blob: e0cc6629e47969c43be06df9cba4948bbd6adfc9 [file] [log] [blame]
Jeff Brown053b8652012-06-06 16:25:03 -07001/*
Mark Salyzynfca0bd12013-12-12 12:21:20 -08002 * Copyright (C) 2012-2014 The Android Open Source Project
Jeff Brown053b8652012-06-06 16:25:03 -07003 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
Brigid Smith62ba4892014-06-10 11:53:08 -070017#define LOG_TAG "DEBUG"
18
Josh Gaoc3706662017-08-29 13:08:32 -070019#include "libdebuggerd/tombstone.h"
20
Jeff Brown053b8652012-06-06 16:25:03 -070021#include <dirent.h>
Kévin PETIT4bb47722013-12-18 16:44:24 +000022#include <errno.h>
23#include <fcntl.h>
24#include <inttypes.h>
25#include <signal.h>
26#include <stddef.h>
27#include <stdio.h>
28#include <stdlib.h>
29#include <string.h>
Christopher Ferris3336c7b2019-04-08 17:18:24 -070030#include <sys/mman.h>
Jeff Brown053b8652012-06-06 16:25:03 -070031#include <sys/ptrace.h>
32#include <sys/stat.h>
Mark Salyzynff2dcd92016-09-28 15:54:45 -070033#include <time.h>
Jeff Brown053b8652012-06-06 16:25:03 -070034
Christopher Ferris6e964032015-05-15 17:30:21 -070035#include <memory>
36#include <string>
37
Josh Gao57f58f82017-03-15 23:23:22 -070038#include <android-base/file.h>
Tom Cherry31121ca2017-10-10 13:30:57 -070039#include <android-base/properties.h>
Elliott Hughes4f713192015-12-04 22:00:26 -080040#include <android-base/stringprintf.h>
Josh Gao2b2ae0c2017-08-21 14:31:17 -070041#include <android-base/strings.h>
Josh Gao57f58f82017-03-15 23:23:22 -070042#include <android-base/unique_fd.h>
43#include <android/log.h>
Josh Gao618cea32021-01-26 17:45:43 -080044#include <async_safe/log.h>
Peter Collingbourne0ea08c22021-02-05 14:59:08 -080045#include <bionic/macros.h>
Mark Salyzyncfd5b082016-10-17 14:28:00 -070046#include <log/log.h>
Tom Cherryc5c6d7d2020-04-17 09:38:55 -070047#include <log/log_read.h>
Mark Salyzynff2dcd92016-09-28 15:54:45 -070048#include <log/logprint.h>
49#include <private/android_filesystem_config.h>
David Srbeckyb9cc4fb2019-04-05 18:23:32 +000050#include <unwindstack/DexFiles.h>
Christopher Ferris60eb1972019-01-15 15:18:43 -080051#include <unwindstack/JitDebug.h>
52#include <unwindstack/Maps.h>
Josh Gao2b2ae0c2017-08-21 14:31:17 -070053#include <unwindstack/Memory.h>
54#include <unwindstack/Regs.h>
Christopher Ferris60eb1972019-01-15 15:18:43 -080055#include <unwindstack/Unwinder.h>
Jeff Brown053b8652012-06-06 16:25:03 -070056
Josh Gaoc3706662017-08-29 13:08:32 -070057#include "libdebuggerd/backtrace.h"
Mitch Phillipse0b4bb12020-02-14 14:54:31 -080058#include "libdebuggerd/gwp_asan.h"
Josh Gaoc3706662017-08-29 13:08:32 -070059#include "libdebuggerd/open_files_list.h"
Peter Collingbournef8622522020-04-07 14:07:32 -070060#include "libdebuggerd/scudo.h"
Josh Gao2b2ae0c2017-08-21 14:31:17 -070061#include "libdebuggerd/utility.h"
Elliott Hughesa660cb32020-07-23 15:26:10 -070062#include "util.h"
Jeff Brown053b8652012-06-06 16:25:03 -070063
Mitch Phillipse0b4bb12020-02-14 14:54:31 -080064#include "gwp_asan/common.h"
65#include "gwp_asan/crash_handler.h"
66
Josh Gao76e1e302021-01-26 15:53:11 -080067#include "tombstone.pb.h"
68
Tom Cherry31121ca2017-10-10 13:30:57 -070069using android::base::GetBoolProperty;
70using android::base::GetProperty;
Elliott Hughes0ba53592017-02-01 16:59:15 -080071using android::base::StringPrintf;
Josh Gao2b2ae0c2017-08-21 14:31:17 -070072using android::base::unique_fd;
73
Elliott Hughese1415a52018-02-15 09:18:21 -080074using namespace std::literals::string_literals;
75
Jeff Brown053b8652012-06-06 16:25:03 -070076#define STACK_WORDS 16
77
Brigid Smith9c8dacc2014-06-02 15:02:20 -070078static void dump_header_info(log_t* log) {
Tom Cherry31121ca2017-10-10 13:30:57 -070079 auto fingerprint = GetProperty("ro.build.fingerprint", "unknown");
80 auto revision = GetProperty("ro.revision", "unknown");
Ben Chengd7760c12012-09-19 16:04:01 -070081
Tom Cherry31121ca2017-10-10 13:30:57 -070082 _LOG(log, logtype::HEADER, "Build fingerprint: '%s'\n", fingerprint.c_str());
83 _LOG(log, logtype::HEADER, "Revision: '%s'\n", revision.c_str());
Brigid Smith62ba4892014-06-10 11:53:08 -070084 _LOG(log, logtype::HEADER, "ABI: '%s'\n", ABI_STRING);
Jeff Brown053b8652012-06-06 16:25:03 -070085}
86
Christopher Ferris481e8372019-07-15 17:13:24 -070087static std::string get_stack_overflow_cause(uint64_t fault_addr, uint64_t sp,
88 unwindstack::Maps* maps) {
89 static constexpr uint64_t kMaxDifferenceBytes = 256;
90 uint64_t difference;
91 if (sp >= fault_addr) {
92 difference = sp - fault_addr;
93 } else {
94 difference = fault_addr - sp;
95 }
96 if (difference <= kMaxDifferenceBytes) {
97 // The faulting address is close to the current sp, check if the sp
98 // indicates a stack overflow.
99 // On arm, the sp does not get updated when the instruction faults.
100 // In this case, the sp will still be in a valid map, which is the
101 // last case below.
102 // On aarch64, the sp does get updated when the instruction faults.
103 // In this case, the sp will be in either an invalid map if triggered
104 // on the main thread, or in a guard map if in another thread, which
105 // will be the first case or second case from below.
106 unwindstack::MapInfo* map_info = maps->Find(sp);
107 if (map_info == nullptr) {
108 return "stack pointer is in a non-existent map; likely due to stack overflow.";
109 } else if ((map_info->flags & (PROT_READ | PROT_WRITE)) != (PROT_READ | PROT_WRITE)) {
110 return "stack pointer is not in a rw map; likely due to stack overflow.";
111 } else if ((sp - map_info->start) <= kMaxDifferenceBytes) {
112 return "stack pointer is close to top of stack; likely stack overflow.";
113 }
114 }
115 return "";
116}
117
118static void dump_probable_cause(log_t* log, const siginfo_t* si, unwindstack::Maps* maps,
119 unwindstack::Regs* regs) {
Elliott Hughes0ba53592017-02-01 16:59:15 -0800120 std::string cause;
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700121 if (si->si_signo == SIGSEGV && si->si_code == SEGV_MAPERR) {
122 if (si->si_addr < reinterpret_cast<void*>(4096)) {
Elliott Hughes0ba53592017-02-01 16:59:15 -0800123 cause = StringPrintf("null pointer dereference");
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700124 } else if (si->si_addr == reinterpret_cast<void*>(0xffff0ffc)) {
Elliott Hughes0ba53592017-02-01 16:59:15 -0800125 cause = "call to kuser_helper_version";
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700126 } else if (si->si_addr == reinterpret_cast<void*>(0xffff0fe0)) {
Elliott Hughes0ba53592017-02-01 16:59:15 -0800127 cause = "call to kuser_get_tls";
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700128 } else if (si->si_addr == reinterpret_cast<void*>(0xffff0fc0)) {
Elliott Hughes0ba53592017-02-01 16:59:15 -0800129 cause = "call to kuser_cmpxchg";
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700130 } else if (si->si_addr == reinterpret_cast<void*>(0xffff0fa0)) {
Elliott Hughes0ba53592017-02-01 16:59:15 -0800131 cause = "call to kuser_memory_barrier";
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700132 } else if (si->si_addr == reinterpret_cast<void*>(0xffff0f60)) {
Elliott Hughes0ba53592017-02-01 16:59:15 -0800133 cause = "call to kuser_cmpxchg64";
Christopher Ferris481e8372019-07-15 17:13:24 -0700134 } else {
135 cause = get_stack_overflow_cause(reinterpret_cast<uint64_t>(si->si_addr), regs->sp(), maps);
Elliott Hughes0ba53592017-02-01 16:59:15 -0800136 }
Ivan Lozanodf3cec92018-11-19 10:43:47 -0800137 } else if (si->si_signo == SIGSEGV && si->si_code == SEGV_ACCERR) {
Christopher Ferris481e8372019-07-15 17:13:24 -0700138 uint64_t fault_addr = reinterpret_cast<uint64_t>(si->si_addr);
139 unwindstack::MapInfo* map_info = maps->Find(fault_addr);
Christopher Ferris60eb1972019-01-15 15:18:43 -0800140 if (map_info != nullptr && map_info->flags == PROT_EXEC) {
141 cause = "execute-only (no-read) memory access error; likely due to data in .text.";
Christopher Ferris481e8372019-07-15 17:13:24 -0700142 } else {
143 cause = get_stack_overflow_cause(fault_addr, regs->sp(), maps);
Ivan Lozanodf3cec92018-11-19 10:43:47 -0800144 }
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700145 } else if (si->si_signo == SIGSYS && si->si_code == SYS_SECCOMP) {
146 cause = StringPrintf("seccomp prevented call to disallowed %s system call %d", ABI_STRING,
147 si->si_syscall);
Elliott Hughes0ba53592017-02-01 16:59:15 -0800148 }
149
150 if (!cause.empty()) _LOG(log, logtype::HEADER, "Cause: %s\n", cause.c_str());
151}
152
Christopher Ferris60eb1972019-01-15 15:18:43 -0800153static void dump_signal_info(log_t* log, const ThreadInfo& thread_info,
Peter Collingbournef03af882020-03-20 18:09:00 -0700154 const ProcessInfo& process_info, unwindstack::Memory* process_memory) {
Elliott Hughes2baf4432018-05-30 12:55:04 -0700155 char addr_desc[64]; // ", fault addr 0x1234"
Peter Collingbournef03af882020-03-20 18:09:00 -0700156 if (process_info.has_fault_address) {
Mitch Phillipse4adff02021-01-21 20:41:50 -0800157 // SIGILL faults will never have tagged addresses, so okay to
158 // indiscriminately use the tagged address here.
159 size_t addr = process_info.maybe_tagged_fault_address;
Elliott Hughes2baf4432018-05-30 12:55:04 -0700160 if (thread_info.siginfo->si_signo == SIGILL) {
161 uint32_t instruction = {};
Peter Collingbournef03af882020-03-20 18:09:00 -0700162 process_memory->Read(addr, &instruction, sizeof(instruction));
163 snprintf(addr_desc, sizeof(addr_desc), "0x%zx (*pc=%#08x)", addr, instruction);
Elliott Hughes2baf4432018-05-30 12:55:04 -0700164 } else {
Peter Collingbournef03af882020-03-20 18:09:00 -0700165 snprintf(addr_desc, sizeof(addr_desc), "0x%zx", addr);
Elliott Hughes2baf4432018-05-30 12:55:04 -0700166 }
Elliott Hughes855fcc32014-04-25 16:05:34 -0700167 } else {
168 snprintf(addr_desc, sizeof(addr_desc), "--------");
169 }
170
Elliott Hughes70d8f282018-04-25 17:00:14 -0700171 char sender_desc[32] = {}; // " from pid 1234, uid 666"
172 if (signal_has_sender(thread_info.siginfo, thread_info.pid)) {
173 get_signal_sender(sender_desc, sizeof(sender_desc), thread_info.siginfo);
174 }
Elliott Hughes0ba53592017-02-01 16:59:15 -0800175
Elliott Hughes70d8f282018-04-25 17:00:14 -0700176 _LOG(log, logtype::HEADER, "signal %d (%s), code %d (%s%s), fault addr %s\n",
177 thread_info.siginfo->si_signo, get_signame(thread_info.siginfo),
178 thread_info.siginfo->si_code, get_sigcode(thread_info.siginfo), sender_desc, addr_desc);
Jeff Brown053b8652012-06-06 16:25:03 -0700179}
180
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700181static void dump_thread_info(log_t* log, const ThreadInfo& thread_info) {
Elliott Hughes713ec252020-08-03 08:43:43 -0700182 // Don't try to collect logs from the threads that implement the logging system itself.
183 if (thread_info.uid == AID_LOGD) log->should_retrieve_logcat = false;
Christopher Ferris20303f82014-01-10 16:33:16 -0800184
Josh Gao31348a72021-03-29 21:53:42 -0700185 const char* process_name = "<unknown>";
186 if (!thread_info.command_line.empty()) {
187 process_name = thread_info.command_line[0].c_str();
188 }
189
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700190 _LOG(log, logtype::HEADER, "pid: %d, tid: %d, name: %s >>> %s <<<\n", thread_info.pid,
Josh Gao31348a72021-03-29 21:53:42 -0700191 thread_info.tid, thread_info.thread_name.c_str(), process_name);
Misha Wagner39c5b8c2019-04-18 16:07:33 +0100192 _LOG(log, logtype::HEADER, "uid: %d\n", thread_info.uid);
Peter Collingbourne864f15d2020-09-14 20:27:36 -0700193 if (thread_info.tagged_addr_ctrl != -1) {
194 _LOG(log, logtype::HEADER, "tagged_addr_ctrl: %016lx\n", thread_info.tagged_addr_ctrl);
195 }
Christopher Ferris20303f82014-01-10 16:33:16 -0800196}
Jeff Brown053b8652012-06-06 16:25:03 -0700197
Christopher Ferris7937a362018-01-18 11:15:49 -0800198static std::string get_addr_string(uint64_t addr) {
Christopher Ferris862fe022015-06-02 14:52:44 -0700199 std::string addr_str;
200#if defined(__LP64__)
Josh Gao76e1e302021-01-26 15:53:11 -0800201 addr_str = StringPrintf("%08x'%08x", static_cast<uint32_t>(addr >> 32),
Elliott Hughes0ba53592017-02-01 16:59:15 -0800202 static_cast<uint32_t>(addr & 0xffffffff));
Christopher Ferris862fe022015-06-02 14:52:44 -0700203#else
Christopher Ferris7937a362018-01-18 11:15:49 -0800204 addr_str = StringPrintf("%08x", static_cast<uint32_t>(addr));
Christopher Ferris862fe022015-06-02 14:52:44 -0700205#endif
206 return addr_str;
207}
208
Christopher Ferris60eb1972019-01-15 15:18:43 -0800209static void dump_abort_message(log_t* log, unwindstack::Memory* process_memory, uint64_t address) {
Josh Gao7c89f9e2016-01-13 17:57:14 -0800210 if (address == 0) {
211 return;
212 }
213
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700214 size_t length;
215 if (!process_memory->ReadFully(address, &length, sizeof(length))) {
216 _LOG(log, logtype::HEADER, "Failed to read abort message header: %s\n", strerror(errno));
217 return;
218 }
Josh Gao7c89f9e2016-01-13 17:57:14 -0800219
Josh Gao1cc7bd82018-02-13 13:16:17 -0800220 // The length field includes the length of the length field itself.
221 if (length < sizeof(size_t)) {
222 _LOG(log, logtype::HEADER, "Abort message header malformed: claimed length = %zd\n", length);
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700223 return;
Josh Gao7c89f9e2016-01-13 17:57:14 -0800224 }
Josh Gao7c89f9e2016-01-13 17:57:14 -0800225
Josh Gao1cc7bd82018-02-13 13:16:17 -0800226 length -= sizeof(size_t);
227
Josh Gao83b8ac22018-04-20 17:31:53 -0700228 // The abort message should be null terminated already, but reserve a spot for NUL just in case.
229 std::vector<char> msg(length + 1);
Josh Gao1cc7bd82018-02-13 13:16:17 -0800230 if (!process_memory->ReadFully(address + sizeof(length), &msg[0], length)) {
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700231 _LOG(log, logtype::HEADER, "Failed to read abort message: %s\n", strerror(errno));
232 return;
233 }
234
Josh Gao1cc7bd82018-02-13 13:16:17 -0800235 _LOG(log, logtype::HEADER, "Abort message: '%s'\n", &msg[0]);
Josh Gao7c89f9e2016-01-13 17:57:14 -0800236}
237
Christopher Ferris60eb1972019-01-15 15:18:43 -0800238static void dump_all_maps(log_t* log, unwindstack::Unwinder* unwinder, uint64_t addr) {
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700239 bool print_fault_address_marker = addr;
Christopher Ferris20303f82014-01-10 16:33:16 -0800240
Christopher Ferris60eb1972019-01-15 15:18:43 -0800241 unwindstack::Maps* maps = unwinder->GetMaps();
Elliott Hughes868d39a2017-09-26 11:54:49 -0700242 _LOG(log, logtype::MAPS,
243 "\n"
Josh Gao1ce8e142017-09-27 13:59:42 -0700244 "memory map (%zu entr%s):",
Christopher Ferris60eb1972019-01-15 15:18:43 -0800245 maps->Total(), maps->Total() == 1 ? "y" : "ies");
Elliott Hughes868d39a2017-09-26 11:54:49 -0700246 if (print_fault_address_marker) {
Christopher Ferris60eb1972019-01-15 15:18:43 -0800247 if (maps->Total() != 0 && addr < maps->Get(0)->start) {
Josh Gao1ce8e142017-09-27 13:59:42 -0700248 _LOG(log, logtype::MAPS, "\n--->Fault address falls at %s before any mapped regions\n",
Christopher Ferris862fe022015-06-02 14:52:44 -0700249 get_addr_string(addr).c_str());
Christopher Ferrisa21bd932015-02-27 13:39:47 -0800250 print_fault_address_marker = false;
Elliott Hughes868d39a2017-09-26 11:54:49 -0700251 } else {
Josh Gao1ce8e142017-09-27 13:59:42 -0700252 _LOG(log, logtype::MAPS, " (fault address prefixed with --->)\n");
Brigid Smith8606eaa2014-07-07 12:33:50 -0700253 }
Josh Gao1ce8e142017-09-27 13:59:42 -0700254 } else {
255 _LOG(log, logtype::MAPS, "\n");
Brigid Smith8606eaa2014-07-07 12:33:50 -0700256 }
Christopher Ferrisa21bd932015-02-27 13:39:47 -0800257
Christopher Ferris60eb1972019-01-15 15:18:43 -0800258 std::shared_ptr<unwindstack::Memory>& process_memory = unwinder->GetProcessMemory();
259
Christopher Ferrisa21bd932015-02-27 13:39:47 -0800260 std::string line;
Florian Mayer3d67d342019-02-27 18:00:37 +0000261 for (auto const& map_info : *maps) {
Christopher Ferrisa21bd932015-02-27 13:39:47 -0800262 line = " ";
263 if (print_fault_address_marker) {
Christopher Ferris60eb1972019-01-15 15:18:43 -0800264 if (addr < map_info->start) {
Christopher Ferris862fe022015-06-02 14:52:44 -0700265 _LOG(log, logtype::MAPS, "--->Fault address falls at %s between mapped regions\n",
266 get_addr_string(addr).c_str());
Christopher Ferrisa21bd932015-02-27 13:39:47 -0800267 print_fault_address_marker = false;
Christopher Ferris60eb1972019-01-15 15:18:43 -0800268 } else if (addr >= map_info->start && addr < map_info->end) {
Christopher Ferrisa21bd932015-02-27 13:39:47 -0800269 line = "--->";
270 print_fault_address_marker = false;
271 }
272 }
Christopher Ferris60eb1972019-01-15 15:18:43 -0800273 line += get_addr_string(map_info->start) + '-' + get_addr_string(map_info->end - 1) + ' ';
274 if (map_info->flags & PROT_READ) {
Christopher Ferrisa21bd932015-02-27 13:39:47 -0800275 line += 'r';
276 } else {
277 line += '-';
278 }
Christopher Ferris60eb1972019-01-15 15:18:43 -0800279 if (map_info->flags & PROT_WRITE) {
Christopher Ferrisa21bd932015-02-27 13:39:47 -0800280 line += 'w';
281 } else {
282 line += '-';
283 }
Christopher Ferris60eb1972019-01-15 15:18:43 -0800284 if (map_info->flags & PROT_EXEC) {
Christopher Ferrisa21bd932015-02-27 13:39:47 -0800285 line += 'x';
286 } else {
287 line += '-';
288 }
Christopher Ferris60eb1972019-01-15 15:18:43 -0800289 line += StringPrintf(" %8" PRIx64 " %8" PRIx64, map_info->offset,
290 map_info->end - map_info->start);
Christopher Ferris862fe022015-06-02 14:52:44 -0700291 bool space_needed = true;
Christopher Ferris60eb1972019-01-15 15:18:43 -0800292 if (!map_info->name.empty()) {
Christopher Ferris862fe022015-06-02 14:52:44 -0700293 space_needed = false;
Christopher Ferris60eb1972019-01-15 15:18:43 -0800294 line += " " + map_info->name;
295 std::string build_id = map_info->GetPrintableBuildID();
296 if (!build_id.empty()) {
Christopher Ferrisa21bd932015-02-27 13:39:47 -0800297 line += " (BuildId: " + build_id + ")";
298 }
299 }
Christopher Ferris60eb1972019-01-15 15:18:43 -0800300 uint64_t load_bias = map_info->GetLoadBias(process_memory);
301 if (load_bias != 0) {
Christopher Ferris862fe022015-06-02 14:52:44 -0700302 if (space_needed) {
303 line += ' ';
304 }
Christopher Ferris60eb1972019-01-15 15:18:43 -0800305 line += StringPrintf(" (load bias 0x%" PRIx64 ")", load_bias);
Christopher Ferris2106f4b2015-05-01 15:02:03 -0700306 }
Christopher Ferrisa21bd932015-02-27 13:39:47 -0800307 _LOG(log, logtype::MAPS, "%s\n", line.c_str());
308 }
309 if (print_fault_address_marker) {
Christopher Ferris862fe022015-06-02 14:52:44 -0700310 _LOG(log, logtype::MAPS, "--->Fault address falls at %s after any mapped regions\n",
311 get_addr_string(addr).c_str());
Christopher Ferris20303f82014-01-10 16:33:16 -0800312 }
Jeff Brown053b8652012-06-06 16:25:03 -0700313}
314
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700315static void print_register_row(log_t* log,
316 const std::vector<std::pair<std::string, uint64_t>>& registers) {
317 std::string output;
318 for (auto& [name, value] : registers) {
Christopher Ferris7937a362018-01-18 11:15:49 -0800319 output += android::base::StringPrintf(" %-3s %0*" PRIx64, name.c_str(),
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700320 static_cast<int>(2 * sizeof(void*)),
Christopher Ferris7937a362018-01-18 11:15:49 -0800321 static_cast<uint64_t>(value));
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700322 }
323
324 _LOG(log, logtype::REGISTERS, " %s\n", output.c_str());
Josh Gao77b00ed2017-05-05 18:11:23 -0700325}
326
Christopher Ferris60eb1972019-01-15 15:18:43 -0800327void dump_registers(log_t* log, unwindstack::Regs* regs) {
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700328 // Split lr/sp/pc into their own special row.
329 static constexpr size_t column_count = 4;
330 std::vector<std::pair<std::string, uint64_t>> current_row;
331 std::vector<std::pair<std::string, uint64_t>> special_row;
332
333#if defined(__arm__) || defined(__aarch64__)
Peter Collingbournebb2f9412019-11-18 12:36:50 -0800334 static constexpr const char* special_registers[] = {"ip", "lr", "sp", "pc", "pst"};
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700335#elif defined(__i386__)
336 static constexpr const char* special_registers[] = {"ebp", "esp", "eip"};
337#elif defined(__x86_64__)
338 static constexpr const char* special_registers[] = {"rbp", "rsp", "rip"};
339#else
340 static constexpr const char* special_registers[] = {};
341#endif
342
343 regs->IterateRegisters([log, &current_row, &special_row](const char* name, uint64_t value) {
344 auto row = &current_row;
345 for (const char* special_name : special_registers) {
346 if (strcmp(special_name, name) == 0) {
347 row = &special_row;
348 break;
349 }
350 }
351
352 row->emplace_back(name, value);
353 if (current_row.size() == column_count) {
354 print_register_row(log, current_row);
355 current_row.clear();
356 }
357 });
358
359 if (!current_row.empty()) {
360 print_register_row(log, current_row);
361 }
362
363 print_register_row(log, special_row);
364}
365
Christopher Ferris60eb1972019-01-15 15:18:43 -0800366void dump_memory_and_code(log_t* log, unwindstack::Maps* maps, unwindstack::Memory* memory,
367 unwindstack::Regs* regs) {
368 regs->IterateRegisters([log, maps, memory](const char* reg_name, uint64_t reg_value) {
Elliott Hughese1415a52018-02-15 09:18:21 -0800369 std::string label{"memory near "s + reg_name};
Christopher Ferris60eb1972019-01-15 15:18:43 -0800370 if (maps) {
Peter Collingbourne0ea08c22021-02-05 14:59:08 -0800371 unwindstack::MapInfo* map_info = maps->Find(untag_address(reg_value));
Christopher Ferris60eb1972019-01-15 15:18:43 -0800372 if (map_info != nullptr && !map_info->name.empty()) {
373 label += " (" + map_info->name + ")";
374 }
Elliott Hughese1415a52018-02-15 09:18:21 -0800375 }
376 dump_memory(log, memory, reg_value, label);
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700377 });
378}
379
Christopher Ferris60eb1972019-01-15 15:18:43 -0800380static bool dump_thread(log_t* log, unwindstack::Unwinder* unwinder, const ThreadInfo& thread_info,
Peter Collingbourne843f7e62020-02-28 19:07:33 -0800381 const ProcessInfo& process_info, bool primary_thread) {
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700382 log->current_tid = thread_info.tid;
Josh Gao7c89f9e2016-01-13 17:57:14 -0800383 if (!primary_thread) {
Brigid Smith62ba4892014-06-10 11:53:08 -0700384 _LOG(log, logtype::THREAD, "--- --- --- --- --- --- --- --- --- --- --- --- --- --- --- ---\n");
Josh Gao7c89f9e2016-01-13 17:57:14 -0800385 }
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700386 dump_thread_info(log, thread_info);
Christopher Ferris20303f82014-01-10 16:33:16 -0800387
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700388 if (thread_info.siginfo) {
Peter Collingbournef03af882020-03-20 18:09:00 -0700389 dump_signal_info(log, thread_info, process_info, unwinder->GetProcessMemory().get());
Mitch Phillipse0b4bb12020-02-14 14:54:31 -0800390 }
391
Peter Collingbourne843f7e62020-02-28 19:07:33 -0800392 std::unique_ptr<GwpAsanCrashData> gwp_asan_crash_data;
Peter Collingbournef8622522020-04-07 14:07:32 -0700393 std::unique_ptr<ScudoCrashData> scudo_crash_data;
Peter Collingbourne843f7e62020-02-28 19:07:33 -0800394 if (primary_thread) {
395 gwp_asan_crash_data = std::make_unique<GwpAsanCrashData>(unwinder->GetProcessMemory().get(),
396 process_info, thread_info);
Peter Collingbournef8622522020-04-07 14:07:32 -0700397 scudo_crash_data =
398 std::make_unique<ScudoCrashData>(unwinder->GetProcessMemory().get(), process_info);
Peter Collingbourne843f7e62020-02-28 19:07:33 -0800399 }
400
401 if (primary_thread && gwp_asan_crash_data->CrashIsMine()) {
402 gwp_asan_crash_data->DumpCause(log);
Peter Collingbournef8622522020-04-07 14:07:32 -0700403 } else if (thread_info.siginfo && !(primary_thread && scudo_crash_data->CrashIsMine())) {
Josh Gao76e1e302021-01-26 15:53:11 -0800404 dump_probable_cause(log, thread_info.siginfo, unwinder->GetMaps(), thread_info.registers.get());
Josh Gao7c89f9e2016-01-13 17:57:14 -0800405 }
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700406
Josh Gao34c25562017-12-22 14:18:39 -0800407 if (primary_thread) {
Peter Collingbourne843f7e62020-02-28 19:07:33 -0800408 dump_abort_message(log, unwinder->GetProcessMemory().get(), process_info.abort_msg_address);
Josh Gao34c25562017-12-22 14:18:39 -0800409 }
410
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700411 dump_registers(log, thread_info.registers.get());
412
Josh Gao5d1c14f2018-04-20 12:04:41 -0700413 // Unwind will mutate the registers, so make a copy first.
Christopher Ferris60eb1972019-01-15 15:18:43 -0800414 std::unique_ptr<unwindstack::Regs> regs_copy(thread_info.registers->Clone());
415 unwinder->SetRegs(regs_copy.get());
416 unwinder->Unwind();
417 if (unwinder->NumFrames() == 0) {
Christopher Ferrisb05c4722020-09-23 15:51:46 -0700418 _LOG(log, logtype::THREAD, "Failed to unwind\n");
419 if (unwinder->LastErrorCode() != unwindstack::ERROR_NONE) {
420 _LOG(log, logtype::THREAD, " Error code: %s\n", unwinder->LastErrorCodeString());
421 _LOG(log, logtype::THREAD, " Error address: 0x%" PRIx64 "\n", unwinder->LastErrorAddress());
422 }
Christopher Ferris60eb1972019-01-15 15:18:43 -0800423 } else {
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700424 _LOG(log, logtype::BACKTRACE, "\nbacktrace:\n");
Christopher Ferris4ae266c2019-04-03 09:27:12 -0700425 log_backtrace(log, unwinder, " ");
Josh Gao7c89f9e2016-01-13 17:57:14 -0800426 }
Brigid Smith62ba4892014-06-10 11:53:08 -0700427
Josh Gao7c89f9e2016-01-13 17:57:14 -0800428 if (primary_thread) {
Peter Collingbourne843f7e62020-02-28 19:07:33 -0800429 if (gwp_asan_crash_data->HasDeallocationTrace()) {
430 gwp_asan_crash_data->DumpDeallocationTrace(log, unwinder);
Mitch Phillipse0b4bb12020-02-14 14:54:31 -0800431 }
432
Peter Collingbourne843f7e62020-02-28 19:07:33 -0800433 if (gwp_asan_crash_data->HasAllocationTrace()) {
434 gwp_asan_crash_data->DumpAllocationTrace(log, unwinder);
Mitch Phillipse0b4bb12020-02-14 14:54:31 -0800435 }
436
Peter Collingbournef8622522020-04-07 14:07:32 -0700437 scudo_crash_data->DumpCause(log, unwinder);
438
Christopher Ferris60eb1972019-01-15 15:18:43 -0800439 unwindstack::Maps* maps = unwinder->GetMaps();
440 dump_memory_and_code(log, maps, unwinder->GetProcessMemory().get(),
441 thread_info.registers.get());
442 if (maps != nullptr) {
Christopher Ferris7937a362018-01-18 11:15:49 -0800443 uint64_t addr = 0;
Mitch Phillipse4adff02021-01-21 20:41:50 -0800444 if (process_info.has_fault_address) {
445 addr = process_info.untagged_fault_address;
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700446 }
Christopher Ferris60eb1972019-01-15 15:18:43 -0800447 dump_all_maps(log, unwinder, addr);
Christopher Ferris20303f82014-01-10 16:33:16 -0800448 }
449 }
450
Josh Gao7c89f9e2016-01-13 17:57:14 -0800451 log->current_tid = log->crashed_tid;
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700452 return true;
Jeff Brown053b8652012-06-06 16:25:03 -0700453}
454
Christopher Ferris20303f82014-01-10 16:33:16 -0800455// Reads the contents of the specified log device, filters out the entries
456// that don't match the specified pid, and writes them to the tombstone file.
457//
Mark Salyzyn17e85c02014-06-27 15:55:19 -0700458// If "tail" is non-zero, log the last "tail" number of lines.
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700459static void dump_log_file(log_t* log, pid_t pid, const char* filename, unsigned int tail) {
Christopher Ferris20303f82014-01-10 16:33:16 -0800460 bool first = true;
Christopher Ferrisc637ada2018-07-13 16:55:38 -0700461 logger_list* logger_list;
Jeff Brown053b8652012-06-06 16:25:03 -0700462
Mark Salyzyn45ae4462014-07-25 12:25:48 -0700463 if (!log->should_retrieve_logcat) {
464 return;
465 }
466
Tom Cherry907b2d02020-03-23 13:40:10 -0700467 logger_list =
468 android_logger_list_open(android_name_to_log_id(filename), ANDROID_LOG_NONBLOCK, tail, pid);
Jeff Brown053b8652012-06-06 16:25:03 -0700469
Mark Salyzyn22b5cef2013-11-22 10:53:34 -0800470 if (!logger_list) {
Brigid Smith50eb5462014-06-18 14:17:57 -0700471 ALOGE("Unable to open %s: %s\n", filename, strerror(errno));
Christopher Ferris20303f82014-01-10 16:33:16 -0800472 return;
473 }
474
Christopher Ferris20303f82014-01-10 16:33:16 -0800475 while (true) {
Christopher Ferrisc637ada2018-07-13 16:55:38 -0700476 log_msg log_entry;
Mark Salyzyn22b5cef2013-11-22 10:53:34 -0800477 ssize_t actual = android_logger_list_read(logger_list, &log_entry);
478
Christopher Ferris20303f82014-01-10 16:33:16 -0800479 if (actual < 0) {
Mark Salyzyn22b5cef2013-11-22 10:53:34 -0800480 if (actual == -EINTR) {
Christopher Ferris20303f82014-01-10 16:33:16 -0800481 // interrupted by signal, retry
482 continue;
Mark Salyzyn22b5cef2013-11-22 10:53:34 -0800483 } else if (actual == -EAGAIN) {
Christopher Ferris20303f82014-01-10 16:33:16 -0800484 // non-blocking EOF; we're done
485 break;
486 } else {
Christopher Ferrisb36b5922015-06-17 18:35:59 -0700487 ALOGE("Error while reading log: %s\n", strerror(-actual));
Christopher Ferris20303f82014-01-10 16:33:16 -0800488 break;
489 }
490 } else if (actual == 0) {
Christopher Ferrisb36b5922015-06-17 18:35:59 -0700491 ALOGE("Got zero bytes while reading log: %s\n", strerror(errno));
Christopher Ferris20303f82014-01-10 16:33:16 -0800492 break;
Jeff Brown053b8652012-06-06 16:25:03 -0700493 }
494
Brigid Smith50eb5462014-06-18 14:17:57 -0700495 // NOTE: if you ALOGV something here, this will spin forever,
Christopher Ferris20303f82014-01-10 16:33:16 -0800496 // because you will be writing as fast as you're reading. Any
497 // high-frequency debug diagnostics should just be written to
498 // the tombstone file.
Jeff Brown053b8652012-06-06 16:25:03 -0700499
Christopher Ferris20303f82014-01-10 16:33:16 -0800500 if (first) {
Josh Gao76e1e302021-01-26 15:53:11 -0800501 _LOG(log, logtype::LOGS, "--------- %slog %s\n", tail ? "tail end of " : "", filename);
Christopher Ferris20303f82014-01-10 16:33:16 -0800502 first = false;
503 }
504
505 // Msg format is: <priority:1><tag:N>\0<message:N>\0
506 //
507 // We want to display it in the same format as "logcat -v threadtime"
508 // (although in this case the pid is redundant).
Mark Salyzyn989980c2014-05-14 12:37:22 -0700509 char timeBuf[32];
Christopher Ferrisc637ada2018-07-13 16:55:38 -0700510 time_t sec = static_cast<time_t>(log_entry.entry.sec);
Elliott Hughesa660cb32020-07-23 15:26:10 -0700511 tm tm;
512 localtime_r(&sec, &tm);
513 strftime(timeBuf, sizeof(timeBuf), "%m-%d %H:%M:%S", &tm);
Mark Salyzyn989980c2014-05-14 12:37:22 -0700514
Christopher Ferrisc637ada2018-07-13 16:55:38 -0700515 char* msg = log_entry.msg();
516 if (msg == nullptr) {
517 continue;
518 }
Mark Salyzyn22b5cef2013-11-22 10:53:34 -0800519 unsigned char prio = msg[0];
520 char* tag = msg + 1;
521 msg = tag + strlen(tag) + 1;
Christopher Ferris20303f82014-01-10 16:33:16 -0800522
523 // consume any trailing newlines
Mark Salyzynfca0bd12013-12-12 12:21:20 -0800524 char* nl = msg + strlen(msg) - 1;
525 while (nl >= msg && *nl == '\n') {
Mark Salyzyn17e85c02014-06-27 15:55:19 -0700526 *nl-- = '\0';
Christopher Ferris20303f82014-01-10 16:33:16 -0800527 }
528
Christopher Ferrisc637ada2018-07-13 16:55:38 -0700529 static const char* kPrioChars = "!.VDIWEFS";
Christopher Ferris20303f82014-01-10 16:33:16 -0800530 char prioChar = (prio < strlen(kPrioChars) ? kPrioChars[prio] : '?');
531
Mark Salyzynfca0bd12013-12-12 12:21:20 -0800532 // Look for line breaks ('\n') and display each text line
533 // on a separate line, prefixed with the header, like logcat does.
534 do {
535 nl = strchr(msg, '\n');
Christopher Ferrisc637ada2018-07-13 16:55:38 -0700536 if (nl != nullptr) {
Mark Salyzynfca0bd12013-12-12 12:21:20 -0800537 *nl = '\0';
538 ++nl;
539 }
540
Christopher Ferrisc637ada2018-07-13 16:55:38 -0700541 _LOG(log, logtype::LOGS, "%s.%03d %5d %5d %c %-8s: %s\n", timeBuf,
542 log_entry.entry.nsec / 1000000, log_entry.entry.pid, log_entry.entry.tid, prioChar, tag,
543 msg);
Mark Salyzynfca0bd12013-12-12 12:21:20 -0800544 } while ((msg = nl));
Christopher Ferris20303f82014-01-10 16:33:16 -0800545 }
Jeff Brown053b8652012-06-06 16:25:03 -0700546
Mark Salyzyn22b5cef2013-11-22 10:53:34 -0800547 android_logger_list_free(logger_list);
Jeff Brown053b8652012-06-06 16:25:03 -0700548}
549
Christopher Ferris20303f82014-01-10 16:33:16 -0800550// Dumps the logs generated by the specified pid to the tombstone, from both
551// "system" and "main" log devices. Ideally we'd interleave the output.
Mark Salyzyn17e85c02014-06-27 15:55:19 -0700552static void dump_logs(log_t* log, pid_t pid, unsigned int tail) {
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700553 if (pid == getpid()) {
554 // Cowardly refuse to dump logs while we're running in-process.
555 return;
556 }
557
Mark Salyzyn22b5cef2013-11-22 10:53:34 -0800558 dump_log_file(log, pid, "system", tail);
559 dump_log_file(log, pid, "main", tail);
Jeff Brown053b8652012-06-06 16:25:03 -0700560}
561
Josh Gao76e1e302021-01-26 15:53:11 -0800562void engrave_tombstone_ucontext(int tombstone_fd, int proto_fd, uint64_t abort_msg_address,
563 siginfo_t* siginfo, ucontext_t* ucontext) {
Misha Wagner39c5b8c2019-04-18 16:07:33 +0100564 pid_t uid = getuid();
Josh Gaoe1aa0ca2017-03-01 17:23:22 -0800565 pid_t pid = getpid();
566 pid_t tid = gettid();
567
Josh Gaoe73c9322017-02-08 16:06:26 -0800568 log_t log;
569 log.current_tid = tid;
570 log.crashed_tid = tid;
571 log.tfd = tombstone_fd;
572 log.amfd_data = nullptr;
573
Elliott Hughesa660cb32020-07-23 15:26:10 -0700574 std::string thread_name = get_thread_name(tid);
Josh Gao31348a72021-03-29 21:53:42 -0700575 std::vector<std::string> command_line = get_command_line(pid);
Josh Gao57f58f82017-03-15 23:23:22 -0700576
Christopher Ferris60eb1972019-01-15 15:18:43 -0800577 std::unique_ptr<unwindstack::Regs> regs(
578 unwindstack::Regs::CreateFromUcontext(unwindstack::Regs::CurrentArch(), ucontext));
Josh Gaoe73c9322017-02-08 16:06:26 -0800579
Josh Gao76e1e302021-01-26 15:53:11 -0800580 std::string selinux_label;
581 android::base::ReadFileToString("/proc/self/attr/current", &selinux_label);
582
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700583 std::map<pid_t, ThreadInfo> threads;
Elliott Hughesa660cb32020-07-23 15:26:10 -0700584 threads[tid] = ThreadInfo{
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700585 .registers = std::move(regs),
Misha Wagner39c5b8c2019-04-18 16:07:33 +0100586 .uid = uid,
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700587 .tid = tid,
Josh Gao76e1e302021-01-26 15:53:11 -0800588 .thread_name = std::move(thread_name),
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700589 .pid = pid,
Josh Gao31348a72021-03-29 21:53:42 -0700590 .command_line = std::move(command_line),
Josh Gao76e1e302021-01-26 15:53:11 -0800591 .selinux_label = std::move(selinux_label),
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700592 .siginfo = siginfo,
593 };
Josh Gao77b00ed2017-05-05 18:11:23 -0700594
Christopher Ferrisb05c4722020-09-23 15:51:46 -0700595 unwindstack::UnwinderFromPid unwinder(kMaxFrames, pid, unwindstack::Regs::CurrentArch());
596 if (!unwinder.Init()) {
Josh Gao618cea32021-01-26 17:45:43 -0800597 async_safe_fatal("failed to init unwinder object");
Josh Gaoe73c9322017-02-08 16:06:26 -0800598 }
Josh Gaofdc95c92017-09-13 15:33:39 -0700599
Peter Collingbourne843f7e62020-02-28 19:07:33 -0800600 ProcessInfo process_info;
601 process_info.abort_msg_address = abort_msg_address;
Josh Gao76e1e302021-01-26 15:53:11 -0800602 engrave_tombstone(unique_fd(dup(tombstone_fd)), unique_fd(dup(proto_fd)), &unwinder, threads, tid,
603 process_info, nullptr, nullptr);
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700604}
605
Josh Gao76e1e302021-01-26 15:53:11 -0800606void engrave_tombstone(unique_fd output_fd, unique_fd proto_fd, unwindstack::Unwinder* unwinder,
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700607 const std::map<pid_t, ThreadInfo>& threads, pid_t target_thread,
Peter Collingbourne843f7e62020-02-28 19:07:33 -0800608 const ProcessInfo& process_info, OpenFilesList* open_files,
609 std::string* amfd_data) {
Elliott Hughesa660cb32020-07-23 15:26:10 -0700610 // Don't copy log messages to tombstone unless this is a development device.
Josh Gao76e1e302021-01-26 15:53:11 -0800611 Tombstone tombstone;
612 engrave_tombstone_proto(&tombstone, unwinder, threads, target_thread, process_info, open_files);
613
Josh Gao618cea32021-01-26 17:45:43 -0800614 if (proto_fd != -1) {
615 if (!tombstone.SerializeToFileDescriptor(proto_fd.get())) {
616 async_safe_format_log(ANDROID_LOG_ERROR, LOG_TAG, "failed to write proto tombstone: %s",
617 strerror(errno));
618 }
Josh Gao76e1e302021-01-26 15:53:11 -0800619 }
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700620
621 log_t log;
622 log.current_tid = target_thread;
623 log.crashed_tid = target_thread;
624 log.tfd = output_fd.get();
625 log.amfd_data = amfd_data;
626
Josh Gao3be68742021-02-18 16:56:48 -0800627 bool translate_proto = GetBoolProperty("debug.debuggerd.translate_proto_to_text", true);
Josh Gao76e1e302021-01-26 15:53:11 -0800628 if (translate_proto) {
629 tombstone_proto_to_text(tombstone, [&log](const std::string& line, bool should_log) {
630 _LOG(&log, should_log ? logtype::HEADER : logtype::LOGS, "%s\n", line.c_str());
631 });
632 } else {
633 bool want_logs = GetBoolProperty("ro.debuggable", false);
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700634
Josh Gao76e1e302021-01-26 15:53:11 -0800635 _LOG(&log, logtype::HEADER,
636 "*** *** *** *** *** *** *** *** *** *** *** *** *** *** *** ***\n");
637 dump_header_info(&log);
638 _LOG(&log, logtype::HEADER, "Timestamp: %s\n", get_timestamp().c_str());
Mitch Phillipse0b4bb12020-02-14 14:54:31 -0800639
Josh Gao76e1e302021-01-26 15:53:11 -0800640 auto it = threads.find(target_thread);
641 if (it == threads.end()) {
Josh Gao618cea32021-01-26 17:45:43 -0800642 async_safe_fatal("failed to find target thread");
Josh Gaofdc95c92017-09-13 15:33:39 -0700643 }
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700644
Josh Gao76e1e302021-01-26 15:53:11 -0800645 dump_thread(&log, unwinder, it->second, process_info, true);
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700646
Josh Gao76e1e302021-01-26 15:53:11 -0800647 if (want_logs) {
648 dump_logs(&log, it->second.pid, 50);
649 }
Josh Gao2b2ae0c2017-08-21 14:31:17 -0700650
Josh Gao76e1e302021-01-26 15:53:11 -0800651 for (auto& [tid, thread_info] : threads) {
652 if (tid == target_thread) {
653 continue;
654 }
655
656 dump_thread(&log, unwinder, thread_info, process_info, false);
657 }
658
659 if (open_files) {
660 _LOG(&log, logtype::OPEN_FILES, "\nopen files:\n");
661 dump_open_files_list(&log, *open_files, " ");
662 }
663
664 if (want_logs) {
665 dump_logs(&log, it->second.pid, 0);
666 }
Josh Gaofdc95c92017-09-13 15:33:39 -0700667 }
Josh Gaoe73c9322017-02-08 16:06:26 -0800668}