blob: 763b15c4bbc22f4853b5aab7a5198e5112677c7c [file] [log] [blame]
Dimitry Ivanov3f660572016-09-09 10:00:39 -07001/*
2 * Copyright (C) 2016 The Android Open Source Project
3 * All rights reserved.
4 *
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
7 * are met:
8 * * Redistributions of source code must retain the above copyright
9 * notice, this list of conditions and the following disclaimer.
10 * * Redistributions in binary form must reproduce the above copyright
11 * notice, this list of conditions and the following disclaimer in
12 * the documentation and/or other materials provided with the
13 * distribution.
14 *
15 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
16 * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
17 * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS
18 * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE
19 * COPYRIGHT OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT,
20 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
21 * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS
22 * OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED
23 * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
24 * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT
25 * OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
26 * SUCH DAMAGE.
27 */
28
29#include "linker_main.h"
30
Ryan Prichard701bd0c2018-11-21 16:23:03 -080031#include <link.h>
32#include <sys/auxv.h>
33
Dimitry Ivanov3f660572016-09-09 10:00:39 -070034#include "linker_debug.h"
Evgenii Stepanov0a3637d2016-07-06 13:20:59 -070035#include "linker_cfi.h"
Dimitry Ivanov3f660572016-09-09 10:00:39 -070036#include "linker_gdb_support.h"
37#include "linker_globals.h"
38#include "linker_phdr.h"
Ryan Prichard45d13492019-01-03 02:51:30 -080039#include "linker_tls.h"
Dimitry Ivanov3f660572016-09-09 10:00:39 -070040#include "linker_utils.h"
41
42#include "private/bionic_globals.h"
43#include "private/bionic_tls.h"
44#include "private/KernelArgumentBlock.h"
45
Ryan Prichard8f639a42018-10-01 23:10:05 -070046#include "android-base/unique_fd.h"
Dimitry Ivanov3f660572016-09-09 10:00:39 -070047#include "android-base/strings.h"
48#include "android-base/stringprintf.h"
Dan Willemsen7ec52b12016-11-28 17:02:25 -080049#ifdef __ANDROID__
Josh Gao2a3b4fa2016-10-26 17:55:49 -070050#include "debuggerd/handler.h"
Dan Willemsen7ec52b12016-11-28 17:02:25 -080051#endif
Dimitry Ivanov3f660572016-09-09 10:00:39 -070052
Christopher Ferris7a3681e2017-04-24 17:48:32 -070053#include <async_safe/log.h>
Ryan Prichard701bd0c2018-11-21 16:23:03 -080054#include <bionic/libc_init_common.h>
Ryan Prichard45d13492019-01-03 02:51:30 -080055#include <bionic/pthread_internal.h>
Christopher Ferris7a3681e2017-04-24 17:48:32 -070056
Dimitry Ivanov3f660572016-09-09 10:00:39 -070057#include <vector>
58
Ryan Prichard8f639a42018-10-01 23:10:05 -070059__LIBC_HIDDEN__ extern "C" void _start();
Dimitry Ivanov3f660572016-09-09 10:00:39 -070060
61static ElfW(Addr) get_elf_exec_load_bias(const ElfW(Ehdr)* elf);
62
Ryan Prichard9729f352018-07-13 22:40:26 -070063static void get_elf_base_from_phdr(const ElfW(Phdr)* phdr_table, size_t phdr_count,
64 ElfW(Addr)* base, ElfW(Addr)* load_bias);
65
Dimitry Ivanov3f660572016-09-09 10:00:39 -070066// These should be preserved static to avoid emitting
67// RELATIVE relocations for the part of the code running
68// before linker links itself.
69
70// TODO (dimtiry): remove somain, rename solist to solist_head
71static soinfo* solist;
72static soinfo* sonext;
73static soinfo* somain; // main process, always the one after libdl_info
Ryan Prichard04896452018-08-20 17:44:42 -070074static soinfo* solinker;
dimitry8b142562018-05-09 15:22:38 +020075static soinfo* vdso; // vdso if present
Dimitry Ivanov3f660572016-09-09 10:00:39 -070076
77void solist_add_soinfo(soinfo* si) {
78 sonext->next = si;
79 sonext = si;
80}
81
82bool solist_remove_soinfo(soinfo* si) {
83 soinfo *prev = nullptr, *trav;
84 for (trav = solist; trav != nullptr; trav = trav->next) {
85 if (trav == si) {
86 break;
87 }
88 prev = trav;
89 }
90
91 if (trav == nullptr) {
92 // si was not in solist
93 PRINT("name \"%s\"@%p is not in solist!", si->get_realpath(), si);
94 return false;
95 }
96
97 // prev will never be null, because the first entry in solist is
98 // always the static libdl_info.
George Burgess IV70591002017-06-27 16:23:45 -070099 CHECK(prev != nullptr);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700100 prev->next = si->next;
101 if (si == sonext) {
102 sonext = prev;
103 }
104
105 return true;
106}
107
108soinfo* solist_get_head() {
109 return solist;
110}
111
112soinfo* solist_get_somain() {
113 return somain;
114}
115
dimitry8b142562018-05-09 15:22:38 +0200116soinfo* solist_get_vdso() {
117 return vdso;
118}
119
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700120int g_ld_debug_verbosity;
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700121
122static std::vector<std::string> g_ld_preload_names;
123
124static std::vector<soinfo*> g_ld_preloads;
125
126static void parse_path(const char* path, const char* delimiters,
127 std::vector<std::string>* resolved_paths) {
128 std::vector<std::string> paths;
129 split_path(path, delimiters, &paths);
130 resolve_paths(paths, resolved_paths);
131}
132
133static void parse_LD_LIBRARY_PATH(const char* path) {
134 std::vector<std::string> ld_libary_paths;
135 parse_path(path, ":", &ld_libary_paths);
136 g_default_namespace.set_ld_library_paths(std::move(ld_libary_paths));
137}
138
139static void parse_LD_PRELOAD(const char* path) {
140 g_ld_preload_names.clear();
141 if (path != nullptr) {
142 // We have historically supported ':' as well as ' ' in LD_PRELOAD.
143 g_ld_preload_names = android::base::Split(path, " :");
Josh Gao44f6e182017-10-18 17:25:24 -0700144 g_ld_preload_names.erase(std::remove_if(g_ld_preload_names.begin(), g_ld_preload_names.end(),
Josh Gao27242c62017-10-20 17:45:13 -0700145 [](const std::string& s) { return s.empty(); }),
146 g_ld_preload_names.end());
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700147 }
148}
149
150// An empty list of soinfos
151static soinfo_list_t g_empty_list;
152
Ryan Prichard07440a82018-11-22 03:16:06 -0800153static void add_vdso() {
154 ElfW(Ehdr)* ehdr_vdso = reinterpret_cast<ElfW(Ehdr)*>(getauxval(AT_SYSINFO_EHDR));
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700155 if (ehdr_vdso == nullptr) {
156 return;
157 }
158
159 soinfo* si = soinfo_alloc(&g_default_namespace, "[vdso]", nullptr, 0, 0);
160
161 si->phdr = reinterpret_cast<ElfW(Phdr)*>(reinterpret_cast<char*>(ehdr_vdso) + ehdr_vdso->e_phoff);
162 si->phnum = ehdr_vdso->e_phnum;
163 si->base = reinterpret_cast<ElfW(Addr)>(ehdr_vdso);
164 si->size = phdr_table_get_load_size(si->phdr, si->phnum);
165 si->load_bias = get_elf_exec_load_bias(ehdr_vdso);
166
167 si->prelink_image();
Torne (Richard Coles)efbe9a52018-10-17 15:59:38 -0400168 si->link_image(g_empty_list, soinfo_list_t::make_list(si), nullptr, nullptr);
dimitryc18de1b2017-09-26 14:31:35 +0200169 // prevents accidental unloads...
170 si->set_dt_flags_1(si->get_dt_flags_1() | DF_1_NODELETE);
171 si->set_linked();
172 si->call_constructors();
dimitry8b142562018-05-09 15:22:38 +0200173
174 vdso = si;
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700175}
176
Ryan Prichard04896452018-08-20 17:44:42 -0700177// Initializes an soinfo's link_map_head field using other fields from the
178// soinfo (phdr, phnum, load_bias).
179static void init_link_map_head(soinfo& info, const char* linker_path) {
180 auto& map = info.link_map_head;
181 map.l_addr = info.load_bias;
182 map.l_name = const_cast<char*>(linker_path);
183 phdr_table_get_dynamic_section(info.phdr, info.phnum, info.load_bias, &map.l_ld, nullptr);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700184}
185
186extern "C" int __system_properties_init(void);
187
Ryan Prichard8f639a42018-10-01 23:10:05 -0700188struct ExecutableInfo {
189 std::string path;
190 struct stat file_stat;
191 const ElfW(Phdr)* phdr;
192 size_t phdr_count;
193 ElfW(Addr) entry_point;
194};
195
Ryan Prichard07440a82018-11-22 03:16:06 -0800196static ExecutableInfo get_executable_info() {
Ryan Prichard8f639a42018-10-01 23:10:05 -0700197 ExecutableInfo result = {};
198
Tom Cherry66bc4282018-11-08 13:40:52 -0800199 if (is_first_stage_init()) {
200 // /proc fs is not mounted when first stage init starts. Therefore we can't
201 // use /proc/self/exe for init.
Ryan Prichard8f639a42018-10-01 23:10:05 -0700202 stat("/init", &result.file_stat);
Tom Cherry66bc4282018-11-08 13:40:52 -0800203
204 // /init may be a symlink, so try to read it as such.
205 char path[PATH_MAX];
206 ssize_t path_len = readlink("/init", path, sizeof(path));
207 if (path_len == -1 || path_len >= static_cast<ssize_t>(sizeof(path))) {
208 result.path = "/init";
209 } else {
210 result.path = std::string(path, path_len);
211 }
Ryan Prichard8f639a42018-10-01 23:10:05 -0700212 } else {
213 // Stat "/proc/self/exe" instead of executable_path because
214 // the executable could be unlinked by this point and it should
215 // not cause a crash (see http://b/31084669)
216 if (TEMP_FAILURE_RETRY(stat("/proc/self/exe", &result.file_stat)) != 0) {
217 async_safe_fatal("unable to stat \"/proc/self/exe\": %s", strerror(errno));
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700218 }
Ryan Prichard8f639a42018-10-01 23:10:05 -0700219 char path[PATH_MAX];
220 ssize_t path_len = readlink("/proc/self/exe", path, sizeof(path));
221 if (path_len == -1 || path_len >= static_cast<ssize_t>(sizeof(path))) {
222 async_safe_fatal("readlink('/proc/self/exe') failed: %s", strerror(errno));
223 }
224 result.path = std::string(path, path_len);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700225 }
226
Ryan Prichard07440a82018-11-22 03:16:06 -0800227 result.phdr = reinterpret_cast<const ElfW(Phdr)*>(getauxval(AT_PHDR));
228 result.phdr_count = getauxval(AT_PHNUM);
229 result.entry_point = getauxval(AT_ENTRY);
Ryan Prichard8f639a42018-10-01 23:10:05 -0700230 return result;
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700231}
232
Dimitry Ivanovd9e427c2016-11-22 16:55:25 -0800233#if defined(__LP64__)
234static char kLinkerPath[] = "/system/bin/linker64";
235#else
236static char kLinkerPath[] = "/system/bin/linker";
237#endif
238
Ryan Prichard8f639a42018-10-01 23:10:05 -0700239__printflike(1, 2)
240static void __linker_error(const char* fmt, ...) {
241 va_list ap;
dimitry04f7a792017-09-29 11:52:17 +0200242
Ryan Prichard8f639a42018-10-01 23:10:05 -0700243 va_start(ap, fmt);
244 async_safe_format_fd_va_list(STDERR_FILENO, fmt, ap);
245 va_end(ap);
246
247 va_start(ap, fmt);
248 async_safe_format_log_va_list(ANDROID_LOG_FATAL, "linker", fmt, ap);
249 va_end(ap);
250
dimitry04f7a792017-09-29 11:52:17 +0200251 _exit(EXIT_FAILURE);
Elliott Hughesad2d0382017-07-31 11:43:34 -0700252}
253
Ryan Prichard8f639a42018-10-01 23:10:05 -0700254static void __linker_cannot_link(const char* argv0) {
255 __linker_error("CANNOT LINK EXECUTABLE \"%s\": %s\n",
256 argv0,
257 linker_get_error_buffer());
258}
259
260// Load an executable. Normally the kernel has already loaded the executable when the linker
261// starts. The linker can be invoked directly on an executable, though, and then the linker must
262// load it. This function doesn't load dependencies or resolve relocations.
263static ExecutableInfo load_executable(const char* orig_path) {
264 ExecutableInfo result = {};
265
266 if (orig_path[0] != '/') {
267 __linker_error("error: expected absolute path: \"%s\"\n", orig_path);
268 }
269
270 off64_t file_offset;
271 android::base::unique_fd fd(open_executable(orig_path, &file_offset, &result.path));
272 if (fd.get() == -1) {
273 __linker_error("error: unable to open file \"%s\"\n", orig_path);
274 }
275
276 if (TEMP_FAILURE_RETRY(fstat(fd.get(), &result.file_stat)) == -1) {
277 __linker_error("error: unable to stat \"%s\": %s\n", result.path.c_str(), strerror(errno));
278 }
279
280 ElfReader elf_reader;
281 if (!elf_reader.Read(result.path.c_str(), fd.get(), file_offset, result.file_stat.st_size)) {
282 __linker_error("error: %s\n", linker_get_error_buffer());
283 }
Torne (Richard Coles)efbe9a52018-10-17 15:59:38 -0400284 address_space_params address_space;
285 if (!elf_reader.Load(&address_space)) {
Ryan Prichard8f639a42018-10-01 23:10:05 -0700286 __linker_error("error: %s\n", linker_get_error_buffer());
287 }
288
289 result.phdr = elf_reader.loaded_phdr();
290 result.phdr_count = elf_reader.phdr_count();
291 result.entry_point = elf_reader.entry_point();
292 return result;
293}
294
295static ElfW(Addr) linker_main(KernelArgumentBlock& args, const char* exe_to_load) {
Dimitry Ivanov4cabfaa2017-03-07 11:19:05 -0800296 ProtectedDataGuard guard;
297
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700298#if TIMING
299 struct timeval t0, t1;
300 gettimeofday(&t0, 0);
301#endif
302
303 // Sanitize the environment.
Ryan Prichard48b11592018-11-22 02:41:36 -0800304 __libc_init_AT_SECURE(args.envp);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700305
306 // Initialize system properties
307 __system_properties_init(); // may use 'environ'
308
309 // Register the debuggerd signal handler.
Dan Willemsen7ec52b12016-11-28 17:02:25 -0800310#ifdef __ANDROID__
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700311 debuggerd_callbacks_t callbacks = {
312 .get_abort_message = []() {
Ryan Prichard7752bcb2018-11-22 02:41:04 -0800313 return __libc_shared_globals()->abort_msg;
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700314 },
315 .post_dump = &notify_gdb_of_libraries,
316 };
317 debuggerd_init(&callbacks);
Dan Willemsen7ec52b12016-11-28 17:02:25 -0800318#endif
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700319
320 g_linker_logger.ResetState();
321
322 // Get a few environment variables.
323 const char* LD_DEBUG = getenv("LD_DEBUG");
324 if (LD_DEBUG != nullptr) {
325 g_ld_debug_verbosity = atoi(LD_DEBUG);
326 }
327
328#if defined(__LP64__)
329 INFO("[ Android dynamic linker (64-bit) ]");
330#else
331 INFO("[ Android dynamic linker (32-bit) ]");
332#endif
333
334 // These should have been sanitized by __libc_init_AT_SECURE, but the test
335 // doesn't cost us anything.
336 const char* ldpath_env = nullptr;
337 const char* ldpreload_env = nullptr;
338 if (!getauxval(AT_SECURE)) {
339 ldpath_env = getenv("LD_LIBRARY_PATH");
340 if (ldpath_env != nullptr) {
341 INFO("[ LD_LIBRARY_PATH set to \"%s\" ]", ldpath_env);
342 }
343 ldpreload_env = getenv("LD_PRELOAD");
344 if (ldpreload_env != nullptr) {
345 INFO("[ LD_PRELOAD set to \"%s\" ]", ldpreload_env);
346 }
347 }
348
Ryan Prichard8f639a42018-10-01 23:10:05 -0700349 const ExecutableInfo exe_info = exe_to_load ? load_executable(exe_to_load) :
Ryan Prichard07440a82018-11-22 03:16:06 -0800350 get_executable_info();
Ryan Prichard8f639a42018-10-01 23:10:05 -0700351
352 // Assign to a static variable for the sake of the debug map, which needs
353 // a C-style string to last until the program exits.
354 static std::string exe_path = exe_info.path;
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700355
Ryan Prichard04896452018-08-20 17:44:42 -0700356 // Initialize the main exe's soinfo.
Ryan Prichard8f639a42018-10-01 23:10:05 -0700357 soinfo* si = soinfo_alloc(&g_default_namespace,
358 exe_path.c_str(), &exe_info.file_stat,
359 0, RTLD_GLOBAL);
Ryan Prichard04896452018-08-20 17:44:42 -0700360 somain = si;
Ryan Prichard8f639a42018-10-01 23:10:05 -0700361 si->phdr = exe_info.phdr;
362 si->phnum = exe_info.phdr_count;
Ryan Prichard04896452018-08-20 17:44:42 -0700363 get_elf_base_from_phdr(si->phdr, si->phnum, &si->base, &si->load_bias);
364 si->size = phdr_table_get_load_size(si->phdr, si->phnum);
365 si->dynamic = nullptr;
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700366 si->set_main_executable();
Ryan Prichard8f639a42018-10-01 23:10:05 -0700367 init_link_map_head(*si, exe_path.c_str());
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700368
369 // Register the main executable and the linker upfront to have
370 // gdb aware of them before loading the rest of the dependency
371 // tree.
Ryan Prichard04896452018-08-20 17:44:42 -0700372 //
373 // gdb expects the linker to be in the debug shared object list.
374 // Without this, gdb has trouble locating the linker's ".text"
375 // and ".plt" sections. Gdb could also potentially use this to
376 // relocate the offset of our exported 'rtld_db_dlactivity' symbol.
377 //
378 insert_link_map_into_debug_map(&si->link_map_head);
379 insert_link_map_into_debug_map(&solinker->link_map_head);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700380
Ryan Prichard07440a82018-11-22 03:16:06 -0800381 add_vdso();
Ryan Prichard14dd9922018-08-20 17:43:44 -0700382
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700383 ElfW(Ehdr)* elf_hdr = reinterpret_cast<ElfW(Ehdr)*>(si->base);
Elliott Hughes3bdb31b2017-01-07 10:38:20 -0800384
385 // We haven't supported non-PIE since Lollipop for security reasons.
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700386 if (elf_hdr->e_type != ET_DYN) {
Elliott Hughesad2d0382017-07-31 11:43:34 -0700387 // We don't use async_safe_fatal here because we don't want a tombstone:
388 // even after several years we still find ourselves on app compatibility
Elliott Hughes3bdb31b2017-01-07 10:38:20 -0800389 // investigations because some app's trying to launch an executable that
390 // hasn't worked in at least three years, and we've "helpfully" dropped a
391 // tombstone for them. The tombstone never provided any detail relevant to
392 // fixing the problem anyway, and the utility of drawing extra attention
393 // to the problem is non-existent at this late date.
Christopher Ferris7a3681e2017-04-24 17:48:32 -0700394 async_safe_format_fd(STDERR_FILENO,
Elliott Hughesad2d0382017-07-31 11:43:34 -0700395 "\"%s\": error: Android 5.0 and later only support "
396 "position-independent executables (-fPIE).\n",
397 g_argv[0]);
Dan Albert95e2e6f2017-01-31 16:02:43 -0800398 exit(EXIT_FAILURE);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700399 }
400
401 // Use LD_LIBRARY_PATH and LD_PRELOAD (but only if we aren't setuid/setgid).
402 parse_LD_LIBRARY_PATH(ldpath_env);
403 parse_LD_PRELOAD(ldpreload_env);
404
Ryan Prichard8f639a42018-10-01 23:10:05 -0700405 std::vector<android_namespace_t*> namespaces = init_default_namespaces(exe_path.c_str());
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700406
Elliott Hughesad2d0382017-07-31 11:43:34 -0700407 if (!si->prelink_image()) __linker_cannot_link(g_argv[0]);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700408
409 // add somain to global group
410 si->set_dt_flags_1(si->get_dt_flags_1() | DF_1_GLOBAL);
Jiyong Park02586a22017-05-20 01:01:24 +0900411 // ... and add it to all other linked namespaces
412 for (auto linked_ns : namespaces) {
413 if (linked_ns != &g_default_namespace) {
414 linked_ns->add_soinfo(somain);
415 somain->add_secondary_namespace(linked_ns);
416 }
417 }
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700418
Ryan Pricharde5e69e02019-01-01 18:53:48 -0800419 linker_setup_exe_static_tls(g_argv[0]);
420
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700421 // Load ld_preloads and dependencies.
422 std::vector<const char*> needed_library_name_list;
423 size_t ld_preloads_count = 0;
424
425 for (const auto& ld_preload_name : g_ld_preload_names) {
426 needed_library_name_list.push_back(ld_preload_name.c_str());
427 ++ld_preloads_count;
428 }
429
430 for_each_dt_needed(si, [&](const char* name) {
431 needed_library_name_list.push_back(name);
432 });
433
434 const char** needed_library_names = &needed_library_name_list[0];
435 size_t needed_libraries_count = needed_library_name_list.size();
436
437 if (needed_libraries_count > 0 &&
Dimitry Ivanov7d429d32017-02-01 15:28:52 -0800438 !find_libraries(&g_default_namespace,
439 si,
440 needed_library_names,
441 needed_libraries_count,
442 nullptr,
443 &g_ld_preloads,
444 ld_preloads_count,
445 RTLD_GLOBAL,
446 nullptr,
447 true /* add_as_children */,
Jiyong Park02586a22017-05-20 01:01:24 +0900448 true /* search_linked_namespaces */,
Jiyong Park02586a22017-05-20 01:01:24 +0900449 &namespaces)) {
Elliott Hughesad2d0382017-07-31 11:43:34 -0700450 __linker_cannot_link(g_argv[0]);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700451 } else if (needed_libraries_count == 0) {
Torne (Richard Coles)efbe9a52018-10-17 15:59:38 -0400452 if (!si->link_image(g_empty_list, soinfo_list_t::make_list(si), nullptr, nullptr)) {
Elliott Hughesad2d0382017-07-31 11:43:34 -0700453 __linker_cannot_link(g_argv[0]);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700454 }
455 si->increment_ref_count();
456 }
457
Ryan Pricharde5e69e02019-01-01 18:53:48 -0800458 linker_finalize_static_tls();
Ryan Prichard45d13492019-01-03 02:51:30 -0800459 __libc_init_main_thread_final();
460
Elliott Hughesad2d0382017-07-31 11:43:34 -0700461 if (!get_cfi_shadow()->InitialLinkDone(solist)) __linker_cannot_link(g_argv[0]);
Evgenii Stepanov0a3637d2016-07-06 13:20:59 -0700462
Dimitry Ivanov4cabfaa2017-03-07 11:19:05 -0800463 si->call_pre_init_constructors();
Dimitry Ivanov4cabfaa2017-03-07 11:19:05 -0800464 si->call_constructors();
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700465
466#if TIMING
467 gettimeofday(&t1, nullptr);
468 PRINT("LINKER TIME: %s: %d microseconds", g_argv[0], (int) (
469 (((long long)t1.tv_sec * 1000000LL) + (long long)t1.tv_usec) -
470 (((long long)t0.tv_sec * 1000000LL) + (long long)t0.tv_usec)));
471#endif
472#if STATS
473 PRINT("RELO STATS: %s: %d abs, %d rel, %d copy, %d symbol", g_argv[0],
474 linker_stats.count[kRelocAbsolute],
475 linker_stats.count[kRelocRelative],
476 linker_stats.count[kRelocCopy],
477 linker_stats.count[kRelocSymbol]);
478#endif
479#if COUNT_PAGES
480 {
481 unsigned n;
482 unsigned i;
483 unsigned count = 0;
484 for (n = 0; n < 4096; n++) {
485 if (bitmask[n]) {
486 unsigned x = bitmask[n];
487#if defined(__LP64__)
488 for (i = 0; i < 32; i++) {
489#else
490 for (i = 0; i < 8; i++) {
491#endif
492 if (x & 1) {
493 count++;
494 }
495 x >>= 1;
496 }
497 }
498 }
499 PRINT("PAGES MODIFIED: %s: %d (%dKB)", g_argv[0], count, count * 4);
500 }
501#endif
502
503#if TIMING || STATS || COUNT_PAGES
504 fflush(stdout);
505#endif
506
Vic Yangbb7e1232019-01-29 20:23:16 -0800507 // We are about to hand control over to the executable loaded. We don't want
508 // to leave dirty pages behind unnecessarily.
509 purge_unused_memory();
510
Ryan Prichard8f639a42018-10-01 23:10:05 -0700511 ElfW(Addr) entry = exe_info.entry_point;
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700512 TRACE("[ Ready to execute \"%s\" @ %p ]", si->get_realpath(), reinterpret_cast<void*>(entry));
513 return entry;
514}
515
516/* Compute the load-bias of an existing executable. This shall only
517 * be used to compute the load bias of an executable or shared library
518 * that was loaded by the kernel itself.
519 *
520 * Input:
521 * elf -> address of ELF header, assumed to be at the start of the file.
522 * Return:
523 * load bias, i.e. add the value of any p_vaddr in the file to get
524 * the corresponding address in memory.
525 */
526static ElfW(Addr) get_elf_exec_load_bias(const ElfW(Ehdr)* elf) {
527 ElfW(Addr) offset = elf->e_phoff;
528 const ElfW(Phdr)* phdr_table =
529 reinterpret_cast<const ElfW(Phdr)*>(reinterpret_cast<uintptr_t>(elf) + offset);
530 const ElfW(Phdr)* phdr_end = phdr_table + elf->e_phnum;
531
532 for (const ElfW(Phdr)* phdr = phdr_table; phdr < phdr_end; phdr++) {
533 if (phdr->p_type == PT_LOAD) {
534 return reinterpret_cast<ElfW(Addr)>(elf) + phdr->p_offset - phdr->p_vaddr;
535 }
536 }
537 return 0;
538}
539
Ryan Prichard9729f352018-07-13 22:40:26 -0700540/* Find the load bias and base address of an executable or shared object loaded
541 * by the kernel. The ELF file's PHDR table must have a PT_PHDR entry.
542 *
543 * A VDSO doesn't have a PT_PHDR entry in its PHDR table.
544 */
545static void get_elf_base_from_phdr(const ElfW(Phdr)* phdr_table, size_t phdr_count,
546 ElfW(Addr)* base, ElfW(Addr)* load_bias) {
547 for (size_t i = 0; i < phdr_count; ++i) {
548 if (phdr_table[i].p_type == PT_PHDR) {
549 *load_bias = reinterpret_cast<ElfW(Addr)>(phdr_table) - phdr_table[i].p_vaddr;
550 *base = reinterpret_cast<ElfW(Addr)>(phdr_table) - phdr_table[i].p_offset;
551 return;
552 }
553 }
554 async_safe_fatal("Could not find a PHDR: broken executable?");
555}
556
Ryan Prichard742982d2018-05-30 22:32:17 -0700557static ElfW(Addr) __attribute__((noinline))
Ryan Prichard04896452018-08-20 17:44:42 -0700558__linker_init_post_relocation(KernelArgumentBlock& args, soinfo& linker_so);
Ryan Prichard742982d2018-05-30 22:32:17 -0700559
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700560/*
561 * This is the entry point for the linker, called from begin.S. This
562 * method is responsible for fixing the linker's own relocations, and
563 * then calling __linker_init_post_relocation().
564 *
565 * Because this method is called before the linker has fixed it's own
566 * relocations, any attempt to reference an extern variable, extern
567 * function, or other GOT reference will generate a segfault.
568 */
569extern "C" ElfW(Addr) __linker_init(void* raw_args) {
Ryan Prichard9cfca862018-11-22 02:44:09 -0800570 // Initialize TLS early so system calls and errno work.
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700571 KernelArgumentBlock args(raw_args);
Ryan Prichard45d13492019-01-03 02:51:30 -0800572 bionic_tcb temp_tcb = {};
573 __libc_init_main_thread_early(args, &temp_tcb);
Ryan Prichard27475b52018-05-17 17:14:18 -0700574
Ryan Prichard8f639a42018-10-01 23:10:05 -0700575 // When the linker is run by itself (rather than as an interpreter for
576 // another program), AT_BASE is 0.
Ryan Prichard07440a82018-11-22 03:16:06 -0800577 ElfW(Addr) linker_addr = getauxval(AT_BASE);
Ryan Prichard9729f352018-07-13 22:40:26 -0700578 if (linker_addr == 0) {
Ryan Prichard8f639a42018-10-01 23:10:05 -0700579 // Detect an attempt to run the linker on itself (e.g.
580 // `linker64 /system/bin/linker64`). If the kernel loaded this instance of
581 // the linker, then AT_ENTRY will refer to &_start. If it doesn't, then
582 // something else must have loaded this instance of the linker. It's
583 // simpler if we only allow one copy of the linker to be loaded at a time.
Ryan Prichard07440a82018-11-22 03:16:06 -0800584 if (getauxval(AT_ENTRY) != reinterpret_cast<uintptr_t>(&_start)) {
Ryan Prichard8f639a42018-10-01 23:10:05 -0700585 // The first linker already relocated this one and set up TLS, so we don't
586 // need further libc initialization.
587 __linker_error("error: linker cannot load itself\n");
588 }
589 // Otherwise, the AT_PHDR and AT_PHNUM aux values describe this linker
590 // instance, so use the phdr to find the linker's base address.
Ryan Prichard9729f352018-07-13 22:40:26 -0700591 ElfW(Addr) load_bias;
592 get_elf_base_from_phdr(
Ryan Prichard07440a82018-11-22 03:16:06 -0800593 reinterpret_cast<ElfW(Phdr)*>(getauxval(AT_PHDR)), getauxval(AT_PHNUM),
Ryan Prichard9729f352018-07-13 22:40:26 -0700594 &linker_addr, &load_bias);
595 }
George Burgess IV70591002017-06-27 16:23:45 -0700596
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700597 ElfW(Ehdr)* elf_hdr = reinterpret_cast<ElfW(Ehdr)*>(linker_addr);
598 ElfW(Phdr)* phdr = reinterpret_cast<ElfW(Phdr)*>(linker_addr + elf_hdr->e_phoff);
599
Ryan Prichard04896452018-08-20 17:44:42 -0700600 soinfo tmp_linker_so(nullptr, nullptr, nullptr, 0, 0);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700601
Ryan Prichard04896452018-08-20 17:44:42 -0700602 tmp_linker_so.base = linker_addr;
603 tmp_linker_so.size = phdr_table_get_load_size(phdr, elf_hdr->e_phnum);
604 tmp_linker_so.load_bias = get_elf_exec_load_bias(elf_hdr);
605 tmp_linker_so.dynamic = nullptr;
606 tmp_linker_so.phdr = phdr;
607 tmp_linker_so.phnum = elf_hdr->e_phnum;
608 tmp_linker_so.set_linker_flag();
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700609
610 // Prelink the linker so we can access linker globals.
Ryan Prichard04896452018-08-20 17:44:42 -0700611 if (!tmp_linker_so.prelink_image()) __linker_cannot_link(args.argv[0]);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700612
613 // This might not be obvious... The reasons why we pass g_empty_list
614 // in place of local_group here are (1) we do not really need it, because
615 // linker is built with DT_SYMBOLIC and therefore relocates its symbols against
616 // itself without having to look into local_group and (2) allocators
617 // are not yet initialized, and therefore we cannot use linked_list.push_*
618 // functions at this point.
Torne (Richard Coles)efbe9a52018-10-17 15:59:38 -0400619 if (!tmp_linker_so.link_image(g_empty_list, g_empty_list, nullptr, nullptr)) __linker_cannot_link(args.argv[0]);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700620
Ryan Prichard04896452018-08-20 17:44:42 -0700621 return __linker_init_post_relocation(args, tmp_linker_so);
Ryan Prichard742982d2018-05-30 22:32:17 -0700622}
623
624/*
625 * This code is called after the linker has linked itself and fixed its own
626 * GOT. It is safe to make references to externs and other non-local data at
627 * this point. The compiler sometimes moves GOT references earlier in a
628 * function, so avoid inlining this function (http://b/80503879).
629 */
630static ElfW(Addr) __attribute__((noinline))
Ryan Prichard04896452018-08-20 17:44:42 -0700631__linker_init_post_relocation(KernelArgumentBlock& args, soinfo& tmp_linker_so) {
Ryan Prichard9cfca862018-11-22 02:44:09 -0800632 // Finish initializing the main thread.
Ryan Prichard07440a82018-11-22 03:16:06 -0800633 __libc_init_main_thread_late();
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700634
635 // We didn't protect the linker's RELRO pages in link_image because we
636 // couldn't make system calls on x86 at that point, but we can now...
Ryan Prichard04896452018-08-20 17:44:42 -0700637 if (!tmp_linker_so.protect_relro()) __linker_cannot_link(args.argv[0]);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700638
639 // Initialize the linker's static libc's globals
Ryan Prichard07440a82018-11-22 03:16:06 -0800640 __libc_init_globals();
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700641
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700642 // Initialize the linker's own global variables
Ryan Prichard04896452018-08-20 17:44:42 -0700643 tmp_linker_so.call_constructors();
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700644
Ryan Prichard8f639a42018-10-01 23:10:05 -0700645 // When the linker is run directly rather than acting as PT_INTERP, parse
646 // arguments and determine the executable to load. When it's instead acting
647 // as PT_INTERP, AT_ENTRY will refer to the loaded executable rather than the
648 // linker's _start.
649 const char* exe_to_load = nullptr;
Ryan Prichard07440a82018-11-22 03:16:06 -0800650 if (getauxval(AT_ENTRY) == reinterpret_cast<uintptr_t>(&_start)) {
Ryan Prichard8f639a42018-10-01 23:10:05 -0700651 if (args.argc <= 1 || !strcmp(args.argv[1], "--help")) {
652 async_safe_format_fd(STDOUT_FILENO,
653 "Usage: %s program [arguments...]\n"
654 " %s path.zip!/program [arguments...]\n"
655 "\n"
656 "A helper program for linking dynamic executables. Typically, the kernel loads\n"
657 "this program because it's the PT_INTERP of a dynamic executable.\n"
658 "\n"
659 "This program can also be run directly to load and run a dynamic executable. The\n"
660 "executable can be inside a zip file if it's stored uncompressed and at a\n"
661 "page-aligned offset.\n",
662 args.argv[0], args.argv[0]);
663 exit(0);
664 }
665 exe_to_load = args.argv[1];
Ryan Prichardabf736a2018-11-22 02:40:17 -0800666 __libc_shared_globals()->initial_linker_arg_count = 1;
Dimitry Ivanov9b1cc4b2017-03-23 16:17:15 -0700667 }
668
Ryan Prichard8f639a42018-10-01 23:10:05 -0700669 // store argc/argv/envp to use them for calling constructors
Ryan Prichardabf736a2018-11-22 02:40:17 -0800670 g_argc = args.argc - __libc_shared_globals()->initial_linker_arg_count;
671 g_argv = args.argv + __libc_shared_globals()->initial_linker_arg_count;
Ryan Prichard8f639a42018-10-01 23:10:05 -0700672 g_envp = args.envp;
Ryan Prichard48b11592018-11-22 02:41:36 -0800673 __libc_shared_globals()->init_progname = g_argv[0];
Ryan Prichard8f639a42018-10-01 23:10:05 -0700674
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700675 // Initialize static variables. Note that in order to
676 // get correct libdl_info we need to call constructors
677 // before get_libdl_info().
Ryan Prichard04896452018-08-20 17:44:42 -0700678 sonext = solist = solinker = get_libdl_info(kLinkerPath, tmp_linker_so);
679 g_default_namespace.add_soinfo(solinker);
680 init_link_map_head(*solinker, kLinkerPath);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700681
Ryan Prichard8f639a42018-10-01 23:10:05 -0700682 ElfW(Addr) start_address = linker_main(args, exe_to_load);
Dimitry Ivanov3f660572016-09-09 10:00:39 -0700683
684 INFO("[ Jumping to _start (%p)... ]", reinterpret_cast<void*>(start_address));
685
686 // Return the address that the calling assembly stub should jump to.
687 return start_address;
688}