xref: /titanic_51/usr/src/lib/libproc/common/Psymtab.c (revision b45b146b1e7193b205d871c5cff8b2c999865936)
17c478bd9Sstevel@tonic-gate /*
27c478bd9Sstevel@tonic-gate  * CDDL HEADER START
37c478bd9Sstevel@tonic-gate  *
47c478bd9Sstevel@tonic-gate  * The contents of this file are subject to the terms of the
5ab9a77c7Sahl  * Common Development and Distribution License (the "License").
6ab9a77c7Sahl  * You may not use this file except in compliance with the License.
77c478bd9Sstevel@tonic-gate  *
87c478bd9Sstevel@tonic-gate  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
97c478bd9Sstevel@tonic-gate  * or http://www.opensolaris.org/os/licensing.
107c478bd9Sstevel@tonic-gate  * See the License for the specific language governing permissions
117c478bd9Sstevel@tonic-gate  * and limitations under the License.
127c478bd9Sstevel@tonic-gate  *
137c478bd9Sstevel@tonic-gate  * When distributing Covered Code, include this CDDL HEADER in each
147c478bd9Sstevel@tonic-gate  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
157c478bd9Sstevel@tonic-gate  * If applicable, add the following below this CDDL HEADER, with the
167c478bd9Sstevel@tonic-gate  * fields enclosed by brackets "[]" replaced with your own identifying
177c478bd9Sstevel@tonic-gate  * information: Portions Copyright [yyyy] [name of copyright owner]
187c478bd9Sstevel@tonic-gate  *
197c478bd9Sstevel@tonic-gate  * CDDL HEADER END
207c478bd9Sstevel@tonic-gate  */
21ab9a77c7Sahl 
227c478bd9Sstevel@tonic-gate /*
23ab9a77c7Sahl  * Copyright 2006 Sun Microsystems, Inc.  All rights reserved.
247c478bd9Sstevel@tonic-gate  * Use is subject to license terms.
257c478bd9Sstevel@tonic-gate  */
267c478bd9Sstevel@tonic-gate 
277c478bd9Sstevel@tonic-gate #pragma ident	"%Z%%M%	%I%	%E% SMI"
287c478bd9Sstevel@tonic-gate 
299acbbeafSnn35248 #include <assert.h>
307c478bd9Sstevel@tonic-gate #include <stdio.h>
317c478bd9Sstevel@tonic-gate #include <stdlib.h>
327c478bd9Sstevel@tonic-gate #include <stddef.h>
337c478bd9Sstevel@tonic-gate #include <unistd.h>
347c478bd9Sstevel@tonic-gate #include <ctype.h>
357c478bd9Sstevel@tonic-gate #include <fcntl.h>
367c478bd9Sstevel@tonic-gate #include <string.h>
377c478bd9Sstevel@tonic-gate #include <strings.h>
387c478bd9Sstevel@tonic-gate #include <memory.h>
397c478bd9Sstevel@tonic-gate #include <errno.h>
407c478bd9Sstevel@tonic-gate #include <dirent.h>
417c478bd9Sstevel@tonic-gate #include <signal.h>
427c478bd9Sstevel@tonic-gate #include <limits.h>
437c478bd9Sstevel@tonic-gate #include <libgen.h>
447c478bd9Sstevel@tonic-gate #include <zone.h>
457c478bd9Sstevel@tonic-gate #include <sys/types.h>
467c478bd9Sstevel@tonic-gate #include <sys/stat.h>
477c478bd9Sstevel@tonic-gate #include <sys/systeminfo.h>
487c478bd9Sstevel@tonic-gate #include <sys/sysmacros.h>
497c478bd9Sstevel@tonic-gate 
507c478bd9Sstevel@tonic-gate #include "libproc.h"
517c478bd9Sstevel@tonic-gate #include "Pcontrol.h"
527c478bd9Sstevel@tonic-gate #include "Putil.h"
537c478bd9Sstevel@tonic-gate 
547c478bd9Sstevel@tonic-gate static file_info_t *build_map_symtab(struct ps_prochandle *, map_info_t *);
557c478bd9Sstevel@tonic-gate static map_info_t *exec_map(struct ps_prochandle *);
567c478bd9Sstevel@tonic-gate static map_info_t *object_to_map(struct ps_prochandle *, Lmid_t, const char *);
577c478bd9Sstevel@tonic-gate static map_info_t *object_name_to_map(struct ps_prochandle *,
587c478bd9Sstevel@tonic-gate 	Lmid_t, const char *);
597c478bd9Sstevel@tonic-gate static GElf_Sym *sym_by_name(sym_tbl_t *, const char *, GElf_Sym *, uint_t *);
6030da1432Sahl static int read_ehdr32(struct ps_prochandle *, Elf32_Ehdr *, uint_t *,
6130da1432Sahl     uintptr_t);
627c478bd9Sstevel@tonic-gate #ifdef _LP64
6330da1432Sahl static int read_ehdr64(struct ps_prochandle *, Elf64_Ehdr *, uint_t *,
6430da1432Sahl     uintptr_t);
657c478bd9Sstevel@tonic-gate #endif
667c478bd9Sstevel@tonic-gate 
677c478bd9Sstevel@tonic-gate #define	DATA_TYPES	\
687c478bd9Sstevel@tonic-gate 	((1 << STT_OBJECT) | (1 << STT_FUNC) | \
697c478bd9Sstevel@tonic-gate 	(1 << STT_COMMON) | (1 << STT_TLS))
707c478bd9Sstevel@tonic-gate #define	IS_DATA_TYPE(tp)	(((1 << (tp)) & DATA_TYPES) != 0)
717c478bd9Sstevel@tonic-gate 
727c478bd9Sstevel@tonic-gate #define	MA_RWX	(MA_READ | MA_WRITE | MA_EXEC)
737c478bd9Sstevel@tonic-gate 
747c478bd9Sstevel@tonic-gate typedef enum {
757c478bd9Sstevel@tonic-gate 	PRO_NATURAL,
767c478bd9Sstevel@tonic-gate 	PRO_BYADDR,
777c478bd9Sstevel@tonic-gate 	PRO_BYNAME
787c478bd9Sstevel@tonic-gate } pr_order_t;
797c478bd9Sstevel@tonic-gate 
807c478bd9Sstevel@tonic-gate static int
817c478bd9Sstevel@tonic-gate addr_cmp(const void *aa, const void *bb)
827c478bd9Sstevel@tonic-gate {
837c478bd9Sstevel@tonic-gate 	uintptr_t a = *((uintptr_t *)aa);
847c478bd9Sstevel@tonic-gate 	uintptr_t b = *((uintptr_t *)bb);
857c478bd9Sstevel@tonic-gate 
867c478bd9Sstevel@tonic-gate 	if (a > b)
877c478bd9Sstevel@tonic-gate 		return (1);
887c478bd9Sstevel@tonic-gate 	if (a < b)
897c478bd9Sstevel@tonic-gate 		return (-1);
907c478bd9Sstevel@tonic-gate 	return (0);
917c478bd9Sstevel@tonic-gate }
927c478bd9Sstevel@tonic-gate 
937c478bd9Sstevel@tonic-gate /*
9412e72dbbSrh87107  * This function creates a list of addresses for a load object's sections.
9512e72dbbSrh87107  * The list is in ascending address order and alternates start address
9612e72dbbSrh87107  * then end address for each section we're interested in. The function
9712e72dbbSrh87107  * returns a pointer to the list, which must be freed by the caller.
9812e72dbbSrh87107  */
9912e72dbbSrh87107 static uintptr_t *
10012e72dbbSrh87107 get_saddrs(struct ps_prochandle *P, uintptr_t ehdr_start, uint_t *n)
10112e72dbbSrh87107 {
10212e72dbbSrh87107 	uintptr_t a, addr, *addrs, last = 0;
10312e72dbbSrh87107 	uint_t i, naddrs = 0, unordered = 0;
10412e72dbbSrh87107 
10512e72dbbSrh87107 	if (P->status.pr_dmodel == PR_MODEL_ILP32) {
10612e72dbbSrh87107 		Elf32_Ehdr ehdr;
10712e72dbbSrh87107 		Elf32_Phdr phdr;
10812e72dbbSrh87107 		uint_t phnum;
10912e72dbbSrh87107 
11012e72dbbSrh87107 		if (read_ehdr32(P, &ehdr, &phnum, ehdr_start) != 0)
11112e72dbbSrh87107 			return (NULL);
11212e72dbbSrh87107 
11312e72dbbSrh87107 		addrs = malloc(sizeof (uintptr_t) * phnum * 2);
11412e72dbbSrh87107 		a = ehdr_start + ehdr.e_phoff;
11512e72dbbSrh87107 		for (i = 0; i < phnum; i++, a += ehdr.e_phentsize) {
11612e72dbbSrh87107 			if (Pread(P, &phdr, sizeof (phdr), a) !=
11712e72dbbSrh87107 			    sizeof (phdr)) {
11812e72dbbSrh87107 				free(addrs);
11912e72dbbSrh87107 				return (NULL);
12012e72dbbSrh87107 			}
12112e72dbbSrh87107 			if (phdr.p_type != PT_LOAD || phdr.p_memsz == 0)
12212e72dbbSrh87107 				continue;
12312e72dbbSrh87107 
12412e72dbbSrh87107 			addr = phdr.p_vaddr;
12512e72dbbSrh87107 			if (ehdr.e_type == ET_DYN)
12612e72dbbSrh87107 				addr += ehdr_start;
12712e72dbbSrh87107 			if (last > addr)
12812e72dbbSrh87107 				unordered = 1;
12912e72dbbSrh87107 			addrs[naddrs++] = addr;
13012e72dbbSrh87107 			addrs[naddrs++] = last = addr + phdr.p_memsz - 1;
13112e72dbbSrh87107 		}
13212e72dbbSrh87107 #ifdef _LP64
13312e72dbbSrh87107 	} else {
13412e72dbbSrh87107 		Elf64_Ehdr ehdr;
13512e72dbbSrh87107 		Elf64_Phdr phdr;
13612e72dbbSrh87107 		uint_t phnum;
13712e72dbbSrh87107 
13812e72dbbSrh87107 		if (read_ehdr64(P, &ehdr, &phnum, ehdr_start) != 0)
13912e72dbbSrh87107 			return (NULL);
14012e72dbbSrh87107 
14112e72dbbSrh87107 		addrs = malloc(sizeof (uintptr_t) * phnum * 2);
14212e72dbbSrh87107 		a = ehdr_start + ehdr.e_phoff;
14312e72dbbSrh87107 		for (i = 0; i < phnum; i++, a += ehdr.e_phentsize) {
14412e72dbbSrh87107 			if (Pread(P, &phdr, sizeof (phdr), a) !=
14512e72dbbSrh87107 			    sizeof (phdr)) {
14612e72dbbSrh87107 				free(addrs);
14712e72dbbSrh87107 				return (NULL);
14812e72dbbSrh87107 			}
14912e72dbbSrh87107 			if (phdr.p_type != PT_LOAD || phdr.p_memsz == 0)
15012e72dbbSrh87107 				continue;
15112e72dbbSrh87107 
15212e72dbbSrh87107 			addr = phdr.p_vaddr;
15312e72dbbSrh87107 			if (ehdr.e_type == ET_DYN)
15412e72dbbSrh87107 				addr += ehdr_start;
15512e72dbbSrh87107 			if (last > addr)
15612e72dbbSrh87107 				unordered = 1;
15712e72dbbSrh87107 			addrs[naddrs++] = addr;
15812e72dbbSrh87107 			addrs[naddrs++] = last = addr + phdr.p_memsz - 1;
15912e72dbbSrh87107 		}
16012e72dbbSrh87107 #endif
16112e72dbbSrh87107 	}
16212e72dbbSrh87107 
16312e72dbbSrh87107 	if (unordered)
16412e72dbbSrh87107 		qsort(addrs, naddrs, sizeof (uintptr_t), addr_cmp);
16512e72dbbSrh87107 
16612e72dbbSrh87107 	*n = naddrs;
16712e72dbbSrh87107 	return (addrs);
16812e72dbbSrh87107 }
16912e72dbbSrh87107 
17012e72dbbSrh87107 /*
1717c478bd9Sstevel@tonic-gate  * Allocation function for a new file_info_t
1727c478bd9Sstevel@tonic-gate  */
1737c478bd9Sstevel@tonic-gate static file_info_t *
1747c478bd9Sstevel@tonic-gate file_info_new(struct ps_prochandle *P, map_info_t *mptr)
1757c478bd9Sstevel@tonic-gate {
1767c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
1777c478bd9Sstevel@tonic-gate 	map_info_t *mp;
17812e72dbbSrh87107 	uintptr_t addr;
17912e72dbbSrh87107 	uint_t i, j;
1807c478bd9Sstevel@tonic-gate 
1817c478bd9Sstevel@tonic-gate 	if ((fptr = calloc(1, sizeof (file_info_t))) == NULL)
1827c478bd9Sstevel@tonic-gate 		return (NULL);
1837c478bd9Sstevel@tonic-gate 
1847c478bd9Sstevel@tonic-gate 	list_link(fptr, &P->file_head);
1857c478bd9Sstevel@tonic-gate 	(void) strcpy(fptr->file_pname, mptr->map_pmap.pr_mapname);
1867c478bd9Sstevel@tonic-gate 	mptr->map_file = fptr;
1877c478bd9Sstevel@tonic-gate 	fptr->file_ref = 1;
1887c478bd9Sstevel@tonic-gate 	fptr->file_fd = -1;
1897c478bd9Sstevel@tonic-gate 	P->num_files++;
1907c478bd9Sstevel@tonic-gate 
1917c478bd9Sstevel@tonic-gate 	/*
1927c478bd9Sstevel@tonic-gate 	 * To figure out which map_info_t instances correspond to the mappings
19312e72dbbSrh87107 	 * for this load object we try to obtain the start and end address
19412e72dbbSrh87107 	 * for each section of our in-memory ELF image. If successful, we
1957c478bd9Sstevel@tonic-gate 	 * walk down the list of addresses and the list of map_info_t
1967c478bd9Sstevel@tonic-gate 	 * instances in lock step to correctly find the mappings that
1977c478bd9Sstevel@tonic-gate 	 * correspond to this load object.
1987c478bd9Sstevel@tonic-gate 	 */
19912e72dbbSrh87107 	if ((fptr->file_saddrs = get_saddrs(P, mptr->map_pmap.pr_vaddr,
20012e72dbbSrh87107 	    &fptr->file_nsaddrs)) == NULL)
2017c478bd9Sstevel@tonic-gate 		return (fptr);
2027c478bd9Sstevel@tonic-gate 
2037c478bd9Sstevel@tonic-gate 	i = j = 0;
2047c478bd9Sstevel@tonic-gate 	mp = P->mappings;
20512e72dbbSrh87107 	while (j < P->map_count && i < fptr->file_nsaddrs) {
20612e72dbbSrh87107 		addr = fptr->file_saddrs[i];
2077c478bd9Sstevel@tonic-gate 		if (addr >= mp->map_pmap.pr_vaddr &&
2087c478bd9Sstevel@tonic-gate 		    addr < mp->map_pmap.pr_vaddr + mp->map_pmap.pr_size &&
2097c478bd9Sstevel@tonic-gate 		    mp->map_file == NULL) {
2107c478bd9Sstevel@tonic-gate 			mp->map_file = fptr;
2117c478bd9Sstevel@tonic-gate 			fptr->file_ref++;
2127c478bd9Sstevel@tonic-gate 		}
2137c478bd9Sstevel@tonic-gate 
2147c478bd9Sstevel@tonic-gate 		if (addr < mp->map_pmap.pr_vaddr + mp->map_pmap.pr_size) {
2157c478bd9Sstevel@tonic-gate 			i++;
2167c478bd9Sstevel@tonic-gate 		} else {
2177c478bd9Sstevel@tonic-gate 			mp++;
2187c478bd9Sstevel@tonic-gate 			j++;
2197c478bd9Sstevel@tonic-gate 		}
2207c478bd9Sstevel@tonic-gate 	}
2217c478bd9Sstevel@tonic-gate 
2227c478bd9Sstevel@tonic-gate 	return (fptr);
2237c478bd9Sstevel@tonic-gate }
2247c478bd9Sstevel@tonic-gate 
2257c478bd9Sstevel@tonic-gate /*
2267c478bd9Sstevel@tonic-gate  * Deallocation function for a file_info_t
2277c478bd9Sstevel@tonic-gate  */
2287c478bd9Sstevel@tonic-gate static void
2297c478bd9Sstevel@tonic-gate file_info_free(struct ps_prochandle *P, file_info_t *fptr)
2307c478bd9Sstevel@tonic-gate {
2317c478bd9Sstevel@tonic-gate 	if (--fptr->file_ref == 0) {
2327c478bd9Sstevel@tonic-gate 		list_unlink(fptr);
2337c478bd9Sstevel@tonic-gate 		if (fptr->file_symtab.sym_elf) {
2347c478bd9Sstevel@tonic-gate 			(void) elf_end(fptr->file_symtab.sym_elf);
2357c478bd9Sstevel@tonic-gate 			free(fptr->file_symtab.sym_elfmem);
2367c478bd9Sstevel@tonic-gate 		}
2377c478bd9Sstevel@tonic-gate 		if (fptr->file_symtab.sym_byname)
2387c478bd9Sstevel@tonic-gate 			free(fptr->file_symtab.sym_byname);
2397c478bd9Sstevel@tonic-gate 		if (fptr->file_symtab.sym_byaddr)
2407c478bd9Sstevel@tonic-gate 			free(fptr->file_symtab.sym_byaddr);
2417c478bd9Sstevel@tonic-gate 
2427c478bd9Sstevel@tonic-gate 		if (fptr->file_dynsym.sym_elf) {
2437c478bd9Sstevel@tonic-gate 			(void) elf_end(fptr->file_dynsym.sym_elf);
2447c478bd9Sstevel@tonic-gate 			free(fptr->file_dynsym.sym_elfmem);
2457c478bd9Sstevel@tonic-gate 		}
2467c478bd9Sstevel@tonic-gate 		if (fptr->file_dynsym.sym_byname)
2477c478bd9Sstevel@tonic-gate 			free(fptr->file_dynsym.sym_byname);
2487c478bd9Sstevel@tonic-gate 		if (fptr->file_dynsym.sym_byaddr)
2497c478bd9Sstevel@tonic-gate 			free(fptr->file_dynsym.sym_byaddr);
2507c478bd9Sstevel@tonic-gate 
2517c478bd9Sstevel@tonic-gate 		if (fptr->file_lo)
2527c478bd9Sstevel@tonic-gate 			free(fptr->file_lo);
2537c478bd9Sstevel@tonic-gate 		if (fptr->file_lname)
2547c478bd9Sstevel@tonic-gate 			free(fptr->file_lname);
2557c478bd9Sstevel@tonic-gate 		if (fptr->file_elf)
2567c478bd9Sstevel@tonic-gate 			(void) elf_end(fptr->file_elf);
2577c478bd9Sstevel@tonic-gate 		if (fptr->file_elfmem != NULL)
2587c478bd9Sstevel@tonic-gate 			free(fptr->file_elfmem);
2597c478bd9Sstevel@tonic-gate 		if (fptr->file_fd >= 0)
2607c478bd9Sstevel@tonic-gate 			(void) close(fptr->file_fd);
2617c478bd9Sstevel@tonic-gate 		if (fptr->file_ctfp) {
2627c478bd9Sstevel@tonic-gate 			ctf_close(fptr->file_ctfp);
2637c478bd9Sstevel@tonic-gate 			free(fptr->file_ctf_buf);
2647c478bd9Sstevel@tonic-gate 		}
26512e72dbbSrh87107 		if (fptr->file_saddrs)
26612e72dbbSrh87107 			free(fptr->file_saddrs);
2677c478bd9Sstevel@tonic-gate 		free(fptr);
2687c478bd9Sstevel@tonic-gate 		P->num_files--;
2697c478bd9Sstevel@tonic-gate 	}
2707c478bd9Sstevel@tonic-gate }
2717c478bd9Sstevel@tonic-gate 
2727c478bd9Sstevel@tonic-gate /*
2737c478bd9Sstevel@tonic-gate  * Deallocation function for a map_info_t
2747c478bd9Sstevel@tonic-gate  */
2757c478bd9Sstevel@tonic-gate static void
2767c478bd9Sstevel@tonic-gate map_info_free(struct ps_prochandle *P, map_info_t *mptr)
2777c478bd9Sstevel@tonic-gate {
2787c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
2797c478bd9Sstevel@tonic-gate 
2807c478bd9Sstevel@tonic-gate 	if ((fptr = mptr->map_file) != NULL) {
2817c478bd9Sstevel@tonic-gate 		if (fptr->file_map == mptr)
2827c478bd9Sstevel@tonic-gate 			fptr->file_map = NULL;
2837c478bd9Sstevel@tonic-gate 		file_info_free(P, fptr);
2847c478bd9Sstevel@tonic-gate 	}
2857c478bd9Sstevel@tonic-gate 	if (P->execname && mptr == P->map_exec) {
2867c478bd9Sstevel@tonic-gate 		free(P->execname);
2877c478bd9Sstevel@tonic-gate 		P->execname = NULL;
2887c478bd9Sstevel@tonic-gate 	}
2897c478bd9Sstevel@tonic-gate 	if (P->auxv && (mptr == P->map_exec || mptr == P->map_ldso)) {
2907c478bd9Sstevel@tonic-gate 		free(P->auxv);
2917c478bd9Sstevel@tonic-gate 		P->auxv = NULL;
2927c478bd9Sstevel@tonic-gate 		P->nauxv = 0;
2937c478bd9Sstevel@tonic-gate 	}
2947c478bd9Sstevel@tonic-gate 	if (mptr == P->map_exec)
2957c478bd9Sstevel@tonic-gate 		P->map_exec = NULL;
2967c478bd9Sstevel@tonic-gate 	if (mptr == P->map_ldso)
2977c478bd9Sstevel@tonic-gate 		P->map_ldso = NULL;
2987c478bd9Sstevel@tonic-gate }
2997c478bd9Sstevel@tonic-gate 
3007c478bd9Sstevel@tonic-gate /*
3017c478bd9Sstevel@tonic-gate  * Call-back function for librtld_db to iterate through all of its shared
3027c478bd9Sstevel@tonic-gate  * libraries.  We use this to get the load object names for the mappings.
3037c478bd9Sstevel@tonic-gate  */
3047c478bd9Sstevel@tonic-gate static int
3057c478bd9Sstevel@tonic-gate map_iter(const rd_loadobj_t *lop, void *cd)
3067c478bd9Sstevel@tonic-gate {
3077c478bd9Sstevel@tonic-gate 	char buf[PATH_MAX];
3087c478bd9Sstevel@tonic-gate 	struct ps_prochandle *P = cd;
3097c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
3107c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
3117c478bd9Sstevel@tonic-gate 
3127c478bd9Sstevel@tonic-gate 	dprintf("encountered rd object at %p\n", (void *)lop->rl_base);
3137c478bd9Sstevel@tonic-gate 
3149acbbeafSnn35248 	if ((mptr = Paddr2mptr(P, lop->rl_base)) == NULL) {
3159acbbeafSnn35248 		dprintf("map_iter: base address doesn't match any mapping\n");
3167c478bd9Sstevel@tonic-gate 		return (1); /* Base address does not match any mapping */
3179acbbeafSnn35248 	}
3187c478bd9Sstevel@tonic-gate 
3197c478bd9Sstevel@tonic-gate 	if ((fptr = mptr->map_file) == NULL &&
3209acbbeafSnn35248 	    (fptr = file_info_new(P, mptr)) == NULL) {
3219acbbeafSnn35248 		dprintf("map_iter: failed to allocate a new file_info_t\n");
3227c478bd9Sstevel@tonic-gate 		return (1); /* Failed to allocate a new file_info_t */
3239acbbeafSnn35248 	}
3247c478bd9Sstevel@tonic-gate 
3257c478bd9Sstevel@tonic-gate 	if ((fptr->file_lo == NULL) &&
3267c478bd9Sstevel@tonic-gate 	    (fptr->file_lo = malloc(sizeof (rd_loadobj_t))) == NULL) {
3279acbbeafSnn35248 		dprintf("map_iter: failed to allocate rd_loadobj_t\n");
3287c478bd9Sstevel@tonic-gate 		file_info_free(P, fptr);
3297c478bd9Sstevel@tonic-gate 		return (1); /* Failed to allocate rd_loadobj_t */
3307c478bd9Sstevel@tonic-gate 	}
3317c478bd9Sstevel@tonic-gate 
3327c478bd9Sstevel@tonic-gate 	fptr->file_map = mptr;
3337c478bd9Sstevel@tonic-gate 	*fptr->file_lo = *lop;
3347c478bd9Sstevel@tonic-gate 
3357c478bd9Sstevel@tonic-gate 	fptr->file_lo->rl_plt_base = fptr->file_plt_base;
3367c478bd9Sstevel@tonic-gate 	fptr->file_lo->rl_plt_size = fptr->file_plt_size;
3377c478bd9Sstevel@tonic-gate 
3387c478bd9Sstevel@tonic-gate 	if (fptr->file_lname) {
3397c478bd9Sstevel@tonic-gate 		free(fptr->file_lname);
3407c478bd9Sstevel@tonic-gate 		fptr->file_lname = NULL;
3417c478bd9Sstevel@tonic-gate 	}
3427c478bd9Sstevel@tonic-gate 
3437c478bd9Sstevel@tonic-gate 	if (Pread_string(P, buf, sizeof (buf), lop->rl_nameaddr) > 0) {
3447c478bd9Sstevel@tonic-gate 		if ((fptr->file_lname = strdup(buf)) != NULL)
3457c478bd9Sstevel@tonic-gate 			fptr->file_lbase = basename(fptr->file_lname);
3469acbbeafSnn35248 	} else {
3479acbbeafSnn35248 		dprintf("map_iter: failed to read string at %p\n",
3489acbbeafSnn35248 		    (void *)lop->rl_nameaddr);
3497c478bd9Sstevel@tonic-gate 	}
3507c478bd9Sstevel@tonic-gate 
3517c478bd9Sstevel@tonic-gate 	dprintf("loaded rd object %s lmid %lx\n",
3527c478bd9Sstevel@tonic-gate 	    fptr->file_lname ? fptr->file_lname : "<NULL>", lop->rl_lmident);
3537c478bd9Sstevel@tonic-gate 	return (1);
3547c478bd9Sstevel@tonic-gate }
3557c478bd9Sstevel@tonic-gate 
3567c478bd9Sstevel@tonic-gate static void
3577c478bd9Sstevel@tonic-gate map_set(struct ps_prochandle *P, map_info_t *mptr, const char *lname)
3587c478bd9Sstevel@tonic-gate {
3597c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
3607c478bd9Sstevel@tonic-gate 
3617c478bd9Sstevel@tonic-gate 	if ((fptr = mptr->map_file) == NULL &&
3627c478bd9Sstevel@tonic-gate 	    (fptr = file_info_new(P, mptr)) == NULL)
3637c478bd9Sstevel@tonic-gate 		return; /* Failed to allocate a new file_info_t */
3647c478bd9Sstevel@tonic-gate 
3657c478bd9Sstevel@tonic-gate 	fptr->file_map = mptr;
3667c478bd9Sstevel@tonic-gate 
3677c478bd9Sstevel@tonic-gate 	if ((fptr->file_lo == NULL) &&
3687c478bd9Sstevel@tonic-gate 	    (fptr->file_lo = malloc(sizeof (rd_loadobj_t))) == NULL) {
3697c478bd9Sstevel@tonic-gate 		file_info_free(P, fptr);
3707c478bd9Sstevel@tonic-gate 		return; /* Failed to allocate rd_loadobj_t */
3717c478bd9Sstevel@tonic-gate 	}
3727c478bd9Sstevel@tonic-gate 
3737c478bd9Sstevel@tonic-gate 	(void) memset(fptr->file_lo, 0, sizeof (rd_loadobj_t));
3747c478bd9Sstevel@tonic-gate 	fptr->file_lo->rl_base = mptr->map_pmap.pr_vaddr;
3757c478bd9Sstevel@tonic-gate 	fptr->file_lo->rl_bend =
3767c478bd9Sstevel@tonic-gate 	    mptr->map_pmap.pr_vaddr + mptr->map_pmap.pr_size;
3777c478bd9Sstevel@tonic-gate 
3787c478bd9Sstevel@tonic-gate 	fptr->file_lo->rl_plt_base = fptr->file_plt_base;
3797c478bd9Sstevel@tonic-gate 	fptr->file_lo->rl_plt_size = fptr->file_plt_size;
3807c478bd9Sstevel@tonic-gate 
3819acbbeafSnn35248 	if (fptr->file_lname == NULL &&
3829acbbeafSnn35248 	    (fptr->file_lname = strdup(lname)) != NULL)
3837c478bd9Sstevel@tonic-gate 		fptr->file_lbase = basename(fptr->file_lname);
3847c478bd9Sstevel@tonic-gate }
3857c478bd9Sstevel@tonic-gate 
3867c478bd9Sstevel@tonic-gate static void
3877c478bd9Sstevel@tonic-gate load_static_maps(struct ps_prochandle *P)
3887c478bd9Sstevel@tonic-gate {
3897c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
3907c478bd9Sstevel@tonic-gate 
3917c478bd9Sstevel@tonic-gate 	/*
3927c478bd9Sstevel@tonic-gate 	 * Construct the map for the a.out.
3937c478bd9Sstevel@tonic-gate 	 */
3947c478bd9Sstevel@tonic-gate 	if ((mptr = object_name_to_map(P, PR_LMID_EVERY, PR_OBJ_EXEC)) != NULL)
3957c478bd9Sstevel@tonic-gate 		map_set(P, mptr, "a.out");
3967c478bd9Sstevel@tonic-gate 
3977c478bd9Sstevel@tonic-gate 	/*
3987c478bd9Sstevel@tonic-gate 	 * If the dynamic linker exists for this process,
3997c478bd9Sstevel@tonic-gate 	 * construct the map for it.
4007c478bd9Sstevel@tonic-gate 	 */
4017c478bd9Sstevel@tonic-gate 	if (Pgetauxval(P, AT_BASE) != -1L &&
4027c478bd9Sstevel@tonic-gate 	    (mptr = object_name_to_map(P, PR_LMID_EVERY, PR_OBJ_LDSO)) != NULL)
4037c478bd9Sstevel@tonic-gate 		map_set(P, mptr, "ld.so.1");
4047c478bd9Sstevel@tonic-gate }
4057c478bd9Sstevel@tonic-gate 
4067c478bd9Sstevel@tonic-gate /*
4077c478bd9Sstevel@tonic-gate  * Go through all the address space mappings, validating or updating
4087c478bd9Sstevel@tonic-gate  * the information already gathered, or gathering new information.
4097c478bd9Sstevel@tonic-gate  *
4107c478bd9Sstevel@tonic-gate  * This function is only called when we suspect that the mappings have changed
4117c478bd9Sstevel@tonic-gate  * because this is the first time we're calling it or because of rtld activity.
4127c478bd9Sstevel@tonic-gate  */
4137c478bd9Sstevel@tonic-gate void
4147c478bd9Sstevel@tonic-gate Pupdate_maps(struct ps_prochandle *P)
4157c478bd9Sstevel@tonic-gate {
4169acbbeafSnn35248 	char mapfile[PATH_MAX];
4177c478bd9Sstevel@tonic-gate 	int mapfd;
4187c478bd9Sstevel@tonic-gate 	struct stat statb;
4197c478bd9Sstevel@tonic-gate 	prmap_t *Pmap = NULL;
4207c478bd9Sstevel@tonic-gate 	prmap_t *pmap;
4217c478bd9Sstevel@tonic-gate 	ssize_t nmap;
4227c478bd9Sstevel@tonic-gate 	int i;
4237c478bd9Sstevel@tonic-gate 	uint_t oldmapcount;
4247c478bd9Sstevel@tonic-gate 	map_info_t *newmap, *newp;
4257c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
4267c478bd9Sstevel@tonic-gate 
427a1b5e537Sbmc 	if (P->info_valid || P->state == PS_UNDEAD)
4287c478bd9Sstevel@tonic-gate 		return;
4297c478bd9Sstevel@tonic-gate 
4307c478bd9Sstevel@tonic-gate 	Preadauxvec(P);
4317c478bd9Sstevel@tonic-gate 
4329acbbeafSnn35248 	(void) snprintf(mapfile, sizeof (mapfile), "%s/%d/map",
4339acbbeafSnn35248 	    procfs_path, (int)P->pid);
4347c478bd9Sstevel@tonic-gate 	if ((mapfd = open(mapfile, O_RDONLY)) < 0 ||
4357c478bd9Sstevel@tonic-gate 	    fstat(mapfd, &statb) != 0 ||
4367c478bd9Sstevel@tonic-gate 	    statb.st_size < sizeof (prmap_t) ||
4377c478bd9Sstevel@tonic-gate 	    (Pmap = malloc(statb.st_size)) == NULL ||
4387c478bd9Sstevel@tonic-gate 	    (nmap = pread(mapfd, Pmap, statb.st_size, 0L)) <= 0 ||
4397c478bd9Sstevel@tonic-gate 	    (nmap /= sizeof (prmap_t)) == 0) {
4407c478bd9Sstevel@tonic-gate 		if (Pmap != NULL)
4417c478bd9Sstevel@tonic-gate 			free(Pmap);
4427c478bd9Sstevel@tonic-gate 		if (mapfd >= 0)
4437c478bd9Sstevel@tonic-gate 			(void) close(mapfd);
4447c478bd9Sstevel@tonic-gate 		Preset_maps(P);	/* utter failure; destroy tables */
4457c478bd9Sstevel@tonic-gate 		return;
4467c478bd9Sstevel@tonic-gate 	}
4477c478bd9Sstevel@tonic-gate 	(void) close(mapfd);
4487c478bd9Sstevel@tonic-gate 
4497c478bd9Sstevel@tonic-gate 	if ((newmap = calloc(1, nmap * sizeof (map_info_t))) == NULL)
4507c478bd9Sstevel@tonic-gate 		return;
4517c478bd9Sstevel@tonic-gate 
4527c478bd9Sstevel@tonic-gate 	/*
4537c478bd9Sstevel@tonic-gate 	 * We try to merge any file information we may have for existing
4547c478bd9Sstevel@tonic-gate 	 * mappings, to avoid having to rebuild the file info.
4557c478bd9Sstevel@tonic-gate 	 */
4567c478bd9Sstevel@tonic-gate 	mptr = P->mappings;
4577c478bd9Sstevel@tonic-gate 	pmap = Pmap;
4587c478bd9Sstevel@tonic-gate 	newp = newmap;
4597c478bd9Sstevel@tonic-gate 	oldmapcount = P->map_count;
4607c478bd9Sstevel@tonic-gate 	for (i = 0; i < nmap; i++, pmap++, newp++) {
4617c478bd9Sstevel@tonic-gate 
4627c478bd9Sstevel@tonic-gate 		if (oldmapcount == 0) {
4637c478bd9Sstevel@tonic-gate 			/*
4647c478bd9Sstevel@tonic-gate 			 * We've exhausted all the old mappings.  Every new
4657c478bd9Sstevel@tonic-gate 			 * mapping should be added.
4667c478bd9Sstevel@tonic-gate 			 */
4677c478bd9Sstevel@tonic-gate 			newp->map_pmap = *pmap;
4687c478bd9Sstevel@tonic-gate 
4697c478bd9Sstevel@tonic-gate 		} else if (pmap->pr_vaddr == mptr->map_pmap.pr_vaddr &&
4707c478bd9Sstevel@tonic-gate 		    pmap->pr_size == mptr->map_pmap.pr_size &&
4717c478bd9Sstevel@tonic-gate 		    pmap->pr_offset == mptr->map_pmap.pr_offset &&
4727c478bd9Sstevel@tonic-gate 		    (pmap->pr_mflags & ~(MA_BREAK | MA_STACK)) ==
4737c478bd9Sstevel@tonic-gate 		    (mptr->map_pmap.pr_mflags & ~(MA_BREAK | MA_STACK)) &&
4747c478bd9Sstevel@tonic-gate 		    pmap->pr_pagesize == mptr->map_pmap.pr_pagesize &&
4757c478bd9Sstevel@tonic-gate 		    pmap->pr_shmid == mptr->map_pmap.pr_shmid &&
4767c478bd9Sstevel@tonic-gate 		    strcmp(pmap->pr_mapname, mptr->map_pmap.pr_mapname) == 0) {
4777c478bd9Sstevel@tonic-gate 
4787c478bd9Sstevel@tonic-gate 			/*
4797c478bd9Sstevel@tonic-gate 			 * This mapping matches exactly.  Copy over the old
4807c478bd9Sstevel@tonic-gate 			 * mapping, taking care to get the latest flags.
4817c478bd9Sstevel@tonic-gate 			 * Make sure the associated file_info_t is updated
4827c478bd9Sstevel@tonic-gate 			 * appropriately.
4837c478bd9Sstevel@tonic-gate 			 */
4847c478bd9Sstevel@tonic-gate 			*newp = *mptr;
4857c478bd9Sstevel@tonic-gate 			if (P->map_exec == mptr)
4867c478bd9Sstevel@tonic-gate 				P->map_exec = newp;
4877c478bd9Sstevel@tonic-gate 			if (P->map_ldso == mptr)
4887c478bd9Sstevel@tonic-gate 				P->map_ldso = newp;
4897c478bd9Sstevel@tonic-gate 			newp->map_pmap.pr_mflags = pmap->pr_mflags;
4907c478bd9Sstevel@tonic-gate 			if (mptr->map_file != NULL &&
4917c478bd9Sstevel@tonic-gate 			    mptr->map_file->file_map == mptr)
4927c478bd9Sstevel@tonic-gate 				mptr->map_file->file_map = newp;
4937c478bd9Sstevel@tonic-gate 			oldmapcount--;
4947c478bd9Sstevel@tonic-gate 			mptr++;
4957c478bd9Sstevel@tonic-gate 
4967c478bd9Sstevel@tonic-gate 		} else if (pmap->pr_vaddr + pmap->pr_size >
4977c478bd9Sstevel@tonic-gate 		    mptr->map_pmap.pr_vaddr) {
4987c478bd9Sstevel@tonic-gate 
4997c478bd9Sstevel@tonic-gate 			/*
5007c478bd9Sstevel@tonic-gate 			 * The old mapping doesn't exist any more, remove it
5017c478bd9Sstevel@tonic-gate 			 * from the list.
5027c478bd9Sstevel@tonic-gate 			 */
5037c478bd9Sstevel@tonic-gate 			map_info_free(P, mptr);
5047c478bd9Sstevel@tonic-gate 			oldmapcount--;
5057c478bd9Sstevel@tonic-gate 			i--;
5067c478bd9Sstevel@tonic-gate 			newp--;
5077c478bd9Sstevel@tonic-gate 			pmap--;
5087c478bd9Sstevel@tonic-gate 			mptr++;
5097c478bd9Sstevel@tonic-gate 
5107c478bd9Sstevel@tonic-gate 		} else {
5117c478bd9Sstevel@tonic-gate 
5127c478bd9Sstevel@tonic-gate 			/*
5137c478bd9Sstevel@tonic-gate 			 * This is a new mapping, add it directly.
5147c478bd9Sstevel@tonic-gate 			 */
5157c478bd9Sstevel@tonic-gate 			newp->map_pmap = *pmap;
5167c478bd9Sstevel@tonic-gate 		}
5177c478bd9Sstevel@tonic-gate 	}
5187c478bd9Sstevel@tonic-gate 
5197c478bd9Sstevel@tonic-gate 	/*
5207c478bd9Sstevel@tonic-gate 	 * Free any old maps
5217c478bd9Sstevel@tonic-gate 	 */
5227c478bd9Sstevel@tonic-gate 	while (oldmapcount) {
5237c478bd9Sstevel@tonic-gate 		map_info_free(P, mptr);
5247c478bd9Sstevel@tonic-gate 		oldmapcount--;
5257c478bd9Sstevel@tonic-gate 		mptr++;
5267c478bd9Sstevel@tonic-gate 	}
5277c478bd9Sstevel@tonic-gate 
5287c478bd9Sstevel@tonic-gate 	free(Pmap);
5297c478bd9Sstevel@tonic-gate 	if (P->mappings != NULL)
5307c478bd9Sstevel@tonic-gate 		free(P->mappings);
5317c478bd9Sstevel@tonic-gate 	P->mappings = newmap;
5327c478bd9Sstevel@tonic-gate 	P->map_count = P->map_alloc = nmap;
5337c478bd9Sstevel@tonic-gate 	P->info_valid = 1;
5347c478bd9Sstevel@tonic-gate 
5357c478bd9Sstevel@tonic-gate 	/*
5367c478bd9Sstevel@tonic-gate 	 * Consult librtld_db to get the load object
5377c478bd9Sstevel@tonic-gate 	 * names for all of the shared libraries.
5387c478bd9Sstevel@tonic-gate 	 */
5397c478bd9Sstevel@tonic-gate 	if (P->rap != NULL)
5407c478bd9Sstevel@tonic-gate 		(void) rd_loadobj_iter(P->rap, map_iter, P);
5417c478bd9Sstevel@tonic-gate }
5427c478bd9Sstevel@tonic-gate 
5437c478bd9Sstevel@tonic-gate /*
5447c478bd9Sstevel@tonic-gate  * Update all of the mappings and rtld_db as if by Pupdate_maps(), and then
5457c478bd9Sstevel@tonic-gate  * forcibly cache all of the symbol tables associated with all object files.
5467c478bd9Sstevel@tonic-gate  */
5477c478bd9Sstevel@tonic-gate void
5487c478bd9Sstevel@tonic-gate Pupdate_syms(struct ps_prochandle *P)
5497c478bd9Sstevel@tonic-gate {
5507c478bd9Sstevel@tonic-gate 	file_info_t *fptr = list_next(&P->file_head);
5517c478bd9Sstevel@tonic-gate 	int i;
5527c478bd9Sstevel@tonic-gate 
5537c478bd9Sstevel@tonic-gate 	Pupdate_maps(P);
5547c478bd9Sstevel@tonic-gate 
5557c478bd9Sstevel@tonic-gate 	for (i = 0; i < P->num_files; i++, fptr = list_next(fptr)) {
5567c478bd9Sstevel@tonic-gate 		Pbuild_file_symtab(P, fptr);
5577c478bd9Sstevel@tonic-gate 		(void) Pbuild_file_ctf(P, fptr);
5587c478bd9Sstevel@tonic-gate 	}
5597c478bd9Sstevel@tonic-gate }
5607c478bd9Sstevel@tonic-gate 
5617c478bd9Sstevel@tonic-gate /*
5627c478bd9Sstevel@tonic-gate  * Return the librtld_db agent handle for the victim process.
5637c478bd9Sstevel@tonic-gate  * The handle will become invalid at the next successful exec() and the
5647c478bd9Sstevel@tonic-gate  * client (caller of proc_rd_agent()) must not use it beyond that point.
5657c478bd9Sstevel@tonic-gate  * If the process is already dead, we've already tried our best to
5667c478bd9Sstevel@tonic-gate  * create the agent during core file initialization.
5677c478bd9Sstevel@tonic-gate  */
5687c478bd9Sstevel@tonic-gate rd_agent_t *
5697c478bd9Sstevel@tonic-gate Prd_agent(struct ps_prochandle *P)
5707c478bd9Sstevel@tonic-gate {
5717c478bd9Sstevel@tonic-gate 	if (P->rap == NULL && P->state != PS_DEAD && P->state != PS_IDLE) {
5727c478bd9Sstevel@tonic-gate 		Pupdate_maps(P);
5737c478bd9Sstevel@tonic-gate 		if (P->num_files == 0)
5747c478bd9Sstevel@tonic-gate 			load_static_maps(P);
5757c478bd9Sstevel@tonic-gate 		rd_log(_libproc_debug);
5767c478bd9Sstevel@tonic-gate 		if ((P->rap = rd_new(P)) != NULL)
5777c478bd9Sstevel@tonic-gate 			(void) rd_loadobj_iter(P->rap, map_iter, P);
5787c478bd9Sstevel@tonic-gate 	}
5797c478bd9Sstevel@tonic-gate 	return (P->rap);
5807c478bd9Sstevel@tonic-gate }
5817c478bd9Sstevel@tonic-gate 
5827c478bd9Sstevel@tonic-gate /*
5837c478bd9Sstevel@tonic-gate  * Return the prmap_t structure containing 'addr', but only if it
5847c478bd9Sstevel@tonic-gate  * is in the dynamic linker's link map and is the text section.
5857c478bd9Sstevel@tonic-gate  */
5867c478bd9Sstevel@tonic-gate const prmap_t *
5877c478bd9Sstevel@tonic-gate Paddr_to_text_map(struct ps_prochandle *P, uintptr_t addr)
5887c478bd9Sstevel@tonic-gate {
5897c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
5907c478bd9Sstevel@tonic-gate 
5917c478bd9Sstevel@tonic-gate 	if (!P->info_valid)
5927c478bd9Sstevel@tonic-gate 		Pupdate_maps(P);
5937c478bd9Sstevel@tonic-gate 
5947c478bd9Sstevel@tonic-gate 	if ((mptr = Paddr2mptr(P, addr)) != NULL) {
5957c478bd9Sstevel@tonic-gate 		file_info_t *fptr = build_map_symtab(P, mptr);
5967c478bd9Sstevel@tonic-gate 		const prmap_t *pmp = &mptr->map_pmap;
5977c478bd9Sstevel@tonic-gate 
5987c478bd9Sstevel@tonic-gate 		if (fptr != NULL && fptr->file_lo != NULL &&
5997c478bd9Sstevel@tonic-gate 		    fptr->file_lo->rl_base >= pmp->pr_vaddr &&
6007c478bd9Sstevel@tonic-gate 		    fptr->file_lo->rl_base < pmp->pr_vaddr + pmp->pr_size)
6017c478bd9Sstevel@tonic-gate 			return (pmp);
6027c478bd9Sstevel@tonic-gate 	}
6037c478bd9Sstevel@tonic-gate 
6047c478bd9Sstevel@tonic-gate 	return (NULL);
6057c478bd9Sstevel@tonic-gate }
6067c478bd9Sstevel@tonic-gate 
6077c478bd9Sstevel@tonic-gate /*
6087c478bd9Sstevel@tonic-gate  * Return the prmap_t structure containing 'addr' (no restrictions on
6097c478bd9Sstevel@tonic-gate  * the type of mapping).
6107c478bd9Sstevel@tonic-gate  */
6117c478bd9Sstevel@tonic-gate const prmap_t *
6127c478bd9Sstevel@tonic-gate Paddr_to_map(struct ps_prochandle *P, uintptr_t addr)
6137c478bd9Sstevel@tonic-gate {
6147c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
6157c478bd9Sstevel@tonic-gate 
6167c478bd9Sstevel@tonic-gate 	if (!P->info_valid)
6177c478bd9Sstevel@tonic-gate 		Pupdate_maps(P);
6187c478bd9Sstevel@tonic-gate 
6197c478bd9Sstevel@tonic-gate 	if ((mptr = Paddr2mptr(P, addr)) != NULL)
6207c478bd9Sstevel@tonic-gate 		return (&mptr->map_pmap);
6217c478bd9Sstevel@tonic-gate 
6227c478bd9Sstevel@tonic-gate 	return (NULL);
6237c478bd9Sstevel@tonic-gate }
6247c478bd9Sstevel@tonic-gate 
6257c478bd9Sstevel@tonic-gate /*
6267c478bd9Sstevel@tonic-gate  * Convert a full or partial load object name to the prmap_t for its
6277c478bd9Sstevel@tonic-gate  * corresponding primary text mapping.
6287c478bd9Sstevel@tonic-gate  */
6297c478bd9Sstevel@tonic-gate const prmap_t *
6307c478bd9Sstevel@tonic-gate Plmid_to_map(struct ps_prochandle *P, Lmid_t lmid, const char *name)
6317c478bd9Sstevel@tonic-gate {
6327c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
6337c478bd9Sstevel@tonic-gate 
6347c478bd9Sstevel@tonic-gate 	if (name == PR_OBJ_EVERY)
6357c478bd9Sstevel@tonic-gate 		return (NULL); /* A reasonable mistake */
6367c478bd9Sstevel@tonic-gate 
6377c478bd9Sstevel@tonic-gate 	if ((mptr = object_name_to_map(P, lmid, name)) != NULL)
6387c478bd9Sstevel@tonic-gate 		return (&mptr->map_pmap);
6397c478bd9Sstevel@tonic-gate 
6407c478bd9Sstevel@tonic-gate 	return (NULL);
6417c478bd9Sstevel@tonic-gate }
6427c478bd9Sstevel@tonic-gate 
6437c478bd9Sstevel@tonic-gate const prmap_t *
6447c478bd9Sstevel@tonic-gate Pname_to_map(struct ps_prochandle *P, const char *name)
6457c478bd9Sstevel@tonic-gate {
6467c478bd9Sstevel@tonic-gate 	return (Plmid_to_map(P, PR_LMID_EVERY, name));
6477c478bd9Sstevel@tonic-gate }
6487c478bd9Sstevel@tonic-gate 
6497c478bd9Sstevel@tonic-gate const rd_loadobj_t *
6507c478bd9Sstevel@tonic-gate Paddr_to_loadobj(struct ps_prochandle *P, uintptr_t addr)
6517c478bd9Sstevel@tonic-gate {
6527c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
6537c478bd9Sstevel@tonic-gate 
6547c478bd9Sstevel@tonic-gate 	if (!P->info_valid)
6557c478bd9Sstevel@tonic-gate 		Pupdate_maps(P);
6567c478bd9Sstevel@tonic-gate 
6577c478bd9Sstevel@tonic-gate 	if ((mptr = Paddr2mptr(P, addr)) == NULL)
6587c478bd9Sstevel@tonic-gate 		return (NULL);
6597c478bd9Sstevel@tonic-gate 
6607c478bd9Sstevel@tonic-gate 	/*
6617c478bd9Sstevel@tonic-gate 	 * By building the symbol table, we implicitly bring the PLT
6627c478bd9Sstevel@tonic-gate 	 * information up to date in the load object.
6637c478bd9Sstevel@tonic-gate 	 */
6647c478bd9Sstevel@tonic-gate 	(void) build_map_symtab(P, mptr);
6657c478bd9Sstevel@tonic-gate 
6667c478bd9Sstevel@tonic-gate 	return (mptr->map_file->file_lo);
6677c478bd9Sstevel@tonic-gate }
6687c478bd9Sstevel@tonic-gate 
6697c478bd9Sstevel@tonic-gate const rd_loadobj_t *
6707c478bd9Sstevel@tonic-gate Plmid_to_loadobj(struct ps_prochandle *P, Lmid_t lmid, const char *name)
6717c478bd9Sstevel@tonic-gate {
6727c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
6737c478bd9Sstevel@tonic-gate 
6747c478bd9Sstevel@tonic-gate 	if (name == PR_OBJ_EVERY)
6757c478bd9Sstevel@tonic-gate 		return (NULL);
6767c478bd9Sstevel@tonic-gate 
6777c478bd9Sstevel@tonic-gate 	if ((mptr = object_name_to_map(P, lmid, name)) == NULL)
6787c478bd9Sstevel@tonic-gate 		return (NULL);
6797c478bd9Sstevel@tonic-gate 
6807c478bd9Sstevel@tonic-gate 	/*
6817c478bd9Sstevel@tonic-gate 	 * By building the symbol table, we implicitly bring the PLT
6827c478bd9Sstevel@tonic-gate 	 * information up to date in the load object.
6837c478bd9Sstevel@tonic-gate 	 */
6847c478bd9Sstevel@tonic-gate 	(void) build_map_symtab(P, mptr);
6857c478bd9Sstevel@tonic-gate 
6867c478bd9Sstevel@tonic-gate 	return (mptr->map_file->file_lo);
6877c478bd9Sstevel@tonic-gate }
6887c478bd9Sstevel@tonic-gate 
6897c478bd9Sstevel@tonic-gate const rd_loadobj_t *
6907c478bd9Sstevel@tonic-gate Pname_to_loadobj(struct ps_prochandle *P, const char *name)
6917c478bd9Sstevel@tonic-gate {
6927c478bd9Sstevel@tonic-gate 	return (Plmid_to_loadobj(P, PR_LMID_EVERY, name));
6937c478bd9Sstevel@tonic-gate }
6947c478bd9Sstevel@tonic-gate 
6957c478bd9Sstevel@tonic-gate ctf_file_t *
6967c478bd9Sstevel@tonic-gate Pbuild_file_ctf(struct ps_prochandle *P, file_info_t *fptr)
6977c478bd9Sstevel@tonic-gate {
6987c478bd9Sstevel@tonic-gate 	ctf_sect_t ctdata, symtab, strtab;
6997c478bd9Sstevel@tonic-gate 	sym_tbl_t *symp;
7007c478bd9Sstevel@tonic-gate 	int err;
7017c478bd9Sstevel@tonic-gate 
7027c478bd9Sstevel@tonic-gate 	if (fptr->file_ctfp != NULL)
7037c478bd9Sstevel@tonic-gate 		return (fptr->file_ctfp);
7047c478bd9Sstevel@tonic-gate 
7057c478bd9Sstevel@tonic-gate 	Pbuild_file_symtab(P, fptr);
7067c478bd9Sstevel@tonic-gate 
7077c478bd9Sstevel@tonic-gate 	if (fptr->file_ctf_size == 0)
7087c478bd9Sstevel@tonic-gate 		return (NULL);
7097c478bd9Sstevel@tonic-gate 
7107c478bd9Sstevel@tonic-gate 	symp = fptr->file_ctf_dyn ? &fptr->file_dynsym : &fptr->file_symtab;
7117c478bd9Sstevel@tonic-gate 	if (symp->sym_data == NULL)
7127c478bd9Sstevel@tonic-gate 		return (NULL);
7137c478bd9Sstevel@tonic-gate 
7147c478bd9Sstevel@tonic-gate 	/*
7157c478bd9Sstevel@tonic-gate 	 * The buffer may alread be allocated if this is a core file that
7167c478bd9Sstevel@tonic-gate 	 * contained CTF data for this file.
7177c478bd9Sstevel@tonic-gate 	 */
7187c478bd9Sstevel@tonic-gate 	if (fptr->file_ctf_buf == NULL) {
7197c478bd9Sstevel@tonic-gate 		fptr->file_ctf_buf = malloc(fptr->file_ctf_size);
7207c478bd9Sstevel@tonic-gate 		if (fptr->file_ctf_buf == NULL) {
7217c478bd9Sstevel@tonic-gate 			dprintf("failed to allocate ctf buffer\n");
7227c478bd9Sstevel@tonic-gate 			return (NULL);
7237c478bd9Sstevel@tonic-gate 		}
7247c478bd9Sstevel@tonic-gate 
7257c478bd9Sstevel@tonic-gate 		if (pread(fptr->file_fd, fptr->file_ctf_buf,
7267c478bd9Sstevel@tonic-gate 		    fptr->file_ctf_size, fptr->file_ctf_off) !=
7277c478bd9Sstevel@tonic-gate 		    fptr->file_ctf_size) {
7287c478bd9Sstevel@tonic-gate 			free(fptr->file_ctf_buf);
7297c478bd9Sstevel@tonic-gate 			fptr->file_ctf_buf = NULL;
7307c478bd9Sstevel@tonic-gate 			dprintf("failed to read ctf data\n");
7317c478bd9Sstevel@tonic-gate 			return (NULL);
7327c478bd9Sstevel@tonic-gate 		}
7337c478bd9Sstevel@tonic-gate 	}
7347c478bd9Sstevel@tonic-gate 
7357c478bd9Sstevel@tonic-gate 	ctdata.cts_name = ".SUNW_ctf";
7367c478bd9Sstevel@tonic-gate 	ctdata.cts_type = SHT_PROGBITS;
7377c478bd9Sstevel@tonic-gate 	ctdata.cts_flags = 0;
7387c478bd9Sstevel@tonic-gate 	ctdata.cts_data = fptr->file_ctf_buf;
7397c478bd9Sstevel@tonic-gate 	ctdata.cts_size = fptr->file_ctf_size;
7407c478bd9Sstevel@tonic-gate 	ctdata.cts_entsize = 1;
7417c478bd9Sstevel@tonic-gate 	ctdata.cts_offset = 0;
7427c478bd9Sstevel@tonic-gate 
7437c478bd9Sstevel@tonic-gate 	symtab.cts_name = fptr->file_ctf_dyn ? ".dynsym" : ".symtab";
7447c478bd9Sstevel@tonic-gate 	symtab.cts_type = symp->sym_hdr.sh_type;
7457c478bd9Sstevel@tonic-gate 	symtab.cts_flags = symp->sym_hdr.sh_flags;
7467c478bd9Sstevel@tonic-gate 	symtab.cts_data = symp->sym_data->d_buf;
7477c478bd9Sstevel@tonic-gate 	symtab.cts_size = symp->sym_hdr.sh_size;
7487c478bd9Sstevel@tonic-gate 	symtab.cts_entsize = symp->sym_hdr.sh_entsize;
7497c478bd9Sstevel@tonic-gate 	symtab.cts_offset = symp->sym_hdr.sh_offset;
7507c478bd9Sstevel@tonic-gate 
7517c478bd9Sstevel@tonic-gate 	strtab.cts_name = fptr->file_ctf_dyn ? ".dynstr" : ".strtab";
7527c478bd9Sstevel@tonic-gate 	strtab.cts_type = symp->sym_strhdr.sh_type;
7537c478bd9Sstevel@tonic-gate 	strtab.cts_flags = symp->sym_strhdr.sh_flags;
7547c478bd9Sstevel@tonic-gate 	strtab.cts_data = symp->sym_strs;
7557c478bd9Sstevel@tonic-gate 	strtab.cts_size = symp->sym_strhdr.sh_size;
7567c478bd9Sstevel@tonic-gate 	strtab.cts_entsize = symp->sym_strhdr.sh_entsize;
7577c478bd9Sstevel@tonic-gate 	strtab.cts_offset = symp->sym_strhdr.sh_offset;
7587c478bd9Sstevel@tonic-gate 
7597c478bd9Sstevel@tonic-gate 	fptr->file_ctfp = ctf_bufopen(&ctdata, &symtab, &strtab, &err);
7607c478bd9Sstevel@tonic-gate 	if (fptr->file_ctfp == NULL) {
7617c478bd9Sstevel@tonic-gate 		free(fptr->file_ctf_buf);
7627c478bd9Sstevel@tonic-gate 		fptr->file_ctf_buf = NULL;
7637c478bd9Sstevel@tonic-gate 		return (NULL);
7647c478bd9Sstevel@tonic-gate 	}
7657c478bd9Sstevel@tonic-gate 
7667c478bd9Sstevel@tonic-gate 	dprintf("loaded %lu bytes of CTF data for %s\n",
7677c478bd9Sstevel@tonic-gate 	    (ulong_t)fptr->file_ctf_size, fptr->file_pname);
7687c478bd9Sstevel@tonic-gate 
7697c478bd9Sstevel@tonic-gate 	return (fptr->file_ctfp);
7707c478bd9Sstevel@tonic-gate }
7717c478bd9Sstevel@tonic-gate 
7727c478bd9Sstevel@tonic-gate ctf_file_t *
7737c478bd9Sstevel@tonic-gate Paddr_to_ctf(struct ps_prochandle *P, uintptr_t addr)
7747c478bd9Sstevel@tonic-gate {
7757c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
7767c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
7777c478bd9Sstevel@tonic-gate 
7787c478bd9Sstevel@tonic-gate 	if (!P->info_valid)
7797c478bd9Sstevel@tonic-gate 		Pupdate_maps(P);
7807c478bd9Sstevel@tonic-gate 
7817c478bd9Sstevel@tonic-gate 	if ((mptr = Paddr2mptr(P, addr)) == NULL ||
7827c478bd9Sstevel@tonic-gate 	    (fptr = mptr->map_file) == NULL)
7837c478bd9Sstevel@tonic-gate 		return (NULL);
7847c478bd9Sstevel@tonic-gate 
7857c478bd9Sstevel@tonic-gate 	return (Pbuild_file_ctf(P, fptr));
7867c478bd9Sstevel@tonic-gate }
7877c478bd9Sstevel@tonic-gate 
7887c478bd9Sstevel@tonic-gate ctf_file_t *
7897c478bd9Sstevel@tonic-gate Plmid_to_ctf(struct ps_prochandle *P, Lmid_t lmid, const char *name)
7907c478bd9Sstevel@tonic-gate {
7917c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
7927c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
7937c478bd9Sstevel@tonic-gate 
7947c478bd9Sstevel@tonic-gate 	if (name == PR_OBJ_EVERY)
7957c478bd9Sstevel@tonic-gate 		return (NULL);
7967c478bd9Sstevel@tonic-gate 
7977c478bd9Sstevel@tonic-gate 	if ((mptr = object_name_to_map(P, lmid, name)) == NULL ||
7987c478bd9Sstevel@tonic-gate 	    (fptr = mptr->map_file) == NULL)
7997c478bd9Sstevel@tonic-gate 		return (NULL);
8007c478bd9Sstevel@tonic-gate 
8017c478bd9Sstevel@tonic-gate 	return (Pbuild_file_ctf(P, fptr));
8027c478bd9Sstevel@tonic-gate }
8037c478bd9Sstevel@tonic-gate 
8047c478bd9Sstevel@tonic-gate ctf_file_t *
8057c478bd9Sstevel@tonic-gate Pname_to_ctf(struct ps_prochandle *P, const char *name)
8067c478bd9Sstevel@tonic-gate {
8077c478bd9Sstevel@tonic-gate 	return (Plmid_to_ctf(P, PR_LMID_EVERY, name));
8087c478bd9Sstevel@tonic-gate }
8097c478bd9Sstevel@tonic-gate 
8107c478bd9Sstevel@tonic-gate /*
8117c478bd9Sstevel@tonic-gate  * If we're not a core file, re-read the /proc/<pid>/auxv file and store
8127c478bd9Sstevel@tonic-gate  * its contents in P->auxv.  In the case of a core file, we either
8137c478bd9Sstevel@tonic-gate  * initialized P->auxv in Pcore() from the NT_AUXV, or we don't have an
8147c478bd9Sstevel@tonic-gate  * auxv because the note was missing.
8157c478bd9Sstevel@tonic-gate  */
8167c478bd9Sstevel@tonic-gate void
8177c478bd9Sstevel@tonic-gate Preadauxvec(struct ps_prochandle *P)
8187c478bd9Sstevel@tonic-gate {
8197c478bd9Sstevel@tonic-gate 	char auxfile[64];
8207c478bd9Sstevel@tonic-gate 	struct stat statb;
8217c478bd9Sstevel@tonic-gate 	ssize_t naux;
8227c478bd9Sstevel@tonic-gate 	int fd;
8237c478bd9Sstevel@tonic-gate 
8247c478bd9Sstevel@tonic-gate 	if (P->state == PS_DEAD)
8257c478bd9Sstevel@tonic-gate 		return; /* Already read during Pgrab_core() */
8267c478bd9Sstevel@tonic-gate 	if (P->state == PS_IDLE)
8277c478bd9Sstevel@tonic-gate 		return; /* No aux vec for Pgrab_file() */
8287c478bd9Sstevel@tonic-gate 
8297c478bd9Sstevel@tonic-gate 	if (P->auxv != NULL) {
8307c478bd9Sstevel@tonic-gate 		free(P->auxv);
8317c478bd9Sstevel@tonic-gate 		P->auxv = NULL;
8327c478bd9Sstevel@tonic-gate 		P->nauxv = 0;
8337c478bd9Sstevel@tonic-gate 	}
8347c478bd9Sstevel@tonic-gate 
8359acbbeafSnn35248 	(void) snprintf(auxfile, sizeof (auxfile), "%s/%d/auxv",
8369acbbeafSnn35248 	    procfs_path, (int)P->pid);
8377c478bd9Sstevel@tonic-gate 	if ((fd = open(auxfile, O_RDONLY)) < 0)
8387c478bd9Sstevel@tonic-gate 		return;
8397c478bd9Sstevel@tonic-gate 
8407c478bd9Sstevel@tonic-gate 	if (fstat(fd, &statb) == 0 &&
8417c478bd9Sstevel@tonic-gate 	    statb.st_size >= sizeof (auxv_t) &&
8427c478bd9Sstevel@tonic-gate 	    (P->auxv = malloc(statb.st_size + sizeof (auxv_t))) != NULL) {
8437c478bd9Sstevel@tonic-gate 		if ((naux = read(fd, P->auxv, statb.st_size)) < 0 ||
8447c478bd9Sstevel@tonic-gate 		    (naux /= sizeof (auxv_t)) < 1) {
8457c478bd9Sstevel@tonic-gate 			free(P->auxv);
8467c478bd9Sstevel@tonic-gate 			P->auxv = NULL;
8477c478bd9Sstevel@tonic-gate 		} else {
8487c478bd9Sstevel@tonic-gate 			P->auxv[naux].a_type = AT_NULL;
8497c478bd9Sstevel@tonic-gate 			P->auxv[naux].a_un.a_val = 0L;
8507c478bd9Sstevel@tonic-gate 			P->nauxv = (int)naux;
8517c478bd9Sstevel@tonic-gate 		}
8527c478bd9Sstevel@tonic-gate 	}
8537c478bd9Sstevel@tonic-gate 
8547c478bd9Sstevel@tonic-gate 	(void) close(fd);
8557c478bd9Sstevel@tonic-gate }
8567c478bd9Sstevel@tonic-gate 
8577c478bd9Sstevel@tonic-gate /*
8587c478bd9Sstevel@tonic-gate  * Return a requested element from the process's aux vector.
8597c478bd9Sstevel@tonic-gate  * Return -1 on failure (this is adequate for our purposes).
8607c478bd9Sstevel@tonic-gate  */
8617c478bd9Sstevel@tonic-gate long
8627c478bd9Sstevel@tonic-gate Pgetauxval(struct ps_prochandle *P, int type)
8637c478bd9Sstevel@tonic-gate {
8647c478bd9Sstevel@tonic-gate 	auxv_t *auxv;
8657c478bd9Sstevel@tonic-gate 
8667c478bd9Sstevel@tonic-gate 	if (P->auxv == NULL)
8677c478bd9Sstevel@tonic-gate 		Preadauxvec(P);
8687c478bd9Sstevel@tonic-gate 
8697c478bd9Sstevel@tonic-gate 	if (P->auxv == NULL)
8707c478bd9Sstevel@tonic-gate 		return (-1);
8717c478bd9Sstevel@tonic-gate 
8727c478bd9Sstevel@tonic-gate 	for (auxv = P->auxv; auxv->a_type != AT_NULL; auxv++) {
8737c478bd9Sstevel@tonic-gate 		if (auxv->a_type == type)
8747c478bd9Sstevel@tonic-gate 			return (auxv->a_un.a_val);
8757c478bd9Sstevel@tonic-gate 	}
8767c478bd9Sstevel@tonic-gate 
8777c478bd9Sstevel@tonic-gate 	return (-1);
8787c478bd9Sstevel@tonic-gate }
8797c478bd9Sstevel@tonic-gate 
8807c478bd9Sstevel@tonic-gate /*
8817c478bd9Sstevel@tonic-gate  * Return a pointer to our internal copy of the process's aux vector.
8827c478bd9Sstevel@tonic-gate  * The caller should not hold on to this pointer across any libproc calls.
8837c478bd9Sstevel@tonic-gate  */
8847c478bd9Sstevel@tonic-gate const auxv_t *
8857c478bd9Sstevel@tonic-gate Pgetauxvec(struct ps_prochandle *P)
8867c478bd9Sstevel@tonic-gate {
8877c478bd9Sstevel@tonic-gate 	static const auxv_t empty = { AT_NULL, 0L };
8887c478bd9Sstevel@tonic-gate 
8897c478bd9Sstevel@tonic-gate 	if (P->auxv == NULL)
8907c478bd9Sstevel@tonic-gate 		Preadauxvec(P);
8917c478bd9Sstevel@tonic-gate 
8927c478bd9Sstevel@tonic-gate 	if (P->auxv == NULL)
8937c478bd9Sstevel@tonic-gate 		return (&empty);
8947c478bd9Sstevel@tonic-gate 
8957c478bd9Sstevel@tonic-gate 	return (P->auxv);
8967c478bd9Sstevel@tonic-gate }
8977c478bd9Sstevel@tonic-gate 
8987c478bd9Sstevel@tonic-gate /*
89912e72dbbSrh87107  * Return 1 if the given mapping corresponds to the given file_info_t's
90012e72dbbSrh87107  * load object; return 0 otherwise.
90112e72dbbSrh87107  */
90212e72dbbSrh87107 static int
90312e72dbbSrh87107 is_mapping_in_file(struct ps_prochandle *P, map_info_t *mptr, file_info_t *fptr)
90412e72dbbSrh87107 {
90512e72dbbSrh87107 	prmap_t *pmap = &mptr->map_pmap;
90612e72dbbSrh87107 	rd_loadobj_t *lop = fptr->file_lo;
90712e72dbbSrh87107 	uint_t i;
90812e72dbbSrh87107 
90912e72dbbSrh87107 	/*
91012e72dbbSrh87107 	 * We can get for free the start address of the text and data
91112e72dbbSrh87107 	 * sections of the load object. Start by seeing if the mapping
91212e72dbbSrh87107 	 * encloses either of these.
91312e72dbbSrh87107 	 */
91412e72dbbSrh87107 	if ((pmap->pr_vaddr <= lop->rl_base &&
91512e72dbbSrh87107 	    lop->rl_base < pmap->pr_vaddr + pmap->pr_size) ||
91612e72dbbSrh87107 	    (pmap->pr_vaddr <= lop->rl_data_base &&
91712e72dbbSrh87107 	    lop->rl_data_base < pmap->pr_vaddr + pmap->pr_size))
91812e72dbbSrh87107 		return (1);
91912e72dbbSrh87107 
92012e72dbbSrh87107 	/*
92112e72dbbSrh87107 	 * It's still possible that this mapping correponds to the load
92212e72dbbSrh87107 	 * object. Consider the example of a mapping whose start and end
92312e72dbbSrh87107 	 * addresses correspond to those of the load object's text section.
92412e72dbbSrh87107 	 * If the mapping splits, e.g. as a result of a segment demotion,
92512e72dbbSrh87107 	 * then although both mappings are still backed by the same section,
92612e72dbbSrh87107 	 * only one will be seen to enclose that section's start address.
92712e72dbbSrh87107 	 * Thus, to be rigorous, we ask not whether this mapping encloses
92812e72dbbSrh87107 	 * the start of a section, but whether there exists a section that
92912e72dbbSrh87107 	 * encloses the start of this mapping.
93012e72dbbSrh87107 	 *
93112e72dbbSrh87107 	 * If we don't already have the section addresses, and we successfully
93212e72dbbSrh87107 	 * get them, then we cache them in case we come here again.
93312e72dbbSrh87107 	 */
93412e72dbbSrh87107 	if (fptr->file_saddrs == NULL &&
93512e72dbbSrh87107 	    (fptr->file_saddrs = get_saddrs(P,
93612e72dbbSrh87107 	    fptr->file_map->map_pmap.pr_vaddr, &fptr->file_nsaddrs)) == NULL)
93712e72dbbSrh87107 		return (0);
93812e72dbbSrh87107 	for (i = 0; i < fptr->file_nsaddrs; i += 2) {
93912e72dbbSrh87107 		/* Does this section enclose the start of the mapping? */
94012e72dbbSrh87107 		if (fptr->file_saddrs[i] <= pmap->pr_vaddr &&
94112e72dbbSrh87107 		    fptr->file_saddrs[i + 1] > pmap->pr_vaddr)
94212e72dbbSrh87107 			return (1);
94312e72dbbSrh87107 	}
94412e72dbbSrh87107 
94512e72dbbSrh87107 	return (0);
94612e72dbbSrh87107 }
94712e72dbbSrh87107 
94812e72dbbSrh87107 /*
9497c478bd9Sstevel@tonic-gate  * Find or build the symbol table for the given mapping.
9507c478bd9Sstevel@tonic-gate  */
9517c478bd9Sstevel@tonic-gate static file_info_t *
9527c478bd9Sstevel@tonic-gate build_map_symtab(struct ps_prochandle *P, map_info_t *mptr)
9537c478bd9Sstevel@tonic-gate {
9547c478bd9Sstevel@tonic-gate 	prmap_t *pmap = &mptr->map_pmap;
9557c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
9567c478bd9Sstevel@tonic-gate 	uint_t i;
9577c478bd9Sstevel@tonic-gate 
9587c478bd9Sstevel@tonic-gate 	if ((fptr = mptr->map_file) != NULL) {
9597c478bd9Sstevel@tonic-gate 		Pbuild_file_symtab(P, fptr);
9607c478bd9Sstevel@tonic-gate 		return (fptr);
9617c478bd9Sstevel@tonic-gate 	}
9627c478bd9Sstevel@tonic-gate 
9637c478bd9Sstevel@tonic-gate 	if (pmap->pr_mapname[0] == '\0')
9647c478bd9Sstevel@tonic-gate 		return (NULL);
9657c478bd9Sstevel@tonic-gate 
9667c478bd9Sstevel@tonic-gate 	/*
9677c478bd9Sstevel@tonic-gate 	 * Attempt to find a matching file.
9687c478bd9Sstevel@tonic-gate 	 * (A file can be mapped at several different addresses.)
9697c478bd9Sstevel@tonic-gate 	 */
9707c478bd9Sstevel@tonic-gate 	for (i = 0, fptr = list_next(&P->file_head); i < P->num_files;
9717c478bd9Sstevel@tonic-gate 	    i++, fptr = list_next(fptr)) {
9727c478bd9Sstevel@tonic-gate 		if (strcmp(fptr->file_pname, pmap->pr_mapname) == 0 &&
97312e72dbbSrh87107 		    fptr->file_lo && is_mapping_in_file(P, mptr, fptr)) {
9747c478bd9Sstevel@tonic-gate 			mptr->map_file = fptr;
9757c478bd9Sstevel@tonic-gate 			fptr->file_ref++;
9767c478bd9Sstevel@tonic-gate 			Pbuild_file_symtab(P, fptr);
9777c478bd9Sstevel@tonic-gate 			return (fptr);
9787c478bd9Sstevel@tonic-gate 		}
9797c478bd9Sstevel@tonic-gate 	}
9807c478bd9Sstevel@tonic-gate 
9817c478bd9Sstevel@tonic-gate 	/*
9827c478bd9Sstevel@tonic-gate 	 * If we need to create a new file_info structure, iterate
9837c478bd9Sstevel@tonic-gate 	 * through the load objects in order to attempt to connect
9847c478bd9Sstevel@tonic-gate 	 * this new file with its primary text mapping.  We again
9857c478bd9Sstevel@tonic-gate 	 * need to handle ld.so as a special case because we need
9867c478bd9Sstevel@tonic-gate 	 * to be able to bootstrap librtld_db.
9877c478bd9Sstevel@tonic-gate 	 */
9887c478bd9Sstevel@tonic-gate 	if ((fptr = file_info_new(P, mptr)) == NULL)
9897c478bd9Sstevel@tonic-gate 		return (NULL);
9907c478bd9Sstevel@tonic-gate 
9917c478bd9Sstevel@tonic-gate 	if (P->map_ldso != mptr) {
9927c478bd9Sstevel@tonic-gate 		if (P->rap != NULL)
9937c478bd9Sstevel@tonic-gate 			(void) rd_loadobj_iter(P->rap, map_iter, P);
9947c478bd9Sstevel@tonic-gate 		else
9957c478bd9Sstevel@tonic-gate 			(void) Prd_agent(P);
9967c478bd9Sstevel@tonic-gate 	} else {
9977c478bd9Sstevel@tonic-gate 		fptr->file_map = mptr;
9987c478bd9Sstevel@tonic-gate 	}
9997c478bd9Sstevel@tonic-gate 
10007c478bd9Sstevel@tonic-gate 	/*
10017c478bd9Sstevel@tonic-gate 	 * If librtld_db wasn't able to help us connect the file to a primary
10027c478bd9Sstevel@tonic-gate 	 * text mapping, set file_map to the current mapping because we require
10037c478bd9Sstevel@tonic-gate 	 * fptr->file_map to be set in Pbuild_file_symtab.  librtld_db may be
10047c478bd9Sstevel@tonic-gate 	 * unaware of what's going on in the rare case that a legitimate ELF
10057c478bd9Sstevel@tonic-gate 	 * file has been mmap(2)ed into the process address space *without*
10069acbbeafSnn35248 	 * the use of dlopen(3x).
10077c478bd9Sstevel@tonic-gate 	 */
10087c478bd9Sstevel@tonic-gate 	if (fptr->file_map == NULL)
10097c478bd9Sstevel@tonic-gate 		fptr->file_map = mptr;
10107c478bd9Sstevel@tonic-gate 
10117c478bd9Sstevel@tonic-gate 	Pbuild_file_symtab(P, fptr);
10127c478bd9Sstevel@tonic-gate 
10137c478bd9Sstevel@tonic-gate 	return (fptr);
10147c478bd9Sstevel@tonic-gate }
10157c478bd9Sstevel@tonic-gate 
10167c478bd9Sstevel@tonic-gate static int
101730da1432Sahl read_ehdr32(struct ps_prochandle *P, Elf32_Ehdr *ehdr, uint_t *phnum,
101830da1432Sahl     uintptr_t addr)
10197c478bd9Sstevel@tonic-gate {
10207c478bd9Sstevel@tonic-gate 	if (Pread(P, ehdr, sizeof (*ehdr), addr) != sizeof (*ehdr))
10217c478bd9Sstevel@tonic-gate 		return (-1);
10227c478bd9Sstevel@tonic-gate 
10237c478bd9Sstevel@tonic-gate 	if (ehdr->e_ident[EI_MAG0] != ELFMAG0 ||
10247c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_MAG1] != ELFMAG1 ||
10257c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_MAG2] != ELFMAG2 ||
10267c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_MAG3] != ELFMAG3 ||
10277c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_CLASS] != ELFCLASS32 ||
10287c478bd9Sstevel@tonic-gate #ifdef _BIG_ENDIAN
10297c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_DATA] != ELFDATA2MSB ||
10307c478bd9Sstevel@tonic-gate #else
10317c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_DATA] != ELFDATA2LSB ||
10327c478bd9Sstevel@tonic-gate #endif
10337c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_VERSION] != EV_CURRENT)
10347c478bd9Sstevel@tonic-gate 		return (-1);
10357c478bd9Sstevel@tonic-gate 
103630da1432Sahl 	if ((*phnum = ehdr->e_phnum) == PN_XNUM) {
103730da1432Sahl 		Elf32_Shdr shdr0;
103830da1432Sahl 
103930da1432Sahl 		if (ehdr->e_shoff == 0 || ehdr->e_shentsize < sizeof (shdr0) ||
104030da1432Sahl 		    Pread(P, &shdr0, sizeof (shdr0), addr + ehdr->e_shoff) !=
104130da1432Sahl 		    sizeof (shdr0))
104230da1432Sahl 			return (-1);
104330da1432Sahl 
104430da1432Sahl 		if (shdr0.sh_info != 0)
104530da1432Sahl 			*phnum = shdr0.sh_info;
104630da1432Sahl 	}
104730da1432Sahl 
10487c478bd9Sstevel@tonic-gate 	return (0);
10497c478bd9Sstevel@tonic-gate }
10507c478bd9Sstevel@tonic-gate 
10517c478bd9Sstevel@tonic-gate static int
10527c478bd9Sstevel@tonic-gate read_dynamic_phdr32(struct ps_prochandle *P, const Elf32_Ehdr *ehdr,
105330da1432Sahl     uint_t phnum, Elf32_Phdr *phdr, uintptr_t addr)
10547c478bd9Sstevel@tonic-gate {
10557c478bd9Sstevel@tonic-gate 	uint_t i;
10567c478bd9Sstevel@tonic-gate 
105730da1432Sahl 	for (i = 0; i < phnum; i++) {
10587c478bd9Sstevel@tonic-gate 		uintptr_t a = addr + ehdr->e_phoff + i * ehdr->e_phentsize;
10597c478bd9Sstevel@tonic-gate 		if (Pread(P, phdr, sizeof (*phdr), a) != sizeof (*phdr))
10607c478bd9Sstevel@tonic-gate 			return (-1);
10617c478bd9Sstevel@tonic-gate 
10627c478bd9Sstevel@tonic-gate 		if (phdr->p_type == PT_DYNAMIC)
10637c478bd9Sstevel@tonic-gate 			return (0);
10647c478bd9Sstevel@tonic-gate 	}
10657c478bd9Sstevel@tonic-gate 
10667c478bd9Sstevel@tonic-gate 	return (-1);
10677c478bd9Sstevel@tonic-gate }
10687c478bd9Sstevel@tonic-gate 
10697c478bd9Sstevel@tonic-gate #ifdef _LP64
10707c478bd9Sstevel@tonic-gate static int
107130da1432Sahl read_ehdr64(struct ps_prochandle *P, Elf64_Ehdr *ehdr, uint_t *phnum,
107230da1432Sahl     uintptr_t addr)
10737c478bd9Sstevel@tonic-gate {
10747c478bd9Sstevel@tonic-gate 	if (Pread(P, ehdr, sizeof (Elf64_Ehdr), addr) != sizeof (Elf64_Ehdr))
10757c478bd9Sstevel@tonic-gate 		return (-1);
10767c478bd9Sstevel@tonic-gate 
10777c478bd9Sstevel@tonic-gate 	if (ehdr->e_ident[EI_MAG0] != ELFMAG0 ||
10787c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_MAG1] != ELFMAG1 ||
10797c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_MAG2] != ELFMAG2 ||
10807c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_MAG3] != ELFMAG3 ||
10817c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_CLASS] != ELFCLASS64 ||
10827c478bd9Sstevel@tonic-gate #ifdef _BIG_ENDIAN
10837c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_DATA] != ELFDATA2MSB ||
10847c478bd9Sstevel@tonic-gate #else
10857c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_DATA] != ELFDATA2LSB ||
10867c478bd9Sstevel@tonic-gate #endif
10877c478bd9Sstevel@tonic-gate 	    ehdr->e_ident[EI_VERSION] != EV_CURRENT)
10887c478bd9Sstevel@tonic-gate 		return (-1);
10897c478bd9Sstevel@tonic-gate 
109030da1432Sahl 	if ((*phnum = ehdr->e_phnum) == PN_XNUM) {
109130da1432Sahl 		Elf64_Shdr shdr0;
109230da1432Sahl 
109330da1432Sahl 		if (ehdr->e_shoff == 0 || ehdr->e_shentsize < sizeof (shdr0) ||
109430da1432Sahl 		    Pread(P, &shdr0, sizeof (shdr0), addr + ehdr->e_shoff) !=
109530da1432Sahl 		    sizeof (shdr0))
109630da1432Sahl 			return (-1);
109730da1432Sahl 
109830da1432Sahl 		if (shdr0.sh_info != 0)
109930da1432Sahl 			*phnum = shdr0.sh_info;
110030da1432Sahl 	}
110130da1432Sahl 
11027c478bd9Sstevel@tonic-gate 	return (0);
11037c478bd9Sstevel@tonic-gate }
11047c478bd9Sstevel@tonic-gate 
11057c478bd9Sstevel@tonic-gate static int
11067c478bd9Sstevel@tonic-gate read_dynamic_phdr64(struct ps_prochandle *P, const Elf64_Ehdr *ehdr,
110730da1432Sahl     uint_t phnum, Elf64_Phdr *phdr, uintptr_t addr)
11087c478bd9Sstevel@tonic-gate {
11097c478bd9Sstevel@tonic-gate 	uint_t i;
11107c478bd9Sstevel@tonic-gate 
111130da1432Sahl 	for (i = 0; i < phnum; i++) {
11127c478bd9Sstevel@tonic-gate 		uintptr_t a = addr + ehdr->e_phoff + i * ehdr->e_phentsize;
11137c478bd9Sstevel@tonic-gate 		if (Pread(P, phdr, sizeof (*phdr), a) != sizeof (*phdr))
11147c478bd9Sstevel@tonic-gate 			return (-1);
11157c478bd9Sstevel@tonic-gate 
11167c478bd9Sstevel@tonic-gate 		if (phdr->p_type == PT_DYNAMIC)
11177c478bd9Sstevel@tonic-gate 			return (0);
11187c478bd9Sstevel@tonic-gate 	}
11197c478bd9Sstevel@tonic-gate 
11207c478bd9Sstevel@tonic-gate 	return (-1);
11217c478bd9Sstevel@tonic-gate }
11227c478bd9Sstevel@tonic-gate #endif	/* _LP64 */
11237c478bd9Sstevel@tonic-gate 
11247c478bd9Sstevel@tonic-gate /*
11257c478bd9Sstevel@tonic-gate  * The text segment for each load object contains the elf header and
11267c478bd9Sstevel@tonic-gate  * program headers. We can use this information to determine if the
11277c478bd9Sstevel@tonic-gate  * file that corresponds to the load object is the same file that
11287c478bd9Sstevel@tonic-gate  * was loaded into the process's address space. There can be a discrepency
11297c478bd9Sstevel@tonic-gate  * if a file is recompiled after the process is started or if the target
11307c478bd9Sstevel@tonic-gate  * represents a core file from a differently configured system -- two
11317c478bd9Sstevel@tonic-gate  * common examples. The DT_CHECKSUM entry in the dynamic section
11327c478bd9Sstevel@tonic-gate  * provides an easy method of comparison. It is important to note that
11337c478bd9Sstevel@tonic-gate  * the dynamic section usually lives in the data segment, but the meta
11347c478bd9Sstevel@tonic-gate  * data we use to find the dynamic section lives in the text segment so
11357c478bd9Sstevel@tonic-gate  * if either of those segments is absent we can't proceed.
11367c478bd9Sstevel@tonic-gate  *
11377c478bd9Sstevel@tonic-gate  * We're looking through the elf file for several items: the symbol tables
11387c478bd9Sstevel@tonic-gate  * (both dynsym and symtab), the procedure linkage table (PLT) base,
11397c478bd9Sstevel@tonic-gate  * size, and relocation base, and the CTF information. Most of this can
11407c478bd9Sstevel@tonic-gate  * be recovered from the loaded image of the file itself, the exceptions
11417c478bd9Sstevel@tonic-gate  * being the symtab and CTF data.
11427c478bd9Sstevel@tonic-gate  *
11437c478bd9Sstevel@tonic-gate  * First we try to open the file that we think corresponds to the load
11447c478bd9Sstevel@tonic-gate  * object, if the DT_CHECKSUM values match, we're all set, and can simply
11457c478bd9Sstevel@tonic-gate  * recover all the information we need from the file. If the values of
11467c478bd9Sstevel@tonic-gate  * DT_CHECKSUM don't match, or if we can't access the file for whatever
11477c478bd9Sstevel@tonic-gate  * reasaon, we fake up a elf file to use in its stead. If we can't read
11487c478bd9Sstevel@tonic-gate  * the elf data in the process's address space, we fall back to using
11497c478bd9Sstevel@tonic-gate  * the file even though it may give inaccurate information.
11507c478bd9Sstevel@tonic-gate  *
11517c478bd9Sstevel@tonic-gate  * The elf file that we fake up has to consist of sections for the
11527c478bd9Sstevel@tonic-gate  * dynsym, the PLT and the dynamic section. Note that in the case of a
11537c478bd9Sstevel@tonic-gate  * core file, we'll get the CTF data in the file_info_t later on from
11547c478bd9Sstevel@tonic-gate  * a section embedded the core file (if it's present).
11557c478bd9Sstevel@tonic-gate  *
11567c478bd9Sstevel@tonic-gate  * file_differs() conservatively looks for mismatched files, identifying
11577c478bd9Sstevel@tonic-gate  * a match when there is any ambiguity (since that's the legacy behavior).
11587c478bd9Sstevel@tonic-gate  */
11597c478bd9Sstevel@tonic-gate static int
11607c478bd9Sstevel@tonic-gate file_differs(struct ps_prochandle *P, Elf *elf, file_info_t *fptr)
11617c478bd9Sstevel@tonic-gate {
11627c478bd9Sstevel@tonic-gate 	Elf_Scn *scn;
11637c478bd9Sstevel@tonic-gate 	GElf_Shdr shdr;
11647c478bd9Sstevel@tonic-gate 	GElf_Dyn dyn;
11657c478bd9Sstevel@tonic-gate 	Elf_Data *data;
11667c478bd9Sstevel@tonic-gate 	uint_t i, ndyn;
11677c478bd9Sstevel@tonic-gate 	GElf_Xword cksum;
11687c478bd9Sstevel@tonic-gate 	uintptr_t addr;
11697c478bd9Sstevel@tonic-gate 
11707c478bd9Sstevel@tonic-gate 	if (fptr->file_map == NULL)
11717c478bd9Sstevel@tonic-gate 		return (0);
11727c478bd9Sstevel@tonic-gate 
11737c478bd9Sstevel@tonic-gate 	if ((Pcontent(P) & (CC_CONTENT_TEXT | CC_CONTENT_DATA)) !=
11747c478bd9Sstevel@tonic-gate 	    (CC_CONTENT_TEXT | CC_CONTENT_DATA))
11757c478bd9Sstevel@tonic-gate 		return (0);
11767c478bd9Sstevel@tonic-gate 
11777c478bd9Sstevel@tonic-gate 	/*
11787c478bd9Sstevel@tonic-gate 	 * First, we find the checksum value in the elf file.
11797c478bd9Sstevel@tonic-gate 	 */
11807c478bd9Sstevel@tonic-gate 	scn = NULL;
11817c478bd9Sstevel@tonic-gate 	while ((scn = elf_nextscn(elf, scn)) != NULL) {
11827c478bd9Sstevel@tonic-gate 		if (gelf_getshdr(scn, &shdr) != NULL &&
11837c478bd9Sstevel@tonic-gate 		    shdr.sh_type == SHT_DYNAMIC)
11847c478bd9Sstevel@tonic-gate 			goto found_shdr;
11857c478bd9Sstevel@tonic-gate 	}
11867c478bd9Sstevel@tonic-gate 	return (0);
11877c478bd9Sstevel@tonic-gate 
11887c478bd9Sstevel@tonic-gate found_shdr:
11897c478bd9Sstevel@tonic-gate 	if ((data = elf_getdata(scn, NULL)) == NULL)
11907c478bd9Sstevel@tonic-gate 		return (0);
11917c478bd9Sstevel@tonic-gate 
11927c478bd9Sstevel@tonic-gate 	if (P->status.pr_dmodel == PR_MODEL_ILP32)
11937c478bd9Sstevel@tonic-gate 		ndyn = shdr.sh_size / sizeof (Elf32_Dyn);
11947c478bd9Sstevel@tonic-gate #ifdef _LP64
11957c478bd9Sstevel@tonic-gate 	else if (P->status.pr_dmodel == PR_MODEL_LP64)
11967c478bd9Sstevel@tonic-gate 		ndyn = shdr.sh_size / sizeof (Elf64_Dyn);
11977c478bd9Sstevel@tonic-gate #endif
11987c478bd9Sstevel@tonic-gate 	else
11997c478bd9Sstevel@tonic-gate 		return (0);
12007c478bd9Sstevel@tonic-gate 
12017c478bd9Sstevel@tonic-gate 	for (i = 0; i < ndyn; i++) {
12027c478bd9Sstevel@tonic-gate 		if (gelf_getdyn(data, i, &dyn) != NULL &&
12037c478bd9Sstevel@tonic-gate 		    dyn.d_tag == DT_CHECKSUM)
12047c478bd9Sstevel@tonic-gate 			goto found_cksum;
12057c478bd9Sstevel@tonic-gate 	}
12069acbbeafSnn35248 
12079acbbeafSnn35248 	/*
12089acbbeafSnn35248 	 * The in-memory ELF has no DT_CHECKSUM section, but we will report it
12099acbbeafSnn35248 	 * as matching the file anyhow.
12109acbbeafSnn35248 	 */
12117c478bd9Sstevel@tonic-gate 	return (0);
12127c478bd9Sstevel@tonic-gate 
12137c478bd9Sstevel@tonic-gate found_cksum:
12147c478bd9Sstevel@tonic-gate 	cksum = dyn.d_un.d_val;
12157c478bd9Sstevel@tonic-gate 	dprintf("elf cksum value is %llx\n", (u_longlong_t)cksum);
12167c478bd9Sstevel@tonic-gate 
12177c478bd9Sstevel@tonic-gate 	/*
12187c478bd9Sstevel@tonic-gate 	 * Get the base of the text mapping that corresponds to this file.
12197c478bd9Sstevel@tonic-gate 	 */
12207c478bd9Sstevel@tonic-gate 	addr = fptr->file_map->map_pmap.pr_vaddr;
12217c478bd9Sstevel@tonic-gate 
12227c478bd9Sstevel@tonic-gate 	if (P->status.pr_dmodel == PR_MODEL_ILP32) {
12237c478bd9Sstevel@tonic-gate 		Elf32_Ehdr ehdr;
12247c478bd9Sstevel@tonic-gate 		Elf32_Phdr phdr;
12257c478bd9Sstevel@tonic-gate 		Elf32_Dyn dync, *dynp;
122630da1432Sahl 		uint_t phnum, i;
12277c478bd9Sstevel@tonic-gate 
122830da1432Sahl 		if (read_ehdr32(P, &ehdr, &phnum, addr) != 0 ||
122930da1432Sahl 		    read_dynamic_phdr32(P, &ehdr, phnum, &phdr, addr) != 0)
12307c478bd9Sstevel@tonic-gate 			return (0);
12317c478bd9Sstevel@tonic-gate 
12327c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN)
12337c478bd9Sstevel@tonic-gate 			phdr.p_vaddr += addr;
12347c478bd9Sstevel@tonic-gate 		if ((dynp = malloc(phdr.p_filesz)) == NULL)
12357c478bd9Sstevel@tonic-gate 			return (0);
12367c478bd9Sstevel@tonic-gate 		dync.d_tag = DT_NULL;
12377c478bd9Sstevel@tonic-gate 		if (Pread(P, dynp, phdr.p_filesz, phdr.p_vaddr) !=
12387c478bd9Sstevel@tonic-gate 		    phdr.p_filesz) {
12397c478bd9Sstevel@tonic-gate 			free(dynp);
12407c478bd9Sstevel@tonic-gate 			return (0);
12417c478bd9Sstevel@tonic-gate 		}
12427c478bd9Sstevel@tonic-gate 
12437c478bd9Sstevel@tonic-gate 		for (i = 0; i < phdr.p_filesz / sizeof (Elf32_Dyn); i++) {
12447c478bd9Sstevel@tonic-gate 			if (dynp[i].d_tag == DT_CHECKSUM)
12457c478bd9Sstevel@tonic-gate 				dync = dynp[i];
12467c478bd9Sstevel@tonic-gate 		}
12477c478bd9Sstevel@tonic-gate 
12487c478bd9Sstevel@tonic-gate 		free(dynp);
12497c478bd9Sstevel@tonic-gate 
12507c478bd9Sstevel@tonic-gate 		if (dync.d_tag != DT_CHECKSUM)
12517c478bd9Sstevel@tonic-gate 			return (0);
12527c478bd9Sstevel@tonic-gate 
12537c478bd9Sstevel@tonic-gate 		dprintf("image cksum value is %llx\n",
12547c478bd9Sstevel@tonic-gate 		    (u_longlong_t)dync.d_un.d_val);
12557c478bd9Sstevel@tonic-gate 		return (dync.d_un.d_val != cksum);
12567c478bd9Sstevel@tonic-gate #ifdef _LP64
12577c478bd9Sstevel@tonic-gate 	} else if (P->status.pr_dmodel == PR_MODEL_LP64) {
12587c478bd9Sstevel@tonic-gate 		Elf64_Ehdr ehdr;
12597c478bd9Sstevel@tonic-gate 		Elf64_Phdr phdr;
12607c478bd9Sstevel@tonic-gate 		Elf64_Dyn dync, *dynp;
126130da1432Sahl 		uint_t phnum, i;
12627c478bd9Sstevel@tonic-gate 
126330da1432Sahl 		if (read_ehdr64(P, &ehdr, &phnum, addr) != 0 ||
126430da1432Sahl 		    read_dynamic_phdr64(P, &ehdr, phnum, &phdr, addr) != 0)
12657c478bd9Sstevel@tonic-gate 			return (0);
12667c478bd9Sstevel@tonic-gate 
12677c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN)
12687c478bd9Sstevel@tonic-gate 			phdr.p_vaddr += addr;
12697c478bd9Sstevel@tonic-gate 		if ((dynp = malloc(phdr.p_filesz)) == NULL)
12707c478bd9Sstevel@tonic-gate 			return (0);
12717c478bd9Sstevel@tonic-gate 		dync.d_tag = DT_NULL;
12727c478bd9Sstevel@tonic-gate 		if (Pread(P, dynp, phdr.p_filesz, phdr.p_vaddr) !=
12737c478bd9Sstevel@tonic-gate 		    phdr.p_filesz) {
12747c478bd9Sstevel@tonic-gate 			free(dynp);
12757c478bd9Sstevel@tonic-gate 			return (0);
12767c478bd9Sstevel@tonic-gate 		}
12777c478bd9Sstevel@tonic-gate 
12787c478bd9Sstevel@tonic-gate 		for (i = 0; i < phdr.p_filesz / sizeof (Elf64_Dyn); i++) {
12797c478bd9Sstevel@tonic-gate 			if (dynp[i].d_tag == DT_CHECKSUM)
12807c478bd9Sstevel@tonic-gate 				dync = dynp[i];
12817c478bd9Sstevel@tonic-gate 		}
12827c478bd9Sstevel@tonic-gate 
12837c478bd9Sstevel@tonic-gate 		free(dynp);
12847c478bd9Sstevel@tonic-gate 
12857c478bd9Sstevel@tonic-gate 		if (dync.d_tag != DT_CHECKSUM)
12867c478bd9Sstevel@tonic-gate 			return (0);
12877c478bd9Sstevel@tonic-gate 
12887c478bd9Sstevel@tonic-gate 		dprintf("image cksum value is %llx\n",
12897c478bd9Sstevel@tonic-gate 		    (u_longlong_t)dync.d_un.d_val);
12907c478bd9Sstevel@tonic-gate 		return (dync.d_un.d_val != cksum);
12917c478bd9Sstevel@tonic-gate #endif	/* _LP64 */
12927c478bd9Sstevel@tonic-gate 	}
12937c478bd9Sstevel@tonic-gate 
12947c478bd9Sstevel@tonic-gate 	return (0);
12957c478bd9Sstevel@tonic-gate }
12967c478bd9Sstevel@tonic-gate 
12977c478bd9Sstevel@tonic-gate static Elf *
12987c478bd9Sstevel@tonic-gate fake_elf(struct ps_prochandle *P, file_info_t *fptr)
12997c478bd9Sstevel@tonic-gate {
13007c478bd9Sstevel@tonic-gate 	enum {
13017c478bd9Sstevel@tonic-gate 		DI_PLTGOT = 0,
13027c478bd9Sstevel@tonic-gate 		DI_JMPREL,
13037c478bd9Sstevel@tonic-gate 		DI_PLTRELSZ,
13047c478bd9Sstevel@tonic-gate 		DI_PLTREL,
13057c478bd9Sstevel@tonic-gate 		DI_SYMTAB,
13067c478bd9Sstevel@tonic-gate 		DI_HASH,
13077c478bd9Sstevel@tonic-gate 		DI_SYMENT,
13087c478bd9Sstevel@tonic-gate 		DI_STRTAB,
13097c478bd9Sstevel@tonic-gate 		DI_STRSZ,
13107c478bd9Sstevel@tonic-gate 		DI_NENT
13117c478bd9Sstevel@tonic-gate 	};
13127c478bd9Sstevel@tonic-gate 	uintptr_t addr;
13137c478bd9Sstevel@tonic-gate 	size_t size = 0;
13147c478bd9Sstevel@tonic-gate 	caddr_t elfdata = NULL;
13157c478bd9Sstevel@tonic-gate 	Elf *elf;
13167c478bd9Sstevel@tonic-gate 	Elf32_Word nchain;
13177c478bd9Sstevel@tonic-gate 	static char shstr[] = ".shstrtab\0.dynsym\0.dynstr\0.dynamic\0.plt";
13187c478bd9Sstevel@tonic-gate 
13197c478bd9Sstevel@tonic-gate 	if (fptr->file_map == NULL)
13207c478bd9Sstevel@tonic-gate 		return (NULL);
13217c478bd9Sstevel@tonic-gate 
13227c478bd9Sstevel@tonic-gate 	if ((Pcontent(P) & (CC_CONTENT_TEXT | CC_CONTENT_DATA)) !=
13237c478bd9Sstevel@tonic-gate 	    (CC_CONTENT_TEXT | CC_CONTENT_DATA))
13247c478bd9Sstevel@tonic-gate 		return (NULL);
13257c478bd9Sstevel@tonic-gate 
13267c478bd9Sstevel@tonic-gate 	addr = fptr->file_map->map_pmap.pr_vaddr;
13277c478bd9Sstevel@tonic-gate 
13287c478bd9Sstevel@tonic-gate 	/*
13297c478bd9Sstevel@tonic-gate 	 * We're building a in memory elf file that will let us use libelf
13307c478bd9Sstevel@tonic-gate 	 * for most of the work we need to later (e.g. symbol table lookups).
13317c478bd9Sstevel@tonic-gate 	 * We need sections for the dynsym, dynstr, and plt, and we need
13327c478bd9Sstevel@tonic-gate 	 * the program headers from the text section. The former is used in
13337c478bd9Sstevel@tonic-gate 	 * Pbuild_file_symtab(); the latter is used in several functions in
13347c478bd9Sstevel@tonic-gate 	 * Pcore.c to reconstruct the origin of each mapping from the load
13357c478bd9Sstevel@tonic-gate 	 * object that spawned it.
13367c478bd9Sstevel@tonic-gate 	 *
13377c478bd9Sstevel@tonic-gate 	 * Here are some useful pieces of elf trivia that will help
13387c478bd9Sstevel@tonic-gate 	 * to elucidate this code.
13397c478bd9Sstevel@tonic-gate 	 *
13407c478bd9Sstevel@tonic-gate 	 * All the information we need about the dynstr can be found in these
13417c478bd9Sstevel@tonic-gate 	 * two entries in the dynamic section:
13427c478bd9Sstevel@tonic-gate 	 *
13437c478bd9Sstevel@tonic-gate 	 *	DT_STRTAB	base of dynstr
13447c478bd9Sstevel@tonic-gate 	 *	DT_STRSZ	size of dynstr
13457c478bd9Sstevel@tonic-gate 	 *
13467c478bd9Sstevel@tonic-gate 	 * So deciphering the dynstr is pretty straightforward.
13477c478bd9Sstevel@tonic-gate 	 *
13487c478bd9Sstevel@tonic-gate 	 * The dynsym is a little trickier.
13497c478bd9Sstevel@tonic-gate 	 *
13507c478bd9Sstevel@tonic-gate 	 *	DT_SYMTAB	base of dynsym
13517c478bd9Sstevel@tonic-gate 	 *	DT_SYMENT	size of a dynstr entry (Elf{32,64}_Sym)
13527c478bd9Sstevel@tonic-gate 	 *	DT_HASH		base of hash table for dynamic lookups
13537c478bd9Sstevel@tonic-gate 	 *
13547c478bd9Sstevel@tonic-gate 	 * The DT_SYMTAB entry gives us any easy way of getting to the base
13557c478bd9Sstevel@tonic-gate 	 * of the dynsym, but getting the size involves rooting around in the
13567c478bd9Sstevel@tonic-gate 	 * dynamic lookup hash table. Here's the layout of the hash table:
13577c478bd9Sstevel@tonic-gate 	 *
13587c478bd9Sstevel@tonic-gate 	 *		+-------------------+
13597c478bd9Sstevel@tonic-gate 	 *		|	nbucket	    |	All values are of type
13607c478bd9Sstevel@tonic-gate 	 *		+-------------------+	Elf32_Word
13617c478bd9Sstevel@tonic-gate 	 *		|	nchain	    |
13627c478bd9Sstevel@tonic-gate 	 *		+-------------------+
13637c478bd9Sstevel@tonic-gate 	 *		|	bucket[0]   |
13647c478bd9Sstevel@tonic-gate 	 *		|	. . .	    |
13657c478bd9Sstevel@tonic-gate 	 *		| bucket[nbucket-1] |
13667c478bd9Sstevel@tonic-gate 	 *		+-------------------+
13677c478bd9Sstevel@tonic-gate 	 *		|	chain[0]    |
13687c478bd9Sstevel@tonic-gate 	 *		|	. . .	    |
13697c478bd9Sstevel@tonic-gate 	 *		|  chain[nchain-1]  |
13707c478bd9Sstevel@tonic-gate 	 *		+-------------------+
13717c478bd9Sstevel@tonic-gate 	 *	(figure 5-12 from the SYS V Generic ABI)
13727c478bd9Sstevel@tonic-gate 	 *
13737c478bd9Sstevel@tonic-gate 	 * Symbols names are hashed into a particular bucket which contains
13747c478bd9Sstevel@tonic-gate 	 * an index into the symbol table. Each entry in the symbol table
13757c478bd9Sstevel@tonic-gate 	 * has a corresponding entry in the chain table which tells the
13767c478bd9Sstevel@tonic-gate 	 * consumer where the next entry in the hash chain is. We can use
13777c478bd9Sstevel@tonic-gate 	 * the nchain field to find out the size of the dynsym.
13787c478bd9Sstevel@tonic-gate 	 *
13797c478bd9Sstevel@tonic-gate 	 * We can figure out the size of the .plt section, but it takes some
13807c478bd9Sstevel@tonic-gate 	 * doing. We need to use the following information:
13817c478bd9Sstevel@tonic-gate 	 *
13827c478bd9Sstevel@tonic-gate 	 *	DT_PLTGOT	base of the PLT
13837c478bd9Sstevel@tonic-gate 	 *	DT_JMPREL	base of the PLT's relocation section
13847c478bd9Sstevel@tonic-gate 	 *	DT_PLTRELSZ	size of the PLT's relocation section
13857c478bd9Sstevel@tonic-gate 	 *	DT_PLTREL	type of the PLT's relocation section
13867c478bd9Sstevel@tonic-gate 	 *
13877c478bd9Sstevel@tonic-gate 	 * We can use the relocation section to figure out the address of the
13887c478bd9Sstevel@tonic-gate 	 * last entry and subtract off the value of DT_PLTGOT to calculate
13897c478bd9Sstevel@tonic-gate 	 * the size of the PLT.
13907c478bd9Sstevel@tonic-gate 	 *
13917c478bd9Sstevel@tonic-gate 	 * For more information, check out the System V Generic ABI.
13927c478bd9Sstevel@tonic-gate 	 */
13937c478bd9Sstevel@tonic-gate 
13947c478bd9Sstevel@tonic-gate 	if (P->status.pr_dmodel == PR_MODEL_ILP32) {
13957c478bd9Sstevel@tonic-gate 		Elf32_Ehdr ehdr, *ep;
13967c478bd9Sstevel@tonic-gate 		Elf32_Phdr phdr;
13977c478bd9Sstevel@tonic-gate 		Elf32_Shdr *sp;
13987c478bd9Sstevel@tonic-gate 		Elf32_Dyn *dp;
13997c478bd9Sstevel@tonic-gate 		Elf32_Dyn *d[DI_NENT] = { 0 };
140030da1432Sahl 		uint_t phnum, i, dcount = 0;
14017c478bd9Sstevel@tonic-gate 		uint32_t off;
14027c478bd9Sstevel@tonic-gate 		size_t pltsz = 0, pltentsz;
14037c478bd9Sstevel@tonic-gate 
14049acbbeafSnn35248 		if ((read_ehdr32(P, &ehdr, &phnum, addr) != 0) ||
140530da1432Sahl 		    read_dynamic_phdr32(P, &ehdr, phnum, &phdr, addr) != 0)
14067c478bd9Sstevel@tonic-gate 			return (NULL);
14077c478bd9Sstevel@tonic-gate 
14087c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN)
14097c478bd9Sstevel@tonic-gate 			phdr.p_vaddr += addr;
14107c478bd9Sstevel@tonic-gate 
14117c478bd9Sstevel@tonic-gate 		if ((dp = malloc(phdr.p_filesz)) == NULL)
14127c478bd9Sstevel@tonic-gate 			return (NULL);
14137c478bd9Sstevel@tonic-gate 
14147c478bd9Sstevel@tonic-gate 		if (Pread(P, dp, phdr.p_filesz, phdr.p_vaddr) !=
14157c478bd9Sstevel@tonic-gate 		    phdr.p_filesz) {
14167c478bd9Sstevel@tonic-gate 			free(dp);
14177c478bd9Sstevel@tonic-gate 			return (NULL);
14187c478bd9Sstevel@tonic-gate 		}
14197c478bd9Sstevel@tonic-gate 
14209acbbeafSnn35248 		/*
14219acbbeafSnn35248 		 * Allow librtld_db the opportunity to "fix" the program
14229acbbeafSnn35248 		 * headers, if it needs to, before we process them.
14239acbbeafSnn35248 		 */
14249acbbeafSnn35248 		if (P->rap != NULL && ehdr.e_type == ET_DYN) {
14259acbbeafSnn35248 			rd_fix_phdrs(P->rap, dp, phdr.p_filesz, addr);
14269acbbeafSnn35248 		}
14279acbbeafSnn35248 
14287c478bd9Sstevel@tonic-gate 		for (i = 0; i < phdr.p_filesz / sizeof (Elf32_Dyn); i++) {
14297c478bd9Sstevel@tonic-gate 			switch (dp[i].d_tag) {
14307c478bd9Sstevel@tonic-gate 			/*
14317c478bd9Sstevel@tonic-gate 			 * For the .plt section.
14327c478bd9Sstevel@tonic-gate 			 */
14337c478bd9Sstevel@tonic-gate 			case DT_PLTGOT:
14347c478bd9Sstevel@tonic-gate 				d[DI_PLTGOT] = &dp[i];
14357c478bd9Sstevel@tonic-gate 				continue;
14367c478bd9Sstevel@tonic-gate 			case DT_JMPREL:
14377c478bd9Sstevel@tonic-gate 				d[DI_JMPREL] = &dp[i];
14387c478bd9Sstevel@tonic-gate 				continue;
14397c478bd9Sstevel@tonic-gate 			case DT_PLTRELSZ:
14407c478bd9Sstevel@tonic-gate 				d[DI_PLTRELSZ] = &dp[i];
14417c478bd9Sstevel@tonic-gate 				continue;
14427c478bd9Sstevel@tonic-gate 			case DT_PLTREL:
14437c478bd9Sstevel@tonic-gate 				d[DI_PLTREL] = &dp[i];
14447c478bd9Sstevel@tonic-gate 				continue;
14457c478bd9Sstevel@tonic-gate 			default:
14467c478bd9Sstevel@tonic-gate 				continue;
14477c478bd9Sstevel@tonic-gate 
14487c478bd9Sstevel@tonic-gate 			/*
14497c478bd9Sstevel@tonic-gate 			 * For the .dynsym section.
14507c478bd9Sstevel@tonic-gate 			 */
14517c478bd9Sstevel@tonic-gate 			case DT_SYMTAB:
14527c478bd9Sstevel@tonic-gate 				d[DI_SYMTAB] = &dp[i];
14537c478bd9Sstevel@tonic-gate 				break;
14547c478bd9Sstevel@tonic-gate 			case DT_HASH:
14557c478bd9Sstevel@tonic-gate 				d[DI_HASH] = &dp[i];
14567c478bd9Sstevel@tonic-gate 				break;
14577c478bd9Sstevel@tonic-gate 			case DT_SYMENT:
14587c478bd9Sstevel@tonic-gate 				d[DI_SYMENT] = &dp[i];
14597c478bd9Sstevel@tonic-gate 				break;
14607c478bd9Sstevel@tonic-gate 
14617c478bd9Sstevel@tonic-gate 			/*
14627c478bd9Sstevel@tonic-gate 			 * For the .dynstr section.
14637c478bd9Sstevel@tonic-gate 			 */
14647c478bd9Sstevel@tonic-gate 			case DT_STRTAB:
14657c478bd9Sstevel@tonic-gate 				d[DI_STRTAB] = &dp[i];
14667c478bd9Sstevel@tonic-gate 				break;
14677c478bd9Sstevel@tonic-gate 			case DT_STRSZ:
14687c478bd9Sstevel@tonic-gate 				d[DI_STRSZ] = &dp[i];
14697c478bd9Sstevel@tonic-gate 				break;
14707c478bd9Sstevel@tonic-gate 			}
14717c478bd9Sstevel@tonic-gate 
14727c478bd9Sstevel@tonic-gate 			dcount++;
14737c478bd9Sstevel@tonic-gate 		}
14747c478bd9Sstevel@tonic-gate 
14757c478bd9Sstevel@tonic-gate 		/*
14767c478bd9Sstevel@tonic-gate 		 * We need all of those dynamic entries in order to put
14777c478bd9Sstevel@tonic-gate 		 * together a complete set of elf sections, but we'll
14787c478bd9Sstevel@tonic-gate 		 * let the PLT section slide if need be. The dynsym- and
14797c478bd9Sstevel@tonic-gate 		 * dynstr-related dynamic entries are mandatory in both
14807c478bd9Sstevel@tonic-gate 		 * executables and shared objects so if one of those is
14817c478bd9Sstevel@tonic-gate 		 * missing, we're in some trouble and should abort.
14827c478bd9Sstevel@tonic-gate 		 */
14837c478bd9Sstevel@tonic-gate 		if (dcount + 4 != DI_NENT) {
14847c478bd9Sstevel@tonic-gate 			dprintf("text section missing required dynamic "
14857c478bd9Sstevel@tonic-gate 			    "entries\n");
14867c478bd9Sstevel@tonic-gate 			return (NULL);
14877c478bd9Sstevel@tonic-gate 		}
14887c478bd9Sstevel@tonic-gate 
14897c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN) {
14907c478bd9Sstevel@tonic-gate 			if (d[DI_PLTGOT] != NULL)
14917c478bd9Sstevel@tonic-gate 				d[DI_PLTGOT]->d_un.d_ptr += addr;
14927c478bd9Sstevel@tonic-gate 			if (d[DI_JMPREL] != NULL)
14937c478bd9Sstevel@tonic-gate 				d[DI_JMPREL]->d_un.d_ptr += addr;
14947c478bd9Sstevel@tonic-gate 			d[DI_SYMTAB]->d_un.d_ptr += addr;
14957c478bd9Sstevel@tonic-gate 			d[DI_HASH]->d_un.d_ptr += addr;
14967c478bd9Sstevel@tonic-gate 			d[DI_STRTAB]->d_un.d_ptr += addr;
14977c478bd9Sstevel@tonic-gate 		}
14987c478bd9Sstevel@tonic-gate 
14997c478bd9Sstevel@tonic-gate 		/* elf header */
15007c478bd9Sstevel@tonic-gate 		size = sizeof (Elf32_Ehdr);
15017c478bd9Sstevel@tonic-gate 
15027c478bd9Sstevel@tonic-gate 		/* program headers from in-core elf fragment */
150330da1432Sahl 		size += phnum * ehdr.e_phentsize;
15047c478bd9Sstevel@tonic-gate 
15057c478bd9Sstevel@tonic-gate 		/* unused shdr, and .shstrtab section */
15067c478bd9Sstevel@tonic-gate 		size += sizeof (Elf32_Shdr);
15077c478bd9Sstevel@tonic-gate 		size += sizeof (Elf32_Shdr);
15087c478bd9Sstevel@tonic-gate 		size += roundup(sizeof (shstr), 4);
15097c478bd9Sstevel@tonic-gate 
15107c478bd9Sstevel@tonic-gate 		/* .dynsym section */
15117c478bd9Sstevel@tonic-gate 		size += sizeof (Elf32_Shdr);
15127c478bd9Sstevel@tonic-gate 		if (Pread(P, &nchain, sizeof (nchain),
15139acbbeafSnn35248 		    d[DI_HASH]->d_un.d_ptr + 4) != sizeof (nchain)) {
15149acbbeafSnn35248 			dprintf("Pread of .dynsym at %lx failed\n",
15159acbbeafSnn35248 			    (long)(d[DI_HASH]->d_un.d_val + 4));
15167c478bd9Sstevel@tonic-gate 			goto bad32;
15179acbbeafSnn35248 		}
15187c478bd9Sstevel@tonic-gate 		size += sizeof (Elf32_Sym) * nchain;
15197c478bd9Sstevel@tonic-gate 
15207c478bd9Sstevel@tonic-gate 		/* .dynstr section */
15217c478bd9Sstevel@tonic-gate 		size += sizeof (Elf32_Shdr);
15227c478bd9Sstevel@tonic-gate 		size += roundup(d[DI_STRSZ]->d_un.d_val, 4);
15237c478bd9Sstevel@tonic-gate 
15247c478bd9Sstevel@tonic-gate 		/* .dynamic section */
15257c478bd9Sstevel@tonic-gate 		size += sizeof (Elf32_Shdr);
15267c478bd9Sstevel@tonic-gate 		size += roundup(phdr.p_filesz, 4);
15277c478bd9Sstevel@tonic-gate 
15287c478bd9Sstevel@tonic-gate 		/* .plt section */
15297c478bd9Sstevel@tonic-gate 		if (d[DI_PLTGOT] != NULL && d[DI_JMPREL] != NULL &&
15307c478bd9Sstevel@tonic-gate 		    d[DI_PLTRELSZ] != NULL && d[DI_PLTREL] != NULL) {
15317c478bd9Sstevel@tonic-gate 			uintptr_t penult, ult;
15327c478bd9Sstevel@tonic-gate 			uintptr_t jmprel = d[DI_JMPREL]->d_un.d_ptr;
15337c478bd9Sstevel@tonic-gate 			size_t pltrelsz = d[DI_PLTRELSZ]->d_un.d_val;
15347c478bd9Sstevel@tonic-gate 
15357c478bd9Sstevel@tonic-gate 			if (d[DI_PLTREL]->d_un.d_val == DT_RELA) {
15367c478bd9Sstevel@tonic-gate 				uint_t ndx = pltrelsz / sizeof (Elf32_Rela) - 2;
15377c478bd9Sstevel@tonic-gate 				Elf32_Rela r[2];
15387c478bd9Sstevel@tonic-gate 
15397c478bd9Sstevel@tonic-gate 				if (Pread(P, r, sizeof (r), jmprel +
15409acbbeafSnn35248 				    sizeof (r[0]) * ndx) != sizeof (r)) {
15419acbbeafSnn35248 					dprintf("Pread of DT_RELA failed\n");
15427c478bd9Sstevel@tonic-gate 					goto bad32;
15439acbbeafSnn35248 				}
15447c478bd9Sstevel@tonic-gate 
15457c478bd9Sstevel@tonic-gate 				penult = r[0].r_offset;
15467c478bd9Sstevel@tonic-gate 				ult = r[1].r_offset;
15477c478bd9Sstevel@tonic-gate 
15487c478bd9Sstevel@tonic-gate 			} else if (d[DI_PLTREL]->d_un.d_val == DT_REL) {
15497c478bd9Sstevel@tonic-gate 				uint_t ndx = pltrelsz / sizeof (Elf32_Rel) - 2;
15507c478bd9Sstevel@tonic-gate 				Elf32_Rel r[2];
15517c478bd9Sstevel@tonic-gate 
15527c478bd9Sstevel@tonic-gate 				if (Pread(P, r, sizeof (r), jmprel +
15539acbbeafSnn35248 				    sizeof (r[0]) * ndx) != sizeof (r)) {
15549acbbeafSnn35248 					dprintf("Pread of DT_REL failed\n");
15557c478bd9Sstevel@tonic-gate 					goto bad32;
15569acbbeafSnn35248 				}
15577c478bd9Sstevel@tonic-gate 
15587c478bd9Sstevel@tonic-gate 				penult = r[0].r_offset;
15597c478bd9Sstevel@tonic-gate 				ult = r[1].r_offset;
15607c478bd9Sstevel@tonic-gate 			} else {
15619acbbeafSnn35248 				dprintf(".plt: unknown jmprel value\n");
15627c478bd9Sstevel@tonic-gate 				goto bad32;
15637c478bd9Sstevel@tonic-gate 			}
15647c478bd9Sstevel@tonic-gate 
15657c478bd9Sstevel@tonic-gate 			pltentsz = ult - penult;
15667c478bd9Sstevel@tonic-gate 
15677c478bd9Sstevel@tonic-gate 			if (ehdr.e_type == ET_DYN)
15687c478bd9Sstevel@tonic-gate 				ult += addr;
15697c478bd9Sstevel@tonic-gate 
15707c478bd9Sstevel@tonic-gate 			pltsz = ult - d[DI_PLTGOT]->d_un.d_ptr + pltentsz;
15717c478bd9Sstevel@tonic-gate 
15727c478bd9Sstevel@tonic-gate 			size += sizeof (Elf32_Shdr);
15737c478bd9Sstevel@tonic-gate 			size += roundup(pltsz, 4);
15747c478bd9Sstevel@tonic-gate 		}
15757c478bd9Sstevel@tonic-gate 
15767c478bd9Sstevel@tonic-gate 		if ((elfdata = calloc(1, size)) == NULL)
15777c478bd9Sstevel@tonic-gate 			goto bad32;
15787c478bd9Sstevel@tonic-gate 
15797c478bd9Sstevel@tonic-gate 		/* LINTED - alignment */
15807c478bd9Sstevel@tonic-gate 		ep = (Elf32_Ehdr *)elfdata;
15817c478bd9Sstevel@tonic-gate 		(void) memcpy(ep, &ehdr, offsetof(Elf32_Ehdr, e_phoff));
15827c478bd9Sstevel@tonic-gate 
15837c478bd9Sstevel@tonic-gate 		ep->e_ehsize = sizeof (Elf32_Ehdr);
15847c478bd9Sstevel@tonic-gate 		ep->e_phoff = sizeof (Elf32_Ehdr);
15857c478bd9Sstevel@tonic-gate 		ep->e_phentsize = ehdr.e_phentsize;
158630da1432Sahl 		ep->e_phnum = phnum;
158730da1432Sahl 		ep->e_shoff = ep->e_phoff + phnum * ep->e_phentsize;
15887c478bd9Sstevel@tonic-gate 		ep->e_shentsize = sizeof (Elf32_Shdr);
15897c478bd9Sstevel@tonic-gate 		ep->e_shnum = (pltsz == 0) ? 5 : 6;
15907c478bd9Sstevel@tonic-gate 		ep->e_shstrndx = 1;
15917c478bd9Sstevel@tonic-gate 
15927c478bd9Sstevel@tonic-gate 		/* LINTED - alignment */
15937c478bd9Sstevel@tonic-gate 		sp = (Elf32_Shdr *)(elfdata + ep->e_shoff);
15947c478bd9Sstevel@tonic-gate 		off = ep->e_shoff + ep->e_shentsize * ep->e_shnum;
15957c478bd9Sstevel@tonic-gate 
15967c478bd9Sstevel@tonic-gate 		/*
15977c478bd9Sstevel@tonic-gate 		 * Copying the program headers directly from the process's
15987c478bd9Sstevel@tonic-gate 		 * address space is a little suspect, but since we only
15997c478bd9Sstevel@tonic-gate 		 * use them for their address and size values, this is fine.
16007c478bd9Sstevel@tonic-gate 		 */
160130da1432Sahl 		if (Pread(P, &elfdata[ep->e_phoff], phnum * ep->e_phentsize,
160230da1432Sahl 		    addr + ehdr.e_phoff) != phnum * ep->e_phentsize) {
16037c478bd9Sstevel@tonic-gate 			free(elfdata);
16049acbbeafSnn35248 			dprintf("failed to read program headers\n");
16057c478bd9Sstevel@tonic-gate 			goto bad32;
16067c478bd9Sstevel@tonic-gate 		}
16077c478bd9Sstevel@tonic-gate 
16087c478bd9Sstevel@tonic-gate 		/*
16097c478bd9Sstevel@tonic-gate 		 * The first elf section is always skipped.
16107c478bd9Sstevel@tonic-gate 		 */
16117c478bd9Sstevel@tonic-gate 		sp++;
16127c478bd9Sstevel@tonic-gate 
16137c478bd9Sstevel@tonic-gate 		/*
16147c478bd9Sstevel@tonic-gate 		 * Section Header[1]  sh_name: .shstrtab
16157c478bd9Sstevel@tonic-gate 		 */
16167c478bd9Sstevel@tonic-gate 		sp->sh_name = 0;
16177c478bd9Sstevel@tonic-gate 		sp->sh_type = SHT_STRTAB;
16187c478bd9Sstevel@tonic-gate 		sp->sh_flags = SHF_STRINGS;
16197c478bd9Sstevel@tonic-gate 		sp->sh_addr = 0;
16207c478bd9Sstevel@tonic-gate 		sp->sh_offset = off;
16217c478bd9Sstevel@tonic-gate 		sp->sh_size = sizeof (shstr);
16227c478bd9Sstevel@tonic-gate 		sp->sh_link = 0;
16237c478bd9Sstevel@tonic-gate 		sp->sh_info = 0;
16247c478bd9Sstevel@tonic-gate 		sp->sh_addralign = 1;
16257c478bd9Sstevel@tonic-gate 		sp->sh_entsize = 0;
16267c478bd9Sstevel@tonic-gate 
16277c478bd9Sstevel@tonic-gate 		(void) memcpy(&elfdata[off], shstr, sizeof (shstr));
16287c478bd9Sstevel@tonic-gate 		off += roundup(sp->sh_size, 4);
16297c478bd9Sstevel@tonic-gate 		sp++;
16307c478bd9Sstevel@tonic-gate 
16317c478bd9Sstevel@tonic-gate 		/*
16327c478bd9Sstevel@tonic-gate 		 * Section Header[2]  sh_name: .dynsym
16337c478bd9Sstevel@tonic-gate 		 */
16347c478bd9Sstevel@tonic-gate 		sp->sh_name = 10;
16357c478bd9Sstevel@tonic-gate 		sp->sh_type = SHT_DYNSYM;
16367c478bd9Sstevel@tonic-gate 		sp->sh_flags = SHF_ALLOC;
16377c478bd9Sstevel@tonic-gate 		sp->sh_addr = d[DI_SYMTAB]->d_un.d_ptr;
16387c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN)
16397c478bd9Sstevel@tonic-gate 			sp->sh_addr -= addr;
16407c478bd9Sstevel@tonic-gate 		sp->sh_offset = off;
16417c478bd9Sstevel@tonic-gate 		sp->sh_size = nchain * sizeof (Elf32_Sym);
16427c478bd9Sstevel@tonic-gate 		sp->sh_link = 3;
16437c478bd9Sstevel@tonic-gate 		sp->sh_info = 1;
16447c478bd9Sstevel@tonic-gate 		sp->sh_addralign = 4;
16457c478bd9Sstevel@tonic-gate 		sp->sh_entsize = sizeof (Elf32_Sym);
16467c478bd9Sstevel@tonic-gate 
16477c478bd9Sstevel@tonic-gate 		if (Pread(P, &elfdata[off], sp->sh_size,
16487c478bd9Sstevel@tonic-gate 		    d[DI_SYMTAB]->d_un.d_ptr) != sp->sh_size) {
16497c478bd9Sstevel@tonic-gate 			free(elfdata);
16509acbbeafSnn35248 			dprintf("failed to read .dynsym at %lx\n",
16519acbbeafSnn35248 			    (long)d[DI_SYMTAB]->d_un.d_ptr);
16527c478bd9Sstevel@tonic-gate 			goto bad32;
16537c478bd9Sstevel@tonic-gate 		}
16547c478bd9Sstevel@tonic-gate 
16557c478bd9Sstevel@tonic-gate 		off += roundup(sp->sh_size, 4);
16567c478bd9Sstevel@tonic-gate 		sp++;
16577c478bd9Sstevel@tonic-gate 
16587c478bd9Sstevel@tonic-gate 		/*
16597c478bd9Sstevel@tonic-gate 		 * Section Header[3]  sh_name: .dynstr
16607c478bd9Sstevel@tonic-gate 		 */
16617c478bd9Sstevel@tonic-gate 		sp->sh_name = 18;
16627c478bd9Sstevel@tonic-gate 		sp->sh_type = SHT_STRTAB;
16637c478bd9Sstevel@tonic-gate 		sp->sh_flags = SHF_ALLOC | SHF_STRINGS;
16647c478bd9Sstevel@tonic-gate 		sp->sh_addr = d[DI_STRTAB]->d_un.d_ptr;
16657c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN)
16667c478bd9Sstevel@tonic-gate 			sp->sh_addr -= addr;
16677c478bd9Sstevel@tonic-gate 		sp->sh_offset = off;
16687c478bd9Sstevel@tonic-gate 		sp->sh_size = d[DI_STRSZ]->d_un.d_val;
16697c478bd9Sstevel@tonic-gate 		sp->sh_link = 0;
16707c478bd9Sstevel@tonic-gate 		sp->sh_info = 0;
16717c478bd9Sstevel@tonic-gate 		sp->sh_addralign = 1;
16727c478bd9Sstevel@tonic-gate 		sp->sh_entsize = 0;
16737c478bd9Sstevel@tonic-gate 
16747c478bd9Sstevel@tonic-gate 		if (Pread(P, &elfdata[off], sp->sh_size,
16757c478bd9Sstevel@tonic-gate 		    d[DI_STRTAB]->d_un.d_ptr) != sp->sh_size) {
16767c478bd9Sstevel@tonic-gate 			free(elfdata);
16779acbbeafSnn35248 			dprintf("failed to read .dynstr\n");
16787c478bd9Sstevel@tonic-gate 			goto bad32;
16797c478bd9Sstevel@tonic-gate 		}
16807c478bd9Sstevel@tonic-gate 		off += roundup(sp->sh_size, 4);
16817c478bd9Sstevel@tonic-gate 		sp++;
16827c478bd9Sstevel@tonic-gate 
16837c478bd9Sstevel@tonic-gate 		/*
16847c478bd9Sstevel@tonic-gate 		 * Section Header[4]  sh_name: .dynamic
16857c478bd9Sstevel@tonic-gate 		 */
16867c478bd9Sstevel@tonic-gate 		sp->sh_name = 26;
16877c478bd9Sstevel@tonic-gate 		sp->sh_type = SHT_DYNAMIC;
16887c478bd9Sstevel@tonic-gate 		sp->sh_flags = SHF_WRITE | SHF_ALLOC;
16897c478bd9Sstevel@tonic-gate 		sp->sh_addr = phdr.p_vaddr;
16907c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN)
16917c478bd9Sstevel@tonic-gate 			sp->sh_addr -= addr;
16927c478bd9Sstevel@tonic-gate 		sp->sh_offset = off;
16937c478bd9Sstevel@tonic-gate 		sp->sh_size = phdr.p_filesz;
16947c478bd9Sstevel@tonic-gate 		sp->sh_link = 3;
16957c478bd9Sstevel@tonic-gate 		sp->sh_info = 0;
16967c478bd9Sstevel@tonic-gate 		sp->sh_addralign = 4;
16977c478bd9Sstevel@tonic-gate 		sp->sh_entsize = sizeof (Elf32_Dyn);
16987c478bd9Sstevel@tonic-gate 
16997c478bd9Sstevel@tonic-gate 		(void) memcpy(&elfdata[off], dp, sp->sh_size);
17007c478bd9Sstevel@tonic-gate 		off += roundup(sp->sh_size, 4);
17017c478bd9Sstevel@tonic-gate 		sp++;
17027c478bd9Sstevel@tonic-gate 
17037c478bd9Sstevel@tonic-gate 		/*
17047c478bd9Sstevel@tonic-gate 		 * Section Header[5]  sh_name: .plt
17057c478bd9Sstevel@tonic-gate 		 */
17067c478bd9Sstevel@tonic-gate 		if (pltsz != 0) {
17077c478bd9Sstevel@tonic-gate 			sp->sh_name = 35;
17087c478bd9Sstevel@tonic-gate 			sp->sh_type = SHT_PROGBITS;
17097c478bd9Sstevel@tonic-gate 			sp->sh_flags = SHF_WRITE | SHF_ALLOC | SHF_EXECINSTR;
17107c478bd9Sstevel@tonic-gate 			sp->sh_addr = d[DI_PLTGOT]->d_un.d_ptr;
17117c478bd9Sstevel@tonic-gate 			if (ehdr.e_type == ET_DYN)
17127c478bd9Sstevel@tonic-gate 				sp->sh_addr -= addr;
17137c478bd9Sstevel@tonic-gate 			sp->sh_offset = off;
17147c478bd9Sstevel@tonic-gate 			sp->sh_size = pltsz;
17157c478bd9Sstevel@tonic-gate 			sp->sh_link = 0;
17167c478bd9Sstevel@tonic-gate 			sp->sh_info = 0;
17177c478bd9Sstevel@tonic-gate 			sp->sh_addralign = 4;
17187c478bd9Sstevel@tonic-gate 			sp->sh_entsize = pltentsz;
17197c478bd9Sstevel@tonic-gate 
17207c478bd9Sstevel@tonic-gate 			if (Pread(P, &elfdata[off], sp->sh_size,
17217c478bd9Sstevel@tonic-gate 			    d[DI_PLTGOT]->d_un.d_ptr) != sp->sh_size) {
17227c478bd9Sstevel@tonic-gate 				free(elfdata);
17239acbbeafSnn35248 				dprintf("failed to read .plt\n");
17247c478bd9Sstevel@tonic-gate 				goto bad32;
17257c478bd9Sstevel@tonic-gate 			}
17267c478bd9Sstevel@tonic-gate 			off += roundup(sp->sh_size, 4);
17277c478bd9Sstevel@tonic-gate 			sp++;
17287c478bd9Sstevel@tonic-gate 		}
17297c478bd9Sstevel@tonic-gate 
17307c478bd9Sstevel@tonic-gate 		free(dp);
17317c478bd9Sstevel@tonic-gate 		goto good;
17327c478bd9Sstevel@tonic-gate 
17337c478bd9Sstevel@tonic-gate bad32:
17347c478bd9Sstevel@tonic-gate 		free(dp);
17357c478bd9Sstevel@tonic-gate 		return (NULL);
17367c478bd9Sstevel@tonic-gate #ifdef _LP64
17377c478bd9Sstevel@tonic-gate 	} else if (P->status.pr_dmodel == PR_MODEL_LP64) {
17387c478bd9Sstevel@tonic-gate 		Elf64_Ehdr ehdr, *ep;
17397c478bd9Sstevel@tonic-gate 		Elf64_Phdr phdr;
17407c478bd9Sstevel@tonic-gate 		Elf64_Shdr *sp;
17417c478bd9Sstevel@tonic-gate 		Elf64_Dyn *dp;
17427c478bd9Sstevel@tonic-gate 		Elf64_Dyn *d[DI_NENT] = { 0 };
174330da1432Sahl 		uint_t phnum, i, dcount = 0;
17447c478bd9Sstevel@tonic-gate 		uint64_t off;
17457c478bd9Sstevel@tonic-gate 		size_t pltsz = 0, pltentsz;
17467c478bd9Sstevel@tonic-gate 
174730da1432Sahl 		if (read_ehdr64(P, &ehdr, &phnum, addr) != 0 ||
174830da1432Sahl 		    read_dynamic_phdr64(P, &ehdr, phnum, &phdr, addr) != 0)
17497c478bd9Sstevel@tonic-gate 			return (NULL);
17507c478bd9Sstevel@tonic-gate 
17517c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN)
17527c478bd9Sstevel@tonic-gate 			phdr.p_vaddr += addr;
17537c478bd9Sstevel@tonic-gate 
17547c478bd9Sstevel@tonic-gate 		if ((dp = malloc(phdr.p_filesz)) == NULL)
17557c478bd9Sstevel@tonic-gate 			return (NULL);
17567c478bd9Sstevel@tonic-gate 
17577c478bd9Sstevel@tonic-gate 		if (Pread(P, dp, phdr.p_filesz, phdr.p_vaddr) !=
17587c478bd9Sstevel@tonic-gate 		    phdr.p_filesz) {
17597c478bd9Sstevel@tonic-gate 			free(dp);
17607c478bd9Sstevel@tonic-gate 			return (NULL);
17617c478bd9Sstevel@tonic-gate 		}
17627c478bd9Sstevel@tonic-gate 
17637c478bd9Sstevel@tonic-gate 		for (i = 0; i < phdr.p_filesz / sizeof (Elf64_Dyn); i++) {
17647c478bd9Sstevel@tonic-gate 			switch (dp[i].d_tag) {
17657c478bd9Sstevel@tonic-gate 			/*
17667c478bd9Sstevel@tonic-gate 			 * For the .plt section.
17677c478bd9Sstevel@tonic-gate 			 */
17687c478bd9Sstevel@tonic-gate 			case DT_PLTGOT:
17697c478bd9Sstevel@tonic-gate 				d[DI_PLTGOT] = &dp[i];
17707c478bd9Sstevel@tonic-gate 				continue;
17717c478bd9Sstevel@tonic-gate 			case DT_JMPREL:
17727c478bd9Sstevel@tonic-gate 				d[DI_JMPREL] = &dp[i];
17737c478bd9Sstevel@tonic-gate 				continue;
17747c478bd9Sstevel@tonic-gate 			case DT_PLTRELSZ:
17757c478bd9Sstevel@tonic-gate 				d[DI_PLTRELSZ] = &dp[i];
17767c478bd9Sstevel@tonic-gate 				continue;
17777c478bd9Sstevel@tonic-gate 			case DT_PLTREL:
17787c478bd9Sstevel@tonic-gate 				d[DI_PLTREL] = &dp[i];
17797c478bd9Sstevel@tonic-gate 				continue;
17807c478bd9Sstevel@tonic-gate 			default:
17817c478bd9Sstevel@tonic-gate 				continue;
17827c478bd9Sstevel@tonic-gate 
17837c478bd9Sstevel@tonic-gate 			/*
17847c478bd9Sstevel@tonic-gate 			 * For the .dynsym section.
17857c478bd9Sstevel@tonic-gate 			 */
17867c478bd9Sstevel@tonic-gate 			case DT_SYMTAB:
17877c478bd9Sstevel@tonic-gate 				d[DI_SYMTAB] = &dp[i];
17887c478bd9Sstevel@tonic-gate 				break;
17897c478bd9Sstevel@tonic-gate 			case DT_HASH:
17907c478bd9Sstevel@tonic-gate 				d[DI_HASH] = &dp[i];
17917c478bd9Sstevel@tonic-gate 				break;
17927c478bd9Sstevel@tonic-gate 			case DT_SYMENT:
17937c478bd9Sstevel@tonic-gate 				d[DI_SYMENT] = &dp[i];
17947c478bd9Sstevel@tonic-gate 				break;
17957c478bd9Sstevel@tonic-gate 
17967c478bd9Sstevel@tonic-gate 			/*
17977c478bd9Sstevel@tonic-gate 			 * For the .dynstr section.
17987c478bd9Sstevel@tonic-gate 			 */
17997c478bd9Sstevel@tonic-gate 			case DT_STRTAB:
18007c478bd9Sstevel@tonic-gate 				d[DI_STRTAB] = &dp[i];
18017c478bd9Sstevel@tonic-gate 				break;
18027c478bd9Sstevel@tonic-gate 			case DT_STRSZ:
18037c478bd9Sstevel@tonic-gate 				d[DI_STRSZ] = &dp[i];
18047c478bd9Sstevel@tonic-gate 				break;
18057c478bd9Sstevel@tonic-gate 			}
18067c478bd9Sstevel@tonic-gate 
18077c478bd9Sstevel@tonic-gate 			dcount++;
18087c478bd9Sstevel@tonic-gate 		}
18097c478bd9Sstevel@tonic-gate 
18107c478bd9Sstevel@tonic-gate 		/*
18117c478bd9Sstevel@tonic-gate 		 * We need all of those dynamic entries in order to put
18127c478bd9Sstevel@tonic-gate 		 * together a complete set of elf sections, but we'll
18137c478bd9Sstevel@tonic-gate 		 * let the PLT section slide if need be. The dynsym- and
18147c478bd9Sstevel@tonic-gate 		 * dynstr-related dynamic entries are mandatory in both
18157c478bd9Sstevel@tonic-gate 		 * executables and shared objects so if one of those is
18167c478bd9Sstevel@tonic-gate 		 * missing, we're in some trouble and should abort.
18177c478bd9Sstevel@tonic-gate 		 */
18187c478bd9Sstevel@tonic-gate 		if (dcount + 4 != DI_NENT) {
18197c478bd9Sstevel@tonic-gate 			dprintf("text section missing required dynamic "
18207c478bd9Sstevel@tonic-gate 			    "entries\n");
18217c478bd9Sstevel@tonic-gate 			return (NULL);
18227c478bd9Sstevel@tonic-gate 		}
18237c478bd9Sstevel@tonic-gate 
18247c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN) {
18257c478bd9Sstevel@tonic-gate 			if (d[DI_PLTGOT] != NULL)
18267c478bd9Sstevel@tonic-gate 				d[DI_PLTGOT]->d_un.d_ptr += addr;
18277c478bd9Sstevel@tonic-gate 			if (d[DI_JMPREL] != NULL)
18287c478bd9Sstevel@tonic-gate 				d[DI_JMPREL]->d_un.d_ptr += addr;
18297c478bd9Sstevel@tonic-gate 			d[DI_SYMTAB]->d_un.d_ptr += addr;
18307c478bd9Sstevel@tonic-gate 			d[DI_HASH]->d_un.d_ptr += addr;
18317c478bd9Sstevel@tonic-gate 			d[DI_STRTAB]->d_un.d_ptr += addr;
18327c478bd9Sstevel@tonic-gate 		}
18337c478bd9Sstevel@tonic-gate 
18347c478bd9Sstevel@tonic-gate 		/* elf header */
18357c478bd9Sstevel@tonic-gate 		size = sizeof (Elf64_Ehdr);
18367c478bd9Sstevel@tonic-gate 
18377c478bd9Sstevel@tonic-gate 		/* program headers from in-core elf fragment */
183830da1432Sahl 		size += phnum * ehdr.e_phentsize;
18397c478bd9Sstevel@tonic-gate 
18407c478bd9Sstevel@tonic-gate 		/* unused shdr, and .shstrtab section */
18417c478bd9Sstevel@tonic-gate 		size += sizeof (Elf64_Shdr);
18427c478bd9Sstevel@tonic-gate 		size += sizeof (Elf64_Shdr);
18437c478bd9Sstevel@tonic-gate 		size += roundup(sizeof (shstr), 8);
18447c478bd9Sstevel@tonic-gate 
18457c478bd9Sstevel@tonic-gate 		/* .dynsym section */
18467c478bd9Sstevel@tonic-gate 		size += sizeof (Elf64_Shdr);
18477c478bd9Sstevel@tonic-gate 		if (Pread(P, &nchain, sizeof (nchain),
18487c478bd9Sstevel@tonic-gate 		    d[DI_HASH]->d_un.d_ptr + 4) != sizeof (nchain))
18497c478bd9Sstevel@tonic-gate 			goto bad64;
18507c478bd9Sstevel@tonic-gate 		size += sizeof (Elf64_Sym) * nchain;
18517c478bd9Sstevel@tonic-gate 
18527c478bd9Sstevel@tonic-gate 		/* .dynstr section */
18537c478bd9Sstevel@tonic-gate 		size += sizeof (Elf64_Shdr);
18547c478bd9Sstevel@tonic-gate 		size += roundup(d[DI_STRSZ]->d_un.d_val, 8);
18557c478bd9Sstevel@tonic-gate 
18567c478bd9Sstevel@tonic-gate 		/* .dynamic section */
18577c478bd9Sstevel@tonic-gate 		size += sizeof (Elf64_Shdr);
18587c478bd9Sstevel@tonic-gate 		size += roundup(phdr.p_filesz, 8);
18597c478bd9Sstevel@tonic-gate 
18607c478bd9Sstevel@tonic-gate 		/* .plt section */
18617c478bd9Sstevel@tonic-gate 		if (d[DI_PLTGOT] != NULL && d[DI_JMPREL] != NULL &&
18627c478bd9Sstevel@tonic-gate 		    d[DI_PLTRELSZ] != NULL && d[DI_PLTREL] != NULL) {
18637c478bd9Sstevel@tonic-gate 			uintptr_t penult, ult;
18647c478bd9Sstevel@tonic-gate 			uintptr_t jmprel = d[DI_JMPREL]->d_un.d_ptr;
18657c478bd9Sstevel@tonic-gate 			size_t pltrelsz = d[DI_PLTRELSZ]->d_un.d_val;
18667c478bd9Sstevel@tonic-gate 
18677c478bd9Sstevel@tonic-gate 			if (d[DI_PLTREL]->d_un.d_val == DT_RELA) {
18687c478bd9Sstevel@tonic-gate 				uint_t ndx = pltrelsz / sizeof (Elf64_Rela) - 2;
18697c478bd9Sstevel@tonic-gate 				Elf64_Rela r[2];
18707c478bd9Sstevel@tonic-gate 
18717c478bd9Sstevel@tonic-gate 				if (Pread(P, r, sizeof (r), jmprel +
18729acbbeafSnn35248 				    sizeof (r[0]) * ndx) != sizeof (r)) {
18739acbbeafSnn35248 					dprintf("Pread jmprel DT_RELA at %p "
18749acbbeafSnn35248 					    "failed\n",
18759acbbeafSnn35248 					    (void *)(jmprel +
18769acbbeafSnn35248 						sizeof (r[0]) * ndx));
18777c478bd9Sstevel@tonic-gate 					goto bad64;
18789acbbeafSnn35248 				}
18797c478bd9Sstevel@tonic-gate 
18807c478bd9Sstevel@tonic-gate 				penult = r[0].r_offset;
18817c478bd9Sstevel@tonic-gate 				ult = r[1].r_offset;
18827c478bd9Sstevel@tonic-gate 
18837c478bd9Sstevel@tonic-gate 			} else if (d[DI_PLTREL]->d_un.d_val == DT_REL) {
18847c478bd9Sstevel@tonic-gate 				uint_t ndx = pltrelsz / sizeof (Elf64_Rel) - 2;
18857c478bd9Sstevel@tonic-gate 				Elf64_Rel r[2];
18867c478bd9Sstevel@tonic-gate 
18877c478bd9Sstevel@tonic-gate 				if (Pread(P, r, sizeof (r), jmprel +
18889acbbeafSnn35248 				    sizeof (r[0]) * ndx) != sizeof (r)) {
18899acbbeafSnn35248 					dprintf("Pread jmprel DT_REL at %p "
18909acbbeafSnn35248 					    "failed\n",
18919acbbeafSnn35248 					    (void *)(jmprel +
18929acbbeafSnn35248 						sizeof (r[0]) * ndx));
18937c478bd9Sstevel@tonic-gate 					goto bad64;
18949acbbeafSnn35248 				}
18957c478bd9Sstevel@tonic-gate 
18967c478bd9Sstevel@tonic-gate 				penult = r[0].r_offset;
18977c478bd9Sstevel@tonic-gate 				ult = r[1].r_offset;
18987c478bd9Sstevel@tonic-gate 			} else {
18999acbbeafSnn35248 				dprintf("DT_PLTREL value %p unknown\n",
19009acbbeafSnn35248 				    (void *)d[DI_PLTREL]->d_un.d_ptr);
19017c478bd9Sstevel@tonic-gate 				goto bad64;
19027c478bd9Sstevel@tonic-gate 			}
19037c478bd9Sstevel@tonic-gate 
19047c478bd9Sstevel@tonic-gate 			pltentsz = ult - penult;
19057c478bd9Sstevel@tonic-gate 
19067c478bd9Sstevel@tonic-gate 			if (ehdr.e_type == ET_DYN)
19077c478bd9Sstevel@tonic-gate 				ult += addr;
19087c478bd9Sstevel@tonic-gate 
19097c478bd9Sstevel@tonic-gate 			pltsz = ult - d[DI_PLTGOT]->d_un.d_ptr + pltentsz;
19107c478bd9Sstevel@tonic-gate 
19117c478bd9Sstevel@tonic-gate 			size += sizeof (Elf64_Shdr);
19127c478bd9Sstevel@tonic-gate 			size += roundup(pltsz, 8);
19137c478bd9Sstevel@tonic-gate 		}
19147c478bd9Sstevel@tonic-gate 
19157c478bd9Sstevel@tonic-gate 		if ((elfdata = calloc(1, size)) == NULL)
19167c478bd9Sstevel@tonic-gate 			goto bad64;
19177c478bd9Sstevel@tonic-gate 
19187c478bd9Sstevel@tonic-gate 		/* LINTED - alignment */
19197c478bd9Sstevel@tonic-gate 		ep = (Elf64_Ehdr *)elfdata;
19207c478bd9Sstevel@tonic-gate 		(void) memcpy(ep, &ehdr, offsetof(Elf64_Ehdr, e_phoff));
19217c478bd9Sstevel@tonic-gate 
19227c478bd9Sstevel@tonic-gate 		ep->e_ehsize = sizeof (Elf64_Ehdr);
19237c478bd9Sstevel@tonic-gate 		ep->e_phoff = sizeof (Elf64_Ehdr);
19247c478bd9Sstevel@tonic-gate 		ep->e_phentsize = ehdr.e_phentsize;
192530da1432Sahl 		ep->e_phnum = phnum;
192630da1432Sahl 		ep->e_shoff = ep->e_phoff + phnum * ep->e_phentsize;
19277c478bd9Sstevel@tonic-gate 		ep->e_shentsize = sizeof (Elf64_Shdr);
19287c478bd9Sstevel@tonic-gate 		ep->e_shnum = (pltsz == 0) ? 5 : 6;
19297c478bd9Sstevel@tonic-gate 		ep->e_shstrndx = 1;
19307c478bd9Sstevel@tonic-gate 
19317c478bd9Sstevel@tonic-gate 		/* LINTED - alignment */
19327c478bd9Sstevel@tonic-gate 		sp = (Elf64_Shdr *)(elfdata + ep->e_shoff);
19337c478bd9Sstevel@tonic-gate 		off = ep->e_shoff + ep->e_shentsize * ep->e_shnum;
19347c478bd9Sstevel@tonic-gate 
19357c478bd9Sstevel@tonic-gate 		/*
19367c478bd9Sstevel@tonic-gate 		 * Copying the program headers directly from the process's
19377c478bd9Sstevel@tonic-gate 		 * address space is a little suspect, but since we only
19387c478bd9Sstevel@tonic-gate 		 * use them for their address and size values, this is fine.
19397c478bd9Sstevel@tonic-gate 		 */
194030da1432Sahl 		if (Pread(P, &elfdata[ep->e_phoff], phnum * ep->e_phentsize,
194130da1432Sahl 		    addr + ehdr.e_phoff) != phnum * ep->e_phentsize) {
19427c478bd9Sstevel@tonic-gate 			free(elfdata);
19437c478bd9Sstevel@tonic-gate 			goto bad64;
19447c478bd9Sstevel@tonic-gate 		}
19457c478bd9Sstevel@tonic-gate 
19467c478bd9Sstevel@tonic-gate 		/*
19477c478bd9Sstevel@tonic-gate 		 * The first elf section is always skipped.
19487c478bd9Sstevel@tonic-gate 		 */
19497c478bd9Sstevel@tonic-gate 		sp++;
19507c478bd9Sstevel@tonic-gate 
19517c478bd9Sstevel@tonic-gate 		/*
19527c478bd9Sstevel@tonic-gate 		 * Section Header[1]  sh_name: .shstrtab
19537c478bd9Sstevel@tonic-gate 		 */
19547c478bd9Sstevel@tonic-gate 		sp->sh_name = 0;
19557c478bd9Sstevel@tonic-gate 		sp->sh_type = SHT_STRTAB;
19567c478bd9Sstevel@tonic-gate 		sp->sh_flags = SHF_STRINGS;
19577c478bd9Sstevel@tonic-gate 		sp->sh_addr = 0;
19587c478bd9Sstevel@tonic-gate 		sp->sh_offset = off;
19597c478bd9Sstevel@tonic-gate 		sp->sh_size = sizeof (shstr);
19607c478bd9Sstevel@tonic-gate 		sp->sh_link = 0;
19617c478bd9Sstevel@tonic-gate 		sp->sh_info = 0;
19627c478bd9Sstevel@tonic-gate 		sp->sh_addralign = 1;
19637c478bd9Sstevel@tonic-gate 		sp->sh_entsize = 0;
19647c478bd9Sstevel@tonic-gate 
19657c478bd9Sstevel@tonic-gate 		(void) memcpy(&elfdata[off], shstr, sizeof (shstr));
19667c478bd9Sstevel@tonic-gate 		off += roundup(sp->sh_size, 8);
19677c478bd9Sstevel@tonic-gate 		sp++;
19687c478bd9Sstevel@tonic-gate 
19697c478bd9Sstevel@tonic-gate 		/*
19707c478bd9Sstevel@tonic-gate 		 * Section Header[2]  sh_name: .dynsym
19717c478bd9Sstevel@tonic-gate 		 */
19727c478bd9Sstevel@tonic-gate 		sp->sh_name = 10;
19737c478bd9Sstevel@tonic-gate 		sp->sh_type = SHT_DYNSYM;
19747c478bd9Sstevel@tonic-gate 		sp->sh_flags = SHF_ALLOC;
19757c478bd9Sstevel@tonic-gate 		sp->sh_addr = d[DI_SYMTAB]->d_un.d_ptr;
19767c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN)
19777c478bd9Sstevel@tonic-gate 			sp->sh_addr -= addr;
19787c478bd9Sstevel@tonic-gate 		sp->sh_offset = off;
19797c478bd9Sstevel@tonic-gate 		sp->sh_size = nchain * sizeof (Elf64_Sym);
19807c478bd9Sstevel@tonic-gate 		sp->sh_link = 3;
19817c478bd9Sstevel@tonic-gate 		sp->sh_info = 1;
19827c478bd9Sstevel@tonic-gate 		sp->sh_addralign = 8;
19837c478bd9Sstevel@tonic-gate 		sp->sh_entsize = sizeof (Elf64_Sym);
19847c478bd9Sstevel@tonic-gate 
19857c478bd9Sstevel@tonic-gate 		if (Pread(P, &elfdata[off], sp->sh_size,
19867c478bd9Sstevel@tonic-gate 		    d[DI_SYMTAB]->d_un.d_ptr) != sp->sh_size) {
19877c478bd9Sstevel@tonic-gate 			free(elfdata);
19887c478bd9Sstevel@tonic-gate 			goto bad64;
19897c478bd9Sstevel@tonic-gate 		}
19907c478bd9Sstevel@tonic-gate 
19917c478bd9Sstevel@tonic-gate 		off += roundup(sp->sh_size, 8);
19927c478bd9Sstevel@tonic-gate 		sp++;
19937c478bd9Sstevel@tonic-gate 
19947c478bd9Sstevel@tonic-gate 		/*
19957c478bd9Sstevel@tonic-gate 		 * Section Header[3]  sh_name: .dynstr
19967c478bd9Sstevel@tonic-gate 		 */
19977c478bd9Sstevel@tonic-gate 		sp->sh_name = 18;
19987c478bd9Sstevel@tonic-gate 		sp->sh_type = SHT_STRTAB;
19997c478bd9Sstevel@tonic-gate 		sp->sh_flags = SHF_ALLOC | SHF_STRINGS;
20007c478bd9Sstevel@tonic-gate 		sp->sh_addr = d[DI_STRTAB]->d_un.d_ptr;
20017c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN)
20027c478bd9Sstevel@tonic-gate 			sp->sh_addr -= addr;
20037c478bd9Sstevel@tonic-gate 		sp->sh_offset = off;
20047c478bd9Sstevel@tonic-gate 		sp->sh_size = d[DI_STRSZ]->d_un.d_val;
20057c478bd9Sstevel@tonic-gate 		sp->sh_link = 0;
20067c478bd9Sstevel@tonic-gate 		sp->sh_info = 0;
20077c478bd9Sstevel@tonic-gate 		sp->sh_addralign = 1;
20087c478bd9Sstevel@tonic-gate 		sp->sh_entsize = 0;
20097c478bd9Sstevel@tonic-gate 
20107c478bd9Sstevel@tonic-gate 		if (Pread(P, &elfdata[off], sp->sh_size,
20117c478bd9Sstevel@tonic-gate 		    d[DI_STRTAB]->d_un.d_ptr) != sp->sh_size) {
20127c478bd9Sstevel@tonic-gate 			free(elfdata);
20137c478bd9Sstevel@tonic-gate 			goto bad64;
20147c478bd9Sstevel@tonic-gate 		}
20157c478bd9Sstevel@tonic-gate 		off += roundup(sp->sh_size, 8);
20167c478bd9Sstevel@tonic-gate 		sp++;
20177c478bd9Sstevel@tonic-gate 
20187c478bd9Sstevel@tonic-gate 		/*
20197c478bd9Sstevel@tonic-gate 		 * Section Header[4]  sh_name: .dynamic
20207c478bd9Sstevel@tonic-gate 		 */
20217c478bd9Sstevel@tonic-gate 		sp->sh_name = 26;
20227c478bd9Sstevel@tonic-gate 		sp->sh_type = SHT_DYNAMIC;
20237c478bd9Sstevel@tonic-gate 		sp->sh_flags = SHF_WRITE | SHF_ALLOC;
20247c478bd9Sstevel@tonic-gate 		sp->sh_addr = phdr.p_vaddr;
20257c478bd9Sstevel@tonic-gate 		if (ehdr.e_type == ET_DYN)
20267c478bd9Sstevel@tonic-gate 			sp->sh_addr -= addr;
20277c478bd9Sstevel@tonic-gate 		sp->sh_offset = off;
20287c478bd9Sstevel@tonic-gate 		sp->sh_size = phdr.p_filesz;
20297c478bd9Sstevel@tonic-gate 		sp->sh_link = 3;
20307c478bd9Sstevel@tonic-gate 		sp->sh_info = 0;
20317c478bd9Sstevel@tonic-gate 		sp->sh_addralign = 8;
20327c478bd9Sstevel@tonic-gate 		sp->sh_entsize = sizeof (Elf64_Dyn);
20337c478bd9Sstevel@tonic-gate 
20347c478bd9Sstevel@tonic-gate 		(void) memcpy(&elfdata[off], dp, sp->sh_size);
20357c478bd9Sstevel@tonic-gate 		off += roundup(sp->sh_size, 8);
20367c478bd9Sstevel@tonic-gate 		sp++;
20377c478bd9Sstevel@tonic-gate 
20387c478bd9Sstevel@tonic-gate 		/*
20397c478bd9Sstevel@tonic-gate 		 * Section Header[5]  sh_name: .plt
20407c478bd9Sstevel@tonic-gate 		 */
20417c478bd9Sstevel@tonic-gate 		if (pltsz != 0) {
20427c478bd9Sstevel@tonic-gate 			sp->sh_name = 35;
20437c478bd9Sstevel@tonic-gate 			sp->sh_type = SHT_PROGBITS;
20447c478bd9Sstevel@tonic-gate 			sp->sh_flags = SHF_WRITE | SHF_ALLOC | SHF_EXECINSTR;
20457c478bd9Sstevel@tonic-gate 			sp->sh_addr = d[DI_PLTGOT]->d_un.d_ptr;
20467c478bd9Sstevel@tonic-gate 			if (ehdr.e_type == ET_DYN)
20477c478bd9Sstevel@tonic-gate 				sp->sh_addr -= addr;
20487c478bd9Sstevel@tonic-gate 			sp->sh_offset = off;
20497c478bd9Sstevel@tonic-gate 			sp->sh_size = pltsz;
20507c478bd9Sstevel@tonic-gate 			sp->sh_link = 0;
20517c478bd9Sstevel@tonic-gate 			sp->sh_info = 0;
20527c478bd9Sstevel@tonic-gate 			sp->sh_addralign = 8;
20537c478bd9Sstevel@tonic-gate 			sp->sh_entsize = pltentsz;
20547c478bd9Sstevel@tonic-gate 
20557c478bd9Sstevel@tonic-gate 			if (Pread(P, &elfdata[off], sp->sh_size,
20567c478bd9Sstevel@tonic-gate 			    d[DI_PLTGOT]->d_un.d_ptr) != sp->sh_size) {
20577c478bd9Sstevel@tonic-gate 				free(elfdata);
20587c478bd9Sstevel@tonic-gate 				goto bad64;
20597c478bd9Sstevel@tonic-gate 			}
20607c478bd9Sstevel@tonic-gate 			off += roundup(sp->sh_size, 8);
20617c478bd9Sstevel@tonic-gate 			sp++;
20627c478bd9Sstevel@tonic-gate 		}
20637c478bd9Sstevel@tonic-gate 
20647c478bd9Sstevel@tonic-gate 		free(dp);
20657c478bd9Sstevel@tonic-gate 		goto good;
20667c478bd9Sstevel@tonic-gate 
20677c478bd9Sstevel@tonic-gate bad64:
20687c478bd9Sstevel@tonic-gate 		free(dp);
20697c478bd9Sstevel@tonic-gate 		return (NULL);
20707c478bd9Sstevel@tonic-gate #endif	/* _LP64 */
20717c478bd9Sstevel@tonic-gate 	}
20727c478bd9Sstevel@tonic-gate good:
20737c478bd9Sstevel@tonic-gate 	if ((elf = elf_memory(elfdata, size)) == NULL) {
20747c478bd9Sstevel@tonic-gate 		free(elfdata);
20757c478bd9Sstevel@tonic-gate 		return (NULL);
20767c478bd9Sstevel@tonic-gate 	}
20777c478bd9Sstevel@tonic-gate 
20787c478bd9Sstevel@tonic-gate 	fptr->file_elfmem = elfdata;
20797c478bd9Sstevel@tonic-gate 
20807c478bd9Sstevel@tonic-gate 	return (elf);
20817c478bd9Sstevel@tonic-gate }
20827c478bd9Sstevel@tonic-gate 
20837c478bd9Sstevel@tonic-gate /*
20847c478bd9Sstevel@tonic-gate  * We wouldn't need these if qsort(3C) took an argument for the callback...
20857c478bd9Sstevel@tonic-gate  */
20867c478bd9Sstevel@tonic-gate static mutex_t sort_mtx = DEFAULTMUTEX;
20877c478bd9Sstevel@tonic-gate static char *sort_strs;
20887c478bd9Sstevel@tonic-gate static GElf_Sym *sort_syms;
20897c478bd9Sstevel@tonic-gate 
20907c478bd9Sstevel@tonic-gate int
20917c478bd9Sstevel@tonic-gate byaddr_cmp_common(GElf_Sym *a, char *aname, GElf_Sym *b, char *bname)
20927c478bd9Sstevel@tonic-gate {
20937c478bd9Sstevel@tonic-gate 	if (a->st_value < b->st_value)
20947c478bd9Sstevel@tonic-gate 		return (-1);
20957c478bd9Sstevel@tonic-gate 	if (a->st_value > b->st_value)
20967c478bd9Sstevel@tonic-gate 		return (1);
20977c478bd9Sstevel@tonic-gate 
20987c478bd9Sstevel@tonic-gate 	/*
20997c478bd9Sstevel@tonic-gate 	 * Prefer the function to the non-function.
21007c478bd9Sstevel@tonic-gate 	 */
21017c478bd9Sstevel@tonic-gate 	if (GELF_ST_TYPE(a->st_info) != GELF_ST_TYPE(b->st_info)) {
21027c478bd9Sstevel@tonic-gate 		if (GELF_ST_TYPE(a->st_info) == STT_FUNC)
21037c478bd9Sstevel@tonic-gate 			return (-1);
21047c478bd9Sstevel@tonic-gate 		if (GELF_ST_TYPE(b->st_info) == STT_FUNC)
21057c478bd9Sstevel@tonic-gate 			return (1);
21067c478bd9Sstevel@tonic-gate 	}
21077c478bd9Sstevel@tonic-gate 
21087c478bd9Sstevel@tonic-gate 	/*
21097c478bd9Sstevel@tonic-gate 	 * Prefer the weak or strong global symbol to the local symbol.
21107c478bd9Sstevel@tonic-gate 	 */
21117c478bd9Sstevel@tonic-gate 	if (GELF_ST_BIND(a->st_info) != GELF_ST_BIND(b->st_info)) {
21127c478bd9Sstevel@tonic-gate 		if (GELF_ST_BIND(b->st_info) == STB_LOCAL)
21137c478bd9Sstevel@tonic-gate 			return (-1);
21147c478bd9Sstevel@tonic-gate 		if (GELF_ST_BIND(a->st_info) == STB_LOCAL)
21157c478bd9Sstevel@tonic-gate 			return (1);
21167c478bd9Sstevel@tonic-gate 	}
21177c478bd9Sstevel@tonic-gate 
21187c478bd9Sstevel@tonic-gate 	/*
2119ab9a77c7Sahl 	 * Prefer the symbol that doesn't begin with a '$' since compilers and
2120ab9a77c7Sahl 	 * other symbol generators often use it as a prefix.
2121ab9a77c7Sahl 	 */
2122ab9a77c7Sahl 	if (*bname == '$')
2123ab9a77c7Sahl 		return (-1);
2124ab9a77c7Sahl 	if (*aname == '$')
2125ab9a77c7Sahl 		return (1);
2126ab9a77c7Sahl 
2127ab9a77c7Sahl 	/*
21287c478bd9Sstevel@tonic-gate 	 * Prefer the name with fewer leading underscores in the name.
21297c478bd9Sstevel@tonic-gate 	 */
21307c478bd9Sstevel@tonic-gate 	while (*aname == '_' && *bname == '_') {
21317c478bd9Sstevel@tonic-gate 		aname++;
21327c478bd9Sstevel@tonic-gate 		bname++;
21337c478bd9Sstevel@tonic-gate 	}
21347c478bd9Sstevel@tonic-gate 
21357c478bd9Sstevel@tonic-gate 	if (*bname == '_')
21367c478bd9Sstevel@tonic-gate 		return (-1);
21377c478bd9Sstevel@tonic-gate 	if (*aname == '_')
21387c478bd9Sstevel@tonic-gate 		return (1);
21397c478bd9Sstevel@tonic-gate 
21407c478bd9Sstevel@tonic-gate 	/*
21417c478bd9Sstevel@tonic-gate 	 * Prefer the symbol with the smaller size.
21427c478bd9Sstevel@tonic-gate 	 */
21437c478bd9Sstevel@tonic-gate 	if (a->st_size < b->st_size)
21447c478bd9Sstevel@tonic-gate 		return (-1);
21457c478bd9Sstevel@tonic-gate 	if (a->st_size > b->st_size)
21467c478bd9Sstevel@tonic-gate 		return (1);
21477c478bd9Sstevel@tonic-gate 
21487c478bd9Sstevel@tonic-gate 	/*
21497c478bd9Sstevel@tonic-gate 	 * All other factors being equal, fall back to lexicographic order.
21507c478bd9Sstevel@tonic-gate 	 */
21517c478bd9Sstevel@tonic-gate 	return (strcmp(aname, bname));
21527c478bd9Sstevel@tonic-gate }
21537c478bd9Sstevel@tonic-gate 
21547c478bd9Sstevel@tonic-gate static int
21557c478bd9Sstevel@tonic-gate byaddr_cmp(const void *aa, const void *bb)
21567c478bd9Sstevel@tonic-gate {
21577c478bd9Sstevel@tonic-gate 	GElf_Sym *a = &sort_syms[*(uint_t *)aa];
21587c478bd9Sstevel@tonic-gate 	GElf_Sym *b = &sort_syms[*(uint_t *)bb];
21597c478bd9Sstevel@tonic-gate 	char *aname = sort_strs + a->st_name;
21607c478bd9Sstevel@tonic-gate 	char *bname = sort_strs + b->st_name;
21617c478bd9Sstevel@tonic-gate 
21627c478bd9Sstevel@tonic-gate 	return (byaddr_cmp_common(a, aname, b, bname));
21637c478bd9Sstevel@tonic-gate }
21647c478bd9Sstevel@tonic-gate 
21657c478bd9Sstevel@tonic-gate static int
21667c478bd9Sstevel@tonic-gate byname_cmp(const void *aa, const void *bb)
21677c478bd9Sstevel@tonic-gate {
21687c478bd9Sstevel@tonic-gate 	GElf_Sym *a = &sort_syms[*(uint_t *)aa];
21697c478bd9Sstevel@tonic-gate 	GElf_Sym *b = &sort_syms[*(uint_t *)bb];
21707c478bd9Sstevel@tonic-gate 	char *aname = sort_strs + a->st_name;
21717c478bd9Sstevel@tonic-gate 	char *bname = sort_strs + b->st_name;
21727c478bd9Sstevel@tonic-gate 
21737c478bd9Sstevel@tonic-gate 	return (strcmp(aname, bname));
21747c478bd9Sstevel@tonic-gate }
21757c478bd9Sstevel@tonic-gate 
21767c478bd9Sstevel@tonic-gate void
21777c478bd9Sstevel@tonic-gate optimize_symtab(sym_tbl_t *symtab)
21787c478bd9Sstevel@tonic-gate {
21797c478bd9Sstevel@tonic-gate 	GElf_Sym *symp, *syms;
21807c478bd9Sstevel@tonic-gate 	uint_t i, *indexa, *indexb;
21817c478bd9Sstevel@tonic-gate 	Elf_Data *data;
21827c478bd9Sstevel@tonic-gate 	size_t symn, strsz, count;
21837c478bd9Sstevel@tonic-gate 
21847c478bd9Sstevel@tonic-gate 	if (symtab == NULL || symtab->sym_data == NULL ||
21857c478bd9Sstevel@tonic-gate 	    symtab->sym_byaddr != NULL)
21867c478bd9Sstevel@tonic-gate 		return;
21877c478bd9Sstevel@tonic-gate 
21887c478bd9Sstevel@tonic-gate 	data = symtab->sym_data;
21897c478bd9Sstevel@tonic-gate 	symn = symtab->sym_symn;
21907c478bd9Sstevel@tonic-gate 	strsz = symtab->sym_strsz;
21917c478bd9Sstevel@tonic-gate 
21927c478bd9Sstevel@tonic-gate 	symp = syms = malloc(sizeof (GElf_Sym) * symn);
21937c478bd9Sstevel@tonic-gate 
21947c478bd9Sstevel@tonic-gate 	/*
21957c478bd9Sstevel@tonic-gate 	 * First record all the symbols into a table and count up the ones
21967c478bd9Sstevel@tonic-gate 	 * that we're interested in. We mark symbols as invalid by setting
21977c478bd9Sstevel@tonic-gate 	 * the st_name to an illegal value.
21987c478bd9Sstevel@tonic-gate 	 */
21997c478bd9Sstevel@tonic-gate 	for (i = 0, count = 0; i < symn; i++, symp++) {
22007c478bd9Sstevel@tonic-gate 		if (gelf_getsym(data, i, symp) != NULL &&
22017c478bd9Sstevel@tonic-gate 		    symp->st_name < strsz &&
22027c478bd9Sstevel@tonic-gate 		    IS_DATA_TYPE(GELF_ST_TYPE(symp->st_info)))
22037c478bd9Sstevel@tonic-gate 			count++;
22047c478bd9Sstevel@tonic-gate 		else
22057c478bd9Sstevel@tonic-gate 			symp->st_name = strsz;
22067c478bd9Sstevel@tonic-gate 	}
22077c478bd9Sstevel@tonic-gate 
22087c478bd9Sstevel@tonic-gate 	/*
22097c478bd9Sstevel@tonic-gate 	 * Allocate sufficient space for both tables and populate them
22107c478bd9Sstevel@tonic-gate 	 * with the same symbols we just counted.
22117c478bd9Sstevel@tonic-gate 	 */
22127c478bd9Sstevel@tonic-gate 	symtab->sym_count = count;
22137c478bd9Sstevel@tonic-gate 	indexa = symtab->sym_byaddr = calloc(sizeof (uint_t), count);
22147c478bd9Sstevel@tonic-gate 	indexb = symtab->sym_byname = calloc(sizeof (uint_t), count);
22157c478bd9Sstevel@tonic-gate 
22167c478bd9Sstevel@tonic-gate 	for (i = 0, symp = syms; i < symn; i++, symp++) {
22177c478bd9Sstevel@tonic-gate 		if (symp->st_name < strsz)
22187c478bd9Sstevel@tonic-gate 			*indexa++ = *indexb++ = i;
22197c478bd9Sstevel@tonic-gate 	}
22207c478bd9Sstevel@tonic-gate 
22217c478bd9Sstevel@tonic-gate 	/*
22227c478bd9Sstevel@tonic-gate 	 * Sort the two tables according to the appropriate criteria.
22237c478bd9Sstevel@tonic-gate 	 */
22247c478bd9Sstevel@tonic-gate 	(void) mutex_lock(&sort_mtx);
22257c478bd9Sstevel@tonic-gate 	sort_strs = symtab->sym_strs;
22267c478bd9Sstevel@tonic-gate 	sort_syms = syms;
22277c478bd9Sstevel@tonic-gate 
22287c478bd9Sstevel@tonic-gate 	qsort(symtab->sym_byaddr, count, sizeof (uint_t), byaddr_cmp);
22297c478bd9Sstevel@tonic-gate 	qsort(symtab->sym_byname, count, sizeof (uint_t), byname_cmp);
22307c478bd9Sstevel@tonic-gate 
22317c478bd9Sstevel@tonic-gate 	sort_strs = NULL;
22327c478bd9Sstevel@tonic-gate 	sort_syms = NULL;
22337c478bd9Sstevel@tonic-gate 	(void) mutex_unlock(&sort_mtx);
22347c478bd9Sstevel@tonic-gate 
22357c478bd9Sstevel@tonic-gate 	free(syms);
22367c478bd9Sstevel@tonic-gate }
22377c478bd9Sstevel@tonic-gate 
22387c478bd9Sstevel@tonic-gate /*
22397c478bd9Sstevel@tonic-gate  * Build the symbol table for the given mapped file.
22407c478bd9Sstevel@tonic-gate  */
22417c478bd9Sstevel@tonic-gate void
22427c478bd9Sstevel@tonic-gate Pbuild_file_symtab(struct ps_prochandle *P, file_info_t *fptr)
22437c478bd9Sstevel@tonic-gate {
22447c478bd9Sstevel@tonic-gate 	char objectfile[PATH_MAX];
22457c478bd9Sstevel@tonic-gate 	uint_t i;
22467c478bd9Sstevel@tonic-gate 
22477c478bd9Sstevel@tonic-gate 	GElf_Ehdr ehdr;
22487c478bd9Sstevel@tonic-gate 	GElf_Sym s;
22497c478bd9Sstevel@tonic-gate 
22507c478bd9Sstevel@tonic-gate 	Elf_Data *shdata;
22517c478bd9Sstevel@tonic-gate 	Elf_Scn *scn;
22527c478bd9Sstevel@tonic-gate 	Elf *elf;
225330da1432Sahl 	size_t nshdrs, shstrndx;
22547c478bd9Sstevel@tonic-gate 
22557c478bd9Sstevel@tonic-gate 	struct {
22567c478bd9Sstevel@tonic-gate 		GElf_Shdr c_shdr;
22577c478bd9Sstevel@tonic-gate 		Elf_Data *c_data;
22587c478bd9Sstevel@tonic-gate 		const char *c_name;
22597c478bd9Sstevel@tonic-gate 	} *cp, *cache = NULL, *dyn = NULL, *plt = NULL, *ctf = NULL;
22607c478bd9Sstevel@tonic-gate 
22617c478bd9Sstevel@tonic-gate 	if (fptr->file_init)
22627c478bd9Sstevel@tonic-gate 		return;	/* We've already processed this file */
22637c478bd9Sstevel@tonic-gate 
22647c478bd9Sstevel@tonic-gate 	/*
22657c478bd9Sstevel@tonic-gate 	 * Mark the file_info struct as having the symbol table initialized
22667c478bd9Sstevel@tonic-gate 	 * even if we fail below.  We tried once; we don't try again.
22677c478bd9Sstevel@tonic-gate 	 */
22687c478bd9Sstevel@tonic-gate 	fptr->file_init = 1;
22697c478bd9Sstevel@tonic-gate 
22707c478bd9Sstevel@tonic-gate 	if (elf_version(EV_CURRENT) == EV_NONE) {
22717c478bd9Sstevel@tonic-gate 		dprintf("libproc ELF version is more recent than libelf\n");
22727c478bd9Sstevel@tonic-gate 		return;
22737c478bd9Sstevel@tonic-gate 	}
22747c478bd9Sstevel@tonic-gate 
22757c478bd9Sstevel@tonic-gate 	if (P->state == PS_DEAD || P->state == PS_IDLE) {
22767c478bd9Sstevel@tonic-gate 		/*
22777c478bd9Sstevel@tonic-gate 		 * If we're a not live, we can't open files from the /proc
22787c478bd9Sstevel@tonic-gate 		 * object directory; we have only the mapping and file names
22797c478bd9Sstevel@tonic-gate 		 * to guide us.  We prefer the file_lname, but need to handle
22807c478bd9Sstevel@tonic-gate 		 * the case of it being NULL in order to bootstrap: we first
22817c478bd9Sstevel@tonic-gate 		 * come here during rd_new() when the only information we have
22827c478bd9Sstevel@tonic-gate 		 * is interpreter name associated with the AT_BASE mapping.
22837c478bd9Sstevel@tonic-gate 		 */
22847c478bd9Sstevel@tonic-gate 		(void) snprintf(objectfile, sizeof (objectfile), "%s",
22857c478bd9Sstevel@tonic-gate 		    fptr->file_lname ? fptr->file_lname : fptr->file_pname);
22867c478bd9Sstevel@tonic-gate 	} else {
22877c478bd9Sstevel@tonic-gate 		(void) snprintf(objectfile, sizeof (objectfile),
22889acbbeafSnn35248 		    "%s/%d/object/%s",
22899acbbeafSnn35248 		    procfs_path, (int)P->pid, fptr->file_pname);
22907c478bd9Sstevel@tonic-gate 	}
22917c478bd9Sstevel@tonic-gate 
22927c478bd9Sstevel@tonic-gate 	/*
22937c478bd9Sstevel@tonic-gate 	 * Open the object file, create the elf file, and then get the elf
22947c478bd9Sstevel@tonic-gate 	 * header and .shstrtab data buffer so we can process sections by
22957c478bd9Sstevel@tonic-gate 	 * name. If anything goes wrong try to fake up an elf file from
22967c478bd9Sstevel@tonic-gate 	 * the in-core elf image.
22977c478bd9Sstevel@tonic-gate 	 */
22987c478bd9Sstevel@tonic-gate 	if ((fptr->file_fd = open(objectfile, O_RDONLY)) < 0) {
22997c478bd9Sstevel@tonic-gate 		dprintf("Pbuild_file_symtab: failed to open %s: %s\n",
23007c478bd9Sstevel@tonic-gate 		    objectfile, strerror(errno));
23017c478bd9Sstevel@tonic-gate 
23027c478bd9Sstevel@tonic-gate 		if ((elf = fake_elf(P, fptr)) == NULL ||
23037c478bd9Sstevel@tonic-gate 		    elf_kind(elf) != ELF_K_ELF ||
23047c478bd9Sstevel@tonic-gate 		    gelf_getehdr(elf, &ehdr) == NULL ||
230530da1432Sahl 		    elf_getshnum(elf, &nshdrs) == 0 ||
230630da1432Sahl 		    elf_getshstrndx(elf, &shstrndx) == 0 ||
230730da1432Sahl 		    (scn = elf_getscn(elf, shstrndx)) == NULL ||
23087c478bd9Sstevel@tonic-gate 		    (shdata = elf_getdata(scn, NULL)) == NULL) {
23097c478bd9Sstevel@tonic-gate 			dprintf("failed to fake up ELF file\n");
23107c478bd9Sstevel@tonic-gate 			return;
23117c478bd9Sstevel@tonic-gate 		}
23127c478bd9Sstevel@tonic-gate 
23137c478bd9Sstevel@tonic-gate 	} else if ((elf = elf_begin(fptr->file_fd, ELF_C_READ, NULL)) == NULL ||
23147c478bd9Sstevel@tonic-gate 	    elf_kind(elf) != ELF_K_ELF ||
23157c478bd9Sstevel@tonic-gate 	    gelf_getehdr(elf, &ehdr) == NULL ||
231630da1432Sahl 	    elf_getshnum(elf, &nshdrs) == 0 ||
231730da1432Sahl 	    elf_getshstrndx(elf, &shstrndx) == 0 ||
231830da1432Sahl 	    (scn = elf_getscn(elf, shstrndx)) == NULL ||
23197c478bd9Sstevel@tonic-gate 	    (shdata = elf_getdata(scn, NULL)) == NULL) {
23209acbbeafSnn35248 		int err = elf_errno();
23219acbbeafSnn35248 
23227c478bd9Sstevel@tonic-gate 		dprintf("failed to process ELF file %s: %s\n",
23239acbbeafSnn35248 		    objectfile, (err == 0) ? "<null>" : elf_errmsg(err));
23247c478bd9Sstevel@tonic-gate 
23257c478bd9Sstevel@tonic-gate 		if ((elf = fake_elf(P, fptr)) == NULL ||
23267c478bd9Sstevel@tonic-gate 		    elf_kind(elf) != ELF_K_ELF ||
23277c478bd9Sstevel@tonic-gate 		    gelf_getehdr(elf, &ehdr) == NULL ||
232830da1432Sahl 		    elf_getshnum(elf, &nshdrs) == 0 ||
232930da1432Sahl 		    elf_getshstrndx(elf, &shstrndx) == 0 ||
233030da1432Sahl 		    (scn = elf_getscn(elf, shstrndx)) == NULL ||
23317c478bd9Sstevel@tonic-gate 		    (shdata = elf_getdata(scn, NULL)) == NULL) {
23327c478bd9Sstevel@tonic-gate 			dprintf("failed to fake up ELF file\n");
23337c478bd9Sstevel@tonic-gate 			goto bad;
23347c478bd9Sstevel@tonic-gate 		}
23357c478bd9Sstevel@tonic-gate 
23367c478bd9Sstevel@tonic-gate 	} else if (file_differs(P, elf, fptr)) {
23377c478bd9Sstevel@tonic-gate 		Elf *newelf;
23387c478bd9Sstevel@tonic-gate 
23397c478bd9Sstevel@tonic-gate 		/*
23407c478bd9Sstevel@tonic-gate 		 * Before we get too excited about this elf file, we'll check
23417c478bd9Sstevel@tonic-gate 		 * its checksum value against the value we have in memory. If
23427c478bd9Sstevel@tonic-gate 		 * they don't agree, we try to fake up a new elf file and
23437c478bd9Sstevel@tonic-gate 		 * proceed with that instead.
23447c478bd9Sstevel@tonic-gate 		 */
23457c478bd9Sstevel@tonic-gate 
23467c478bd9Sstevel@tonic-gate 		dprintf("ELF file %s (%lx) doesn't match in-core image\n",
23477c478bd9Sstevel@tonic-gate 		    fptr->file_pname,
23487c478bd9Sstevel@tonic-gate 		    (ulong_t)fptr->file_map->map_pmap.pr_vaddr);
23497c478bd9Sstevel@tonic-gate 
23507c478bd9Sstevel@tonic-gate 		if ((newelf = fake_elf(P, fptr)) == NULL ||
23517c478bd9Sstevel@tonic-gate 		    elf_kind(newelf) != ELF_K_ELF ||
23527c478bd9Sstevel@tonic-gate 		    gelf_getehdr(newelf, &ehdr) == NULL ||
235330da1432Sahl 		    elf_getshnum(newelf, &nshdrs) == 0 ||
235430da1432Sahl 		    elf_getshstrndx(newelf, &shstrndx) == 0 ||
235530da1432Sahl 		    (scn = elf_getscn(newelf, shstrndx)) == NULL ||
23567c478bd9Sstevel@tonic-gate 		    (shdata = elf_getdata(scn, NULL)) == NULL) {
23577c478bd9Sstevel@tonic-gate 			dprintf("failed to fake up ELF file\n");
23587c478bd9Sstevel@tonic-gate 		} else {
23597c478bd9Sstevel@tonic-gate 			(void) elf_end(elf);
23607c478bd9Sstevel@tonic-gate 			elf = newelf;
23617c478bd9Sstevel@tonic-gate 
23627c478bd9Sstevel@tonic-gate 			dprintf("switched to faked up ELF file\n");
23637c478bd9Sstevel@tonic-gate 		}
23647c478bd9Sstevel@tonic-gate 	}
23657c478bd9Sstevel@tonic-gate 
236630da1432Sahl 	if ((cache = malloc(nshdrs * sizeof (*cache))) == NULL) {
23677c478bd9Sstevel@tonic-gate 		dprintf("failed to malloc section cache for %s\n", objectfile);
23687c478bd9Sstevel@tonic-gate 		goto bad;
23697c478bd9Sstevel@tonic-gate 	}
23707c478bd9Sstevel@tonic-gate 
23717c478bd9Sstevel@tonic-gate 	dprintf("processing ELF file %s\n", objectfile);
23727c478bd9Sstevel@tonic-gate 	fptr->file_class = ehdr.e_ident[EI_CLASS];
23737c478bd9Sstevel@tonic-gate 	fptr->file_etype = ehdr.e_type;
23747c478bd9Sstevel@tonic-gate 	fptr->file_elf = elf;
2375f957ecc1Svb160487 	fptr->file_shstrs = shdata->d_buf;
2376f957ecc1Svb160487 	fptr->file_shstrsz = shdata->d_size;
23777c478bd9Sstevel@tonic-gate 
23787c478bd9Sstevel@tonic-gate 	/*
23797c478bd9Sstevel@tonic-gate 	 * Iterate through each section, caching its section header, data
23807c478bd9Sstevel@tonic-gate 	 * pointer, and name.  We use this for handling sh_link values below.
23817c478bd9Sstevel@tonic-gate 	 */
23827c478bd9Sstevel@tonic-gate 	for (cp = cache + 1, scn = NULL; scn = elf_nextscn(elf, scn); cp++) {
23839acbbeafSnn35248 		if (gelf_getshdr(scn, &cp->c_shdr) == NULL) {
23849acbbeafSnn35248 			dprintf("Pbuild_file_symtab: Failed to get section "
23859acbbeafSnn35248 			    "header\n");
23867c478bd9Sstevel@tonic-gate 			goto bad; /* Failed to get section header */
23879acbbeafSnn35248 		}
23887c478bd9Sstevel@tonic-gate 
23899acbbeafSnn35248 		if ((cp->c_data = elf_getdata(scn, NULL)) == NULL) {
23909acbbeafSnn35248 			dprintf("Pbuild_file_symtab: Failed to get section "
23919acbbeafSnn35248 			    "data\n");
23927c478bd9Sstevel@tonic-gate 			goto bad; /* Failed to get section data */
23939acbbeafSnn35248 		}
23947c478bd9Sstevel@tonic-gate 
23959acbbeafSnn35248 		if (cp->c_shdr.sh_name >= shdata->d_size) {
23969acbbeafSnn35248 			dprintf("Pbuild_file_symtab: corrupt section name");
23977c478bd9Sstevel@tonic-gate 			goto bad; /* Corrupt section name */
23989acbbeafSnn35248 		}
23997c478bd9Sstevel@tonic-gate 
24007c478bd9Sstevel@tonic-gate 		cp->c_name = (const char *)shdata->d_buf + cp->c_shdr.sh_name;
24017c478bd9Sstevel@tonic-gate 	}
24027c478bd9Sstevel@tonic-gate 
24037c478bd9Sstevel@tonic-gate 	/*
24047c478bd9Sstevel@tonic-gate 	 * Now iterate through the section cache in order to locate info
24057c478bd9Sstevel@tonic-gate 	 * for the .symtab, .dynsym, .dynamic, .plt, and .SUNW_ctf sections:
24067c478bd9Sstevel@tonic-gate 	 */
240730da1432Sahl 	for (i = 1, cp = cache + 1; i < nshdrs; i++, cp++) {
24087c478bd9Sstevel@tonic-gate 		GElf_Shdr *shp = &cp->c_shdr;
24097c478bd9Sstevel@tonic-gate 
24107c478bd9Sstevel@tonic-gate 		if (shp->sh_type == SHT_SYMTAB || shp->sh_type == SHT_DYNSYM) {
24117c478bd9Sstevel@tonic-gate 			sym_tbl_t *symp = shp->sh_type == SHT_SYMTAB ?
24127c478bd9Sstevel@tonic-gate 			    &fptr->file_symtab : &fptr->file_dynsym;
24137c478bd9Sstevel@tonic-gate 			/*
24147c478bd9Sstevel@tonic-gate 			 * It's possible that the we already got the symbol
24157c478bd9Sstevel@tonic-gate 			 * table from the core file itself. Either the file
24167c478bd9Sstevel@tonic-gate 			 * differs in which case our faked up elf file will
24177c478bd9Sstevel@tonic-gate 			 * only contain the dynsym (not the symtab) or the
24187c478bd9Sstevel@tonic-gate 			 * file matches in which case we'll just be replacing
24197c478bd9Sstevel@tonic-gate 			 * the symbol table we pulled out of the core file
24207c478bd9Sstevel@tonic-gate 			 * with an equivalent one. In either case, this
24217c478bd9Sstevel@tonic-gate 			 * check isn't essential, but it's a good idea.
24227c478bd9Sstevel@tonic-gate 			 */
24237c478bd9Sstevel@tonic-gate 			if (symp->sym_data == NULL) {
24249acbbeafSnn35248 				dprintf("Symbol table found for %s\n",
24259acbbeafSnn35248 				    objectfile);
24267c478bd9Sstevel@tonic-gate 				symp->sym_data = cp->c_data;
24277c478bd9Sstevel@tonic-gate 				symp->sym_symn = shp->sh_size / shp->sh_entsize;
24287c478bd9Sstevel@tonic-gate 				symp->sym_strs =
24297c478bd9Sstevel@tonic-gate 				    cache[shp->sh_link].c_data->d_buf;
24307c478bd9Sstevel@tonic-gate 				symp->sym_strsz =
24317c478bd9Sstevel@tonic-gate 				    cache[shp->sh_link].c_data->d_size;
24327c478bd9Sstevel@tonic-gate 				symp->sym_hdr = cp->c_shdr;
24337c478bd9Sstevel@tonic-gate 				symp->sym_strhdr = cache[shp->sh_link].c_shdr;
24349acbbeafSnn35248 			} else {
24359acbbeafSnn35248 				dprintf("Symbol table already there for %s\n",
24369acbbeafSnn35248 				    objectfile);
24377c478bd9Sstevel@tonic-gate 			}
24387c478bd9Sstevel@tonic-gate 
24397c478bd9Sstevel@tonic-gate 		} else if (shp->sh_type == SHT_DYNAMIC) {
24407c478bd9Sstevel@tonic-gate 			dyn = cp;
24417c478bd9Sstevel@tonic-gate 		} else if (strcmp(cp->c_name, ".plt") == 0) {
24427c478bd9Sstevel@tonic-gate 			plt = cp;
24437c478bd9Sstevel@tonic-gate 		} else if (strcmp(cp->c_name, ".SUNW_ctf") == 0) {
24447c478bd9Sstevel@tonic-gate 			/*
24457c478bd9Sstevel@tonic-gate 			 * Skip over bogus CTF sections so they don't come back
24467c478bd9Sstevel@tonic-gate 			 * to haunt us later.
24477c478bd9Sstevel@tonic-gate 			 */
24487c478bd9Sstevel@tonic-gate 			if (shp->sh_link == 0 ||
244930da1432Sahl 			    shp->sh_link >= nshdrs ||
24507c478bd9Sstevel@tonic-gate 			    (cache[shp->sh_link].c_shdr.sh_type != SHT_DYNSYM &&
24517c478bd9Sstevel@tonic-gate 			    cache[shp->sh_link].c_shdr.sh_type != SHT_SYMTAB)) {
24527c478bd9Sstevel@tonic-gate 				dprintf("Bad sh_link %d for "
24537c478bd9Sstevel@tonic-gate 				    "CTF\n", shp->sh_link);
24547c478bd9Sstevel@tonic-gate 				continue;
24557c478bd9Sstevel@tonic-gate 			}
24567c478bd9Sstevel@tonic-gate 			ctf = cp;
24577c478bd9Sstevel@tonic-gate 		}
24587c478bd9Sstevel@tonic-gate 	}
24597c478bd9Sstevel@tonic-gate 
24607c478bd9Sstevel@tonic-gate 	/*
24617c478bd9Sstevel@tonic-gate 	 * At this point, we've found all the symbol tables we're ever going
24627c478bd9Sstevel@tonic-gate 	 * to find: the ones in the loop above and possibly the symtab that
24637c478bd9Sstevel@tonic-gate 	 * was included in the core file. Before we perform any lookups, we
24647c478bd9Sstevel@tonic-gate 	 * create sorted versions to optimize for lookups.
24657c478bd9Sstevel@tonic-gate 	 */
24667c478bd9Sstevel@tonic-gate 	optimize_symtab(&fptr->file_symtab);
24677c478bd9Sstevel@tonic-gate 	optimize_symtab(&fptr->file_dynsym);
24687c478bd9Sstevel@tonic-gate 
24697c478bd9Sstevel@tonic-gate 	/*
24707c478bd9Sstevel@tonic-gate 	 * Fill in the base address of the text mapping for shared libraries.
24717c478bd9Sstevel@tonic-gate 	 * This allows us to translate symbols before librtld_db is ready.
24727c478bd9Sstevel@tonic-gate 	 */
24737c478bd9Sstevel@tonic-gate 	if (fptr->file_etype == ET_DYN) {
24747c478bd9Sstevel@tonic-gate 		fptr->file_dyn_base = fptr->file_map->map_pmap.pr_vaddr -
24757c478bd9Sstevel@tonic-gate 		    fptr->file_map->map_pmap.pr_offset;
24769acbbeafSnn35248 		dprintf("setting file_dyn_base for %s to %lx\n",
24779acbbeafSnn35248 		    objectfile, (long)fptr->file_dyn_base);
24787c478bd9Sstevel@tonic-gate 	}
24797c478bd9Sstevel@tonic-gate 
24807c478bd9Sstevel@tonic-gate 	/*
24817c478bd9Sstevel@tonic-gate 	 * Record the CTF section information in the file info structure.
24827c478bd9Sstevel@tonic-gate 	 */
24837c478bd9Sstevel@tonic-gate 	if (ctf != NULL) {
24847c478bd9Sstevel@tonic-gate 		fptr->file_ctf_off = ctf->c_shdr.sh_offset;
24857c478bd9Sstevel@tonic-gate 		fptr->file_ctf_size = ctf->c_shdr.sh_size;
24867c478bd9Sstevel@tonic-gate 		if (ctf->c_shdr.sh_link != 0 &&
24877c478bd9Sstevel@tonic-gate 		    cache[ctf->c_shdr.sh_link].c_shdr.sh_type == SHT_DYNSYM)
24887c478bd9Sstevel@tonic-gate 			fptr->file_ctf_dyn = 1;
24897c478bd9Sstevel@tonic-gate 	}
24907c478bd9Sstevel@tonic-gate 
24917c478bd9Sstevel@tonic-gate 	if (fptr->file_lo == NULL)
24927c478bd9Sstevel@tonic-gate 		goto done; /* Nothing else to do if no load object info */
24937c478bd9Sstevel@tonic-gate 
24947c478bd9Sstevel@tonic-gate 	/*
24957c478bd9Sstevel@tonic-gate 	 * If the object is a shared library and we have a different rl_base
24967c478bd9Sstevel@tonic-gate 	 * value, reset file_dyn_base according to librtld_db's information.
24977c478bd9Sstevel@tonic-gate 	 */
24987c478bd9Sstevel@tonic-gate 	if (fptr->file_etype == ET_DYN &&
24997c478bd9Sstevel@tonic-gate 	    fptr->file_lo->rl_base != fptr->file_dyn_base) {
25009acbbeafSnn35248 		dprintf("resetting file_dyn_base for %s to %lx\n",
25019acbbeafSnn35248 		    objectfile, (long)fptr->file_lo->rl_base);
25027c478bd9Sstevel@tonic-gate 		fptr->file_dyn_base = fptr->file_lo->rl_base;
25037c478bd9Sstevel@tonic-gate 	}
25047c478bd9Sstevel@tonic-gate 
25057c478bd9Sstevel@tonic-gate 	/*
25067c478bd9Sstevel@tonic-gate 	 * Fill in the PLT information for this file if a PLT symbol is found.
25077c478bd9Sstevel@tonic-gate 	 */
25087c478bd9Sstevel@tonic-gate 	if (sym_by_name(&fptr->file_dynsym, "_PROCEDURE_LINKAGE_TABLE_", &s,
25097c478bd9Sstevel@tonic-gate 	    NULL) != NULL) {
25107c478bd9Sstevel@tonic-gate 		fptr->file_plt_base = s.st_value + fptr->file_dyn_base;
25117c478bd9Sstevel@tonic-gate 		fptr->file_plt_size = (plt != NULL) ? plt->c_shdr.sh_size : 0;
25127c478bd9Sstevel@tonic-gate 
25137c478bd9Sstevel@tonic-gate 		/*
25147c478bd9Sstevel@tonic-gate 		 * Bring the load object up to date; it is the only way the
25157c478bd9Sstevel@tonic-gate 		 * user has to access the PLT data. The PLT information in the
25167c478bd9Sstevel@tonic-gate 		 * rd_loadobj_t is not set in the call to map_iter() (the
25177c478bd9Sstevel@tonic-gate 		 * callback for rd_loadobj_iter) where we set file_lo.
25187c478bd9Sstevel@tonic-gate 		 */
25197c478bd9Sstevel@tonic-gate 		fptr->file_lo->rl_plt_base = fptr->file_plt_base;
25207c478bd9Sstevel@tonic-gate 		fptr->file_lo->rl_plt_size = fptr->file_plt_size;
25217c478bd9Sstevel@tonic-gate 
25227c478bd9Sstevel@tonic-gate 		dprintf("PLT found at %p, size = %lu\n",
25237c478bd9Sstevel@tonic-gate 		    (void *)fptr->file_plt_base, (ulong_t)fptr->file_plt_size);
25247c478bd9Sstevel@tonic-gate 	}
25257c478bd9Sstevel@tonic-gate 
25267c478bd9Sstevel@tonic-gate 	/*
25277c478bd9Sstevel@tonic-gate 	 * Fill in the PLT information.
25287c478bd9Sstevel@tonic-gate 	 */
25297c478bd9Sstevel@tonic-gate 	if (dyn != NULL) {
25307c478bd9Sstevel@tonic-gate 		uintptr_t dynaddr = dyn->c_shdr.sh_addr + fptr->file_dyn_base;
25317c478bd9Sstevel@tonic-gate 		size_t ndyn = dyn->c_shdr.sh_size / dyn->c_shdr.sh_entsize;
25327c478bd9Sstevel@tonic-gate 		GElf_Dyn d;
25337c478bd9Sstevel@tonic-gate 
25347c478bd9Sstevel@tonic-gate 		for (i = 0; i < ndyn; i++) {
25357c478bd9Sstevel@tonic-gate 			if (gelf_getdyn(dyn->c_data, i, &d) != NULL &&
25367c478bd9Sstevel@tonic-gate 			    d.d_tag == DT_JMPREL) {
25379acbbeafSnn35248 				dprintf("DT_JMPREL is %p\n",
25389acbbeafSnn35248 				    (void *)(uintptr_t)d.d_un.d_ptr);
25397c478bd9Sstevel@tonic-gate 				fptr->file_jmp_rel =
25407c478bd9Sstevel@tonic-gate 				    d.d_un.d_ptr + fptr->file_dyn_base;
25417c478bd9Sstevel@tonic-gate 				break;
25427c478bd9Sstevel@tonic-gate 			}
25437c478bd9Sstevel@tonic-gate 		}
25447c478bd9Sstevel@tonic-gate 
25457c478bd9Sstevel@tonic-gate 		dprintf("_DYNAMIC found at %p, %lu entries, DT_JMPREL = %p\n",
25467c478bd9Sstevel@tonic-gate 		    (void *)dynaddr, (ulong_t)ndyn, (void *)fptr->file_jmp_rel);
25477c478bd9Sstevel@tonic-gate 	}
25487c478bd9Sstevel@tonic-gate 
25497c478bd9Sstevel@tonic-gate done:
25507c478bd9Sstevel@tonic-gate 	free(cache);
25517c478bd9Sstevel@tonic-gate 	return;
25527c478bd9Sstevel@tonic-gate 
25537c478bd9Sstevel@tonic-gate bad:
25547c478bd9Sstevel@tonic-gate 	if (cache != NULL)
25557c478bd9Sstevel@tonic-gate 		free(cache);
25567c478bd9Sstevel@tonic-gate 
25577c478bd9Sstevel@tonic-gate 	(void) elf_end(elf);
25587c478bd9Sstevel@tonic-gate 	fptr->file_elf = NULL;
25597c478bd9Sstevel@tonic-gate 	if (fptr->file_elfmem != NULL) {
25607c478bd9Sstevel@tonic-gate 		free(fptr->file_elfmem);
25617c478bd9Sstevel@tonic-gate 		fptr->file_elfmem = NULL;
25627c478bd9Sstevel@tonic-gate 	}
25637c478bd9Sstevel@tonic-gate 	(void) close(fptr->file_fd);
25647c478bd9Sstevel@tonic-gate 	fptr->file_fd = -1;
25657c478bd9Sstevel@tonic-gate }
25667c478bd9Sstevel@tonic-gate 
25677c478bd9Sstevel@tonic-gate /*
25687c478bd9Sstevel@tonic-gate  * Given a process virtual address, return the map_info_t containing it.
25697c478bd9Sstevel@tonic-gate  * If none found, return NULL.
25707c478bd9Sstevel@tonic-gate  */
25717c478bd9Sstevel@tonic-gate map_info_t *
25727c478bd9Sstevel@tonic-gate Paddr2mptr(struct ps_prochandle *P, uintptr_t addr)
25737c478bd9Sstevel@tonic-gate {
25747c478bd9Sstevel@tonic-gate 	int lo = 0;
25757c478bd9Sstevel@tonic-gate 	int hi = P->map_count - 1;
25767c478bd9Sstevel@tonic-gate 	int mid;
25777c478bd9Sstevel@tonic-gate 	map_info_t *mp;
25787c478bd9Sstevel@tonic-gate 
25797c478bd9Sstevel@tonic-gate 	while (lo <= hi) {
25807c478bd9Sstevel@tonic-gate 
25817c478bd9Sstevel@tonic-gate 		mid = (lo + hi) / 2;
25827c478bd9Sstevel@tonic-gate 		mp = &P->mappings[mid];
25837c478bd9Sstevel@tonic-gate 
25847c478bd9Sstevel@tonic-gate 		/* check that addr is in [vaddr, vaddr + size) */
25857c478bd9Sstevel@tonic-gate 		if ((addr - mp->map_pmap.pr_vaddr) < mp->map_pmap.pr_size)
25867c478bd9Sstevel@tonic-gate 			return (mp);
25877c478bd9Sstevel@tonic-gate 
25887c478bd9Sstevel@tonic-gate 		if (addr < mp->map_pmap.pr_vaddr)
25897c478bd9Sstevel@tonic-gate 			hi = mid - 1;
25907c478bd9Sstevel@tonic-gate 		else
25917c478bd9Sstevel@tonic-gate 			lo = mid + 1;
25927c478bd9Sstevel@tonic-gate 	}
25937c478bd9Sstevel@tonic-gate 
25947c478bd9Sstevel@tonic-gate 	return (NULL);
25957c478bd9Sstevel@tonic-gate }
25967c478bd9Sstevel@tonic-gate 
25977c478bd9Sstevel@tonic-gate /*
25987c478bd9Sstevel@tonic-gate  * Return the map_info_t for the executable file.
25997c478bd9Sstevel@tonic-gate  * If not found, return NULL.
26007c478bd9Sstevel@tonic-gate  */
26017c478bd9Sstevel@tonic-gate static map_info_t *
26027c478bd9Sstevel@tonic-gate exec_map(struct ps_prochandle *P)
26037c478bd9Sstevel@tonic-gate {
26047c478bd9Sstevel@tonic-gate 	uint_t i;
26057c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
26067c478bd9Sstevel@tonic-gate 	map_info_t *mold = NULL;
26077c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
26087c478bd9Sstevel@tonic-gate 	uintptr_t base;
26097c478bd9Sstevel@tonic-gate 
26107c478bd9Sstevel@tonic-gate 	for (i = 0, mptr = P->mappings; i < P->map_count; i++, mptr++) {
26117c478bd9Sstevel@tonic-gate 		if (mptr->map_pmap.pr_mapname[0] == '\0')
26127c478bd9Sstevel@tonic-gate 			continue;
26137c478bd9Sstevel@tonic-gate 		if (strcmp(mptr->map_pmap.pr_mapname, "a.out") == 0) {
26147c478bd9Sstevel@tonic-gate 			if ((fptr = mptr->map_file) != NULL &&
26157c478bd9Sstevel@tonic-gate 			    fptr->file_lo != NULL) {
26167c478bd9Sstevel@tonic-gate 				base = fptr->file_lo->rl_base;
26177c478bd9Sstevel@tonic-gate 				if (base >= mptr->map_pmap.pr_vaddr &&
26187c478bd9Sstevel@tonic-gate 				    base < mptr->map_pmap.pr_vaddr +
26197c478bd9Sstevel@tonic-gate 				    mptr->map_pmap.pr_size)	/* text space */
26207c478bd9Sstevel@tonic-gate 					return (mptr);
26217c478bd9Sstevel@tonic-gate 				mold = mptr;	/* must be the data */
26227c478bd9Sstevel@tonic-gate 				continue;
26237c478bd9Sstevel@tonic-gate 			}
26247c478bd9Sstevel@tonic-gate 			/* This is a poor way to test for text space */
26257c478bd9Sstevel@tonic-gate 			if (!(mptr->map_pmap.pr_mflags & MA_EXEC) ||
26267c478bd9Sstevel@tonic-gate 			    (mptr->map_pmap.pr_mflags & MA_WRITE)) {
26277c478bd9Sstevel@tonic-gate 				mold = mptr;
26287c478bd9Sstevel@tonic-gate 				continue;
26297c478bd9Sstevel@tonic-gate 			}
26307c478bd9Sstevel@tonic-gate 			return (mptr);
26317c478bd9Sstevel@tonic-gate 		}
26327c478bd9Sstevel@tonic-gate 	}
26337c478bd9Sstevel@tonic-gate 
26347c478bd9Sstevel@tonic-gate 	return (mold);
26357c478bd9Sstevel@tonic-gate }
26367c478bd9Sstevel@tonic-gate 
26377c478bd9Sstevel@tonic-gate /*
26387c478bd9Sstevel@tonic-gate  * Given a shared object name, return the map_info_t for it.  If no matching
26397c478bd9Sstevel@tonic-gate  * object is found, return NULL.  Normally, the link maps contain the full
26407c478bd9Sstevel@tonic-gate  * object pathname, e.g. /usr/lib/libc.so.1.  We allow the object name to
26417c478bd9Sstevel@tonic-gate  * take one of the following forms:
26427c478bd9Sstevel@tonic-gate  *
26437c478bd9Sstevel@tonic-gate  * 1. An exact match (i.e. a full pathname): "/usr/lib/libc.so.1"
26447c478bd9Sstevel@tonic-gate  * 2. An exact basename match: "libc.so.1"
26457c478bd9Sstevel@tonic-gate  * 3. An initial basename match up to a '.' suffix: "libc.so" or "libc"
26467c478bd9Sstevel@tonic-gate  * 4. The literal string "a.out" is an alias for the executable mapping
26477c478bd9Sstevel@tonic-gate  *
26487c478bd9Sstevel@tonic-gate  * The third case is a convenience for callers and may not be necessary.
26497c478bd9Sstevel@tonic-gate  *
26507c478bd9Sstevel@tonic-gate  * As the exact same object name may be loaded on different link maps (see
26517c478bd9Sstevel@tonic-gate  * dlmopen(3DL)), we also allow the caller to resolve the object name by
26527c478bd9Sstevel@tonic-gate  * specifying a particular link map id.  If lmid is PR_LMID_EVERY, the
26537c478bd9Sstevel@tonic-gate  * first matching name will be returned, regardless of the link map id.
26547c478bd9Sstevel@tonic-gate  */
26557c478bd9Sstevel@tonic-gate static map_info_t *
26567c478bd9Sstevel@tonic-gate object_to_map(struct ps_prochandle *P, Lmid_t lmid, const char *objname)
26577c478bd9Sstevel@tonic-gate {
26587c478bd9Sstevel@tonic-gate 	map_info_t *mp;
26597c478bd9Sstevel@tonic-gate 	file_info_t *fp;
26607c478bd9Sstevel@tonic-gate 	size_t objlen;
26617c478bd9Sstevel@tonic-gate 	uint_t i;
26627c478bd9Sstevel@tonic-gate 
26637c478bd9Sstevel@tonic-gate 	/*
26649acbbeafSnn35248 	 * If we have no rtld_db, then always treat a request as one for all
26659acbbeafSnn35248 	 * link maps.
26669acbbeafSnn35248 	 */
26679acbbeafSnn35248 	if (P->rap == NULL)
26689acbbeafSnn35248 		lmid = PR_LMID_EVERY;
26699acbbeafSnn35248 
26709acbbeafSnn35248 	/*
26717c478bd9Sstevel@tonic-gate 	 * First pass: look for exact matches of the entire pathname or
26727c478bd9Sstevel@tonic-gate 	 * basename (cases 1 and 2 above):
26737c478bd9Sstevel@tonic-gate 	 */
26747c478bd9Sstevel@tonic-gate 	for (i = 0, mp = P->mappings; i < P->map_count; i++, mp++) {
26757c478bd9Sstevel@tonic-gate 
26767c478bd9Sstevel@tonic-gate 		if (mp->map_pmap.pr_mapname[0] == '\0' ||
26777c478bd9Sstevel@tonic-gate 		    (fp = mp->map_file) == NULL || fp->file_lname == NULL)
26787c478bd9Sstevel@tonic-gate 			continue;
26797c478bd9Sstevel@tonic-gate 
26807c478bd9Sstevel@tonic-gate 		if (lmid != PR_LMID_EVERY &&
26817c478bd9Sstevel@tonic-gate 		    (fp->file_lo == NULL || lmid != fp->file_lo->rl_lmident))
26827c478bd9Sstevel@tonic-gate 			continue;
26837c478bd9Sstevel@tonic-gate 
26847c478bd9Sstevel@tonic-gate 		/*
26857c478bd9Sstevel@tonic-gate 		 * If we match, return the primary text mapping; otherwise
26867c478bd9Sstevel@tonic-gate 		 * just return the mapping we matched.
26877c478bd9Sstevel@tonic-gate 		 */
26887c478bd9Sstevel@tonic-gate 		if (strcmp(fp->file_lname, objname) == 0 ||
26897c478bd9Sstevel@tonic-gate 		    strcmp(fp->file_lbase, objname) == 0)
26907c478bd9Sstevel@tonic-gate 			return (fp->file_map ? fp->file_map : mp);
26917c478bd9Sstevel@tonic-gate 	}
26927c478bd9Sstevel@tonic-gate 
26937c478bd9Sstevel@tonic-gate 	objlen = strlen(objname);
26947c478bd9Sstevel@tonic-gate 
26957c478bd9Sstevel@tonic-gate 	/*
26967c478bd9Sstevel@tonic-gate 	 * Second pass: look for partial matches (case 3 above):
26977c478bd9Sstevel@tonic-gate 	 */
26987c478bd9Sstevel@tonic-gate 	for (i = 0, mp = P->mappings; i < P->map_count; i++, mp++) {
26997c478bd9Sstevel@tonic-gate 
27007c478bd9Sstevel@tonic-gate 		if (mp->map_pmap.pr_mapname[0] == '\0' ||
27017c478bd9Sstevel@tonic-gate 		    (fp = mp->map_file) == NULL || fp->file_lname == NULL)
27027c478bd9Sstevel@tonic-gate 			continue;
27037c478bd9Sstevel@tonic-gate 
27047c478bd9Sstevel@tonic-gate 		if (lmid != PR_LMID_EVERY &&
27057c478bd9Sstevel@tonic-gate 		    (fp->file_lo == NULL || lmid != fp->file_lo->rl_lmident))
27067c478bd9Sstevel@tonic-gate 			continue;
27077c478bd9Sstevel@tonic-gate 
27087c478bd9Sstevel@tonic-gate 		/*
27097c478bd9Sstevel@tonic-gate 		 * If we match, return the primary text mapping; otherwise
27107c478bd9Sstevel@tonic-gate 		 * just return the mapping we matched.
27117c478bd9Sstevel@tonic-gate 		 */
27127c478bd9Sstevel@tonic-gate 		if (strncmp(fp->file_lbase, objname, objlen) == 0 &&
27137c478bd9Sstevel@tonic-gate 		    fp->file_lbase[objlen] == '.')
27147c478bd9Sstevel@tonic-gate 			return (fp->file_map ? fp->file_map : mp);
27157c478bd9Sstevel@tonic-gate 	}
27167c478bd9Sstevel@tonic-gate 
27177c478bd9Sstevel@tonic-gate 	/*
27187c478bd9Sstevel@tonic-gate 	 * One last check: we allow "a.out" to always alias the executable,
27197c478bd9Sstevel@tonic-gate 	 * assuming this name was not in use for something else.
27207c478bd9Sstevel@tonic-gate 	 */
27217c478bd9Sstevel@tonic-gate 	if ((lmid == PR_LMID_EVERY || lmid == LM_ID_BASE) &&
27227c478bd9Sstevel@tonic-gate 	    (strcmp(objname, "a.out") == 0))
27237c478bd9Sstevel@tonic-gate 		return (P->map_exec);
27247c478bd9Sstevel@tonic-gate 
27257c478bd9Sstevel@tonic-gate 	return (NULL);
27267c478bd9Sstevel@tonic-gate }
27277c478bd9Sstevel@tonic-gate 
27287c478bd9Sstevel@tonic-gate static map_info_t *
27297c478bd9Sstevel@tonic-gate object_name_to_map(struct ps_prochandle *P, Lmid_t lmid, const char *name)
27307c478bd9Sstevel@tonic-gate {
27317c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
27327c478bd9Sstevel@tonic-gate 
27337c478bd9Sstevel@tonic-gate 	if (!P->info_valid)
27347c478bd9Sstevel@tonic-gate 		Pupdate_maps(P);
27357c478bd9Sstevel@tonic-gate 
27367c478bd9Sstevel@tonic-gate 	if (P->map_exec == NULL && ((mptr = Paddr2mptr(P,
27377c478bd9Sstevel@tonic-gate 	    Pgetauxval(P, AT_ENTRY))) != NULL || (mptr = exec_map(P)) != NULL))
27387c478bd9Sstevel@tonic-gate 		P->map_exec = mptr;
27397c478bd9Sstevel@tonic-gate 
27407c478bd9Sstevel@tonic-gate 	if (P->map_ldso == NULL && (mptr = Paddr2mptr(P,
27417c478bd9Sstevel@tonic-gate 	    Pgetauxval(P, AT_BASE))) != NULL)
27427c478bd9Sstevel@tonic-gate 		P->map_ldso = mptr;
27437c478bd9Sstevel@tonic-gate 
27447c478bd9Sstevel@tonic-gate 	if (name == PR_OBJ_EXEC)
27457c478bd9Sstevel@tonic-gate 		mptr = P->map_exec;
27467c478bd9Sstevel@tonic-gate 	else if (name == PR_OBJ_LDSO)
27477c478bd9Sstevel@tonic-gate 		mptr = P->map_ldso;
2748*b45b146bSjhaslam 	else if (Prd_agent(P) != NULL || P->state == PS_IDLE)
27499acbbeafSnn35248 		mptr = object_to_map(P, lmid, name);
2750*b45b146bSjhaslam 	else
2751*b45b146bSjhaslam 		mptr = NULL;
27527c478bd9Sstevel@tonic-gate 
27537c478bd9Sstevel@tonic-gate 	return (mptr);
27547c478bd9Sstevel@tonic-gate }
27557c478bd9Sstevel@tonic-gate 
27567c478bd9Sstevel@tonic-gate /*
27577c478bd9Sstevel@tonic-gate  * When two symbols are found by address, decide which one is to be preferred.
27587c478bd9Sstevel@tonic-gate  */
27597c478bd9Sstevel@tonic-gate static GElf_Sym *
27607c478bd9Sstevel@tonic-gate sym_prefer(GElf_Sym *sym1, char *name1, GElf_Sym *sym2, char *name2)
27617c478bd9Sstevel@tonic-gate {
27627c478bd9Sstevel@tonic-gate 	/*
27637c478bd9Sstevel@tonic-gate 	 * Prefer the non-NULL symbol.
27647c478bd9Sstevel@tonic-gate 	 */
27657c478bd9Sstevel@tonic-gate 	if (sym1 == NULL)
27667c478bd9Sstevel@tonic-gate 		return (sym2);
27677c478bd9Sstevel@tonic-gate 	if (sym2 == NULL)
27687c478bd9Sstevel@tonic-gate 		return (sym1);
27697c478bd9Sstevel@tonic-gate 
27707c478bd9Sstevel@tonic-gate 	/*
27717c478bd9Sstevel@tonic-gate 	 * Defer to the sort ordering...
27727c478bd9Sstevel@tonic-gate 	 */
27737c478bd9Sstevel@tonic-gate 	return (byaddr_cmp_common(sym1, name1, sym2, name2) <= 0 ? sym1 : sym2);
27747c478bd9Sstevel@tonic-gate }
27757c478bd9Sstevel@tonic-gate 
27767c478bd9Sstevel@tonic-gate /*
27777c478bd9Sstevel@tonic-gate  * Look up a symbol by address in the specified symbol table.
27787c478bd9Sstevel@tonic-gate  * Adjustment to 'addr' must already have been made for the
27797c478bd9Sstevel@tonic-gate  * offset of the symbol if this is a dynamic library symbol table.
27807c478bd9Sstevel@tonic-gate  */
27817c478bd9Sstevel@tonic-gate static GElf_Sym *
27827c478bd9Sstevel@tonic-gate sym_by_addr(sym_tbl_t *symtab, GElf_Addr addr, GElf_Sym *symp, uint_t *idp)
27837c478bd9Sstevel@tonic-gate {
27847c478bd9Sstevel@tonic-gate 	Elf_Data *data = symtab->sym_data;
27857c478bd9Sstevel@tonic-gate 	GElf_Sym sym, osym;
27867c478bd9Sstevel@tonic-gate 	uint_t i, oid, *byaddr = symtab->sym_byaddr;
27877c478bd9Sstevel@tonic-gate 	int min, max, mid, omid, found = 0;
27887c478bd9Sstevel@tonic-gate 
27897c478bd9Sstevel@tonic-gate 	if (data == NULL)
27907c478bd9Sstevel@tonic-gate 		return (NULL);
27917c478bd9Sstevel@tonic-gate 
27927c478bd9Sstevel@tonic-gate 	min = 0;
27937c478bd9Sstevel@tonic-gate 	max = symtab->sym_count - 1;
27947c478bd9Sstevel@tonic-gate 	osym.st_value = 0;
27957c478bd9Sstevel@tonic-gate 
27967c478bd9Sstevel@tonic-gate 	/*
27977c478bd9Sstevel@tonic-gate 	 * We can't return when we've found a match, we have to continue
27987c478bd9Sstevel@tonic-gate 	 * searching for the closest matching symbol.
27997c478bd9Sstevel@tonic-gate 	 */
28007c478bd9Sstevel@tonic-gate 	while (min <= max) {
28017c478bd9Sstevel@tonic-gate 		mid = (max + min) / 2;
28027c478bd9Sstevel@tonic-gate 
28037c478bd9Sstevel@tonic-gate 		i = byaddr[mid];
28047c478bd9Sstevel@tonic-gate 		(void) gelf_getsym(data, i, &sym);
28057c478bd9Sstevel@tonic-gate 
28067c478bd9Sstevel@tonic-gate 		if (addr >= sym.st_value &&
28077c478bd9Sstevel@tonic-gate 		    addr < sym.st_value + sym.st_size &&
28087c478bd9Sstevel@tonic-gate 		    (!found || sym.st_value > osym.st_value)) {
28097c478bd9Sstevel@tonic-gate 			osym = sym;
28107c478bd9Sstevel@tonic-gate 			omid = mid;
28117c478bd9Sstevel@tonic-gate 			oid = i;
28127c478bd9Sstevel@tonic-gate 			found = 1;
28137c478bd9Sstevel@tonic-gate 		}
28147c478bd9Sstevel@tonic-gate 
28157c478bd9Sstevel@tonic-gate 		if (addr < sym.st_value)
28167c478bd9Sstevel@tonic-gate 			max = mid - 1;
28177c478bd9Sstevel@tonic-gate 		else
28187c478bd9Sstevel@tonic-gate 			min = mid + 1;
28197c478bd9Sstevel@tonic-gate 	}
28207c478bd9Sstevel@tonic-gate 
28217c478bd9Sstevel@tonic-gate 	if (!found)
28227c478bd9Sstevel@tonic-gate 		return (NULL);
28237c478bd9Sstevel@tonic-gate 
28247c478bd9Sstevel@tonic-gate 	/*
28257c478bd9Sstevel@tonic-gate 	 * There may be many symbols with identical values so we walk
28267c478bd9Sstevel@tonic-gate 	 * backward in the byaddr table to find the best match.
28277c478bd9Sstevel@tonic-gate 	 */
28287c478bd9Sstevel@tonic-gate 	do {
28297c478bd9Sstevel@tonic-gate 		sym = osym;
28307c478bd9Sstevel@tonic-gate 		i = oid;
28317c478bd9Sstevel@tonic-gate 
28327c478bd9Sstevel@tonic-gate 		if (omid == 0)
28337c478bd9Sstevel@tonic-gate 			break;
28347c478bd9Sstevel@tonic-gate 
28357c478bd9Sstevel@tonic-gate 		oid = byaddr[--omid];
28367c478bd9Sstevel@tonic-gate 		(void) gelf_getsym(data, oid, &osym);
28377c478bd9Sstevel@tonic-gate 	} while (addr >= osym.st_value &&
28387c478bd9Sstevel@tonic-gate 	    addr < sym.st_value + osym.st_size &&
28397c478bd9Sstevel@tonic-gate 	    osym.st_value == sym.st_value);
28407c478bd9Sstevel@tonic-gate 
28417c478bd9Sstevel@tonic-gate 	*symp = sym;
28427c478bd9Sstevel@tonic-gate 	if (idp != NULL)
28437c478bd9Sstevel@tonic-gate 		*idp = i;
28447c478bd9Sstevel@tonic-gate 	return (symp);
28457c478bd9Sstevel@tonic-gate }
28467c478bd9Sstevel@tonic-gate 
28477c478bd9Sstevel@tonic-gate /*
28487c478bd9Sstevel@tonic-gate  * Look up a symbol by name in the specified symbol table.
28497c478bd9Sstevel@tonic-gate  */
28507c478bd9Sstevel@tonic-gate static GElf_Sym *
28517c478bd9Sstevel@tonic-gate sym_by_name(sym_tbl_t *symtab, const char *name, GElf_Sym *symp, uint_t *idp)
28527c478bd9Sstevel@tonic-gate {
28537c478bd9Sstevel@tonic-gate 	Elf_Data *data = symtab->sym_data;
28547c478bd9Sstevel@tonic-gate 	char *strs = symtab->sym_strs;
28557c478bd9Sstevel@tonic-gate 	uint_t i, *byname = symtab->sym_byname;
28567c478bd9Sstevel@tonic-gate 	int min, mid, max, cmp;
28577c478bd9Sstevel@tonic-gate 
28587c478bd9Sstevel@tonic-gate 	if (data == NULL || strs == NULL)
28597c478bd9Sstevel@tonic-gate 		return (NULL);
28607c478bd9Sstevel@tonic-gate 
28617c478bd9Sstevel@tonic-gate 	min = 0;
28627c478bd9Sstevel@tonic-gate 	max = symtab->sym_count - 1;
28637c478bd9Sstevel@tonic-gate 
28647c478bd9Sstevel@tonic-gate 	while (min <= max) {
28657c478bd9Sstevel@tonic-gate 		mid = (max + min) / 2;
28667c478bd9Sstevel@tonic-gate 
28677c478bd9Sstevel@tonic-gate 		i = byname[mid];
28687c478bd9Sstevel@tonic-gate 		(void) gelf_getsym(data, i, symp);
28697c478bd9Sstevel@tonic-gate 
28707c478bd9Sstevel@tonic-gate 		if ((cmp = strcmp(name, strs + symp->st_name)) == 0) {
28717c478bd9Sstevel@tonic-gate 			if (idp != NULL)
28727c478bd9Sstevel@tonic-gate 				*idp = i;
28737c478bd9Sstevel@tonic-gate 			return (symp);
28747c478bd9Sstevel@tonic-gate 		}
28757c478bd9Sstevel@tonic-gate 
28767c478bd9Sstevel@tonic-gate 		if (cmp < 0)
28777c478bd9Sstevel@tonic-gate 			max = mid - 1;
28787c478bd9Sstevel@tonic-gate 		else
28797c478bd9Sstevel@tonic-gate 			min = mid + 1;
28807c478bd9Sstevel@tonic-gate 	}
28817c478bd9Sstevel@tonic-gate 
28827c478bd9Sstevel@tonic-gate 	return (NULL);
28837c478bd9Sstevel@tonic-gate }
28847c478bd9Sstevel@tonic-gate 
28857c478bd9Sstevel@tonic-gate /*
28867c478bd9Sstevel@tonic-gate  * Search the process symbol tables looking for a symbol whose
28877c478bd9Sstevel@tonic-gate  * value to value+size contain the address specified by addr.
28887c478bd9Sstevel@tonic-gate  * Return values are:
28897c478bd9Sstevel@tonic-gate  *	sym_name_buffer containing the symbol name
28907c478bd9Sstevel@tonic-gate  *	GElf_Sym symbol table entry
28917c478bd9Sstevel@tonic-gate  *	prsyminfo_t ancillary symbol information
28927c478bd9Sstevel@tonic-gate  * Returns 0 on success, -1 on failure.
28937c478bd9Sstevel@tonic-gate  */
28947c478bd9Sstevel@tonic-gate int
28957c478bd9Sstevel@tonic-gate Pxlookup_by_addr(
28967c478bd9Sstevel@tonic-gate 	struct ps_prochandle *P,
28977c478bd9Sstevel@tonic-gate 	uintptr_t addr,			/* process address being sought */
28987c478bd9Sstevel@tonic-gate 	char *sym_name_buffer,		/* buffer for the symbol name */
28997c478bd9Sstevel@tonic-gate 	size_t bufsize,			/* size of sym_name_buffer */
29007c478bd9Sstevel@tonic-gate 	GElf_Sym *symbolp,		/* returned symbol table entry */
29017c478bd9Sstevel@tonic-gate 	prsyminfo_t *sip)		/* returned symbol info */
29027c478bd9Sstevel@tonic-gate {
29037c478bd9Sstevel@tonic-gate 	GElf_Sym	*symp;
29047c478bd9Sstevel@tonic-gate 	char		*name;
29057c478bd9Sstevel@tonic-gate 	GElf_Sym	sym1, *sym1p = NULL;
29067c478bd9Sstevel@tonic-gate 	GElf_Sym	sym2, *sym2p = NULL;
29077c478bd9Sstevel@tonic-gate 	char		*name1 = NULL;
29087c478bd9Sstevel@tonic-gate 	char		*name2 = NULL;
29097c478bd9Sstevel@tonic-gate 	uint_t		i1;
29107c478bd9Sstevel@tonic-gate 	uint_t		i2;
29117c478bd9Sstevel@tonic-gate 	map_info_t	*mptr;
29127c478bd9Sstevel@tonic-gate 	file_info_t	*fptr;
29137c478bd9Sstevel@tonic-gate 
29147c478bd9Sstevel@tonic-gate 	(void) Prd_agent(P);
29157c478bd9Sstevel@tonic-gate 
29167c478bd9Sstevel@tonic-gate 	if ((mptr = Paddr2mptr(P, addr)) == NULL ||	/* no such address */
29177c478bd9Sstevel@tonic-gate 	    (fptr = build_map_symtab(P, mptr)) == NULL || /* no mapped file */
29187c478bd9Sstevel@tonic-gate 	    fptr->file_elf == NULL)			/* not an ELF file */
29197c478bd9Sstevel@tonic-gate 		return (-1);
29207c478bd9Sstevel@tonic-gate 
29217c478bd9Sstevel@tonic-gate 	/*
29227c478bd9Sstevel@tonic-gate 	 * Adjust the address by the load object base address in
29237c478bd9Sstevel@tonic-gate 	 * case the address turns out to be in a shared library.
29247c478bd9Sstevel@tonic-gate 	 */
29257c478bd9Sstevel@tonic-gate 	addr -= fptr->file_dyn_base;
29267c478bd9Sstevel@tonic-gate 
29277c478bd9Sstevel@tonic-gate 	/*
29287c478bd9Sstevel@tonic-gate 	 * Search both symbol tables, symtab first, then dynsym.
29297c478bd9Sstevel@tonic-gate 	 */
29307c478bd9Sstevel@tonic-gate 	if ((sym1p = sym_by_addr(&fptr->file_symtab, addr, &sym1, &i1)) != NULL)
29317c478bd9Sstevel@tonic-gate 		name1 = fptr->file_symtab.sym_strs + sym1.st_name;
29327c478bd9Sstevel@tonic-gate 	if ((sym2p = sym_by_addr(&fptr->file_dynsym, addr, &sym2, &i2)) != NULL)
29337c478bd9Sstevel@tonic-gate 		name2 = fptr->file_dynsym.sym_strs + sym2.st_name;
29347c478bd9Sstevel@tonic-gate 
29357c478bd9Sstevel@tonic-gate 	if ((symp = sym_prefer(sym1p, name1, sym2p, name2)) == NULL)
29367c478bd9Sstevel@tonic-gate 		return (-1);
29377c478bd9Sstevel@tonic-gate 
29387c478bd9Sstevel@tonic-gate 	name = (symp == sym1p) ? name1 : name2;
29397c478bd9Sstevel@tonic-gate 	if (bufsize > 0) {
29407c478bd9Sstevel@tonic-gate 		(void) strncpy(sym_name_buffer, name, bufsize);
29417c478bd9Sstevel@tonic-gate 		sym_name_buffer[bufsize - 1] = '\0';
29427c478bd9Sstevel@tonic-gate 	}
29437c478bd9Sstevel@tonic-gate 
29447c478bd9Sstevel@tonic-gate 	*symbolp = *symp;
29457c478bd9Sstevel@tonic-gate 	if (sip != NULL) {
29467c478bd9Sstevel@tonic-gate 		sip->prs_name = bufsize == 0 ? NULL : sym_name_buffer;
29477c478bd9Sstevel@tonic-gate 		sip->prs_object = fptr->file_lbase;
29487c478bd9Sstevel@tonic-gate 		sip->prs_id = (symp == sym1p) ? i1 : i2;
29497c478bd9Sstevel@tonic-gate 		sip->prs_table = (symp == sym1p) ? PR_SYMTAB : PR_DYNSYM;
29507c478bd9Sstevel@tonic-gate 		sip->prs_lmid = (fptr->file_lo == NULL) ? LM_ID_BASE :
29517c478bd9Sstevel@tonic-gate 		    fptr->file_lo->rl_lmident;
29527c478bd9Sstevel@tonic-gate 	}
29537c478bd9Sstevel@tonic-gate 
29547c478bd9Sstevel@tonic-gate 	if (GELF_ST_TYPE(symbolp->st_info) != STT_TLS)
29557c478bd9Sstevel@tonic-gate 		symbolp->st_value += fptr->file_dyn_base;
29567c478bd9Sstevel@tonic-gate 
29577c478bd9Sstevel@tonic-gate 	return (0);
29587c478bd9Sstevel@tonic-gate }
29597c478bd9Sstevel@tonic-gate 
29607c478bd9Sstevel@tonic-gate int
29617c478bd9Sstevel@tonic-gate Plookup_by_addr(struct ps_prochandle *P, uintptr_t addr, char *buf, size_t size,
29627c478bd9Sstevel@tonic-gate     GElf_Sym *symp)
29637c478bd9Sstevel@tonic-gate {
29647c478bd9Sstevel@tonic-gate 	return (Pxlookup_by_addr(P, addr, buf, size, symp, NULL));
29657c478bd9Sstevel@tonic-gate }
29667c478bd9Sstevel@tonic-gate 
29677c478bd9Sstevel@tonic-gate /*
29687c478bd9Sstevel@tonic-gate  * Search the process symbol tables looking for a symbol whose name matches the
29697c478bd9Sstevel@tonic-gate  * specified name and whose object and link map optionally match the specified
29707c478bd9Sstevel@tonic-gate  * parameters.  On success, the function returns 0 and fills in the GElf_Sym
29717c478bd9Sstevel@tonic-gate  * symbol table entry.  On failure, -1 is returned.
29727c478bd9Sstevel@tonic-gate  */
29737c478bd9Sstevel@tonic-gate int
29747c478bd9Sstevel@tonic-gate Pxlookup_by_name(
29757c478bd9Sstevel@tonic-gate 	struct ps_prochandle *P,
29767c478bd9Sstevel@tonic-gate 	Lmid_t lmid,			/* link map to match, or -1 for any */
29777c478bd9Sstevel@tonic-gate 	const char *oname,		/* load object name */
29787c478bd9Sstevel@tonic-gate 	const char *sname,		/* symbol name */
29797c478bd9Sstevel@tonic-gate 	GElf_Sym *symp,			/* returned symbol table entry */
29807c478bd9Sstevel@tonic-gate 	prsyminfo_t *sip)		/* returned symbol info */
29817c478bd9Sstevel@tonic-gate {
29827c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
29837c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
29847c478bd9Sstevel@tonic-gate 	int cnt;
29857c478bd9Sstevel@tonic-gate 
29867c478bd9Sstevel@tonic-gate 	GElf_Sym sym;
29877c478bd9Sstevel@tonic-gate 	prsyminfo_t si;
29887c478bd9Sstevel@tonic-gate 	int rv = -1;
29897c478bd9Sstevel@tonic-gate 	uint_t id;
29907c478bd9Sstevel@tonic-gate 
29917c478bd9Sstevel@tonic-gate 	if (oname == PR_OBJ_EVERY) {
29927c478bd9Sstevel@tonic-gate 		/* create all the file_info_t's for all the mappings */
29937c478bd9Sstevel@tonic-gate 		(void) Prd_agent(P);
29947c478bd9Sstevel@tonic-gate 		cnt = P->num_files;
29957c478bd9Sstevel@tonic-gate 		fptr = list_next(&P->file_head);
29967c478bd9Sstevel@tonic-gate 	} else {
29977c478bd9Sstevel@tonic-gate 		cnt = 1;
29987c478bd9Sstevel@tonic-gate 		if ((mptr = object_name_to_map(P, lmid, oname)) == NULL ||
29997c478bd9Sstevel@tonic-gate 		    (fptr = build_map_symtab(P, mptr)) == NULL)
30007c478bd9Sstevel@tonic-gate 			return (-1);
30017c478bd9Sstevel@tonic-gate 	}
30027c478bd9Sstevel@tonic-gate 
30037c478bd9Sstevel@tonic-gate 	/*
30047c478bd9Sstevel@tonic-gate 	 * Iterate through the loaded object files and look for the symbol
30057c478bd9Sstevel@tonic-gate 	 * name in the .symtab and .dynsym of each.  If we encounter a match
30067c478bd9Sstevel@tonic-gate 	 * with SHN_UNDEF, keep looking in hopes of finding a better match.
30077c478bd9Sstevel@tonic-gate 	 * This means that a name such as "puts" will match the puts function
30087c478bd9Sstevel@tonic-gate 	 * in libc instead of matching the puts PLT entry in the a.out file.
30097c478bd9Sstevel@tonic-gate 	 */
30107c478bd9Sstevel@tonic-gate 	for (; cnt > 0; cnt--, fptr = list_next(fptr)) {
30117c478bd9Sstevel@tonic-gate 		Pbuild_file_symtab(P, fptr);
30127c478bd9Sstevel@tonic-gate 
30137c478bd9Sstevel@tonic-gate 		if (fptr->file_elf == NULL)
30147c478bd9Sstevel@tonic-gate 			continue;
30157c478bd9Sstevel@tonic-gate 
30167c478bd9Sstevel@tonic-gate 		if (lmid != PR_LMID_EVERY && fptr->file_lo != NULL &&
30177c478bd9Sstevel@tonic-gate 		    lmid != fptr->file_lo->rl_lmident)
30187c478bd9Sstevel@tonic-gate 			continue;
30197c478bd9Sstevel@tonic-gate 
30207c478bd9Sstevel@tonic-gate 		if (fptr->file_symtab.sym_data != NULL &&
30217c478bd9Sstevel@tonic-gate 		    sym_by_name(&fptr->file_symtab, sname, symp, &id)) {
30227c478bd9Sstevel@tonic-gate 			if (sip != NULL) {
30237c478bd9Sstevel@tonic-gate 				sip->prs_id = id;
30247c478bd9Sstevel@tonic-gate 				sip->prs_table = PR_SYMTAB;
30257c478bd9Sstevel@tonic-gate 				sip->prs_object = oname;
30267c478bd9Sstevel@tonic-gate 				sip->prs_name = sname;
30277c478bd9Sstevel@tonic-gate 				sip->prs_lmid = fptr->file_lo == NULL ?
30287c478bd9Sstevel@tonic-gate 				    LM_ID_BASE : fptr->file_lo->rl_lmident;
30297c478bd9Sstevel@tonic-gate 			}
30307c478bd9Sstevel@tonic-gate 		} else if (fptr->file_dynsym.sym_data != NULL &&
30317c478bd9Sstevel@tonic-gate 		    sym_by_name(&fptr->file_dynsym, sname, symp, &id)) {
30327c478bd9Sstevel@tonic-gate 			if (sip != NULL) {
30337c478bd9Sstevel@tonic-gate 				sip->prs_id = id;
30347c478bd9Sstevel@tonic-gate 				sip->prs_table = PR_DYNSYM;
30357c478bd9Sstevel@tonic-gate 				sip->prs_object = oname;
30367c478bd9Sstevel@tonic-gate 				sip->prs_name = sname;
30377c478bd9Sstevel@tonic-gate 				sip->prs_lmid = fptr->file_lo == NULL ?
30387c478bd9Sstevel@tonic-gate 				    LM_ID_BASE : fptr->file_lo->rl_lmident;
30397c478bd9Sstevel@tonic-gate 			}
30407c478bd9Sstevel@tonic-gate 		} else {
30417c478bd9Sstevel@tonic-gate 			continue;
30427c478bd9Sstevel@tonic-gate 		}
30437c478bd9Sstevel@tonic-gate 
30447c478bd9Sstevel@tonic-gate 		if (GELF_ST_TYPE(symp->st_info) != STT_TLS)
30457c478bd9Sstevel@tonic-gate 			symp->st_value += fptr->file_dyn_base;
30467c478bd9Sstevel@tonic-gate 
30477c478bd9Sstevel@tonic-gate 		if (symp->st_shndx != SHN_UNDEF)
30487c478bd9Sstevel@tonic-gate 			return (0);
30497c478bd9Sstevel@tonic-gate 
30507c478bd9Sstevel@tonic-gate 		if (rv != 0) {
30517c478bd9Sstevel@tonic-gate 			if (sip != NULL)
30527c478bd9Sstevel@tonic-gate 				si = *sip;
30537c478bd9Sstevel@tonic-gate 			sym = *symp;
30547c478bd9Sstevel@tonic-gate 			rv = 0;
30557c478bd9Sstevel@tonic-gate 		}
30567c478bd9Sstevel@tonic-gate 	}
30577c478bd9Sstevel@tonic-gate 
30587c478bd9Sstevel@tonic-gate 	if (rv == 0) {
30597c478bd9Sstevel@tonic-gate 		if (sip != NULL)
30607c478bd9Sstevel@tonic-gate 			*sip = si;
30617c478bd9Sstevel@tonic-gate 		*symp = sym;
30627c478bd9Sstevel@tonic-gate 	}
30637c478bd9Sstevel@tonic-gate 
30647c478bd9Sstevel@tonic-gate 	return (rv);
30657c478bd9Sstevel@tonic-gate }
30667c478bd9Sstevel@tonic-gate 
30677c478bd9Sstevel@tonic-gate /*
30687c478bd9Sstevel@tonic-gate  * Search the process symbol tables looking for a symbol whose name matches the
30697c478bd9Sstevel@tonic-gate  * specified name, but without any restriction on the link map id.
30707c478bd9Sstevel@tonic-gate  */
30717c478bd9Sstevel@tonic-gate int
30727c478bd9Sstevel@tonic-gate Plookup_by_name(struct ps_prochandle *P, const char *object,
30737c478bd9Sstevel@tonic-gate 	const char *symbol, GElf_Sym *symp)
30747c478bd9Sstevel@tonic-gate {
30757c478bd9Sstevel@tonic-gate 	return (Pxlookup_by_name(P, PR_LMID_EVERY, object, symbol, symp, NULL));
30767c478bd9Sstevel@tonic-gate }
30777c478bd9Sstevel@tonic-gate 
30787c478bd9Sstevel@tonic-gate /*
30797c478bd9Sstevel@tonic-gate  * Iterate over the process's address space mappings.
30807c478bd9Sstevel@tonic-gate  */
30817c478bd9Sstevel@tonic-gate int
30827c478bd9Sstevel@tonic-gate Pmapping_iter(struct ps_prochandle *P, proc_map_f *func, void *cd)
30837c478bd9Sstevel@tonic-gate {
30847c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
30857c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
30867c478bd9Sstevel@tonic-gate 	char *object_name;
30877c478bd9Sstevel@tonic-gate 	int rc = 0;
30887c478bd9Sstevel@tonic-gate 	int i;
30897c478bd9Sstevel@tonic-gate 
30907c478bd9Sstevel@tonic-gate 	/* create all the file_info_t's for all the mappings */
30917c478bd9Sstevel@tonic-gate 	(void) Prd_agent(P);
30927c478bd9Sstevel@tonic-gate 
30937c478bd9Sstevel@tonic-gate 	for (i = 0, mptr = P->mappings; i < P->map_count; i++, mptr++) {
30947c478bd9Sstevel@tonic-gate 		if ((fptr = mptr->map_file) == NULL)
30957c478bd9Sstevel@tonic-gate 			object_name = NULL;
30967c478bd9Sstevel@tonic-gate 		else
30977c478bd9Sstevel@tonic-gate 			object_name = fptr->file_lname;
30987c478bd9Sstevel@tonic-gate 		if ((rc = func(cd, &mptr->map_pmap, object_name)) != 0)
30997c478bd9Sstevel@tonic-gate 			return (rc);
31007c478bd9Sstevel@tonic-gate 	}
31017c478bd9Sstevel@tonic-gate 	return (0);
31027c478bd9Sstevel@tonic-gate }
31037c478bd9Sstevel@tonic-gate 
31047c478bd9Sstevel@tonic-gate /*
31057c478bd9Sstevel@tonic-gate  * Iterate over the process's mapped objects.
31067c478bd9Sstevel@tonic-gate  */
31077c478bd9Sstevel@tonic-gate int
31087c478bd9Sstevel@tonic-gate Pobject_iter(struct ps_prochandle *P, proc_map_f *func, void *cd)
31097c478bd9Sstevel@tonic-gate {
31107c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
31117c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
31127c478bd9Sstevel@tonic-gate 	uint_t cnt;
31137c478bd9Sstevel@tonic-gate 	int rc = 0;
31147c478bd9Sstevel@tonic-gate 
31157c478bd9Sstevel@tonic-gate 	(void) Prd_agent(P); /* create file_info_t's for all the mappings */
31167c478bd9Sstevel@tonic-gate 	Pupdate_maps(P);
31177c478bd9Sstevel@tonic-gate 
31187c478bd9Sstevel@tonic-gate 	for (cnt = P->num_files, fptr = list_next(&P->file_head);
31197c478bd9Sstevel@tonic-gate 	    cnt; cnt--, fptr = list_next(fptr)) {
31207c478bd9Sstevel@tonic-gate 
31217c478bd9Sstevel@tonic-gate 		const char *lname = fptr->file_lname ? fptr->file_lname : "";
31227c478bd9Sstevel@tonic-gate 
31237c478bd9Sstevel@tonic-gate 		if ((mptr = fptr->file_map) == NULL)
31247c478bd9Sstevel@tonic-gate 			continue;
31257c478bd9Sstevel@tonic-gate 
31267c478bd9Sstevel@tonic-gate 		if ((rc = func(cd, &mptr->map_pmap, lname)) != 0)
31277c478bd9Sstevel@tonic-gate 			return (rc);
31287c478bd9Sstevel@tonic-gate 	}
31297c478bd9Sstevel@tonic-gate 	return (0);
31307c478bd9Sstevel@tonic-gate }
31317c478bd9Sstevel@tonic-gate 
31327c478bd9Sstevel@tonic-gate /*
31337c478bd9Sstevel@tonic-gate  * Given a virtual address, return the name of the underlying
31347c478bd9Sstevel@tonic-gate  * mapped object (file), as provided by the dynamic linker.
31357c478bd9Sstevel@tonic-gate  * Return NULL on failure (no underlying shared library).
31367c478bd9Sstevel@tonic-gate  */
31377c478bd9Sstevel@tonic-gate char *
31387c478bd9Sstevel@tonic-gate Pobjname(struct ps_prochandle *P, uintptr_t addr,
31397c478bd9Sstevel@tonic-gate 	char *buffer, size_t bufsize)
31407c478bd9Sstevel@tonic-gate {
31417c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
31427c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
31437c478bd9Sstevel@tonic-gate 
31447c478bd9Sstevel@tonic-gate 	/* create all the file_info_t's for all the mappings */
31457c478bd9Sstevel@tonic-gate 	(void) Prd_agent(P);
31467c478bd9Sstevel@tonic-gate 
31477c478bd9Sstevel@tonic-gate 	if ((mptr = Paddr2mptr(P, addr)) != NULL &&
31487c478bd9Sstevel@tonic-gate 	    (fptr = mptr->map_file) != NULL &&
31497c478bd9Sstevel@tonic-gate 	    fptr->file_lname != NULL) {
31507c478bd9Sstevel@tonic-gate 		(void) strncpy(buffer, fptr->file_lname, bufsize);
31517c478bd9Sstevel@tonic-gate 		if (strlen(fptr->file_lname) >= bufsize)
31527c478bd9Sstevel@tonic-gate 			buffer[bufsize-1] = '\0';
31537c478bd9Sstevel@tonic-gate 		return (buffer);
31547c478bd9Sstevel@tonic-gate 	}
31557c478bd9Sstevel@tonic-gate 	return (NULL);
31567c478bd9Sstevel@tonic-gate }
31577c478bd9Sstevel@tonic-gate 
31587c478bd9Sstevel@tonic-gate /*
31597c478bd9Sstevel@tonic-gate  * Given a virtual address, return the link map id of the underlying mapped
31607c478bd9Sstevel@tonic-gate  * object (file), as provided by the dynamic linker.  Return -1 on failure.
31617c478bd9Sstevel@tonic-gate  */
31627c478bd9Sstevel@tonic-gate int
31637c478bd9Sstevel@tonic-gate Plmid(struct ps_prochandle *P, uintptr_t addr, Lmid_t *lmidp)
31647c478bd9Sstevel@tonic-gate {
31657c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
31667c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
31677c478bd9Sstevel@tonic-gate 
31687c478bd9Sstevel@tonic-gate 	/* create all the file_info_t's for all the mappings */
31697c478bd9Sstevel@tonic-gate 	(void) Prd_agent(P);
31707c478bd9Sstevel@tonic-gate 
31717c478bd9Sstevel@tonic-gate 	if ((mptr = Paddr2mptr(P, addr)) != NULL &&
31727c478bd9Sstevel@tonic-gate 	    (fptr = mptr->map_file) != NULL && fptr->file_lo != NULL) {
31737c478bd9Sstevel@tonic-gate 		*lmidp = fptr->file_lo->rl_lmident;
31747c478bd9Sstevel@tonic-gate 		return (0);
31757c478bd9Sstevel@tonic-gate 	}
31767c478bd9Sstevel@tonic-gate 
31777c478bd9Sstevel@tonic-gate 	return (-1);
31787c478bd9Sstevel@tonic-gate }
31797c478bd9Sstevel@tonic-gate 
31807c478bd9Sstevel@tonic-gate /*
31817c478bd9Sstevel@tonic-gate  * Given an object name and optional lmid, iterate over the object's symbols.
31827c478bd9Sstevel@tonic-gate  * If which == PR_SYMTAB, search the normal symbol table.
31837c478bd9Sstevel@tonic-gate  * If which == PR_DYNSYM, search the dynamic symbol table.
31847c478bd9Sstevel@tonic-gate  */
31857c478bd9Sstevel@tonic-gate static int
31867c478bd9Sstevel@tonic-gate Psymbol_iter_com(struct ps_prochandle *P, Lmid_t lmid, const char *object_name,
31877c478bd9Sstevel@tonic-gate     int which, int mask, pr_order_t order, proc_xsym_f *func, void *cd)
31887c478bd9Sstevel@tonic-gate {
31897c478bd9Sstevel@tonic-gate 	GElf_Sym sym;
3190f957ecc1Svb160487 	GElf_Shdr shdr;
31917c478bd9Sstevel@tonic-gate 	map_info_t *mptr;
31927c478bd9Sstevel@tonic-gate 	file_info_t *fptr;
31937c478bd9Sstevel@tonic-gate 	sym_tbl_t *symtab;
31947c478bd9Sstevel@tonic-gate 	Elf_Data *data;
31957c478bd9Sstevel@tonic-gate 	size_t symn;
31967c478bd9Sstevel@tonic-gate 	const char *strs;
31977c478bd9Sstevel@tonic-gate 	size_t strsz;
31987c478bd9Sstevel@tonic-gate 	prsyminfo_t si;
31997c478bd9Sstevel@tonic-gate 	int rv;
32007c478bd9Sstevel@tonic-gate 	uint_t *map, i, count, ndx;
32017c478bd9Sstevel@tonic-gate 
32027c478bd9Sstevel@tonic-gate 	if ((mptr = object_name_to_map(P, lmid, object_name)) == NULL)
32037c478bd9Sstevel@tonic-gate 		return (-1);
32047c478bd9Sstevel@tonic-gate 
32057c478bd9Sstevel@tonic-gate 	if ((fptr = build_map_symtab(P, mptr)) == NULL || /* no mapped file */
32067c478bd9Sstevel@tonic-gate 	    fptr->file_elf == NULL)			/* not an ELF file */
32077c478bd9Sstevel@tonic-gate 		return (-1);
32087c478bd9Sstevel@tonic-gate 
32097c478bd9Sstevel@tonic-gate 	/*
32107c478bd9Sstevel@tonic-gate 	 * Search the specified symbol table.
32117c478bd9Sstevel@tonic-gate 	 */
32127c478bd9Sstevel@tonic-gate 	switch (which) {
32137c478bd9Sstevel@tonic-gate 	case PR_SYMTAB:
32147c478bd9Sstevel@tonic-gate 		symtab = &fptr->file_symtab;
32157c478bd9Sstevel@tonic-gate 		si.prs_table = PR_SYMTAB;
32167c478bd9Sstevel@tonic-gate 		break;
32177c478bd9Sstevel@tonic-gate 	case PR_DYNSYM:
32187c478bd9Sstevel@tonic-gate 		symtab = &fptr->file_dynsym;
32197c478bd9Sstevel@tonic-gate 		si.prs_table = PR_DYNSYM;
32207c478bd9Sstevel@tonic-gate 		break;
32217c478bd9Sstevel@tonic-gate 	default:
32227c478bd9Sstevel@tonic-gate 		return (-1);
32237c478bd9Sstevel@tonic-gate 	}
32247c478bd9Sstevel@tonic-gate 
32257c478bd9Sstevel@tonic-gate 	si.prs_object = object_name;
32267c478bd9Sstevel@tonic-gate 	si.prs_lmid = fptr->file_lo == NULL ?
32277c478bd9Sstevel@tonic-gate 	    LM_ID_BASE : fptr->file_lo->rl_lmident;
32287c478bd9Sstevel@tonic-gate 
32297c478bd9Sstevel@tonic-gate 	data = symtab->sym_data;
32307c478bd9Sstevel@tonic-gate 	symn = symtab->sym_symn;
32317c478bd9Sstevel@tonic-gate 	strs = symtab->sym_strs;
32327c478bd9Sstevel@tonic-gate 	strsz = symtab->sym_strsz;
32337c478bd9Sstevel@tonic-gate 
32347c478bd9Sstevel@tonic-gate 	if (data == NULL || strs == NULL)
32357c478bd9Sstevel@tonic-gate 		return (-1);
32367c478bd9Sstevel@tonic-gate 
32377c478bd9Sstevel@tonic-gate 	switch (order) {
32387c478bd9Sstevel@tonic-gate 	case PRO_NATURAL:
32397c478bd9Sstevel@tonic-gate 		map = NULL;
32407c478bd9Sstevel@tonic-gate 		count = symn;
32417c478bd9Sstevel@tonic-gate 		break;
32427c478bd9Sstevel@tonic-gate 	case PRO_BYNAME:
32437c478bd9Sstevel@tonic-gate 		map = symtab->sym_byname;
32447c478bd9Sstevel@tonic-gate 		count = symtab->sym_count;
32457c478bd9Sstevel@tonic-gate 		break;
32467c478bd9Sstevel@tonic-gate 	case PRO_BYADDR:
32477c478bd9Sstevel@tonic-gate 		map = symtab->sym_byaddr;
32487c478bd9Sstevel@tonic-gate 		count = symtab->sym_count;
32497c478bd9Sstevel@tonic-gate 		break;
32507c478bd9Sstevel@tonic-gate 	default:
32517c478bd9Sstevel@tonic-gate 		return (-1);
32527c478bd9Sstevel@tonic-gate 	}
32537c478bd9Sstevel@tonic-gate 
32547c478bd9Sstevel@tonic-gate 	rv = 0;
32557c478bd9Sstevel@tonic-gate 
32567c478bd9Sstevel@tonic-gate 	for (i = 0; i < count; i++) {
32577c478bd9Sstevel@tonic-gate 		ndx = map == NULL ? i : map[i];
32587c478bd9Sstevel@tonic-gate 		if (gelf_getsym(data, ndx, &sym) != NULL) {
32597c478bd9Sstevel@tonic-gate 			uint_t s_bind, s_type, type;
32607c478bd9Sstevel@tonic-gate 
32617c478bd9Sstevel@tonic-gate 			if (sym.st_name >= strsz)	/* invalid st_name */
32627c478bd9Sstevel@tonic-gate 				continue;
32637c478bd9Sstevel@tonic-gate 
32647c478bd9Sstevel@tonic-gate 			s_bind = GELF_ST_BIND(sym.st_info);
32657c478bd9Sstevel@tonic-gate 			s_type = GELF_ST_TYPE(sym.st_info);
32667c478bd9Sstevel@tonic-gate 
32677c478bd9Sstevel@tonic-gate 			/*
32687c478bd9Sstevel@tonic-gate 			 * In case you haven't already guessed, this relies on
32697c478bd9Sstevel@tonic-gate 			 * the bitmask used in <libproc.h> for encoding symbol
32707c478bd9Sstevel@tonic-gate 			 * type and binding matching the order of STB and STT
32717c478bd9Sstevel@tonic-gate 			 * constants in <sys/elf.h>.  ELF can't change without
32727c478bd9Sstevel@tonic-gate 			 * breaking binary compatibility, so I think this is
32737c478bd9Sstevel@tonic-gate 			 * reasonably fair game.
32747c478bd9Sstevel@tonic-gate 			 */
32757c478bd9Sstevel@tonic-gate 			if (s_bind < STB_NUM && s_type < STT_NUM) {
32767c478bd9Sstevel@tonic-gate 				type = (1 << (s_type + 8)) | (1 << s_bind);
32777c478bd9Sstevel@tonic-gate 				if ((type & ~mask) != 0)
32787c478bd9Sstevel@tonic-gate 					continue;
32797c478bd9Sstevel@tonic-gate 			} else
32807c478bd9Sstevel@tonic-gate 				continue; /* Invalid type or binding */
32817c478bd9Sstevel@tonic-gate 
32827c478bd9Sstevel@tonic-gate 			if (GELF_ST_TYPE(sym.st_info) != STT_TLS)
32837c478bd9Sstevel@tonic-gate 				sym.st_value += fptr->file_dyn_base;
32847c478bd9Sstevel@tonic-gate 
32857c478bd9Sstevel@tonic-gate 			si.prs_name = strs + sym.st_name;
3286f957ecc1Svb160487 
3287f957ecc1Svb160487 			/*
3288f957ecc1Svb160487 			 * If symbol's type is STT_SECTION, then try to lookup
3289f957ecc1Svb160487 			 * the name of the corresponding section.
3290f957ecc1Svb160487 			 */
3291f957ecc1Svb160487 			if (GELF_ST_TYPE(sym.st_info) == STT_SECTION &&
3292f957ecc1Svb160487 			    fptr->file_shstrs != NULL &&
3293f957ecc1Svb160487 			    gelf_getshdr(elf_getscn(fptr->file_elf,
3294f957ecc1Svb160487 			    sym.st_shndx), &shdr) != NULL &&
3295f957ecc1Svb160487 			    shdr.sh_name != 0 &&
3296f957ecc1Svb160487 			    shdr.sh_name < fptr->file_shstrsz)
3297f957ecc1Svb160487 				si.prs_name = fptr->file_shstrs + shdr.sh_name;
3298f957ecc1Svb160487 
32997c478bd9Sstevel@tonic-gate 			si.prs_id = ndx;
3300f957ecc1Svb160487 			if ((rv = func(cd, &sym, si.prs_name, &si)) != 0)
33017c478bd9Sstevel@tonic-gate 				break;
33027c478bd9Sstevel@tonic-gate 		}
33037c478bd9Sstevel@tonic-gate 	}
33047c478bd9Sstevel@tonic-gate 
33057c478bd9Sstevel@tonic-gate 	return (rv);
33067c478bd9Sstevel@tonic-gate }
33077c478bd9Sstevel@tonic-gate 
33087c478bd9Sstevel@tonic-gate int
33097c478bd9Sstevel@tonic-gate Pxsymbol_iter(struct ps_prochandle *P, Lmid_t lmid, const char *object_name,
33107c478bd9Sstevel@tonic-gate     int which, int mask, proc_xsym_f *func, void *cd)
33117c478bd9Sstevel@tonic-gate {
33127c478bd9Sstevel@tonic-gate 	return (Psymbol_iter_com(P, lmid, object_name, which, mask,
33137c478bd9Sstevel@tonic-gate 	    PRO_NATURAL, func, cd));
33147c478bd9Sstevel@tonic-gate }
33157c478bd9Sstevel@tonic-gate 
33167c478bd9Sstevel@tonic-gate int
33177c478bd9Sstevel@tonic-gate Psymbol_iter_by_lmid(struct ps_prochandle *P, Lmid_t lmid,
33187c478bd9Sstevel@tonic-gate     const char *object_name, int which, int mask, proc_sym_f *func, void *cd)
33197c478bd9Sstevel@tonic-gate {
33207c478bd9Sstevel@tonic-gate 	return (Psymbol_iter_com(P, lmid, object_name, which, mask,
33217c478bd9Sstevel@tonic-gate 	    PRO_NATURAL, (proc_xsym_f *)func, cd));
33227c478bd9Sstevel@tonic-gate }
33237c478bd9Sstevel@tonic-gate 
33247c478bd9Sstevel@tonic-gate int
33257c478bd9Sstevel@tonic-gate Psymbol_iter(struct ps_prochandle *P,
33267c478bd9Sstevel@tonic-gate     const char *object_name, int which, int mask, proc_sym_f *func, void *cd)
33277c478bd9Sstevel@tonic-gate {
33287c478bd9Sstevel@tonic-gate 	return (Psymbol_iter_com(P, PR_LMID_EVERY, object_name, which, mask,
33297c478bd9Sstevel@tonic-gate 	    PRO_NATURAL, (proc_xsym_f *)func, cd));
33307c478bd9Sstevel@tonic-gate }
33317c478bd9Sstevel@tonic-gate 
33327c478bd9Sstevel@tonic-gate int
33337c478bd9Sstevel@tonic-gate Psymbol_iter_by_addr(struct ps_prochandle *P,
33347c478bd9Sstevel@tonic-gate     const char *object_name, int which, int mask, proc_sym_f *func, void *cd)
33357c478bd9Sstevel@tonic-gate {
33367c478bd9Sstevel@tonic-gate 	return (Psymbol_iter_com(P, PR_LMID_EVERY, object_name, which, mask,
33377c478bd9Sstevel@tonic-gate 	    PRO_BYADDR, (proc_xsym_f *)func, cd));
33387c478bd9Sstevel@tonic-gate }
33397c478bd9Sstevel@tonic-gate 
33407c478bd9Sstevel@tonic-gate int
33417c478bd9Sstevel@tonic-gate Psymbol_iter_by_name(struct ps_prochandle *P,
33427c478bd9Sstevel@tonic-gate     const char *object_name, int which, int mask, proc_sym_f *func, void *cd)
33437c478bd9Sstevel@tonic-gate {
33447c478bd9Sstevel@tonic-gate 	return (Psymbol_iter_com(P, PR_LMID_EVERY, object_name, which, mask,
33457c478bd9Sstevel@tonic-gate 	    PRO_BYNAME, (proc_xsym_f *)func, cd));
33467c478bd9Sstevel@tonic-gate }
33477c478bd9Sstevel@tonic-gate 
33487c478bd9Sstevel@tonic-gate /*
33497c478bd9Sstevel@tonic-gate  * Get the platform string from the core file if we have it;
33507c478bd9Sstevel@tonic-gate  * just perform the system call for the caller if this is a live process.
33517c478bd9Sstevel@tonic-gate  */
33527c478bd9Sstevel@tonic-gate char *
33537c478bd9Sstevel@tonic-gate Pplatform(struct ps_prochandle *P, char *s, size_t n)
33547c478bd9Sstevel@tonic-gate {
33557c478bd9Sstevel@tonic-gate 	if (P->state == PS_IDLE) {
33567c478bd9Sstevel@tonic-gate 		errno = ENODATA;
33577c478bd9Sstevel@tonic-gate 		return (NULL);
33587c478bd9Sstevel@tonic-gate 	}
33597c478bd9Sstevel@tonic-gate 
33607c478bd9Sstevel@tonic-gate 	if (P->state == PS_DEAD) {
33617c478bd9Sstevel@tonic-gate 		if (P->core->core_platform == NULL) {
33627c478bd9Sstevel@tonic-gate 			errno = ENODATA;
33637c478bd9Sstevel@tonic-gate 			return (NULL);
33647c478bd9Sstevel@tonic-gate 		}
33657c478bd9Sstevel@tonic-gate 		(void) strncpy(s, P->core->core_platform, n - 1);
33667c478bd9Sstevel@tonic-gate 		s[n - 1] = '\0';
33677c478bd9Sstevel@tonic-gate 
33687c478bd9Sstevel@tonic-gate 	} else if (sysinfo(SI_PLATFORM, s, n) == -1)
33697c478bd9Sstevel@tonic-gate 		return (NULL);
33707c478bd9Sstevel@tonic-gate 
33717c478bd9Sstevel@tonic-gate 	return (s);
33727c478bd9Sstevel@tonic-gate }
33737c478bd9Sstevel@tonic-gate 
33747c478bd9Sstevel@tonic-gate /*
33757c478bd9Sstevel@tonic-gate  * Get the uname(2) information from the core file if we have it;
33767c478bd9Sstevel@tonic-gate  * just perform the system call for the caller if this is a live process.
33777c478bd9Sstevel@tonic-gate  */
33787c478bd9Sstevel@tonic-gate int
33797c478bd9Sstevel@tonic-gate Puname(struct ps_prochandle *P, struct utsname *u)
33807c478bd9Sstevel@tonic-gate {
33817c478bd9Sstevel@tonic-gate 	if (P->state == PS_IDLE) {
33827c478bd9Sstevel@tonic-gate 		errno = ENODATA;
33837c478bd9Sstevel@tonic-gate 		return (-1);
33847c478bd9Sstevel@tonic-gate 	}
33857c478bd9Sstevel@tonic-gate 
33867c478bd9Sstevel@tonic-gate 	if (P->state == PS_DEAD) {
33877c478bd9Sstevel@tonic-gate 		if (P->core->core_uts == NULL) {
33887c478bd9Sstevel@tonic-gate 			errno = ENODATA;
33897c478bd9Sstevel@tonic-gate 			return (-1);
33907c478bd9Sstevel@tonic-gate 		}
33917c478bd9Sstevel@tonic-gate 		(void) memcpy(u, P->core->core_uts, sizeof (struct utsname));
33927c478bd9Sstevel@tonic-gate 		return (0);
33937c478bd9Sstevel@tonic-gate 	}
33947c478bd9Sstevel@tonic-gate 	return (uname(u));
33957c478bd9Sstevel@tonic-gate }
33967c478bd9Sstevel@tonic-gate 
33977c478bd9Sstevel@tonic-gate /*
33987c478bd9Sstevel@tonic-gate  * Get the zone name from the core file if we have it; look up the
33997c478bd9Sstevel@tonic-gate  * name based on the zone id if this is a live process.
34007c478bd9Sstevel@tonic-gate  */
34017c478bd9Sstevel@tonic-gate char *
34027c478bd9Sstevel@tonic-gate Pzonename(struct ps_prochandle *P, char *s, size_t n)
34037c478bd9Sstevel@tonic-gate {
34047c478bd9Sstevel@tonic-gate 	if (P->state == PS_IDLE) {
34057c478bd9Sstevel@tonic-gate 		errno = ENODATA;
34067c478bd9Sstevel@tonic-gate 		return (NULL);
34077c478bd9Sstevel@tonic-gate 	}
34087c478bd9Sstevel@tonic-gate 
34097c478bd9Sstevel@tonic-gate 	if (P->state == PS_DEAD) {
34107c478bd9Sstevel@tonic-gate 		if (P->core->core_zonename == NULL) {
34117c478bd9Sstevel@tonic-gate 			errno = ENODATA;
34127c478bd9Sstevel@tonic-gate 			return (NULL);
34137c478bd9Sstevel@tonic-gate 		}
34147c478bd9Sstevel@tonic-gate 		(void) strlcpy(s, P->core->core_zonename, n);
34157c478bd9Sstevel@tonic-gate 	} else {
34167c478bd9Sstevel@tonic-gate 		if (getzonenamebyid(P->status.pr_zoneid, s, n) < 0)
34177c478bd9Sstevel@tonic-gate 			return (NULL);
34187c478bd9Sstevel@tonic-gate 		s[n - 1] = '\0';
34197c478bd9Sstevel@tonic-gate 	}
34207c478bd9Sstevel@tonic-gate 	return (s);
34217c478bd9Sstevel@tonic-gate }
34227c478bd9Sstevel@tonic-gate 
34237c478bd9Sstevel@tonic-gate /*
34247c478bd9Sstevel@tonic-gate  * Called from Pcreate(), Pgrab(), and Pfgrab_core() to initialize
34257c478bd9Sstevel@tonic-gate  * the symbol table heads in the new ps_prochandle.
34267c478bd9Sstevel@tonic-gate  */
34277c478bd9Sstevel@tonic-gate void
34287c478bd9Sstevel@tonic-gate Pinitsym(struct ps_prochandle *P)
34297c478bd9Sstevel@tonic-gate {
34307c478bd9Sstevel@tonic-gate 	P->num_files = 0;
34317c478bd9Sstevel@tonic-gate 	list_link(&P->file_head, NULL);
34327c478bd9Sstevel@tonic-gate }
34337c478bd9Sstevel@tonic-gate 
34347c478bd9Sstevel@tonic-gate /*
34357c478bd9Sstevel@tonic-gate  * Called from Prelease() to destroy the symbol tables.
34367c478bd9Sstevel@tonic-gate  * Must be called by the client after an exec() in the victim process.
34377c478bd9Sstevel@tonic-gate  */
34387c478bd9Sstevel@tonic-gate void
34397c478bd9Sstevel@tonic-gate Preset_maps(struct ps_prochandle *P)
34407c478bd9Sstevel@tonic-gate {
34417c478bd9Sstevel@tonic-gate 	int i;
34427c478bd9Sstevel@tonic-gate 
34437c478bd9Sstevel@tonic-gate 	if (P->rap != NULL) {
34447c478bd9Sstevel@tonic-gate 		rd_delete(P->rap);
34457c478bd9Sstevel@tonic-gate 		P->rap = NULL;
34467c478bd9Sstevel@tonic-gate 	}
34477c478bd9Sstevel@tonic-gate 
34487c478bd9Sstevel@tonic-gate 	if (P->execname != NULL) {
34497c478bd9Sstevel@tonic-gate 		free(P->execname);
34507c478bd9Sstevel@tonic-gate 		P->execname = NULL;
34517c478bd9Sstevel@tonic-gate 	}
34527c478bd9Sstevel@tonic-gate 
34537c478bd9Sstevel@tonic-gate 	if (P->auxv != NULL) {
34547c478bd9Sstevel@tonic-gate 		free(P->auxv);
34557c478bd9Sstevel@tonic-gate 		P->auxv = NULL;
34567c478bd9Sstevel@tonic-gate 		P->nauxv = 0;
34577c478bd9Sstevel@tonic-gate 	}
34587c478bd9Sstevel@tonic-gate 
34597c478bd9Sstevel@tonic-gate 	for (i = 0; i < P->map_count; i++)
34607c478bd9Sstevel@tonic-gate 		map_info_free(P, &P->mappings[i]);
34617c478bd9Sstevel@tonic-gate 
34627c478bd9Sstevel@tonic-gate 	if (P->mappings != NULL) {
34637c478bd9Sstevel@tonic-gate 		free(P->mappings);
34647c478bd9Sstevel@tonic-gate 		P->mappings = NULL;
34657c478bd9Sstevel@tonic-gate 	}
34667c478bd9Sstevel@tonic-gate 	P->map_count = P->map_alloc = 0;
34677c478bd9Sstevel@tonic-gate 
34687c478bd9Sstevel@tonic-gate 	P->info_valid = 0;
34697c478bd9Sstevel@tonic-gate }
34707c478bd9Sstevel@tonic-gate 
34717c478bd9Sstevel@tonic-gate typedef struct getenv_data {
34727c478bd9Sstevel@tonic-gate 	char *buf;
34737c478bd9Sstevel@tonic-gate 	size_t bufsize;
34747c478bd9Sstevel@tonic-gate 	const char *search;
34757c478bd9Sstevel@tonic-gate 	size_t searchlen;
34767c478bd9Sstevel@tonic-gate } getenv_data_t;
34777c478bd9Sstevel@tonic-gate 
34787c478bd9Sstevel@tonic-gate /*ARGSUSED*/
34797c478bd9Sstevel@tonic-gate static int
34807c478bd9Sstevel@tonic-gate getenv_func(void *data, struct ps_prochandle *P, uintptr_t addr,
34817c478bd9Sstevel@tonic-gate     const char *nameval)
34827c478bd9Sstevel@tonic-gate {
34837c478bd9Sstevel@tonic-gate 	getenv_data_t *d = data;
34847c478bd9Sstevel@tonic-gate 	size_t len;
34857c478bd9Sstevel@tonic-gate 
34867c478bd9Sstevel@tonic-gate 	if (nameval == NULL)
34877c478bd9Sstevel@tonic-gate 		return (0);
34887c478bd9Sstevel@tonic-gate 
34897c478bd9Sstevel@tonic-gate 	if (d->searchlen < strlen(nameval) &&
34907c478bd9Sstevel@tonic-gate 	    strncmp(nameval, d->search, d->searchlen) == 0 &&
34917c478bd9Sstevel@tonic-gate 	    nameval[d->searchlen] == '=') {
34927c478bd9Sstevel@tonic-gate 		len = MIN(strlen(nameval), d->bufsize - 1);
34937c478bd9Sstevel@tonic-gate 		(void) strncpy(d->buf, nameval, len);
34947c478bd9Sstevel@tonic-gate 		d->buf[len] = '\0';
34957c478bd9Sstevel@tonic-gate 		return (1);
34967c478bd9Sstevel@tonic-gate 	}
34977c478bd9Sstevel@tonic-gate 
34987c478bd9Sstevel@tonic-gate 	return (0);
34997c478bd9Sstevel@tonic-gate }
35007c478bd9Sstevel@tonic-gate 
35017c478bd9Sstevel@tonic-gate char *
35027c478bd9Sstevel@tonic-gate Pgetenv(struct ps_prochandle *P, const char *name, char *buf, size_t buflen)
35037c478bd9Sstevel@tonic-gate {
35047c478bd9Sstevel@tonic-gate 	getenv_data_t d;
35057c478bd9Sstevel@tonic-gate 
35067c478bd9Sstevel@tonic-gate 	d.buf = buf;
35077c478bd9Sstevel@tonic-gate 	d.bufsize = buflen;
35087c478bd9Sstevel@tonic-gate 	d.search = name;
35097c478bd9Sstevel@tonic-gate 	d.searchlen = strlen(name);
35107c478bd9Sstevel@tonic-gate 
35117c478bd9Sstevel@tonic-gate 	if (Penv_iter(P, getenv_func, &d) == 1) {
35127c478bd9Sstevel@tonic-gate 		char *equals = strchr(d.buf, '=');
35137c478bd9Sstevel@tonic-gate 
35147c478bd9Sstevel@tonic-gate 		if (equals != NULL) {
35157c478bd9Sstevel@tonic-gate 			(void) memmove(d.buf, equals + 1,
35167c478bd9Sstevel@tonic-gate 			    d.buf + buflen - equals - 1);
35177c478bd9Sstevel@tonic-gate 			d.buf[d.buf + buflen - equals] = '\0';
35187c478bd9Sstevel@tonic-gate 
35197c478bd9Sstevel@tonic-gate 			return (buf);
35207c478bd9Sstevel@tonic-gate 		}
35217c478bd9Sstevel@tonic-gate 	}
35227c478bd9Sstevel@tonic-gate 
35237c478bd9Sstevel@tonic-gate 	return (NULL);
35247c478bd9Sstevel@tonic-gate }
35257c478bd9Sstevel@tonic-gate 
35267c478bd9Sstevel@tonic-gate /* number of argument or environment pointers to read all at once */
35277c478bd9Sstevel@tonic-gate #define	NARG	100
35287c478bd9Sstevel@tonic-gate 
35297c478bd9Sstevel@tonic-gate int
35307c478bd9Sstevel@tonic-gate Penv_iter(struct ps_prochandle *P, proc_env_f *func, void *data)
35317c478bd9Sstevel@tonic-gate {
35327c478bd9Sstevel@tonic-gate 	const psinfo_t *psp;
35337c478bd9Sstevel@tonic-gate 	uintptr_t envpoff;
35347c478bd9Sstevel@tonic-gate 	GElf_Sym sym;
35357c478bd9Sstevel@tonic-gate 	int ret;
35367c478bd9Sstevel@tonic-gate 	char *buf, *nameval;
35377c478bd9Sstevel@tonic-gate 	size_t buflen;
35387c478bd9Sstevel@tonic-gate 
35397c478bd9Sstevel@tonic-gate 	int nenv = NARG;
35407c478bd9Sstevel@tonic-gate 	long envp[NARG];
35417c478bd9Sstevel@tonic-gate 
35427c478bd9Sstevel@tonic-gate 	/*
35437c478bd9Sstevel@tonic-gate 	 * Attempt to find the "_environ" variable in the process.
35447c478bd9Sstevel@tonic-gate 	 * Failing that, use the original value provided by Ppsinfo().
35457c478bd9Sstevel@tonic-gate 	 */
35467c478bd9Sstevel@tonic-gate 	if ((psp = Ppsinfo(P)) == NULL)
35477c478bd9Sstevel@tonic-gate 		return (-1);
35487c478bd9Sstevel@tonic-gate 
35497c478bd9Sstevel@tonic-gate 	envpoff = psp->pr_envp; /* Default if no _environ found */
35507c478bd9Sstevel@tonic-gate 
35517c478bd9Sstevel@tonic-gate 	if (Plookup_by_name(P, PR_OBJ_EXEC, "_environ", &sym) == 0) {
35527c478bd9Sstevel@tonic-gate 		if (P->status.pr_dmodel == PR_MODEL_NATIVE) {
35537c478bd9Sstevel@tonic-gate 			if (Pread(P, &envpoff, sizeof (envpoff),
35547c478bd9Sstevel@tonic-gate 			    sym.st_value) != sizeof (envpoff))
35557c478bd9Sstevel@tonic-gate 				envpoff = psp->pr_envp;
35567c478bd9Sstevel@tonic-gate 		} else if (P->status.pr_dmodel == PR_MODEL_ILP32) {
35577c478bd9Sstevel@tonic-gate 			uint32_t envpoff32;
35587c478bd9Sstevel@tonic-gate 
35597c478bd9Sstevel@tonic-gate 			if (Pread(P, &envpoff32, sizeof (envpoff32),
35607c478bd9Sstevel@tonic-gate 			    sym.st_value) != sizeof (envpoff32))
35617c478bd9Sstevel@tonic-gate 				envpoff = psp->pr_envp;
35627c478bd9Sstevel@tonic-gate 			else
35637c478bd9Sstevel@tonic-gate 				envpoff = envpoff32;
35647c478bd9Sstevel@tonic-gate 		}
35657c478bd9Sstevel@tonic-gate 	}
35667c478bd9Sstevel@tonic-gate 
35677c478bd9Sstevel@tonic-gate 	buflen = 128;
35687c478bd9Sstevel@tonic-gate 	buf = malloc(buflen);
35697c478bd9Sstevel@tonic-gate 
35707c478bd9Sstevel@tonic-gate 	ret = 0;
35717c478bd9Sstevel@tonic-gate 	for (;;) {
35727c478bd9Sstevel@tonic-gate 		uintptr_t envoff;
35737c478bd9Sstevel@tonic-gate 
35747c478bd9Sstevel@tonic-gate 		if (nenv == NARG) {
35757c478bd9Sstevel@tonic-gate 			(void) memset(envp, 0, sizeof (envp));
35767c478bd9Sstevel@tonic-gate 			if (P->status.pr_dmodel == PR_MODEL_NATIVE) {
35777c478bd9Sstevel@tonic-gate 				if (Pread(P, envp,
35787c478bd9Sstevel@tonic-gate 				    sizeof (envp), envpoff) <= 0) {
35797c478bd9Sstevel@tonic-gate 					ret = -1;
35807c478bd9Sstevel@tonic-gate 					break;
35817c478bd9Sstevel@tonic-gate 				}
35827c478bd9Sstevel@tonic-gate 			} else if (P->status.pr_dmodel == PR_MODEL_ILP32) {
35837c478bd9Sstevel@tonic-gate 				uint32_t e32[NARG];
35847c478bd9Sstevel@tonic-gate 				int i;
35857c478bd9Sstevel@tonic-gate 
35867c478bd9Sstevel@tonic-gate 				(void) memset(e32, 0, sizeof (e32));
35877c478bd9Sstevel@tonic-gate 				if (Pread(P, e32, sizeof (e32), envpoff) <= 0) {
35887c478bd9Sstevel@tonic-gate 					ret = -1;
35897c478bd9Sstevel@tonic-gate 					break;
35907c478bd9Sstevel@tonic-gate 				}
35917c478bd9Sstevel@tonic-gate 				for (i = 0; i < NARG; i++)
35927c478bd9Sstevel@tonic-gate 					envp[i] = e32[i];
35937c478bd9Sstevel@tonic-gate 			}
35947c478bd9Sstevel@tonic-gate 			nenv = 0;
35957c478bd9Sstevel@tonic-gate 		}
35967c478bd9Sstevel@tonic-gate 
35977c478bd9Sstevel@tonic-gate 		if ((envoff = envp[nenv++]) == NULL)
35987c478bd9Sstevel@tonic-gate 			break;
35997c478bd9Sstevel@tonic-gate 
36007c478bd9Sstevel@tonic-gate 		/*
36017c478bd9Sstevel@tonic-gate 		 * Attempt to read the string from the process.
36027c478bd9Sstevel@tonic-gate 		 */
36037c478bd9Sstevel@tonic-gate again:
36047c478bd9Sstevel@tonic-gate 		ret = Pread_string(P, buf, buflen, envoff);
36057c478bd9Sstevel@tonic-gate 
36067c478bd9Sstevel@tonic-gate 		if (ret <= 0) {
36077c478bd9Sstevel@tonic-gate 			nameval = NULL;
36087c478bd9Sstevel@tonic-gate 		} else if (ret == buflen - 1) {
36097c478bd9Sstevel@tonic-gate 			free(buf);
36107c478bd9Sstevel@tonic-gate 			/*
36117c478bd9Sstevel@tonic-gate 			 * Bail if we have a corrupted environment
36127c478bd9Sstevel@tonic-gate 			 */
36137c478bd9Sstevel@tonic-gate 			if (buflen >= ARG_MAX)
36147c478bd9Sstevel@tonic-gate 				return (-1);
36157c478bd9Sstevel@tonic-gate 			buflen *= 2;
36167c478bd9Sstevel@tonic-gate 			buf = malloc(buflen);
36177c478bd9Sstevel@tonic-gate 			goto again;
36187c478bd9Sstevel@tonic-gate 		} else {
36197c478bd9Sstevel@tonic-gate 			nameval = buf;
36207c478bd9Sstevel@tonic-gate 		}
36217c478bd9Sstevel@tonic-gate 
36227c478bd9Sstevel@tonic-gate 		if ((ret = func(data, P, envoff, nameval)) != 0)
36237c478bd9Sstevel@tonic-gate 			break;
36247c478bd9Sstevel@tonic-gate 
36257c478bd9Sstevel@tonic-gate 		envpoff += (P->status.pr_dmodel == PR_MODEL_LP64)? 8 : 4;
36267c478bd9Sstevel@tonic-gate 	}
36277c478bd9Sstevel@tonic-gate 
36287c478bd9Sstevel@tonic-gate 	free(buf);
36297c478bd9Sstevel@tonic-gate 
36307c478bd9Sstevel@tonic-gate 	return (ret);
36317c478bd9Sstevel@tonic-gate }
3632