asan_mac.cc revision 64ce2db7c838cd95315f7a4428e8a628eaa3e2fc
11e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//===-- asan_mac.cc -------------------------------------------------------===//
21e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//
31e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//                     The LLVM Compiler Infrastructure
41e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//
51e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// This file is distributed under the University of Illinois Open Source
61e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// License. See LICENSE.TXT for details.
71e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//
81e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//===----------------------------------------------------------------------===//
91e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//
101e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// This file is a part of AddressSanitizer, an address sanity checker.
111e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//
121e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// Mac-specific details.
131e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//===----------------------------------------------------------------------===//
141e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
15d6567c5166412f6acdde851e767c26f332d51d3dKostya Serebryany#ifdef __APPLE__
161e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
171e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include "asan_mac.h"
181e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
1964ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov#include "asan_interceptors.h"
201e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include "asan_internal.h"
21895b3872acb5bcccb1769ea69d37dd33c722f99dAlexander Potapenko#include "asan_mapping.h"
228a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko#include "asan_procmaps.h"
231e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include "asan_stack.h"
241e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include "asan_thread.h"
251e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include "asan_thread_registry.h"
261e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
271e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko#include <crt_externs.h>  // for _NSGetEnviron
288a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko#include <mach-o/dyld.h>
299b993e8cd0f8964782ee93524603d0c53adc2249Kostya Serebryany#include <mach-o/loader.h>
301e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include <sys/mman.h>
31ef14ff6512d7b2e20aa3206dff820b5f90285420Kostya Serebryany#include <sys/resource.h>
3259dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko#include <sys/sysctl.h>
339107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany#include <sys/ucontext.h>
34c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany#include <pthread.h>
35a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany#include <fcntl.h>
361e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany#include <unistd.h>
37d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany#include <libkern/OSAtomic.h>
3864ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov#include <CoreFoundation/CFString.h>
391e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
401e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanynamespace __asan {
411e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
429107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryanyvoid GetPcSpBp(void *context, uintptr_t *pc, uintptr_t *sp, uintptr_t *bp) {
439107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany  ucontext_t *ucontext = (ucontext_t*)context;
449107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany# if __WORDSIZE == 64
459107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany  *pc = ucontext->uc_mcontext->__ss.__rip;
469107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany  *bp = ucontext->uc_mcontext->__ss.__rbp;
479107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany  *sp = ucontext->uc_mcontext->__ss.__rsp;
489107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany# else
499107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany  *pc = ucontext->uc_mcontext->__ss.__eip;
509107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany  *bp = ucontext->uc_mcontext->__ss.__ebp;
519107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany  *sp = ucontext->uc_mcontext->__ss.__esp;
529107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany# endif  // __WORDSIZE
539107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany}
549107c26bd88fc9cf44a2cd7d6967eb830ac63be3Kostya Serebryany
5538dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonovenum {
5638dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov  MACOS_VERSION_UNKNOWN = 0,
5738dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov  MACOS_VERSION_LEOPARD,
5838dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov  MACOS_VERSION_SNOW_LEOPARD,
5938dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov  MACOS_VERSION_LION,
6038dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov};
6138dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov
6238dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonovstatic int GetMacosVersion() {
6359dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko  int mib[2] = { CTL_KERN, KERN_OSRELEASE };
6459dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko  char version[100];
6559dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko  size_t len = 0, maxlen = sizeof(version) / sizeof(version[0]);
6659dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko  for (int i = 0; i < maxlen; i++) version[i] = '\0';
6759dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko  // Get the version length.
6859dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko  CHECK(sysctl(mib, 2, NULL, &len, NULL, 0) != -1);
6959dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko  CHECK(len < maxlen);
7059dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko  CHECK(sysctl(mib, 2, version, &len, NULL, 0) != -1);
7159dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko  switch (version[0]) {
7259dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko    case '9': return MACOS_VERSION_LEOPARD;
7359dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko    case '1': {
7459dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko      switch (version[1]) {
7559dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko        case '0': return MACOS_VERSION_SNOW_LEOPARD;
7659dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko        case '1': return MACOS_VERSION_LION;
7759dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko        default: return MACOS_VERSION_UNKNOWN;
7859dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko      }
7959dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko    }
8059dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko    default: return MACOS_VERSION_UNKNOWN;
8159dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko  }
8259dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko}
8359dc578df0de177b44c8c78f69d73735e38e5c14Alexander Potapenko
8438dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonovbool PlatformHasDifferentMemcpyAndMemmove() {
8538dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov  // On OS X 10.7 memcpy() and memmove() are both resolved
8638dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov  // into memmove$VARIANT$sse42.
8738dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov  // See also http://code.google.com/p/address-sanitizer/issues/detail?id=34.
8838dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov  // TODO(glider): need to check dynamically that memcpy() and memmove() are
8938dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov  // actually the same function.
9038dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov  return GetMacosVersion() == MACOS_VERSION_SNOW_LEOPARD;
9138dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov}
9238dd4ed885e714c376466f6fe0d69f5f22d37014Alexey Samsonov
931e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// No-op. Mac does not support static linkage anyway.
941e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyvoid *AsanDoesNotSupportStaticLinkage() {
951e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  return NULL;
961e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
971e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
98afaf71f0b2c6455614e2ab8f208312dea0871fe9Alexey Samsonovstatic inline bool IntervalsAreSeparate(uintptr_t start1, uintptr_t end1,
99afaf71f0b2c6455614e2ab8f208312dea0871fe9Alexey Samsonov                                        uintptr_t start2, uintptr_t end2) {
100f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko  CHECK(start1 <= end1);
101f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko  CHECK(start2 <= end2);
102afaf71f0b2c6455614e2ab8f208312dea0871fe9Alexey Samsonov  return (end1 < start2) || (end2 < start1);
103f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko}
104f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko
105f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko// FIXME: this is thread-unsafe, but should not cause problems most of the time.
106f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko// When the shadow is mapped only a single thread usually exists (plus maybe
107f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko// several worker threads on Mac, which aren't expected to map big chunks of
108f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko// memory).
109f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenkobool AsanShadowRangeIsAvailable() {
110f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko  AsanProcMaps procmaps;
111f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko  uintptr_t start, end;
112f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko  bool available = true;
113f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko  while (procmaps.Next(&start, &end,
114650a1e163ef05b89f40143eb8b9af4f64ad0b68dKostya Serebryany                       /*offset*/NULL, /*filename*/NULL, /*filename_size*/0)) {
115f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko    if (!IntervalsAreSeparate(start, end,
116f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko                              kLowShadowBeg - kMmapGranularity,
117f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko                              kHighShadowEnd)) {
118f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko      available = false;
119f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko      break;
120f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko    }
121f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko  }
122f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko  return available;
123f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko}
124f73a6a3f81573ba85a5e29955980818b18b0a58aAlexander Potapenko
1254803ab90ead451b55a5833f0fd38b10fd1fc83ebKostya Serebryanybool AsanInterceptsSignal(int signum) {
1264803ab90ead451b55a5833f0fd38b10fd1fc83ebKostya Serebryany  return (signum == SIGSEGV || signum == SIGBUS) && FLAG_handle_segv;
1274803ab90ead451b55a5833f0fd38b10fd1fc83ebKostya Serebryany}
1284803ab90ead451b55a5833f0fd38b10fd1fc83ebKostya Serebryany
129a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryanystatic void *asan_mmap(void *addr, size_t length, int prot, int flags,
1301e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany                int fd, uint64_t offset) {
1311e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  return mmap(addr, length, prot, flags, fd, offset);
1321e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
1331e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
1340ecf5eb729dd81a43f8585cb438d3cb2a35899edKostya Serebryanysize_t AsanWrite(int fd, const void *buf, size_t count) {
1351e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  return write(fd, buf, count);
1361e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
1371e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
138de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryanyvoid *AsanMmapSomewhereOrDie(size_t size, const char *mem_type) {
139de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  size = RoundUpTo(size, kPageSize);
140de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  void *res = asan_mmap(0, size,
141de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany                        PROT_READ | PROT_WRITE,
142de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany                        MAP_PRIVATE | MAP_ANON, -1, 0);
143de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  if (res == (void*)-1) {
144de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany    OutOfMemoryMessageAndDie(mem_type, size);
145de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  }
146de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  return res;
147de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany}
148de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany
149a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryanyvoid *AsanMmapFixedNoReserve(uintptr_t fixed_addr, size_t size) {
150a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany  return asan_mmap((void*)fixed_addr, size,
151a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany                   PROT_READ | PROT_WRITE,
152a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany                   MAP_PRIVATE | MAP_ANON | MAP_FIXED | MAP_NORESERVE,
153a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany                   0, 0);
154a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany}
155a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany
156a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryanyvoid *AsanMprotect(uintptr_t fixed_addr, size_t size) {
157a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany  return asan_mmap((void*)fixed_addr, size,
158a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany                   PROT_NONE,
159a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany                   MAP_PRIVATE | MAP_ANON | MAP_FIXED | MAP_NORESERVE,
160a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany                   0, 0);
161a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany}
162a874fe5b5d67152e4e737498d532eec80940bdcdKostya Serebryany
163de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryanyvoid AsanUnmapOrDie(void *addr, size_t size) {
164de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  if (!addr || !size) return;
165de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  int res = munmap(addr, size);
166de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  if (res != 0) {
167de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany    Report("Failed to unmap\n");
1680ecf5eb729dd81a43f8585cb438d3cb2a35899edKostya Serebryany    AsanDie();
169de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  }
170de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany}
171de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany
172de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryanyint AsanOpenReadonly(const char* filename) {
173de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  return open(filename, O_RDONLY);
174de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany}
175de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany
1761e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenkoconst char *AsanGetEnv(const char *name) {
1771e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko  char ***env_ptr = _NSGetEnviron();
1781e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko  CHECK(env_ptr);
1791e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko  char **environ = *env_ptr;
1801e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko  CHECK(environ);
1811e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko  size_t name_len = internal_strlen(name);
1821e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko  while (*environ != NULL) {
1831e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko    size_t len = internal_strlen(*environ);
1841e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko    if (len > name_len) {
1851e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko      const char *p = *environ;
1861e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko      if (!internal_memcmp(p, name, name_len) &&
1871e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko          p[name_len] == '=') {  // Match.
1884dd8ba8238b1b698953628affe6e5b2edf3b3e3fAlexey Samsonov        return *environ + name_len + 1;  // String starting after =.
1891e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko      }
1901e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko    }
1911e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko    environ++;
1921e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko  }
1931e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko  return NULL;
1941e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko}
1951e316d7f488a75312539629e9d937e156280eeb6Alexander Potapenko
1960ecf5eb729dd81a43f8585cb438d3cb2a35899edKostya Serebryanysize_t AsanRead(int fd, void *buf, size_t count) {
197de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  return read(fd, buf, count);
198de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany}
199de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany
200de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryanyint AsanClose(int fd) {
201de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany  return close(fd);
202de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany}
203de496f451bce322b6cde100456591f1f50ab3477Kostya Serebryany
2048a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander PotapenkoAsanProcMaps::AsanProcMaps() {
2058a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko  Reset();
2068a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko}
2078a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko
2088a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander PotapenkoAsanProcMaps::~AsanProcMaps() {
2098a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko}
2108a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko
2113feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// More information about Mach-O headers can be found in mach-o/loader.h
2123feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// Each Mach-O image has a header (mach_header or mach_header_64) starting with
2133feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// a magic number, and a list of linker load commands directly following the
2143feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// header.
2153feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// A load command is at least two 32-bit words: the command type and the
2163feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// command size in bytes. We're interested only in segment load commands
2173feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// (LC_SEGMENT and LC_SEGMENT_64), which tell that a part of the file is mapped
2183feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// into the task's address space.
2193feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// The |vmaddr|, |vmsize| and |fileoff| fields of segment_command or
2203feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// segment_command_64 correspond to the memory address, memory size and the
2213feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// file offset of the current memory segment.
2223feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// Because these fields are taken from the images as is, one needs to add
2233feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// _dyld_get_image_vmaddr_slide() to get the actual addresses at runtime.
2243feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko
2258a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenkovoid AsanProcMaps::Reset() {
2268a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko  // Count down from the top.
2278a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko  // TODO(glider): as per man 3 dyld, iterating over the headers with
2283feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko  // _dyld_image_count is thread-unsafe. We need to register callbacks for
2293feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko  // adding and removing images which will invalidate the AsanProcMaps state.
2308a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko  current_image_ = _dyld_image_count();
2313feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko  current_load_cmd_count_ = -1;
2323feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko  current_load_cmd_addr_ = NULL;
233ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko  current_magic_ = 0;
2343feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko}
2353feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko
2363feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// Next and NextSegmentLoad were inspired by base/sysinfo.cc in
2373feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// Google Perftools, http://code.google.com/p/google-perftools.
2383feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko
2393feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// NextSegmentLoad scans the current image for the next segment load command
2403feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// and returns the start and end addresses and file offset of the corresponding
2413feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// segment.
2423feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko// Note that the segment addresses are not necessarily sorted.
2433feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenkotemplate<uint32_t kLCSegment, typename SegmentCommand>
2443feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenkobool AsanProcMaps::NextSegmentLoad(
2453feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko    uintptr_t *start, uintptr_t *end, uintptr_t *offset,
2463feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko    char filename[], size_t filename_size) {
2473feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko  const char* lc = current_load_cmd_addr_;
2483feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko  current_load_cmd_addr_ += ((const load_command *)lc)->cmdsize;
2498a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko  if (((const load_command *)lc)->cmd == kLCSegment) {
2503feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko    const intptr_t dlloff = _dyld_get_image_vmaddr_slide(current_image_);
2518a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    const SegmentCommand* sc = (const SegmentCommand *)lc;
2528a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    if (start) *start = sc->vmaddr + dlloff;
2538a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    if (end) *end = sc->vmaddr + sc->vmsize + dlloff;
2548a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    if (offset) *offset = sc->fileoff;
2558a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    if (filename) {
25609672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov      REAL(strncpy)(filename, _dyld_get_image_name(current_image_),
25709672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov                    filename_size);
2588a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    }
259ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko    if (FLAG_v >= 4)
260ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko      Report("LC_SEGMENT: %p--%p %s+%p\n", *start, *end, filename, *offset);
2618a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    return true;
2628a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko  }
2638a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko  return false;
2648a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko}
2658a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko
2668a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenkobool AsanProcMaps::Next(uintptr_t *start, uintptr_t *end,
2678a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko                        uintptr_t *offset, char filename[],
2688a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko                        size_t filename_size) {
2698a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko  for (; current_image_ >= 0; current_image_--) {
2708a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    const mach_header* hdr = _dyld_get_image_header(current_image_);
2718a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    if (!hdr) continue;
2723feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko    if (current_load_cmd_count_ < 0) {
2733feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko      // Set up for this image;
2743feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko      current_load_cmd_count_ = hdr->ncmds;
275ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko      current_magic_ = hdr->magic;
276ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko      switch (current_magic_) {
2773feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko#ifdef MH_MAGIC_64
2783feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko        case MH_MAGIC_64: {
2793feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko          current_load_cmd_addr_ = (char*)hdr + sizeof(mach_header_64);
2803feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko          break;
2813feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko        }
2823feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko#endif
2833feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko        case MH_MAGIC: {
2843feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko          current_load_cmd_addr_ = (char*)hdr + sizeof(mach_header);
2853feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko          break;
2863feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko        }
2873feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko        default: {
2883feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko          continue;
2893feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko        }
2903feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko      }
2913feef82eab6d5f0ace384a670bfb5988e0c165a0Alexander Potapenko    }
2928a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko
293ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko    for (; current_load_cmd_count_ >= 0; current_load_cmd_count_--) {
294ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko      switch (current_magic_) {
295ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko        // current_magic_ may be only one of MH_MAGIC, MH_MAGIC_64.
2968a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko#ifdef MH_MAGIC_64
297ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko        case MH_MAGIC_64: {
298ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko          if (NextSegmentLoad<LC_SEGMENT_64, struct segment_command_64>(
299ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko                  start, end, offset, filename, filename_size))
300ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko            return true;
301ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko          break;
302ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko        }
3038a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko#endif
304ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko        case MH_MAGIC: {
305ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko          if (NextSegmentLoad<LC_SEGMENT, struct segment_command>(
306ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko                  start, end, offset, filename, filename_size))
307ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko            return true;
308ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko          break;
309ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko        }
310ddf50a3e7a28c2ab12243e72b35ccf8c04f15b49Alexander Potapenko      }
3118a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    }
3128a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    // If we get here, no more load_cmd's in this image talk about
3138a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko    // segments.  Go on to the next image.
3148a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko  }
3158a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko  return false;
3168a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko}
3178a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko
3188a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenkobool AsanProcMaps::GetObjectNameAndOffset(uintptr_t addr, uintptr_t *offset,
3198a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko                                          char filename[],
3208a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko                                          size_t filename_size) {
3218a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko  return IterateForObjectNameAndOffset(addr, offset, filename, filename_size);
3228a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko}
3238a34d384255f9bf4c2a9b03a4df81b9af57124d8Alexander Potapenko
324c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryanyvoid AsanThread::SetThreadStackTopAndBottom() {
325c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany  size_t stacksize = pthread_get_stacksize_np(pthread_self());
326c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany  void *stackaddr = pthread_get_stackaddr_np(pthread_self());
327c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany  stack_top_ = (uintptr_t)stackaddr;
328c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany  stack_bottom_ = stack_top_ - stacksize;
329c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany  int local;
330c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany  CHECK(AddrIsInStack((uintptr_t)&local));
331c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany}
332c549dd7b5fa5fb97270f57067797224cee0429f2Kostya Serebryany
333d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya SerebryanyAsanLock::AsanLock(LinkerInitialized) {
334d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany  // We assume that OS_SPINLOCK_INIT is zero
335d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany}
336d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany
337d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryanyvoid AsanLock::Lock() {
338d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany  CHECK(sizeof(OSSpinLock) <= sizeof(opaque_storage_));
339d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany  CHECK(OS_SPINLOCK_INIT == 0);
340d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany  CHECK(owner_ != (uintptr_t)pthread_self());
341d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany  OSSpinLockLock((OSSpinLock*)&opaque_storage_);
342d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany  CHECK(!owner_);
343d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany  owner_ = (uintptr_t)pthread_self();
344d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany}
345d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany
346d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryanyvoid AsanLock::Unlock() {
347d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany  CHECK(owner_ == (uintptr_t)pthread_self());
348d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany  owner_ = 0;
349d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany  OSSpinLockUnlock((OSSpinLock*)&opaque_storage_);
350d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany}
351d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany
3529cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanovvoid AsanStackTrace::GetStackTrace(size_t max_s, uintptr_t pc, uintptr_t bp) {
3539cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  size = 0;
3549cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  trace[0] = pc;
3559cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  if ((max_s) > 1) {
3569cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov    max_size = max_s;
3579cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov    FastUnwindStack(pc, bp);
3589cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  }
3599cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov}
3609cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov
3615b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov// The range of pages to be used for escape islands.
3623281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko// TODO(glider): instead of mapping a fixed range we must find a range of
3633281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko// unmapped pages in vmmap and take them.
3641346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko// These constants were chosen empirically and may not work if the shadow
3651346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko// memory layout changes. Unfortunately they do necessarily depend on
3661346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko// kHighMemBeg or kHighMemEnd.
3675b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonovstatic void *island_allocator_pos = NULL;
3685b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov
3691346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko#if __WORDSIZE == 32
3705b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov# define kIslandEnd (0xffdf0000 - kPageSize)
3715b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov# define kIslandBeg (kIslandEnd - 256 * kPageSize)
3721346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko#else
3735b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov# define kIslandEnd (0x7fffffdf0000 - kPageSize)
3745b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov# define kIslandBeg (kIslandEnd - 256 * kPageSize)
3751346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko#endif
3763281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko
3773281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenkoextern "C"
3785b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonovmach_error_t __interception_allocate_island(void **ptr,
3795b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov                                            size_t unused_size,
3805b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonov                                            void *unused_hint) {
3813281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko  if (!island_allocator_pos) {
3821346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko    island_allocator_pos =
3831346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko        asan_mmap((void*)kIslandBeg, kIslandEnd - kIslandBeg,
3841346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko                  PROT_READ | PROT_WRITE | PROT_EXEC,
3851346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko                  MAP_PRIVATE | MAP_ANON | MAP_FIXED,
3861346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko                 -1, 0);
3871346ced2eb8d10305e8d98496d9006cfbbad1548Alexander Potapenko    if (island_allocator_pos != (void*)kIslandBeg) {
3883281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko      return KERN_NO_SPACE;
3893281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko    }
3903281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko  };
3913281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko  *ptr = island_allocator_pos;
3923281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko  island_allocator_pos = (char*)island_allocator_pos + kPageSize;
3933281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko  return err_none;
3943281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko}
3953281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko
3963281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenkoextern "C"
3975b29018cf422e7711fb760b733c32127397a43fcAlexey Samsonovmach_error_t __interception_deallocate_island(void *ptr) {
3983281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko  // Do nothing.
3993281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko  // TODO(glider): allow to free and reuse the island memory.
4003281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko  return err_none;
4013281209790b5e543c79acb2f5008d1df77fb76d9Alexander Potapenko}
402d55f5f8c413622db4bd28b5cca9bfeb4d61564e0Kostya Serebryany
4031e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// Support for the following functions from libdispatch on Mac OS:
4041e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_async_f()
4051e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_async()
4061e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_sync_f()
4071e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_sync()
4081e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_after_f()
4091e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_after()
4101e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_group_async_f()
4111e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_group_async()
4121e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// TODO(glider): libdispatch API contains other functions that we don't support
4131e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// yet.
4141e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//
4151e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// dispatch_sync() and dispatch_sync_f() are synchronous, although chances are
4161e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// they can cause jobs to run on a thread different from the current one.
4171e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// TODO(glider): if so, we need a test for this (otherwise we should remove
4181e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// them).
4191e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//
4201e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// The following functions use dispatch_barrier_async_f() (which isn't a library
4211e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// function but is exported) and are thus supported:
4221e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_source_set_cancel_handler_f()
4231e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_source_set_cancel_handler()
4241e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_source_set_event_handler_f()
4251e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   dispatch_source_set_event_handler()
4261e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//
4271e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// The reference manual for Grand Central Dispatch is available at
4281e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   http://developer.apple.com/library/mac/#documentation/Performance/Reference/GCD_libdispatch_Ref/Reference/reference.html
4291e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// The implementation details are at
4301e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany//   http://libdispatch.macosforge.org/trac/browser/trunk/src/queue.c
4311e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
4321e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyextern "C"
4331e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyvoid asan_dispatch_call_block_and_release(void *block) {
4349cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  GET_STACK_TRACE_HERE(kStackTraceMax);
4351e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_block_context_t *context = (asan_block_context_t*)block;
4361e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  if (FLAG_v >= 2) {
4371e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    Report("asan_dispatch_call_block_and_release(): "
4381e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany           "context: %p, pthread_self: %p\n",
4391e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany           block, pthread_self());
4401e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  }
4411e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  AsanThread *t = asanThreadRegistry().GetCurrent();
442af3441580555ceed092170232cd5f2cc180f19f4Kostya Serebryany  if (!t) {
44355cdfc6c5af92560bc0623b5a0d70af71511c3c8Alexey Samsonov    t = AsanThread::Create(context->parent_tid, NULL, NULL, &stack);
44455cdfc6c5af92560bc0623b5a0d70af71511c3c8Alexey Samsonov    asanThreadRegistry().RegisterThread(t);
44569eca73ac96688c8bfe1f23ee006af29c7858c40Kostya Serebryany    t->Init();
4461e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    asanThreadRegistry().SetCurrent(t);
4471e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  }
4481e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  // Call the original dispatcher for the block.
4491e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  context->func(context->block);
4501e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_free(context, &stack);
4511e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
4521e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
4531e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}  // namespace __asan
4541e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
4551e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyusing namespace __asan;  // NOLINT
4561e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
4571e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// Wrap |ctxt| and |func| into an asan_block_context_t.
4581e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// The caller retains control of the allocated context.
4591e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyextern "C"
4601e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyasan_block_context_t *alloc_asan_context(void *ctxt, dispatch_function_t func,
4611e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany                                         AsanStackTrace *stack) {
4621e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_block_context_t *asan_ctxt =
4631e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany      (asan_block_context_t*) asan_malloc(sizeof(asan_block_context_t), stack);
4641e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_ctxt->block = ctxt;
4651e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_ctxt->func = func;
4661e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_ctxt->parent_tid = asanThreadRegistry().GetCurrentTidOrMinusOne();
4671e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  return asan_ctxt;
4681e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
4691e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
4701e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// TODO(glider): can we reduce code duplication by introducing a macro?
471f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(void, dispatch_async_f, dispatch_queue_t dq, void *ctxt,
472f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov                                    dispatch_function_t func) {
4739cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  GET_STACK_TRACE_HERE(kStackTraceMax);
4741e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_block_context_t *asan_ctxt = alloc_asan_context(ctxt, func, &stack);
4751e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  if (FLAG_v >= 2) {
4761e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    Report("dispatch_async_f(): context: %p, pthread_self: %p\n",
4771e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany        asan_ctxt, pthread_self());
4781e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    PRINT_CURRENT_STACK();
4791e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  }
48009672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov  return REAL(dispatch_async_f)(dq, (void*)asan_ctxt,
48109672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov                                asan_dispatch_call_block_and_release);
4821e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
4831e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
484f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(void, dispatch_sync_f, dispatch_queue_t dq, void *ctxt,
485f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov                                   dispatch_function_t func) {
4869cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  GET_STACK_TRACE_HERE(kStackTraceMax);
4871e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_block_context_t *asan_ctxt = alloc_asan_context(ctxt, func, &stack);
4881e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  if (FLAG_v >= 2) {
4891e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    Report("dispatch_sync_f(): context: %p, pthread_self: %p\n",
4901e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany        asan_ctxt, pthread_self());
4911e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    PRINT_CURRENT_STACK();
4921e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  }
49309672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov  return REAL(dispatch_sync_f)(dq, (void*)asan_ctxt,
49409672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov                               asan_dispatch_call_block_and_release);
4951e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
4961e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
497f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(void, dispatch_after_f, dispatch_time_t when,
498f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov                                    dispatch_queue_t dq, void *ctxt,
499f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov                                    dispatch_function_t func) {
5009cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  GET_STACK_TRACE_HERE(kStackTraceMax);
5011e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_block_context_t *asan_ctxt = alloc_asan_context(ctxt, func, &stack);
5021e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  if (FLAG_v >= 2) {
5031e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    Report("dispatch_after_f: %p\n", asan_ctxt);
5041e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    PRINT_CURRENT_STACK();
5051e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  }
50609672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov  return REAL(dispatch_after_f)(when, dq, (void*)asan_ctxt,
50709672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov                                asan_dispatch_call_block_and_release);
5081e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
5091e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
510f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(void, dispatch_barrier_async_f, dispatch_queue_t dq, void *ctxt,
511f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov                                            dispatch_function_t func) {
5129cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  GET_STACK_TRACE_HERE(kStackTraceMax);
5131e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_block_context_t *asan_ctxt = alloc_asan_context(ctxt, func, &stack);
5141e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  if (FLAG_v >= 2) {
5151e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    Report("dispatch_barrier_async_f(): context: %p, pthread_self: %p\n",
5161e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany           asan_ctxt, pthread_self());
5171e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    PRINT_CURRENT_STACK();
5181e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  }
51909672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov  REAL(dispatch_barrier_async_f)(dq, (void*)asan_ctxt,
52009672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov                                 asan_dispatch_call_block_and_release);
5211e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
5221e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
523f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(void, dispatch_group_async_f, dispatch_group_t group,
524f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov                                          dispatch_queue_t dq, void *ctxt,
525f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov                                          dispatch_function_t func) {
5269cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  GET_STACK_TRACE_HERE(kStackTraceMax);
5271e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_block_context_t *asan_ctxt = alloc_asan_context(ctxt, func, &stack);
5281e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  if (FLAG_v >= 2) {
5291e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    Report("dispatch_group_async_f(): context: %p, pthread_self: %p\n",
5301e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany           asan_ctxt, pthread_self());
5311e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    PRINT_CURRENT_STACK();
5321e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  }
53309672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov  REAL(dispatch_group_async_f)(group, dq, (void*)asan_ctxt,
53409672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov                               asan_dispatch_call_block_and_release);
5351e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
5361e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
5371e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// The following stuff has been extremely helpful while looking for the
5381e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// unhandled functions that spawned jobs on Chromium shutdown. If the verbosity
5391e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// level is 2 or greater, we wrap pthread_workqueue_additem_np() in order to
5401e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// find the points of worker thread creation (each of such threads may be used
5411e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// to run several tasks, that's why this is not enough to support the whole
5421e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany// libdispatch API.
5431e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyextern "C"
5441e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryanyvoid *wrap_workitem_func(void *arg) {
5451e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  if (FLAG_v >= 2) {
5461e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    Report("wrap_workitem_func: %p, pthread_self: %p\n", arg, pthread_self());
5471e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  }
5481e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_block_context_t *ctxt = (asan_block_context_t*)arg;
5491e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  worker_t fn = (worker_t)(ctxt->func);
5501e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  void *result =  fn(ctxt->block);
5519cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  GET_STACK_TRACE_HERE(kStackTraceMax);
5521e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_free(arg, &stack);
5531e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  return result;
5541e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
5551e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany
556f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(int, pthread_workqueue_additem_np, pthread_workqueue_t workq,
5571e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    void *(*workitem_func)(void *), void * workitem_arg,
5581e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    pthread_workitem_handle_t * itemhandlep, unsigned int *gencountp) {
5599cfa194cc62026fc7c6e82f7303eee8ad4d10cf4Evgeniy Stepanov  GET_STACK_TRACE_HERE(kStackTraceMax);
5601e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_block_context_t *asan_ctxt =
5611e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany      (asan_block_context_t*) asan_malloc(sizeof(asan_block_context_t), &stack);
5621e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_ctxt->block = workitem_arg;
5631e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_ctxt->func = (dispatch_function_t)workitem_func;
5641e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  asan_ctxt->parent_tid = asanThreadRegistry().GetCurrentTidOrMinusOne();
5651e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  if (FLAG_v >= 2) {
5661e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    Report("pthread_workqueue_additem_np: %p\n", asan_ctxt);
5671e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany    PRINT_CURRENT_STACK();
5681e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany  }
56909672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov  return REAL(pthread_workqueue_additem_np)(workq, wrap_workitem_func,
57009672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov                                            asan_ctxt, itemhandlep,
57109672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov                                            gencountp);
5721e172b4bdec57329bf904f063a29f99cddf2d85fKostya Serebryany}
573d6567c5166412f6acdde851e767c26f332d51d3dKostya Serebryany
574431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// CF_RC_BITS, the layout of CFRuntimeBase and __CFStrIsConstant are internal
575431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// and subject to change in further CoreFoundation versions. Apple does not
576431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// guarantee any binary compatibility from release to release.
577431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko
578431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// See http://opensource.apple.com/source/CF/CF-635.15/CFInternal.h
579431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#if defined(__BIG_ENDIAN__)
580431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#define CF_RC_BITS 0
581431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#endif
582431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko
583431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#if defined(__LITTLE_ENDIAN__)
584431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#define CF_RC_BITS 3
585431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#endif
586431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko
587431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// See http://opensource.apple.com/source/CF/CF-635.15/CFRuntime.h
588431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenkotypedef struct __CFRuntimeBase {
589431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko  uintptr_t _cfisa;
590431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko  uint8_t _cfinfo[4];
591431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#if __LP64__
592431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko  uint32_t _rc;
593431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#endif
594431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko} CFRuntimeBase;
595431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko
596431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko// See http://opensource.apple.com/source/CF/CF-635.15/CFString.c
597431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenkoint __CFStrIsConstant(CFStringRef str) {
598431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko  CFRuntimeBase *base = (CFRuntimeBase*)str;
599431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#if __LP64__
600431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko  return base->_rc == 0;
601431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#else
602431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko  return (base->_cfinfo[CF_RC_BITS]) == 0;
603431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko#endif
604431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko}
605431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko
606f2598fc21bf651d23feab396a7581d48c01c3be5Alexey SamsonovINTERCEPTOR(CFStringRef, CFStringCreateCopy, CFAllocatorRef alloc,
607f2598fc21bf651d23feab396a7581d48c01c3be5Alexey Samsonov                                             CFStringRef str) {
608431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko  if (__CFStrIsConstant(str)) {
609431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko    return str;
610431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko  } else {
61109672caefb5694f1981a1712fdefa44840a95e67Alexey Samsonov    return REAL(CFStringCreateCopy)(alloc, str);
612431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko  }
613431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko}
614431e51782d62d1257348e41e24da6b544fe70507Alexander Potapenko
61564ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonovnamespace __asan {
61664ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonovvoid PatchCFStringCreateCopy() {
61764ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov  // Normally CFStringCreateCopy should not copy constant CF strings.
61864ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov  // Replacing the default CFAllocator causes constant strings to be copied
61964ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov  // rather than just returned, which leads to bugs in big applications like
62064ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov  // Chromium and WebKit, see
62164ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov  // http://code.google.com/p/address-sanitizer/issues/detail?id=10
62264ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov  // Until this problem is fixed we need to check that the string is
62364ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov  // non-constant before calling CFStringCreateCopy.
62464ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov  CHECK(INTERCEPT_FUNCTION(CFStringCreateCopy));
62564ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov}
62664ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov}  // namespace __asan
62764ce2db7c838cd95315f7a4428e8a628eaa3e2fcAlexey Samsonov
628d6567c5166412f6acdde851e767c26f332d51d3dKostya Serebryany#endif  // __APPLE__
629