summaryrefslogtreecommitdiff
path: root/libexec
AgeCommit message (Collapse)Author
2021-12-30Sync from libc: Use _MAX_PAGE_SHIFT, rather than #ifdef mips64Philip Guenther
ok otto@
2021-12-30Delete dead (duplicate) testPhilip Guenther
2021-12-23Roll the syscalls that have an off_t argument to remove the explicit padding.Philip Guenther
Switch libc and ld.so to the generic stubs for these calls. WARNING: reboot to updated kernel before installing libc or ld.so! Time for a story... When gcc (back in 1.x days) first implemented long long, it didn't (always) pass 64bit arguments in 'aligned' registers/stack slots, with the result that argument offsets didn't match structure offsets. This affected the nine system calls that pass off_t arguments: ftruncate lseek mmap mquery pread preadv pwrite pwritev truncate To avoid having to do custom ASM wrappers for those, BSD put an explicit pad argument in so that the off_t argument would always start on a even slot and thus be naturally aligned. Thus those odd wrappers in lib/libc/sys/ that use __syscall() and pass an extra '0' argument. The ABIs for different CPUs eventually settled how things should be passed on each and gcc 2.x followed them. The only arch now where it helps is landisk, which needs to skip the last argument register if it would be the first half of a 64bit argument. So: add new syscalls without the pad argument and on landisk do that skipping directly in the syscall handler in the kernel. Keep compat support for the existing syscalls long enough for the transition. ok deraadt@
2021-12-15spamd: convert to opaque HMAC_CTXTheo Buehler
ok jsing
2021-12-14A better approach is to defined __CONCAT locallyTheo de Raadt
2021-12-14Sigh. This sys/cdefs.h is hiding use of __CONCAT in a non-C context.Theo de Raadt
Needs some other repairs first.
2021-12-13including sys/cdefs.h manually started as a result of netbsd trying toTheo de Raadt
macro-build a replacement for sccsid, and was done without any concern for namespace damage. Unfortunately this practice started infecting other code as others were unaware they didn't need the file. ok millert guenther
2021-11-27Remove an unneeded variable to fix compiler warning with clang 13.Visa Hankala
OK jsg@
2021-11-16fix an accidental NULL deref introduced last year, found by patrick.Theo de Raadt
rewrite the code with a goto so this never happens again. ok patrick millert
2021-11-14Delete all the no-op RELOC_GOT() macros and their uses.Philip Guenther
Annotate RELOC_DYN() on non-hppa as only used in lib/csu. Delete some inconsistent comments, adjust whitespace, and reorder mips64's archdep.h so that the ld.so/*/archdep.h files look (almost) the same. ok visa@ kettenis@
2021-11-12Add support for RELR relocations in the executable and share objects.Philip Guenther
This doesn't affect ld.so's self-reloc, which still requires DT_REL/DT_RELA ok kettenis@
2021-11-09Like most archs, riscv doesn't need resolution of JUMP_SLOT relocationsPhilip Guenther
in static PIE binaries: delete RELOC_JMPREL and HAVE_JMPREL there. ok kettenis@
2021-10-24For open/openat, if the flags parameter does not contain O_CREAT, theTheo de Raadt
3rd (variadic) mode_t parameter is irrelevant. Many developers in the past have passed mode_t (0, 044, 0644, or such), which might lead future people to copy this broken idiom, and perhaps even believe this parameter has some meaning or implication or application. Delete them all. This comes out of a conversation where tb@ noticed that a strange (but intentional) pledge behaviour is to always knock-out high-bits from mode_t on a number of system calls as a safety factor, and his bewilderment that this appeared to be happening against valid modes (at least visually), but no sorry, they are all irrelevant junk. They could all be 0xdeafbeef. ok millert
2021-10-23ensure that sensitive data is zeroed out from mem.Ricardo Mestre
ok beck@
2021-10-07Print the name of the symbol that can't be resolved when usingJoshua Stein
LD_DEBUG ok mpi, kn
2021-09-13various formatting fixes;Jason McIntyre
2021-09-13introduce /etc/bsd.re-config which can be used to configure the kernelRobert Nagy
using config(8); the contents of this configuration file will be fed to config(8) after kernel relinking is done, so on the next boot the new kernel will have all the configuration changes set by the user this comes handy if you still want to use KARL while making changes to the GENERIC kernel diff from Paul de Weerd with input from several developers
2021-09-02remove sys/param.h use, by replacing MAXLOGNAME -> LOGIN_NAME_MAXTheo de Raadt
and MAXHOSTNAMELEN -> HOST_NAME_MAX+1
2021-07-14Remove unneeded calls to tls_init(3)kn
As per the manual and lib/libtls/tls.c revision 1.79 from 2018 "Automatically handle library initialisation for libtls." initialisation is handled automatically by other tls_*(3) functions. Remove explicit tls_init() calls from base to not give the impression of it being needed. Feedback tb OK Tests mestre
2021-07-12Change the error reporting pattern throughout the tree when unveilBob Beck
fails to report the path that the failure occured on. Suggested by deraadt@ after some tech discussion. Work done and verified by Ashton Fagg <ashton@fagg.id.au> ok deraadt@ semarie@ claudio@
2021-07-07Hoist whole TLS initialization instead of loading the cert/key into memory firstRicardo Mestre
and setting them up later on, nowadays it's possible to do both steps in just one go through tls_config_set_{cert,key}_file(3) so use it and then init TLS. No functional change. OK kn@
2021-06-26Make lazy binding work on riscv64.Mark Kettenis
prompted by deraadt@
2021-06-26Build ld.so with --march=rv64imac on riscv64 to be absolutely sure thatMark Kettenis
ld.so doesn't use the FP registers. ok deraadt@
2021-06-26Use AFLAGS when building syscall stubs. Drop AINC wich isn't used.Mark Kettenis
ok deraadt@
2021-06-02add RTLD_NODELETE supportSebastien Marie
if RTLD_NODELETE isn't POSIX, it is widely deployed: at least linux, freebsd, dragonfly, netbsd, solaris, illumos, apple, and fuchsia have it. ok kettenis@ on previous version with help from and ok guenther@ diff partially inspired from a diff from brad@
2021-05-31Convert K&R function definitions to modern C.jan
OK naddy@, millert@
2021-05-25program headers: do not rely on DYNAMIC coming before GNU_RELROkn
Except for some specific cases (thanks guenther) ELF mandates nothing but the file header be at a fixed location, hence ld.so(1) must not assume any specific order for headers, segments, etc. Looping over the program header table to parse segment headers, _dl_boot() creates the executable object upon DYNAMIC and expects it to be set upon GNU_RELRO, resulting in a NULL dereference iff that order is reversed. Store relocation bits in temporary variables and update the executable object once all segment headers are parsed to lift this dependency. Under __mips__ _dl_boot() later on uses the same temporary variable, so move nothing but the declaration out of MI code so as to not alter the MD code's logic/behaviour. Found while porting patchelf(1) from NixOS. OK guenther
2021-05-23Constify function parameters.jan
OK martijn@
2021-05-22Remove useless fflush(3) calls. lreply() already called fflush(3).jan
OK martijn@
2021-05-22Remove useless islower(2) before toupper(3).jan
OK martijn@
2021-05-20Removes the useless FILE* parameter of get_line().jan
While here fix minor whitespace mistake. "looks fine to me" chris@
2021-05-16Correct problem in riscv64 dtors execution load the function pointerDale Rahn
correctly and do not overwrite it in csu. allows most ld.so regressions to pass confirmed by jsg@, ok kettenis
2021-05-15Add pledge for ftpd's user processes.jan
OK tobhe@
2021-04-28riscv64 ld.soDale Rahn
derived from arm64 go ahead deraadt@
2021-04-19Same internal consistency check as libc malloc: size in hash tableOtto Moerbeek
should correspond to size of chunk meta data
2021-03-16On i386 don't attempt to map shared libraries in low memory whenKurt Miller
a large executable's .text section crosses the 512MB exec line. Executables that have MAXTSIZ > 64MB can map above the default 512MB exec line. When this happens, shared libs that attempt to map into low memory will find their .data section can not be mapped. ld.so will attempt to remap the share lib at higher addresses until it can be mapped. For very large executables like chrome this process is very time consuming. This change detects how much of the executable's .text section exceeds 512MB and uses that as the initial hint for shared libs to map into which avoids attempting to map into blocked memory. okay deraadt@
2021-01-02Check auth_mkvalue(3) return value for NULL (malloc failure).Todd C. Miller
For constant strings we don't actually need to use auth_mkvalue(3). Problem reported by Ross L Richardson.
2020-12-27We know about optreset from unistd.h.Florian Obser
From Jan Stary, thanks. OK martijn
2020-12-26Fix a nasty mem leak in ld.so's own malloc. This was hard to diagnose, sinceOtto Moerbeek
malloc dumping and gdb do not help at all when studying ld.so. In the end it turns out ot be a simple merge error causing extra mmap calls. ok miller@ tb@
2020-11-28Add retguard to macppc kernel locore.S, ofwreal.S, setjmp.Sgkoehler
This changes RETGUARD_SETUP(ffs) to RETGUARD_SETUP(ffs, %r11, %r12) and RETGUARD_CHECK(ffs) to RETGUARD_CHECK(ffs, %r11, %r12) to show that r11 and r12 are in use between setup and check, and to pick registers other than r11 and r12 in some kernel functions. ok mortimer@ deraadt@
2020-10-26Retguard asm macros for powerpc libc, ld.sogkoehler
Add retguard to some, but not all, asm functions in libc. Edit SYS.h in libc to remove the PREFIX macros and add SYSENTRY (more like aarch64 and powerpc64), so we can insert RETGUARD_SETUP after SYSENTRY. Some .S files in this commit don't get retguard, but do stop using the old prefix macros. Tested by deraadt@, who put this diff in a macppc snap.
2020-10-16Use the retguard macros from asm.h to protect the system call stubs.Theo de Raadt
ok mortimer kettenis
2020-10-15make three mib[] arrays const, as was done in libcTheo de Raadt
2020-10-11Don't skip file systems just because the parent fs is nodev and nosuid.Todd C. Miller
Fixes instances where a mount point uses the nodev and nosuid options but another file system mounted inside that hierarchy does not. OK schwarze@
2020-09-17afs, nnpfs, and procfs are no longer supported,Ingo Schwarze
so stop looking for them in mount(8) output; no functional change intended; OK millert@
2020-09-14Do not bother scanning file systems that are both nodev and nosuidIngo Schwarze
for SUID, SGID, and device files, implementing an idea that deraadt@ came up with based on a somewhat similar idea from millert@ after a loosely related comment from Rupert Gallagher on misc@. While here, minimally simplify the way mount options are parsed, hoping to make the parsing more readable and also more robust. OK millert@ deraadt@
2020-09-14No need to check for NULL before calling free.Martijn van Duren
from miod@
2020-09-12Documentation fixes by jmc.Martijn van Duren
2020-09-12Import login_ldap.Martijn van Duren
The code is based login_ldap port, but uses our own aldap implementation instead of openldap. It also uses a stand alone configuration file instead of login.conf, since setting this up might contain information not destined for everyone to see. OK bluhm@ "Go for it" deraadt@
2020-09-06Move definiton of struct token_types *tt to init.c from header file.mortimer
Makes it build with -fno-common. ok deraadt