1*d4514f0bSApple OSS Distributions // Copyright (c) 2020 Apple, Inc. All rights reserved.
2*d4514f0bSApple OSS Distributions
3*d4514f0bSApple OSS Distributions #include <darwintest.h>
4*d4514f0bSApple OSS Distributions #include <dirent.h>
5*d4514f0bSApple OSS Distributions #include <fcntl.h>
6*d4514f0bSApple OSS Distributions #include <libkern/OSByteOrder.h>
7*d4514f0bSApple OSS Distributions #include <mach-o/loader.h>
8*d4514f0bSApple OSS Distributions #include <stdbool.h>
9*d4514f0bSApple OSS Distributions #include <sys/mman.h>
10*d4514f0bSApple OSS Distributions #include <sys/stat.h>
11*d4514f0bSApple OSS Distributions #include <sys/sysctl.h>
12*d4514f0bSApple OSS Distributions #include <TargetConditionals.h>
13*d4514f0bSApple OSS Distributions #include <unistd.h>
14*d4514f0bSApple OSS Distributions #include <uuid/uuid.h>
15*d4514f0bSApple OSS Distributions
16*d4514f0bSApple OSS Distributions static bool
get_macho_uuid(const char * cwd,const char * path,uuid_t uuid)17*d4514f0bSApple OSS Distributions get_macho_uuid(const char *cwd, const char *path, uuid_t uuid)
18*d4514f0bSApple OSS Distributions {
19*d4514f0bSApple OSS Distributions bool found = false;
20*d4514f0bSApple OSS Distributions void *mapped = MAP_FAILED;
21*d4514f0bSApple OSS Distributions size_t mapped_len = 0;
22*d4514f0bSApple OSS Distributions
23*d4514f0bSApple OSS Distributions T_SETUPBEGIN;
24*d4514f0bSApple OSS Distributions
25*d4514f0bSApple OSS Distributions // Skip irregular files (directories, devices, etc.).
26*d4514f0bSApple OSS Distributions struct stat stbuf = {};
27*d4514f0bSApple OSS Distributions int ret = stat(path, &stbuf);
28*d4514f0bSApple OSS Distributions if (ret < 0 && errno == ENOENT) {
29*d4514f0bSApple OSS Distributions goto out;
30*d4514f0bSApple OSS Distributions }
31*d4514f0bSApple OSS Distributions T_QUIET; T_ASSERT_POSIX_SUCCESS(ret, "should stat %s%s", cwd, path);
32*d4514f0bSApple OSS Distributions if ((stbuf.st_mode & S_IFREG) == 0) {
33*d4514f0bSApple OSS Distributions goto out;
34*d4514f0bSApple OSS Distributions }
35*d4514f0bSApple OSS Distributions if (stbuf.st_size < (off_t)sizeof(struct mach_header)) {
36*d4514f0bSApple OSS Distributions goto out;
37*d4514f0bSApple OSS Distributions }
38*d4514f0bSApple OSS Distributions
39*d4514f0bSApple OSS Distributions int fd = open(path, O_RDONLY);
40*d4514f0bSApple OSS Distributions if (fd < 0 && (errno == EPERM || errno == EACCES || errno == ENOENT)) {
41*d4514f0bSApple OSS Distributions goto out;
42*d4514f0bSApple OSS Distributions }
43*d4514f0bSApple OSS Distributions T_QUIET;
44*d4514f0bSApple OSS Distributions T_ASSERT_POSIX_SUCCESS(fd, "should open file at %s%s", cwd, path);
45*d4514f0bSApple OSS Distributions
46*d4514f0bSApple OSS Distributions mapped = mmap(NULL, (size_t)stbuf.st_size, PROT_READ, MAP_PRIVATE,
47*d4514f0bSApple OSS Distributions fd, 0);
48*d4514f0bSApple OSS Distributions T_QUIET; T_WITH_ERRNO;
49*d4514f0bSApple OSS Distributions T_ASSERT_NE(mapped, MAP_FAILED, "should map Mach-O binary at %s%s",
50*d4514f0bSApple OSS Distributions cwd, path);
51*d4514f0bSApple OSS Distributions (void)close(fd);
52*d4514f0bSApple OSS Distributions
53*d4514f0bSApple OSS Distributions // Mach-O parsing boilerplate.
54*d4514f0bSApple OSS Distributions uint32_t magic = *(uint32_t *)mapped;
55*d4514f0bSApple OSS Distributions bool should_swap = false;
56*d4514f0bSApple OSS Distributions bool b32 = false;
57*d4514f0bSApple OSS Distributions // XXX This does not handle fat binaries.
58*d4514f0bSApple OSS Distributions switch (magic) {
59*d4514f0bSApple OSS Distributions case MH_CIGAM:
60*d4514f0bSApple OSS Distributions should_swap = true;
61*d4514f0bSApple OSS Distributions OS_FALLTHROUGH;
62*d4514f0bSApple OSS Distributions case MH_MAGIC:
63*d4514f0bSApple OSS Distributions b32 = true;
64*d4514f0bSApple OSS Distributions break;
65*d4514f0bSApple OSS Distributions case MH_CIGAM_64:
66*d4514f0bSApple OSS Distributions should_swap = true;
67*d4514f0bSApple OSS Distributions break;
68*d4514f0bSApple OSS Distributions case MH_MAGIC_64:
69*d4514f0bSApple OSS Distributions break;
70*d4514f0bSApple OSS Distributions default:
71*d4514f0bSApple OSS Distributions goto out;
72*d4514f0bSApple OSS Distributions }
73*d4514f0bSApple OSS Distributions const struct load_command *lcmd = NULL;
74*d4514f0bSApple OSS Distributions unsigned int ncmds = 0;
75*d4514f0bSApple OSS Distributions if (b32) {
76*d4514f0bSApple OSS Distributions const struct mach_header *hdr = mapped;
77*d4514f0bSApple OSS Distributions ncmds = hdr->ncmds;
78*d4514f0bSApple OSS Distributions lcmd = (const void *)((const char *)mapped + sizeof(*hdr));
79*d4514f0bSApple OSS Distributions } else {
80*d4514f0bSApple OSS Distributions const struct mach_header_64 *hdr = mapped;
81*d4514f0bSApple OSS Distributions ncmds = hdr->ncmds;
82*d4514f0bSApple OSS Distributions lcmd = (const void *)((const char *)mapped + sizeof(*hdr));
83*d4514f0bSApple OSS Distributions }
84*d4514f0bSApple OSS Distributions ncmds = should_swap ? OSSwapInt32(ncmds) : ncmds;
85*d4514f0bSApple OSS Distributions
86*d4514f0bSApple OSS Distributions // Scan through load commands to find LC_UUID.
87*d4514f0bSApple OSS Distributions for (unsigned int i = 0; i < ncmds; i++) {
88*d4514f0bSApple OSS Distributions if ((should_swap ? OSSwapInt32(lcmd->cmd) : lcmd->cmd) == LC_UUID) {
89*d4514f0bSApple OSS Distributions const struct uuid_command *uuid_cmd = (const void *)lcmd;
90*d4514f0bSApple OSS Distributions uuid_copy(uuid, uuid_cmd->uuid);
91*d4514f0bSApple OSS Distributions found = true;
92*d4514f0bSApple OSS Distributions break;
93*d4514f0bSApple OSS Distributions }
94*d4514f0bSApple OSS Distributions
95*d4514f0bSApple OSS Distributions uint32_t cmdsize = should_swap ? OSSwapInt32(lcmd->cmdsize) :
96*d4514f0bSApple OSS Distributions lcmd->cmdsize;
97*d4514f0bSApple OSS Distributions lcmd = (const void *)((const char *)lcmd + cmdsize);
98*d4514f0bSApple OSS Distributions }
99*d4514f0bSApple OSS Distributions
100*d4514f0bSApple OSS Distributions if (!found) {
101*d4514f0bSApple OSS Distributions T_LOG("could not find LC_UUID in Mach-O at %s%s", cwd, path);
102*d4514f0bSApple OSS Distributions }
103*d4514f0bSApple OSS Distributions
104*d4514f0bSApple OSS Distributions out:
105*d4514f0bSApple OSS Distributions T_SETUPEND;
106*d4514f0bSApple OSS Distributions
107*d4514f0bSApple OSS Distributions if (mapped != MAP_FAILED) {
108*d4514f0bSApple OSS Distributions munmap(mapped, mapped_len);
109*d4514f0bSApple OSS Distributions }
110*d4514f0bSApple OSS Distributions return found;
111*d4514f0bSApple OSS Distributions }
112*d4514f0bSApple OSS Distributions
113*d4514f0bSApple OSS Distributions T_DECL(correct_kernel_booted,
114*d4514f0bSApple OSS Distributions "Make sure the kernel on disk matches the running kernel, by UUID.",
115*d4514f0bSApple OSS Distributions T_META_RUN_CONCURRENTLY(true),
116*d4514f0bSApple OSS Distributions T_META_CHECK_LEAKS(false), T_META_TAG_VM_NOT_PREFERRED)
117*d4514f0bSApple OSS Distributions {
118*d4514f0bSApple OSS Distributions T_SETUPBEGIN;
119*d4514f0bSApple OSS Distributions
120*d4514f0bSApple OSS Distributions uuid_t kern_uuid;
121*d4514f0bSApple OSS Distributions uuid_string_t kern_uuid_str;
122*d4514f0bSApple OSS Distributions size_t kern_uuid_size = sizeof(kern_uuid_str);
123*d4514f0bSApple OSS Distributions int ret = sysctlbyname("kern.uuid", &kern_uuid_str, &kern_uuid_size, NULL,
124*d4514f0bSApple OSS Distributions 0);
125*d4514f0bSApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(ret, "should get running kernel UUID");
126*d4514f0bSApple OSS Distributions T_LOG("%s: running kernel", kern_uuid_str);
127*d4514f0bSApple OSS Distributions
128*d4514f0bSApple OSS Distributions ret = uuid_parse(kern_uuid_str, kern_uuid);
129*d4514f0bSApple OSS Distributions T_QUIET; T_ASSERT_EQ(ret, 0, "should parse kernel UUID into bytes");
130*d4514f0bSApple OSS Distributions
131*d4514f0bSApple OSS Distributions #if TARGET_OS_OSX
132*d4514f0bSApple OSS Distributions const char *kernels_path = "/System/Library/Kernels/";
133*d4514f0bSApple OSS Distributions #else // TARGET_OS_OSX
134*d4514f0bSApple OSS Distributions const char *kernels_path = "/";
135*d4514f0bSApple OSS Distributions #endif // !TARGET_OS_OSX
136*d4514f0bSApple OSS Distributions T_LOG("searching for kernels at %s", kernels_path);
137*d4514f0bSApple OSS Distributions
138*d4514f0bSApple OSS Distributions ret = chdir(kernels_path);
139*d4514f0bSApple OSS Distributions T_QUIET; T_ASSERT_POSIX_SUCCESS(ret, "should change directory to %s",
140*d4514f0bSApple OSS Distributions kernels_path);
141*d4514f0bSApple OSS Distributions
142*d4514f0bSApple OSS Distributions DIR *kernels_dir = opendir(kernels_path);
143*d4514f0bSApple OSS Distributions T_QUIET; T_ASSERT_NOTNULL(kernels_dir, "should open directory at %s",
144*d4514f0bSApple OSS Distributions kernels_path);
145*d4514f0bSApple OSS Distributions
146*d4514f0bSApple OSS Distributions T_SETUPEND;
147*d4514f0bSApple OSS Distributions
148*d4514f0bSApple OSS Distributions bool found = false;
149*d4514f0bSApple OSS Distributions struct dirent *entry = NULL;
150*d4514f0bSApple OSS Distributions while ((entry = readdir(kernels_dir)) != NULL) {
151*d4514f0bSApple OSS Distributions uuid_t bin_uuid;
152*d4514f0bSApple OSS Distributions bool ok = get_macho_uuid(kernels_path, entry->d_name, bin_uuid);
153*d4514f0bSApple OSS Distributions if (ok) {
154*d4514f0bSApple OSS Distributions uuid_string_t bin_uuid_str;
155*d4514f0bSApple OSS Distributions uuid_unparse(bin_uuid, bin_uuid_str);
156*d4514f0bSApple OSS Distributions T_LOG("%s: from %s%s", bin_uuid_str, kernels_path, entry->d_name);
157*d4514f0bSApple OSS Distributions if (uuid_compare(bin_uuid, kern_uuid) == 0) {
158*d4514f0bSApple OSS Distributions found = true;
159*d4514f0bSApple OSS Distributions T_PASS("UUID from %s%s matches kernel UUID", kernels_path,
160*d4514f0bSApple OSS Distributions entry->d_name);
161*d4514f0bSApple OSS Distributions }
162*d4514f0bSApple OSS Distributions }
163*d4514f0bSApple OSS Distributions }
164*d4514f0bSApple OSS Distributions if (!found) {
165*d4514f0bSApple OSS Distributions T_FAIL("failed to find kernel binary with UUID of the running kernel, "
166*d4514f0bSApple OSS Distributions "wrong kernel is booted");
167*d4514f0bSApple OSS Distributions }
168*d4514f0bSApple OSS Distributions (void)closedir(kernels_dir);
169*d4514f0bSApple OSS Distributions }
170