2 * Copyright (c) 1991, 1992 Paul Kranenburg <pk@cs.few.eur.nl>
3 * Copyright (c) 1993 Branko Lankester <branko@hacktic.nl>
4 * Copyright (c) 1993, 1994, 1995, 1996 Rick Sladkey <jrs@world.std.com>
5 * Copyright (c) 1996-1999 Wichert Akkerman <wichert@cistron.nl>
6 * Copyright (c) 1999 IBM Deutschland Entwicklung GmbH, IBM Corporation
7 * Linux for s390 port by D.J. Barrow
8 * <barrow_dj@mail.yahoo.com,djbarrow@de.ibm.com>
11 * Redistribution and use in source and binary forms, with or without
12 * modification, are permitted provided that the following conditions
14 * 1. Redistributions of source code must retain the above copyright
15 * notice, this list of conditions and the following disclaimer.
16 * 2. Redistributions in binary form must reproduce the above copyright
17 * notice, this list of conditions and the following disclaimer in the
18 * documentation and/or other materials provided with the distribution.
19 * 3. The name of the author may not be used to endorse or promote products
20 * derived from this software without specific prior written permission.
22 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
23 * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
24 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
25 * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
26 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
27 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
28 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
29 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
30 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
31 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
35 #include "native_defs.h"
36 #include <sys/param.h>
39 /* for struct iovec */
46 # undef PTRACE_GETREGS
47 # define PTRACE_GETREGS PTRACE_GETREGS64
48 # undef PTRACE_SETREGS
49 # define PTRACE_SETREGS PTRACE_SETREGS64
53 # include <asm/psrcompat.h>
63 # define NT_PRSTATUS 1
67 # warning: NSIG is not defined, using 32
73 /* Define these shorthand notations to simplify the syscallent files. */
77 #define TN TRACE_NETWORK
78 #define TP TRACE_PROCESS
79 #define TS TRACE_SIGNAL
80 #define TM TRACE_MEMORY
81 #define NF SYSCALL_NEVER_FAILS
83 #define SI STACKTRACE_INVALIDATE_CACHE
84 #define SE STACKTRACE_CAPTURE_ON_ENTER
86 #define SEN(syscall_name) SEN_ ## syscall_name, SYS_FUNC_NAME(sys_ ## syscall_name)
88 const struct_sysent sysent0[] = {
89 #include "syscallent.h"
92 #if SUPPORTED_PERSONALITIES > 1
93 # include PERSONALITY1_INCLUDE_FUNCS
94 static const struct_sysent sysent1[] = {
95 # include "syscallent1.h"
99 #if SUPPORTED_PERSONALITIES > 2
100 # include PERSONALITY2_INCLUDE_FUNCS
101 static const struct_sysent sysent2[] = {
102 # include "syscallent2.h"
106 /* Now undef them since short defines cause wicked namespace pollution. */
121 * `ioctlent[012].h' files are automatically generated by the auxiliary
122 * program `ioctlsort', such that the list is sorted by the `code' field.
123 * This has the side-effect of resolving the _IO.. macros into
124 * plain integers, eliminating the need to include here everything
128 const char *const errnoent0[] = {
129 #include "errnoent.h"
131 const char *const signalent0[] = {
132 #include "signalent.h"
134 const struct_ioctlent ioctlent0[] = {
135 #include "ioctlent0.h"
138 #if SUPPORTED_PERSONALITIES > 1
139 static const char *const errnoent1[] = {
140 # include "errnoent1.h"
142 static const char *const signalent1[] = {
143 # include "signalent1.h"
145 static const struct_ioctlent ioctlent1[] = {
146 # include "ioctlent1.h"
148 # include PERSONALITY0_INCLUDE_PRINTERS_DECLS
149 static const struct_printers printers0 = {
150 # include PERSONALITY0_INCLUDE_PRINTERS_DEFS
152 # include PERSONALITY1_INCLUDE_PRINTERS_DECLS
153 static const struct_printers printers1 = {
154 # include PERSONALITY1_INCLUDE_PRINTERS_DEFS
158 #if SUPPORTED_PERSONALITIES > 2
159 static const char *const errnoent2[] = {
160 # include "errnoent2.h"
162 static const char *const signalent2[] = {
163 # include "signalent2.h"
165 static const struct_ioctlent ioctlent2[] = {
166 # include "ioctlent2.h"
168 # include PERSONALITY2_INCLUDE_PRINTERS_DECLS
169 static const struct_printers printers2 = {
170 # include PERSONALITY2_INCLUDE_PRINTERS_DEFS
175 nsyscalls0 = ARRAY_SIZE(sysent0)
176 #if SUPPORTED_PERSONALITIES > 1
177 , nsyscalls1 = ARRAY_SIZE(sysent1)
178 # if SUPPORTED_PERSONALITIES > 2
179 , nsyscalls2 = ARRAY_SIZE(sysent2)
185 nerrnos0 = ARRAY_SIZE(errnoent0)
186 #if SUPPORTED_PERSONALITIES > 1
187 , nerrnos1 = ARRAY_SIZE(errnoent1)
188 # if SUPPORTED_PERSONALITIES > 2
189 , nerrnos2 = ARRAY_SIZE(errnoent2)
195 nsignals0 = ARRAY_SIZE(signalent0)
196 #if SUPPORTED_PERSONALITIES > 1
197 , nsignals1 = ARRAY_SIZE(signalent1)
198 # if SUPPORTED_PERSONALITIES > 2
199 , nsignals2 = ARRAY_SIZE(signalent2)
205 nioctlents0 = ARRAY_SIZE(ioctlent0)
206 #if SUPPORTED_PERSONALITIES > 1
207 , nioctlents1 = ARRAY_SIZE(ioctlent1)
208 # if SUPPORTED_PERSONALITIES > 2
209 , nioctlents2 = ARRAY_SIZE(ioctlent2)
214 #if SUPPORTED_PERSONALITIES > 1
215 const struct_sysent *sysent = sysent0;
216 const char *const *errnoent = errnoent0;
217 const char *const *signalent = signalent0;
218 const struct_ioctlent *ioctlent = ioctlent0;
219 const struct_printers *printers = &printers0;
222 unsigned nsyscalls = nsyscalls0;
223 unsigned nerrnos = nerrnos0;
224 unsigned nsignals = nsignals0;
225 unsigned nioctlents = nioctlents0;
228 qualbits_t *qual_vec[SUPPORTED_PERSONALITIES];
230 static const unsigned nsyscall_vec[SUPPORTED_PERSONALITIES] = {
232 #if SUPPORTED_PERSONALITIES > 1
235 #if SUPPORTED_PERSONALITIES > 2
239 static const struct_sysent *const sysent_vec[SUPPORTED_PERSONALITIES] = {
241 #if SUPPORTED_PERSONALITIES > 1
244 #if SUPPORTED_PERSONALITIES > 2
250 MAX_NSYSCALLS1 = (nsyscalls0
251 #if SUPPORTED_PERSONALITIES > 1
252 > nsyscalls1 ? nsyscalls0 : nsyscalls1
255 MAX_NSYSCALLS2 = (MAX_NSYSCALLS1
256 #if SUPPORTED_PERSONALITIES > 2
257 > nsyscalls2 ? MAX_NSYSCALLS1 : nsyscalls2
260 MAX_NSYSCALLS = MAX_NSYSCALLS2,
261 /* We are ready for arches with up to 255 signals,
262 * even though the largest known signo is on MIPS and it is 128.
263 * The number of existing syscalls on all arches is
264 * larger that 255 anyway, so it is just a pedantic matter.
266 MIN_QUALS = MAX_NSYSCALLS > 255 ? MAX_NSYSCALLS : 255
269 #if SUPPORTED_PERSONALITIES > 1
270 unsigned current_personality;
272 # ifndef current_wordsize
273 unsigned current_wordsize;
274 static const int personality_wordsize[SUPPORTED_PERSONALITIES] = {
275 PERSONALITY0_WORDSIZE,
276 PERSONALITY1_WORDSIZE,
277 # if SUPPORTED_PERSONALITIES > 2
278 PERSONALITY2_WORDSIZE,
284 set_personality(int personality)
286 nsyscalls = nsyscall_vec[personality];
287 sysent = sysent_vec[personality];
289 switch (personality) {
291 errnoent = errnoent0;
293 ioctlent = ioctlent0;
294 nioctlents = nioctlents0;
295 signalent = signalent0;
296 nsignals = nsignals0;
297 printers = &printers0;
301 errnoent = errnoent1;
303 ioctlent = ioctlent1;
304 nioctlents = nioctlents1;
305 signalent = signalent1;
306 nsignals = nsignals1;
307 printers = &printers1;
310 # if SUPPORTED_PERSONALITIES > 2
312 errnoent = errnoent2;
314 ioctlent = ioctlent2;
315 nioctlents = nioctlents2;
316 signalent = signalent2;
317 nsignals = nsignals2;
318 printers = &printers2;
323 current_personality = personality;
324 # ifndef current_wordsize
325 current_wordsize = personality_wordsize[personality];
330 update_personality(struct tcb *tcp, unsigned int personality)
332 if (personality == current_personality)
334 set_personality(personality);
336 if (personality == tcp->currpers)
338 tcp->currpers = personality;
340 # undef PERSONALITY_NAMES
341 # if defined POWERPC64
342 # define PERSONALITY_NAMES {"64 bit", "32 bit"}
343 # elif defined X86_64
344 # define PERSONALITY_NAMES {"64 bit", "32 bit", "x32"}
346 # define PERSONALITY_NAMES {"x32", "32 bit"}
347 # elif defined AARCH64
348 # define PERSONALITY_NAMES {"64 bit", "32 bit"}
350 # define PERSONALITY_NAMES {"64-bit", "32-bit"}
352 # ifdef PERSONALITY_NAMES
354 static const char *const names[] = PERSONALITY_NAMES;
355 error_msg("[ Process PID=%d runs in %s mode. ]",
356 tcp->pid, names[personality]);
362 static int qual_syscall(), qual_signal(), qual_desc();
364 static const struct qual_options {
365 unsigned int bitflag;
366 const char *option_name;
367 int (*qualify)(const char *, int, int);
368 const char *argument_name;
370 { QUAL_TRACE, "trace", qual_syscall, "system call" },
371 { QUAL_TRACE, "t", qual_syscall, "system call" },
372 { QUAL_ABBREV, "abbrev", qual_syscall, "system call" },
373 { QUAL_ABBREV, "a", qual_syscall, "system call" },
374 { QUAL_VERBOSE, "verbose", qual_syscall, "system call" },
375 { QUAL_VERBOSE, "v", qual_syscall, "system call" },
376 { QUAL_RAW, "raw", qual_syscall, "system call" },
377 { QUAL_RAW, "x", qual_syscall, "system call" },
378 { QUAL_SIGNAL, "signal", qual_signal, "signal" },
379 { QUAL_SIGNAL, "signals", qual_signal, "signal" },
380 { QUAL_SIGNAL, "s", qual_signal, "signal" },
381 { QUAL_READ, "read", qual_desc, "descriptor" },
382 { QUAL_READ, "reads", qual_desc, "descriptor" },
383 { QUAL_READ, "r", qual_desc, "descriptor" },
384 { QUAL_WRITE, "write", qual_desc, "descriptor" },
385 { QUAL_WRITE, "writes", qual_desc, "descriptor" },
386 { QUAL_WRITE, "w", qual_desc, "descriptor" },
387 { 0, NULL, NULL, NULL },
391 reallocate_qual(const unsigned int n)
395 for (p = 0; p < SUPPORTED_PERSONALITIES; p++) {
396 qp = qual_vec[p] = xreallocarray(qual_vec[p], n,
398 memset(&qp[num_quals], 0, (n - num_quals) * sizeof(qualbits_t));
404 qualify_one(const unsigned int n, unsigned int bitflag, const int not, const int pers)
409 reallocate_qual(n + 1);
411 for (p = 0; p < SUPPORTED_PERSONALITIES; p++) {
412 if (pers == p || pers < 0) {
414 qual_vec[p][n] &= ~bitflag;
416 qual_vec[p][n] |= bitflag;
422 lookup_class(const char *s)
424 if (strcmp(s, "file") == 0)
426 if (strcmp(s, "ipc") == 0)
428 if (strcmp(s, "network") == 0)
429 return TRACE_NETWORK;
430 if (strcmp(s, "process") == 0)
431 return TRACE_PROCESS;
432 if (strcmp(s, "signal") == 0)
434 if (strcmp(s, "desc") == 0)
436 if (strcmp(s, "memory") == 0)
442 qual_syscall(const char *s, const unsigned int bitflag, const int not)
449 if ((n = lookup_class(s)) >= 0) {
450 for (p = 0; p < SUPPORTED_PERSONALITIES; ++p) {
451 for (i = 0; i < nsyscall_vec[p]; ++i) {
452 if ((sysent_vec[p][i].sys_flags & n) == n) {
453 qualify_one(i, bitflag, not, p);
460 if (*s >= '0' && *s <= '9') {
461 i = string_to_uint(s);
462 if (i >= MAX_NSYSCALLS)
464 qualify_one(i, bitflag, not, -1);
468 for (p = 0; p < SUPPORTED_PERSONALITIES; p++) {
469 for (i = 0; i < nsyscall_vec[p]; i++) {
470 if (sysent_vec[p][i].sys_name
471 && strcmp(s, sysent_vec[p][i].sys_name) == 0
473 qualify_one(i, bitflag, not, p);
483 qual_signal(const char *s, const unsigned int bitflag, const int not)
487 if (*s >= '0' && *s <= '9') {
488 int signo = string_to_uint(s);
489 if (signo < 0 || signo > 255)
491 qualify_one(signo, bitflag, not, -1);
494 if (strncasecmp(s, "SIG", 3) == 0)
496 for (i = 0; i <= NSIG; i++) {
497 if (strcasecmp(s, signame(i) + 3) == 0) {
498 qualify_one(i, bitflag, not, -1);
506 qual_desc(const char *s, const unsigned int bitflag, const int not)
508 if (*s >= '0' && *s <= '9') {
509 int desc = string_to_uint(s);
510 if (desc < 0 || desc > 0x7fff) /* paranoia */
512 qualify_one(desc, bitflag, not, -1);
519 qualify(const char *s)
521 const struct qual_options *opt;
528 reallocate_qual(MIN_QUALS);
530 opt = &qual_options[0];
531 for (i = 0; (p = qual_options[i].option_name); i++) {
532 unsigned int len = strlen(p);
533 if (strncmp(s, p, len) == 0 && s[len] == '=') {
534 opt = &qual_options[i];
544 if (strcmp(s, "none") == 0) {
548 if (strcmp(s, "all") == 0) {
549 for (i = 0; i < num_quals; i++) {
550 qualify_one(i, opt->bitflag, not, -1);
554 for (i = 0; i < num_quals; i++) {
555 qualify_one(i, opt->bitflag, !not, -1);
558 for (p = strtok(copy, ","); p; p = strtok(NULL, ",")) {
559 if (opt->qualify(p, opt->bitflag, not)) {
560 error_msg_and_die("invalid %s '%s'",
561 opt->argument_name, p);
568 #ifdef SYS_socket_subcall
570 decode_socket_subcall(struct tcb *tcp)
572 const int call = tcp->u_arg[0];
574 if (call < 1 || call >= SYS_socket_nsubcalls)
577 const unsigned long scno = SYS_socket_subcall + call;
578 const unsigned int nargs = sysent[scno].nargs;
581 if (umoven(tcp, tcp->u_arg[1], nargs * current_wordsize, buf) < 0)
585 tcp->qual_flg = qual_flags[scno];
586 tcp->s_ent = &sysent[scno];
589 for (i = 0; i < nargs; ++i)
590 tcp->u_arg[i] = (sizeof(uint32_t) == current_wordsize)
591 ? ((uint32_t *) (void *) buf)[i] : buf[i];
595 #ifdef SYS_ipc_subcall
597 decode_ipc_subcall(struct tcb *tcp)
599 unsigned int call = tcp->u_arg[0];
600 const unsigned int version = call >> 16;
603 # if defined S390 || defined S390X
607 if (current_wordsize == 8)
610 set_tcb_priv_ulong(tcp, version);
616 case 1: case 2: case 3: case 4:
617 case 11: case 12: case 13: case 14:
618 case 21: case 22: case 23: case 24:
624 tcp->scno = SYS_ipc_subcall + call;
625 tcp->qual_flg = qual_flags[tcp->scno];
626 tcp->s_ent = &sysent[tcp->scno];
628 const unsigned int n = tcp->s_ent->nargs;
630 for (i = 0; i < n; i++)
631 tcp->u_arg[i] = tcp->u_arg[i + 1];
637 decode_mips_subcall(struct tcb *tcp)
639 if (!SCNO_IS_VALID(tcp->u_arg[0]))
641 tcp->scno = tcp->u_arg[0];
642 tcp->qual_flg = qual_flags[tcp->scno];
643 tcp->s_ent = &sysent[tcp->scno];
644 memmove(&tcp->u_arg[0], &tcp->u_arg[1],
645 sizeof(tcp->u_arg) - sizeof(tcp->u_arg[0]));
647 * Fetching the last arg of 7-arg syscalls (fadvise64_64
648 * and sync_file_range) requires additional code,
649 * see linux/mips/get_syscall_args.c
651 if (tcp->s_ent->nargs == MAX_ARGS) {
653 mips_REG_SP + MAX_ARGS * sizeof(tcp->u_arg[0]),
654 sizeof(tcp->u_arg[0]),
655 &tcp->u_arg[MAX_ARGS - 1]) < 0)
656 tcp->u_arg[MAX_ARGS - 1] = 0;
659 #endif /* LINUX_MIPSO32 */
662 dumpio(struct tcb *tcp)
668 if ((unsigned long) tcp->u_arg[0] >= num_quals)
670 sen = tcp->s_ent->sen;
671 if (SEN_printargs == sen)
673 if (qual_flags[tcp->u_arg[0]] & QUAL_READ) {
679 dumpstr(tcp, tcp->u_arg[1], tcp->u_rval);
684 dumpiov_upto(tcp, tcp->u_arg[2], tcp->u_arg[1],
688 dumpiov_in_msghdr(tcp, tcp->u_arg[1], tcp->u_rval);
691 dumpiov_in_mmsghdr(tcp, tcp->u_arg[1]);
695 if (qual_flags[tcp->u_arg[0]] & QUAL_WRITE) {
701 dumpstr(tcp, tcp->u_arg[1], tcp->u_arg[2]);
707 dumpiov(tcp, tcp->u_arg[2], tcp->u_arg[1]);
710 dumpiov_in_msghdr(tcp, tcp->u_arg[1],
711 (unsigned long) -1L);
714 dumpiov_in_mmsghdr(tcp, tcp->u_arg[1]);
721 * Shuffle syscall numbers so that we don't have huge gaps in syscall table.
722 * The shuffling should be an involution: shuffle_scno(shuffle_scno(n)) == n.
724 #if defined(ARM) || defined(AARCH64) /* So far only 32-bit ARM needs this */
726 shuffle_scno(unsigned long scno)
728 if (scno < ARM_FIRST_SHUFFLED_SYSCALL)
731 /* __ARM_NR_cmpxchg? Swap with LAST_ORDINARY+1 */
732 if (scno == ARM_FIRST_SHUFFLED_SYSCALL)
734 if (scno == 0x000ffff0)
735 return ARM_FIRST_SHUFFLED_SYSCALL;
737 #define ARM_SECOND_SHUFFLED_SYSCALL (ARM_FIRST_SHUFFLED_SYSCALL + 1)
739 * Is it ARM specific syscall?
740 * Swap [0x000f0000, 0x000f0000 + LAST_SPECIAL] range
741 * with [SECOND_SHUFFLED, SECOND_SHUFFLED + LAST_SPECIAL] range.
743 if (scno >= 0x000f0000 &&
744 scno <= 0x000f0000 + ARM_LAST_SPECIAL_SYSCALL) {
745 return scno - 0x000f0000 + ARM_SECOND_SHUFFLED_SYSCALL;
747 if (scno <= ARM_SECOND_SHUFFLED_SYSCALL + ARM_LAST_SPECIAL_SYSCALL) {
748 return scno + 0x000f0000 - ARM_SECOND_SHUFFLED_SYSCALL;
754 # define shuffle_scno(scno) ((long)(scno))
758 syscall_name(long scno)
760 static char buf[sizeof("syscall_%lu") + sizeof(long)*3];
762 if (SCNO_IS_VALID(scno))
763 return sysent[scno].sys_name;
765 sprintf(buf, "syscall_%lu", scno);
771 err_name(unsigned long err)
773 if ((err < nerrnos) && errnoent[err])
774 return errnoent[err];
779 static long get_regs_error;
787 static int get_syscall_args(struct tcb *);
788 static int get_syscall_result(struct tcb *);
789 static int arch_get_scno(struct tcb *tcp);
790 static void get_error(struct tcb *, const bool);
791 #if defined X86_64 || defined POWERPC
792 static int getregs_old(pid_t);
796 trace_syscall_entering(struct tcb *tcp)
800 scno_good = res = get_scno(tcp);
804 res = get_syscall_args(tcp);
808 tprintf("%s(", scno_good == 1 ? tcp->s_ent->sys_name : "????");
810 * " <unavailable>" will be added later by the code which
811 * detects ptrace errors.
817 if (SEN_syscall == tcp->s_ent->sen)
818 decode_mips_subcall(tcp);
821 if ( SEN_execve == tcp->s_ent->sen
822 # if defined(SPARC) || defined(SPARC64)
823 || SEN_execv == tcp->s_ent->sen
826 hide_log_until_execve = 0;
829 #if defined(SYS_socket_subcall) || defined(SYS_ipc_subcall)
830 switch (tcp->s_ent->sen) {
831 # ifdef SYS_socket_subcall
833 decode_socket_subcall(tcp);
836 # ifdef SYS_ipc_subcall
838 decode_ipc_subcall(tcp);
844 if (!(tcp->qual_flg & QUAL_TRACE)
845 || (tracing_paths && !pathtrace_match(tcp))
847 tcp->flags |= TCB_INSYSCALL | TCB_FILTERED;
848 tcp->sys_func_rval = 0;
852 tcp->flags &= ~TCB_FILTERED;
854 if (cflag == CFLAG_ONLY_STATS || hide_log_until_execve) {
860 if (stack_trace_enabled) {
861 if (tcp->s_ent->sys_flags & STACKTRACE_CAPTURE_ON_ENTER)
862 unwind_capture_stacktrace(tcp);
867 tprintf("%s(", tcp->s_ent->sys_name);
868 if ((tcp->qual_flg & QUAL_RAW) && SEN_exit != tcp->s_ent->sen)
869 res = printargs(tcp);
871 res = tcp->s_ent->sys_func(tcp);
875 tcp->flags |= TCB_INSYSCALL;
876 tcp->sys_func_rval = res;
877 /* Measure the entrance time as late as possible to avoid errors. */
879 gettimeofday(&tcp->etime, NULL);
884 trace_syscall_exiting(struct tcb *tcp)
889 unsigned long u_error;
890 const char *u_error_str;
892 /* Measure the exit time as early as possible to avoid errors. */
894 gettimeofday(&tv, NULL);
897 if (stack_trace_enabled) {
898 if (tcp->s_ent->sys_flags & STACKTRACE_INVALIDATE_CACHE)
899 unwind_cache_invalidate(tcp);
903 #if SUPPORTED_PERSONALITIES > 1
904 update_personality(tcp, tcp->currpers);
906 res = (get_regs_error ? -1 : get_syscall_result(tcp));
907 if (filtered(tcp) || hide_log_until_execve)
911 count_syscall(tcp, &tv);
912 if (cflag == CFLAG_ONLY_STATS) {
917 /* If not in -ff mode, and printing_tcp != tcp,
918 * then the log currently does not end with output
919 * of _our syscall entry_, but with something else.
920 * We need to say which syscall's return is this.
922 * Forced reprinting via TCB_REPRINT is used only by
923 * "strace -ff -oLOG test/threaded_execve" corner case.
924 * It's the only case when -ff mode needs reprinting.
926 if ((followfork < 2 && printing_tcp != tcp) || (tcp->flags & TCB_REPRINT)) {
927 tcp->flags &= ~TCB_REPRINT;
929 tprintf("<... %s resumed> ", tcp->s_ent->sys_name);
933 tcp->s_prev_ent = NULL;
935 /* There was error in one of prior ptrace ops */
938 tprints("= ? <unavailable>\n");
940 tcp->flags &= ~TCB_INSYSCALL;
941 tcp->sys_func_rval = 0;
942 free_tcb_priv_data(tcp);
945 tcp->s_prev_ent = tcp->s_ent;
948 if (tcp->qual_flg & QUAL_RAW) {
949 /* sys_res = printargs(tcp); - but it's nop on sysexit */
951 /* FIXME: not_failing_only (IOW, option -z) is broken:
952 * failure of syscall is known only after syscall return.
953 * Thus we end up with something like this on, say, ENOENT:
954 * open("doesnt_exist", O_RDONLY <unfinished ...>
955 * {next syscall decode}
956 * whereas the intended result is that open(...) line
957 * is not shown at all.
959 if (not_failing_only && tcp->u_error)
960 goto ret; /* ignore failed syscalls */
961 if (tcp->sys_func_rval & RVAL_DECODED)
962 sys_res = tcp->sys_func_rval;
964 sys_res = tcp->s_ent->sys_func(tcp);
969 u_error = tcp->u_error;
970 if (tcp->qual_flg & QUAL_RAW) {
972 tprintf("= -1 (errno %lu)", u_error);
974 tprintf("= %#lx", tcp->u_rval);
976 else if (!(sys_res & RVAL_NONE) && u_error) {
978 /* Blocked signals do not interrupt any syscalls.
979 * In this case syscalls don't return ERESTARTfoo codes.
981 * Deadly signals set to SIG_DFL interrupt syscalls
982 * and kill the process regardless of which of the codes below
983 * is returned by the interrupted syscall.
984 * In some cases, kernel forces a kernel-generated deadly
985 * signal to be unblocked and set to SIG_DFL (and thus cause
986 * death) if it is blocked or SIG_IGNed: for example, SIGSEGV
987 * or SIGILL. (The alternative is to leave process spinning
988 * forever on the faulty instruction - not useful).
990 * SIG_IGNed signals and non-deadly signals set to SIG_DFL
991 * (for example, SIGCHLD, SIGWINCH) interrupt syscalls,
992 * but kernel will always restart them.
995 /* Most common type of signal-interrupted syscall exit code.
996 * The system call will be restarted with the same arguments
997 * if SA_RESTART is set; otherwise, it will fail with EINTR.
999 tprints("= ? ERESTARTSYS (To be restarted if SA_RESTART is set)");
1001 case ERESTARTNOINTR:
1002 /* Rare. For example, fork() returns this if interrupted.
1003 * SA_RESTART is ignored (assumed set): the restart is unconditional.
1005 tprints("= ? ERESTARTNOINTR (To be restarted)");
1007 case ERESTARTNOHAND:
1008 /* pause(), rt_sigsuspend() etc use this code.
1009 * SA_RESTART is ignored (assumed not set):
1010 * syscall won't restart (will return EINTR instead)
1011 * even after signal with SA_RESTART set. However,
1012 * after SIG_IGN or SIG_DFL signal it will restart
1013 * (thus the name "restart only if has no handler").
1015 tprints("= ? ERESTARTNOHAND (To be restarted if no handler)");
1017 case ERESTART_RESTARTBLOCK:
1018 /* Syscalls like nanosleep(), poll() which can't be
1019 * restarted with their original arguments use this
1020 * code. Kernel will execute restart_syscall() instead,
1021 * which changes arguments before restarting syscall.
1022 * SA_RESTART is ignored (assumed not set) similarly
1023 * to ERESTARTNOHAND. (Kernel can't honor SA_RESTART
1024 * since restart data is saved in "restart block"
1025 * in task struct, and if signal handler uses a syscall
1026 * which in turn saves another such restart block,
1027 * old data is lost and restart becomes impossible)
1029 tprints("= ? ERESTART_RESTARTBLOCK (Interrupted by signal)");
1032 u_error_str = err_name(u_error);
1034 tprintf("= -1 %s (%s)",
1035 u_error_str, strerror(u_error));
1037 tprintf("= -1 %lu (%s)",
1038 u_error, strerror(u_error));
1041 if ((sys_res & RVAL_STR) && tcp->auxstr)
1042 tprintf(" (%s)", tcp->auxstr);
1045 if (sys_res & RVAL_NONE)
1048 switch (sys_res & RVAL_MASK) {
1050 #if SUPPORTED_PERSONALITIES > 1
1051 if (current_wordsize < sizeof(long))
1053 (unsigned int) tcp->u_rval);
1056 tprintf("= %#lx", tcp->u_rval);
1060 print_numeric_long_umask(tcp->u_rval);
1063 #if SUPPORTED_PERSONALITIES > 1
1064 if (current_wordsize < sizeof(long))
1066 (unsigned int) tcp->u_rval);
1069 tprintf("= %lu", tcp->u_rval);
1072 tprintf("= %ld", tcp->u_rval);
1077 printfd(tcp, tcp->u_rval);
1080 tprintf("= %ld", tcp->u_rval);
1082 #if HAVE_STRUCT_TCB_EXT_ARG
1085 tprintf("= %#llx", tcp->u_lrval);
1088 tprintf("= %#llo", tcp->u_lrval);
1091 case RVAL_LUDECIMAL:
1092 tprintf("= %llu", tcp->u_lrval);
1096 tprintf("= %lld", tcp->u_lrval);
1099 #endif /* HAVE_STRUCT_TCB_EXT_ARG */
1101 error_msg("invalid rval format");
1105 if ((sys_res & RVAL_STR) && tcp->auxstr)
1106 tprintf(" (%s)", tcp->auxstr);
1109 tv_sub(&tv, &tv, &tcp->etime);
1110 tprintf(" <%ld.%06ld>",
1111 (long) tv.tv_sec, (long) tv.tv_usec);
1117 #ifdef USE_LIBUNWIND
1118 if (stack_trace_enabled)
1119 unwind_print_stacktrace(tcp);
1123 tcp->flags &= ~TCB_INSYSCALL;
1124 tcp->sys_func_rval = 0;
1125 free_tcb_priv_data(tcp);
1130 trace_syscall(struct tcb *tcp)
1132 return exiting(tcp) ?
1133 trace_syscall_exiting(tcp) : trace_syscall_entering(tcp);
1137 is_erestart(struct tcb *tcp)
1139 switch (tcp->u_error) {
1141 case ERESTARTNOINTR:
1142 case ERESTARTNOHAND:
1143 case ERESTART_RESTARTBLOCK:
1150 static unsigned long saved_u_error;
1153 temporarily_clear_syserror(struct tcb *tcp)
1155 saved_u_error = tcp->u_error;
1160 restore_cleared_syserror(struct tcb *tcp)
1162 tcp->u_error = saved_u_error;
1165 #include "kernel_types.h"
1168 * Check the syscall return value register value for whether it is
1169 * a negated errno code indicating an error, or a success return value.
1172 is_negated_errno(kernel_ulong_t val)
1174 /* Linux kernel defines MAX_ERRNO to 4095. */
1175 kernel_ulong_t max = -(kernel_long_t) 4095;
1177 #if defined X86_64 || defined X32
1179 * current_wordsize is 4 for x32 personality
1180 * but truncation _must not_ be done in it, so
1181 * check current_personality instead.
1183 if (current_personality == 1) {
1184 val = (uint32_t) val;
1185 max = (uint32_t) max;
1187 #elif SUPPORTED_PERSONALITIES > 1 && SIZEOF_LONG > 4
1188 if (current_wordsize < sizeof(val)) {
1189 val = (uint32_t) val;
1190 max = (uint32_t) max;
1197 #include "arch_regs.c"
1199 #ifdef HAVE_GETRVAL2
1200 # include "arch_getrval2.c"
1204 print_pc(struct tcb *tcp)
1206 #if defined ARCH_PC_REG
1207 # define ARCH_GET_PC 0
1208 #elif defined ARCH_PC_PEEK_ADDR
1210 # define ARCH_PC_REG pc
1211 # define ARCH_GET_PC upeek(tcp->pid, ARCH_PC_PEEK_ADDR, &pc)
1213 # error Neither ARCH_PC_REG nor ARCH_PC_PEEK_ADDR is defined
1215 if (get_regs_error || ARCH_GET_PC)
1216 tprints(current_wordsize == 4 ? "[????????] "
1217 : "[????????????????] ");
1219 tprintf(current_wordsize == 4 ? "[%08lx] " : "[%016lx] ",
1220 (unsigned long) ARCH_PC_REG);
1223 #if defined ARCH_REGS_FOR_GETREGSET
1225 get_regset(pid_t pid)
1227 # ifdef ARCH_IOVEC_FOR_GETREGSET
1228 /* variable iovec */
1229 ARCH_IOVEC_FOR_GETREGSET.iov_len = sizeof(ARCH_REGS_FOR_GETREGSET);
1230 return ptrace(PTRACE_GETREGSET, pid, NT_PRSTATUS,
1231 &ARCH_IOVEC_FOR_GETREGSET);
1233 /* constant iovec */
1234 static struct iovec io = {
1235 .iov_base = &ARCH_REGS_FOR_GETREGSET,
1236 .iov_len = sizeof(ARCH_REGS_FOR_GETREGSET)
1238 return ptrace(PTRACE_GETREGSET, pid, NT_PRSTATUS, &io);
1242 #endif /* ARCH_REGS_FOR_GETREGSET */
1247 #undef USE_GET_SYSCALL_RESULT_REGS
1248 #ifdef ARCH_REGS_FOR_GETREGSET
1250 /* Try PTRACE_GETREGSET first, fallback to PTRACE_GETREGS. */
1251 static int getregset_support;
1253 if (getregset_support >= 0) {
1254 get_regs_error = get_regset(pid);
1255 if (getregset_support > 0)
1257 if (get_regs_error >= 0) {
1258 getregset_support = 1;
1261 if (errno == EPERM || errno == ESRCH)
1263 getregset_support = -1;
1265 get_regs_error = getregs_old(pid);
1266 # else /* !X86_64 */
1267 /* Assume that PTRACE_GETREGSET works. */
1268 get_regs_error = get_regset(pid);
1270 #elif defined ARCH_REGS_FOR_GETREGS
1271 # if defined SPARC || defined SPARC64
1272 /* SPARC systems have the meaning of data and addr reversed */
1274 ptrace(PTRACE_GETREGS, pid, (void *) &ARCH_REGS_FOR_GETREGS, 0);
1275 # elif defined POWERPC
1276 static bool old_kernel = 0;
1279 get_regs_error = ptrace(PTRACE_GETREGS, pid, NULL, &ARCH_REGS_FOR_GETREGS);
1280 if (get_regs_error && errno == EIO) {
1283 get_regs_error = getregs_old(pid);
1286 /* Assume that PTRACE_GETREGS works. */
1287 get_regs_error = ptrace(PTRACE_GETREGS, pid, NULL, &ARCH_REGS_FOR_GETREGS);
1290 #else /* !ARCH_REGS_FOR_GETREGSET && !ARCH_REGS_FOR_GETREGS */
1291 # define USE_GET_SYSCALL_RESULT_REGS 1
1292 # warning get_regs is not implemented for this architecture yet
1300 char buf[sizeof("syscall_%lu") + sizeof(long) * 3];
1304 free_sysent_buf(void *ptr)
1306 struct sysent_buf *s = ptr;
1307 s->tcp->s_prev_ent = s->tcp->s_ent = NULL;
1313 * 0: "ignore this ptrace stop", bail out of trace_syscall_entering() silently.
1314 * 1: ok, continue in trace_syscall_entering().
1315 * other: error, trace_syscall_entering() should print error indicator
1316 * ("????" etc) and bail out.
1319 get_scno(struct tcb *tcp)
1324 int rc = arch_get_scno(tcp);
1328 if (SCNO_IS_VALID(tcp->scno)) {
1329 tcp->s_ent = &sysent[tcp->scno];
1330 tcp->qual_flg = qual_flags[tcp->scno];
1332 struct sysent_buf *s = xcalloc(1, sizeof(*s));
1335 s->ent.nargs = MAX_ARGS;
1336 s->ent.sen = SEN_printargs;
1337 s->ent.sys_func = printargs;
1338 s->ent.sys_name = s->buf;
1339 sprintf(s->buf, "syscall_%lu", shuffle_scno(tcp->scno));
1341 tcp->s_ent = &s->ent;
1342 tcp->qual_flg = QUAL_RAW | DEFAULT_QUAL_FLAGS;
1344 set_tcb_priv_data(tcp, s, free_sysent_buf);
1347 error_msg("pid %d invalid syscall %ld", tcp->pid, tcp->scno);
1352 #ifdef USE_GET_SYSCALL_RESULT_REGS
1353 static int get_syscall_result_regs(struct tcb *);
1357 * 1: ok, continue in trace_syscall_exiting().
1358 * -1: error, trace_syscall_exiting() should print error indicator
1359 * ("????" etc) and bail out.
1362 get_syscall_result(struct tcb *tcp)
1364 #ifdef USE_GET_SYSCALL_RESULT_REGS
1365 if (get_syscall_result_regs(tcp))
1369 get_error(tcp, !(tcp->s_ent->sys_flags & SYSCALL_NEVER_FAILS));
1374 #include "get_scno.c"
1375 #include "get_syscall_args.c"
1376 #ifdef USE_GET_SYSCALL_RESULT_REGS
1377 # include "get_syscall_result.c"
1379 #include "get_error.c"
1380 #if defined X86_64 || defined POWERPC
1381 # include "getregs_old.c"