2 * Copyright (c) 1991, 1992 Paul Kranenburg <pk@cs.few.eur.nl>
3 * Copyright (c) 1993 Branko Lankester <branko@hacktic.nl>
4 * Copyright (c) 1993, 1994, 1995, 1996 Rick Sladkey <jrs@world.std.com>
5 * Copyright (c) 2001-2018 The strace developers.
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted provided that the following conditions
11 * 1. Redistributions of source code must retain the above copyright
12 * notice, this list of conditions and the following disclaimer.
13 * 2. Redistributions in binary form must reproduce the above copyright
14 * notice, this list of conditions and the following disclaimer in the
15 * documentation and/or other materials provided with the distribution.
16 * 3. The name of the author may not be used to endorse or promote products
17 * derived from this software without specific prior written permission.
19 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
20 * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
21 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
22 * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
23 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
24 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
25 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
26 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
27 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
28 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
42 #include <sys/types.h>
47 /* Open-coding isprint(ch) et al proved more efficient than calling
48 * generalized libc interface. We don't *want* to do non-ASCII anyway.
50 /* #include <ctype.h> */
56 #include "arch_defs.h"
57 #include "error_prints.h"
58 #include "gcc_compat.h"
59 #include "kernel_types.h"
61 #include "mpers_type.h"
62 #include "string_to_uint.h"
67 const char *strerror(int);
70 /* Some libc have stpcpy, some don't. Sigh...
71 * Roll our private implementation...
74 #define stpcpy strace_stpcpy
75 extern char *stpcpy(char *dst, const char *src);
78 /* Glibc has an efficient macro for sigemptyset
79 * (it just does one or two assignments of 0 to internal vector of longs).
81 #if defined(__GLIBC__) && defined(__sigemptyset) && !defined(sigemptyset)
82 # define sigemptyset __sigemptyset
85 /* Configuration section */
86 #ifndef DEFAULT_STRLEN
87 /* default maximum # of bytes printed in `printstr', change with -s switch */
88 # define DEFAULT_STRLEN 32
90 #ifndef DEFAULT_ACOLUMN
91 # define DEFAULT_ACOLUMN 40 /* default alignment column for results */
94 * Maximum number of args to a syscall.
96 * Make sure that all entries in all syscallent.h files have nargs <= MAX_ARGS!
97 * linux/<ARCH>/syscallent*.h:
98 * all have nargs <= 6 except mips o32 which has nargs <= 7.
101 # ifdef LINUX_MIPSO32
107 /* default sorting method for call profiling */
108 #ifndef DEFAULT_SORTBY
109 # define DEFAULT_SORTBY "time"
112 /* To force NOMMU build, set to 1 */
113 #define NOMMU_SYSTEM 0
116 # define ERESTARTSYS 512
118 #ifndef ERESTARTNOINTR
119 # define ERESTARTNOINTR 513
121 #ifndef ERESTARTNOHAND
122 # define ERESTARTNOHAND 514
124 #ifndef ERESTART_RESTARTBLOCK
125 # define ERESTART_RESTARTBLOCK 516
128 #define PERSONALITY0_WORDSIZE SIZEOF_LONG
129 #define PERSONALITY0_KLONGSIZE SIZEOF_KERNEL_LONG_T
130 #define PERSONALITY0_INCLUDE_PRINTERS_DECLS "native_printer_decls.h"
131 #define PERSONALITY0_INCLUDE_PRINTERS_DEFS "native_printer_defs.h"
133 #if SUPPORTED_PERSONALITIES > 1
134 # define PERSONALITY1_WORDSIZE 4
135 # define PERSONALITY1_KLONGSIZE PERSONALITY1_WORDSIZE
138 #if SUPPORTED_PERSONALITIES > 2
139 # define PERSONALITY2_WORDSIZE 4
140 # define PERSONALITY2_KLONGSIZE PERSONALITY0_KLONGSIZE
143 #if SUPPORTED_PERSONALITIES > 1 && defined HAVE_M32_MPERS
144 # define PERSONALITY1_INCLUDE_PRINTERS_DECLS "m32_printer_decls.h"
145 # define PERSONALITY1_INCLUDE_PRINTERS_DEFS "m32_printer_defs.h"
146 # define PERSONALITY1_INCLUDE_FUNCS "m32_funcs.h"
147 # define MPERS_m32_IOCTL_MACROS "ioctl_redefs1.h"
148 # define HAVE_PERSONALITY_1_MPERS 1
150 # define PERSONALITY1_INCLUDE_PRINTERS_DECLS "native_printer_decls.h"
151 # define PERSONALITY1_INCLUDE_PRINTERS_DEFS "native_printer_defs.h"
152 # define PERSONALITY1_INCLUDE_FUNCS "empty.h"
153 # define HAVE_PERSONALITY_1_MPERS 0
156 #if SUPPORTED_PERSONALITIES > 2 && defined HAVE_MX32_MPERS
157 # define PERSONALITY2_INCLUDE_FUNCS "mx32_funcs.h"
158 # define PERSONALITY2_INCLUDE_PRINTERS_DECLS "mx32_printer_decls.h"
159 # define PERSONALITY2_INCLUDE_PRINTERS_DEFS "mx32_printer_defs.h"
160 # define MPERS_mx32_IOCTL_MACROS "ioctl_redefs2.h"
161 # define HAVE_PERSONALITY_2_MPERS 1
163 # define PERSONALITY2_INCLUDE_PRINTERS_DECLS "native_printer_decls.h"
164 # define PERSONALITY2_INCLUDE_PRINTERS_DEFS "native_printer_defs.h"
165 # define PERSONALITY2_INCLUDE_FUNCS "empty.h"
166 # define HAVE_PERSONALITY_2_MPERS 0
169 typedef struct ioctlent {
174 #define INJECT_F_SIGNAL 0x01
175 #define INJECT_F_ERROR 0x02
176 #define INJECT_F_RETVAL 0x04
177 #define INJECT_F_DELAY_ENTER 0x08
178 #define INJECT_F_DELAY_EXIT 0x10
181 uint8_t flags; /* 5 of 8 flags are used so far */
182 uint8_t signo; /* NSIG <= 128 */
183 uint16_t rval_idx; /* index in retval_vec */
184 uint16_t delay_idx; /* index in delay_data_vec */
190 struct inject_data data;
193 #define MAX_ERRNO_VALUE 4095
195 /* Trace Control Block */
197 int flags; /* See below for TCB_ values */
198 int pid; /* If 0, this tcb is free */
199 int qual_flg; /* qual_flags[scno] or DEFAULT_QUAL_FLAGS + RAW */
200 unsigned long u_error; /* Error code */
201 kernel_ulong_t scno; /* System call number */
202 kernel_ulong_t u_arg[MAX_ARGS]; /* System call arguments */
203 kernel_long_t u_rval; /* Return value */
204 #if SUPPORTED_PERSONALITIES > 1
205 unsigned int currpers; /* Personality at the time of scno update */
207 int sys_func_rval; /* Syscall entry parser's return value */
208 int curcol; /* Output column for this process */
209 FILE *outf; /* Output file for this process */
210 const char *auxstr; /* Auxiliary info from syscall (see RVAL_STR) */
211 void *_priv_data; /* Private data for syscall decoding functions */
212 void (*_free_priv_data)(void *); /* Callback for freeing priv_data */
213 const struct_sysent *s_ent; /* sysent[scno] or dummy struct for bad scno */
214 const struct_sysent *s_prev_ent; /* for "resuming interrupted SYSCALL" msg */
215 struct inject_opts *inject_vec[SUPPORTED_PERSONALITIES];
216 struct timespec stime; /* System time usage as of last process wait */
217 struct timespec dtime; /* Delta for system time usage */
218 struct timespec etime; /* Syscall entry time */
219 struct timespec delay_expiration_time; /* When does the delay end */
221 struct mmap_cache_t *mmap_cache;
222 unsigned int mmap_cache_size;
223 unsigned int mmap_cache_generation;
225 #ifdef ENABLE_STACKTRACE
227 struct unwind_queue_t *unwind_queue;
232 /* We have attached to this process, but did not see it stopping yet */
233 #define TCB_STARTUP 0x01
234 #define TCB_IGNORE_ONE_SIGSTOP 0x02 /* Next SIGSTOP is to be ignored */
236 * Are we in system call entry or in syscall exit?
238 * This bit is set in syscall_entering_finish() and cleared in
239 * syscall_exiting_finish().
240 * Other stops which are possible directly after syscall entry (death, ptrace
241 * event stop) are handled without calling syscall_{entering,exiting}_*().
243 * Use entering(tcp) / exiting(tcp) to check this bit to make code more
246 #define TCB_INSYSCALL 0x04
247 #define TCB_ATTACHED 0x08 /* We attached to it already */
248 #define TCB_REPRINT 0x10 /* We should reprint this syscall on exit */
249 #define TCB_FILTERED 0x20 /* This system call has been filtered out */
250 #define TCB_TAMPERED 0x40 /* A syscall has been tampered with */
251 #define TCB_HIDE_LOG 0x80 /* We should hide everything (until execve) */
252 #define TCB_SKIP_DETACH_ON_FIRST_EXEC 0x100 /* -b execve should skip detach on first execve */
253 #define TCB_GRABBED 0x200 /* We grab the process and can catch it
254 * in the middle of a syscall */
255 #define TCB_RECOVERING 0x400 /* We try to recover after detecting incorrect
256 * syscall entering/exiting state */
257 #define TCB_INJECT_DELAY_EXIT 0x800 /* Current syscall needs to be delayed
259 #define TCB_DELAYED 0x1000 /* Current syscall has been delayed */
261 /* qualifier flags */
262 #define QUAL_TRACE 0x001 /* this system call should be traced */
263 #define QUAL_ABBREV 0x002 /* abbreviate the structures of this syscall */
264 #define QUAL_VERBOSE 0x004 /* decode the structures of this syscall */
265 #define QUAL_RAW 0x008 /* print all args in hex for this syscall */
266 #define QUAL_INJECT 0x010 /* tamper with this system call on purpose */
268 #define DEFAULT_QUAL_FLAGS (QUAL_TRACE | QUAL_ABBREV | QUAL_VERBOSE)
270 #define entering(tcp) (!((tcp)->flags & TCB_INSYSCALL))
271 #define exiting(tcp) ((tcp)->flags & TCB_INSYSCALL)
272 #define syserror(tcp) ((tcp)->u_error != 0)
273 #define traced(tcp) ((tcp)->qual_flg & QUAL_TRACE)
274 #define verbose(tcp) ((tcp)->qual_flg & QUAL_VERBOSE)
275 #define abbrev(tcp) ((tcp)->qual_flg & QUAL_ABBREV)
276 #define raw(tcp) ((tcp)->qual_flg & QUAL_RAW)
277 #define inject(tcp) ((tcp)->qual_flg & QUAL_INJECT)
278 #define filtered(tcp) ((tcp)->flags & TCB_FILTERED)
279 #define hide_log(tcp) ((tcp)->flags & TCB_HIDE_LOG)
280 #define syscall_tampered(tcp) ((tcp)->flags & TCB_TAMPERED)
281 #define recovering(tcp) ((tcp)->flags & TCB_RECOVERING)
282 #define inject_delay_exit(tcp) ((tcp)->flags & TCB_INJECT_DELAY_EXIT)
283 #define syscall_delayed(tcp) ((tcp)->flags & TCB_DELAYED)
287 extern const struct xlat addrfams[];
288 extern const struct xlat arp_hardware_types[];
289 extern const struct xlat at_flags[];
290 extern const struct xlat clocknames[];
291 extern const struct xlat dirent_types[];
293 /** Ethernet protocols list, sorted and unterminated, defined in sockaddr.c. */
294 extern const struct xlat ethernet_protocols[];
295 /** Ethernet protocols array size without terminating record. */
296 extern const size_t ethernet_protocols_size;
298 extern const struct xlat evdev_abs[];
299 extern const struct xlat iffflags[];
300 extern const struct xlat inet_protocols[];
301 extern const struct xlat ip_type_of_services[];
302 extern const struct xlat msg_flags[];
303 extern const struct xlat netlink_protocols[];
304 extern const struct xlat nl_netfilter_msg_types[];
305 extern const struct xlat nl_route_types[];
306 extern const struct xlat open_access_modes[];
307 extern const struct xlat open_mode_flags[];
308 extern const struct xlat resource_flags[];
309 extern const struct xlat routing_scopes[];
310 extern const struct xlat routing_table_ids[];
311 extern const struct xlat routing_types[];
312 extern const struct xlat seccomp_filter_flags[];
313 extern const struct xlat seccomp_ret_action[];
314 extern const struct xlat setns_types[];
315 extern const struct xlat sg_io_info[];
316 extern const struct xlat socketlayers[];
317 extern const struct xlat socktypes[];
318 extern const struct xlat tcp_state_flags[];
319 extern const struct xlat tcp_states[];
320 extern const struct xlat whence_codes[];
322 /* Format of syscall return values */
323 #define RVAL_UDECIMAL 000 /* unsigned decimal format */
324 #define RVAL_HEX 001 /* hex format */
325 #define RVAL_OCTAL 002 /* octal format */
326 #define RVAL_FD 010 /* file descriptor */
327 #define RVAL_MASK 013 /* mask for these values */
329 #define RVAL_STR 020 /* Print `auxstr' field after return val */
330 #define RVAL_NONE 040 /* Print nothing */
332 #define RVAL_DECODED 0100 /* syscall decoding finished */
333 #define RVAL_IOCTL_DECODED 0200 /* ioctl sub-parser successfully decoded
336 #define IOCTL_NUMBER_UNKNOWN 0
337 #define IOCTL_NUMBER_HANDLED 1
338 #define IOCTL_NUMBER_STOP_LOOKUP 010
340 #define indirect_ipccall(tcp) (tcp->s_ent->sys_flags & TRACE_INDIRECT_SUBCALL)
351 extern enum sock_proto get_proto_by_name(const char *);
364 extern cflag_t cflag;
367 extern bool count_wallclock;
368 extern unsigned int qflag;
369 extern bool not_failing_only;
370 extern unsigned int show_fd_path;
371 /* are we filtering traces based on paths? */
372 extern struct path_set {
373 const char **paths_selected;
377 #define tracing_paths (global_path_set.num_selected != 0)
378 extern unsigned xflag;
379 extern unsigned followfork;
380 #ifdef ENABLE_STACKTRACE
381 /* if this is true do the stack trace for every system call */
382 extern bool stack_trace_enabled;
384 extern unsigned ptrace_setoptions;
385 extern unsigned max_strlen;
386 extern unsigned os_release;
387 #undef KERNEL_VERSION
388 #define KERNEL_VERSION(a, b, c) (((a) << 16) + ((b) << 8) + (c))
390 extern int read_int_from_file(struct tcb *, const char *, int *);
392 extern void set_sortby(const char *);
393 extern void set_overhead(int);
394 extern void print_pc(struct tcb *);
396 extern int syscall_entering_decode(struct tcb *);
397 extern int syscall_entering_trace(struct tcb *, unsigned int *);
398 extern void syscall_entering_finish(struct tcb *, int);
400 extern int syscall_exiting_decode(struct tcb *, struct timespec *);
401 extern int syscall_exiting_trace(struct tcb *, struct timespec *, int);
402 extern void syscall_exiting_finish(struct tcb *);
404 extern void count_syscall(struct tcb *, const struct timespec *);
405 extern void call_summary(FILE *);
407 extern void clear_regs(struct tcb *tcp);
408 extern int get_scno(struct tcb *);
409 extern kernel_ulong_t get_rt_sigframe_addr(struct tcb *);
412 * Convert a (shuffled) syscall number to the corresponding syscall name.
414 * @param scno Syscall number.
415 * @return String literal corresponding to the syscall number in case latter
416 * is valid; NULL otherwise.
418 extern const char *syscall_name(kernel_ulong_t scno);
420 * Convert a syscall name to the corresponding (shuffled) syscall number.
422 * @param s Syscall name.
423 * @param p Personality.
424 * @param start From which position in syscall entry table resume the search.
425 * @return Shuffled syscall number (ready to use against sysent_vec)
426 * if syscall name is found; -1 otherwise.
428 extern kernel_long_t scno_by_name(const char *s, unsigned p,
429 kernel_long_t start);
431 * Shuffle syscall numbers so that we don't have huge gaps in syscall table.
432 * The shuffling should be an involution: shuffle_scno(shuffle_scno(n)) == n.
434 * @param scno Raw or shuffled syscall number.
435 * @return Shuffled or raw syscall number, respectively.
437 extern kernel_ulong_t shuffle_scno(kernel_ulong_t scno);
438 extern const char *err_name(unsigned long err);
440 extern bool is_erestart(struct tcb *);
441 extern void temporarily_clear_syserror(struct tcb *);
442 extern void restore_cleared_syserror(struct tcb *);
444 extern void *get_tcb_priv_data(const struct tcb *);
445 extern int set_tcb_priv_data(struct tcb *, void *priv_data,
446 void (*free_priv_data)(void *));
447 extern void free_tcb_priv_data(struct tcb *);
449 static inline unsigned long get_tcb_priv_ulong(const struct tcb *tcp)
451 return (unsigned long) get_tcb_priv_data(tcp);
454 static inline int set_tcb_priv_ulong(struct tcb *tcp, unsigned long val)
456 return set_tcb_priv_data(tcp, (void *) val, 0);
460 umoven(struct tcb *, kernel_ulong_t addr, unsigned int len, void *laddr);
461 #define umove(pid, addr, objp) \
462 umoven((pid), (addr), sizeof(*(objp)), (void *) (objp))
465 umoven_or_printaddr64(struct tcb *, uint64_t addr,
466 unsigned int len, void *laddr);
467 #define umove_or_printaddr64(pid, addr, objp) \
468 umoven_or_printaddr64((pid), (addr), sizeof(*(objp)), (void *) (objp))
471 umoven_or_printaddr(struct tcb *tcp, const kernel_ulong_t addr,
472 unsigned int len, void *laddr)
474 return umoven_or_printaddr64(tcp, addr, len, laddr);
476 #define umove_or_printaddr(pid, addr, objp) \
477 umoven_or_printaddr((pid), (addr), sizeof(*(objp)), (void *) (objp))
480 umoven_or_printaddr64_ignore_syserror(struct tcb *, uint64_t addr,
481 unsigned int len, void *laddr);
484 umoven_or_printaddr_ignore_syserror(struct tcb *tcp, const kernel_ulong_t addr,
485 unsigned int len, void *laddr)
487 return umoven_or_printaddr64_ignore_syserror(tcp, addr, len, laddr);
491 umovestr(struct tcb *, kernel_ulong_t addr, unsigned int len, char *laddr);
493 extern int upeek(struct tcb *tcp, unsigned long, kernel_ulong_t *);
494 extern int upoke(struct tcb *tcp, unsigned long, kernel_ulong_t);
497 print_array(struct tcb *,
498 kernel_ulong_t start_addr,
502 int (*umoven_func)(struct tcb *,
506 bool (*print_func)(struct tcb *,
512 #if HAVE_ARCH_GETRVAL2
513 extern long getrval2(struct tcb *);
516 extern const char *signame(const int);
517 extern void pathtrace_select_set(const char *, struct path_set *);
518 extern bool pathtrace_match_set(struct tcb *, struct path_set *);
519 #define pathtrace_select(tcp) \
520 pathtrace_select_set(tcp, &global_path_set)
521 #define pathtrace_match(tcp) \
522 pathtrace_match_set(tcp, &global_path_set)
523 extern int getfdpath(struct tcb *, int, char *, unsigned);
524 extern unsigned long getfdinode(struct tcb *, int);
525 extern enum sock_proto getfdproto(struct tcb *, int);
527 extern const char *xlookup(const struct xlat *, const uint64_t);
528 extern const char *xlat_search(const struct xlat *, const size_t, const uint64_t);
531 struct dyxlat *dyxlat_alloc(size_t nmemb);
532 void dyxlat_free(struct dyxlat *);
533 const struct xlat *dyxlat_get(const struct dyxlat *);
534 void dyxlat_add_pair(struct dyxlat *, uint64_t val, const char *str, size_t len);
536 const struct xlat *genl_families_xlat(struct tcb *tcp);
538 extern unsigned long get_pagesize(void);
539 extern int next_set_bit(const void *bit_array, unsigned cur_bit, unsigned size_bits);
542 * Returns STR if it does not start with PREFIX,
543 * or a pointer to the first char in STR after PREFIX.
544 * The length of PREFIX is specified by PREFIX_LEN.
546 static inline const char *
547 str_strip_prefix_len(const char *str, const char *prefix, size_t prefix_len)
549 return strncmp(str, prefix, prefix_len) ? str : str + prefix_len;
552 #define STR_STRIP_PREFIX(str, prefix) \
553 str_strip_prefix_len((str), (prefix), sizeof(prefix) - 1)
555 #define QUOTE_0_TERMINATED 0x01
556 #define QUOTE_OMIT_LEADING_TRAILING_QUOTES 0x02
557 #define QUOTE_OMIT_TRAILING_0 0x08
558 #define QUOTE_FORCE_HEX 0x10
559 #define QUOTE_EMIT_COMMENT 0x20
561 extern int string_quote(const char *, char *, unsigned int, unsigned int,
562 const char *escape_chars);
563 extern int print_quoted_string_ex(const char *, unsigned int, unsigned int,
564 const char *escape_chars);
565 extern int print_quoted_string(const char *, unsigned int, unsigned int);
566 extern int print_quoted_cstring(const char *, unsigned int);
568 /* a refers to the lower numbered u_arg,
569 * b refers to the higher numbered u_arg
571 #ifdef WORDS_BIGENDIAN
572 # define ULONG_LONG(a, b) \
573 ((unsigned long long)(unsigned)(b) | ((unsigned long long)(a)<<32))
575 # define ULONG_LONG(a, b) \
576 ((unsigned long long)(unsigned)(a) | ((unsigned long long)(b)<<32))
578 extern int getllval(struct tcb *, unsigned long long *, int);
579 extern int printllval(struct tcb *, const char *, int)
580 ATTRIBUTE_FORMAT((printf, 2, 0));
582 extern void printaddr64(uint64_t addr);
583 extern void printaddr(kernel_ulong_t addr);
584 extern int printxvals(const uint64_t, const char *, const struct xlat *, ...)
586 extern int printxval_searchn(const struct xlat *xlat, size_t xlat_size,
587 uint64_t val, const char *dflt);
589 * Wrapper around printxval_searchn that passes ARRAY_SIZE - 1
590 * as the array size, as all arrays are XLAT_END-terminated and
591 * printxval_searchn expects a size without the terminating record.
593 #define printxval_search(xlat__, val__, dflt__) \
594 printxval_searchn(xlat__, ARRAY_SIZE(xlat__) - 1, val__, dflt__)
595 extern int sprintxval(char *buf, size_t size, const struct xlat *,
596 unsigned int val, const char *dflt);
597 extern int printargs(struct tcb *);
598 extern int printargs_u(struct tcb *);
599 extern int printargs_d(struct tcb *);
601 extern int printflags_ex(uint64_t, const char *, const struct xlat *, ...)
603 extern const char *sprintflags(const char *, const struct xlat *, uint64_t);
604 extern const char *sprinttime(long long sec);
605 extern const char *sprinttime_nsec(long long sec, unsigned long long nsec);
606 extern const char *sprinttime_usec(long long sec, unsigned long long usec);
607 extern void print_symbolic_mode_t(unsigned int);
608 extern void print_numeric_umode_t(unsigned short);
609 extern void print_numeric_long_umask(unsigned long);
610 extern void print_dev_t(unsigned long long dev);
611 extern void print_abnormal_hi(kernel_ulong_t);
613 extern kernel_ulong_t *
614 fetch_indirect_syscall_args(struct tcb *, kernel_ulong_t addr, unsigned int n_args);
617 dumpiov_in_msghdr(struct tcb *, kernel_ulong_t addr, kernel_ulong_t data_size);
620 dumpiov_in_mmsghdr(struct tcb *, kernel_ulong_t addr);
623 dumpiov_upto(struct tcb *, int len, kernel_ulong_t addr, kernel_ulong_t data_size);
626 dumpstr(struct tcb *, kernel_ulong_t addr, int len);
629 printstr_ex(struct tcb *, kernel_ulong_t addr, kernel_ulong_t len,
630 unsigned int user_style);
633 printpathn(struct tcb *, kernel_ulong_t addr, unsigned int n);
636 printpath(struct tcb *, kernel_ulong_t addr);
638 #define TIMESPEC_TEXT_BUFSIZE \
639 (sizeof(long long) * 3 * 2 + sizeof("{tv_sec=-, tv_nsec=}"))
640 extern void printfd(struct tcb *, int);
641 extern void print_sockaddr(const void *sa, int len);
643 print_inet_addr(int af, const void *addr, unsigned int len, const char *var_name);
645 decode_inet_addr(struct tcb *, kernel_ulong_t addr,
646 unsigned int len, int family, const char *var_name);
647 extern const char *get_sockaddr_by_inode(struct tcb *, int fd, unsigned long inode);
648 extern bool print_sockaddr_by_inode(struct tcb *, int fd, unsigned long inode);
649 extern void print_dirfd(struct tcb *, int);
652 decode_sockaddr(struct tcb *, kernel_ulong_t addr, int addrlen);
654 extern void printuid(const char *, const unsigned int);
657 print_sigset_addr_len(struct tcb *, kernel_ulong_t addr, kernel_ulong_t len);
659 print_sigset_addr(struct tcb *, kernel_ulong_t addr);
661 extern const char *sprintsigmask_n(const char *, const void *, unsigned int);
662 #define tprintsigmask_addr(prefix, mask) \
663 tprints(sprintsigmask_n((prefix), (mask), sizeof(mask)))
664 extern void printsignal(int);
667 tprint_iov_upto(struct tcb *, kernel_ulong_t len, kernel_ulong_t addr,
668 enum iov_decode, kernel_ulong_t data_size);
671 decode_netlink(struct tcb *, int fd, kernel_ulong_t addr, kernel_ulong_t len);
673 extern void tprint_open_modes(unsigned int);
674 extern const char *sprint_open_modes(unsigned int);
677 decode_seccomp_fprog(struct tcb *, kernel_ulong_t addr);
680 print_seccomp_fprog(struct tcb *, kernel_ulong_t addr, unsigned short len);
683 decode_sock_fprog(struct tcb *, kernel_ulong_t addr);
686 print_sock_fprog(struct tcb *, kernel_ulong_t addr, unsigned short len);
689 extern void print_struct_stat(struct tcb *, const struct strace_stat *const st);
691 struct strace_statfs;
692 struct strace_keyctl_kdf_params;
695 print_struct_statfs(struct tcb *, kernel_ulong_t addr);
698 print_struct_statfs64(struct tcb *, kernel_ulong_t addr, kernel_ulong_t size);
700 extern void print_ifindex(unsigned int);
702 extern void print_bpf_filter_code(const uint16_t code, bool extended);
704 extern void qualify(const char *);
705 extern unsigned int qual_flags(const unsigned int);
707 #define DECL_IOCTL(name) \
709 name ## _ioctl(struct tcb *, unsigned int request, kernel_ulong_t arg) \
710 /* End of DECL_IOCTL definition. */
725 extern int decode_sg_io_v4(struct tcb *, const kernel_ulong_t arg);
726 extern void print_evdev_ff_type(const kernel_ulong_t val);
730 typedef bool (*netlink_decoder_t)(struct tcb *, const struct nlmsghdr *,
731 kernel_ulong_t addr, unsigned int len);
733 #define DECL_NETLINK(name) \
735 decode_netlink_ ## name(struct tcb *, const struct nlmsghdr *, \
736 kernel_ulong_t addr, unsigned int len) \
737 /* End of DECL_NETLINK definition. */
739 DECL_NETLINK(crypto);
740 DECL_NETLINK(netfilter);
742 DECL_NETLINK(selinux);
743 DECL_NETLINK(sock_diag);
745 extern int ts_nz(const struct timespec *);
746 extern int ts_cmp(const struct timespec *, const struct timespec *);
747 extern double ts_float(const struct timespec *);
748 extern void ts_add(struct timespec *, const struct timespec *, const struct timespec *);
749 extern void ts_sub(struct timespec *, const struct timespec *, const struct timespec *);
750 extern void ts_mul(struct timespec *, const struct timespec *, int);
751 extern void ts_div(struct timespec *, const struct timespec *, int);
753 #ifdef ENABLE_STACKTRACE
754 extern void unwind_init(void);
755 extern void unwind_tcb_init(struct tcb *);
756 extern void unwind_tcb_fin(struct tcb *);
757 extern void unwind_tcb_print(struct tcb *);
758 extern void unwind_tcb_capture(struct tcb *);
762 printstrn(struct tcb *tcp, kernel_ulong_t addr, kernel_ulong_t len)
764 return printstr_ex(tcp, addr, len, 0);
768 printstr(struct tcb *tcp, kernel_ulong_t addr)
770 return printstr_ex(tcp, addr, -1, QUOTE_0_TERMINATED);
774 printflags64(const struct xlat *x, uint64_t flags, const char *dflt)
776 return printflags_ex(flags, dflt, x, NULL);
780 printflags(const struct xlat *x, unsigned int flags, const char *dflt)
782 return printflags64(x, flags, dflt);
786 printxval64(const struct xlat *x, const uint64_t val, const char *dflt)
788 return printxvals(val, dflt, x, NULL);
792 printxval(const struct xlat *x, const unsigned int val, const char *dflt)
794 return printxvals(val, dflt, x, NULL);
798 tprint_iov(struct tcb *tcp, kernel_ulong_t len, kernel_ulong_t addr,
799 enum iov_decode decode_iov)
801 tprint_iov_upto(tcp, len, addr, decode_iov, -1);
809 extern void print_timeval32_t(const timeval32_t *);
810 extern void printrusage32(struct tcb *, kernel_ulong_t);
811 extern const char *sprint_timeval32(struct tcb *, kernel_ulong_t addr);
812 extern void print_timeval32(struct tcb *, kernel_ulong_t addr);
813 extern void print_timeval32_utimes(struct tcb *, kernel_ulong_t addr);
814 extern void print_itimerval32(struct tcb *, kernel_ulong_t addr);
817 #ifdef HAVE_STRUCT_USER_DESC
819 * Filter what to print from the point of view of the get_thread_area syscall.
820 * Kernel copies only entry_number field at first and then tries to write the
823 enum user_desc_print_filter {
824 /* Print the "entering" part of struct user_desc - entry_number. */
825 USER_DESC_ENTERING = 1,
826 /* Print the "exiting" part of the structure. */
827 USER_DESC_EXITING = 2,
828 USER_DESC_BOTH = USER_DESC_ENTERING | USER_DESC_EXITING,
831 extern void print_user_desc(struct tcb *, kernel_ulong_t addr,
832 enum user_desc_print_filter filter);
835 /* Strace log generation machinery.
837 * printing_tcp: tcb which has incomplete line being printed right now.
838 * NULL if last line has been completed ('\n'-terminated).
839 * printleader(tcp) examines it, finishes incomplete line if needed,
840 * the sets it to tcp.
841 * line_ended() clears printing_tcp and resets ->curcol = 0.
842 * tcp->curcol == 0 check is also used to detect completeness
843 * of last line, since in -ff mode just checking printing_tcp for NULL
846 * If you change this code, test log generation in both -f and -ff modes
848 * strace -oLOG -f[f] test/threaded_execve
849 * strace -oLOG -f[f] test/sigkill_rain
850 * strace -oLOG -f[f] -p "`pidof web_browser`"
852 extern struct tcb *printing_tcp;
853 extern void printleader(struct tcb *);
854 extern void line_ended(void);
855 extern void tabto(void);
856 extern void tprintf(const char *fmt, ...) ATTRIBUTE_FORMAT((printf, 1, 2));
857 extern void tprints(const char *str);
858 extern void tprintf_comment(const char *fmt, ...) ATTRIBUTE_FORMAT((printf, 1, 2));
859 extern void tprints_comment(const char *str);
861 #if SUPPORTED_PERSONALITIES > 1
862 extern void set_personality(unsigned int personality);
863 extern unsigned current_personality;
865 # define set_personality(personality) ((void)0)
866 # define current_personality 0
869 #if SUPPORTED_PERSONALITIES == 1
870 # define current_wordsize PERSONALITY0_WORDSIZE
871 # define current_klongsize PERSONALITY0_KLONGSIZE
873 # if SUPPORTED_PERSONALITIES == 2 && PERSONALITY0_WORDSIZE == PERSONALITY1_WORDSIZE
874 # define current_wordsize PERSONALITY0_WORDSIZE
876 extern unsigned current_wordsize;
878 # if SUPPORTED_PERSONALITIES == 2 && PERSONALITY0_KLONGSIZE == PERSONALITY1_KLONGSIZE
879 # define current_klongsize PERSONALITY0_KLONGSIZE
881 extern unsigned current_klongsize;
885 #define max_addr() (~0ULL >> ((8 - current_wordsize) * 8))
886 #define max_kaddr() (~0ULL >> ((8 - current_klongsize) * 8))
889 * When u64 is interpreted by the kernel as an address, there is a difference
890 * in behaviour between 32-bit and 64-bit kernel in the way u64_to_user_ptr
891 * works (32-bit kernel trims higher bits during conversion which may result
892 * to a valid address). Since 32-bit strace cannot figure out what kind of
893 * kernel the tracee is running on, it has to account for both possibilities.
895 #if CAN_ARCH_BE_COMPAT_ON_64BIT_KERNEL
898 * Print raw 64-bit value as an address if it's too big to fit in strace's
902 print_big_u64_addr(const uint64_t addr)
904 if (sizeof(kernel_long_t) < 8 && addr > max_kaddr()) {
909 #else /* !CAN_ARCH_BE_COMPAT_ON_64BIT_KERNEL */
910 # define print_big_u64_addr(addr_) ((void) 0)
911 #endif /* CAN_ARCH_BE_COMPAT_ON_64BIT_KERNEL */
913 #if SIZEOF_KERNEL_LONG_T > 4 \
914 && (SIZEOF_LONG < SIZEOF_KERNEL_LONG_T || !defined(current_wordsize))
915 # define ANY_WORDSIZE_LESS_THAN_KERNEL_LONG 1
917 # define ANY_WORDSIZE_LESS_THAN_KERNEL_LONG 0
920 #define DECL_PRINTNUM(name) \
922 printnum_ ## name(struct tcb *, kernel_ulong_t addr, const char *fmt) \
923 ATTRIBUTE_FORMAT((printf, 3, 0)) \
924 /* End of DECL_PRINTNUM definition. */
926 DECL_PRINTNUM(short);
928 DECL_PRINTNUM(int64);
931 #define DECL_PRINTNUM_ADDR(name) \
933 printnum_addr_ ## name(struct tcb *, kernel_ulong_t addr) \
934 /* End of DECL_PRINTNUM_ADDR definition. */
936 DECL_PRINTNUM_ADDR(int);
937 DECL_PRINTNUM_ADDR(int64);
938 #undef DECL_PRINTNUM_ADDR
940 #ifndef current_wordsize
942 printnum_long_int(struct tcb *, kernel_ulong_t addr,
943 const char *fmt_long, const char *fmt_int)
944 ATTRIBUTE_FORMAT((printf, 3, 0))
945 ATTRIBUTE_FORMAT((printf, 4, 0));
946 extern bool printnum_addr_long_int(struct tcb *, kernel_ulong_t addr);
947 # define printnum_slong(tcp, addr) \
948 printnum_long_int((tcp), (addr), "%" PRId64, "%d")
949 # define printnum_ulong(tcp, addr) \
950 printnum_long_int((tcp), (addr), "%" PRIu64, "%u")
951 # define printnum_ptr(tcp, addr) \
952 printnum_addr_long_int((tcp), (addr))
953 #elif current_wordsize > 4
954 # define printnum_slong(tcp, addr) \
955 printnum_int64((tcp), (addr), "%" PRId64)
956 # define printnum_ulong(tcp, addr) \
957 printnum_int64((tcp), (addr), "%" PRIu64)
958 # define printnum_ptr(tcp, addr) \
959 printnum_addr_int64((tcp), (addr))
960 #else /* current_wordsize == 4 */
961 # define printnum_slong(tcp, addr) \
962 printnum_int((tcp), (addr), "%d")
963 # define printnum_ulong(tcp, addr) \
964 printnum_int((tcp), (addr), "%u")
965 # define printnum_ptr(tcp, addr) \
966 printnum_addr_int((tcp), (addr))
969 #ifndef current_klongsize
970 extern bool printnum_addr_klong_int(struct tcb *, kernel_ulong_t addr);
971 # define printnum_kptr(tcp, addr) \
972 printnum_addr_klong_int((tcp), (addr))
973 #elif current_klongsize > 4
974 # define printnum_kptr(tcp, addr) \
975 printnum_addr_int64((tcp), (addr))
976 #else /* current_klongsize == 4 */
977 # define printnum_kptr(tcp, addr) \
978 printnum_addr_int((tcp), (addr))
981 #define DECL_PRINTPAIR(name) \
983 printpair_ ## name(struct tcb *, kernel_ulong_t addr, const char *fmt) \
984 ATTRIBUTE_FORMAT((printf, 3, 0)) \
985 /* End of DECL_PRINTPAIR definition. */
988 DECL_PRINTPAIR(int64);
989 #undef DECL_PRINTPAIR
991 static inline kernel_long_t
992 truncate_klong_to_current_wordsize(const kernel_long_t v)
994 #if ANY_WORDSIZE_LESS_THAN_KERNEL_LONG
995 if (current_wordsize < sizeof(v)) {
1004 static inline kernel_ulong_t
1005 truncate_kulong_to_current_wordsize(const kernel_ulong_t v)
1007 #if ANY_WORDSIZE_LESS_THAN_KERNEL_LONG
1008 if (current_wordsize < sizeof(v)) {
1009 return (unsigned int) v;
1018 * Cast a pointer or a pointer-sized integer to kernel_ulong_t.
1020 #define ptr_to_kulong(v) ((kernel_ulong_t) (unsigned long) (v))
1023 * Zero-extend a signed integer type to unsigned long long.
1025 #define zero_extend_signed_to_ull(v) \
1026 (sizeof(v) == sizeof(char) ? (unsigned long long) (unsigned char) (v) : \
1027 sizeof(v) == sizeof(short) ? (unsigned long long) (unsigned short) (v) : \
1028 sizeof(v) == sizeof(int) ? (unsigned long long) (unsigned int) (v) : \
1029 sizeof(v) == sizeof(long) ? (unsigned long long) (unsigned long) (v) : \
1030 (unsigned long long) (v))
1033 * Sign-extend an unsigned integer type to long long.
1035 #define sign_extend_unsigned_to_ll(v) \
1036 (sizeof(v) == sizeof(char) ? (long long) (char) (v) : \
1037 sizeof(v) == sizeof(short) ? (long long) (short) (v) : \
1038 sizeof(v) == sizeof(int) ? (long long) (int) (v) : \
1039 sizeof(v) == sizeof(long) ? (long long) (long) (v) : \
1042 extern const struct_sysent sysent0[];
1043 extern const char *const errnoent0[];
1044 extern const char *const signalent0[];
1045 extern const struct_ioctlent ioctlent0[];
1047 extern const char *const personality_names[];
1049 #if SUPPORTED_PERSONALITIES > 1
1050 extern const struct_sysent *sysent;
1051 extern const char *const *errnoent;
1052 extern const char *const *signalent;
1053 extern const struct_ioctlent *ioctlent;
1055 # define sysent sysent0
1056 # define errnoent errnoent0
1057 # define signalent signalent0
1058 # define ioctlent ioctlent0
1061 extern unsigned nsyscalls;
1062 extern unsigned nerrnos;
1063 extern unsigned nsignals;
1064 extern unsigned nioctlents;
1066 extern const unsigned int nsyscall_vec[SUPPORTED_PERSONALITIES];
1067 extern const struct_sysent *const sysent_vec[SUPPORTED_PERSONALITIES];
1068 extern struct inject_opts *inject_vec[SUPPORTED_PERSONALITIES];
1070 #ifdef IN_MPERS_BOOTSTRAP
1071 /* Transform multi-line MPERS_PRINTER_DECL statements to one-liners. */
1072 # define MPERS_PRINTER_DECL(type, name, ...) MPERS_PRINTER_DECL(type, name, __VA_ARGS__)
1073 #else /* !IN_MPERS_BOOTSTRAP */
1074 # if SUPPORTED_PERSONALITIES > 1
1075 # include "printers.h"
1077 # include "native_printer_decls.h"
1079 # define MPERS_PRINTER_DECL(type, name, ...) type MPERS_FUNC_NAME(name)(__VA_ARGS__)
1080 #endif /* !IN_MPERS_BOOTSTRAP */
1082 /* Checks that sysent[scno] is not out of range. */
1084 scno_in_range(kernel_ulong_t scno)
1086 return scno < nsyscalls;
1090 * Checks whether scno is not out of range,
1091 * its corresponding sysent[scno].sys_func is non-NULL,
1092 * and its sysent[scno].sys_flags has no TRACE_INDIRECT_SUBCALL flag set.
1095 scno_is_valid(kernel_ulong_t scno)
1097 return scno_in_range(scno)
1098 && sysent[scno].sys_func
1099 && !(sysent[scno].sys_flags & TRACE_INDIRECT_SUBCALL);
1102 #define MPERS_FUNC_NAME__(prefix, name) prefix ## name
1103 #define MPERS_FUNC_NAME_(prefix, name) MPERS_FUNC_NAME__(prefix, name)
1104 #define MPERS_FUNC_NAME(name) MPERS_FUNC_NAME_(MPERS_PREFIX, name)
1106 #define SYS_FUNC_NAME(syscall_name) MPERS_FUNC_NAME(syscall_name)
1108 #define SYS_FUNC(syscall_name) int SYS_FUNC_NAME(sys_ ## syscall_name)(struct tcb *tcp)
1110 #endif /* !STRACE_DEFS_H */