asan_mac.cc revision f7ceaad2919d2e26e9edea29232bc9dd8f145c42
11e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//===-- asan_mac.cc -------------------------------------------------------===// 21e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// 31e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// The LLVM Compiler Infrastructure 41e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// 51e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// This file is distributed under the University of Illinois Open Source 61e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// License. See LICENSE.TXT for details. 71e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// 81e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//===----------------------------------------------------------------------===// 91e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// 101e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// This file is a part of AddressSanitizer, an address sanity checker. 111e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// 121e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// Mac-specific details. 131e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//===----------------------------------------------------------------------===// 141e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 15d6567c5166412f6acdde851e767c26f332d51d3dKostya Serebryany#ifdef __APPLE__ 161e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 1764ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov#include "asan_interceptors.h" 181e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include "asan_internal.h" 19895b3872acb5bcccb1769ea69d37dd33c722f99dAlexander Potapenko#include "asan_mapping.h" 208a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko#include "asan_procmaps.h" 211e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include "asan_stack.h" 221e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include "asan_thread.h" 231e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include "asan_thread_registry.h" 241e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 251e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko#include <crt_externs.h> // for _NSGetEnviron 268a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko#include <mach-o/dyld.h> 279b993e8cd0f8964782ee93524603d0c53adc2249Kostya Serebryany#include <mach-o/loader.h> 281e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include <sys/mman.h> 29ef14ff6512d7b2e20aa3206dff820b5f90285420Kostya Serebryany#include <sys/resource.h> 3059dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko#include <sys/sysctl.h> 319107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany#include <sys/ucontext.h> 32c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany#include <pthread.h> 33a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany#include <fcntl.h> 341e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include <unistd.h> 35d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany#include <libkern/OSAtomic.h> 3664ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov#include <CoreFoundation/CFString.h> 371e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 381e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanynamespace __asan { 391e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 409107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryanyvoid GetPcSpBp(void *context, uintptr_t *pc, uintptr_t *sp, uintptr_t *bp) { 419107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany ucontext_t *ucontext = (ucontext_t*)context; 429107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany# if __WORDSIZE == 64 439107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany *pc = ucontext->uc_mcontext->__ss.__rip; 449107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany *bp = ucontext->uc_mcontext->__ss.__rbp; 459107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany *sp = ucontext->uc_mcontext->__ss.__rsp; 469107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany# else 479107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany *pc = ucontext->uc_mcontext->__ss.__eip; 489107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany *bp = ucontext->uc_mcontext->__ss.__ebp; 499107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany *sp = ucontext->uc_mcontext->__ss.__esp; 509107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany# endif // __WORDSIZE 519107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany} 529107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany 5338dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonovenum { 5438dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov MACOS_VERSION_UNKNOWN = 0, 5538dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov MACOS_VERSION_LEOPARD, 5638dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov MACOS_VERSION_SNOW_LEOPARD, 5738dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov MACOS_VERSION_LION, 5838dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov}; 5938dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov 6038dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonovstatic int GetMacosVersion() { 6159dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko int mib[2] = { CTL_KERN, KERN_OSRELEASE }; 6259dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko char version[100]; 6359dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko size_t len = 0, maxlen = sizeof(version) / sizeof(version[0]); 6459dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko for (int i = 0; i < maxlen; i++) version[i] = '\0'; 6559dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko // Get the version length. 6659dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko CHECK(sysctl(mib, 2, NULL, &len, NULL, 0) != -1); 6759dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko CHECK(len < maxlen); 6859dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko CHECK(sysctl(mib, 2, version, &len, NULL, 0) != -1); 6959dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko switch (version[0]) { 7059dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko case '9': return MACOS_VERSION_LEOPARD; 7159dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko case '1': { 7259dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko switch (version[1]) { 7359dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko case '0': return MACOS_VERSION_SNOW_LEOPARD; 7459dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko case '1': return MACOS_VERSION_LION; 7559dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko default: return MACOS_VERSION_UNKNOWN; 7659dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko } 7759dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko } 7859dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko default: return MACOS_VERSION_UNKNOWN; 7959dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko } 8059dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko} 8159dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko 8238dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonovbool PlatformHasDifferentMemcpyAndMemmove() { 8338dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov // On OS X 10.7 memcpy() and memmove() are both resolved 8438dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov // into memmove$VARIANT$sse42. 8538dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov // See also http://code.google.com/p/address-sanitizer/issues/detail?id=34. 8638dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov // TODO(glider): need to check dynamically that memcpy() and memmove() are 8738dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov // actually the same function. 8838dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov return GetMacosVersion() == MACOS_VERSION_SNOW_LEOPARD; 8938dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov} 9038dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov 911e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// No-op. Mac does not support static linkage anyway. 921e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyvoid *AsanDoesNotSupportStaticLinkage() { 931e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany return NULL; 941e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 951e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 96afaf71f0b2c6455614e2ab8f208312dea0871fe9Alexey Samsonovstatic inline bool IntervalsAreSeparate(uintptr_t start1, uintptr_t end1, 97afaf71f0b2c6455614e2ab8f208312dea0871fe9Alexey Samsonov uintptr_t start2, uintptr_t end2) { 98f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko CHECK(start1 <= end1); 99f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko CHECK(start2 <= end2); 100afaf71f0b2c6455614e2ab8f208312dea0871fe9Alexey Samsonov return (end1 < start2) || (end2 < start1); 101f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko} 102f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko 103f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko// FIXME: this is thread-unsafe, but should not cause problems most of the time. 104f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko// When the shadow is mapped only a single thread usually exists (plus maybe 105f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko// several worker threads on Mac, which aren't expected to map big chunks of 106f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko// memory). 107f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenkobool AsanShadowRangeIsAvailable() { 108f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko AsanProcMaps procmaps; 109f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko uintptr_t start, end; 110f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko bool available = true; 111f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko while (procmaps.Next(&start, &end, 112650a1e163ef05b89f40143eb8b9af4f64ad0b68dKostya Serebryany /*offset*/NULL, /*filename*/NULL, /*filename_size*/0)) { 113f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko if (!IntervalsAreSeparate(start, end, 114f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko kLowShadowBeg - kMmapGranularity, 115f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko kHighShadowEnd)) { 116f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko available = false; 117f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko break; 118f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko } 119f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko } 120f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko return available; 121f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko} 122f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko 1234803ab90ead451b55a5833f0fd38b10fd1fc83ebKostya Serebryanybool AsanInterceptsSignal(int signum) { 1244803ab90ead451b55a5833f0fd38b10fd1fc83ebKostya Serebryany return (signum == SIGSEGV || signum == SIGBUS) && FLAG_handle_segv; 1254803ab90ead451b55a5833f0fd38b10fd1fc83ebKostya Serebryany} 1264803ab90ead451b55a5833f0fd38b10fd1fc83ebKostya Serebryany 127a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryanystatic void *asan_mmap(void *addr, size_t length, int prot, int flags, 1281e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany int fd, uint64_t offset) { 1291e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany return mmap(addr, length, prot, flags, fd, offset); 1301e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 1311e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 1320ecf5eb729dd81a43f8585cb438d3cb2a35899edKostya Serebryanysize_t AsanWrite(int fd, const void *buf, size_t count) { 1331e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany return write(fd, buf, count); 1341e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 1351e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 136de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryanyvoid *AsanMmapSomewhereOrDie(size_t size, const char *mem_type) { 137de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany size = RoundUpTo(size, kPageSize); 138de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany void *res = asan_mmap(0, size, 139de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany PROT_READ | PROT_WRITE, 140de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany MAP_PRIVATE | MAP_ANON, -1, 0); 141de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany if (res == (void*)-1) { 142de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany OutOfMemoryMessageAndDie(mem_type, size); 143de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany } 144de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany return res; 145de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany} 146de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany 147a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryanyvoid *AsanMmapFixedNoReserve(uintptr_t fixed_addr, size_t size) { 148a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany return asan_mmap((void*)fixed_addr, size, 149a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany PROT_READ | PROT_WRITE, 150a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany MAP_PRIVATE | MAP_ANON | MAP_FIXED | MAP_NORESERVE, 151a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany 0, 0); 152a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany} 153a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany 154a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryanyvoid *AsanMprotect(uintptr_t fixed_addr, size_t size) { 155a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany return asan_mmap((void*)fixed_addr, size, 156a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany PROT_NONE, 157a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany MAP_PRIVATE | MAP_ANON | MAP_FIXED | MAP_NORESERVE, 158a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany 0, 0); 159a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany} 160a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany 161de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryanyvoid AsanUnmapOrDie(void *addr, size_t size) { 162de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany if (!addr || !size) return; 163de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany int res = munmap(addr, size); 164de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany if (res != 0) { 165de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany Report("Failed to unmap\n"); 1660ecf5eb729dd81a43f8585cb438d3cb2a35899edKostya Serebryany AsanDie(); 167de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany } 168de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany} 169de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany 170de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryanyint AsanOpenReadonly(const char* filename) { 171de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany return open(filename, O_RDONLY); 172de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany} 173de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany 1741e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenkoconst char *AsanGetEnv(const char *name) { 1751e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko char ***env_ptr = _NSGetEnviron(); 1761e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko CHECK(env_ptr); 1771e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko char **environ = *env_ptr; 1781e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko CHECK(environ); 1791e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko size_t name_len = internal_strlen(name); 1801e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko while (*environ != NULL) { 1811e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko size_t len = internal_strlen(*environ); 1821e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko if (len > name_len) { 1831e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko const char *p = *environ; 1841e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko if (!internal_memcmp(p, name, name_len) && 1851e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko p[name_len] == '=') { // Match. 1864dd8ba8238b1b698953628affe6e5b2edf3b3e3fAlexey Samsonov return *environ + name_len + 1; // String starting after =. 1871e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko } 1881e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko } 1891e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko environ++; 1901e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko } 1911e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko return NULL; 1921e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko} 1931e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko 1940ecf5eb729dd81a43f8585cb438d3cb2a35899edKostya Serebryanysize_t AsanRead(int fd, void *buf, size_t count) { 195de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany return read(fd, buf, count); 196de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany} 197de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany 198de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryanyint AsanClose(int fd) { 199de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany return close(fd); 200de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany} 201de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany 2028a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander PotapenkoAsanProcMaps::AsanProcMaps() { 2038a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko Reset(); 2048a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko} 2058a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko 2068a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander PotapenkoAsanProcMaps::~AsanProcMaps() { 2078a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko} 2088a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko 2093feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// More information about Mach-O headers can be found in mach-o/loader.h 2103feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// Each Mach-O image has a header (mach_header or mach_header_64) starting with 2113feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// a magic number, and a list of linker load commands directly following the 2123feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// header. 2133feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// A load command is at least two 32-bit words: the command type and the 2143feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// command size in bytes. We're interested only in segment load commands 2153feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// (LC_SEGMENT and LC_SEGMENT_64), which tell that a part of the file is mapped 2163feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// into the task's address space. 2173feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// The |vmaddr|, |vmsize| and |fileoff| fields of segment_command or 2183feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// segment_command_64 correspond to the memory address, memory size and the 2193feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// file offset of the current memory segment. 2203feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// Because these fields are taken from the images as is, one needs to add 2213feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// _dyld_get_image_vmaddr_slide() to get the actual addresses at runtime. 2223feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko 2238a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenkovoid AsanProcMaps::Reset() { 2248a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko // Count down from the top. 2258a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko // TODO(glider): as per man 3 dyld, iterating over the headers with 2263feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko // _dyld_image_count is thread-unsafe. We need to register callbacks for 2273feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko // adding and removing images which will invalidate the AsanProcMaps state. 2288a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko current_image_ = _dyld_image_count(); 2293feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko current_load_cmd_count_ = -1; 2303feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko current_load_cmd_addr_ = NULL; 231ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko current_magic_ = 0; 2323feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko} 2333feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko 2343feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// Next and NextSegmentLoad were inspired by base/sysinfo.cc in 2353feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// Google Perftools, http://code.google.com/p/google-perftools. 2363feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko 2373feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// NextSegmentLoad scans the current image for the next segment load command 2383feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// and returns the start and end addresses and file offset of the corresponding 2393feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// segment. 2403feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// Note that the segment addresses are not necessarily sorted. 2413feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenkotemplate<uint32_t kLCSegment, typename SegmentCommand> 2423feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenkobool AsanProcMaps::NextSegmentLoad( 2433feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko uintptr_t *start, uintptr_t *end, uintptr_t *offset, 2443feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko char filename[], size_t filename_size) { 2453feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko const char* lc = current_load_cmd_addr_; 2463feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko current_load_cmd_addr_ += ((const load_command *)lc)->cmdsize; 2478a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko if (((const load_command *)lc)->cmd == kLCSegment) { 2483feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko const intptr_t dlloff = _dyld_get_image_vmaddr_slide(current_image_); 2498a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko const SegmentCommand* sc = (const SegmentCommand *)lc; 2508a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko if (start) *start = sc->vmaddr + dlloff; 2518a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko if (end) *end = sc->vmaddr + sc->vmsize + dlloff; 2528a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko if (offset) *offset = sc->fileoff; 2538a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko if (filename) { 25409672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov REAL(strncpy)(filename, _dyld_get_image_name(current_image_), 25509672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov filename_size); 2568a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko } 257ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko if (FLAG_v >= 4) 258ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko Report("LC_SEGMENT: %p--%p %s+%p\n", *start, *end, filename, *offset); 2598a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko return true; 2608a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko } 2618a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko return false; 2628a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko} 2638a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko 2648a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenkobool AsanProcMaps::Next(uintptr_t *start, uintptr_t *end, 2658a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko uintptr_t *offset, char filename[], 2668a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko size_t filename_size) { 2678a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko for (; current_image_ >= 0; current_image_--) { 2688a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko const mach_header* hdr = _dyld_get_image_header(current_image_); 2698a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko if (!hdr) continue; 2703feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko if (current_load_cmd_count_ < 0) { 2713feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko // Set up for this image; 2723feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko current_load_cmd_count_ = hdr->ncmds; 273ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko current_magic_ = hdr->magic; 274ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko switch (current_magic_) { 2753feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko#ifdef MH_MAGIC_64 2763feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko case MH_MAGIC_64: { 2773feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko current_load_cmd_addr_ = (char*)hdr + sizeof(mach_header_64); 2783feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko break; 2793feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko } 2803feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko#endif 2813feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko case MH_MAGIC: { 2823feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko current_load_cmd_addr_ = (char*)hdr + sizeof(mach_header); 2833feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko break; 2843feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko } 2853feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko default: { 2863feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko continue; 2873feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko } 2883feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko } 2893feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko } 2908a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko 291ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko for (; current_load_cmd_count_ >= 0; current_load_cmd_count_--) { 292ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko switch (current_magic_) { 293ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko // current_magic_ may be only one of MH_MAGIC, MH_MAGIC_64. 2948a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko#ifdef MH_MAGIC_64 295ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko case MH_MAGIC_64: { 296ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko if (NextSegmentLoad<LC_SEGMENT_64, struct segment_command_64>( 297ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko start, end, offset, filename, filename_size)) 298ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko return true; 299ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko break; 300ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko } 3018a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko#endif 302ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko case MH_MAGIC: { 303ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko if (NextSegmentLoad<LC_SEGMENT, struct segment_command>( 304ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko start, end, offset, filename, filename_size)) 305ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko return true; 306ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko break; 307ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko } 308ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko } 3098a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko } 3108a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko // If we get here, no more load_cmd's in this image talk about 3118a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko // segments. Go on to the next image. 3128a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko } 3138a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko return false; 3148a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko} 3158a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko 3168a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenkobool AsanProcMaps::GetObjectNameAndOffset(uintptr_t addr, uintptr_t *offset, 3178a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko char filename[], 3188a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko size_t filename_size) { 3198a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko return IterateForObjectNameAndOffset(addr, offset, filename, filename_size); 3208a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko} 3218a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko 322c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryanyvoid AsanThread::SetThreadStackTopAndBottom() { 323c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany size_t stacksize = pthread_get_stacksize_np(pthread_self()); 324c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany void *stackaddr = pthread_get_stackaddr_np(pthread_self()); 325c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany stack_top_ = (uintptr_t)stackaddr; 326c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany stack_bottom_ = stack_top_ - stacksize; 327c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany int local; 328c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany CHECK(AddrIsInStack((uintptr_t)&local)); 329c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany} 330c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany 331d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya SerebryanyAsanLock::AsanLock(LinkerInitialized) { 332d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany // We assume that OS_SPINLOCK_INIT is zero 333d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany} 334d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany 335d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryanyvoid AsanLock::Lock() { 336d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany CHECK(sizeof(OSSpinLock) <= sizeof(opaque_storage_)); 337d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany CHECK(OS_SPINLOCK_INIT == 0); 338d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany CHECK(owner_ != (uintptr_t)pthread_self()); 339d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany OSSpinLockLock((OSSpinLock*)&opaque_storage_); 340d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany CHECK(!owner_); 341d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany owner_ = (uintptr_t)pthread_self(); 342d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany} 343d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany 344d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryanyvoid AsanLock::Unlock() { 345d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany CHECK(owner_ == (uintptr_t)pthread_self()); 346d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany owner_ = 0; 347d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany OSSpinLockUnlock((OSSpinLock*)&opaque_storage_); 348d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany} 349d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany 3509cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanovvoid AsanStackTrace::GetStackTrace(size_t max_s, uintptr_t pc, uintptr_t bp) { 3519cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov size = 0; 3529cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov trace[0] = pc; 3539cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov if ((max_s) > 1) { 3549cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov max_size = max_s; 3559cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov FastUnwindStack(pc, bp); 3569cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov } 3579cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov} 3589cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov 3595b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov// The range of pages to be used for escape islands. 3603281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko// TODO(glider): instead of mapping a fixed range we must find a range of 3613281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko// unmapped pages in vmmap and take them. 3621346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko// These constants were chosen empirically and may not work if the shadow 3631346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko// memory layout changes. Unfortunately they do necessarily depend on 3641346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko// kHighMemBeg or kHighMemEnd. 3655b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonovstatic void *island_allocator_pos = NULL; 3665b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov 3671346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko#if __WORDSIZE == 32 3685b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov# define kIslandEnd (0xffdf0000 - kPageSize) 3695b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov# define kIslandBeg (kIslandEnd - 256 * kPageSize) 3701346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko#else 3715b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov# define kIslandEnd (0x7fffffdf0000 - kPageSize) 3725b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov# define kIslandBeg (kIslandEnd - 256 * kPageSize) 3731346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko#endif 3743281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko 3753281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenkoextern "C" 3765b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonovmach_error_t __interception_allocate_island(void **ptr, 3775b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov size_t unused_size, 3785b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov void *unused_hint) { 3793281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko if (!island_allocator_pos) { 3801346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko island_allocator_pos = 3811346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko asan_mmap((void*)kIslandBeg, kIslandEnd - kIslandBeg, 3821346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko PROT_READ | PROT_WRITE | PROT_EXEC, 3831346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko MAP_PRIVATE | MAP_ANON | MAP_FIXED, 3841346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko -1, 0); 3851346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko if (island_allocator_pos != (void*)kIslandBeg) { 3863281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko return KERN_NO_SPACE; 3873281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko } 388ebb9702cff96192c6a6ea963037929ca7ed60eaeAlexander Potapenko if (FLAG_v) { 389ebb9702cff96192c6a6ea963037929ca7ed60eaeAlexander Potapenko Report("Mapped pages %p--%p for branch islands.\n", 390ebb9702cff96192c6a6ea963037929ca7ed60eaeAlexander Potapenko kIslandBeg, kIslandEnd); 391ebb9702cff96192c6a6ea963037929ca7ed60eaeAlexander Potapenko } 392ebb9702cff96192c6a6ea963037929ca7ed60eaeAlexander Potapenko // Should not be very performance-critical. 393ebb9702cff96192c6a6ea963037929ca7ed60eaeAlexander Potapenko internal_memset(island_allocator_pos, 0xCC, kIslandEnd - kIslandBeg); 3943281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko }; 3953281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko *ptr = island_allocator_pos; 3963281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko island_allocator_pos = (char*)island_allocator_pos + kPageSize; 397ebb9702cff96192c6a6ea963037929ca7ed60eaeAlexander Potapenko if (FLAG_v) { 398ebb9702cff96192c6a6ea963037929ca7ed60eaeAlexander Potapenko Report("Branch island allocated at %p\n", *ptr); 399ebb9702cff96192c6a6ea963037929ca7ed60eaeAlexander Potapenko } 4003281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko return err_none; 4013281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko} 4023281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko 4033281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenkoextern "C" 4045b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonovmach_error_t __interception_deallocate_island(void *ptr) { 4053281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko // Do nothing. 4063281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko // TODO(glider): allow to free and reuse the island memory. 4073281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko return err_none; 4083281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko} 409d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany 4101e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// Support for the following functions from libdispatch on Mac OS: 4111e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_async_f() 4121e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_async() 4131e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_sync_f() 4141e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_sync() 4151e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_after_f() 4161e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_after() 4171e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_group_async_f() 4181e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_group_async() 4191e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// TODO(glider): libdispatch API contains other functions that we don't support 4201e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// yet. 4211e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// 4221e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_sync() and dispatch_sync_f() are synchronous, although chances are 4231e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// they can cause jobs to run on a thread different from the current one. 4241e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// TODO(glider): if so, we need a test for this (otherwise we should remove 4251e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// them). 4261e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// 4271e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// The following functions use dispatch_barrier_async_f() (which isn't a library 4281e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// function but is exported) and are thus supported: 4291e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_source_set_cancel_handler_f() 4301e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_source_set_cancel_handler() 4311e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_source_set_event_handler_f() 4321e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_source_set_event_handler() 4331e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// 4341e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// The reference manual for Grand Central Dispatch is available at 4351e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// http://developer.apple.com/library/mac/#documentation/Performance/Reference/GCD_libdispatch_Ref/Reference/reference.html 4361e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// The implementation details are at 4371e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// http://libdispatch.macosforge.org/trac/browser/trunk/src/queue.c 4381e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 4395cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonovtypedef void* pthread_workqueue_t; 4405cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonovtypedef void* pthread_workitem_handle_t; 441f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonov 442f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonovtypedef void* dispatch_group_t; 443f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonovtypedef void* dispatch_queue_t; 444f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonovtypedef uint64_t dispatch_time_t; 445f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonovtypedef void (*dispatch_function_t)(void *block); 4465cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonovtypedef void* (*worker_t)(void *block); 4475cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov 4485cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov// A wrapper for the ObjC blocks used to support libdispatch. 4495cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonovtypedef struct { 4505cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov void *block; 4515cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov dispatch_function_t func; 4525cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov int parent_tid; 4535cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov} asan_block_context_t; 4545cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov 455f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonov// We use extern declarations of libdispatch functions here instead 456f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonov// of including <dispatch/dispatch.h>. This header is not present on 457f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonov// Mac OS X Leopard and eariler, and although we don't expect ASan to 458f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonov// work on legacy systems, it's bad to break the build of 459f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonov// LLVM compiler-rt there. 4605cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonovextern "C" { 461f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonovvoid dispatch_async_f(dispatch_queue_t dq, void *ctxt, 462f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonov dispatch_function_t func); 463f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonovvoid dispatch_sync_f(dispatch_queue_t dq, void *ctxt, 464f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonov dispatch_function_t func); 465f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonovvoid dispatch_after_f(dispatch_time_t when, dispatch_queue_t dq, void *ctxt, 466f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonov dispatch_function_t func); 4675cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonovvoid dispatch_barrier_async_f(dispatch_queue_t dq, void *ctxt, 4685cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov dispatch_function_t func); 469f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonovvoid dispatch_group_async_f(dispatch_group_t group, dispatch_queue_t dq, 470f7ceaad2919d2e26e9edea29232bc9dd8f145c42Alexey Samsonov void *ctxt, dispatch_function_t func); 4715cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonovint pthread_workqueue_additem_np(pthread_workqueue_t workq, 4725cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov void *(*workitem_func)(void *), void * workitem_arg, 4735cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov pthread_workitem_handle_t * itemhandlep, unsigned int *gencountp); 4745cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov} // extern "C" 4755cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov 4761e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyextern "C" 4771e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyvoid asan_dispatch_call_block_and_release(void *block) { 4789cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov GET_STACK_TRACE_HERE(kStackTraceMax); 4791e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_block_context_t *context = (asan_block_context_t*)block; 4801e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany if (FLAG_v >= 2) { 4811e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany Report("asan_dispatch_call_block_and_release(): " 4821e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany "context: %p, pthread_self: %p\n", 4831e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany block, pthread_self()); 4841e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany } 4851e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany AsanThread *t = asanThreadRegistry().GetCurrent(); 486af3441580555ceed092170232cd5f2cc180f19f4Kostya Serebryany if (!t) { 48755cdfc6c5af92560bc0623b5a0d70af71511c3c8Alexey Samsonov t = AsanThread::Create(context->parent_tid, NULL, NULL, &stack); 48855cdfc6c5af92560bc0623b5a0d70af71511c3c8Alexey Samsonov asanThreadRegistry().RegisterThread(t); 48969eca73ac96688c8bfe1f23ee006af29c7858c40Kostya Serebryany t->Init(); 4901e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asanThreadRegistry().SetCurrent(t); 4911e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany } 4921e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany // Call the original dispatcher for the block. 4931e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany context->func(context->block); 4941e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_free(context, &stack); 4951e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 4961e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 4971e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} // namespace __asan 4981e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 4991e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyusing namespace __asan; // NOLINT 5001e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 5011e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// Wrap |ctxt| and |func| into an asan_block_context_t. 5021e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// The caller retains control of the allocated context. 5031e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyextern "C" 5041e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyasan_block_context_t *alloc_asan_context(void *ctxt, dispatch_function_t func, 5051e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany AsanStackTrace *stack) { 5061e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_block_context_t *asan_ctxt = 5071e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany (asan_block_context_t*) asan_malloc(sizeof(asan_block_context_t), stack); 5081e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_ctxt->block = ctxt; 5091e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_ctxt->func = func; 5101e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_ctxt->parent_tid = asanThreadRegistry().GetCurrentTidOrMinusOne(); 5111e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany return asan_ctxt; 5121e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 5131e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 5141e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// TODO(glider): can we reduce code duplication by introducing a macro? 515f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(void, dispatch_async_f, dispatch_queue_t dq, void *ctxt, 516f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov dispatch_function_t func) { 5179cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov GET_STACK_TRACE_HERE(kStackTraceMax); 5181e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_block_context_t *asan_ctxt = alloc_asan_context(ctxt, func, &stack); 5191e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany if (FLAG_v >= 2) { 5201e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany Report("dispatch_async_f(): context: %p, pthread_self: %p\n", 5211e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_ctxt, pthread_self()); 5221e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany PRINT_CURRENT_STACK(); 5231e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany } 52409672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov return REAL(dispatch_async_f)(dq, (void*)asan_ctxt, 52509672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov asan_dispatch_call_block_and_release); 5261e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 5271e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 528f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(void, dispatch_sync_f, dispatch_queue_t dq, void *ctxt, 529f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov dispatch_function_t func) { 5309cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov GET_STACK_TRACE_HERE(kStackTraceMax); 5311e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_block_context_t *asan_ctxt = alloc_asan_context(ctxt, func, &stack); 5321e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany if (FLAG_v >= 2) { 5331e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany Report("dispatch_sync_f(): context: %p, pthread_self: %p\n", 5341e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_ctxt, pthread_self()); 5351e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany PRINT_CURRENT_STACK(); 5361e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany } 53709672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov return REAL(dispatch_sync_f)(dq, (void*)asan_ctxt, 53809672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov asan_dispatch_call_block_and_release); 5391e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 5401e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 541f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(void, dispatch_after_f, dispatch_time_t when, 542f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov dispatch_queue_t dq, void *ctxt, 543f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov dispatch_function_t func) { 5449cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov GET_STACK_TRACE_HERE(kStackTraceMax); 5451e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_block_context_t *asan_ctxt = alloc_asan_context(ctxt, func, &stack); 5461e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany if (FLAG_v >= 2) { 5471e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany Report("dispatch_after_f: %p\n", asan_ctxt); 5481e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany PRINT_CURRENT_STACK(); 5491e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany } 55009672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov return REAL(dispatch_after_f)(when, dq, (void*)asan_ctxt, 55109672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov asan_dispatch_call_block_and_release); 5521e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 5531e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 554f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(void, dispatch_barrier_async_f, dispatch_queue_t dq, void *ctxt, 555f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov dispatch_function_t func) { 5569cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov GET_STACK_TRACE_HERE(kStackTraceMax); 5571e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_block_context_t *asan_ctxt = alloc_asan_context(ctxt, func, &stack); 5581e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany if (FLAG_v >= 2) { 5591e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany Report("dispatch_barrier_async_f(): context: %p, pthread_self: %p\n", 5601e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_ctxt, pthread_self()); 5611e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany PRINT_CURRENT_STACK(); 5621e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany } 56309672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov REAL(dispatch_barrier_async_f)(dq, (void*)asan_ctxt, 56409672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov asan_dispatch_call_block_and_release); 5651e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 5661e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 567f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(void, dispatch_group_async_f, dispatch_group_t group, 568f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov dispatch_queue_t dq, void *ctxt, 569f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov dispatch_function_t func) { 5709cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov GET_STACK_TRACE_HERE(kStackTraceMax); 5711e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_block_context_t *asan_ctxt = alloc_asan_context(ctxt, func, &stack); 5721e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany if (FLAG_v >= 2) { 5731e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany Report("dispatch_group_async_f(): context: %p, pthread_self: %p\n", 5741e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_ctxt, pthread_self()); 5751e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany PRINT_CURRENT_STACK(); 5761e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany } 57709672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov REAL(dispatch_group_async_f)(group, dq, (void*)asan_ctxt, 57809672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov asan_dispatch_call_block_and_release); 5791e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 5801e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 5811e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// The following stuff has been extremely helpful while looking for the 5821e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// unhandled functions that spawned jobs on Chromium shutdown. If the verbosity 5831e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// level is 2 or greater, we wrap pthread_workqueue_additem_np() in order to 5841e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// find the points of worker thread creation (each of such threads may be used 5851e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// to run several tasks, that's why this is not enough to support the whole 5861e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// libdispatch API. 5871e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyextern "C" 5881e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyvoid *wrap_workitem_func(void *arg) { 5891e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany if (FLAG_v >= 2) { 5901e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany Report("wrap_workitem_func: %p, pthread_self: %p\n", arg, pthread_self()); 5911e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany } 5921e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_block_context_t *ctxt = (asan_block_context_t*)arg; 5931e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany worker_t fn = (worker_t)(ctxt->func); 5941e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany void *result = fn(ctxt->block); 5959cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov GET_STACK_TRACE_HERE(kStackTraceMax); 5961e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_free(arg, &stack); 5971e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany return result; 5981e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 5991e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany 600f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(int, pthread_workqueue_additem_np, pthread_workqueue_t workq, 6011e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany void *(*workitem_func)(void *), void * workitem_arg, 6021e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany pthread_workitem_handle_t * itemhandlep, unsigned int *gencountp) { 6039cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov GET_STACK_TRACE_HERE(kStackTraceMax); 6041e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_block_context_t *asan_ctxt = 6051e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany (asan_block_context_t*) asan_malloc(sizeof(asan_block_context_t), &stack); 6061e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_ctxt->block = workitem_arg; 6071e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_ctxt->func = (dispatch_function_t)workitem_func; 6081e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany asan_ctxt->parent_tid = asanThreadRegistry().GetCurrentTidOrMinusOne(); 6091e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany if (FLAG_v >= 2) { 6101e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany Report("pthread_workqueue_additem_np: %p\n", asan_ctxt); 6111e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany PRINT_CURRENT_STACK(); 6121e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany } 61309672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov return REAL(pthread_workqueue_additem_np)(workq, wrap_workitem_func, 61409672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov asan_ctxt, itemhandlep, 61509672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov gencountp); 6161e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany} 617d6567c5166412f6acdde851e767c26f332d51d3dKostya Serebryany 618431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// CF_RC_BITS, the layout of CFRuntimeBase and __CFStrIsConstant are internal 619431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// and subject to change in further CoreFoundation versions. Apple does not 620431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// guarantee any binary compatibility from release to release. 621431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko 622431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// See http://opensource.apple.com/source/CF/CF-635.15/CFInternal.h 623431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#if defined(__BIG_ENDIAN__) 624431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#define CF_RC_BITS 0 625431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#endif 626431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko 627431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#if defined(__LITTLE_ENDIAN__) 628431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#define CF_RC_BITS 3 629431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#endif 630431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko 631431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// See http://opensource.apple.com/source/CF/CF-635.15/CFRuntime.h 632431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenkotypedef struct __CFRuntimeBase { 633431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko uintptr_t _cfisa; 634431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko uint8_t _cfinfo[4]; 635431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#if __LP64__ 636431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko uint32_t _rc; 637431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#endif 638431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko} CFRuntimeBase; 639431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko 640431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// See http://opensource.apple.com/source/CF/CF-635.15/CFString.c 641431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenkoint __CFStrIsConstant(CFStringRef str) { 642431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko CFRuntimeBase *base = (CFRuntimeBase*)str; 643431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#if __LP64__ 644431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko return base->_rc == 0; 645431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#else 646431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko return (base->_cfinfo[CF_RC_BITS]) == 0; 647431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#endif 648431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko} 649431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko 650f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(CFStringRef, CFStringCreateCopy, CFAllocatorRef alloc, 651f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov CFStringRef str) { 652431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko if (__CFStrIsConstant(str)) { 653431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko return str; 654431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko } else { 65509672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov return REAL(CFStringCreateCopy)(alloc, str); 656431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko } 657431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko} 658431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko 65964ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonovnamespace __asan { 660beba6448539095b67cab266d09cd7b7d313b8c3dAlexey Samsonov 661beba6448539095b67cab266d09cd7b7d313b8c3dAlexey Samsonovvoid InitializeMacInterceptors() { 6625cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov CHECK(INTERCEPT_FUNCTION(dispatch_async_f)); 6635cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov CHECK(INTERCEPT_FUNCTION(dispatch_sync_f)); 6645cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov CHECK(INTERCEPT_FUNCTION(dispatch_after_f)); 6655cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov CHECK(INTERCEPT_FUNCTION(dispatch_barrier_async_f)); 6665cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov CHECK(INTERCEPT_FUNCTION(dispatch_group_async_f)); 6675cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov // We don't need to intercept pthread_workqueue_additem_np() to support the 6685cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov // libdispatch API, but it helps us to debug the unsupported functions. Let's 6695cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov // intercept it only during verbose runs. 6705cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov if (FLAG_v >= 2) { 6715cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov CHECK(INTERCEPT_FUNCTION(pthread_workqueue_additem_np)); 6725cf832dc0a6566ae4bb8d48b1f41da623d2c2c1aAlexey Samsonov } 67364ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov // Normally CFStringCreateCopy should not copy constant CF strings. 67464ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov // Replacing the default CFAllocator causes constant strings to be copied 67564ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov // rather than just returned, which leads to bugs in big applications like 67664ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov // Chromium and WebKit, see 67764ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov // http://code.google.com/p/address-sanitizer/issues/detail?id=10 67864ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov // Until this problem is fixed we need to check that the string is 67964ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov // non-constant before calling CFStringCreateCopy. 68064ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov CHECK(INTERCEPT_FUNCTION(CFStringCreateCopy)); 68164ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov} 682beba6448539095b67cab266d09cd7b7d313b8c3dAlexey Samsonov 68364ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov} // namespace __asan 68464ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov 685d6567c5166412f6acdde851e767c26f332d51d3dKostya Serebryany#endif // __APPLE__ 686