<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html><head><meta http-equiv="Content-Type" content="text/html;charset=iso-8859-1"> <title>rpm: file/src/readelf.c Source File</title> <link href="doxygen.css" rel="stylesheet" type="text/css"> <link href="tabs.css" rel="stylesheet" type="text/css"> </head><body> <!-- Generated by Doxygen 1.4.7 --> <div class="tabs"> <ul> <li><a href="index.html"><span>Main Page</span></a></li> <li><a href="modules.html"><span>Modules</span></a></li> <li><a href="annotated.html"><span>Data Structures</span></a></li> <li id="current"><a href="files.html"><span>Files</span></a></li> <li><a href="pages.html"><span>Related Pages</span></a></li> </ul></div> <div class="tabs"> <ul> <li><a href="files.html"><span>File List</span></a></li> <li><a href="globals.html"><span>Globals</span></a></li> </ul></div> <h1>file/src/readelf.c</h1><a href="readelf_8c.html">Go to the documentation of this file.</a><div class="fragment"><pre class="fragment"><a name="l00001"></a>00001 <span class="comment">/*</span> <a name="l00002"></a>00002 <span class="comment"> * Copyright (c) Christos Zoulas 2003.</span> <a name="l00003"></a>00003 <span class="comment"> * All Rights Reserved.</span> <a name="l00004"></a>00004 <span class="comment"> * </span> <a name="l00005"></a>00005 <span class="comment"> * Redistribution and use in source and binary forms, with or without</span> <a name="l00006"></a>00006 <span class="comment"> * modification, are permitted provided that the following conditions</span> <a name="l00007"></a>00007 <span class="comment"> * are met:</span> <a name="l00008"></a>00008 <span class="comment"> * 1. Redistributions of source code must retain the above copyright</span> <a name="l00009"></a>00009 <span class="comment"> * notice immediately at the beginning of the file, without modification,</span> <a name="l00010"></a>00010 <span class="comment"> * this list of conditions, and the following disclaimer.</span> <a name="l00011"></a>00011 <span class="comment"> * 2. Redistributions in binary form must reproduce the above copyright</span> <a name="l00012"></a>00012 <span class="comment"> * notice, this list of conditions and the following disclaimer in the</span> <a name="l00013"></a>00013 <span class="comment"> * documentation and/or other materials provided with the distribution.</span> <a name="l00014"></a>00014 <span class="comment"> * </span> <a name="l00015"></a>00015 <span class="comment"> * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND</span> <a name="l00016"></a>00016 <span class="comment"> * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE</span> <a name="l00017"></a>00017 <span class="comment"> * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE</span> <a name="l00018"></a>00018 <span class="comment"> * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE FOR</span> <a name="l00019"></a>00019 <span class="comment"> * ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL</span> <a name="l00020"></a>00020 <span class="comment"> * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS</span> <a name="l00021"></a>00021 <span class="comment"> * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)</span> <a name="l00022"></a>00022 <span class="comment"> * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT</span> <a name="l00023"></a>00023 <span class="comment"> * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY</span> <a name="l00024"></a>00024 <span class="comment"> * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF</span> <a name="l00025"></a>00025 <span class="comment"> * SUCH DAMAGE.</span> <a name="l00026"></a>00026 <span class="comment"> */</span> <a name="l00027"></a>00027 <span class="preprocessor">#include "<a class="code" href="file_8h.html">file.h</a>"</span> <a name="l00028"></a>00028 <a name="l00029"></a>00029 <span class="preprocessor">#ifdef BUILTIN_ELF</span> <a name="l00030"></a>00030 <span class="preprocessor"></span><span class="preprocessor">#include <string.h></span> <a name="l00031"></a>00031 <span class="preprocessor">#include <ctype.h></span> <a name="l00032"></a>00032 <span class="preprocessor">#include <stdlib.h></span> <a name="l00033"></a>00033 <span class="preprocessor">#ifdef HAVE_UNISTD_H</span> <a name="l00034"></a>00034 <span class="preprocessor"></span><span class="preprocessor">#include <unistd.h></span> <a name="l00035"></a>00035 <span class="preprocessor">#endif</span> <a name="l00036"></a>00036 <span class="preprocessor"></span> <a name="l00037"></a>00037 <span class="preprocessor">#include "<a class="code" href="readelf_8h.html">readelf.h</a>"</span> <a name="l00038"></a>00038 <a name="l00039"></a>00039 <span class="preprocessor">#ifndef lint</span> <a name="l00040"></a>00040 <span class="preprocessor"></span><a class="code" href="system_8h.html#b757e9ff04be9e1b95de08c5536ac334">FILE_RCSID</a>(<span class="stringliteral">"@(#)$Id: readelf.c,v 1.47 2005/06/25 15:52:14 christos Exp $"</span>) <a name="l00041"></a>00041 <span class="preprocessor">#endif</span> <a name="l00042"></a>00042 <span class="preprocessor"></span> <a name="l00043"></a>00043 <span class="preprocessor">#ifdef ELFCORE</span> <a name="l00044"></a>00044 <span class="preprocessor"></span><span class="keyword">private</span> <span class="keywordtype">int</span> dophn_core(<span class="keyword">struct</span> <a class="code" href="structmagic__set.html">magic_set</a> *ms, <span class="keywordtype">int</span> <span class="keyword">class</span>, <span class="keywordtype">int</span> <a class="code" href="merge_8c.html#3ca5ecd34b04d6a243c054ac3a57f68d">swap</a>, <span class="keywordtype">int</span> fd, off_t off, <span class="keywordtype">int</span> num, size_t size) <a name="l00045"></a>00045 <span class="comment">/*@modifies ms @*/</span>; <a name="l00046"></a>00046 <span class="preprocessor">#endif</span> <a name="l00047"></a>00047 <span class="preprocessor"></span><span class="keyword">private</span> <span class="keywordtype">int</span> dophn_exec(<span class="keyword">struct</span> <a class="code" href="structmagic__set.html">magic_set</a> *ms, <span class="keywordtype">int</span> <span class="keyword">class</span>, <span class="keywordtype">int</span> <a class="code" href="merge_8c.html#3ca5ecd34b04d6a243c054ac3a57f68d">swap</a>, <span class="keywordtype">int</span> fd, off_t off, <span class="keywordtype">int</span> num, size_t size) <a name="l00048"></a>00048 <span class="comment">/*@modifies ms @*/</span>; <a name="l00049"></a>00049 <span class="keyword">private</span> <span class="keywordtype">int</span> doshn(<span class="keyword">struct</span> <a class="code" href="structmagic__set.html">magic_set</a> *ms, <span class="keywordtype">int</span> <span class="keyword">class</span>, <span class="keywordtype">int</span> <a class="code" href="merge_8c.html#3ca5ecd34b04d6a243c054ac3a57f68d">swap</a>, <span class="keywordtype">int</span> fd, off_t off, <span class="keywordtype">int</span> num, size_t size) <a name="l00050"></a>00050 <span class="comment">/*@modifies ms @*/</span>; <a name="l00051"></a>00051 <span class="keyword">private</span> size_t donote(<span class="keyword">struct</span> <a class="code" href="structmagic__set.html">magic_set</a> *ms, <span class="keywordtype">unsigned</span> <span class="keywordtype">char</span> *nbuf, size_t offset, size_t size, <span class="keywordtype">int</span> <span class="keyword">class</span>, <a name="l00052"></a>00052 <span class="keywordtype">int</span> <a class="code" href="merge_8c.html#3ca5ecd34b04d6a243c054ac3a57f68d">swap</a>, size_t align) <a name="l00053"></a>00053 <span class="comment">/*@modifies ms @*/</span>; <a name="l00054"></a>00054 <a name="l00055"></a>00055 <span class="preprocessor">#define ELF_ALIGN(a) ((((a) + align - 1) / align) * align)</span> <a name="l00056"></a>00056 <span class="preprocessor"></span> <a name="l00057"></a>00057 <span class="keyword">private</span> uint16_t getu16(<span class="keywordtype">int</span> <a class="code" href="merge_8c.html#3ca5ecd34b04d6a243c054ac3a57f68d">swap</a>, uint16_t value) <a name="l00058"></a>00058 <span class="comment">/*@*/</span>; <a name="l00059"></a>00059 <span class="keyword">private</span> uint32_t getu32(<span class="keywordtype">int</span> <a class="code" href="merge_8c.html#3ca5ecd34b04d6a243c054ac3a57f68d">swap</a>, uint32_t value) <a name="l00060"></a>00060 <span class="comment">/*@*/</span>; <a name="l00061"></a>00061 <span class="keyword">private</span> uint64_t getu64(<span class="keywordtype">int</span> <a class="code" href="merge_8c.html#3ca5ecd34b04d6a243c054ac3a57f68d">swap</a>, uint64_t value) <a name="l00062"></a>00062 <span class="comment">/*@*/</span>; <a name="l00063"></a>00063 <a name="l00064"></a>00064 <span class="keyword">private</span> uint16_t <a name="l00065"></a>00065 getu16(<span class="keywordtype">int</span> <a class="code" href="merge_8c.html#3ca5ecd34b04d6a243c054ac3a57f68d">swap</a>, uint16_t value) <a name="l00066"></a>00066 { <a name="l00067"></a>00067 <span class="keyword">union </span>{ <a name="l00068"></a>00068 uint16_t ui; <a name="l00069"></a>00069 <span class="keywordtype">char</span> c[2]; <a name="l00070"></a>00070 } retval, tmpval; <a name="l00071"></a>00071 <a name="l00072"></a>00072 <span class="keywordflow">if</span> (swap) { <a name="l00073"></a>00073 tmpval.ui = value; <a name="l00074"></a>00074 <a name="l00075"></a>00075 retval.c[0] = tmpval.c[1]; <a name="l00076"></a>00076 retval.c[1] = tmpval.c[0]; <a name="l00077"></a>00077 <a name="l00078"></a>00078 <span class="keywordflow">return</span> retval.ui; <a name="l00079"></a>00079 } <span class="keywordflow">else</span> <a name="l00080"></a>00080 <span class="keywordflow">return</span> value; <a name="l00081"></a>00081 } <a name="l00082"></a>00082 <a name="l00083"></a>00083 <span class="keyword">private</span> uint32_t <a name="l00084"></a>00084 getu32(<span class="keywordtype">int</span> swap, uint32_t value) <a name="l00085"></a>00085 { <a name="l00086"></a>00086 <span class="keyword">union </span>{ <a name="l00087"></a>00087 uint32_t ui; <a name="l00088"></a>00088 <span class="keywordtype">char</span> c[4]; <a name="l00089"></a>00089 } retval, tmpval; <a name="l00090"></a>00090 <a name="l00091"></a>00091 <span class="keywordflow">if</span> (swap) { <a name="l00092"></a>00092 tmpval.ui = value; <a name="l00093"></a>00093 <a name="l00094"></a>00094 retval.c[0] = tmpval.c[3]; <a name="l00095"></a>00095 retval.c[1] = tmpval.c[2]; <a name="l00096"></a>00096 retval.c[2] = tmpval.c[1]; <a name="l00097"></a>00097 retval.c[3] = tmpval.c[0]; <a name="l00098"></a>00098 <a name="l00099"></a>00099 <span class="keywordflow">return</span> retval.ui; <a name="l00100"></a>00100 } <span class="keywordflow">else</span> <a name="l00101"></a>00101 <span class="keywordflow">return</span> value; <a name="l00102"></a>00102 } <a name="l00103"></a>00103 <a name="l00104"></a>00104 <span class="keyword">private</span> uint64_t <a name="l00105"></a>00105 getu64(<span class="keywordtype">int</span> swap, uint64_t value) <a name="l00106"></a>00106 { <a name="l00107"></a>00107 <span class="keyword">union </span>{ <a name="l00108"></a>00108 uint64_t ui; <a name="l00109"></a>00109 <span class="keywordtype">char</span> c[8]; <a name="l00110"></a>00110 } retval, tmpval; <a name="l00111"></a>00111 <a name="l00112"></a>00112 <span class="keywordflow">if</span> (swap) { <a name="l00113"></a>00113 tmpval.ui = value; <a name="l00114"></a>00114 <a name="l00115"></a>00115 retval.c[0] = tmpval.c[7]; <a name="l00116"></a>00116 retval.c[1] = tmpval.c[6]; <a name="l00117"></a>00117 retval.c[2] = tmpval.c[5]; <a name="l00118"></a>00118 retval.c[3] = tmpval.c[4]; <a name="l00119"></a>00119 retval.c[4] = tmpval.c[3]; <a name="l00120"></a>00120 retval.c[5] = tmpval.c[2]; <a name="l00121"></a>00121 retval.c[6] = tmpval.c[1]; <a name="l00122"></a>00122 retval.c[7] = tmpval.c[0]; <a name="l00123"></a>00123 <a name="l00124"></a>00124 <span class="keywordflow">return</span> retval.ui; <a name="l00125"></a>00125 } <span class="keywordflow">else</span> <a name="l00126"></a>00126 <span class="keywordflow">return</span> value; <a name="l00127"></a>00127 } <a name="l00128"></a>00128 <a name="l00129"></a>00129 <span class="preprocessor">#define sh_addr (class == ELFCLASS32 \</span> <a name="l00130"></a>00130 <span class="preprocessor"> ? (void *) &sh32 \</span> <a name="l00131"></a>00131 <span class="preprocessor"> : (void *) &sh64)</span> <a name="l00132"></a>00132 <span class="preprocessor"></span><span class="preprocessor">#define sh_size (class == ELFCLASS32 \</span> <a name="l00133"></a>00133 <span class="preprocessor"> ? sizeof sh32 \</span> <a name="l00134"></a>00134 <span class="preprocessor"> : sizeof sh64)</span> <a name="l00135"></a>00135 <span class="preprocessor"></span><span class="preprocessor">#define shs_type (class == ELFCLASS32 \</span> <a name="l00136"></a>00136 <span class="preprocessor"> ? getu32(swap, sh32.sh_type) \</span> <a name="l00137"></a>00137 <span class="preprocessor"> : getu32(swap, sh64.sh_type))</span> <a name="l00138"></a>00138 <span class="preprocessor"></span><span class="preprocessor">#define ph_addr (class == ELFCLASS32 \</span> <a name="l00139"></a>00139 <span class="preprocessor"> ? (void *) &ph32 \</span> <a name="l00140"></a>00140 <span class="preprocessor"> : (void *) &ph64)</span> <a name="l00141"></a>00141 <span class="preprocessor"></span><span class="preprocessor">#define ph_size (class == ELFCLASS32 \</span> <a name="l00142"></a>00142 <span class="preprocessor"> ? sizeof ph32 \</span> <a name="l00143"></a>00143 <span class="preprocessor"> : sizeof ph64)</span> <a name="l00144"></a>00144 <span class="preprocessor"></span><span class="preprocessor">#define ph_type (class == ELFCLASS32 \</span> <a name="l00145"></a>00145 <span class="preprocessor"> ? getu32(swap, ph32.p_type) \</span> <a name="l00146"></a>00146 <span class="preprocessor"> : getu32(swap, ph64.p_type))</span> <a name="l00147"></a>00147 <span class="preprocessor"></span><span class="preprocessor">#define ph_offset (class == ELFCLASS32 \</span> <a name="l00148"></a>00148 <span class="preprocessor"> ? getu32(swap, ph32.p_offset) \</span> <a name="l00149"></a>00149 <span class="preprocessor"> : getu64(swap, ph64.p_offset))</span> <a name="l00150"></a>00150 <span class="preprocessor"></span><span class="preprocessor">#define ph_align (size_t)((class == ELFCLASS32 \</span> <a name="l00151"></a>00151 <span class="preprocessor"> ? (off_t) (ph32.p_align ? \</span> <a name="l00152"></a>00152 <span class="preprocessor"> getu32(swap, ph32.p_align) : 4) \</span> <a name="l00153"></a>00153 <span class="preprocessor"> : (off_t) (ph64.p_align ? \</span> <a name="l00154"></a>00154 <span class="preprocessor"> getu64(swap, ph64.p_align) : 4)))</span> <a name="l00155"></a>00155 <span class="preprocessor"></span><span class="preprocessor">#define ph_filesz (size_t)((class == ELFCLASS32 \</span> <a name="l00156"></a>00156 <span class="preprocessor"> ? getu32(swap, ph32.p_filesz) \</span> <a name="l00157"></a>00157 <span class="preprocessor"> : getu64(swap, ph64.p_filesz)))</span> <a name="l00158"></a>00158 <span class="preprocessor"></span><span class="preprocessor">#define ph_memsz (size_t)((class == ELFCLASS32 \</span> <a name="l00159"></a>00159 <span class="preprocessor"> ? getu32(swap, ph32.p_memsz) \</span> <a name="l00160"></a>00160 <span class="preprocessor"> : getu64(swap, ph64.p_memsz)))</span> <a name="l00161"></a>00161 <span class="preprocessor"></span><span class="preprocessor">#define nh_size (class == ELFCLASS32 \</span> <a name="l00162"></a>00162 <span class="preprocessor"> ? sizeof nh32 \</span> <a name="l00163"></a>00163 <span class="preprocessor"> : sizeof nh64)</span> <a name="l00164"></a>00164 <span class="preprocessor"></span><span class="preprocessor">#define nh_type (class == ELFCLASS32 \</span> <a name="l00165"></a>00165 <span class="preprocessor"> ? getu32(swap, nh32.n_type) \</span> <a name="l00166"></a>00166 <span class="preprocessor"> : getu32(swap, nh64.n_type))</span> <a name="l00167"></a>00167 <span class="preprocessor"></span><span class="preprocessor">#define nh_namesz (class == ELFCLASS32 \</span> <a name="l00168"></a>00168 <span class="preprocessor"> ? getu32(swap, nh32.n_namesz) \</span> <a name="l00169"></a>00169 <span class="preprocessor"> : getu32(swap, nh64.n_namesz))</span> <a name="l00170"></a>00170 <span class="preprocessor"></span><span class="preprocessor">#define nh_descsz (class == ELFCLASS32 \</span> <a name="l00171"></a>00171 <span class="preprocessor"> ? getu32(swap, nh32.n_descsz) \</span> <a name="l00172"></a>00172 <span class="preprocessor"> : getu32(swap, nh64.n_descsz))</span> <a name="l00173"></a>00173 <span class="preprocessor"></span><span class="preprocessor">#define prpsoffsets(i) (class == ELFCLASS32 \</span> <a name="l00174"></a>00174 <span class="preprocessor"> ? prpsoffsets32[i] \</span> <a name="l00175"></a>00175 <span class="preprocessor"> : prpsoffsets64[i])</span> <a name="l00176"></a>00176 <span class="preprocessor"></span> <a name="l00177"></a>00177 <span class="preprocessor">#ifdef ELFCORE</span> <a name="l00178"></a>00178 <span class="preprocessor"></span><span class="comment">/*@unchecked@*/</span> <span class="comment">/*@observer@*/</span> <a name="l00179"></a>00179 size_t prpsoffsets32[] = { <a name="l00180"></a>00180 8, <span class="comment">/* FreeBSD */</span> <a name="l00181"></a>00181 28, <span class="comment">/* Linux 2.0.36 */</span> <a name="l00182"></a>00182 32, <span class="comment">/* Linux (I forget which kernel version) */</span> <a name="l00183"></a>00183 84, <span class="comment">/* SunOS 5.x */</span> <a name="l00184"></a>00184 }; <a name="l00185"></a>00185 <a name="l00186"></a>00186 <span class="comment">/*@unchecked@*/</span> <span class="comment">/*@observer@*/</span> <a name="l00187"></a>00187 size_t prpsoffsets64[] = { <a name="l00188"></a>00188 40, <span class="comment">/* Linux (tested on core from 2.4.x) */</span> <a name="l00189"></a>00189 120, <span class="comment">/* SunOS 5.x, 64-bit */</span> <a name="l00190"></a>00190 }; <a name="l00191"></a>00191 <a name="l00192"></a>00192 <span class="preprocessor">#define NOFFSETS32 (sizeof prpsoffsets32 / sizeof prpsoffsets32[0])</span> <a name="l00193"></a>00193 <span class="preprocessor"></span><span class="preprocessor">#define NOFFSETS64 (sizeof prpsoffsets64 / sizeof prpsoffsets64[0])</span> <a name="l00194"></a>00194 <span class="preprocessor"></span> <a name="l00195"></a>00195 <span class="preprocessor">#define NOFFSETS (class == ELFCLASS32 ? NOFFSETS32 : NOFFSETS64)</span> <a name="l00196"></a>00196 <span class="preprocessor"></span> <a name="l00197"></a>00197 <span class="comment">/*</span> <a name="l00198"></a>00198 <span class="comment"> * Look through the program headers of an executable image, searching</span> <a name="l00199"></a>00199 <span class="comment"> * for a PT_NOTE section of type NT_PRPSINFO, with a name "CORE" or</span> <a name="l00200"></a>00200 <span class="comment"> * "FreeBSD"; if one is found, try looking in various places in its</span> <a name="l00201"></a>00201 <span class="comment"> * contents for a 16-character string containing only printable</span> <a name="l00202"></a>00202 <span class="comment"> * characters - if found, that string should be the name of the program</span> <a name="l00203"></a>00203 <span class="comment"> * that dropped core. Note: right after that 16-character string is,</span> <a name="l00204"></a>00204 <span class="comment"> * at least in SunOS 5.x (and possibly other SVR4-flavored systems) and</span> <a name="l00205"></a>00205 <span class="comment"> * Linux, a longer string (80 characters, in 5.x, probably other</span> <a name="l00206"></a>00206 <span class="comment"> * SVR4-flavored systems, and Linux) containing the start of the</span> <a name="l00207"></a>00207 <span class="comment"> * command line for that program.</span> <a name="l00208"></a>00208 <span class="comment"> *</span> <a name="l00209"></a>00209 <span class="comment"> * The signal number probably appears in a section of type NT_PRSTATUS,</span> <a name="l00210"></a>00210 <span class="comment"> * but that's also rather OS-dependent, in ways that are harder to</span> <a name="l00211"></a>00211 <span class="comment"> * dissect with heuristics, so I'm not bothering with the signal number.</span> <a name="l00212"></a>00212 <span class="comment"> * (I suppose the signal number could be of interest in situations where</span> <a name="l00213"></a>00213 <span class="comment"> * you don't have the binary of the program that dropped core; if you</span> <a name="l00214"></a>00214 <span class="comment"> * *do* have that binary, the debugger will probably tell you what</span> <a name="l00215"></a>00215 <span class="comment"> * signal it was.)</span> <a name="l00216"></a>00216 <span class="comment"> */</span> <a name="l00217"></a>00217 <a name="l00218"></a>00218 <span class="preprocessor">#define OS_STYLE_SVR4 0</span> <a name="l00219"></a>00219 <span class="preprocessor"></span><span class="preprocessor">#define OS_STYLE_FREEBSD 1</span> <a name="l00220"></a>00220 <span class="preprocessor"></span><span class="preprocessor">#define OS_STYLE_NETBSD 2</span> <a name="l00221"></a>00221 <span class="preprocessor"></span> <a name="l00222"></a>00222 <span class="comment">/*@unchecked@*/</span> <span class="comment">/*@observer@*/</span> <a name="l00223"></a>00223 <span class="keyword">private</span> <span class="keyword">const</span> <span class="keywordtype">char</span> *os_style_names[] = { <a name="l00224"></a>00224 <span class="stringliteral">"SVR4"</span>, <a name="l00225"></a>00225 <span class="stringliteral">"FreeBSD"</span>, <a name="l00226"></a>00226 <span class="stringliteral">"NetBSD"</span>, <a name="l00227"></a>00227 }; <a name="l00228"></a>00228 <a name="l00229"></a>00229 <span class="keyword">private</span> <span class="keywordtype">int</span> <a name="l00230"></a>00230 dophn_core(<span class="keyword">struct</span> <a class="code" href="structmagic__set.html">magic_set</a> *ms, <span class="keywordtype">int</span> <span class="keyword">class</span>, <span class="keywordtype">int</span> swap, <span class="keywordtype">int</span> fd, off_t off, <a name="l00231"></a>00231 <span class="keywordtype">int</span> num, size_t size) <a name="l00232"></a>00232 { <a name="l00233"></a>00233 <a class="code" href="structElf32__Phdr.html">Elf32_Phdr</a> ph32; <a name="l00234"></a>00234 <a class="code" href="structElf64__Phdr.html">Elf64_Phdr</a> ph64; <a name="l00235"></a>00235 size_t offset; <a name="l00236"></a>00236 <span class="keywordtype">unsigned</span> <span class="keywordtype">char</span> nbuf[BUFSIZ]; <a name="l00237"></a>00237 ssize_t bufsize; <a name="l00238"></a>00238 <a name="l00239"></a>00239 <span class="keywordflow">if</span> (size != ph_size) { <a name="l00240"></a>00240 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", corrupted program header size"</span>) == -1) <a name="l00241"></a>00241 <span class="keywordflow">return</span> -1; <a name="l00242"></a>00242 <span class="keywordflow">return</span> 0; <a name="l00243"></a>00243 } <a name="l00244"></a>00244 <span class="comment">/*</span> <a name="l00245"></a>00245 <span class="comment"> * Loop through all the program headers.</span> <a name="l00246"></a>00246 <span class="comment"> */</span> <a name="l00247"></a>00247 <span class="keywordflow">for</span> ( ; num; num--) { <a name="l00248"></a>00248 <span class="keywordflow">if</span> (lseek(fd, off, <a class="code" href="system_8h.html#0d112bae8fd35be772185b6ec6bcbe64">SEEK_SET</a>) == (off_t)-1) { <a name="l00249"></a>00249 <a class="code" href="file_8h.html#f843575bf69eb8779dca750d93ee623c">file_badseek</a>(ms); <a name="l00250"></a>00250 <span class="keywordflow">return</span> -1; <a name="l00251"></a>00251 } <a name="l00252"></a>00252 <span class="keywordflow">if</span> (read(fd, ph_addr, ph_size) == -1) { <a name="l00253"></a>00253 <a class="code" href="file_8h.html#e489029528e5a368fbf15657fd940230">file_badread</a>(ms); <a name="l00254"></a>00254 <span class="keywordflow">return</span> -1; <a name="l00255"></a>00255 } <a name="l00256"></a>00256 off += size; <a name="l00257"></a>00257 <span class="keywordflow">if</span> (ph_type != <a class="code" href="readelf_8h.html#72baf87d62607c7fdccd3b8010d4ce30">PT_NOTE</a>) <a name="l00258"></a>00258 <span class="keywordflow">continue</span>; <a name="l00259"></a>00259 <a name="l00260"></a>00260 <span class="comment">/*</span> <a name="l00261"></a>00261 <span class="comment"> * This is a PT_NOTE section; loop through all the notes</span> <a name="l00262"></a>00262 <span class="comment"> * in the section.</span> <a name="l00263"></a>00263 <span class="comment"> */</span> <a name="l00264"></a>00264 <span class="keywordflow">if</span> (lseek(fd, (off_t) ph_offset, <a class="code" href="system_8h.html#0d112bae8fd35be772185b6ec6bcbe64">SEEK_SET</a>) == (off_t)-1) { <a name="l00265"></a>00265 <a class="code" href="file_8h.html#f843575bf69eb8779dca750d93ee623c">file_badseek</a>(ms); <a name="l00266"></a>00266 <span class="keywordflow">return</span> -1; <a name="l00267"></a>00267 } <a name="l00268"></a>00268 bufsize = read(fd, nbuf, <a name="l00269"></a>00269 ((ph_filesz < <span class="keyword">sizeof</span>(nbuf)) ? ph_filesz : <span class="keyword">sizeof</span>(nbuf))); <a name="l00270"></a>00270 <span class="keywordflow">if</span> (bufsize == -1) { <a name="l00271"></a>00271 <a class="code" href="file_8h.html#e489029528e5a368fbf15657fd940230">file_badread</a>(ms); <a name="l00272"></a>00272 <span class="keywordflow">return</span> -1; <a name="l00273"></a>00273 } <a name="l00274"></a>00274 offset = 0; <a name="l00275"></a>00275 <span class="keywordflow">for</span> (;;) { <a name="l00276"></a>00276 <span class="keywordflow">if</span> (offset >= (size_t)bufsize) <a name="l00277"></a>00277 <span class="comment">/*@innerbreak@*/</span> <span class="keywordflow">break</span>; <a name="l00278"></a>00278 offset = donote(ms, nbuf, offset, (size_t)bufsize, <a name="l00279"></a>00279 <span class="keyword">class</span>, swap, 4); <a name="l00280"></a>00280 <span class="keywordflow">if</span> (offset == 0) <a name="l00281"></a>00281 <span class="comment">/*@innerbreak@*/</span> <span class="keywordflow">break</span>; <a name="l00282"></a>00282 <a name="l00283"></a>00283 } <a name="l00284"></a>00284 } <a name="l00285"></a>00285 <span class="keywordflow">return</span> 0; <a name="l00286"></a>00286 } <a name="l00287"></a>00287 <span class="preprocessor">#endif</span> <a name="l00288"></a>00288 <span class="preprocessor"></span> <a name="l00289"></a>00289 <span class="keyword">private</span> size_t <a name="l00290"></a>00290 donote(<span class="keyword">struct</span> <a class="code" href="structmagic__set.html">magic_set</a> *ms, <span class="keywordtype">unsigned</span> <span class="keywordtype">char</span> *nbuf, size_t offset, size_t size, <a name="l00291"></a>00291 <span class="keywordtype">int</span> <span class="keyword">class</span>, <span class="keywordtype">int</span> swap, size_t align) <a name="l00292"></a>00292 { <a name="l00293"></a>00293 <a class="code" href="structelf__note.html">Elf32_Nhdr</a> nh32; <a name="l00294"></a>00294 <a class="code" href="structElf64__Nhdr.html">Elf64_Nhdr</a> nh64; <a name="l00295"></a>00295 size_t noff, doff; <a name="l00296"></a>00296 <span class="preprocessor">#ifdef ELFCORE</span> <a name="l00297"></a>00297 <span class="preprocessor"></span> <span class="keywordtype">int</span> os_style = -1; <a name="l00298"></a>00298 <span class="preprocessor">#endif</span> <a name="l00299"></a>00299 <span class="preprocessor"></span> uint32_t namesz, descsz; <a name="l00300"></a>00300 <a name="l00301"></a>00301 <span class="keywordflow">if</span> (<span class="keyword">class</span> == <a class="code" href="readelf_8h.html#5f84b1bf6e07374d6289eab3d8c57f1c">ELFCLASS32</a>) <a name="l00302"></a>00302 memcpy(&nh32, &nbuf[offset], <span class="keyword">sizeof</span>(nh32)); <a name="l00303"></a>00303 <span class="keywordflow">else</span> <a name="l00304"></a>00304 memcpy(&nh64, &nbuf[offset], <span class="keyword">sizeof</span>(nh64)); <a name="l00305"></a>00305 offset += nh_size; <a name="l00306"></a>00306 <a name="l00307"></a>00307 namesz = nh_namesz; <a name="l00308"></a>00308 descsz = nh_descsz; <a name="l00309"></a>00309 <span class="keywordflow">if</span> ((namesz == 0) && (descsz == 0)) { <a name="l00310"></a>00310 <span class="comment">/*</span> <a name="l00311"></a>00311 <span class="comment"> * We're out of note headers.</span> <a name="l00312"></a>00312 <span class="comment"> */</span> <a name="l00313"></a>00313 <span class="keywordflow">return</span> offset; <a name="l00314"></a>00314 } <a name="l00315"></a>00315 <a name="l00316"></a>00316 <span class="keywordflow">if</span> (namesz & 0x80000000) { <a name="l00317"></a>00317 (void)<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", bad note name size 0x%lx"</span>, <a name="l00318"></a>00318 (<span class="keywordtype">unsigned</span> <span class="keywordtype">long</span>)namesz); <a name="l00319"></a>00319 <span class="keywordflow">return</span> offset; <a name="l00320"></a>00320 } <a name="l00321"></a>00321 <a name="l00322"></a>00322 <span class="keywordflow">if</span> (descsz & 0x80000000) { <a name="l00323"></a>00323 (void)<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", bad note description size 0x%lx"</span>, <a name="l00324"></a>00324 (<span class="keywordtype">unsigned</span> <span class="keywordtype">long</span>)descsz); <a name="l00325"></a>00325 <span class="keywordflow">return</span> offset; <a name="l00326"></a>00326 } <a name="l00327"></a>00327 <a name="l00328"></a>00328 <a name="l00329"></a>00329 noff = offset; <a name="l00330"></a>00330 doff = ELF_ALIGN(offset + namesz); <a name="l00331"></a>00331 <a name="l00332"></a>00332 <span class="keywordflow">if</span> (offset + namesz > size) { <a name="l00333"></a>00333 <span class="comment">/*</span> <a name="l00334"></a>00334 <span class="comment"> * We're past the end of the buffer.</span> <a name="l00335"></a>00335 <span class="comment"> */</span> <a name="l00336"></a>00336 <span class="keywordflow">return</span> doff; <a name="l00337"></a>00337 } <a name="l00338"></a>00338 <a name="l00339"></a>00339 offset = ELF_ALIGN(doff + descsz); <a name="l00340"></a>00340 <span class="keywordflow">if</span> (doff + descsz > size) { <a name="l00341"></a>00341 <span class="keywordflow">return</span> offset; <a name="l00342"></a>00342 } <a name="l00343"></a>00343 <a name="l00344"></a>00344 <span class="keywordflow">if</span> (namesz == 4 && strcmp((<span class="keywordtype">char</span> *)&nbuf[noff], <span class="stringliteral">"GNU"</span>) == 0 && <a name="l00345"></a>00345 nh_type == <a class="code" href="readelf_8h.html#dffd6f854e6d24106a83865179ab3bbd">NT_GNU_VERSION</a> && descsz == 16) { <a name="l00346"></a>00346 uint32_t desc[4]; <a name="l00347"></a>00347 (void)memcpy(desc, &nbuf[doff], <span class="keyword">sizeof</span>(desc)); <a name="l00348"></a>00348 <a name="l00349"></a>00349 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", for GNU/"</span>) == -1) <a name="l00350"></a>00350 <span class="keywordflow">return</span> size; <a name="l00351"></a>00351 <span class="keywordflow">switch</span> (getu32(swap, desc[0])) { <a name="l00352"></a>00352 <span class="keywordflow">case</span> <a class="code" href="readelf_8h.html#8e5ecb608d356ef51e8af85fc0071625">GNU_OS_LINUX</a>: <a name="l00353"></a>00353 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">"Linux"</span>) == -1) <a name="l00354"></a>00354 <span class="keywordflow">return</span> size; <a name="l00355"></a>00355 <span class="keywordflow">break</span>; <a name="l00356"></a>00356 <span class="keywordflow">case</span> <a class="code" href="readelf_8h.html#192bd6a02753f76f42eed98cd6f09c84">GNU_OS_HURD</a>: <a name="l00357"></a>00357 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">"Hurd"</span>) == -1) <a name="l00358"></a>00358 <span class="keywordflow">return</span> size; <a name="l00359"></a>00359 <span class="keywordflow">break</span>; <a name="l00360"></a>00360 <span class="keywordflow">case</span> <a class="code" href="readelf_8h.html#f0f53c3ea5a904a3ab61672300864d59">GNU_OS_SOLARIS</a>: <a name="l00361"></a>00361 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">"Solaris"</span>) == -1) <a name="l00362"></a>00362 <span class="keywordflow">return</span> size; <a name="l00363"></a>00363 <span class="keywordflow">break</span>; <a name="l00364"></a>00364 <span class="keywordflow">default</span>: <a name="l00365"></a>00365 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">"<unknown>"</span>) == -1) <a name="l00366"></a>00366 <span class="keywordflow">return</span> size; <a name="l00367"></a>00367 } <a name="l00368"></a>00368 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">" %d.%d.%d"</span>, getu32(swap, desc[1]), <a name="l00369"></a>00369 getu32(swap, desc[2]), getu32(swap, desc[3])) == -1) <a name="l00370"></a>00370 <span class="keywordflow">return</span> size; <a name="l00371"></a>00371 <span class="keywordflow">return</span> size; <a name="l00372"></a>00372 } <a name="l00373"></a>00373 <a name="l00374"></a>00374 <span class="keywordflow">if</span> (namesz == 7 && strcmp((<span class="keywordtype">char</span> *)&nbuf[noff], <span class="stringliteral">"NetBSD"</span>) == 0 && <a name="l00375"></a>00375 nh_type == <a class="code" href="readelf_8h.html#abea916483d2eb665c1bde74c75accc5">NT_NETBSD_VERSION</a> && descsz == 4) { <a name="l00376"></a>00376 uint32_t desc; <a name="l00377"></a>00377 (void)memcpy(&desc, &nbuf[doff], <span class="keyword">sizeof</span>(desc)); <a name="l00378"></a>00378 desc = getu32(swap, desc); <a name="l00379"></a>00379 <a name="l00380"></a>00380 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", for NetBSD"</span>) == -1) <a name="l00381"></a>00381 <span class="keywordflow">return</span> size; <a name="l00382"></a>00382 <span class="comment">/*</span> <a name="l00383"></a>00383 <span class="comment"> * The version number used to be stuck as 199905, and was thus</span> <a name="l00384"></a>00384 <span class="comment"> * basically content-free. Newer versions of NetBSD have fixed</span> <a name="l00385"></a>00385 <span class="comment"> * this and now use the encoding of __NetBSD_Version__:</span> <a name="l00386"></a>00386 <span class="comment"> *</span> <a name="l00387"></a>00387 <span class="comment"> * MMmmrrpp00</span> <a name="l00388"></a>00388 <span class="comment"> *</span> <a name="l00389"></a>00389 <span class="comment"> * M = major version</span> <a name="l00390"></a>00390 <span class="comment"> * m = minor version</span> <a name="l00391"></a>00391 <span class="comment"> * r = release ["",A-Z,Z[A-Z] but numeric]</span> <a name="l00392"></a>00392 <span class="comment"> * p = patchlevel</span> <a name="l00393"></a>00393 <span class="comment"> */</span> <a name="l00394"></a>00394 <span class="keywordflow">if</span> (desc > 100000000U) { <a name="l00395"></a>00395 u_int ver_patch = (desc / 100) % 100; <a name="l00396"></a>00396 u_int ver_rel = (desc / 10000) % 100; <a name="l00397"></a>00397 u_int ver_min = (desc / 1000000) % 100; <a name="l00398"></a>00398 u_int ver_maj = desc / 100000000; <a name="l00399"></a>00399 <a name="l00400"></a>00400 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">" %u.%u"</span>, ver_maj, ver_min) == -1) <a name="l00401"></a>00401 <span class="keywordflow">return</span> size; <a name="l00402"></a>00402 <span class="keywordflow">if</span> (ver_rel == 0 && ver_patch != 0) { <a name="l00403"></a>00403 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">".%u"</span>, ver_patch) == -1) <a name="l00404"></a>00404 <span class="keywordflow">return</span> size; <a name="l00405"></a>00405 } <span class="keywordflow">else</span> <span class="keywordflow">if</span> (ver_rel != 0) { <a name="l00406"></a>00406 <span class="keywordflow">while</span> (ver_rel > 26) { <a name="l00407"></a>00407 <a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">"Z"</span>); <a name="l00408"></a>00408 ver_rel -= 26; <a name="l00409"></a>00409 } <a name="l00410"></a>00410 <a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">"%c"</span>, <span class="charliteral">'A'</span> + ver_rel - 1); <a name="l00411"></a>00411 } <a name="l00412"></a>00412 } <a name="l00413"></a>00413 <span class="keywordflow">return</span> size; <a name="l00414"></a>00414 } <a name="l00415"></a>00415 <a name="l00416"></a>00416 <span class="keywordflow">if</span> (namesz == 8 && strcmp((<span class="keywordtype">char</span> *)&nbuf[noff], <span class="stringliteral">"FreeBSD"</span>) == 0 && <a name="l00417"></a>00417 nh_type == <a class="code" href="readelf_8h.html#c8d4db685a4befa1aef06f0726d158ac">NT_FREEBSD_VERSION</a> && descsz == 4) { <a name="l00418"></a>00418 uint32_t desc; <a name="l00419"></a>00419 (void)memcpy(&desc, &nbuf[doff], <span class="keyword">sizeof</span>(desc)); <a name="l00420"></a>00420 desc = getu32(swap, desc); <a name="l00421"></a>00421 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", for FreeBSD"</span>) == -1) <a name="l00422"></a>00422 <span class="keywordflow">return</span> size; <a name="l00423"></a>00423 <a name="l00424"></a>00424 <span class="comment">/*</span> <a name="l00425"></a>00425 <span class="comment"> * Contents is __FreeBSD_version, whose relation to OS</span> <a name="l00426"></a>00426 <span class="comment"> * versions is defined by a huge table in the Porter's</span> <a name="l00427"></a>00427 <span class="comment"> * Handbook. This is the general scheme:</span> <a name="l00428"></a>00428 <span class="comment"> * </span> <a name="l00429"></a>00429 <span class="comment"> * Releases:</span> <a name="l00430"></a>00430 <span class="comment"> * Mmp000 (before 4.10)</span> <a name="l00431"></a>00431 <span class="comment"> * Mmi0p0 (before 5.0)</span> <a name="l00432"></a>00432 <span class="comment"> * Mmm0p0</span> <a name="l00433"></a>00433 <span class="comment"> * </span> <a name="l00434"></a>00434 <span class="comment"> * Development branches:</span> <a name="l00435"></a>00435 <span class="comment"> * Mmpxxx (before 4.6)</span> <a name="l00436"></a>00436 <span class="comment"> * Mmp1xx (before 4.10)</span> <a name="l00437"></a>00437 <span class="comment"> * Mmi1xx (before 5.0)</span> <a name="l00438"></a>00438 <span class="comment"> * M000xx (pre-M.0)</span> <a name="l00439"></a>00439 <span class="comment"> * Mmm1xx</span> <a name="l00440"></a>00440 <span class="comment"> * </span> <a name="l00441"></a>00441 <span class="comment"> * M = major version</span> <a name="l00442"></a>00442 <span class="comment"> * m = minor version</span> <a name="l00443"></a>00443 <span class="comment"> * i = minor version increment (491000 -> 4.10)</span> <a name="l00444"></a>00444 <span class="comment"> * p = patchlevel</span> <a name="l00445"></a>00445 <span class="comment"> * x = revision</span> <a name="l00446"></a>00446 <span class="comment"> * </span> <a name="l00447"></a>00447 <span class="comment"> * The first release of FreeBSD to use ELF by default</span> <a name="l00448"></a>00448 <span class="comment"> * was version 3.0.</span> <a name="l00449"></a>00449 <span class="comment"> */</span> <a name="l00450"></a>00450 <span class="keywordflow">if</span> (desc == 460002) { <a name="l00451"></a>00451 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">" 4.6.2"</span>) == -1) <a name="l00452"></a>00452 <span class="keywordflow">return</span> size; <a name="l00453"></a>00453 } <span class="keywordflow">else</span> <span class="keywordflow">if</span> (desc < 460100) { <a name="l00454"></a>00454 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">" %d.%d"</span>, desc / 100000, <a name="l00455"></a>00455 desc / 10000 % 10) == -1) <a name="l00456"></a>00456 <span class="keywordflow">return</span> size; <a name="l00457"></a>00457 <span class="keywordflow">if</span> (desc / 1000 % 10 > 0) <a name="l00458"></a>00458 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">".%d"</span>, desc / 1000 % 10) <a name="l00459"></a>00459 == -1) <a name="l00460"></a>00460 <span class="keywordflow">return</span> size; <a name="l00461"></a>00461 <span class="keywordflow">if</span> ((desc % 1000 > 0) || (desc % 100000 == 0)) <a name="l00462"></a>00462 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">" (%d)"</span>, desc) == -1) <a name="l00463"></a>00463 <span class="keywordflow">return</span> size; <a name="l00464"></a>00464 } <span class="keywordflow">else</span> <span class="keywordflow">if</span> (desc < 500000) { <a name="l00465"></a>00465 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">" %d.%d"</span>, desc / 100000, <a name="l00466"></a>00466 desc / 10000 % 10 + desc / 1000 % 10) == -1) <a name="l00467"></a>00467 <span class="keywordflow">return</span> size; <a name="l00468"></a>00468 <span class="keywordflow">if</span> (desc / 100 % 10 > 0) { <a name="l00469"></a>00469 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">" (%d)"</span>, desc) == -1) <a name="l00470"></a>00470 <span class="keywordflow">return</span> size; <a name="l00471"></a>00471 } <span class="keywordflow">else</span> <span class="keywordflow">if</span> (desc / 10 % 10 > 0) { <a name="l00472"></a>00472 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">".%d"</span>, desc / 10 % 10) <a name="l00473"></a>00473 == -1) <a name="l00474"></a>00474 <span class="keywordflow">return</span> size; <a name="l00475"></a>00475 } <a name="l00476"></a>00476 } <span class="keywordflow">else</span> { <a name="l00477"></a>00477 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">" %d.%d"</span>, desc / 100000, <a name="l00478"></a>00478 desc / 1000 % 100) == -1) <a name="l00479"></a>00479 <span class="keywordflow">return</span> size; <a name="l00480"></a>00480 <span class="keywordflow">if</span> ((desc / 100 % 10 > 0) || <a name="l00481"></a>00481 (desc % 100000 / 100 == 0)) { <a name="l00482"></a>00482 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">" (%d)"</span>, desc) == -1) <a name="l00483"></a>00483 <span class="keywordflow">return</span> size; <a name="l00484"></a>00484 } <span class="keywordflow">else</span> <span class="keywordflow">if</span> (desc / 10 % 10 > 0) { <a name="l00485"></a>00485 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">".%d"</span>, desc / 10 % 10) <a name="l00486"></a>00486 == -1) <a name="l00487"></a>00487 <span class="keywordflow">return</span> size; <a name="l00488"></a>00488 } <a name="l00489"></a>00489 } <a name="l00490"></a>00490 <span class="keywordflow">return</span> size; <a name="l00491"></a>00491 } <a name="l00492"></a>00492 <a name="l00493"></a>00493 <span class="keywordflow">if</span> (namesz == 8 && strcmp((<span class="keywordtype">char</span> *)&nbuf[noff], <span class="stringliteral">"OpenBSD"</span>) == 0 && <a name="l00494"></a>00494 nh_type == <a class="code" href="readelf_8h.html#4453da15165f5ed3e3085890bcdc7296">NT_OPENBSD_VERSION</a> && descsz == 4) { <a name="l00495"></a>00495 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", for OpenBSD"</span>) == -1) <a name="l00496"></a>00496 <span class="keywordflow">return</span> size; <a name="l00497"></a>00497 <span class="comment">/* Content of note is always 0 */</span> <a name="l00498"></a>00498 <span class="keywordflow">return</span> size; <a name="l00499"></a>00499 } <a name="l00500"></a>00500 <a name="l00501"></a>00501 <span class="keywordflow">if</span> (namesz == 10 && strcmp((<span class="keywordtype">char</span> *)&nbuf[noff], <span class="stringliteral">"DragonFly"</span>) == 0 && <a name="l00502"></a>00502 nh_type == <a class="code" href="readelf_8h.html#134b584102478f5efe4c0c16ba09ae08">NT_DRAGONFLY_VERSION</a> && descsz == 4) { <a name="l00503"></a>00503 uint32_t desc; <a name="l00504"></a>00504 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", for DragonFly"</span>) == -1) <a name="l00505"></a>00505 <span class="keywordflow">return</span> size; <a name="l00506"></a>00506 (void)memcpy(&desc, &nbuf[doff], <span class="keyword">sizeof</span>(desc)); <a name="l00507"></a>00507 desc = getu32(swap, desc); <a name="l00508"></a>00508 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">" %d.%d.%d"</span>, desc / 100000, <a name="l00509"></a>00509 desc / 10000 % 10, desc % 10000) == -1) <a name="l00510"></a>00510 <span class="keywordflow">return</span> size; <a name="l00511"></a>00511 <span class="keywordflow">return</span> size; <a name="l00512"></a>00512 } <a name="l00513"></a>00513 <a name="l00514"></a>00514 <span class="comment">/*</span> <a name="l00515"></a>00515 <span class="comment"> * Sigh. The 2.0.36 kernel in Debian 2.1, at</span> <a name="l00516"></a>00516 <span class="comment"> * least, doesn't correctly implement name</span> <a name="l00517"></a>00517 <span class="comment"> * sections, in core dumps, as specified by</span> <a name="l00518"></a>00518 <span class="comment"> * the "Program Linking" section of "UNIX(R) System</span> <a name="l00519"></a>00519 <span class="comment"> * V Release 4 Programmer's Guide: ANSI C and</span> <a name="l00520"></a>00520 <span class="comment"> * Programming Support Tools", because my copy</span> <a name="l00521"></a>00521 <span class="comment"> * clearly says "The first 'namesz' bytes in 'name'</span> <a name="l00522"></a>00522 <span class="comment"> * contain a *null-terminated* [emphasis mine]</span> <a name="l00523"></a>00523 <span class="comment"> * character representation of the entry's owner</span> <a name="l00524"></a>00524 <span class="comment"> * or originator", but the 2.0.36 kernel code</span> <a name="l00525"></a>00525 <span class="comment"> * doesn't include the terminating null in the</span> <a name="l00526"></a>00526 <span class="comment"> * name....</span> <a name="l00527"></a>00527 <span class="comment"> */</span> <a name="l00528"></a>00528 <span class="keywordflow">if</span> ((namesz == 4 && strncmp((<span class="keywordtype">char</span> *)&nbuf[noff], <span class="stringliteral">"CORE"</span>, 4) == 0) || <a name="l00529"></a>00529 (namesz == 5 && strcmp((<span class="keywordtype">char</span> *)&nbuf[noff], <span class="stringliteral">"CORE"</span>) == 0)) { <a name="l00530"></a>00530 os_style = OS_STYLE_SVR4; <a name="l00531"></a>00531 } <a name="l00532"></a>00532 <a name="l00533"></a>00533 <span class="keywordflow">if</span> ((namesz == 8 && strcmp((<span class="keywordtype">char</span> *)&nbuf[noff], <span class="stringliteral">"FreeBSD"</span>) == 0)) { <a name="l00534"></a>00534 os_style = OS_STYLE_FREEBSD; <a name="l00535"></a>00535 } <a name="l00536"></a>00536 <a name="l00537"></a>00537 <span class="keywordflow">if</span> ((namesz >= 11 && strncmp((<span class="keywordtype">char</span> *)&nbuf[noff], <span class="stringliteral">"NetBSD-CORE"</span>, 11) <a name="l00538"></a>00538 == 0)) { <a name="l00539"></a>00539 os_style = OS_STYLE_NETBSD; <a name="l00540"></a>00540 } <a name="l00541"></a>00541 <a name="l00542"></a>00542 <span class="preprocessor">#ifdef ELFCORE</span> <a name="l00543"></a>00543 <span class="preprocessor"></span> <span class="keywordflow">if</span> (os_style != -1) <a name="l00544"></a>00544 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", %s-style"</span>, os_style_names[os_style]) == -1) <a name="l00545"></a>00545 <span class="keywordflow">return</span> size; <a name="l00546"></a>00546 <a name="l00547"></a>00547 <span class="keywordflow">if</span> (os_style == OS_STYLE_NETBSD && nh_type == <a class="code" href="readelf_8h.html#4712be4ac47cb28b0283e5fe29f7df3e">NT_NETBSD_CORE_PROCINFO</a>) { <a name="l00548"></a>00548 uint32_t signo; <a name="l00549"></a>00549 <span class="comment">/*</span> <a name="l00550"></a>00550 <span class="comment"> * Extract the program name. It is at</span> <a name="l00551"></a>00551 <span class="comment"> * offset 0x7c, and is up to 32-bytes,</span> <a name="l00552"></a>00552 <span class="comment"> * including the terminating NUL.</span> <a name="l00553"></a>00553 <span class="comment"> */</span> <a name="l00554"></a>00554 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", from '%.31s'"</span>, &nbuf[doff + 0x7c]) == -1) <a name="l00555"></a>00555 <span class="keywordflow">return</span> size; <a name="l00556"></a>00556 <a name="l00557"></a>00557 <span class="comment">/*</span> <a name="l00558"></a>00558 <span class="comment"> * Extract the signal number. It is at</span> <a name="l00559"></a>00559 <span class="comment"> * offset 0x08.</span> <a name="l00560"></a>00560 <span class="comment"> */</span> <a name="l00561"></a>00561 memcpy(&signo, &nbuf[doff + 0x08], <a name="l00562"></a>00562 <span class="keyword">sizeof</span>(signo)); <a name="l00563"></a>00563 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">" (signal %u)"</span>, getu32(swap, signo)) == -1) <a name="l00564"></a>00564 <span class="keywordflow">return</span> size; <a name="l00565"></a>00565 <span class="keywordflow">return</span> size; <a name="l00566"></a>00566 } <span class="keywordflow">else</span> <span class="keywordflow">if</span> (os_style != OS_STYLE_NETBSD && nh_type == <a class="code" href="readelf_8h.html#41303acba10e393d83caac181d880799">NT_PRPSINFO</a>) { <a name="l00567"></a>00567 size_t i, j; <a name="l00568"></a>00568 <span class="keywordtype">unsigned</span> <span class="keywordtype">char</span> c; <a name="l00569"></a>00569 <span class="comment">/*</span> <a name="l00570"></a>00570 <span class="comment"> * Extract the program name. We assume</span> <a name="l00571"></a>00571 <span class="comment"> * it to be 16 characters (that's what it</span> <a name="l00572"></a>00572 <span class="comment"> * is in SunOS 5.x and Linux).</span> <a name="l00573"></a>00573 <span class="comment"> *</span> <a name="l00574"></a>00574 <span class="comment"> * Unfortunately, it's at a different offset</span> <a name="l00575"></a>00575 <span class="comment"> * in varous OSes, so try multiple offsets.</span> <a name="l00576"></a>00576 <span class="comment"> * If the characters aren't all printable,</span> <a name="l00577"></a>00577 <span class="comment"> * reject it.</span> <a name="l00578"></a>00578 <span class="comment"> */</span> <a name="l00579"></a>00579 <span class="keywordflow">for</span> (i = 0; i < NOFFSETS; i++) { <a name="l00580"></a>00580 size_t reloffset = prpsoffsets(i); <a name="l00581"></a>00581 size_t noffset = doff + reloffset; <a name="l00582"></a>00582 <span class="keywordflow">for</span> (j = 0; j < 16; j++, noffset++, reloffset++) { <a name="l00583"></a>00583 <span class="comment">/*</span> <a name="l00584"></a>00584 <span class="comment"> * Make sure we're not past</span> <a name="l00585"></a>00585 <span class="comment"> * the end of the buffer; if</span> <a name="l00586"></a>00586 <span class="comment"> * we are, just give up.</span> <a name="l00587"></a>00587 <span class="comment"> */</span> <a name="l00588"></a>00588 <span class="keywordflow">if</span> (noffset >= size) <a name="l00589"></a>00589 <span class="keywordflow">goto</span> tryanother; <a name="l00590"></a>00590 <a name="l00591"></a>00591 <span class="comment">/*</span> <a name="l00592"></a>00592 <span class="comment"> * Make sure we're not past</span> <a name="l00593"></a>00593 <span class="comment"> * the end of the contents;</span> <a name="l00594"></a>00594 <span class="comment"> * if we are, this obviously</span> <a name="l00595"></a>00595 <span class="comment"> * isn't the right offset.</span> <a name="l00596"></a>00596 <span class="comment"> */</span> <a name="l00597"></a>00597 <span class="keywordflow">if</span> (reloffset >= descsz) <a name="l00598"></a>00598 <span class="keywordflow">goto</span> tryanother; <a name="l00599"></a>00599 <a name="l00600"></a>00600 c = nbuf[noffset]; <a name="l00601"></a>00601 <span class="keywordflow">if</span> (c == <span class="charliteral">'\0'</span>) { <a name="l00602"></a>00602 <span class="comment">/*</span> <a name="l00603"></a>00603 <span class="comment"> * A '\0' at the</span> <a name="l00604"></a>00604 <span class="comment"> * beginning is</span> <a name="l00605"></a>00605 <span class="comment"> * obviously wrong.</span> <a name="l00606"></a>00606 <span class="comment"> * Any other '\0'</span> <a name="l00607"></a>00607 <span class="comment"> * means we're done.</span> <a name="l00608"></a>00608 <span class="comment"> */</span> <a name="l00609"></a>00609 <span class="keywordflow">if</span> (j == 0) <a name="l00610"></a>00610 <span class="keywordflow">goto</span> tryanother; <a name="l00611"></a>00611 <span class="keywordflow">else</span> <a name="l00612"></a>00612 <span class="comment">/*@innerbreak@*/</span> <span class="keywordflow">break</span>; <a name="l00613"></a>00613 } <span class="keywordflow">else</span> { <a name="l00614"></a>00614 <span class="comment">/*</span> <a name="l00615"></a>00615 <span class="comment"> * A nonprintable</span> <a name="l00616"></a>00616 <span class="comment"> * character is also</span> <a name="l00617"></a>00617 <span class="comment"> * wrong.</span> <a name="l00618"></a>00618 <span class="comment"> */</span> <a name="l00619"></a>00619 <span class="preprocessor">#define isquote(c) (strchr("'\"`", (c)) != NULL)</span> <a name="l00620"></a>00620 <span class="preprocessor"></span> <span class="keywordflow">if</span> (!isprint(c) || isquote(c)) <a name="l00621"></a>00621 <span class="keywordflow">goto</span> tryanother; <a name="l00622"></a>00622 } <a name="l00623"></a>00623 } <a name="l00624"></a>00624 <a name="l00625"></a>00625 <span class="comment">/*</span> <a name="l00626"></a>00626 <span class="comment"> * Well, that worked.</span> <a name="l00627"></a>00627 <span class="comment"> */</span> <a name="l00628"></a>00628 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", from '%.16s'"</span>, <a name="l00629"></a>00629 &nbuf[doff + prpsoffsets(i)]) == -1) <a name="l00630"></a>00630 <span class="keywordflow">return</span> size; <a name="l00631"></a>00631 <span class="keywordflow">return</span> size; <a name="l00632"></a>00632 <a name="l00633"></a>00633 tryanother: <a name="l00634"></a>00634 ; <a name="l00635"></a>00635 } <a name="l00636"></a>00636 <span class="keywordflow">return</span> offset; <a name="l00637"></a>00637 } <a name="l00638"></a>00638 <span class="preprocessor">#endif</span> <a name="l00639"></a>00639 <span class="preprocessor"></span> <span class="keywordflow">return</span> offset; <a name="l00640"></a>00640 } <a name="l00641"></a>00641 <a name="l00642"></a>00642 <span class="keyword">private</span> <span class="keywordtype">int</span> <a name="l00643"></a>00643 doshn(<span class="keyword">struct</span> <a class="code" href="structmagic__set.html">magic_set</a> *ms, <span class="keywordtype">int</span> <span class="keyword">class</span>, <span class="keywordtype">int</span> swap, <span class="keywordtype">int</span> fd, off_t off, <span class="keywordtype">int</span> num, <a name="l00644"></a>00644 size_t size) <a name="l00645"></a>00645 { <a name="l00646"></a>00646 <a class="code" href="structElf32__Shdr.html">Elf32_Shdr</a> sh32; <a name="l00647"></a>00647 <a class="code" href="structElf64__Shdr.html">Elf64_Shdr</a> sh64; <a name="l00648"></a>00648 <a name="l00649"></a>00649 <span class="keywordflow">if</span> (size != sh_size) { <a name="l00650"></a>00650 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", corrupted section header size"</span>) == -1) <a name="l00651"></a>00651 <span class="keywordflow">return</span> -1; <a name="l00652"></a>00652 <span class="keywordflow">return</span> 0; <a name="l00653"></a>00653 } <a name="l00654"></a>00654 <a name="l00655"></a>00655 <span class="keywordflow">if</span> (lseek(fd, off, <a class="code" href="system_8h.html#0d112bae8fd35be772185b6ec6bcbe64">SEEK_SET</a>) == (off_t)-1) { <a name="l00656"></a>00656 <a class="code" href="file_8h.html#f843575bf69eb8779dca750d93ee623c">file_badseek</a>(ms); <a name="l00657"></a>00657 <span class="keywordflow">return</span> -1; <a name="l00658"></a>00658 } <a name="l00659"></a>00659 <a name="l00660"></a>00660 <span class="keywordflow">for</span> ( ; num; num--) { <a name="l00661"></a>00661 <span class="keywordflow">if</span> (read(fd, sh_addr, sh_size) == -1) { <a name="l00662"></a>00662 <a class="code" href="file_8h.html#e489029528e5a368fbf15657fd940230">file_badread</a>(ms); <a name="l00663"></a>00663 <span class="keywordflow">return</span> -1; <a name="l00664"></a>00664 } <a name="l00665"></a>00665 <span class="keywordflow">if</span> (shs_type == <a class="code" href="readelf_8h.html#4add7784e43ec3d3b9c09d3ffc476a81">SHT_SYMTAB</a> <span class="comment">/* || shs_type == SHT_DYNSYM */</span>) { <a name="l00666"></a>00666 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", not stripped"</span>) == -1) <a name="l00667"></a>00667 <span class="keywordflow">return</span> -1; <a name="l00668"></a>00668 <span class="keywordflow">return</span> 0; <a name="l00669"></a>00669 } <a name="l00670"></a>00670 } <a name="l00671"></a>00671 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", stripped"</span>) == -1) <a name="l00672"></a>00672 <span class="keywordflow">return</span> -1; <a name="l00673"></a>00673 <span class="keywordflow">return</span> 0; <a name="l00674"></a>00674 } <a name="l00675"></a>00675 <a name="l00676"></a>00676 <span class="comment">/*</span> <a name="l00677"></a>00677 <span class="comment"> * Look through the program headers of an executable image, searching</span> <a name="l00678"></a>00678 <span class="comment"> * for a PT_INTERP section; if one is found, it's dynamically linked,</span> <a name="l00679"></a>00679 <span class="comment"> * otherwise it's statically linked.</span> <a name="l00680"></a>00680 <span class="comment"> */</span> <a name="l00681"></a>00681 <span class="keyword">private</span> <span class="keywordtype">int</span> <a name="l00682"></a>00682 dophn_exec(<span class="keyword">struct</span> <a class="code" href="structmagic__set.html">magic_set</a> *ms, <span class="keywordtype">int</span> <span class="keyword">class</span>, <span class="keywordtype">int</span> swap, <span class="keywordtype">int</span> fd, off_t off, <a name="l00683"></a>00683 <span class="keywordtype">int</span> num, size_t size) <a name="l00684"></a>00684 { <a name="l00685"></a>00685 <a class="code" href="structElf32__Phdr.html">Elf32_Phdr</a> ph32; <a name="l00686"></a>00686 <a class="code" href="structElf64__Phdr.html">Elf64_Phdr</a> ph64; <a name="l00687"></a>00687 <span class="keyword">const</span> <span class="keywordtype">char</span> *linking_style = <span class="stringliteral">"statically"</span>; <a name="l00688"></a>00688 <span class="keyword">const</span> <span class="keywordtype">char</span> *shared_libraries = <span class="stringliteral">""</span>; <a name="l00689"></a>00689 <span class="keywordtype">unsigned</span> <span class="keywordtype">char</span> nbuf[BUFSIZ]; <a name="l00690"></a>00690 <span class="keywordtype">int</span> bufsize; <a name="l00691"></a>00691 size_t offset, align; <a name="l00692"></a>00692 off_t savedoffset; <a name="l00693"></a>00693 <a name="l00694"></a>00694 <span class="keywordflow">if</span> (size != ph_size) { <a name="l00695"></a>00695 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", corrupted program header size"</span>) == -1) <a name="l00696"></a>00696 <span class="keywordflow">return</span> -1; <a name="l00697"></a>00697 <span class="keywordflow">return</span> 0; <a name="l00698"></a>00698 } <a name="l00699"></a>00699 <span class="keywordflow">if</span> (lseek(fd, off, <a class="code" href="system_8h.html#0d112bae8fd35be772185b6ec6bcbe64">SEEK_SET</a>) == (off_t)-1) { <a name="l00700"></a>00700 <a class="code" href="file_8h.html#f843575bf69eb8779dca750d93ee623c">file_badseek</a>(ms); <a name="l00701"></a>00701 <span class="keywordflow">return</span> -1; <a name="l00702"></a>00702 } <a name="l00703"></a>00703 <a name="l00704"></a>00704 <span class="keywordflow">for</span> ( ; num; num--) { <a name="l00705"></a>00705 <span class="keywordflow">if</span> (read(fd, ph_addr, ph_size) == -1) { <a name="l00706"></a>00706 <a class="code" href="file_8h.html#e489029528e5a368fbf15657fd940230">file_badread</a>(ms); <a name="l00707"></a>00707 <span class="keywordflow">return</span> -1; <a name="l00708"></a>00708 } <a name="l00709"></a>00709 <span class="keywordflow">if</span> ((savedoffset = lseek(fd, (off_t)0, <a class="code" href="system_8h.html#4c8d0b76b470ba65a43ca46a88320f39">SEEK_CUR</a>)) == (off_t)-1) { <a name="l00710"></a>00710 <a class="code" href="file_8h.html#f843575bf69eb8779dca750d93ee623c">file_badseek</a>(ms); <a name="l00711"></a>00711 <span class="keywordflow">return</span> -1; <a name="l00712"></a>00712 } <a name="l00713"></a>00713 <a name="l00714"></a>00714 <span class="keywordflow">switch</span> (ph_type) { <a name="l00715"></a>00715 <span class="keywordflow">case</span> <a class="code" href="readelf_8h.html#2121a2f01c51e8462bfd4d47725649d8">PT_DYNAMIC</a>: <a name="l00716"></a>00716 linking_style = <span class="stringliteral">"dynamically"</span>; <a name="l00717"></a>00717 <span class="comment">/*@switchbreak@*/</span> <span class="keywordflow">break</span>; <a name="l00718"></a>00718 <span class="keywordflow">case</span> <a class="code" href="readelf_8h.html#bcd3aa15bc567949c1ab6b1abc137710">PT_INTERP</a>: <a name="l00719"></a>00719 shared_libraries = <span class="stringliteral">" (uses shared libs)"</span>; <a name="l00720"></a>00720 <span class="comment">/*@switchbreak@*/</span> <span class="keywordflow">break</span>; <a name="l00721"></a>00721 <span class="keywordflow">case</span> <a class="code" href="readelf_8h.html#72baf87d62607c7fdccd3b8010d4ce30">PT_NOTE</a>: <a name="l00722"></a>00722 <span class="keywordflow">if</span> ((align = ph_align) & 0x80000000) { <a name="l00723"></a>00723 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <a name="l00724"></a>00724 <span class="stringliteral">", invalid note alignment 0x%lx"</span>, <a name="l00725"></a>00725 (<span class="keywordtype">unsigned</span> <span class="keywordtype">long</span>)align) == -1) <a name="l00726"></a>00726 <span class="keywordflow">return</span> -1; <a name="l00727"></a>00727 align = 4; <a name="l00728"></a>00728 } <a name="l00729"></a>00729 <span class="comment">/*</span> <a name="l00730"></a>00730 <span class="comment"> * This is a PT_NOTE section; loop through all the notes</span> <a name="l00731"></a>00731 <span class="comment"> * in the section.</span> <a name="l00732"></a>00732 <span class="comment"> */</span> <a name="l00733"></a>00733 <span class="keywordflow">if</span> (lseek(fd, (off_t) ph_offset, <a class="code" href="system_8h.html#0d112bae8fd35be772185b6ec6bcbe64">SEEK_SET</a>) <a name="l00734"></a>00734 == (off_t)-1) { <a name="l00735"></a>00735 <a class="code" href="file_8h.html#f843575bf69eb8779dca750d93ee623c">file_badseek</a>(ms); <a name="l00736"></a>00736 <span class="keywordflow">return</span> -1; <a name="l00737"></a>00737 } <a name="l00738"></a>00738 bufsize = read(fd, nbuf, ((ph_filesz < <span class="keyword">sizeof</span>(nbuf)) ? <a name="l00739"></a>00739 ph_filesz : <span class="keyword">sizeof</span>(nbuf))); <a name="l00740"></a>00740 <span class="keywordflow">if</span> (bufsize == -1) { <a name="l00741"></a>00741 <a class="code" href="file_8h.html#e489029528e5a368fbf15657fd940230">file_badread</a>(ms); <a name="l00742"></a>00742 <span class="keywordflow">return</span> -1; <a name="l00743"></a>00743 } <a name="l00744"></a>00744 offset = 0; <a name="l00745"></a>00745 <span class="keywordflow">for</span> (;;) { <a name="l00746"></a>00746 <span class="keywordflow">if</span> (offset >= (size_t)bufsize) <a name="l00747"></a>00747 <span class="comment">/*@innerbreak@*/</span> <span class="keywordflow">break</span>; <a name="l00748"></a>00748 offset = donote(ms, nbuf, offset, <a name="l00749"></a>00749 (size_t)bufsize, <span class="keyword">class</span>, swap, align); <a name="l00750"></a>00750 <span class="keywordflow">if</span> (offset == 0) <a name="l00751"></a>00751 <span class="comment">/*@innerbreak@*/</span> <span class="keywordflow">break</span>; <a name="l00752"></a>00752 } <a name="l00753"></a>00753 <span class="keywordflow">if</span> (lseek(fd, savedoffset, <a class="code" href="system_8h.html#0d112bae8fd35be772185b6ec6bcbe64">SEEK_SET</a>) == (off_t)-1) { <a name="l00754"></a>00754 <a class="code" href="file_8h.html#f843575bf69eb8779dca750d93ee623c">file_badseek</a>(ms); <a name="l00755"></a>00755 <span class="keywordflow">return</span> -1; <a name="l00756"></a>00756 } <a name="l00757"></a>00757 <span class="comment">/*@switchbreak@*/</span> <span class="keywordflow">break</span>; <a name="l00758"></a>00758 } <a name="l00759"></a>00759 } <a name="l00760"></a>00760 <span class="keywordflow">if</span> (<a class="code" href="file_8h.html#949757705ada92387535cfad72f9243c">file_printf</a>(ms, <span class="stringliteral">", %s linked%s"</span>, linking_style, shared_libraries) <a name="l00761"></a>00761 == -1) <a name="l00762"></a>00762 <span class="keywordflow">return</span> -1; <a name="l00763"></a>00763 <span class="keywordflow">return</span> 0; <a name="l00764"></a>00764 } <a name="l00765"></a>00765 <a name="l00766"></a>00766 <a name="l00767"></a>00767 <span class="keyword">protected</span> <span class="keywordtype">int</span> <a name="l00768"></a>00768 <a class="code" href="file_8h.html#01ae7d34c97725d1a1f9f2ef02dae640">file_tryelf</a>(<span class="keyword">struct</span> <a class="code" href="structmagic__set.html">magic_set</a> *ms, <span class="keywordtype">int</span> fd, <span class="keyword">const</span> <span class="keywordtype">unsigned</span> <span class="keywordtype">char</span> *buf, <a name="l00769"></a>00769 size_t nbytes) <a name="l00770"></a>00770 { <a name="l00771"></a>00771 <span class="keyword">union </span>{ <a name="l00772"></a>00772 int32_t l; <a name="l00773"></a>00773 <span class="keywordtype">char</span> c[<span class="keyword">sizeof</span> (int32_t)]; <a name="l00774"></a>00774 } u; <a name="l00775"></a>00775 <span class="keywordtype">int</span> <span class="keyword">class</span>; <a name="l00776"></a>00776 <span class="keywordtype">int</span> swap; <a name="l00777"></a>00777 <a name="l00778"></a>00778 <span class="comment">/*</span> <a name="l00779"></a>00779 <span class="comment"> * If we cannot seek, it must be a pipe, socket or fifo.</span> <a name="l00780"></a>00780 <span class="comment"> */</span> <a name="l00781"></a>00781 <span class="keywordflow">if</span>((lseek(fd, (off_t)0, <a class="code" href="system_8h.html#0d112bae8fd35be772185b6ec6bcbe64">SEEK_SET</a>) == (off_t)-1) && (errno == ESPIPE)) <a name="l00782"></a>00782 fd = <a class="code" href="compress_8c.html#af1b240b21ed4868e1704efc606f57dd">file_pipe2file</a>(ms, fd, buf, nbytes); <a name="l00783"></a>00783 <a name="l00784"></a>00784 <span class="comment">/*</span> <a name="l00785"></a>00785 <span class="comment"> * ELF executables have multiple section headers in arbitrary</span> <a name="l00786"></a>00786 <span class="comment"> * file locations and thus file(1) cannot determine it from easily.</span> <a name="l00787"></a>00787 <span class="comment"> * Instead we traverse thru all section headers until a symbol table</span> <a name="l00788"></a>00788 <span class="comment"> * one is found or else the binary is stripped.</span> <a name="l00789"></a>00789 <span class="comment"> */</span> <a name="l00790"></a>00790 <span class="keywordflow">if</span> (buf[<a class="code" href="readelf_8h.html#ba717f40a418b0d99c2efd4cdab4f54f">EI_MAG0</a>] != <a class="code" href="readelf_8h.html#2ae7ae1a6df04e0ed6be07b94590686e">ELFMAG0</a> <a name="l00791"></a>00791 || (buf[<a class="code" href="readelf_8h.html#2cae3878d982911632b418680718d53b">EI_MAG1</a>] != <a class="code" href="readelf_8h.html#6237b3c20ffd799df7b9a91ab3bbdff4">ELFMAG1</a> && buf[<a class="code" href="readelf_8h.html#2cae3878d982911632b418680718d53b">EI_MAG1</a>] != <a class="code" href="readelf_8h.html#08de437aabdeaa742e9ccb588f3184ff">OLFMAG1</a>) <a name="l00792"></a>00792 || buf[<a class="code" href="readelf_8h.html#2884a339ef7aefee59d160ed3fbb1739">EI_MAG2</a>] != <a class="code" href="readelf_8h.html#8ac1b98d78e30ca49e1d3f287939a18f">ELFMAG2</a> || buf[<a class="code" href="readelf_8h.html#ce03d4c5e8952e27b8505581432c3b84">EI_MAG3</a>] != <a class="code" href="readelf_8h.html#2beeae5974769f72da5f63dcbcc325fe">ELFMAG3</a>) <a name="l00793"></a>00793 <span class="keywordflow">return</span> 0; <a name="l00794"></a>00794 <a name="l00795"></a>00795 <a name="l00796"></a>00796 <span class="keyword">class </span>= buf[4]; <a name="l00797"></a>00797 <a name="l00798"></a>00798 <span class="keywordflow">if</span> (<span class="keyword">class</span> == <a class="code" href="readelf_8h.html#5f84b1bf6e07374d6289eab3d8c57f1c">ELFCLASS32</a>) { <a name="l00799"></a>00799 <a class="code" href="structElf32__Ehdr.html">Elf32_Ehdr</a> elfhdr; <a name="l00800"></a>00800 <span class="keywordflow">if</span> (nbytes <= <span class="keyword">sizeof</span> (<a class="code" href="structElf32__Ehdr.html">Elf32_Ehdr</a>)) <a name="l00801"></a>00801 <span class="keywordflow">return</span> 0; <a name="l00802"></a>00802 <a name="l00803"></a>00803 <a name="l00804"></a>00804 u.l = 1; <a name="l00805"></a>00805 (void) memcpy(&elfhdr, buf, <span class="keyword">sizeof</span> elfhdr); <a name="l00806"></a>00806 swap = (u.c[<span class="keyword">sizeof</span>(int32_t) - 1] + 1) != elfhdr.e_ident[5]; <a name="l00807"></a>00807 <a name="l00808"></a>00808 <span class="keywordflow">if</span> (getu16(swap, elfhdr.e_type) == <a class="code" href="readelf_8h.html#2b9430d26ba60f7a9d65c8d43e54f213">ET_CORE</a>) { <a name="l00809"></a>00809 #ifdef ELFCORE <a name="l00810"></a>00810 <span class="keywordflow">if</span> (dophn_core(ms, <span class="keyword">class</span>, swap, fd, <a name="l00811"></a>00811 (off_t)getu32(swap, elfhdr.e_phoff), <a name="l00812"></a>00812 getu16(swap, elfhdr.e_phnum), <a name="l00813"></a>00813 (size_t)getu16(swap, elfhdr.e_phentsize)) == -1) <a name="l00814"></a>00814 <span class="keywordflow">return</span> -1; <a name="l00815"></a>00815 <span class="preprocessor">#else</span> <a name="l00816"></a>00816 <span class="preprocessor"></span> ; <a name="l00817"></a>00817 <span class="preprocessor">#endif</span> <a name="l00818"></a>00818 <span class="preprocessor"></span> } <span class="keywordflow">else</span> { <a name="l00819"></a>00819 <span class="keywordflow">if</span> (getu16(swap, elfhdr.e_type) == <a class="code" href="readelf_8h.html#942478985eb016311380dee473cc8c3e">ET_EXEC</a>) { <a name="l00820"></a>00820 <span class="keywordflow">if</span> (dophn_exec(ms, <span class="keyword">class</span>, swap, <a name="l00821"></a>00821 fd, (off_t)getu32(swap, elfhdr.e_phoff), <a name="l00822"></a>00822 getu16(swap, elfhdr.e_phnum), <a name="l00823"></a>00823 (size_t)getu16(swap, elfhdr.e_phentsize)) <a name="l00824"></a>00824 == -1) <a name="l00825"></a>00825 <span class="keywordflow">return</span> -1; <a name="l00826"></a>00826 } <a name="l00827"></a>00827 <span class="keywordflow">if</span> (doshn(ms, <span class="keyword">class</span>, swap, fd, <a name="l00828"></a>00828 (off_t)getu32(swap, elfhdr.e_shoff), <a name="l00829"></a>00829 getu16(swap, elfhdr.e_shnum), <a name="l00830"></a>00830 (size_t)getu16(swap, elfhdr.e_shentsize)) == -1) <a name="l00831"></a>00831 <span class="keywordflow">return</span> -1; <a name="l00832"></a>00832 } <a name="l00833"></a>00833 <span class="keywordflow">return</span> 1; <a name="l00834"></a>00834 } <a name="l00835"></a>00835 <a name="l00836"></a>00836 <span class="keywordflow">if</span> (<span class="keyword">class</span> == <a class="code" href="readelf_8h.html#9ee66b59be5c78ea1f1eea8a36f2c291">ELFCLASS64</a>) { <a name="l00837"></a>00837 <a class="code" href="structElf64__Ehdr.html">Elf64_Ehdr</a> elfhdr; <a name="l00838"></a>00838 <span class="keywordflow">if</span> (nbytes <= <span class="keyword">sizeof</span> (<a class="code" href="structElf64__Ehdr.html">Elf64_Ehdr</a>)) <a name="l00839"></a>00839 <span class="keywordflow">return</span> 0; <a name="l00840"></a>00840 <a name="l00841"></a>00841 <a name="l00842"></a>00842 u.l = 1; <a name="l00843"></a>00843 (void) memcpy(&elfhdr, buf, <span class="keyword">sizeof</span> elfhdr); <a name="l00844"></a>00844 swap = (u.c[<span class="keyword">sizeof</span>(int32_t) - 1] + 1) != elfhdr.e_ident[5]; <a name="l00845"></a>00845 <a name="l00846"></a>00846 <span class="keywordflow">if</span> (getu16(swap, elfhdr.e_type) == <a class="code" href="readelf_8h.html#2b9430d26ba60f7a9d65c8d43e54f213">ET_CORE</a>) { <a name="l00847"></a>00847 #ifdef ELFCORE <a name="l00848"></a>00848 <span class="keywordflow">if</span> (dophn_core(ms, <span class="keyword">class</span>, swap, fd, <a name="l00849"></a>00849 #ifdef <a class="code" href="readelf_8h.html#67a982aa647d031eebeacbe6ecb719db">USE_ARRAY_FOR_64BIT_TYPES</a> <a name="l00850"></a>00850 (off_t)getu32(swap, elfhdr.e_phoff[1]), <a name="l00851"></a>00851 #else <a name="l00852"></a>00852 (off_t)getu64(swap, elfhdr.e_phoff), <a name="l00853"></a>00853 #endif <a name="l00854"></a>00854 getu16(swap, elfhdr.e_phnum), <a name="l00855"></a>00855 (size_t)getu16(swap, elfhdr.e_phentsize)) == -1) <a name="l00856"></a>00856 <span class="keywordflow">return</span> -1; <a name="l00857"></a>00857 <span class="preprocessor">#else</span> <a name="l00858"></a>00858 <span class="preprocessor"></span> ; <a name="l00859"></a>00859 <span class="preprocessor">#endif</span> <a name="l00860"></a>00860 <span class="preprocessor"></span> } <span class="keywordflow">else</span> { <a name="l00861"></a>00861 <span class="keywordflow">if</span> (getu16(swap, elfhdr.e_type) == <a class="code" href="readelf_8h.html#942478985eb016311380dee473cc8c3e">ET_EXEC</a>) { <a name="l00862"></a>00862 <span class="keywordflow">if</span> (dophn_exec(ms, <span class="keyword">class</span>, swap, fd, <a name="l00863"></a>00863 #ifdef <a class="code" href="readelf_8h.html#67a982aa647d031eebeacbe6ecb719db">USE_ARRAY_FOR_64BIT_TYPES</a> <a name="l00864"></a>00864 (off_t)getu32(swap, elfhdr.e_phoff[1]), <a name="l00865"></a>00865 #else <a name="l00866"></a>00866 (off_t)getu64(swap, elfhdr.e_phoff), <a name="l00867"></a>00867 #endif <a name="l00868"></a>00868 getu16(swap, elfhdr.e_phnum), <a name="l00869"></a>00869 (size_t)getu16(swap, elfhdr.e_phentsize)) <a name="l00870"></a>00870 == -1) <a name="l00871"></a>00871 <span class="keywordflow">return</span> -1; <a name="l00872"></a>00872 } <a name="l00873"></a>00873 <span class="keywordflow">if</span> (doshn(ms, <span class="keyword">class</span>, swap, fd, <a name="l00874"></a>00874 #ifdef <a class="code" href="readelf_8h.html#67a982aa647d031eebeacbe6ecb719db">USE_ARRAY_FOR_64BIT_TYPES</a> <a name="l00875"></a>00875 (off_t)getu32(swap, elfhdr.e_shoff[1]), <a name="l00876"></a>00876 #else <a name="l00877"></a>00877 (off_t)getu64(swap, elfhdr.e_shoff), <a name="l00878"></a>00878 #endif <a name="l00879"></a>00879 getu16(swap, elfhdr.e_shnum), <a name="l00880"></a>00880 (size_t)getu16(swap, elfhdr.e_shentsize)) == -1) <a name="l00881"></a>00881 <span class="keywordflow">return</span> -1; <a name="l00882"></a>00882 } <a name="l00883"></a>00883 <span class="keywordflow">return</span> 1; <a name="l00884"></a>00884 } <a name="l00885"></a>00885 <span class="keywordflow">return</span> 0; <a name="l00886"></a>00886 } <a name="l00887"></a>00887 <span class="preprocessor">#endif</span> </pre></div><hr size="1"><address style="align: right;"><small>Generated on 1 Oct 2013 for rpm by <a href="http://www.doxygen.org/index.html"> <img src="doxygen.png" alt="doxygen" align="middle" border="0"></a> 1.4.7 </small></address> </body> </html>