1e1743d02SSøren Schmidt /*- 28a36da99SPedro F. Giffuni * SPDX-License-Identifier: BSD-3-Clause 38a36da99SPedro F. Giffuni * 486be94fcSTycho Nightingale * Copyright (c) 2017 Dell EMC 5455d3589SDavid E. O'Brien * Copyright (c) 2000-2001, 2003 David O'Brien 69a14aa01SUlrich Spörlein * Copyright (c) 1995-1996 Søren Schmidt 7e1743d02SSøren Schmidt * Copyright (c) 1996 Peter Wemm 8e1743d02SSøren Schmidt * All rights reserved. 9e1743d02SSøren Schmidt * 10e1743d02SSøren Schmidt * Redistribution and use in source and binary forms, with or without 11e1743d02SSøren Schmidt * modification, are permitted provided that the following conditions 12e1743d02SSøren Schmidt * are met: 13e1743d02SSøren Schmidt * 1. Redistributions of source code must retain the above copyright 14e1743d02SSøren Schmidt * notice, this list of conditions and the following disclaimer 15e1743d02SSøren Schmidt * in this position and unchanged. 16e1743d02SSøren Schmidt * 2. Redistributions in binary form must reproduce the above copyright 17e1743d02SSøren Schmidt * notice, this list of conditions and the following disclaimer in the 18e1743d02SSøren Schmidt * documentation and/or other materials provided with the distribution. 19e1743d02SSøren Schmidt * 3. The name of the author may not be used to endorse or promote products 2021dc7d4fSJens Schweikhardt * derived from this software without specific prior written permission 21e1743d02SSøren Schmidt * 22e1743d02SSøren Schmidt * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR 23e1743d02SSøren Schmidt * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES 24e1743d02SSøren Schmidt * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. 25e1743d02SSøren Schmidt * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, 26e1743d02SSøren Schmidt * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT 27e1743d02SSøren Schmidt * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, 28e1743d02SSøren Schmidt * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY 29e1743d02SSøren Schmidt * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT 30e1743d02SSøren Schmidt * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF 31e1743d02SSøren Schmidt * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. 32e1743d02SSøren Schmidt */ 33e1743d02SSøren Schmidt 34677b542eSDavid E. O'Brien #include <sys/cdefs.h> 35677b542eSDavid E. O'Brien __FBSDID("$FreeBSD$"); 36677b542eSDavid E. O'Brien 3712bc222eSJonathan Anderson #include "opt_capsicum.h" 3862919d78SPeter Wemm 39e1743d02SSøren Schmidt #include <sys/param.h> 404a144410SRobert Watson #include <sys/capsicum.h> 4178f57a9cSMark Johnston #include <sys/compressor.h> 42e1743d02SSøren Schmidt #include <sys/exec.h> 438c64af4fSJohn Polstra #include <sys/fcntl.h> 44e1743d02SSøren Schmidt #include <sys/imgact.h> 45e1743d02SSøren Schmidt #include <sys/imgact_elf.h> 46b96bd95bSIan Lepore #include <sys/jail.h> 47e1743d02SSøren Schmidt #include <sys/kernel.h> 48f34fa851SJohn Baldwin #include <sys/lock.h> 49e1743d02SSøren Schmidt #include <sys/malloc.h> 5068ff2a43SChristian S.J. Peron #include <sys/mount.h> 518c64af4fSJohn Polstra #include <sys/mman.h> 52a794e791SBruce Evans #include <sys/namei.h> 53a794e791SBruce Evans #include <sys/proc.h> 548c64af4fSJohn Polstra #include <sys/procfs.h> 5586be94fcSTycho Nightingale #include <sys/ptrace.h> 561ba5ad42SEdward Tomasz Napierala #include <sys/racct.h> 578c64af4fSJohn Polstra #include <sys/resourcevar.h> 5889f6b863SAttilio Rao #include <sys/rwlock.h> 59bd390213SMikolaj Golub #include <sys/sbuf.h> 60da61b9a6SAlan Cox #include <sys/sf_buf.h> 61ee235befSKonstantin Belousov #include <sys/smp.h> 6236240ea5SDoug Rabson #include <sys/systm.h> 63e1743d02SSøren Schmidt #include <sys/signalvar.h> 648c64af4fSJohn Polstra #include <sys/stat.h> 651005a129SJohn Baldwin #include <sys/sx.h> 668c64af4fSJohn Polstra #include <sys/syscall.h> 67e1743d02SSøren Schmidt #include <sys/sysctl.h> 688c64af4fSJohn Polstra #include <sys/sysent.h> 69a794e791SBruce Evans #include <sys/vnode.h> 70e7228204SAlfred Perlstein #include <sys/syslog.h> 71e7228204SAlfred Perlstein #include <sys/eventhandler.h> 72f1fca82eSMikolaj Golub #include <sys/user.h> 73e7228204SAlfred Perlstein 74e1743d02SSøren Schmidt #include <vm/vm.h> 75e1743d02SSøren Schmidt #include <vm/vm_kern.h> 76e1743d02SSøren Schmidt #include <vm/vm_param.h> 77e1743d02SSøren Schmidt #include <vm/pmap.h> 78e1743d02SSøren Schmidt #include <vm/vm_map.h> 790ff27d31SJohn Polstra #include <vm/vm_object.h> 80e1743d02SSøren Schmidt #include <vm/vm_extern.h> 81e1743d02SSøren Schmidt 8252c24af7SPeter Wemm #include <machine/elf.h> 83e1743d02SSøren Schmidt #include <machine/md_var.h> 84e1743d02SSøren Schmidt 851b8388cdSMikolaj Golub #define ELF_NOTE_ROUNDSIZE 4 86c815a20cSDavid E. O'Brien #define OLD_EI_BRAND 8 87c815a20cSDavid E. O'Brien 883ebc1248SPeter Wemm static int __elfN(check_header)(const Elf_Ehdr *hdr); 8932c01de2SDmitry Chagin static Elf_Brandinfo *__elfN(get_brandinfo)(struct image_params *imgp, 9009c78d53SEdward Tomasz Napierala const char *interp, int32_t *osrel, uint32_t *fctl0); 913ebc1248SPeter Wemm static int __elfN(load_file)(struct proc *p, const char *file, u_long *addr, 921699546dSEdward Tomasz Napierala u_long *entry); 930bbee4cdSKonstantin Belousov static int __elfN(load_section)(struct image_params *imgp, vm_ooffset_t offset, 941699546dSEdward Tomasz Napierala caddr_t vmaddr, size_t memsz, size_t filsz, vm_prot_t prot); 953ebc1248SPeter Wemm static int __CONCAT(exec_, __elfN(imgact))(struct image_params *imgp); 96a95659f7SEd Maste static bool __elfN(freebsd_trans_osrel)(const Elf_Note *note, 9789ffc202SBjoern A. Zeeb int32_t *osrel); 98a95659f7SEd Maste static bool kfreebsd_trans_osrel(const Elf_Note *note, int32_t *osrel); 9932c01de2SDmitry Chagin static boolean_t __elfN(check_note)(struct image_params *imgp, 1000cad2aa2SKonstantin Belousov Elf_Brandnote *checknote, int32_t *osrel, boolean_t *has_fctl0, 1010cad2aa2SKonstantin Belousov uint32_t *fctl0); 102ed167eaaSKonstantin Belousov static vm_prot_t __elfN(trans_prot)(Elf_Word); 103ed167eaaSKonstantin Belousov static Elf_Word __elfN(untrans_prot)(vm_prot_t); 104e1743d02SSøren Schmidt 1057029da5cSPawel Biernacki SYSCTL_NODE(_kern, OID_AUTO, __CONCAT(elf, __ELF_WORD_SIZE), 1067029da5cSPawel Biernacki CTLFLAG_RW | CTLFLAG_MPSAFE, 0, 107a360a43dSJake Burkholder ""); 108a360a43dSJake Burkholder 109bd390213SMikolaj Golub #define CORE_BUF_SIZE (16 * 1024) 110e7228204SAlfred Perlstein 111e548a1d4SJake Burkholder int __elfN(fallback_brand) = -1; 112e548a1d4SJake Burkholder SYSCTL_INT(__CONCAT(_kern_elf, __ELF_WORD_SIZE), OID_AUTO, 113af3b2549SHans Petter Selasky fallback_brand, CTLFLAG_RWTUN, &__elfN(fallback_brand), 0, 114a360a43dSJake Burkholder __XSTRING(__CONCAT(ELF, __ELF_WORD_SIZE)) " brand of last resort"); 115a360a43dSJake Burkholder 116551d79e1SMarcel Moolenaar static int elf_legacy_coredump = 0; 117a360a43dSJake Burkholder SYSCTL_INT(_debug, OID_AUTO, __elfN(legacy_coredump), CTLFLAG_RW, 1181cbb879dSEd Maste &elf_legacy_coredump, 0, 1191cbb879dSEd Maste "include all and only RW pages in core dumps"); 120e1743d02SSøren Schmidt 12162c625fdSKonstantin Belousov int __elfN(nxstack) = 1224d22d07aSKonstantin Belousov #if defined(__amd64__) || defined(__powerpc64__) /* both 64 and 32 bit */ || \ 1234bf4b0f1SJohn Baldwin (defined(__arm__) && __ARM_ARCH >= 7) || defined(__aarch64__) || \ 1244bf4b0f1SJohn Baldwin defined(__riscv) 12562c625fdSKonstantin Belousov 1; 12662c625fdSKonstantin Belousov #else 12762c625fdSKonstantin Belousov 0; 12862c625fdSKonstantin Belousov #endif 129291c06a1SKonstantin Belousov SYSCTL_INT(__CONCAT(_kern_elf, __ELF_WORD_SIZE), OID_AUTO, 130291c06a1SKonstantin Belousov nxstack, CTLFLAG_RW, &__elfN(nxstack), 0, 131291c06a1SKonstantin Belousov __XSTRING(__CONCAT(ELF, __ELF_WORD_SIZE)) ": enable non-executable stack"); 132291c06a1SKonstantin Belousov 133eb785fabSKonstantin Belousov #if __ELF_WORD_SIZE == 32 && (defined(__amd64__) || defined(__i386__)) 134126b36a2SKonstantin Belousov int i386_read_exec = 0; 135126b36a2SKonstantin Belousov SYSCTL_INT(_kern_elf32, OID_AUTO, read_exec, CTLFLAG_RW, &i386_read_exec, 0, 136126b36a2SKonstantin Belousov "enable execution from readable segments"); 137126b36a2SKonstantin Belousov #endif 138126b36a2SKonstantin Belousov 13995aafd69SKonstantin Belousov static u_long __elfN(pie_base) = ET_DYN_LOAD_ADDR; 140f33533daSKonstantin Belousov static int 141f33533daSKonstantin Belousov sysctl_pie_base(SYSCTL_HANDLER_ARGS) 142f33533daSKonstantin Belousov { 143f33533daSKonstantin Belousov u_long val; 144f33533daSKonstantin Belousov int error; 145f33533daSKonstantin Belousov 146f33533daSKonstantin Belousov val = __elfN(pie_base); 147f33533daSKonstantin Belousov error = sysctl_handle_long(oidp, &val, 0, req); 148f33533daSKonstantin Belousov if (error != 0 || req->newptr == NULL) 149f33533daSKonstantin Belousov return (error); 150f33533daSKonstantin Belousov if ((val & PAGE_MASK) != 0) 151f33533daSKonstantin Belousov return (EINVAL); 152f33533daSKonstantin Belousov __elfN(pie_base) = val; 153f33533daSKonstantin Belousov return (0); 154f33533daSKonstantin Belousov } 155f33533daSKonstantin Belousov SYSCTL_PROC(__CONCAT(_kern_elf, __ELF_WORD_SIZE), OID_AUTO, pie_base, 156f33533daSKonstantin Belousov CTLTYPE_ULONG | CTLFLAG_MPSAFE | CTLFLAG_RW, NULL, 0, 157f33533daSKonstantin Belousov sysctl_pie_base, "LU", 15895aafd69SKonstantin Belousov "PIE load base without randomization"); 15995aafd69SKonstantin Belousov 1607029da5cSPawel Biernacki SYSCTL_NODE(__CONCAT(_kern_elf, __ELF_WORD_SIZE), OID_AUTO, aslr, 1617029da5cSPawel Biernacki CTLFLAG_RW | CTLFLAG_MPSAFE, 0, 162fa50a355SKonstantin Belousov ""); 163fa50a355SKonstantin Belousov #define ASLR_NODE_OID __CONCAT(__CONCAT(_kern_elf, __ELF_WORD_SIZE), _aslr) 164fa50a355SKonstantin Belousov 165fa50a355SKonstantin Belousov static int __elfN(aslr_enabled) = 0; 166fa50a355SKonstantin Belousov SYSCTL_INT(ASLR_NODE_OID, OID_AUTO, enable, CTLFLAG_RWTUN, 167fa50a355SKonstantin Belousov &__elfN(aslr_enabled), 0, 168fa50a355SKonstantin Belousov __XSTRING(__CONCAT(ELF, __ELF_WORD_SIZE)) 169fa50a355SKonstantin Belousov ": enable address map randomization"); 170fa50a355SKonstantin Belousov 171fa50a355SKonstantin Belousov static int __elfN(pie_aslr_enabled) = 0; 172fa50a355SKonstantin Belousov SYSCTL_INT(ASLR_NODE_OID, OID_AUTO, pie_enable, CTLFLAG_RWTUN, 173fa50a355SKonstantin Belousov &__elfN(pie_aslr_enabled), 0, 174fa50a355SKonstantin Belousov __XSTRING(__CONCAT(ELF, __ELF_WORD_SIZE)) 175fa50a355SKonstantin Belousov ": enable address map randomization for PIE binaries"); 176fa50a355SKonstantin Belousov 177fa50a355SKonstantin Belousov static int __elfN(aslr_honor_sbrk) = 1; 178fa50a355SKonstantin Belousov SYSCTL_INT(ASLR_NODE_OID, OID_AUTO, honor_sbrk, CTLFLAG_RW, 179fa50a355SKonstantin Belousov &__elfN(aslr_honor_sbrk), 0, 180fa50a355SKonstantin Belousov __XSTRING(__CONCAT(ELF, __ELF_WORD_SIZE)) ": assume sbrk is used"); 181fa50a355SKonstantin Belousov 182fc83c5a7SKonstantin Belousov static int __elfN(aslr_stack_gap) = 3; 183fc83c5a7SKonstantin Belousov SYSCTL_INT(ASLR_NODE_OID, OID_AUTO, stack_gap, CTLFLAG_RW, 184fc83c5a7SKonstantin Belousov &__elfN(aslr_stack_gap), 0, 185fc83c5a7SKonstantin Belousov __XSTRING(__CONCAT(ELF, __ELF_WORD_SIZE)) 186fc83c5a7SKonstantin Belousov ": maximum percentage of main stack to waste on a random gap"); 187fc83c5a7SKonstantin Belousov 188944cf37bSKonstantin Belousov static int __elfN(sigfastblock) = 1; 189944cf37bSKonstantin Belousov SYSCTL_INT(__CONCAT(_kern_elf, __ELF_WORD_SIZE), OID_AUTO, sigfastblock, 190944cf37bSKonstantin Belousov CTLFLAG_RWTUN, &__elfN(sigfastblock), 0, 191944cf37bSKonstantin Belousov "enable sigfastblock for new processes"); 192944cf37bSKonstantin Belousov 1933ebc1248SPeter Wemm static Elf_Brandinfo *elf_brand_list[MAX_BRANDS]; 194e1743d02SSøren Schmidt 195545517f1SEdward Tomasz Napierala #define aligned(a, t) (rounddown2((u_long)(a), sizeof(t)) == (u_long)(a)) 19693d1c728SKonstantin Belousov 19732c01de2SDmitry Chagin static const char FREEBSD_ABI_VENDOR[] = "FreeBSD"; 19832c01de2SDmitry Chagin 19932c01de2SDmitry Chagin Elf_Brandnote __elfN(freebsd_brandnote) = { 20032c01de2SDmitry Chagin .hdr.n_namesz = sizeof(FREEBSD_ABI_VENDOR), 20132c01de2SDmitry Chagin .hdr.n_descsz = sizeof(int32_t), 2024c22b468SEd Maste .hdr.n_type = NT_FREEBSD_ABI_TAG, 20332c01de2SDmitry Chagin .vendor = FREEBSD_ABI_VENDOR, 20489ffc202SBjoern A. Zeeb .flags = BN_TRANSLATE_OSREL, 20589ffc202SBjoern A. Zeeb .trans_osrel = __elfN(freebsd_trans_osrel) 20632c01de2SDmitry Chagin }; 20732c01de2SDmitry Chagin 208a95659f7SEd Maste static bool 20989ffc202SBjoern A. Zeeb __elfN(freebsd_trans_osrel)(const Elf_Note *note, int32_t *osrel) 21089ffc202SBjoern A. Zeeb { 21189ffc202SBjoern A. Zeeb uintptr_t p; 21289ffc202SBjoern A. Zeeb 21389ffc202SBjoern A. Zeeb p = (uintptr_t)(note + 1); 2141b8388cdSMikolaj Golub p += roundup2(note->n_namesz, ELF_NOTE_ROUNDSIZE); 21589ffc202SBjoern A. Zeeb *osrel = *(const int32_t *)(p); 21689ffc202SBjoern A. Zeeb 217a95659f7SEd Maste return (true); 21889ffc202SBjoern A. Zeeb } 21989ffc202SBjoern A. Zeeb 22089ffc202SBjoern A. Zeeb static const char GNU_ABI_VENDOR[] = "GNU"; 22189ffc202SBjoern A. Zeeb static int GNU_KFREEBSD_ABI_DESC = 3; 22289ffc202SBjoern A. Zeeb 22389ffc202SBjoern A. Zeeb Elf_Brandnote __elfN(kfreebsd_brandnote) = { 22489ffc202SBjoern A. Zeeb .hdr.n_namesz = sizeof(GNU_ABI_VENDOR), 22589ffc202SBjoern A. Zeeb .hdr.n_descsz = 16, /* XXX at least 16 */ 22689ffc202SBjoern A. Zeeb .hdr.n_type = 1, 22789ffc202SBjoern A. Zeeb .vendor = GNU_ABI_VENDOR, 22889ffc202SBjoern A. Zeeb .flags = BN_TRANSLATE_OSREL, 22989ffc202SBjoern A. Zeeb .trans_osrel = kfreebsd_trans_osrel 23089ffc202SBjoern A. Zeeb }; 23189ffc202SBjoern A. Zeeb 232a95659f7SEd Maste static bool 23389ffc202SBjoern A. Zeeb kfreebsd_trans_osrel(const Elf_Note *note, int32_t *osrel) 23489ffc202SBjoern A. Zeeb { 23589ffc202SBjoern A. Zeeb const Elf32_Word *desc; 23689ffc202SBjoern A. Zeeb uintptr_t p; 23789ffc202SBjoern A. Zeeb 23889ffc202SBjoern A. Zeeb p = (uintptr_t)(note + 1); 2391b8388cdSMikolaj Golub p += roundup2(note->n_namesz, ELF_NOTE_ROUNDSIZE); 24089ffc202SBjoern A. Zeeb 24189ffc202SBjoern A. Zeeb desc = (const Elf32_Word *)p; 24289ffc202SBjoern A. Zeeb if (desc[0] != GNU_KFREEBSD_ABI_DESC) 243a95659f7SEd Maste return (false); 24489ffc202SBjoern A. Zeeb 24589ffc202SBjoern A. Zeeb /* 24689ffc202SBjoern A. Zeeb * Debian GNU/kFreeBSD embed the earliest compatible kernel version 24789ffc202SBjoern A. Zeeb * (__FreeBSD_version: <major><two digit minor>Rxx) in the LSB way. 24889ffc202SBjoern A. Zeeb */ 24989ffc202SBjoern A. Zeeb *osrel = desc[1] * 100000 + desc[2] * 1000 + desc[3]; 25089ffc202SBjoern A. Zeeb 251a95659f7SEd Maste return (true); 25289ffc202SBjoern A. Zeeb } 25389ffc202SBjoern A. Zeeb 254e1743d02SSøren Schmidt int 2553ebc1248SPeter Wemm __elfN(insert_brand_entry)(Elf_Brandinfo *entry) 256e1743d02SSøren Schmidt { 257e1743d02SSøren Schmidt int i; 258e1743d02SSøren Schmidt 2593ebc1248SPeter Wemm for (i = 0; i < MAX_BRANDS; i++) { 260ea5a2b2eSSøren Schmidt if (elf_brand_list[i] == NULL) { 261ea5a2b2eSSøren Schmidt elf_brand_list[i] = entry; 262e1743d02SSøren Schmidt break; 263e1743d02SSøren Schmidt } 264e1743d02SSøren Schmidt } 265925c8b5bSBjoern A. Zeeb if (i == MAX_BRANDS) { 266925c8b5bSBjoern A. Zeeb printf("WARNING: %s: could not insert brandinfo entry: %p\n", 267925c8b5bSBjoern A. Zeeb __func__, entry); 268a7cddfedSJake Burkholder return (-1); 269925c8b5bSBjoern A. Zeeb } 270a7cddfedSJake Burkholder return (0); 271e1743d02SSøren Schmidt } 272e1743d02SSøren Schmidt 273e1743d02SSøren Schmidt int 2743ebc1248SPeter Wemm __elfN(remove_brand_entry)(Elf_Brandinfo *entry) 275e1743d02SSøren Schmidt { 276e1743d02SSøren Schmidt int i; 277e1743d02SSøren Schmidt 2783ebc1248SPeter Wemm for (i = 0; i < MAX_BRANDS; i++) { 279ea5a2b2eSSøren Schmidt if (elf_brand_list[i] == entry) { 280ea5a2b2eSSøren Schmidt elf_brand_list[i] = NULL; 281e1743d02SSøren Schmidt break; 282e1743d02SSøren Schmidt } 283e1743d02SSøren Schmidt } 284ea5a2b2eSSøren Schmidt if (i == MAX_BRANDS) 285a7cddfedSJake Burkholder return (-1); 286a7cddfedSJake Burkholder return (0); 287e1743d02SSøren Schmidt } 288e1743d02SSøren Schmidt 289096977faSMark Newton int 2903ebc1248SPeter Wemm __elfN(brand_inuse)(Elf_Brandinfo *entry) 291096977faSMark Newton { 292096977faSMark Newton struct proc *p; 293553629ebSJake Burkholder int rval = FALSE; 294096977faSMark Newton 2951005a129SJohn Baldwin sx_slock(&allproc_lock); 2964f506694SXin LI FOREACH_PROC_IN_SYSTEM(p) { 297553629ebSJake Burkholder if (p->p_sysent == entry->sysvec) { 298553629ebSJake Burkholder rval = TRUE; 299553629ebSJake Burkholder break; 300096977faSMark Newton } 301553629ebSJake Burkholder } 3021005a129SJohn Baldwin sx_sunlock(&allproc_lock); 303096977faSMark Newton 304553629ebSJake Burkholder return (rval); 305096977faSMark Newton } 306096977faSMark Newton 3075fe3ed62SJake Burkholder static Elf_Brandinfo * 30832c01de2SDmitry Chagin __elfN(get_brandinfo)(struct image_params *imgp, const char *interp, 30909c78d53SEdward Tomasz Napierala int32_t *osrel, uint32_t *fctl0) 3105fe3ed62SJake Burkholder { 31132c01de2SDmitry Chagin const Elf_Ehdr *hdr = (const Elf_Ehdr *)imgp->image_header; 312af582aaeSKonstantin Belousov Elf_Brandinfo *bi, *bi_m; 3130cad2aa2SKonstantin Belousov boolean_t ret, has_fctl0; 31409c78d53SEdward Tomasz Napierala int i, interp_name_len; 31509c78d53SEdward Tomasz Napierala 316be7808dcSKonstantin Belousov interp_name_len = interp != NULL ? strlen(interp) + 1 : 0; 3175fe3ed62SJake Burkholder 3185fe3ed62SJake Burkholder /* 31932c01de2SDmitry Chagin * We support four types of branding -- (1) the ELF EI_OSABI field 3205fe3ed62SJake Burkholder * that SCO added to the ELF spec, (2) FreeBSD 3.x's traditional string 32132c01de2SDmitry Chagin * branding w/in the ELF header, (3) path of the `interp_path' 32232c01de2SDmitry Chagin * field, and (4) the ".note.ABI-tag" ELF section. 3235fe3ed62SJake Burkholder */ 3245fe3ed62SJake Burkholder 32532c01de2SDmitry Chagin /* Look for an ".note.ABI-tag" ELF section */ 326af582aaeSKonstantin Belousov bi_m = NULL; 32732c01de2SDmitry Chagin for (i = 0; i < MAX_BRANDS; i++) { 32832c01de2SDmitry Chagin bi = elf_brand_list[i]; 329ecc2fda8SBjoern A. Zeeb if (bi == NULL) 330ecc2fda8SBjoern A. Zeeb continue; 3312274ab3dSKonstantin Belousov if (interp != NULL && (bi->flags & BI_BRAND_ONLY_STATIC) != 0) 3321438fe3cSKonstantin Belousov continue; 333ecc2fda8SBjoern A. Zeeb if (hdr->e_machine == bi->machine && (bi->flags & 334ecc2fda8SBjoern A. Zeeb (BI_BRAND_NOTE|BI_BRAND_NOTE_MANDATORY)) != 0) { 3350cad2aa2SKonstantin Belousov has_fctl0 = false; 3360cad2aa2SKonstantin Belousov *fctl0 = 0; 3370cad2aa2SKonstantin Belousov *osrel = 0; 338cefb93f2SKonstantin Belousov ret = __elfN(check_note)(imgp, bi->brand_note, osrel, 3390cad2aa2SKonstantin Belousov &has_fctl0, fctl0); 340f19d421aSNathan Whitehorn /* Give brand a chance to veto check_note's guess */ 3410cad2aa2SKonstantin Belousov if (ret && bi->header_supported) { 3420cad2aa2SKonstantin Belousov ret = bi->header_supported(imgp, osrel, 3430cad2aa2SKonstantin Belousov has_fctl0 ? fctl0 : NULL); 3440cad2aa2SKonstantin Belousov } 345af582aaeSKonstantin Belousov /* 346af582aaeSKonstantin Belousov * If note checker claimed the binary, but the 347af582aaeSKonstantin Belousov * interpreter path in the image does not 348af582aaeSKonstantin Belousov * match default one for the brand, try to 349af582aaeSKonstantin Belousov * search for other brands with the same 350af582aaeSKonstantin Belousov * interpreter. Either there is better brand 351af582aaeSKonstantin Belousov * with the right interpreter, or, failing 352af582aaeSKonstantin Belousov * this, we return first brand which accepted 353af582aaeSKonstantin Belousov * our note and, optionally, header. 354af582aaeSKonstantin Belousov */ 3553aeacc55SKonstantin Belousov if (ret && bi_m == NULL && interp != NULL && 3563aeacc55SKonstantin Belousov (bi->interp_path == NULL || 3573aeacc55SKonstantin Belousov (strlen(bi->interp_path) + 1 != interp_name_len || 3583aeacc55SKonstantin Belousov strncmp(interp, bi->interp_path, interp_name_len) 3593aeacc55SKonstantin Belousov != 0))) { 360af582aaeSKonstantin Belousov bi_m = bi; 361af582aaeSKonstantin Belousov ret = 0; 362af582aaeSKonstantin Belousov } 36332c01de2SDmitry Chagin if (ret) 36432c01de2SDmitry Chagin return (bi); 36532c01de2SDmitry Chagin } 36632c01de2SDmitry Chagin } 367af582aaeSKonstantin Belousov if (bi_m != NULL) 368af582aaeSKonstantin Belousov return (bi_m); 36932c01de2SDmitry Chagin 3705fe3ed62SJake Burkholder /* If the executable has a brand, search for it in the brand list. */ 3715fe3ed62SJake Burkholder for (i = 0; i < MAX_BRANDS; i++) { 3725fe3ed62SJake Burkholder bi = elf_brand_list[i]; 3731438fe3cSKonstantin Belousov if (bi == NULL || (bi->flags & BI_BRAND_NOTE_MANDATORY) != 0 || 3742274ab3dSKonstantin Belousov (interp != NULL && (bi->flags & BI_BRAND_ONLY_STATIC) != 0)) 375ecc2fda8SBjoern A. Zeeb continue; 376ecc2fda8SBjoern A. Zeeb if (hdr->e_machine == bi->machine && 3775fe3ed62SJake Burkholder (hdr->e_ident[EI_OSABI] == bi->brand || 3780fe98320SEd Schouten (bi->compat_3_brand != NULL && 3793d560b4bSKonstantin Belousov strcmp((const char *)&hdr->e_ident[OLD_EI_BRAND], 3800fe98320SEd Schouten bi->compat_3_brand) == 0))) { 381686d2f31SNathan Whitehorn /* Looks good, but give brand a chance to veto */ 382d722231bSJohn Baldwin if (bi->header_supported == NULL || 3830cad2aa2SKonstantin Belousov bi->header_supported(imgp, NULL, NULL)) { 38415a9aedfSKonstantin Belousov /* 38515a9aedfSKonstantin Belousov * Again, prefer strictly matching 38615a9aedfSKonstantin Belousov * interpreter path. 38715a9aedfSKonstantin Belousov */ 3887aab7a80SKonstantin Belousov if (interp_name_len == 0 && 3897aab7a80SKonstantin Belousov bi->interp_path == NULL) 3907aab7a80SKonstantin Belousov return (bi); 3917aab7a80SKonstantin Belousov if (bi->interp_path != NULL && 3927aab7a80SKonstantin Belousov strlen(bi->interp_path) + 1 == 39315a9aedfSKonstantin Belousov interp_name_len && strncmp(interp, 39415a9aedfSKonstantin Belousov bi->interp_path, interp_name_len) == 0) 3955fe3ed62SJake Burkholder return (bi); 39615a9aedfSKonstantin Belousov if (bi_m == NULL) 39715a9aedfSKonstantin Belousov bi_m = bi; 3985fe3ed62SJake Burkholder } 399686d2f31SNathan Whitehorn } 40015a9aedfSKonstantin Belousov } 40115a9aedfSKonstantin Belousov if (bi_m != NULL) 40215a9aedfSKonstantin Belousov return (bi_m); 4035fe3ed62SJake Burkholder 404817dc004SWarner Losh /* No known brand, see if the header is recognized by any brand */ 405817dc004SWarner Losh for (i = 0; i < MAX_BRANDS; i++) { 406817dc004SWarner Losh bi = elf_brand_list[i]; 407817dc004SWarner Losh if (bi == NULL || bi->flags & BI_BRAND_NOTE_MANDATORY || 408817dc004SWarner Losh bi->header_supported == NULL) 409817dc004SWarner Losh continue; 410817dc004SWarner Losh if (hdr->e_machine == bi->machine) { 4110cad2aa2SKonstantin Belousov ret = bi->header_supported(imgp, NULL, NULL); 412817dc004SWarner Losh if (ret) 413817dc004SWarner Losh return (bi); 414817dc004SWarner Losh } 415817dc004SWarner Losh } 416817dc004SWarner Losh 4175fe3ed62SJake Burkholder /* Lacking a known brand, search for a recognized interpreter. */ 4185fe3ed62SJake Burkholder if (interp != NULL) { 4195fe3ed62SJake Burkholder for (i = 0; i < MAX_BRANDS; i++) { 4205fe3ed62SJake Burkholder bi = elf_brand_list[i]; 4212274ab3dSKonstantin Belousov if (bi == NULL || (bi->flags & 4222274ab3dSKonstantin Belousov (BI_BRAND_NOTE_MANDATORY | BI_BRAND_ONLY_STATIC)) 4232274ab3dSKonstantin Belousov != 0) 424ecc2fda8SBjoern A. Zeeb continue; 425ecc2fda8SBjoern A. Zeeb if (hdr->e_machine == bi->machine && 4263aeacc55SKonstantin Belousov bi->interp_path != NULL && 427d1ae5c83SKonstantin Belousov /* ELF image p_filesz includes terminating zero */ 428d1ae5c83SKonstantin Belousov strlen(bi->interp_path) + 1 == interp_name_len && 429d1ae5c83SKonstantin Belousov strncmp(interp, bi->interp_path, interp_name_len) 430d722231bSJohn Baldwin == 0 && (bi->header_supported == NULL || 4310cad2aa2SKonstantin Belousov bi->header_supported(imgp, NULL, NULL))) 4325fe3ed62SJake Burkholder return (bi); 4335fe3ed62SJake Burkholder } 4345fe3ed62SJake Burkholder } 4355fe3ed62SJake Burkholder 4365fe3ed62SJake Burkholder /* Lacking a recognized interpreter, try the default brand */ 4375fe3ed62SJake Burkholder for (i = 0; i < MAX_BRANDS; i++) { 4385fe3ed62SJake Burkholder bi = elf_brand_list[i]; 4391438fe3cSKonstantin Belousov if (bi == NULL || (bi->flags & BI_BRAND_NOTE_MANDATORY) != 0 || 4402274ab3dSKonstantin Belousov (interp != NULL && (bi->flags & BI_BRAND_ONLY_STATIC) != 0)) 441ecc2fda8SBjoern A. Zeeb continue; 442ecc2fda8SBjoern A. Zeeb if (hdr->e_machine == bi->machine && 443d722231bSJohn Baldwin __elfN(fallback_brand) == bi->brand && 444d722231bSJohn Baldwin (bi->header_supported == NULL || 4450cad2aa2SKonstantin Belousov bi->header_supported(imgp, NULL, NULL))) 4465fe3ed62SJake Burkholder return (bi); 4475fe3ed62SJake Burkholder } 4485fe3ed62SJake Burkholder return (NULL); 4495fe3ed62SJake Burkholder } 4505fe3ed62SJake Burkholder 4517de1bc13SKonstantin Belousov static bool 4527de1bc13SKonstantin Belousov __elfN(phdr_in_zero_page)(const Elf_Ehdr *hdr) 4537de1bc13SKonstantin Belousov { 4547de1bc13SKonstantin Belousov return (hdr->e_phoff <= PAGE_SIZE && 4557de1bc13SKonstantin Belousov (u_int)hdr->e_phentsize * hdr->e_phnum <= PAGE_SIZE - hdr->e_phoff); 4567de1bc13SKonstantin Belousov } 4577de1bc13SKonstantin Belousov 458e1743d02SSøren Schmidt static int 4593ebc1248SPeter Wemm __elfN(check_header)(const Elf_Ehdr *hdr) 460e1743d02SSøren Schmidt { 461d0ca7c29SPeter Wemm Elf_Brandinfo *bi; 4623ebc1248SPeter Wemm int i; 4633ebc1248SPeter Wemm 46452c24af7SPeter Wemm if (!IS_ELF(*hdr) || 46552c24af7SPeter Wemm hdr->e_ident[EI_CLASS] != ELF_TARG_CLASS || 46652c24af7SPeter Wemm hdr->e_ident[EI_DATA] != ELF_TARG_DATA || 4673dc19c46SJacques Vidrine hdr->e_ident[EI_VERSION] != EV_CURRENT || 4683dc19c46SJacques Vidrine hdr->e_phentsize != sizeof(Elf_Phdr) || 4693dc19c46SJacques Vidrine hdr->e_version != ELF_TARG_VER) 470a7cddfedSJake Burkholder return (ENOEXEC); 471e1743d02SSøren Schmidt 4723ebc1248SPeter Wemm /* 4733ebc1248SPeter Wemm * Make sure we have at least one brand for this machine. 4743ebc1248SPeter Wemm */ 4753ebc1248SPeter Wemm 4763ebc1248SPeter Wemm for (i = 0; i < MAX_BRANDS; i++) { 477d0ca7c29SPeter Wemm bi = elf_brand_list[i]; 478d0ca7c29SPeter Wemm if (bi != NULL && bi->machine == hdr->e_machine) 4793ebc1248SPeter Wemm break; 4803ebc1248SPeter Wemm } 4813ebc1248SPeter Wemm if (i == MAX_BRANDS) 482a7cddfedSJake Burkholder return (ENOEXEC); 483e1743d02SSøren Schmidt 484a7cddfedSJake Burkholder return (0); 485e1743d02SSøren Schmidt } 486e1743d02SSøren Schmidt 487e1743d02SSøren Schmidt static int 4883ebc1248SPeter Wemm __elfN(map_partial)(vm_map_t map, vm_object_t object, vm_ooffset_t offset, 489ff6f03c7SAlan Cox vm_offset_t start, vm_offset_t end, vm_prot_t prot) 4903ebc1248SPeter Wemm { 491da61b9a6SAlan Cox struct sf_buf *sf; 492da61b9a6SAlan Cox int error; 4933ebc1248SPeter Wemm vm_offset_t off; 4943ebc1248SPeter Wemm 4953ebc1248SPeter Wemm /* 4963ebc1248SPeter Wemm * Create the page if it doesn't exist yet. Ignore errors. 4973ebc1248SPeter Wemm */ 498aaadc41fSKonstantin Belousov vm_map_fixed(map, NULL, 0, trunc_page(start), round_page(end) - 499aaadc41fSKonstantin Belousov trunc_page(start), VM_PROT_ALL, VM_PROT_ALL, MAP_CHECK_EXCL); 5003ebc1248SPeter Wemm 5013ebc1248SPeter Wemm /* 5023ebc1248SPeter Wemm * Find the page from the underlying object. 5033ebc1248SPeter Wemm */ 50428e8da65SAlan Cox if (object != NULL) { 505da61b9a6SAlan Cox sf = vm_imgact_map_page(object, offset); 506da61b9a6SAlan Cox if (sf == NULL) 507da61b9a6SAlan Cox return (KERN_FAILURE); 5083ebc1248SPeter Wemm off = offset - trunc_page(offset); 509da61b9a6SAlan Cox error = copyout((caddr_t)sf_buf_kva(sf) + off, (caddr_t)start, 510ca0387efSJake Burkholder end - start); 511be996836SAttilio Rao vm_imgact_unmap_page(sf); 512fe0a8a39SKonstantin Belousov if (error != 0) 513a7cddfedSJake Burkholder return (KERN_FAILURE); 5143ebc1248SPeter Wemm } 5153ebc1248SPeter Wemm 516a7cddfedSJake Burkholder return (KERN_SUCCESS); 5173ebc1248SPeter Wemm } 5183ebc1248SPeter Wemm 5193ebc1248SPeter Wemm static int 520e3d8f8feSKonstantin Belousov __elfN(map_insert)(struct image_params *imgp, vm_map_t map, vm_object_t object, 521e3d8f8feSKonstantin Belousov vm_ooffset_t offset, vm_offset_t start, vm_offset_t end, vm_prot_t prot, 522e3d8f8feSKonstantin Belousov int cow) 5233ebc1248SPeter Wemm { 524da61b9a6SAlan Cox struct sf_buf *sf; 525da61b9a6SAlan Cox vm_offset_t off; 526a063facbSMarcel Moolenaar vm_size_t sz; 527e3d8f8feSKonstantin Belousov int error, locked, rv; 5283ebc1248SPeter Wemm 5293ebc1248SPeter Wemm if (start != trunc_page(start)) { 53081f223caSJake Burkholder rv = __elfN(map_partial)(map, object, offset, start, 531ff6f03c7SAlan Cox round_page(start), prot); 53228e8da65SAlan Cox if (rv != KERN_SUCCESS) 533a7cddfedSJake Burkholder return (rv); 5343ebc1248SPeter Wemm offset += round_page(start) - start; 5353ebc1248SPeter Wemm start = round_page(start); 5363ebc1248SPeter Wemm } 5373ebc1248SPeter Wemm if (end != round_page(end)) { 53881f223caSJake Burkholder rv = __elfN(map_partial)(map, object, offset + 539ff6f03c7SAlan Cox trunc_page(end) - start, trunc_page(end), end, prot); 54028e8da65SAlan Cox if (rv != KERN_SUCCESS) 541a7cddfedSJake Burkholder return (rv); 5423ebc1248SPeter Wemm end = trunc_page(end); 5433ebc1248SPeter Wemm } 544e383e820SAlan Cox if (start >= end) 545e383e820SAlan Cox return (KERN_SUCCESS); 546e383e820SAlan Cox if ((offset & PAGE_MASK) != 0) { 5473ebc1248SPeter Wemm /* 548e383e820SAlan Cox * The mapping is not page aligned. This means that we have 549e383e820SAlan Cox * to copy the data. 5503ebc1248SPeter Wemm */ 551aaadc41fSKonstantin Belousov rv = vm_map_fixed(map, NULL, 0, start, end - start, 552aaadc41fSKonstantin Belousov prot | VM_PROT_WRITE, VM_PROT_ALL, MAP_CHECK_EXCL); 5535420f76bSKonstantin Belousov if (rv != KERN_SUCCESS) 554a7cddfedSJake Burkholder return (rv); 555da61b9a6SAlan Cox if (object == NULL) 556da61b9a6SAlan Cox return (KERN_SUCCESS); 557da61b9a6SAlan Cox for (; start < end; start += sz) { 558da61b9a6SAlan Cox sf = vm_imgact_map_page(object, offset); 559da61b9a6SAlan Cox if (sf == NULL) 560da61b9a6SAlan Cox return (KERN_FAILURE); 5613ebc1248SPeter Wemm off = offset - trunc_page(offset); 5623ebc1248SPeter Wemm sz = end - start; 563da61b9a6SAlan Cox if (sz > PAGE_SIZE - off) 564da61b9a6SAlan Cox sz = PAGE_SIZE - off; 565da61b9a6SAlan Cox error = copyout((caddr_t)sf_buf_kva(sf) + off, 5663ebc1248SPeter Wemm (caddr_t)start, sz); 567be996836SAttilio Rao vm_imgact_unmap_page(sf); 5685420f76bSKonstantin Belousov if (error != 0) 569a7cddfedSJake Burkholder return (KERN_FAILURE); 570da61b9a6SAlan Cox offset += sz; 5713ebc1248SPeter Wemm } 5723ebc1248SPeter Wemm } else { 573e5e6093bSAlan Cox vm_object_reference(object); 574e383e820SAlan Cox rv = vm_map_fixed(map, object, offset, start, end - start, 57578022527SKonstantin Belousov prot, VM_PROT_ALL, cow | MAP_CHECK_EXCL | 57678022527SKonstantin Belousov (object != NULL ? MAP_VN_EXEC : 0)); 577e3d8f8feSKonstantin Belousov if (rv != KERN_SUCCESS) { 578e3d8f8feSKonstantin Belousov locked = VOP_ISLOCKED(imgp->vp); 579b249ce48SMateusz Guzik VOP_UNLOCK(imgp->vp); 580e5e6093bSAlan Cox vm_object_deallocate(object); 581e3d8f8feSKonstantin Belousov vn_lock(imgp->vp, locked | LK_RETRY); 582a7cddfedSJake Burkholder return (rv); 58378022527SKonstantin Belousov } else if (object != NULL) { 58478022527SKonstantin Belousov MPASS(imgp->vp->v_object == object); 58578022527SKonstantin Belousov VOP_SET_TEXT_CHECKED(imgp->vp); 5863ebc1248SPeter Wemm } 5873ebc1248SPeter Wemm } 588e383e820SAlan Cox return (KERN_SUCCESS); 589e383e820SAlan Cox } 5903ebc1248SPeter Wemm 5913ebc1248SPeter Wemm static int 5920bbee4cdSKonstantin Belousov __elfN(load_section)(struct image_params *imgp, vm_ooffset_t offset, 5931699546dSEdward Tomasz Napierala caddr_t vmaddr, size_t memsz, size_t filsz, vm_prot_t prot) 594e1743d02SSøren Schmidt { 595da61b9a6SAlan Cox struct sf_buf *sf; 596e1743d02SSøren Schmidt size_t map_len; 597292177e6SAlan Cox vm_map_t map; 598292177e6SAlan Cox vm_object_t object; 599e020a35fSMark Johnston vm_offset_t map_addr; 600fa7dd9c5SMatthew Dillon int error, rv, cow; 601e1743d02SSøren Schmidt size_t copy_len; 6020bbee4cdSKonstantin Belousov vm_ooffset_t file_addr; 60352c24af7SPeter Wemm 60425ead034SBrian Feldman /* 60525ead034SBrian Feldman * It's necessary to fail if the filsz + offset taken from the 60625ead034SBrian Feldman * header is greater than the actual file pager object's size. 60725ead034SBrian Feldman * If we were to allow this, then the vm_map_find() below would 60825ead034SBrian Feldman * walk right off the end of the file object and into the ether. 60925ead034SBrian Feldman * 61025ead034SBrian Feldman * While I'm here, might as well check for something else that 61125ead034SBrian Feldman * is invalid: filsz cannot be greater than memsz. 61225ead034SBrian Feldman */ 6139bcf2f2dSKonstantin Belousov if ((filsz != 0 && (off_t)filsz + offset > imgp->attr->va_size) || 6149bcf2f2dSKonstantin Belousov filsz > memsz) { 61525ead034SBrian Feldman uprintf("elf_load_section: truncated ELF file\n"); 61625ead034SBrian Feldman return (ENOEXEC); 61725ead034SBrian Feldman } 61825ead034SBrian Feldman 619292177e6SAlan Cox object = imgp->object; 620292177e6SAlan Cox map = &imgp->proc->p_vmspace->vm_map; 621545517f1SEdward Tomasz Napierala map_addr = trunc_page((vm_offset_t)vmaddr); 622545517f1SEdward Tomasz Napierala file_addr = trunc_page(offset); 623e1743d02SSøren Schmidt 624e1743d02SSøren Schmidt /* 62552c24af7SPeter Wemm * We have two choices. We can either clear the data in the last page 62652c24af7SPeter Wemm * of an oversized mapping, or we can start the anon mapping a page 62752c24af7SPeter Wemm * early and copy the initialized data into that first page. We 62828e8da65SAlan Cox * choose the second. 62952c24af7SPeter Wemm */ 6309bcf2f2dSKonstantin Belousov if (filsz == 0) 6319bcf2f2dSKonstantin Belousov map_len = 0; 6329bcf2f2dSKonstantin Belousov else if (memsz > filsz) 633545517f1SEdward Tomasz Napierala map_len = trunc_page(offset + filsz) - file_addr; 63452c24af7SPeter Wemm else 635545517f1SEdward Tomasz Napierala map_len = round_page(offset + filsz) - file_addr; 63652c24af7SPeter Wemm 63752c24af7SPeter Wemm if (map_len != 0) { 638fa7dd9c5SMatthew Dillon /* cow flags: don't dump readonly sections in core */ 639fa7dd9c5SMatthew Dillon cow = MAP_COPY_ON_WRITE | MAP_PREFAULT | 640fa7dd9c5SMatthew Dillon (prot & VM_PROT_WRITE ? 0 : MAP_DISABLE_COREDUMP); 641fa7dd9c5SMatthew Dillon 64278022527SKonstantin Belousov rv = __elfN(map_insert)(imgp, map, object, file_addr, 64378022527SKonstantin Belousov map_addr, map_addr + map_len, prot, cow); 644e5e6093bSAlan Cox if (rv != KERN_SUCCESS) 645a7cddfedSJake Burkholder return (EINVAL); 64652c24af7SPeter Wemm 64752c24af7SPeter Wemm /* we can stop now if we've covered it all */ 648973d67c4SKonstantin Belousov if (memsz == filsz) 649a7cddfedSJake Burkholder return (0); 65052c24af7SPeter Wemm } 65152c24af7SPeter Wemm 65252c24af7SPeter Wemm /* 65352c24af7SPeter Wemm * We have to get the remaining bit of the file into the first part 65452c24af7SPeter Wemm * of the oversized map segment. This is normally because the .data 65552c24af7SPeter Wemm * segment in the file is extended to provide bss. It's a neat idea 65652c24af7SPeter Wemm * to try and save a page, but it's a pain in the behind to implement. 657e1743d02SSøren Schmidt */ 658545517f1SEdward Tomasz Napierala copy_len = filsz == 0 ? 0 : (offset + filsz) - trunc_page(offset + 659545517f1SEdward Tomasz Napierala filsz); 660545517f1SEdward Tomasz Napierala map_addr = trunc_page((vm_offset_t)vmaddr + filsz); 661545517f1SEdward Tomasz Napierala map_len = round_page((vm_offset_t)vmaddr + memsz) - map_addr; 662e1743d02SSøren Schmidt 66352c24af7SPeter Wemm /* This had damn well better be true! */ 6648191d577SPeter Wemm if (map_len != 0) { 665e3d8f8feSKonstantin Belousov rv = __elfN(map_insert)(imgp, map, NULL, 0, map_addr, 666c547cbb4SAlan Cox map_addr + map_len, prot, 0); 667973d67c4SKonstantin Belousov if (rv != KERN_SUCCESS) 668a7cddfedSJake Burkholder return (EINVAL); 6698191d577SPeter Wemm } 670e1743d02SSøren Schmidt 67152c24af7SPeter Wemm if (copy_len != 0) { 672da61b9a6SAlan Cox sf = vm_imgact_map_page(object, offset + filsz); 673da61b9a6SAlan Cox if (sf == NULL) 674da61b9a6SAlan Cox return (EIO); 675e1743d02SSøren Schmidt 67652c24af7SPeter Wemm /* send the page fragment to user space */ 677e020a35fSMark Johnston error = copyout((caddr_t)sf_buf_kva(sf), (caddr_t)map_addr, 678e020a35fSMark Johnston copy_len); 679be996836SAttilio Rao vm_imgact_unmap_page(sf); 680973d67c4SKonstantin Belousov if (error != 0) 68152c24af7SPeter Wemm return (error); 68252c24af7SPeter Wemm } 683e1743d02SSøren Schmidt 684e1743d02SSøren Schmidt /* 685c547cbb4SAlan Cox * Remove write access to the page if it was only granted by map_insert 686c547cbb4SAlan Cox * to allow copyout. 687e1743d02SSøren Schmidt */ 688c547cbb4SAlan Cox if ((prot & VM_PROT_WRITE) == 0) 689292177e6SAlan Cox vm_map_protect(map, trunc_page(map_addr), round_page(map_addr + 690292177e6SAlan Cox map_len), prot, FALSE); 6918191d577SPeter Wemm 692ff6f03c7SAlan Cox return (0); 693e1743d02SSøren Schmidt } 694e1743d02SSøren Schmidt 6959bcd7482SEdward Tomasz Napierala static int 6969bcd7482SEdward Tomasz Napierala __elfN(load_sections)(struct image_params *imgp, const Elf_Ehdr *hdr, 6979bcd7482SEdward Tomasz Napierala const Elf_Phdr *phdr, u_long rbase, u_long *base_addrp) 6989bcd7482SEdward Tomasz Napierala { 6999bcd7482SEdward Tomasz Napierala vm_prot_t prot; 7009bcd7482SEdward Tomasz Napierala u_long base_addr; 7019bcd7482SEdward Tomasz Napierala bool first; 7029bcd7482SEdward Tomasz Napierala int error, i; 7039bcd7482SEdward Tomasz Napierala 704b65ca345SEdward Tomasz Napierala ASSERT_VOP_LOCKED(imgp->vp, __func__); 705b65ca345SEdward Tomasz Napierala 7069bcd7482SEdward Tomasz Napierala base_addr = 0; 7079bcd7482SEdward Tomasz Napierala first = true; 7089bcd7482SEdward Tomasz Napierala 7099bcd7482SEdward Tomasz Napierala for (i = 0; i < hdr->e_phnum; i++) { 7109bcd7482SEdward Tomasz Napierala if (phdr[i].p_type != PT_LOAD || phdr[i].p_memsz == 0) 7119bcd7482SEdward Tomasz Napierala continue; 7129bcd7482SEdward Tomasz Napierala 7139bcd7482SEdward Tomasz Napierala /* Loadable segment */ 7149bcd7482SEdward Tomasz Napierala prot = __elfN(trans_prot)(phdr[i].p_flags); 7159bcd7482SEdward Tomasz Napierala error = __elfN(load_section)(imgp, phdr[i].p_offset, 7169bcd7482SEdward Tomasz Napierala (caddr_t)(uintptr_t)phdr[i].p_vaddr + rbase, 7179bcd7482SEdward Tomasz Napierala phdr[i].p_memsz, phdr[i].p_filesz, prot); 7189bcd7482SEdward Tomasz Napierala if (error != 0) 7199bcd7482SEdward Tomasz Napierala return (error); 7209bcd7482SEdward Tomasz Napierala 7219bcd7482SEdward Tomasz Napierala /* 7229bcd7482SEdward Tomasz Napierala * Establish the base address if this is the first segment. 7239bcd7482SEdward Tomasz Napierala */ 7249bcd7482SEdward Tomasz Napierala if (first) { 7259bcd7482SEdward Tomasz Napierala base_addr = trunc_page(phdr[i].p_vaddr + rbase); 7269bcd7482SEdward Tomasz Napierala first = false; 7279bcd7482SEdward Tomasz Napierala } 7289bcd7482SEdward Tomasz Napierala } 7299bcd7482SEdward Tomasz Napierala 7309bcd7482SEdward Tomasz Napierala if (base_addrp != NULL) 7319bcd7482SEdward Tomasz Napierala *base_addrp = base_addr; 7329bcd7482SEdward Tomasz Napierala 7339bcd7482SEdward Tomasz Napierala return (0); 7349bcd7482SEdward Tomasz Napierala } 7359bcd7482SEdward Tomasz Napierala 736c33fe779SJohn Polstra /* 737c33fe779SJohn Polstra * Load the file "file" into memory. It may be either a shared object 738c33fe779SJohn Polstra * or an executable. 739c33fe779SJohn Polstra * 740c33fe779SJohn Polstra * The "addr" reference parameter is in/out. On entry, it specifies 741c33fe779SJohn Polstra * the address where a shared object should be loaded. If the file is 742c33fe779SJohn Polstra * an executable, this value is ignored. On exit, "addr" specifies 743c33fe779SJohn Polstra * where the file was actually loaded. 744c33fe779SJohn Polstra * 745c33fe779SJohn Polstra * The "entry" reference parameter is out only. On exit, it specifies 746c33fe779SJohn Polstra * the entry point for the loaded file. 747c33fe779SJohn Polstra */ 748e1743d02SSøren Schmidt static int 7493ebc1248SPeter Wemm __elfN(load_file)(struct proc *p, const char *file, u_long *addr, 7501699546dSEdward Tomasz Napierala u_long *entry) 751e1743d02SSøren Schmidt { 752911c2be0SMark Peek struct { 753911c2be0SMark Peek struct nameidata nd; 754911c2be0SMark Peek struct vattr attr; 755911c2be0SMark Peek struct image_params image_params; 756911c2be0SMark Peek } *tempdata; 757d254af07SMatthew Dillon const Elf_Ehdr *hdr = NULL; 758d254af07SMatthew Dillon const Elf_Phdr *phdr = NULL; 759911c2be0SMark Peek struct nameidata *nd; 760911c2be0SMark Peek struct vattr *attr; 761911c2be0SMark Peek struct image_params *imgp; 76278022527SKonstantin Belousov u_long rbase; 763c33fe779SJohn Polstra u_long base_addr = 0; 7649bcd7482SEdward Tomasz Napierala int error; 765e1743d02SSøren Schmidt 76612bc222eSJonathan Anderson #ifdef CAPABILITY_MODE 76712bc222eSJonathan Anderson /* 76812bc222eSJonathan Anderson * XXXJA: This check can go away once we are sufficiently confident 76912bc222eSJonathan Anderson * that the checks in namei() are correct. 77012bc222eSJonathan Anderson */ 77112bc222eSJonathan Anderson if (IN_CAPABILITY_MODE(curthread)) 77212bc222eSJonathan Anderson return (ECAPMODE); 77312bc222eSJonathan Anderson #endif 77412bc222eSJonathan Anderson 7751073d17eSKonstantin Belousov tempdata = malloc(sizeof(*tempdata), M_TEMP, M_WAITOK | M_ZERO); 776911c2be0SMark Peek nd = &tempdata->nd; 777911c2be0SMark Peek attr = &tempdata->attr; 778911c2be0SMark Peek imgp = &tempdata->image_params; 779911c2be0SMark Peek 780c8a79999SPeter Wemm /* 781c8a79999SPeter Wemm * Initialize part of the common data 782c8a79999SPeter Wemm */ 783c8a79999SPeter Wemm imgp->proc = p; 784911c2be0SMark Peek imgp->attr = attr; 785c8a79999SPeter Wemm 786f422bc30SJohn Baldwin NDINIT(nd, LOOKUP, ISOPEN | FOLLOW | LOCKSHARED | LOCKLEAF, 787f422bc30SJohn Baldwin UIO_SYSSPACE, file, curthread); 788911c2be0SMark Peek if ((error = namei(nd)) != 0) { 789911c2be0SMark Peek nd->ni_vp = NULL; 790e1743d02SSøren Schmidt goto fail; 791e1743d02SSøren Schmidt } 792911c2be0SMark Peek NDFREE(nd, NDF_ONLY_PNBUF); 793911c2be0SMark Peek imgp->vp = nd->ni_vp; 794c8a79999SPeter Wemm 795e1743d02SSøren Schmidt /* 796e1743d02SSøren Schmidt * Check permissions, modes, uid, etc on the file, and "open" it. 797e1743d02SSøren Schmidt */ 798c8a79999SPeter Wemm error = exec_check_permissions(imgp); 799373d1a3fSAlan Cox if (error) 800c8a79999SPeter Wemm goto fail; 801e1743d02SSøren Schmidt 802c8a79999SPeter Wemm error = exec_map_first_page(imgp); 803373d1a3fSAlan Cox if (error) 804373d1a3fSAlan Cox goto fail; 805373d1a3fSAlan Cox 8068516dd18SPoul-Henning Kamp imgp->object = nd->ni_vp->v_object; 807e1743d02SSøren Schmidt 808d254af07SMatthew Dillon hdr = (const Elf_Ehdr *)imgp->image_header; 8093ebc1248SPeter Wemm if ((error = __elfN(check_header)(hdr)) != 0) 810e1743d02SSøren Schmidt goto fail; 811c33fe779SJohn Polstra if (hdr->e_type == ET_DYN) 812c33fe779SJohn Polstra rbase = *addr; 813c33fe779SJohn Polstra else if (hdr->e_type == ET_EXEC) 814c33fe779SJohn Polstra rbase = 0; 815c33fe779SJohn Polstra else { 816c33fe779SJohn Polstra error = ENOEXEC; 817c33fe779SJohn Polstra goto fail; 818c33fe779SJohn Polstra } 819e1743d02SSøren Schmidt 820c8a79999SPeter Wemm /* Only support headers that fit within first page for now */ 8217de1bc13SKonstantin Belousov if (!__elfN(phdr_in_zero_page)(hdr)) { 822c8a79999SPeter Wemm error = ENOEXEC; 823e1743d02SSøren Schmidt goto fail; 824c8a79999SPeter Wemm } 825c8a79999SPeter Wemm 826d254af07SMatthew Dillon phdr = (const Elf_Phdr *)(imgp->image_header + hdr->e_phoff); 82793d1c728SKonstantin Belousov if (!aligned(phdr, Elf_Addr)) { 82893d1c728SKonstantin Belousov error = ENOEXEC; 82993d1c728SKonstantin Belousov goto fail; 83093d1c728SKonstantin Belousov } 831e1743d02SSøren Schmidt 8329bcd7482SEdward Tomasz Napierala error = __elfN(load_sections)(imgp, hdr, phdr, rbase, &base_addr); 833292177e6SAlan Cox if (error != 0) 834e1743d02SSøren Schmidt goto fail; 8359bcd7482SEdward Tomasz Napierala 836c33fe779SJohn Polstra *addr = base_addr; 837c33fe779SJohn Polstra *entry = (unsigned long)hdr->e_entry + rbase; 838e1743d02SSøren Schmidt 839e1743d02SSøren Schmidt fail: 840c8a79999SPeter Wemm if (imgp->firstpage) 841c8a79999SPeter Wemm exec_unmap_first_page(imgp); 8420b2ed1aeSJeff Roberson 84378022527SKonstantin Belousov if (nd->ni_vp) { 84478022527SKonstantin Belousov if (imgp->textset) 84578022527SKonstantin Belousov VOP_UNSET_TEXT_CHECKED(nd->ni_vp); 846373d1a3fSAlan Cox vput(nd->ni_vp); 84778022527SKonstantin Belousov } 848911c2be0SMark Peek free(tempdata, M_TEMP); 849e1743d02SSøren Schmidt 850a7cddfedSJake Burkholder return (error); 851e1743d02SSøren Schmidt } 852e1743d02SSøren Schmidt 853fa50a355SKonstantin Belousov static u_long 854fa50a355SKonstantin Belousov __CONCAT(rnd_, __elfN(base))(vm_map_t map __unused, u_long minv, u_long maxv, 855fa50a355SKonstantin Belousov u_int align) 856fa50a355SKonstantin Belousov { 857fa50a355SKonstantin Belousov u_long rbase, res; 858fa50a355SKonstantin Belousov 859fa50a355SKonstantin Belousov MPASS(vm_map_min(map) <= minv); 860fa50a355SKonstantin Belousov MPASS(maxv <= vm_map_max(map)); 861fa50a355SKonstantin Belousov MPASS(minv < maxv); 862fa50a355SKonstantin Belousov MPASS(minv + align < maxv); 863fa50a355SKonstantin Belousov arc4rand(&rbase, sizeof(rbase), 0); 864fa50a355SKonstantin Belousov res = roundup(minv, (u_long)align) + rbase % (maxv - minv); 865fa50a355SKonstantin Belousov res &= ~((u_long)align - 1); 866fa50a355SKonstantin Belousov if (res >= maxv) 867fa50a355SKonstantin Belousov res -= align; 868fa50a355SKonstantin Belousov KASSERT(res >= minv, 869fa50a355SKonstantin Belousov ("res %#lx < minv %#lx, maxv %#lx rbase %#lx", 870fa50a355SKonstantin Belousov res, minv, maxv, rbase)); 871fa50a355SKonstantin Belousov KASSERT(res < maxv, 872fa50a355SKonstantin Belousov ("res %#lx > maxv %#lx, minv %#lx rbase %#lx", 873fa50a355SKonstantin Belousov res, maxv, minv, rbase)); 874fa50a355SKonstantin Belousov return (res); 875fa50a355SKonstantin Belousov } 876fa50a355SKonstantin Belousov 87720e1174aSEdward Tomasz Napierala static int 87820e1174aSEdward Tomasz Napierala __elfN(enforce_limits)(struct image_params *imgp, const Elf_Ehdr *hdr, 87920e1174aSEdward Tomasz Napierala const Elf_Phdr *phdr, u_long et_dyn_addr) 88020e1174aSEdward Tomasz Napierala { 88120e1174aSEdward Tomasz Napierala struct vmspace *vmspace; 88220e1174aSEdward Tomasz Napierala const char *err_str; 88320e1174aSEdward Tomasz Napierala u_long text_size, data_size, total_size, text_addr, data_addr; 88420e1174aSEdward Tomasz Napierala u_long seg_size, seg_addr; 88520e1174aSEdward Tomasz Napierala int i; 88620e1174aSEdward Tomasz Napierala 88720e1174aSEdward Tomasz Napierala err_str = NULL; 88820e1174aSEdward Tomasz Napierala text_size = data_size = total_size = text_addr = data_addr = 0; 88920e1174aSEdward Tomasz Napierala 89020e1174aSEdward Tomasz Napierala for (i = 0; i < hdr->e_phnum; i++) { 89120e1174aSEdward Tomasz Napierala if (phdr[i].p_type != PT_LOAD || phdr[i].p_memsz == 0) 89220e1174aSEdward Tomasz Napierala continue; 89320e1174aSEdward Tomasz Napierala 89420e1174aSEdward Tomasz Napierala seg_addr = trunc_page(phdr[i].p_vaddr + et_dyn_addr); 89520e1174aSEdward Tomasz Napierala seg_size = round_page(phdr[i].p_memsz + 89620e1174aSEdward Tomasz Napierala phdr[i].p_vaddr + et_dyn_addr - seg_addr); 89720e1174aSEdward Tomasz Napierala 89820e1174aSEdward Tomasz Napierala /* 89920e1174aSEdward Tomasz Napierala * Make the largest executable segment the official 90020e1174aSEdward Tomasz Napierala * text segment and all others data. 90120e1174aSEdward Tomasz Napierala * 90220e1174aSEdward Tomasz Napierala * Note that obreak() assumes that data_addr + data_size == end 90320e1174aSEdward Tomasz Napierala * of data load area, and the ELF file format expects segments 90420e1174aSEdward Tomasz Napierala * to be sorted by address. If multiple data segments exist, 90520e1174aSEdward Tomasz Napierala * the last one will be used. 90620e1174aSEdward Tomasz Napierala */ 90720e1174aSEdward Tomasz Napierala 90820e1174aSEdward Tomasz Napierala if ((phdr[i].p_flags & PF_X) != 0 && text_size < seg_size) { 90920e1174aSEdward Tomasz Napierala text_size = seg_size; 91020e1174aSEdward Tomasz Napierala text_addr = seg_addr; 91120e1174aSEdward Tomasz Napierala } else { 91220e1174aSEdward Tomasz Napierala data_size = seg_size; 91320e1174aSEdward Tomasz Napierala data_addr = seg_addr; 91420e1174aSEdward Tomasz Napierala } 91520e1174aSEdward Tomasz Napierala total_size += seg_size; 91620e1174aSEdward Tomasz Napierala } 91720e1174aSEdward Tomasz Napierala 91820e1174aSEdward Tomasz Napierala if (data_addr == 0 && data_size == 0) { 91920e1174aSEdward Tomasz Napierala data_addr = text_addr; 92020e1174aSEdward Tomasz Napierala data_size = text_size; 92120e1174aSEdward Tomasz Napierala } 92220e1174aSEdward Tomasz Napierala 92320e1174aSEdward Tomasz Napierala /* 92420e1174aSEdward Tomasz Napierala * Check limits. It should be safe to check the 92520e1174aSEdward Tomasz Napierala * limits after loading the segments since we do 92620e1174aSEdward Tomasz Napierala * not actually fault in all the segments pages. 92720e1174aSEdward Tomasz Napierala */ 92820e1174aSEdward Tomasz Napierala PROC_LOCK(imgp->proc); 92920e1174aSEdward Tomasz Napierala if (data_size > lim_cur_proc(imgp->proc, RLIMIT_DATA)) 93020e1174aSEdward Tomasz Napierala err_str = "Data segment size exceeds process limit"; 93120e1174aSEdward Tomasz Napierala else if (text_size > maxtsiz) 93220e1174aSEdward Tomasz Napierala err_str = "Text segment size exceeds system limit"; 93320e1174aSEdward Tomasz Napierala else if (total_size > lim_cur_proc(imgp->proc, RLIMIT_VMEM)) 93420e1174aSEdward Tomasz Napierala err_str = "Total segment size exceeds process limit"; 93520e1174aSEdward Tomasz Napierala else if (racct_set(imgp->proc, RACCT_DATA, data_size) != 0) 93620e1174aSEdward Tomasz Napierala err_str = "Data segment size exceeds resource limit"; 93720e1174aSEdward Tomasz Napierala else if (racct_set(imgp->proc, RACCT_VMEM, total_size) != 0) 93820e1174aSEdward Tomasz Napierala err_str = "Total segment size exceeds resource limit"; 93920e1174aSEdward Tomasz Napierala PROC_UNLOCK(imgp->proc); 94020e1174aSEdward Tomasz Napierala if (err_str != NULL) { 94120e1174aSEdward Tomasz Napierala uprintf("%s\n", err_str); 94220e1174aSEdward Tomasz Napierala return (ENOMEM); 94320e1174aSEdward Tomasz Napierala } 94420e1174aSEdward Tomasz Napierala 94520e1174aSEdward Tomasz Napierala vmspace = imgp->proc->p_vmspace; 94620e1174aSEdward Tomasz Napierala vmspace->vm_tsize = text_size >> PAGE_SHIFT; 94720e1174aSEdward Tomasz Napierala vmspace->vm_taddr = (caddr_t)(uintptr_t)text_addr; 94820e1174aSEdward Tomasz Napierala vmspace->vm_dsize = data_size >> PAGE_SHIFT; 94920e1174aSEdward Tomasz Napierala vmspace->vm_daddr = (caddr_t)(uintptr_t)data_addr; 95020e1174aSEdward Tomasz Napierala 95120e1174aSEdward Tomasz Napierala return (0); 95220e1174aSEdward Tomasz Napierala } 95320e1174aSEdward Tomasz Napierala 95409c78d53SEdward Tomasz Napierala static int 95509c78d53SEdward Tomasz Napierala __elfN(get_interp)(struct image_params *imgp, const Elf_Phdr *phdr, 95609c78d53SEdward Tomasz Napierala char **interpp, bool *free_interpp) 95709c78d53SEdward Tomasz Napierala { 95809c78d53SEdward Tomasz Napierala struct thread *td; 95909c78d53SEdward Tomasz Napierala char *interp; 96009c78d53SEdward Tomasz Napierala int error, interp_name_len; 96109c78d53SEdward Tomasz Napierala 96209c78d53SEdward Tomasz Napierala KASSERT(phdr->p_type == PT_INTERP, 96309c78d53SEdward Tomasz Napierala ("%s: p_type %u != PT_INTERP", __func__, phdr->p_type)); 964b65ca345SEdward Tomasz Napierala ASSERT_VOP_LOCKED(imgp->vp, __func__); 96509c78d53SEdward Tomasz Napierala 96609c78d53SEdward Tomasz Napierala td = curthread; 96709c78d53SEdward Tomasz Napierala 96809c78d53SEdward Tomasz Napierala /* Path to interpreter */ 96909c78d53SEdward Tomasz Napierala if (phdr->p_filesz < 2 || phdr->p_filesz > MAXPATHLEN) { 97009c78d53SEdward Tomasz Napierala uprintf("Invalid PT_INTERP\n"); 97109c78d53SEdward Tomasz Napierala return (ENOEXEC); 97209c78d53SEdward Tomasz Napierala } 97309c78d53SEdward Tomasz Napierala 97409c78d53SEdward Tomasz Napierala interp_name_len = phdr->p_filesz; 97509c78d53SEdward Tomasz Napierala if (phdr->p_offset > PAGE_SIZE || 97609c78d53SEdward Tomasz Napierala interp_name_len > PAGE_SIZE - phdr->p_offset) { 9770ddfdc60SKonstantin Belousov /* 978f1f81d3bSKonstantin Belousov * The vnode lock might be needed by the pagedaemon to 9790ddfdc60SKonstantin Belousov * clean pages owned by the vnode. Do not allow sleep 9800ddfdc60SKonstantin Belousov * waiting for memory with the vnode locked, instead 9810ddfdc60SKonstantin Belousov * try non-sleepable allocation first, and if it 9820ddfdc60SKonstantin Belousov * fails, go to the slow path were we drop the lock 983f1f81d3bSKonstantin Belousov * and do M_WAITOK. A text reference prevents 984f1f81d3bSKonstantin Belousov * modifications to the vnode content. 9850ddfdc60SKonstantin Belousov */ 9862d6b8546SKonstantin Belousov interp = malloc(interp_name_len + 1, M_TEMP, M_NOWAIT); 9872d6b8546SKonstantin Belousov if (interp == NULL) { 988b249ce48SMateusz Guzik VOP_UNLOCK(imgp->vp); 98909c78d53SEdward Tomasz Napierala interp = malloc(interp_name_len + 1, M_TEMP, M_WAITOK); 99078022527SKonstantin Belousov vn_lock(imgp->vp, LK_SHARED | LK_RETRY); 9912d6b8546SKonstantin Belousov } 9920ddfdc60SKonstantin Belousov 99309c78d53SEdward Tomasz Napierala error = vn_rdwr(UIO_READ, imgp->vp, interp, 99409c78d53SEdward Tomasz Napierala interp_name_len, phdr->p_offset, 99509c78d53SEdward Tomasz Napierala UIO_SYSSPACE, IO_NODELOCKED, td->td_ucred, 99609c78d53SEdward Tomasz Napierala NOCRED, NULL, td); 99709c78d53SEdward Tomasz Napierala if (error != 0) { 99809c78d53SEdward Tomasz Napierala free(interp, M_TEMP); 99909c78d53SEdward Tomasz Napierala uprintf("i/o error PT_INTERP %d\n", error); 100009c78d53SEdward Tomasz Napierala return (error); 100109c78d53SEdward Tomasz Napierala } 100209c78d53SEdward Tomasz Napierala interp[interp_name_len] = '\0'; 100309c78d53SEdward Tomasz Napierala 100409c78d53SEdward Tomasz Napierala *interpp = interp; 100509c78d53SEdward Tomasz Napierala *free_interpp = true; 100609c78d53SEdward Tomasz Napierala return (0); 100709c78d53SEdward Tomasz Napierala } 100809c78d53SEdward Tomasz Napierala 100909c78d53SEdward Tomasz Napierala interp = __DECONST(char *, imgp->image_header) + phdr->p_offset; 101009c78d53SEdward Tomasz Napierala if (interp[interp_name_len - 1] != '\0') { 101109c78d53SEdward Tomasz Napierala uprintf("Invalid PT_INTERP\n"); 101209c78d53SEdward Tomasz Napierala return (ENOEXEC); 101309c78d53SEdward Tomasz Napierala } 101409c78d53SEdward Tomasz Napierala 101509c78d53SEdward Tomasz Napierala *interpp = interp; 101609c78d53SEdward Tomasz Napierala *free_interpp = false; 101709c78d53SEdward Tomasz Napierala return (0); 101809c78d53SEdward Tomasz Napierala } 101909c78d53SEdward Tomasz Napierala 10209274fb35SEdward Tomasz Napierala static int 10219274fb35SEdward Tomasz Napierala __elfN(load_interp)(struct image_params *imgp, const Elf_Brandinfo *brand_info, 10229274fb35SEdward Tomasz Napierala const char *interp, u_long *addr, u_long *entry) 10239274fb35SEdward Tomasz Napierala { 10249274fb35SEdward Tomasz Napierala char *path; 10259274fb35SEdward Tomasz Napierala int error; 10269274fb35SEdward Tomasz Napierala 10279274fb35SEdward Tomasz Napierala if (brand_info->emul_path != NULL && 10289274fb35SEdward Tomasz Napierala brand_info->emul_path[0] != '\0') { 10299274fb35SEdward Tomasz Napierala path = malloc(MAXPATHLEN, M_TEMP, M_WAITOK); 10309274fb35SEdward Tomasz Napierala snprintf(path, MAXPATHLEN, "%s%s", 10319274fb35SEdward Tomasz Napierala brand_info->emul_path, interp); 10329274fb35SEdward Tomasz Napierala error = __elfN(load_file)(imgp->proc, path, addr, entry); 10339274fb35SEdward Tomasz Napierala free(path, M_TEMP); 10349274fb35SEdward Tomasz Napierala if (error == 0) 10359274fb35SEdward Tomasz Napierala return (0); 10369274fb35SEdward Tomasz Napierala } 10379274fb35SEdward Tomasz Napierala 10389274fb35SEdward Tomasz Napierala if (brand_info->interp_newpath != NULL && 10399274fb35SEdward Tomasz Napierala (brand_info->interp_path == NULL || 10409274fb35SEdward Tomasz Napierala strcmp(interp, brand_info->interp_path) == 0)) { 10419274fb35SEdward Tomasz Napierala error = __elfN(load_file)(imgp->proc, 10429274fb35SEdward Tomasz Napierala brand_info->interp_newpath, addr, entry); 10439274fb35SEdward Tomasz Napierala if (error == 0) 10449274fb35SEdward Tomasz Napierala return (0); 10459274fb35SEdward Tomasz Napierala } 10469274fb35SEdward Tomasz Napierala 10479274fb35SEdward Tomasz Napierala error = __elfN(load_file)(imgp->proc, interp, addr, entry); 10489274fb35SEdward Tomasz Napierala if (error == 0) 10499274fb35SEdward Tomasz Napierala return (0); 10509274fb35SEdward Tomasz Napierala 10519274fb35SEdward Tomasz Napierala uprintf("ELF interpreter %s not found, error %d\n", interp, error); 10529274fb35SEdward Tomasz Napierala return (error); 10539274fb35SEdward Tomasz Napierala } 10549274fb35SEdward Tomasz Napierala 1055fa50a355SKonstantin Belousov /* 1056fa50a355SKonstantin Belousov * Impossible et_dyn_addr initial value indicating that the real base 1057fa50a355SKonstantin Belousov * must be calculated later with some randomization applied. 1058fa50a355SKonstantin Belousov */ 1059fa50a355SKonstantin Belousov #define ET_DYN_ADDR_RAND 1 1060fa50a355SKonstantin Belousov 1061303b270bSEivind Eklund static int 10623ebc1248SPeter Wemm __CONCAT(exec_, __elfN(imgact))(struct image_params *imgp) 1063e1743d02SSøren Schmidt { 10646c775eb6SKonstantin Belousov struct thread *td; 10656c775eb6SKonstantin Belousov const Elf_Ehdr *hdr; 106632c01de2SDmitry Chagin const Elf_Phdr *phdr; 1067e5e6093bSAlan Cox Elf_Auxargs *elf_auxargs; 10685856e12eSJohn Dyson struct vmspace *vmspace; 1069fa50a355SKonstantin Belousov vm_map_t map; 10709274fb35SEdward Tomasz Napierala char *interp; 1071d1dbc694SJohn Polstra Elf_Brandinfo *brand_info; 10725fe3ed62SJake Burkholder struct sysentvec *sv; 107320e1174aSEdward Tomasz Napierala u_long addr, baddr, et_dyn_addr, entry, proghdr; 1074fa50a355SKonstantin Belousov u_long maxalign, mapsz, maxv, maxv1; 1075cefb93f2SKonstantin Belousov uint32_t fctl0; 10766c775eb6SKonstantin Belousov int32_t osrel; 107709c78d53SEdward Tomasz Napierala bool free_interp; 10789274fb35SEdward Tomasz Napierala int error, i, n; 10796c775eb6SKonstantin Belousov 10806c775eb6SKonstantin Belousov hdr = (const Elf_Ehdr *)imgp->image_header; 1081e1743d02SSøren Schmidt 1082e1743d02SSøren Schmidt /* 1083e1743d02SSøren Schmidt * Do we have a valid ELF header ? 1084900b28f9SMaxim Sobolev * 1085900b28f9SMaxim Sobolev * Only allow ET_EXEC & ET_DYN here, reject ET_DYN later 1086900b28f9SMaxim Sobolev * if particular brand doesn't support it. 1087e1743d02SSøren Schmidt */ 1088900b28f9SMaxim Sobolev if (__elfN(check_header)(hdr) != 0 || 1089900b28f9SMaxim Sobolev (hdr->e_type != ET_EXEC && hdr->e_type != ET_DYN)) 1090a7cddfedSJake Burkholder return (-1); 1091e1743d02SSøren Schmidt 1092e1743d02SSøren Schmidt /* 1093e1743d02SSøren Schmidt * From here on down, we return an errno, not -1, as we've 1094e1743d02SSøren Schmidt * detected an ELF file. 1095e1743d02SSøren Schmidt */ 1096e1743d02SSøren Schmidt 10977de1bc13SKonstantin Belousov if (!__elfN(phdr_in_zero_page)(hdr)) { 10986b16d664SEd Maste uprintf("Program headers not in the first page\n"); 1099a7cddfedSJake Burkholder return (ENOEXEC); 1100e1743d02SSøren Schmidt } 110152c24af7SPeter Wemm phdr = (const Elf_Phdr *)(imgp->image_header + hdr->e_phoff); 11026b16d664SEd Maste if (!aligned(phdr, Elf_Addr)) { 11036b16d664SEd Maste uprintf("Unaligned program headers\n"); 110493d1c728SKonstantin Belousov return (ENOEXEC); 11056b16d664SEd Maste } 11066c775eb6SKonstantin Belousov 11076c775eb6SKonstantin Belousov n = error = 0; 11087564c4adSKonstantin Belousov baddr = 0; 11096c775eb6SKonstantin Belousov osrel = 0; 1110cefb93f2SKonstantin Belousov fctl0 = 0; 11116c775eb6SKonstantin Belousov entry = proghdr = 0; 11129274fb35SEdward Tomasz Napierala interp = NULL; 111309c78d53SEdward Tomasz Napierala free_interp = false; 11146c775eb6SKonstantin Belousov td = curthread; 1115fa50a355SKonstantin Belousov maxalign = PAGE_SIZE; 1116fa50a355SKonstantin Belousov mapsz = 0; 11176c775eb6SKonstantin Belousov 11185fe3ed62SJake Burkholder for (i = 0; i < hdr->e_phnum; i++) { 1119291c06a1SKonstantin Belousov switch (phdr[i].p_type) { 1120291c06a1SKonstantin Belousov case PT_LOAD: 11217564c4adSKonstantin Belousov if (n == 0) 11227564c4adSKonstantin Belousov baddr = phdr[i].p_vaddr; 1123fa50a355SKonstantin Belousov if (phdr[i].p_align > maxalign) 1124fa50a355SKonstantin Belousov maxalign = phdr[i].p_align; 1125fa50a355SKonstantin Belousov mapsz += phdr[i].p_memsz; 11267564c4adSKonstantin Belousov n++; 11279bcd7482SEdward Tomasz Napierala 11289bcd7482SEdward Tomasz Napierala /* 11299bcd7482SEdward Tomasz Napierala * If this segment contains the program headers, 11309bcd7482SEdward Tomasz Napierala * remember their virtual address for the AT_PHDR 11319bcd7482SEdward Tomasz Napierala * aux entry. Static binaries don't usually include 11329bcd7482SEdward Tomasz Napierala * a PT_PHDR entry. 11339bcd7482SEdward Tomasz Napierala */ 11349bcd7482SEdward Tomasz Napierala if (phdr[i].p_offset == 0 && 11359bcd7482SEdward Tomasz Napierala hdr->e_phoff + hdr->e_phnum * hdr->e_phentsize 11369bcd7482SEdward Tomasz Napierala <= phdr[i].p_filesz) 11379bcd7482SEdward Tomasz Napierala proghdr = phdr[i].p_vaddr + hdr->e_phoff; 1138291c06a1SKonstantin Belousov break; 1139291c06a1SKonstantin Belousov case PT_INTERP: 1140e5e6093bSAlan Cox /* Path to interpreter */ 1141d3ee0a15SJonathan T. Looney if (interp != NULL) { 1142d3ee0a15SJonathan T. Looney uprintf("Multiple PT_INTERP headers\n"); 1143d3ee0a15SJonathan T. Looney error = ENOEXEC; 1144d3ee0a15SJonathan T. Looney goto ret; 1145d3ee0a15SJonathan T. Looney } 114609c78d53SEdward Tomasz Napierala error = __elfN(get_interp)(imgp, &phdr[i], &interp, 114709c78d53SEdward Tomasz Napierala &free_interp); 114809c78d53SEdward Tomasz Napierala if (error != 0) 11496c775eb6SKonstantin Belousov goto ret; 1150291c06a1SKonstantin Belousov break; 1151291c06a1SKonstantin Belousov case PT_GNU_STACK: 1152291c06a1SKonstantin Belousov if (__elfN(nxstack)) 1153291c06a1SKonstantin Belousov imgp->stack_prot = 1154291c06a1SKonstantin Belousov __elfN(trans_prot)(phdr[i].p_flags); 1155316b3843SKonstantin Belousov imgp->stack_sz = phdr[i].p_memsz; 1156291c06a1SKonstantin Belousov break; 11579bcd7482SEdward Tomasz Napierala case PT_PHDR: /* Program header table info */ 11589bcd7482SEdward Tomasz Napierala proghdr = phdr[i].p_vaddr; 11599bcd7482SEdward Tomasz Napierala break; 11603ebc1248SPeter Wemm } 11613ebc1248SPeter Wemm } 11623ebc1248SPeter Wemm 116309c78d53SEdward Tomasz Napierala brand_info = __elfN(get_brandinfo)(imgp, interp, &osrel, &fctl0); 11645fe3ed62SJake Burkholder if (brand_info == NULL) { 11655fe3ed62SJake Burkholder uprintf("ELF binary type \"%u\" not known.\n", 11665fe3ed62SJake Burkholder hdr->e_ident[EI_OSABI]); 11676c775eb6SKonstantin Belousov error = ENOEXEC; 11686c775eb6SKonstantin Belousov goto ret; 11693ebc1248SPeter Wemm } 1170fa50a355SKonstantin Belousov sv = brand_info->sysvec; 117177ebe276SEd Maste et_dyn_addr = 0; 1172ab02d85fSKonstantin Belousov if (hdr->e_type == ET_DYN) { 11736b16d664SEd Maste if ((brand_info->flags & BI_CAN_EXEC_DYN) == 0) { 11746b16d664SEd Maste uprintf("Cannot execute shared object\n"); 11756c775eb6SKonstantin Belousov error = ENOEXEC; 11766c775eb6SKonstantin Belousov goto ret; 11776b16d664SEd Maste } 11787564c4adSKonstantin Belousov /* 11797564c4adSKonstantin Belousov * Honour the base load address from the dso if it is 11807564c4adSKonstantin Belousov * non-zero for some reason. 11817564c4adSKonstantin Belousov */ 1182fa50a355SKonstantin Belousov if (baddr == 0) { 1183fa50a355SKonstantin Belousov if ((sv->sv_flags & SV_ASLR) == 0 || 1184fa50a355SKonstantin Belousov (fctl0 & NT_FREEBSD_FCTL_ASLR_DISABLE) != 0) 118595aafd69SKonstantin Belousov et_dyn_addr = __elfN(pie_base); 1186fa50a355SKonstantin Belousov else if ((__elfN(pie_aslr_enabled) && 1187fa50a355SKonstantin Belousov (imgp->proc->p_flag2 & P2_ASLR_DISABLE) == 0) || 1188fa50a355SKonstantin Belousov (imgp->proc->p_flag2 & P2_ASLR_ENABLE) != 0) 1189fa50a355SKonstantin Belousov et_dyn_addr = ET_DYN_ADDR_RAND; 1190fa50a355SKonstantin Belousov else 119195aafd69SKonstantin Belousov et_dyn_addr = __elfN(pie_base); 119277ebe276SEd Maste } 1193fa50a355SKonstantin Belousov } 11943ebc1248SPeter Wemm 119560bb3943SAlan Cox /* 119660bb3943SAlan Cox * Avoid a possible deadlock if the current address space is destroyed 119760bb3943SAlan Cox * and that address space maps the locked vnode. In the common case, 119860bb3943SAlan Cox * the locked vnode's v_usecount is decremented but remains greater 119960bb3943SAlan Cox * than zero. Consequently, the vnode lock is not needed by vrele(). 120060bb3943SAlan Cox * However, in cases where the vnode lock is external, such as nullfs, 120160bb3943SAlan Cox * v_usecount may become zero. 12021dfab802SAlan Cox * 12031dfab802SAlan Cox * The VV_TEXT flag prevents modifications to the executable while 12041dfab802SAlan Cox * the vnode is unlocked. 120560bb3943SAlan Cox */ 1206b249ce48SMateusz Guzik VOP_UNLOCK(imgp->vp); 120760bb3943SAlan Cox 1208fa50a355SKonstantin Belousov /* 1209fa50a355SKonstantin Belousov * Decide whether to enable randomization of user mappings. 1210fa50a355SKonstantin Belousov * First, reset user preferences for the setid binaries. 1211fa50a355SKonstantin Belousov * Then, account for the support of the randomization by the 1212fa50a355SKonstantin Belousov * ABI, by user preferences, and make special treatment for 1213fa50a355SKonstantin Belousov * PIE binaries. 1214fa50a355SKonstantin Belousov */ 1215fa50a355SKonstantin Belousov if (imgp->credential_setid) { 1216fa50a355SKonstantin Belousov PROC_LOCK(imgp->proc); 1217fa50a355SKonstantin Belousov imgp->proc->p_flag2 &= ~(P2_ASLR_ENABLE | P2_ASLR_DISABLE); 1218fa50a355SKonstantin Belousov PROC_UNLOCK(imgp->proc); 1219fa50a355SKonstantin Belousov } 1220fa50a355SKonstantin Belousov if ((sv->sv_flags & SV_ASLR) == 0 || 1221fa50a355SKonstantin Belousov (imgp->proc->p_flag2 & P2_ASLR_DISABLE) != 0 || 1222fa50a355SKonstantin Belousov (fctl0 & NT_FREEBSD_FCTL_ASLR_DISABLE) != 0) { 1223fa50a355SKonstantin Belousov KASSERT(et_dyn_addr != ET_DYN_ADDR_RAND, 1224fa50a355SKonstantin Belousov ("et_dyn_addr == RAND and !ASLR")); 1225fa50a355SKonstantin Belousov } else if ((imgp->proc->p_flag2 & P2_ASLR_ENABLE) != 0 || 1226fa50a355SKonstantin Belousov (__elfN(aslr_enabled) && hdr->e_type == ET_EXEC) || 1227fa50a355SKonstantin Belousov et_dyn_addr == ET_DYN_ADDR_RAND) { 1228fa50a355SKonstantin Belousov imgp->map_flags |= MAP_ASLR; 1229fa50a355SKonstantin Belousov /* 1230fa50a355SKonstantin Belousov * If user does not care about sbrk, utilize the bss 1231fa50a355SKonstantin Belousov * grow region for mappings as well. We can select 1232fa50a355SKonstantin Belousov * the base for the image anywere and still not suffer 1233fa50a355SKonstantin Belousov * from the fragmentation. 1234fa50a355SKonstantin Belousov */ 1235fa50a355SKonstantin Belousov if (!__elfN(aslr_honor_sbrk) || 1236fa50a355SKonstantin Belousov (imgp->proc->p_flag2 & P2_ASLR_IGNSTART) != 0) 1237fa50a355SKonstantin Belousov imgp->map_flags |= MAP_ASLR_IGNSTART; 1238fa50a355SKonstantin Belousov } 1239fa50a355SKonstantin Belousov 124089b57fcfSKonstantin Belousov error = exec_new_vmspace(imgp, sv); 1241fa50a355SKonstantin Belousov vmspace = imgp->proc->p_vmspace; 1242fa50a355SKonstantin Belousov map = &vmspace->vm_map; 1243fa50a355SKonstantin Belousov 124419059a13SJohn Baldwin imgp->proc->p_sysent = sv; 1245e1743d02SSøren Schmidt 1246fa50a355SKonstantin Belousov maxv = vm_map_max(map) - lim_max(td, RLIMIT_STACK); 1247fa50a355SKonstantin Belousov if (et_dyn_addr == ET_DYN_ADDR_RAND) { 1248fa50a355SKonstantin Belousov KASSERT((map->flags & MAP_ASLR) != 0, 1249fa50a355SKonstantin Belousov ("ET_DYN_ADDR_RAND but !MAP_ASLR")); 1250fa50a355SKonstantin Belousov et_dyn_addr = __CONCAT(rnd_, __elfN(base))(map, 1251fa50a355SKonstantin Belousov vm_map_min(map) + mapsz + lim_max(td, RLIMIT_DATA), 1252fa50a355SKonstantin Belousov /* reserve half of the address space to interpreter */ 1253fa50a355SKonstantin Belousov maxv / 2, 1UL << flsl(maxalign)); 1254fa50a355SKonstantin Belousov } 1255fa50a355SKonstantin Belousov 125678022527SKonstantin Belousov vn_lock(imgp->vp, LK_SHARED | LK_RETRY); 12576c775eb6SKonstantin Belousov if (error != 0) 12586c775eb6SKonstantin Belousov goto ret; 125960bb3943SAlan Cox 12609bcd7482SEdward Tomasz Napierala error = __elfN(load_sections)(imgp, hdr, phdr, et_dyn_addr, NULL); 1261292177e6SAlan Cox if (error != 0) 12626c775eb6SKonstantin Belousov goto ret; 1263e1743d02SSøren Schmidt 126420e1174aSEdward Tomasz Napierala error = __elfN(enforce_limits)(imgp, hdr, phdr, et_dyn_addr); 126520e1174aSEdward Tomasz Napierala if (error != 0) 126620e1174aSEdward Tomasz Napierala goto ret; 1267cac45152SMatthew Dillon 1268920acedbSNathan Whitehorn entry = (u_long)hdr->e_entry + et_dyn_addr; 1269920acedbSNathan Whitehorn 1270cac45152SMatthew Dillon /* 1271c460ac3aSPeter Wemm * We load the dynamic linker where a userland call 1272c460ac3aSPeter Wemm * to mmap(0, ...) would put it. The rationale behind this 1273c460ac3aSPeter Wemm * calculation is that it leaves room for the heap to grow to 1274c460ac3aSPeter Wemm * its maximum allowed size. 1275c460ac3aSPeter Wemm */ 12766c775eb6SKonstantin Belousov addr = round_page((vm_offset_t)vmspace->vm_daddr + lim_max(td, 1277292177e6SAlan Cox RLIMIT_DATA)); 1278fa50a355SKonstantin Belousov if ((map->flags & MAP_ASLR) != 0) { 1279fa50a355SKonstantin Belousov maxv1 = maxv / 2 + addr / 2; 1280fa50a355SKonstantin Belousov MPASS(maxv1 >= addr); /* No overflow */ 1281fa50a355SKonstantin Belousov map->anon_loc = __CONCAT(rnd_, __elfN(base))(map, addr, maxv1, 1282fa50a355SKonstantin Belousov MAXPAGESIZES > 1 ? pagesizes[1] : pagesizes[0]); 1283fa50a355SKonstantin Belousov } else { 1284fa50a355SKonstantin Belousov map->anon_loc = addr; 1285fa50a355SKonstantin Belousov } 1286e1743d02SSøren Schmidt 1287ea5a2b2eSSøren Schmidt imgp->entry_addr = entry; 1288ea5a2b2eSSøren Schmidt 128960bb3943SAlan Cox if (interp != NULL) { 1290b249ce48SMateusz Guzik VOP_UNLOCK(imgp->vp); 1291fa50a355SKonstantin Belousov if ((map->flags & MAP_ASLR) != 0) { 1292fa50a355SKonstantin Belousov /* Assume that interpeter fits into 1/4 of AS */ 1293fa50a355SKonstantin Belousov maxv1 = maxv / 2 + addr / 2; 1294fa50a355SKonstantin Belousov MPASS(maxv1 >= addr); /* No overflow */ 1295fa50a355SKonstantin Belousov addr = __CONCAT(rnd_, __elfN(base))(map, addr, 1296fa50a355SKonstantin Belousov maxv1, PAGE_SIZE); 1297fa50a355SKonstantin Belousov } 12989274fb35SEdward Tomasz Napierala error = __elfN(load_interp)(imgp, brand_info, interp, &addr, 12991699546dSEdward Tomasz Napierala &imgp->entry_addr); 130078022527SKonstantin Belousov vn_lock(imgp->vp, LK_SHARED | LK_RETRY); 13019274fb35SEdward Tomasz Napierala if (error != 0) 13026c775eb6SKonstantin Belousov goto ret; 130395c807cfSRobert Watson } else 13047564c4adSKonstantin Belousov addr = et_dyn_addr; 1305ea5a2b2eSSøren Schmidt 1306e1743d02SSøren Schmidt /* 1307e3532331SJohn Baldwin * Construct auxargs table (used by the copyout_auxargs routine) 1308e1743d02SSøren Schmidt */ 13092d6b8546SKonstantin Belousov elf_auxargs = malloc(sizeof(Elf_Auxargs), M_TEMP, M_NOWAIT); 13102d6b8546SKonstantin Belousov if (elf_auxargs == NULL) { 1311b249ce48SMateusz Guzik VOP_UNLOCK(imgp->vp); 1312a163d034SWarner Losh elf_auxargs = malloc(sizeof(Elf_Auxargs), M_TEMP, M_WAITOK); 131378022527SKonstantin Belousov vn_lock(imgp->vp, LK_SHARED | LK_RETRY); 13142d6b8546SKonstantin Belousov } 1315e1743d02SSøren Schmidt elf_auxargs->execfd = -1; 13169bcd7482SEdward Tomasz Napierala elf_auxargs->phdr = proghdr + et_dyn_addr; 1317e1743d02SSøren Schmidt elf_auxargs->phent = hdr->e_phentsize; 1318e1743d02SSøren Schmidt elf_auxargs->phnum = hdr->e_phnum; 1319e1743d02SSøren Schmidt elf_auxargs->pagesz = PAGE_SIZE; 1320e1743d02SSøren Schmidt elf_auxargs->base = addr; 1321e1743d02SSøren Schmidt elf_auxargs->flags = 0; 1322e1743d02SSøren Schmidt elf_auxargs->entry = entry; 1323d36eec69SWarner Losh elf_auxargs->hdr_eflags = hdr->e_flags; 1324e1743d02SSøren Schmidt 1325e1743d02SSøren Schmidt imgp->auxargs = elf_auxargs; 1326e1743d02SSøren Schmidt imgp->interpreted = 0; 1327a0ea661fSNathan Whitehorn imgp->reloc_base = addr; 132832c01de2SDmitry Chagin imgp->proc->p_osrel = osrel; 1329cefb93f2SKonstantin Belousov imgp->proc->p_fctl0 = fctl0; 1330885f13dcSJohn Baldwin imgp->proc->p_elf_machine = hdr->e_machine; 1331885f13dcSJohn Baldwin imgp->proc->p_elf_flags = hdr->e_flags; 1332f231de47SKonstantin Belousov 13336c775eb6SKonstantin Belousov ret: 133409c78d53SEdward Tomasz Napierala if (free_interp) 133509c78d53SEdward Tomasz Napierala free(interp, M_TEMP); 1336a7cddfedSJake Burkholder return (error); 1337e1743d02SSøren Schmidt } 1338e1743d02SSøren Schmidt 1339a360a43dSJake Burkholder #define suword __CONCAT(suword, __ELF_WORD_SIZE) 13403ebc1248SPeter Wemm 134103b0d68cSJohn Baldwin int 1342d8010b11SJohn Baldwin __elfN(freebsd_copyout_auxargs)(struct image_params *imgp, uintptr_t base) 1343e1743d02SSøren Schmidt { 1344ecbb00a2SDoug Rabson Elf_Auxargs *args = (Elf_Auxargs *)imgp->auxargs; 13455f77b8a8SBrooks Davis Elf_Auxinfo *argarray, *pos; 134603b0d68cSJohn Baldwin int error; 1347e1743d02SSøren Schmidt 13485f77b8a8SBrooks Davis argarray = pos = malloc(AT_COUNT * sizeof(*pos), M_TEMP, 13495f77b8a8SBrooks Davis M_WAITOK | M_ZERO); 1350e1743d02SSøren Schmidt 135135c2a5a8SWarner Losh if (args->execfd != -1) 1352e1743d02SSøren Schmidt AUXARGS_ENTRY(pos, AT_EXECFD, args->execfd); 1353e1743d02SSøren Schmidt AUXARGS_ENTRY(pos, AT_PHDR, args->phdr); 1354e1743d02SSøren Schmidt AUXARGS_ENTRY(pos, AT_PHENT, args->phent); 1355e1743d02SSøren Schmidt AUXARGS_ENTRY(pos, AT_PHNUM, args->phnum); 1356e1743d02SSøren Schmidt AUXARGS_ENTRY(pos, AT_PAGESZ, args->pagesz); 1357e1743d02SSøren Schmidt AUXARGS_ENTRY(pos, AT_FLAGS, args->flags); 1358e1743d02SSøren Schmidt AUXARGS_ENTRY(pos, AT_ENTRY, args->entry); 1359e1743d02SSøren Schmidt AUXARGS_ENTRY(pos, AT_BASE, args->base); 1360d36eec69SWarner Losh AUXARGS_ENTRY(pos, AT_EHDRFLAGS, args->hdr_eflags); 13613ff06357SKonstantin Belousov if (imgp->execpathp != 0) 1362b24e6ac8SBrooks Davis AUXARGS_ENTRY_PTR(pos, AT_EXECPATH, imgp->execpathp); 1363b96bd95bSIan Lepore AUXARGS_ENTRY(pos, AT_OSRELDATE, 1364b96bd95bSIan Lepore imgp->proc->p_ucred->cr_prison->pr_osreldate); 1365ee235befSKonstantin Belousov if (imgp->canary != 0) { 1366b24e6ac8SBrooks Davis AUXARGS_ENTRY_PTR(pos, AT_CANARY, imgp->canary); 1367ee235befSKonstantin Belousov AUXARGS_ENTRY(pos, AT_CANARYLEN, imgp->canarylen); 1368ee235befSKonstantin Belousov } 1369ee235befSKonstantin Belousov AUXARGS_ENTRY(pos, AT_NCPUS, mp_ncpus); 1370ee235befSKonstantin Belousov if (imgp->pagesizes != 0) { 1371b24e6ac8SBrooks Davis AUXARGS_ENTRY_PTR(pos, AT_PAGESIZES, imgp->pagesizes); 1372ee235befSKonstantin Belousov AUXARGS_ENTRY(pos, AT_PAGESIZESLEN, imgp->pagesizeslen); 1373ee235befSKonstantin Belousov } 1374aea81038SKonstantin Belousov if (imgp->sysent->sv_timekeep_base != 0) { 1375aea81038SKonstantin Belousov AUXARGS_ENTRY(pos, AT_TIMEKEEP, 1376aea81038SKonstantin Belousov imgp->sysent->sv_timekeep_base); 1377aea81038SKonstantin Belousov } 137826d8f3e1SKonstantin Belousov AUXARGS_ENTRY(pos, AT_STACKPROT, imgp->sysent->sv_shared_page_obj 137926d8f3e1SKonstantin Belousov != NULL && imgp->stack_prot != 0 ? imgp->stack_prot : 138026d8f3e1SKonstantin Belousov imgp->sysent->sv_stackprot); 1381c2f37b92SJohn Baldwin if (imgp->sysent->sv_hwcap != NULL) 1382c2f37b92SJohn Baldwin AUXARGS_ENTRY(pos, AT_HWCAP, *imgp->sysent->sv_hwcap); 1383904d8c49SMichal Meloun if (imgp->sysent->sv_hwcap2 != NULL) 1384904d8c49SMichal Meloun AUXARGS_ENTRY(pos, AT_HWCAP2, *imgp->sysent->sv_hwcap2); 1385944cf37bSKonstantin Belousov AUXARGS_ENTRY(pos, AT_BSDFLAGS, __elfN(sigfastblock) ? 1386944cf37bSKonstantin Belousov ELF_BSDF_SIGFASTBLK : 0); 13879df1c38bSBrooks Davis AUXARGS_ENTRY(pos, AT_ARGC, imgp->args->argc); 13889df1c38bSBrooks Davis AUXARGS_ENTRY_PTR(pos, AT_ARGV, imgp->argv); 13899df1c38bSBrooks Davis AUXARGS_ENTRY(pos, AT_ENVC, imgp->args->envc); 13909df1c38bSBrooks Davis AUXARGS_ENTRY_PTR(pos, AT_ENVV, imgp->envv); 13919df1c38bSBrooks Davis AUXARGS_ENTRY_PTR(pos, AT_PS_STRINGS, imgp->ps_strings); 1392e1743d02SSøren Schmidt AUXARGS_ENTRY(pos, AT_NULL, 0); 1393e1743d02SSøren Schmidt 1394e1743d02SSøren Schmidt free(imgp->auxargs, M_TEMP); 1395e1743d02SSøren Schmidt imgp->auxargs = NULL; 1396d8b2f079SBrooks Davis KASSERT(pos - argarray <= AT_COUNT, ("Too many auxargs")); 13975f77b8a8SBrooks Davis 1398d8010b11SJohn Baldwin error = copyout(argarray, (void *)base, sizeof(*argarray) * AT_COUNT); 13995f77b8a8SBrooks Davis free(argarray, M_TEMP); 140003b0d68cSJohn Baldwin return (error); 1401e3532331SJohn Baldwin } 1402e1743d02SSøren Schmidt 1403e3532331SJohn Baldwin int 140431174518SJohn Baldwin __elfN(freebsd_fixup)(uintptr_t *stack_base, struct image_params *imgp) 1405e3532331SJohn Baldwin { 1406e3532331SJohn Baldwin Elf_Addr *base; 1407e3532331SJohn Baldwin 1408e3532331SJohn Baldwin base = (Elf_Addr *)*stack_base; 14093ebc1248SPeter Wemm base--; 14105f77b8a8SBrooks Davis if (suword(base, imgp->args->argc) == -1) 14115f77b8a8SBrooks Davis return (EFAULT); 141231174518SJohn Baldwin *stack_base = (uintptr_t)base; 1413a7cddfedSJake Burkholder return (0); 1414e1743d02SSøren Schmidt } 1415e1743d02SSøren Schmidt 1416e1743d02SSøren Schmidt /* 14178c64af4fSJohn Polstra * Code for generating ELF core dumps. 14188c64af4fSJohn Polstra */ 14198c64af4fSJohn Polstra 14204d77a549SAlfred Perlstein typedef void (*segment_callback)(vm_map_entry_t, void *); 14210ff27d31SJohn Polstra 14220ff27d31SJohn Polstra /* Closure for cb_put_phdr(). */ 14230ff27d31SJohn Polstra struct phdr_closure { 14240ff27d31SJohn Polstra Elf_Phdr *phdr; /* Program header to fill in */ 14250ff27d31SJohn Polstra Elf_Off offset; /* Offset of segment in core file */ 14260ff27d31SJohn Polstra }; 14270ff27d31SJohn Polstra 14280ff27d31SJohn Polstra /* Closure for cb_size_segment(). */ 14290ff27d31SJohn Polstra struct sseg_closure { 14300ff27d31SJohn Polstra int count; /* Count of writable segments. */ 14310ff27d31SJohn Polstra size_t size; /* Total size of all writable segments. */ 14320ff27d31SJohn Polstra }; 14330ff27d31SJohn Polstra 1434bd390213SMikolaj Golub typedef void (*outfunc_t)(void *, struct sbuf *, size_t *); 1435bd390213SMikolaj Golub 1436bd390213SMikolaj Golub struct note_info { 1437bd390213SMikolaj Golub int type; /* Note type. */ 1438bd390213SMikolaj Golub outfunc_t outfunc; /* Output function. */ 1439bd390213SMikolaj Golub void *outarg; /* Argument for the output function. */ 1440bd390213SMikolaj Golub size_t outsize; /* Output size. */ 1441bd390213SMikolaj Golub TAILQ_ENTRY(note_info) link; /* Link to the next note info. */ 1442bd390213SMikolaj Golub }; 1443bd390213SMikolaj Golub 1444bd390213SMikolaj Golub TAILQ_HEAD(note_info_list, note_info); 1445bd390213SMikolaj Golub 1446aa14e9b7SMark Johnston /* Coredump output parameters. */ 1447aa14e9b7SMark Johnston struct coredump_params { 1448aa14e9b7SMark Johnston off_t offset; 1449aa14e9b7SMark Johnston struct ucred *active_cred; 1450aa14e9b7SMark Johnston struct ucred *file_cred; 1451aa14e9b7SMark Johnston struct thread *td; 1452aa14e9b7SMark Johnston struct vnode *vp; 145378f57a9cSMark Johnston struct compressor *comp; 1454aa14e9b7SMark Johnston }; 1455aa14e9b7SMark Johnston 145678f57a9cSMark Johnston extern int compress_user_cores; 145778f57a9cSMark Johnston extern int compress_user_cores_level; 145878f57a9cSMark Johnston 14594d77a549SAlfred Perlstein static void cb_put_phdr(vm_map_entry_t, void *); 14604d77a549SAlfred Perlstein static void cb_size_segment(vm_map_entry_t, void *); 1461c468ff88SAndriy Gapon static int core_write(struct coredump_params *, const void *, size_t, off_t, 1462*f31695ccSMark Johnston enum uio_seg, size_t *); 14631005d8afSConrad Meyer static void each_dumpable_segment(struct thread *, segment_callback, void *); 1464aa14e9b7SMark Johnston static int __elfN(corehdr)(struct coredump_params *, int, void *, size_t, 1465aa14e9b7SMark Johnston struct note_info_list *, size_t); 1466bd390213SMikolaj Golub static void __elfN(prepare_notes)(struct thread *, struct note_info_list *, 1467bd390213SMikolaj Golub size_t *); 1468bd390213SMikolaj Golub static void __elfN(puthdr)(struct thread *, void *, size_t, int, size_t); 1469bd390213SMikolaj Golub static void __elfN(putnote)(struct note_info *, struct sbuf *); 1470bd390213SMikolaj Golub static size_t register_note(struct note_info_list *, int, outfunc_t, void *); 1471bd390213SMikolaj Golub static int sbuf_drain_core_output(void *, const char *, int); 1472bd390213SMikolaj Golub 1473bd390213SMikolaj Golub static void __elfN(note_fpregset)(void *, struct sbuf *, size_t *); 1474bd390213SMikolaj Golub static void __elfN(note_prpsinfo)(void *, struct sbuf *, size_t *); 1475bd390213SMikolaj Golub static void __elfN(note_prstatus)(void *, struct sbuf *, size_t *); 1476bd390213SMikolaj Golub static void __elfN(note_threadmd)(void *, struct sbuf *, size_t *); 1477bd390213SMikolaj Golub static void __elfN(note_thrmisc)(void *, struct sbuf *, size_t *); 147886be94fcSTycho Nightingale static void __elfN(note_ptlwpinfo)(void *, struct sbuf *, size_t *); 1479f1fca82eSMikolaj Golub static void __elfN(note_procstat_auxv)(void *, struct sbuf *, size_t *); 1480f1fca82eSMikolaj Golub static void __elfN(note_procstat_proc)(void *, struct sbuf *, size_t *); 1481f1fca82eSMikolaj Golub static void __elfN(note_procstat_psstrings)(void *, struct sbuf *, size_t *); 1482f1fca82eSMikolaj Golub static void note_procstat_files(void *, struct sbuf *, size_t *); 1483f1fca82eSMikolaj Golub static void note_procstat_groups(void *, struct sbuf *, size_t *); 1484f1fca82eSMikolaj Golub static void note_procstat_osrel(void *, struct sbuf *, size_t *); 1485f1fca82eSMikolaj Golub static void note_procstat_rlimit(void *, struct sbuf *, size_t *); 1486f1fca82eSMikolaj Golub static void note_procstat_umask(void *, struct sbuf *, size_t *); 1487f1fca82eSMikolaj Golub static void note_procstat_vmmap(void *, struct sbuf *, size_t *); 14888c64af4fSJohn Polstra 1489aa14e9b7SMark Johnston /* 1490aa14e9b7SMark Johnston * Write out a core segment to the compression stream. 1491aa14e9b7SMark Johnston */ 1492e7228204SAlfred Perlstein static int 1493aa14e9b7SMark Johnston compress_chunk(struct coredump_params *p, char *base, char *buf, u_int len) 1494aa14e9b7SMark Johnston { 1495aa14e9b7SMark Johnston u_int chunk_len; 1496e7228204SAlfred Perlstein int error; 1497aa14e9b7SMark Johnston 1498aa14e9b7SMark Johnston while (len > 0) { 1499aa14e9b7SMark Johnston chunk_len = MIN(len, CORE_BUF_SIZE); 1500c468ff88SAndriy Gapon 1501c468ff88SAndriy Gapon /* 1502c468ff88SAndriy Gapon * We can get EFAULT error here. 1503c468ff88SAndriy Gapon * In that case zero out the current chunk of the segment. 1504c468ff88SAndriy Gapon */ 1505c468ff88SAndriy Gapon error = copyin(base, buf, chunk_len); 1506c468ff88SAndriy Gapon if (error != 0) 1507c468ff88SAndriy Gapon bzero(buf, chunk_len); 150878f57a9cSMark Johnston error = compressor_write(p->comp, buf, chunk_len); 1509aa14e9b7SMark Johnston if (error != 0) 1510aa14e9b7SMark Johnston break; 1511aa14e9b7SMark Johnston base += chunk_len; 1512aa14e9b7SMark Johnston len -= chunk_len; 1513e7228204SAlfred Perlstein } 1514e7228204SAlfred Perlstein return (error); 1515e7228204SAlfred Perlstein } 1516e7228204SAlfred Perlstein 1517aa14e9b7SMark Johnston static int 151878f57a9cSMark Johnston core_compressed_write(void *base, size_t len, off_t offset, void *arg) 1519aa14e9b7SMark Johnston { 1520aa14e9b7SMark Johnston 1521aa14e9b7SMark Johnston return (core_write((struct coredump_params *)arg, base, len, offset, 1522*f31695ccSMark Johnston UIO_SYSSPACE, NULL)); 1523aa14e9b7SMark Johnston } 1524aa14e9b7SMark Johnston 1525aa14e9b7SMark Johnston static int 1526c468ff88SAndriy Gapon core_write(struct coredump_params *p, const void *base, size_t len, 1527*f31695ccSMark Johnston off_t offset, enum uio_seg seg, size_t *resid) 1528aa14e9b7SMark Johnston { 1529aa14e9b7SMark Johnston 1530c468ff88SAndriy Gapon return (vn_rdwr_inchunks(UIO_WRITE, p->vp, __DECONST(void *, base), 1531c468ff88SAndriy Gapon len, offset, seg, IO_UNIT | IO_DIRECT | IO_RANGELOCKED, 1532*f31695ccSMark Johnston p->active_cred, p->file_cred, resid, p->td)); 1533aa14e9b7SMark Johnston } 1534aa14e9b7SMark Johnston 1535aa14e9b7SMark Johnston static int 1536*f31695ccSMark Johnston core_output(char *base, size_t len, off_t offset, struct coredump_params *p, 1537aa14e9b7SMark Johnston void *tmpbuf) 1538aa14e9b7SMark Johnston { 1539*f31695ccSMark Johnston vm_map_t map; 1540*f31695ccSMark Johnston struct mount *mp; 1541*f31695ccSMark Johnston size_t resid, runlen; 1542c468ff88SAndriy Gapon int error; 1543*f31695ccSMark Johnston bool success; 1544*f31695ccSMark Johnston 1545*f31695ccSMark Johnston KASSERT((uintptr_t)base % PAGE_SIZE == 0, 1546*f31695ccSMark Johnston ("%s: user address %#lx is not page-aligned", 1547*f31695ccSMark Johnston __func__, (uintptr_t)base)); 1548aa14e9b7SMark Johnston 154978f57a9cSMark Johnston if (p->comp != NULL) 1550aa14e9b7SMark Johnston return (compress_chunk(p, base, tmpbuf, len)); 155178f57a9cSMark Johnston 1552*f31695ccSMark Johnston map = &p->td->td_proc->p_vmspace->vm_map; 1553*f31695ccSMark Johnston for (; len > 0; base += runlen, offset += runlen, len -= runlen) { 1554c468ff88SAndriy Gapon /* 1555*f31695ccSMark Johnston * Attempt to page in all virtual pages in the range. If a 1556*f31695ccSMark Johnston * virtual page is not backed by the pager, it is represented as 1557*f31695ccSMark Johnston * a hole in the file. This can occur with zero-filled 1558*f31695ccSMark Johnston * anonymous memory or truncated files, for example. 1559c468ff88SAndriy Gapon */ 1560*f31695ccSMark Johnston for (runlen = 0; runlen < len; runlen += PAGE_SIZE) { 1561*f31695ccSMark Johnston error = vm_fault(map, (uintptr_t)base + runlen, 1562*f31695ccSMark Johnston VM_PROT_READ, VM_FAULT_NOFILL, NULL); 1563*f31695ccSMark Johnston if (runlen == 0) 1564*f31695ccSMark Johnston success = error == KERN_SUCCESS; 1565*f31695ccSMark Johnston else if ((error == KERN_SUCCESS) != success) 1566*f31695ccSMark Johnston break; 1567*f31695ccSMark Johnston } 1568*f31695ccSMark Johnston 1569*f31695ccSMark Johnston if (success) { 1570*f31695ccSMark Johnston error = core_write(p, base, runlen, offset, 1571*f31695ccSMark Johnston UIO_USERSPACE, &resid); 1572*f31695ccSMark Johnston if (error != 0) { 1573*f31695ccSMark Johnston if (error != EFAULT) 1574*f31695ccSMark Johnston break; 1575c468ff88SAndriy Gapon 1576c468ff88SAndriy Gapon /* 1577*f31695ccSMark Johnston * EFAULT may be returned if the user mapping 1578*f31695ccSMark Johnston * could not be accessed, e.g., because a mapped 1579*f31695ccSMark Johnston * file has been truncated. Skip the page if no 1580*f31695ccSMark Johnston * progress was made, to protect against a 1581*f31695ccSMark Johnston * hypothetical scenario where vm_fault() was 1582*f31695ccSMark Johnston * successful but core_write() returns EFAULT 1583*f31695ccSMark Johnston * anyway. 1584c468ff88SAndriy Gapon */ 1585*f31695ccSMark Johnston runlen -= resid; 1586*f31695ccSMark Johnston if (runlen == 0) { 1587*f31695ccSMark Johnston success = false; 1588*f31695ccSMark Johnston runlen = PAGE_SIZE; 1589*f31695ccSMark Johnston } 1590*f31695ccSMark Johnston } 1591*f31695ccSMark Johnston } 1592*f31695ccSMark Johnston if (!success) { 1593*f31695ccSMark Johnston error = vn_start_write(p->vp, &mp, V_WAIT); 1594*f31695ccSMark Johnston if (error != 0) 1595*f31695ccSMark Johnston break; 1596*f31695ccSMark Johnston vn_lock(p->vp, LK_EXCLUSIVE | LK_RETRY); 1597*f31695ccSMark Johnston error = vn_truncate_locked(p->vp, offset + runlen, 1598*f31695ccSMark Johnston false, p->td->td_ucred); 1599*f31695ccSMark Johnston VOP_UNLOCK(p->vp); 1600*f31695ccSMark Johnston vn_finished_write(mp); 1601*f31695ccSMark Johnston if (error != 0) 1602*f31695ccSMark Johnston break; 1603*f31695ccSMark Johnston } 1604c468ff88SAndriy Gapon } 1605c468ff88SAndriy Gapon return (error); 1606aa14e9b7SMark Johnston } 1607bd390213SMikolaj Golub 1608bd390213SMikolaj Golub /* 1609bd390213SMikolaj Golub * Drain into a core file. 1610bd390213SMikolaj Golub */ 1611bd390213SMikolaj Golub static int 1612bd390213SMikolaj Golub sbuf_drain_core_output(void *arg, const char *data, int len) 1613bd390213SMikolaj Golub { 1614aa14e9b7SMark Johnston struct coredump_params *p; 1615f1fca82eSMikolaj Golub int error, locked; 1616bd390213SMikolaj Golub 1617aa14e9b7SMark Johnston p = (struct coredump_params *)arg; 1618f1fca82eSMikolaj Golub 1619f1fca82eSMikolaj Golub /* 1620f1fca82eSMikolaj Golub * Some kern_proc out routines that print to this sbuf may 1621f1fca82eSMikolaj Golub * call us with the process lock held. Draining with the 1622f1fca82eSMikolaj Golub * non-sleepable lock held is unsafe. The lock is needed for 1623f1fca82eSMikolaj Golub * those routines when dumping a live process. In our case we 1624f1fca82eSMikolaj Golub * can safely release the lock before draining and acquire 1625f1fca82eSMikolaj Golub * again after. 1626f1fca82eSMikolaj Golub */ 1627f1fca82eSMikolaj Golub locked = PROC_LOCKED(p->td->td_proc); 1628f1fca82eSMikolaj Golub if (locked) 1629f1fca82eSMikolaj Golub PROC_UNLOCK(p->td->td_proc); 163078f57a9cSMark Johnston if (p->comp != NULL) 163178f57a9cSMark Johnston error = compressor_write(p->comp, __DECONST(char *, data), len); 1632bd390213SMikolaj Golub else 1633aa14e9b7SMark Johnston error = core_write(p, __DECONST(void *, data), len, p->offset, 1634*f31695ccSMark Johnston UIO_SYSSPACE, NULL); 1635f1fca82eSMikolaj Golub if (locked) 1636f1fca82eSMikolaj Golub PROC_LOCK(p->td->td_proc); 1637bd390213SMikolaj Golub if (error != 0) 1638bd390213SMikolaj Golub return (-error); 1639bd390213SMikolaj Golub p->offset += len; 1640bd390213SMikolaj Golub return (len); 1641bd390213SMikolaj Golub } 1642bd390213SMikolaj Golub 16438c64af4fSJohn Polstra int 1644e7228204SAlfred Perlstein __elfN(coredump)(struct thread *td, struct vnode *vp, off_t limit, int flags) 1645fca666a1SJulian Elischer { 1646247aba24SMarcel Moolenaar struct ucred *cred = td->td_ucred; 1647fca666a1SJulian Elischer int error = 0; 16480ff27d31SJohn Polstra struct sseg_closure seginfo; 1649bd390213SMikolaj Golub struct note_info_list notelst; 1650aa14e9b7SMark Johnston struct coredump_params params; 1651bd390213SMikolaj Golub struct note_info *ninfo; 1652aa14e9b7SMark Johnston void *hdr, *tmpbuf; 1653bd390213SMikolaj Golub size_t hdrsize, notesz, coresize; 16548c64af4fSJohn Polstra 1655e7228204SAlfred Perlstein hdr = NULL; 165602d131adSMark Johnston tmpbuf = NULL; 1657bd390213SMikolaj Golub TAILQ_INIT(¬elst); 1658e7228204SAlfred Perlstein 16590ff27d31SJohn Polstra /* Size the program segments. */ 16600ff27d31SJohn Polstra seginfo.count = 0; 16610ff27d31SJohn Polstra seginfo.size = 0; 16621005d8afSConrad Meyer each_dumpable_segment(td, cb_size_segment, &seginfo); 16630ff27d31SJohn Polstra 16640ff27d31SJohn Polstra /* 1665bd390213SMikolaj Golub * Collect info about the core file header area. 16660ff27d31SJohn Polstra */ 1667bd390213SMikolaj Golub hdrsize = sizeof(Elf_Ehdr) + sizeof(Elf_Phdr) * (1 + seginfo.count); 1668c17b0bd2SConrad Meyer if (seginfo.count + 1 >= PN_XNUM) 1669c17b0bd2SConrad Meyer hdrsize += sizeof(Elf_Shdr); 1670bd390213SMikolaj Golub __elfN(prepare_notes)(td, ¬elst, ¬esz); 1671bd390213SMikolaj Golub coresize = round_page(hdrsize + notesz) + seginfo.size; 16720ff27d31SJohn Polstra 167302d131adSMark Johnston /* Set up core dump parameters. */ 167402d131adSMark Johnston params.offset = 0; 167502d131adSMark Johnston params.active_cred = cred; 167602d131adSMark Johnston params.file_cred = NOCRED; 167702d131adSMark Johnston params.td = td; 167802d131adSMark Johnston params.vp = vp; 167978f57a9cSMark Johnston params.comp = NULL; 168002d131adSMark Johnston 1681afcc55f3SEdward Tomasz Napierala #ifdef RACCT 16824b5c9cf6SEdward Tomasz Napierala if (racct_enable) { 16831ba5ad42SEdward Tomasz Napierala PROC_LOCK(td->td_proc); 1684bd390213SMikolaj Golub error = racct_add(td->td_proc, RACCT_CORE, coresize); 16851ba5ad42SEdward Tomasz Napierala PROC_UNLOCK(td->td_proc); 16861ba5ad42SEdward Tomasz Napierala if (error != 0) { 16871ba5ad42SEdward Tomasz Napierala error = EFAULT; 16881ba5ad42SEdward Tomasz Napierala goto done; 16891ba5ad42SEdward Tomasz Napierala } 16904b5c9cf6SEdward Tomasz Napierala } 1691afcc55f3SEdward Tomasz Napierala #endif 1692bd390213SMikolaj Golub if (coresize >= limit) { 1693fba6b1afSAlfred Perlstein error = EFAULT; 1694fba6b1afSAlfred Perlstein goto done; 1695fba6b1afSAlfred Perlstein } 16960ff27d31SJohn Polstra 1697aa14e9b7SMark Johnston /* Create a compression stream if necessary. */ 169878f57a9cSMark Johnston if (compress_user_cores != 0) { 169978f57a9cSMark Johnston params.comp = compressor_init(core_compressed_write, 170078f57a9cSMark Johnston compress_user_cores, CORE_BUF_SIZE, 170178f57a9cSMark Johnston compress_user_cores_level, ¶ms); 170278f57a9cSMark Johnston if (params.comp == NULL) { 1703aa14e9b7SMark Johnston error = EFAULT; 1704aa14e9b7SMark Johnston goto done; 1705aa14e9b7SMark Johnston } 1706aa14e9b7SMark Johnston tmpbuf = malloc(CORE_BUF_SIZE, M_TEMP, M_WAITOK | M_ZERO); 1707aa14e9b7SMark Johnston } 1708aa14e9b7SMark Johnston 17090ff27d31SJohn Polstra /* 17100ff27d31SJohn Polstra * Allocate memory for building the header, fill it up, 1711bd390213SMikolaj Golub * and write it out following the notes. 17120ff27d31SJohn Polstra */ 1713a163d034SWarner Losh hdr = malloc(hdrsize, M_TEMP, M_WAITOK); 1714aa14e9b7SMark Johnston error = __elfN(corehdr)(¶ms, seginfo.count, hdr, hdrsize, ¬elst, 1715aa14e9b7SMark Johnston notesz); 17160ff27d31SJohn Polstra 17170ff27d31SJohn Polstra /* Write the contents of all of the writable segments. */ 17180ff27d31SJohn Polstra if (error == 0) { 17190ff27d31SJohn Polstra Elf_Phdr *php; 17202b471bc6STim J. Robbins off_t offset; 17210ff27d31SJohn Polstra int i; 17220ff27d31SJohn Polstra 17230ff27d31SJohn Polstra php = (Elf_Phdr *)((char *)hdr + sizeof(Elf_Ehdr)) + 1; 1724bd390213SMikolaj Golub offset = round_page(hdrsize + notesz); 17250ff27d31SJohn Polstra for (i = 0; i < seginfo.count; i++) { 1726*f31695ccSMark Johnston error = core_output((char *)(uintptr_t)php->p_vaddr, 1727aa14e9b7SMark Johnston php->p_filesz, offset, ¶ms, tmpbuf); 17280ff27d31SJohn Polstra if (error != 0) 17292b471bc6STim J. Robbins break; 17300ff27d31SJohn Polstra offset += php->p_filesz; 17310ff27d31SJohn Polstra php++; 17320ff27d31SJohn Polstra } 173378f57a9cSMark Johnston if (error == 0 && params.comp != NULL) 173478f57a9cSMark Johnston error = compressor_flush(params.comp); 17350ff27d31SJohn Polstra } 1736e7228204SAlfred Perlstein if (error) { 1737e7228204SAlfred Perlstein log(LOG_WARNING, 1738e7228204SAlfred Perlstein "Failed to write core file for process %s (error %d)\n", 1739e7228204SAlfred Perlstein curproc->p_comm, error); 1740e7228204SAlfred Perlstein } 1741e7228204SAlfred Perlstein 1742e7228204SAlfred Perlstein done: 1743aa14e9b7SMark Johnston free(tmpbuf, M_TEMP); 174478f57a9cSMark Johnston if (params.comp != NULL) 174578f57a9cSMark Johnston compressor_fini(params.comp); 1746bd390213SMikolaj Golub while ((ninfo = TAILQ_FIRST(¬elst)) != NULL) { 1747bd390213SMikolaj Golub TAILQ_REMOVE(¬elst, ninfo, link); 1748bd390213SMikolaj Golub free(ninfo, M_TEMP); 1749bd390213SMikolaj Golub } 1750bd390213SMikolaj Golub if (hdr != NULL) 17510ff27d31SJohn Polstra free(hdr, M_TEMP); 17520ff27d31SJohn Polstra 1753a7cddfedSJake Burkholder return (error); 17548c64af4fSJohn Polstra } 17558c64af4fSJohn Polstra 17560ff27d31SJohn Polstra /* 17571005d8afSConrad Meyer * A callback for each_dumpable_segment() to write out the segment's 17580ff27d31SJohn Polstra * program header entry. 17590ff27d31SJohn Polstra */ 17600ff27d31SJohn Polstra static void 17615cc6d253SEd Maste cb_put_phdr(vm_map_entry_t entry, void *closure) 17620ff27d31SJohn Polstra { 17630ff27d31SJohn Polstra struct phdr_closure *phc = (struct phdr_closure *)closure; 17640ff27d31SJohn Polstra Elf_Phdr *phdr = phc->phdr; 17650ff27d31SJohn Polstra 17660ff27d31SJohn Polstra phc->offset = round_page(phc->offset); 17670ff27d31SJohn Polstra 17680ff27d31SJohn Polstra phdr->p_type = PT_LOAD; 17690ff27d31SJohn Polstra phdr->p_offset = phc->offset; 17700ff27d31SJohn Polstra phdr->p_vaddr = entry->start; 17710ff27d31SJohn Polstra phdr->p_paddr = 0; 17720ff27d31SJohn Polstra phdr->p_filesz = phdr->p_memsz = entry->end - entry->start; 17730ff27d31SJohn Polstra phdr->p_align = PAGE_SIZE; 1774ed167eaaSKonstantin Belousov phdr->p_flags = __elfN(untrans_prot)(entry->protection); 17750ff27d31SJohn Polstra 17760ff27d31SJohn Polstra phc->offset += phdr->p_filesz; 17770ff27d31SJohn Polstra phc->phdr++; 17780ff27d31SJohn Polstra } 17790ff27d31SJohn Polstra 17800ff27d31SJohn Polstra /* 17811005d8afSConrad Meyer * A callback for each_dumpable_segment() to gather information about 17820ff27d31SJohn Polstra * the number of segments and their total size. 17830ff27d31SJohn Polstra */ 17840ff27d31SJohn Polstra static void 1785f3325003SConrad Meyer cb_size_segment(vm_map_entry_t entry, void *closure) 17860ff27d31SJohn Polstra { 17870ff27d31SJohn Polstra struct sseg_closure *ssc = (struct sseg_closure *)closure; 17880ff27d31SJohn Polstra 17890ff27d31SJohn Polstra ssc->count++; 17900ff27d31SJohn Polstra ssc->size += entry->end - entry->start; 17910ff27d31SJohn Polstra } 17920ff27d31SJohn Polstra 17930ff27d31SJohn Polstra /* 17940ff27d31SJohn Polstra * For each writable segment in the process's memory map, call the given 17950ff27d31SJohn Polstra * function with a pointer to the map entry and some arbitrary 17960ff27d31SJohn Polstra * caller-supplied data. 17970ff27d31SJohn Polstra */ 17980ff27d31SJohn Polstra static void 17991005d8afSConrad Meyer each_dumpable_segment(struct thread *td, segment_callback func, void *closure) 18000ff27d31SJohn Polstra { 1801247aba24SMarcel Moolenaar struct proc *p = td->td_proc; 18020ff27d31SJohn Polstra vm_map_t map = &p->p_vmspace->vm_map; 18030ff27d31SJohn Polstra vm_map_entry_t entry; 1804976a87a2SAlan Cox vm_object_t backing_object, object; 1805fec41f07SMark Johnston bool ignore_entry; 18060ff27d31SJohn Polstra 1807976a87a2SAlan Cox vm_map_lock_read(map); 18082288078cSDoug Moore VM_MAP_ENTRY_FOREACH(entry, map) { 1809fa7dd9c5SMatthew Dillon /* 1810fa7dd9c5SMatthew Dillon * Don't dump inaccessible mappings, deal with legacy 1811fa7dd9c5SMatthew Dillon * coredump mode. 1812fa7dd9c5SMatthew Dillon * 1813fa7dd9c5SMatthew Dillon * Note that read-only segments related to the elf binary 1814fa7dd9c5SMatthew Dillon * are marked MAP_ENTRY_NOCOREDUMP now so we no longer 1815fa7dd9c5SMatthew Dillon * need to arbitrarily ignore such segments. 1816fa7dd9c5SMatthew Dillon */ 1817fa7dd9c5SMatthew Dillon if (elf_legacy_coredump) { 1818fa7dd9c5SMatthew Dillon if ((entry->protection & VM_PROT_RW) != VM_PROT_RW) 18190ff27d31SJohn Polstra continue; 1820fa7dd9c5SMatthew Dillon } else { 1821fa7dd9c5SMatthew Dillon if ((entry->protection & VM_PROT_ALL) == 0) 1822fa7dd9c5SMatthew Dillon continue; 1823fa7dd9c5SMatthew Dillon } 18240ff27d31SJohn Polstra 18259730a5daSPaul Saab /* 1826fa7dd9c5SMatthew Dillon * Dont include memory segment in the coredump if 1827fa7dd9c5SMatthew Dillon * MAP_NOCORE is set in mmap(2) or MADV_NOCORE in 1828fa7dd9c5SMatthew Dillon * madvise(2). Do not dump submaps (i.e. parts of the 1829fa7dd9c5SMatthew Dillon * kernel map). 18309730a5daSPaul Saab */ 1831fa7dd9c5SMatthew Dillon if (entry->eflags & (MAP_ENTRY_NOCOREDUMP|MAP_ENTRY_IS_SUB_MAP)) 18329730a5daSPaul Saab continue; 18339730a5daSPaul Saab 1834976a87a2SAlan Cox if ((object = entry->object.vm_object) == NULL) 18350ff27d31SJohn Polstra continue; 18360ff27d31SJohn Polstra 18370ff27d31SJohn Polstra /* Ignore memory-mapped devices and such things. */ 1838bc403f03SAttilio Rao VM_OBJECT_RLOCK(object); 1839976a87a2SAlan Cox while ((backing_object = object->backing_object) != NULL) { 1840bc403f03SAttilio Rao VM_OBJECT_RLOCK(backing_object); 1841bc403f03SAttilio Rao VM_OBJECT_RUNLOCK(object); 1842976a87a2SAlan Cox object = backing_object; 1843976a87a2SAlan Cox } 1844fec41f07SMark Johnston ignore_entry = (object->flags & OBJ_FICTITIOUS) != 0; 1845bc403f03SAttilio Rao VM_OBJECT_RUNLOCK(object); 1846976a87a2SAlan Cox if (ignore_entry) 18470ff27d31SJohn Polstra continue; 18480ff27d31SJohn Polstra 18490ff27d31SJohn Polstra (*func)(entry, closure); 18500ff27d31SJohn Polstra } 1851976a87a2SAlan Cox vm_map_unlock_read(map); 18520ff27d31SJohn Polstra } 18530ff27d31SJohn Polstra 18540ff27d31SJohn Polstra /* 18550ff27d31SJohn Polstra * Write the core file header to the file, including padding up to 18560ff27d31SJohn Polstra * the page boundary. 18570ff27d31SJohn Polstra */ 18588c64af4fSJohn Polstra static int 1859aa14e9b7SMark Johnston __elfN(corehdr)(struct coredump_params *p, int numsegs, void *hdr, 1860aa14e9b7SMark Johnston size_t hdrsize, struct note_info_list *notelst, size_t notesz) 18618c64af4fSJohn Polstra { 1862bd390213SMikolaj Golub struct note_info *ninfo; 1863bd390213SMikolaj Golub struct sbuf *sb; 1864bd390213SMikolaj Golub int error; 18658c64af4fSJohn Polstra 18668c64af4fSJohn Polstra /* Fill in the header. */ 18670ff27d31SJohn Polstra bzero(hdr, hdrsize); 1868aa14e9b7SMark Johnston __elfN(puthdr)(p->td, hdr, hdrsize, numsegs, notesz); 18698c64af4fSJohn Polstra 1870bd390213SMikolaj Golub sb = sbuf_new(NULL, NULL, CORE_BUF_SIZE, SBUF_FIXEDLEN); 1871aa14e9b7SMark Johnston sbuf_set_drain(sb, sbuf_drain_core_output, p); 1872bd390213SMikolaj Golub sbuf_start_section(sb, NULL); 1873bd390213SMikolaj Golub sbuf_bcat(sb, hdr, hdrsize); 1874bd390213SMikolaj Golub TAILQ_FOREACH(ninfo, notelst, link) 1875bd390213SMikolaj Golub __elfN(putnote)(ninfo, sb); 1876bd390213SMikolaj Golub /* Align up to a page boundary for the program segments. */ 1877bd390213SMikolaj Golub sbuf_end_section(sb, -1, PAGE_SIZE, 0); 1878bd390213SMikolaj Golub error = sbuf_finish(sb); 1879bd390213SMikolaj Golub sbuf_delete(sb); 1880bd390213SMikolaj Golub 1881bd390213SMikolaj Golub return (error); 1882e7228204SAlfred Perlstein } 1883bd390213SMikolaj Golub 1884bd390213SMikolaj Golub static void 1885bd390213SMikolaj Golub __elfN(prepare_notes)(struct thread *td, struct note_info_list *list, 1886bd390213SMikolaj Golub size_t *sizep) 1887bd390213SMikolaj Golub { 1888bd390213SMikolaj Golub struct proc *p; 1889bd390213SMikolaj Golub struct thread *thr; 1890bd390213SMikolaj Golub size_t size; 1891bd390213SMikolaj Golub 1892bd390213SMikolaj Golub p = td->td_proc; 1893bd390213SMikolaj Golub size = 0; 1894bd390213SMikolaj Golub 1895bd390213SMikolaj Golub size += register_note(list, NT_PRPSINFO, __elfN(note_prpsinfo), p); 1896bd390213SMikolaj Golub 1897bd390213SMikolaj Golub /* 1898bd390213SMikolaj Golub * To have the debugger select the right thread (LWP) as the initial 1899bd390213SMikolaj Golub * thread, we dump the state of the thread passed to us in td first. 1900bd390213SMikolaj Golub * This is the thread that causes the core dump and thus likely to 1901bd390213SMikolaj Golub * be the right thread one wants to have selected in the debugger. 1902bd390213SMikolaj Golub */ 1903bd390213SMikolaj Golub thr = td; 1904bd390213SMikolaj Golub while (thr != NULL) { 1905bd390213SMikolaj Golub size += register_note(list, NT_PRSTATUS, 1906bd390213SMikolaj Golub __elfN(note_prstatus), thr); 1907bd390213SMikolaj Golub size += register_note(list, NT_FPREGSET, 1908bd390213SMikolaj Golub __elfN(note_fpregset), thr); 1909bd390213SMikolaj Golub size += register_note(list, NT_THRMISC, 1910bd390213SMikolaj Golub __elfN(note_thrmisc), thr); 191186be94fcSTycho Nightingale size += register_note(list, NT_PTLWPINFO, 191286be94fcSTycho Nightingale __elfN(note_ptlwpinfo), thr); 1913bd390213SMikolaj Golub size += register_note(list, -1, 1914bd390213SMikolaj Golub __elfN(note_threadmd), thr); 1915bd390213SMikolaj Golub 1916bd390213SMikolaj Golub thr = (thr == td) ? TAILQ_FIRST(&p->p_threads) : 1917bd390213SMikolaj Golub TAILQ_NEXT(thr, td_plist); 1918bd390213SMikolaj Golub if (thr == td) 1919bd390213SMikolaj Golub thr = TAILQ_NEXT(thr, td_plist); 1920dada0278SJohn Polstra } 1921dada0278SJohn Polstra 1922f1fca82eSMikolaj Golub size += register_note(list, NT_PROCSTAT_PROC, 1923f1fca82eSMikolaj Golub __elfN(note_procstat_proc), p); 1924f1fca82eSMikolaj Golub size += register_note(list, NT_PROCSTAT_FILES, 1925f1fca82eSMikolaj Golub note_procstat_files, p); 1926f1fca82eSMikolaj Golub size += register_note(list, NT_PROCSTAT_VMMAP, 1927f1fca82eSMikolaj Golub note_procstat_vmmap, p); 1928f1fca82eSMikolaj Golub size += register_note(list, NT_PROCSTAT_GROUPS, 1929f1fca82eSMikolaj Golub note_procstat_groups, p); 1930f1fca82eSMikolaj Golub size += register_note(list, NT_PROCSTAT_UMASK, 1931f1fca82eSMikolaj Golub note_procstat_umask, p); 1932f1fca82eSMikolaj Golub size += register_note(list, NT_PROCSTAT_RLIMIT, 1933f1fca82eSMikolaj Golub note_procstat_rlimit, p); 1934f1fca82eSMikolaj Golub size += register_note(list, NT_PROCSTAT_OSREL, 1935f1fca82eSMikolaj Golub note_procstat_osrel, p); 1936f1fca82eSMikolaj Golub size += register_note(list, NT_PROCSTAT_PSSTRINGS, 1937f1fca82eSMikolaj Golub __elfN(note_procstat_psstrings), p); 1938f1fca82eSMikolaj Golub size += register_note(list, NT_PROCSTAT_AUXV, 1939f1fca82eSMikolaj Golub __elfN(note_procstat_auxv), p); 1940f1fca82eSMikolaj Golub 1941bd390213SMikolaj Golub *sizep = size; 1942bd390213SMikolaj Golub } 1943bd390213SMikolaj Golub 1944bd390213SMikolaj Golub static void 1945bd390213SMikolaj Golub __elfN(puthdr)(struct thread *td, void *hdr, size_t hdrsize, int numsegs, 1946bd390213SMikolaj Golub size_t notesz) 1947bd390213SMikolaj Golub { 1948bd390213SMikolaj Golub Elf_Ehdr *ehdr; 1949bd390213SMikolaj Golub Elf_Phdr *phdr; 1950c17b0bd2SConrad Meyer Elf_Shdr *shdr; 1951bd390213SMikolaj Golub struct phdr_closure phc; 1952bd390213SMikolaj Golub 1953bd390213SMikolaj Golub ehdr = (Elf_Ehdr *)hdr; 1954bd390213SMikolaj Golub 1955bd390213SMikolaj Golub ehdr->e_ident[EI_MAG0] = ELFMAG0; 1956bd390213SMikolaj Golub ehdr->e_ident[EI_MAG1] = ELFMAG1; 1957bd390213SMikolaj Golub ehdr->e_ident[EI_MAG2] = ELFMAG2; 1958bd390213SMikolaj Golub ehdr->e_ident[EI_MAG3] = ELFMAG3; 1959bd390213SMikolaj Golub ehdr->e_ident[EI_CLASS] = ELF_CLASS; 1960bd390213SMikolaj Golub ehdr->e_ident[EI_DATA] = ELF_DATA; 1961bd390213SMikolaj Golub ehdr->e_ident[EI_VERSION] = EV_CURRENT; 1962bd390213SMikolaj Golub ehdr->e_ident[EI_OSABI] = ELFOSABI_FREEBSD; 1963bd390213SMikolaj Golub ehdr->e_ident[EI_ABIVERSION] = 0; 1964bd390213SMikolaj Golub ehdr->e_ident[EI_PAD] = 0; 1965bd390213SMikolaj Golub ehdr->e_type = ET_CORE; 1966885f13dcSJohn Baldwin ehdr->e_machine = td->td_proc->p_elf_machine; 1967bd390213SMikolaj Golub ehdr->e_version = EV_CURRENT; 1968bd390213SMikolaj Golub ehdr->e_entry = 0; 1969bd390213SMikolaj Golub ehdr->e_phoff = sizeof(Elf_Ehdr); 1970885f13dcSJohn Baldwin ehdr->e_flags = td->td_proc->p_elf_flags; 1971bd390213SMikolaj Golub ehdr->e_ehsize = sizeof(Elf_Ehdr); 1972bd390213SMikolaj Golub ehdr->e_phentsize = sizeof(Elf_Phdr); 1973bd390213SMikolaj Golub ehdr->e_shentsize = sizeof(Elf_Shdr); 1974bd390213SMikolaj Golub ehdr->e_shstrndx = SHN_UNDEF; 1975c17b0bd2SConrad Meyer if (numsegs + 1 < PN_XNUM) { 1976c17b0bd2SConrad Meyer ehdr->e_phnum = numsegs + 1; 1977c17b0bd2SConrad Meyer ehdr->e_shnum = 0; 1978c17b0bd2SConrad Meyer } else { 1979c17b0bd2SConrad Meyer ehdr->e_phnum = PN_XNUM; 1980c17b0bd2SConrad Meyer ehdr->e_shnum = 1; 1981c17b0bd2SConrad Meyer 1982c17b0bd2SConrad Meyer ehdr->e_shoff = ehdr->e_phoff + 1983c17b0bd2SConrad Meyer (numsegs + 1) * ehdr->e_phentsize; 1984c17b0bd2SConrad Meyer KASSERT(ehdr->e_shoff == hdrsize - sizeof(Elf_Shdr), 1985c17b0bd2SConrad Meyer ("e_shoff: %zu, hdrsize - shdr: %zu", 198607f825e8SConrad Meyer (size_t)ehdr->e_shoff, hdrsize - sizeof(Elf_Shdr))); 1987c17b0bd2SConrad Meyer 1988c17b0bd2SConrad Meyer shdr = (Elf_Shdr *)((char *)hdr + ehdr->e_shoff); 1989c17b0bd2SConrad Meyer memset(shdr, 0, sizeof(*shdr)); 1990c17b0bd2SConrad Meyer /* 1991c17b0bd2SConrad Meyer * A special first section is used to hold large segment and 1992c17b0bd2SConrad Meyer * section counts. This was proposed by Sun Microsystems in 1993c17b0bd2SConrad Meyer * Solaris and has been adopted by Linux; the standard ELF 1994c17b0bd2SConrad Meyer * tools are already familiar with the technique. 1995c17b0bd2SConrad Meyer * 1996c17b0bd2SConrad Meyer * See table 7-7 of the Solaris "Linker and Libraries Guide" 1997c17b0bd2SConrad Meyer * (or 12-7 depending on the version of the document) for more 1998c17b0bd2SConrad Meyer * details. 1999c17b0bd2SConrad Meyer */ 2000c17b0bd2SConrad Meyer shdr->sh_type = SHT_NULL; 2001c17b0bd2SConrad Meyer shdr->sh_size = ehdr->e_shnum; 2002c17b0bd2SConrad Meyer shdr->sh_link = ehdr->e_shstrndx; 2003c17b0bd2SConrad Meyer shdr->sh_info = numsegs + 1; 2004c17b0bd2SConrad Meyer } 2005bd390213SMikolaj Golub 2006bd390213SMikolaj Golub /* 2007bd390213SMikolaj Golub * Fill in the program header entries. 2008bd390213SMikolaj Golub */ 2009c17b0bd2SConrad Meyer phdr = (Elf_Phdr *)((char *)hdr + ehdr->e_phoff); 2010bd390213SMikolaj Golub 2011bd390213SMikolaj Golub /* The note segement. */ 2012bd390213SMikolaj Golub phdr->p_type = PT_NOTE; 2013bd390213SMikolaj Golub phdr->p_offset = hdrsize; 2014bd390213SMikolaj Golub phdr->p_vaddr = 0; 2015bd390213SMikolaj Golub phdr->p_paddr = 0; 2016bd390213SMikolaj Golub phdr->p_filesz = notesz; 2017bd390213SMikolaj Golub phdr->p_memsz = 0; 2018bd390213SMikolaj Golub phdr->p_flags = PF_R; 20191b8388cdSMikolaj Golub phdr->p_align = ELF_NOTE_ROUNDSIZE; 2020bd390213SMikolaj Golub phdr++; 2021bd390213SMikolaj Golub 2022bd390213SMikolaj Golub /* All the writable segments from the program. */ 2023bd390213SMikolaj Golub phc.phdr = phdr; 2024bd390213SMikolaj Golub phc.offset = round_page(hdrsize + notesz); 20251005d8afSConrad Meyer each_dumpable_segment(td, cb_put_phdr, &phc); 2026bd390213SMikolaj Golub } 2027bd390213SMikolaj Golub 2028bd390213SMikolaj Golub static size_t 2029bd390213SMikolaj Golub register_note(struct note_info_list *list, int type, outfunc_t out, void *arg) 2030bd390213SMikolaj Golub { 2031bd390213SMikolaj Golub struct note_info *ninfo; 2032bd390213SMikolaj Golub size_t size, notesize; 2033bd390213SMikolaj Golub 2034bd390213SMikolaj Golub size = 0; 2035bd390213SMikolaj Golub out(arg, NULL, &size); 2036bd390213SMikolaj Golub ninfo = malloc(sizeof(*ninfo), M_TEMP, M_ZERO | M_WAITOK); 2037bd390213SMikolaj Golub ninfo->type = type; 2038bd390213SMikolaj Golub ninfo->outfunc = out; 2039bd390213SMikolaj Golub ninfo->outarg = arg; 2040bd390213SMikolaj Golub ninfo->outsize = size; 2041bd390213SMikolaj Golub TAILQ_INSERT_TAIL(list, ninfo, link); 2042bd390213SMikolaj Golub 2043bd390213SMikolaj Golub if (type == -1) 2044bd390213SMikolaj Golub return (size); 2045bd390213SMikolaj Golub 2046bd390213SMikolaj Golub notesize = sizeof(Elf_Note) + /* note header */ 2047180e57e5SJohn Baldwin roundup2(sizeof(FREEBSD_ABI_VENDOR), ELF_NOTE_ROUNDSIZE) + 2048180e57e5SJohn Baldwin /* note name */ 2049180e57e5SJohn Baldwin roundup2(size, ELF_NOTE_ROUNDSIZE); /* note description */ 2050180e57e5SJohn Baldwin 2051180e57e5SJohn Baldwin return (notesize); 2052180e57e5SJohn Baldwin } 2053180e57e5SJohn Baldwin 2054180e57e5SJohn Baldwin static size_t 2055180e57e5SJohn Baldwin append_note_data(const void *src, void *dst, size_t len) 2056180e57e5SJohn Baldwin { 2057180e57e5SJohn Baldwin size_t padded_len; 2058180e57e5SJohn Baldwin 2059180e57e5SJohn Baldwin padded_len = roundup2(len, ELF_NOTE_ROUNDSIZE); 2060180e57e5SJohn Baldwin if (dst != NULL) { 2061180e57e5SJohn Baldwin bcopy(src, dst, len); 2062180e57e5SJohn Baldwin bzero((char *)dst + len, padded_len - len); 2063180e57e5SJohn Baldwin } 2064180e57e5SJohn Baldwin return (padded_len); 2065180e57e5SJohn Baldwin } 2066180e57e5SJohn Baldwin 2067180e57e5SJohn Baldwin size_t 2068180e57e5SJohn Baldwin __elfN(populate_note)(int type, void *src, void *dst, size_t size, void **descp) 2069180e57e5SJohn Baldwin { 2070180e57e5SJohn Baldwin Elf_Note *note; 2071180e57e5SJohn Baldwin char *buf; 2072180e57e5SJohn Baldwin size_t notesize; 2073180e57e5SJohn Baldwin 2074180e57e5SJohn Baldwin buf = dst; 2075180e57e5SJohn Baldwin if (buf != NULL) { 2076180e57e5SJohn Baldwin note = (Elf_Note *)buf; 2077180e57e5SJohn Baldwin note->n_namesz = sizeof(FREEBSD_ABI_VENDOR); 2078180e57e5SJohn Baldwin note->n_descsz = size; 2079180e57e5SJohn Baldwin note->n_type = type; 2080180e57e5SJohn Baldwin buf += sizeof(*note); 2081180e57e5SJohn Baldwin buf += append_note_data(FREEBSD_ABI_VENDOR, buf, 2082180e57e5SJohn Baldwin sizeof(FREEBSD_ABI_VENDOR)); 2083180e57e5SJohn Baldwin append_note_data(src, buf, size); 2084180e57e5SJohn Baldwin if (descp != NULL) 2085180e57e5SJohn Baldwin *descp = buf; 2086180e57e5SJohn Baldwin } 2087180e57e5SJohn Baldwin 2088180e57e5SJohn Baldwin notesize = sizeof(Elf_Note) + /* note header */ 2089180e57e5SJohn Baldwin roundup2(sizeof(FREEBSD_ABI_VENDOR), ELF_NOTE_ROUNDSIZE) + 2090180e57e5SJohn Baldwin /* note name */ 20911b8388cdSMikolaj Golub roundup2(size, ELF_NOTE_ROUNDSIZE); /* note description */ 2092bd390213SMikolaj Golub 2093bd390213SMikolaj Golub return (notesize); 2094bd390213SMikolaj Golub } 2095bd390213SMikolaj Golub 2096bd390213SMikolaj Golub static void 2097bd390213SMikolaj Golub __elfN(putnote)(struct note_info *ninfo, struct sbuf *sb) 2098bd390213SMikolaj Golub { 2099bd390213SMikolaj Golub Elf_Note note; 210014bdbaf2SConrad Meyer ssize_t old_len, sect_len; 210114bdbaf2SConrad Meyer size_t new_len, descsz, i; 2102bd390213SMikolaj Golub 2103bd390213SMikolaj Golub if (ninfo->type == -1) { 2104bd390213SMikolaj Golub ninfo->outfunc(ninfo->outarg, sb, &ninfo->outsize); 2105bd390213SMikolaj Golub return; 2106bd390213SMikolaj Golub } 2107bd390213SMikolaj Golub 2108180e57e5SJohn Baldwin note.n_namesz = sizeof(FREEBSD_ABI_VENDOR); 2109bd390213SMikolaj Golub note.n_descsz = ninfo->outsize; 2110bd390213SMikolaj Golub note.n_type = ninfo->type; 2111bd390213SMikolaj Golub 2112bd390213SMikolaj Golub sbuf_bcat(sb, ¬e, sizeof(note)); 2113bd390213SMikolaj Golub sbuf_start_section(sb, &old_len); 2114180e57e5SJohn Baldwin sbuf_bcat(sb, FREEBSD_ABI_VENDOR, sizeof(FREEBSD_ABI_VENDOR)); 21151b8388cdSMikolaj Golub sbuf_end_section(sb, old_len, ELF_NOTE_ROUNDSIZE, 0); 2116bd390213SMikolaj Golub if (note.n_descsz == 0) 2117bd390213SMikolaj Golub return; 2118bd390213SMikolaj Golub sbuf_start_section(sb, &old_len); 2119bd390213SMikolaj Golub ninfo->outfunc(ninfo->outarg, sb, &ninfo->outsize); 212014bdbaf2SConrad Meyer sect_len = sbuf_end_section(sb, old_len, ELF_NOTE_ROUNDSIZE, 0); 212114bdbaf2SConrad Meyer if (sect_len < 0) 212214bdbaf2SConrad Meyer return; 212314bdbaf2SConrad Meyer 212414bdbaf2SConrad Meyer new_len = (size_t)sect_len; 212514bdbaf2SConrad Meyer descsz = roundup(note.n_descsz, ELF_NOTE_ROUNDSIZE); 212614bdbaf2SConrad Meyer if (new_len < descsz) { 212714bdbaf2SConrad Meyer /* 212814bdbaf2SConrad Meyer * It is expected that individual note emitters will correctly 212914bdbaf2SConrad Meyer * predict their expected output size and fill up to that size 213014bdbaf2SConrad Meyer * themselves, padding in a format-specific way if needed. 213114bdbaf2SConrad Meyer * However, in case they don't, just do it here with zeros. 213214bdbaf2SConrad Meyer */ 213314bdbaf2SConrad Meyer for (i = 0; i < descsz - new_len; i++) 213414bdbaf2SConrad Meyer sbuf_putc(sb, 0); 213514bdbaf2SConrad Meyer } else if (new_len > descsz) { 213614bdbaf2SConrad Meyer /* 213714bdbaf2SConrad Meyer * We can't always truncate sb -- we may have drained some 213814bdbaf2SConrad Meyer * of it already. 213914bdbaf2SConrad Meyer */ 214014bdbaf2SConrad Meyer KASSERT(new_len == descsz, ("%s: Note type %u changed as we " 214114bdbaf2SConrad Meyer "read it (%zu > %zu). Since it is longer than " 214214bdbaf2SConrad Meyer "expected, this coredump's notes are corrupt. THIS " 214314bdbaf2SConrad Meyer "IS A BUG in the note_procstat routine for type %u.\n", 214414bdbaf2SConrad Meyer __func__, (unsigned)note.n_type, new_len, descsz, 214514bdbaf2SConrad Meyer (unsigned)note.n_type)); 214614bdbaf2SConrad Meyer } 2147bd390213SMikolaj Golub } 2148bd390213SMikolaj Golub 2149bd390213SMikolaj Golub /* 2150bd390213SMikolaj Golub * Miscellaneous note out functions. 2151bd390213SMikolaj Golub */ 2152bd390213SMikolaj Golub 2153841c0c7eSNathan Whitehorn #if defined(COMPAT_FREEBSD32) && __ELF_WORD_SIZE == 32 2154841c0c7eSNathan Whitehorn #include <compat/freebsd32/freebsd32.h> 215551645e83SJohn Baldwin #include <compat/freebsd32/freebsd32_signal.h> 2156841c0c7eSNathan Whitehorn 215762919d78SPeter Wemm typedef struct prstatus32 elf_prstatus_t; 215862919d78SPeter Wemm typedef struct prpsinfo32 elf_prpsinfo_t; 215962919d78SPeter Wemm typedef struct fpreg32 elf_prfpregset_t; 216062919d78SPeter Wemm typedef struct fpreg32 elf_fpregset_t; 216162919d78SPeter Wemm typedef struct reg32 elf_gregset_t; 21627f08176eSAttilio Rao typedef struct thrmisc32 elf_thrmisc_t; 2163f1fca82eSMikolaj Golub #define ELF_KERN_PROC_MASK KERN_PROC_MASK32 2164f1fca82eSMikolaj Golub typedef struct kinfo_proc32 elf_kinfo_proc_t; 2165f1fca82eSMikolaj Golub typedef uint32_t elf_ps_strings_t; 216662919d78SPeter Wemm #else 216762919d78SPeter Wemm typedef prstatus_t elf_prstatus_t; 216862919d78SPeter Wemm typedef prpsinfo_t elf_prpsinfo_t; 216962919d78SPeter Wemm typedef prfpregset_t elf_prfpregset_t; 217062919d78SPeter Wemm typedef prfpregset_t elf_fpregset_t; 217162919d78SPeter Wemm typedef gregset_t elf_gregset_t; 21727f08176eSAttilio Rao typedef thrmisc_t elf_thrmisc_t; 2173f1fca82eSMikolaj Golub #define ELF_KERN_PROC_MASK 0 2174f1fca82eSMikolaj Golub typedef struct kinfo_proc elf_kinfo_proc_t; 2175f1fca82eSMikolaj Golub typedef vm_offset_t elf_ps_strings_t; 217662919d78SPeter Wemm #endif 217762919d78SPeter Wemm 21788c64af4fSJohn Polstra static void 2179bd390213SMikolaj Golub __elfN(note_prpsinfo)(void *arg, struct sbuf *sb, size_t *sizep) 21808c64af4fSJohn Polstra { 2181c77547d2SJohn Baldwin struct sbuf sbarg; 2182c77547d2SJohn Baldwin size_t len; 2183c77547d2SJohn Baldwin char *cp, *end; 2184247aba24SMarcel Moolenaar struct proc *p; 2185bd390213SMikolaj Golub elf_prpsinfo_t *psinfo; 2186c77547d2SJohn Baldwin int error; 21878c64af4fSJohn Polstra 2188bd390213SMikolaj Golub p = (struct proc *)arg; 2189bd390213SMikolaj Golub if (sb != NULL) { 2190bd390213SMikolaj Golub KASSERT(*sizep == sizeof(*psinfo), ("invalid size")); 2191bd390213SMikolaj Golub psinfo = malloc(sizeof(*psinfo), M_TEMP, M_ZERO | M_WAITOK); 21928c9b7b2cSMarcel Moolenaar psinfo->pr_version = PRPSINFO_VERSION; 219362919d78SPeter Wemm psinfo->pr_psinfosz = sizeof(elf_prpsinfo_t); 2194ccd3953eSJohn Baldwin strlcpy(psinfo->pr_fname, p->p_comm, sizeof(psinfo->pr_fname)); 2195c77547d2SJohn Baldwin PROC_LOCK(p); 2196c77547d2SJohn Baldwin if (p->p_args != NULL) { 2197c77547d2SJohn Baldwin len = sizeof(psinfo->pr_psargs) - 1; 2198c77547d2SJohn Baldwin if (len > p->p_args->ar_length) 2199c77547d2SJohn Baldwin len = p->p_args->ar_length; 2200c77547d2SJohn Baldwin memcpy(psinfo->pr_psargs, p->p_args->ar_args, len); 2201c77547d2SJohn Baldwin PROC_UNLOCK(p); 2202c77547d2SJohn Baldwin error = 0; 2203c77547d2SJohn Baldwin } else { 2204c77547d2SJohn Baldwin _PHOLD(p); 2205c77547d2SJohn Baldwin PROC_UNLOCK(p); 2206c77547d2SJohn Baldwin sbuf_new(&sbarg, psinfo->pr_psargs, 2207c77547d2SJohn Baldwin sizeof(psinfo->pr_psargs), SBUF_FIXEDLEN); 2208c77547d2SJohn Baldwin error = proc_getargv(curthread, p, &sbarg); 2209c77547d2SJohn Baldwin PRELE(p); 2210c77547d2SJohn Baldwin if (sbuf_finish(&sbarg) == 0) 2211c77547d2SJohn Baldwin len = sbuf_len(&sbarg) - 1; 2212c77547d2SJohn Baldwin else 2213c77547d2SJohn Baldwin len = sizeof(psinfo->pr_psargs) - 1; 2214c77547d2SJohn Baldwin sbuf_delete(&sbarg); 2215c77547d2SJohn Baldwin } 2216c77547d2SJohn Baldwin if (error || len == 0) 2217ccd3953eSJohn Baldwin strlcpy(psinfo->pr_psargs, p->p_comm, 22188c9b7b2cSMarcel Moolenaar sizeof(psinfo->pr_psargs)); 2219c77547d2SJohn Baldwin else { 2220c77547d2SJohn Baldwin KASSERT(len < sizeof(psinfo->pr_psargs), 2221c77547d2SJohn Baldwin ("len is too long: %zu vs %zu", len, 2222c77547d2SJohn Baldwin sizeof(psinfo->pr_psargs))); 2223c77547d2SJohn Baldwin cp = psinfo->pr_psargs; 2224c77547d2SJohn Baldwin end = cp + len - 1; 2225c77547d2SJohn Baldwin for (;;) { 2226c77547d2SJohn Baldwin cp = memchr(cp, '\0', end - cp); 2227c77547d2SJohn Baldwin if (cp == NULL) 2228c77547d2SJohn Baldwin break; 2229c77547d2SJohn Baldwin *cp = ' '; 2230c77547d2SJohn Baldwin } 2231c77547d2SJohn Baldwin } 2232ccb83afdSJohn Baldwin psinfo->pr_pid = p->p_pid; 2233bd390213SMikolaj Golub sbuf_bcat(sb, psinfo, sizeof(*psinfo)); 2234bd390213SMikolaj Golub free(psinfo, M_TEMP); 2235bd390213SMikolaj Golub } 2236bd390213SMikolaj Golub *sizep = sizeof(*psinfo); 2237bd390213SMikolaj Golub } 2238bd390213SMikolaj Golub 2239bd390213SMikolaj Golub static void 2240bd390213SMikolaj Golub __elfN(note_prstatus)(void *arg, struct sbuf *sb, size_t *sizep) 2241bd390213SMikolaj Golub { 2242bd390213SMikolaj Golub struct thread *td; 2243bd390213SMikolaj Golub elf_prstatus_t *status; 2244bd390213SMikolaj Golub 2245bd390213SMikolaj Golub td = (struct thread *)arg; 2246bd390213SMikolaj Golub if (sb != NULL) { 2247bd390213SMikolaj Golub KASSERT(*sizep == sizeof(*status), ("invalid size")); 2248bd390213SMikolaj Golub status = malloc(sizeof(*status), M_TEMP, M_ZERO | M_WAITOK); 22498c9b7b2cSMarcel Moolenaar status->pr_version = PRSTATUS_VERSION; 225062919d78SPeter Wemm status->pr_statussz = sizeof(elf_prstatus_t); 225162919d78SPeter Wemm status->pr_gregsetsz = sizeof(elf_gregset_t); 225262919d78SPeter Wemm status->pr_fpregsetsz = sizeof(elf_fpregset_t); 22538c9b7b2cSMarcel Moolenaar status->pr_osreldate = osreldate; 2254bd390213SMikolaj Golub status->pr_cursig = td->td_proc->p_sig; 2255bd390213SMikolaj Golub status->pr_pid = td->td_tid; 2256841c0c7eSNathan Whitehorn #if defined(COMPAT_FREEBSD32) && __ELF_WORD_SIZE == 32 2257bd390213SMikolaj Golub fill_regs32(td, &status->pr_reg); 225862919d78SPeter Wemm #else 2259bd390213SMikolaj Golub fill_regs(td, &status->pr_reg); 226062919d78SPeter Wemm #endif 2261bd390213SMikolaj Golub sbuf_bcat(sb, status, sizeof(*status)); 2262bd390213SMikolaj Golub free(status, M_TEMP); 22638c9b7b2cSMarcel Moolenaar } 2264bd390213SMikolaj Golub *sizep = sizeof(*status); 2265bd390213SMikolaj Golub } 2266bd390213SMikolaj Golub 2267bd390213SMikolaj Golub static void 2268bd390213SMikolaj Golub __elfN(note_fpregset)(void *arg, struct sbuf *sb, size_t *sizep) 2269bd390213SMikolaj Golub { 2270bd390213SMikolaj Golub struct thread *td; 2271bd390213SMikolaj Golub elf_prfpregset_t *fpregset; 2272bd390213SMikolaj Golub 2273bd390213SMikolaj Golub td = (struct thread *)arg; 2274bd390213SMikolaj Golub if (sb != NULL) { 2275bd390213SMikolaj Golub KASSERT(*sizep == sizeof(*fpregset), ("invalid size")); 2276bd390213SMikolaj Golub fpregset = malloc(sizeof(*fpregset), M_TEMP, M_ZERO | M_WAITOK); 2277bd390213SMikolaj Golub #if defined(COMPAT_FREEBSD32) && __ELF_WORD_SIZE == 32 2278bd390213SMikolaj Golub fill_fpregs32(td, fpregset); 2279bd390213SMikolaj Golub #else 2280bd390213SMikolaj Golub fill_fpregs(td, fpregset); 2281bd390213SMikolaj Golub #endif 2282bd390213SMikolaj Golub sbuf_bcat(sb, fpregset, sizeof(*fpregset)); 2283bd390213SMikolaj Golub free(fpregset, M_TEMP); 2284bd390213SMikolaj Golub } 2285bd390213SMikolaj Golub *sizep = sizeof(*fpregset); 2286bd390213SMikolaj Golub } 2287bd390213SMikolaj Golub 2288bd390213SMikolaj Golub static void 2289bd390213SMikolaj Golub __elfN(note_thrmisc)(void *arg, struct sbuf *sb, size_t *sizep) 2290bd390213SMikolaj Golub { 2291bd390213SMikolaj Golub struct thread *td; 2292bd390213SMikolaj Golub elf_thrmisc_t thrmisc; 2293bd390213SMikolaj Golub 2294bd390213SMikolaj Golub td = (struct thread *)arg; 2295bd390213SMikolaj Golub if (sb != NULL) { 2296bd390213SMikolaj Golub KASSERT(*sizep == sizeof(thrmisc), ("invalid size")); 22972e5f9189SEd Maste bzero(&thrmisc, sizeof(thrmisc)); 2298bd390213SMikolaj Golub strcpy(thrmisc.pr_tname, td->td_name); 2299bd390213SMikolaj Golub sbuf_bcat(sb, &thrmisc, sizeof(thrmisc)); 2300bd390213SMikolaj Golub } 2301bd390213SMikolaj Golub *sizep = sizeof(thrmisc); 2302bd390213SMikolaj Golub } 2303bd390213SMikolaj Golub 230486be94fcSTycho Nightingale static void 230586be94fcSTycho Nightingale __elfN(note_ptlwpinfo)(void *arg, struct sbuf *sb, size_t *sizep) 230686be94fcSTycho Nightingale { 230786be94fcSTycho Nightingale struct thread *td; 230886be94fcSTycho Nightingale size_t size; 230986be94fcSTycho Nightingale int structsize; 231051645e83SJohn Baldwin #if defined(COMPAT_FREEBSD32) && __ELF_WORD_SIZE == 32 231151645e83SJohn Baldwin struct ptrace_lwpinfo32 pl; 231251645e83SJohn Baldwin #else 231386be94fcSTycho Nightingale struct ptrace_lwpinfo pl; 231451645e83SJohn Baldwin #endif 231586be94fcSTycho Nightingale 231686be94fcSTycho Nightingale td = (struct thread *)arg; 231751645e83SJohn Baldwin size = sizeof(structsize) + sizeof(pl); 231886be94fcSTycho Nightingale if (sb != NULL) { 231986be94fcSTycho Nightingale KASSERT(*sizep == size, ("invalid size")); 232051645e83SJohn Baldwin structsize = sizeof(pl); 232186be94fcSTycho Nightingale sbuf_bcat(sb, &structsize, sizeof(structsize)); 232286be94fcSTycho Nightingale bzero(&pl, sizeof(pl)); 232386be94fcSTycho Nightingale pl.pl_lwpid = td->td_tid; 232486be94fcSTycho Nightingale pl.pl_event = PL_EVENT_NONE; 232586be94fcSTycho Nightingale pl.pl_sigmask = td->td_sigmask; 232686be94fcSTycho Nightingale pl.pl_siglist = td->td_siglist; 232786be94fcSTycho Nightingale if (td->td_si.si_signo != 0) { 232886be94fcSTycho Nightingale pl.pl_event = PL_EVENT_SIGNAL; 232986be94fcSTycho Nightingale pl.pl_flags |= PL_FLAG_SI; 233051645e83SJohn Baldwin #if defined(COMPAT_FREEBSD32) && __ELF_WORD_SIZE == 32 233151645e83SJohn Baldwin siginfo_to_siginfo32(&td->td_si, &pl.pl_siginfo); 233251645e83SJohn Baldwin #else 233386be94fcSTycho Nightingale pl.pl_siginfo = td->td_si; 233451645e83SJohn Baldwin #endif 233586be94fcSTycho Nightingale } 233686be94fcSTycho Nightingale strcpy(pl.pl_tdname, td->td_name); 233786be94fcSTycho Nightingale /* XXX TODO: supply more information in struct ptrace_lwpinfo*/ 233851645e83SJohn Baldwin sbuf_bcat(sb, &pl, sizeof(pl)); 233986be94fcSTycho Nightingale } 234086be94fcSTycho Nightingale *sizep = size; 234186be94fcSTycho Nightingale } 234286be94fcSTycho Nightingale 23434da47b2fSMarcel Moolenaar /* 23444da47b2fSMarcel Moolenaar * Allow for MD specific notes, as well as any MD 23454da47b2fSMarcel Moolenaar * specific preparations for writing MI notes. 23464da47b2fSMarcel Moolenaar */ 23478c64af4fSJohn Polstra static void 2348bd390213SMikolaj Golub __elfN(note_threadmd)(void *arg, struct sbuf *sb, size_t *sizep) 23498c64af4fSJohn Polstra { 2350bd390213SMikolaj Golub struct thread *td; 2351bd390213SMikolaj Golub void *buf; 2352bd390213SMikolaj Golub size_t size; 23538c64af4fSJohn Polstra 2354bd390213SMikolaj Golub td = (struct thread *)arg; 2355bd390213SMikolaj Golub size = *sizep; 2356bd390213SMikolaj Golub if (size != 0 && sb != NULL) 2357bd390213SMikolaj Golub buf = malloc(size, M_TEMP, M_ZERO | M_WAITOK); 235883a396ceSChristian Brueffer else 235983a396ceSChristian Brueffer buf = NULL; 2360bd390213SMikolaj Golub size = 0; 2361bd390213SMikolaj Golub __elfN(dump_thread)(td, buf, &size); 236264779280SKonstantin Belousov KASSERT(sb == NULL || *sizep == size, ("invalid size")); 236383a396ceSChristian Brueffer if (size != 0 && sb != NULL) 2364bd390213SMikolaj Golub sbuf_bcat(sb, buf, size); 2365a1761d73SChristian Brueffer free(buf, M_TEMP); 2366bd390213SMikolaj Golub *sizep = size; 23678c64af4fSJohn Polstra } 23688c64af4fSJohn Polstra 2369f1fca82eSMikolaj Golub #ifdef KINFO_PROC_SIZE 2370f1fca82eSMikolaj Golub CTASSERT(sizeof(struct kinfo_proc) == KINFO_PROC_SIZE); 2371f1fca82eSMikolaj Golub #endif 2372f1fca82eSMikolaj Golub 2373f1fca82eSMikolaj Golub static void 2374f1fca82eSMikolaj Golub __elfN(note_procstat_proc)(void *arg, struct sbuf *sb, size_t *sizep) 2375f1fca82eSMikolaj Golub { 2376f1fca82eSMikolaj Golub struct proc *p; 2377f1fca82eSMikolaj Golub size_t size; 2378f1fca82eSMikolaj Golub int structsize; 2379f1fca82eSMikolaj Golub 2380f1fca82eSMikolaj Golub p = (struct proc *)arg; 2381f1fca82eSMikolaj Golub size = sizeof(structsize) + p->p_numthreads * 2382f1fca82eSMikolaj Golub sizeof(elf_kinfo_proc_t); 2383f1fca82eSMikolaj Golub 2384f1fca82eSMikolaj Golub if (sb != NULL) { 2385f1fca82eSMikolaj Golub KASSERT(*sizep == size, ("invalid size")); 2386f1fca82eSMikolaj Golub structsize = sizeof(elf_kinfo_proc_t); 2387f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2388f1fca82eSMikolaj Golub PROC_LOCK(p); 2389f1fca82eSMikolaj Golub kern_proc_out(p, sb, ELF_KERN_PROC_MASK); 2390f1fca82eSMikolaj Golub } 2391f1fca82eSMikolaj Golub *sizep = size; 2392f1fca82eSMikolaj Golub } 2393f1fca82eSMikolaj Golub 2394f1fca82eSMikolaj Golub #ifdef KINFO_FILE_SIZE 2395f1fca82eSMikolaj Golub CTASSERT(sizeof(struct kinfo_file) == KINFO_FILE_SIZE); 2396f1fca82eSMikolaj Golub #endif 2397f1fca82eSMikolaj Golub 2398f1fca82eSMikolaj Golub static void 2399f1fca82eSMikolaj Golub note_procstat_files(void *arg, struct sbuf *sb, size_t *sizep) 2400f1fca82eSMikolaj Golub { 2401f1fca82eSMikolaj Golub struct proc *p; 240214bdbaf2SConrad Meyer size_t size, sect_sz, i; 240314bdbaf2SConrad Meyer ssize_t start_len, sect_len; 240414bdbaf2SConrad Meyer int structsize, filedesc_flags; 240514bdbaf2SConrad Meyer 2406bcb60d52SConrad Meyer if (coredump_pack_fileinfo) 240714bdbaf2SConrad Meyer filedesc_flags = KERN_FILEDESC_PACK_KINFO; 240814bdbaf2SConrad Meyer else 240914bdbaf2SConrad Meyer filedesc_flags = 0; 2410f1fca82eSMikolaj Golub 2411f1fca82eSMikolaj Golub p = (struct proc *)arg; 241214bdbaf2SConrad Meyer structsize = sizeof(struct kinfo_file); 2413f1fca82eSMikolaj Golub if (sb == NULL) { 2414f1fca82eSMikolaj Golub size = 0; 2415f1fca82eSMikolaj Golub sb = sbuf_new(NULL, NULL, 128, SBUF_FIXEDLEN); 24165c32e9fcSAlexander Motin sbuf_set_drain(sb, sbuf_count_drain, &size); 2417f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2418f1fca82eSMikolaj Golub PROC_LOCK(p); 241914bdbaf2SConrad Meyer kern_proc_filedesc_out(p, sb, -1, filedesc_flags); 2420f1fca82eSMikolaj Golub sbuf_finish(sb); 2421f1fca82eSMikolaj Golub sbuf_delete(sb); 2422f1fca82eSMikolaj Golub *sizep = size; 2423f1fca82eSMikolaj Golub } else { 242414bdbaf2SConrad Meyer sbuf_start_section(sb, &start_len); 242514bdbaf2SConrad Meyer 2426f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2427f1fca82eSMikolaj Golub PROC_LOCK(p); 242814bdbaf2SConrad Meyer kern_proc_filedesc_out(p, sb, *sizep - sizeof(structsize), 242914bdbaf2SConrad Meyer filedesc_flags); 243014bdbaf2SConrad Meyer 243114bdbaf2SConrad Meyer sect_len = sbuf_end_section(sb, start_len, 0, 0); 243214bdbaf2SConrad Meyer if (sect_len < 0) 243314bdbaf2SConrad Meyer return; 243414bdbaf2SConrad Meyer sect_sz = sect_len; 243514bdbaf2SConrad Meyer 243614bdbaf2SConrad Meyer KASSERT(sect_sz <= *sizep, 243714bdbaf2SConrad Meyer ("kern_proc_filedesc_out did not respect maxlen; " 243814bdbaf2SConrad Meyer "requested %zu, got %zu", *sizep - sizeof(structsize), 243914bdbaf2SConrad Meyer sect_sz - sizeof(structsize))); 244014bdbaf2SConrad Meyer 244114bdbaf2SConrad Meyer for (i = 0; i < *sizep - sect_sz && sb->s_error == 0; i++) 244214bdbaf2SConrad Meyer sbuf_putc(sb, 0); 2443f1fca82eSMikolaj Golub } 2444f1fca82eSMikolaj Golub } 2445f1fca82eSMikolaj Golub 2446f1fca82eSMikolaj Golub #ifdef KINFO_VMENTRY_SIZE 2447f1fca82eSMikolaj Golub CTASSERT(sizeof(struct kinfo_vmentry) == KINFO_VMENTRY_SIZE); 2448f1fca82eSMikolaj Golub #endif 2449f1fca82eSMikolaj Golub 2450f1fca82eSMikolaj Golub static void 2451f1fca82eSMikolaj Golub note_procstat_vmmap(void *arg, struct sbuf *sb, size_t *sizep) 2452f1fca82eSMikolaj Golub { 2453f1fca82eSMikolaj Golub struct proc *p; 2454f1fca82eSMikolaj Golub size_t size; 2455e6b95927SConrad Meyer int structsize, vmmap_flags; 2456e6b95927SConrad Meyer 2457e6b95927SConrad Meyer if (coredump_pack_vmmapinfo) 2458e6b95927SConrad Meyer vmmap_flags = KERN_VMMAP_PACK_KINFO; 2459e6b95927SConrad Meyer else 2460e6b95927SConrad Meyer vmmap_flags = 0; 2461f1fca82eSMikolaj Golub 2462f1fca82eSMikolaj Golub p = (struct proc *)arg; 2463e6b95927SConrad Meyer structsize = sizeof(struct kinfo_vmentry); 2464f1fca82eSMikolaj Golub if (sb == NULL) { 2465f1fca82eSMikolaj Golub size = 0; 2466f1fca82eSMikolaj Golub sb = sbuf_new(NULL, NULL, 128, SBUF_FIXEDLEN); 24675c32e9fcSAlexander Motin sbuf_set_drain(sb, sbuf_count_drain, &size); 2468f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2469f1fca82eSMikolaj Golub PROC_LOCK(p); 2470e6b95927SConrad Meyer kern_proc_vmmap_out(p, sb, -1, vmmap_flags); 2471f1fca82eSMikolaj Golub sbuf_finish(sb); 2472f1fca82eSMikolaj Golub sbuf_delete(sb); 2473f1fca82eSMikolaj Golub *sizep = size; 2474f1fca82eSMikolaj Golub } else { 2475f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2476f1fca82eSMikolaj Golub PROC_LOCK(p); 2477e6b95927SConrad Meyer kern_proc_vmmap_out(p, sb, *sizep - sizeof(structsize), 2478e6b95927SConrad Meyer vmmap_flags); 2479f1fca82eSMikolaj Golub } 2480f1fca82eSMikolaj Golub } 2481f1fca82eSMikolaj Golub 2482f1fca82eSMikolaj Golub static void 2483f1fca82eSMikolaj Golub note_procstat_groups(void *arg, struct sbuf *sb, size_t *sizep) 2484f1fca82eSMikolaj Golub { 2485f1fca82eSMikolaj Golub struct proc *p; 2486f1fca82eSMikolaj Golub size_t size; 2487f1fca82eSMikolaj Golub int structsize; 2488f1fca82eSMikolaj Golub 2489f1fca82eSMikolaj Golub p = (struct proc *)arg; 2490f1fca82eSMikolaj Golub size = sizeof(structsize) + p->p_ucred->cr_ngroups * sizeof(gid_t); 2491f1fca82eSMikolaj Golub if (sb != NULL) { 2492f1fca82eSMikolaj Golub KASSERT(*sizep == size, ("invalid size")); 2493f1fca82eSMikolaj Golub structsize = sizeof(gid_t); 2494f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2495f1fca82eSMikolaj Golub sbuf_bcat(sb, p->p_ucred->cr_groups, p->p_ucred->cr_ngroups * 2496f1fca82eSMikolaj Golub sizeof(gid_t)); 2497f1fca82eSMikolaj Golub } 2498f1fca82eSMikolaj Golub *sizep = size; 2499f1fca82eSMikolaj Golub } 2500f1fca82eSMikolaj Golub 2501f1fca82eSMikolaj Golub static void 2502f1fca82eSMikolaj Golub note_procstat_umask(void *arg, struct sbuf *sb, size_t *sizep) 2503f1fca82eSMikolaj Golub { 2504f1fca82eSMikolaj Golub struct proc *p; 2505f1fca82eSMikolaj Golub size_t size; 2506f1fca82eSMikolaj Golub int structsize; 2507f1fca82eSMikolaj Golub 2508f1fca82eSMikolaj Golub p = (struct proc *)arg; 2509f1fca82eSMikolaj Golub size = sizeof(structsize) + sizeof(p->p_fd->fd_cmask); 2510f1fca82eSMikolaj Golub if (sb != NULL) { 2511f1fca82eSMikolaj Golub KASSERT(*sizep == size, ("invalid size")); 2512f1fca82eSMikolaj Golub structsize = sizeof(p->p_fd->fd_cmask); 2513f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2514f1fca82eSMikolaj Golub sbuf_bcat(sb, &p->p_fd->fd_cmask, sizeof(p->p_fd->fd_cmask)); 2515f1fca82eSMikolaj Golub } 2516f1fca82eSMikolaj Golub *sizep = size; 2517f1fca82eSMikolaj Golub } 2518f1fca82eSMikolaj Golub 2519f1fca82eSMikolaj Golub static void 2520f1fca82eSMikolaj Golub note_procstat_rlimit(void *arg, struct sbuf *sb, size_t *sizep) 2521f1fca82eSMikolaj Golub { 2522f1fca82eSMikolaj Golub struct proc *p; 2523f1fca82eSMikolaj Golub struct rlimit rlim[RLIM_NLIMITS]; 2524f1fca82eSMikolaj Golub size_t size; 2525f1fca82eSMikolaj Golub int structsize, i; 2526f1fca82eSMikolaj Golub 2527f1fca82eSMikolaj Golub p = (struct proc *)arg; 2528f1fca82eSMikolaj Golub size = sizeof(structsize) + sizeof(rlim); 2529f1fca82eSMikolaj Golub if (sb != NULL) { 2530f1fca82eSMikolaj Golub KASSERT(*sizep == size, ("invalid size")); 2531f1fca82eSMikolaj Golub structsize = sizeof(rlim); 2532f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2533f1fca82eSMikolaj Golub PROC_LOCK(p); 2534f1fca82eSMikolaj Golub for (i = 0; i < RLIM_NLIMITS; i++) 2535f6f6d240SMateusz Guzik lim_rlimit_proc(p, i, &rlim[i]); 2536f1fca82eSMikolaj Golub PROC_UNLOCK(p); 2537f1fca82eSMikolaj Golub sbuf_bcat(sb, rlim, sizeof(rlim)); 2538f1fca82eSMikolaj Golub } 2539f1fca82eSMikolaj Golub *sizep = size; 2540f1fca82eSMikolaj Golub } 2541f1fca82eSMikolaj Golub 2542f1fca82eSMikolaj Golub static void 2543f1fca82eSMikolaj Golub note_procstat_osrel(void *arg, struct sbuf *sb, size_t *sizep) 2544f1fca82eSMikolaj Golub { 2545f1fca82eSMikolaj Golub struct proc *p; 2546f1fca82eSMikolaj Golub size_t size; 2547f1fca82eSMikolaj Golub int structsize; 2548f1fca82eSMikolaj Golub 2549f1fca82eSMikolaj Golub p = (struct proc *)arg; 2550f1fca82eSMikolaj Golub size = sizeof(structsize) + sizeof(p->p_osrel); 2551f1fca82eSMikolaj Golub if (sb != NULL) { 2552f1fca82eSMikolaj Golub KASSERT(*sizep == size, ("invalid size")); 2553f1fca82eSMikolaj Golub structsize = sizeof(p->p_osrel); 2554f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2555f1fca82eSMikolaj Golub sbuf_bcat(sb, &p->p_osrel, sizeof(p->p_osrel)); 2556f1fca82eSMikolaj Golub } 2557f1fca82eSMikolaj Golub *sizep = size; 2558f1fca82eSMikolaj Golub } 2559f1fca82eSMikolaj Golub 2560f1fca82eSMikolaj Golub static void 2561f1fca82eSMikolaj Golub __elfN(note_procstat_psstrings)(void *arg, struct sbuf *sb, size_t *sizep) 2562f1fca82eSMikolaj Golub { 2563f1fca82eSMikolaj Golub struct proc *p; 2564f1fca82eSMikolaj Golub elf_ps_strings_t ps_strings; 2565f1fca82eSMikolaj Golub size_t size; 2566f1fca82eSMikolaj Golub int structsize; 2567f1fca82eSMikolaj Golub 2568f1fca82eSMikolaj Golub p = (struct proc *)arg; 2569f1fca82eSMikolaj Golub size = sizeof(structsize) + sizeof(ps_strings); 2570f1fca82eSMikolaj Golub if (sb != NULL) { 2571f1fca82eSMikolaj Golub KASSERT(*sizep == size, ("invalid size")); 2572f1fca82eSMikolaj Golub structsize = sizeof(ps_strings); 2573f1fca82eSMikolaj Golub #if defined(COMPAT_FREEBSD32) && __ELF_WORD_SIZE == 32 2574f1fca82eSMikolaj Golub ps_strings = PTROUT(p->p_sysent->sv_psstrings); 2575f1fca82eSMikolaj Golub #else 2576f1fca82eSMikolaj Golub ps_strings = p->p_sysent->sv_psstrings; 2577f1fca82eSMikolaj Golub #endif 2578f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2579f1fca82eSMikolaj Golub sbuf_bcat(sb, &ps_strings, sizeof(ps_strings)); 2580f1fca82eSMikolaj Golub } 2581f1fca82eSMikolaj Golub *sizep = size; 2582f1fca82eSMikolaj Golub } 2583f1fca82eSMikolaj Golub 2584f1fca82eSMikolaj Golub static void 2585f1fca82eSMikolaj Golub __elfN(note_procstat_auxv)(void *arg, struct sbuf *sb, size_t *sizep) 2586f1fca82eSMikolaj Golub { 2587f1fca82eSMikolaj Golub struct proc *p; 2588f1fca82eSMikolaj Golub size_t size; 2589f1fca82eSMikolaj Golub int structsize; 2590f1fca82eSMikolaj Golub 2591f1fca82eSMikolaj Golub p = (struct proc *)arg; 2592f1fca82eSMikolaj Golub if (sb == NULL) { 2593f1fca82eSMikolaj Golub size = 0; 2594f1fca82eSMikolaj Golub sb = sbuf_new(NULL, NULL, 128, SBUF_FIXEDLEN); 25955c32e9fcSAlexander Motin sbuf_set_drain(sb, sbuf_count_drain, &size); 2596f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2597f1fca82eSMikolaj Golub PHOLD(p); 2598f1fca82eSMikolaj Golub proc_getauxv(curthread, p, sb); 2599f1fca82eSMikolaj Golub PRELE(p); 2600f1fca82eSMikolaj Golub sbuf_finish(sb); 2601f1fca82eSMikolaj Golub sbuf_delete(sb); 2602f1fca82eSMikolaj Golub *sizep = size; 2603f1fca82eSMikolaj Golub } else { 2604f1fca82eSMikolaj Golub structsize = sizeof(Elf_Auxinfo); 2605f1fca82eSMikolaj Golub sbuf_bcat(sb, &structsize, sizeof(structsize)); 2606f1fca82eSMikolaj Golub PHOLD(p); 2607f1fca82eSMikolaj Golub proc_getauxv(curthread, p, sb); 2608f1fca82eSMikolaj Golub PRELE(p); 2609f1fca82eSMikolaj Golub } 2610f1fca82eSMikolaj Golub } 2611f1fca82eSMikolaj Golub 261232c01de2SDmitry Chagin static boolean_t 261392328a32SKonstantin Belousov __elfN(parse_notes)(struct image_params *imgp, Elf_Note *checknote, 261492328a32SKonstantin Belousov const char *note_vendor, const Elf_Phdr *pnote, 261592328a32SKonstantin Belousov boolean_t (*cb)(const Elf_Note *, void *, boolean_t *), void *cb_arg) 261632c01de2SDmitry Chagin { 2617267c52fcSKonstantin Belousov const Elf_Note *note, *note0, *note_end; 261832c01de2SDmitry Chagin const char *note_name; 26196c775eb6SKonstantin Belousov char *buf; 26206c775eb6SKonstantin Belousov int i, error; 26216c775eb6SKonstantin Belousov boolean_t res; 262232c01de2SDmitry Chagin 26236c775eb6SKonstantin Belousov /* We need some limit, might as well use PAGE_SIZE. */ 26246c775eb6SKonstantin Belousov if (pnote == NULL || pnote->p_filesz > PAGE_SIZE) 262532c01de2SDmitry Chagin return (FALSE); 26266c775eb6SKonstantin Belousov ASSERT_VOP_LOCKED(imgp->vp, "parse_notes"); 26276c775eb6SKonstantin Belousov if (pnote->p_offset > PAGE_SIZE || 26286c775eb6SKonstantin Belousov pnote->p_filesz > PAGE_SIZE - pnote->p_offset) { 26292d6b8546SKonstantin Belousov buf = malloc(pnote->p_filesz, M_TEMP, M_NOWAIT); 26302d6b8546SKonstantin Belousov if (buf == NULL) { 2631b249ce48SMateusz Guzik VOP_UNLOCK(imgp->vp); 26326c775eb6SKonstantin Belousov buf = malloc(pnote->p_filesz, M_TEMP, M_WAITOK); 263378022527SKonstantin Belousov vn_lock(imgp->vp, LK_SHARED | LK_RETRY); 26342d6b8546SKonstantin Belousov } 26356c775eb6SKonstantin Belousov error = vn_rdwr(UIO_READ, imgp->vp, buf, pnote->p_filesz, 26366c775eb6SKonstantin Belousov pnote->p_offset, UIO_SYSSPACE, IO_NODELOCKED, 26376c775eb6SKonstantin Belousov curthread->td_ucred, NOCRED, NULL, curthread); 26386c775eb6SKonstantin Belousov if (error != 0) { 26396c775eb6SKonstantin Belousov uprintf("i/o error PT_NOTE\n"); 2640eda8fe63SKonstantin Belousov goto retf; 26416c775eb6SKonstantin Belousov } 26426c775eb6SKonstantin Belousov note = note0 = (const Elf_Note *)buf; 26436c775eb6SKonstantin Belousov note_end = (const Elf_Note *)(buf + pnote->p_filesz); 26446c775eb6SKonstantin Belousov } else { 26456c775eb6SKonstantin Belousov note = note0 = (const Elf_Note *)(imgp->image_header + 26466c775eb6SKonstantin Belousov pnote->p_offset); 264732c01de2SDmitry Chagin note_end = (const Elf_Note *)(imgp->image_header + 264832c01de2SDmitry Chagin pnote->p_offset + pnote->p_filesz); 26496c775eb6SKonstantin Belousov buf = NULL; 26506c775eb6SKonstantin Belousov } 2651267c52fcSKonstantin Belousov for (i = 0; i < 100 && note >= note0 && note < note_end; i++) { 2652d1ae5c83SKonstantin Belousov if (!aligned(note, Elf32_Addr) || (const char *)note_end - 26536c775eb6SKonstantin Belousov (const char *)note < sizeof(Elf_Note)) { 2654eda8fe63SKonstantin Belousov goto retf; 26556c775eb6SKonstantin Belousov } 265692328a32SKonstantin Belousov if (note->n_namesz != checknote->n_namesz || 265792328a32SKonstantin Belousov note->n_descsz != checknote->n_descsz || 265892328a32SKonstantin Belousov note->n_type != checknote->n_type) 265932c01de2SDmitry Chagin goto nextnote; 266032c01de2SDmitry Chagin note_name = (const char *)(note + 1); 266192328a32SKonstantin Belousov if (note_name + checknote->n_namesz >= 266292328a32SKonstantin Belousov (const char *)note_end || strncmp(note_vendor, 266392328a32SKonstantin Belousov note_name, checknote->n_namesz) != 0) 266432c01de2SDmitry Chagin goto nextnote; 266532c01de2SDmitry Chagin 266692328a32SKonstantin Belousov if (cb(note, cb_arg, &res)) 26676c775eb6SKonstantin Belousov goto ret; 266832c01de2SDmitry Chagin nextnote: 266932c01de2SDmitry Chagin note = (const Elf_Note *)((const char *)(note + 1) + 26701b8388cdSMikolaj Golub roundup2(note->n_namesz, ELF_NOTE_ROUNDSIZE) + 26711b8388cdSMikolaj Golub roundup2(note->n_descsz, ELF_NOTE_ROUNDSIZE)); 267232c01de2SDmitry Chagin } 2673eda8fe63SKonstantin Belousov retf: 26746c775eb6SKonstantin Belousov res = FALSE; 26756c775eb6SKonstantin Belousov ret: 26766c775eb6SKonstantin Belousov free(buf, M_TEMP); 26776c775eb6SKonstantin Belousov return (res); 267832c01de2SDmitry Chagin } 267932c01de2SDmitry Chagin 268092328a32SKonstantin Belousov struct brandnote_cb_arg { 268192328a32SKonstantin Belousov Elf_Brandnote *brandnote; 268292328a32SKonstantin Belousov int32_t *osrel; 268392328a32SKonstantin Belousov }; 268492328a32SKonstantin Belousov 268592328a32SKonstantin Belousov static boolean_t 268692328a32SKonstantin Belousov brandnote_cb(const Elf_Note *note, void *arg0, boolean_t *res) 268792328a32SKonstantin Belousov { 268892328a32SKonstantin Belousov struct brandnote_cb_arg *arg; 268992328a32SKonstantin Belousov 269092328a32SKonstantin Belousov arg = arg0; 269192328a32SKonstantin Belousov 269292328a32SKonstantin Belousov /* 269392328a32SKonstantin Belousov * Fetch the osreldate for binary from the ELF OSABI-note if 269492328a32SKonstantin Belousov * necessary. 269592328a32SKonstantin Belousov */ 269692328a32SKonstantin Belousov *res = (arg->brandnote->flags & BN_TRANSLATE_OSREL) != 0 && 269792328a32SKonstantin Belousov arg->brandnote->trans_osrel != NULL ? 269892328a32SKonstantin Belousov arg->brandnote->trans_osrel(note, arg->osrel) : TRUE; 269992328a32SKonstantin Belousov 270092328a32SKonstantin Belousov return (TRUE); 270192328a32SKonstantin Belousov } 270292328a32SKonstantin Belousov 2703cefb93f2SKonstantin Belousov static Elf_Note fctl_note = { 2704cefb93f2SKonstantin Belousov .n_namesz = sizeof(FREEBSD_ABI_VENDOR), 2705cefb93f2SKonstantin Belousov .n_descsz = sizeof(uint32_t), 2706cefb93f2SKonstantin Belousov .n_type = NT_FREEBSD_FEATURE_CTL, 2707cefb93f2SKonstantin Belousov }; 2708cefb93f2SKonstantin Belousov 2709cefb93f2SKonstantin Belousov struct fctl_cb_arg { 27100cad2aa2SKonstantin Belousov boolean_t *has_fctl0; 2711cefb93f2SKonstantin Belousov uint32_t *fctl0; 2712cefb93f2SKonstantin Belousov }; 2713cefb93f2SKonstantin Belousov 2714cefb93f2SKonstantin Belousov static boolean_t 2715cefb93f2SKonstantin Belousov note_fctl_cb(const Elf_Note *note, void *arg0, boolean_t *res) 2716cefb93f2SKonstantin Belousov { 2717cefb93f2SKonstantin Belousov struct fctl_cb_arg *arg; 2718cefb93f2SKonstantin Belousov const Elf32_Word *desc; 2719cefb93f2SKonstantin Belousov uintptr_t p; 2720cefb93f2SKonstantin Belousov 2721cefb93f2SKonstantin Belousov arg = arg0; 2722cefb93f2SKonstantin Belousov p = (uintptr_t)(note + 1); 2723cefb93f2SKonstantin Belousov p += roundup2(note->n_namesz, ELF_NOTE_ROUNDSIZE); 2724cefb93f2SKonstantin Belousov desc = (const Elf32_Word *)p; 27250cad2aa2SKonstantin Belousov *arg->has_fctl0 = TRUE; 2726cefb93f2SKonstantin Belousov *arg->fctl0 = desc[0]; 2727cefb93f2SKonstantin Belousov return (TRUE); 2728cefb93f2SKonstantin Belousov } 2729cefb93f2SKonstantin Belousov 273032c01de2SDmitry Chagin /* 2731cefb93f2SKonstantin Belousov * Try to find the appropriate ABI-note section for checknote, fetch 2732cefb93f2SKonstantin Belousov * the osreldate and feature control flags for binary from the ELF 2733cefb93f2SKonstantin Belousov * OSABI-note. Only the first page of the image is searched, the same 2734cefb93f2SKonstantin Belousov * as for headers. 27351a9c7decSKonstantin Belousov */ 27361a9c7decSKonstantin Belousov static boolean_t 273792328a32SKonstantin Belousov __elfN(check_note)(struct image_params *imgp, Elf_Brandnote *brandnote, 27380cad2aa2SKonstantin Belousov int32_t *osrel, boolean_t *has_fctl0, uint32_t *fctl0) 27391a9c7decSKonstantin Belousov { 27401a9c7decSKonstantin Belousov const Elf_Phdr *phdr; 27411a9c7decSKonstantin Belousov const Elf_Ehdr *hdr; 274292328a32SKonstantin Belousov struct brandnote_cb_arg b_arg; 2743cefb93f2SKonstantin Belousov struct fctl_cb_arg f_arg; 2744cefb93f2SKonstantin Belousov int i, j; 27451a9c7decSKonstantin Belousov 27461a9c7decSKonstantin Belousov hdr = (const Elf_Ehdr *)imgp->image_header; 27471a9c7decSKonstantin Belousov phdr = (const Elf_Phdr *)(imgp->image_header + hdr->e_phoff); 274892328a32SKonstantin Belousov b_arg.brandnote = brandnote; 274992328a32SKonstantin Belousov b_arg.osrel = osrel; 27500cad2aa2SKonstantin Belousov f_arg.has_fctl0 = has_fctl0; 2751cefb93f2SKonstantin Belousov f_arg.fctl0 = fctl0; 27521a9c7decSKonstantin Belousov 27531a9c7decSKonstantin Belousov for (i = 0; i < hdr->e_phnum; i++) { 275492328a32SKonstantin Belousov if (phdr[i].p_type == PT_NOTE && __elfN(parse_notes)(imgp, 275592328a32SKonstantin Belousov &brandnote->hdr, brandnote->vendor, &phdr[i], brandnote_cb, 275692328a32SKonstantin Belousov &b_arg)) { 2757cefb93f2SKonstantin Belousov for (j = 0; j < hdr->e_phnum; j++) { 2758cefb93f2SKonstantin Belousov if (phdr[j].p_type == PT_NOTE && 2759cefb93f2SKonstantin Belousov __elfN(parse_notes)(imgp, &fctl_note, 2760cefb93f2SKonstantin Belousov FREEBSD_ABI_VENDOR, &phdr[j], 2761cefb93f2SKonstantin Belousov note_fctl_cb, &f_arg)) 2762cefb93f2SKonstantin Belousov break; 2763cefb93f2SKonstantin Belousov } 27641a9c7decSKonstantin Belousov return (TRUE); 27651a9c7decSKonstantin Belousov } 276692328a32SKonstantin Belousov } 27671a9c7decSKonstantin Belousov return (FALSE); 27681a9c7decSKonstantin Belousov 27691a9c7decSKonstantin Belousov } 27701a9c7decSKonstantin Belousov 27711a9c7decSKonstantin Belousov /* 2772e1743d02SSøren Schmidt * Tell kern_execve.c about it, with a little help from the linker. 2773e1743d02SSøren Schmidt */ 2774a360a43dSJake Burkholder static struct execsw __elfN(execsw) = { 2775b7feabf9SEd Maste .ex_imgact = __CONCAT(exec_, __elfN(imgact)), 2776b7feabf9SEd Maste .ex_name = __XSTRING(__CONCAT(ELF, __ELF_WORD_SIZE)) 2777a360a43dSJake Burkholder }; 2778a360a43dSJake Burkholder EXEC_SET(__CONCAT(elf, __ELF_WORD_SIZE), __elfN(execsw)); 2779e7228204SAlfred Perlstein 2780ed167eaaSKonstantin Belousov static vm_prot_t 2781ed167eaaSKonstantin Belousov __elfN(trans_prot)(Elf_Word flags) 2782ed167eaaSKonstantin Belousov { 2783ed167eaaSKonstantin Belousov vm_prot_t prot; 2784ed167eaaSKonstantin Belousov 2785ed167eaaSKonstantin Belousov prot = 0; 2786ed167eaaSKonstantin Belousov if (flags & PF_X) 2787ed167eaaSKonstantin Belousov prot |= VM_PROT_EXECUTE; 2788ed167eaaSKonstantin Belousov if (flags & PF_W) 2789ed167eaaSKonstantin Belousov prot |= VM_PROT_WRITE; 2790ed167eaaSKonstantin Belousov if (flags & PF_R) 2791ed167eaaSKonstantin Belousov prot |= VM_PROT_READ; 2792eb785fabSKonstantin Belousov #if __ELF_WORD_SIZE == 32 && (defined(__amd64__) || defined(__i386__)) 2793126b36a2SKonstantin Belousov if (i386_read_exec && (flags & PF_R)) 2794676eda08SMarcel Moolenaar prot |= VM_PROT_EXECUTE; 2795676eda08SMarcel Moolenaar #endif 2796ed167eaaSKonstantin Belousov return (prot); 2797ed167eaaSKonstantin Belousov } 2798ed167eaaSKonstantin Belousov 2799ed167eaaSKonstantin Belousov static Elf_Word 2800ed167eaaSKonstantin Belousov __elfN(untrans_prot)(vm_prot_t prot) 2801ed167eaaSKonstantin Belousov { 2802ed167eaaSKonstantin Belousov Elf_Word flags; 2803ed167eaaSKonstantin Belousov 2804ed167eaaSKonstantin Belousov flags = 0; 2805ed167eaaSKonstantin Belousov if (prot & VM_PROT_EXECUTE) 2806ed167eaaSKonstantin Belousov flags |= PF_X; 2807ed167eaaSKonstantin Belousov if (prot & VM_PROT_READ) 2808ed167eaaSKonstantin Belousov flags |= PF_R; 2809ed167eaaSKonstantin Belousov if (prot & VM_PROT_WRITE) 2810ed167eaaSKonstantin Belousov flags |= PF_W; 2811ed167eaaSKonstantin Belousov return (flags); 2812ed167eaaSKonstantin Belousov } 2813fc83c5a7SKonstantin Belousov 2814fc83c5a7SKonstantin Belousov void 281531174518SJohn Baldwin __elfN(stackgap)(struct image_params *imgp, uintptr_t *stack_base) 2816fc83c5a7SKonstantin Belousov { 281731174518SJohn Baldwin uintptr_t range, rbase, gap; 2818fc83c5a7SKonstantin Belousov int pct; 2819fc83c5a7SKonstantin Belousov 2820fc83c5a7SKonstantin Belousov if ((imgp->map_flags & MAP_ASLR) == 0) 2821fc83c5a7SKonstantin Belousov return; 2822fc83c5a7SKonstantin Belousov pct = __elfN(aslr_stack_gap); 2823fc83c5a7SKonstantin Belousov if (pct == 0) 2824fc83c5a7SKonstantin Belousov return; 2825fc83c5a7SKonstantin Belousov if (pct > 50) 2826fc83c5a7SKonstantin Belousov pct = 50; 2827fc83c5a7SKonstantin Belousov range = imgp->eff_stack_sz * pct / 100; 2828fc83c5a7SKonstantin Belousov arc4rand(&rbase, sizeof(rbase), 0); 2829fc83c5a7SKonstantin Belousov gap = rbase % range; 2830fc83c5a7SKonstantin Belousov gap &= ~(sizeof(u_long) - 1); 2831fc83c5a7SKonstantin Belousov *stack_base -= gap; 2832fc83c5a7SKonstantin Belousov } 2833