xref: /xnu-12377.81.4/libkern/c++/OSRuntime.cpp (revision 043036a2b3718f7f0be807e2870f8f47d3fa0796)
1*043036a2SApple OSS Distributions /*
2*043036a2SApple OSS Distributions  * Copyright (c) 2000,2008-2009 Apple Inc. All rights reserved.
3*043036a2SApple OSS Distributions  *
4*043036a2SApple OSS Distributions  * @APPLE_OSREFERENCE_LICENSE_HEADER_START@
5*043036a2SApple OSS Distributions  *
6*043036a2SApple OSS Distributions  * This file contains Original Code and/or Modifications of Original Code
7*043036a2SApple OSS Distributions  * as defined in and that are subject to the Apple Public Source License
8*043036a2SApple OSS Distributions  * Version 2.0 (the 'License'). You may not use this file except in
9*043036a2SApple OSS Distributions  * compliance with the License. The rights granted to you under the License
10*043036a2SApple OSS Distributions  * may not be used to create, or enable the creation or redistribution of,
11*043036a2SApple OSS Distributions  * unlawful or unlicensed copies of an Apple operating system, or to
12*043036a2SApple OSS Distributions  * circumvent, violate, or enable the circumvention or violation of, any
13*043036a2SApple OSS Distributions  * terms of an Apple operating system software license agreement.
14*043036a2SApple OSS Distributions  *
15*043036a2SApple OSS Distributions  * Please obtain a copy of the License at
16*043036a2SApple OSS Distributions  * http://www.opensource.apple.com/apsl/ and read it before using this file.
17*043036a2SApple OSS Distributions  *
18*043036a2SApple OSS Distributions  * The Original Code and all software distributed under the License are
19*043036a2SApple OSS Distributions  * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
20*043036a2SApple OSS Distributions  * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
21*043036a2SApple OSS Distributions  * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
22*043036a2SApple OSS Distributions  * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
23*043036a2SApple OSS Distributions  * Please see the License for the specific language governing rights and
24*043036a2SApple OSS Distributions  * limitations under the License.
25*043036a2SApple OSS Distributions  *
26*043036a2SApple OSS Distributions  * @APPLE_OSREFERENCE_LICENSE_HEADER_END@
27*043036a2SApple OSS Distributions  */
28*043036a2SApple OSS Distributions /*
29*043036a2SApple OSS Distributions  * Copyright (c) 1997 Apple Inc.
30*043036a2SApple OSS Distributions  *
31*043036a2SApple OSS Distributions  */
32*043036a2SApple OSS Distributions #include <libkern/c++/OSMetaClass.h>
33*043036a2SApple OSS Distributions #include <libkern/c++/OSKext.h>
34*043036a2SApple OSS Distributions #include <libkern/c++/OSLib.h>
35*043036a2SApple OSS Distributions #include <libkern/c++/OSSymbol.h>
36*043036a2SApple OSS Distributions #include <IOKit/IOKitDebug.h>
37*043036a2SApple OSS Distributions 
38*043036a2SApple OSS Distributions #include <sys/cdefs.h>
39*043036a2SApple OSS Distributions #if defined(HAS_APPLE_PAC)
40*043036a2SApple OSS Distributions #include <ptrauth.h>
41*043036a2SApple OSS Distributions #define PTRAUTH_STRIP_STRUCTOR(x)       ((uintptr_t) ptrauth_strip(ptrauth_nop_cast(void *, (x)), ptrauth_key_function_pointer))
42*043036a2SApple OSS Distributions #else  /* defined(HAS_APPLE_PAC) */
43*043036a2SApple OSS Distributions #define PTRAUTH_STRIP_STRUCTOR(x)       ((uintptr_t) (x))
44*043036a2SApple OSS Distributions #endif /* !defined(HAS_APPLE_PAC) */
45*043036a2SApple OSS Distributions 
46*043036a2SApple OSS Distributions __BEGIN_DECLS
47*043036a2SApple OSS Distributions 
48*043036a2SApple OSS Distributions #include <string.h>
49*043036a2SApple OSS Distributions #include <mach/mach_types.h>
50*043036a2SApple OSS Distributions #include <libkern/kernel_mach_header.h>
51*043036a2SApple OSS Distributions #include <libkern/prelink.h>
52*043036a2SApple OSS Distributions #include <stdarg.h>
53*043036a2SApple OSS Distributions 
54*043036a2SApple OSS Distributions #if KASAN
55*043036a2SApple OSS Distributions #include <san/kasan.h>
56*043036a2SApple OSS Distributions #endif
57*043036a2SApple OSS Distributions 
58*043036a2SApple OSS Distributions #if CONFIG_SPTM
59*043036a2SApple OSS Distributions #include <arm64/sptm/sptm.h>
60*043036a2SApple OSS Distributions #endif
61*043036a2SApple OSS Distributions 
62*043036a2SApple OSS Distributions #if PRAGMA_MARK
63*043036a2SApple OSS Distributions #pragma mark Constants &c.
64*043036a2SApple OSS Distributions #endif /* PRAGMA_MARK */
65*043036a2SApple OSS Distributions OSKextLogSpec kOSRuntimeLogSpec =
66*043036a2SApple OSS Distributions     kOSKextLogErrorLevel |
67*043036a2SApple OSS Distributions     kOSKextLogLoadFlag |
68*043036a2SApple OSS Distributions     kOSKextLogKextBookkeepingFlag;
69*043036a2SApple OSS Distributions 
70*043036a2SApple OSS Distributions #if PRAGMA_MARK
71*043036a2SApple OSS Distributions #pragma mark Logging Bootstrap
72*043036a2SApple OSS Distributions #endif /* PRAGMA_MARK */
73*043036a2SApple OSS Distributions /*********************************************************************
74*043036a2SApple OSS Distributions * kern_os Logging Bootstrap
75*043036a2SApple OSS Distributions *
76*043036a2SApple OSS Distributions * We can't call in to OSKext until the kernel's C++ environment is up
77*043036a2SApple OSS Distributions * and running, so let's mask those references with a check variable.
78*043036a2SApple OSS Distributions * We print unconditionally if C++ isn't up, but if that's the case
79*043036a2SApple OSS Distributions * we've generally hit a serious error in kernel init!
80*043036a2SApple OSS Distributions *********************************************************************/
81*043036a2SApple OSS Distributions static bool gKernelCPPInitialized = false;
82*043036a2SApple OSS Distributions 
83*043036a2SApple OSS Distributions #define OSRuntimeLog(kext, flags, format, args ...)            \
84*043036a2SApple OSS Distributions     do {                                                      \
85*043036a2SApple OSS Distributions 	if (gKernelCPPInitialized) {                          \
86*043036a2SApple OSS Distributions 	    OSKextLog((kext), (flags), (format), ## args);  \
87*043036a2SApple OSS Distributions 	} else {                                              \
88*043036a2SApple OSS Distributions 	    printf((format), ## args);                        \
89*043036a2SApple OSS Distributions 	}                                                     \
90*043036a2SApple OSS Distributions     } while (0)
91*043036a2SApple OSS Distributions 
92*043036a2SApple OSS Distributions #if PRAGMA_MARK
93*043036a2SApple OSS Distributions #pragma mark Libkern Init
94*043036a2SApple OSS Distributions #endif /* PRAGMA_MARK */
95*043036a2SApple OSS Distributions /*********************************************************************
96*043036a2SApple OSS Distributions * Libkern Init
97*043036a2SApple OSS Distributions *********************************************************************/
98*043036a2SApple OSS Distributions 
99*043036a2SApple OSS Distributions #if __GNUC__ >= 3
100*043036a2SApple OSS Distributions void __dead2
__cxa_pure_virtual(void)101*043036a2SApple OSS Distributions __cxa_pure_virtual( void )
102*043036a2SApple OSS Distributions {
103*043036a2SApple OSS Distributions 	panic("%s", __FUNCTION__);
104*043036a2SApple OSS Distributions }
105*043036a2SApple OSS Distributions #else
106*043036a2SApple OSS Distributions void __dead2
__pure_virtual(void)107*043036a2SApple OSS Distributions __pure_virtual( void )
108*043036a2SApple OSS Distributions {
109*043036a2SApple OSS Distributions 	panic("%s", __FUNCTION__);
110*043036a2SApple OSS Distributions }
111*043036a2SApple OSS Distributions #endif
112*043036a2SApple OSS Distributions 
113*043036a2SApple OSS Distributions extern lck_grp_t * IOLockGroup;
114*043036a2SApple OSS Distributions extern kmod_info_t g_kernel_kmod_info;
115*043036a2SApple OSS Distributions #if CONFIG_SPTM
116*043036a2SApple OSS Distributions extern kmod_info_t g_sptm_kmod_info, g_txm_kmod_info;
117*043036a2SApple OSS Distributions #endif /* CONFIG_SPTM */
118*043036a2SApple OSS Distributions 
119*043036a2SApple OSS Distributions enum {
120*043036a2SApple OSS Distributions 	kOSSectionNamesDefault     = 0,
121*043036a2SApple OSS Distributions 	kOSSectionNamesBuiltinKext = 1,
122*043036a2SApple OSS Distributions 	kOSSectionNamesCount       = 2,
123*043036a2SApple OSS Distributions };
124*043036a2SApple OSS Distributions enum {
125*043036a2SApple OSS Distributions 	kOSSectionNameInitializer = 0,
126*043036a2SApple OSS Distributions 	kOSSectionNameFinalizer   = 1,
127*043036a2SApple OSS Distributions 	kOSSectionNameCount       = 2
128*043036a2SApple OSS Distributions };
129*043036a2SApple OSS Distributions 
130*043036a2SApple OSS Distributions static const char *
131*043036a2SApple OSS Distributions     gOSStructorSectionNames[kOSSectionNamesCount][kOSSectionNameCount] = {
132*043036a2SApple OSS Distributions 	{ SECT_MODINITFUNC, SECT_MODTERMFUNC },
133*043036a2SApple OSS Distributions 	{ kBuiltinInitSection, kBuiltinTermSection }
134*043036a2SApple OSS Distributions };
135*043036a2SApple OSS Distributions 
136*043036a2SApple OSS Distributions void
OSlibkernInit(void)137*043036a2SApple OSS Distributions OSlibkernInit(void)
138*043036a2SApple OSS Distributions {
139*043036a2SApple OSS Distributions 	// This must be called before calling OSRuntimeInitializeCPP.
140*043036a2SApple OSS Distributions 	OSMetaClassBase::initialize();
141*043036a2SApple OSS Distributions 
142*043036a2SApple OSS Distributions 	g_kernel_kmod_info.address = (vm_address_t) &_mh_execute_header;
143*043036a2SApple OSS Distributions #if CONFIG_SPTM
144*043036a2SApple OSS Distributions 	g_sptm_kmod_info.address = (vm_offset_t)SPTMArgs->debug_header->image[DEBUG_HEADER_ENTRY_SPTM];
145*043036a2SApple OSS Distributions 	g_txm_kmod_info.address = (vm_offset_t)SPTMArgs->debug_header->image[DEBUG_HEADER_ENTRY_TXM];
146*043036a2SApple OSS Distributions #endif /* CONFIG_SPTM */
147*043036a2SApple OSS Distributions 
148*043036a2SApple OSS Distributions 	if (kOSReturnSuccess != OSRuntimeInitializeCPP(NULL)) {
149*043036a2SApple OSS Distributions 		// &g_kernel_kmod_info, gOSSectionNamesStandard, 0, 0)) {
150*043036a2SApple OSS Distributions 		panic("OSRuntime: C++ runtime failed to initialize.");
151*043036a2SApple OSS Distributions 	}
152*043036a2SApple OSS Distributions 
153*043036a2SApple OSS Distributions 	gKernelCPPInitialized = true;
154*043036a2SApple OSS Distributions 
155*043036a2SApple OSS Distributions 	return;
156*043036a2SApple OSS Distributions }
157*043036a2SApple OSS Distributions 
158*043036a2SApple OSS Distributions __END_DECLS
159*043036a2SApple OSS Distributions 
160*043036a2SApple OSS Distributions #if PRAGMA_MARK
161*043036a2SApple OSS Distributions #pragma mark C++ Runtime Load/Unload
162*043036a2SApple OSS Distributions #endif /* PRAGMA_MARK */
163*043036a2SApple OSS Distributions /*********************************************************************
164*043036a2SApple OSS Distributions * kern_os C++ Runtime Load/Unload
165*043036a2SApple OSS Distributions *********************************************************************/
166*043036a2SApple OSS Distributions 
167*043036a2SApple OSS Distributions typedef void (*structor_t)(void);
168*043036a2SApple OSS Distributions 
169*043036a2SApple OSS Distributions static bool
OSRuntimeCallStructorsInSection(OSKext * theKext,kmod_info_t * kmodInfo,void * metaHandle,kernel_segment_command_t * segment,const char * sectionName,uintptr_t textStart,uintptr_t textEnd)170*043036a2SApple OSS Distributions OSRuntimeCallStructorsInSection(
171*043036a2SApple OSS Distributions 	OSKext                   * theKext,
172*043036a2SApple OSS Distributions 	kmod_info_t              * kmodInfo,
173*043036a2SApple OSS Distributions 	void                     * metaHandle,
174*043036a2SApple OSS Distributions 	kernel_segment_command_t * segment,
175*043036a2SApple OSS Distributions 	const char               * sectionName,
176*043036a2SApple OSS Distributions 	uintptr_t                  textStart,
177*043036a2SApple OSS Distributions 	uintptr_t                  textEnd)
178*043036a2SApple OSS Distributions {
179*043036a2SApple OSS Distributions 	kernel_section_t * section;
180*043036a2SApple OSS Distributions 	bool result = TRUE;
181*043036a2SApple OSS Distributions 
182*043036a2SApple OSS Distributions 	for (section = firstsect(segment);
183*043036a2SApple OSS Distributions 	    section != NULL;
184*043036a2SApple OSS Distributions 	    section = nextsect(segment, section)) {
185*043036a2SApple OSS Distributions 		if (strncmp(section->sectname, sectionName, sizeof(section->sectname) - 1)) {
186*043036a2SApple OSS Distributions 			continue;
187*043036a2SApple OSS Distributions 		}
188*043036a2SApple OSS Distributions 		if (section->size == 0) {
189*043036a2SApple OSS Distributions 			continue;
190*043036a2SApple OSS Distributions 		}
191*043036a2SApple OSS Distributions 
192*043036a2SApple OSS Distributions 		structor_t * structors = (structor_t *)section->addr;
193*043036a2SApple OSS Distributions 		if (!structors) {
194*043036a2SApple OSS Distributions 			continue;
195*043036a2SApple OSS Distributions 		}
196*043036a2SApple OSS Distributions 
197*043036a2SApple OSS Distributions 		structor_t structor;
198*043036a2SApple OSS Distributions 		uintptr_t value;
199*043036a2SApple OSS Distributions 		unsigned long num_structors = section->size / sizeof(structor_t);
200*043036a2SApple OSS Distributions 		unsigned int hit_null_structor = 0;
201*043036a2SApple OSS Distributions 		unsigned long firstIndex = 0;
202*043036a2SApple OSS Distributions 
203*043036a2SApple OSS Distributions 		if (textStart) {
204*043036a2SApple OSS Distributions 			// bsearch for any in range
205*043036a2SApple OSS Distributions 			unsigned long baseIdx;
206*043036a2SApple OSS Distributions 			unsigned long lim;
207*043036a2SApple OSS Distributions 			firstIndex = num_structors;
208*043036a2SApple OSS Distributions 			for (lim = num_structors, baseIdx = 0; lim; lim >>= 1) {
209*043036a2SApple OSS Distributions 				structor = structors[baseIdx + (lim >> 1)];
210*043036a2SApple OSS Distributions 				if (!structor) {
211*043036a2SApple OSS Distributions 					panic("%s: null structor", kmodInfo->name);
212*043036a2SApple OSS Distributions 				}
213*043036a2SApple OSS Distributions 				value = PTRAUTH_STRIP_STRUCTOR(structor);
214*043036a2SApple OSS Distributions 				if ((value >= textStart) && (value < textEnd)) {
215*043036a2SApple OSS Distributions 					firstIndex = (baseIdx + (lim >> 1));
216*043036a2SApple OSS Distributions 					// scan back for the first in range
217*043036a2SApple OSS Distributions 					for (; firstIndex; firstIndex--) {
218*043036a2SApple OSS Distributions 						structor = structors[firstIndex - 1];
219*043036a2SApple OSS Distributions 						value = PTRAUTH_STRIP_STRUCTOR(structor);
220*043036a2SApple OSS Distributions 						if ((value < textStart) || (value >= textEnd)) {
221*043036a2SApple OSS Distributions 							break;
222*043036a2SApple OSS Distributions 						}
223*043036a2SApple OSS Distributions 					}
224*043036a2SApple OSS Distributions 					break;
225*043036a2SApple OSS Distributions 				}
226*043036a2SApple OSS Distributions 				if (textStart > value) {
227*043036a2SApple OSS Distributions 					// move right
228*043036a2SApple OSS Distributions 					baseIdx += (lim >> 1) + 1;
229*043036a2SApple OSS Distributions 					lim--;
230*043036a2SApple OSS Distributions 				}
231*043036a2SApple OSS Distributions 				// else move left
232*043036a2SApple OSS Distributions 			}
233*043036a2SApple OSS Distributions 			baseIdx = (baseIdx + (lim >> 1));
234*043036a2SApple OSS Distributions 		}
235*043036a2SApple OSS Distributions 		for (;
236*043036a2SApple OSS Distributions 		    (firstIndex < num_structors)
237*043036a2SApple OSS Distributions 		    && (!metaHandle || OSMetaClass::checkModLoad(metaHandle));
238*043036a2SApple OSS Distributions 		    firstIndex++) {
239*043036a2SApple OSS Distributions 			if ((structor = structors[firstIndex])) {
240*043036a2SApple OSS Distributions 				value = PTRAUTH_STRIP_STRUCTOR(structor);
241*043036a2SApple OSS Distributions 				if ((textStart && (value < textStart))
242*043036a2SApple OSS Distributions 				    || (textEnd && (value >= textEnd))) {
243*043036a2SApple OSS Distributions 					break;
244*043036a2SApple OSS Distributions 				}
245*043036a2SApple OSS Distributions 				(*structor)();
246*043036a2SApple OSS Distributions 			} else if (!hit_null_structor) {
247*043036a2SApple OSS Distributions 				hit_null_structor = 1;
248*043036a2SApple OSS Distributions 				OSRuntimeLog(theKext, kOSRuntimeLogSpec,
249*043036a2SApple OSS Distributions 				    "Null structor in kext %s segment %s!",
250*043036a2SApple OSS Distributions 				    kmodInfo->name, section->segname);
251*043036a2SApple OSS Distributions 			}
252*043036a2SApple OSS Distributions 		}
253*043036a2SApple OSS Distributions 		if (metaHandle) {
254*043036a2SApple OSS Distributions 			result = OSMetaClass::checkModLoad(metaHandle);
255*043036a2SApple OSS Distributions 		}
256*043036a2SApple OSS Distributions 		break;
257*043036a2SApple OSS Distributions 	} /* for (section...) */
258*043036a2SApple OSS Distributions 	return result;
259*043036a2SApple OSS Distributions }
260*043036a2SApple OSS Distributions 
261*043036a2SApple OSS Distributions /*********************************************************************
262*043036a2SApple OSS Distributions *********************************************************************/
263*043036a2SApple OSS Distributions kern_return_t
OSRuntimeFinalizeCPP(OSKext * theKext)264*043036a2SApple OSS Distributions OSRuntimeFinalizeCPP(
265*043036a2SApple OSS Distributions 	OSKext                   * theKext)
266*043036a2SApple OSS Distributions {
267*043036a2SApple OSS Distributions 	kern_return_t              result = KMOD_RETURN_FAILURE;
268*043036a2SApple OSS Distributions 	void                     * metaHandle = NULL;// do not free
269*043036a2SApple OSS Distributions 	kernel_mach_header_t     * header;
270*043036a2SApple OSS Distributions 	kernel_segment_command_t * segment;
271*043036a2SApple OSS Distributions 	kmod_info_t              * kmodInfo;
272*043036a2SApple OSS Distributions 	const char              ** sectionNames;
273*043036a2SApple OSS Distributions 	uintptr_t                  textStart;
274*043036a2SApple OSS Distributions 	uintptr_t                  textEnd;
275*043036a2SApple OSS Distributions 
276*043036a2SApple OSS Distributions 	textStart    = 0;
277*043036a2SApple OSS Distributions 	textEnd      = 0;
278*043036a2SApple OSS Distributions 	sectionNames = gOSStructorSectionNames[kOSSectionNamesDefault];
279*043036a2SApple OSS Distributions 	if (theKext) {
280*043036a2SApple OSS Distributions 		if (!theKext->isCPPInitialized()) {
281*043036a2SApple OSS Distributions 			result = KMOD_RETURN_SUCCESS;
282*043036a2SApple OSS Distributions 			goto finish;
283*043036a2SApple OSS Distributions 		}
284*043036a2SApple OSS Distributions 		kmodInfo = theKext->kmod_info;
285*043036a2SApple OSS Distributions 		if (!kmodInfo || !kmodInfo->address) {
286*043036a2SApple OSS Distributions 			result = kOSKextReturnInvalidArgument;
287*043036a2SApple OSS Distributions 			goto finish;
288*043036a2SApple OSS Distributions 		}
289*043036a2SApple OSS Distributions 		header = (kernel_mach_header_t *)kmodInfo->address;
290*043036a2SApple OSS Distributions 		if (theKext->flags.builtin) {
291*043036a2SApple OSS Distributions 			header       = (kernel_mach_header_t *)g_kernel_kmod_info.address;
292*043036a2SApple OSS Distributions 			textStart    = kmodInfo->address;
293*043036a2SApple OSS Distributions 			textEnd      = textStart + kmodInfo->size;
294*043036a2SApple OSS Distributions 			sectionNames = gOSStructorSectionNames[kOSSectionNamesBuiltinKext];
295*043036a2SApple OSS Distributions 		}
296*043036a2SApple OSS Distributions 	} else {
297*043036a2SApple OSS Distributions 		kmodInfo = &g_kernel_kmod_info;
298*043036a2SApple OSS Distributions 		header   = (kernel_mach_header_t *)kmodInfo->address;
299*043036a2SApple OSS Distributions 	}
300*043036a2SApple OSS Distributions 
301*043036a2SApple OSS Distributions 	/* OSKext checks for this condition now, but somebody might call
302*043036a2SApple OSS Distributions 	 * this function directly (the symbol is exported....).
303*043036a2SApple OSS Distributions 	 */
304*043036a2SApple OSS Distributions 	if (OSMetaClass::modHasInstance(kmodInfo->name)) {
305*043036a2SApple OSS Distributions 		// xxx - Don't log under errors? this is more of an info thing
306*043036a2SApple OSS Distributions 		OSRuntimeLog(theKext, kOSRuntimeLogSpec,
307*043036a2SApple OSS Distributions 		    "Can't tear down kext %s C++; classes have instances:",
308*043036a2SApple OSS Distributions 		    kmodInfo->name);
309*043036a2SApple OSS Distributions 		OSKext::reportOSMetaClassInstances(kmodInfo->name, kOSRuntimeLogSpec);
310*043036a2SApple OSS Distributions 		result = kOSMetaClassHasInstances;
311*043036a2SApple OSS Distributions 		goto finish;
312*043036a2SApple OSS Distributions 	}
313*043036a2SApple OSS Distributions 
314*043036a2SApple OSS Distributions 	/* Tell the meta class system that we are starting to unload.
315*043036a2SApple OSS Distributions 	 * metaHandle isn't actually needed on the finalize path,
316*043036a2SApple OSS Distributions 	 * so we don't check it here, even though OSMetaClass::postModLoad() will
317*043036a2SApple OSS Distributions 	 * return a failure (it only does actual work on the init path anyhow).
318*043036a2SApple OSS Distributions 	 */
319*043036a2SApple OSS Distributions 	metaHandle = OSMetaClass::preModLoad(kmodInfo->name);
320*043036a2SApple OSS Distributions 
321*043036a2SApple OSS Distributions 	OSSymbol::checkForPageUnload((void *)kmodInfo->address,
322*043036a2SApple OSS Distributions 	    (void *)(kmodInfo->address + kmodInfo->size));
323*043036a2SApple OSS Distributions 
324*043036a2SApple OSS Distributions 	header = (kernel_mach_header_t *)kmodInfo->address;
325*043036a2SApple OSS Distributions 	segment = firstsegfromheader(header);
326*043036a2SApple OSS Distributions 
327*043036a2SApple OSS Distributions 	for (segment = firstsegfromheader(header);
328*043036a2SApple OSS Distributions 	    segment != NULL;
329*043036a2SApple OSS Distributions 	    segment = nextsegfromheader(header, segment)) {
330*043036a2SApple OSS Distributions 		OSRuntimeCallStructorsInSection(theKext, kmodInfo, NULL, segment,
331*043036a2SApple OSS Distributions 		    sectionNames[kOSSectionNameFinalizer], textStart, textEnd);
332*043036a2SApple OSS Distributions 	}
333*043036a2SApple OSS Distributions 
334*043036a2SApple OSS Distributions 	(void)OSMetaClass::postModLoad(metaHandle);
335*043036a2SApple OSS Distributions 
336*043036a2SApple OSS Distributions 	if (theKext) {
337*043036a2SApple OSS Distributions 		theKext->setCPPInitialized(false);
338*043036a2SApple OSS Distributions 	}
339*043036a2SApple OSS Distributions 	result = KMOD_RETURN_SUCCESS;
340*043036a2SApple OSS Distributions finish:
341*043036a2SApple OSS Distributions 	return result;
342*043036a2SApple OSS Distributions }
343*043036a2SApple OSS Distributions 
344*043036a2SApple OSS Distributions #if defined(HAS_APPLE_PAC)
345*043036a2SApple OSS Distributions #if !KASAN
346*043036a2SApple OSS Distributions /*
347*043036a2SApple OSS Distributions  * Place this function in __KLD,__text on non-kasan builds so it gets unmapped
348*043036a2SApple OSS Distributions  * after CTRR lockdown.
349*043036a2SApple OSS Distributions  */
350*043036a2SApple OSS Distributions __attribute__((noinline, section("__KLD,__text")))
351*043036a2SApple OSS Distributions #endif
352*043036a2SApple OSS Distributions static void
OSRuntimeSignStructorsInSegment(kernel_segment_command_t * segment)353*043036a2SApple OSS Distributions OSRuntimeSignStructorsInSegment(kernel_segment_command_t *segment)
354*043036a2SApple OSS Distributions {
355*043036a2SApple OSS Distributions 	kernel_section_t         * section;
356*043036a2SApple OSS Distributions 	structor_t               * structors;
357*043036a2SApple OSS Distributions 	volatile structor_t                 structor;
358*043036a2SApple OSS Distributions 	size_t                     idx, num_structors;
359*043036a2SApple OSS Distributions 
360*043036a2SApple OSS Distributions 	for (section = firstsect(segment);
361*043036a2SApple OSS Distributions 	    section != NULL;
362*043036a2SApple OSS Distributions 	    section = nextsect(segment, section)) {
363*043036a2SApple OSS Distributions 		if ((S_MOD_INIT_FUNC_POINTERS != (SECTION_TYPE & section->flags))
364*043036a2SApple OSS Distributions 		    && (S_MOD_TERM_FUNC_POINTERS != (SECTION_TYPE & section->flags))) {
365*043036a2SApple OSS Distributions 			continue;
366*043036a2SApple OSS Distributions 		}
367*043036a2SApple OSS Distributions 		structors = (structor_t *)section->addr;
368*043036a2SApple OSS Distributions 		if (!structors) {
369*043036a2SApple OSS Distributions 			continue;
370*043036a2SApple OSS Distributions 		}
371*043036a2SApple OSS Distributions 		num_structors = section->size / sizeof(structor_t);
372*043036a2SApple OSS Distributions 		for (idx = 0; idx < num_structors; idx++) {
373*043036a2SApple OSS Distributions 			structor = structors[idx];
374*043036a2SApple OSS Distributions 			if (NULL == structor) {
375*043036a2SApple OSS Distributions 				continue;
376*043036a2SApple OSS Distributions 			}
377*043036a2SApple OSS Distributions 			structor = ptrauth_strip(structor, ptrauth_key_function_pointer);
378*043036a2SApple OSS Distributions 			structor = ptrauth_sign_unauthenticated(structor, ptrauth_key_function_pointer, ptrauth_function_pointer_type_discriminator(void (*)(void)));
379*043036a2SApple OSS Distributions 			structors[idx] = structor;
380*043036a2SApple OSS Distributions 		}
381*043036a2SApple OSS Distributions 	} /* for (section...) */
382*043036a2SApple OSS Distributions }
383*043036a2SApple OSS Distributions #endif
384*043036a2SApple OSS Distributions 
385*043036a2SApple OSS Distributions /*********************************************************************
386*043036a2SApple OSS Distributions *********************************************************************/
387*043036a2SApple OSS Distributions void
OSRuntimeSignStructors(kernel_mach_header_t * header __unused)388*043036a2SApple OSS Distributions OSRuntimeSignStructors(
389*043036a2SApple OSS Distributions 	kernel_mach_header_t * header __unused)
390*043036a2SApple OSS Distributions {
391*043036a2SApple OSS Distributions #if defined(HAS_APPLE_PAC)
392*043036a2SApple OSS Distributions 
393*043036a2SApple OSS Distributions 	kernel_segment_command_t * segment;
394*043036a2SApple OSS Distributions 
395*043036a2SApple OSS Distributions 	for (segment = firstsegfromheader(header);
396*043036a2SApple OSS Distributions 	    segment != NULL;
397*043036a2SApple OSS Distributions 	    segment = nextsegfromheader(header, segment)) {
398*043036a2SApple OSS Distributions 		OSRuntimeSignStructorsInSegment(segment);
399*043036a2SApple OSS Distributions 	} /* for (segment...) */
400*043036a2SApple OSS Distributions #endif /* !defined(XXX) && defined(HAS_APPLE_PAC) */
401*043036a2SApple OSS Distributions }
402*043036a2SApple OSS Distributions 
403*043036a2SApple OSS Distributions /*********************************************************************
404*043036a2SApple OSS Distributions *********************************************************************/
405*043036a2SApple OSS Distributions void
OSRuntimeSignStructorsInFileset(kernel_mach_header_t * fileset_header __unused)406*043036a2SApple OSS Distributions OSRuntimeSignStructorsInFileset(
407*043036a2SApple OSS Distributions 	kernel_mach_header_t * fileset_header __unused)
408*043036a2SApple OSS Distributions {
409*043036a2SApple OSS Distributions #if defined(HAS_APPLE_PAC)
410*043036a2SApple OSS Distributions 	struct load_command *lc;
411*043036a2SApple OSS Distributions 
412*043036a2SApple OSS Distributions 	lc = (struct load_command *)((uintptr_t)fileset_header + sizeof(*fileset_header));
413*043036a2SApple OSS Distributions 	for (uint32_t i = 0; i < fileset_header->ncmds; i++,
414*043036a2SApple OSS Distributions 	    lc = (struct load_command *)((uintptr_t)lc + lc->cmdsize)) {
415*043036a2SApple OSS Distributions 		if (lc->cmd == LC_FILESET_ENTRY) {
416*043036a2SApple OSS Distributions 			struct fileset_entry_command *fse;
417*043036a2SApple OSS Distributions 			kernel_mach_header_t *mh;
418*043036a2SApple OSS Distributions 
419*043036a2SApple OSS Distributions 			fse = (struct fileset_entry_command *)(uintptr_t)lc;
420*043036a2SApple OSS Distributions 			mh = (kernel_mach_header_t *)((uintptr_t)fse->vmaddr);
421*043036a2SApple OSS Distributions 			OSRuntimeSignStructors(mh);
422*043036a2SApple OSS Distributions 		} else if (lc->cmd == LC_SEGMENT_64) {
423*043036a2SApple OSS Distributions 			/*
424*043036a2SApple OSS Distributions 			 * Slide/adjust all LC_SEGMENT_64 commands in the fileset
425*043036a2SApple OSS Distributions 			 * (and any sections in those segments)
426*043036a2SApple OSS Distributions 			 */
427*043036a2SApple OSS Distributions 			kernel_segment_command_t *seg;
428*043036a2SApple OSS Distributions 			seg = (kernel_segment_command_t *)(uintptr_t)lc;
429*043036a2SApple OSS Distributions 			OSRuntimeSignStructorsInSegment(seg);
430*043036a2SApple OSS Distributions 		}
431*043036a2SApple OSS Distributions 	}
432*043036a2SApple OSS Distributions 
433*043036a2SApple OSS Distributions #endif /* defined(HAS_APPLE_PAC) */
434*043036a2SApple OSS Distributions }
435*043036a2SApple OSS Distributions 
436*043036a2SApple OSS Distributions /*********************************************************************
437*043036a2SApple OSS Distributions *********************************************************************/
438*043036a2SApple OSS Distributions kern_return_t
OSRuntimeInitializeCPP(OSKext * theKext)439*043036a2SApple OSS Distributions OSRuntimeInitializeCPP(
440*043036a2SApple OSS Distributions 	OSKext                   * theKext)
441*043036a2SApple OSS Distributions {
442*043036a2SApple OSS Distributions 	kern_return_t              result          = KMOD_RETURN_FAILURE;
443*043036a2SApple OSS Distributions 	kernel_mach_header_t     * header          = NULL;
444*043036a2SApple OSS Distributions 	void                     * metaHandle      = NULL;// do not free
445*043036a2SApple OSS Distributions 	bool                       load_success    = true;
446*043036a2SApple OSS Distributions 	kernel_segment_command_t * segment         = NULL;// do not free
447*043036a2SApple OSS Distributions 	kernel_segment_command_t * failure_segment = NULL; // do not free
448*043036a2SApple OSS Distributions 	kmod_info_t             *  kmodInfo;
449*043036a2SApple OSS Distributions 	const char              ** sectionNames;
450*043036a2SApple OSS Distributions 	uintptr_t                  textStart;
451*043036a2SApple OSS Distributions 	uintptr_t                  textEnd;
452*043036a2SApple OSS Distributions 
453*043036a2SApple OSS Distributions 	textStart    = 0;
454*043036a2SApple OSS Distributions 	textEnd      = 0;
455*043036a2SApple OSS Distributions 	sectionNames = gOSStructorSectionNames[kOSSectionNamesDefault];
456*043036a2SApple OSS Distributions 	if (theKext) {
457*043036a2SApple OSS Distributions 		if (theKext->isCPPInitialized()) {
458*043036a2SApple OSS Distributions 			result = KMOD_RETURN_SUCCESS;
459*043036a2SApple OSS Distributions 			goto finish;
460*043036a2SApple OSS Distributions 		}
461*043036a2SApple OSS Distributions 
462*043036a2SApple OSS Distributions 		kmodInfo = theKext->kmod_info;
463*043036a2SApple OSS Distributions 		if (!kmodInfo || !kmodInfo->address) {
464*043036a2SApple OSS Distributions 			result = kOSKextReturnInvalidArgument;
465*043036a2SApple OSS Distributions 			goto finish;
466*043036a2SApple OSS Distributions 		}
467*043036a2SApple OSS Distributions 		header = (kernel_mach_header_t *)kmodInfo->address;
468*043036a2SApple OSS Distributions 
469*043036a2SApple OSS Distributions 		if (theKext->flags.builtin) {
470*043036a2SApple OSS Distributions 			header       = (kernel_mach_header_t *)g_kernel_kmod_info.address;
471*043036a2SApple OSS Distributions 			textStart    = kmodInfo->address;
472*043036a2SApple OSS Distributions 			textEnd      = textStart + kmodInfo->size;
473*043036a2SApple OSS Distributions 			sectionNames = gOSStructorSectionNames[kOSSectionNamesBuiltinKext];
474*043036a2SApple OSS Distributions 		}
475*043036a2SApple OSS Distributions 	} else {
476*043036a2SApple OSS Distributions 		kmodInfo = &g_kernel_kmod_info;
477*043036a2SApple OSS Distributions 		header   = (kernel_mach_header_t *)kmodInfo->address;
478*043036a2SApple OSS Distributions 	}
479*043036a2SApple OSS Distributions 
480*043036a2SApple OSS Distributions 	/* Tell the meta class system that we are starting the load
481*043036a2SApple OSS Distributions 	 */
482*043036a2SApple OSS Distributions 	metaHandle = OSMetaClass::preModLoad(kmodInfo->name);
483*043036a2SApple OSS Distributions 	assert(metaHandle);
484*043036a2SApple OSS Distributions 	if (!metaHandle) {
485*043036a2SApple OSS Distributions 		goto finish;
486*043036a2SApple OSS Distributions 	}
487*043036a2SApple OSS Distributions 
488*043036a2SApple OSS Distributions 	/* NO GOTO PAST HERE. */
489*043036a2SApple OSS Distributions 
490*043036a2SApple OSS Distributions 	/* Scan the header for all constructor sections, in any
491*043036a2SApple OSS Distributions 	 * segment, and invoke the constructors within those sections.
492*043036a2SApple OSS Distributions 	 */
493*043036a2SApple OSS Distributions 	for (segment = firstsegfromheader(header);
494*043036a2SApple OSS Distributions 	    segment != NULL && load_success;
495*043036a2SApple OSS Distributions 	    segment = nextsegfromheader(header, segment)) {
496*043036a2SApple OSS Distributions 		/* Record the current segment in the event of a failure.
497*043036a2SApple OSS Distributions 		 */
498*043036a2SApple OSS Distributions 		failure_segment = segment;
499*043036a2SApple OSS Distributions 		load_success = OSRuntimeCallStructorsInSection(
500*043036a2SApple OSS Distributions 			theKext, kmodInfo, metaHandle, segment,
501*043036a2SApple OSS Distributions 			sectionNames[kOSSectionNameInitializer],
502*043036a2SApple OSS Distributions 			textStart, textEnd);
503*043036a2SApple OSS Distributions 	} /* for (segment...) */
504*043036a2SApple OSS Distributions 
505*043036a2SApple OSS Distributions 	/* We failed so call all of the destructors. We must do this before
506*043036a2SApple OSS Distributions 	 * calling OSMetaClass::postModLoad() as the OSMetaClass destructors
507*043036a2SApple OSS Distributions 	 * will alter state (in the metaHandle) used by that function.
508*043036a2SApple OSS Distributions 	 */
509*043036a2SApple OSS Distributions 	if (!load_success) {
510*043036a2SApple OSS Distributions 		/* Scan the header for all destructor sections, in any
511*043036a2SApple OSS Distributions 		 * segment, and invoke the constructors within those sections.
512*043036a2SApple OSS Distributions 		 */
513*043036a2SApple OSS Distributions 		for (segment = firstsegfromheader(header);
514*043036a2SApple OSS Distributions 		    segment != failure_segment && segment != NULL;
515*043036a2SApple OSS Distributions 		    segment = nextsegfromheader(header, segment)) {
516*043036a2SApple OSS Distributions 			OSRuntimeCallStructorsInSection(theKext, kmodInfo, NULL, segment,
517*043036a2SApple OSS Distributions 			    sectionNames[kOSSectionNameFinalizer], textStart, textEnd);
518*043036a2SApple OSS Distributions 		} /* for (segment...) */
519*043036a2SApple OSS Distributions 	}
520*043036a2SApple OSS Distributions 
521*043036a2SApple OSS Distributions 	/* Now, regardless of success so far, do the post-init registration
522*043036a2SApple OSS Distributions 	 * and cleanup. If we had to call the unloadCPP function, static
523*043036a2SApple OSS Distributions 	 * destructors have removed classes from the stalled list so no
524*043036a2SApple OSS Distributions 	 * metaclasses will actually be registered.
525*043036a2SApple OSS Distributions 	 */
526*043036a2SApple OSS Distributions 	result = OSMetaClass::postModLoad(metaHandle);
527*043036a2SApple OSS Distributions 
528*043036a2SApple OSS Distributions 	/* If we've otherwise been fine up to now, but OSMetaClass::postModLoad()
529*043036a2SApple OSS Distributions 	 * fails (typically due to a duplicate class), tear down all the C++
530*043036a2SApple OSS Distributions 	 * stuff from the kext. This isn't necessary for libkern/OSMetaClass stuff,
531*043036a2SApple OSS Distributions 	 * but may be necessary for other C++ code. We ignore the return value
532*043036a2SApple OSS Distributions 	 * because it's only a fail when there are existing instances of libkern
533*043036a2SApple OSS Distributions 	 * classes, and there had better not be any created on the C++ init path.
534*043036a2SApple OSS Distributions 	 */
535*043036a2SApple OSS Distributions 	if (load_success && result != KMOD_RETURN_SUCCESS) {
536*043036a2SApple OSS Distributions 		(void)OSRuntimeFinalizeCPP(theKext); //kmodInfo, sectionNames, textStart, textEnd);
537*043036a2SApple OSS Distributions 	}
538*043036a2SApple OSS Distributions 
539*043036a2SApple OSS Distributions 	if (theKext && load_success && result == KMOD_RETURN_SUCCESS) {
540*043036a2SApple OSS Distributions 		theKext->setCPPInitialized(true);
541*043036a2SApple OSS Distributions 	}
542*043036a2SApple OSS Distributions finish:
543*043036a2SApple OSS Distributions 	return result;
544*043036a2SApple OSS Distributions }
545*043036a2SApple OSS Distributions 
546*043036a2SApple OSS Distributions /*********************************************************************
547*043036a2SApple OSS Distributions *   Unload a kernel segment.
548*043036a2SApple OSS Distributions *********************************************************************/
549*043036a2SApple OSS Distributions 
550*043036a2SApple OSS Distributions void
OSRuntimeUnloadCPPForSegment(kernel_segment_command_t * segment)551*043036a2SApple OSS Distributions OSRuntimeUnloadCPPForSegment(
552*043036a2SApple OSS Distributions 	kernel_segment_command_t * segment)
553*043036a2SApple OSS Distributions {
554*043036a2SApple OSS Distributions 	OSRuntimeCallStructorsInSection(NULL, &g_kernel_kmod_info, NULL, segment,
555*043036a2SApple OSS Distributions 	    gOSStructorSectionNames[kOSSectionNamesDefault][kOSSectionNameFinalizer], 0, 0);
556*043036a2SApple OSS Distributions }
557*043036a2SApple OSS Distributions 
558*043036a2SApple OSS Distributions #if PRAGMA_MARK
559*043036a2SApple OSS Distributions #pragma mark C++ Allocators & Deallocators
560*043036a2SApple OSS Distributions #endif /* PRAGMA_MARK */
561*043036a2SApple OSS Distributions /*********************************************************************
562*043036a2SApple OSS Distributions * C++ Allocators & Deallocators
563*043036a2SApple OSS Distributions *********************************************************************/
564*043036a2SApple OSS Distributions __typed_allocators_ignore_push
565*043036a2SApple OSS Distributions 
566*043036a2SApple OSS Distributions void *
operator new(size_t size)567*043036a2SApple OSS Distributions operator new(size_t size)
568*043036a2SApple OSS Distributions {
569*043036a2SApple OSS Distributions 	assert(size);
570*043036a2SApple OSS Distributions 	return kheap_alloc(KERN_OS_MALLOC, size,
571*043036a2SApple OSS Distributions 	           Z_VM_TAG_BT(Z_WAITOK_ZERO, VM_KERN_MEMORY_LIBKERN));
572*043036a2SApple OSS Distributions }
573*043036a2SApple OSS Distributions 
574*043036a2SApple OSS Distributions void
operator delete(void * addr)575*043036a2SApple OSS Distributions operator delete(void * addr)
576*043036a2SApple OSS Distributions #if __cplusplus >= 201103L
577*043036a2SApple OSS Distributions noexcept
578*043036a2SApple OSS Distributions #endif
579*043036a2SApple OSS Distributions {
580*043036a2SApple OSS Distributions 	kheap_free_addr(KERN_OS_MALLOC, addr);
581*043036a2SApple OSS Distributions 	return;
582*043036a2SApple OSS Distributions }
583*043036a2SApple OSS Distributions 
584*043036a2SApple OSS Distributions void *
operator new[](unsigned long size)585*043036a2SApple OSS Distributions operator new[](unsigned long size)
586*043036a2SApple OSS Distributions {
587*043036a2SApple OSS Distributions 	return kheap_alloc(KERN_OS_MALLOC, size,
588*043036a2SApple OSS Distributions 	           Z_VM_TAG_BT(Z_WAITOK_ZERO, VM_KERN_MEMORY_LIBKERN));
589*043036a2SApple OSS Distributions }
590*043036a2SApple OSS Distributions 
591*043036a2SApple OSS Distributions void
operator delete[](void * ptr)592*043036a2SApple OSS Distributions operator delete[](void * ptr)
593*043036a2SApple OSS Distributions #if __cplusplus >= 201103L
594*043036a2SApple OSS Distributions noexcept
595*043036a2SApple OSS Distributions #endif
596*043036a2SApple OSS Distributions {
597*043036a2SApple OSS Distributions 	if (ptr) {
598*043036a2SApple OSS Distributions #if KASAN
599*043036a2SApple OSS Distributions 		/*
600*043036a2SApple OSS Distributions 		 * Unpoison the C++ array cookie inserted (but not removed) by the
601*043036a2SApple OSS Distributions 		 * compiler on new[].
602*043036a2SApple OSS Distributions 		 */
603*043036a2SApple OSS Distributions 		kasan_unpoison_cxx_array_cookie(ptr);
604*043036a2SApple OSS Distributions #endif
605*043036a2SApple OSS Distributions 		kheap_free_addr(KERN_OS_MALLOC, ptr);
606*043036a2SApple OSS Distributions 	}
607*043036a2SApple OSS Distributions 	return;
608*043036a2SApple OSS Distributions }
609*043036a2SApple OSS Distributions 
610*043036a2SApple OSS Distributions #if __cplusplus >= 201103L
611*043036a2SApple OSS Distributions 
612*043036a2SApple OSS Distributions void
operator delete(void * addr,size_t sz)613*043036a2SApple OSS Distributions operator delete(void * addr, size_t sz) noexcept
614*043036a2SApple OSS Distributions {
615*043036a2SApple OSS Distributions 	kheap_free(KERN_OS_MALLOC, addr, sz);
616*043036a2SApple OSS Distributions }
617*043036a2SApple OSS Distributions 
618*043036a2SApple OSS Distributions void
operator delete[](void * addr,size_t sz)619*043036a2SApple OSS Distributions operator delete[](void * addr, size_t sz) noexcept
620*043036a2SApple OSS Distributions {
621*043036a2SApple OSS Distributions 	if (addr) {
622*043036a2SApple OSS Distributions 		kheap_free(KERN_OS_MALLOC, addr, sz);
623*043036a2SApple OSS Distributions 	}
624*043036a2SApple OSS Distributions }
625*043036a2SApple OSS Distributions 
626*043036a2SApple OSS Distributions __typed_allocators_ignore_pop
627*043036a2SApple OSS Distributions 
628*043036a2SApple OSS Distributions #endif /* __cplusplus >= 201103L */
629*043036a2SApple OSS Distributions 
630*043036a2SApple OSS Distributions /* PR-6481964 - The compiler is going to check for size overflows in calls to
631*043036a2SApple OSS Distributions  * new[], and if there is an overflow, it will call __throw_length_error.
632*043036a2SApple OSS Distributions  * This is an unrecoverable error by the C++ standard, so we must panic here.
633*043036a2SApple OSS Distributions  *
634*043036a2SApple OSS Distributions  * We have to put the function inside the std namespace because of how the
635*043036a2SApple OSS Distributions  * compiler expects the name to be mangled.
636*043036a2SApple OSS Distributions  */
637*043036a2SApple OSS Distributions namespace std {
638*043036a2SApple OSS Distributions void __dead2
__throw_length_error(const char * msg __unused)639*043036a2SApple OSS Distributions __throw_length_error(const char *msg __unused)
640*043036a2SApple OSS Distributions {
641*043036a2SApple OSS Distributions 	panic("Size of array created by new[] has overflowed");
642*043036a2SApple OSS Distributions }
643*043036a2SApple OSS Distributions };
644