbol", 1666 "Find a specified symbol",
1667 "Find a specified section",
1148 "Find a specified library", 1668 "Find a specified library",
1149 "Use strncmp to match libraries. (use with -N)", 1669 "Use strncmp to match libraries. (use with -N)",
1150 "Locate cause of TEXTREL", 1670 "Locate cause of TEXTREL",
1671 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
1672 "Print only ELF files matching numeric bits",
1673 "Print Endianness",
1674 "Print OSABI",
1675 "Print EABI (EM_ARM Only)",
1676 "Print only ELF files matching octal permissions",
1677 "Print ELF file size",
1151 "Print all scanned info (-x -e -t -r -b)\n", 1678 "Print all scanned info (-x -e -t -r -b)\n",
1152 "Only output 'bad' things", 1679 "Only output 'bad' things",
1153 "Be verbose (can be specified more than once)", 1680 "Be verbose (can be specified more than once)",
1154 "Use specified format for output", 1681 "Use specified format for output",
1155 "Read input stream from a filename", 1682 "Read input stream from a filename",
1163/* display usage and exit */ 1690/* display usage and exit */
1164static void usage(int status) 1691static void usage(int status)
1165{ 1692{
1166 unsigned long i; 1693 unsigned long i;
1167 printf("* Scan ELF binaries for stuff\n\n" 1694 printf("* Scan ELF binaries for stuff\n\n"
1168 "Usage: %s [options] <dir1/file1> [dir2 dirN fileN ...]\n\n", argv0); 1695 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1169 printf("Options: -[%s]\n", PARSE_FLAGS); 1696 printf("Options: -[%s]\n", PARSE_FLAGS);
1170 for (i = 0; long_opts[i].name; ++i) 1697 for (i = 0; long_opts[i].name; ++i)
1171 if (long_opts[i].has_arg == no_argument) 1698 if (long_opts[i].has_arg == no_argument)
1172 printf(" -%c, --%-13s* %s\n", long_opts[i].val, 1699 printf(" -%c, --%-14s* %s\n", long_opts[i].val,
1173 long_opts[i].name, opts_help[i]); 1700 long_opts[i].name, opts_help[i]);
1174 else 1701 else
1175 printf(" -%c, --%-6s <arg> * %s\n", long_opts[i].val, 1702 printf(" -%c, --%-7s <arg> * %s\n", long_opts[i].val,
1176 long_opts[i].name, opts_help[i]); 1703 long_opts[i].name, opts_help[i]);
1177 1704
1178 if (status != EXIT_SUCCESS) 1705 puts("\nFor more information, see the scanelf(1) manpage");
1179 exit(status);
1180
1181 puts("\nThe format modifiers for the -F option are:");
1182 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1183 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1184 puts(" i INTERP \tb BIND \ts symbol");
1185 puts(" N library \to Type \tT TEXTRELs");
1186 puts(" S SONAME");
1187 puts(" p filename (with search path removed)");
1188 puts(" f filename (short name/basename)");
1189 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1190
1191 exit(status); 1706 exit(status);
1192} 1707}
1193 1708
1194/* parse command line arguments and preform needed actions */ 1709/* parse command line arguments and preform needed actions */
1710#define do_pax_state(option, flag) \
1711 if (islower(option)) { \
1712 flags &= ~PF_##flag; \
1713 flags |= PF_NO##flag; \
1714 } else { \
1715 flags &= ~PF_NO##flag; \
1716 flags |= PF_##flag; \
1717 }
1195static void parseargs(int argc, char *argv[]) 1718static int parseargs(int argc, char *argv[])
1196{ 1719{
1197 int i; 1720 int i;
1198 char *from_file = NULL; 1721 const char *from_file = NULL;
1722 int ret = 0;
1199 1723
1200 opterr = 0; 1724 opterr = 0;
1201 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 1725 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1202 switch (i) { 1726 switch (i) {
1203 1727
1207 VERSION, __FILE__, __DATE__, rcsid, argv0); 1731 VERSION, __FILE__, __DATE__, rcsid, argv0);
1208 exit(EXIT_SUCCESS); 1732 exit(EXIT_SUCCESS);
1209 break; 1733 break;
1210 case 'h': usage(EXIT_SUCCESS); break; 1734 case 'h': usage(EXIT_SUCCESS); break;
1211 case 'f': 1735 case 'f':
1212 if (from_file) err("Don't specify -f twice"); 1736 if (from_file) warn("You prob don't want to specify -f twice");
1213 from_file = xstrdup(optarg); 1737 from_file = optarg;
1738 break;
1739 case 'E':
1740 strncpy(match_etypes, optarg, sizeof(match_etypes));
1741 break;
1742 case 'M':
1743 match_bits = atoi(optarg);
1744 if (match_bits == 0) {
1745 if (strcmp(optarg, "ELFCLASS32") == 0)
1746 match_bits = 32;
1747 if (strcmp(optarg, "ELFCLASS64") == 0)
1748 match_bits = 64;
1749 }
1750 break;
1751 case 'O':
1752 if (sscanf(optarg, "%o", &match_perms) == -1)
1753 match_bits = 0;
1214 break; 1754 break;
1215 case 'o': { 1755 case 'o': {
1216 FILE *fp = NULL;
1217 if ((fp = freopen(optarg, "w", stdout)) == NULL) 1756 if (freopen(optarg, "w", stdout) == NULL)
1218 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 1757 err("Could not open output stream '%s': %s", optarg, strerror(errno));
1219 SET_STDOUT(fp);
1220 break; 1758 break;
1221 } 1759 }
1222 1760 case 'k':
1761 if (find_section) warn("You prob don't want to specify -k twice");
1762 find_section = optarg;
1763 break;
1223 case 's': { 1764 case 's': {
1224 if (find_sym) warn("You prob don't want to specify -s twice"); 1765 if (find_sym) warn("You prob don't want to specify -s twice");
1225 find_sym = optarg; 1766 find_sym = optarg;
1226 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1227 sprintf(versioned_symname, "%s@", find_sym);
1228 break; 1767 break;
1229 } 1768 }
1230 case 'N': { 1769 case 'N': {
1231 if (find_lib) warn("You prob don't want to specify -N twice"); 1770 if (find_lib) warn("You prob don't want to specify -N twice");
1232 find_lib = optarg; 1771 find_lib = optarg;
1236 case 'F': { 1775 case 'F': {
1237 if (out_format) warn("You prob don't want to specify -F twice"); 1776 if (out_format) warn("You prob don't want to specify -F twice");
1238 out_format = optarg; 1777 out_format = optarg;
1239 break; 1778 break;
1240 } 1779 }
1780 case 'z': {
1781 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
1782 size_t x;
1241 1783
1242 case 'g': gmatch = 1; /* break; any reason we dont breal; here ? */ 1784 for (x = 0; x < strlen(optarg); x++) {
1785 switch (optarg[x]) {
1786 case 'p':
1787 case 'P':
1788 do_pax_state(optarg[x], PAGEEXEC);
1789 break;
1790 case 's':
1791 case 'S':
1792 do_pax_state(optarg[x], SEGMEXEC);
1793 break;
1794 case 'm':
1795 case 'M':
1796 do_pax_state(optarg[x], MPROTECT);
1797 break;
1798 case 'e':
1799 case 'E':
1800 do_pax_state(optarg[x], EMUTRAMP);
1801 break;
1802 case 'r':
1803 case 'R':
1804 do_pax_state(optarg[x], RANDMMAP);
1805 break;
1806 case 'x':
1807 case 'X':
1808 do_pax_state(optarg[x], RANDEXEC);
1809 break;
1810 default:
1811 break;
1812 }
1813 }
1814 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
1815 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
1816 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
1817 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
1818 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
1819 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
1820 setpax = flags;
1821 break;
1822 }
1823 case 'Z': show_size = 1; break;
1824 case 'g': g_match = 1; break;
1243 case 'L': printcache = 1; break; 1825 case 'L': use_ldcache = 1; break;
1244 case 'y': scan_symlink = 0; break; 1826 case 'y': scan_symlink = 0; break;
1827 case 'A': scan_archives = 1; break;
1245 case 'B': show_banner = 0; break; 1828 case 'B': show_banner = 0; break;
1246 case 'l': scan_ldpath = 1; break; 1829 case 'l': scan_ldpath = 1; break;
1247 case 'p': scan_envpath = 1; break; 1830 case 'p': scan_envpath = 1; break;
1248 case 'R': dir_recurse = 1; break; 1831 case 'R': dir_recurse = 1; break;
1249 case 'm': dir_crossmount = 0; break; 1832 case 'm': dir_crossmount = 0; break;
1833 case 'X': ++fix_elf; break;
1250 case 'x': show_pax = 1; break; 1834 case 'x': show_pax = 1; break;
1251 case 'e': show_phdr = 1; break; 1835 case 'e': show_phdr = 1; break;
1252 case 't': show_textrel = 1; break; 1836 case 't': show_textrel = 1; break;
1253 case 'r': show_rpath = 1; break; 1837 case 'r': show_rpath = 1; break;
1254 case 'n': show_needed = 1; break; 1838 case 'n': show_needed = 1; break;
1256 case 'b': show_bind = 1; break; 1840 case 'b': show_bind = 1; break;
1257 case 'S': show_soname = 1; break; 1841 case 'S': show_soname = 1; break;
1258 case 'T': show_textrels = 1; break; 1842 case 'T': show_textrels = 1; break;
1259 case 'q': be_quiet = 1; break; 1843 case 'q': be_quiet = 1; break;
1260 case 'v': be_verbose = (be_verbose % 20) + 1; break; 1844 case 'v': be_verbose = (be_verbose % 20) + 1; break;
1261 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 1845 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1262 1846 case 'D': show_endian = 1; break;
1847 case 'I': show_osabi = 1; break;
1848 case 'Y': show_eabi = 1; break;
1263 case ':': 1849 case ':':
1264 err("Option missing parameter\n"); 1850 err("Option '%c' is missing parameter", optopt);
1265 case '?': 1851 case '?':
1266 err("Unknown option\n"); 1852 err("Unknown option '%c' or argument missing", optopt);
1267 default: 1853 default:
1268 err("Unhandled option '%c'", i); 1854 err("Unhandled option '%c'; please report this", i);
1269 }
1270 } 1855 }
1271 1856 }
1857 if (show_textrels && be_verbose) {
1858 if (which("objdump") != NULL)
1859 has_objdump = 1;
1860 }
1272 /* let the format option override all other options */ 1861 /* let the format option override all other options */
1273 if (out_format) { 1862 if (out_format) {
1274 show_pax = show_phdr = show_textrel = show_rpath = \ 1863 show_pax = show_phdr = show_textrel = show_rpath = \
1275 show_needed = show_interp = show_bind = show_soname = \ 1864 show_needed = show_interp = show_bind = show_soname = \
1276 show_textrels = 0; 1865 show_textrels = show_perms = show_endian = show_size = \
1866 show_osabi = show_eabi = 0;
1277 for (i = 0; out_format[i]; ++i) { 1867 for (i = 0; out_format[i]; ++i) {
1278 if (!IS_MODIFIER(out_format[i])) continue; 1868 if (!IS_MODIFIER(out_format[i])) continue;
1279 1869
1280 switch (out_format[++i]) { 1870 switch (out_format[++i]) {
1871 case '+': break;
1281 case '%': break; 1872 case '%': break;
1282 case '#': break; 1873 case '#': break;
1283 case 'F': break; 1874 case 'F': break;
1284 case 'p': break; 1875 case 'p': break;
1285 case 'f': break; 1876 case 'f': break;
1877 case 'k': break;
1286 case 's': break; 1878 case 's': break;
1287 case 'N': break; 1879 case 'N': break;
1288 case 'o': break; 1880 case 'o': break;
1881 case 'a': break;
1882 case 'M': break;
1883 case 'Z': show_size = 1; break;
1884 case 'D': show_endian = 1; break;
1885 case 'I': show_osabi = 1; break;
1886 case 'Y': show_eabi = 1; break;
1887 case 'O': show_perms = 1; break;
1289 case 'x': show_pax = 1; break; 1888 case 'x': show_pax = 1; break;
1290 case 'e': show_phdr = 1; break; 1889 case 'e': show_phdr = 1; break;
1291 case 't': show_textrel = 1; break; 1890 case 't': show_textrel = 1; break;
1292 case 'r': show_rpath = 1; break; 1891 case 'r': show_rpath = 1; break;
1293 case 'n': show_needed = 1; break; 1892 case 'n': show_needed = 1; break;
1294 case 'i': show_interp = 1; break; 1893 case 'i': show_interp = 1; break;
1295 case 'b': show_bind = 1; break; 1894 case 'b': show_bind = 1; break;
1296 case 'S': show_soname = 1; break; 1895 case 'S': show_soname = 1; break;
1297 case 'T': show_textrels = 1; break; 1896 case 'T': show_textrels = 1; break;
1298 default: 1897 default:
1299 err("Invalid format specifier '%c' (byte %i)", 1898 err("Invalid format specifier '%c' (byte %i)",
1300 out_format[i], i+1); 1899 out_format[i], i+1);
1301 } 1900 }
1302 } 1901 }
1303 1902
1304 /* construct our default format */ 1903 /* construct our default format */
1305 } else { 1904 } else {
1306 size_t fmt_len = 30; 1905 size_t fmt_len = 30;
1307 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 1906 out_format = xmalloc(sizeof(char) * fmt_len);
1907 *out_format = '\0';
1308 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 1908 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1309 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 1909 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
1910 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
1911 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
1912 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
1913 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
1914 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1310 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 1915 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1311 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 1916 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1312 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 1917 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1313 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 1918 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1314 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 1919 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1315 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len); 1920 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
1316 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len); 1921 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
1317 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len); 1922 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
1318 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 1923 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
1924 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
1319 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len); 1925 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
1320 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 1926 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1321 } 1927 }
1322 if (be_verbose > 2) printf("Format: %s\n", out_format); 1928 if (be_verbose > 2) printf("Format: %s\n", out_format);
1323 1929
1324 /* now lets actually do the scanning */ 1930 /* now lets actually do the scanning */
1325 if (scan_ldpath || (show_rpath && be_quiet)) 1931 if (scan_ldpath || use_ldcache)
1326 load_ld_so_conf(); 1932 load_ld_cache_config(0, __PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1327 if (scan_ldpath) scanelf_ldpath(); 1933 if (scan_ldpath) scanelf_ldpath();
1328 if (scan_envpath) scanelf_envpath(); 1934 if (scan_envpath) scanelf_envpath();
1935 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
1936 from_file = "-";
1329 if (from_file) { 1937 if (from_file) {
1330 scanelf_from_file(from_file); 1938 scanelf_from_file(from_file);
1331 free(from_file);
1332 from_file = *argv; 1939 from_file = *argv;
1333 } 1940 }
1334 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 1941 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1335 err("Nothing to scan !?"); 1942 err("Nothing to scan !?");
1336 while (optind < argc) { 1943 while (optind < argc) {
1337 search_path = argv[optind++]; 1944 search_path = argv[optind++];
1338 scanelf_dir(search_path); 1945 ret = scanelf_dir(search_path);
1339 } 1946 }
1340 1947
1341 /* clean up */ 1948 /* clean up */
1342 if (versioned_symname) free(versioned_symname);
1343 for (i = 0; ldpaths[i]; ++i) 1949 for (i = 0; ldpaths[i]; ++i)
1344 free(ldpaths[i]); 1950 free(ldpaths[i]);
1345 1951
1346 if (ldcache != 0) 1952 if (ldcache != 0)
1347 munmap(ldcache, ldcache_size); 1953 munmap(ldcache, ldcache_size);
1348}
1349
1350
1351
1352/* utility funcs */
1353static char *xstrdup(const char *s)
1354{
1355 char *ret = strdup(s);
1356 if (!ret) err("Could not strdup(): %s", strerror(errno));
1357 return ret; 1954 return ret;
1358} 1955}
1359static void *xmalloc(size_t size)
1360{
1361 void *ret = malloc(size);
1362 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
1363 return ret;
1364}
1365static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
1366{
1367 size_t new_len;
1368 1956
1369 new_len = strlen(*dst) + strlen(src); 1957static char **get_split_env(const char *envvar)
1370 if (*curr_len <= new_len) {
1371 *curr_len = new_len + (*curr_len / 2);
1372 *dst = realloc(*dst, *curr_len);
1373 if (!*dst)
1374 err("could not realloc() %li bytes", (unsigned long)*curr_len);
1375 }
1376
1377 if (n)
1378 strncat(*dst, src, n);
1379 else
1380 strcat(*dst, src);
1381}
1382static inline void xchrcat(char **dst, const char append, size_t *curr_len)
1383{ 1958{
1384 static char my_app[2]; 1959 const char *delims = " \t\n";
1385 my_app[0] = append; 1960 char **envvals = NULL;
1386 my_app[1] = '\0'; 1961 char *env, *s;
1387 xstrcat(dst, my_app, curr_len); 1962 int nentry;
1388}
1389 1963
1964 if ((env = getenv(envvar)) == NULL)
1965 return NULL;
1390 1966
1967 env = xstrdup(env);
1968 if (env == NULL)
1969 return NULL;
1970
1971 s = strtok(env, delims);
1972 if (s == NULL) {
1973 free(env);
1974 return NULL;
1975 }
1976
1977 nentry = 0;
1978 while (s != NULL) {
1979 ++nentry;
1980 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
1981 envvals[nentry-1] = s;
1982 s = strtok(NULL, delims);
1983 }
1984 envvals[nentry] = NULL;
1985
1986 /* don't want to free(env) as it contains the memory that backs
1987 * the envvals array of strings */
1988 return envvals;
1989}
1990
1991static void parseenv(void)
1992{
1993 qa_textrels = get_split_env("QA_TEXTRELS");
1994 qa_execstack = get_split_env("QA_EXECSTACK");
1995 qa_wx_load = get_split_env("QA_WX_LOAD");
1996}
1997
1998#ifdef __PAX_UTILS_CLEANUP
1999static void cleanup(void)
2000{
2001 free(out_format);
2002 free(qa_textrels);
2003 free(qa_execstack);
2004 free(qa_wx_load);
2005}
2006#endif
1391 2007
1392int main(int argc, char *argv[]) 2008int main(int argc, char *argv[])
1393{ 2009{
2010 int ret;
1394 if (argc < 2) 2011 if (argc < 2)
1395 usage(EXIT_FAILURE); 2012 usage(EXIT_FAILURE);
2013 parseenv();
1396 parseargs(argc, argv); 2014 ret = parseargs(argc, argv);
1397 fclose(stdout); 2015 fclose(stdout);
1398#ifdef __BOUNDS_CHECKING_ON 2016#ifdef __PAX_UTILS_CLEANUP
1399 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2017 cleanup();
2018 warn("The calls to add/delete heap should be off:\n"
2019 "\t- 1 due to the out_buffer not being freed in scanelf_file()\n"
2020 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1400#endif 2021#endif
1401 return EXIT_SUCCESS; 2022 return ret;
1402} 2023}
2024
2025/* Match filename against entries in matchlist, return TRUE
2026 * if the file is listed */
2027static int file_matches_list(const char *filename, char **matchlist)
2028{
2029 char **file;
2030 char *match;
2031 char buf[__PAX_UTILS_PATH_MAX];
2032
2033 if (matchlist == NULL)
2034 return 0;
2035
2036 for (file = matchlist; *file != NULL; file++) {
2037 if (search_path) {
2038 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2039 match = buf;
2040 } else {
2041 match = *file;
2042 }
2043 if (fnmatch(match, filename, 0) == 0)
2044 return 1;
2045 }
2046 return 0;
2047}

Legend:
Removed from v.1.96  
changed lines
  Added in v.1.207

  ViewVC Help
Powered by ViewVC 1.1.20