/* * lookup.c * * This file contains functions that assist in the reading and searching * the symbol table of an ELF object. * * Copyright (C) 2014 Seth Jennings * Copyright (C) 2014 Josh Poimboeuf * * This program is free software; you can redistribute it and/or * modify it under the terms of the GNU General Public License * as published by the Free Software Foundation; either version 2 * of the License, or (at your option) any later version. * * This program is distributed in the hope that it will be useful, * but WITHOUT ANY WARRANTY; without even the implied warranty of * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the * GNU General Public License for more details. * * You should have received a copy of the GNU General Public License * along with this program; if not, write to the Free Software * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA, * 02110-1301, USA. */ #include #include #include #include #include #include #include #include #include #include #include #include #include "lookup.h" #include "log.h" struct object_symbol { unsigned long value; unsigned long size; char *name; int type, bind, skip; }; struct export_symbol { char *name; char *objname; }; struct lookup_table { int obj_nr, exp_nr; struct object_symbol *obj_syms; struct export_symbol *exp_syms; struct object_symbol *local_syms; }; #define for_each_obj_symbol(ndx, iter, table) \ for (ndx = 0, iter = table->obj_syms; ndx < table->obj_nr; ndx++, iter++) #define for_each_exp_symbol(ndx, iter, table) \ for (ndx = 0, iter = table->exp_syms; ndx < table->exp_nr; ndx++, iter++) static void find_local_syms(struct lookup_table *table, char *hint, struct sym_compare_type *locals) { struct object_symbol *sym, *file_sym; int i, in_file = 0; struct sym_compare_type *local_index; for_each_obj_symbol(i, sym, table) { if (sym->type == STT_FILE) { if (in_file && !local_index->name) { if (table->local_syms) ERROR("find_local_syms for %s: found_dup", hint); table->local_syms = file_sym; } if (!strcmp(hint, sym->name)) { in_file = 1; file_sym = sym; local_index = locals; } else in_file = 0; continue; } if (!in_file) continue; if (sym->bind != STB_LOCAL || (sym->type != STT_FUNC && sym->type != STT_OBJECT)) continue; if (local_index->name && local_index->type == sym->type && !strcmp(local_index->name, sym->name)) local_index++; else in_file = 0; } if (in_file && !local_index->name) { if (table->local_syms) ERROR("find_local_syms for %s: found_dup", hint); table->local_syms = file_sym; } if (!table->local_syms) ERROR("find_local_syms for %s: found_none", hint); } static void obj_read(struct lookup_table *table, char *path) { Elf *elf; int fd, i, len; Elf_Scn *scn; GElf_Shdr sh; GElf_Sym sym; Elf_Data *data; char *name; struct object_symbol *mysym; size_t shstrndx; if ((fd = open(path, O_RDONLY, 0)) < 0) ERROR("open"); elf_version(EV_CURRENT); elf = elf_begin(fd, ELF_C_READ_MMAP, NULL); if (!elf) { printf("%s\n", elf_errmsg(-1)); ERROR("elf_begin"); } if (elf_getshdrstrndx(elf, &shstrndx)) ERROR("elf_getshdrstrndx"); scn = NULL; while ((scn = elf_nextscn(elf, scn))) { if (!gelf_getshdr(scn, &sh)) ERROR("gelf_getshdr"); name = elf_strptr(elf, shstrndx, sh.sh_name); if (!name) ERROR("elf_strptr scn"); if (!strcmp(name, ".symtab")) break; } if (!scn) ERROR(".symtab section not found"); data = elf_getdata(scn, NULL); if (!data) ERROR("elf_getdata"); len = sh.sh_size / sh.sh_entsize; table->obj_syms = malloc(len * sizeof(*table->obj_syms)); if (!table->obj_syms) ERROR("malloc table.obj_syms"); memset(table->obj_syms, 0, len * sizeof(*table->obj_syms)); table->obj_nr = len; for_each_obj_symbol(i, mysym, table) { if (!gelf_getsym(data, i, &sym)) ERROR("gelf_getsym"); if (sym.st_shndx == SHN_UNDEF) { mysym->skip = 1; continue; } name = elf_strptr(elf, sh.sh_link, sym.st_name); if(!name) ERROR("elf_strptr sym"); mysym->value = sym.st_value; mysym->size = sym.st_size; mysym->type = GELF_ST_TYPE(sym.st_info); mysym->bind = GELF_ST_BIND(sym.st_info); mysym->name = strdup(name); if (!mysym->name) ERROR("strdup"); } close(fd); elf_end(elf); } /* Strip the path and replace '-' with '_' */ static char *make_modname(char *modname) { char *cur; if (!modname) return NULL; cur = modname; while (*cur != '\0') { if (*cur == '-') *cur = '_'; cur++; } return basename(modname); } static void symvers_read(struct lookup_table *table, char *path) { FILE *file; unsigned int crc, i = 0; char name[256], mod[256], export[256]; char *objname, *symname; if ((file = fopen(path, "r")) < 0) ERROR("fopen"); while (fscanf(file, "%x %s %s %s\n", &crc, name, mod, export) != EOF) table->exp_nr++; table->exp_syms = malloc(table->exp_nr * sizeof(*table->exp_syms)); if (!table->exp_syms) ERROR("malloc table.exp_syms"); memset(table->exp_syms, 0, table->exp_nr * sizeof(*table->exp_syms)); rewind(file); while (fscanf(file, "%x %s %s %s\n", &crc, name, mod, export) != EOF) { symname = strdup(name); if (!symname) perror("strdup"); objname = strdup(mod); if (!objname) perror("strdup"); /* Modifies objname in-place */ objname = make_modname(objname); table->exp_syms[i].name = symname; table->exp_syms[i].objname = objname; i++; } fclose(file); } struct lookup_table *lookup_open(char *obj_path, char *symvers_path, char *hint, struct sym_compare_type *locals) { struct lookup_table *table; table = malloc(sizeof(*table)); if (!table) ERROR("malloc table"); memset(table, 0, sizeof(*table)); obj_read(table, obj_path); symvers_read(table, symvers_path); table->local_syms = NULL; if (locals) find_local_syms(table, hint, locals); return table; } void lookup_close(struct lookup_table *table) { free(table->obj_syms); free(table->exp_syms); free(table); } int lookup_local_symbol(struct lookup_table *table, char *name, struct lookup_result *result) { struct object_symbol *sym; unsigned long pos = 0; int i, match = 0, in_file = 0; if (!table->local_syms) return 1; memset(result, 0, sizeof(*result)); for_each_obj_symbol(i, sym, table) { if (sym->skip) continue; if (sym->bind == STB_LOCAL && !strcmp(sym->name, name)) pos++; if (table->local_syms == sym) { in_file = 1; continue; } if (!in_file) continue; if (sym->type == STT_FILE) break; if (sym->bind == STB_LOCAL && !strcmp(sym->name, name)) { match = 1; break; } } if (!match) return 1; result->pos = pos; result->value = sym->value; result->size = sym->size; return 0; } int lookup_global_symbol(struct lookup_table *table, char *name, struct lookup_result *result) { struct object_symbol *sym; int i; memset(result, 0, sizeof(*result)); for_each_obj_symbol(i, sym, table) { if (!sym->skip && (sym->bind == STB_GLOBAL || sym->bind == STB_WEAK) && !strcmp(sym->name, name)) { result->value = sym->value; result->size = sym->size; result->pos = 0; /* always 0 for global symbols */ return 0; } } return 1; } int lookup_is_exported_symbol(struct lookup_table *table, char *name) { struct export_symbol *sym, *match = NULL; int i; for_each_exp_symbol(i, sym, table) { if (!strcmp(sym->name, name)) { if (match) ERROR("duplicate exported symbol found for %s", name); match = sym; } } return !!match; } /* * lookup_exported_symbol_objname - find the object/module an exported * symbol belongs to. */ char *lookup_exported_symbol_objname(struct lookup_table *table, char *name) { struct export_symbol *sym, *match = NULL; int i; for_each_exp_symbol(i, sym, table) { if (!strcmp(sym->name, name)) { if (match) ERROR("duplicate exported symbol found for %s", name); match = sym; } } if (match) return match->objname; return NULL; } #if 0 /* for local testing */ static void find_this(struct lookup_table *table, char *sym, char *hint) { struct lookup_result result; if (hint) lookup_local_symbol(table, sym, hint, &result); else lookup_global_symbol(table, sym, &result); printf("%s %s w/ %s hint at 0x%016lx len %lu pos %lu\n", hint ? "local" : "global", sym, hint ? hint : "no", result.value, result.size, result.pos); } int main(int argc, char **argv) { struct lookup_table *vmlinux; if (argc != 2) return 1; vmlinux = lookup_open(argv[1]); printf("printk is%s exported\n", lookup_is_exported_symbol(vmlinux, "__fentry__") ? "" : " not"); printf("meminfo_proc_show is%s exported\n", lookup_is_exported_symbol(vmlinux, "meminfo_proc_show") ? "" : " not"); find_this(vmlinux, "printk", NULL); find_this(vmlinux, "pages_to_scan_show", "ksm.c"); find_this(vmlinux, "pages_to_scan_show", "huge_memory.c"); find_this(vmlinux, "pages_to_scan_show", NULL); /* should fail */ lookup_close(vmlinux); return 0; } #endif