xref: /freebsd/lib/libproc/proc_sym.c (revision 404087cc0671cd5fd78331de4a67a721800385a0)
12c633af4SJohn Birrell /*-
28eb20f36SRui Paulo  * Copyright (c) 2010 The FreeBSD Foundation
32c633af4SJohn Birrell  * Copyright (c) 2008 John Birrell (jb@freebsd.org)
42c633af4SJohn Birrell  * All rights reserved.
52c633af4SJohn Birrell  *
68eb20f36SRui Paulo  * Portions of this software were developed by Rui Paulo under sponsorship
78eb20f36SRui Paulo  * from the FreeBSD Foundation.
88eb20f36SRui Paulo  *
92c633af4SJohn Birrell  * Redistribution and use in source and binary forms, with or without
102c633af4SJohn Birrell  * modification, are permitted provided that the following conditions
112c633af4SJohn Birrell  * are met:
122c633af4SJohn Birrell  * 1. Redistributions of source code must retain the above copyright
132c633af4SJohn Birrell  *    notice, this list of conditions and the following disclaimer.
142c633af4SJohn Birrell  * 2. Redistributions in binary form must reproduce the above copyright
152c633af4SJohn Birrell  *    notice, this list of conditions and the following disclaimer in the
162c633af4SJohn Birrell  *    documentation and/or other materials provided with the distribution.
172c633af4SJohn Birrell  *
182c633af4SJohn Birrell  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
192c633af4SJohn Birrell  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
202c633af4SJohn Birrell  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
212c633af4SJohn Birrell  * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
222c633af4SJohn Birrell  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
232c633af4SJohn Birrell  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
242c633af4SJohn Birrell  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
252c633af4SJohn Birrell  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
262c633af4SJohn Birrell  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
272c633af4SJohn Birrell  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
282c633af4SJohn Birrell  * SUCH DAMAGE.
292c633af4SJohn Birrell  *
302c633af4SJohn Birrell  * $FreeBSD$
312c633af4SJohn Birrell  */
322c633af4SJohn Birrell 
338eb20f36SRui Paulo #include <sys/types.h>
348eb20f36SRui Paulo #include <sys/user.h>
358eb20f36SRui Paulo 
368eb20f36SRui Paulo #include <assert.h>
378eb20f36SRui Paulo #include <err.h>
382c633af4SJohn Birrell #include <stdio.h>
398eb20f36SRui Paulo #include <libgen.h>
408eb20f36SRui Paulo #include <string.h>
418eb20f36SRui Paulo #include <stdlib.h>
428eb20f36SRui Paulo #include <fcntl.h>
438eb20f36SRui Paulo #include <string.h>
448eb20f36SRui Paulo #include <unistd.h>
458eb20f36SRui Paulo #include <libutil.h>
468eb20f36SRui Paulo 
478eb20f36SRui Paulo #include "_libproc.h"
488eb20f36SRui Paulo 
49cd906041SRui Paulo extern char *__cxa_demangle(const char *, char *, size_t *, int *);
50cd906041SRui Paulo 
518eb20f36SRui Paulo static void	proc_rdl2prmap(rd_loadobj_t *, prmap_t *);
528eb20f36SRui Paulo 
538eb20f36SRui Paulo static void
54*404087ccSRui Paulo demangle(const char *symbol, char *buf, size_t len)
55*404087ccSRui Paulo {
56*404087ccSRui Paulo 	char *dembuf;
57*404087ccSRui Paulo 	size_t demlen = len;
58*404087ccSRui Paulo 
59*404087ccSRui Paulo 	dembuf = malloc(len);
60*404087ccSRui Paulo 	if (!dembuf)
61*404087ccSRui Paulo 		goto fail;
62*404087ccSRui Paulo 	dembuf = __cxa_demangle(symbol, dembuf, &demlen, NULL);
63*404087ccSRui Paulo 	if (!dembuf)
64*404087ccSRui Paulo 		goto fail;
65*404087ccSRui Paulo 	strlcpy(buf, dembuf, len);
66*404087ccSRui Paulo 	free(dembuf);
67*404087ccSRui Paulo 
68*404087ccSRui Paulo 	return;
69*404087ccSRui Paulo fail:
70*404087ccSRui Paulo 	strlcpy(buf, symbol, len);
71*404087ccSRui Paulo }
72*404087ccSRui Paulo 
73*404087ccSRui Paulo static void
748eb20f36SRui Paulo proc_rdl2prmap(rd_loadobj_t *rdl, prmap_t *map)
758eb20f36SRui Paulo {
768eb20f36SRui Paulo 	map->pr_vaddr = rdl->rdl_saddr;
778eb20f36SRui Paulo 	map->pr_size = rdl->rdl_eaddr - rdl->rdl_saddr;
788eb20f36SRui Paulo 	map->pr_offset = rdl->rdl_offset;
798eb20f36SRui Paulo 	map->pr_mflags = 0;
808eb20f36SRui Paulo 	if (rdl->rdl_prot & RD_RDL_R)
818eb20f36SRui Paulo 		map->pr_mflags |= MA_READ;
828eb20f36SRui Paulo 	if (rdl->rdl_prot & RD_RDL_W)
838eb20f36SRui Paulo 		map->pr_mflags |= MA_WRITE;
848eb20f36SRui Paulo 	if (rdl->rdl_prot & RD_RDL_X)
858eb20f36SRui Paulo 		map->pr_mflags |= MA_EXEC;
868eb20f36SRui Paulo 	strlcpy(map->pr_mapname, rdl->rdl_path,
878eb20f36SRui Paulo 	    sizeof(map->pr_mapname));
888eb20f36SRui Paulo }
892c633af4SJohn Birrell 
902c633af4SJohn Birrell char *
912c633af4SJohn Birrell proc_objname(struct proc_handle *p, uintptr_t addr, char *objname,
922c633af4SJohn Birrell     size_t objnamesz)
932c633af4SJohn Birrell {
948eb20f36SRui Paulo 	size_t i;
958eb20f36SRui Paulo 	rd_loadobj_t *rdl;
968eb20f36SRui Paulo 
978eb20f36SRui Paulo 	for (i = 0; i < p->nobjs; i++) {
988eb20f36SRui Paulo 		rdl = &p->rdobjs[i];
998eb20f36SRui Paulo 		if (addr >= rdl->rdl_saddr && addr <= rdl->rdl_eaddr) {
1008eb20f36SRui Paulo 			strlcpy(objname, rdl->rdl_path, objnamesz);
1018eb20f36SRui Paulo 			return (objname);
1028eb20f36SRui Paulo 		}
1038eb20f36SRui Paulo 	}
1042c633af4SJohn Birrell 	return (NULL);
1052c633af4SJohn Birrell }
1062c633af4SJohn Birrell 
1078eb20f36SRui Paulo prmap_t *
1088eb20f36SRui Paulo proc_obj2map(struct proc_handle *p, const char *objname)
1098eb20f36SRui Paulo {
1108eb20f36SRui Paulo 	size_t i;
1118eb20f36SRui Paulo 	prmap_t *map;
1128eb20f36SRui Paulo 	rd_loadobj_t *rdl;
1138eb20f36SRui Paulo 	char path[MAXPATHLEN];
1148eb20f36SRui Paulo 
1158eb20f36SRui Paulo 	for (i = 0; i < p->nobjs; i++) {
1168eb20f36SRui Paulo 		rdl = &p->rdobjs[i];
1178eb20f36SRui Paulo 		basename_r(rdl->rdl_path, path);
1188eb20f36SRui Paulo 		if (strcmp(path, objname) == 0) {
1198eb20f36SRui Paulo 			if ((map = malloc(sizeof(*map))) == NULL)
1208eb20f36SRui Paulo 				return (NULL);
1218eb20f36SRui Paulo 			proc_rdl2prmap(rdl, map);
1228eb20f36SRui Paulo 			return (map);
1238eb20f36SRui Paulo 		}
1248eb20f36SRui Paulo 	}
1258eb20f36SRui Paulo 	return (NULL);
1268eb20f36SRui Paulo }
1278eb20f36SRui Paulo 
1288eb20f36SRui Paulo int
1298eb20f36SRui Paulo proc_iter_objs(struct proc_handle *p, proc_map_f *func, void *cd)
1308eb20f36SRui Paulo {
1318eb20f36SRui Paulo 	size_t i;
1328eb20f36SRui Paulo 	rd_loadobj_t *rdl;
1338eb20f36SRui Paulo 	prmap_t map;
1348eb20f36SRui Paulo 	char path[MAXPATHLEN];
1354c74b245SRui Paulo 	char last[MAXPATHLEN];
1368eb20f36SRui Paulo 
1378eb20f36SRui Paulo 	if (p->nobjs == 0)
1388eb20f36SRui Paulo 		return (-1);
1394c74b245SRui Paulo 	memset(last, 0, sizeof(last));
1408eb20f36SRui Paulo 	for (i = 0; i < p->nobjs; i++) {
1418eb20f36SRui Paulo 		rdl = &p->rdobjs[i];
1428eb20f36SRui Paulo 		proc_rdl2prmap(rdl, &map);
1438eb20f36SRui Paulo 		basename_r(rdl->rdl_path, path);
1444c74b245SRui Paulo 		/*
1454c74b245SRui Paulo 		 * We shouldn't call the callback twice with the same object.
1464c74b245SRui Paulo 		 * To do that we are assuming the fact that if there are
1474c74b245SRui Paulo 		 * repeated object names (i.e. different mappings for the
1484c74b245SRui Paulo 		 * same object) they occur next to each other.
1494c74b245SRui Paulo 		 */
1504c74b245SRui Paulo 		if (strcmp(path, last) == 0)
1514c74b245SRui Paulo 			continue;
1528eb20f36SRui Paulo 		(*func)(cd, &map, path);
1534c74b245SRui Paulo 		strlcpy(last, path, sizeof(last));
1548eb20f36SRui Paulo 	}
1558eb20f36SRui Paulo 
1568eb20f36SRui Paulo 	return (0);
1578eb20f36SRui Paulo }
1588eb20f36SRui Paulo 
1598eb20f36SRui Paulo prmap_t *
1602c633af4SJohn Birrell proc_addr2map(struct proc_handle *p, uintptr_t addr)
1612c633af4SJohn Birrell {
1628eb20f36SRui Paulo 	size_t i;
1638eb20f36SRui Paulo 	int cnt, lastvn = 0;
1648eb20f36SRui Paulo 	prmap_t *map;
1658eb20f36SRui Paulo 	rd_loadobj_t *rdl;
1668eb20f36SRui Paulo 	struct kinfo_vmentry *kves, *kve;
1678eb20f36SRui Paulo 
1688eb20f36SRui Paulo 	/*
1698eb20f36SRui Paulo 	 * If we don't have a cache of listed objects, we need to query
1708eb20f36SRui Paulo 	 * it ourselves.
1718eb20f36SRui Paulo 	 */
1728eb20f36SRui Paulo 	if (p->nobjs == 0) {
1738eb20f36SRui Paulo 		if ((kves = kinfo_getvmmap(p->pid, &cnt)) == NULL)
1748eb20f36SRui Paulo 			return (NULL);
1758eb20f36SRui Paulo 		for (i = 0; i < (size_t)cnt; i++) {
1768eb20f36SRui Paulo 			kve = kves + i;
1778eb20f36SRui Paulo 			if (kve->kve_type == KVME_TYPE_VNODE)
1788eb20f36SRui Paulo 				lastvn = i;
1798eb20f36SRui Paulo 			if (addr >= kve->kve_start && addr <= kve->kve_end) {
1808eb20f36SRui Paulo 				if ((map = malloc(sizeof(*map))) == NULL) {
1818eb20f36SRui Paulo 					free(kves);
1828eb20f36SRui Paulo 					return (NULL);
1838eb20f36SRui Paulo 				}
1848eb20f36SRui Paulo 				map->pr_vaddr = kve->kve_start;
1858eb20f36SRui Paulo 				map->pr_size = kve->kve_end - kve->kve_start;
1868eb20f36SRui Paulo 				map->pr_offset = kve->kve_offset;
1878eb20f36SRui Paulo 				map->pr_mflags = 0;
1888eb20f36SRui Paulo 				if (kve->kve_protection & KVME_PROT_READ)
1898eb20f36SRui Paulo 					map->pr_mflags |= MA_READ;
1908eb20f36SRui Paulo 				if (kve->kve_protection & KVME_PROT_WRITE)
1918eb20f36SRui Paulo 					map->pr_mflags |= MA_WRITE;
1928eb20f36SRui Paulo 				if (kve->kve_protection & KVME_PROT_EXEC)
1938eb20f36SRui Paulo 					map->pr_mflags |= MA_EXEC;
1948eb20f36SRui Paulo 				if (kve->kve_flags & KVME_FLAG_COW)
1958eb20f36SRui Paulo 					map->pr_mflags |= MA_COW;
1968eb20f36SRui Paulo 				if (kve->kve_flags & KVME_FLAG_NEEDS_COPY)
1978eb20f36SRui Paulo 					map->pr_mflags |= MA_NEEDS_COPY;
1988eb20f36SRui Paulo 				if (kve->kve_flags & KVME_FLAG_NOCOREDUMP)
1998eb20f36SRui Paulo 					map->pr_mflags |= MA_NOCOREDUMP;
2008eb20f36SRui Paulo 				strlcpy(map->pr_mapname, kves[lastvn].kve_path,
2018eb20f36SRui Paulo 				    sizeof(map->pr_mapname));
2028eb20f36SRui Paulo 				free(kves);
2038eb20f36SRui Paulo 				return (map);
2048eb20f36SRui Paulo 			}
2058eb20f36SRui Paulo 		}
2068eb20f36SRui Paulo 		free(kves);
2078eb20f36SRui Paulo 		return (NULL);
2088eb20f36SRui Paulo 	}
2098eb20f36SRui Paulo 
2108eb20f36SRui Paulo 	for (i = 0; i < p->nobjs; i++) {
2118eb20f36SRui Paulo 		rdl = &p->rdobjs[i];
2128eb20f36SRui Paulo 		if (addr >= rdl->rdl_saddr && addr <= rdl->rdl_eaddr) {
2138eb20f36SRui Paulo 			if ((map = malloc(sizeof(*map))) == NULL)
2148eb20f36SRui Paulo 				return (NULL);
2158eb20f36SRui Paulo 			proc_rdl2prmap(rdl, map);
2168eb20f36SRui Paulo 			return (map);
2178eb20f36SRui Paulo 		}
2188eb20f36SRui Paulo 	}
2192c633af4SJohn Birrell 	return (NULL);
2202c633af4SJohn Birrell }
2212c633af4SJohn Birrell 
2222c633af4SJohn Birrell int
2232c633af4SJohn Birrell proc_addr2sym(struct proc_handle *p, uintptr_t addr, char *name,
2248eb20f36SRui Paulo     size_t namesz, GElf_Sym *symcopy)
2252c633af4SJohn Birrell {
2268eb20f36SRui Paulo 	Elf *e;
2278eb20f36SRui Paulo 	Elf_Scn *scn, *dynsymscn = NULL, *symtabscn = NULL;
2288eb20f36SRui Paulo 	Elf_Data *data;
2298eb20f36SRui Paulo 	GElf_Shdr shdr;
2308eb20f36SRui Paulo 	GElf_Sym sym;
2318eb20f36SRui Paulo 	GElf_Ehdr ehdr;
2328eb20f36SRui Paulo 	int fd, error = -1;
2338eb20f36SRui Paulo 	size_t i;
2348eb20f36SRui Paulo 	uint64_t rsym;
2358eb20f36SRui Paulo 	prmap_t *map;
2368eb20f36SRui Paulo 	char *s;
2378eb20f36SRui Paulo 	unsigned long symtabstridx = 0, dynsymstridx = 0;
2388eb20f36SRui Paulo 
2398eb20f36SRui Paulo 	if ((map = proc_addr2map(p, addr)) == NULL)
2408eb20f36SRui Paulo 		return (-1);
2418eb20f36SRui Paulo 	if (!map->pr_mapname || (fd = open(map->pr_mapname, O_RDONLY, 0)) < 0) {
2428eb20f36SRui Paulo 		warn("ERROR: open %s failed", map->pr_mapname);
2438eb20f36SRui Paulo 		goto err0;
2448eb20f36SRui Paulo 	}
2458eb20f36SRui Paulo 	if ((e = elf_begin(fd, ELF_C_READ, NULL)) == NULL) {
2468eb20f36SRui Paulo 		warn("ERROR: elf_begin() failed");
2478eb20f36SRui Paulo 		goto err1;
2488eb20f36SRui Paulo 	}
2498eb20f36SRui Paulo 	if (gelf_getehdr(e, &ehdr) == NULL) {
2508eb20f36SRui Paulo 		warn("ERROR: gelf_getehdr() failed");
2518eb20f36SRui Paulo 		goto err2;
2528eb20f36SRui Paulo 	}
2538eb20f36SRui Paulo 	/*
2548eb20f36SRui Paulo 	 * Find the index of the STRTAB and SYMTAB sections to locate
2558eb20f36SRui Paulo 	 * symbol names.
2568eb20f36SRui Paulo 	 */
2578eb20f36SRui Paulo 	scn = NULL;
2588eb20f36SRui Paulo 	while ((scn = elf_nextscn(e, scn)) != NULL) {
2598eb20f36SRui Paulo 		gelf_getshdr(scn, &shdr);
2608eb20f36SRui Paulo 		switch (shdr.sh_type) {
2618eb20f36SRui Paulo 		case SHT_SYMTAB:
2628eb20f36SRui Paulo 			symtabscn = scn;
2638eb20f36SRui Paulo 			symtabstridx = shdr.sh_link;
2648eb20f36SRui Paulo 			break;
2658eb20f36SRui Paulo 		case SHT_DYNSYM:
2668eb20f36SRui Paulo 			dynsymscn = scn;
2678eb20f36SRui Paulo 			dynsymstridx = shdr.sh_link;
2688eb20f36SRui Paulo 			break;
2698eb20f36SRui Paulo 		default:
2708eb20f36SRui Paulo 			break;
2718eb20f36SRui Paulo 		}
2728eb20f36SRui Paulo 	}
2738eb20f36SRui Paulo 	/*
2748eb20f36SRui Paulo 	 * Iterate over the Dynamic Symbols table to find the symbol.
2758eb20f36SRui Paulo 	 * Then look up the string name in STRTAB (.dynstr)
2768eb20f36SRui Paulo 	 */
2778eb20f36SRui Paulo 	if ((data = elf_getdata(dynsymscn, NULL)) == NULL) {
2788eb20f36SRui Paulo 		DPRINTF("ERROR: elf_getdata() failed");
27919a75affSRui Paulo 		goto symtab;
2808eb20f36SRui Paulo 	}
2818eb20f36SRui Paulo 	i = 0;
2828eb20f36SRui Paulo 	while (gelf_getsym(data, i++, &sym) != NULL) {
2838eb20f36SRui Paulo 		/*
2848eb20f36SRui Paulo 		 * Calculate the address mapped to the virtual memory
2858eb20f36SRui Paulo 		 * by rtld.
2868eb20f36SRui Paulo 		 */
2878eb20f36SRui Paulo 		rsym = map->pr_vaddr + sym.st_value;
2888eb20f36SRui Paulo 		if (addr >= rsym && addr <= (rsym + sym.st_size)) {
2898eb20f36SRui Paulo 			s = elf_strptr(e, dynsymstridx, sym.st_name);
2908eb20f36SRui Paulo 			if (s) {
291*404087ccSRui Paulo 				if (s[0] == '_' && s[1] == 'Z' && s[2])
292*404087ccSRui Paulo 					demangle(s, name, namesz);
293cd906041SRui Paulo 				else
2948eb20f36SRui Paulo 					strlcpy(name, s, namesz);
2958eb20f36SRui Paulo 				memcpy(symcopy, &sym, sizeof(sym));
2968eb20f36SRui Paulo 				/*
2978eb20f36SRui Paulo 				 * DTrace expects the st_value to contain
2988eb20f36SRui Paulo 				 * only the address relative to the start of
2998eb20f36SRui Paulo 				 * the function.
3008eb20f36SRui Paulo 				 */
3018eb20f36SRui Paulo 				symcopy->st_value = rsym;
3028eb20f36SRui Paulo 				goto out;
3038eb20f36SRui Paulo 			}
3048eb20f36SRui Paulo 		}
3058eb20f36SRui Paulo 	}
30619a75affSRui Paulo symtab:
3078eb20f36SRui Paulo 	/*
3088eb20f36SRui Paulo 	 * Iterate over the Symbols Table to find the symbol.
3098eb20f36SRui Paulo 	 * Then look up the string name in STRTAB (.dynstr)
3108eb20f36SRui Paulo 	 */
3118eb20f36SRui Paulo 	if (symtabscn == NULL)
3128eb20f36SRui Paulo 		goto err2;
3138eb20f36SRui Paulo 	if ((data = elf_getdata(symtabscn, NULL)) == NULL) {
3148eb20f36SRui Paulo 		DPRINTF("ERROR: elf_getdata() failed");
3158eb20f36SRui Paulo 		goto err2;
3168eb20f36SRui Paulo 	}
3178eb20f36SRui Paulo 	i = 0;
3188eb20f36SRui Paulo 	while (gelf_getsym(data, i++, &sym) != NULL) {
3198eb20f36SRui Paulo 		/*
3208eb20f36SRui Paulo 		 * Calculate the address mapped to the virtual memory
3218eb20f36SRui Paulo 		 * by rtld.
3228eb20f36SRui Paulo 		 */
3238eb20f36SRui Paulo 		if (ehdr.e_type != ET_EXEC)
3248eb20f36SRui Paulo 			rsym = map->pr_vaddr + sym.st_value;
3258eb20f36SRui Paulo 		else
3268eb20f36SRui Paulo 			rsym = sym.st_value;
3278eb20f36SRui Paulo 		if (addr >= rsym && addr <= (rsym + sym.st_size)) {
3288eb20f36SRui Paulo 			s = elf_strptr(e, symtabstridx, sym.st_name);
3298eb20f36SRui Paulo 			if (s) {
330*404087ccSRui Paulo 				if (s[0] == '_' && s[1] == 'Z' && s[2])
331*404087ccSRui Paulo 					demangle(s, name, namesz);
332cd906041SRui Paulo 				else
3338eb20f36SRui Paulo 					strlcpy(name, s, namesz);
3348eb20f36SRui Paulo 				memcpy(symcopy, &sym, sizeof(sym));
3358eb20f36SRui Paulo 				/*
3368eb20f36SRui Paulo 				 * DTrace expects the st_value to contain
3378eb20f36SRui Paulo 				 * only the address relative to the start of
3388eb20f36SRui Paulo 				 * the function.
3398eb20f36SRui Paulo 				 */
3408eb20f36SRui Paulo 				symcopy->st_value = rsym;
3418eb20f36SRui Paulo 				error = 0;
3428eb20f36SRui Paulo 				goto out;
3438eb20f36SRui Paulo 			}
3448eb20f36SRui Paulo 		}
3458eb20f36SRui Paulo 	}
3468eb20f36SRui Paulo out:
3478eb20f36SRui Paulo err2:
3488eb20f36SRui Paulo 	elf_end(e);
3498eb20f36SRui Paulo err1:
3508eb20f36SRui Paulo 	close(fd);
3518eb20f36SRui Paulo err0:
3528eb20f36SRui Paulo 	free(map);
3538eb20f36SRui Paulo 	return (error);
3542c633af4SJohn Birrell }
3552c633af4SJohn Birrell 
3568eb20f36SRui Paulo prmap_t *
3572c633af4SJohn Birrell proc_name2map(struct proc_handle *p, const char *name)
3582c633af4SJohn Birrell {
3598eb20f36SRui Paulo 	size_t i;
3608eb20f36SRui Paulo 	int cnt;
3618eb20f36SRui Paulo 	prmap_t *map;
3628eb20f36SRui Paulo 	char tmppath[MAXPATHLEN];
3638eb20f36SRui Paulo 	struct kinfo_vmentry *kves, *kve;
3648eb20f36SRui Paulo 	rd_loadobj_t *rdl;
3658eb20f36SRui Paulo 
3668eb20f36SRui Paulo 	/*
3678eb20f36SRui Paulo 	 * If we haven't iterated over the list of loaded objects,
3688eb20f36SRui Paulo 	 * librtld_db isn't yet initialized and it's very likely
3698eb20f36SRui Paulo 	 * that librtld_db called us. We need to do the heavy
3708eb20f36SRui Paulo 	 * lifting here to find the symbol librtld_db is looking for.
3718eb20f36SRui Paulo 	 */
3728eb20f36SRui Paulo 	if (p->nobjs == 0) {
3738eb20f36SRui Paulo 		if ((kves = kinfo_getvmmap(proc_getpid(p), &cnt)) == NULL)
3748eb20f36SRui Paulo 			return (NULL);
3758eb20f36SRui Paulo 		for (i = 0; i < (size_t)cnt; i++) {
3768eb20f36SRui Paulo 			kve = kves + i;
3778eb20f36SRui Paulo 			basename_r(kve->kve_path, tmppath);
3788eb20f36SRui Paulo 			if (strcmp(tmppath, name) == 0) {
3798eb20f36SRui Paulo 				map = proc_addr2map(p, kve->kve_start);
3808eb20f36SRui Paulo 				free(kves);
3818eb20f36SRui Paulo 				return (map);
3828eb20f36SRui Paulo 			}
3838eb20f36SRui Paulo 		}
3848eb20f36SRui Paulo 		free(kves);
3858eb20f36SRui Paulo 		return (NULL);
3868eb20f36SRui Paulo 	}
3878eb20f36SRui Paulo 	if (name == NULL || strcmp(name, "a.out") == 0) {
3888eb20f36SRui Paulo 		map = proc_addr2map(p, p->rdobjs[0].rdl_saddr);
3898eb20f36SRui Paulo 		return (map);
3908eb20f36SRui Paulo 	}
3918eb20f36SRui Paulo 	for (i = 0; i < p->nobjs; i++) {
3928eb20f36SRui Paulo 		rdl = &p->rdobjs[i];
3938eb20f36SRui Paulo 		basename_r(rdl->rdl_path, tmppath);
3948eb20f36SRui Paulo 		if (strcmp(tmppath, name) == 0) {
3958eb20f36SRui Paulo 			if ((map = malloc(sizeof(*map))) == NULL)
3968eb20f36SRui Paulo 				return (NULL);
3978eb20f36SRui Paulo 			proc_rdl2prmap(rdl, map);
3988eb20f36SRui Paulo 			return (map);
3998eb20f36SRui Paulo 		}
4008eb20f36SRui Paulo 	}
4018eb20f36SRui Paulo 
4022c633af4SJohn Birrell 	return (NULL);
4032c633af4SJohn Birrell }
4042c633af4SJohn Birrell 
4052c633af4SJohn Birrell int
4062c633af4SJohn Birrell proc_name2sym(struct proc_handle *p, const char *object, const char *symbol,
4078eb20f36SRui Paulo     GElf_Sym *symcopy)
4082c633af4SJohn Birrell {
4098eb20f36SRui Paulo 	Elf *e;
4108eb20f36SRui Paulo 	Elf_Scn *scn, *dynsymscn = NULL, *symtabscn = NULL;
4118eb20f36SRui Paulo 	Elf_Data *data;
4128eb20f36SRui Paulo 	GElf_Shdr shdr;
4138eb20f36SRui Paulo 	GElf_Sym sym;
4148eb20f36SRui Paulo 	GElf_Ehdr ehdr;
4158eb20f36SRui Paulo 	int fd, error = -1;
4168eb20f36SRui Paulo 	size_t i;
4178eb20f36SRui Paulo 	prmap_t *map;
4188eb20f36SRui Paulo 	char *s;
4198eb20f36SRui Paulo 	unsigned long symtabstridx = 0, dynsymstridx = 0;
4208eb20f36SRui Paulo 
4218eb20f36SRui Paulo 	if ((map = proc_name2map(p, object)) == NULL) {
4228eb20f36SRui Paulo 		DPRINTF("ERROR: couldn't find object %s", object);
4238eb20f36SRui Paulo 		goto err0;
4248eb20f36SRui Paulo 	}
4258eb20f36SRui Paulo 	if ((fd = open(map->pr_mapname, O_RDONLY, 0)) < 0) {
4268eb20f36SRui Paulo 		DPRINTF("ERROR: open %s failed", map->pr_mapname);
4278eb20f36SRui Paulo 		goto err0;
4288eb20f36SRui Paulo 	}
4298eb20f36SRui Paulo 	if ((e = elf_begin(fd, ELF_C_READ, NULL)) == NULL) {
4308eb20f36SRui Paulo 		warn("ERROR: elf_begin() failed");
4318eb20f36SRui Paulo 		goto err1;
4328eb20f36SRui Paulo 	}
4338eb20f36SRui Paulo 	if (gelf_getehdr(e, &ehdr) == NULL) {
4348eb20f36SRui Paulo 		warn("ERROR: gelf_getehdr() failed");
4358eb20f36SRui Paulo 		goto err2;
4368eb20f36SRui Paulo 	}
4378eb20f36SRui Paulo 	/*
4388eb20f36SRui Paulo 	 * Find the index of the STRTAB and SYMTAB sections to locate
4398eb20f36SRui Paulo 	 * symbol names.
4408eb20f36SRui Paulo 	 */
4418eb20f36SRui Paulo 	scn = NULL;
4428eb20f36SRui Paulo 	while ((scn = elf_nextscn(e, scn)) != NULL) {
4438eb20f36SRui Paulo 		gelf_getshdr(scn, &shdr);
4448eb20f36SRui Paulo 		switch (shdr.sh_type) {
4458eb20f36SRui Paulo 		case SHT_SYMTAB:
4468eb20f36SRui Paulo 			symtabscn = scn;
4478eb20f36SRui Paulo 			symtabstridx = shdr.sh_link;
4488eb20f36SRui Paulo 			break;
4498eb20f36SRui Paulo 		case SHT_DYNSYM:
4508eb20f36SRui Paulo 			dynsymscn = scn;
4518eb20f36SRui Paulo 			dynsymstridx = shdr.sh_link;
4528eb20f36SRui Paulo 			break;
4538eb20f36SRui Paulo 		default:
4548eb20f36SRui Paulo 			break;
4558eb20f36SRui Paulo 		}
4568eb20f36SRui Paulo 	}
4578eb20f36SRui Paulo 	/*
4588eb20f36SRui Paulo 	 * Iterate over the Dynamic Symbols table to find the symbol.
4598eb20f36SRui Paulo 	 * Then look up the string name in STRTAB (.dynstr)
4608eb20f36SRui Paulo 	 */
46119a75affSRui Paulo 	if ((data = elf_getdata(dynsymscn, NULL))) {
4628eb20f36SRui Paulo 		DPRINTF("ERROR: elf_getdata() failed");
4638eb20f36SRui Paulo 		i = 0;
4648eb20f36SRui Paulo 		while (gelf_getsym(data, i++, &sym) != NULL) {
4658eb20f36SRui Paulo 			s = elf_strptr(e, dynsymstridx, sym.st_name);
4668eb20f36SRui Paulo 			if (s && strcmp(s, symbol) == 0) {
4678eb20f36SRui Paulo 				memcpy(symcopy, &sym, sizeof(sym));
4688eb20f36SRui Paulo 				symcopy->st_value = map->pr_vaddr + sym.st_value;
4698eb20f36SRui Paulo 				error = 0;
4708eb20f36SRui Paulo 				goto out;
4718eb20f36SRui Paulo 			}
4728eb20f36SRui Paulo 		}
47319a75affSRui Paulo 	}
4748eb20f36SRui Paulo 	/*
4758eb20f36SRui Paulo 	 * Iterate over the Symbols Table to find the symbol.
4768eb20f36SRui Paulo 	 * Then look up the string name in STRTAB (.dynstr)
4778eb20f36SRui Paulo 	 */
4788eb20f36SRui Paulo 	if (symtabscn == NULL)
4798eb20f36SRui Paulo 		goto err2;
48019a75affSRui Paulo 	if ((data = elf_getdata(symtabscn, NULL))) {
4818eb20f36SRui Paulo 		i = 0;
4828eb20f36SRui Paulo 		while (gelf_getsym(data, i++, &sym) != NULL) {
4838eb20f36SRui Paulo 			s = elf_strptr(e, symtabstridx, sym.st_name);
4848eb20f36SRui Paulo 			if (s && strcmp(s, symbol) == 0) {
4858eb20f36SRui Paulo 				memcpy(symcopy, &sym, sizeof(sym));
4868eb20f36SRui Paulo 				error = 0;
4878eb20f36SRui Paulo 				goto out;
4888eb20f36SRui Paulo 			}
4898eb20f36SRui Paulo 		}
49019a75affSRui Paulo 	}
4918eb20f36SRui Paulo out:
4928eb20f36SRui Paulo err2:
4938eb20f36SRui Paulo 	elf_end(e);
4948eb20f36SRui Paulo err1:
4958eb20f36SRui Paulo 	close(fd);
4968eb20f36SRui Paulo err0:
4978eb20f36SRui Paulo 	free(map);
4988eb20f36SRui Paulo 
4998eb20f36SRui Paulo 	return (error);
5008eb20f36SRui Paulo }
5018eb20f36SRui Paulo 
5028eb20f36SRui Paulo 
5038eb20f36SRui Paulo int
5048eb20f36SRui Paulo proc_iter_symbyaddr(struct proc_handle *p, const char *object, int which,
5058eb20f36SRui Paulo     int mask, proc_sym_f *func, void *cd)
5068eb20f36SRui Paulo {
5078eb20f36SRui Paulo 	Elf *e;
5088eb20f36SRui Paulo 	int i, fd;
5098eb20f36SRui Paulo 	prmap_t *map;
5108eb20f36SRui Paulo 	Elf_Scn *scn, *foundscn = NULL;
5118eb20f36SRui Paulo 	Elf_Data *data;
5128eb20f36SRui Paulo 	GElf_Shdr shdr;
5138eb20f36SRui Paulo 	GElf_Sym sym;
5148eb20f36SRui Paulo 	unsigned long stridx = -1;
5158eb20f36SRui Paulo 	char *s;
5168eb20f36SRui Paulo 	int error = -1;
5178eb20f36SRui Paulo 
5188eb20f36SRui Paulo 	if ((map = proc_name2map(p, object)) == NULL)
5198eb20f36SRui Paulo 		return (-1);
5208eb20f36SRui Paulo 	if ((fd = open(map->pr_mapname, O_RDONLY)) < 0) {
5218eb20f36SRui Paulo 		warn("ERROR: open %s failed", map->pr_mapname);
5228eb20f36SRui Paulo 		goto err0;
5238eb20f36SRui Paulo 	}
5248eb20f36SRui Paulo 	if ((e = elf_begin(fd, ELF_C_READ, NULL)) == NULL) {
5258eb20f36SRui Paulo 		warn("ERROR: elf_begin() failed");
5268eb20f36SRui Paulo 		goto err1;
5278eb20f36SRui Paulo 	}
5288eb20f36SRui Paulo 	/*
5298eb20f36SRui Paulo 	 * Find the section we are looking for.
5308eb20f36SRui Paulo 	 */
5318eb20f36SRui Paulo 	scn = NULL;
5328eb20f36SRui Paulo 	while ((scn = elf_nextscn(e, scn)) != NULL) {
5338eb20f36SRui Paulo 		gelf_getshdr(scn, &shdr);
5348eb20f36SRui Paulo 		if (which == PR_SYMTAB &&
5358eb20f36SRui Paulo 		    shdr.sh_type == SHT_SYMTAB) {
5368eb20f36SRui Paulo 			foundscn = scn;
5378eb20f36SRui Paulo 			break;
5388eb20f36SRui Paulo 		} else if (which == PR_DYNSYM &&
5398eb20f36SRui Paulo 		    shdr.sh_type == SHT_DYNSYM) {
5408eb20f36SRui Paulo 			foundscn = scn;
5418eb20f36SRui Paulo 			break;
5428eb20f36SRui Paulo 		}
5438eb20f36SRui Paulo 	}
5448eb20f36SRui Paulo 	if (!foundscn)
5458eb20f36SRui Paulo 		return (-1);
5468eb20f36SRui Paulo 	stridx = shdr.sh_link;
5478eb20f36SRui Paulo 	if ((data = elf_getdata(foundscn, NULL)) == NULL) {
5488eb20f36SRui Paulo 		DPRINTF("ERROR: elf_getdata() failed");
5498eb20f36SRui Paulo 		goto err2;
5508eb20f36SRui Paulo 	}
5518eb20f36SRui Paulo 	i = 0;
5528eb20f36SRui Paulo 	while (gelf_getsym(data, i++, &sym) != NULL) {
5538eb20f36SRui Paulo 		if (GELF_ST_BIND(sym.st_info) == STB_LOCAL &&
5548eb20f36SRui Paulo 		    (mask & BIND_LOCAL) == 0)
5558eb20f36SRui Paulo 			continue;
5568eb20f36SRui Paulo 		if (GELF_ST_BIND(sym.st_info) == STB_GLOBAL &&
5578eb20f36SRui Paulo 		    (mask & BIND_GLOBAL) == 0)
5588eb20f36SRui Paulo 			continue;
5598eb20f36SRui Paulo 		if (GELF_ST_BIND(sym.st_info) == STB_WEAK &&
5608eb20f36SRui Paulo 		    (mask & BIND_WEAK) == 0)
5618eb20f36SRui Paulo 			continue;
5628eb20f36SRui Paulo 		if (GELF_ST_TYPE(sym.st_info) == STT_NOTYPE &&
5638eb20f36SRui Paulo 		    (mask & TYPE_NOTYPE) == 0)
5648eb20f36SRui Paulo 			continue;
5658eb20f36SRui Paulo 		if (GELF_ST_TYPE(sym.st_info) == STT_OBJECT &&
5668eb20f36SRui Paulo 		    (mask & TYPE_OBJECT) == 0)
5678eb20f36SRui Paulo 			continue;
5688eb20f36SRui Paulo 		if (GELF_ST_TYPE(sym.st_info) == STT_FUNC &&
5698eb20f36SRui Paulo 		    (mask & TYPE_FUNC) == 0)
5708eb20f36SRui Paulo 			continue;
5718eb20f36SRui Paulo 		if (GELF_ST_TYPE(sym.st_info) == STT_SECTION &&
5728eb20f36SRui Paulo 		    (mask & TYPE_SECTION) == 0)
5738eb20f36SRui Paulo 			continue;
5748eb20f36SRui Paulo 		if (GELF_ST_TYPE(sym.st_info) == STT_FILE &&
5758eb20f36SRui Paulo 		    (mask & TYPE_FILE) == 0)
5768eb20f36SRui Paulo 			continue;
5778eb20f36SRui Paulo 		s = elf_strptr(e, stridx, sym.st_name);
5788eb20f36SRui Paulo 		sym.st_value += map->pr_vaddr;
5798eb20f36SRui Paulo 		(*func)(cd, &sym, s);
5808eb20f36SRui Paulo 	}
5818eb20f36SRui Paulo 	error = 0;
5828eb20f36SRui Paulo err2:
5838eb20f36SRui Paulo 	elf_end(e);
5848eb20f36SRui Paulo err1:
5858eb20f36SRui Paulo 	close(fd);
5868eb20f36SRui Paulo err0:
5878eb20f36SRui Paulo 	free(map);
5888eb20f36SRui Paulo 	return (error);
5892c633af4SJohn Birrell }
590