VirtualBox

source: vbox/trunk/src/VBox/HostDrivers/Support/SUPLibLdr.cpp@ 85766

Last change on this file since 85766 was 85555, checked in by vboxsync, 5 years ago

SUP: Fix for solaris VBoxDDR0.r0 loading issue (inverted test in the "it's complicated" part of the code). bugref:9801

  • Property svn:eol-style set to native
  • Property svn:keywords set to Author Date Id Revision
File size: 40.9 KB
Line 
1/* $Id: SUPLibLdr.cpp 85555 2020-07-30 13:11:50Z vboxsync $ */
2/** @file
3 * VirtualBox Support Library - Loader related bits.
4 */
5
6/*
7 * Copyright (C) 2006-2020 Oracle Corporation
8 *
9 * This file is part of VirtualBox Open Source Edition (OSE), as
10 * available from http://www.virtualbox.org. This file is free software;
11 * you can redistribute it and/or modify it under the terms of the GNU
12 * General Public License (GPL) as published by the Free Software
13 * Foundation, in version 2 as it comes in the "COPYING" file of the
14 * VirtualBox OSE distribution. VirtualBox OSE is distributed in the
15 * hope that it will be useful, but WITHOUT ANY WARRANTY of any kind.
16 *
17 * The contents of this file may alternatively be used under the terms
18 * of the Common Development and Distribution License Version 1.0
19 * (CDDL) only, as it comes in the "COPYING.CDDL" file of the
20 * VirtualBox OSE distribution, in which case the provisions of the
21 * CDDL are applicable instead of those of the GPL.
22 *
23 * You may elect to license modified versions of this file under the
24 * terms and conditions of either the GPL or the CDDL or both.
25 */
26
27
28/*********************************************************************************************************************************
29* Header Files *
30*********************************************************************************************************************************/
31#define LOG_GROUP LOG_GROUP_SUP
32#include <VBox/sup.h>
33#include <VBox/err.h>
34#include <VBox/param.h>
35#include <VBox/log.h>
36#include <VBox/VBoxTpG.h>
37
38#include <iprt/assert.h>
39#include <iprt/alloc.h>
40#include <iprt/alloca.h>
41#include <iprt/ldr.h>
42#include <iprt/asm.h>
43#include <iprt/mp.h>
44#include <iprt/cpuset.h>
45#include <iprt/thread.h>
46#include <iprt/process.h>
47#include <iprt/path.h>
48#include <iprt/string.h>
49#include <iprt/env.h>
50#include <iprt/rand.h>
51#include <iprt/x86.h>
52
53#include "SUPDrvIOC.h"
54#include "SUPLibInternal.h"
55
56
57/*********************************************************************************************************************************
58* Defined Constants And Macros *
59*********************************************************************************************************************************/
60/** R0 VMM module name. */
61#define VMMR0_NAME "VMMR0"
62
63
64/*********************************************************************************************************************************
65* Structures and Typedefs *
66*********************************************************************************************************************************/
67typedef DECLCALLBACKTYPE(int, FNCALLVMMR0,(PVMR0 pVMR0, unsigned uOperation, void *pvArg));
68typedef FNCALLVMMR0 *PFNCALLVMMR0;
69
70
71/*********************************************************************************************************************************
72* Global Variables *
73*********************************************************************************************************************************/
74/** VMMR0 Load Address. */
75static RTR0PTR g_pvVMMR0 = NIL_RTR0PTR;
76
77
78/*********************************************************************************************************************************
79* Internal Functions *
80*********************************************************************************************************************************/
81static int supLoadModule(const char *pszFilename, const char *pszModule, const char *pszSrvReqHandler,
82 PRTERRINFO pErrInfo, void **ppvImageBase);
83static DECLCALLBACK(int) supLoadModuleResolveImport(RTLDRMOD hLdrMod, const char *pszModule, const char *pszSymbol,
84 unsigned uSymbol, RTUINTPTR *pValue, void *pvUser);
85
86
87SUPR3DECL(int) SUPR3LoadModule(const char *pszFilename, const char *pszModule, void **ppvImageBase, PRTERRINFO pErrInfo)
88{
89 /*
90 * Check that the module can be trusted.
91 */
92 int rc = SUPR3HardenedVerifyPlugIn(pszFilename, pErrInfo);
93 if (RT_SUCCESS(rc))
94 {
95 rc = supLoadModule(pszFilename, pszModule, NULL, pErrInfo, ppvImageBase);
96 if (RT_FAILURE(rc) && !RTErrInfoIsSet(pErrInfo))
97 RTErrInfoSetF(pErrInfo, rc, "SUPR3LoadModule: supLoadModule returned %Rrc", rc);
98 }
99 return rc;
100}
101
102
103SUPR3DECL(int) SUPR3LoadServiceModule(const char *pszFilename, const char *pszModule,
104 const char *pszSrvReqHandler, void **ppvImageBase)
105{
106 AssertPtrReturn(pszSrvReqHandler, VERR_INVALID_PARAMETER);
107
108 /*
109 * Check that the module can be trusted.
110 */
111 int rc = SUPR3HardenedVerifyPlugIn(pszFilename, NULL /*pErrInfo*/);
112 if (RT_SUCCESS(rc))
113 rc = supLoadModule(pszFilename, pszModule, pszSrvReqHandler, NULL /*pErrInfo*/, ppvImageBase);
114 else
115 LogRel(("SUPR3LoadServiceModule: Verification of \"%s\" failed, rc=%Rrc\n", pszFilename, rc));
116 return rc;
117}
118
119
120/**
121 * Argument package for supLoadModuleResolveImport.
122 */
123typedef struct SUPLDRRESIMPARGS
124{
125 const char *pszModule;
126 PRTERRINFO pErrInfo;
127} SUPLDRRESIMPARGS, *PSUPLDRRESIMPARGS;
128
129/**
130 * Resolve an external symbol during RTLdrGetBits().
131 *
132 * @returns VBox status code.
133 * @param hLdrMod The loader module handle.
134 * @param pszModule Module name.
135 * @param pszSymbol Symbol name, NULL if uSymbol should be used.
136 * @param uSymbol Symbol ordinal, ~0 if pszSymbol should be used.
137 * @param pValue Where to store the symbol value (address).
138 * @param pvUser User argument.
139 */
140static DECLCALLBACK(int) supLoadModuleResolveImport(RTLDRMOD hLdrMod, const char *pszModule,
141 const char *pszSymbol, unsigned uSymbol, RTUINTPTR *pValue, void *pvUser)
142{
143 NOREF(hLdrMod); NOREF(uSymbol);
144 AssertPtr(pValue);
145 AssertPtr(pvUser);
146 PSUPLDRRESIMPARGS pArgs = (PSUPLDRRESIMPARGS)pvUser;
147
148 /*
149 * Only SUPR0 and VMMR0.r0
150 */
151 if ( pszModule
152 && *pszModule
153 && strcmp(pszModule, "VBoxDrv.sys")
154 && strcmp(pszModule, "VMMR0.r0"))
155 {
156#if defined(RT_OS_WINDOWS) && 0 /* Useful for VMMR0 hacking, not for production use. See also SUPDrv-win.cpp */
157 if (strcmp(pszModule, "ntoskrnl.exe") == 0)
158 {
159 *pValue = 42; /* Non-zero so ring-0 can find the end of the IAT and exclude it when comparing. */
160 return VINF_SUCCESS;
161 }
162#endif
163 AssertMsgFailed(("%s is importing from %s! (expected 'SUPR0.dll' or 'VMMR0.r0', case-sensitive)\n", pArgs->pszModule, pszModule));
164 return RTErrInfoSetF(pArgs->pErrInfo, VERR_SYMBOL_NOT_FOUND,
165 "Unexpected import module '%s' in '%s'", pszModule, pArgs->pszModule);
166 }
167
168 /*
169 * No ordinals.
170 */
171 if (uSymbol != ~0U)
172 {
173 AssertMsgFailed(("%s is importing by ordinal (ord=%d)\n", pArgs->pszModule, uSymbol));
174 return RTErrInfoSetF(pArgs->pErrInfo, VERR_SYMBOL_NOT_FOUND,
175 "Unexpected ordinal import (%#x) in '%s'", uSymbol, pArgs->pszModule);
176 }
177
178 /*
179 * Lookup symbol.
180 */
181 /* Skip the 64-bit ELF import prefix first. */
182 /** @todo is this actually used??? */
183 if (!strncmp(pszSymbol, RT_STR_TUPLE("SUPR0$")))
184 pszSymbol += sizeof("SUPR0$") - 1;
185
186 /*
187 * Check the VMMR0.r0 module if loaded.
188 */
189 /** @todo call the SUPR3LoadModule caller.... */
190 /** @todo proper reference counting and such. */
191 if (g_pvVMMR0 != NIL_RTR0PTR)
192 {
193 void *pvValue;
194 if (!SUPR3GetSymbolR0((void *)g_pvVMMR0, pszSymbol, &pvValue))
195 {
196 *pValue = (uintptr_t)pvValue;
197 return VINF_SUCCESS;
198 }
199 }
200
201 /* iterate the function table. */
202 int c = g_pSupFunctions->u.Out.cFunctions;
203 PSUPFUNC pFunc = &g_pSupFunctions->u.Out.aFunctions[0];
204 while (c-- > 0)
205 {
206 if (!strcmp(pFunc->szName, pszSymbol))
207 {
208 *pValue = (uintptr_t)pFunc->pfn;
209 return VINF_SUCCESS;
210 }
211 pFunc++;
212 }
213
214 /*
215 * The GIP.
216 */
217 if ( pszSymbol
218 && g_pSUPGlobalInfoPage
219 && g_pSUPGlobalInfoPageR0
220 && !strcmp(pszSymbol, "g_SUPGlobalInfoPage")
221 )
222 {
223 *pValue = (uintptr_t)g_pSUPGlobalInfoPageR0;
224 return VINF_SUCCESS;
225 }
226
227 /*
228 * Symbols that are undefined by convention.
229 */
230#ifdef RT_OS_SOLARIS
231 static const char * const s_apszConvSyms[] =
232 {
233 "", "mod_getctl",
234 "", "mod_install",
235 "", "mod_remove",
236 "", "mod_info",
237 "", "mod_miscops",
238 };
239 for (unsigned i = 0; i < RT_ELEMENTS(s_apszConvSyms); i += 2)
240 {
241 if ( !RTStrCmp(s_apszConvSyms[i], pszModule)
242 && !RTStrCmp(s_apszConvSyms[i + 1], pszSymbol))
243 {
244 *pValue = ~(uintptr_t)0;
245 return VINF_SUCCESS;
246 }
247 }
248#endif
249
250 /*
251 * Despair.
252 */
253 c = g_pSupFunctions->u.Out.cFunctions;
254 pFunc = &g_pSupFunctions->u.Out.aFunctions[0];
255 while (c-- > 0)
256 {
257 RTAssertMsg2Weak("%d: %s\n", g_pSupFunctions->u.Out.cFunctions - c, pFunc->szName);
258 pFunc++;
259 }
260 RTAssertMsg2Weak("%s is importing %s which we couldn't find\n", pArgs->pszModule, pszSymbol);
261
262 AssertLogRelMsgFailed(("%s is importing %s which we couldn't find\n", pArgs->pszModule, pszSymbol));
263 if (g_uSupFakeMode)
264 {
265 *pValue = 0xdeadbeef;
266 return VINF_SUCCESS;
267 }
268 return RTErrInfoSetF(pArgs->pErrInfo, VERR_SYMBOL_NOT_FOUND,
269 "Unable to locate imported symbol '%s%s%s' for module '%s'",
270 pszModule ? pszModule : "",
271 pszModule && *pszModule ? "." : "",
272 pszSymbol,
273 pArgs->pszModule);
274}
275
276
277/** Argument package for supLoadModuleCalcSizeCB. */
278typedef struct SUPLDRCALCSIZEARGS
279{
280 size_t cbStrings;
281 uint32_t cSymbols;
282 size_t cbImage;
283} SUPLDRCALCSIZEARGS, *PSUPLDRCALCSIZEARGS;
284
285/**
286 * Callback used to calculate the image size.
287 * @return VINF_SUCCESS
288 */
289static DECLCALLBACK(int) supLoadModuleCalcSizeCB(RTLDRMOD hLdrMod, const char *pszSymbol, unsigned uSymbol, RTUINTPTR Value, void *pvUser)
290{
291 PSUPLDRCALCSIZEARGS pArgs = (PSUPLDRCALCSIZEARGS)pvUser;
292 if ( pszSymbol != NULL
293 && *pszSymbol
294 && Value <= pArgs->cbImage)
295 {
296 pArgs->cSymbols++;
297 pArgs->cbStrings += strlen(pszSymbol) + 1;
298 }
299 NOREF(hLdrMod); NOREF(uSymbol);
300 return VINF_SUCCESS;
301}
302
303
304/** Argument package for supLoadModuleCreateTabsCB. */
305typedef struct SUPLDRCREATETABSARGS
306{
307 size_t cbImage;
308 PSUPLDRSYM pSym;
309 char *pszBase;
310 char *psz;
311} SUPLDRCREATETABSARGS, *PSUPLDRCREATETABSARGS;
312
313/**
314 * Callback used to calculate the image size.
315 * @return VINF_SUCCESS
316 */
317static DECLCALLBACK(int) supLoadModuleCreateTabsCB(RTLDRMOD hLdrMod, const char *pszSymbol, unsigned uSymbol, RTUINTPTR Value, void *pvUser)
318{
319 PSUPLDRCREATETABSARGS pArgs = (PSUPLDRCREATETABSARGS)pvUser;
320 if ( pszSymbol != NULL
321 && *pszSymbol
322 && Value <= pArgs->cbImage)
323 {
324 pArgs->pSym->offSymbol = (uint32_t)Value;
325 pArgs->pSym->offName = pArgs->psz - pArgs->pszBase;
326 pArgs->pSym++;
327
328 size_t cbCopy = strlen(pszSymbol) + 1;
329 memcpy(pArgs->psz, pszSymbol, cbCopy);
330 pArgs->psz += cbCopy;
331 }
332 NOREF(hLdrMod); NOREF(uSymbol);
333 return VINF_SUCCESS;
334}
335
336
337/** Argument package for supLoadModuleCompileSegmentsCB. */
338typedef struct SUPLDRCOMPSEGTABARGS
339{
340 uint32_t uStartRva;
341 uint32_t uEndRva;
342 uint32_t fProt;
343 uint32_t iSegs;
344 uint32_t cSegsAlloc;
345 PSUPLDRSEG paSegs;
346 PRTERRINFO pErrInfo;
347} SUPLDRCOMPSEGTABARGS, *PSUPLDRCOMPSEGTABARGS;
348
349/**
350 * @callback_method_impl{FNRTLDRENUMSEGS,
351 * Compile list of segments with the same memory protection.}
352 */
353static DECLCALLBACK(int) supLoadModuleCompileSegmentsCB(RTLDRMOD hLdrMod, PCRTLDRSEG pSeg, void *pvUser)
354{
355 PSUPLDRCOMPSEGTABARGS pArgs = (PSUPLDRCOMPSEGTABARGS)pvUser;
356 AssertCompile(RTMEM_PROT_READ == SUPLDR_PROT_READ);
357 AssertCompile(RTMEM_PROT_WRITE == SUPLDR_PROT_WRITE);
358 AssertCompile(RTMEM_PROT_EXEC == SUPLDR_PROT_EXEC);
359 RT_NOREF(hLdrMod);
360
361 Log2(("supLoadModuleCompileSegmentsCB: %RTptr/%RTptr LB %RTptr/%RTptr prot %#x %s\n",
362 pSeg->LinkAddress, pSeg->RVA, pSeg->cbMapped, pSeg->cb, pSeg->fProt, pSeg->pszName));
363
364 /* Ignore segments not part of the loaded image. */
365 if (pSeg->RVA == NIL_RTLDRADDR || pSeg->cbMapped == 0)
366 {
367 Log2(("supLoadModuleCompileSegmentsCB: -> skipped\n"));
368 return VINF_SUCCESS;
369 }
370
371 /* We currently ASSUME that all relevant segments are in ascending RVA order. */
372 AssertReturn(pSeg->RVA >= pArgs->uEndRva,
373 RTERRINFO_LOG_REL_SET_F(pArgs->pErrInfo, VERR_BAD_EXE_FORMAT, "Out of order segment: %p LB %#zx #%.*s",
374 pSeg->RVA, pSeg->cb, pSeg->cchName, pSeg->pszName));
375
376 /* We ASSUME the cbMapped field is implemented. */
377 AssertReturn(pSeg->cbMapped != NIL_RTLDRADDR, VERR_INTERNAL_ERROR_2);
378 AssertReturn(pSeg->cbMapped < _1G, VERR_INTERNAL_ERROR_4);
379 uint32_t cbMapped = (uint32_t)pSeg->cbMapped;
380 AssertReturn(pSeg->RVA < _1G, VERR_INTERNAL_ERROR_3);
381 uint32_t uRvaSeg = (uint32_t)pSeg->RVA;
382
383 /*
384 * If the protection is the same as the previous segment,
385 * just update uEndRva and continue.
386 */
387 uint32_t fProt = pSeg->fProt;
388#if defined(RT_ARCH_AMD64) || defined(RT_ARCH_X86)
389 if (fProt & RTMEM_PROT_EXEC)
390 fProt |= fProt & RTMEM_PROT_READ;
391#endif
392 if (pSeg->fProt == pArgs->fProt)
393 {
394 pArgs->uEndRva = uRvaSeg + cbMapped;
395 Log2(("supLoadModuleCompileSegmentsCB: -> merged, end %#x\n", pArgs->uEndRva));
396 return VINF_SUCCESS;
397 }
398
399 /*
400 * The protection differs, so commit current segment and start a new one.
401 * However, if the new segment and old segment share a page, this becomes
402 * a little more complicated...
403 */
404 if (pArgs->uStartRva < pArgs->uEndRva)
405 {
406 if (((pArgs->uEndRva - 1) >> PAGE_SHIFT) != (uRvaSeg >> PAGE_SHIFT))
407 {
408 /* No common page, so make the new segment start on a page boundrary. */
409 cbMapped += uRvaSeg & PAGE_OFFSET_MASK;
410 uRvaSeg &= ~(uint32_t)PAGE_OFFSET_MASK;
411 Assert(pArgs->uEndRva <= uRvaSeg);
412 Log2(("supLoadModuleCompileSegmentsCB: -> new, no common\n"));
413 }
414 else if ((fProt & pArgs->fProt) == fProt)
415 {
416 /* The current segment includes the memory protections of the
417 previous, so include the common page in it: */
418 uint32_t const cbCommon = PAGE_SIZE - (uRvaSeg & PAGE_OFFSET_MASK);
419 if (cbCommon >= cbMapped)
420 {
421 pArgs->uEndRva = uRvaSeg + cbMapped;
422 Log2(("supLoadModuleCompileSegmentsCB: -> merge, %#x common, upgrading prot to %#x, end %#x\n",
423 cbCommon, pArgs->fProt, pArgs->uEndRva));
424 return VINF_SUCCESS; /* New segment was smaller than a page. */
425 }
426 cbMapped -= cbCommon;
427 uRvaSeg += cbCommon;
428 Assert(pArgs->uEndRva <= uRvaSeg);
429 Log2(("supLoadModuleCompileSegmentsCB: -> new, %#x common into previous\n", cbCommon));
430 }
431 else if ((fProt & pArgs->fProt) == pArgs->fProt)
432 {
433 /* The new segment includes the memory protections of the
434 previous, so include the common page in it: */
435 cbMapped += uRvaSeg & PAGE_OFFSET_MASK;
436 uRvaSeg &= ~(uint32_t)PAGE_OFFSET_MASK;
437 if (uRvaSeg == pArgs->uStartRva)
438 {
439 pArgs->fProt = fProt;
440 pArgs->uEndRva = uRvaSeg + cbMapped;
441 Log2(("supLoadModuleCompileSegmentsCB: -> upgrade current protection, end %#x\n", pArgs->uEndRva));
442 return VINF_SUCCESS; /* Current segment was smaller than a page. */
443 }
444 Log2(("supLoadModuleCompileSegmentsCB: -> new, %#x common into new\n", (uint32_t)(pSeg->RVA & PAGE_OFFSET_MASK)));
445 }
446 else
447 {
448 /* Create a new segment for the common page with the combined protection. */
449 Log2(("supLoadModuleCompileSegmentsCB: -> it's complicated...\n"));
450 pArgs->uEndRva &= ~(uint32_t)PAGE_OFFSET_MASK;
451 if (pArgs->uEndRva > pArgs->uStartRva)
452 {
453 Log2(("supLoadModuleCompileSegmentsCB: SUP Seg #%u: %#x LB %#x prot %#x\n",
454 pArgs->iSegs, pArgs->uStartRva, pArgs->uEndRva - pArgs->uStartRva, pArgs->fProt));
455 if (pArgs->paSegs)
456 {
457 AssertReturn(pArgs->iSegs < pArgs->cSegsAlloc, VERR_INTERNAL_ERROR_5);
458 pArgs->paSegs[pArgs->iSegs].off = pArgs->uStartRva;
459 pArgs->paSegs[pArgs->iSegs].cb = pArgs->uEndRva - pArgs->uStartRva;
460 pArgs->paSegs[pArgs->iSegs].fProt = pArgs->fProt;
461 pArgs->paSegs[pArgs->iSegs].fUnused = 0;
462 }
463 pArgs->iSegs++;
464 pArgs->uStartRva = pArgs->uEndRva;
465 }
466 pArgs->fProt |= fProt;
467
468 uint32_t const cbCommon = PAGE_SIZE - (uRvaSeg & PAGE_OFFSET_MASK);
469 if (cbCommon >= cbMapped)
470 {
471 fProt |= pArgs->fProt;
472 pArgs->uEndRva = uRvaSeg + cbMapped;
473 return VINF_SUCCESS; /* New segment was smaller than a page. */
474 }
475 cbMapped -= cbCommon;
476 uRvaSeg += cbCommon;
477 Assert(uRvaSeg - pArgs->uStartRva == PAGE_SIZE);
478 }
479
480 /* The current segment should end where the new one starts, no gaps. */
481 pArgs->uEndRva = uRvaSeg;
482
483 /* Emit the current segment */
484 Log2(("supLoadModuleCompileSegmentsCB: SUP Seg #%u: %#x LB %#x prot %#x\n",
485 pArgs->iSegs, pArgs->uStartRva, pArgs->uEndRva - pArgs->uStartRva, pArgs->fProt));
486 if (pArgs->paSegs)
487 {
488 AssertReturn(pArgs->iSegs < pArgs->cSegsAlloc, VERR_INTERNAL_ERROR_5);
489 pArgs->paSegs[pArgs->iSegs].off = pArgs->uStartRva;
490 pArgs->paSegs[pArgs->iSegs].cb = pArgs->uEndRva - pArgs->uStartRva;
491 pArgs->paSegs[pArgs->iSegs].fProt = pArgs->fProt;
492 pArgs->paSegs[pArgs->iSegs].fUnused = 0;
493 }
494 pArgs->iSegs++;
495 }
496 /* else: current segment is empty */
497
498 /* Start the new segment. */
499 Assert(!(uRvaSeg & PAGE_OFFSET_MASK));
500 pArgs->fProt = fProt;
501 pArgs->uStartRva = uRvaSeg;
502 pArgs->uEndRva = uRvaSeg + cbMapped;
503 return VINF_SUCCESS;
504}
505
506
507/**
508 * Worker for supLoadModule().
509 */
510static int supLoadModuleInner(RTLDRMOD hLdrMod, PSUPLDRLOAD pLoadReq, uint32_t cbImageWithEverything,
511 RTR0PTR uImageBase, size_t cbImage, const char *pszModule, const char *pszFilename,
512 bool fNativeLoader, bool fIsVMMR0, const char *pszSrvReqHandler,
513 uint32_t offSymTab, uint32_t cSymbols,
514 uint32_t offStrTab, size_t cbStrTab,
515 uint32_t offSegTab, uint32_t cSegments,
516 PRTERRINFO pErrInfo)
517{
518 /*
519 * Get the image bits.
520 */
521 SUPLDRRESIMPARGS Args = { pszModule, pErrInfo };
522 int rc = RTLdrGetBits(hLdrMod, &pLoadReq->u.In.abImage[0], uImageBase, supLoadModuleResolveImport, &Args);
523 if (RT_FAILURE(rc))
524 {
525 LogRel(("SUP: RTLdrGetBits failed for %s (%s). rc=%Rrc\n", pszModule, pszFilename, rc));
526 if (!RTErrInfoIsSet(pErrInfo))
527 RTErrInfoSetF(pErrInfo, rc, "RTLdrGetBits failed");
528 return rc;
529 }
530
531 /*
532 * Get the entry points.
533 */
534 RTUINTPTR VMMR0EntryFast = 0;
535 RTUINTPTR VMMR0EntryEx = 0;
536 RTUINTPTR SrvReqHandler = 0;
537 RTUINTPTR ModuleInit = 0;
538 RTUINTPTR ModuleTerm = 0;
539 const char *pszEp = NULL;
540 if (fIsVMMR0)
541 {
542 rc = RTLdrGetSymbolEx(hLdrMod, &pLoadReq->u.In.abImage[0], uImageBase,
543 UINT32_MAX, pszEp = "VMMR0EntryFast", &VMMR0EntryFast);
544 if (RT_SUCCESS(rc))
545 rc = RTLdrGetSymbolEx(hLdrMod, &pLoadReq->u.In.abImage[0], uImageBase,
546 UINT32_MAX, pszEp = "VMMR0EntryEx", &VMMR0EntryEx);
547 }
548 else if (pszSrvReqHandler)
549 rc = RTLdrGetSymbolEx(hLdrMod, &pLoadReq->u.In.abImage[0], uImageBase,
550 UINT32_MAX, pszEp = pszSrvReqHandler, &SrvReqHandler);
551 if (RT_SUCCESS(rc))
552 {
553 int rc2 = RTLdrGetSymbolEx(hLdrMod, &pLoadReq->u.In.abImage[0], uImageBase,
554 UINT32_MAX, pszEp = "ModuleInit", &ModuleInit);
555 if (RT_FAILURE(rc2))
556 ModuleInit = 0;
557
558 rc2 = RTLdrGetSymbolEx(hLdrMod, &pLoadReq->u.In.abImage[0], uImageBase,
559 UINT32_MAX, pszEp = "ModuleTerm", &ModuleTerm);
560 if (RT_FAILURE(rc2))
561 ModuleTerm = 0;
562 }
563 if (RT_FAILURE(rc))
564 {
565 LogRel(("SUP: Failed to get entry point '%s' for %s (%s) rc=%Rrc\n", pszEp, pszModule, pszFilename, rc));
566 return RTErrInfoSetF(pErrInfo, rc, "Failed to resolve entry point '%s'", pszEp);
567 }
568
569 /*
570 * Create the symbol and string tables.
571 */
572 SUPLDRCREATETABSARGS CreateArgs;
573 CreateArgs.cbImage = cbImage;
574 CreateArgs.pSym = (PSUPLDRSYM)&pLoadReq->u.In.abImage[offSymTab];
575 CreateArgs.pszBase = (char *)&pLoadReq->u.In.abImage[offStrTab];
576 CreateArgs.psz = CreateArgs.pszBase;
577 rc = RTLdrEnumSymbols(hLdrMod, 0, NULL, 0, supLoadModuleCreateTabsCB, &CreateArgs);
578 if (RT_FAILURE(rc))
579 {
580 LogRel(("SUP: RTLdrEnumSymbols failed for %s (%s) rc=%Rrc\n", pszModule, pszFilename, rc));
581 return RTErrInfoSetF(pErrInfo, rc, "RTLdrEnumSymbols #2 failed");
582 }
583 AssertRelease((size_t)(CreateArgs.psz - CreateArgs.pszBase) <= cbStrTab);
584 AssertRelease((size_t)(CreateArgs.pSym - (PSUPLDRSYM)&pLoadReq->u.In.abImage[offSymTab]) <= cSymbols);
585
586 /*
587 * Create the segment table.
588 */
589 SUPLDRCOMPSEGTABARGS SegArgs;
590 SegArgs.uStartRva = 0;
591 SegArgs.uEndRva = 0;
592 SegArgs.fProt = RTMEM_PROT_READ;
593 SegArgs.iSegs = 0;
594 SegArgs.cSegsAlloc = cSegments;
595 SegArgs.paSegs = (PSUPLDRSEG)&pLoadReq->u.In.abImage[offSegTab];
596 SegArgs.pErrInfo = pErrInfo;
597 rc = RTLdrEnumSegments(hLdrMod, supLoadModuleCompileSegmentsCB, &SegArgs);
598 if (RT_FAILURE(rc))
599 {
600 LogRel(("SUP: RTLdrEnumSegments failed for %s (%s) rc=%Rrc\n", pszModule, pszFilename, rc));
601 return RTErrInfoSetF(pErrInfo, rc, "RTLdrEnumSegments #2 failed");
602 }
603 SegArgs.uEndRva = (uint32_t)cbImage;
604 AssertReturn(SegArgs.uEndRva == cbImage, VERR_OUT_OF_RANGE);
605 if (SegArgs.uEndRva > SegArgs.uStartRva)
606 {
607 SegArgs.paSegs[SegArgs.iSegs].off = SegArgs.uStartRva;
608 SegArgs.paSegs[SegArgs.iSegs].cb = SegArgs.uEndRva - SegArgs.uStartRva;
609 SegArgs.paSegs[SegArgs.iSegs].fProt = SegArgs.fProt;
610 SegArgs.paSegs[SegArgs.iSegs].fUnused = 0;
611 SegArgs.iSegs++;
612 }
613 for (uint32_t i = 0; i < SegArgs.iSegs; i++)
614 LogRel(("SUP: seg #%u: %c%c%c %#010RX32 LB %#010RX32\n", i, /** @todo LogRel2 */
615 SegArgs.paSegs[i].fProt & SUPLDR_PROT_READ ? 'R' : ' ',
616 SegArgs.paSegs[i].fProt & SUPLDR_PROT_WRITE ? 'W' : ' ',
617 SegArgs.paSegs[i].fProt & SUPLDR_PROT_EXEC ? 'X' : ' ',
618 SegArgs.paSegs[i].off, SegArgs.paSegs[i].cb));
619 AssertRelease(SegArgs.iSegs == cSegments);
620 AssertRelease(SegArgs.cSegsAlloc == cSegments);
621
622 /*
623 * Upload the image.
624 */
625 pLoadReq->Hdr.u32Cookie = g_u32Cookie;
626 pLoadReq->Hdr.u32SessionCookie = g_u32SessionCookie;
627 pLoadReq->Hdr.cbIn = SUP_IOCTL_LDR_LOAD_SIZE_IN(cbImageWithEverything);
628 pLoadReq->Hdr.cbOut = SUP_IOCTL_LDR_LOAD_SIZE_OUT;
629 pLoadReq->Hdr.fFlags = SUPREQHDR_FLAGS_MAGIC | SUPREQHDR_FLAGS_EXTRA_IN;
630 pLoadReq->Hdr.rc = VERR_INTERNAL_ERROR;
631
632 pLoadReq->u.In.pfnModuleInit = (RTR0PTR)ModuleInit;
633 pLoadReq->u.In.pfnModuleTerm = (RTR0PTR)ModuleTerm;
634 if (fIsVMMR0)
635 {
636 pLoadReq->u.In.eEPType = SUPLDRLOADEP_VMMR0;
637 pLoadReq->u.In.EP.VMMR0.pvVMMR0 = uImageBase;
638 pLoadReq->u.In.EP.VMMR0.pvVMMR0EntryFast= (RTR0PTR)VMMR0EntryFast;
639 pLoadReq->u.In.EP.VMMR0.pvVMMR0EntryEx = (RTR0PTR)VMMR0EntryEx;
640 }
641 else if (pszSrvReqHandler)
642 {
643 pLoadReq->u.In.eEPType = SUPLDRLOADEP_SERVICE;
644 pLoadReq->u.In.EP.Service.pfnServiceReq = (RTR0PTR)SrvReqHandler;
645 pLoadReq->u.In.EP.Service.apvReserved[0] = NIL_RTR0PTR;
646 pLoadReq->u.In.EP.Service.apvReserved[1] = NIL_RTR0PTR;
647 pLoadReq->u.In.EP.Service.apvReserved[2] = NIL_RTR0PTR;
648 }
649 else
650 pLoadReq->u.In.eEPType = SUPLDRLOADEP_NOTHING;
651 pLoadReq->u.In.offStrTab = offStrTab;
652 pLoadReq->u.In.cbStrTab = (uint32_t)cbStrTab;
653 AssertRelease(pLoadReq->u.In.cbStrTab == cbStrTab);
654 pLoadReq->u.In.cbImageBits = (uint32_t)cbImage;
655 pLoadReq->u.In.offSymbols = offSymTab;
656 pLoadReq->u.In.cSymbols = cSymbols;
657 pLoadReq->u.In.offSegments = offSegTab;
658 pLoadReq->u.In.cSegments = cSegments;
659 pLoadReq->u.In.cbImageWithEverything = cbImageWithEverything;
660 pLoadReq->u.In.pvImageBase = uImageBase;
661 if (!g_uSupFakeMode)
662 {
663 rc = suplibOsIOCtl(&g_supLibData, SUP_IOCTL_LDR_LOAD, pLoadReq, SUP_IOCTL_LDR_LOAD_SIZE(cbImageWithEverything));
664 if (RT_SUCCESS(rc))
665 rc = pLoadReq->Hdr.rc;
666 else
667 LogRel(("SUP: SUP_IOCTL_LDR_LOAD ioctl for %s (%s) failed rc=%Rrc\n", pszModule, pszFilename, rc));
668 }
669 else
670 rc = VINF_SUCCESS;
671 if ( RT_SUCCESS(rc)
672 || rc == VERR_ALREADY_LOADED /* A competing process. */
673 )
674 {
675 LogRel(("SUP: Loaded %s (%s) at %#RKv - ModuleInit at %RKv and ModuleTerm at %RKv%s\n",
676 pszModule, pszFilename, uImageBase, (RTR0PTR)ModuleInit, (RTR0PTR)ModuleTerm,
677 fNativeLoader ? " using the native ring-0 loader" : ""));
678 if (fIsVMMR0)
679 {
680 g_pvVMMR0 = uImageBase;
681 LogRel(("SUP: VMMR0EntryEx located at %RKv and VMMR0EntryFast at %RKv\n", (RTR0PTR)VMMR0EntryEx, (RTR0PTR)VMMR0EntryFast));
682 }
683#ifdef RT_OS_WINDOWS
684 LogRel(("SUP: windbg> .reload /f %s=%#RKv\n", pszFilename, uImageBase));
685#endif
686 return VINF_SUCCESS;
687 }
688
689 /*
690 * Failed, bail out.
691 */
692 LogRel(("SUP: Loading failed for %s (%s) rc=%Rrc\n", pszModule, pszFilename, rc));
693 if ( pLoadReq->u.Out.uErrorMagic == SUPLDRLOAD_ERROR_MAGIC
694 && pLoadReq->u.Out.szError[0] != '\0')
695 {
696 LogRel(("SUP: %s\n", pLoadReq->u.Out.szError));
697 return RTErrInfoSet(pErrInfo, rc, pLoadReq->u.Out.szError);
698 }
699 return RTErrInfoSet(pErrInfo, rc, "SUP_IOCTL_LDR_LOAD failed");
700}
701
702
703/**
704 * Worker for SUPR3LoadModule().
705 *
706 * @returns VBox status code.
707 * @param pszFilename Name of the VMMR0 image file
708 * @param pszModule The modulen name.
709 * @param pszSrvReqHandler The service request handler symbol name,
710 * optional.
711 * @param pErrInfo Where to store detailed error info. Optional.
712 * @param ppvImageBase Where to return the load address.
713 */
714static int supLoadModule(const char *pszFilename, const char *pszModule, const char *pszSrvReqHandler,
715 PRTERRINFO pErrInfo, void **ppvImageBase)
716{
717 int rc;
718
719 /*
720 * Validate input.
721 */
722 AssertPtrReturn(pszFilename, VERR_INVALID_PARAMETER);
723 AssertPtrReturn(pszModule, VERR_INVALID_PARAMETER);
724 AssertPtrReturn(ppvImageBase, VERR_INVALID_PARAMETER);
725 /** @todo abspath it right into SUPLDROPEN */
726 AssertReturn(strlen(pszModule) < RT_SIZEOFMEMB(SUPLDROPEN, u.In.szName), VERR_FILENAME_TOO_LONG);
727 char szAbsFilename[RT_SIZEOFMEMB(SUPLDROPEN, u.In.szFilename)];
728 rc = RTPathAbs(pszFilename, szAbsFilename, sizeof(szAbsFilename));
729 if (RT_FAILURE(rc))
730 return rc;
731 pszFilename = szAbsFilename;
732
733 const bool fIsVMMR0 = !strcmp(pszModule, "VMMR0.r0");
734 AssertReturn(!pszSrvReqHandler || !fIsVMMR0, VERR_INTERNAL_ERROR);
735 *ppvImageBase = NULL;
736
737 /*
738 * Open image file and figure its size.
739 */
740 RTLDRMOD hLdrMod;
741 rc = RTLdrOpenEx(pszFilename, 0 /*fFlags*/, RTLDRARCH_HOST, &hLdrMod, pErrInfo);
742 if (RT_FAILURE(rc))
743 {
744 LogRel(("SUP: RTLdrOpen failed for %s (%s) %Rrc\n", pszModule, pszFilename, rc));
745 return rc;
746 }
747
748 SUPLDRCALCSIZEARGS CalcArgs;
749 CalcArgs.cbStrings = 0;
750 CalcArgs.cSymbols = 0;
751 CalcArgs.cbImage = RTLdrSize(hLdrMod);
752 rc = RTLdrEnumSymbols(hLdrMod, 0, NULL, 0, supLoadModuleCalcSizeCB, &CalcArgs);
753 if (RT_SUCCESS(rc))
754 {
755 /*
756 * Figure out the number of segments needed first.
757 */
758 SUPLDRCOMPSEGTABARGS SegArgs;
759 SegArgs.uStartRva = 0;
760 SegArgs.uEndRva = 0;
761 SegArgs.fProt = RTMEM_PROT_READ;
762 SegArgs.iSegs = 0;
763 SegArgs.cSegsAlloc = 0;
764 SegArgs.paSegs = NULL;
765 SegArgs.pErrInfo = pErrInfo;
766 rc = RTLdrEnumSegments(hLdrMod, supLoadModuleCompileSegmentsCB, &SegArgs);
767 if (RT_SUCCESS(rc))
768 {
769 Assert(SegArgs.uEndRva <= RTLdrSize(hLdrMod));
770 SegArgs.uEndRva = (uint32_t)CalcArgs.cbImage; /* overflow is checked later */
771 if (SegArgs.uEndRva > SegArgs.uStartRva)
772 {
773 Log2(("supLoadModule: SUP Seg #%u: %#x LB %#x prot %#x\n",
774 SegArgs.iSegs, SegArgs.uStartRva, SegArgs.uEndRva - SegArgs.uStartRva, SegArgs.fProt));
775 SegArgs.iSegs++;
776 }
777
778 const uint32_t offSymTab = RT_ALIGN_32(CalcArgs.cbImage, 8);
779 const uint32_t offStrTab = offSymTab + CalcArgs.cSymbols * sizeof(SUPLDRSYM);
780 const uint32_t offSegTab = RT_ALIGN_32(offStrTab + CalcArgs.cbStrings, 8);
781 const uint32_t cbImageWithEverything = RT_ALIGN_32(offSegTab + sizeof(SUPLDRSEG) * SegArgs.iSegs, 8);
782
783 /*
784 * Open the R0 image.
785 */
786 SUPLDROPEN OpenReq;
787 OpenReq.Hdr.u32Cookie = g_u32Cookie;
788 OpenReq.Hdr.u32SessionCookie = g_u32SessionCookie;
789 OpenReq.Hdr.cbIn = SUP_IOCTL_LDR_OPEN_SIZE_IN;
790 OpenReq.Hdr.cbOut = SUP_IOCTL_LDR_OPEN_SIZE_OUT;
791 OpenReq.Hdr.fFlags = SUPREQHDR_FLAGS_DEFAULT;
792 OpenReq.Hdr.rc = VERR_INTERNAL_ERROR;
793 OpenReq.u.In.cbImageWithEverything = cbImageWithEverything;
794 OpenReq.u.In.cbImageBits = (uint32_t)CalcArgs.cbImage;
795 strcpy(OpenReq.u.In.szName, pszModule);
796 strcpy(OpenReq.u.In.szFilename, pszFilename);
797 if (!g_uSupFakeMode)
798 {
799 rc = suplibOsIOCtl(&g_supLibData, SUP_IOCTL_LDR_OPEN, &OpenReq, SUP_IOCTL_LDR_OPEN_SIZE);
800 if (RT_SUCCESS(rc))
801 rc = OpenReq.Hdr.rc;
802 }
803 else
804 {
805 OpenReq.u.Out.fNeedsLoading = true;
806 OpenReq.u.Out.pvImageBase = 0xef423420;
807 }
808 *ppvImageBase = (void *)OpenReq.u.Out.pvImageBase;
809 if ( RT_SUCCESS(rc)
810 && OpenReq.u.Out.fNeedsLoading)
811 {
812 /*
813 * We need to load it.
814 *
815 * Allocate the request and pass it to an inner work function
816 * that populates it and sends it off to the driver.
817 */
818 const uint32_t cbLoadReq = SUP_IOCTL_LDR_LOAD_SIZE(cbImageWithEverything);
819 PSUPLDRLOAD pLoadReq = (PSUPLDRLOAD)RTMemTmpAlloc(cbLoadReq);
820 if (pLoadReq)
821 {
822 rc = supLoadModuleInner(hLdrMod, pLoadReq, cbImageWithEverything, OpenReq.u.Out.pvImageBase, CalcArgs.cbImage,
823 pszModule, pszFilename, OpenReq.u.Out.fNativeLoader, fIsVMMR0, pszSrvReqHandler,
824 offSymTab, CalcArgs.cSymbols,
825 offStrTab, CalcArgs.cbStrings,
826 offSegTab, SegArgs.iSegs,
827 pErrInfo);
828 RTMemTmpFree(pLoadReq);
829 }
830 else
831 {
832 AssertMsgFailed(("failed to allocated %u bytes for SUPLDRLOAD_IN structure!\n", SUP_IOCTL_LDR_LOAD_SIZE(cbImageWithEverything)));
833 rc = RTErrInfoSetF(pErrInfo, VERR_NO_TMP_MEMORY, "Failed to allocate %u bytes for the load request",
834 SUP_IOCTL_LDR_LOAD_SIZE(cbImageWithEverything));
835 }
836 }
837 /*
838 * Already loaded?
839 */
840 else if (RT_SUCCESS(rc))
841 {
842 if (fIsVMMR0)
843 g_pvVMMR0 = OpenReq.u.Out.pvImageBase;
844 LogRel(("SUP: Opened %s (%s) at %#RKv%s.\n", pszModule, pszFilename, OpenReq.u.Out.pvImageBase,
845 OpenReq.u.Out.fNativeLoader ? " loaded by the native ring-0 loader" : ""));
846#ifdef RT_OS_WINDOWS
847 LogRel(("SUP: windbg> .reload /f %s=%#RKv\n", pszFilename, OpenReq.u.Out.pvImageBase));
848#endif
849 }
850 /*
851 * No, failed.
852 */
853 else
854 RTErrInfoSet(pErrInfo, rc, "SUP_IOCTL_LDR_OPEN failed");
855 }
856 else if (!RTErrInfoIsSet(pErrInfo) && pErrInfo)
857 RTErrInfoSetF(pErrInfo, rc, "RTLdrEnumSegments #1 failed");
858 }
859 else
860 RTErrInfoSetF(pErrInfo, rc, "RTLdrEnumSymbols #1 failed");
861 RTLdrClose(hLdrMod);
862 return rc;
863}
864
865
866SUPR3DECL(int) SUPR3FreeModule(void *pvImageBase)
867{
868 /* fake */
869 if (RT_UNLIKELY(g_uSupFakeMode))
870 {
871 g_pvVMMR0 = NIL_RTR0PTR;
872 return VINF_SUCCESS;
873 }
874
875 /*
876 * Free the requested module.
877 */
878 SUPLDRFREE Req;
879 Req.Hdr.u32Cookie = g_u32Cookie;
880 Req.Hdr.u32SessionCookie = g_u32SessionCookie;
881 Req.Hdr.cbIn = SUP_IOCTL_LDR_FREE_SIZE_IN;
882 Req.Hdr.cbOut = SUP_IOCTL_LDR_FREE_SIZE_OUT;
883 Req.Hdr.fFlags = SUPREQHDR_FLAGS_DEFAULT;
884 Req.Hdr.rc = VERR_INTERNAL_ERROR;
885 Req.u.In.pvImageBase = (RTR0PTR)pvImageBase;
886 int rc = suplibOsIOCtl(&g_supLibData, SUP_IOCTL_LDR_FREE, &Req, SUP_IOCTL_LDR_FREE_SIZE);
887 if (RT_SUCCESS(rc))
888 rc = Req.Hdr.rc;
889 if ( RT_SUCCESS(rc)
890 && (RTR0PTR)pvImageBase == g_pvVMMR0)
891 g_pvVMMR0 = NIL_RTR0PTR;
892 return rc;
893}
894
895
896SUPR3DECL(int) SUPR3GetSymbolR0(void *pvImageBase, const char *pszSymbol, void **ppvValue)
897{
898 *ppvValue = NULL;
899
900 /* fake */
901 if (RT_UNLIKELY(g_uSupFakeMode))
902 {
903 *ppvValue = (void *)(uintptr_t)0xdeadf00d;
904 return VINF_SUCCESS;
905 }
906
907 /*
908 * Do ioctl.
909 */
910 SUPLDRGETSYMBOL Req;
911 Req.Hdr.u32Cookie = g_u32Cookie;
912 Req.Hdr.u32SessionCookie = g_u32SessionCookie;
913 Req.Hdr.cbIn = SUP_IOCTL_LDR_GET_SYMBOL_SIZE_IN;
914 Req.Hdr.cbOut = SUP_IOCTL_LDR_GET_SYMBOL_SIZE_OUT;
915 Req.Hdr.fFlags = SUPREQHDR_FLAGS_DEFAULT;
916 Req.Hdr.rc = VERR_INTERNAL_ERROR;
917 Req.u.In.pvImageBase = (RTR0PTR)pvImageBase;
918 size_t cchSymbol = strlen(pszSymbol);
919 if (cchSymbol >= sizeof(Req.u.In.szSymbol))
920 return VERR_SYMBOL_NOT_FOUND;
921 memcpy(Req.u.In.szSymbol, pszSymbol, cchSymbol + 1);
922 int rc = suplibOsIOCtl(&g_supLibData, SUP_IOCTL_LDR_GET_SYMBOL, &Req, SUP_IOCTL_LDR_GET_SYMBOL_SIZE);
923 if (RT_SUCCESS(rc))
924 rc = Req.Hdr.rc;
925 if (RT_SUCCESS(rc))
926 *ppvValue = (void *)Req.u.Out.pvSymbol;
927 return rc;
928}
929
930
931SUPR3DECL(int) SUPR3LoadVMM(const char *pszFilename, PRTERRINFO pErrInfo)
932{
933 void *pvImageBase;
934 return SUPR3LoadModule(pszFilename, "VMMR0.r0", &pvImageBase, pErrInfo);
935}
936
937
938SUPR3DECL(int) SUPR3UnloadVMM(void)
939{
940 return SUPR3FreeModule((void*)g_pvVMMR0);
941}
942
943
944/**
945 * Worker for SUPR3HardenedLdrLoad and SUPR3HardenedLdrLoadAppPriv.
946 *
947 * @returns iprt status code.
948 * @param pszFilename The full file name.
949 * @param phLdrMod Where to store the handle to the loaded module.
950 * @param fFlags See RTLDFLAGS_.
951 * @param pErrInfo Where to return extended error information.
952 * Optional.
953 *
954 */
955static int supR3HardenedLdrLoadIt(const char *pszFilename, PRTLDRMOD phLdrMod, uint32_t fFlags, PRTERRINFO pErrInfo)
956{
957#ifdef VBOX_WITH_HARDENING
958 /*
959 * Verify the image file.
960 */
961 int rc = SUPR3HardenedVerifyInit();
962 if (RT_FAILURE(rc))
963 rc = supR3HardenedVerifyFixedFile(pszFilename, false /* fFatal */);
964 if (RT_FAILURE(rc))
965 {
966 LogRel(("supR3HardenedLdrLoadIt: Verification of \"%s\" failed, rc=%Rrc\n", pszFilename, rc));
967 return RTErrInfoSet(pErrInfo, rc, "supR3HardenedVerifyFixedFile failed");
968 }
969#endif
970
971 /*
972 * Try load it.
973 */
974 return RTLdrLoadEx(pszFilename, phLdrMod, fFlags, pErrInfo);
975}
976
977
978SUPR3DECL(int) SUPR3HardenedLdrLoad(const char *pszFilename, PRTLDRMOD phLdrMod, uint32_t fFlags, PRTERRINFO pErrInfo)
979{
980 /*
981 * Validate input.
982 */
983 RTErrInfoClear(pErrInfo);
984 AssertPtrReturn(pszFilename, VERR_INVALID_POINTER);
985 AssertPtrReturn(phLdrMod, VERR_INVALID_POINTER);
986 *phLdrMod = NIL_RTLDRMOD;
987 AssertReturn(RTPathHavePath(pszFilename), VERR_INVALID_PARAMETER);
988
989 /*
990 * Add the default extension if it's missing.
991 */
992 if (!RTPathHasSuffix(pszFilename))
993 {
994 const char *pszSuff = RTLdrGetSuff();
995 size_t cchSuff = strlen(pszSuff);
996 size_t cchFilename = strlen(pszFilename);
997 char *psz = (char *)alloca(cchFilename + cchSuff + 1);
998 AssertReturn(psz, VERR_NO_TMP_MEMORY);
999 memcpy(psz, pszFilename, cchFilename);
1000 memcpy(psz + cchFilename, pszSuff, cchSuff + 1);
1001 pszFilename = psz;
1002 }
1003
1004 /*
1005 * Pass it on to the common library loader.
1006 */
1007 return supR3HardenedLdrLoadIt(pszFilename, phLdrMod, fFlags, pErrInfo);
1008}
1009
1010
1011SUPR3DECL(int) SUPR3HardenedLdrLoadAppPriv(const char *pszFilename, PRTLDRMOD phLdrMod, uint32_t fFlags, PRTERRINFO pErrInfo)
1012{
1013 LogFlow(("SUPR3HardenedLdrLoadAppPriv: pszFilename=%p:{%s} phLdrMod=%p fFlags=%08x pErrInfo=%p\n", pszFilename, pszFilename, phLdrMod, fFlags, pErrInfo));
1014
1015 /*
1016 * Validate input.
1017 */
1018 RTErrInfoClear(pErrInfo);
1019 AssertPtrReturn(phLdrMod, VERR_INVALID_PARAMETER);
1020 *phLdrMod = NIL_RTLDRMOD;
1021 AssertPtrReturn(pszFilename, VERR_INVALID_PARAMETER);
1022 AssertMsgReturn(!RTPathHavePath(pszFilename), ("%s\n", pszFilename), VERR_INVALID_PARAMETER);
1023
1024 /*
1025 * Check the filename.
1026 */
1027 size_t cchFilename = strlen(pszFilename);
1028 AssertMsgReturn(cchFilename < (RTPATH_MAX / 4) * 3, ("%zu\n", cchFilename), VERR_INVALID_PARAMETER);
1029
1030 const char *pszExt = "";
1031 size_t cchExt = 0;
1032 if (!RTPathHasSuffix(pszFilename))
1033 {
1034 pszExt = RTLdrGetSuff();
1035 cchExt = strlen(pszExt);
1036 }
1037
1038 /*
1039 * Construct the private arch path and check if the file exists.
1040 */
1041 char szPath[RTPATH_MAX];
1042 int rc = RTPathAppPrivateArch(szPath, sizeof(szPath) - 1 - cchExt - cchFilename);
1043 AssertRCReturn(rc, rc);
1044
1045 char *psz = strchr(szPath, '\0');
1046 *psz++ = RTPATH_SLASH;
1047 memcpy(psz, pszFilename, cchFilename);
1048 psz += cchFilename;
1049 memcpy(psz, pszExt, cchExt + 1);
1050
1051 if (!RTPathExists(szPath))
1052 {
1053 LogRel(("SUPR3HardenedLdrLoadAppPriv: \"%s\" not found\n", szPath));
1054 return VERR_FILE_NOT_FOUND;
1055 }
1056
1057 /*
1058 * Pass it on to SUPR3HardenedLdrLoad.
1059 */
1060 rc = SUPR3HardenedLdrLoad(szPath, phLdrMod, fFlags, pErrInfo);
1061
1062 LogFlow(("SUPR3HardenedLdrLoadAppPriv: returns %Rrc\n", rc));
1063 return rc;
1064}
1065
1066
1067SUPR3DECL(int) SUPR3HardenedLdrLoadPlugIn(const char *pszFilename, PRTLDRMOD phLdrMod, PRTERRINFO pErrInfo)
1068{
1069 /*
1070 * Validate input.
1071 */
1072 RTErrInfoClear(pErrInfo);
1073 AssertPtrReturn(phLdrMod, VERR_INVALID_PARAMETER);
1074 *phLdrMod = NIL_RTLDRMOD;
1075 AssertPtrReturn(pszFilename, VERR_INVALID_PARAMETER);
1076 AssertReturn(RTPathStartsWithRoot(pszFilename), VERR_INVALID_PARAMETER);
1077
1078#ifdef VBOX_WITH_HARDENING
1079 /*
1080 * Verify the image file.
1081 */
1082 int rc = supR3HardenedVerifyFile(pszFilename, RTHCUINTPTR_MAX, true /*fMaybe3rdParty*/, pErrInfo);
1083 if (RT_FAILURE(rc))
1084 {
1085 if (!RTErrInfoIsSet(pErrInfo))
1086 LogRel(("supR3HardenedVerifyFile: Verification of \"%s\" failed, rc=%Rrc\n", pszFilename, rc));
1087 return rc;
1088 }
1089#endif
1090
1091 /*
1092 * Try load it.
1093 */
1094 return RTLdrLoadEx(pszFilename, phLdrMod, RTLDRLOAD_FLAGS_LOCAL, pErrInfo);
1095}
1096
Note: See TracBrowser for help on using the repository browser.

© 2024 Oracle Support Privacy / Do Not Sell My Info Terms of Use Trademark Policy Automated Access Etiquette