1*cf84ac9aSAndroid Build Coastguard Worker /*
2*cf84ac9aSAndroid Build Coastguard Worker * Check decoding of kexec_file_load syscall.
3*cf84ac9aSAndroid Build Coastguard Worker *
4*cf84ac9aSAndroid Build Coastguard Worker * Copyright (c) 2016 Eugene Syromyatnikov <[email protected]>
5*cf84ac9aSAndroid Build Coastguard Worker * Copyright (c) 2016-2017 The strace developers.
6*cf84ac9aSAndroid Build Coastguard Worker * All rights reserved.
7*cf84ac9aSAndroid Build Coastguard Worker *
8*cf84ac9aSAndroid Build Coastguard Worker * Redistribution and use in source and binary forms, with or without
9*cf84ac9aSAndroid Build Coastguard Worker * modification, are permitted provided that the following conditions
10*cf84ac9aSAndroid Build Coastguard Worker * are met:
11*cf84ac9aSAndroid Build Coastguard Worker * 1. Redistributions of source code must retain the above copyright
12*cf84ac9aSAndroid Build Coastguard Worker * notice, this list of conditions and the following disclaimer.
13*cf84ac9aSAndroid Build Coastguard Worker * 2. Redistributions in binary form must reproduce the above copyright
14*cf84ac9aSAndroid Build Coastguard Worker * notice, this list of conditions and the following disclaimer in the
15*cf84ac9aSAndroid Build Coastguard Worker * documentation and/or other materials provided with the distribution.
16*cf84ac9aSAndroid Build Coastguard Worker * 3. The name of the author may not be used to endorse or promote products
17*cf84ac9aSAndroid Build Coastguard Worker * derived from this software without specific prior written permission.
18*cf84ac9aSAndroid Build Coastguard Worker *
19*cf84ac9aSAndroid Build Coastguard Worker * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
20*cf84ac9aSAndroid Build Coastguard Worker * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
21*cf84ac9aSAndroid Build Coastguard Worker * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
22*cf84ac9aSAndroid Build Coastguard Worker * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
23*cf84ac9aSAndroid Build Coastguard Worker * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
24*cf84ac9aSAndroid Build Coastguard Worker * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
25*cf84ac9aSAndroid Build Coastguard Worker * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
26*cf84ac9aSAndroid Build Coastguard Worker * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
27*cf84ac9aSAndroid Build Coastguard Worker * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
28*cf84ac9aSAndroid Build Coastguard Worker * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
29*cf84ac9aSAndroid Build Coastguard Worker */
30*cf84ac9aSAndroid Build Coastguard Worker
31*cf84ac9aSAndroid Build Coastguard Worker #include "tests.h"
32*cf84ac9aSAndroid Build Coastguard Worker #include <asm/unistd.h>
33*cf84ac9aSAndroid Build Coastguard Worker #include "scno.h"
34*cf84ac9aSAndroid Build Coastguard Worker
35*cf84ac9aSAndroid Build Coastguard Worker #ifdef __NR_kexec_file_load
36*cf84ac9aSAndroid Build Coastguard Worker
37*cf84ac9aSAndroid Build Coastguard Worker # include <inttypes.h>
38*cf84ac9aSAndroid Build Coastguard Worker # include <stdio.h>
39*cf84ac9aSAndroid Build Coastguard Worker # include <unistd.h>
40*cf84ac9aSAndroid Build Coastguard Worker
41*cf84ac9aSAndroid Build Coastguard Worker struct strval {
42*cf84ac9aSAndroid Build Coastguard Worker kernel_ulong_t val;
43*cf84ac9aSAndroid Build Coastguard Worker const char *str64;
44*cf84ac9aSAndroid Build Coastguard Worker const char *str32;
45*cf84ac9aSAndroid Build Coastguard Worker const char *str;
46*cf84ac9aSAndroid Build Coastguard Worker };
47*cf84ac9aSAndroid Build Coastguard Worker
48*cf84ac9aSAndroid Build Coastguard Worker #define CMDLINE_STR "deadcodebaddatadefaced"
49*cf84ac9aSAndroid Build Coastguard Worker
50*cf84ac9aSAndroid Build Coastguard Worker int
main(void)51*cf84ac9aSAndroid Build Coastguard Worker main(void)
52*cf84ac9aSAndroid Build Coastguard Worker {
53*cf84ac9aSAndroid Build Coastguard Worker static const kernel_ulong_t bogus_kernel_fd =
54*cf84ac9aSAndroid Build Coastguard Worker (kernel_ulong_t) 0xdeadca57badda7a1ULL;
55*cf84ac9aSAndroid Build Coastguard Worker static const kernel_ulong_t bogus_initrd_fd =
56*cf84ac9aSAndroid Build Coastguard Worker (kernel_ulong_t) 0xdec0ded1defaced2ULL;
57*cf84ac9aSAndroid Build Coastguard Worker static const char cmdline_str[] = CMDLINE_STR;
58*cf84ac9aSAndroid Build Coastguard Worker static const char cmdline_short_str[] = "abcdef";
59*cf84ac9aSAndroid Build Coastguard Worker
60*cf84ac9aSAndroid Build Coastguard Worker static const kernel_ulong_t cmdline_lens[] = {
61*cf84ac9aSAndroid Build Coastguard Worker 0,
62*cf84ac9aSAndroid Build Coastguard Worker (kernel_ulong_t) 0xcaffeeeddeadbeefULL,
63*cf84ac9aSAndroid Build Coastguard Worker sizeof(cmdline_str),
64*cf84ac9aSAndroid Build Coastguard Worker sizeof(cmdline_str) - 1,
65*cf84ac9aSAndroid Build Coastguard Worker sizeof(cmdline_short_str),
66*cf84ac9aSAndroid Build Coastguard Worker sizeof(cmdline_short_str) - 1,
67*cf84ac9aSAndroid Build Coastguard Worker sizeof(cmdline_short_str) + 1,
68*cf84ac9aSAndroid Build Coastguard Worker };
69*cf84ac9aSAndroid Build Coastguard Worker static const struct strval flags[] = {
70*cf84ac9aSAndroid Build Coastguard Worker { (kernel_ulong_t) 0xbadc0dedda7a1058ULL,
71*cf84ac9aSAndroid Build Coastguard Worker "0xbadc0ded", "0x",
72*cf84ac9aSAndroid Build Coastguard Worker "da7a1058 /* KEXEC_FILE_??? */" },
73*cf84ac9aSAndroid Build Coastguard Worker { 0, "", "", "0" },
74*cf84ac9aSAndroid Build Coastguard Worker { 0xdeadbeef, "", "", "KEXEC_FILE_UNLOAD|KEXEC_FILE_ON_CRASH|"
75*cf84ac9aSAndroid Build Coastguard Worker "KEXEC_FILE_NO_INITRAMFS|0xdeadbee8" },
76*cf84ac9aSAndroid Build Coastguard Worker };
77*cf84ac9aSAndroid Build Coastguard Worker
78*cf84ac9aSAndroid Build Coastguard Worker
79*cf84ac9aSAndroid Build Coastguard Worker long rc;
80*cf84ac9aSAndroid Build Coastguard Worker char *cmdline = tail_memdup(cmdline_str, sizeof(cmdline_str));
81*cf84ac9aSAndroid Build Coastguard Worker char *cmdline_short =
82*cf84ac9aSAndroid Build Coastguard Worker tail_memdup(cmdline_short_str, sizeof(cmdline_short_str));
83*cf84ac9aSAndroid Build Coastguard Worker char cmdline_ptr[sizeof("0x") + sizeof(void *) * 2];
84*cf84ac9aSAndroid Build Coastguard Worker char cmdline_short_ptr[sizeof("0x") + sizeof(void *) * 2];
85*cf84ac9aSAndroid Build Coastguard Worker unsigned int i;
86*cf84ac9aSAndroid Build Coastguard Worker unsigned int j;
87*cf84ac9aSAndroid Build Coastguard Worker
88*cf84ac9aSAndroid Build Coastguard Worker struct strval cmdlines[] = {
89*cf84ac9aSAndroid Build Coastguard Worker { (uintptr_t) NULL, "", "", "NULL" },
90*cf84ac9aSAndroid Build Coastguard Worker { (uintptr_t) (cmdline + sizeof(cmdline_str)), "", "",
91*cf84ac9aSAndroid Build Coastguard Worker cmdline_ptr },
92*cf84ac9aSAndroid Build Coastguard Worker { (uintptr_t) cmdline, "", "", "\"deadcodeb\"..." },
93*cf84ac9aSAndroid Build Coastguard Worker { (uintptr_t) cmdline, "", "", "\"deadcodeb\"..." },
94*cf84ac9aSAndroid Build Coastguard Worker { (uintptr_t) cmdline_short, "", "", "\"abcdef\\0\"" },
95*cf84ac9aSAndroid Build Coastguard Worker { (uintptr_t) cmdline_short, "", "", "\"abcdef\"" },
96*cf84ac9aSAndroid Build Coastguard Worker { (uintptr_t) cmdline_short, "", "", cmdline_short_ptr },
97*cf84ac9aSAndroid Build Coastguard Worker };
98*cf84ac9aSAndroid Build Coastguard Worker
99*cf84ac9aSAndroid Build Coastguard Worker
100*cf84ac9aSAndroid Build Coastguard Worker snprintf(cmdline_ptr, sizeof(cmdline_ptr), "%p",
101*cf84ac9aSAndroid Build Coastguard Worker cmdline + sizeof(cmdline_str));
102*cf84ac9aSAndroid Build Coastguard Worker snprintf(cmdline_short_ptr, sizeof(cmdline_short_ptr), "%p",
103*cf84ac9aSAndroid Build Coastguard Worker cmdline_short);
104*cf84ac9aSAndroid Build Coastguard Worker
105*cf84ac9aSAndroid Build Coastguard Worker for (i = 0; i < ARRAY_SIZE(flags); i++) {
106*cf84ac9aSAndroid Build Coastguard Worker for (j = 0; j < ARRAY_SIZE(cmdlines); j++) {
107*cf84ac9aSAndroid Build Coastguard Worker rc = syscall(__NR_kexec_file_load, bogus_kernel_fd,
108*cf84ac9aSAndroid Build Coastguard Worker bogus_initrd_fd, cmdline_lens[j],
109*cf84ac9aSAndroid Build Coastguard Worker cmdlines[j].val, flags[i].val);
110*cf84ac9aSAndroid Build Coastguard Worker printf("kexec_file_load(%d, %d, %llu, %s, %s%s) = %s\n",
111*cf84ac9aSAndroid Build Coastguard Worker (int) bogus_kernel_fd, (int) bogus_initrd_fd,
112*cf84ac9aSAndroid Build Coastguard Worker (unsigned long long) cmdline_lens[j],
113*cf84ac9aSAndroid Build Coastguard Worker cmdlines[j].str,
114*cf84ac9aSAndroid Build Coastguard Worker sizeof(kernel_ulong_t) == 8 ? flags[i].str64 :
115*cf84ac9aSAndroid Build Coastguard Worker flags[i].str32, flags[i].str, sprintrc(rc));
116*cf84ac9aSAndroid Build Coastguard Worker }
117*cf84ac9aSAndroid Build Coastguard Worker }
118*cf84ac9aSAndroid Build Coastguard Worker
119*cf84ac9aSAndroid Build Coastguard Worker puts("+++ exited with 0 +++");
120*cf84ac9aSAndroid Build Coastguard Worker
121*cf84ac9aSAndroid Build Coastguard Worker return 0;
122*cf84ac9aSAndroid Build Coastguard Worker }
123*cf84ac9aSAndroid Build Coastguard Worker
124*cf84ac9aSAndroid Build Coastguard Worker #else
125*cf84ac9aSAndroid Build Coastguard Worker
126*cf84ac9aSAndroid Build Coastguard Worker SKIP_MAIN_UNDEFINED("__NR_kexec_file_load");
127*cf84ac9aSAndroid Build Coastguard Worker
128*cf84ac9aSAndroid Build Coastguard Worker #endif
129