blob: db046ec5807acd45dcae71f128097e9800e24024 [file] [log] [blame]
Colin Cross16b23492016-01-06 14:41:07 -08001// Copyright 2016 Google Inc. All rights reserved.
2//
3// Licensed under the Apache License, Version 2.0 (the "License");
4// you may not use this file except in compliance with the License.
5// You may obtain a copy of the License at
6//
7// http://www.apache.org/licenses/LICENSE-2.0
8//
9// Unless required by applicable law or agreed to in writing, software
10// distributed under the License is distributed on an "AS IS" BASIS,
11// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12// See the License for the specific language governing permissions and
13// limitations under the License.
14
15package cc
16
17import (
18 "fmt"
Jeff Gaston72765392017-11-28 16:37:53 -080019 "sort"
Colin Cross16b23492016-01-06 14:41:07 -080020 "strings"
Vishwath Mohane7128792017-11-17 11:08:10 -080021 "sync"
Colin Cross16b23492016-01-06 14:41:07 -080022
Colin Cross6b753602018-06-21 13:03:07 -070023 "github.com/google/blueprint"
Liz Kammerb2fc4702021-06-25 14:53:40 -040024 "github.com/google/blueprint/proptools"
Colin Cross6b753602018-06-21 13:03:07 -070025
Colin Cross635c3b02016-05-18 15:37:25 -070026 "android/soong/android"
Evgenii Stepanovaf36db12016-08-15 14:18:24 -070027 "android/soong/cc/config"
Colin Cross16b23492016-01-06 14:41:07 -080028)
29
Jayant Chowdhary9677e8c2017-06-15 14:45:18 -070030var (
31 // Any C flags added by sanitizer which libTooling tools may not
32 // understand also need to be added to ClangLibToolingUnknownCflags in
33 // cc/config/clang.go
Vishwath Mohanf3918d32017-02-14 07:59:33 -080034
Yi Kong20233a42019-08-21 01:38:40 -070035 asanCflags = []string{
36 "-fno-omit-frame-pointer",
Yi Kong20233a42019-08-21 01:38:40 -070037 }
Jayant Chowdhary9677e8c2017-06-15 14:45:18 -070038 asanLdflags = []string{"-Wl,-u,__asan_preinit"}
Jayant Chowdhary9677e8c2017-06-15 14:45:18 -070039
Florian Mayera9984462023-06-16 16:48:51 -070040 // DO NOT ADD MLLVM FLAGS HERE! ADD THEM BELOW TO hwasanCommonFlags.
Yi Kong286abc62021-11-04 16:14:14 +080041 hwasanCflags = []string{
42 "-fno-omit-frame-pointer",
43 "-Wno-frame-larger-than=",
Evgenii Stepanov96fa3dd2020-03-27 19:38:42 +000044 "-fsanitize-hwaddress-abi=platform",
Yi Kong286abc62021-11-04 16:14:14 +080045 }
46
47 // ThinLTO performs codegen during link time, thus these flags need to
48 // passed to both CFLAGS and LDFLAGS.
49 hwasanCommonflags = []string{
Evgenii Stepanov64bee4d2019-11-22 18:37:10 -080050 // The following improves debug location information
51 // availability at the cost of its accuracy. It increases
52 // the likelihood of a stack variable's frame offset
53 // to be recorded in the debug info, which is important
54 // for the quality of hwasan reports. The downside is a
55 // higher number of "optimized out" stack variables.
56 // b/112437883.
Yi Kong286abc62021-11-04 16:14:14 +080057 "-instcombine-lower-dbg-declare=0",
Florian Mayera9984462023-06-16 16:48:51 -070058 "-hwasan-use-after-scope=1",
Florian Mayerc7466192023-06-16 16:50:59 -070059 "-dom-tree-reachability-max-bbs-to-explore=128",
Evgenii Stepanov64bee4d2019-11-22 18:37:10 -080060 }
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -070061
Trevor Radcliffeded095c2023-06-12 19:18:28 +000062 sanitizeIgnorelistPrefix = "-fsanitize-ignorelist="
63
Trevor Radcliffe391a25d2023-03-22 20:22:27 +000064 cfiBlocklistPath = "external/compiler-rt/lib/cfi"
65 cfiBlocklistFilename = "cfi_blocklist.txt"
Trevor Radcliffef1836e42023-06-01 21:12:08 +000066 cfiEnableFlag = "-fsanitize=cfi"
Trevor Radcliffe9f4b4762023-04-04 20:13:42 +000067 cfiCrossDsoFlag = "-fsanitize-cfi-cross-dso"
68 cfiCflags = []string{"-flto", cfiCrossDsoFlag,
Trevor Radcliffeded095c2023-06-12 19:18:28 +000069 sanitizeIgnorelistPrefix + cfiBlocklistPath + "/" + cfiBlocklistFilename}
Evgenii Stepanovdbf1d4f2018-08-31 12:54:33 -070070 // -flto and -fvisibility are required by clang when -fsanitize=cfi is
71 // used, but have no effect on assembly files
72 cfiAsflags = []string{"-flto", "-fvisibility=default"}
Trevor Radcliffef1836e42023-06-01 21:12:08 +000073 cfiLdflags = []string{"-flto", cfiCrossDsoFlag, cfiEnableFlag,
Pirama Arumuga Nainarbdb17f02017-08-28 21:50:17 -070074 "-Wl,-plugin-opt,O1"}
Trevor Radcliffe391a25d2023-03-22 20:22:27 +000075 cfiExportsMapPath = "build/soong/cc/config"
76 cfiExportsMapFilename = "cfi_exports.map"
77 cfiAssemblySupportFlag = "-fno-sanitize-cfi-canonical-jump-tables"
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -070078
Pirama Arumuga Nainar582fc2d2021-08-27 15:12:56 -070079 intOverflowCflags = []string{"-fsanitize-ignorelist=build/soong/cc/config/integer_overflow_blocklist.txt"}
Peter Collingbourne8c7e6e22018-11-19 16:03:58 -080080
Peter Collingbournebd19db02019-03-06 10:38:48 -080081 minimalRuntimeFlags = []string{"-fsanitize-minimal-runtime", "-fno-sanitize-trap=integer,undefined",
Ivan Lozanoae6ae1d2018-10-08 09:29:39 -070082 "-fno-sanitize-recover=integer,undefined"}
Evgenii Stepanov2c6484e2019-05-15 12:49:54 -070083 hwasanGlobalOptions = []string{"heap_history_size=1023", "stack_history_size=512",
Christopher Ferris2fc8e032023-01-26 14:19:27 -080084 "export_memory_stats=0", "max_malloc_fill_size=131072", "malloc_fill_byte=0"}
Florian Mayer1866bbe2023-03-11 01:07:40 +000085 memtagStackCommonFlags = []string{"-march=armv8-a+memtag", "-mllvm", "-dom-tree-reachability-max-bbs-to-explore=128"}
Trevor Radcliffe4f95ee92023-01-19 16:02:47 +000086
87 hostOnlySanitizeFlags = []string{"-fno-sanitize-recover=all"}
Elliott Hughes3bba0e42023-10-05 14:50:48 -070088 deviceOnlySanitizeFlags = []string{"-fsanitize-trap=all"}
Trevor Radcliffeda64d912023-08-02 20:24:29 +000089
90 noSanitizeLinkRuntimeFlag = "-fno-sanitize-link-runtime"
Dan Willemsencbceaab2016-10-13 16:44:07 -070091)
92
Ivan Lozano3968d8f2020-12-14 11:27:52 -050093type SanitizerType int
Colin Cross16b23492016-01-06 14:41:07 -080094
Colin Cross16b23492016-01-06 14:41:07 -080095const (
Ivan Lozano3968d8f2020-12-14 11:27:52 -050096 Asan SanitizerType = iota + 1
Tri Vo6eafc362021-04-01 11:29:09 -070097 Hwasan
Colin Cross16b23492016-01-06 14:41:07 -080098 tsan
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -070099 intOverflow
Peter Collingbourne8c7e6e22018-11-19 16:03:58 -0800100 scs
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500101 Fuzzer
Ivan Lozano62cd0382021-11-01 10:27:54 -0400102 Memtag_heap
Florian Mayerd8434a42022-08-31 20:57:03 +0000103 Memtag_stack
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200104 Memtag_globals
Liz Kammer75db9312021-07-07 16:41:50 -0400105 cfi // cfi is last to prevent it running before incompatible mutators
Colin Cross16b23492016-01-06 14:41:07 -0800106)
107
Liz Kammer75db9312021-07-07 16:41:50 -0400108var Sanitizers = []SanitizerType{
109 Asan,
110 Hwasan,
111 tsan,
112 intOverflow,
113 scs,
114 Fuzzer,
Ivan Lozano62cd0382021-11-01 10:27:54 -0400115 Memtag_heap,
Florian Mayerd8434a42022-08-31 20:57:03 +0000116 Memtag_stack,
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200117 Memtag_globals,
Liz Kammer75db9312021-07-07 16:41:50 -0400118 cfi, // cfi is last to prevent it running before incompatible mutators
119}
120
Jiyong Park82226632019-02-01 10:50:50 +0900121// Name of the sanitizer variation for this sanitizer type
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500122func (t SanitizerType) variationName() string {
Colin Cross16b23492016-01-06 14:41:07 -0800123 switch t {
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500124 case Asan:
Colin Cross16b23492016-01-06 14:41:07 -0800125 return "asan"
Tri Vo6eafc362021-04-01 11:29:09 -0700126 case Hwasan:
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -0700127 return "hwasan"
Colin Cross16b23492016-01-06 14:41:07 -0800128 case tsan:
129 return "tsan"
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -0700130 case intOverflow:
131 return "intOverflow"
Vishwath Mohanb743e9c2017-11-01 09:20:21 +0000132 case cfi:
133 return "cfi"
Peter Collingbourne8c7e6e22018-11-19 16:03:58 -0800134 case scs:
135 return "scs"
Ivan Lozano62cd0382021-11-01 10:27:54 -0400136 case Memtag_heap:
Evgenii Stepanov193ac2e2020-04-28 15:09:12 -0700137 return "memtag_heap"
Florian Mayerd8434a42022-08-31 20:57:03 +0000138 case Memtag_stack:
139 return "memtag_stack"
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200140 case Memtag_globals:
141 return "memtag_globals"
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500142 case Fuzzer:
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -0700143 return "fuzzer"
Colin Cross16b23492016-01-06 14:41:07 -0800144 default:
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500145 panic(fmt.Errorf("unknown SanitizerType %d", t))
Colin Cross16b23492016-01-06 14:41:07 -0800146 }
147}
148
Jiyong Park82226632019-02-01 10:50:50 +0900149// This is the sanitizer names in SANITIZE_[TARGET|HOST]
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500150func (t SanitizerType) name() string {
Jiyong Park82226632019-02-01 10:50:50 +0900151 switch t {
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500152 case Asan:
Jiyong Park82226632019-02-01 10:50:50 +0900153 return "address"
Tri Vo6eafc362021-04-01 11:29:09 -0700154 case Hwasan:
Jiyong Park82226632019-02-01 10:50:50 +0900155 return "hwaddress"
Ivan Lozano62cd0382021-11-01 10:27:54 -0400156 case Memtag_heap:
Evgenii Stepanov193ac2e2020-04-28 15:09:12 -0700157 return "memtag_heap"
Florian Mayerd8434a42022-08-31 20:57:03 +0000158 case Memtag_stack:
159 return "memtag_stack"
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200160 case Memtag_globals:
161 return "memtag_globals"
Jiyong Park82226632019-02-01 10:50:50 +0900162 case tsan:
163 return "thread"
164 case intOverflow:
165 return "integer_overflow"
166 case cfi:
167 return "cfi"
168 case scs:
169 return "shadow-call-stack"
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500170 case Fuzzer:
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -0700171 return "fuzzer"
Jiyong Park82226632019-02-01 10:50:50 +0900172 default:
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500173 panic(fmt.Errorf("unknown SanitizerType %d", t))
Jiyong Park82226632019-02-01 10:50:50 +0900174 }
175}
176
Liz Kammer75db9312021-07-07 16:41:50 -0400177func (t SanitizerType) registerMutators(ctx android.RegisterMutatorsContext) {
178 switch t {
Lukacs T. Berki6c716762022-06-13 20:50:39 +0200179 case cfi, Hwasan, Asan, tsan, Fuzzer, scs:
180 sanitizer := &sanitizerSplitMutator{t}
181 ctx.TopDown(t.variationName()+"_markapexes", sanitizer.markSanitizableApexesMutator)
182 ctx.Transition(t.variationName(), sanitizer)
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200183 case Memtag_heap, Memtag_stack, Memtag_globals, intOverflow:
Liz Kammer75db9312021-07-07 16:41:50 -0400184 // do nothing
185 default:
186 panic(fmt.Errorf("unknown SanitizerType %d", t))
187 }
188}
189
Liz Kammerfd8a49f2022-10-31 10:31:11 -0400190// shouldPropagateToSharedLibraryDeps returns whether a sanitizer type should propagate to share
191// dependencies. In most cases, sanitizers only propagate to static dependencies; however, some
192// sanitizers also must be enabled for shared libraries for linking.
193func (t SanitizerType) shouldPropagateToSharedLibraryDeps() bool {
194 switch t {
195 case Fuzzer:
196 // Typically, shared libs are not split. However, for fuzzer, we split even for shared libs
197 // because a library sanitized for fuzzer can't be linked from a library that isn't sanitized
198 // for fuzzer.
199 return true
200 default:
201 return false
202 }
203}
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500204func (*Module) SanitizerSupported(t SanitizerType) bool {
205 switch t {
206 case Asan:
207 return true
Tri Vo6eafc362021-04-01 11:29:09 -0700208 case Hwasan:
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500209 return true
210 case tsan:
211 return true
212 case intOverflow:
213 return true
214 case cfi:
215 return true
216 case scs:
217 return true
218 case Fuzzer:
219 return true
Ivan Lozano62cd0382021-11-01 10:27:54 -0400220 case Memtag_heap:
221 return true
Florian Mayerd8434a42022-08-31 20:57:03 +0000222 case Memtag_stack:
223 return true
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200224 case Memtag_globals:
225 return true
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500226 default:
227 return false
228 }
229}
230
231// incompatibleWithCfi returns true if a sanitizer is incompatible with CFI.
232func (t SanitizerType) incompatibleWithCfi() bool {
Tri Vo6eafc362021-04-01 11:29:09 -0700233 return t == Asan || t == Fuzzer || t == Hwasan
Jiyong Park1d1119f2019-07-29 21:27:18 +0900234}
235
Martin Stjernholmb0249572020-09-15 02:32:35 +0100236type SanitizeUserProps struct {
Liz Kammer75b9b402021-06-25 15:19:27 -0400237 // Prevent use of any sanitizers on this module
Martin Stjernholmb0249572020-09-15 02:32:35 +0100238 Never *bool `android:"arch_variant"`
Colin Cross16b23492016-01-06 14:41:07 -0800239
Liz Kammer75b9b402021-06-25 15:19:27 -0400240 // ASan (Address sanitizer), incompatible with static binaries.
241 // Always runs in a diagnostic mode.
242 // Use of address sanitizer disables cfi sanitizer.
243 // Hwaddress sanitizer takes precedence over this sanitizer.
244 Address *bool `android:"arch_variant"`
245 // TSan (Thread sanitizer), incompatible with static binaries and 32 bit architectures.
246 // Always runs in a diagnostic mode.
247 // Use of thread sanitizer disables cfi and scudo sanitizers.
248 // Hwaddress sanitizer takes precedence over this sanitizer.
249 Thread *bool `android:"arch_variant"`
250 // HWASan (Hardware Address sanitizer).
251 // Use of hwasan sanitizer disables cfi, address, thread, and scudo sanitizers.
Martin Stjernholmb0249572020-09-15 02:32:35 +0100252 Hwaddress *bool `android:"arch_variant"`
Colin Cross16b23492016-01-06 14:41:07 -0800253
Liz Kammer75b9b402021-06-25 15:19:27 -0400254 // Undefined behavior sanitizer
255 All_undefined *bool `android:"arch_variant"`
256 // Subset of undefined behavior sanitizer
257 Undefined *bool `android:"arch_variant"`
258 // List of specific undefined behavior sanitizers to enable
259 Misc_undefined []string `android:"arch_variant"`
260 // Fuzzer, incompatible with static binaries.
261 Fuzzer *bool `android:"arch_variant"`
262 // safe-stack sanitizer, incompatible with 32-bit architectures.
263 Safestack *bool `android:"arch_variant"`
264 // cfi sanitizer, incompatible with asan, hwasan, fuzzer, or Darwin
265 Cfi *bool `android:"arch_variant"`
266 // signed/unsigned integer overflow sanitizer, incompatible with Darwin.
267 Integer_overflow *bool `android:"arch_variant"`
268 // scudo sanitizer, incompatible with asan, hwasan, tsan
269 // This should not be used in Android 11+ : https://source.android.com/devices/tech/debug/scudo
270 // deprecated
271 Scudo *bool `android:"arch_variant"`
Elliott Hughese4793bc2023-02-09 21:15:47 +0000272 // shadow-call-stack sanitizer, only available on arm64/riscv64.
Liz Kammer75b9b402021-06-25 15:19:27 -0400273 Scs *bool `android:"arch_variant"`
274 // Memory-tagging, only available on arm64
275 // if diag.memtag unset or false, enables async memory tagging
Florian Mayer00ab5cf2022-08-31 18:30:18 +0000276 Memtag_heap *bool `android:"arch_variant"`
Florian Mayerd8434a42022-08-31 20:57:03 +0000277 // Memory-tagging stack instrumentation, only available on arm64
278 // Adds instrumentation to detect stack buffer overflows and use-after-scope using MTE.
279 Memtag_stack *bool `android:"arch_variant"`
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200280 // Memory-tagging globals instrumentation, only available on arm64
281 // Adds instrumentation to detect global buffer overflows using MTE.
282 Memtag_globals *bool `android:"arch_variant"`
Martin Stjernholmb0249572020-09-15 02:32:35 +0100283
284 // A modifier for ASAN and HWASAN for write only instrumentation
285 Writeonly *bool `android:"arch_variant"`
286
287 // Sanitizers to run in the diagnostic mode (as opposed to the release mode).
288 // Replaces abort() on error with a human-readable error message.
289 // Address and Thread sanitizers always run in diagnostic mode.
290 Diag struct {
Liz Kammer75b9b402021-06-25 15:19:27 -0400291 // Undefined behavior sanitizer, diagnostic mode
292 Undefined *bool `android:"arch_variant"`
293 // cfi sanitizer, diagnostic mode, incompatible with asan, hwasan, fuzzer, or Darwin
294 Cfi *bool `android:"arch_variant"`
295 // signed/unsigned integer overflow sanitizer, diagnostic mode, incompatible with Darwin.
296 Integer_overflow *bool `android:"arch_variant"`
297 // Memory-tagging, only available on arm64
298 // requires sanitizer.memtag: true
299 // if set, enables sync memory tagging
300 Memtag_heap *bool `android:"arch_variant"`
301 // List of specific undefined behavior sanitizers to enable in diagnostic mode
302 Misc_undefined []string `android:"arch_variant"`
303 // List of sanitizers to pass to -fno-sanitize-recover
304 // results in only the first detected error for these sanitizers being reported and program then
305 // exits with a non-zero exit code.
306 No_recover []string `android:"arch_variant"`
Cindy Zhoud3fe4922020-12-01 11:14:30 -0800307 } `android:"arch_variant"`
Colin Cross16b23492016-01-06 14:41:07 -0800308
Cindy Zhou8cd45de2020-11-16 08:41:00 -0800309 // Sanitizers to run with flag configuration specified
310 Config struct {
311 // Enables CFI support flags for assembly-heavy libraries
312 Cfi_assembly_support *bool `android:"arch_variant"`
Cindy Zhoud3fe4922020-12-01 11:14:30 -0800313 } `android:"arch_variant"`
Cindy Zhou8cd45de2020-11-16 08:41:00 -0800314
Liz Kammer75b9b402021-06-25 15:19:27 -0400315 // List of sanitizers to pass to -fsanitize-recover
316 // allows execution to continue for these sanitizers to detect multiple errors rather than only
317 // the first one
Martin Stjernholmb0249572020-09-15 02:32:35 +0100318 Recover []string
Jasraj Bedibb4511d2020-07-23 22:58:17 +0000319
Pirama Arumuga Nainar582fc2d2021-08-27 15:12:56 -0700320 // value to pass to -fsanitize-ignorelist
Martin Stjernholmb0249572020-09-15 02:32:35 +0100321 Blocklist *string
322}
Evgenii Stepanov1e405e12016-08-16 15:39:54 -0700323
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400324type sanitizeMutatedProperties struct {
325 // Whether sanitizers can be enabled on this module
326 Never *bool `blueprint:"mutated"`
327
328 // Whether ASan (Address sanitizer) is enabled for this module.
329 // Hwaddress sanitizer takes precedence over this sanitizer.
330 Address *bool `blueprint:"mutated"`
331 // Whether TSan (Thread sanitizer) is enabled for this module
332 Thread *bool `blueprint:"mutated"`
333 // Whether HWASan (Hardware Address sanitizer) is enabled for this module
334 Hwaddress *bool `blueprint:"mutated"`
335
336 // Whether Undefined behavior sanitizer is enabled for this module
337 All_undefined *bool `blueprint:"mutated"`
338 // Whether undefined behavior sanitizer subset is enabled for this module
339 Undefined *bool `blueprint:"mutated"`
340 // List of specific undefined behavior sanitizers enabled for this module
341 Misc_undefined []string `blueprint:"mutated"`
342 // Whether Fuzzeris enabled for this module
343 Fuzzer *bool `blueprint:"mutated"`
344 // whether safe-stack sanitizer is enabled for this module
345 Safestack *bool `blueprint:"mutated"`
346 // Whether cfi sanitizer is enabled for this module
347 Cfi *bool `blueprint:"mutated"`
348 // Whether signed/unsigned integer overflow sanitizer is enabled for this module
349 Integer_overflow *bool `blueprint:"mutated"`
350 // Whether scudo sanitizer is enabled for this module
351 Scudo *bool `blueprint:"mutated"`
352 // Whether shadow-call-stack sanitizer is enabled for this module.
353 Scs *bool `blueprint:"mutated"`
354 // Whether Memory-tagging is enabled for this module
355 Memtag_heap *bool `blueprint:"mutated"`
356 // Whether Memory-tagging stack instrumentation is enabled for this module
357 Memtag_stack *bool `blueprint:"mutated"`
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200358 // Whether Memory-tagging globals instrumentation is enabled for this module
359 Memtag_globals *bool `android:"arch_variant"`
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400360
361 // Whether a modifier for ASAN and HWASAN for write only instrumentation is enabled for this
362 // module
363 Writeonly *bool `blueprint:"mutated"`
364
365 // Sanitizers to run in the diagnostic mode (as opposed to the release mode).
366 Diag struct {
367 // Whether Undefined behavior sanitizer, diagnostic mode is enabled for this module
368 Undefined *bool `blueprint:"mutated"`
369 // Whether cfi sanitizer, diagnostic mode is enabled for this module
370 Cfi *bool `blueprint:"mutated"`
371 // Whether signed/unsigned integer overflow sanitizer, diagnostic mode is enabled for this
372 // module
373 Integer_overflow *bool `blueprint:"mutated"`
374 // Whether Memory-tagging, diagnostic mode is enabled for this module
375 Memtag_heap *bool `blueprint:"mutated"`
376 // List of specific undefined behavior sanitizers enabled in diagnostic mode
377 Misc_undefined []string `blueprint:"mutated"`
378 } `blueprint:"mutated"`
379}
380
Martin Stjernholmb0249572020-09-15 02:32:35 +0100381type SanitizeProperties struct {
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400382 Sanitize SanitizeUserProps `android:"arch_variant"`
383 SanitizeMutated sanitizeMutatedProperties `blueprint:"mutated"`
384
385 SanitizerEnabled bool `blueprint:"mutated"`
386 MinimalRuntimeDep bool `blueprint:"mutated"`
387 BuiltinsDep bool `blueprint:"mutated"`
388 UbsanRuntimeDep bool `blueprint:"mutated"`
389 InSanitizerDir bool `blueprint:"mutated"`
390 Sanitizers []string `blueprint:"mutated"`
391 DiagSanitizers []string `blueprint:"mutated"`
Colin Cross16b23492016-01-06 14:41:07 -0800392}
393
394type sanitize struct {
395 Properties SanitizeProperties
396}
397
Cindy Zhou18417cb2020-12-10 07:12:38 -0800398// Mark this tag with a check to see if apex dependency check should be skipped
399func (t libraryDependencyTag) SkipApexAllowedDependenciesCheck() bool {
400 return t.skipApexAllowedDependenciesCheck
401}
402
403var _ android.SkipApexAllowedDependenciesCheck = (*libraryDependencyTag)(nil)
404
Vishwath Mohane7128792017-11-17 11:08:10 -0800405func init() {
Cole Faust8982b1c2024-04-08 16:54:45 -0700406 pctx.StaticVariable("HostOnlySanitizeFlags", strings.Join(hostOnlySanitizeFlags, " "))
Trevor Radcliffeda64d912023-08-02 20:24:29 +0000407
Vishwath Mohane7128792017-11-17 11:08:10 -0800408 android.RegisterMakeVarsProvider(pctx, cfiMakeVarsProvider)
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -0700409 android.RegisterMakeVarsProvider(pctx, hwasanMakeVarsProvider)
Vishwath Mohane7128792017-11-17 11:08:10 -0800410}
411
Colin Cross16b23492016-01-06 14:41:07 -0800412func (sanitize *sanitize) props() []interface{} {
413 return []interface{}{&sanitize.Properties}
414}
415
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400416func (p *sanitizeMutatedProperties) copyUserPropertiesToMutated(userProps *SanitizeUserProps) {
417 p.Never = userProps.Never
418 p.Address = userProps.Address
419 p.All_undefined = userProps.All_undefined
420 p.Cfi = userProps.Cfi
421 p.Fuzzer = userProps.Fuzzer
422 p.Hwaddress = userProps.Hwaddress
423 p.Integer_overflow = userProps.Integer_overflow
424 p.Memtag_heap = userProps.Memtag_heap
425 p.Memtag_stack = userProps.Memtag_stack
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200426 p.Memtag_globals = userProps.Memtag_globals
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400427 p.Safestack = userProps.Safestack
428 p.Scs = userProps.Scs
429 p.Scudo = userProps.Scudo
430 p.Thread = userProps.Thread
431 p.Undefined = userProps.Undefined
432 p.Writeonly = userProps.Writeonly
433
434 p.Misc_undefined = make([]string, 0, len(userProps.Misc_undefined))
435 for _, v := range userProps.Misc_undefined {
436 p.Misc_undefined = append(p.Misc_undefined, v)
437 }
438
439 p.Diag.Cfi = userProps.Diag.Cfi
440 p.Diag.Integer_overflow = userProps.Diag.Integer_overflow
441 p.Diag.Memtag_heap = userProps.Diag.Memtag_heap
442 p.Diag.Undefined = userProps.Diag.Undefined
443
444 p.Diag.Misc_undefined = make([]string, 0, len(userProps.Diag.Misc_undefined))
445 for _, v := range userProps.Diag.Misc_undefined {
446 p.Diag.Misc_undefined = append(p.Diag.Misc_undefined, v)
447 }
448}
449
Colin Cross16b23492016-01-06 14:41:07 -0800450func (sanitize *sanitize) begin(ctx BaseModuleContext) {
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400451 s := &sanitize.Properties.SanitizeMutated
452 s.copyUserPropertiesToMutated(&sanitize.Properties.Sanitize)
Evgenii Stepanovfcfe56d2016-07-07 10:54:07 -0700453
Colin Cross16b23492016-01-06 14:41:07 -0800454 // Don't apply sanitizers to NDK code.
Jeff Gastonaf3cc2d2017-09-27 17:01:44 -0700455 if ctx.useSdk() {
Nan Zhang0007d812017-11-07 10:57:05 -0800456 s.Never = BoolPtr(true)
Colin Cross16b23492016-01-06 14:41:07 -0800457 }
458
459 // Never always wins.
Nan Zhang0007d812017-11-07 10:57:05 -0800460 if Bool(s.Never) {
Colin Cross16b23492016-01-06 14:41:07 -0800461 return
462 }
463
Florian Mayerd8434a42022-08-31 20:57:03 +0000464 // cc_test targets default to SYNC MemTag unless explicitly set to ASYNC (via diag: {memtag_heap: false}).
Liz Kammer7b920b42021-06-22 16:57:27 -0400465 if ctx.testBinary() {
466 if s.Memtag_heap == nil {
467 s.Memtag_heap = proptools.BoolPtr(true)
468 }
469 if s.Diag.Memtag_heap == nil {
470 s.Diag.Memtag_heap = proptools.BoolPtr(true)
471 }
Evgenii Stepanov04896ca2021-01-12 18:28:33 -0800472 }
473
Colin Cross16b23492016-01-06 14:41:07 -0800474 var globalSanitizers []string
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -0700475 var globalSanitizersDiag []string
476
Dan Willemsen8536d6b2018-10-07 20:54:34 -0700477 if ctx.Host() {
478 if !ctx.Windows() {
479 globalSanitizers = ctx.Config().SanitizeHost()
480 }
481 } else {
482 arches := ctx.Config().SanitizeDeviceArch()
483 if len(arches) == 0 || inList(ctx.Arch().ArchType.Name, arches) {
484 globalSanitizers = ctx.Config().SanitizeDevice()
485 globalSanitizersDiag = ctx.Config().SanitizeDeviceDiag()
Colin Cross16b23492016-01-06 14:41:07 -0800486 }
487 }
488
Colin Cross16b23492016-01-06 14:41:07 -0800489 if len(globalSanitizers) > 0 {
Evgenii Stepanov05bafd32016-07-07 17:38:41 +0000490 var found bool
Evgenii Stepanovfcfe56d2016-07-07 10:54:07 -0700491 if found, globalSanitizers = removeFromList("undefined", globalSanitizers); found && s.All_undefined == nil {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400492 s.All_undefined = proptools.BoolPtr(true)
Evgenii Stepanov05bafd32016-07-07 17:38:41 +0000493 }
Colin Cross16b23492016-01-06 14:41:07 -0800494
Evgenii Stepanovfcfe56d2016-07-07 10:54:07 -0700495 if found, globalSanitizers = removeFromList("default-ub", globalSanitizers); found && s.Undefined == nil {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400496 s.Undefined = proptools.BoolPtr(true)
Evgenii Stepanov05bafd32016-07-07 17:38:41 +0000497 }
498
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -0700499 if found, globalSanitizers = removeFromList("address", globalSanitizers); found && s.Address == nil {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400500 s.Address = proptools.BoolPtr(true)
Evgenii Stepanov05bafd32016-07-07 17:38:41 +0000501 }
502
Evgenii Stepanovfcfe56d2016-07-07 10:54:07 -0700503 if found, globalSanitizers = removeFromList("thread", globalSanitizers); found && s.Thread == nil {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400504 s.Thread = proptools.BoolPtr(true)
Evgenii Stepanov05bafd32016-07-07 17:38:41 +0000505 }
506
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -0700507 if found, globalSanitizers = removeFromList("fuzzer", globalSanitizers); found && s.Fuzzer == nil {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400508 s.Fuzzer = proptools.BoolPtr(true)
Evgenii Stepanovfcfe56d2016-07-07 10:54:07 -0700509 }
510
511 if found, globalSanitizers = removeFromList("safe-stack", globalSanitizers); found && s.Safestack == nil {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400512 s.Safestack = proptools.BoolPtr(true)
Evgenii Stepanov05bafd32016-07-07 17:38:41 +0000513 }
514
Evgenii Stepanov1e405e12016-08-16 15:39:54 -0700515 if found, globalSanitizers = removeFromList("cfi", globalSanitizers); found && s.Cfi == nil {
Colin Cross6510f912017-11-29 00:27:14 -0800516 if !ctx.Config().CFIDisabledForPath(ctx.ModuleDir()) {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400517 s.Cfi = proptools.BoolPtr(true)
Vishwath Mohan1fa3ac52017-10-31 02:26:14 -0700518 }
Evgenii Stepanov1e405e12016-08-16 15:39:54 -0700519 }
520
Ivan Lozanoa9255a82018-03-13 10:41:07 -0700521 // Global integer_overflow builds do not support static libraries.
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -0700522 if found, globalSanitizers = removeFromList("integer_overflow", globalSanitizers); found && s.Integer_overflow == nil {
Ivan Lozanoa9255a82018-03-13 10:41:07 -0700523 if !ctx.Config().IntegerOverflowDisabledForPath(ctx.ModuleDir()) && !ctx.static() {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400524 s.Integer_overflow = proptools.BoolPtr(true)
Ivan Lozano5f595532017-07-13 14:46:05 -0700525 }
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -0700526 }
527
Kostya Kortchinskyd18ae5c2018-06-12 14:46:54 -0700528 if found, globalSanitizers = removeFromList("scudo", globalSanitizers); found && s.Scudo == nil {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400529 s.Scudo = proptools.BoolPtr(true)
Kostya Kortchinskyd18ae5c2018-06-12 14:46:54 -0700530 }
531
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -0700532 if found, globalSanitizers = removeFromList("hwaddress", globalSanitizers); found && s.Hwaddress == nil {
Tomislav Novakf734f002023-08-22 10:51:44 -0700533 if !ctx.Config().HWASanDisabledForPath(ctx.ModuleDir()) {
534 s.Hwaddress = proptools.BoolPtr(true)
535 }
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -0700536 }
537
Jasraj Bedibb4511d2020-07-23 22:58:17 +0000538 if found, globalSanitizers = removeFromList("writeonly", globalSanitizers); found && s.Writeonly == nil {
539 // Hwaddress and Address are set before, so we can check them here
540 // If they aren't explicitly set in the blueprint/SANITIZE_(HOST|TARGET), they would be nil instead of false
541 if s.Address == nil && s.Hwaddress == nil {
542 ctx.ModuleErrorf("writeonly modifier cannot be used without 'address' or 'hwaddress'")
543 }
Liz Kammerb2fc4702021-06-25 14:53:40 -0400544 s.Writeonly = proptools.BoolPtr(true)
Jasraj Bedibb4511d2020-07-23 22:58:17 +0000545 }
Evgenii Stepanov193ac2e2020-04-28 15:09:12 -0700546 if found, globalSanitizers = removeFromList("memtag_heap", globalSanitizers); found && s.Memtag_heap == nil {
Evgenii Stepanov4beaa0c2021-01-05 16:41:26 -0800547 if !ctx.Config().MemtagHeapDisabledForPath(ctx.ModuleDir()) {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400548 s.Memtag_heap = proptools.BoolPtr(true)
Evgenii Stepanov4beaa0c2021-01-05 16:41:26 -0800549 }
Evgenii Stepanov193ac2e2020-04-28 15:09:12 -0700550 }
Jasraj Bedibb4511d2020-07-23 22:58:17 +0000551
Florian Mayerd8434a42022-08-31 20:57:03 +0000552 if found, globalSanitizers = removeFromList("memtag_stack", globalSanitizers); found && s.Memtag_stack == nil {
553 s.Memtag_stack = proptools.BoolPtr(true)
554 }
555
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200556 if found, globalSanitizers = removeFromList("memtag_globals", globalSanitizers); found && s.Memtag_globals == nil {
557 s.Memtag_globals = proptools.BoolPtr(true)
558 }
559
Evgenii Stepanov05bafd32016-07-07 17:38:41 +0000560 if len(globalSanitizers) > 0 {
561 ctx.ModuleErrorf("unknown global sanitizer option %s", globalSanitizers[0])
562 }
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -0700563
Ivan Lozanoa9255a82018-03-13 10:41:07 -0700564 // Global integer_overflow builds do not support static library diagnostics.
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -0700565 if found, globalSanitizersDiag = removeFromList("integer_overflow", globalSanitizersDiag); found &&
Ivan Lozanoa9255a82018-03-13 10:41:07 -0700566 s.Diag.Integer_overflow == nil && Bool(s.Integer_overflow) && !ctx.static() {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400567 s.Diag.Integer_overflow = proptools.BoolPtr(true)
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -0700568 }
569
Vishwath Mohan1fa3ac52017-10-31 02:26:14 -0700570 if found, globalSanitizersDiag = removeFromList("cfi", globalSanitizersDiag); found &&
571 s.Diag.Cfi == nil && Bool(s.Cfi) {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400572 s.Diag.Cfi = proptools.BoolPtr(true)
Vishwath Mohan1fa3ac52017-10-31 02:26:14 -0700573 }
574
Evgenii Stepanov04896ca2021-01-12 18:28:33 -0800575 if found, globalSanitizersDiag = removeFromList("memtag_heap", globalSanitizersDiag); found &&
576 s.Diag.Memtag_heap == nil && Bool(s.Memtag_heap) {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400577 s.Diag.Memtag_heap = proptools.BoolPtr(true)
Evgenii Stepanov04896ca2021-01-12 18:28:33 -0800578 }
579
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -0700580 if len(globalSanitizersDiag) > 0 {
581 ctx.ModuleErrorf("unknown global sanitizer diagnostics option %s", globalSanitizersDiag[0])
582 }
Evgenii Stepanovfcfe56d2016-07-07 10:54:07 -0700583 }
Colin Cross3c344ef2016-07-18 15:44:56 -0700584
Evgenii Stepanov4beaa0c2021-01-05 16:41:26 -0800585 // Enable Memtag for all components in the include paths (for Aarch64 only)
Colin Cross88a029f2022-06-23 14:51:20 -0700586 if ctx.Arch().ArchType == android.Arm64 && ctx.toolchain().Bionic() {
Evgenii Stepanov4beaa0c2021-01-05 16:41:26 -0800587 if ctx.Config().MemtagHeapSyncEnabledForPath(ctx.ModuleDir()) {
Evgenii Stepanov04896ca2021-01-12 18:28:33 -0800588 if s.Memtag_heap == nil {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400589 s.Memtag_heap = proptools.BoolPtr(true)
Evgenii Stepanov04896ca2021-01-12 18:28:33 -0800590 }
591 if s.Diag.Memtag_heap == nil {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400592 s.Diag.Memtag_heap = proptools.BoolPtr(true)
Evgenii Stepanov04896ca2021-01-12 18:28:33 -0800593 }
Evgenii Stepanov4beaa0c2021-01-05 16:41:26 -0800594 } else if ctx.Config().MemtagHeapAsyncEnabledForPath(ctx.ModuleDir()) {
Evgenii Stepanov04896ca2021-01-12 18:28:33 -0800595 if s.Memtag_heap == nil {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400596 s.Memtag_heap = proptools.BoolPtr(true)
Evgenii Stepanov04896ca2021-01-12 18:28:33 -0800597 }
Evgenii Stepanov4beaa0c2021-01-05 16:41:26 -0800598 }
Evgenii Stepanov193ac2e2020-04-28 15:09:12 -0700599 }
600
Hang Lua98aab92023-03-17 13:17:22 +0800601 // Enable HWASan for all components in the include paths (for Aarch64 only)
602 if s.Hwaddress == nil && ctx.Config().HWASanEnabledForPath(ctx.ModuleDir()) &&
603 ctx.Arch().ArchType == android.Arm64 && ctx.toolchain().Bionic() {
604 s.Hwaddress = proptools.BoolPtr(true)
605 }
606
Elvis Chien9c993542021-06-25 01:15:17 +0800607 // Enable CFI for non-host components in the include paths
608 if s.Cfi == nil && ctx.Config().CFIEnabledForPath(ctx.ModuleDir()) && !ctx.Host() {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400609 s.Cfi = proptools.BoolPtr(true)
Vishwath Mohan3af8ee02018-03-30 02:55:23 +0000610 if inList("cfi", ctx.Config().SanitizeDeviceDiag()) {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400611 s.Diag.Cfi = proptools.BoolPtr(true)
Vishwath Mohan1fa3ac52017-10-31 02:26:14 -0700612 }
613 }
614
Elliott Hughesda3a0712020-03-06 16:55:28 -0800615 // Is CFI actually enabled?
616 if !ctx.Config().EnableCFI() {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400617 s.Cfi = nil
618 s.Diag.Cfi = nil
Vishwath Mohan1b017a72017-01-19 13:54:55 -0800619 }
620
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -0700621 // HWASan requires AArch64 hardware feature (top-byte-ignore).
Colin Cross88a029f2022-06-23 14:51:20 -0700622 if ctx.Arch().ArchType != android.Arm64 || !ctx.toolchain().Bionic() {
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -0700623 s.Hwaddress = nil
624 }
625
Elliott Hughese4793bc2023-02-09 21:15:47 +0000626 // SCS is only implemented on AArch64/riscv64.
627 if (ctx.Arch().ArchType != android.Arm64 && ctx.Arch().ArchType != android.Riscv64) || !ctx.toolchain().Bionic() {
Peter Collingbourne8c7e6e22018-11-19 16:03:58 -0800628 s.Scs = nil
629 }
630
Ivan Lozano62cd0382021-11-01 10:27:54 -0400631 // Memtag_heap is only implemented on AArch64.
Florian Mayerd8434a42022-08-31 20:57:03 +0000632 // Memtag ABI is Android specific for now, so disable for host.
633 if ctx.Arch().ArchType != android.Arm64 || !ctx.toolchain().Bionic() || ctx.Host() {
Evgenii Stepanov193ac2e2020-04-28 15:09:12 -0700634 s.Memtag_heap = nil
Florian Mayerd8434a42022-08-31 20:57:03 +0000635 s.Memtag_stack = nil
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200636 s.Memtag_globals = nil
Evgenii Stepanov193ac2e2020-04-28 15:09:12 -0700637 }
638
Vishwath Mohan8f4fdd82017-04-20 07:42:52 -0700639 // Also disable CFI if ASAN is enabled.
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -0700640 if Bool(s.Address) || Bool(s.Hwaddress) {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400641 s.Cfi = nil
642 s.Diag.Cfi = nil
Florian Mayerd8434a42022-08-31 20:57:03 +0000643 // HWASAN and ASAN win against MTE.
644 s.Memtag_heap = nil
645 s.Memtag_stack = nil
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200646 s.Memtag_globals = nil
Vishwath Mohan8f4fdd82017-04-20 07:42:52 -0700647 }
648
Colin Crossed12a042022-02-07 13:55:55 -0800649 // Disable sanitizers that depend on the UBSan runtime for windows/darwin builds.
650 if !ctx.Os().Linux() {
Liz Kammerb2fc4702021-06-25 14:53:40 -0400651 s.Cfi = nil
652 s.Diag.Cfi = nil
Ivan Lozanoa9255a82018-03-13 10:41:07 -0700653 s.Misc_undefined = nil
654 s.Undefined = nil
655 s.All_undefined = nil
656 s.Integer_overflow = nil
Vishwath Mohane7128792017-11-17 11:08:10 -0800657 }
658
Colin Crossed12a042022-02-07 13:55:55 -0800659 // Disable CFI for musl
660 if ctx.toolchain().Musl() {
661 s.Cfi = nil
662 s.Diag.Cfi = nil
663 }
664
Colin Cross390fc742023-05-02 13:02:51 -0700665 // TODO(b/280478629): runtimes don't exist for musl arm64 yet.
666 if ctx.toolchain().Musl() && ctx.Arch().ArchType == android.Arm64 {
667 s.Address = nil
668 s.Hwaddress = nil
669 s.Thread = nil
670 s.Scudo = nil
671 s.Fuzzer = nil
672 s.Cfi = nil
673 s.Diag.Cfi = nil
674 s.Misc_undefined = nil
675 s.Undefined = nil
676 s.All_undefined = nil
677 s.Integer_overflow = nil
678 }
679
Vishwath Mohan9ccbba02018-05-28 13:54:48 -0700680 // Also disable CFI for VNDK variants of components
681 if ctx.isVndk() && ctx.useVndk() {
Justin Yun08270c62022-12-19 17:01:26 +0900682 s.Cfi = nil
683 s.Diag.Cfi = nil
Inseob Kimeec88e12020-01-22 11:11:29 +0900684 }
685
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -0700686 // HWASan ramdisk (which is built from recovery) goes over some bootloader limit.
Yifan Hong60e0cfb2020-10-21 15:17:56 -0700687 // Keep libc instrumented so that ramdisk / vendor_ramdisk / recovery can run hwasan-instrumented code if necessary.
688 if (ctx.inRamdisk() || ctx.inVendorRamdisk() || ctx.inRecovery()) && !strings.HasPrefix(ctx.ModuleDir(), "bionic/libc") {
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -0700689 s.Hwaddress = nil
690 }
691
Colin Cross3c344ef2016-07-18 15:44:56 -0700692 if ctx.staticBinary() {
693 s.Address = nil
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -0700694 s.Fuzzer = nil
Colin Cross3c344ef2016-07-18 15:44:56 -0700695 s.Thread = nil
Colin Cross16b23492016-01-06 14:41:07 -0800696 }
697
Evgenii Stepanovfcfe56d2016-07-07 10:54:07 -0700698 if Bool(s.All_undefined) {
699 s.Undefined = nil
700 }
701
Evgenii Stepanov0a8a0d02016-05-12 13:54:53 -0700702 if !ctx.toolchain().Is64Bit() {
703 // TSAN and SafeStack are not supported on 32-bit architectures
Evgenii Stepanovfcfe56d2016-07-07 10:54:07 -0700704 s.Thread = nil
705 s.Safestack = nil
Colin Cross16b23492016-01-06 14:41:07 -0800706 // TODO(ccross): error for compile_multilib = "32"?
707 }
708
Evgenii Stepanov76cee232017-01-27 15:44:44 -0800709 if ctx.Os() != android.Windows && (Bool(s.All_undefined) || Bool(s.Undefined) || Bool(s.Address) || Bool(s.Thread) ||
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -0700710 Bool(s.Fuzzer) || Bool(s.Safestack) || Bool(s.Cfi) || Bool(s.Integer_overflow) || len(s.Misc_undefined) > 0 ||
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200711 Bool(s.Scudo) || Bool(s.Hwaddress) || Bool(s.Scs) || Bool(s.Memtag_heap) || Bool(s.Memtag_stack) ||
712 Bool(s.Memtag_globals)) {
Colin Cross3c344ef2016-07-18 15:44:56 -0700713 sanitize.Properties.SanitizerEnabled = true
714 }
715
Kostya Kortchinskyd5275c82019-02-01 08:42:56 -0800716 // Disable Scudo if ASan or TSan is enabled, or if it's disabled globally.
717 if Bool(s.Address) || Bool(s.Thread) || Bool(s.Hwaddress) || ctx.Config().DisableScudo() {
Kostya Kortchinskyd18ae5c2018-06-12 14:46:54 -0700718 s.Scudo = nil
719 }
720
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -0700721 if Bool(s.Hwaddress) {
722 s.Address = nil
723 s.Thread = nil
724 }
Mitch Phillips5007c4a2022-03-02 01:25:22 +0000725
726 // TODO(b/131771163): CFI transiently depends on LTO, and thus Fuzzer is
727 // mutually incompatible.
728 if Bool(s.Fuzzer) {
729 s.Cfi = nil
730 }
Colin Cross16b23492016-01-06 14:41:07 -0800731}
732
Chih-Hung Hsieh3567e622018-11-15 14:01:36 -0800733func toDisableImplicitIntegerChange(flags []string) bool {
734 // Returns true if any flag is fsanitize*integer, and there is
735 // no explicit flag about sanitize=implicit-integer-sign-change.
736 for _, f := range flags {
737 if strings.Contains(f, "sanitize=implicit-integer-sign-change") {
738 return false
739 }
740 }
741 for _, f := range flags {
742 if strings.HasPrefix(f, "-fsanitize") && strings.Contains(f, "integer") {
743 return true
744 }
745 }
746 return false
747}
748
Yabin Cuidb7dda82020-11-30 15:47:45 -0800749func toDisableUnsignedShiftBaseChange(flags []string) bool {
750 // Returns true if any flag is fsanitize*integer, and there is
751 // no explicit flag about sanitize=unsigned-shift-base.
752 for _, f := range flags {
753 if strings.Contains(f, "sanitize=unsigned-shift-base") {
754 return false
755 }
756 }
757 for _, f := range flags {
758 if strings.HasPrefix(f, "-fsanitize") && strings.Contains(f, "integer") {
759 return true
760 }
761 }
762 return false
763}
764
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400765func (s *sanitize) flags(ctx ModuleContext, flags Flags) Flags {
766 if !s.Properties.SanitizerEnabled && !s.Properties.UbsanRuntimeDep {
Colin Cross16b23492016-01-06 14:41:07 -0800767 return flags
768 }
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400769 sanProps := &s.Properties.SanitizeMutated
Colin Cross16b23492016-01-06 14:41:07 -0800770
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400771 if Bool(sanProps.Address) {
Colin Cross635c3b02016-05-18 15:37:25 -0700772 if ctx.Arch().ArchType == android.Arm {
Colin Cross16b23492016-01-06 14:41:07 -0800773 // Frame pointer based unwinder in ASan requires ARM frame setup.
774 // TODO: put in flags?
775 flags.RequiredInstructionSet = "arm"
776 }
Colin Cross4af21ed2019-11-04 09:37:55 -0800777 flags.Local.CFlags = append(flags.Local.CFlags, asanCflags...)
778 flags.Local.LdFlags = append(flags.Local.LdFlags, asanLdflags...)
Colin Cross16b23492016-01-06 14:41:07 -0800779
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400780 if Bool(sanProps.Writeonly) {
Jasraj Bedibb4511d2020-07-23 22:58:17 +0000781 flags.Local.CFlags = append(flags.Local.CFlags, "-mllvm", "-asan-instrument-reads=0")
782 }
783
Colin Cross16b23492016-01-06 14:41:07 -0800784 if ctx.Host() {
785 // -nodefaultlibs (provided with libc++) prevents the driver from linking
786 // libraries needed with -fsanitize=address. http://b/18650275 (WAI)
Colin Cross4af21ed2019-11-04 09:37:55 -0800787 flags.Local.LdFlags = append(flags.Local.LdFlags, "-Wl,--no-as-needed")
Colin Cross16b23492016-01-06 14:41:07 -0800788 } else {
Colin Cross4af21ed2019-11-04 09:37:55 -0800789 flags.Local.CFlags = append(flags.Local.CFlags, "-mllvm", "-asan-globals=0")
Jiyong Parka2aca282019-02-02 13:13:38 +0900790 if ctx.bootstrap() {
791 flags.DynamicLinker = "/system/bin/bootstrap/linker_asan"
792 } else {
793 flags.DynamicLinker = "/system/bin/linker_asan"
794 }
Colin Cross16b23492016-01-06 14:41:07 -0800795 if flags.Toolchain.Is64Bit() {
796 flags.DynamicLinker += "64"
797 }
798 }
Colin Cross16b23492016-01-06 14:41:07 -0800799 }
800
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400801 if Bool(sanProps.Hwaddress) {
Colin Cross4af21ed2019-11-04 09:37:55 -0800802 flags.Local.CFlags = append(flags.Local.CFlags, hwasanCflags...)
Yi Kong286abc62021-11-04 16:14:14 +0800803
804 for _, flag := range hwasanCommonflags {
805 flags.Local.CFlags = append(flags.Local.CFlags, "-mllvm", flag)
806 }
807 for _, flag := range hwasanCommonflags {
808 flags.Local.LdFlags = append(flags.Local.LdFlags, "-Wl,-mllvm,"+flag)
809 }
810
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400811 if Bool(sanProps.Writeonly) {
Jasraj Bedibb4511d2020-07-23 22:58:17 +0000812 flags.Local.CFlags = append(flags.Local.CFlags, "-mllvm", "-hwasan-instrument-reads=0")
813 }
Florian Mayer95cd6db2023-03-23 17:48:07 -0700814 if !ctx.staticBinary() && !ctx.Host() {
815 if ctx.bootstrap() {
816 flags.DynamicLinker = "/system/bin/bootstrap/linker_hwasan64"
817 } else {
818 flags.DynamicLinker = "/system/bin/linker_hwasan64"
819 }
820 }
Yabin Cui6be405e2017-10-19 15:52:11 -0700821 }
822
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400823 if Bool(sanProps.Fuzzer) {
Colin Cross4af21ed2019-11-04 09:37:55 -0800824 flags.Local.CFlags = append(flags.Local.CFlags, "-fsanitize=fuzzer-no-link")
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -0700825
Mitch Phillips5007c4a2022-03-02 01:25:22 +0000826 // TODO(b/131771163): LTO and Fuzzer support is mutually incompatible.
827 _, flags.Local.LdFlags = removeFromList("-flto", flags.Local.LdFlags)
828 _, flags.Local.CFlags = removeFromList("-flto", flags.Local.CFlags)
829 flags.Local.LdFlags = append(flags.Local.LdFlags, "-fno-lto")
830 flags.Local.CFlags = append(flags.Local.CFlags, "-fno-lto")
831
Mitch Phillipsb8e593d2019-10-09 17:18:59 -0700832 // TODO(b/142430592): Upstream linker scripts for sanitizer runtime libraries
833 // discard the sancov_lowest_stack symbol, because it's emulated TLS (and thus
834 // doesn't match the linker script due to the "__emutls_v." prefix).
Colin Cross4af21ed2019-11-04 09:37:55 -0800835 flags.Local.LdFlags = append(flags.Local.LdFlags, "-fno-sanitize-coverage=stack-depth")
836 flags.Local.CFlags = append(flags.Local.CFlags, "-fno-sanitize-coverage=stack-depth")
Mitch Phillipsb8e593d2019-10-09 17:18:59 -0700837
Mitch Phillipsb9b3e792019-08-28 12:41:07 -0700838 // Disable fortify for fuzzing builds. Generally, we'll be building with
839 // UBSan or ASan here and the fortify checks pollute the stack traces.
Colin Cross4af21ed2019-11-04 09:37:55 -0800840 flags.Local.CFlags = append(flags.Local.CFlags, "-U_FORTIFY_SOURCE")
Mitch Phillips734b4cb2019-12-10 08:44:52 -0800841
842 // Build fuzzer-sanitized libraries with an $ORIGIN DT_RUNPATH. Android's
843 // linker uses DT_RUNPATH, not DT_RPATH. When we deploy cc_fuzz targets and
844 // their libraries to /data/fuzz/<arch>/lib, any transient shared library gets
845 // the DT_RUNPATH from the shared library above it, and not the executable,
846 // meaning that the lookup falls back to the system. Adding the $ORIGIN to the
847 // DT_RUNPATH here means that transient shared libraries can be found
848 // colocated with their parents.
849 flags.Local.LdFlags = append(flags.Local.LdFlags, `-Wl,-rpath,\$$ORIGIN`)
Colin Cross16b23492016-01-06 14:41:07 -0800850 }
851
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400852 if Bool(sanProps.Cfi) {
Evgenii Stepanov7ebf9fa2017-01-20 14:13:06 -0800853 if ctx.Arch().ArchType == android.Arm {
854 // __cfi_check needs to be built as Thumb (see the code in linker_cfi.cpp). LLVM is not set up
855 // to do this on a function basis, so force Thumb on the entire module.
856 flags.RequiredInstructionSet = "thumb"
857 }
Vishwath Mohanb743e9c2017-11-01 09:20:21 +0000858
Colin Cross4af21ed2019-11-04 09:37:55 -0800859 flags.Local.CFlags = append(flags.Local.CFlags, cfiCflags...)
860 flags.Local.AsFlags = append(flags.Local.AsFlags, cfiAsflags...)
AdityaK6e6f5222024-04-03 14:53:22 -0700861 flags.CFlagsDeps = append(flags.CFlagsDeps, android.PathForSource(ctx, cfiBlocklistPath + "/" + cfiBlocklistFilename))
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400862 if Bool(s.Properties.Sanitize.Config.Cfi_assembly_support) {
Trevor Radcliffe391a25d2023-03-22 20:22:27 +0000863 flags.Local.CFlags = append(flags.Local.CFlags, cfiAssemblySupportFlag)
Cindy Zhou8cd45de2020-11-16 08:41:00 -0800864 }
Vishwath Mohanb743e9c2017-11-01 09:20:21 +0000865 // Only append the default visibility flag if -fvisibility has not already been set
866 // to hidden.
Colin Cross4af21ed2019-11-04 09:37:55 -0800867 if !inList("-fvisibility=hidden", flags.Local.CFlags) {
868 flags.Local.CFlags = append(flags.Local.CFlags, "-fvisibility=default")
Vishwath Mohanb743e9c2017-11-01 09:20:21 +0000869 }
Colin Cross4af21ed2019-11-04 09:37:55 -0800870 flags.Local.LdFlags = append(flags.Local.LdFlags, cfiLdflags...)
Vishwath Mohanb743e9c2017-11-01 09:20:21 +0000871
872 if ctx.staticBinary() {
Colin Cross4af21ed2019-11-04 09:37:55 -0800873 _, flags.Local.CFlags = removeFromList("-fsanitize-cfi-cross-dso", flags.Local.CFlags)
874 _, flags.Local.LdFlags = removeFromList("-fsanitize-cfi-cross-dso", flags.Local.LdFlags)
Vishwath Mohanb743e9c2017-11-01 09:20:21 +0000875 }
Evgenii Stepanov1e405e12016-08-16 15:39:54 -0700876 }
877
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400878 if Bool(sanProps.Memtag_stack) {
Florian Mayerd8434a42022-08-31 20:57:03 +0000879 flags.Local.CFlags = append(flags.Local.CFlags, memtagStackCommonFlags...)
880 flags.Local.AsFlags = append(flags.Local.AsFlags, memtagStackCommonFlags...)
881 flags.Local.LdFlags = append(flags.Local.LdFlags, memtagStackCommonFlags...)
882 }
883
Mitch Phillips92d19fa2023-06-01 14:23:09 +0200884 if (Bool(sanProps.Memtag_heap) || Bool(sanProps.Memtag_stack) || Bool(sanProps.Memtag_globals)) && ctx.binary() {
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400885 if Bool(sanProps.Diag.Memtag_heap) {
Florian Mayerd8434a42022-08-31 20:57:03 +0000886 flags.Local.LdFlags = append(flags.Local.LdFlags, "-fsanitize-memtag-mode=sync")
887 } else {
888 flags.Local.LdFlags = append(flags.Local.LdFlags, "-fsanitize-memtag-mode=async")
889 }
890 }
891
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400892 if Bool(sanProps.Integer_overflow) {
Colin Cross4af21ed2019-11-04 09:37:55 -0800893 flags.Local.CFlags = append(flags.Local.CFlags, intOverflowCflags...)
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -0700894 }
895
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400896 if len(s.Properties.Sanitizers) > 0 {
897 sanitizeArg := "-fsanitize=" + strings.Join(s.Properties.Sanitizers, ",")
Colin Cross4af21ed2019-11-04 09:37:55 -0800898 flags.Local.CFlags = append(flags.Local.CFlags, sanitizeArg)
899 flags.Local.AsFlags = append(flags.Local.AsFlags, sanitizeArg)
Colin Cross234b01d2022-02-07 13:49:03 -0800900 flags.Local.LdFlags = append(flags.Local.LdFlags, sanitizeArg)
901
Colin Crossed12a042022-02-07 13:55:55 -0800902 if ctx.toolchain().Bionic() || ctx.toolchain().Musl() {
903 // Bionic and musl sanitizer runtimes have already been added as dependencies so that
904 // the right variant of the runtime will be used (with the "-android" or "-musl"
905 // suffixes), so don't let clang the runtime library.
Trevor Radcliffeda64d912023-08-02 20:24:29 +0000906 flags.Local.LdFlags = append(flags.Local.LdFlags, noSanitizeLinkRuntimeFlag)
Colin Cross234b01d2022-02-07 13:49:03 -0800907 } else {
Evgenii Stepanov76cee232017-01-27 15:44:44 -0800908 // Host sanitizers only link symbols in the final executable, so
909 // there will always be undefined symbols in intermediate libraries.
Colin Cross4af21ed2019-11-04 09:37:55 -0800910 _, flags.Global.LdFlags = removeFromList("-Wl,--no-undefined", flags.Global.LdFlags)
Colin Cross6c18d002022-06-02 15:11:50 -0700911 }
Ivan Lozano9ac32c72020-02-19 15:24:02 -0500912
Colin Cross6c18d002022-06-02 15:11:50 -0700913 if !ctx.toolchain().Bionic() {
914 // non-Bionic toolchain prebuilts are missing UBSan's vptr and function san.
915 // Musl toolchain prebuilts have vptr and function sanitizers, but enabling them
916 // implicitly enables RTTI which causes RTTI mismatch issues with dependencies.
917
Colin Cross234b01d2022-02-07 13:49:03 -0800918 flags.Local.CFlags = append(flags.Local.CFlags, "-fno-sanitize=vptr,function")
Ivan Lozano9ac32c72020-02-19 15:24:02 -0500919 }
920
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400921 if Bool(sanProps.Fuzzer) {
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -0700922 // When fuzzing, we wish to crash with diagnostics on any bug.
Colin Cross4af21ed2019-11-04 09:37:55 -0800923 flags.Local.CFlags = append(flags.Local.CFlags, "-fno-sanitize-trap=all", "-fno-sanitize-recover=all")
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -0700924 } else if ctx.Host() {
Trevor Radcliffe4f95ee92023-01-19 16:02:47 +0000925 flags.Local.CFlags = append(flags.Local.CFlags, hostOnlySanitizeFlags...)
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -0700926 } else {
Trevor Radcliffe4f95ee92023-01-19 16:02:47 +0000927 flags.Local.CFlags = append(flags.Local.CFlags, deviceOnlySanitizeFlags...)
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -0700928 }
Evgenii Stepanov59012812022-06-24 11:09:18 -0700929
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400930 if enableMinimalRuntime(s) {
Evgenii Stepanov59012812022-06-24 11:09:18 -0700931 flags.Local.CFlags = append(flags.Local.CFlags, strings.Join(minimalRuntimeFlags, " "))
932 }
933
Chih-Hung Hsieh3567e622018-11-15 14:01:36 -0800934 // http://b/119329758, Android core does not boot up with this sanitizer yet.
Colin Cross4af21ed2019-11-04 09:37:55 -0800935 if toDisableImplicitIntegerChange(flags.Local.CFlags) {
936 flags.Local.CFlags = append(flags.Local.CFlags, "-fno-sanitize=implicit-integer-sign-change")
Chih-Hung Hsieh3567e622018-11-15 14:01:36 -0800937 }
Yabin Cuidb7dda82020-11-30 15:47:45 -0800938 // http://b/171275751, Android doesn't build with this sanitizer yet.
939 if toDisableUnsignedShiftBaseChange(flags.Local.CFlags) {
940 flags.Local.CFlags = append(flags.Local.CFlags, "-fno-sanitize=unsigned-shift-base")
941 }
Colin Cross16b23492016-01-06 14:41:07 -0800942 }
943
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400944 if len(s.Properties.DiagSanitizers) > 0 {
945 flags.Local.CFlags = append(flags.Local.CFlags, "-fno-sanitize-trap="+strings.Join(s.Properties.DiagSanitizers, ","))
Evgenii Stepanov1e405e12016-08-16 15:39:54 -0700946 }
947 // FIXME: enable RTTI if diag + (cfi or vptr)
948
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400949 if s.Properties.Sanitize.Recover != nil {
Colin Cross4af21ed2019-11-04 09:37:55 -0800950 flags.Local.CFlags = append(flags.Local.CFlags, "-fsanitize-recover="+
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400951 strings.Join(s.Properties.Sanitize.Recover, ","))
Andreas Gampe97071162017-05-08 13:15:23 -0700952 }
953
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400954 if s.Properties.Sanitize.Diag.No_recover != nil {
Colin Cross4af21ed2019-11-04 09:37:55 -0800955 flags.Local.CFlags = append(flags.Local.CFlags, "-fno-sanitize-recover="+
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400956 strings.Join(s.Properties.Sanitize.Diag.No_recover, ","))
Ivan Lozano7929bba2018-12-12 09:36:31 -0800957 }
958
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400959 blocklist := android.OptionalPathForModuleSrc(ctx, s.Properties.Sanitize.Blocklist)
Pirama Arumuga Nainar6c4ccca2020-07-27 11:49:51 -0700960 if blocklist.Valid() {
Trevor Radcliffeded095c2023-06-12 19:18:28 +0000961 flags.Local.CFlags = append(flags.Local.CFlags, sanitizeIgnorelistPrefix+blocklist.String())
Pirama Arumuga Nainar6c4ccca2020-07-27 11:49:51 -0700962 flags.CFlagsDeps = append(flags.CFlagsDeps, blocklist.Path())
963 }
964
Colin Cross16b23492016-01-06 14:41:07 -0800965 return flags
966}
967
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400968func (s *sanitize) AndroidMkEntries(ctx AndroidMkContext, entries *android.AndroidMkEntries) {
Jiyong Park1d1119f2019-07-29 21:27:18 +0900969 // Add a suffix for cfi/hwasan/scs-enabled static/header libraries to allow surfacing
970 // both the sanitized and non-sanitized variants to make without a name conflict.
Colin Crossd80cbca2020-02-24 12:01:37 -0800971 if entries.Class == "STATIC_LIBRARIES" || entries.Class == "HEADER_LIBRARIES" {
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400972 if Bool(s.Properties.SanitizeMutated.Cfi) {
Colin Crossd80cbca2020-02-24 12:01:37 -0800973 entries.SubName += ".cfi"
Jiyong Park1d1119f2019-07-29 21:27:18 +0900974 }
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400975 if Bool(s.Properties.SanitizeMutated.Hwaddress) {
Colin Crossd80cbca2020-02-24 12:01:37 -0800976 entries.SubName += ".hwasan"
Jiyong Park1d1119f2019-07-29 21:27:18 +0900977 }
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400978 if Bool(s.Properties.SanitizeMutated.Scs) {
Colin Crossd80cbca2020-02-24 12:01:37 -0800979 entries.SubName += ".scs"
Jiyong Park1d1119f2019-07-29 21:27:18 +0900980 }
Peter Collingbourne8c7e6e22018-11-19 16:03:58 -0800981 }
Colin Cross8ff9ef42017-05-08 13:44:11 -0700982}
983
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400984func (s *sanitize) inSanitizerDir() bool {
985 return s.Properties.InSanitizerDir
Colin Cross30d5f512016-05-03 18:02:42 -0700986}
987
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500988// getSanitizerBoolPtr returns the SanitizerTypes associated bool pointer from SanitizeProperties.
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400989func (s *sanitize) getSanitizerBoolPtr(t SanitizerType) *bool {
Vishwath Mohan95229302017-08-11 00:53:16 +0000990 switch t {
Ivan Lozano3968d8f2020-12-14 11:27:52 -0500991 case Asan:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400992 return s.Properties.SanitizeMutated.Address
Tri Vo6eafc362021-04-01 11:29:09 -0700993 case Hwasan:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400994 return s.Properties.SanitizeMutated.Hwaddress
Vishwath Mohan95229302017-08-11 00:53:16 +0000995 case tsan:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400996 return s.Properties.SanitizeMutated.Thread
Vishwath Mohan95229302017-08-11 00:53:16 +0000997 case intOverflow:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -0400998 return s.Properties.SanitizeMutated.Integer_overflow
Vishwath Mohanb743e9c2017-11-01 09:20:21 +0000999 case cfi:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001000 return s.Properties.SanitizeMutated.Cfi
Peter Collingbourne8c7e6e22018-11-19 16:03:58 -08001001 case scs:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001002 return s.Properties.SanitizeMutated.Scs
Ivan Lozano62cd0382021-11-01 10:27:54 -04001003 case Memtag_heap:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001004 return s.Properties.SanitizeMutated.Memtag_heap
Florian Mayerd8434a42022-08-31 20:57:03 +00001005 case Memtag_stack:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001006 return s.Properties.SanitizeMutated.Memtag_stack
Mitch Phillips92d19fa2023-06-01 14:23:09 +02001007 case Memtag_globals:
1008 return s.Properties.SanitizeMutated.Memtag_globals
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001009 case Fuzzer:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001010 return s.Properties.SanitizeMutated.Fuzzer
Vishwath Mohan95229302017-08-11 00:53:16 +00001011 default:
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001012 panic(fmt.Errorf("unknown SanitizerType %d", t))
Vishwath Mohan95229302017-08-11 00:53:16 +00001013 }
1014}
1015
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001016// isUnsanitizedVariant returns true if no sanitizers are enabled.
Dan Albert7d1eecf2018-01-19 12:30:45 -08001017func (sanitize *sanitize) isUnsanitizedVariant() bool {
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001018 return !sanitize.isSanitizerEnabled(Asan) &&
Tri Vo6eafc362021-04-01 11:29:09 -07001019 !sanitize.isSanitizerEnabled(Hwasan) &&
Dan Albert7d1eecf2018-01-19 12:30:45 -08001020 !sanitize.isSanitizerEnabled(tsan) &&
Peter Collingbourne8c7e6e22018-11-19 16:03:58 -08001021 !sanitize.isSanitizerEnabled(cfi) &&
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -07001022 !sanitize.isSanitizerEnabled(scs) &&
Ivan Lozano62cd0382021-11-01 10:27:54 -04001023 !sanitize.isSanitizerEnabled(Memtag_heap) &&
Florian Mayerd8434a42022-08-31 20:57:03 +00001024 !sanitize.isSanitizerEnabled(Memtag_stack) &&
Mitch Phillips92d19fa2023-06-01 14:23:09 +02001025 !sanitize.isSanitizerEnabled(Memtag_globals) &&
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001026 !sanitize.isSanitizerEnabled(Fuzzer)
Dan Albert7d1eecf2018-01-19 12:30:45 -08001027}
1028
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001029// isVariantOnProductionDevice returns true if variant is for production devices (no non-production sanitizers enabled).
Jayant Chowdharyb7e08ca2018-05-10 15:29:24 -07001030func (sanitize *sanitize) isVariantOnProductionDevice() bool {
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001031 return !sanitize.isSanitizerEnabled(Asan) &&
Tri Vo6eafc362021-04-01 11:29:09 -07001032 !sanitize.isSanitizerEnabled(Hwasan) &&
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -07001033 !sanitize.isSanitizerEnabled(tsan) &&
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001034 !sanitize.isSanitizerEnabled(Fuzzer)
Jayant Chowdharyb7e08ca2018-05-10 15:29:24 -07001035}
1036
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001037func (sanitize *sanitize) SetSanitizer(t SanitizerType, b bool) {
Liz Kammerb2fc4702021-06-25 14:53:40 -04001038 bPtr := proptools.BoolPtr(b)
1039 if !b {
1040 bPtr = nil
1041 }
Colin Cross16b23492016-01-06 14:41:07 -08001042 switch t {
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001043 case Asan:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001044 sanitize.Properties.SanitizeMutated.Address = bPtr
Florian Mayer1bda2462022-09-29 15:48:08 -07001045 // For ASAN variant, we need to disable Memtag_stack
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001046 sanitize.Properties.SanitizeMutated.Memtag_stack = nil
Mitch Phillips92d19fa2023-06-01 14:23:09 +02001047 sanitize.Properties.SanitizeMutated.Memtag_globals = nil
Tri Vo6eafc362021-04-01 11:29:09 -07001048 case Hwasan:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001049 sanitize.Properties.SanitizeMutated.Hwaddress = bPtr
Florian Mayer1bda2462022-09-29 15:48:08 -07001050 // For HWAsan variant, we need to disable Memtag_stack
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001051 sanitize.Properties.SanitizeMutated.Memtag_stack = nil
Mitch Phillips92d19fa2023-06-01 14:23:09 +02001052 sanitize.Properties.SanitizeMutated.Memtag_globals = nil
Colin Cross16b23492016-01-06 14:41:07 -08001053 case tsan:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001054 sanitize.Properties.SanitizeMutated.Thread = bPtr
Ivan Lozano0c3a1ef2017-06-28 09:10:48 -07001055 case intOverflow:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001056 sanitize.Properties.SanitizeMutated.Integer_overflow = bPtr
Vishwath Mohanb743e9c2017-11-01 09:20:21 +00001057 case cfi:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001058 sanitize.Properties.SanitizeMutated.Cfi = bPtr
Peter Collingbourne8c7e6e22018-11-19 16:03:58 -08001059 case scs:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001060 sanitize.Properties.SanitizeMutated.Scs = bPtr
Ivan Lozano62cd0382021-11-01 10:27:54 -04001061 case Memtag_heap:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001062 sanitize.Properties.SanitizeMutated.Memtag_heap = bPtr
Florian Mayerd8434a42022-08-31 20:57:03 +00001063 case Memtag_stack:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001064 sanitize.Properties.SanitizeMutated.Memtag_stack = bPtr
Florian Mayer1bda2462022-09-29 15:48:08 -07001065 // We do not need to disable ASAN or HWASan here, as there is no Memtag_stack variant.
Mitch Phillips92d19fa2023-06-01 14:23:09 +02001066 case Memtag_globals:
1067 sanitize.Properties.Sanitize.Memtag_globals = bPtr
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001068 case Fuzzer:
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001069 sanitize.Properties.SanitizeMutated.Fuzzer = bPtr
Colin Cross16b23492016-01-06 14:41:07 -08001070 default:
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001071 panic(fmt.Errorf("unknown SanitizerType %d", t))
Colin Cross16b23492016-01-06 14:41:07 -08001072 }
1073 if b {
1074 sanitize.Properties.SanitizerEnabled = true
1075 }
1076}
1077
Vishwath Mohanb743e9c2017-11-01 09:20:21 +00001078// Check if the sanitizer is explicitly disabled (as opposed to nil by
1079// virtue of not being set).
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001080func (sanitize *sanitize) isSanitizerExplicitlyDisabled(t SanitizerType) bool {
Vishwath Mohanb743e9c2017-11-01 09:20:21 +00001081 if sanitize == nil {
1082 return false
1083 }
1084
1085 sanitizerVal := sanitize.getSanitizerBoolPtr(t)
1086 return sanitizerVal != nil && *sanitizerVal == false
1087}
1088
1089// There isn't an analog of the method above (ie:isSanitizerExplicitlyEnabled)
1090// because enabling a sanitizer either directly (via the blueprint) or
1091// indirectly (via a mutator) sets the bool ptr to true, and you can't
1092// distinguish between the cases. It isn't needed though - both cases can be
1093// treated identically.
Liz Kammerba23cb62023-09-26 16:48:04 -04001094func (s *sanitize) isSanitizerEnabled(t SanitizerType) bool {
1095 if s == nil {
1096 return false
1097 }
1098 if proptools.Bool(s.Properties.SanitizeMutated.Never) {
Vishwath Mohanb743e9c2017-11-01 09:20:21 +00001099 return false
1100 }
1101
Liz Kammerba23cb62023-09-26 16:48:04 -04001102 sanitizerVal := s.getSanitizerBoolPtr(t)
Vishwath Mohanb743e9c2017-11-01 09:20:21 +00001103 return sanitizerVal != nil && *sanitizerVal == true
1104}
1105
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001106// IsSanitizableDependencyTag returns true if the dependency tag is sanitizable.
1107func IsSanitizableDependencyTag(tag blueprint.DependencyTag) bool {
Colin Cross6e511a92020-07-27 21:26:48 -07001108 switch t := tag.(type) {
1109 case dependencyTag:
1110 return t == reuseObjTag || t == objDepTag
1111 case libraryDependencyTag:
1112 return true
1113 default:
1114 return false
1115 }
Colin Cross6b753602018-06-21 13:03:07 -07001116}
1117
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001118func (m *Module) SanitizableDepTagChecker() SantizableDependencyTagChecker {
1119 return IsSanitizableDependencyTag
1120}
1121
Lukacs T. Berki6c716762022-06-13 20:50:39 +02001122type sanitizerSplitMutator struct {
1123 sanitizer SanitizerType
1124}
1125
1126// If an APEX is sanitized or not depends on whether it contains at least one
1127// sanitized module. Transition mutators cannot propagate information up the
1128// dependency graph this way, so we need an auxiliary mutator to do so.
1129func (s *sanitizerSplitMutator) markSanitizableApexesMutator(ctx android.TopDownMutatorContext) {
1130 if sanitizeable, ok := ctx.Module().(Sanitizeable); ok {
1131 enabled := sanitizeable.IsSanitizerEnabled(ctx.Config(), s.sanitizer.name())
1132 ctx.VisitDirectDeps(func(dep android.Module) {
Ivan Lozano5467a392023-08-23 14:20:25 -04001133 if c, ok := dep.(PlatformSanitizeable); ok && c.IsSanitizerEnabled(s.sanitizer) {
Inseob Kimc42f2f22020-07-29 20:32:10 +09001134 enabled = true
Inseob Kimc42f2f22020-07-29 20:32:10 +09001135 }
Lukacs T. Berki6c716762022-06-13 20:50:39 +02001136 })
1137
1138 if enabled {
1139 sanitizeable.EnableSanitizer(s.sanitizer.name())
1140 }
1141 }
1142}
1143
1144func (s *sanitizerSplitMutator) Split(ctx android.BaseModuleContext) []string {
1145 if c, ok := ctx.Module().(PlatformSanitizeable); ok && c.SanitizePropDefined() {
Lukacs T. Berki6c716762022-06-13 20:50:39 +02001146 // If the given sanitizer is not requested in the .bp file for a module, it
1147 // won't automatically build the sanitized variation.
1148 if !c.IsSanitizerEnabled(s.sanitizer) {
1149 return []string{""}
1150 }
1151
1152 if c.Binary() {
1153 // If a sanitizer is enabled for a binary, we do not build the version
1154 // without the sanitizer
1155 return []string{s.sanitizer.variationName()}
1156 } else if c.StaticallyLinked() || c.Header() {
1157 // For static libraries, we build both versions. Some Make modules
1158 // apparently depend on this behavior.
1159 return []string{"", s.sanitizer.variationName()}
1160 } else {
1161 // We only build the requested variation of dynamic libraries
1162 return []string{s.sanitizer.variationName()}
1163 }
1164 }
1165
1166 if _, ok := ctx.Module().(JniSanitizeable); ok {
1167 // TODO: this should call into JniSanitizable.IsSanitizerEnabledForJni but
1168 // that is short-circuited for now
1169 return []string{""}
1170 }
1171
1172 // If an APEX has a sanitized dependency, we build the APEX in the sanitized
1173 // variation. This is useful because such APEXes require extra dependencies.
1174 if sanitizeable, ok := ctx.Module().(Sanitizeable); ok {
1175 enabled := sanitizeable.IsSanitizerEnabled(ctx.Config(), s.sanitizer.name())
1176 if enabled {
1177 return []string{s.sanitizer.variationName()}
1178 } else {
1179 return []string{""}
1180 }
1181 }
1182
Lukacs T. Berki6c716762022-06-13 20:50:39 +02001183 return []string{""}
1184}
1185
1186func (s *sanitizerSplitMutator) OutgoingTransition(ctx android.OutgoingTransitionContext, sourceVariation string) string {
1187 if c, ok := ctx.Module().(PlatformSanitizeable); ok {
1188 if !c.SanitizableDepTagChecker()(ctx.DepTag()) {
1189 // If the dependency is through a non-sanitizable tag, use the
1190 // non-sanitized variation
1191 return ""
1192 }
1193
1194 return sourceVariation
1195 } else if _, ok := ctx.Module().(JniSanitizeable); ok {
1196 // TODO: this should call into JniSanitizable.IsSanitizerEnabledForJni but
1197 // that is short-circuited for now
1198 return ""
1199 } else {
1200 // Otherwise, do not rock the boat.
1201 return sourceVariation
1202 }
1203}
1204
1205func (s *sanitizerSplitMutator) IncomingTransition(ctx android.IncomingTransitionContext, incomingVariation string) string {
1206 if d, ok := ctx.Module().(PlatformSanitizeable); ok {
Lukacs T. Berki6c716762022-06-13 20:50:39 +02001207 if !d.SanitizePropDefined() ||
1208 d.SanitizeNever() ||
1209 d.IsSanitizerExplicitlyDisabled(s.sanitizer) ||
1210 !d.SanitizerSupported(s.sanitizer) {
1211 // If a module opts out of a sanitizer, use its non-sanitized variation
1212 return ""
1213 }
1214
1215 // Binaries are always built in the variation they requested.
1216 if d.Binary() {
1217 if d.IsSanitizerEnabled(s.sanitizer) {
1218 return s.sanitizer.variationName()
1219 } else {
1220 return ""
Muhammad Haseeb Ahmad7e744052022-03-25 22:50:53 +00001221 }
Lukacs T. Berki6c716762022-06-13 20:50:39 +02001222 }
1223
1224 // If a shared library requests to be sanitized, it will be built for that
1225 // sanitizer. Otherwise, some sanitizers propagate through shared library
1226 // dependency edges, some do not.
1227 if !d.StaticallyLinked() && !d.Header() {
1228 if d.IsSanitizerEnabled(s.sanitizer) {
1229 return s.sanitizer.variationName()
1230 }
1231
Liz Kammerfd8a49f2022-10-31 10:31:11 -04001232 // Some sanitizers do not propagate to shared dependencies
1233 if !s.sanitizer.shouldPropagateToSharedLibraryDeps() {
Lukacs T. Berki6c716762022-06-13 20:50:39 +02001234 return ""
1235 }
1236 }
1237
1238 // Static and header libraries inherit whether they are sanitized from the
1239 // module they are linked into
1240 return incomingVariation
1241 } else if d, ok := ctx.Module().(Sanitizeable); ok {
1242 // If an APEX contains a sanitized module, it will be built in the variation
1243 // corresponding to that sanitizer.
1244 enabled := d.IsSanitizerEnabled(ctx.Config(), s.sanitizer.name())
1245 if enabled {
1246 return s.sanitizer.variationName()
1247 }
1248
1249 return incomingVariation
1250 }
1251
1252 return ""
1253}
1254
1255func (s *sanitizerSplitMutator) Mutate(mctx android.BottomUpMutatorContext, variationName string) {
1256 sanitizerVariation := variationName == s.sanitizer.variationName()
1257
1258 if c, ok := mctx.Module().(PlatformSanitizeable); ok && c.SanitizePropDefined() {
1259 sanitizerEnabled := c.IsSanitizerEnabled(s.sanitizer)
1260
1261 oneMakeVariation := false
1262 if c.StaticallyLinked() || c.Header() {
1263 if s.sanitizer != cfi && s.sanitizer != scs && s.sanitizer != Hwasan {
1264 // These sanitizers export only one variation to Make. For the rest,
1265 // Make targets can depend on both the sanitized and non-sanitized
1266 // versions.
1267 oneMakeVariation = true
1268 }
1269 } else if !c.Binary() {
1270 // Shared library. These are the sanitizers that do propagate through shared
1271 // library dependencies and therefore can cause multiple variations of a
1272 // shared library to be built.
1273 if s.sanitizer != cfi && s.sanitizer != Hwasan && s.sanitizer != scs && s.sanitizer != Asan {
1274 oneMakeVariation = true
1275 }
1276 }
1277
1278 if oneMakeVariation {
1279 if sanitizerEnabled != sanitizerVariation {
1280 c.SetPreventInstall()
1281 c.SetHideFromMake()
1282 }
1283 }
1284
1285 if sanitizerVariation {
1286 c.SetSanitizer(s.sanitizer, true)
1287
1288 // CFI is incompatible with ASAN so disable it in ASAN variations
1289 if s.sanitizer.incompatibleWithCfi() {
1290 cfiSupported := mctx.Module().(PlatformSanitizeable).SanitizerSupported(cfi)
1291 if mctx.Device() && cfiSupported {
1292 c.SetSanitizer(cfi, false)
Jiyong Parkf97782b2019-02-13 20:28:58 +09001293 }
Lukacs T. Berki6c716762022-06-13 20:50:39 +02001294 }
1295
1296 // locate the asan libraries under /data/asan
1297 if !c.Binary() && !c.StaticallyLinked() && !c.Header() && mctx.Device() && s.sanitizer == Asan && sanitizerEnabled {
1298 c.SetInSanitizerDir()
1299 }
1300
1301 if c.StaticallyLinked() && c.ExportedToMake() {
1302 if s.sanitizer == Hwasan {
1303 hwasanStaticLibs(mctx.Config()).add(c, c.Module().Name())
1304 } else if s.sanitizer == cfi {
1305 cfiStaticLibs(mctx.Config()).add(c, c.Module().Name())
1306 }
1307 }
1308 } else if c.IsSanitizerEnabled(s.sanitizer) {
1309 // Disable the sanitizer for the non-sanitized variation
1310 c.SetSanitizer(s.sanitizer, false)
1311 }
1312 } else if sanitizeable, ok := mctx.Module().(Sanitizeable); ok {
1313 // If an APEX has sanitized dependencies, it gets a few more dependencies
1314 if sanitizerVariation {
1315 sanitizeable.AddSanitizerDependencies(mctx, s.sanitizer.name())
1316 }
Colin Cross16b23492016-01-06 14:41:07 -08001317 }
1318}
1319
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001320func (c *Module) SanitizeNever() bool {
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001321 return Bool(c.sanitize.Properties.SanitizeMutated.Never)
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001322}
1323
1324func (c *Module) IsSanitizerExplicitlyDisabled(t SanitizerType) bool {
1325 return c.sanitize.isSanitizerExplicitlyDisabled(t)
1326}
1327
Ivan Lozano30c5db22018-02-21 15:49:20 -08001328// Propagate the ubsan minimal runtime dependency when there are integer overflow sanitized static dependencies.
Colin Cross6b753602018-06-21 13:03:07 -07001329func sanitizerRuntimeDepsMutator(mctx android.TopDownMutatorContext) {
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001330 // Change this to PlatformSanitizable when/if non-cc modules support ubsan sanitizers.
Colin Cross6b753602018-06-21 13:03:07 -07001331 if c, ok := mctx.Module().(*Module); ok && c.sanitize != nil {
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001332 isSanitizableDependencyTag := c.SanitizableDepTagChecker()
Colin Cross6b753602018-06-21 13:03:07 -07001333 mctx.WalkDeps(func(child, parent android.Module) bool {
1334 if !isSanitizableDependencyTag(mctx.OtherModuleDependencyTag(child)) {
1335 return false
1336 }
Ivan Lozano30c5db22018-02-21 15:49:20 -08001337
Inseob Kimeec88e12020-01-22 11:11:29 +09001338 d, ok := child.(*Module)
1339 if !ok || !d.static() {
1340 return false
1341 }
1342 if d.sanitize != nil {
Colin Cross6b753602018-06-21 13:03:07 -07001343 if enableMinimalRuntime(d.sanitize) {
1344 // If a static dependency is built with the minimal runtime,
1345 // make sure we include the ubsan minimal runtime.
1346 c.sanitize.Properties.MinimalRuntimeDep = true
Inseob Kim8471cda2019-11-15 09:59:12 +09001347 } else if enableUbsanRuntime(d.sanitize) {
Colin Cross6b753602018-06-21 13:03:07 -07001348 // If a static dependency runs with full ubsan diagnostics,
1349 // make sure we include the ubsan runtime.
1350 c.sanitize.Properties.UbsanRuntimeDep = true
Ivan Lozano30c5db22018-02-21 15:49:20 -08001351 }
Colin Cross0b908332019-06-19 23:00:20 -07001352
1353 if c.sanitize.Properties.MinimalRuntimeDep &&
1354 c.sanitize.Properties.UbsanRuntimeDep {
1355 // both flags that this mutator might set are true, so don't bother recursing
1356 return false
1357 }
1358
Ivan Lozano9ac32c72020-02-19 15:24:02 -05001359 if c.Os() == android.Linux {
1360 c.sanitize.Properties.BuiltinsDep = true
1361 }
1362
Colin Cross0b908332019-06-19 23:00:20 -07001363 return true
Colin Cross6b753602018-06-21 13:03:07 -07001364 }
Inseob Kimeec88e12020-01-22 11:11:29 +09001365
Inseob Kimeec88e12020-01-22 11:11:29 +09001366 return false
Colin Cross6b753602018-06-21 13:03:07 -07001367 })
Ivan Lozano30c5db22018-02-21 15:49:20 -08001368 }
1369}
1370
Jiyong Park379de2f2018-12-19 02:47:14 +09001371// Add the dependency to the runtime library for each of the sanitizer variants
1372func sanitizerRuntimeMutator(mctx android.BottomUpMutatorContext) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001373 if c, ok := mctx.Module().(*Module); ok && c.sanitize != nil {
Pirama Arumuga Nainar6aa21022019-01-25 00:20:35 +00001374 if !c.Enabled() {
1375 return
1376 }
Jiyong Park379de2f2018-12-19 02:47:14 +09001377 var sanitizers []string
1378 var diagSanitizers []string
1379
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001380 sanProps := &c.sanitize.Properties.SanitizeMutated
1381
1382 if Bool(sanProps.All_undefined) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001383 sanitizers = append(sanitizers, "undefined")
1384 } else {
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001385 if Bool(sanProps.Undefined) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001386 sanitizers = append(sanitizers,
1387 "bool",
1388 "integer-divide-by-zero",
1389 "return",
1390 "returns-nonnull-attribute",
1391 "shift-exponent",
1392 "unreachable",
1393 "vla-bound",
1394 // TODO(danalbert): The following checks currently have compiler performance issues.
1395 //"alignment",
1396 //"bounds",
1397 //"enum",
1398 //"float-cast-overflow",
1399 //"float-divide-by-zero",
1400 //"nonnull-attribute",
1401 //"null",
1402 //"shift-base",
1403 //"signed-integer-overflow",
1404 // TODO(danalbert): Fix UB in libc++'s __tree so we can turn this on.
1405 // https://llvm.org/PR19302
1406 // http://reviews.llvm.org/D6974
1407 // "object-size",
1408 )
1409 }
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001410 sanitizers = append(sanitizers, sanProps.Misc_undefined...)
Jiyong Park379de2f2018-12-19 02:47:14 +09001411 }
1412
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001413 if Bool(sanProps.Diag.Undefined) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001414 diagSanitizers = append(diagSanitizers, "undefined")
1415 }
1416
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001417 diagSanitizers = append(diagSanitizers, sanProps.Diag.Misc_undefined...)
Jiyong Park379de2f2018-12-19 02:47:14 +09001418
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001419 if Bool(sanProps.Address) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001420 sanitizers = append(sanitizers, "address")
1421 diagSanitizers = append(diagSanitizers, "address")
1422 }
1423
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001424 if Bool(sanProps.Hwaddress) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001425 sanitizers = append(sanitizers, "hwaddress")
1426 }
1427
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001428 if Bool(sanProps.Thread) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001429 sanitizers = append(sanitizers, "thread")
1430 }
1431
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001432 if Bool(sanProps.Safestack) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001433 sanitizers = append(sanitizers, "safe-stack")
1434 }
1435
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001436 if Bool(sanProps.Cfi) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001437 sanitizers = append(sanitizers, "cfi")
1438
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001439 if Bool(sanProps.Diag.Cfi) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001440 diagSanitizers = append(diagSanitizers, "cfi")
1441 }
1442 }
1443
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001444 if Bool(sanProps.Integer_overflow) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001445 sanitizers = append(sanitizers, "unsigned-integer-overflow")
1446 sanitizers = append(sanitizers, "signed-integer-overflow")
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001447 if Bool(sanProps.Diag.Integer_overflow) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001448 diagSanitizers = append(diagSanitizers, "unsigned-integer-overflow")
1449 diagSanitizers = append(diagSanitizers, "signed-integer-overflow")
1450 }
1451 }
1452
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001453 if Bool(sanProps.Scudo) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001454 sanitizers = append(sanitizers, "scudo")
1455 }
1456
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001457 if Bool(sanProps.Scs) {
Jiyong Park379de2f2018-12-19 02:47:14 +09001458 sanitizers = append(sanitizers, "shadow-call-stack")
1459 }
1460
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001461 if Bool(sanProps.Memtag_heap) && c.Binary() {
Florian Mayerd8434a42022-08-31 20:57:03 +00001462 sanitizers = append(sanitizers, "memtag-heap")
1463 }
1464
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001465 if Bool(sanProps.Memtag_stack) {
Florian Mayerd8434a42022-08-31 20:57:03 +00001466 sanitizers = append(sanitizers, "memtag-stack")
Evgenii Stepanov193ac2e2020-04-28 15:09:12 -07001467 }
1468
Mitch Phillips92d19fa2023-06-01 14:23:09 +02001469 if Bool(sanProps.Memtag_globals) {
1470 sanitizers = append(sanitizers, "memtag-globals")
1471 // TODO(mitchp): For now, enable memtag-heap with memtag-globals because the linker
1472 // isn't new enough (https://reviews.llvm.org/differential/changeset/?ref=4243566).
1473 sanitizers = append(sanitizers, "memtag-heap")
1474 }
1475
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001476 if Bool(sanProps.Fuzzer) {
Mitch Phillips5a6ea6c2019-05-01 14:42:05 -07001477 sanitizers = append(sanitizers, "fuzzer-no-link")
1478 }
1479
Jiyong Park379de2f2018-12-19 02:47:14 +09001480 // Save the list of sanitizers. These will be used again when generating
1481 // the build rules (for Cflags, etc.)
1482 c.sanitize.Properties.Sanitizers = sanitizers
1483 c.sanitize.Properties.DiagSanitizers = diagSanitizers
1484
Ivan Lozanof3b190f2020-03-06 12:01:21 -05001485 // TODO(b/150822854) Hosts have a different default behavior and assume the runtime library is used.
1486 if c.Host() {
1487 diagSanitizers = sanitizers
1488 }
1489
Colin Crosse323a792023-02-15 13:57:57 -08001490 addStaticDeps := func(dep string, hideSymbols bool) {
Colin Cross06c80eb2022-02-10 10:34:19 -08001491 // static executable gets static runtime libs
Colin Crosse323a792023-02-15 13:57:57 -08001492 depTag := libraryDependencyTag{Kind: staticLibraryDependency, unexportedSymbols: hideSymbols}
Colin Cross06c80eb2022-02-10 10:34:19 -08001493 variations := append(mctx.Target().Variations(),
1494 blueprint.Variation{Mutator: "link", Variation: "static"})
1495 if c.Device() {
1496 variations = append(variations, c.ImageVariation())
1497 }
1498 if c.UseSdk() {
1499 variations = append(variations,
1500 blueprint.Variation{Mutator: "sdk", Variation: "sdk"})
1501 }
Colin Crosse323a792023-02-15 13:57:57 -08001502 mctx.AddFarVariationDependencies(variations, depTag, dep)
Colin Cross06c80eb2022-02-10 10:34:19 -08001503 }
Colin Crosse323a792023-02-15 13:57:57 -08001504
1505 // Determine the runtime library required
1506 runtimeSharedLibrary := ""
1507 toolchain := c.toolchain(mctx)
1508 if Bool(sanProps.Address) {
Colin Crossb781d232023-02-15 12:40:20 -08001509 if toolchain.Musl() || (c.staticBinary() && toolchain.Bionic()) {
1510 // Use a static runtime for musl to match what clang does for glibc.
1511 addStaticDeps(config.AddressSanitizerStaticRuntimeLibrary(toolchain), false)
1512 addStaticDeps(config.AddressSanitizerCXXStaticRuntimeLibrary(toolchain), false)
1513 } else {
1514 runtimeSharedLibrary = config.AddressSanitizerRuntimeLibrary(toolchain)
1515 }
Colin Crosse323a792023-02-15 13:57:57 -08001516 } else if Bool(sanProps.Hwaddress) {
1517 if c.staticBinary() {
1518 addStaticDeps(config.HWAddressSanitizerStaticLibrary(toolchain), true)
1519 addStaticDeps("libdl", false)
1520 } else {
1521 runtimeSharedLibrary = config.HWAddressSanitizerRuntimeLibrary(toolchain)
1522 }
1523 } else if Bool(sanProps.Thread) {
1524 runtimeSharedLibrary = config.ThreadSanitizerRuntimeLibrary(toolchain)
1525 } else if Bool(sanProps.Scudo) {
1526 if len(diagSanitizers) == 0 && !c.sanitize.Properties.UbsanRuntimeDep {
1527 runtimeSharedLibrary = config.ScudoMinimalRuntimeLibrary(toolchain)
1528 } else {
1529 runtimeSharedLibrary = config.ScudoRuntimeLibrary(toolchain)
1530 }
1531 } else if len(diagSanitizers) > 0 || c.sanitize.Properties.UbsanRuntimeDep ||
1532 Bool(sanProps.Fuzzer) ||
1533 Bool(sanProps.Undefined) ||
1534 Bool(sanProps.All_undefined) {
Colin Cross0df81532023-08-23 22:20:51 -07001535 if toolchain.Musl() || c.staticBinary() {
1536 // Use a static runtime for static binaries. For sanitized glibc binaries the runtime is
1537 // added automatically by clang, but for static glibc binaries that are not sanitized but
1538 // have a sanitized dependency the runtime needs to be added manually.
1539 // Also manually add a static runtime for musl to match what clang does for glibc.
1540 // Otherwise dlopening libraries that depend on libclang_rt.ubsan_standalone.so fails with:
Colin Crosse323a792023-02-15 13:57:57 -08001541 // Error relocating ...: initial-exec TLS resolves to dynamic definition
1542 addStaticDeps(config.UndefinedBehaviorSanitizerRuntimeLibrary(toolchain)+".static", true)
1543 } else {
1544 runtimeSharedLibrary = config.UndefinedBehaviorSanitizerRuntimeLibrary(toolchain)
1545 }
1546 }
1547
Colin Cross06c80eb2022-02-10 10:34:19 -08001548 if enableMinimalRuntime(c.sanitize) || c.sanitize.Properties.MinimalRuntimeDep {
Colin Crosse323a792023-02-15 13:57:57 -08001549 addStaticDeps(config.UndefinedBehaviorSanitizerMinimalRuntimeLibrary(toolchain), true)
Colin Cross06c80eb2022-02-10 10:34:19 -08001550 }
1551 if c.sanitize.Properties.BuiltinsDep {
Colin Crosse323a792023-02-15 13:57:57 -08001552 addStaticDeps(config.BuiltinsRuntimeLibrary(toolchain), true)
Colin Cross06c80eb2022-02-10 10:34:19 -08001553 }
1554
Colin Crosse323a792023-02-15 13:57:57 -08001555 if runtimeSharedLibrary != "" && (toolchain.Bionic() || toolchain.Musl() || c.sanitize.Properties.UbsanRuntimeDep) {
Ivan Lozano9ac32c72020-02-19 15:24:02 -05001556 // UBSan is supported on non-bionic linux host builds as well
Jiyong Park379de2f2018-12-19 02:47:14 +09001557
1558 // Adding dependency to the runtime library. We are using *FarVariation*
1559 // because the runtime libraries themselves are not mutated by sanitizer
1560 // mutators and thus don't have sanitizer variants whereas this module
1561 // has been already mutated.
1562 //
1563 // Note that by adding dependency with {static|shared}DepTag, the lib is
1564 // added to libFlags and LOCAL_SHARED_LIBRARIES by cc.Module
Colin Crosse323a792023-02-15 13:57:57 -08001565 if c.staticBinary() {
1566 // Most sanitizers are either disabled for static binaries or have already
1567 // handled the static binary case above through a direct call to addStaticDeps.
1568 // If not, treat the runtime shared library as a static library and hope for
1569 // the best.
1570 addStaticDeps(runtimeSharedLibrary, true)
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001571 } else if !c.static() && !c.Header() {
Cindy Zhou18417cb2020-12-10 07:12:38 -08001572 // Skip apex dependency check for sharedLibraryDependency
1573 // when sanitizer diags are enabled. Skipping the check will allow
1574 // building with diag libraries without having to list the
1575 // dependency in Apex's allowed_deps file.
1576 diagEnabled := len(diagSanitizers) > 0
Jiyong Park3b1746a2019-01-29 11:15:04 +09001577 // dynamic executable and shared libs get shared runtime libs
Cindy Zhou18417cb2020-12-10 07:12:38 -08001578 depTag := libraryDependencyTag{
1579 Kind: sharedLibraryDependency,
1580 Order: earlyLibraryDependency,
1581
1582 skipApexAllowedDependenciesCheck: diagEnabled,
1583 }
Colin Cross42507332020-08-21 16:15:23 -07001584 variations := append(mctx.Target().Variations(),
1585 blueprint.Variation{Mutator: "link", Variation: "shared"})
1586 if c.Device() {
1587 variations = append(variations, c.ImageVariation())
1588 }
Colin Cross06c80eb2022-02-10 10:34:19 -08001589 if c.UseSdk() {
1590 variations = append(variations,
1591 blueprint.Variation{Mutator: "sdk", Variation: "sdk"})
1592 }
Colin Crosse323a792023-02-15 13:57:57 -08001593 AddSharedLibDependenciesWithVersions(mctx, c, variations, depTag, runtimeSharedLibrary, "", true)
Jiyong Park379de2f2018-12-19 02:47:14 +09001594 }
1595 // static lib does not have dependency to the runtime library. The
1596 // dependency will be added to the executables or shared libs using
1597 // the static lib.
1598 }
1599 }
1600}
1601
1602type Sanitizeable interface {
1603 android.Module
Lukacs T. Berki01a648a2022-06-17 08:59:37 +02001604 IsSanitizerEnabled(config android.Config, sanitizerName string) bool
Jiyong Parkf97782b2019-02-13 20:28:58 +09001605 EnableSanitizer(sanitizerName string)
Jooyung Han8ce8db92020-05-15 19:05:05 +09001606 AddSanitizerDependencies(ctx android.BottomUpMutatorContext, sanitizerName string)
Jiyong Park379de2f2018-12-19 02:47:14 +09001607}
1608
Muhammad Haseeb Ahmad7e744052022-03-25 22:50:53 +00001609type JniSanitizeable interface {
1610 android.Module
1611 IsSanitizerEnabledForJni(ctx android.BaseModuleContext, sanitizerName string) bool
1612}
1613
Ivan Lozanod7586b62021-04-01 09:49:36 -04001614func (c *Module) MinimalRuntimeDep() bool {
1615 return c.sanitize.Properties.MinimalRuntimeDep
1616}
1617
1618func (c *Module) UbsanRuntimeDep() bool {
1619 return c.sanitize.Properties.UbsanRuntimeDep
1620}
1621
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001622func (c *Module) SanitizePropDefined() bool {
1623 return c.sanitize != nil
1624}
1625
1626func (c *Module) IsSanitizerEnabled(t SanitizerType) bool {
1627 return c.sanitize.isSanitizerEnabled(t)
1628}
1629
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001630func (c *Module) StaticallyLinked() bool {
1631 return c.static()
1632}
1633
1634func (c *Module) SetInSanitizerDir() {
1635 if c.sanitize != nil {
1636 c.sanitize.Properties.InSanitizerDir = true
1637 }
1638}
1639
1640func (c *Module) SetSanitizer(t SanitizerType, b bool) {
1641 if c.sanitize != nil {
1642 c.sanitize.SetSanitizer(t, b)
1643 }
1644}
1645
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001646var _ PlatformSanitizeable = (*Module)(nil)
1647
Inseob Kim74d25562020-08-04 00:41:38 +09001648type sanitizerStaticLibsMap struct {
1649 // libsMap contains one list of modules per each image and each arch.
1650 // e.g. libs[vendor]["arm"] contains arm modules installed to vendor
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001651 libsMap map[ImageVariantType]map[string][]string
Inseob Kim74d25562020-08-04 00:41:38 +09001652 libsMapLock sync.Mutex
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001653 sanitizerType SanitizerType
Inseob Kim74d25562020-08-04 00:41:38 +09001654}
1655
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001656func newSanitizerStaticLibsMap(t SanitizerType) *sanitizerStaticLibsMap {
Inseob Kim74d25562020-08-04 00:41:38 +09001657 return &sanitizerStaticLibsMap{
1658 sanitizerType: t,
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001659 libsMap: make(map[ImageVariantType]map[string][]string),
Inseob Kim74d25562020-08-04 00:41:38 +09001660 }
1661}
1662
1663// Add the current module to sanitizer static libs maps
1664// Each module should pass its exported name as names of Make and Soong can differ.
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001665func (s *sanitizerStaticLibsMap) add(c LinkableInterface, name string) {
1666 image := GetImageVariantType(c)
1667 arch := c.Module().Target().Arch.ArchType.String()
Inseob Kim74d25562020-08-04 00:41:38 +09001668
1669 s.libsMapLock.Lock()
1670 defer s.libsMapLock.Unlock()
1671
1672 if _, ok := s.libsMap[image]; !ok {
1673 s.libsMap[image] = make(map[string][]string)
1674 }
1675
1676 s.libsMap[image][arch] = append(s.libsMap[image][arch], name)
1677}
1678
1679// Exports makefile variables in the following format:
1680// SOONG_{sanitizer}_{image}_{arch}_STATIC_LIBRARIES
1681// e.g. SOONG_cfi_core_x86_STATIC_LIBRARIES
1682// These are to be used by use_soong_sanitized_static_libraries.
1683// See build/make/core/binary.mk for more details.
1684func (s *sanitizerStaticLibsMap) exportToMake(ctx android.MakeVarsContext) {
Cole Faust18994c72023-02-28 16:02:16 -08001685 for _, image := range android.SortedKeys(s.libsMap) {
Ivan Lozano3968d8f2020-12-14 11:27:52 -05001686 archMap := s.libsMap[ImageVariantType(image)]
Cole Faust18994c72023-02-28 16:02:16 -08001687 for _, arch := range android.SortedKeys(archMap) {
Inseob Kim74d25562020-08-04 00:41:38 +09001688 libs := archMap[arch]
1689 sort.Strings(libs)
1690
1691 key := fmt.Sprintf(
1692 "SOONG_%s_%s_%s_STATIC_LIBRARIES",
1693 s.sanitizerType.variationName(),
1694 image, // already upper
1695 arch)
1696
1697 ctx.Strict(key, strings.Join(libs, " "))
1698 }
1699 }
1700}
1701
Colin Cross571cccf2019-02-04 11:22:08 -08001702var cfiStaticLibsKey = android.NewOnceKey("cfiStaticLibs")
1703
Inseob Kim74d25562020-08-04 00:41:38 +09001704func cfiStaticLibs(config android.Config) *sanitizerStaticLibsMap {
Colin Cross571cccf2019-02-04 11:22:08 -08001705 return config.Once(cfiStaticLibsKey, func() interface{} {
Inseob Kim74d25562020-08-04 00:41:38 +09001706 return newSanitizerStaticLibsMap(cfi)
1707 }).(*sanitizerStaticLibsMap)
Vishwath Mohane7128792017-11-17 11:08:10 -08001708}
1709
Colin Cross571cccf2019-02-04 11:22:08 -08001710var hwasanStaticLibsKey = android.NewOnceKey("hwasanStaticLibs")
1711
Inseob Kim74d25562020-08-04 00:41:38 +09001712func hwasanStaticLibs(config android.Config) *sanitizerStaticLibsMap {
Colin Cross571cccf2019-02-04 11:22:08 -08001713 return config.Once(hwasanStaticLibsKey, func() interface{} {
Tri Vo6eafc362021-04-01 11:29:09 -07001714 return newSanitizerStaticLibsMap(Hwasan)
Inseob Kim74d25562020-08-04 00:41:38 +09001715 }).(*sanitizerStaticLibsMap)
Jiyong Park1d1119f2019-07-29 21:27:18 +09001716}
1717
Ivan Lozano30c5db22018-02-21 15:49:20 -08001718func enableMinimalRuntime(sanitize *sanitize) bool {
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001719 if sanitize.isSanitizerEnabled(Asan) {
1720 return false
1721 } else if sanitize.isSanitizerEnabled(Hwasan) {
1722 return false
1723 } else if sanitize.isSanitizerEnabled(Fuzzer) {
1724 return false
Ivan Lozano30c5db22018-02-21 15:49:20 -08001725 }
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001726
1727 if enableUbsanRuntime(sanitize) {
1728 return false
1729 }
1730
1731 sanitizeProps := &sanitize.Properties.SanitizeMutated
1732 if Bool(sanitizeProps.Diag.Cfi) {
1733 return false
1734 }
1735
1736 return Bool(sanitizeProps.Integer_overflow) ||
1737 len(sanitizeProps.Misc_undefined) > 0 ||
1738 Bool(sanitizeProps.Undefined) ||
1739 Bool(sanitizeProps.All_undefined)
Ivan Lozano30c5db22018-02-21 15:49:20 -08001740}
1741
Ivan Lozanod7586b62021-04-01 09:49:36 -04001742func (m *Module) UbsanRuntimeNeeded() bool {
1743 return enableUbsanRuntime(m.sanitize)
1744}
1745
1746func (m *Module) MinimalRuntimeNeeded() bool {
1747 return enableMinimalRuntime(m.sanitize)
1748}
1749
Inseob Kim8471cda2019-11-15 09:59:12 +09001750func enableUbsanRuntime(sanitize *sanitize) bool {
Liz Kammer2c1d6aa2022-10-03 15:07:37 -04001751 sanitizeProps := &sanitize.Properties.SanitizeMutated
1752 return Bool(sanitizeProps.Diag.Integer_overflow) ||
1753 Bool(sanitizeProps.Diag.Undefined) ||
1754 len(sanitizeProps.Diag.Misc_undefined) > 0
Inseob Kim8471cda2019-11-15 09:59:12 +09001755}
1756
Vishwath Mohane7128792017-11-17 11:08:10 -08001757func cfiMakeVarsProvider(ctx android.MakeVarsContext) {
Inseob Kim74d25562020-08-04 00:41:38 +09001758 cfiStaticLibs(ctx.Config()).exportToMake(ctx)
Vishwath Mohane7128792017-11-17 11:08:10 -08001759}
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -07001760
1761func hwasanMakeVarsProvider(ctx android.MakeVarsContext) {
Inseob Kim74d25562020-08-04 00:41:38 +09001762 hwasanStaticLibs(ctx.Config()).exportToMake(ctx)
Evgenii Stepanovd97a6e92018-08-02 16:19:13 -07001763}