| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 1 | /* | 
|  | 2 | * Copyright 2016, The Android Open Source Project | 
|  | 3 | * | 
|  | 4 | * Licensed under the Apache License, Version 2.0 (the "License"); | 
|  | 5 | * you may not use this file except in compliance with the License. | 
|  | 6 | * You may obtain a copy of the License at | 
|  | 7 | * | 
|  | 8 | *     http://www.apache.org/licenses/LICENSE-2.0 | 
|  | 9 | * | 
|  | 10 | * Unless required by applicable law or agreed to in writing, software | 
|  | 11 | * distributed under the License is distributed on an "AS IS" BASIS, | 
|  | 12 | * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. | 
|  | 13 | * See the License for the specific language governing permissions and | 
|  | 14 | * limitations under the License. | 
|  | 15 | */ | 
|  | 16 |  | 
|  | 17 | #include <fcntl.h> | 
|  | 18 | #include <stdio.h> | 
|  | 19 | #include <stdlib.h> | 
|  | 20 | #include <sys/stat.h> | 
|  | 21 | #include <sys/types.h> | 
|  | 22 | #include <unistd.h> | 
|  | 23 |  | 
|  | 24 | #include <array> | 
|  | 25 | #include <deque> | 
| Josh Gao | cb68a03 | 2017-06-02 13:02:10 -0700 | [diff] [blame] | 26 | #include <string> | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 27 | #include <unordered_map> | 
| Josh Gao | cb68a03 | 2017-06-02 13:02:10 -0700 | [diff] [blame] | 28 | #include <utility> | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 29 |  | 
|  | 30 | #include <event2/event.h> | 
|  | 31 | #include <event2/listener.h> | 
|  | 32 | #include <event2/thread.h> | 
|  | 33 |  | 
| Josh Gao | 5f87bbd | 2019-01-09 17:01:49 -0800 | [diff] [blame] | 34 | #include <android-base/cmsg.h> | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 35 | #include <android-base/logging.h> | 
| Elliott Hughes | 35bb6d2 | 2017-06-26 13:54:05 -0700 | [diff] [blame] | 36 | #include <android-base/properties.h> | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 37 | #include <android-base/stringprintf.h> | 
|  | 38 | #include <android-base/unique_fd.h> | 
|  | 39 | #include <cutils/sockets.h> | 
|  | 40 |  | 
| Josh Gao | 55f79a5 | 2017-03-06 12:24:07 -0800 | [diff] [blame] | 41 | #include "debuggerd/handler.h" | 
| Narayan Kamath | a73df60 | 2017-05-24 15:07:25 +0100 | [diff] [blame] | 42 | #include "dump_type.h" | 
| Narayan Kamath | 2d377cd | 2017-05-10 10:58:59 +0100 | [diff] [blame] | 43 | #include "protocol.h" | 
|  | 44 | #include "util.h" | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 45 |  | 
|  | 46 | #include "intercept_manager.h" | 
|  | 47 |  | 
| Elliott Hughes | 35bb6d2 | 2017-06-26 13:54:05 -0700 | [diff] [blame] | 48 | using android::base::GetIntProperty; | 
| Josh Gao | 5f87bbd | 2019-01-09 17:01:49 -0800 | [diff] [blame] | 49 | using android::base::SendFileDescriptors; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 50 | using android::base::StringPrintf; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 51 |  | 
|  | 52 | using android::base::borrowed_fd; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 53 | using android::base::unique_fd; | 
|  | 54 |  | 
|  | 55 | static InterceptManager* intercept_manager; | 
|  | 56 |  | 
|  | 57 | enum CrashStatus { | 
|  | 58 | kCrashStatusRunning, | 
|  | 59 | kCrashStatusQueued, | 
|  | 60 | }; | 
|  | 61 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 62 | struct CrashArtifact { | 
|  | 63 | unique_fd fd; | 
|  | 64 | std::optional<std::string> temporary_path; | 
|  | 65 |  | 
|  | 66 | static CrashArtifact devnull() { | 
|  | 67 | CrashArtifact result; | 
|  | 68 | result.fd.reset(open("/dev/null", O_WRONLY | O_CLOEXEC)); | 
|  | 69 | return result; | 
|  | 70 | } | 
|  | 71 | }; | 
|  | 72 |  | 
|  | 73 | struct CrashArtifactPaths { | 
|  | 74 | std::string text; | 
|  | 75 | std::optional<std::string> proto; | 
|  | 76 | }; | 
|  | 77 |  | 
|  | 78 | struct CrashOutput { | 
|  | 79 | CrashArtifact text; | 
|  | 80 | std::optional<CrashArtifact> proto; | 
|  | 81 | }; | 
|  | 82 |  | 
| Elliott Hughes | 35bb6d2 | 2017-06-26 13:54:05 -0700 | [diff] [blame] | 83 | // Ownership of Crash is a bit messy. | 
|  | 84 | // It's either owned by an active event that must have a timeout, or owned by | 
|  | 85 | // queued_requests, in the case that multiple crashes come in at the same time. | 
|  | 86 | struct Crash { | 
|  | 87 | ~Crash() { event_free(crash_event); } | 
|  | 88 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 89 | CrashOutput output; | 
| Josh Gao | 48383c8 | 2018-04-18 18:11:01 -0700 | [diff] [blame] | 90 | unique_fd crash_socket_fd; | 
| Elliott Hughes | 35bb6d2 | 2017-06-26 13:54:05 -0700 | [diff] [blame] | 91 | pid_t crash_pid; | 
|  | 92 | event* crash_event = nullptr; | 
| Elliott Hughes | 35bb6d2 | 2017-06-26 13:54:05 -0700 | [diff] [blame] | 93 |  | 
|  | 94 | DebuggerdDumpType crash_type; | 
|  | 95 | }; | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 96 |  | 
| Narayan Kamath | a73df60 | 2017-05-24 15:07:25 +0100 | [diff] [blame] | 97 | class CrashQueue { | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 98 | public: | 
| Narayan Kamath | a73df60 | 2017-05-24 15:07:25 +0100 | [diff] [blame] | 99 | CrashQueue(const std::string& dir_path, const std::string& file_name_prefix, size_t max_artifacts, | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 100 | size_t max_concurrent_dumps, bool supports_proto) | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 101 | : file_name_prefix_(file_name_prefix), | 
|  | 102 | dir_path_(dir_path), | 
|  | 103 | dir_fd_(open(dir_path.c_str(), O_DIRECTORY | O_RDONLY | O_CLOEXEC)), | 
|  | 104 | max_artifacts_(max_artifacts), | 
|  | 105 | next_artifact_(0), | 
|  | 106 | max_concurrent_dumps_(max_concurrent_dumps), | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 107 | num_concurrent_dumps_(0), | 
|  | 108 | supports_proto_(supports_proto) { | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 109 | if (dir_fd_ == -1) { | 
|  | 110 | PLOG(FATAL) << "failed to open directory: " << dir_path; | 
|  | 111 | } | 
|  | 112 |  | 
|  | 113 | // NOTE: If max_artifacts_ <= max_concurrent_dumps_, then theoretically the | 
|  | 114 | // same filename could be handed out to multiple processes. | 
|  | 115 | CHECK(max_artifacts_ > max_concurrent_dumps_); | 
|  | 116 |  | 
|  | 117 | find_oldest_artifact(); | 
|  | 118 | } | 
|  | 119 |  | 
| Elliott Hughes | 35bb6d2 | 2017-06-26 13:54:05 -0700 | [diff] [blame] | 120 | static CrashQueue* for_crash(const Crash* crash) { | 
|  | 121 | return (crash->crash_type == kDebuggerdJavaBacktrace) ? for_anrs() : for_tombstones(); | 
|  | 122 | } | 
|  | 123 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 124 | static CrashQueue* for_crash(const std::unique_ptr<Crash>& crash) { | 
|  | 125 | return for_crash(crash.get()); | 
|  | 126 | } | 
|  | 127 |  | 
| Elliott Hughes | 35bb6d2 | 2017-06-26 13:54:05 -0700 | [diff] [blame] | 128 | static CrashQueue* for_tombstones() { | 
|  | 129 | static CrashQueue queue("/data/tombstones", "tombstone_" /* file_name_prefix */, | 
| Elliott Hughes | ec220cd | 2019-09-26 14:35:24 -0700 | [diff] [blame] | 130 | GetIntProperty("tombstoned.max_tombstone_count", 32), | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 131 | 1 /* max_concurrent_dumps */, true /* supports_proto */); | 
| Elliott Hughes | 35bb6d2 | 2017-06-26 13:54:05 -0700 | [diff] [blame] | 132 | return &queue; | 
|  | 133 | } | 
|  | 134 |  | 
|  | 135 | static CrashQueue* for_anrs() { | 
|  | 136 | static CrashQueue queue("/data/anr", "trace_" /* file_name_prefix */, | 
|  | 137 | GetIntProperty("tombstoned.max_anr_count", 64), | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 138 | 4 /* max_concurrent_dumps */, false /* supports_proto */); | 
| Elliott Hughes | 35bb6d2 | 2017-06-26 13:54:05 -0700 | [diff] [blame] | 139 | return &queue; | 
|  | 140 | } | 
|  | 141 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 142 | CrashArtifact create_temporary_file() const { | 
|  | 143 | CrashArtifact result; | 
|  | 144 |  | 
|  | 145 | std::optional<std::string> path; | 
| Josh Gao | 88846a2 | 2021-02-01 16:48:25 -0800 | [diff] [blame] | 146 | result.fd.reset(openat(dir_fd_, ".", O_WRONLY | O_APPEND | O_TMPFILE | O_CLOEXEC, 0660)); | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 147 | if (result.fd == -1) { | 
| Josh Gao | f5974ae | 2018-05-03 16:05:32 -0700 | [diff] [blame] | 148 | // We might not have O_TMPFILE. Try creating with an arbitrary filename instead. | 
|  | 149 | static size_t counter = 0; | 
|  | 150 | std::string tmp_filename = StringPrintf(".temporary%zu", counter++); | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 151 | result.fd.reset(openat(dir_fd_, tmp_filename.c_str(), | 
| Josh Gao | 88846a2 | 2021-02-01 16:48:25 -0800 | [diff] [blame] | 152 | O_WRONLY | O_APPEND | O_CREAT | O_TRUNC | O_CLOEXEC, 0660)); | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 153 | if (result.fd == -1) { | 
| Josh Gao | 48383c8 | 2018-04-18 18:11:01 -0700 | [diff] [blame] | 154 | PLOG(FATAL) << "failed to create temporary tombstone in " << dir_path_; | 
|  | 155 | } | 
| Josh Gao | f5974ae | 2018-05-03 16:05:32 -0700 | [diff] [blame] | 156 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 157 | result.temporary_path = std::move(tmp_filename); | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 158 | } | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 159 |  | 
|  | 160 | return std::move(result); | 
| Josh Gao | 48383c8 | 2018-04-18 18:11:01 -0700 | [diff] [blame] | 161 | } | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 162 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 163 | std::optional<CrashOutput> get_output(DebuggerdDumpType dump_type) { | 
|  | 164 | CrashOutput result; | 
|  | 165 |  | 
|  | 166 | switch (dump_type) { | 
|  | 167 | case kDebuggerdNativeBacktrace: | 
| Josh Gao | 9312748 | 2021-05-18 16:14:15 -0700 | [diff] [blame] | 168 | // Don't generate tombstones for native backtrace requests. | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 169 | return {}; | 
|  | 170 |  | 
|  | 171 | case kDebuggerdTombstoneProto: | 
|  | 172 | if (!supports_proto_) { | 
|  | 173 | LOG(ERROR) << "received kDebuggerdTombstoneProto on a queue that doesn't support proto"; | 
|  | 174 | return {}; | 
|  | 175 | } | 
|  | 176 | result.proto = create_temporary_file(); | 
|  | 177 | result.text = create_temporary_file(); | 
|  | 178 | break; | 
|  | 179 |  | 
| Josh Gao | 9312748 | 2021-05-18 16:14:15 -0700 | [diff] [blame] | 180 | case kDebuggerdJavaBacktrace: | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 181 | case kDebuggerdTombstone: | 
|  | 182 | result.text = create_temporary_file(); | 
|  | 183 | break; | 
|  | 184 |  | 
|  | 185 | default: | 
|  | 186 | LOG(ERROR) << "unexpected dump type: " << dump_type; | 
|  | 187 | return {}; | 
|  | 188 | } | 
|  | 189 |  | 
|  | 190 | return result; | 
|  | 191 | } | 
|  | 192 |  | 
|  | 193 | borrowed_fd dir_fd() { return dir_fd_; } | 
|  | 194 |  | 
|  | 195 | CrashArtifactPaths get_next_artifact_paths() { | 
|  | 196 | CrashArtifactPaths result; | 
|  | 197 | result.text = StringPrintf("%s%02d", file_name_prefix_.c_str(), next_artifact_); | 
|  | 198 |  | 
|  | 199 | if (supports_proto_) { | 
|  | 200 | result.proto = StringPrintf("%s%02d.pb", file_name_prefix_.c_str(), next_artifact_); | 
|  | 201 | } | 
|  | 202 |  | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 203 | next_artifact_ = (next_artifact_ + 1) % max_artifacts_; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 204 | return result; | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 205 | } | 
|  | 206 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 207 | // Consumes crash if it returns true, otherwise leaves it untouched. | 
|  | 208 | bool maybe_enqueue_crash(std::unique_ptr<Crash>&& crash) { | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 209 | if (num_concurrent_dumps_ == max_concurrent_dumps_) { | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 210 | queued_requests_.emplace_back(std::move(crash)); | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 211 | return true; | 
|  | 212 | } | 
|  | 213 |  | 
|  | 214 | return false; | 
|  | 215 | } | 
|  | 216 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 217 | void maybe_dequeue_crashes(void (*handler)(std::unique_ptr<Crash> crash)) { | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 218 | while (!queued_requests_.empty() && num_concurrent_dumps_ < max_concurrent_dumps_) { | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 219 | std::unique_ptr<Crash> next_crash = std::move(queued_requests_.front()); | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 220 | queued_requests_.pop_front(); | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 221 | handler(std::move(next_crash)); | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 222 | } | 
|  | 223 | } | 
|  | 224 |  | 
|  | 225 | void on_crash_started() { ++num_concurrent_dumps_; } | 
|  | 226 |  | 
|  | 227 | void on_crash_completed() { --num_concurrent_dumps_; } | 
|  | 228 |  | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 229 | private: | 
|  | 230 | void find_oldest_artifact() { | 
|  | 231 | size_t oldest_tombstone = 0; | 
|  | 232 | time_t oldest_time = std::numeric_limits<time_t>::max(); | 
|  | 233 |  | 
|  | 234 | for (size_t i = 0; i < max_artifacts_; ++i) { | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 235 | std::string path = | 
|  | 236 | StringPrintf("%s/%s%02zu", dir_path_.c_str(), file_name_prefix_.c_str(), i); | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 237 | struct stat st; | 
|  | 238 | if (stat(path.c_str(), &st) != 0) { | 
|  | 239 | if (errno == ENOENT) { | 
|  | 240 | oldest_tombstone = i; | 
|  | 241 | break; | 
|  | 242 | } else { | 
|  | 243 | PLOG(ERROR) << "failed to stat " << path; | 
|  | 244 | continue; | 
|  | 245 | } | 
|  | 246 | } | 
|  | 247 |  | 
|  | 248 | if (st.st_mtime < oldest_time) { | 
|  | 249 | oldest_tombstone = i; | 
|  | 250 | oldest_time = st.st_mtime; | 
|  | 251 | } | 
|  | 252 | } | 
|  | 253 |  | 
|  | 254 | next_artifact_ = oldest_tombstone; | 
|  | 255 | } | 
|  | 256 |  | 
|  | 257 | const std::string file_name_prefix_; | 
|  | 258 |  | 
|  | 259 | const std::string dir_path_; | 
|  | 260 | const int dir_fd_; | 
|  | 261 |  | 
|  | 262 | const size_t max_artifacts_; | 
|  | 263 | int next_artifact_; | 
|  | 264 |  | 
|  | 265 | const size_t max_concurrent_dumps_; | 
|  | 266 | size_t num_concurrent_dumps_; | 
|  | 267 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 268 | bool supports_proto_; | 
|  | 269 |  | 
|  | 270 | std::deque<std::unique_ptr<Crash>> queued_requests_; | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 271 |  | 
| Narayan Kamath | a73df60 | 2017-05-24 15:07:25 +0100 | [diff] [blame] | 272 | DISALLOW_COPY_AND_ASSIGN(CrashQueue); | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 273 | }; | 
|  | 274 |  | 
|  | 275 | // Whether java trace dumps are produced via tombstoned. | 
| Narayan Kamath | ca5e908 | 2017-06-02 15:42:06 +0100 | [diff] [blame] | 276 | static constexpr bool kJavaTraceDumpsEnabled = true; | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 277 |  | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 278 | // Forward declare the callbacks so they can be placed in a sensible order. | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 279 | static void crash_accept_cb(evconnlistener* listener, evutil_socket_t sockfd, sockaddr*, int, | 
|  | 280 | void*); | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 281 | static void crash_request_cb(evutil_socket_t sockfd, short ev, void* arg); | 
|  | 282 | static void crash_completed_cb(evutil_socket_t sockfd, short ev, void* arg); | 
|  | 283 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 284 | static void perform_request(std::unique_ptr<Crash> crash) { | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 285 | unique_fd output_fd; | 
| Josh Gao | 48383c8 | 2018-04-18 18:11:01 -0700 | [diff] [blame] | 286 | bool intercepted = | 
|  | 287 | intercept_manager->GetIntercept(crash->crash_pid, crash->crash_type, &output_fd); | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 288 | if (intercepted) { | 
|  | 289 | if (crash->crash_type == kDebuggerdTombstoneProto) { | 
|  | 290 | crash->output.proto = CrashArtifact::devnull(); | 
|  | 291 | } | 
|  | 292 | } else { | 
|  | 293 | if (auto o = CrashQueue::for_crash(crash.get())->get_output(crash->crash_type); o) { | 
|  | 294 | crash->output = std::move(*o); | 
|  | 295 | output_fd.reset(dup(crash->output.text.fd)); | 
| Josh Gao | 2b22ae1 | 2018-09-12 14:51:03 -0700 | [diff] [blame] | 296 | } else { | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 297 | LOG(ERROR) << "failed to get crash output for type " << crash->crash_type; | 
|  | 298 | return; | 
| Josh Gao | 2b22ae1 | 2018-09-12 14:51:03 -0700 | [diff] [blame] | 299 | } | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 300 | } | 
|  | 301 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 302 | TombstonedCrashPacket response = {.packet_type = CrashPacketType::kPerformDump}; | 
|  | 303 |  | 
|  | 304 | ssize_t rc = -1; | 
|  | 305 | if (crash->output.proto) { | 
|  | 306 | rc = SendFileDescriptors(crash->crash_socket_fd, &response, sizeof(response), output_fd.get(), | 
|  | 307 | crash->output.proto->fd.get()); | 
|  | 308 | } else { | 
|  | 309 | rc = SendFileDescriptors(crash->crash_socket_fd, &response, sizeof(response), output_fd.get()); | 
|  | 310 | } | 
|  | 311 |  | 
| Josh Gao | 5f87bbd | 2019-01-09 17:01:49 -0800 | [diff] [blame] | 312 | output_fd.reset(); | 
|  | 313 |  | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 314 | if (rc == -1) { | 
|  | 315 | PLOG(WARNING) << "failed to send response to CrashRequest"; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 316 | return; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 317 | } else if (rc != sizeof(response)) { | 
|  | 318 | PLOG(WARNING) << "crash socket write returned short"; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 319 | return; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 320 | } | 
| Josh Gao | 1307824 | 2017-03-30 14:42:46 -0700 | [diff] [blame] | 321 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 322 | // TODO: Make this configurable by the interceptor? | 
| Peter Collingbourne | fb5eac9 | 2021-03-11 12:51:25 -0800 | [diff] [blame] | 323 | struct timeval timeout = {10 * android::base::HwTimeoutMultiplier(), 0}; | 
| Josh Gao | 9a61f68 | 2020-12-01 21:04:09 -0800 | [diff] [blame] | 324 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 325 | event_base* base = event_get_base(crash->crash_event); | 
|  | 326 |  | 
|  | 327 | event_assign(crash->crash_event, base, crash->crash_socket_fd, EV_TIMEOUT | EV_READ, | 
|  | 328 | crash_completed_cb, crash.get()); | 
|  | 329 | event_add(crash->crash_event, &timeout); | 
|  | 330 | CrashQueue::for_crash(crash)->on_crash_started(); | 
|  | 331 |  | 
|  | 332 | // The crash is now owned by the event loop. | 
|  | 333 | crash.release(); | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 334 | } | 
|  | 335 |  | 
|  | 336 | static void crash_accept_cb(evconnlistener* listener, evutil_socket_t sockfd, sockaddr*, int, | 
| Narayan Kamath | a73df60 | 2017-05-24 15:07:25 +0100 | [diff] [blame] | 337 | void*) { | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 338 | event_base* base = evconnlistener_get_base(listener); | 
|  | 339 | Crash* crash = new Crash(); | 
|  | 340 |  | 
| Narayan Kamath | a73df60 | 2017-05-24 15:07:25 +0100 | [diff] [blame] | 341 | // TODO: Make sure that only java crashes come in on the java socket | 
|  | 342 | // and only native crashes on the native socket. | 
| Peter Collingbourne | fb5eac9 | 2021-03-11 12:51:25 -0800 | [diff] [blame] | 343 | struct timeval timeout = {1 * android::base::HwTimeoutMultiplier(), 0}; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 344 | event* crash_event = event_new(base, sockfd, EV_TIMEOUT | EV_READ, crash_request_cb, crash); | 
| Josh Gao | 48383c8 | 2018-04-18 18:11:01 -0700 | [diff] [blame] | 345 | crash->crash_socket_fd.reset(sockfd); | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 346 | crash->crash_event = crash_event; | 
|  | 347 | event_add(crash_event, &timeout); | 
|  | 348 | } | 
|  | 349 |  | 
|  | 350 | static void crash_request_cb(evutil_socket_t sockfd, short ev, void* arg) { | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 351 | std::unique_ptr<Crash> crash(static_cast<Crash*>(arg)); | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 352 | TombstonedCrashPacket request = {}; | 
|  | 353 |  | 
|  | 354 | if ((ev & EV_TIMEOUT) != 0) { | 
|  | 355 | LOG(WARNING) << "crash request timed out"; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 356 | return; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 357 | } else if ((ev & EV_READ) == 0) { | 
|  | 358 | LOG(WARNING) << "tombstoned received unexpected event from crash socket"; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 359 | return; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 360 | } | 
|  | 361 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 362 | ssize_t rc = TEMP_FAILURE_RETRY(read(sockfd, &request, sizeof(request))); | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 363 | if (rc == -1) { | 
|  | 364 | PLOG(WARNING) << "failed to read from crash socket"; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 365 | return; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 366 | } else if (rc != sizeof(request)) { | 
|  | 367 | LOG(WARNING) << "crash socket received short read of length " << rc << " (expected " | 
|  | 368 | << sizeof(request) << ")"; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 369 | return; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 370 | } | 
|  | 371 |  | 
|  | 372 | if (request.packet_type != CrashPacketType::kDumpRequest) { | 
|  | 373 | LOG(WARNING) << "unexpected crash packet type, expected kDumpRequest, received  " | 
|  | 374 | << StringPrintf("%#2hhX", request.packet_type); | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 375 | return; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 376 | } | 
|  | 377 |  | 
| Narayan Kamath | a73df60 | 2017-05-24 15:07:25 +0100 | [diff] [blame] | 378 | crash->crash_type = request.packet.dump_request.dump_type; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 379 | if (crash->crash_type < 0 || crash->crash_type > kDebuggerdTombstoneProto) { | 
| Narayan Kamath | a73df60 | 2017-05-24 15:07:25 +0100 | [diff] [blame] | 380 | LOG(WARNING) << "unexpected crash dump type: " << crash->crash_type; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 381 | return; | 
| Narayan Kamath | a73df60 | 2017-05-24 15:07:25 +0100 | [diff] [blame] | 382 | } | 
|  | 383 |  | 
|  | 384 | if (crash->crash_type != kDebuggerdJavaBacktrace) { | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 385 | crash->crash_pid = request.packet.dump_request.pid; | 
|  | 386 | } else { | 
|  | 387 | // Requests for java traces are sent from untrusted processes, so we | 
|  | 388 | // must not trust the PID sent down with the request. Instead, we ask the | 
|  | 389 | // kernel. | 
|  | 390 | ucred cr = {}; | 
|  | 391 | socklen_t len = sizeof(cr); | 
|  | 392 | int ret = getsockopt(sockfd, SOL_SOCKET, SO_PEERCRED, &cr, &len); | 
|  | 393 | if (ret != 0) { | 
|  | 394 | PLOG(ERROR) << "Failed to getsockopt(..SO_PEERCRED)"; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 395 | return; | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 396 | } | 
|  | 397 |  | 
|  | 398 | crash->crash_pid = cr.pid; | 
|  | 399 | } | 
|  | 400 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 401 | pid_t crash_pid = crash->crash_pid; | 
|  | 402 | LOG(INFO) << "received crash request for pid " << crash_pid; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 403 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 404 | if (CrashQueue::for_crash(crash)->maybe_enqueue_crash(std::move(crash))) { | 
|  | 405 | LOG(INFO) << "enqueueing crash request for pid " << crash_pid; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 406 | } else { | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 407 | perform_request(std::move(crash)); | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 408 | } | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 409 | } | 
|  | 410 |  | 
| Peter Collingbourne | 1e1d920 | 2021-02-05 16:38:35 -0800 | [diff] [blame] | 411 | static bool rename_tombstone_fd(borrowed_fd fd, borrowed_fd dirfd, const std::string& path) { | 
|  | 412 | // Always try to unlink the tombstone file. | 
|  | 413 | // linkat doesn't let us replace a file, so we need to unlink before linking | 
|  | 414 | // our results onto disk, and if we fail for some reason, we should delete | 
|  | 415 | // stale tombstones to avoid confusing inconsistency. | 
|  | 416 | int rc = unlinkat(dirfd.get(), path.c_str(), 0); | 
|  | 417 | if (rc != 0 && errno != ENOENT) { | 
|  | 418 | PLOG(ERROR) << "failed to unlink tombstone at " << path; | 
|  | 419 | return false; | 
|  | 420 | } | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 421 |  | 
| Peter Collingbourne | 1e1d920 | 2021-02-05 16:38:35 -0800 | [diff] [blame] | 422 | std::string fd_path = StringPrintf("/proc/self/fd/%d", fd.get()); | 
|  | 423 | rc = linkat(AT_FDCWD, fd_path.c_str(), dirfd.get(), path.c_str(), AT_SYMLINK_FOLLOW); | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 424 | if (rc != 0) { | 
| Peter Collingbourne | 1e1d920 | 2021-02-05 16:38:35 -0800 | [diff] [blame] | 425 | PLOG(ERROR) << "failed to link tombstone at " << path; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 426 | return false; | 
| Jerome Gaillard | e156ede | 2021-01-26 12:36:12 +0000 | [diff] [blame] | 427 | } | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 428 | return true; | 
|  | 429 | } | 
| Jerome Gaillard | e156ede | 2021-01-26 12:36:12 +0000 | [diff] [blame] | 430 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 431 | static void crash_completed(borrowed_fd sockfd, std::unique_ptr<Crash> crash) { | 
|  | 432 | TombstonedCrashPacket request = {}; | 
|  | 433 | CrashQueue* queue = CrashQueue::for_crash(crash); | 
|  | 434 |  | 
|  | 435 | ssize_t rc = TEMP_FAILURE_RETRY(read(sockfd.get(), &request, sizeof(request))); | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 436 | if (rc == -1) { | 
|  | 437 | PLOG(WARNING) << "failed to read from crash socket"; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 438 | return; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 439 | } else if (rc != sizeof(request)) { | 
|  | 440 | LOG(WARNING) << "crash socket received short read of length " << rc << " (expected " | 
|  | 441 | << sizeof(request) << ")"; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 442 | return; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 443 | } | 
|  | 444 |  | 
|  | 445 | if (request.packet_type != CrashPacketType::kCompletedDump) { | 
|  | 446 | LOG(WARNING) << "unexpected crash packet type, expected kCompletedDump, received " | 
|  | 447 | << uint32_t(request.packet_type); | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 448 | return; | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 449 | } | 
|  | 450 |  | 
| Christopher Ferris | ab9f0cd | 2021-09-01 13:36:03 -0700 | [diff] [blame] | 451 | if (crash->output.text.fd == -1) { | 
|  | 452 | LOG(WARNING) << "skipping tombstone file creation due to intercept"; | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 453 | return; | 
|  | 454 | } | 
| Josh Gao | f5974ae | 2018-05-03 16:05:32 -0700 | [diff] [blame] | 455 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 456 | CrashArtifactPaths paths = queue->get_next_artifact_paths(); | 
| Josh Gao | 48383c8 | 2018-04-18 18:11:01 -0700 | [diff] [blame] | 457 |  | 
| Peter Collingbourne | 1e1d920 | 2021-02-05 16:38:35 -0800 | [diff] [blame] | 458 | if (rename_tombstone_fd(crash->output.text.fd, queue->dir_fd(), paths.text)) { | 
|  | 459 | if (crash->crash_type == kDebuggerdJavaBacktrace) { | 
|  | 460 | LOG(ERROR) << "Traces for pid " << crash->crash_pid << " written to: " << paths.text; | 
| Narayan Kamath | 79dd143 | 2017-06-21 19:42:00 +0100 | [diff] [blame] | 461 | } else { | 
| Peter Collingbourne | 1e1d920 | 2021-02-05 16:38:35 -0800 | [diff] [blame] | 462 | // NOTE: Several tools parse this log message to figure out where the | 
|  | 463 | // tombstone associated with a given native crash was written. Any changes | 
|  | 464 | // to this message must be carefully considered. | 
|  | 465 | LOG(ERROR) << "Tombstone written to: " << paths.text; | 
| Josh Gao | f5974ae | 2018-05-03 16:05:32 -0700 | [diff] [blame] | 466 | } | 
| Josh Gao | cb68a03 | 2017-06-02 13:02:10 -0700 | [diff] [blame] | 467 | } | 
|  | 468 |  | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 469 | if (crash->output.proto && crash->output.proto->fd != -1) { | 
|  | 470 | if (!paths.proto) { | 
|  | 471 | LOG(ERROR) << "missing path for proto tombstone"; | 
| Peter Collingbourne | 1e1d920 | 2021-02-05 16:38:35 -0800 | [diff] [blame] | 472 | } else { | 
|  | 473 | rename_tombstone_fd(crash->output.proto->fd, queue->dir_fd(), *paths.proto); | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 474 | } | 
|  | 475 | } | 
|  | 476 |  | 
|  | 477 | // If we don't have O_TMPFILE, we need to clean up after ourselves. | 
|  | 478 | if (crash->output.text.temporary_path) { | 
|  | 479 | rc = unlinkat(queue->dir_fd().get(), crash->output.text.temporary_path->c_str(), 0); | 
|  | 480 | if (rc != 0) { | 
|  | 481 | PLOG(ERROR) << "failed to unlink temporary tombstone at " << paths.text; | 
|  | 482 | } | 
|  | 483 | } | 
|  | 484 | if (crash->output.proto && crash->output.proto->temporary_path) { | 
|  | 485 | rc = unlinkat(queue->dir_fd().get(), crash->output.proto->temporary_path->c_str(), 0); | 
|  | 486 | if (rc != 0) { | 
|  | 487 | PLOG(ERROR) << "failed to unlink temporary proto tombstone"; | 
|  | 488 | } | 
|  | 489 | } | 
|  | 490 | } | 
|  | 491 |  | 
|  | 492 | static void crash_completed_cb(evutil_socket_t sockfd, short ev, void* arg) { | 
|  | 493 | std::unique_ptr<Crash> crash(static_cast<Crash*>(arg)); | 
| Elliott Hughes | 35bb6d2 | 2017-06-26 13:54:05 -0700 | [diff] [blame] | 494 | CrashQueue* queue = CrashQueue::for_crash(crash); | 
| Josh Gao | 76e1e30 | 2021-01-26 15:53:11 -0800 | [diff] [blame] | 495 |  | 
|  | 496 | queue->on_crash_completed(); | 
|  | 497 |  | 
|  | 498 | if ((ev & EV_READ) == EV_READ) { | 
|  | 499 | crash_completed(sockfd, std::move(crash)); | 
|  | 500 | } | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 501 |  | 
|  | 502 | // If there's something queued up, let them proceed. | 
| Narayan Kamath | a73df60 | 2017-05-24 15:07:25 +0100 | [diff] [blame] | 503 | queue->maybe_dequeue_crashes(perform_request); | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 504 | } | 
|  | 505 |  | 
|  | 506 | int main(int, char* []) { | 
| Josh Gao | 88846a2 | 2021-02-01 16:48:25 -0800 | [diff] [blame] | 507 | umask(0117); | 
| Josh Gao | 8830c95 | 2017-03-06 12:23:55 -0800 | [diff] [blame] | 508 |  | 
| Josh Gao | 55f79a5 | 2017-03-06 12:24:07 -0800 | [diff] [blame] | 509 | // Don't try to connect to ourselves if we crash. | 
|  | 510 | struct sigaction action = {}; | 
|  | 511 | action.sa_handler = [](int signal) { | 
|  | 512 | LOG(ERROR) << "received fatal signal " << signal; | 
|  | 513 | _exit(1); | 
|  | 514 | }; | 
|  | 515 | debuggerd_register_handlers(&action); | 
|  | 516 |  | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 517 | int intercept_socket = android_get_control_socket(kTombstonedInterceptSocketName); | 
|  | 518 | int crash_socket = android_get_control_socket(kTombstonedCrashSocketName); | 
|  | 519 |  | 
|  | 520 | if (intercept_socket == -1 || crash_socket == -1) { | 
|  | 521 | PLOG(FATAL) << "failed to get socket from init"; | 
|  | 522 | } | 
|  | 523 |  | 
|  | 524 | evutil_make_socket_nonblocking(intercept_socket); | 
|  | 525 | evutil_make_socket_nonblocking(crash_socket); | 
|  | 526 |  | 
|  | 527 | event_base* base = event_base_new(); | 
|  | 528 | if (!base) { | 
|  | 529 | LOG(FATAL) << "failed to create event_base"; | 
|  | 530 | } | 
|  | 531 |  | 
|  | 532 | intercept_manager = new InterceptManager(base, intercept_socket); | 
|  | 533 |  | 
| Narayan Kamath | c2e98f6 | 2017-09-13 13:12:34 +0100 | [diff] [blame] | 534 | evconnlistener* tombstone_listener = | 
|  | 535 | evconnlistener_new(base, crash_accept_cb, CrashQueue::for_tombstones(), LEV_OPT_CLOSE_ON_FREE, | 
|  | 536 | -1 /* backlog */, crash_socket); | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 537 | if (!tombstone_listener) { | 
|  | 538 | LOG(FATAL) << "failed to create evconnlistener for tombstones."; | 
|  | 539 | } | 
|  | 540 |  | 
|  | 541 | if (kJavaTraceDumpsEnabled) { | 
|  | 542 | const int java_trace_socket = android_get_control_socket(kTombstonedJavaTraceSocketName); | 
|  | 543 | if (java_trace_socket == -1) { | 
|  | 544 | PLOG(FATAL) << "failed to get socket from init"; | 
|  | 545 | } | 
|  | 546 |  | 
|  | 547 | evutil_make_socket_nonblocking(java_trace_socket); | 
| Narayan Kamath | c2e98f6 | 2017-09-13 13:12:34 +0100 | [diff] [blame] | 548 | evconnlistener* java_trace_listener = | 
|  | 549 | evconnlistener_new(base, crash_accept_cb, CrashQueue::for_anrs(), LEV_OPT_CLOSE_ON_FREE, | 
|  | 550 | -1 /* backlog */, java_trace_socket); | 
| Narayan Kamath | 922f6b2 | 2017-05-15 15:59:30 +0100 | [diff] [blame] | 551 | if (!java_trace_listener) { | 
|  | 552 | LOG(FATAL) << "failed to create evconnlistener for java traces."; | 
|  | 553 | } | 
| Josh Gao | cbe70cb | 2016-10-18 18:17:52 -0700 | [diff] [blame] | 554 | } | 
|  | 555 |  | 
|  | 556 | LOG(INFO) << "tombstoned successfully initialized"; | 
|  | 557 | event_base_dispatch(base); | 
|  | 558 | } |