blob: dee530960250015578c3f4da495908d372fb93af [file] [log] [blame]
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001/*
2 * Copyright (C) 2005 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17#define LOG_TAG "Parcel"
18//#define LOG_NDEBUG 0
19
Mark Salyzynabed7f72016-01-27 08:02:48 -080020#include <errno.h>
Mark Salyzyn70f36652016-02-02 10:27:03 -080021#include <fcntl.h>
Mark Salyzynabed7f72016-01-27 08:02:48 -080022#include <inttypes.h>
Steven Morelandbf1915b2020-07-16 22:43:02 +000023#include <linux/sched.h>
Mark Salyzyn70f36652016-02-02 10:27:03 -080024#include <pthread.h>
Mark Salyzynabed7f72016-01-27 08:02:48 -080025#include <stdint.h>
26#include <stdio.h>
27#include <stdlib.h>
28#include <sys/mman.h>
Mark Salyzyneab2afc2016-01-27 08:02:48 -080029#include <sys/stat.h>
30#include <sys/types.h>
Christopher Tatee4e0ae82016-03-24 16:03:44 -070031#include <sys/resource.h>
Mark Salyzyneab2afc2016-01-27 08:02:48 -080032#include <unistd.h>
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -070033
Mathias Agopianc5b2c0b2009-05-19 19:08:10 -070034#include <binder/Binder.h>
35#include <binder/BpBinder.h>
Mark Salyzynabed7f72016-01-27 08:02:48 -080036#include <binder/IPCThreadState.h>
37#include <binder/Parcel.h>
Mathias Agopianc5b2c0b2009-05-19 19:08:10 -070038#include <binder/ProcessState.h>
Steven Moreland6e5a7752019-08-05 20:30:14 -070039#include <binder/Stability.h>
Christopher Wiley09eb7492015-11-09 15:06:15 -080040#include <binder/Status.h>
Mathias Agopian002e1e52013-05-06 20:20:50 -070041#include <binder/TextOutput.h>
42
Mark Salyzynabed7f72016-01-27 08:02:48 -080043#include <cutils/ashmem.h>
Steven Moreland3af936a2021-03-26 03:05:38 +000044#include <cutils/compiler.h>
Mark Salyzynabed7f72016-01-27 08:02:48 -080045#include <utils/Flattenable.h>
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -070046#include <utils/Log.h>
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -070047#include <utils/String16.h>
Steven Moreland3af936a2021-03-26 03:05:38 +000048#include <utils/String8.h>
49#include <utils/misc.h>
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -070050
Steven Moreland5553ac42020-11-11 02:14:45 +000051#include "RpcState.h"
Steven Morelanda4853cd2019-07-12 15:44:37 -070052#include "Static.h"
Steven Morelandf183fdd2020-10-27 00:12:12 +000053#include "Utils.h"
Steven Moreland6ba5a252021-05-04 22:49:00 +000054#include "binder_module.h"
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -070055
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -070056#define LOG_REFS(...)
Mark Salyzyne93390b2016-01-27 08:02:48 -080057//#define LOG_REFS(...) ALOG(LOG_DEBUG, LOG_TAG, __VA_ARGS__)
Dianne Hackborn7e790af2014-11-11 12:22:53 -080058#define LOG_ALLOC(...)
Mark Salyzyne93390b2016-01-27 08:02:48 -080059//#define LOG_ALLOC(...) ALOG(LOG_DEBUG, LOG_TAG, __VA_ARGS__)
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -070060
61// ---------------------------------------------------------------------------
62
Nick Kralevichb6b14232015-04-02 09:36:02 -070063// This macro should never be used at runtime, as a too large value
64// of s could cause an integer overflow. Instead, you should always
65// use the wrapper function pad_size()
66#define PAD_SIZE_UNSAFE(s) (((s)+3)&~3)
67
68static size_t pad_size(size_t s) {
Steven Moreland28723ae2019-04-01 18:52:30 -070069 if (s > (std::numeric_limits<size_t>::max() - 3)) {
Steven Moreland6adf33c2019-09-25 13:18:09 -070070 LOG_ALWAYS_FATAL("pad size too big %zu", s);
Nick Kralevichb6b14232015-04-02 09:36:02 -070071 }
72 return PAD_SIZE_UNSAFE(s);
73}
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -070074
Brad Fitzpatricka877cd82010-07-07 16:06:39 -070075// Note: must be kept in sync with android/os/StrictMode.java's PENALTY_GATHER
Jeff Sharkey05827be2018-06-26 10:52:38 -060076#define STRICT_MODE_PENALTY_GATHER (1 << 31)
Brad Fitzpatricka877cd82010-07-07 16:06:39 -070077
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -070078namespace android {
79
Steven Moreland7b102262019-08-01 15:48:43 -070080// many things compile this into prebuilts on the stack
Steven Moreland90c1f9a2021-05-03 18:27:24 +000081#ifdef __LP64__
82static_assert(sizeof(Parcel) == 120);
83#else
84static_assert(sizeof(Parcel) == 60);
85#endif
Steven Moreland7b102262019-08-01 15:48:43 -070086
Jeff Sharkey8994c182020-09-11 12:07:10 -060087static std::atomic<size_t> gParcelGlobalAllocCount;
88static std::atomic<size_t> gParcelGlobalAllocSize;
Dianne Hackborna4cff882014-11-13 17:07:40 -080089
Christopher Tatee4e0ae82016-03-24 16:03:44 -070090static size_t gMaxFds = 0;
91
Jeff Brown13b16042014-11-11 16:44:25 -080092// Maximum size of a blob to transfer in-place.
93static const size_t BLOB_INPLACE_LIMIT = 16 * 1024;
94
95enum {
96 BLOB_INPLACE = 0,
97 BLOB_ASHMEM_IMMUTABLE = 1,
98 BLOB_ASHMEM_MUTABLE = 2,
99};
100
Steven Morelandc673f1f2021-10-07 18:23:35 -0700101static void acquire_object(const sp<ProcessState>& proc, const flat_binder_object& obj,
102 const void* who) {
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -0700103 switch (obj.hdr.type) {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700104 case BINDER_TYPE_BINDER:
105 if (obj.binder) {
yuxic05af3b2021-08-24 02:52:15 +0000106 LOG_REFS("Parcel %p acquiring reference on local %llu", who, obj.cookie);
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -0800107 reinterpret_cast<IBinder*>(obj.cookie)->incStrong(who);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700108 }
109 return;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700110 case BINDER_TYPE_HANDLE: {
111 const sp<IBinder> b = proc->getStrongProxyForHandle(obj.handle);
Yi Kong91635562018-06-07 14:38:36 -0700112 if (b != nullptr) {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700113 LOG_REFS("Parcel %p acquiring reference on remote %p", who, b.get());
114 b->incStrong(who);
115 }
116 return;
117 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700118 case BINDER_TYPE_FD: {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700119 return;
120 }
121 }
122
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -0700123 ALOGD("Invalid object type 0x%08x", obj.hdr.type);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700124}
125
Steven Morelandc673f1f2021-10-07 18:23:35 -0700126static void release_object(const sp<ProcessState>& proc, const flat_binder_object& obj,
127 const void* who) {
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -0700128 switch (obj.hdr.type) {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700129 case BINDER_TYPE_BINDER:
130 if (obj.binder) {
yuxic05af3b2021-08-24 02:52:15 +0000131 LOG_REFS("Parcel %p releasing reference on local %llu", who, obj.cookie);
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -0800132 reinterpret_cast<IBinder*>(obj.cookie)->decStrong(who);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700133 }
134 return;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700135 case BINDER_TYPE_HANDLE: {
136 const sp<IBinder> b = proc->getStrongProxyForHandle(obj.handle);
Yi Kong91635562018-06-07 14:38:36 -0700137 if (b != nullptr) {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700138 LOG_REFS("Parcel %p releasing reference on remote %p", who, b.get());
139 b->decStrong(who);
140 }
141 return;
142 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700143 case BINDER_TYPE_FD: {
Mark Salyzynb454d8f2016-01-27 08:02:48 -0800144 if (obj.cookie != 0) { // owned
Mark Salyzynb454d8f2016-01-27 08:02:48 -0800145 close(obj.handle);
Adrian Rooscbf37262015-10-22 16:12:53 -0700146 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700147 return;
148 }
149 }
150
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -0700151 ALOGE("Invalid object type 0x%08x", obj.hdr.type);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700152}
153
Steven Moreland34b48cb2020-12-01 22:45:38 +0000154status_t Parcel::finishFlattenBinder(const sp<IBinder>& binder)
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700155{
Steven Moreland6e5a7752019-08-05 20:30:14 -0700156 internal::Stability::tryMarkCompilationUnit(binder.get());
Steven Moreland16a41062021-07-23 13:35:25 -0700157 int16_t rep = internal::Stability::getRepr(binder.get());
Steven Moreland14e4cfa2021-06-03 21:40:45 +0000158 return writeInt32(rep);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700159}
160
Steven Morelanda86a3562019-08-01 23:28:34 +0000161status_t Parcel::finishUnflattenBinder(
162 const sp<IBinder>& binder, sp<IBinder>* out) const
163{
164 int32_t stability;
165 status_t status = readInt32(&stability);
166 if (status != OK) return status;
167
Steven Moreland14e4cfa2021-06-03 21:40:45 +0000168 status = internal::Stability::setRepr(binder.get(), static_cast<int16_t>(stability),
169 true /*log*/);
Steven Morelanda86a3562019-08-01 23:28:34 +0000170 if (status != OK) return status;
171
172 *out = binder;
173 return OK;
174}
175
Steven Morelandbf1915b2020-07-16 22:43:02 +0000176static constexpr inline int schedPolicyMask(int policy, int priority) {
177 return (priority & FLAT_BINDER_FLAG_PRIORITY_MASK) | ((policy & 3) << FLAT_BINDER_FLAG_SCHED_POLICY_SHIFT);
178}
179
Kalesh Singhd67c8e82020-12-29 15:46:25 -0500180status_t Parcel::flattenBinder(const sp<IBinder>& binder) {
181 BBinder* local = nullptr;
182 if (binder) local = binder->localBinder();
183 if (local) local->setParceled();
184
Steven Moreland5553ac42020-11-11 02:14:45 +0000185 if (isForRpc()) {
186 if (binder) {
187 status_t status = writeInt32(1); // non-null
188 if (status != OK) return status;
Steven Moreland5623d1a2021-09-10 15:45:34 -0700189 uint64_t address;
Steven Morelanda5036f02021-06-08 02:26:57 +0000190 // TODO(b/167966510): need to undo this if the Parcel is not sent
Steven Morelandc9939062021-05-05 17:57:41 +0000191 status = mSession->state()->onBinderLeaving(mSession, binder, &address);
Steven Moreland5553ac42020-11-11 02:14:45 +0000192 if (status != OK) return status;
Steven Moreland5623d1a2021-09-10 15:45:34 -0700193 status = writeUint64(address);
Steven Moreland5553ac42020-11-11 02:14:45 +0000194 if (status != OK) return status;
195 } else {
196 status_t status = writeInt32(0); // null
197 if (status != OK) return status;
198 }
199 return finishFlattenBinder(binder);
200 }
201
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700202 flat_binder_object obj;
Steven Morelandbf1915b2020-07-16 22:43:02 +0000203 obj.flags = FLAT_BINDER_FLAG_ACCEPTS_FDS;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -0700204
Steven Morelandbf1915b2020-07-16 22:43:02 +0000205 int schedBits = 0;
206 if (!IPCThreadState::self()->backgroundSchedulingDisabled()) {
207 schedBits = schedPolicyMask(SCHED_NORMAL, 19);
Martijn Coenen2b631742017-05-05 11:16:59 -0700208 }
209
Yi Kong91635562018-06-07 14:38:36 -0700210 if (binder != nullptr) {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700211 if (!local) {
212 BpBinder *proxy = binder->remoteBinder();
Yi Kong91635562018-06-07 14:38:36 -0700213 if (proxy == nullptr) {
Steve Blocke6f43dd2012-01-06 19:20:56 +0000214 ALOGE("null proxy");
Steven Moreland5553ac42020-11-11 02:14:45 +0000215 } else {
216 if (proxy->isRpcBinder()) {
Steven Morelanda9231112021-09-22 10:08:14 -0700217 ALOGE("Sending a socket binder over kernel binder is prohibited");
Steven Moreland5553ac42020-11-11 02:14:45 +0000218 return INVALID_OPERATION;
219 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700220 }
Steven Moreland99157622021-09-13 16:27:34 -0700221 const int32_t handle = proxy ? proxy->getPrivateAccessor().binderHandle() : 0;
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -0700222 obj.hdr.type = BINDER_TYPE_HANDLE;
Arve Hjønnevåg07fd0f12014-02-18 21:10:29 -0800223 obj.binder = 0; /* Don't pass uninitialized stack data to a remote process */
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700224 obj.handle = handle;
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -0800225 obj.cookie = 0;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700226 } else {
Steven Morelandbf1915b2020-07-16 22:43:02 +0000227 int policy = local->getMinSchedulerPolicy();
228 int priority = local->getMinSchedulerPriority();
229
230 if (policy != 0 || priority != 0) {
231 // override value, since it is set explicitly
232 schedBits = schedPolicyMask(policy, priority);
233 }
Steven Morelandf0212002018-12-26 13:59:23 -0800234 if (local->isRequestingSid()) {
235 obj.flags |= FLAT_BINDER_FLAG_TXN_SECURITY_CTX;
236 }
Steven Morelandcf03cf12020-12-04 02:58:40 +0000237 if (local->isInheritRt()) {
238 obj.flags |= FLAT_BINDER_FLAG_INHERIT_RT;
239 }
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -0700240 obj.hdr.type = BINDER_TYPE_BINDER;
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -0800241 obj.binder = reinterpret_cast<uintptr_t>(local->getWeakRefs());
242 obj.cookie = reinterpret_cast<uintptr_t>(local);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700243 }
244 } else {
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -0700245 obj.hdr.type = BINDER_TYPE_BINDER;
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -0800246 obj.binder = 0;
247 obj.cookie = 0;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700248 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -0700249
Steven Morelandbf1915b2020-07-16 22:43:02 +0000250 obj.flags |= schedBits;
251
Steven Moreland34b48cb2020-12-01 22:45:38 +0000252 status_t status = writeObject(obj, false);
253 if (status != OK) return status;
254
255 return finishFlattenBinder(binder);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700256}
257
Steven Morelanda86a3562019-08-01 23:28:34 +0000258status_t Parcel::unflattenBinder(sp<IBinder>* out) const
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700259{
Steven Moreland5553ac42020-11-11 02:14:45 +0000260 if (isForRpc()) {
Steven Morelandc9939062021-05-05 17:57:41 +0000261 LOG_ALWAYS_FATAL_IF(mSession == nullptr, "RpcSession required to read from remote parcel");
Steven Moreland5553ac42020-11-11 02:14:45 +0000262
Steven Moreland5623d1a2021-09-10 15:45:34 -0700263 int32_t isPresent;
264 status_t status = readInt32(&isPresent);
Steven Moreland5553ac42020-11-11 02:14:45 +0000265 if (status != OK) return status;
266
267 sp<IBinder> binder;
268
Steven Moreland5623d1a2021-09-10 15:45:34 -0700269 if (isPresent & 1) {
270 uint64_t addr;
271 if (status_t status = readUint64(&addr); status != OK) return status;
Steven Moreland7227c8a2021-06-02 00:24:32 +0000272 if (status_t status = mSession->state()->onBinderEntering(mSession, addr, &binder);
273 status != OK)
274 return status;
Steven Morelandd8083312021-09-22 13:37:10 -0700275 if (status_t status = mSession->state()->flushExcessBinderRefs(mSession, addr, binder);
276 status != OK)
277 return status;
Steven Moreland5553ac42020-11-11 02:14:45 +0000278 }
279
280 return finishUnflattenBinder(binder, out);
281 }
282
Steven Morelanda86a3562019-08-01 23:28:34 +0000283 const flat_binder_object* flat = readObject(false);
Mark Salyzynd4ecccf2014-05-30 16:35:57 -0700284
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700285 if (flat) {
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -0700286 switch (flat->hdr.type) {
Steven Morelanda86a3562019-08-01 23:28:34 +0000287 case BINDER_TYPE_BINDER: {
Steven Moreland1a3a8ef2021-04-02 02:52:46 +0000288 sp<IBinder> binder =
289 sp<IBinder>::fromExisting(reinterpret_cast<IBinder*>(flat->cookie));
Steven Morelanda86a3562019-08-01 23:28:34 +0000290 return finishUnflattenBinder(binder, out);
291 }
292 case BINDER_TYPE_HANDLE: {
293 sp<IBinder> binder =
294 ProcessState::self()->getStrongProxyForHandle(flat->handle);
295 return finishUnflattenBinder(binder, out);
296 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -0700297 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700298 }
299 return BAD_TYPE;
300}
301
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700302// ---------------------------------------------------------------------------
303
304Parcel::Parcel()
305{
Dianne Hackborn7e790af2014-11-11 12:22:53 -0800306 LOG_ALLOC("Parcel %p: constructing", this);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700307 initState();
308}
309
310Parcel::~Parcel()
311{
312 freeDataNoInit();
Dianne Hackborn7e790af2014-11-11 12:22:53 -0800313 LOG_ALLOC("Parcel %p: destroyed", this);
314}
315
316size_t Parcel::getGlobalAllocSize() {
Jeff Sharkey8994c182020-09-11 12:07:10 -0600317 return gParcelGlobalAllocSize.load();
Dianne Hackborn7e790af2014-11-11 12:22:53 -0800318}
319
320size_t Parcel::getGlobalAllocCount() {
Jeff Sharkey8994c182020-09-11 12:07:10 -0600321 return gParcelGlobalAllocCount.load();
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700322}
323
324const uint8_t* Parcel::data() const
325{
326 return mData;
327}
328
329size_t Parcel::dataSize() const
330{
331 return (mDataSize > mDataPos ? mDataSize : mDataPos);
332}
333
334size_t Parcel::dataAvail() const
335{
Nick Kralevichcfe27de2015-09-16 09:49:15 -0700336 size_t result = dataSize() - dataPosition();
337 if (result > INT32_MAX) {
Steven Moreland6adf33c2019-09-25 13:18:09 -0700338 LOG_ALWAYS_FATAL("result too big: %zu", result);
Nick Kralevichcfe27de2015-09-16 09:49:15 -0700339 }
340 return result;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700341}
342
343size_t Parcel::dataPosition() const
344{
345 return mDataPos;
346}
347
348size_t Parcel::dataCapacity() const
349{
350 return mDataCapacity;
351}
352
353status_t Parcel::setDataSize(size_t size)
354{
Nick Kralevichb6b14232015-04-02 09:36:02 -0700355 if (size > INT32_MAX) {
356 // don't accept size_t values which may have come from an
357 // inadvertent conversion from a negative int.
358 return BAD_VALUE;
359 }
360
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700361 status_t err;
362 err = continueWrite(size);
363 if (err == NO_ERROR) {
364 mDataSize = size;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -0700365 ALOGV("setDataSize Setting data size of %p to %zu", this, mDataSize);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700366 }
367 return err;
368}
369
370void Parcel::setDataPosition(size_t pos) const
371{
Nick Kralevichb6b14232015-04-02 09:36:02 -0700372 if (pos > INT32_MAX) {
373 // don't accept size_t values which may have come from an
374 // inadvertent conversion from a negative int.
Steven Moreland6adf33c2019-09-25 13:18:09 -0700375 LOG_ALWAYS_FATAL("pos too big: %zu", pos);
Nick Kralevichb6b14232015-04-02 09:36:02 -0700376 }
377
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700378 mDataPos = pos;
379 mNextObjectHint = 0;
Michael Wachenschwanzc5176812017-11-17 18:25:05 -0800380 mObjectsSorted = false;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700381}
382
383status_t Parcel::setDataCapacity(size_t size)
384{
Nick Kralevichb6b14232015-04-02 09:36:02 -0700385 if (size > INT32_MAX) {
386 // don't accept size_t values which may have come from an
387 // inadvertent conversion from a negative int.
388 return BAD_VALUE;
389 }
390
Dianne Hackborn97e2bcd2011-04-13 18:15:56 -0700391 if (size > mDataCapacity) return continueWrite(size);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700392 return NO_ERROR;
393}
394
395status_t Parcel::setData(const uint8_t* buffer, size_t len)
396{
Nick Kralevichb6b14232015-04-02 09:36:02 -0700397 if (len > INT32_MAX) {
398 // don't accept size_t values which may have come from an
399 // inadvertent conversion from a negative int.
400 return BAD_VALUE;
401 }
402
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700403 status_t err = restartWrite(len);
404 if (err == NO_ERROR) {
405 memcpy(const_cast<uint8_t*>(data()), buffer, len);
406 mDataSize = len;
407 mFdsKnown = false;
408 }
409 return err;
410}
411
Andreas Huber51faf462011-04-13 10:21:56 -0700412status_t Parcel::appendFrom(const Parcel *parcel, size_t offset, size_t len)
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700413{
Steven Moreland67753c32021-04-02 18:45:19 +0000414 if (parcel->isForRpc() != isForRpc()) {
415 ALOGE("Cannot append Parcel of one format to another.");
416 return BAD_TYPE;
417 }
418
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700419 status_t err;
Andreas Huber51faf462011-04-13 10:21:56 -0700420 const uint8_t *data = parcel->mData;
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -0800421 const binder_size_t *objects = parcel->mObjects;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700422 size_t size = parcel->mObjectsSize;
423 int startPos = mDataPos;
424 int firstIndex = -1, lastIndex = -2;
425
426 if (len == 0) {
427 return NO_ERROR;
428 }
429
Nick Kralevichb6b14232015-04-02 09:36:02 -0700430 if (len > INT32_MAX) {
431 // don't accept size_t values which may have come from an
432 // inadvertent conversion from a negative int.
433 return BAD_VALUE;
434 }
435
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700436 // range checks against the source parcel size
437 if ((offset > parcel->mDataSize)
438 || (len > parcel->mDataSize)
439 || (offset + len > parcel->mDataSize)) {
440 return BAD_VALUE;
441 }
442
443 // Count objects in range
444 for (int i = 0; i < (int) size; i++) {
445 size_t off = objects[i];
Christopher Tate27182be2015-05-27 17:53:02 -0700446 if ((off >= offset) && (off + sizeof(flat_binder_object) <= offset + len)) {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700447 if (firstIndex == -1) {
448 firstIndex = i;
449 }
450 lastIndex = i;
451 }
452 }
453 int numObjects = lastIndex - firstIndex + 1;
454
Dianne Hackborn97e2bcd2011-04-13 18:15:56 -0700455 if ((mDataSize+len) > mDataCapacity) {
456 // grow data
457 err = growData(len);
458 if (err != NO_ERROR) {
459 return err;
460 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700461 }
462
463 // append data
464 memcpy(mData + mDataPos, data + offset, len);
465 mDataPos += len;
466 mDataSize += len;
467
Dianne Hackborn8938ed22011-09-28 23:19:47 -0400468 err = NO_ERROR;
469
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700470 if (numObjects > 0) {
Martijn Coenen69390d42018-10-22 15:18:10 +0200471 const sp<ProcessState> proc(ProcessState::self());
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700472 // grow objects
473 if (mObjectsCapacity < mObjectsSize + numObjects) {
Martijn Coenen93fe5182020-01-22 10:46:25 +0100474 if ((size_t) numObjects > SIZE_MAX - mObjectsSize) return NO_MEMORY; // overflow
475 if (mObjectsSize + numObjects > SIZE_MAX / 3) return NO_MEMORY; // overflow
Christopher Tateed7a50c2015-06-08 14:45:14 -0700476 size_t newSize = ((mObjectsSize + numObjects)*3)/2;
Martijn Coenen93fe5182020-01-22 10:46:25 +0100477 if (newSize > SIZE_MAX / sizeof(binder_size_t)) return NO_MEMORY; // overflow
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -0800478 binder_size_t *objects =
479 (binder_size_t*)realloc(mObjects, newSize*sizeof(binder_size_t));
Yi Kong91635562018-06-07 14:38:36 -0700480 if (objects == (binder_size_t*)nullptr) {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700481 return NO_MEMORY;
482 }
483 mObjects = objects;
484 mObjectsCapacity = newSize;
485 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -0700486
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700487 // append and acquire objects
488 int idx = mObjectsSize;
489 for (int i = firstIndex; i <= lastIndex; i++) {
490 size_t off = objects[i] - offset + startPos;
491 mObjects[idx++] = off;
492 mObjectsSize++;
493
Dianne Hackborn8af0f822009-05-22 13:20:23 -0700494 flat_binder_object* flat
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700495 = reinterpret_cast<flat_binder_object*>(mData + off);
Steven Morelandc673f1f2021-10-07 18:23:35 -0700496 acquire_object(proc, *flat, this);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700497
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -0700498 if (flat->hdr.type == BINDER_TYPE_FD) {
Dianne Hackborn8af0f822009-05-22 13:20:23 -0700499 // If this is a file descriptor, we need to dup it so the
500 // new Parcel now owns its own fd, and can declare that we
501 // officially know we have fds.
Nick Kralevichec9ec7d2016-12-17 19:47:27 -0800502 flat->handle = fcntl(flat->handle, F_DUPFD_CLOEXEC, 0);
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -0800503 flat->cookie = 1;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700504 mHasFds = mFdsKnown = true;
Dianne Hackborn8938ed22011-09-28 23:19:47 -0400505 if (!mAllowFds) {
506 err = FDS_NOT_ALLOWED;
507 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700508 }
509 }
510 }
511
Dianne Hackborn8938ed22011-09-28 23:19:47 -0400512 return err;
513}
514
Dianne Hackborn15feb9b2017-04-10 15:34:35 -0700515int Parcel::compareData(const Parcel& other) {
516 size_t size = dataSize();
517 if (size != other.dataSize()) {
518 return size < other.dataSize() ? -1 : 1;
519 }
520 return memcmp(data(), other.data(), size);
521}
522
Jeff Brown13b16042014-11-11 16:44:25 -0800523bool Parcel::allowFds() const
524{
525 return mAllowFds;
526}
527
Dianne Hackborn7746cc32011-10-03 21:09:35 -0700528bool Parcel::pushAllowFds(bool allowFds)
Dianne Hackborn8938ed22011-09-28 23:19:47 -0400529{
530 const bool origValue = mAllowFds;
Dianne Hackborn7746cc32011-10-03 21:09:35 -0700531 if (!allowFds) {
532 mAllowFds = false;
533 }
Dianne Hackborn8938ed22011-09-28 23:19:47 -0400534 return origValue;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700535}
536
Dianne Hackborn7746cc32011-10-03 21:09:35 -0700537void Parcel::restoreAllowFds(bool lastValue)
538{
539 mAllowFds = lastValue;
540}
541
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700542bool Parcel::hasFileDescriptors() const
543{
544 if (!mFdsKnown) {
545 scanForFds();
546 }
547 return mHasFds;
548}
549
Bernardo Rufino22092af2021-10-07 14:09:24 +0100550status_t Parcel::hasFileDescriptorsInRange(size_t offset, size_t len, bool& result) const {
551 if (len > INT32_MAX || offset > INT32_MAX) {
552 // Don't accept size_t values which may have come from an inadvertent conversion from a
553 // negative int.
554 return BAD_VALUE;
555 }
556 size_t limit = offset + len;
557 if (offset > mDataSize || len > mDataSize || limit > mDataSize || offset > limit) {
558 return BAD_VALUE;
559 }
560 result = hasFileDescriptorsInRangeUnchecked(offset, len);
561 return NO_ERROR;
562}
563
564bool Parcel::hasFileDescriptorsInRangeUnchecked(size_t offset, size_t len) const {
565 for (size_t i = 0; i < mObjectsSize; i++) {
566 size_t pos = mObjects[i];
567 if (pos < offset) continue;
568 if (pos + sizeof(flat_binder_object) > offset + len) {
569 if (mObjectsSorted) break;
570 else continue;
571 }
572 const flat_binder_object* flat = reinterpret_cast<const flat_binder_object*>(mData + pos);
573 if (flat->hdr.type == BINDER_TYPE_FD) {
574 return true;
575 }
576 }
577 return false;
578}
579
Steven Morelandf183fdd2020-10-27 00:12:12 +0000580void Parcel::markSensitive() const
581{
582 mDeallocZero = true;
583}
584
Steven Moreland5553ac42020-11-11 02:14:45 +0000585void Parcel::markForBinder(const sp<IBinder>& binder) {
Steven Moreland1fda67b2021-04-02 18:35:50 +0000586 LOG_ALWAYS_FATAL_IF(mData != nullptr, "format must be set before data is written");
587
Steven Moreland5553ac42020-11-11 02:14:45 +0000588 if (binder && binder->remoteBinder() && binder->remoteBinder()->isRpcBinder()) {
Steven Moreland99157622021-09-13 16:27:34 -0700589 markForRpc(binder->remoteBinder()->getPrivateAccessor().rpcSession());
Steven Moreland5553ac42020-11-11 02:14:45 +0000590 }
591}
592
Steven Morelandc9939062021-05-05 17:57:41 +0000593void Parcel::markForRpc(const sp<RpcSession>& session) {
Steven Moreland1fda67b2021-04-02 18:35:50 +0000594 LOG_ALWAYS_FATAL_IF(mData != nullptr && mOwner == nullptr,
595 "format must be set before data is written OR on IPC data");
596
Steven Morelandc9939062021-05-05 17:57:41 +0000597 LOG_ALWAYS_FATAL_IF(session == nullptr, "markForRpc requires session");
598 mSession = session;
Steven Moreland5553ac42020-11-11 02:14:45 +0000599}
600
601bool Parcel::isForRpc() const {
Steven Morelandc9939062021-05-05 17:57:41 +0000602 return mSession != nullptr;
Steven Moreland5553ac42020-11-11 02:14:45 +0000603}
604
Olivier Gaillarddc848a02019-01-30 17:10:44 +0000605void Parcel::updateWorkSourceRequestHeaderPosition() const {
606 // Only update the request headers once. We only want to point
607 // to the first headers read/written.
608 if (!mRequestHeaderPresent) {
609 mWorkSourceRequestHeaderPosition = dataPosition();
610 mRequestHeaderPresent = true;
611 }
612}
613
Steven Morelandb6c7e222021-02-18 19:20:14 +0000614#if defined(__ANDROID_VNDK__)
Steven Morelandd70160f2019-07-23 10:20:38 -0700615constexpr int32_t kHeader = B_PACK_CHARS('V', 'N', 'D', 'R');
616#else
617constexpr int32_t kHeader = B_PACK_CHARS('S', 'Y', 'S', 'T');
618#endif
619
Brad Fitzpatrick702ea9d2010-06-18 13:07:53 -0700620// Write RPC headers. (previously just the interface token)
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700621status_t Parcel::writeInterfaceToken(const String16& interface)
622{
Steven Morelanddbc76c72020-10-01 18:02:48 +0000623 return writeInterfaceToken(interface.string(), interface.size());
624}
625
626status_t Parcel::writeInterfaceToken(const char16_t* str, size_t len) {
Steven Moreland3af936a2021-03-26 03:05:38 +0000627 if (CC_LIKELY(!isForRpc())) {
628 const IPCThreadState* threadState = IPCThreadState::self();
629 writeInt32(threadState->getStrictModePolicy() | STRICT_MODE_PENALTY_GATHER);
630 updateWorkSourceRequestHeaderPosition();
631 writeInt32(threadState->shouldPropagateWorkSource() ? threadState->getCallingWorkSourceUid()
632 : IPCThreadState::kUnsetWorkSource);
633 writeInt32(kHeader);
634 }
Steven Morelanddbc76c72020-10-01 18:02:48 +0000635
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700636 // currently the interface identification token is just its name as a string
Steven Morelanddbc76c72020-10-01 18:02:48 +0000637 return writeString16(str, len);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700638}
639
Olivier Gaillarddc848a02019-01-30 17:10:44 +0000640bool Parcel::replaceCallingWorkSourceUid(uid_t uid)
641{
642 if (!mRequestHeaderPresent) {
643 return false;
644 }
645
646 const size_t initialPosition = dataPosition();
647 setDataPosition(mWorkSourceRequestHeaderPosition);
648 status_t err = writeInt32(uid);
649 setDataPosition(initialPosition);
650 return err == NO_ERROR;
651}
652
Steven Morelandf1b1e492019-05-06 15:05:13 -0700653uid_t Parcel::readCallingWorkSourceUid() const
Olivier Gaillarddc848a02019-01-30 17:10:44 +0000654{
655 if (!mRequestHeaderPresent) {
656 return IPCThreadState::kUnsetWorkSource;
657 }
658
659 const size_t initialPosition = dataPosition();
660 setDataPosition(mWorkSourceRequestHeaderPosition);
661 uid_t uid = readInt32();
662 setDataPosition(initialPosition);
663 return uid;
664}
665
Mathias Agopian83c04462009-05-22 19:00:22 -0700666bool Parcel::checkInterface(IBinder* binder) const
667{
Brad Fitzpatrick702ea9d2010-06-18 13:07:53 -0700668 return enforceInterface(binder->getInterfaceDescriptor());
Mathias Agopian83c04462009-05-22 19:00:22 -0700669}
670
Brad Fitzpatricka877cd82010-07-07 16:06:39 -0700671bool Parcel::enforceInterface(const String16& interface,
Brad Fitzpatrick70081a12010-07-27 09:49:11 -0700672 IPCThreadState* threadState) const
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700673{
Daniel Colascione0bb330d2019-10-29 16:44:19 -0700674 return enforceInterface(interface.string(), interface.size(), threadState);
675}
676
677bool Parcel::enforceInterface(const char16_t* interface,
678 size_t len,
679 IPCThreadState* threadState) const
680{
Steven Moreland3af936a2021-03-26 03:05:38 +0000681 if (CC_LIKELY(!isForRpc())) {
682 // StrictModePolicy.
683 int32_t strictPolicy = readInt32();
684 if (threadState == nullptr) {
685 threadState = IPCThreadState::self();
686 }
687 if ((threadState->getLastTransactionBinderFlags() & IBinder::FLAG_ONEWAY) != 0) {
688 // For one-way calls, the callee is running entirely
689 // disconnected from the caller, so disable StrictMode entirely.
690 // Not only does disk/network usage not impact the caller, but
691 // there's no way to communicate back violations anyway.
692 threadState->setStrictModePolicy(0);
693 } else {
694 threadState->setStrictModePolicy(strictPolicy);
695 }
696 // WorkSource.
697 updateWorkSourceRequestHeaderPosition();
698 int32_t workSource = readInt32();
699 threadState->setCallingWorkSourceUidWithoutPropagation(workSource);
700 // vendor header
701 int32_t header = readInt32();
702 if (header != kHeader) {
703 ALOGE("Expecting header 0x%x but found 0x%x. Mixing copies of libbinder?", kHeader,
704 header);
705 return false;
706 }
Brad Fitzpatricka877cd82010-07-07 16:06:39 -0700707 }
Steven Moreland3af936a2021-03-26 03:05:38 +0000708
Olivier Gaillard0e0f1de2018-08-16 14:04:09 +0100709 // Interface descriptor.
Daniel Colascione0bb330d2019-10-29 16:44:19 -0700710 size_t parcel_interface_len;
711 const char16_t* parcel_interface = readString16Inplace(&parcel_interface_len);
712 if (len == parcel_interface_len &&
713 (!len || !memcmp(parcel_interface, interface, len * sizeof (char16_t)))) {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700714 return true;
715 } else {
Mark Salyzynd4ecccf2014-05-30 16:35:57 -0700716 ALOGW("**** enforceInterface() expected '%s' but read '%s'",
Daniel Colascione0bb330d2019-10-29 16:44:19 -0700717 String8(interface, len).string(),
718 String8(parcel_interface, parcel_interface_len).string());
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700719 return false;
720 }
Brad Fitzpatrick702ea9d2010-06-18 13:07:53 -0700721}
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700722
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700723size_t Parcel::objectsCount() const
724{
725 return mObjectsSize;
726}
727
728status_t Parcel::errorCheck() const
729{
730 return mError;
731}
732
733void Parcel::setError(status_t err)
734{
735 mError = err;
736}
737
738status_t Parcel::finishWrite(size_t len)
739{
Nick Kralevichb6b14232015-04-02 09:36:02 -0700740 if (len > INT32_MAX) {
741 // don't accept size_t values which may have come from an
742 // inadvertent conversion from a negative int.
743 return BAD_VALUE;
744 }
745
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700746 //printf("Finish write of %d\n", len);
747 mDataPos += len;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -0700748 ALOGV("finishWrite Setting data pos of %p to %zu", this, mDataPos);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700749 if (mDataPos > mDataSize) {
750 mDataSize = mDataPos;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -0700751 ALOGV("finishWrite Setting data size of %p to %zu", this, mDataSize);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700752 }
753 //printf("New pos=%d, size=%d\n", mDataPos, mDataSize);
754 return NO_ERROR;
755}
756
757status_t Parcel::writeUnpadded(const void* data, size_t len)
758{
Nick Kralevichb6b14232015-04-02 09:36:02 -0700759 if (len > INT32_MAX) {
760 // don't accept size_t values which may have come from an
761 // inadvertent conversion from a negative int.
762 return BAD_VALUE;
763 }
764
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700765 size_t end = mDataPos + len;
766 if (end < mDataPos) {
767 // integer overflow
768 return BAD_VALUE;
769 }
770
771 if (end <= mDataCapacity) {
772restart_write:
773 memcpy(mData+mDataPos, data, len);
774 return finishWrite(len);
775 }
776
777 status_t err = growData(len);
778 if (err == NO_ERROR) goto restart_write;
779 return err;
780}
781
782status_t Parcel::write(const void* data, size_t len)
783{
Nick Kralevichb6b14232015-04-02 09:36:02 -0700784 if (len > INT32_MAX) {
785 // don't accept size_t values which may have come from an
786 // inadvertent conversion from a negative int.
787 return BAD_VALUE;
788 }
789
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700790 void* const d = writeInplace(len);
791 if (d) {
792 memcpy(d, data, len);
793 return NO_ERROR;
794 }
795 return mError;
796}
797
798void* Parcel::writeInplace(size_t len)
799{
Nick Kralevichb6b14232015-04-02 09:36:02 -0700800 if (len > INT32_MAX) {
801 // don't accept size_t values which may have come from an
802 // inadvertent conversion from a negative int.
Yi Kong91635562018-06-07 14:38:36 -0700803 return nullptr;
Nick Kralevichb6b14232015-04-02 09:36:02 -0700804 }
805
806 const size_t padded = pad_size(len);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700807
808 // sanity check for integer overflow
809 if (mDataPos+padded < mDataPos) {
Yi Kong91635562018-06-07 14:38:36 -0700810 return nullptr;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700811 }
812
813 if ((mDataPos+padded) <= mDataCapacity) {
814restart_write:
815 //printf("Writing %ld bytes, padded to %ld\n", len, padded);
816 uint8_t* const data = mData+mDataPos;
817
818 // Need to pad at end?
819 if (padded != len) {
820#if BYTE_ORDER == BIG_ENDIAN
821 static const uint32_t mask[4] = {
822 0x00000000, 0xffffff00, 0xffff0000, 0xff000000
823 };
824#endif
825#if BYTE_ORDER == LITTLE_ENDIAN
826 static const uint32_t mask[4] = {
827 0x00000000, 0x00ffffff, 0x0000ffff, 0x000000ff
828 };
829#endif
830 //printf("Applying pad mask: %p to %p\n", (void*)mask[padded-len],
831 // *reinterpret_cast<void**>(data+padded-4));
832 *reinterpret_cast<uint32_t*>(data+padded-4) &= mask[padded-len];
833 }
834
835 finishWrite(padded);
836 return data;
837 }
838
839 status_t err = growData(padded);
840 if (err == NO_ERROR) goto restart_write;
Yi Kong91635562018-06-07 14:38:36 -0700841 return nullptr;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700842}
843
Christopher Wiley9a5e32f2016-01-28 16:56:53 -0800844status_t Parcel::writeUtf8AsUtf16(const std::string& str) {
845 const uint8_t* strData = (uint8_t*)str.data();
846 const size_t strLen= str.length();
847 const ssize_t utf16Len = utf8_to_utf16_length(strData, strLen);
Sergio Girof4607432016-07-21 14:46:35 +0100848 if (utf16Len < 0 || utf16Len > std::numeric_limits<int32_t>::max()) {
Christopher Wiley9a5e32f2016-01-28 16:56:53 -0800849 return BAD_VALUE;
850 }
851
852 status_t err = writeInt32(utf16Len);
853 if (err) {
854 return err;
855 }
856
857 // Allocate enough bytes to hold our converted string and its terminating NULL.
858 void* dst = writeInplace((utf16Len + 1) * sizeof(char16_t));
859 if (!dst) {
860 return NO_MEMORY;
861 }
862
Sergio Girof4607432016-07-21 14:46:35 +0100863 utf8_to_utf16(strData, strLen, (char16_t*)dst, (size_t) utf16Len + 1);
Christopher Wiley9a5e32f2016-01-28 16:56:53 -0800864
865 return NO_ERROR;
866}
867
Jooyung Han9fcc4ef2020-01-23 12:45:10 +0900868
Andy Hung49198cf2020-11-18 11:02:39 -0800869status_t Parcel::writeUtf8AsUtf16(const std::optional<std::string>& str) { return writeData(str); }
870status_t Parcel::writeUtf8AsUtf16(const std::unique_ptr<std::string>& str) { return writeData(str); }
Christopher Wiley9a5e32f2016-01-28 16:56:53 -0800871
Andy Hung49198cf2020-11-18 11:02:39 -0800872status_t Parcel::writeString16(const std::optional<String16>& str) { return writeData(str); }
873status_t Parcel::writeString16(const std::unique_ptr<String16>& str) { return writeData(str); }
Casey Dahlin451ff582015-10-19 18:12:18 -0700874
Andy Hung49198cf2020-11-18 11:02:39 -0800875status_t Parcel::writeByteVector(const std::vector<int8_t>& val) { return writeData(val); }
876status_t Parcel::writeByteVector(const std::optional<std::vector<int8_t>>& val) { return writeData(val); }
877status_t Parcel::writeByteVector(const std::unique_ptr<std::vector<int8_t>>& val) { return writeData(val); }
878status_t Parcel::writeByteVector(const std::vector<uint8_t>& val) { return writeData(val); }
879status_t Parcel::writeByteVector(const std::optional<std::vector<uint8_t>>& val) { return writeData(val); }
880status_t Parcel::writeByteVector(const std::unique_ptr<std::vector<uint8_t>>& val){ return writeData(val); }
881status_t Parcel::writeInt32Vector(const std::vector<int32_t>& val) { return writeData(val); }
882status_t Parcel::writeInt32Vector(const std::optional<std::vector<int32_t>>& val) { return writeData(val); }
883status_t Parcel::writeInt32Vector(const std::unique_ptr<std::vector<int32_t>>& val) { return writeData(val); }
884status_t Parcel::writeInt64Vector(const std::vector<int64_t>& val) { return writeData(val); }
885status_t Parcel::writeInt64Vector(const std::optional<std::vector<int64_t>>& val) { return writeData(val); }
886status_t Parcel::writeInt64Vector(const std::unique_ptr<std::vector<int64_t>>& val) { return writeData(val); }
887status_t Parcel::writeUint64Vector(const std::vector<uint64_t>& val) { return writeData(val); }
888status_t Parcel::writeUint64Vector(const std::optional<std::vector<uint64_t>>& val) { return writeData(val); }
889status_t Parcel::writeUint64Vector(const std::unique_ptr<std::vector<uint64_t>>& val) { return writeData(val); }
890status_t Parcel::writeFloatVector(const std::vector<float>& val) { return writeData(val); }
891status_t Parcel::writeFloatVector(const std::optional<std::vector<float>>& val) { return writeData(val); }
892status_t Parcel::writeFloatVector(const std::unique_ptr<std::vector<float>>& val) { return writeData(val); }
893status_t Parcel::writeDoubleVector(const std::vector<double>& val) { return writeData(val); }
894status_t Parcel::writeDoubleVector(const std::optional<std::vector<double>>& val) { return writeData(val); }
895status_t Parcel::writeDoubleVector(const std::unique_ptr<std::vector<double>>& val) { return writeData(val); }
896status_t Parcel::writeBoolVector(const std::vector<bool>& val) { return writeData(val); }
897status_t Parcel::writeBoolVector(const std::optional<std::vector<bool>>& val) { return writeData(val); }
898status_t Parcel::writeBoolVector(const std::unique_ptr<std::vector<bool>>& val) { return writeData(val); }
899status_t Parcel::writeCharVector(const std::vector<char16_t>& val) { return writeData(val); }
900status_t Parcel::writeCharVector(const std::optional<std::vector<char16_t>>& val) { return writeData(val); }
901status_t Parcel::writeCharVector(const std::unique_ptr<std::vector<char16_t>>& val) { return writeData(val); }
Casey Dahlin451ff582015-10-19 18:12:18 -0700902
Andy Hung49198cf2020-11-18 11:02:39 -0800903status_t Parcel::writeString16Vector(const std::vector<String16>& val) { return writeData(val); }
Casey Dahlinb9872622015-11-25 15:09:45 -0800904status_t Parcel::writeString16Vector(
Andy Hung49198cf2020-11-18 11:02:39 -0800905 const std::optional<std::vector<std::optional<String16>>>& val) { return writeData(val); }
Jooyung Han9fcc4ef2020-01-23 12:45:10 +0900906status_t Parcel::writeString16Vector(
Andy Hung49198cf2020-11-18 11:02:39 -0800907 const std::unique_ptr<std::vector<std::unique_ptr<String16>>>& val) { return writeData(val); }
Christopher Wiley9a5e32f2016-01-28 16:56:53 -0800908status_t Parcel::writeUtf8VectorAsUtf16Vector(
Andy Hung49198cf2020-11-18 11:02:39 -0800909 const std::optional<std::vector<std::optional<std::string>>>& val) { return writeData(val); }
Jooyung Han9fcc4ef2020-01-23 12:45:10 +0900910status_t Parcel::writeUtf8VectorAsUtf16Vector(
Andy Hung49198cf2020-11-18 11:02:39 -0800911 const std::unique_ptr<std::vector<std::unique_ptr<std::string>>>& val) { return writeData(val); }
912status_t Parcel::writeUtf8VectorAsUtf16Vector(const std::vector<std::string>& val) { return writeData(val); }
Christopher Wiley9a5e32f2016-01-28 16:56:53 -0800913
Andy Hung49198cf2020-11-18 11:02:39 -0800914status_t Parcel::writeUniqueFileDescriptorVector(const std::vector<base::unique_fd>& val) { return writeData(val); }
915status_t Parcel::writeUniqueFileDescriptorVector(const std::optional<std::vector<base::unique_fd>>& val) { return writeData(val); }
916status_t Parcel::writeUniqueFileDescriptorVector(const std::unique_ptr<std::vector<base::unique_fd>>& val) { return writeData(val); }
917
918status_t Parcel::writeStrongBinderVector(const std::vector<sp<IBinder>>& val) { return writeData(val); }
919status_t Parcel::writeStrongBinderVector(const std::optional<std::vector<sp<IBinder>>>& val) { return writeData(val); }
920status_t Parcel::writeStrongBinderVector(const std::unique_ptr<std::vector<sp<IBinder>>>& val) { return writeData(val); }
921
922status_t Parcel::writeParcelable(const Parcelable& parcelable) { return writeData(parcelable); }
923
924status_t Parcel::readUtf8FromUtf16(std::optional<std::string>* str) const { return readData(str); }
925status_t Parcel::readUtf8FromUtf16(std::unique_ptr<std::string>* str) const { return readData(str); }
926
927status_t Parcel::readString16(std::optional<String16>* pArg) const { return readData(pArg); }
928status_t Parcel::readString16(std::unique_ptr<String16>* pArg) const { return readData(pArg); }
929
930status_t Parcel::readByteVector(std::vector<int8_t>* val) const { return readData(val); }
931status_t Parcel::readByteVector(std::vector<uint8_t>* val) const { return readData(val); }
932status_t Parcel::readByteVector(std::optional<std::vector<int8_t>>* val) const { return readData(val); }
933status_t Parcel::readByteVector(std::unique_ptr<std::vector<int8_t>>* val) const { return readData(val); }
934status_t Parcel::readByteVector(std::optional<std::vector<uint8_t>>* val) const { return readData(val); }
935status_t Parcel::readByteVector(std::unique_ptr<std::vector<uint8_t>>* val) const { return readData(val); }
936status_t Parcel::readInt32Vector(std::optional<std::vector<int32_t>>* val) const { return readData(val); }
937status_t Parcel::readInt32Vector(std::unique_ptr<std::vector<int32_t>>* val) const { return readData(val); }
938status_t Parcel::readInt32Vector(std::vector<int32_t>* val) const { return readData(val); }
939status_t Parcel::readInt64Vector(std::optional<std::vector<int64_t>>* val) const { return readData(val); }
940status_t Parcel::readInt64Vector(std::unique_ptr<std::vector<int64_t>>* val) const { return readData(val); }
941status_t Parcel::readInt64Vector(std::vector<int64_t>* val) const { return readData(val); }
942status_t Parcel::readUint64Vector(std::optional<std::vector<uint64_t>>* val) const { return readData(val); }
943status_t Parcel::readUint64Vector(std::unique_ptr<std::vector<uint64_t>>* val) const { return readData(val); }
944status_t Parcel::readUint64Vector(std::vector<uint64_t>* val) const { return readData(val); }
945status_t Parcel::readFloatVector(std::optional<std::vector<float>>* val) const { return readData(val); }
946status_t Parcel::readFloatVector(std::unique_ptr<std::vector<float>>* val) const { return readData(val); }
947status_t Parcel::readFloatVector(std::vector<float>* val) const { return readData(val); }
948status_t Parcel::readDoubleVector(std::optional<std::vector<double>>* val) const { return readData(val); }
949status_t Parcel::readDoubleVector(std::unique_ptr<std::vector<double>>* val) const { return readData(val); }
950status_t Parcel::readDoubleVector(std::vector<double>* val) const { return readData(val); }
951status_t Parcel::readBoolVector(std::optional<std::vector<bool>>* val) const { return readData(val); }
952status_t Parcel::readBoolVector(std::unique_ptr<std::vector<bool>>* val) const { return readData(val); }
953status_t Parcel::readBoolVector(std::vector<bool>* val) const { return readData(val); }
954status_t Parcel::readCharVector(std::optional<std::vector<char16_t>>* val) const { return readData(val); }
955status_t Parcel::readCharVector(std::unique_ptr<std::vector<char16_t>>* val) const { return readData(val); }
956status_t Parcel::readCharVector(std::vector<char16_t>* val) const { return readData(val); }
957
958status_t Parcel::readString16Vector(
959 std::optional<std::vector<std::optional<String16>>>* val) const { return readData(val); }
960status_t Parcel::readString16Vector(
961 std::unique_ptr<std::vector<std::unique_ptr<String16>>>* val) const { return readData(val); }
962status_t Parcel::readString16Vector(std::vector<String16>* val) const { return readData(val); }
963status_t Parcel::readUtf8VectorFromUtf16Vector(
964 std::optional<std::vector<std::optional<std::string>>>* val) const { return readData(val); }
965status_t Parcel::readUtf8VectorFromUtf16Vector(
966 std::unique_ptr<std::vector<std::unique_ptr<std::string>>>* val) const { return readData(val); }
967status_t Parcel::readUtf8VectorFromUtf16Vector(std::vector<std::string>* val) const { return readData(val); }
968
969status_t Parcel::readUniqueFileDescriptorVector(std::optional<std::vector<base::unique_fd>>* val) const { return readData(val); }
970status_t Parcel::readUniqueFileDescriptorVector(std::unique_ptr<std::vector<base::unique_fd>>* val) const { return readData(val); }
971status_t Parcel::readUniqueFileDescriptorVector(std::vector<base::unique_fd>* val) const { return readData(val); }
972
973status_t Parcel::readStrongBinderVector(std::optional<std::vector<sp<IBinder>>>* val) const { return readData(val); }
974status_t Parcel::readStrongBinderVector(std::unique_ptr<std::vector<sp<IBinder>>>* val) const { return readData(val); }
975status_t Parcel::readStrongBinderVector(std::vector<sp<IBinder>>* val) const { return readData(val); }
976
977status_t Parcel::readParcelable(Parcelable* parcelable) const { return readData(parcelable); }
Christopher Wiley9a5e32f2016-01-28 16:56:53 -0800978
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700979status_t Parcel::writeInt32(int32_t val)
980{
Andreas Huber84a6d042009-08-17 13:33:27 -0700981 return writeAligned(val);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -0700982}
Dan Stoza41a0f2f2014-12-01 10:01:10 -0800983
984status_t Parcel::writeUint32(uint32_t val)
985{
986 return writeAligned(val);
987}
988
Marco Nelissen5c0106e2013-10-16 10:57:51 -0700989status_t Parcel::writeInt32Array(size_t len, const int32_t *val) {
Nick Kralevichb6b14232015-04-02 09:36:02 -0700990 if (len > INT32_MAX) {
991 // don't accept size_t values which may have come from an
992 // inadvertent conversion from a negative int.
993 return BAD_VALUE;
994 }
995
Marco Nelissen5c0106e2013-10-16 10:57:51 -0700996 if (!val) {
Chad Brubakere59cb432015-06-30 14:03:55 -0700997 return writeInt32(-1);
Marco Nelissen5c0106e2013-10-16 10:57:51 -0700998 }
Chad Brubakere59cb432015-06-30 14:03:55 -0700999 status_t ret = writeInt32(static_cast<uint32_t>(len));
Marco Nelissen5c0106e2013-10-16 10:57:51 -07001000 if (ret == NO_ERROR) {
1001 ret = write(val, len * sizeof(*val));
1002 }
1003 return ret;
1004}
Marco Nelissenf0190bf2014-03-13 14:17:40 -07001005status_t Parcel::writeByteArray(size_t len, const uint8_t *val) {
Nick Kralevichb6b14232015-04-02 09:36:02 -07001006 if (len > INT32_MAX) {
1007 // don't accept size_t values which may have come from an
1008 // inadvertent conversion from a negative int.
1009 return BAD_VALUE;
1010 }
1011
Marco Nelissenf0190bf2014-03-13 14:17:40 -07001012 if (!val) {
Chad Brubakere59cb432015-06-30 14:03:55 -07001013 return writeInt32(-1);
Marco Nelissenf0190bf2014-03-13 14:17:40 -07001014 }
Chad Brubakere59cb432015-06-30 14:03:55 -07001015 status_t ret = writeInt32(static_cast<uint32_t>(len));
Marco Nelissenf0190bf2014-03-13 14:17:40 -07001016 if (ret == NO_ERROR) {
1017 ret = write(val, len * sizeof(*val));
1018 }
1019 return ret;
1020}
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001021
Casey Dahlind6848f52015-10-15 15:44:59 -07001022status_t Parcel::writeBool(bool val)
1023{
1024 return writeInt32(int32_t(val));
1025}
1026
1027status_t Parcel::writeChar(char16_t val)
1028{
1029 return writeInt32(int32_t(val));
1030}
1031
1032status_t Parcel::writeByte(int8_t val)
1033{
1034 return writeInt32(int32_t(val));
1035}
1036
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001037status_t Parcel::writeInt64(int64_t val)
1038{
Andreas Huber84a6d042009-08-17 13:33:27 -07001039 return writeAligned(val);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001040}
1041
Ronghua Wu2d13afd2015-03-16 11:11:07 -07001042status_t Parcel::writeUint64(uint64_t val)
1043{
1044 return writeAligned(val);
1045}
1046
Serban Constantinescuf683e012013-11-05 16:53:55 +00001047status_t Parcel::writePointer(uintptr_t val)
1048{
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08001049 return writeAligned<binder_uintptr_t>(val);
Serban Constantinescuf683e012013-11-05 16:53:55 +00001050}
1051
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001052status_t Parcel::writeFloat(float val)
1053{
Andreas Huber84a6d042009-08-17 13:33:27 -07001054 return writeAligned(val);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001055}
1056
Douglas Leungcc1a4bb2013-01-11 15:00:55 -08001057#if defined(__mips__) && defined(__mips_hard_float)
1058
1059status_t Parcel::writeDouble(double val)
1060{
1061 union {
1062 double d;
1063 unsigned long long ll;
1064 } u;
1065 u.d = val;
1066 return writeAligned(u.ll);
1067}
1068
1069#else
1070
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001071status_t Parcel::writeDouble(double val)
1072{
Andreas Huber84a6d042009-08-17 13:33:27 -07001073 return writeAligned(val);
1074}
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001075
Douglas Leungcc1a4bb2013-01-11 15:00:55 -08001076#endif
1077
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001078status_t Parcel::writeCString(const char* str)
1079{
1080 return write(str, strlen(str)+1);
1081}
1082
1083status_t Parcel::writeString8(const String8& str)
1084{
Jeff Sharkey2f8bdb52020-04-19 21:41:26 -06001085 return writeString8(str.string(), str.size());
1086}
1087
1088status_t Parcel::writeString8(const char* str, size_t len)
1089{
1090 if (str == nullptr) return writeInt32(-1);
1091
Jeff Sharkey18220902020-11-05 08:36:20 -07001092 // NOTE: Keep this logic in sync with android_os_Parcel.cpp
Jeff Sharkey2f8bdb52020-04-19 21:41:26 -06001093 status_t err = writeInt32(len);
1094 if (err == NO_ERROR) {
1095 uint8_t* data = (uint8_t*)writeInplace(len+sizeof(char));
1096 if (data) {
1097 memcpy(data, str, len);
1098 *reinterpret_cast<char*>(data+len) = 0;
1099 return NO_ERROR;
1100 }
1101 err = mError;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001102 }
1103 return err;
1104}
1105
1106status_t Parcel::writeString16(const String16& str)
1107{
1108 return writeString16(str.string(), str.size());
1109}
1110
1111status_t Parcel::writeString16(const char16_t* str, size_t len)
1112{
Yi Kong91635562018-06-07 14:38:36 -07001113 if (str == nullptr) return writeInt32(-1);
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07001114
Jeff Sharkey18220902020-11-05 08:36:20 -07001115 // NOTE: Keep this logic in sync with android_os_Parcel.cpp
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001116 status_t err = writeInt32(len);
1117 if (err == NO_ERROR) {
1118 len *= sizeof(char16_t);
1119 uint8_t* data = (uint8_t*)writeInplace(len+sizeof(char16_t));
1120 if (data) {
1121 memcpy(data, str, len);
1122 *reinterpret_cast<char16_t*>(data+len) = 0;
1123 return NO_ERROR;
1124 }
1125 err = mError;
1126 }
1127 return err;
1128}
1129
1130status_t Parcel::writeStrongBinder(const sp<IBinder>& val)
1131{
Steven Morelanda86a3562019-08-01 23:28:34 +00001132 return flattenBinder(val);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001133}
1134
Casey Dahlineb8e15f2015-11-03 13:50:37 -08001135
Casey Dahlinb9872622015-11-25 15:09:45 -08001136status_t Parcel::writeRawNullableParcelable(const Parcelable* parcelable) {
1137 if (!parcelable) {
1138 return writeInt32(0);
1139 }
1140
1141 return writeParcelable(*parcelable);
1142}
1143
Mathias Agopiana47f02a2009-05-21 16:29:38 -07001144status_t Parcel::writeNativeHandle(const native_handle* handle)
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001145{
Mathias Agopian1d0a95b2009-07-31 16:12:13 -07001146 if (!handle || handle->version != sizeof(native_handle))
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001147 return BAD_TYPE;
1148
1149 status_t err;
Mathias Agopiana47f02a2009-05-21 16:29:38 -07001150 err = writeInt32(handle->numFds);
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001151 if (err != NO_ERROR) return err;
The Android Open Source Projectedbf3b62009-03-03 19:31:44 -08001152
Mathias Agopiana47f02a2009-05-21 16:29:38 -07001153 err = writeInt32(handle->numInts);
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001154 if (err != NO_ERROR) return err;
The Android Open Source Projectedbf3b62009-03-03 19:31:44 -08001155
Mathias Agopiana47f02a2009-05-21 16:29:38 -07001156 for (int i=0 ; err==NO_ERROR && i<handle->numFds ; i++)
1157 err = writeDupFileDescriptor(handle->data[i]);
The Android Open Source Projectedbf3b62009-03-03 19:31:44 -08001158
1159 if (err != NO_ERROR) {
Steve Block9d453682011-12-20 16:23:08 +00001160 ALOGD("write native handle, write dup fd failed");
The Android Open Source Projectedbf3b62009-03-03 19:31:44 -08001161 return err;
1162 }
Mathias Agopiana47f02a2009-05-21 16:29:38 -07001163 err = write(handle->data + handle->numFds, sizeof(int)*handle->numInts);
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001164 return err;
1165}
1166
Jeff Brown93ff1f92011-11-04 19:01:44 -07001167status_t Parcel::writeFileDescriptor(int fd, bool takeOwnership)
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001168{
Steven Moreland5553ac42020-11-11 02:14:45 +00001169 if (isForRpc()) {
1170 ALOGE("Cannot write file descriptor to remote binder.");
1171 return BAD_TYPE;
1172 }
1173
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001174 flat_binder_object obj;
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -07001175 obj.hdr.type = BINDER_TYPE_FD;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001176 obj.flags = 0x7f | FLAT_BINDER_FLAG_ACCEPTS_FDS;
Arve Hjønnevåg07fd0f12014-02-18 21:10:29 -08001177 obj.binder = 0; /* Don't pass uninitialized stack data to a remote process */
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001178 obj.handle = fd;
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08001179 obj.cookie = takeOwnership ? 1 : 0;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001180 return writeObject(obj, true);
1181}
1182
1183status_t Parcel::writeDupFileDescriptor(int fd)
1184{
Nick Kralevichec9ec7d2016-12-17 19:47:27 -08001185 int dupFd = fcntl(fd, F_DUPFD_CLOEXEC, 0);
Jeff Brownd341c712011-11-04 20:19:33 -07001186 if (dupFd < 0) {
1187 return -errno;
1188 }
1189 status_t err = writeFileDescriptor(dupFd, true /*takeOwnership*/);
Casey Dahlin06673e32015-11-23 13:24:23 -08001190 if (err != OK) {
Jeff Brownd341c712011-11-04 20:19:33 -07001191 close(dupFd);
1192 }
1193 return err;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001194}
1195
Dianne Hackborn1941a402016-08-29 12:30:43 -07001196status_t Parcel::writeParcelFileDescriptor(int fd, bool takeOwnership)
1197{
1198 writeInt32(0);
1199 return writeFileDescriptor(fd, takeOwnership);
1200}
1201
Ryo Hashimotobf551892018-05-31 16:58:35 +09001202status_t Parcel::writeDupParcelFileDescriptor(int fd)
1203{
1204 int dupFd = fcntl(fd, F_DUPFD_CLOEXEC, 0);
1205 if (dupFd < 0) {
1206 return -errno;
1207 }
1208 status_t err = writeParcelFileDescriptor(dupFd, true /*takeOwnership*/);
1209 if (err != OK) {
1210 close(dupFd);
1211 }
1212 return err;
1213}
1214
Christopher Wiley2cf19952016-04-11 11:09:37 -07001215status_t Parcel::writeUniqueFileDescriptor(const base::unique_fd& fd) {
Casey Dahlin06673e32015-11-23 13:24:23 -08001216 return writeDupFileDescriptor(fd.get());
1217}
1218
Jeff Brown13b16042014-11-11 16:44:25 -08001219status_t Parcel::writeBlob(size_t len, bool mutableCopy, WritableBlob* outBlob)
Jeff Brown5707dbf2011-09-23 21:17:56 -07001220{
Nick Kralevichb6b14232015-04-02 09:36:02 -07001221 if (len > INT32_MAX) {
1222 // don't accept size_t values which may have come from an
1223 // inadvertent conversion from a negative int.
1224 return BAD_VALUE;
1225 }
1226
Jeff Brown13b16042014-11-11 16:44:25 -08001227 status_t status;
1228 if (!mAllowFds || len <= BLOB_INPLACE_LIMIT) {
Steve Block6807e592011-10-20 11:56:00 +01001229 ALOGV("writeBlob: write in place");
Jeff Brown13b16042014-11-11 16:44:25 -08001230 status = writeInt32(BLOB_INPLACE);
Jeff Brown5707dbf2011-09-23 21:17:56 -07001231 if (status) return status;
1232
1233 void* ptr = writeInplace(len);
1234 if (!ptr) return NO_MEMORY;
1235
Jeff Brown13b16042014-11-11 16:44:25 -08001236 outBlob->init(-1, ptr, len, false);
Jeff Brown5707dbf2011-09-23 21:17:56 -07001237 return NO_ERROR;
1238 }
1239
Steve Block6807e592011-10-20 11:56:00 +01001240 ALOGV("writeBlob: write to ashmem");
Jeff Brown5707dbf2011-09-23 21:17:56 -07001241 int fd = ashmem_create_region("Parcel Blob", len);
1242 if (fd < 0) return NO_MEMORY;
1243
1244 int result = ashmem_set_prot_region(fd, PROT_READ | PROT_WRITE);
1245 if (result < 0) {
Jeff Brownec4e0062011-10-10 14:50:10 -07001246 status = result;
Jeff Brown5707dbf2011-09-23 21:17:56 -07001247 } else {
Yi Kong91635562018-06-07 14:38:36 -07001248 void* ptr = ::mmap(nullptr, len, PROT_READ | PROT_WRITE, MAP_SHARED, fd, 0);
Jeff Brown5707dbf2011-09-23 21:17:56 -07001249 if (ptr == MAP_FAILED) {
1250 status = -errno;
1251 } else {
Jeff Brown13b16042014-11-11 16:44:25 -08001252 if (!mutableCopy) {
1253 result = ashmem_set_prot_region(fd, PROT_READ);
1254 }
Jeff Brown5707dbf2011-09-23 21:17:56 -07001255 if (result < 0) {
Jeff Brownec4e0062011-10-10 14:50:10 -07001256 status = result;
Jeff Brown5707dbf2011-09-23 21:17:56 -07001257 } else {
Jeff Brown13b16042014-11-11 16:44:25 -08001258 status = writeInt32(mutableCopy ? BLOB_ASHMEM_MUTABLE : BLOB_ASHMEM_IMMUTABLE);
Jeff Brown5707dbf2011-09-23 21:17:56 -07001259 if (!status) {
Jeff Brown93ff1f92011-11-04 19:01:44 -07001260 status = writeFileDescriptor(fd, true /*takeOwnership*/);
Jeff Brown5707dbf2011-09-23 21:17:56 -07001261 if (!status) {
Jeff Brown13b16042014-11-11 16:44:25 -08001262 outBlob->init(fd, ptr, len, mutableCopy);
Jeff Brown5707dbf2011-09-23 21:17:56 -07001263 return NO_ERROR;
1264 }
1265 }
1266 }
1267 }
1268 ::munmap(ptr, len);
1269 }
1270 ::close(fd);
1271 return status;
1272}
1273
Jeff Brown13b16042014-11-11 16:44:25 -08001274status_t Parcel::writeDupImmutableBlobFileDescriptor(int fd)
1275{
1276 // Must match up with what's done in writeBlob.
1277 if (!mAllowFds) return FDS_NOT_ALLOWED;
1278 status_t status = writeInt32(BLOB_ASHMEM_IMMUTABLE);
1279 if (status) return status;
1280 return writeDupFileDescriptor(fd);
1281}
1282
Mathias Agopiane1424282013-07-29 21:24:40 -07001283status_t Parcel::write(const FlattenableHelperInterface& val)
Mathias Agopian98e71dd2010-02-11 17:30:52 -08001284{
1285 status_t err;
1286
1287 // size if needed
Mathias Agopiane1424282013-07-29 21:24:40 -07001288 const size_t len = val.getFlattenedSize();
1289 const size_t fd_count = val.getFdCount();
Mathias Agopian98e71dd2010-02-11 17:30:52 -08001290
Christopher Tatee4e0ae82016-03-24 16:03:44 -07001291 if ((len > INT32_MAX) || (fd_count >= gMaxFds)) {
Nick Kralevichb6b14232015-04-02 09:36:02 -07001292 // don't accept size_t values which may have come from an
1293 // inadvertent conversion from a negative int.
1294 return BAD_VALUE;
1295 }
1296
Mathias Agopian98e71dd2010-02-11 17:30:52 -08001297 err = this->writeInt32(len);
1298 if (err) return err;
1299
1300 err = this->writeInt32(fd_count);
1301 if (err) return err;
1302
1303 // payload
Martijn Coenenf8542382018-04-04 11:46:56 +02001304 void* const buf = this->writeInplace(len);
Yi Kong91635562018-06-07 14:38:36 -07001305 if (buf == nullptr)
Mathias Agopian98e71dd2010-02-11 17:30:52 -08001306 return BAD_VALUE;
1307
Yi Kong91635562018-06-07 14:38:36 -07001308 int* fds = nullptr;
Mathias Agopian98e71dd2010-02-11 17:30:52 -08001309 if (fd_count) {
Christopher Tatee4e0ae82016-03-24 16:03:44 -07001310 fds = new (std::nothrow) int[fd_count];
1311 if (fds == nullptr) {
1312 ALOGE("write: failed to allocate requested %zu fds", fd_count);
1313 return BAD_VALUE;
1314 }
Mathias Agopian98e71dd2010-02-11 17:30:52 -08001315 }
1316
1317 err = val.flatten(buf, len, fds, fd_count);
1318 for (size_t i=0 ; i<fd_count && err==NO_ERROR ; i++) {
1319 err = this->writeDupFileDescriptor( fds[i] );
1320 }
1321
1322 if (fd_count) {
1323 delete [] fds;
1324 }
1325
1326 return err;
1327}
1328
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001329status_t Parcel::writeObject(const flat_binder_object& val, bool nullMetaData)
1330{
1331 const bool enoughData = (mDataPos+sizeof(val)) <= mDataCapacity;
1332 const bool enoughObjects = mObjectsSize < mObjectsCapacity;
1333 if (enoughData && enoughObjects) {
1334restart_write:
1335 *reinterpret_cast<flat_binder_object*>(mData+mDataPos) = val;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07001336
Christopher Tate98e67d32015-06-03 18:44:15 -07001337 // remember if it's a file descriptor
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -07001338 if (val.hdr.type == BINDER_TYPE_FD) {
Christopher Tate98e67d32015-06-03 18:44:15 -07001339 if (!mAllowFds) {
1340 // fail before modifying our object index
1341 return FDS_NOT_ALLOWED;
1342 }
1343 mHasFds = mFdsKnown = true;
1344 }
1345
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001346 // Need to write meta-data?
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08001347 if (nullMetaData || val.binder != 0) {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001348 mObjects[mObjectsSize] = mDataPos;
Steven Morelandc673f1f2021-10-07 18:23:35 -07001349 acquire_object(ProcessState::self(), val, this);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001350 mObjectsSize++;
1351 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07001352
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001353 return finishWrite(sizeof(flat_binder_object));
1354 }
1355
1356 if (!enoughData) {
1357 const status_t err = growData(sizeof(val));
1358 if (err != NO_ERROR) return err;
1359 }
1360 if (!enoughObjects) {
Martijn Coenen93fe5182020-01-22 10:46:25 +01001361 if (mObjectsSize > SIZE_MAX - 2) return NO_MEMORY; // overflow
1362 if ((mObjectsSize + 2) > SIZE_MAX / 3) return NO_MEMORY; // overflow
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001363 size_t newSize = ((mObjectsSize+2)*3)/2;
Martijn Coenen93fe5182020-01-22 10:46:25 +01001364 if (newSize > SIZE_MAX / sizeof(binder_size_t)) return NO_MEMORY; // overflow
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08001365 binder_size_t* objects = (binder_size_t*)realloc(mObjects, newSize*sizeof(binder_size_t));
Yi Kong91635562018-06-07 14:38:36 -07001366 if (objects == nullptr) return NO_MEMORY;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001367 mObjects = objects;
1368 mObjectsCapacity = newSize;
1369 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07001370
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001371 goto restart_write;
1372}
1373
Brad Fitzpatrick837a0d02010-07-13 15:33:35 -07001374status_t Parcel::writeNoException()
1375{
Christopher Wiley09eb7492015-11-09 15:06:15 -08001376 binder::Status status;
1377 return status.writeToParcel(this);
Brad Fitzpatrick837a0d02010-07-13 15:33:35 -07001378}
1379
Michael Wachenschwanzc5176812017-11-17 18:25:05 -08001380status_t Parcel::validateReadData(size_t upperBound) const
1381{
1382 // Don't allow non-object reads on object data
1383 if (mObjectsSorted || mObjectsSize <= 1) {
1384data_sorted:
1385 // Expect to check only against the next object
1386 if (mNextObjectHint < mObjectsSize && upperBound > mObjects[mNextObjectHint]) {
1387 // For some reason the current read position is greater than the next object
1388 // hint. Iterate until we find the right object
1389 size_t nextObject = mNextObjectHint;
1390 do {
1391 if (mDataPos < mObjects[nextObject] + sizeof(flat_binder_object)) {
1392 // Requested info overlaps with an object
1393 ALOGE("Attempt to read from protected data in Parcel %p", this);
1394 return PERMISSION_DENIED;
1395 }
1396 nextObject++;
1397 } while (nextObject < mObjectsSize && upperBound > mObjects[nextObject]);
1398 mNextObjectHint = nextObject;
1399 }
1400 return NO_ERROR;
1401 }
1402 // Quickly determine if mObjects is sorted.
1403 binder_size_t* currObj = mObjects + mObjectsSize - 1;
1404 binder_size_t* prevObj = currObj;
1405 while (currObj > mObjects) {
1406 prevObj--;
1407 if(*prevObj > *currObj) {
1408 goto data_unsorted;
1409 }
1410 currObj--;
1411 }
1412 mObjectsSorted = true;
1413 goto data_sorted;
1414
1415data_unsorted:
1416 // Insertion Sort mObjects
1417 // Great for mostly sorted lists. If randomly sorted or reverse ordered mObjects become common,
1418 // switch to std::sort(mObjects, mObjects + mObjectsSize);
1419 for (binder_size_t* iter0 = mObjects + 1; iter0 < mObjects + mObjectsSize; iter0++) {
1420 binder_size_t temp = *iter0;
1421 binder_size_t* iter1 = iter0 - 1;
1422 while (iter1 >= mObjects && *iter1 > temp) {
1423 *(iter1 + 1) = *iter1;
1424 iter1--;
1425 }
1426 *(iter1 + 1) = temp;
1427 }
1428 mNextObjectHint = 0;
1429 mObjectsSorted = true;
1430 goto data_sorted;
1431}
1432
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001433status_t Parcel::read(void* outData, size_t len) const
1434{
Nick Kralevichb6b14232015-04-02 09:36:02 -07001435 if (len > INT32_MAX) {
1436 // don't accept size_t values which may have come from an
1437 // inadvertent conversion from a negative int.
1438 return BAD_VALUE;
1439 }
1440
1441 if ((mDataPos+pad_size(len)) >= mDataPos && (mDataPos+pad_size(len)) <= mDataSize
1442 && len <= pad_size(len)) {
Michael Wachenschwanzc5176812017-11-17 18:25:05 -08001443 if (mObjectsSize > 0) {
1444 status_t err = validateReadData(mDataPos + pad_size(len));
Michael Wachenschwanza17f0222018-04-17 16:52:40 -07001445 if(err != NO_ERROR) {
1446 // Still increment the data position by the expected length
1447 mDataPos += pad_size(len);
1448 ALOGV("read Setting data pos of %p to %zu", this, mDataPos);
1449 return err;
1450 }
Michael Wachenschwanzc5176812017-11-17 18:25:05 -08001451 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001452 memcpy(outData, mData+mDataPos, len);
Nick Kralevichb6b14232015-04-02 09:36:02 -07001453 mDataPos += pad_size(len);
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07001454 ALOGV("read Setting data pos of %p to %zu", this, mDataPos);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001455 return NO_ERROR;
1456 }
1457 return NOT_ENOUGH_DATA;
1458}
1459
1460const void* Parcel::readInplace(size_t len) const
1461{
Nick Kralevichb6b14232015-04-02 09:36:02 -07001462 if (len > INT32_MAX) {
1463 // don't accept size_t values which may have come from an
1464 // inadvertent conversion from a negative int.
Yi Kong91635562018-06-07 14:38:36 -07001465 return nullptr;
Nick Kralevichb6b14232015-04-02 09:36:02 -07001466 }
1467
1468 if ((mDataPos+pad_size(len)) >= mDataPos && (mDataPos+pad_size(len)) <= mDataSize
1469 && len <= pad_size(len)) {
Michael Wachenschwanzc5176812017-11-17 18:25:05 -08001470 if (mObjectsSize > 0) {
1471 status_t err = validateReadData(mDataPos + pad_size(len));
Michael Wachenschwanza17f0222018-04-17 16:52:40 -07001472 if(err != NO_ERROR) {
1473 // Still increment the data position by the expected length
1474 mDataPos += pad_size(len);
1475 ALOGV("readInplace Setting data pos of %p to %zu", this, mDataPos);
Yi Kong91635562018-06-07 14:38:36 -07001476 return nullptr;
Michael Wachenschwanza17f0222018-04-17 16:52:40 -07001477 }
Michael Wachenschwanzc5176812017-11-17 18:25:05 -08001478 }
1479
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001480 const void* data = mData+mDataPos;
Nick Kralevichb6b14232015-04-02 09:36:02 -07001481 mDataPos += pad_size(len);
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07001482 ALOGV("readInplace Setting data pos of %p to %zu", this, mDataPos);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001483 return data;
1484 }
Yi Kong91635562018-06-07 14:38:36 -07001485 return nullptr;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001486}
1487
Steven Morelandd4f73fb2021-05-14 19:50:52 +00001488status_t Parcel::readOutVectorSizeWithCheck(size_t elmSize, int32_t* size) const {
1489 if (status_t status = readInt32(size); status != OK) return status;
1490 if (*size < 0) return OK; // may be null, client to handle
1491
1492 LOG_ALWAYS_FATAL_IF(elmSize > INT32_MAX, "Cannot have element as big as %zu", elmSize);
1493
1494 // approximation, can't know max element size (e.g. if it makes heap
1495 // allocations)
1496 static_assert(sizeof(int) == sizeof(int32_t), "Android is LP64");
1497 int32_t allocationSize;
1498 if (__builtin_smul_overflow(elmSize, *size, &allocationSize)) return NO_MEMORY;
1499
1500 // High limit of 1MB since something this big could never be returned. Could
1501 // probably scope this down, but might impact very specific usecases.
1502 constexpr int32_t kMaxAllocationSize = 1 * 1000 * 1000;
1503
1504 if (allocationSize >= kMaxAllocationSize) {
1505 return NO_MEMORY;
1506 }
1507
1508 return OK;
1509}
1510
Andreas Huber84a6d042009-08-17 13:33:27 -07001511template<class T>
1512status_t Parcel::readAligned(T *pArg) const {
Elliott Hughes42a9b942020-08-17 15:53:31 -07001513 static_assert(PAD_SIZE_UNSAFE(sizeof(T)) == sizeof(T));
Andreas Huber84a6d042009-08-17 13:33:27 -07001514
1515 if ((mDataPos+sizeof(T)) <= mDataSize) {
Michael Wachenschwanzc5176812017-11-17 18:25:05 -08001516 if (mObjectsSize > 0) {
1517 status_t err = validateReadData(mDataPos + sizeof(T));
Michael Wachenschwanza17f0222018-04-17 16:52:40 -07001518 if(err != NO_ERROR) {
1519 // Still increment the data position by the expected length
1520 mDataPos += sizeof(T);
1521 return err;
1522 }
Michael Wachenschwanzc5176812017-11-17 18:25:05 -08001523 }
1524
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001525 const void* data = mData+mDataPos;
Andreas Huber84a6d042009-08-17 13:33:27 -07001526 mDataPos += sizeof(T);
1527 *pArg = *reinterpret_cast<const T*>(data);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001528 return NO_ERROR;
1529 } else {
1530 return NOT_ENOUGH_DATA;
1531 }
1532}
1533
Andreas Huber84a6d042009-08-17 13:33:27 -07001534template<class T>
1535T Parcel::readAligned() const {
1536 T result;
1537 if (readAligned(&result) != NO_ERROR) {
1538 result = 0;
1539 }
1540
1541 return result;
1542}
1543
1544template<class T>
1545status_t Parcel::writeAligned(T val) {
Elliott Hughes42a9b942020-08-17 15:53:31 -07001546 static_assert(PAD_SIZE_UNSAFE(sizeof(T)) == sizeof(T));
Andreas Huber84a6d042009-08-17 13:33:27 -07001547
1548 if ((mDataPos+sizeof(val)) <= mDataCapacity) {
1549restart_write:
1550 *reinterpret_cast<T*>(mData+mDataPos) = val;
1551 return finishWrite(sizeof(val));
1552 }
1553
1554 status_t err = growData(sizeof(val));
1555 if (err == NO_ERROR) goto restart_write;
1556 return err;
1557}
1558
1559status_t Parcel::readInt32(int32_t *pArg) const
1560{
1561 return readAligned(pArg);
1562}
1563
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001564int32_t Parcel::readInt32() const
1565{
Andreas Huber84a6d042009-08-17 13:33:27 -07001566 return readAligned<int32_t>();
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001567}
1568
Dan Stoza41a0f2f2014-12-01 10:01:10 -08001569status_t Parcel::readUint32(uint32_t *pArg) const
1570{
1571 return readAligned(pArg);
1572}
1573
1574uint32_t Parcel::readUint32() const
1575{
1576 return readAligned<uint32_t>();
1577}
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001578
1579status_t Parcel::readInt64(int64_t *pArg) const
1580{
Andreas Huber84a6d042009-08-17 13:33:27 -07001581 return readAligned(pArg);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001582}
1583
1584
1585int64_t Parcel::readInt64() const
1586{
Andreas Huber84a6d042009-08-17 13:33:27 -07001587 return readAligned<int64_t>();
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001588}
1589
Ronghua Wu2d13afd2015-03-16 11:11:07 -07001590status_t Parcel::readUint64(uint64_t *pArg) const
1591{
1592 return readAligned(pArg);
1593}
1594
1595uint64_t Parcel::readUint64() const
1596{
1597 return readAligned<uint64_t>();
1598}
1599
Serban Constantinescuf683e012013-11-05 16:53:55 +00001600status_t Parcel::readPointer(uintptr_t *pArg) const
1601{
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08001602 status_t ret;
1603 binder_uintptr_t ptr;
1604 ret = readAligned(&ptr);
1605 if (!ret)
1606 *pArg = ptr;
1607 return ret;
Serban Constantinescuf683e012013-11-05 16:53:55 +00001608}
1609
1610uintptr_t Parcel::readPointer() const
1611{
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08001612 return readAligned<binder_uintptr_t>();
Serban Constantinescuf683e012013-11-05 16:53:55 +00001613}
1614
1615
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001616status_t Parcel::readFloat(float *pArg) const
1617{
Andreas Huber84a6d042009-08-17 13:33:27 -07001618 return readAligned(pArg);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001619}
1620
1621
1622float Parcel::readFloat() const
1623{
Andreas Huber84a6d042009-08-17 13:33:27 -07001624 return readAligned<float>();
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001625}
1626
Douglas Leungcc1a4bb2013-01-11 15:00:55 -08001627#if defined(__mips__) && defined(__mips_hard_float)
1628
1629status_t Parcel::readDouble(double *pArg) const
1630{
1631 union {
1632 double d;
1633 unsigned long long ll;
1634 } u;
Narayan Kamath2c68d382014-06-04 15:04:29 +01001635 u.d = 0;
Douglas Leungcc1a4bb2013-01-11 15:00:55 -08001636 status_t status;
1637 status = readAligned(&u.ll);
1638 *pArg = u.d;
1639 return status;
1640}
1641
1642double Parcel::readDouble() const
1643{
1644 union {
1645 double d;
1646 unsigned long long ll;
1647 } u;
1648 u.ll = readAligned<unsigned long long>();
1649 return u.d;
1650}
1651
1652#else
1653
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001654status_t Parcel::readDouble(double *pArg) const
1655{
Andreas Huber84a6d042009-08-17 13:33:27 -07001656 return readAligned(pArg);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001657}
1658
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001659double Parcel::readDouble() const
1660{
Andreas Huber84a6d042009-08-17 13:33:27 -07001661 return readAligned<double>();
1662}
1663
Douglas Leungcc1a4bb2013-01-11 15:00:55 -08001664#endif
1665
Casey Dahlind6848f52015-10-15 15:44:59 -07001666status_t Parcel::readBool(bool *pArg) const
1667{
Manoj Gupta6eb62052017-07-12 10:29:15 -07001668 int32_t tmp = 0;
Casey Dahlind6848f52015-10-15 15:44:59 -07001669 status_t ret = readInt32(&tmp);
1670 *pArg = (tmp != 0);
1671 return ret;
1672}
1673
1674bool Parcel::readBool() const
1675{
1676 return readInt32() != 0;
1677}
1678
1679status_t Parcel::readChar(char16_t *pArg) const
1680{
Manoj Gupta6eb62052017-07-12 10:29:15 -07001681 int32_t tmp = 0;
Casey Dahlind6848f52015-10-15 15:44:59 -07001682 status_t ret = readInt32(&tmp);
1683 *pArg = char16_t(tmp);
1684 return ret;
1685}
1686
1687char16_t Parcel::readChar() const
1688{
1689 return char16_t(readInt32());
1690}
1691
1692status_t Parcel::readByte(int8_t *pArg) const
1693{
Manoj Gupta6eb62052017-07-12 10:29:15 -07001694 int32_t tmp = 0;
Casey Dahlind6848f52015-10-15 15:44:59 -07001695 status_t ret = readInt32(&tmp);
1696 *pArg = int8_t(tmp);
1697 return ret;
1698}
1699
1700int8_t Parcel::readByte() const
1701{
1702 return int8_t(readInt32());
1703}
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001704
Christopher Wiley9a5e32f2016-01-28 16:56:53 -08001705status_t Parcel::readUtf8FromUtf16(std::string* str) const {
1706 size_t utf16Size = 0;
1707 const char16_t* src = readString16Inplace(&utf16Size);
1708 if (!src) {
1709 return UNEXPECTED_NULL;
1710 }
1711
1712 // Save ourselves the trouble, we're done.
1713 if (utf16Size == 0u) {
1714 str->clear();
1715 return NO_ERROR;
1716 }
1717
Sergio Giro9b39ebe2016-06-28 18:19:33 +01001718 // Allow for closing '\0'
1719 ssize_t utf8Size = utf16_to_utf8_length(src, utf16Size) + 1;
1720 if (utf8Size < 1) {
Christopher Wiley9a5e32f2016-01-28 16:56:53 -08001721 return BAD_VALUE;
1722 }
1723 // Note that while it is probably safe to assume string::resize keeps a
Sergio Giro9b39ebe2016-06-28 18:19:33 +01001724 // spare byte around for the trailing null, we still pass the size including the trailing null
Christopher Wiley9a5e32f2016-01-28 16:56:53 -08001725 str->resize(utf8Size);
Sergio Giro9b39ebe2016-06-28 18:19:33 +01001726 utf16_to_utf8(src, utf16Size, &((*str)[0]), utf8Size);
1727 str->resize(utf8Size - 1);
Christopher Wiley9a5e32f2016-01-28 16:56:53 -08001728 return NO_ERROR;
1729}
1730
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001731const char* Parcel::readCString() const
1732{
Steven Morelandd0d4b582019-05-17 13:14:06 -07001733 if (mDataPos < mDataSize) {
1734 const size_t avail = mDataSize-mDataPos;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001735 const char* str = reinterpret_cast<const char*>(mData+mDataPos);
1736 // is the string's trailing NUL within the parcel's valid bounds?
1737 const char* eos = reinterpret_cast<const char*>(memchr(str, 0, avail));
1738 if (eos) {
1739 const size_t len = eos - str;
Nick Kralevichb6b14232015-04-02 09:36:02 -07001740 mDataPos += pad_size(len+1);
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07001741 ALOGV("readCString Setting data pos of %p to %zu", this, mDataPos);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001742 return str;
1743 }
1744 }
Yi Kong91635562018-06-07 14:38:36 -07001745 return nullptr;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001746}
1747
1748String8 Parcel::readString8() const
1749{
Jeff Sharkey2f8bdb52020-04-19 21:41:26 -06001750 size_t len;
1751 const char* str = readString8Inplace(&len);
1752 if (str) return String8(str, len);
1753 ALOGE("Reading a NULL string not supported here.");
1754 return String8();
Roshan Pius87b64d22016-07-18 12:51:02 -07001755}
1756
1757status_t Parcel::readString8(String8* pArg) const
1758{
Jeff Sharkey2f8bdb52020-04-19 21:41:26 -06001759 size_t len;
1760 const char* str = readString8Inplace(&len);
1761 if (str) {
1762 pArg->setTo(str, len);
1763 return 0;
1764 } else {
Roshan Pius87b64d22016-07-18 12:51:02 -07001765 *pArg = String8();
Jeff Sharkey2f8bdb52020-04-19 21:41:26 -06001766 return UNEXPECTED_NULL;
Roshan Pius87b64d22016-07-18 12:51:02 -07001767 }
Jeff Sharkey2f8bdb52020-04-19 21:41:26 -06001768}
1769
1770const char* Parcel::readString8Inplace(size_t* outLen) const
1771{
1772 int32_t size = readInt32();
1773 // watch for potential int overflow from size+1
1774 if (size >= 0 && size < INT32_MAX) {
1775 *outLen = size;
1776 const char* str = (const char*)readInplace(size+1);
Steven Moreland61d0f842020-12-04 21:13:03 +00001777 if (str != nullptr) {
1778 if (str[size] == '\0') {
1779 return str;
1780 }
1781 android_errorWriteLog(0x534e4554, "172655291");
Jeff Sharkey2f8bdb52020-04-19 21:41:26 -06001782 }
Roshan Pius87b64d22016-07-18 12:51:02 -07001783 }
Jeff Sharkey2f8bdb52020-04-19 21:41:26 -06001784 *outLen = 0;
1785 return nullptr;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001786}
1787
1788String16 Parcel::readString16() const
1789{
1790 size_t len;
1791 const char16_t* str = readString16Inplace(&len);
1792 if (str) return String16(str, len);
Steve Blocke6f43dd2012-01-06 19:20:56 +00001793 ALOGE("Reading a NULL string not supported here.");
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001794 return String16();
1795}
1796
Casey Dahlinb9872622015-11-25 15:09:45 -08001797
Casey Dahlin451ff582015-10-19 18:12:18 -07001798status_t Parcel::readString16(String16* pArg) const
1799{
1800 size_t len;
1801 const char16_t* str = readString16Inplace(&len);
1802 if (str) {
Casey Dahlin1515ea12015-10-20 16:26:23 -07001803 pArg->setTo(str, len);
Casey Dahlin451ff582015-10-19 18:12:18 -07001804 return 0;
1805 } else {
1806 *pArg = String16();
Christopher Wiley4db672d2015-11-10 09:44:30 -08001807 return UNEXPECTED_NULL;
Casey Dahlin451ff582015-10-19 18:12:18 -07001808 }
1809}
1810
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001811const char16_t* Parcel::readString16Inplace(size_t* outLen) const
1812{
1813 int32_t size = readInt32();
1814 // watch for potential int overflow from size+1
1815 if (size >= 0 && size < INT32_MAX) {
1816 *outLen = size;
1817 const char16_t* str = (const char16_t*)readInplace((size+1)*sizeof(char16_t));
Steven Moreland61d0f842020-12-04 21:13:03 +00001818 if (str != nullptr) {
1819 if (str[size] == u'\0') {
1820 return str;
1821 }
1822 android_errorWriteLog(0x534e4554, "172655291");
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001823 }
1824 }
1825 *outLen = 0;
Yi Kong91635562018-06-07 14:38:36 -07001826 return nullptr;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001827}
1828
Casey Dahlinf0c13772015-10-27 18:33:56 -07001829status_t Parcel::readStrongBinder(sp<IBinder>* val) const
1830{
Christopher Wiley35d77ca2016-03-08 10:49:51 -08001831 status_t status = readNullableStrongBinder(val);
1832 if (status == OK && !val->get()) {
1833 status = UNEXPECTED_NULL;
1834 }
1835 return status;
1836}
1837
1838status_t Parcel::readNullableStrongBinder(sp<IBinder>* val) const
1839{
Steven Morelanda86a3562019-08-01 23:28:34 +00001840 return unflattenBinder(val);
Casey Dahlinf0c13772015-10-27 18:33:56 -07001841}
1842
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001843sp<IBinder> Parcel::readStrongBinder() const
1844{
1845 sp<IBinder> val;
Christopher Wiley35d77ca2016-03-08 10:49:51 -08001846 // Note that a lot of code in Android reads binders by hand with this
1847 // method, and that code has historically been ok with getting nullptr
1848 // back (while ignoring error codes).
1849 readNullableStrongBinder(&val);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001850 return val;
1851}
1852
Brad Fitzpatrick837a0d02010-07-13 15:33:35 -07001853int32_t Parcel::readExceptionCode() const
1854{
Christopher Wiley09eb7492015-11-09 15:06:15 -08001855 binder::Status status;
1856 status.readFromParcel(*this);
1857 return status.exceptionCode();
Brad Fitzpatrick837a0d02010-07-13 15:33:35 -07001858}
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001859
Mathias Agopiana47f02a2009-05-21 16:29:38 -07001860native_handle* Parcel::readNativeHandle() const
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001861{
1862 int numFds, numInts;
1863 status_t err;
1864 err = readInt32(&numFds);
Yi Kong91635562018-06-07 14:38:36 -07001865 if (err != NO_ERROR) return nullptr;
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001866 err = readInt32(&numInts);
Yi Kong91635562018-06-07 14:38:36 -07001867 if (err != NO_ERROR) return nullptr;
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001868
Mathias Agopiana47f02a2009-05-21 16:29:38 -07001869 native_handle* h = native_handle_create(numFds, numInts);
Adam Lesinskieaac99a2015-05-12 17:35:48 -07001870 if (!h) {
Yi Kong91635562018-06-07 14:38:36 -07001871 return nullptr;
Adam Lesinskieaac99a2015-05-12 17:35:48 -07001872 }
1873
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001874 for (int i=0 ; err==NO_ERROR && i<numFds ; i++) {
Nick Kralevichec9ec7d2016-12-17 19:47:27 -08001875 h->data[i] = fcntl(readFileDescriptor(), F_DUPFD_CLOEXEC, 0);
Marco Nelissen1de79662016-04-26 08:44:09 -07001876 if (h->data[i] < 0) {
1877 for (int j = 0; j < i; j++) {
1878 close(h->data[j]);
1879 }
1880 native_handle_delete(h);
Yi Kong91635562018-06-07 14:38:36 -07001881 return nullptr;
Marco Nelissen1de79662016-04-26 08:44:09 -07001882 }
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001883 }
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001884 err = read(h->data + numFds, sizeof(int)*numInts);
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001885 if (err != NO_ERROR) {
Mathias Agopiana47f02a2009-05-21 16:29:38 -07001886 native_handle_close(h);
1887 native_handle_delete(h);
Yi Kong91635562018-06-07 14:38:36 -07001888 h = nullptr;
The Android Open Source Project5f78a482009-01-20 14:03:58 -08001889 }
1890 return h;
1891}
1892
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001893int Parcel::readFileDescriptor() const
1894{
1895 const flat_binder_object* flat = readObject(true);
Casey Dahlin06673e32015-11-23 13:24:23 -08001896
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -07001897 if (flat && flat->hdr.type == BINDER_TYPE_FD) {
Casey Dahlin06673e32015-11-23 13:24:23 -08001898 return flat->handle;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001899 }
Casey Dahlin06673e32015-11-23 13:24:23 -08001900
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07001901 return BAD_TYPE;
1902}
1903
Dianne Hackborn1941a402016-08-29 12:30:43 -07001904int Parcel::readParcelFileDescriptor() const
1905{
1906 int32_t hasComm = readInt32();
1907 int fd = readFileDescriptor();
1908 if (hasComm != 0) {
Steven Morelandb73806a2018-11-12 19:35:47 -08001909 // detach (owned by the binder driver)
1910 int comm = readFileDescriptor();
1911
1912 // warning: this must be kept in sync with:
1913 // frameworks/base/core/java/android/os/ParcelFileDescriptor.java
1914 enum ParcelFileDescriptorStatus {
1915 DETACHED = 2,
1916 };
1917
1918#if BYTE_ORDER == BIG_ENDIAN
1919 const int32_t message = ParcelFileDescriptorStatus::DETACHED;
1920#endif
1921#if BYTE_ORDER == LITTLE_ENDIAN
1922 const int32_t message = __builtin_bswap32(ParcelFileDescriptorStatus::DETACHED);
1923#endif
1924
1925 ssize_t written = TEMP_FAILURE_RETRY(
1926 ::write(comm, &message, sizeof(message)));
1927
Krzysztof Kosińskia8406892021-02-02 17:59:43 -08001928 if (written != sizeof(message)) {
Steven Morelandb73806a2018-11-12 19:35:47 -08001929 ALOGW("Failed to detach ParcelFileDescriptor written: %zd err: %s",
1930 written, strerror(errno));
1931 return BAD_TYPE;
1932 }
Dianne Hackborn1941a402016-08-29 12:30:43 -07001933 }
1934 return fd;
1935}
1936
Christopher Wiley2cf19952016-04-11 11:09:37 -07001937status_t Parcel::readUniqueFileDescriptor(base::unique_fd* val) const
Casey Dahlin06673e32015-11-23 13:24:23 -08001938{
1939 int got = readFileDescriptor();
1940
1941 if (got == BAD_TYPE) {
1942 return BAD_TYPE;
1943 }
1944
Nick Kralevichec9ec7d2016-12-17 19:47:27 -08001945 val->reset(fcntl(got, F_DUPFD_CLOEXEC, 0));
Casey Dahlin06673e32015-11-23 13:24:23 -08001946
1947 if (val->get() < 0) {
1948 return BAD_VALUE;
1949 }
1950
1951 return OK;
1952}
1953
Ryo Hashimotobf551892018-05-31 16:58:35 +09001954status_t Parcel::readUniqueParcelFileDescriptor(base::unique_fd* val) const
1955{
1956 int got = readParcelFileDescriptor();
1957
1958 if (got == BAD_TYPE) {
1959 return BAD_TYPE;
1960 }
1961
1962 val->reset(fcntl(got, F_DUPFD_CLOEXEC, 0));
1963
1964 if (val->get() < 0) {
1965 return BAD_VALUE;
1966 }
1967
1968 return OK;
1969}
Casey Dahlin06673e32015-11-23 13:24:23 -08001970
Jeff Brown5707dbf2011-09-23 21:17:56 -07001971status_t Parcel::readBlob(size_t len, ReadableBlob* outBlob) const
1972{
Jeff Brown13b16042014-11-11 16:44:25 -08001973 int32_t blobType;
1974 status_t status = readInt32(&blobType);
Jeff Brown5707dbf2011-09-23 21:17:56 -07001975 if (status) return status;
1976
Jeff Brown13b16042014-11-11 16:44:25 -08001977 if (blobType == BLOB_INPLACE) {
Steve Block6807e592011-10-20 11:56:00 +01001978 ALOGV("readBlob: read in place");
Jeff Brown5707dbf2011-09-23 21:17:56 -07001979 const void* ptr = readInplace(len);
1980 if (!ptr) return BAD_VALUE;
1981
Jeff Brown13b16042014-11-11 16:44:25 -08001982 outBlob->init(-1, const_cast<void*>(ptr), len, false);
Jeff Brown5707dbf2011-09-23 21:17:56 -07001983 return NO_ERROR;
1984 }
1985
Steve Block6807e592011-10-20 11:56:00 +01001986 ALOGV("readBlob: read from ashmem");
Jeff Brown13b16042014-11-11 16:44:25 -08001987 bool isMutable = (blobType == BLOB_ASHMEM_MUTABLE);
Jeff Brown5707dbf2011-09-23 21:17:56 -07001988 int fd = readFileDescriptor();
1989 if (fd == int(BAD_TYPE)) return BAD_VALUE;
1990
Jorim Jaggi150b4ef2018-07-13 11:18:30 +00001991 if (!ashmem_valid(fd)) {
1992 ALOGE("invalid fd");
1993 return BAD_VALUE;
1994 }
Marco Nelissen7a96ec42018-06-06 07:37:46 -07001995 int size = ashmem_get_size_region(fd);
1996 if (size < 0 || size_t(size) < len) {
Jorim Jaggi150b4ef2018-07-13 11:18:30 +00001997 ALOGE("request size %zu does not match fd size %d", len, size);
Marco Nelissen7a96ec42018-06-06 07:37:46 -07001998 return BAD_VALUE;
1999 }
Yi Kong91635562018-06-07 14:38:36 -07002000 void* ptr = ::mmap(nullptr, len, isMutable ? PROT_READ | PROT_WRITE : PROT_READ,
Jeff Brown13b16042014-11-11 16:44:25 -08002001 MAP_SHARED, fd, 0);
Narayan Kamath9ea09752014-10-08 17:35:45 +01002002 if (ptr == MAP_FAILED) return NO_MEMORY;
Jeff Brown5707dbf2011-09-23 21:17:56 -07002003
Jeff Brown13b16042014-11-11 16:44:25 -08002004 outBlob->init(fd, ptr, len, isMutable);
Jeff Brown5707dbf2011-09-23 21:17:56 -07002005 return NO_ERROR;
2006}
2007
Mathias Agopiane1424282013-07-29 21:24:40 -07002008status_t Parcel::read(FlattenableHelperInterface& val) const
Mathias Agopian98e71dd2010-02-11 17:30:52 -08002009{
2010 // size
2011 const size_t len = this->readInt32();
2012 const size_t fd_count = this->readInt32();
2013
Christopher Tatee4e0ae82016-03-24 16:03:44 -07002014 if ((len > INT32_MAX) || (fd_count >= gMaxFds)) {
Nick Kralevichb6b14232015-04-02 09:36:02 -07002015 // don't accept size_t values which may have come from an
2016 // inadvertent conversion from a negative int.
2017 return BAD_VALUE;
2018 }
2019
Mathias Agopian98e71dd2010-02-11 17:30:52 -08002020 // payload
Nick Kralevichb6b14232015-04-02 09:36:02 -07002021 void const* const buf = this->readInplace(pad_size(len));
Yi Kong91635562018-06-07 14:38:36 -07002022 if (buf == nullptr)
Mathias Agopian98e71dd2010-02-11 17:30:52 -08002023 return BAD_VALUE;
2024
Yi Kong91635562018-06-07 14:38:36 -07002025 int* fds = nullptr;
Mathias Agopian98e71dd2010-02-11 17:30:52 -08002026 if (fd_count) {
Christopher Tatee4e0ae82016-03-24 16:03:44 -07002027 fds = new (std::nothrow) int[fd_count];
2028 if (fds == nullptr) {
2029 ALOGE("read: failed to allocate requested %zu fds", fd_count);
2030 return BAD_VALUE;
2031 }
Mathias Agopian98e71dd2010-02-11 17:30:52 -08002032 }
2033
2034 status_t err = NO_ERROR;
2035 for (size_t i=0 ; i<fd_count && err==NO_ERROR ; i++) {
Fabien Sanglardd84ff312016-10-21 10:58:26 -07002036 int fd = this->readFileDescriptor();
Nick Kralevichec9ec7d2016-12-17 19:47:27 -08002037 if (fd < 0 || ((fds[i] = fcntl(fd, F_DUPFD_CLOEXEC, 0)) < 0)) {
Jun Jiangabf8a2c2014-04-29 14:22:10 +08002038 err = BAD_VALUE;
Nick Kralevichec9ec7d2016-12-17 19:47:27 -08002039 ALOGE("fcntl(F_DUPFD_CLOEXEC) failed in Parcel::read, i is %zu, fds[i] is %d, fd_count is %zu, error: %s",
Fabien Sanglardd84ff312016-10-21 10:58:26 -07002040 i, fds[i], fd_count, strerror(fd < 0 ? -fd : errno));
2041 // Close all the file descriptors that were dup-ed.
2042 for (size_t j=0; j<i ;j++) {
2043 close(fds[j]);
2044 }
Jun Jiangabf8a2c2014-04-29 14:22:10 +08002045 }
Mathias Agopian98e71dd2010-02-11 17:30:52 -08002046 }
2047
2048 if (err == NO_ERROR) {
2049 err = val.unflatten(buf, len, fds, fd_count);
2050 }
2051
2052 if (fd_count) {
2053 delete [] fds;
2054 }
2055
2056 return err;
2057}
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002058const flat_binder_object* Parcel::readObject(bool nullMetaData) const
2059{
2060 const size_t DPOS = mDataPos;
2061 if ((DPOS+sizeof(flat_binder_object)) <= mDataSize) {
2062 const flat_binder_object* obj
2063 = reinterpret_cast<const flat_binder_object*>(mData+DPOS);
2064 mDataPos = DPOS + sizeof(flat_binder_object);
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08002065 if (!nullMetaData && (obj->cookie == 0 && obj->binder == 0)) {
The Android Open Source Project5f78a482009-01-20 14:03:58 -08002066 // When transferring a NULL object, we don't write it into
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002067 // the object list, so we don't want to check for it when
2068 // reading.
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002069 ALOGV("readObject Setting data pos of %p to %zu", this, mDataPos);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002070 return obj;
2071 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002072
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002073 // Ensure that this object is valid...
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08002074 binder_size_t* const OBJS = mObjects;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002075 const size_t N = mObjectsSize;
2076 size_t opos = mNextObjectHint;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002077
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002078 if (N > 0) {
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002079 ALOGV("Parcel %p looking for obj at %zu, hint=%zu",
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002080 this, DPOS, opos);
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002081
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002082 // Start at the current hint position, looking for an object at
2083 // the current data position.
2084 if (opos < N) {
2085 while (opos < (N-1) && OBJS[opos] < DPOS) {
2086 opos++;
2087 }
2088 } else {
2089 opos = N-1;
2090 }
2091 if (OBJS[opos] == DPOS) {
2092 // Found it!
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002093 ALOGV("Parcel %p found obj %zu at index %zu with forward search",
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002094 this, DPOS, opos);
2095 mNextObjectHint = opos+1;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002096 ALOGV("readObject Setting data pos of %p to %zu", this, mDataPos);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002097 return obj;
2098 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002099
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002100 // Look backwards for it...
2101 while (opos > 0 && OBJS[opos] > DPOS) {
2102 opos--;
2103 }
2104 if (OBJS[opos] == DPOS) {
2105 // Found it!
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002106 ALOGV("Parcel %p found obj %zu at index %zu with backward search",
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002107 this, DPOS, opos);
2108 mNextObjectHint = opos+1;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002109 ALOGV("readObject Setting data pos of %p to %zu", this, mDataPos);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002110 return obj;
2111 }
2112 }
Colin Cross6f4f3ab2014-02-05 17:42:44 -08002113 ALOGW("Attempt to read object from Parcel %p at offset %zu that is not in the object list",
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002114 this, DPOS);
2115 }
Yi Kong91635562018-06-07 14:38:36 -07002116 return nullptr;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002117}
2118
2119void Parcel::closeFileDescriptors()
2120{
2121 size_t i = mObjectsSize;
2122 if (i > 0) {
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002123 //ALOGI("Closing file descriptors for %zu objects...", i);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002124 }
2125 while (i > 0) {
2126 i--;
2127 const flat_binder_object* flat
2128 = reinterpret_cast<flat_binder_object*>(mData+mObjects[i]);
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -07002129 if (flat->hdr.type == BINDER_TYPE_FD) {
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002130 //ALOGI("Closing fd: %ld", flat->handle);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002131 close(flat->handle);
2132 }
2133 }
2134}
2135
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08002136uintptr_t Parcel::ipcData() const
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002137{
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08002138 return reinterpret_cast<uintptr_t>(mData);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002139}
2140
2141size_t Parcel::ipcDataSize() const
2142{
2143 return (mDataSize > mDataPos ? mDataSize : mDataPos);
2144}
2145
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08002146uintptr_t Parcel::ipcObjects() const
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002147{
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08002148 return reinterpret_cast<uintptr_t>(mObjects);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002149}
2150
2151size_t Parcel::ipcObjectsCount() const
2152{
2153 return mObjectsSize;
2154}
2155
2156void Parcel::ipcSetDataReference(const uint8_t* data, size_t dataSize,
Steven Moreland161fe122020-11-12 23:16:47 +00002157 const binder_size_t* objects, size_t objectsCount, release_func relFunc)
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002158{
Steven Moreland438cce82021-04-02 18:04:08 +00002159 // this code uses 'mOwner == nullptr' to understand whether it owns memory
2160 LOG_ALWAYS_FATAL_IF(relFunc == nullptr, "must provide cleanup function");
2161
Steven Morelandceed9bb2020-12-17 01:01:06 +00002162 freeData();
2163
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002164 mData = const_cast<uint8_t*>(data);
2165 mDataSize = mDataCapacity = dataSize;
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08002166 mObjects = const_cast<binder_size_t*>(objects);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002167 mObjectsSize = mObjectsCapacity = objectsCount;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002168 mOwner = relFunc;
Steven Morelandceed9bb2020-12-17 01:01:06 +00002169
2170 binder_size_t minOffset = 0;
Arve Hjønnevågf50b9ea2014-02-13 19:22:08 -08002171 for (size_t i = 0; i < mObjectsSize; i++) {
Arve Hjønnevåg6f286112014-02-19 20:42:13 -08002172 binder_size_t offset = mObjects[i];
Arve Hjønnevågf50b9ea2014-02-13 19:22:08 -08002173 if (offset < minOffset) {
Dan Albert3bdc5b82014-11-20 11:50:23 -08002174 ALOGE("%s: bad object offset %" PRIu64 " < %" PRIu64 "\n",
Arve Hjønnevåg6f286112014-02-19 20:42:13 -08002175 __func__, (uint64_t)offset, (uint64_t)minOffset);
Arve Hjønnevågf50b9ea2014-02-13 19:22:08 -08002176 mObjectsSize = 0;
2177 break;
2178 }
Martijn Coenen82c75312019-07-24 15:18:30 +02002179 const flat_binder_object* flat
2180 = reinterpret_cast<const flat_binder_object*>(mData + offset);
2181 uint32_t type = flat->hdr.type;
2182 if (!(type == BINDER_TYPE_BINDER || type == BINDER_TYPE_HANDLE ||
2183 type == BINDER_TYPE_FD)) {
2184 // We should never receive other types (eg BINDER_TYPE_FDA) as long as we don't support
2185 // them in libbinder. If we do receive them, it probably means a kernel bug; try to
2186 // recover gracefully by clearing out the objects, and releasing the objects we do
2187 // know about.
2188 android_errorWriteLog(0x534e4554, "135930648");
2189 ALOGE("%s: unsupported type object (%" PRIu32 ") at offset %" PRIu64 "\n",
2190 __func__, type, (uint64_t)offset);
2191 releaseObjects();
2192 mObjectsSize = 0;
2193 break;
2194 }
Arve Hjønnevågf50b9ea2014-02-13 19:22:08 -08002195 minOffset = offset + sizeof(flat_binder_object);
2196 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002197 scanForFds();
2198}
2199
Colin Cross6f4f3ab2014-02-05 17:42:44 -08002200void Parcel::print(TextOutput& to, uint32_t /*flags*/) const
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002201{
2202 to << "Parcel(";
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002203
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002204 if (errorCheck() != NO_ERROR) {
2205 const status_t err = errorCheck();
Colin Cross6f4f3ab2014-02-05 17:42:44 -08002206 to << "Error: " << (void*)(intptr_t)err << " \"" << strerror(-err) << "\"";
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002207 } else if (dataSize() > 0) {
2208 const uint8_t* DATA = data();
2209 to << indent << HexDump(DATA, dataSize()) << dedent;
Steven Moreland8bd01352019-07-15 16:36:14 -07002210 const binder_size_t* OBJS = mObjects;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002211 const size_t N = objectsCount();
2212 for (size_t i=0; i<N; i++) {
2213 const flat_binder_object* flat
2214 = reinterpret_cast<const flat_binder_object*>(DATA+OBJS[i]);
2215 to << endl << "Object #" << i << " @ " << (void*)OBJS[i] << ": "
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -07002216 << TypeCode(flat->hdr.type & 0x7f7f7f00)
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002217 << " = " << flat->binder;
2218 }
2219 } else {
2220 to << "NULL";
2221 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002222
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002223 to << ")";
2224}
2225
2226void Parcel::releaseObjects()
2227{
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002228 size_t i = mObjectsSize;
Martijn Coenen69390d42018-10-22 15:18:10 +02002229 if (i == 0) {
2230 return;
2231 }
2232 sp<ProcessState> proc(ProcessState::self());
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002233 uint8_t* const data = mData;
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08002234 binder_size_t* const objects = mObjects;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002235 while (i > 0) {
2236 i--;
2237 const flat_binder_object* flat
2238 = reinterpret_cast<flat_binder_object*>(data+objects[i]);
Steven Morelandc673f1f2021-10-07 18:23:35 -07002239 release_object(proc, *flat, this);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002240 }
2241}
2242
2243void Parcel::acquireObjects()
2244{
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002245 size_t i = mObjectsSize;
Martijn Coenen69390d42018-10-22 15:18:10 +02002246 if (i == 0) {
2247 return;
2248 }
2249 const sp<ProcessState> proc(ProcessState::self());
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002250 uint8_t* const data = mData;
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08002251 binder_size_t* const objects = mObjects;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002252 while (i > 0) {
2253 i--;
2254 const flat_binder_object* flat
2255 = reinterpret_cast<flat_binder_object*>(data+objects[i]);
Steven Morelandc673f1f2021-10-07 18:23:35 -07002256 acquire_object(proc, *flat, this);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002257 }
2258}
2259
2260void Parcel::freeData()
2261{
2262 freeDataNoInit();
2263 initState();
2264}
2265
2266void Parcel::freeDataNoInit()
2267{
2268 if (mOwner) {
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002269 LOG_ALLOC("Parcel %p: freeing other owner data", this);
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002270 //ALOGI("Freeing data ref of %p (pid=%d)", this, getpid());
Steven Moreland161fe122020-11-12 23:16:47 +00002271 mOwner(this, mData, mDataSize, mObjects, mObjectsSize);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002272 } else {
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002273 LOG_ALLOC("Parcel %p: freeing allocated data", this);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002274 releaseObjects();
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002275 if (mData) {
2276 LOG_ALLOC("Parcel %p: freeing with %zu capacity", this, mDataCapacity);
Jeff Sharkey8994c182020-09-11 12:07:10 -06002277 gParcelGlobalAllocSize -= mDataCapacity;
2278 gParcelGlobalAllocCount--;
Steven Morelandf183fdd2020-10-27 00:12:12 +00002279 if (mDeallocZero) {
2280 zeroMemory(mData, mDataSize);
2281 }
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002282 free(mData);
2283 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002284 if (mObjects) free(mObjects);
2285 }
2286}
2287
2288status_t Parcel::growData(size_t len)
2289{
Nick Kralevichb6b14232015-04-02 09:36:02 -07002290 if (len > INT32_MAX) {
2291 // don't accept size_t values which may have come from an
2292 // inadvertent conversion from a negative int.
2293 return BAD_VALUE;
2294 }
2295
Martijn Coenen93fe5182020-01-22 10:46:25 +01002296 if (len > SIZE_MAX - mDataSize) return NO_MEMORY; // overflow
2297 if (mDataSize + len > SIZE_MAX / 3) return NO_MEMORY; // overflow
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002298 size_t newSize = ((mDataSize+len)*3)/2;
2299 return (newSize <= mDataSize)
2300 ? (status_t) NO_MEMORY
Steven Moreland042ae822020-05-27 17:45:17 +00002301 : continueWrite(std::max(newSize, (size_t) 128));
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002302}
2303
Steven Morelandf183fdd2020-10-27 00:12:12 +00002304static uint8_t* reallocZeroFree(uint8_t* data, size_t oldCapacity, size_t newCapacity, bool zero) {
2305 if (!zero) {
2306 return (uint8_t*)realloc(data, newCapacity);
2307 }
2308 uint8_t* newData = (uint8_t*)malloc(newCapacity);
2309 if (!newData) {
2310 return nullptr;
2311 }
2312
2313 memcpy(newData, data, std::min(oldCapacity, newCapacity));
2314 zeroMemory(data, oldCapacity);
2315 free(data);
2316 return newData;
2317}
2318
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002319status_t Parcel::restartWrite(size_t desired)
2320{
Nick Kralevichb6b14232015-04-02 09:36:02 -07002321 if (desired > INT32_MAX) {
2322 // don't accept size_t values which may have come from an
2323 // inadvertent conversion from a negative int.
2324 return BAD_VALUE;
2325 }
2326
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002327 if (mOwner) {
2328 freeData();
2329 return continueWrite(desired);
2330 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002331
Steven Morelandf183fdd2020-10-27 00:12:12 +00002332 uint8_t* data = reallocZeroFree(mData, mDataCapacity, desired, mDeallocZero);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002333 if (!data && desired > mDataCapacity) {
2334 mError = NO_MEMORY;
2335 return NO_MEMORY;
2336 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002337
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002338 releaseObjects();
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002339
Devin Moore4a0a55e2020-06-04 13:23:10 -07002340 if (data || desired == 0) {
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002341 LOG_ALLOC("Parcel %p: restart from %zu to %zu capacity", this, mDataCapacity, desired);
Jeff Sharkey8994c182020-09-11 12:07:10 -06002342 if (mDataCapacity > desired) {
2343 gParcelGlobalAllocSize -= (mDataCapacity - desired);
2344 } else {
2345 gParcelGlobalAllocSize += (desired - mDataCapacity);
2346 }
2347
Colin Cross83ec65e2015-12-08 17:15:50 -08002348 if (!mData) {
2349 gParcelGlobalAllocCount++;
2350 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002351 mData = data;
2352 mDataCapacity = desired;
2353 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002354
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002355 mDataSize = mDataPos = 0;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002356 ALOGV("restartWrite Setting data size of %p to %zu", this, mDataSize);
2357 ALOGV("restartWrite Setting data pos of %p to %zu", this, mDataPos);
2358
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002359 free(mObjects);
Yi Kong91635562018-06-07 14:38:36 -07002360 mObjects = nullptr;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002361 mObjectsSize = mObjectsCapacity = 0;
2362 mNextObjectHint = 0;
Michael Wachenschwanzc5176812017-11-17 18:25:05 -08002363 mObjectsSorted = false;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002364 mHasFds = false;
2365 mFdsKnown = true;
Dianne Hackborn8938ed22011-09-28 23:19:47 -04002366 mAllowFds = true;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002367
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002368 return NO_ERROR;
2369}
2370
2371status_t Parcel::continueWrite(size_t desired)
2372{
Nick Kralevichb6b14232015-04-02 09:36:02 -07002373 if (desired > INT32_MAX) {
2374 // don't accept size_t values which may have come from an
2375 // inadvertent conversion from a negative int.
2376 return BAD_VALUE;
2377 }
2378
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002379 // If shrinking, first adjust for any objects that appear
2380 // after the new data size.
2381 size_t objectsSize = mObjectsSize;
2382 if (desired < mDataSize) {
2383 if (desired == 0) {
2384 objectsSize = 0;
2385 } else {
2386 while (objectsSize > 0) {
Michael Wachenschwanza6541632017-05-18 22:08:32 +00002387 if (mObjects[objectsSize-1] < desired)
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002388 break;
2389 objectsSize--;
2390 }
2391 }
2392 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002393
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002394 if (mOwner) {
2395 // If the size is going to zero, just release the owner's data.
2396 if (desired == 0) {
2397 freeData();
2398 return NO_ERROR;
2399 }
2400
2401 // If there is a different owner, we need to take
2402 // posession.
2403 uint8_t* data = (uint8_t*)malloc(desired);
2404 if (!data) {
2405 mError = NO_MEMORY;
2406 return NO_MEMORY;
2407 }
Yi Kong91635562018-06-07 14:38:36 -07002408 binder_size_t* objects = nullptr;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002409
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002410 if (objectsSize) {
Nick Kraleviche9881a32015-04-28 16:21:30 -07002411 objects = (binder_size_t*)calloc(objectsSize, sizeof(binder_size_t));
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002412 if (!objects) {
Hyejin Kim3f727c02013-03-09 11:28:54 +09002413 free(data);
2414
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002415 mError = NO_MEMORY;
2416 return NO_MEMORY;
2417 }
2418
2419 // Little hack to only acquire references on objects
2420 // we will be keeping.
2421 size_t oldObjectsSize = mObjectsSize;
2422 mObjectsSize = objectsSize;
2423 acquireObjects();
2424 mObjectsSize = oldObjectsSize;
2425 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002426
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002427 if (mData) {
2428 memcpy(data, mData, mDataSize < desired ? mDataSize : desired);
2429 }
2430 if (objects && mObjects) {
Arve Hjønnevåg84e625a2014-01-28 20:12:59 -08002431 memcpy(objects, mObjects, objectsSize*sizeof(binder_size_t));
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002432 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002433 //ALOGI("Freeing data ref of %p (pid=%d)", this, getpid());
Steven Moreland161fe122020-11-12 23:16:47 +00002434 mOwner(this, mData, mDataSize, mObjects, mObjectsSize);
Yi Kong91635562018-06-07 14:38:36 -07002435 mOwner = nullptr;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002436
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002437 LOG_ALLOC("Parcel %p: taking ownership of %zu capacity", this, desired);
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002438 gParcelGlobalAllocSize += desired;
2439 gParcelGlobalAllocCount++;
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002440
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002441 mData = data;
2442 mObjects = objects;
2443 mDataSize = (mDataSize < desired) ? mDataSize : desired;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002444 ALOGV("continueWrite Setting data size of %p to %zu", this, mDataSize);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002445 mDataCapacity = desired;
2446 mObjectsSize = mObjectsCapacity = objectsSize;
2447 mNextObjectHint = 0;
Michael Wachenschwanzc5176812017-11-17 18:25:05 -08002448 mObjectsSorted = false;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002449
2450 } else if (mData) {
2451 if (objectsSize < mObjectsSize) {
2452 // Need to release refs on any objects we are dropping.
2453 const sp<ProcessState> proc(ProcessState::self());
2454 for (size_t i=objectsSize; i<mObjectsSize; i++) {
2455 const flat_binder_object* flat
2456 = reinterpret_cast<flat_binder_object*>(mData+mObjects[i]);
Christopher Ferrisdbaa22a2017-07-27 10:38:45 -07002457 if (flat->hdr.type == BINDER_TYPE_FD) {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002458 // will need to rescan because we may have lopped off the only FDs
2459 mFdsKnown = false;
2460 }
Steven Morelandc673f1f2021-10-07 18:23:35 -07002461 release_object(proc, *flat, this);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002462 }
Michael Wachenschwanz6af27a82019-06-03 17:24:51 -07002463
2464 if (objectsSize == 0) {
2465 free(mObjects);
2466 mObjects = nullptr;
Michael Wachenschwanzdaf29a62019-10-15 11:49:22 -07002467 mObjectsCapacity = 0;
Michael Wachenschwanz6af27a82019-06-03 17:24:51 -07002468 } else {
2469 binder_size_t* objects =
2470 (binder_size_t*)realloc(mObjects, objectsSize*sizeof(binder_size_t));
2471 if (objects) {
2472 mObjects = objects;
Michael Wachenschwanzdaf29a62019-10-15 11:49:22 -07002473 mObjectsCapacity = objectsSize;
Michael Wachenschwanz6af27a82019-06-03 17:24:51 -07002474 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002475 }
2476 mObjectsSize = objectsSize;
2477 mNextObjectHint = 0;
Michael Wachenschwanzc5176812017-11-17 18:25:05 -08002478 mObjectsSorted = false;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002479 }
2480
2481 // We own the data, so we can just do a realloc().
2482 if (desired > mDataCapacity) {
Steven Morelandf183fdd2020-10-27 00:12:12 +00002483 uint8_t* data = reallocZeroFree(mData, mDataCapacity, desired, mDeallocZero);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002484 if (data) {
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002485 LOG_ALLOC("Parcel %p: continue from %zu to %zu capacity", this, mDataCapacity,
2486 desired);
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002487 gParcelGlobalAllocSize += desired;
2488 gParcelGlobalAllocSize -= mDataCapacity;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002489 mData = data;
2490 mDataCapacity = desired;
Ganesh Mahendranade89892017-09-28 16:56:03 +08002491 } else {
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002492 mError = NO_MEMORY;
2493 return NO_MEMORY;
2494 }
2495 } else {
Dianne Hackborn97e2bcd2011-04-13 18:15:56 -07002496 if (mDataSize > desired) {
2497 mDataSize = desired;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002498 ALOGV("continueWrite Setting data size of %p to %zu", this, mDataSize);
Dianne Hackborn97e2bcd2011-04-13 18:15:56 -07002499 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002500 if (mDataPos > desired) {
2501 mDataPos = desired;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002502 ALOGV("continueWrite Setting data pos of %p to %zu", this, mDataPos);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002503 }
2504 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002505
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002506 } else {
2507 // This is the first data. Easy!
2508 uint8_t* data = (uint8_t*)malloc(desired);
2509 if (!data) {
2510 mError = NO_MEMORY;
2511 return NO_MEMORY;
2512 }
Hyejin Kim3f727c02013-03-09 11:28:54 +09002513
Yi Kong91635562018-06-07 14:38:36 -07002514 if(!(mDataCapacity == 0 && mObjects == nullptr
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002515 && mObjectsCapacity == 0)) {
Colin Cross6f4f3ab2014-02-05 17:42:44 -08002516 ALOGE("continueWrite: %zu/%p/%zu/%zu", mDataCapacity, mObjects, mObjectsCapacity, desired);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002517 }
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002518
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002519 LOG_ALLOC("Parcel %p: allocating with %zu capacity", this, desired);
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002520 gParcelGlobalAllocSize += desired;
2521 gParcelGlobalAllocCount++;
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002522
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002523 mData = data;
2524 mDataSize = mDataPos = 0;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002525 ALOGV("continueWrite Setting data size of %p to %zu", this, mDataSize);
2526 ALOGV("continueWrite Setting data pos of %p to %zu", this, mDataPos);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002527 mDataCapacity = desired;
2528 }
2529
2530 return NO_ERROR;
2531}
2532
2533void Parcel::initState()
2534{
Dianne Hackborn7e790af2014-11-11 12:22:53 -08002535 LOG_ALLOC("Parcel %p: initState", this);
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002536 mError = NO_ERROR;
Yi Kong91635562018-06-07 14:38:36 -07002537 mData = nullptr;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002538 mDataSize = 0;
2539 mDataCapacity = 0;
2540 mDataPos = 0;
Mark Salyzynd4ecccf2014-05-30 16:35:57 -07002541 ALOGV("initState Setting data size of %p to %zu", this, mDataSize);
2542 ALOGV("initState Setting data pos of %p to %zu", this, mDataPos);
Steven Morelandc9939062021-05-05 17:57:41 +00002543 mSession = nullptr;
Yi Kong91635562018-06-07 14:38:36 -07002544 mObjects = nullptr;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002545 mObjectsSize = 0;
2546 mObjectsCapacity = 0;
2547 mNextObjectHint = 0;
Michael Wachenschwanzc5176812017-11-17 18:25:05 -08002548 mObjectsSorted = false;
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002549 mHasFds = false;
2550 mFdsKnown = true;
Steven Moreland6e5a7752019-08-05 20:30:14 -07002551 mAllowFds = true;
Steven Morelandf183fdd2020-10-27 00:12:12 +00002552 mDeallocZero = false;
Yi Kong91635562018-06-07 14:38:36 -07002553 mOwner = nullptr;
Olivier Gaillarddc848a02019-01-30 17:10:44 +00002554 mWorkSourceRequestHeaderPosition = 0;
2555 mRequestHeaderPresent = false;
Christopher Tatee4e0ae82016-03-24 16:03:44 -07002556
2557 // racing multiple init leads only to multiple identical write
2558 if (gMaxFds == 0) {
2559 struct rlimit result;
2560 if (!getrlimit(RLIMIT_NOFILE, &result)) {
2561 gMaxFds = (size_t)result.rlim_cur;
Christopher Tatebf14e942016-03-25 14:16:24 -07002562 //ALOGI("parcel fd limit set to %zu", gMaxFds);
Christopher Tatee4e0ae82016-03-24 16:03:44 -07002563 } else {
2564 ALOGW("Unable to getrlimit: %s", strerror(errno));
2565 gMaxFds = 1024;
2566 }
2567 }
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002568}
2569
2570void Parcel::scanForFds() const
2571{
Bernardo Rufino22092af2021-10-07 14:09:24 +01002572 mHasFds = hasFileDescriptorsInRangeUnchecked(0, dataSize());
The Android Open Source Project7c1b96a2008-10-21 07:00:00 -07002573 mFdsKnown = true;
2574}
2575
Dan Sandleraa5c2342015-04-10 10:08:45 -04002576size_t Parcel::getBlobAshmemSize() const
2577{
Adrian Roos6bb31142015-10-22 16:46:12 -07002578 // This used to return the size of all blobs that were written to ashmem, now we're returning
2579 // the ashmem currently referenced by this Parcel, which should be equivalent.
Steven Morelandc673f1f2021-10-07 18:23:35 -07002580 // TODO(b/202029388): Remove method once ABI can be changed.
2581 return getOpenAshmemSize();
Dan Sandleraa5c2342015-04-10 10:08:45 -04002582}
2583
Adrian Rooscbf37262015-10-22 16:12:53 -07002584size_t Parcel::getOpenAshmemSize() const
2585{
Steven Morelandc673f1f2021-10-07 18:23:35 -07002586 size_t openAshmemSize = 0;
2587 for (size_t i = 0; i < mObjectsSize; i++) {
2588 const flat_binder_object* flat =
2589 reinterpret_cast<const flat_binder_object*>(mData + mObjects[i]);
2590
2591 // cookie is compared against zero for historical reasons
2592 // > obj.cookie = takeOwnership ? 1 : 0;
2593 if (flat->hdr.type == BINDER_TYPE_FD && flat->cookie != 0 && ashmem_valid(flat->handle)) {
2594 int size = ashmem_get_size_region(flat->handle);
2595 if (__builtin_add_overflow(openAshmemSize, size, &openAshmemSize)) {
2596 ALOGE("Overflow when computing ashmem size.");
2597 return SIZE_MAX;
2598 }
2599 }
2600 }
2601 return openAshmemSize;
Jeff Brown5707dbf2011-09-23 21:17:56 -07002602}
2603
2604// --- Parcel::Blob ---
2605
2606Parcel::Blob::Blob() :
Yi Kong91635562018-06-07 14:38:36 -07002607 mFd(-1), mData(nullptr), mSize(0), mMutable(false) {
Jeff Brown5707dbf2011-09-23 21:17:56 -07002608}
2609
2610Parcel::Blob::~Blob() {
2611 release();
2612}
2613
2614void Parcel::Blob::release() {
Jeff Brown13b16042014-11-11 16:44:25 -08002615 if (mFd != -1 && mData) {
Jeff Brown5707dbf2011-09-23 21:17:56 -07002616 ::munmap(mData, mSize);
2617 }
2618 clear();
2619}
2620
Jeff Brown13b16042014-11-11 16:44:25 -08002621void Parcel::Blob::init(int fd, void* data, size_t size, bool isMutable) {
2622 mFd = fd;
Jeff Brown5707dbf2011-09-23 21:17:56 -07002623 mData = data;
2624 mSize = size;
Jeff Brown13b16042014-11-11 16:44:25 -08002625 mMutable = isMutable;
Jeff Brown5707dbf2011-09-23 21:17:56 -07002626}
2627
2628void Parcel::Blob::clear() {
Jeff Brown13b16042014-11-11 16:44:25 -08002629 mFd = -1;
Yi Kong91635562018-06-07 14:38:36 -07002630 mData = nullptr;
Jeff Brown5707dbf2011-09-23 21:17:56 -07002631 mSize = 0;
Jeff Brown13b16042014-11-11 16:44:25 -08002632 mMutable = false;
Jeff Brown5707dbf2011-09-23 21:17:56 -07002633}
2634
Steven Moreland61ff8492019-09-26 16:05:45 -07002635} // namespace android