/[gentoo-projects]/pax-utils/scanelf.c
Gentoo

Diff of /pax-utils/scanelf.c

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

Revision 1.96 Revision 1.267
1/* 1/*
2 * Copyright 2003-2005 Gentoo Foundation 2 * Copyright 2003-2012 Gentoo Foundation
3 * Distributed under the terms of the GNU General Public License v2 3 * Distributed under the terms of the GNU General Public License v2
4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.96 2005/12/28 22:26:47 solar Exp $ 4 * $Header: /var/cvsroot/gentoo-projects/pax-utils/Attic/scanelf.c,v 1.267 2014/10/19 07:31:20 vapier Exp $
5 * 5 *
6 * Copyright 2003-2005 Ned Ludd - <solar@gentoo.org> 6 * Copyright 2003-2012 Ned Ludd - <solar@gentoo.org>
7 * Copyright 2004-2005 Mike Frysinger - <vapier@gentoo.org> 7 * Copyright 2004-2012 Mike Frysinger - <vapier@gentoo.org>
8 */ 8 */
9 9
10#include <stdio.h> 10static const char rcsid[] = "$Id: scanelf.c,v 1.267 2014/10/19 07:31:20 vapier Exp $";
11#include <stdlib.h> 11const char argv0[] = "scanelf";
12#include <sys/types.h> 12
13#include <libgen.h>
14#include <limits.h>
15#include <string.h>
16#include <errno.h>
17#include <unistd.h>
18#include <sys/stat.h>
19#include <sys/mman.h>
20#include <fcntl.h>
21#include <dirent.h>
22#include <getopt.h>
23#include <assert.h>
24#include "paxinc.h" 13#include "paxinc.h"
25 14
26static const char *rcsid = "$Id: scanelf.c,v 1.96 2005/12/28 22:26:47 solar Exp $";
27#define argv0 "scanelf"
28
29#define IS_MODIFIER(c) (c == '%' || c == '#') 15#define IS_MODIFIER(c) (c == '%' || c == '#' || c == '+')
30
31
32 16
33/* prototypes */ 17/* prototypes */
34static void scanelf_file(const char *filename); 18static int file_matches_list(const char *filename, char **matchlist);
35static void scanelf_dir(const char *path);
36static void scanelf_ldpath();
37static void scanelf_envpath();
38static void usage(int status);
39static void parseargs(int argc, char *argv[]);
40static char *xstrdup(const char *s);
41static void *xmalloc(size_t size);
42static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n);
43#define xstrcat(dst,src,curr_len) xstrncat(dst,src,curr_len,0)
44static inline void xchrcat(char **dst, const char append, size_t *curr_len);
45 19
46/* variables to control behavior */ 20/* variables to control behavior */
47static char *ldpaths[256]; 21static array_t _match_etypes = array_init_decl, *match_etypes = &_match_etypes;
22static array_t _ldpaths = array_init_decl, *ldpaths = &_ldpaths;
48static char scan_ldpath = 0; 23static char scan_ldpath = 0;
49static char scan_envpath = 0; 24static char scan_envpath = 0;
50static char scan_symlink = 1; 25static char scan_symlink = 1;
26static char scan_archives = 0;
51static char dir_recurse = 0; 27static char dir_recurse = 0;
52static char dir_crossmount = 1; 28static char dir_crossmount = 1;
53static char show_pax = 0; 29static char show_pax = 0;
30static char show_perms = 0;
31static char show_size = 0;
54static char show_phdr = 0; 32static char show_phdr = 0;
55static char show_textrel = 0; 33static char show_textrel = 0;
56static char show_rpath = 0; 34static char show_rpath = 0;
57static char show_needed = 0; 35static char show_needed = 0;
58static char show_interp = 0; 36static char show_interp = 0;
59static char show_bind = 0; 37static char show_bind = 0;
60static char show_soname = 0; 38static char show_soname = 0;
61static char show_textrels = 0; 39static char show_textrels = 0;
62static char show_banner = 1; 40static char show_banner = 1;
41static char show_endian = 0;
42static char show_osabi = 0;
43static char show_eabi = 0;
63static char be_quiet = 0; 44static char be_quiet = 0;
64static char be_verbose = 0; 45static char be_verbose = 0;
65static char be_wewy_wewy_quiet = 0; 46static char be_wewy_wewy_quiet = 0;
66static char *find_sym = NULL, *versioned_symname = NULL; 47static char be_semi_verbose = 0;
48static char *find_sym = NULL;
49static array_t _find_sym_arr = array_init_decl, *find_sym_arr = &_find_sym_arr;
50static array_t _find_sym_regex_arr = array_init_decl, *find_sym_regex_arr = &_find_sym_regex_arr;
67static char *find_lib = NULL; 51static char *find_lib = NULL;
52static array_t _find_lib_arr = array_init_decl, *find_lib_arr = &_find_lib_arr;
53static char *find_section = NULL;
54static array_t _find_section_arr = array_init_decl, *find_section_arr = &_find_section_arr;
68static char *out_format = NULL; 55static char *out_format = NULL;
69static char *search_path = NULL; 56static char *search_path = NULL;
57static char fix_elf = 0;
70static char gmatch = 0; 58static char g_match = 0;
71static char printcache = 0; 59static char use_ldcache = 0;
60static char use_ldpath = 0;
72 61
62static char **qa_textrels = NULL;
63static char **qa_execstack = NULL;
64static char **qa_wx_load = NULL;
65static int root_fd = AT_FDCWD;
73 66
74caddr_t ldcache = 0; 67static int match_bits = 0;
68static unsigned int match_perms = 0;
69static void *ldcache = NULL;
75size_t ldcache_size = 0; 70static size_t ldcache_size = 0;
71static unsigned long setpax = 0UL;
76 72
73static const char *objdump;
74
75/* Find the path to a file by name. Note: we do not currently handle the
76 * empty path element correctly (should behave by searching $PWD). */
77static const char *which(const char *fname, const char *envvar)
78{
79 size_t path_len, fname_len;
80 const char *env_path;
81 char *path, *p, *ep;
82
83 p = getenv(envvar);
84 if (p)
85 return p;
86
87 env_path = getenv("PATH");
88 if (!env_path)
89 return NULL;
90
91 /* Create a copy of the $PATH that we can safely modify.
92 * Make it a little bigger so we can append "/fname".
93 * We do this twice -- once for a perm copy, and once for
94 * room at the end of the last element. */
95 path_len = strlen(env_path);
96 fname_len = strlen(fname);
97 path = xmalloc(path_len + (fname_len * 2) + 2 + 2);
98 memcpy(path, env_path, path_len + 1);
99
100 p = path + path_len + 1 + fname_len + 1;
101 *p = '/';
102 memcpy(p + 1, fname, fname_len + 1);
103
104 /* Repoint fname to the copy in the env string as it has
105 * the leading slash which we can include in a single memcpy.
106 * Increase the fname len to include the '/' and '\0'. */
107 fname = p;
108 fname_len += 2;
109
110 p = path;
111 while (p) {
112 ep = strchr(p, ':');
113 /* Append the /foo path to the current element. */
114 if (ep)
115 memcpy(ep, fname, fname_len);
116 else
117 memcpy(path + path_len, fname, fname_len);
118
119 if (access(p, R_OK) != -1)
120 return p;
121
122 p = ep;
123 if (ep) {
124 /* If not the last element, restore the chunk we clobbered. */
125 size_t offset = ep - path;
126 size_t restore = min(path_len - offset, fname_len);
127 memcpy(ep, env_path + offset, restore);
128 ++p;
129 }
130 }
131
132 free(path);
133 return NULL;
134}
135
136static FILE *fopenat_r(int dir_fd, const char *path)
137{
138 int fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
139 if (fd == -1)
140 return NULL;
141 return fdopen(fd, "re");
142}
143
144static const char *root_rel_path(const char *path)
145{
146 /*
147 * openat() will ignore the dirfd if path starts with
148 * a /, so consume all of that noise
149 *
150 * XXX: we don't handle relative paths like ../ that
151 * break out of the --root option, but for now, just
152 * don't do that :P.
153 */
154 if (root_fd != AT_FDCWD) {
155 while (*path == '/')
156 ++path;
157 if (*path == '\0')
158 path = ".";
159 }
160
161 return path;
162}
163
77/* sub-funcs for scanelf_file() */ 164/* sub-funcs for scanelf_fileat() */
78static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **tab) 165static void scanelf_file_get_symtabs(elfobj *elf, void **sym, void **str)
79{ 166{
80 /* find the best SHT_DYNSYM and SHT_STRTAB sections */ 167 /* find the best SHT_DYNSYM and SHT_STRTAB sections */
168
169 /* debug sections */
170 void *symtab = elf_findsecbyname(elf, ".symtab");
171 void *strtab = elf_findsecbyname(elf, ".strtab");
172 /* runtime sections */
173 void *dynsym = elf_findsecbyname(elf, ".dynsym");
174 void *dynstr = elf_findsecbyname(elf, ".dynstr");
175
176 /*
177 * If the sections are marked NOBITS, then they don't exist, so we just
178 * skip them. This let's us work sanely with splitdebug ELFs (rather
179 * than spewing a lot of "corrupt ELF" messages later on). In malformed
180 * ELFs, the section might be wrongly set to NOBITS, but screw em.
181 *
182 * We need to make sure the debug/runtime sym/str sets are used together
183 * as they are generated in sync. Trying to mix them won't work.
184 */
81#define GET_SYMTABS(B) \ 185#define GET_SYMTABS(B) \
82 if (elf->elf_class == ELFCLASS ## B) { \ 186 if (elf->elf_class == ELFCLASS ## B) { \
83 Elf ## B ## _Shdr *symtab, *strtab, *dynsym, *dynstr; \ 187 Elf ## B ## _Shdr *esymtab = symtab; \
84 /* debug sections */ \ 188 Elf ## B ## _Shdr *estrtab = strtab; \
85 symtab = SHDR ## B (elf_findsecbyname(elf, ".symtab")); \ 189 Elf ## B ## _Shdr *edynsym = dynsym; \
86 strtab = SHDR ## B (elf_findsecbyname(elf, ".strtab")); \ 190 Elf ## B ## _Shdr *edynstr = dynstr; \
87 /* runtime sections */ \ 191 \
88 dynsym = SHDR ## B (elf_findsecbyname(elf, ".dynsym")); \ 192 if (symtab && EGET(esymtab->sh_type) == SHT_NOBITS) \
89 dynstr = SHDR ## B (elf_findsecbyname(elf, ".dynstr")); \ 193 symtab = NULL; \
90 if (symtab && dynsym) { \ 194 if (dynsym && EGET(edynsym->sh_type) == SHT_NOBITS) \
91 *sym = (void*)((EGET(symtab->sh_size) > EGET(dynsym->sh_size)) ? symtab : dynsym); \ 195 dynsym = NULL; \
196 if (strtab && EGET(estrtab->sh_type) == SHT_NOBITS) \
197 strtab = NULL; \
198 if (dynstr && EGET(edynstr->sh_type) == SHT_NOBITS) \
199 dynstr = NULL; \
200 \
201 /* Use the set with more symbols if both exist. */ \
202 if (symtab && dynsym && strtab && dynstr) { \
203 if (EGET(esymtab->sh_size) > EGET(edynsym->sh_size)) \
204 goto debug##B; \
92 } else { \ 205 else \
93 *sym = (void*)(symtab ? symtab : dynsym); \ 206 goto runtime##B; \
207 } else if (symtab && strtab) { \
208 debug##B: \
209 *sym = symtab; \
210 *str = strtab; \
211 return; \
212 } else if (dynsym && dynstr) { \
213 runtime##B: \
214 *sym = dynsym; \
215 *str = dynstr; \
216 return; \
94 } \ 217 } \
95 if (strtab && dynstr) { \
96 *tab = (void*)((EGET(strtab->sh_size) > EGET(dynstr->sh_size)) ? strtab : dynstr); \
97 } else { \
98 *tab = (void*)(strtab ? strtab : dynstr); \
99 } \
100 } 218 }
101 GET_SYMTABS(32) 219 GET_SYMTABS(32)
102 GET_SYMTABS(64) 220 GET_SYMTABS(64)
221
222 if (*sym && *str)
223 return;
224
225 /*
226 * damn, they're really going to make us work for it huh?
227 * reconstruct the section header info out of the dynamic
228 * tags so we can see what symbols this guy uses at runtime.
229 */
230#define GET_SYMTABS_DT(B) \
231 if (elf->elf_class == ELFCLASS ## B) { \
232 size_t i; \
233 static Elf ## B ## _Shdr sym_shdr, str_shdr; \
234 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
235 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
236 Elf ## B ## _Addr vsym, vstr, vhash, vgnu_hash; \
237 Elf ## B ## _Dyn *dyn; \
238 Elf ## B ## _Off offset; \
239 \
240 /* lookup symbols used at runtime with DT_SYMTAB / DT_STRTAB */ \
241 vsym = vstr = vhash = vgnu_hash = 0; \
242 memset(&sym_shdr, 0, sizeof(sym_shdr)); \
243 memset(&str_shdr, 0, sizeof(str_shdr)); \
244 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
245 if (EGET(phdr[i].p_type) != PT_DYNAMIC) \
246 continue; \
247 \
248 offset = EGET(phdr[i].p_offset); \
249 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
250 continue; \
251 \
252 dyn = DYN ## B (elf->vdata + offset); \
253 while (EGET(dyn->d_tag) != DT_NULL) { \
254 switch (EGET(dyn->d_tag)) { \
255 case DT_SYMTAB: vsym = EGET(dyn->d_un.d_val); break; \
256 case DT_SYMENT: sym_shdr.sh_entsize = dyn->d_un.d_val; break; \
257 case DT_STRTAB: vstr = EGET(dyn->d_un.d_val); break; \
258 case DT_STRSZ: str_shdr.sh_size = dyn->d_un.d_val; break; \
259 case DT_HASH: vhash = EGET(dyn->d_un.d_val); break; \
260 /*case DT_GNU_HASH: vgnu_hash = EGET(dyn->d_un.d_val); break;*/ \
261 } \
262 ++dyn; \
263 } \
264 if (vsym && vstr) \
265 break; \
266 } \
267 if (!vsym || !vstr || !(vhash || vgnu_hash)) \
268 return; \
269 \
270 /* calc offset into the ELF by finding the load addr of the syms */ \
271 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
272 Elf ## B ## _Addr vaddr = EGET(phdr[i].p_vaddr); \
273 Elf ## B ## _Addr filesz = EGET(phdr[i].p_filesz); \
274 offset = EGET(phdr[i].p_offset); \
275 \
276 if (EGET(phdr[i].p_type) != PT_LOAD) \
277 continue; \
278 \
279 if (vhash >= vaddr && vhash < vaddr + filesz) { \
280 /* Scan the hash table to see how many entries we have */ \
281 Elf32_Word max_sym_idx = 0; \
282 Elf32_Word *hashtbl = elf->vdata + offset + (vhash - vaddr); \
283 Elf32_Word b, nbuckets = EGET(hashtbl[0]); \
284 Elf32_Word nchains = EGET(hashtbl[1]); \
285 Elf32_Word *buckets = &hashtbl[2]; \
286 Elf32_Word *chains = &buckets[nbuckets]; \
287 Elf32_Word sym_idx; \
288 \
289 for (b = 0; b < nbuckets; ++b) { \
290 if (!buckets[b]) \
291 continue; \
292 for (sym_idx = buckets[b]; sym_idx < nchains && sym_idx; sym_idx = chains[sym_idx]) \
293 if (max_sym_idx < sym_idx) \
294 max_sym_idx = sym_idx; \
295 } \
296 ESET(sym_shdr.sh_size, sym_shdr.sh_entsize * max_sym_idx); \
297 } \
298 \
299 if (vsym >= vaddr && vsym < vaddr + filesz) { \
300 ESET(sym_shdr.sh_offset, offset + (vsym - vaddr)); \
301 *sym = &sym_shdr; \
302 } \
303 \
304 if (vstr >= vaddr && vstr < vaddr + filesz) { \
305 ESET(str_shdr.sh_offset, offset + (vstr - vaddr)); \
306 *str = &str_shdr; \
307 } \
308 } \
309 }
310 GET_SYMTABS_DT(32)
311 GET_SYMTABS_DT(64)
103} 312}
313
104static char *scanelf_file_pax(elfobj *elf, char *found_pax) 314static char *scanelf_file_pax(elfobj *elf, char *found_pax)
105{ 315{
106 static char ret[7]; 316 static char ret[7];
107 unsigned long i, shown; 317 unsigned long i, shown;
108 318
117 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 327 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
118 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 328 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
119 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 329 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
120 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \ 330 if (EGET(phdr[i].p_type) != PT_PAX_FLAGS) \
121 continue; \ 331 continue; \
122 if (be_quiet && (EGET(phdr[i].p_flags) == 10240)) \ 332 if (fix_elf && setpax) { \
333 /* set the paxctl flags */ \
334 ESET(phdr[i].p_flags, setpax); \
335 } \
336 if (be_quiet && (EGET(phdr[i].p_flags) == (PF_NOEMUTRAMP | PF_NORANDEXEC))) \
123 continue; \ 337 continue; \
124 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \ 338 memcpy(ret, pax_short_pf_flags(EGET(phdr[i].p_flags)), 6); \
125 *found_pax = 1; \ 339 *found_pax = 1; \
126 ++shown; \ 340 ++shown; \
127 break; \ 341 break; \
128 } \ 342 } \
129 } 343 }
130 SHOW_PAX(32) 344 SHOW_PAX(32)
131 SHOW_PAX(64) 345 SHOW_PAX(64)
132 } 346 }
347
348 /* Note: We do not support setting EI_PAX if not PT_PAX_FLAGS
349 * was found. This is known to break ELFs on glibc systems,
350 * and mainline PaX has deprecated use of this for a long time.
351 * We could support changing PT_GNU_STACK, but that doesn't
352 * seem like it's worth the effort. #411919
353 */
133 354
134 /* fall back to EI_PAX if no PT_PAX was found */ 355 /* fall back to EI_PAX if no PT_PAX was found */
135 if (!*ret) { 356 if (!*ret) {
136 static char *paxflags; 357 static char *paxflags;
137 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf)); 358 paxflags = pax_short_hf_flags(EI_PAX_FLAGS(elf));
150 371
151static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load) 372static char *scanelf_file_phdr(elfobj *elf, char *found_phdr, char *found_relro, char *found_load)
152{ 373{
153 static char ret[12]; 374 static char ret[12];
154 char *found; 375 char *found;
155 unsigned long i, shown;
156 unsigned char multi_stack, multi_relro, multi_load; 376 unsigned long i, shown, multi_stack, multi_relro, multi_load;
157 377
158 if (!show_phdr) return NULL; 378 if (!show_phdr) return NULL;
159 379
160 memcpy(ret, "--- --- ---\0", 12); 380 memcpy(ret, "--- --- ---\0", 12);
161 381
162 shown = 0; 382 shown = 0;
163 multi_stack = multi_relro = multi_load = 0; 383 multi_stack = multi_relro = multi_load = 0;
164 384
385#define NOTE_GNU_STACK ".note.GNU-stack"
165#define SHOW_PHDR(B) \ 386#define SHOW_PHDR(B) \
166 if (elf->elf_class == ELFCLASS ## B) { \ 387 if (elf->elf_class == ELFCLASS ## B) { \
167 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 388 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
168 Elf ## B ## _Off offset; \ 389 Elf ## B ## _Off offset; \
169 uint32_t flags, check_flags; \ 390 uint32_t flags, check_flags; \
170 if (elf->phdr != NULL) { \ 391 if (elf->phdr != NULL) { \
171 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 392 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
172 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \ 393 for (i = 0; i < EGET(ehdr->e_phnum); ++i) { \
173 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \ 394 if (EGET(phdr[i].p_type) == PT_GNU_STACK) { \
395 if (multi_stack++) \
174 if (multi_stack++) warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \ 396 warnf("%s: multiple PT_GNU_STACK's !?", elf->filename); \
397 if (file_matches_list(elf->filename, qa_execstack)) \
398 continue; \
175 found = found_phdr; \ 399 found = found_phdr; \
176 offset = 0; \ 400 offset = 0; \
177 check_flags = PF_X; \ 401 check_flags = PF_X; \
178 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \ 402 } else if (EGET(phdr[i].p_type) == PT_GNU_RELRO) { \
403 if (multi_relro++) \
179 if (multi_relro++) warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \ 404 warnf("%s: multiple PT_GNU_RELRO's !?", elf->filename); \
180 found = found_relro; \ 405 found = found_relro; \
181 offset = 4; \ 406 offset = 4; \
182 check_flags = PF_X; \ 407 check_flags = PF_X; \
183 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \ 408 } else if (EGET(phdr[i].p_type) == PT_LOAD) { \
184 if (multi_load++ > 2) warnf("%s: more than 2 PT_LOAD's !?", elf->filename); \ 409 if (file_matches_list(elf->filename, qa_wx_load)) \
410 continue; \
185 found = found_load; \ 411 found = found_load; \
186 offset = 8; \ 412 offset = 8; \
187 check_flags = PF_W|PF_X; \ 413 check_flags = PF_W|PF_X; \
188 } else \ 414 } else \
189 continue; \ 415 continue; \
190 flags = EGET(phdr[i].p_flags); \ 416 flags = EGET(phdr[i].p_flags); \
191 if (be_quiet && ((flags & check_flags) != check_flags)) \ 417 if (be_quiet && ((flags & check_flags) != check_flags)) \
192 continue; \ 418 continue; \
419 if ((EGET(phdr[i].p_type) != PT_LOAD) && (fix_elf && ((flags & PF_X) != flags))) { \
420 ESET(phdr[i].p_flags, flags & (PF_X ^ (size_t)-1)); \
421 ret[3] = ret[7] = '!'; \
422 flags = EGET(phdr[i].p_flags); \
423 } \
193 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \ 424 memcpy(ret+offset, gnu_short_stack_flags(flags), 3); \
194 *found = 1; \ 425 *found = 1; \
195 ++shown; \ 426 ++shown; \
196 } \ 427 } \
197 } else if (elf->shdr != NULL) { \ 428 } else if (elf->shdr != NULL) { \
198 /* no program headers which means this is prob an object file */ \ 429 /* no program headers which means this is prob an object file */ \
199 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \ 430 Elf ## B ## _Shdr *shdr = SHDR ## B (elf->shdr); \
200 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \ 431 Elf ## B ## _Shdr *strtbl = shdr + EGET(ehdr->e_shstrndx); \
432 char *str; \
433 if ((void*)strtbl > elf->data_end) \
434 goto skip_this_shdr##B; \
435 /* let's flag -w/+x object files since the final ELF will most likely \
436 * need write access to the stack (who doesn't !?). so the combined \
437 * output will bring in +w automatically and that's bad. \
438 */ \
201 check_flags = SHF_WRITE|SHF_EXECINSTR; \ 439 check_flags = /*SHF_WRITE|*/SHF_EXECINSTR; \
202 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \ 440 for (i = 0; i < EGET(ehdr->e_shnum); ++i) { \
203 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \ 441 if (EGET(shdr[i].sh_type) != SHT_PROGBITS) continue; \
204 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \ 442 offset = EGET(strtbl->sh_offset) + EGET(shdr[i].sh_name); \
205 if (!strcmp((char*)(elf->data + offset), ".note.GNU-stack")) { \ 443 str = elf->data + offset; \
444 if (str > elf->data + offset + sizeof(NOTE_GNU_STACK)) continue; \
445 if (!strcmp(str, NOTE_GNU_STACK)) { \
206 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \ 446 if (multi_stack++) warnf("%s: multiple .note.GNU-stack's !?", elf->filename); \
207 flags = EGET(shdr[i].sh_flags); \ 447 flags = EGET(shdr[i].sh_flags); \
208 if (be_quiet && ((flags & check_flags) != check_flags)) \ 448 if (be_quiet && ((flags & check_flags) != check_flags)) \
209 continue; \ 449 continue; \
210 ++*found_phdr; \ 450 ++*found_phdr; \
214 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \ 454 if (flags & SHF_EXECINSTR) ret[2] = 'X'; \
215 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \ 455 if (flags & 0xFFFFFFF8) warn("Invalid section flags for GNU-stack"); \
216 break; \ 456 break; \
217 } \ 457 } \
218 } \ 458 } \
459 skip_this_shdr##B: \
219 if (!multi_stack) { \ 460 if (!multi_stack) { \
461 if (file_matches_list(elf->filename, qa_execstack)) \
462 return NULL; \
220 *found_phdr = 1; \ 463 *found_phdr = 1; \
221 shown = 1; \ 464 shown = 1; \
222 memcpy(ret, "!WX", 3); \ 465 memcpy(ret, "!WX", 3); \
223 } \ 466 } \
224 } \ 467 } \
229 if (be_wewy_wewy_quiet || (be_quiet && !shown)) 472 if (be_wewy_wewy_quiet || (be_quiet && !shown))
230 return NULL; 473 return NULL;
231 else 474 else
232 return ret; 475 return ret;
233} 476}
477
478/*
479 * See if this ELF contains a DT_TEXTREL tag in any of its
480 * PT_DYNAMIC sections.
481 */
234static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel) 482static const char *scanelf_file_textrel(elfobj *elf, char *found_textrel)
235{ 483{
236 static const char *ret = "TEXTREL"; 484 static const char *ret = "TEXTREL";
237 unsigned long i; 485 unsigned long i;
238 486
239 if (!show_textrel && !show_textrels) return NULL; 487 if (!show_textrel && !show_textrels) return NULL;
488
489 if (file_matches_list(elf->filename, qa_textrels)) return NULL;
240 490
241 if (elf->phdr) { 491 if (elf->phdr) {
242#define SHOW_TEXTREL(B) \ 492#define SHOW_TEXTREL(B) \
243 if (elf->elf_class == ELFCLASS ## B) { \ 493 if (elf->elf_class == ELFCLASS ## B) { \
244 Elf ## B ## _Dyn *dyn; \ 494 Elf ## B ## _Dyn *dyn; \
245 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 495 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
246 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 496 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
247 Elf ## B ## _Off offset; \ 497 Elf ## B ## _Off offset; \
248 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 498 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
249 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 499 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
250 offset = EGET(phdr[i].p_offset); \ 500 offset = EGET(phdr[i].p_offset); \
251 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 501 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
252 dyn = DYN ## B (elf->data + offset); \ 502 dyn = DYN ## B (elf->vdata + offset); \
253 while (EGET(dyn->d_tag) != DT_NULL) { \ 503 while (EGET(dyn->d_tag) != DT_NULL) { \
254 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \ 504 if (EGET(dyn->d_tag) == DT_TEXTREL) { /*dyn->d_tag != DT_FLAGS)*/ \
255 *found_textrel = 1; \ 505 *found_textrel = 1; \
256 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \ 506 /*if (dyn->d_un.d_val & DF_TEXTREL)*/ \
257 return (be_wewy_wewy_quiet ? NULL : ret); \ 507 return (be_wewy_wewy_quiet ? NULL : ret); \
266 if (be_quiet || be_wewy_wewy_quiet) 516 if (be_quiet || be_wewy_wewy_quiet)
267 return NULL; 517 return NULL;
268 else 518 else
269 return " - "; 519 return " - ";
270} 520}
521
522/*
523 * Scan the .text section to see if there are any relocations in it.
524 * Should rewrite this to check PT_LOAD sections that are marked
525 * Executable rather than the section named '.text'.
526 */
271static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel) 527static char *scanelf_file_textrels(elfobj *elf, char *found_textrels, char *found_textrel)
272{ 528{
273 unsigned long s, r, rmax; 529 unsigned long s, r, rmax;
274 void *symtab_void, *strtab_void, *text_void; 530 void *symtab_void, *strtab_void, *text_void;
275 531
296 Elf ## B ## _Rela *rela; \ 552 Elf ## B ## _Rela *rela; \
297 /* search the section headers for relocations */ \ 553 /* search the section headers for relocations */ \
298 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \ 554 for (s = 0; s < EGET(ehdr->e_shnum); ++s) { \
299 uint32_t sh_type = EGET(shdr[s].sh_type); \ 555 uint32_t sh_type = EGET(shdr[s].sh_type); \
300 if (sh_type == SHT_REL) { \ 556 if (sh_type == SHT_REL) { \
301 rel = REL ## B (elf->data + EGET(shdr[s].sh_offset)); \ 557 rel = REL ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
302 rela = NULL; \ 558 rela = NULL; \
303 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \ 559 rmax = EGET(shdr[s].sh_size) / sizeof(*rel); \
304 } else if (sh_type == SHT_RELA) { \ 560 } else if (sh_type == SHT_RELA) { \
305 rel = NULL; \ 561 rel = NULL; \
306 rela = RELA ## B (elf->data + EGET(shdr[s].sh_offset)); \ 562 rela = RELA ## B (elf->vdata + EGET(shdr[s].sh_offset)); \
307 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \ 563 rmax = EGET(shdr[s].sh_size) / sizeof(*rela); \
308 } else \ 564 } else \
309 continue; \ 565 continue; \
310 /* now see if any of the relocs are in the .text */ \ 566 /* now see if any of the relocs are in the .text */ \
311 for (r = 0; r < rmax; ++r) { \ 567 for (r = 0; r < rmax; ++r) { \
326 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \ 582 if (r_offset < vaddr || r_offset >= vaddr + memsz) { \
327 if (be_verbose <= 2) continue; \ 583 if (be_verbose <= 2) continue; \
328 } else \ 584 } else \
329 *found_textrels = 1; \ 585 *found_textrels = 1; \
330 /* locate this relocation symbol name */ \ 586 /* locate this relocation symbol name */ \
331 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 587 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
588 if ((void*)sym > elf->data_end) { \
589 warn("%s: corrupt ELF symbol", elf->filename); \
590 continue; \
591 } \
332 sym_max = ELF ## B ## _R_SYM(r_info); \ 592 sym_max = ELF ## B ## _R_SYM(r_info); \
333 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \ 593 if (sym_max * EGET(symtab->sh_entsize) < symtab->sh_size) \
334 sym += sym_max; \ 594 sym += sym_max; \
335 else \ 595 else \
336 sym = NULL; \ 596 sym = NULL; \
337 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 597 sym_max = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \
338 /* show the raw details about this reloc */ \ 598 /* show the raw details about this reloc */ \
339 printf(" %s: ", elf->base_filename); \ 599 printf(" %s: ", elf->base_filename); \
340 if (sym && sym->st_name) \ 600 if (sym && sym->st_name) \
341 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name))); \ 601 printf("%s", elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \
342 else \ 602 else \
343 printf("(memory/fake?)"); \ 603 printf("(memory/data?)"); \
344 printf(" [0x%lX]", (unsigned long)r_offset); \ 604 printf(" [0x%lX]", (unsigned long)r_offset); \
345 /* now try to find the closest symbol that this rel is probably in */ \ 605 /* now try to find the closest symbol that this rel is probably in */ \
346 sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 606 sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
347 func = NULL; \ 607 func = NULL; \
348 offset_tmp = 0; \ 608 offset_tmp = 0; \
349 while (sym_max--) { \ 609 while (sym_max--) { \
350 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \ 610 if (EGET(sym->st_value) < r_offset && EGET(sym->st_value) > offset_tmp) { \
351 func = sym; \ 611 func = sym; \
352 offset_tmp = EGET(sym->st_value); \ 612 offset_tmp = EGET(sym->st_value); \
353 } \ 613 } \
354 ++sym; \ 614 ++sym; \
355 } \ 615 } \
356 printf(" in "); \ 616 printf(" in "); \
357 if (func && func->st_name) \ 617 if (func && func->st_name) { \
358 printf("%s", (char*)(elf->data + EGET(strtab->sh_offset) + EGET(func->st_name))); \ 618 const char *func_name = elf->data + EGET(strtab->sh_offset) + EGET(func->st_name); \
619 if (r_offset > EGET(func->st_size)) \
620 printf("(optimized out: previous %s)", func_name); \
359 else \ 621 else \
360 printf("(NULL: fake?)"); \ 622 printf("%s", func_name); \
623 } else \
624 printf("(optimized out)"); \
361 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \ 625 printf(" [0x%lX]\n", (unsigned long)offset_tmp); \
626 if (be_verbose && objdump) { \
627 Elf ## B ## _Addr end_addr = offset_tmp + EGET(func->st_size); \
628 char *sysbuf; \
629 size_t syslen; \
630 const char sysfmt[] = "%s -r -R -d -w -l --start-address=0x%lX --stop-address=0x%lX %s | grep --color -i -C 3 '.*[[:space:]]%lX:[[:space:]]*R_.*'\n"; \
631 syslen = sizeof(sysfmt) + strlen(objdump) + strlen(elf->filename) + 3 * sizeof(unsigned long) + 1; \
632 sysbuf = xmalloc(syslen); \
633 if (end_addr < r_offset) \
634 /* not uncommon when things are optimized out */ \
635 end_addr = r_offset + 0x100; \
636 snprintf(sysbuf, syslen, sysfmt, \
637 objdump, \
638 (unsigned long)offset_tmp, \
639 (unsigned long)end_addr, \
640 elf->filename, \
641 (unsigned long)r_offset); \
642 fflush(stdout); \
643 if (system(sysbuf)) {/* don't care */} \
644 fflush(stdout); \
645 free(sysbuf); \
646 } \
362 } \ 647 } \
363 } } 648 } }
364 SHOW_TEXTRELS(32) 649 SHOW_TEXTRELS(32)
365 SHOW_TEXTRELS(64) 650 SHOW_TEXTRELS(64)
366 } 651 }
368 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename); 653 warnf("ELF %s has TEXTREL markings but doesnt appear to have any real TEXTREL's !?", elf->filename);
369 654
370 return NULL; 655 return NULL;
371} 656}
372 657
373static void rpath_security_checks(elfobj *, char *);
374static void rpath_security_checks(elfobj *elf, char *item) { 658static void rpath_security_checks(elfobj *elf, char *item, const char *dt_type)
659{
375 struct stat st; 660 struct stat st;
376 switch (*item) { 661 switch (*item) {
377 case '/': break; 662 case '/': break;
378 case '.': 663 case '.':
379 warnf("Security problem with relative RPATH '%s' in %s", item, elf->filename); 664 warnf("Security problem with relative %s '%s' in %s", dt_type, item, elf->filename);
380 break; 665 break;
666 case ':':
381 case '\0': 667 case '\0':
382 warnf("Security problem NULL RPATH in %s", elf->filename); 668 warnf("Security problem NULL %s in %s", dt_type, elf->filename);
383 break; 669 break;
384 case '$': 670 case '$':
385 if (fstat(elf->fd, &st) != -1) 671 if (fstat(elf->fd, &st) != -1)
386 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID)) 672 if ((st.st_mode & S_ISUID) || (st.st_mode & S_ISGID))
387 warnf("Security problem with RPATH='%s' in %s with mode set of %o", 673 warnf("Security problem with %s='%s' in %s with mode set of %o",
388 item, elf->filename, st.st_mode & 07777); 674 dt_type, item, elf->filename, (unsigned int) st.st_mode & 07777);
389 break; 675 break;
390 default: 676 default:
391 warnf("Maybe? sec problem with RPATH='%s' in %s", item, elf->filename); 677 warnf("Maybe? sec problem with %s='%s' in %s", dt_type, item, elf->filename);
392 break; 678 break;
393 } 679 }
394} 680}
395static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len) 681static void scanelf_file_rpath(elfobj *elf, char *found_rpath, char **ret, size_t *ret_len)
396{ 682{
397 unsigned long i, s; 683 unsigned long i;
398 char *rpath, *runpath, **r; 684 char *rpath, *runpath, **r;
399 void *strtbl_void; 685 void *strtbl_void;
400 686
401 if (!show_rpath) return; 687 if (!show_rpath) return;
402 688
413 Elf ## B ## _Off offset; \ 699 Elf ## B ## _Off offset; \
414 Elf ## B ## _Xword word; \ 700 Elf ## B ## _Xword word; \
415 /* Scan all the program headers */ \ 701 /* Scan all the program headers */ \
416 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 702 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
417 /* Just scan dynamic headers */ \ 703 /* Just scan dynamic headers */ \
418 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 704 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
419 offset = EGET(phdr[i].p_offset); \ 705 offset = EGET(phdr[i].p_offset); \
420 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 706 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
421 /* Just scan dynamic RPATH/RUNPATH headers */ \ 707 /* Just scan dynamic RPATH/RUNPATH headers */ \
422 dyn = DYN ## B (elf->data + offset); \ 708 dyn = DYN ## B (elf->vdata + offset); \
423 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \ 709 while ((word=EGET(dyn->d_tag)) != DT_NULL) { \
424 if (word == DT_RPATH) { \ 710 if (word == DT_RPATH) { \
425 r = &rpath; \ 711 r = &rpath; \
426 } else if (word == DT_RUNPATH) { \ 712 } else if (word == DT_RUNPATH) { \
427 r = &runpath; \ 713 r = &runpath; \
431 } \ 717 } \
432 /* Verify the memory is somewhat sane */ \ 718 /* Verify the memory is somewhat sane */ \
433 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 719 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
434 if (offset < (Elf ## B ## _Off)elf->len) { \ 720 if (offset < (Elf ## B ## _Off)elf->len) { \
435 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \ 721 if (*r) warn("ELF has multiple %s's !?", get_elfdtype(word)); \
436 *r = (char*)(elf->data + offset); \ 722 *r = elf->data + offset; \
723 /* cache the length in case we need to nuke this section later on */ \
724 if (fix_elf) \
725 offset = strlen(*r); \
437 /* If quiet, don't output paths in ld.so.conf */ \ 726 /* If quiet, don't output paths in ld.so.conf */ \
438 if (be_quiet) { \ 727 if (be_quiet) { \
439 size_t len; \ 728 size_t len; \
440 char *start, *end; \ 729 char *start, *end; \
441 /* note that we only 'chop' off leading known paths. */ \ 730 /* note that we only 'chop' off leading known paths. */ \
442 /* since *r is read-only memory, we can only move the ptr forward. */ \ 731 /* since *r is read-only memory, we can only move the ptr forward. */ \
443 start = *r; \ 732 start = *r; \
444 /* scan each path in : delimited list */ \ 733 /* scan each path in : delimited list */ \
445 while (start) { \ 734 while (start) { \
446 rpath_security_checks(elf, start); \ 735 rpath_security_checks(elf, start, get_elfdtype(word)); \
447 end = strchr(start, ':'); \ 736 end = strchr(start, ':'); \
448 len = (end ? abs(end - start) : strlen(start)); \ 737 len = (end ? abs(end - start) : strlen(start)); \
449 for (s = 0; ldpaths[s]; ++s) { \ 738 if (use_ldcache) { \
739 size_t n; \
740 const char *ldpath; \
741 array_for_each(ldpaths, n, ldpath) \
450 if (!strncmp(ldpaths[s], start, len) && !ldpaths[s][len]) { \ 742 if (!strncmp(ldpath, start, len) && !ldpath[len]) { \
451 *r = (end ? end + 1 : NULL); \ 743 *r = end; \
744 /* corner case ... if RPATH reads "/usr/lib:", we want \
745 * to show ':' rather than '' */ \
746 if (end && end[1] != '\0') \
747 (*r)++; \
452 break; \ 748 break; \
453 } \ 749 } \
454 } \ 750 } \
455 if (!*r || !ldpaths[s] || !end) \ 751 if (!*r || !end) \
456 start = NULL; \ 752 break; \
457 else \ 753 else \
458 start = start + len + 1; \ 754 start = start + len + 1; \
459 } \ 755 } \
460 } \ 756 } \
757 if (*r) { \
758 if (fix_elf > 2 || (fix_elf && **r == '\0')) { \
759 /* just nuke it */ \
760 nuke_it##B: \
761 memset(*r, 0x00, offset); \
762 *r = NULL; \
763 ESET(dyn->d_tag, DT_DEBUG); \
764 ESET(dyn->d_un.d_ptr, 0); \
765 } else if (fix_elf) { \
766 /* try to clean "bad" paths */ \
767 size_t len, tmpdir_len; \
768 char *start, *end; \
769 const char *tmpdir; \
770 start = *r; \
771 tmpdir = (getenv("TMPDIR") ? : "."); \
772 tmpdir_len = strlen(tmpdir); \
773 while (1) { \
774 end = strchr(start, ':'); \
775 if (start == end) { \
776 eat_this_path##B: \
777 len = strlen(end); \
778 memmove(start, end+1, len); \
779 start[len-1] = '\0'; \
780 end = start - 1; \
781 } else if (tmpdir && !strncmp(start, tmpdir, tmpdir_len)) { \
782 if (!end) { \
783 if (start == *r) \
784 goto nuke_it##B; \
785 *--start = '\0'; \
786 } else \
787 goto eat_this_path##B; \
788 } \
789 if (!end) \
790 break; \
791 start = end + 1; \
792 } \
793 if (**r == '\0') \
794 goto nuke_it##B; \
795 } \
796 if (*r) \
461 if (*r) *found_rpath = 1; \ 797 *found_rpath = 1; \
798 } \
462 } \ 799 } \
463 ++dyn; \ 800 ++dyn; \
464 } \ 801 } \
465 } } 802 } }
466 SHOW_RPATH(32) 803 SHOW_RPATH(32)
484 xstrcat(ret, (runpath ? runpath : rpath), ret_len); 821 xstrcat(ret, (runpath ? runpath : rpath), ret_len);
485 else if (!be_quiet) 822 else if (!be_quiet)
486 xstrcat(ret, " - ", ret_len); 823 xstrcat(ret, " - ", ret_len);
487} 824}
488 825
826/* Defines can be seen in glibc's sysdeps/generic/ldconfig.h */
489#define LDSO_CACHE_MAGIC "ld.so-" 827#define LDSO_CACHE_MAGIC "ld.so-"
490#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1) 828#define LDSO_CACHE_MAGIC_LEN (sizeof LDSO_CACHE_MAGIC -1)
491#define LDSO_CACHE_VER "1.7.0" 829#define LDSO_CACHE_VER "1.7.0"
492#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1) 830#define LDSO_CACHE_VER_LEN (sizeof LDSO_CACHE_VER -1)
831#define FLAG_ANY -1
832#define FLAG_TYPE_MASK 0x00ff
833#define FLAG_LIBC4 0x0000
834#define FLAG_ELF 0x0001
835#define FLAG_ELF_LIBC5 0x0002
836#define FLAG_ELF_LIBC6 0x0003
837#define FLAG_REQUIRED_MASK 0xff00
838#define FLAG_SPARC_LIB64 0x0100
839#define FLAG_IA64_LIB64 0x0200
840#define FLAG_X8664_LIB64 0x0300
841#define FLAG_S390_LIB64 0x0400
842#define FLAG_POWERPC_LIB64 0x0500
843#define FLAG_MIPS64_LIBN32 0x0600
844#define FLAG_MIPS64_LIBN64 0x0700
845#define FLAG_X8664_LIBX32 0x0800
846#define FLAG_ARM_LIBHF 0x0900
847#define FLAG_AARCH64_LIB64 0x0a00
493 848
494static char *lookup_cache_lib(char *); 849#if defined(__GLIBC__) || defined(__UCLIBC__)
850
495static char *lookup_cache_lib(char *fname) 851static char *lookup_cache_lib(elfobj *elf, const char *fname)
496{ 852{
497 int fd = 0; 853 int fd;
498 char *strs; 854 char *strs;
499 static char buf[_POSIX_PATH_MAX] = ""; 855 static char buf[__PAX_UTILS_PATH_MAX] = "";
500 const char *cachefile = "/etc/ld.so.cache"; 856 const char *cachefile = root_rel_path("/etc/ld.so.cache");
501 struct stat st; 857 struct stat st;
502 858
503 typedef struct { 859 typedef struct {
504 char magic[LDSO_CACHE_MAGIC_LEN]; 860 char magic[LDSO_CACHE_MAGIC_LEN];
505 char version[LDSO_CACHE_VER_LEN]; 861 char version[LDSO_CACHE_VER_LEN];
506 int nlibs; 862 int nlibs;
507 } header_t; 863 } header_t;
864 header_t *header;
508 865
509 typedef struct { 866 typedef struct {
510 int flags; 867 int flags;
511 int sooffset; 868 int sooffset;
512 int liboffset; 869 int liboffset;
513 } libentry_t; 870 } libentry_t;
514
515 header_t *header;
516 libentry_t *libent; 871 libentry_t *libent;
517 872
518 if (fname == NULL) 873 if (fname == NULL)
519 return NULL; 874 return NULL;
520 875
521 if (ldcache == 0) { 876 if (ldcache == NULL) {
522 if (stat(cachefile, &st) || (fd = open(cachefile, O_RDONLY)) < 0) 877 if (fstatat(root_fd, cachefile, &st, 0))
523 return NULL; 878 return NULL;
524 /* save the cache size for latter unmapping */ 879
880 fd = openat(root_fd, cachefile, O_RDONLY);
881 if (fd == -1)
882 return NULL;
883
884 /* cache these values so we only map/unmap the cache file once */
525 ldcache_size = st.st_size; 885 ldcache_size = st.st_size;
886 header = ldcache = mmap(0, ldcache_size, PROT_READ, MAP_SHARED, fd, 0);
887 close(fd);
526 888
527 if ((ldcache = mmap(0, st.st_size, PROT_READ, MAP_SHARED, fd, 0)) == (caddr_t) -1) 889 if (ldcache == MAP_FAILED) {
890 ldcache = NULL;
528 return NULL; 891 return NULL;
892 }
529 893
530 close(fd);
531
532 if (memcmp(((header_t *) ldcache)->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN)) 894 if (memcmp(header->magic, LDSO_CACHE_MAGIC, LDSO_CACHE_MAGIC_LEN) ||
895 memcmp(header->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
896 {
897 munmap(ldcache, ldcache_size);
898 ldcache = NULL;
533 return NULL; 899 return NULL;
534
535 if (memcmp (((header_t *) ldcache)->version, LDSO_CACHE_VER, LDSO_CACHE_VER_LEN))
536 return NULL;
537 } 900 }
901 } else
902 header = ldcache;
538 903
539 header = (header_t *) ldcache;
540 libent = (libentry_t *) (ldcache + sizeof(header_t)); 904 libent = ldcache + sizeof(header_t);
541 strs = (char *) &libent[header->nlibs]; 905 strs = (char *) &libent[header->nlibs];
542 906
543 for (fd = 0; fd < header->nlibs; fd++) { 907 for (fd = 0; fd < header->nlibs; ++fd) {
908 /* This should be more fine grained, but for now we assume that
909 * diff arches will not be cached together, and we ignore the
910 * the different multilib mips cases.
911 */
912 if (elf->elf_class == ELFCLASS64 && !(libent[fd].flags & FLAG_REQUIRED_MASK))
913 continue;
914 if (elf->elf_class == ELFCLASS32 && (libent[fd].flags & FLAG_REQUIRED_MASK))
915 continue;
916
544 if (strcmp(fname, strs + libent[fd].sooffset) != 0) 917 if (strcmp(fname, strs + libent[fd].sooffset) != 0)
545 continue; 918 continue;
919
920 /* Return first hit because that is how the ldso rolls */
546 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf)); 921 strncpy(buf, strs + libent[fd].liboffset, sizeof(buf));
922 break;
547 } 923 }
924
548 return buf; 925 return buf;
549} 926}
550 927
928#elif defined(__NetBSD__)
929static char *lookup_cache_lib(elfobj *elf, const char *fname)
930{
931 static char buf[__PAX_UTILS_PATH_MAX] = "";
932 static struct stat st;
933 size_t n;
934 char *ldpath;
935
936 array_for_each(ldpath, n, ldpath) {
937 if ((unsigned) snprintf(buf, sizeof(buf), "%s/%s", ldpath, fname) >= sizeof(buf))
938 continue; /* if the pathname is too long, or something went wrong, ignore */
939
940 if (stat(buf, &st) != 0)
941 continue; /* if the lib doesn't exist in *ldpath, look further */
942
943 /* NetBSD doesn't actually do sanity checks, it just loads the file
944 * and if that doesn't work, continues looking in other directories.
945 * This cannot easily be safely emulated, unfortunately. For now,
946 * just assume that if it exists, it's a valid library. */
947
948 return buf;
949 }
950
951 /* not found in any path */
952 return NULL;
953}
954#else
955#ifdef __ELF__
956#warning Cache support not implemented for your target
957#endif
958static char *lookup_cache_lib(elfobj *elf, const char *fname)
959{
960 return NULL;
961}
962#endif
963
964static char *lookup_config_lib(const char *fname)
965{
966 static char buf[__PAX_UTILS_PATH_MAX] = "";
967 const char *ldpath;
968 size_t n;
969
970 array_for_each(ldpaths, n, ldpath) {
971 snprintf(buf, sizeof(buf), "%s/%s", root_rel_path(ldpath), fname);
972 if (faccessat(root_fd, buf, F_OK, AT_SYMLINK_NOFOLLOW) == 0)
973 return buf;
974 }
975
976 return NULL;
977}
551 978
552static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len) 979static const char *scanelf_file_needed_lib(elfobj *elf, char *found_needed, char *found_lib, int op, char **ret, size_t *ret_len)
553{ 980{
554 unsigned long i; 981 unsigned long i;
555 char *needed; 982 char *needed;
556 void *strtbl_void; 983 void *strtbl_void;
557 char *p; 984 char *p;
558 985
986 /*
987 * -n -> op==0 -> print all
988 * -N -> op==1 -> print requested
989 */
559 if ((op==0 && !show_needed) || (op==1 && !find_lib)) return NULL; 990 if ((op == 0 && !show_needed) || (op == 1 && !find_lib))
991 return NULL;
560 992
561 strtbl_void = elf_findsecbyname(elf, ".dynstr"); 993 strtbl_void = elf_findsecbyname(elf, ".dynstr");
562 994
563 if (elf->phdr && strtbl_void) { 995 if (elf->phdr && strtbl_void) {
564#define SHOW_NEEDED(B) \ 996#define SHOW_NEEDED(B) \
566 Elf ## B ## _Dyn *dyn; \ 998 Elf ## B ## _Dyn *dyn; \
567 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 999 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
568 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1000 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
569 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1001 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
570 Elf ## B ## _Off offset; \ 1002 Elf ## B ## _Off offset; \
1003 size_t matched = 0; \
1004 /* Walk all the program headers to find the PT_DYNAMIC */ \
571 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1005 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
572 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1006 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) \
1007 continue; \
573 offset = EGET(phdr[i].p_offset); \ 1008 offset = EGET(phdr[i].p_offset); \
574 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1009 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) \
1010 continue; \
1011 /* Walk all the dynamic tags to find NEEDED entries */ \
575 dyn = DYN ## B (elf->data + offset); \ 1012 dyn = DYN ## B (elf->vdata + offset); \
576 while (EGET(dyn->d_tag) != DT_NULL) { \ 1013 while (EGET(dyn->d_tag) != DT_NULL) { \
577 if (EGET(dyn->d_tag) == DT_NEEDED) { \ 1014 if (EGET(dyn->d_tag) == DT_NEEDED) { \
578 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1015 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
579 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1016 if (offset >= (Elf ## B ## _Off)elf->len) { \
580 ++dyn; \ 1017 ++dyn; \
581 continue; \ 1018 continue; \
582 } \ 1019 } \
583 needed = (char*)(elf->data + offset); \ 1020 needed = elf->data + offset; \
584 if (op == 0) { \ 1021 if (op == 0) { \
1022 /* -n -> print all entries */ \
585 if (!be_wewy_wewy_quiet) { \ 1023 if (!be_wewy_wewy_quiet) { \
586 if (*found_needed) xchrcat(ret, ',', ret_len); \ 1024 if (*found_needed) xchrcat(ret, ',', ret_len); \
587 if (printcache) \ 1025 if (use_ldpath) { \
588 if ((p = lookup_cache_lib(needed)) != NULL) \ 1026 if ((p = lookup_config_lib(needed)) != NULL) \
589 needed = p; \ 1027 needed = p; \
1028 } else if (use_ldcache) { \
1029 if ((p = lookup_cache_lib(elf, needed)) != NULL) \
1030 needed = p; \
1031 } \
590 xstrcat(ret, needed, ret_len); \ 1032 xstrcat(ret, needed, ret_len); \
591 } \ 1033 } \
592 *found_needed = 1; \ 1034 *found_needed = 1; \
593 } else { \ 1035 } else { \
594 if (!strncmp(find_lib, needed, strlen( !gmatch ? needed : find_lib))) { \ 1036 /* -N -> print matching entries */ \
1037 size_t n; \
1038 const char *find_lib_name; \
1039 \
1040 array_for_each(find_lib_arr, n, find_lib_name) { \
1041 int invert = 1; \
1042 if (find_lib_name[0] == '!') \
1043 invert = 0, ++find_lib_name; \
1044 if (!strcmp(find_lib_name, needed) == invert) \
1045 ++matched; \
1046 } \
1047 \
1048 if (matched == array_cnt(find_lib_arr)) { \
595 *found_lib = 1; \ 1049 *found_lib = 1; \
596 return (be_wewy_wewy_quiet ? NULL : needed); \ 1050 return (be_wewy_wewy_quiet ? NULL : find_lib); \
597 } \ 1051 } \
598 } \ 1052 } \
599 } \ 1053 } \
600 ++dyn; \ 1054 ++dyn; \
601 } \ 1055 } \
623 *found_interp = 1; \ 1077 *found_interp = 1; \
624 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \ 1078 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(strtbl->sh_offset)); \
625 } 1079 }
626 SHOW_INTERP(32) 1080 SHOW_INTERP(32)
627 SHOW_INTERP(64) 1081 SHOW_INTERP(64)
1082 } else {
1083 /* Walk all the program headers to find the PT_INTERP */
1084#define SHOW_PT_INTERP(B) \
1085 if (elf->elf_class == ELFCLASS ## B) { \
1086 unsigned long i; \
1087 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
1088 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
1089 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
1090 if (EGET(phdr[i].p_type) != PT_INTERP) \
1091 continue; \
1092 *found_interp = 1; \
1093 return (be_wewy_wewy_quiet ? NULL : elf->data + EGET(phdr[i].p_offset)); \
1094 } \
628 } 1095 }
1096 SHOW_PT_INTERP(32)
1097 SHOW_PT_INTERP(64)
1098 }
1099
629 return NULL; 1100 return NULL;
630} 1101}
631static char *scanelf_file_bind(elfobj *elf, char *found_bind) 1102static const char *scanelf_file_bind(elfobj *elf, char *found_bind)
632{ 1103{
633 unsigned long i; 1104 unsigned long i;
634 struct stat s; 1105 struct stat s;
1106 bool dynamic = false;
635 1107
636 if (!show_bind) return NULL; 1108 if (!show_bind) return NULL;
637 if (!elf->phdr) return NULL; 1109 if (!elf->phdr) return NULL;
638 1110
639#define SHOW_BIND(B) \ 1111#define SHOW_BIND(B) \
641 Elf ## B ## _Dyn *dyn; \ 1113 Elf ## B ## _Dyn *dyn; \
642 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1114 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
643 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1115 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
644 Elf ## B ## _Off offset; \ 1116 Elf ## B ## _Off offset; \
645 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1117 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
646 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1118 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
1119 dynamic = true; \
647 offset = EGET(phdr[i].p_offset); \ 1120 offset = EGET(phdr[i].p_offset); \
648 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1121 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
649 dyn = DYN ## B (elf->data + offset); \ 1122 dyn = DYN ## B (elf->vdata + offset); \
650 while (EGET(dyn->d_tag) != DT_NULL) { \ 1123 while (EGET(dyn->d_tag) != DT_NULL) { \
651 if (EGET(dyn->d_tag) == DT_BIND_NOW || \ 1124 if (EGET(dyn->d_tag) == DT_BIND_NOW || \
652 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \ 1125 (EGET(dyn->d_tag) == DT_FLAGS && EGET(dyn->d_un.d_val) & DF_BIND_NOW)) \
653 { \ 1126 { \
654 if (be_quiet) return NULL; \ 1127 if (be_quiet) return NULL; \
662 SHOW_BIND(32) 1135 SHOW_BIND(32)
663 SHOW_BIND(64) 1136 SHOW_BIND(64)
664 1137
665 if (be_wewy_wewy_quiet) return NULL; 1138 if (be_wewy_wewy_quiet) return NULL;
666 1139
1140 /* don't output anything if quiet mode and the ELF is static or not setuid */
667 if (be_quiet && !fstat(elf->fd, &s) && !(s.st_mode & S_ISUID || s.st_mode & S_ISGID)) { 1141 if (be_quiet && (!dynamic || (!fstat(elf->fd, &s) && !(s.st_mode & (S_ISUID|S_ISGID))))) {
668 return NULL; 1142 return NULL;
669 } else { 1143 } else {
670 *found_bind = 1; 1144 *found_bind = 1;
671 return (char *) "LAZY"; 1145 return dynamic ? "LAZY" : "STATIC";
672 } 1146 }
673} 1147}
674static char *scanelf_file_soname(elfobj *elf, char *found_soname) 1148static char *scanelf_file_soname(elfobj *elf, char *found_soname)
675{ 1149{
676 unsigned long i; 1150 unsigned long i;
688 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \ 1162 Elf ## B ## _Ehdr *ehdr = EHDR ## B (elf->ehdr); \
689 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \ 1163 Elf ## B ## _Phdr *phdr = PHDR ## B (elf->phdr); \
690 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \ 1164 Elf ## B ## _Shdr *strtbl = SHDR ## B (strtbl_void); \
691 Elf ## B ## _Off offset; \ 1165 Elf ## B ## _Off offset; \
692 /* only look for soname in shared objects */ \ 1166 /* only look for soname in shared objects */ \
693 if (ehdr->e_type != ET_DYN) \ 1167 if (EGET(ehdr->e_type) != ET_DYN) \
694 return NULL; \ 1168 return NULL; \
695 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \ 1169 for (i = 0; i < EGET(ehdr->e_phnum); i++) { \
696 if (EGET(phdr[i].p_type) != PT_DYNAMIC) continue; \ 1170 if (EGET(phdr[i].p_type) != PT_DYNAMIC || EGET(phdr[i].p_filesz) == 0) continue; \
697 offset = EGET(phdr[i].p_offset); \ 1171 offset = EGET(phdr[i].p_offset); \
698 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \ 1172 if (offset >= elf->len - sizeof(Elf ## B ## _Dyn)) continue; \
699 dyn = DYN ## B (elf->data + offset); \ 1173 dyn = DYN ## B (elf->vdata + offset); \
700 while (EGET(dyn->d_tag) != DT_NULL) { \ 1174 while (EGET(dyn->d_tag) != DT_NULL) { \
701 if (EGET(dyn->d_tag) == DT_SONAME) { \ 1175 if (EGET(dyn->d_tag) == DT_SONAME) { \
702 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \ 1176 offset = EGET(strtbl->sh_offset) + EGET(dyn->d_un.d_ptr); \
703 if (offset >= (Elf ## B ## _Off)elf->len) { \ 1177 if (offset >= (Elf ## B ## _Off)elf->len) { \
704 ++dyn; \ 1178 ++dyn; \
705 continue; \ 1179 continue; \
706 } \ 1180 } \
707 soname = (char*)(elf->data + offset); \ 1181 soname = elf->data + offset; \
708 *found_soname = 1; \ 1182 *found_soname = 1; \
709 return (be_wewy_wewy_quiet ? NULL : soname); \ 1183 return (be_wewy_wewy_quiet ? NULL : soname); \
710 } \ 1184 } \
711 ++dyn; \ 1185 ++dyn; \
712 } \ 1186 } \
715 SHOW_SONAME(64) 1189 SHOW_SONAME(64)
716 } 1190 }
717 1191
718 return NULL; 1192 return NULL;
719} 1193}
1194
1195/*
1196 * We support the symbol form:
1197 * [%[modifiers]%][[+-]<symbol name>][,[.....]]
1198 * If the symbol name is empty, then all symbols are matched.
1199 * If the symbol name is a glob ("*"), then all symbols are dumped (debug).
1200 * Do not rely on this output format at all.
1201 * Otherwise the symbol name is used to search (either regex or string compare).
1202 * If the first char of the symbol name is a plus ("+"), then only match
1203 * defined symbols. If it's a minus ("-"), only match undefined symbols.
1204 * Putting modifiers in between the percent signs allows for more in depth
1205 * filters. There are groups of modifiers. If you don't specify a member
1206 * of a group, then all types in that group are matched. The current
1207 * groups and their types are:
1208 * STT group: STT_NOTYPE:n STT_OBJECT:o STT_FUNC:f STT_FILE:F
1209 * STB group: STB_LOCAL:l STB_GLOBAL:g STB_WEAK:w
1210 * STV group: STV_DEFAULT:p STV_INTERNAL:i STV_HIDDEN:h STV_PROTECTED:P
1211 * SHN group: SHN_UNDEF:u SHN_ABS:a SHN_COMMON:c {defined}:d
1212 * The "defined" value in the SHN group does not correspond to a SHN_xxx define.
1213 * You can search for multiple symbols at once by seperating with a comma (",").
1214 *
1215 * Some examples:
1216 * ELFs with a weak function "foo":
1217 * scanelf -s %wf%foo <ELFs>
1218 * ELFs that define the symbol "main":
1219 * scanelf -s +main <ELFs>
1220 * scanelf -s %d%main <ELFs>
1221 * ELFs that refer to the undefined symbol "brk":
1222 * scanelf -s -brk <ELFs>
1223 * scanelf -s %u%brk <ELFs>
1224 * All global defined objects in an ELF:
1225 * scanelf -s %ogd% <ELF>
1226 */
1227static void
1228scanelf_match_symname(elfobj *elf, char *found_sym, char **ret, size_t *ret_len, const char *symname,
1229 unsigned int stt, unsigned int stb, unsigned int stv, unsigned int shn, unsigned long size)
1230{
1231 const char *this_sym;
1232 size_t n;
1233
1234 array_for_each(find_sym_arr, n, this_sym) {
1235 bool inc_notype, inc_object, inc_func, inc_file,
1236 inc_local, inc_global, inc_weak,
1237 inc_visdef, inc_intern, inc_hidden, inc_prot,
1238 inc_def, inc_undef, inc_abs, inc_common;
1239
1240 /* symbol selection! */
1241 inc_notype = inc_object = inc_func = inc_file =
1242 inc_local = inc_global = inc_weak =
1243 inc_visdef = inc_intern = inc_hidden = inc_prot =
1244 inc_def = inc_undef = inc_abs = inc_common =
1245 (*this_sym != '%');
1246
1247 /* parse the contents of %...% */
1248 if (!inc_notype) {
1249 while (*(this_sym++)) {
1250 if (*this_sym == '%') {
1251 ++this_sym;
1252 break;
1253 }
1254 switch (*this_sym) {
1255 case 'n': inc_notype = true; break;
1256 case 'o': inc_object = true; break;
1257 case 'f': inc_func = true; break;
1258 case 'F': inc_file = true; break;
1259 case 'l': inc_local = true; break;
1260 case 'g': inc_global = true; break;
1261 case 'w': inc_weak = true; break;
1262 case 'p': inc_visdef = true; break;
1263 case 'i': inc_intern = true; break;
1264 case 'h': inc_hidden = true; break;
1265 case 'P': inc_prot = true; break;
1266 case 'd': inc_def = true; break;
1267 case 'u': inc_undef = true; break;
1268 case 'a': inc_abs = true; break;
1269 case 'c': inc_common = true; break;
1270 default: err("invalid symbol selector '%c'", *this_sym);
1271 }
1272 }
1273
1274 /* If no types are matched, not match all */
1275 if (!inc_notype && !inc_object && !inc_func && !inc_file)
1276 inc_notype = inc_object = inc_func = inc_file = true;
1277 if (!inc_local && !inc_global && !inc_weak)
1278 inc_local = inc_global = inc_weak = true;
1279 if (!inc_visdef && !inc_intern && !inc_hidden && !inc_prot)
1280 inc_visdef = inc_intern = inc_hidden = inc_prot = true;
1281 if (!inc_def && !inc_undef && !inc_abs && !inc_common)
1282 inc_def = inc_undef = inc_abs = inc_common = true;
1283
1284 /* backwards compat for defined/undefined short hand */
1285 } else if (*this_sym == '+') {
1286 inc_undef = false;
1287 ++this_sym;
1288 } else if (*this_sym == '-') {
1289 inc_def = inc_abs = inc_common = false;
1290 ++this_sym;
1291 }
1292
1293 /* filter symbols */
1294 if ((!inc_notype && stt == STT_NOTYPE ) || \
1295 (!inc_object && stt == STT_OBJECT ) || \
1296 (!inc_func && stt == STT_FUNC ) || \
1297 (!inc_file && stt == STT_FILE ) || \
1298 (!inc_local && stb == STB_LOCAL ) || \
1299 (!inc_global && stb == STB_GLOBAL ) || \
1300 (!inc_weak && stb == STB_WEAK ) || \
1301 (!inc_visdef && stv == STV_DEFAULT ) || \
1302 (!inc_intern && stv == STV_INTERNAL ) || \
1303 (!inc_hidden && stv == STV_HIDDEN ) || \
1304 (!inc_prot && stv == STV_PROTECTED) || \
1305 (!inc_def && shn && shn < SHN_LORESERVE) || \
1306 (!inc_undef && shn == SHN_UNDEF ) || \
1307 (!inc_abs && shn == SHN_ABS ) || \
1308 (!inc_common && shn == SHN_COMMON ))
1309 continue;
1310
1311 if (*this_sym == '*') {
1312 /* a "*" symbol gets you debug output */
1313 printf("%s(%s) %5lX %-15s %-15s %-15s %-15s %s\n",
1314 ((*found_sym == 0) ? "\n\t" : "\t"),
1315 elf->base_filename,
1316 size,
1317 get_elfstttype(stt),
1318 get_elfstbtype(stb),
1319 get_elfstvtype(stv),
1320 get_elfshntype(shn),
1321 symname);
1322 goto matched;
1323
1324 } else {
1325 if (g_match) {
1326 /* regex match the symbol */
1327 if (regexec(find_sym_regex_arr->eles[n], symname, 0, NULL, 0) == REG_NOMATCH)
1328 continue;
1329
1330 } else if (*this_sym) {
1331 /* give empty symbols a "pass", else do a normal compare */
1332 const size_t len = strlen(this_sym);
1333 if (!(strncmp(this_sym, symname, len) == 0 &&
1334 /* Accept unversioned symbol names */
1335 (symname[len] == '\0' || symname[len] == '@')))
1336 continue;
1337 }
1338
1339 if (be_semi_verbose) {
1340 char buf[1024];
1341 snprintf(buf, sizeof(buf), "%lX %s %s",
1342 size,
1343 get_elfstttype(stt),
1344 this_sym);
1345 *ret = xstrdup(buf);
1346 } else {
1347 if (*ret) xchrcat(ret, ',', ret_len);
1348 xstrcat(ret, symname, ret_len);
1349 }
1350
1351 goto matched;
1352 }
1353 }
1354
1355 return;
1356
1357 matched:
1358 *found_sym = 1;
1359}
1360
720static char *scanelf_file_sym(elfobj *elf, char *found_sym) 1361static const char *scanelf_file_sym(elfobj *elf, char *found_sym)
721{ 1362{
722 unsigned long i;
723 char *ret; 1363 char *ret;
724 void *symtab_void, *strtab_void; 1364 void *symtab_void, *strtab_void;
725 1365
726 if (!find_sym) return NULL; 1366 if (!find_sym) return NULL;
727 ret = find_sym; 1367 ret = NULL;
728 1368
729 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void); 1369 scanelf_file_get_symtabs(elf, &symtab_void, &strtab_void);
730 1370
731 if (symtab_void && strtab_void) { 1371 if (symtab_void && strtab_void) {
732#define FIND_SYM(B) \ 1372#define FIND_SYM(B) \
733 if (elf->elf_class == ELFCLASS ## B) { \ 1373 if (elf->elf_class == ELFCLASS ## B) { \
734 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \ 1374 Elf ## B ## _Shdr *symtab = SHDR ## B (symtab_void); \
735 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \ 1375 Elf ## B ## _Shdr *strtab = SHDR ## B (strtab_void); \
736 Elf ## B ## _Sym *sym = SYM ## B (elf->data + EGET(symtab->sh_offset)); \ 1376 Elf ## B ## _Sym *sym = SYM ## B (elf->vdata + EGET(symtab->sh_offset)); \
737 unsigned long cnt = EGET(symtab->sh_size) / EGET(symtab->sh_entsize); \ 1377 Elf ## B ## _Word i, cnt = EGET(symtab->sh_entsize); \
738 char *symname; \ 1378 char *symname; \
1379 size_t ret_len = 0; \
1380 if (cnt) \
1381 cnt = EGET(symtab->sh_size) / cnt; \
739 for (i = 0; i < cnt; ++i) { \ 1382 for (i = 0; i < cnt; ++i) { \
1383 if ((void*)sym > elf->data_end) { \
1384 warnf("%s: corrupt ELF symbols - aborting", elf->filename); \
1385 goto break_out; \
1386 } \
740 if (sym->st_name) { \ 1387 if (sym->st_name) { \
1388 /* make sure the symbol name is in acceptable memory range */ \
741 symname = (char *)(elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name)); \ 1389 symname = elf->data + EGET(strtab->sh_offset) + EGET(sym->st_name); \
742 if (*find_sym == '*') { \ 1390 if ((void*)symname > elf->data_end) { \
743 printf("%s(%s) %5lX %15s %s\n", \ 1391 warnf("%s: corrupt ELF symbols", elf->filename); \
744 ((*found_sym == 0) ? "\n\t" : "\t"), \ 1392 ++sym; \
745 elf->base_filename, \ 1393 continue; \
746 (unsigned long)sym->st_size, \
747 get_elfstttype(sym->st_info), \
748 symname); \
749 *found_sym = 1; \
750 } else { \
751 char *this_sym, *next_sym; \
752 this_sym = find_sym; \
753 do { \
754 next_sym = strchr(this_sym, ','); \
755 if (next_sym == NULL) \
756 next_sym = this_sym + strlen(this_sym); \
757 if ((strncmp(this_sym, symname, (next_sym-this_sym)) == 0 && symname[next_sym-this_sym] == '\0') || \
758 (strcmp(symname, versioned_symname) == 0)) { \
759 ret = this_sym; \
760 (*found_sym)++; \
761 goto break_out; \
762 } \
763 this_sym = next_sym + 1; \
764 } while (*next_sym != '\0'); \
765 } \ 1394 } \
1395 scanelf_match_symname(elf, found_sym, \
1396 &ret, &ret_len, symname, \
1397 ELF##B##_ST_TYPE(EGET(sym->st_info)), \
1398 ELF##B##_ST_BIND(EGET(sym->st_info)), \
1399 ELF##B##_ST_VISIBILITY(EGET(sym->st_other)), \
1400 EGET(sym->st_shndx), \
1401 /* st_size can be 64bit, but no one is really that big, so screw em */ \
1402 EGET(sym->st_size)); \
766 } \ 1403 } \
767 ++sym; \ 1404 ++sym; \
768 } } 1405 } \
1406 }
769 FIND_SYM(32) 1407 FIND_SYM(32)
770 FIND_SYM(64) 1408 FIND_SYM(64)
771 } 1409 }
772 1410
773break_out: 1411break_out:
776 if (*find_sym != '*' && *found_sym) 1414 if (*find_sym != '*' && *found_sym)
777 return ret; 1415 return ret;
778 if (be_quiet) 1416 if (be_quiet)
779 return NULL; 1417 return NULL;
780 else 1418 else
781 return (char *)" - "; 1419 return " - ";
782} 1420}
1421
1422static const char *scanelf_file_sections(elfobj *elf, char *found_section)
1423{
1424 if (!find_section)
1425 return NULL;
1426
1427#define FIND_SECTION(B) \
1428 if (elf->elf_class == ELFCLASS ## B) { \
1429 size_t matched, n; \
1430 int invert; \
1431 const char *section_name; \
1432 Elf ## B ## _Shdr *section; \
1433 \
1434 matched = 0; \
1435 array_for_each(find_section_arr, n, section_name) { \
1436 invert = (*section_name == '!' ? 1 : 0); \
1437 section = SHDR ## B (elf_findsecbyname(elf, section_name + invert)); \
1438 if ((section == NULL && invert) || (section != NULL && !invert)) \
1439 ++matched; \
1440 } \
1441 \
1442 if (matched == array_cnt(find_section_arr)) \
1443 *found_section = 1; \
1444 }
1445 FIND_SECTION(32)
1446 FIND_SECTION(64)
1447
1448 if (be_wewy_wewy_quiet)
1449 return NULL;
1450
1451 if (*found_section)
1452 return find_section;
1453
1454 if (be_quiet)
1455 return NULL;
1456 else
1457 return " - ";
1458}
1459
783/* scan an elf file and show all the fun stuff */ 1460/* scan an elf file and show all the fun stuff */
784#define prints(str) write(fileno(stdout), str, strlen(str)) 1461#define prints(str) ({ ssize_t ret = write(fileno(stdout), str, strlen(str)); ret; })
785static void scanelf_file(const char *filename) 1462static int scanelf_elfobj(elfobj *elf)
786{ 1463{
787 unsigned long i; 1464 unsigned long i;
788 char found_pax, found_phdr, found_relro, found_load, found_textrel, 1465 char found_pax, found_phdr, found_relro, found_load, found_textrel,
789 found_rpath, found_needed, found_interp, found_bind, found_soname, 1466 found_rpath, found_needed, found_interp, found_bind, found_soname,
790 found_sym, found_lib, found_file, found_textrels; 1467 found_sym, found_lib, found_file, found_textrels, found_section;
791 elfobj *elf;
792 struct stat st;
793 static char *out_buffer = NULL; 1468 static char *out_buffer = NULL;
794 static size_t out_len; 1469 static size_t out_len;
795 1470
796 /* make sure 'filename' exists */
797 if (lstat(filename, &st) == -1) {
798 if (be_verbose > 2) printf("%s: does not exist\n", filename);
799 return;
800 }
801 /* always handle regular files and handle symlinked files if no -y */
802 if (S_ISLNK(st.st_mode)) {
803 if (!scan_symlink) return;
804 stat(filename, &st);
805 }
806 if (!S_ISREG(st.st_mode)) {
807 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
808 return;
809 }
810
811 found_pax = found_phdr = found_relro = found_load = found_textrel = \ 1471 found_pax = found_phdr = found_relro = found_load = found_textrel = \
812 found_rpath = found_needed = found_interp = found_bind = found_soname = \ 1472 found_rpath = found_needed = found_interp = found_bind = found_soname = \
813 found_sym = found_lib = found_file = found_textrels = 0; 1473 found_sym = found_lib = found_file = found_textrels = found_section = 0;
814 1474
815 /* verify this is real ELF */
816 if ((elf = readelf(filename)) == NULL) {
817 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
818 return;
819 }
820
821 if (be_verbose > 1) 1475 if (be_verbose > 2)
822 printf("%s: scanning file {%s,%s}\n", filename, 1476 printf("%s: scanning file {%s,%s}\n", elf->filename,
823 get_elfeitype(EI_CLASS, elf->elf_class), 1477 get_elfeitype(EI_CLASS, elf->elf_class),
824 get_elfeitype(EI_DATA, elf->data[EI_DATA])); 1478 get_elfeitype(EI_DATA, elf->data[EI_DATA]));
825 else if (be_verbose) 1479 else if (be_verbose > 1)
826 printf("%s: scanning file\n", filename); 1480 printf("%s: scanning file\n", elf->filename);
827 1481
828 /* init output buffer */ 1482 /* init output buffer */
829 if (!out_buffer) { 1483 if (!out_buffer) {
830 out_len = sizeof(char) * 80; 1484 out_len = sizeof(char) * 80;
831 out_buffer = (char*)xmalloc(out_len); 1485 out_buffer = xmalloc(out_len);
832 } 1486 }
833 *out_buffer = '\0'; 1487 *out_buffer = '\0';
834 1488
835 /* show the header */ 1489 /* show the header */
836 if (!be_quiet && show_banner) { 1490 if (!be_quiet && show_banner) {
837 for (i = 0; out_format[i]; ++i) { 1491 for (i = 0; out_format[i]; ++i) {
838 if (!IS_MODIFIER(out_format[i])) continue; 1492 if (!IS_MODIFIER(out_format[i])) continue;
839 1493
840 switch (out_format[++i]) { 1494 switch (out_format[++i]) {
1495 case '+': break;
841 case '%': break; 1496 case '%': break;
842 case '#': break; 1497 case '#': break;
843 case 'F': 1498 case 'F':
844 case 'p': 1499 case 'p':
845 case 'f': prints("FILE "); found_file = 1; break; 1500 case 'f': prints("FILE "); found_file = 1; break;
846 case 'o': prints(" TYPE "); break; 1501 case 'o': prints(" TYPE "); break;
847 case 'x': prints(" PAX "); break; 1502 case 'x': prints(" PAX "); break;
848 case 'e': prints("STK/REL/PTL "); break; 1503 case 'e': prints("STK/REL/PTL "); break;
849 case 't': prints("TEXTREL "); break; 1504 case 't': prints("TEXTREL "); break;
850 case 'r': prints("RPATH "); break; 1505 case 'r': prints("RPATH "); break;
1506 case 'M': prints("CLASS "); break;
1507 case 'l':
851 case 'n': prints("NEEDED "); break; 1508 case 'n': prints("NEEDED "); break;
852 case 'i': prints("INTERP "); break; 1509 case 'i': prints("INTERP "); break;
853 case 'b': prints("BIND "); break; 1510 case 'b': prints("BIND "); break;
1511 case 'Z': prints("SIZE "); break;
854 case 'S': prints("SONAME "); break; 1512 case 'S': prints("SONAME "); break;
855 case 's': prints("SYM "); break; 1513 case 's': prints("SYM "); break;
856 case 'N': prints("LIB "); break; 1514 case 'N': prints("LIB "); break;
857 case 'T': prints("TEXTRELS "); break; 1515 case 'T': prints("TEXTRELS "); break;
1516 case 'k': prints("SECTION "); break;
1517 case 'a': prints("ARCH "); break;
1518 case 'I': prints("OSABI "); break;
1519 case 'Y': prints("EABI "); break;
1520 case 'O': prints("PERM "); break;
1521 case 'D': prints("ENDIAN "); break;
858 default: warnf("'%c' has no title ?", out_format[i]); 1522 default: warnf("'%c' has no title ?", out_format[i]);
859 } 1523 }
860 } 1524 }
861 if (!found_file) prints("FILE "); 1525 if (!found_file) prints("FILE ");
862 prints("\n"); 1526 prints("\n");
866 1530
867 /* dump all the good stuff */ 1531 /* dump all the good stuff */
868 for (i = 0; out_format[i]; ++i) { 1532 for (i = 0; out_format[i]; ++i) {
869 const char *out; 1533 const char *out;
870 const char *tmp; 1534 const char *tmp;
871 1535 static char ubuf[sizeof(unsigned long)*2];
872 /* make sure we trim leading spaces in quiet mode */
873 if (be_quiet && *out_buffer == ' ' && !out_buffer[1])
874 *out_buffer = '\0';
875
876 if (!IS_MODIFIER(out_format[i])) { 1536 if (!IS_MODIFIER(out_format[i])) {
877 xchrcat(&out_buffer, out_format[i], &out_len); 1537 xchrcat(&out_buffer, out_format[i], &out_len);
878 continue; 1538 continue;
879 } 1539 }
880 1540
881 out = NULL; 1541 out = NULL;
882 be_wewy_wewy_quiet = (out_format[i] == '#'); 1542 be_wewy_wewy_quiet = (out_format[i] == '#');
1543 be_semi_verbose = (out_format[i] == '+');
883 switch (out_format[++i]) { 1544 switch (out_format[++i]) {
1545 case '+':
884 case '%': 1546 case '%':
885 case '#': 1547 case '#':
886 xchrcat(&out_buffer, out_format[i], &out_len); break; 1548 xchrcat(&out_buffer, out_format[i], &out_len); break;
887 case 'F': 1549 case 'F':
888 found_file = 1; 1550 found_file = 1;
889 if (be_wewy_wewy_quiet) break; 1551 if (be_wewy_wewy_quiet) break;
890 xstrcat(&out_buffer, filename, &out_len); 1552 xstrcat(&out_buffer, elf->filename, &out_len);
891 break; 1553 break;
892 case 'p': 1554 case 'p':
893 found_file = 1; 1555 found_file = 1;
894 if (be_wewy_wewy_quiet) break; 1556 if (be_wewy_wewy_quiet) break;
895 tmp = filename; 1557 tmp = elf->filename;
896 if (search_path) { 1558 if (search_path) {
897 ssize_t len_search = strlen(search_path); 1559 ssize_t len_search = strlen(search_path);
898 ssize_t len_file = strlen(filename); 1560 ssize_t len_file = strlen(elf->filename);
899 if (!strncmp(filename, search_path, len_search) && \ 1561 if (!strncmp(elf->filename, search_path, len_search) && \
900 len_file > len_search) 1562 len_file > len_search)
901 tmp += len_search; 1563 tmp += len_search;
902 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++; 1564 if (*tmp == '/' && search_path[len_search-1] == '/') tmp++;
903 } 1565 }
904 xstrcat(&out_buffer, tmp, &out_len); 1566 xstrcat(&out_buffer, tmp, &out_len);
905 break; 1567 break;
906 case 'f': 1568 case 'f':
907 found_file = 1; 1569 found_file = 1;
908 if (be_wewy_wewy_quiet) break; 1570 if (be_wewy_wewy_quiet) break;
909 tmp = strrchr(filename, '/'); 1571 tmp = strrchr(elf->filename, '/');
910 tmp = (tmp == NULL ? filename : tmp+1); 1572 tmp = (tmp == NULL ? elf->filename : tmp+1);
911 xstrcat(&out_buffer, tmp, &out_len); 1573 xstrcat(&out_buffer, tmp, &out_len);
912 break; 1574 break;
913 case 'o': out = get_elfetype(elf); break; 1575 case 'o': out = get_elfetype(elf); break;
914 case 'x': out = scanelf_file_pax(elf, &found_pax); break; 1576 case 'x': out = scanelf_file_pax(elf, &found_pax); break;
915 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break; 1577 case 'e': out = scanelf_file_phdr(elf, &found_phdr, &found_relro, &found_load); break;
916 case 't': out = scanelf_file_textrel(elf, &found_textrel); break; 1578 case 't': out = scanelf_file_textrel(elf, &found_textrel); break;
917 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break; 1579 case 'T': out = scanelf_file_textrels(elf, &found_textrels, &found_textrel); break;
918 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break; 1580 case 'r': scanelf_file_rpath(elf, &found_rpath, &out_buffer, &out_len); break;
1581 case 'M': out = get_elfeitype(EI_CLASS, elf->data[EI_CLASS]); break;
1582 case 'D': out = get_endian(elf); break;
1583 case 'O': out = strfileperms(elf->filename); break;
919 case 'n': 1584 case 'n':
920 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break; 1585 case 'N': out = scanelf_file_needed_lib(elf, &found_needed, &found_lib, (out_format[i]=='N'), &out_buffer, &out_len); break;
921 case 'i': out = scanelf_file_interp(elf, &found_interp); break; 1586 case 'i': out = scanelf_file_interp(elf, &found_interp); break;
922 case 'b': out = scanelf_file_bind(elf, &found_bind); break; 1587 case 'b': out = scanelf_file_bind(elf, &found_bind); break;
923 case 'S': out = scanelf_file_soname(elf, &found_soname); break; 1588 case 'S': out = scanelf_file_soname(elf, &found_soname); break;
924 case 's': out = scanelf_file_sym(elf, &found_sym); break; 1589 case 's': out = scanelf_file_sym(elf, &found_sym); break;
1590 case 'k': out = scanelf_file_sections(elf, &found_section); break;
1591 case 'a': out = get_elfemtype(elf); break;
1592 case 'I': out = get_elfosabi(elf); break;
1593 case 'Y': out = get_elf_eabi(elf); break;
1594 case 'Z': snprintf(ubuf, sizeof(ubuf), "%lu", (unsigned long)elf->len); out = ubuf; break;;
925 default: warnf("'%c' has no scan code?", out_format[i]); 1595 default: warnf("'%c' has no scan code?", out_format[i]);
926 } 1596 }
927 if (out) { 1597 if (out)
928 /* hack for comma delimited output like `scanelf -s sym1,sym2,sym3` */
929 if (out_format[i] == 's' && (tmp=strchr(out,',')) != NULL)
930 xstrncat(&out_buffer, out, &out_len, (tmp-out));
931 else
932 xstrcat(&out_buffer, out, &out_len); 1598 xstrcat(&out_buffer, out, &out_len);
933 }
934 } 1599 }
935 1600
936#define FOUND_SOMETHING() \ 1601#define FOUND_SOMETHING() \
937 (found_pax || found_phdr || found_relro || found_load || found_textrel || \ 1602 (found_pax || found_phdr || found_relro || found_load || found_textrel || \
938 found_rpath || found_needed || found_interp || found_bind || \ 1603 found_rpath || found_needed || found_interp || found_bind || \
939 found_soname || found_sym || found_lib || found_textrels) 1604 found_soname || found_sym || found_lib || found_textrels || found_section )
940 1605
941 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) { 1606 if (!found_file && (!be_quiet || (be_quiet && FOUND_SOMETHING()))) {
942 xchrcat(&out_buffer, ' ', &out_len); 1607 xchrcat(&out_buffer, ' ', &out_len);
943 xstrcat(&out_buffer, filename, &out_len); 1608 xstrcat(&out_buffer, elf->filename, &out_len);
944 } 1609 }
945 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) { 1610 if (!be_quiet || (be_quiet && FOUND_SOMETHING())) {
946 puts(out_buffer); 1611 puts(out_buffer);
947 fflush(stdout); 1612 fflush(stdout);
948 } 1613 }
949 1614
1615 return 0;
1616}
1617
1618/* scan a single elf */
1619static int scanelf_elf(const char *filename, int fd, size_t len)
1620{
1621 int ret = 1;
1622 size_t n;
1623 const char *match_etype;
1624 elfobj *elf;
1625
1626 /* Verify this is a real ELF */
1627 if ((elf = _readelf_fd(filename, fd, len, !fix_elf)) == NULL) {
1628 if (be_verbose > 2) printf("%s: not an ELF\n", filename);
1629 return 2;
1630 }
1631
1632 /* Possibly filter based on ELF bitness */
1633 switch (match_bits) {
1634 case 32:
1635 if (elf->elf_class != ELFCLASS32)
1636 goto done;
1637 break;
1638 case 64:
1639 if (elf->elf_class != ELFCLASS64)
1640 goto done;
1641 break;
1642 }
1643
1644 /* Possibly filter based on the ELF's e_type field */
1645 array_for_each(match_etypes, n, match_etype)
1646 if (etype_lookup(match_etype) == get_etype(elf))
1647 goto scanit;
1648 if (array_cnt(match_etypes))
1649 goto done;
1650
1651 scanit:
1652 ret = scanelf_elfobj(elf);
1653
1654 done:
950 unreadelf(elf); 1655 unreadelf(elf);
1656 return ret;
1657}
1658
1659/* scan an archive of elfs */
1660static int scanelf_archive(const char *filename, int fd, size_t len)
1661{
1662 archive_handle *ar;
1663 archive_member *m;
1664 char *ar_buffer;
1665 elfobj *elf;
1666
1667 ar = ar_open_fd(filename, fd);
1668 if (ar == NULL)
1669 return 1;
1670
1671 ar_buffer = mmap(0, len, PROT_READ | (fix_elf ? PROT_WRITE : 0), (fix_elf ? MAP_SHARED : MAP_PRIVATE), fd, 0);
1672 while ((m = ar_next(ar)) != NULL) {
1673 off_t cur_pos = lseek(fd, 0, SEEK_CUR);
1674 if (cur_pos == -1)
1675 errp("lseek() failed");
1676 elf = readelf_buffer(m->name, ar_buffer + cur_pos, m->size);
1677 if (elf) {
1678 scanelf_elfobj(elf);
1679 unreadelf(elf);
1680 }
1681 }
1682 munmap(ar_buffer, len);
1683
1684 return 0;
1685}
1686/* scan a file which may be an elf or an archive or some other magical beast */
1687static int scanelf_fileat(int dir_fd, const char *filename, const struct stat *st_cache)
1688{
1689 const struct stat *st = st_cache;
1690 struct stat symlink_st;
1691 int fd;
1692
1693 /* always handle regular files and handle symlinked files if no -y */
1694 if (S_ISLNK(st->st_mode)) {
1695 if (!scan_symlink)
1696 return 1;
1697 fstatat(dir_fd, filename, &symlink_st, 0);
1698 st = &symlink_st;
1699 }
1700
1701 if (!S_ISREG(st->st_mode)) {
1702 if (be_verbose > 2) printf("%s: skipping non-file\n", filename);
1703 return 1;
1704 }
1705
1706 if (match_perms) {
1707 if ((st->st_mode | match_perms) != st->st_mode)
1708 return 1;
1709 }
1710 fd = openat(dir_fd, filename, (fix_elf ? O_RDWR : O_RDONLY) | O_CLOEXEC);
1711 if (fd == -1) {
1712 if (fix_elf && errno == ETXTBSY)
1713 warnp("%s: could not fix", filename);
1714 else if (be_verbose > 2)
1715 printf("%s: skipping file: %s\n", filename, strerror(errno));
1716 return 1;
1717 }
1718
1719 if (scanelf_elf(filename, fd, st->st_size) == 2) {
1720 /* if it isn't an ELF, maybe it's an .a archive */
1721 if (scan_archives)
1722 scanelf_archive(filename, fd, st->st_size);
1723
1724 /*
1725 * unreadelf() implicitly closes its fd, so only close it
1726 * when we are returning it in the non-ELF case
1727 */
1728 close(fd);
1729 }
1730
1731 return 0;
951} 1732}
952 1733
953/* scan a directory for ET_EXEC files and print when we find one */ 1734/* scan a directory for ET_EXEC files and print when we find one */
954static void scanelf_dir(const char *path) 1735static int scanelf_dirat(int dir_fd, const char *path)
955{ 1736{
956 register DIR *dir; 1737 register DIR *dir;
957 register struct dirent *dentry; 1738 register struct dirent *dentry;
958 struct stat st_top, st; 1739 struct stat st_top, st;
959 char buf[_POSIX_PATH_MAX]; 1740 char buf[__PAX_UTILS_PATH_MAX], *subpath;
960 size_t pathlen = 0, len = 0; 1741 size_t pathlen = 0, len = 0;
1742 int ret = 0;
1743 int subdir_fd;
961 1744
962 /* make sure path exists */ 1745 /* make sure path exists */
963 if (lstat(path, &st_top) == -1) { 1746 if (fstatat(dir_fd, path, &st_top, AT_SYMLINK_NOFOLLOW) == -1) {
964 if (be_verbose > 2) printf("%s: does not exist\n", path); 1747 if (be_verbose > 2) printf("%s: does not exist\n", path);
965 return; 1748 return 1;
966 } 1749 }
967 1750
968 /* ok, if it isn't a directory, assume we can open it */ 1751 /* ok, if it isn't a directory, assume we can open it */
969 if (!S_ISDIR(st_top.st_mode)) { 1752 if (!S_ISDIR(st_top.st_mode))
970 scanelf_file(path); 1753 return scanelf_fileat(dir_fd, path, &st_top);
971 return;
972 }
973 1754
974 /* now scan the dir looking for fun stuff */ 1755 /* now scan the dir looking for fun stuff */
975 if ((dir = opendir(path)) == NULL) { 1756 subdir_fd = openat(dir_fd, path, O_RDONLY|O_CLOEXEC);
976 warnf("could not opendir %s: %s", path, strerror(errno)); 1757 if (subdir_fd == -1)
1758 dir = NULL;
1759 else
1760 dir = fdopendir(subdir_fd);
1761 if (dir == NULL) {
1762 if (subdir_fd != -1)
1763 close(subdir_fd);
1764 else if (be_verbose > 2)
1765 printf("%s: skipping dir: %s\n", path, strerror(errno));
977 return; 1766 return 1;
978 } 1767 }
979 if (be_verbose) printf("%s: scanning dir\n", path); 1768 if (be_verbose > 1) printf("%s: scanning dir\n", path);
980 1769
981 pathlen = strlen(path); 1770 subpath = stpcpy(buf, path);
1771 if (subpath[-1] != '/')
1772 *subpath++ = '/';
1773 pathlen = subpath - buf;
982 while ((dentry = readdir(dir))) { 1774 while ((dentry = readdir(dir))) {
983 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, "..")) 1775 if (!strcmp(dentry->d_name, ".") || !strcmp(dentry->d_name, ".."))
984 continue; 1776 continue;
1777
1778 if (fstatat(subdir_fd, dentry->d_name, &st, AT_SYMLINK_NOFOLLOW) == -1)
1779 continue;
1780
985 len = (pathlen + 1 + strlen(dentry->d_name) + 1); 1781 len = strlen(dentry->d_name);
986 if (len >= sizeof(buf)) { 1782 if (len + pathlen + 1 >= sizeof(buf)) {
987 warnf("Skipping '%s': len > sizeof(buf); %lu > %lu\n", path, 1783 warnf("Skipping '%s%s': len > sizeof(buf); %zu > %zu\n",
988 (unsigned long)len, (unsigned long)sizeof(buf)); 1784 path, dentry->d_name, len + pathlen + 1, sizeof(buf));
989 continue; 1785 continue;
990 } 1786 }
991 sprintf(buf, "%s/%s", path, dentry->d_name); 1787 memcpy(subpath, dentry->d_name, len);
992 if (lstat(buf, &st) != -1) { 1788 subpath[len] = '\0';
1789
993 if (S_ISREG(st.st_mode)) 1790 if (S_ISREG(st.st_mode))
994 scanelf_file(buf); 1791 ret = scanelf_fileat(dir_fd, buf, &st);
995 else if (dir_recurse && S_ISDIR(st.st_mode)) { 1792 else if (dir_recurse && S_ISDIR(st.st_mode)) {
996 if (dir_crossmount || (st_top.st_dev == st.st_dev)) 1793 if (dir_crossmount || (st_top.st_dev == st.st_dev))
997 scanelf_dir(buf); 1794 ret = scanelf_dirat(dir_fd, buf);
998 }
999 } 1795 }
1000 } 1796 }
1001 closedir(dir); 1797 closedir(dir);
1002}
1003 1798
1799 return ret;
1800}
1801static int scanelf_dir(const char *path)
1802{
1803 return scanelf_dirat(root_fd, root_rel_path(path));
1804}
1805
1004static int scanelf_from_file(char *filename) 1806static int scanelf_from_file(const char *filename)
1005{ 1807{
1006 FILE *fp = NULL; 1808 FILE *fp;
1007 char *p; 1809 char *p, *path;
1008 char path[_POSIX_PATH_MAX]; 1810 size_t len;
1811 int ret;
1009 1812
1010 if (((strcmp(filename, "-")) == 0) && (ttyname(0) == NULL)) 1813 if (strcmp(filename, "-") == 0)
1011 fp = stdin; 1814 fp = stdin;
1012 else if ((fp = fopen(filename, "r")) == NULL) 1815 else if ((fp = fopen(filename, "r")) == NULL)
1013 return 1; 1816 return 1;
1014 1817
1015 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1818 path = NULL;
1819 len = 0;
1820 ret = 0;
1821 while (getline(&path, &len, fp) != -1) {
1016 if ((p = strchr(path, '\n')) != NULL) 1822 if ((p = strchr(path, '\n')) != NULL)
1017 *p = 0; 1823 *p = 0;
1018 search_path = path; 1824 search_path = path;
1019 scanelf_dir(path); 1825 ret = scanelf_dir(path);
1020 } 1826 }
1827 free(path);
1828
1021 if (fp != stdin) 1829 if (fp != stdin)
1022 fclose(fp); 1830 fclose(fp);
1831
1023 return 0; 1832 return ret;
1024} 1833}
1025 1834
1026static void load_ld_so_conf() 1835#if defined(__GLIBC__) || defined(__UCLIBC__) || defined(__NetBSD__)
1836
1837static int _load_ld_cache_config(const char *fname)
1027{ 1838{
1028 FILE *fp = NULL; 1839 FILE *fp = NULL;
1029 char *p; 1840 char *p, *path;
1030 char path[_POSIX_PATH_MAX]; 1841 size_t len;
1031 int i = 0; 1842 int curr_fd = -1;
1032 1843
1033 if ((fp = fopen("/etc/ld.so.conf", "r")) == NULL) 1844 fp = fopenat_r(root_fd, root_rel_path(fname));
1845 if (fp == NULL)
1034 return; 1846 return -1;
1035 1847
1036 while ((fgets(path, _POSIX_PATH_MAX, fp)) != NULL) { 1848 path = NULL;
1037 if (*path != '/') 1849 len = 0;
1038 continue; 1850 while (getline(&path, &len, fp) != -1) {
1039
1040 if ((p = strrchr(path, '\r')) != NULL) 1851 if ((p = strrchr(path, '\r')) != NULL)
1041 *p = 0; 1852 *p = 0;
1042 if ((p = strchr(path, '\n')) != NULL) 1853 if ((p = strchr(path, '\n')) != NULL)
1043 *p = 0; 1854 *p = 0;
1044 1855
1045 ldpaths[i++] = xstrdup(path); 1856 /* recursive includes of the same file will make this segfault. */
1857 if ((memcmp(path, "include", 7) == 0) && isblank(path[7])) {
1858 glob_t gl;
1859 size_t x;
1860 const char *gpath;
1046 1861
1047 if (i + 1 == sizeof(ldpaths) / sizeof(*ldpaths)) 1862 /* re-use existing path buffer ... need to be creative */
1048 break; 1863 if (path[8] != '/')
1864 gpath = memcpy(path + 3, "/etc/", 5);
1865 else
1866 gpath = path + 8;
1867 if (root_fd != AT_FDCWD) {
1868 if (curr_fd == -1) {
1869 curr_fd = open(".", O_RDONLY|O_CLOEXEC);
1870 if (fchdir(root_fd))
1871 errp("unable to change to root dir");
1872 }
1873 gpath = root_rel_path(gpath);
1874 }
1875
1876 if (glob(gpath, 0, NULL, &gl) == 0) {
1877 for (x = 0; x < gl.gl_pathc; ++x) {
1878 /* try to avoid direct loops */
1879 if (strcmp(gl.gl_pathv[x], fname) == 0)
1880 continue;
1881 _load_ld_cache_config(gl.gl_pathv[x]);
1882 }
1883 globfree(&gl);
1884 }
1885
1886 /* failed globs are ignored by glibc */
1887 continue;
1049 } 1888 }
1050 ldpaths[i] = NULL; 1889
1890 if (*path != '/')
1891 continue;
1892
1893 xarraypush_str(ldpaths, path);
1894 }
1895 free(path);
1051 1896
1052 fclose(fp); 1897 fclose(fp);
1898
1899 if (curr_fd != -1) {
1900 if (fchdir(curr_fd))
1901 {/* don't care */}
1902 close(curr_fd);
1903 }
1904
1905 return 0;
1906}
1907
1908#elif defined(__FreeBSD__) || defined(__DragonFly__)
1909
1910static int _load_ld_cache_config(const char *fname)
1911{
1912 FILE *fp = NULL;
1913 char *b = NULL, *p;
1914 struct elfhints_hdr hdr;
1915
1916 fp = fopenat_r(root_fd, root_rel_path(fname));
1917 if (fp == NULL)
1918 return -1;
1919
1920 if (fread(&hdr, 1, sizeof(hdr), fp) != sizeof(hdr) ||
1921 hdr.magic != ELFHINTS_MAGIC || hdr.version != 1 ||
1922 fseek(fp, hdr.strtab + hdr.dirlist, SEEK_SET) == -1)
1923 {
1924 fclose(fp);
1925 return -1;
1926 }
1927
1928 b = xmalloc(hdr.dirlistlen + 1);
1929 if (fread(b, 1, hdr.dirlistlen+1, fp) != hdr.dirlistlen+1) {
1930 fclose(fp);
1931 free(b);
1932 return -1;
1933 }
1934
1935 while ((p = strsep(&b, ":"))) {
1936 if (*p == '\0')
1937 continue;
1938 xarraypush_str(ldpaths, p);
1939 }
1940
1941 free(b);
1942 fclose(fp);
1943 return 0;
1944}
1945
1946#else
1947#ifdef __ELF__
1948#warning Cache config support not implemented for your target
1949#endif
1950static int _load_ld_cache_config(const char *fname)
1951{
1952 return 0;
1953}
1954#endif
1955
1956static void load_ld_cache_config(const char *fname)
1957{
1958 bool scan_l, scan_ul, scan_ull;
1959 size_t n;
1960 const char *ldpath;
1961
1962 _load_ld_cache_config(fname);
1963
1964 scan_l = scan_ul = scan_ull = false;
1965 array_for_each(ldpaths, n, ldpath) {
1966 if (!scan_l && !strcmp(ldpath, "/lib")) scan_l = true;
1967 if (!scan_ul && !strcmp(ldpath, "/usr/lib")) scan_ul = true;
1968 if (!scan_ull && !strcmp(ldpath, "/usr/local/lib")) scan_ull = true;
1969 }
1970
1971 if (!scan_l) xarraypush_str(ldpaths, "/lib");
1972 if (!scan_ul) xarraypush_str(ldpaths, "/usr/lib");
1973 if (!scan_ull) xarraypush_str(ldpaths, "/usr/local/lib");
1053} 1974}
1054 1975
1055/* scan /etc/ld.so.conf for paths */ 1976/* scan /etc/ld.so.conf for paths */
1056static void scanelf_ldpath() 1977static void scanelf_ldpath(void)
1057{ 1978{
1058 char scan_l, scan_ul, scan_ull; 1979 size_t n;
1059 int i = 0; 1980 const char *ldpath;
1060 1981
1061 if (!ldpaths[0]) 1982 array_for_each(ldpaths, n, ldpath)
1062 err("Unable to load any paths from ld.so.conf");
1063
1064 scan_l = scan_ul = scan_ull = 0;
1065
1066 while (ldpaths[i]) {
1067 if (!scan_l && !strcmp(ldpaths[i], "/lib")) scan_l = 1;
1068 if (!scan_ul && !strcmp(ldpaths[i], "/usr/lib")) scan_ul = 1;
1069 if (!scan_ull && !strcmp(ldpaths[i], "/usr/local/lib")) scan_ull = 1;
1070 scanelf_dir(ldpaths[i]); 1983 scanelf_dir(ldpath);
1071 ++i;
1072 }
1073
1074 if (!scan_l) scanelf_dir("/lib");
1075 if (!scan_ul) scanelf_dir("/usr/lib");
1076 if (!scan_ull) scanelf_dir("/usr/local/lib");
1077} 1984}
1078 1985
1079/* scan env PATH for paths */ 1986/* scan env PATH for paths */
1080static void scanelf_envpath() 1987static void scanelf_envpath(void)
1081{ 1988{
1082 char *path, *p; 1989 char *path, *p;
1083 1990
1084 path = getenv("PATH"); 1991 path = getenv("PATH");
1085 if (!path) 1992 if (!path)
1092 } 1999 }
1093 2000
1094 free(path); 2001 free(path);
1095} 2002}
1096 2003
1097 2004/* usage / invocation handling functions */ /* Free Flags: c d j u w G H J K P Q U W */
1098/* usage / invocation handling functions */
1099#define PARSE_FLAGS "plRmyxetrnLibSs:gN:TaqvF:f:o:BhV" 2005#define PARSE_FLAGS "plRmyAXz:xetrnLibSs:k:gN:TaqvF:f:o:E:M:DIYO:ZCBhV"
1100#define a_argument required_argument 2006#define a_argument required_argument
1101static struct option const long_opts[] = { 2007static struct option const long_opts[] = {
1102 {"path", no_argument, NULL, 'p'}, 2008 {"path", no_argument, NULL, 'p'},
1103 {"ldpath", no_argument, NULL, 'l'}, 2009 {"ldpath", no_argument, NULL, 'l'},
2010 {"use-ldpath",no_argument, NULL, 129},
2011 {"root", a_argument, NULL, 128},
1104 {"recursive", no_argument, NULL, 'R'}, 2012 {"recursive", no_argument, NULL, 'R'},
1105 {"mount", no_argument, NULL, 'm'}, 2013 {"mount", no_argument, NULL, 'm'},
1106 {"symlink", no_argument, NULL, 'y'}, 2014 {"symlink", no_argument, NULL, 'y'},
2015 {"archives", no_argument, NULL, 'A'},
2016 {"ldcache", no_argument, NULL, 'L'},
2017 {"fix", no_argument, NULL, 'X'},
2018 {"setpax", a_argument, NULL, 'z'},
1107 {"pax", no_argument, NULL, 'x'}, 2019 {"pax", no_argument, NULL, 'x'},
1108 {"header", no_argument, NULL, 'e'}, 2020 {"header", no_argument, NULL, 'e'},
1109 {"textrel", no_argument, NULL, 't'}, 2021 {"textrel", no_argument, NULL, 't'},
1110 {"rpath", no_argument, NULL, 'r'}, 2022 {"rpath", no_argument, NULL, 'r'},
1111 {"needed", no_argument, NULL, 'n'}, 2023 {"needed", no_argument, NULL, 'n'},
1112 {"ldcache", no_argument, NULL, 'L'},
1113 {"interp", no_argument, NULL, 'i'}, 2024 {"interp", no_argument, NULL, 'i'},
1114 {"bind", no_argument, NULL, 'b'}, 2025 {"bind", no_argument, NULL, 'b'},
1115 {"soname", no_argument, NULL, 'S'}, 2026 {"soname", no_argument, NULL, 'S'},
1116 {"symbol", a_argument, NULL, 's'}, 2027 {"symbol", a_argument, NULL, 's'},
2028 {"section", a_argument, NULL, 'k'},
1117 {"lib", a_argument, NULL, 'N'}, 2029 {"lib", a_argument, NULL, 'N'},
1118 {"gmatch", no_argument, NULL, 'g'}, 2030 {"gmatch", no_argument, NULL, 'g'},
1119 {"textrels", no_argument, NULL, 'T'}, 2031 {"textrels", no_argument, NULL, 'T'},
2032 {"etype", a_argument, NULL, 'E'},
2033 {"bits", a_argument, NULL, 'M'},
2034 {"endian", no_argument, NULL, 'D'},
2035 {"osabi", no_argument, NULL, 'I'},
2036 {"eabi", no_argument, NULL, 'Y'},
2037 {"perms", a_argument, NULL, 'O'},
2038 {"size", no_argument, NULL, 'Z'},
1120 {"all", no_argument, NULL, 'a'}, 2039 {"all", no_argument, NULL, 'a'},
1121 {"quiet", no_argument, NULL, 'q'}, 2040 {"quiet", no_argument, NULL, 'q'},
1122 {"verbose", no_argument, NULL, 'v'}, 2041 {"verbose", no_argument, NULL, 'v'},
1123 {"format", a_argument, NULL, 'F'}, 2042 {"format", a_argument, NULL, 'F'},
1124 {"from", a_argument, NULL, 'f'}, 2043 {"from", a_argument, NULL, 'f'},
1125 {"file", a_argument, NULL, 'o'}, 2044 {"file", a_argument, NULL, 'o'},
2045 {"nocolor", no_argument, NULL, 'C'},
1126 {"nobanner", no_argument, NULL, 'B'}, 2046 {"nobanner", no_argument, NULL, 'B'},
1127 {"help", no_argument, NULL, 'h'}, 2047 {"help", no_argument, NULL, 'h'},
1128 {"version", no_argument, NULL, 'V'}, 2048 {"version", no_argument, NULL, 'V'},
1129 {NULL, no_argument, NULL, 0x0} 2049 {NULL, no_argument, NULL, 0x0}
1130}; 2050};
1131 2051
1132static const char *opts_help[] = { 2052static const char * const opts_help[] = {
1133 "Scan all directories in PATH environment", 2053 "Scan all directories in PATH environment",
1134 "Scan all directories in /etc/ld.so.conf", 2054 "Scan all directories in /etc/ld.so.conf",
2055 "Use ld.so.conf to show full path (use with -r/-n)",
2056 "Root directory (use with -l or -p)",
1135 "Scan directories recursively", 2057 "Scan directories recursively",
1136 "Don't recursively cross mount points", 2058 "Don't recursively cross mount points",
1137 "Don't scan symlinks\n", 2059 "Don't scan symlinks",
2060 "Scan archives (.a files)",
2061 "Utilize ld.so.cache to show full path (use with -r/-n)",
2062 "Try and 'fix' bad things (use with -r/-e)",
2063 "Sets EI_PAX/PT_PAX_FLAGS to <arg> (use with -Xx)\n",
1138 "Print PaX markings", 2064 "Print PaX markings",
1139 "Print GNU_STACK/PT_LOAD markings", 2065 "Print GNU_STACK/PT_LOAD markings",
1140 "Print TEXTREL information", 2066 "Print TEXTREL information",
1141 "Print RPATH information", 2067 "Print RPATH information",
1142 "Print NEEDED information", 2068 "Print NEEDED information",
1143 "Resolve NEEDED information (use with -n)",
1144 "Print INTERP information", 2069 "Print INTERP information",
1145 "Print BIND information", 2070 "Print BIND information",
1146 "Print SONAME information", 2071 "Print SONAME information",
1147 "Find a specified symbol", 2072 "Find a specified symbol",
2073 "Find a specified section",
1148 "Find a specified library", 2074 "Find a specified library",
1149 "Use strncmp to match libraries. (use with -N)", 2075 "Use regex rather than string compare (with -s); specify twice for case insensitive",
1150 "Locate cause of TEXTREL", 2076 "Locate cause of TEXTREL",
1151 "Print all scanned info (-x -e -t -r -b)\n", 2077 "Print only ELF files matching etype ET_DYN,ET_EXEC ...",
2078 "Print only ELF files matching numeric bits",
2079 "Print Endianness",
2080 "Print OSABI",
2081 "Print EABI (EM_ARM Only)",
2082 "Print only ELF files matching octal permissions",
2083 "Print ELF file size",
2084 "Print all useful/simple info\n",
1152 "Only output 'bad' things", 2085 "Only output 'bad' things",
1153 "Be verbose (can be specified more than once)", 2086 "Be verbose (can be specified more than once)",
1154 "Use specified format for output", 2087 "Use specified format for output",
1155 "Read input stream from a filename", 2088 "Read input stream from a filename",
1156 "Write output stream to a filename", 2089 "Write output stream to a filename",
2090 "Don't emit color in output",
1157 "Don't display the header", 2091 "Don't display the header",
1158 "Print this help and exit", 2092 "Print this help and exit",
1159 "Print version and exit", 2093 "Print version and exit",
1160 NULL 2094 NULL
1161}; 2095};
1162 2096
1163/* display usage and exit */ 2097/* display usage and exit */
1164static void usage(int status) 2098static void usage(int status)
1165{ 2099{
1166 unsigned long i; 2100 const char a_arg[] = "<arg>";
2101 size_t a_arg_len = strlen(a_arg) + 2;
2102 size_t i;
2103 int optlen;
1167 printf("* Scan ELF binaries for stuff\n\n" 2104 printf("* Scan ELF binaries for stuff\n\n"
1168 "Usage: %s [options] <dir1/file1> [dir2 dirN fileN ...]\n\n", argv0); 2105 "Usage: %s [options] <dir1/file1> [dir2 dirN file2 fileN ...]\n\n", argv0);
1169 printf("Options: -[%s]\n", PARSE_FLAGS); 2106 printf("Options: -[%s]\n", PARSE_FLAGS);
2107
2108 /* prescan the --long opt length to auto-align */
2109 optlen = 0;
1170 for (i = 0; long_opts[i].name; ++i) 2110 for (i = 0; long_opts[i].name; ++i) {
2111 int l = strlen(long_opts[i].name);
2112 if (long_opts[i].has_arg == a_argument)
2113 l += a_arg_len;
2114 optlen = max(l, optlen);
2115 }
2116
2117 for (i = 0; long_opts[i].name; ++i) {
2118 /* first output the short flag if it has one */
2119 if (long_opts[i].val > '~')
2120 printf(" ");
2121 else
2122 printf(" -%c, ", long_opts[i].val);
2123
2124 /* then the long flag */
1171 if (long_opts[i].has_arg == no_argument) 2125 if (long_opts[i].has_arg == no_argument)
1172 printf(" -%c, --%-13s* %s\n", long_opts[i].val, 2126 printf("--%-*s", optlen, long_opts[i].name);
1173 long_opts[i].name, opts_help[i]);
1174 else 2127 else
1175 printf(" -%c, --%-6s <arg> * %s\n", long_opts[i].val, 2128 printf("--%s %s %*s", long_opts[i].name, a_arg,
1176 long_opts[i].name, opts_help[i]); 2129 (int)(optlen - strlen(long_opts[i].name) - a_arg_len), "");
1177 2130
1178 if (status != EXIT_SUCCESS) 2131 /* finally the help text */
1179 exit(status); 2132 printf("* %s\n", opts_help[i]);
2133 }
1180 2134
1181 puts("\nThe format modifiers for the -F option are:"); 2135 puts("\nFor more information, see the scanelf(1) manpage");
1182 puts(" F Filename \tx PaX Flags \te STACK/RELRO");
1183 puts(" t TEXTREL \tr RPATH \tn NEEDED");
1184 puts(" i INTERP \tb BIND \ts symbol");
1185 puts(" N library \to Type \tT TEXTRELs");
1186 puts(" S SONAME");
1187 puts(" p filename (with search path removed)");
1188 puts(" f filename (short name/basename)");
1189 puts("Prefix each modifier with '%' (verbose) or '#' (silent)");
1190
1191 exit(status); 2136 exit(status);
1192} 2137}
1193 2138
1194/* parse command line arguments and preform needed actions */ 2139/* parse command line arguments and preform needed actions */
2140#define do_pax_state(option, flag) \
2141 if (islower(option)) { \
2142 flags &= ~PF_##flag; \
2143 flags |= PF_NO##flag; \
2144 } else { \
2145 flags &= ~PF_NO##flag; \
2146 flags |= PF_##flag; \
2147 }
2148static void parse_delimited(array_t *arr, char *arg, const char *delim)
2149{
2150 char *ele = strtok(arg, delim);
2151 if (!ele) /* edge case: -s '' */
2152 xarraypush_str(arr, "");
2153 while (ele) {
2154 xarraypush_str(arr, ele);
2155 ele = strtok(NULL, delim);
2156 }
2157}
1195static void parseargs(int argc, char *argv[]) 2158static int parseargs(int argc, char *argv[])
1196{ 2159{
1197 int i; 2160 int i;
1198 char *from_file = NULL; 2161 const char *from_file = NULL;
2162 int ret = 0;
2163 char load_cache_config = 0;
1199 2164
1200 opterr = 0; 2165 opterr = 0;
1201 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) { 2166 while ((i=getopt_long(argc, argv, PARSE_FLAGS, long_opts, NULL)) != -1) {
1202 switch (i) { 2167 switch (i) {
1203 2168
1207 VERSION, __FILE__, __DATE__, rcsid, argv0); 2172 VERSION, __FILE__, __DATE__, rcsid, argv0);
1208 exit(EXIT_SUCCESS); 2173 exit(EXIT_SUCCESS);
1209 break; 2174 break;
1210 case 'h': usage(EXIT_SUCCESS); break; 2175 case 'h': usage(EXIT_SUCCESS); break;
1211 case 'f': 2176 case 'f':
1212 if (from_file) err("Don't specify -f twice"); 2177 if (from_file) warn("You prob don't want to specify -f twice");
1213 from_file = xstrdup(optarg); 2178 from_file = optarg;
2179 break;
2180 case 'E':
2181 /* historically, this was comma delimited */
2182 parse_delimited(match_etypes, optarg, ",");
2183 break;
2184 case 'M':
2185 match_bits = atoi(optarg);
2186 if (match_bits == 0) {
2187 if (strcmp(optarg, "ELFCLASS32") == 0)
2188 match_bits = 32;
2189 if (strcmp(optarg, "ELFCLASS64") == 0)
2190 match_bits = 64;
2191 }
2192 break;
2193 case 'O':
2194 if (sscanf(optarg, "%o", &match_perms) == -1)
2195 match_bits = 0;
1214 break; 2196 break;
1215 case 'o': { 2197 case 'o': {
1216 FILE *fp = NULL;
1217 if ((fp = freopen(optarg, "w", stdout)) == NULL) 2198 if (freopen(optarg, "w", stdout) == NULL)
1218 err("Could not open output stream '%s': %s", optarg, strerror(errno)); 2199 errp("Could not freopen(%s)", optarg);
1219 SET_STDOUT(fp);
1220 break; 2200 break;
1221 } 2201 }
1222
1223 case 's': { 2202 case 'k':
1224 if (find_sym) warn("You prob don't want to specify -s twice"); 2203 xarraypush_str(find_section_arr, optarg);
1225 find_sym = optarg;
1226 versioned_symname = (char*)xmalloc(sizeof(char) * (strlen(find_sym)+1+1));
1227 sprintf(versioned_symname, "%s@", find_sym);
1228 break; 2204 break;
1229 }
1230 case 'N': { 2205 case 's':
1231 if (find_lib) warn("You prob don't want to specify -N twice"); 2206 /* historically, this was comma delimited */
1232 find_lib = optarg; 2207 parse_delimited(find_sym_arr, optarg, ",");
1233 break; 2208 break;
1234 } 2209 case 'N':
1235 2210 xarraypush_str(find_lib_arr, optarg);
2211 break;
1236 case 'F': { 2212 case 'F': {
1237 if (out_format) warn("You prob don't want to specify -F twice"); 2213 if (out_format) warn("You prob don't want to specify -F twice");
1238 out_format = optarg; 2214 out_format = optarg;
1239 break; 2215 break;
1240 } 2216 }
2217 case 'z': {
2218 unsigned long flags = (PF_NOEMUTRAMP | PF_NORANDEXEC);
2219 size_t x;
1241 2220
1242 case 'g': gmatch = 1; /* break; any reason we dont breal; here ? */ 2221 for (x = 0; x < strlen(optarg); x++) {
1243 case 'L': printcache = 1; break; 2222 switch (optarg[x]) {
2223 case 'p':
2224 case 'P':
2225 do_pax_state(optarg[x], PAGEEXEC);
2226 break;
2227 case 's':
2228 case 'S':
2229 do_pax_state(optarg[x], SEGMEXEC);
2230 break;
2231 case 'm':
2232 case 'M':
2233 do_pax_state(optarg[x], MPROTECT);
2234 break;
2235 case 'e':
2236 case 'E':
2237 do_pax_state(optarg[x], EMUTRAMP);
2238 break;
2239 case 'r':
2240 case 'R':
2241 do_pax_state(optarg[x], RANDMMAP);
2242 break;
2243 case 'x':
2244 case 'X':
2245 do_pax_state(optarg[x], RANDEXEC);
2246 break;
2247 default:
2248 break;
2249 }
2250 }
2251 if (!(((flags & PF_PAGEEXEC) && (flags & PF_NOPAGEEXEC)) ||
2252 ((flags & PF_SEGMEXEC) && (flags & PF_NOSEGMEXEC)) ||
2253 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP)) ||
2254 ((flags & PF_RANDEXEC) && (flags & PF_NORANDEXEC)) ||
2255 ((flags & PF_EMUTRAMP) && (flags & PF_NOEMUTRAMP)) ||
2256 ((flags & PF_RANDMMAP) && (flags & PF_NORANDMMAP))))
2257 setpax = flags;
2258 break;
2259 }
2260 case 'Z': show_size = 1; break;
2261 case 'g': ++g_match; break;
2262 case 'L': load_cache_config = use_ldcache = 1; break;
1244 case 'y': scan_symlink = 0; break; 2263 case 'y': scan_symlink = 0; break;
2264 case 'A': scan_archives = 1; break;
2265 case 'C': color_init(true); break;
1245 case 'B': show_banner = 0; break; 2266 case 'B': show_banner = 0; break;
1246 case 'l': scan_ldpath = 1; break; 2267 case 'l': load_cache_config = scan_ldpath = 1; break;
1247 case 'p': scan_envpath = 1; break; 2268 case 'p': scan_envpath = 1; break;
1248 case 'R': dir_recurse = 1; break; 2269 case 'R': dir_recurse = 1; break;
1249 case 'm': dir_crossmount = 0; break; 2270 case 'm': dir_crossmount = 0; break;
2271 case 'X': ++fix_elf; break;
1250 case 'x': show_pax = 1; break; 2272 case 'x': show_pax = 1; break;
1251 case 'e': show_phdr = 1; break; 2273 case 'e': show_phdr = 1; break;
1252 case 't': show_textrel = 1; break; 2274 case 't': show_textrel = 1; break;
1253 case 'r': show_rpath = 1; break; 2275 case 'r': show_rpath = 1; break;
1254 case 'n': show_needed = 1; break; 2276 case 'n': show_needed = 1; break;
1255 case 'i': show_interp = 1; break; 2277 case 'i': show_interp = 1; break;
1256 case 'b': show_bind = 1; break; 2278 case 'b': show_bind = 1; break;
1257 case 'S': show_soname = 1; break; 2279 case 'S': show_soname = 1; break;
1258 case 'T': show_textrels = 1; break; 2280 case 'T': show_textrels = 1; break;
1259 case 'q': be_quiet = 1; break; 2281 case 'q': be_quiet = min(be_quiet, 20) + 1; break;
1260 case 'v': be_verbose = (be_verbose % 20) + 1; break; 2282 case 'v': be_verbose = min(be_verbose, 20) + 1; break;
1261 case 'a': show_pax = show_phdr = show_textrel = show_rpath = show_bind = 1; break; 2283 case 'a': show_perms = show_pax = show_phdr = show_textrel = show_rpath = show_bind = show_endian = 1; break;
1262 2284 case 'D': show_endian = 1; break;
2285 case 'I': show_osabi = 1; break;
2286 case 'Y': show_eabi = 1; break;
2287 case 128:
2288 root_fd = open(optarg, O_RDONLY|O_CLOEXEC);
2289 if (root_fd == -1)
2290 err("Could not open root: %s", optarg);
2291 break;
2292 case 129: load_cache_config = use_ldpath = 1; break;
1263 case ':': 2293 case ':':
1264 err("Option missing parameter\n"); 2294 err("Option '%c' is missing parameter", optopt);
1265 case '?': 2295 case '?':
1266 err("Unknown option\n"); 2296 err("Unknown option '%c' or argument missing", optopt);
1267 default: 2297 default:
1268 err("Unhandled option '%c'", i); 2298 err("Unhandled option '%c'; please report this", i);
1269 } 2299 }
1270 } 2300 }
2301 if (show_textrels && be_verbose)
2302 objdump = which("objdump", "OBJDUMP");
2303 /* precompile all the regexes */
2304 if (g_match) {
2305 regex_t preg;
2306 const char *this_sym;
2307 size_t n;
2308 int flags = REG_EXTENDED | REG_NOSUB | (g_match > 1 ? REG_ICASE : 0);
1271 2309
2310 array_for_each(find_sym_arr, n, this_sym) {
2311 /* see scanelf_match_symname for logic info */
2312 switch (this_sym[0]) {
2313 case '%':
2314 while (*(this_sym++))
2315 if (*this_sym == '%') {
2316 ++this_sym;
2317 break;
2318 }
2319 break;
2320 case '+':
2321 case '-':
2322 ++this_sym;
2323 break;
2324 }
2325 if (*this_sym == '*')
2326 ++this_sym;
2327
2328 ret = regcomp(&preg, this_sym, flags);
2329 if (ret) {
2330 char err[256];
2331 regerror(ret, &preg, err, sizeof(err));
2332 err("regcomp of %s failed: %s", this_sym, err);
2333 }
2334 xarraypush(find_sym_regex_arr, &preg, sizeof(preg));
2335 }
2336 }
2337 /* flatten arrays for display */
2338 find_sym = array_flatten_str(find_sym_arr);
2339 find_lib = array_flatten_str(find_lib_arr);
2340 find_section = array_flatten_str(find_section_arr);
1272 /* let the format option override all other options */ 2341 /* let the format option override all other options */
1273 if (out_format) { 2342 if (out_format) {
1274 show_pax = show_phdr = show_textrel = show_rpath = \ 2343 show_pax = show_phdr = show_textrel = show_rpath = \
1275 show_needed = show_interp = show_bind = show_soname = \ 2344 show_needed = show_interp = show_bind = show_soname = \
1276 show_textrels = 0; 2345 show_textrels = show_perms = show_endian = show_size = \
2346 show_osabi = show_eabi = 0;
1277 for (i = 0; out_format[i]; ++i) { 2347 for (i = 0; out_format[i]; ++i) {
1278 if (!IS_MODIFIER(out_format[i])) continue; 2348 if (!IS_MODIFIER(out_format[i])) continue;
1279 2349
1280 switch (out_format[++i]) { 2350 switch (out_format[++i]) {
2351 case '+': break;
1281 case '%': break; 2352 case '%': break;
1282 case '#': break; 2353 case '#': break;
1283 case 'F': break; 2354 case 'F': break;
1284 case 'p': break; 2355 case 'p': break;
1285 case 'f': break; 2356 case 'f': break;
2357 case 'k': break;
1286 case 's': break; 2358 case 's': break;
1287 case 'N': break; 2359 case 'N': break;
1288 case 'o': break; 2360 case 'o': break;
2361 case 'a': break;
2362 case 'M': break;
2363 case 'Z': show_size = 1; break;
2364 case 'D': show_endian = 1; break;
2365 case 'I': show_osabi = 1; break;
2366 case 'Y': show_eabi = 1; break;
2367 case 'O': show_perms = 1; break;
1289 case 'x': show_pax = 1; break; 2368 case 'x': show_pax = 1; break;
1290 case 'e': show_phdr = 1; break; 2369 case 'e': show_phdr = 1; break;
1291 case 't': show_textrel = 1; break; 2370 case 't': show_textrel = 1; break;
1292 case 'r': show_rpath = 1; break; 2371 case 'r': show_rpath = 1; break;
1293 case 'n': show_needed = 1; break; 2372 case 'n': show_needed = 1; break;
1294 case 'i': show_interp = 1; break; 2373 case 'i': show_interp = 1; break;
1295 case 'b': show_bind = 1; break; 2374 case 'b': show_bind = 1; break;
1296 case 'S': show_soname = 1; break; 2375 case 'S': show_soname = 1; break;
1297 case 'T': show_textrels = 1; break; 2376 case 'T': show_textrels = 1; break;
1298 default: 2377 default:
1299 err("Invalid format specifier '%c' (byte %i)", 2378 err("invalid format specifier '%c' (byte %i)",
1300 out_format[i], i+1); 2379 out_format[i], i+1);
1301 } 2380 }
1302 } 2381 }
1303 2382
1304 /* construct our default format */ 2383 /* construct our default format */
1305 } else { 2384 } else {
1306 size_t fmt_len = 30; 2385 size_t fmt_len = 30;
1307 out_format = (char*)xmalloc(sizeof(char) * fmt_len); 2386 out_format = xmalloc(sizeof(char) * fmt_len);
2387 *out_format = '\0';
1308 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len); 2388 if (!be_quiet) xstrcat(&out_format, "%o ", &fmt_len);
1309 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len); 2389 if (show_pax) xstrcat(&out_format, "%x ", &fmt_len);
2390 if (show_perms) xstrcat(&out_format, "%O ", &fmt_len);
2391 if (show_size) xstrcat(&out_format, "%Z ", &fmt_len);
2392 if (show_endian) xstrcat(&out_format, "%D ", &fmt_len);
2393 if (show_osabi) xstrcat(&out_format, "%I ", &fmt_len);
2394 if (show_eabi) xstrcat(&out_format, "%Y ", &fmt_len);
1310 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len); 2395 if (show_phdr) xstrcat(&out_format, "%e ", &fmt_len);
1311 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len); 2396 if (show_textrel) xstrcat(&out_format, "%t ", &fmt_len);
1312 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len); 2397 if (show_rpath) xstrcat(&out_format, "%r ", &fmt_len);
1313 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len); 2398 if (show_needed) xstrcat(&out_format, "%n ", &fmt_len);
1314 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len); 2399 if (show_interp) xstrcat(&out_format, "%i ", &fmt_len);
1315 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len); 2400 if (show_bind) xstrcat(&out_format, "%b ", &fmt_len);
1316 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len); 2401 if (show_soname) xstrcat(&out_format, "%S ", &fmt_len);
1317 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len); 2402 if (show_textrels) xstrcat(&out_format, "%T ", &fmt_len);
1318 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len); 2403 if (find_sym) xstrcat(&out_format, "%s ", &fmt_len);
2404 if (find_section) xstrcat(&out_format, "%k ", &fmt_len);
1319 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len); 2405 if (find_lib) xstrcat(&out_format, "%N ", &fmt_len);
1320 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len); 2406 if (!be_quiet) xstrcat(&out_format, "%F ", &fmt_len);
1321 } 2407 }
1322 if (be_verbose > 2) printf("Format: %s\n", out_format); 2408 if (be_verbose > 2) printf("Format: %s\n", out_format);
1323 2409
1324 /* now lets actually do the scanning */ 2410 /* now lets actually do the scanning */
1325 if (scan_ldpath || (show_rpath && be_quiet)) 2411 if (load_cache_config)
1326 load_ld_so_conf(); 2412 load_ld_cache_config(__PAX_UTILS_DEFAULT_LD_CACHE_CONFIG);
1327 if (scan_ldpath) scanelf_ldpath(); 2413 if (scan_ldpath) scanelf_ldpath();
1328 if (scan_envpath) scanelf_envpath(); 2414 if (scan_envpath) scanelf_envpath();
2415 if (!from_file && optind == argc && ttyname(0) == NULL && !scan_ldpath && !scan_envpath)
2416 from_file = "-";
1329 if (from_file) { 2417 if (from_file) {
1330 scanelf_from_file(from_file); 2418 scanelf_from_file(from_file);
1331 free(from_file);
1332 from_file = *argv; 2419 from_file = *argv;
1333 } 2420 }
1334 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file) 2421 if (optind == argc && !scan_ldpath && !scan_envpath && !from_file)
1335 err("Nothing to scan !?"); 2422 err("Nothing to scan !?");
1336 while (optind < argc) { 2423 while (optind < argc) {
1337 search_path = argv[optind++]; 2424 search_path = argv[optind++];
1338 scanelf_dir(search_path); 2425 ret = scanelf_dir(search_path);
1339 } 2426 }
1340 2427
2428#ifdef __PAX_UTILS_CLEANUP
1341 /* clean up */ 2429 /* clean up */
1342 if (versioned_symname) free(versioned_symname);
1343 for (i = 0; ldpaths[i]; ++i)
1344 free(ldpaths[i]); 2430 xarrayfree(ldpaths);
2431 xarrayfree(find_sym_arr);
2432 xarrayfree(find_lib_arr);
2433 xarrayfree(find_section_arr);
2434 free(find_sym);
2435 free(find_lib);
2436 free(find_section);
2437 {
2438 size_t n;
2439 regex_t *preg;
2440 array_for_each(find_sym_regex_arr, n, preg)
2441 regfree(preg);
2442 xarrayfree(find_sym_regex_arr);
2443 }
1345 2444
1346 if (ldcache != 0) 2445 if (ldcache != 0)
1347 munmap(ldcache, ldcache_size); 2446 munmap(ldcache, ldcache_size);
1348} 2447#endif
1349 2448
1350
1351
1352/* utility funcs */
1353static char *xstrdup(const char *s)
1354{
1355 char *ret = strdup(s);
1356 if (!ret) err("Could not strdup(): %s", strerror(errno));
1357 return ret; 2449 return ret;
1358} 2450}
1359static void *xmalloc(size_t size)
1360{
1361 void *ret = malloc(size);
1362 if (!ret) err("Could not malloc() %li bytes", (unsigned long)size);
1363 return ret;
1364}
1365static void xstrncat(char **dst, const char *src, size_t *curr_len, size_t n)
1366{
1367 size_t new_len;
1368 2451
1369 new_len = strlen(*dst) + strlen(src); 2452static char **get_split_env(const char *envvar)
1370 if (*curr_len <= new_len) {
1371 *curr_len = new_len + (*curr_len / 2);
1372 *dst = realloc(*dst, *curr_len);
1373 if (!*dst)
1374 err("could not realloc() %li bytes", (unsigned long)*curr_len);
1375 }
1376
1377 if (n)
1378 strncat(*dst, src, n);
1379 else
1380 strcat(*dst, src);
1381}
1382static inline void xchrcat(char **dst, const char append, size_t *curr_len)
1383{ 2453{
1384 static char my_app[2]; 2454 const char *delims = " \t\n";
1385 my_app[0] = append; 2455 char **envvals = NULL;
1386 my_app[1] = '\0'; 2456 char *env, *s;
1387 xstrcat(dst, my_app, curr_len); 2457 int nentry;
1388}
1389 2458
2459 if ((env = getenv(envvar)) == NULL)
2460 return NULL;
1390 2461
2462 env = xstrdup(env);
2463 if (env == NULL)
2464 return NULL;
2465
2466 s = strtok(env, delims);
2467 if (s == NULL) {
2468 free(env);
2469 return NULL;
2470 }
2471
2472 nentry = 0;
2473 while (s != NULL) {
2474 ++nentry;
2475 envvals = xrealloc(envvals, sizeof(*envvals) * (nentry+1));
2476 envvals[nentry-1] = s;
2477 s = strtok(NULL, delims);
2478 }
2479 envvals[nentry] = NULL;
2480
2481 /* don't want to free(env) as it contains the memory that backs
2482 * the envvals array of strings */
2483 return envvals;
2484}
2485
2486static void parseenv(void)
2487{
2488 color_init(false);
2489 qa_textrels = get_split_env("QA_TEXTRELS");
2490 qa_execstack = get_split_env("QA_EXECSTACK");
2491 qa_wx_load = get_split_env("QA_WX_LOAD");
2492}
2493
2494#ifdef __PAX_UTILS_CLEANUP
2495static void cleanup(void)
2496{
2497 free(out_format);
2498 free(qa_textrels);
2499 free(qa_execstack);
2500 free(qa_wx_load);
2501}
2502#endif
1391 2503
1392int main(int argc, char *argv[]) 2504int main(int argc, char *argv[])
1393{ 2505{
2506 int ret;
1394 if (argc < 2) 2507 if (argc < 2)
1395 usage(EXIT_FAILURE); 2508 usage(EXIT_FAILURE);
2509 parseenv();
1396 parseargs(argc, argv); 2510 ret = parseargs(argc, argv);
1397 fclose(stdout); 2511 fclose(stdout);
1398#ifdef __BOUNDS_CHECKING_ON 2512#ifdef __PAX_UTILS_CLEANUP
1399 warn("The calls to add/delete heap should be off by 1 due to the out_buffer not being freed in scanelf_file()"); 2513 cleanup();
2514 warn("The calls to add/delete heap should be off:\n"
2515 "\t- 1 due to the out_buffer not being freed in scanelf_fileat()\n"
2516 "\t- 1 per QA_TEXTRELS/QA_EXECSTACK/QA_WX_LOAD");
1400#endif 2517#endif
1401 return EXIT_SUCCESS; 2518 return ret;
1402} 2519}
2520
2521/* Match filename against entries in matchlist, return TRUE
2522 * if the file is listed */
2523static int file_matches_list(const char *filename, char **matchlist)
2524{
2525 char **file;
2526 char *match;
2527 char buf[__PAX_UTILS_PATH_MAX];
2528
2529 if (matchlist == NULL)
2530 return 0;
2531
2532 for (file = matchlist; *file != NULL; file++) {
2533 if (search_path) {
2534 snprintf(buf, sizeof(buf), "%s%s", search_path, *file);
2535 match = buf;
2536 } else {
2537 match = *file;
2538 }
2539 if (fnmatch(match, filename, 0) == 0)
2540 return 1;
2541 }
2542 return 0;
2543}

Legend:
Removed from v.1.96  
changed lines
  Added in v.1.267

  ViewVC Help
Powered by ViewVC 1.1.20