1 /*
2 * Copyright (C) 2008 The Android Open Source Project
3 * All rights reserved.
4 *
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
7 * are met:
8 * * Redistributions of source code must retain the above copyright
9 * notice, this list of conditions and the following disclaimer.
10 * * Redistributions in binary form must reproduce the above copyright
11 * notice, this list of conditions and the following disclaimer in
12 * the documentation and/or other materials provided with the
13 * distribution.
14 *
15 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
16 * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
17 * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS
18 * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE
19 * COPYRIGHT OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT,
20 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
21 * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS
22 * OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED
23 * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
24 * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT
25 * OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
26 * SUCH DAMAGE.
27 */
28
29 #include <android/api-level.h>
30 #include <elf.h>
31 #include <errno.h>
32 #include <stddef.h>
33 #include <stdint.h>
34 #include <stdio.h>
35 #include <stdlib.h>
36 #include <sys/auxv.h>
37 #include <sys/mman.h>
38
39 #include "libc_init_common.h"
40 #include "pthread_internal.h"
41
42 #include "private/bionic_elf_tls.h"
43 #include "private/bionic_globals.h"
44 #include "private/bionic_macros.h"
45 #include "private/bionic_page.h"
46 #include "private/bionic_tls.h"
47 #include "private/KernelArgumentBlock.h"
48
49 #if __has_feature(hwaddress_sanitizer)
50 #include <sanitizer/hwasan_interface.h>
51 #endif
52
53 // Leave the variable uninitialized for the sake of the dynamic loader, which
54 // links in this file. The loader will initialize this variable before
55 // relocating itself.
56 #if defined(__i386__)
57 __LIBC_HIDDEN__ void* __libc_sysinfo;
58 #endif
59
60 extern "C" int __cxa_atexit(void (*)(void *), void *, void *);
61
call_array(void (** list)())62 static void call_array(void(**list)()) {
63 // First element is -1, list is null-terminated
64 while (*++list) {
65 (*list)();
66 }
67 }
68
69 #if defined(__aarch64__) || defined(__x86_64__)
70 extern __LIBC_HIDDEN__ __attribute__((weak)) ElfW(Rela) __rela_iplt_start[], __rela_iplt_end[];
71
call_ifunc_resolvers()72 static void call_ifunc_resolvers() {
73 if (__rela_iplt_start == nullptr || __rela_iplt_end == nullptr) {
74 // These symbols are not emitted by gold. Gold has code to do so, but for
75 // whatever reason it is not being run. In these cases ifuncs cannot be
76 // resolved, so we do not support using ifuncs in static executables linked
77 // with gold.
78 //
79 // Since they are weak, they will be non-null when linked with bfd/lld and
80 // null when linked with gold.
81 return;
82 }
83
84 typedef ElfW(Addr) (*ifunc_resolver_t)(void);
85 for (ElfW(Rela) *r = __rela_iplt_start; r != __rela_iplt_end; ++r) {
86 ElfW(Addr)* offset = reinterpret_cast<ElfW(Addr)*>(r->r_offset);
87 ElfW(Addr) resolver = r->r_addend;
88 *offset = reinterpret_cast<ifunc_resolver_t>(resolver)();
89 }
90 }
91 #else
92 extern __LIBC_HIDDEN__ __attribute__((weak)) ElfW(Rel) __rel_iplt_start[], __rel_iplt_end[];
93
call_ifunc_resolvers()94 static void call_ifunc_resolvers() {
95 if (__rel_iplt_start == nullptr || __rel_iplt_end == nullptr) {
96 // These symbols are not emitted by gold. Gold has code to do so, but for
97 // whatever reason it is not being run. In these cases ifuncs cannot be
98 // resolved, so we do not support using ifuncs in static executables linked
99 // with gold.
100 //
101 // Since they are weak, they will be non-null when linked with bfd/lld and
102 // null when linked with gold.
103 return;
104 }
105
106 typedef ElfW(Addr) (*ifunc_resolver_t)(void);
107 for (ElfW(Rel) *r = __rel_iplt_start; r != __rel_iplt_end; ++r) {
108 ElfW(Addr)* offset = reinterpret_cast<ElfW(Addr)*>(r->r_offset);
109 ElfW(Addr) resolver = *offset;
110 *offset = reinterpret_cast<ifunc_resolver_t>(resolver)();
111 }
112 }
113 #endif
114
apply_gnu_relro()115 static void apply_gnu_relro() {
116 ElfW(Phdr)* phdr_start = reinterpret_cast<ElfW(Phdr)*>(getauxval(AT_PHDR));
117 unsigned long int phdr_ct = getauxval(AT_PHNUM);
118
119 for (ElfW(Phdr)* phdr = phdr_start; phdr < (phdr_start + phdr_ct); phdr++) {
120 if (phdr->p_type != PT_GNU_RELRO) {
121 continue;
122 }
123
124 ElfW(Addr) seg_page_start = PAGE_START(phdr->p_vaddr);
125 ElfW(Addr) seg_page_end = PAGE_END(phdr->p_vaddr + phdr->p_memsz);
126
127 // Check return value here? What do we do if we fail?
128 mprotect(reinterpret_cast<void*>(seg_page_start), seg_page_end - seg_page_start, PROT_READ);
129 }
130 }
131
layout_static_tls(KernelArgumentBlock & args)132 static void layout_static_tls(KernelArgumentBlock& args) {
133 StaticTlsLayout& layout = __libc_shared_globals()->static_tls_layout;
134 layout.reserve_bionic_tls();
135
136 const char* progname = args.argv[0];
137 ElfW(Phdr)* phdr_start = reinterpret_cast<ElfW(Phdr)*>(getauxval(AT_PHDR));
138 size_t phdr_ct = getauxval(AT_PHNUM);
139
140 static TlsModule mod;
141 TlsModules& modules = __libc_shared_globals()->tls_modules;
142 if (__bionic_get_tls_segment(phdr_start, phdr_ct, 0, &mod.segment)) {
143 if (!__bionic_check_tls_alignment(&mod.segment.alignment)) {
144 async_safe_fatal("error: TLS segment alignment in \"%s\" is not a power of 2: %zu\n",
145 progname, mod.segment.alignment);
146 }
147 mod.static_offset = layout.reserve_exe_segment_and_tcb(&mod.segment, progname);
148 mod.first_generation = kTlsGenerationFirst;
149
150 modules.module_count = 1;
151 modules.module_table = &mod;
152 } else {
153 layout.reserve_exe_segment_and_tcb(nullptr, progname);
154 }
155 // Enable the fast path in __tls_get_addr.
156 __libc_tls_generation_copy = modules.generation;
157
158 layout.finish_layout();
159 }
160
161 // The program startup function __libc_init() defined here is
162 // used for static executables only (i.e. those that don't depend
163 // on shared libraries). It is called from arch-$ARCH/bionic/crtbegin_static.S
164 // which is directly invoked by the kernel when the program is launched.
165 //
166 // The 'structors' parameter contains pointers to various initializer
167 // arrays that must be run before the program's 'main' routine is launched.
__real_libc_init(void * raw_args,void (* onexit)(void)__unused,int (* slingshot)(int,char **,char **),structors_array_t const * const structors,bionic_tcb * temp_tcb)168 __noreturn static void __real_libc_init(void *raw_args,
169 void (*onexit)(void) __unused,
170 int (*slingshot)(int, char**, char**),
171 structors_array_t const * const structors,
172 bionic_tcb* temp_tcb) {
173 BIONIC_STOP_UNWIND;
174
175 // Initialize TLS early so system calls and errno work.
176 KernelArgumentBlock args(raw_args);
177 __libc_init_main_thread_early(args, temp_tcb);
178 __libc_init_main_thread_late();
179 __libc_init_globals();
180 __libc_shared_globals()->init_progname = args.argv[0];
181 __libc_init_AT_SECURE(args.envp);
182 layout_static_tls(args);
183 __libc_init_main_thread_final();
184 __libc_init_common();
185
186 call_ifunc_resolvers();
187 apply_gnu_relro();
188
189 // Several Linux ABIs don't pass the onexit pointer, and the ones that
190 // do never use it. Therefore, we ignore it.
191
192 call_array(structors->preinit_array);
193 call_array(structors->init_array);
194
195 // The executable may have its own destructors listed in its .fini_array
196 // so we need to ensure that these are called when the program exits
197 // normally.
198 if (structors->fini_array != nullptr) {
199 __cxa_atexit(__libc_fini,structors->fini_array,nullptr);
200 }
201
202 exit(slingshot(args.argc, args.argv, args.envp));
203 }
204
205 extern "C" void __hwasan_init_static();
206
207 __attribute__((no_sanitize("hwaddress")))
__libc_init(void * raw_args,void (* onexit)(void)__unused,int (* slingshot)(int,char **,char **),structors_array_t const * const structors)208 __noreturn void __libc_init(void* raw_args,
209 void (*onexit)(void) __unused,
210 int (*slingshot)(int, char**, char**),
211 structors_array_t const * const structors) {
212 bionic_tcb temp_tcb = {};
213 #if __has_feature(hwaddress_sanitizer)
214 // Install main thread TLS early. It will be initialized later in __libc_init_main_thread. For now
215 // all we need is access to TLS_SLOT_SANITIZER.
216 __set_tls(&temp_tcb.tls_slot(0));
217 // Initialize HWASan enough to run instrumented code. This sets up TLS_SLOT_SANITIZER, among other
218 // things.
219 __hwasan_init_static();
220 // We are ready to run HWASan-instrumented code, proceed with libc initialization...
221 #endif
222 __real_libc_init(raw_args, onexit, slingshot, structors, &temp_tcb);
223 }
224
225 static int g_target_sdk_version{__ANDROID_API__};
226
android_get_application_target_sdk_version()227 extern "C" int android_get_application_target_sdk_version() {
228 return g_target_sdk_version;
229 }
230
android_set_application_target_sdk_version(int target)231 extern "C" void android_set_application_target_sdk_version(int target) {
232 g_target_sdk_version = target;
233 }
234
__libc_shared_globals()235 __LIBC_HIDDEN__ libc_shared_globals* __libc_shared_globals() {
236 static libc_shared_globals globals;
237 return &globals;
238 }
239