winevdm: Fix incorrect heap allocation sizes and possible out-of-bounds access in...
[wine.git] / server / process.c
blobd868d21f7d2bebee90b05c2b6c767ecc4c3eb7ab
1 /*
2 * Server-side process management
4 * Copyright (C) 1998 Alexandre Julliard
6 * This library is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU Lesser General Public
8 * License as published by the Free Software Foundation; either
9 * version 2.1 of the License, or (at your option) any later version.
11 * This library is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 * Lesser General Public License for more details.
16 * You should have received a copy of the GNU Lesser General Public
17 * License along with this library; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301, USA
21 #include "config.h"
22 #include "wine/port.h"
24 #include <assert.h>
25 #include <limits.h>
26 #include <signal.h>
27 #include <string.h>
28 #include <stdarg.h>
29 #include <stdio.h>
30 #include <stdlib.h>
31 #include <sys/time.h>
32 #ifdef HAVE_SYS_SOCKET_H
33 # include <sys/socket.h>
34 #endif
35 #include <unistd.h>
36 #ifdef HAVE_POLL_H
37 #include <poll.h>
38 #endif
40 #include "ntstatus.h"
41 #define WIN32_NO_STATUS
42 #include "winternl.h"
44 #include "file.h"
45 #include "handle.h"
46 #include "process.h"
47 #include "thread.h"
48 #include "request.h"
49 #include "user.h"
50 #include "security.h"
52 /* process structure */
54 static struct list process_list = LIST_INIT(process_list);
55 static int running_processes, user_processes;
56 static struct event *shutdown_event; /* signaled when shutdown starts */
57 static struct timeout_user *shutdown_timeout; /* timeout for server shutdown */
58 static int shutdown_stage; /* current stage in the shutdown process */
60 /* process operations */
62 static void process_dump( struct object *obj, int verbose );
63 static int process_signaled( struct object *obj, struct thread *thread );
64 static unsigned int process_map_access( struct object *obj, unsigned int access );
65 static void process_poll_event( struct fd *fd, int event );
66 static void process_destroy( struct object *obj );
68 static const struct object_ops process_ops =
70 sizeof(struct process), /* size */
71 process_dump, /* dump */
72 no_get_type, /* get_type */
73 add_queue, /* add_queue */
74 remove_queue, /* remove_queue */
75 process_signaled, /* signaled */
76 no_satisfied, /* satisfied */
77 no_signal, /* signal */
78 no_get_fd, /* get_fd */
79 process_map_access, /* map_access */
80 default_get_sd, /* get_sd */
81 default_set_sd, /* set_sd */
82 no_lookup_name, /* lookup_name */
83 no_open_file, /* open_file */
84 no_close_handle, /* close_handle */
85 process_destroy /* destroy */
88 static const struct fd_ops process_fd_ops =
90 NULL, /* get_poll_events */
91 process_poll_event, /* poll_event */
92 NULL, /* flush */
93 NULL, /* get_fd_type */
94 NULL, /* ioctl */
95 NULL, /* queue_async */
96 NULL, /* reselect_async */
97 NULL /* cancel async */
100 /* process startup info */
102 struct startup_info
104 struct object obj; /* object header */
105 struct file *exe_file; /* file handle for main exe */
106 struct process *process; /* created process */
107 data_size_t info_size; /* size of startup info */
108 data_size_t data_size; /* size of whole startup data */
109 startup_info_t *data; /* data for startup info */
112 static void startup_info_dump( struct object *obj, int verbose );
113 static int startup_info_signaled( struct object *obj, struct thread *thread );
114 static void startup_info_destroy( struct object *obj );
116 static const struct object_ops startup_info_ops =
118 sizeof(struct startup_info), /* size */
119 startup_info_dump, /* dump */
120 no_get_type, /* get_type */
121 add_queue, /* add_queue */
122 remove_queue, /* remove_queue */
123 startup_info_signaled, /* signaled */
124 no_satisfied, /* satisfied */
125 no_signal, /* signal */
126 no_get_fd, /* get_fd */
127 no_map_access, /* map_access */
128 default_get_sd, /* get_sd */
129 default_set_sd, /* set_sd */
130 no_lookup_name, /* lookup_name */
131 no_open_file, /* open_file */
132 no_close_handle, /* close_handle */
133 startup_info_destroy /* destroy */
137 struct ptid_entry
139 void *ptr; /* entry ptr */
140 unsigned int next; /* next free entry */
143 static struct ptid_entry *ptid_entries; /* array of ptid entries */
144 static unsigned int used_ptid_entries; /* number of entries in use */
145 static unsigned int alloc_ptid_entries; /* number of allocated entries */
146 static unsigned int next_free_ptid; /* next free entry */
147 static unsigned int last_free_ptid; /* last free entry */
149 static void kill_all_processes(void);
151 #define PTID_OFFSET 8 /* offset for first ptid value */
153 /* allocate a new process or thread id */
154 unsigned int alloc_ptid( void *ptr )
156 struct ptid_entry *entry;
157 unsigned int id;
159 if (used_ptid_entries < alloc_ptid_entries)
161 id = used_ptid_entries + PTID_OFFSET;
162 entry = &ptid_entries[used_ptid_entries++];
164 else if (next_free_ptid)
166 id = next_free_ptid;
167 entry = &ptid_entries[id - PTID_OFFSET];
168 if (!(next_free_ptid = entry->next)) last_free_ptid = 0;
170 else /* need to grow the array */
172 unsigned int count = alloc_ptid_entries + (alloc_ptid_entries / 2);
173 if (!count) count = 64;
174 if (!(entry = realloc( ptid_entries, count * sizeof(*entry) )))
176 set_error( STATUS_NO_MEMORY );
177 return 0;
179 ptid_entries = entry;
180 alloc_ptid_entries = count;
181 id = used_ptid_entries + PTID_OFFSET;
182 entry = &ptid_entries[used_ptid_entries++];
185 entry->ptr = ptr;
186 return id;
189 /* free a process or thread id */
190 void free_ptid( unsigned int id )
192 struct ptid_entry *entry = &ptid_entries[id - PTID_OFFSET];
194 entry->ptr = NULL;
195 entry->next = 0;
197 /* append to end of free list so that we don't reuse it too early */
198 if (last_free_ptid) ptid_entries[last_free_ptid - PTID_OFFSET].next = id;
199 else next_free_ptid = id;
201 last_free_ptid = id;
204 /* retrieve the pointer corresponding to a process or thread id */
205 void *get_ptid_entry( unsigned int id )
207 if (id < PTID_OFFSET) return NULL;
208 if (id - PTID_OFFSET >= used_ptid_entries) return NULL;
209 return ptid_entries[id - PTID_OFFSET].ptr;
212 /* return the main thread of the process */
213 struct thread *get_process_first_thread( struct process *process )
215 struct list *ptr = list_head( &process->thread_list );
216 if (!ptr) return NULL;
217 return LIST_ENTRY( ptr, struct thread, proc_entry );
220 /* set the state of the process startup info */
221 static void set_process_startup_state( struct process *process, enum startup_state state )
223 if (process->startup_state == STARTUP_IN_PROGRESS) process->startup_state = state;
224 if (process->startup_info)
226 wake_up( &process->startup_info->obj, 0 );
227 release_object( process->startup_info );
228 process->startup_info = NULL;
232 /* callback for server shutdown */
233 static void server_shutdown_timeout( void *arg )
235 shutdown_timeout = NULL;
236 if (!running_processes)
238 close_master_socket( 0 );
239 return;
241 switch(++shutdown_stage)
243 case 1: /* signal system processes to exit */
244 if (debug_level) fprintf( stderr, "wineserver: shutting down\n" );
245 if (shutdown_event) set_event( shutdown_event );
246 shutdown_timeout = add_timeout_user( 2 * -TICKS_PER_SEC, server_shutdown_timeout, NULL );
247 close_master_socket( 4 * -TICKS_PER_SEC );
248 break;
249 case 2: /* now forcibly kill all processes (but still wait for SIGKILL timeouts) */
250 kill_all_processes();
251 break;
255 /* forced shutdown, used for wineserver -k */
256 void shutdown_master_socket(void)
258 kill_all_processes();
259 shutdown_stage = 2;
260 if (shutdown_timeout)
262 remove_timeout_user( shutdown_timeout );
263 shutdown_timeout = NULL;
265 close_master_socket( 2 * -TICKS_PER_SEC ); /* for SIGKILL timeouts */
268 /* final cleanup once we are sure a process is really dead */
269 static void process_died( struct process *process )
271 if (debug_level) fprintf( stderr, "%04x: *process killed*\n", process->id );
272 if (!process->is_system)
274 if (!--user_processes && !shutdown_stage && master_socket_timeout != TIMEOUT_INFINITE)
275 shutdown_timeout = add_timeout_user( master_socket_timeout, server_shutdown_timeout, NULL );
277 release_object( process );
278 if (!--running_processes && shutdown_stage) close_master_socket( 0 );
281 /* callback for process sigkill timeout */
282 static void process_sigkill( void *private )
284 struct process *process = private;
286 process->sigkill_timeout = NULL;
287 kill( process->unix_pid, SIGKILL );
288 process_died( process );
291 /* start the sigkill timer for a process upon exit */
292 static void start_sigkill_timer( struct process *process )
294 grab_object( process );
295 if (process->unix_pid != -1 && process->msg_fd)
296 process->sigkill_timeout = add_timeout_user( -TICKS_PER_SEC, process_sigkill, process );
297 else
298 process_died( process );
301 /* create a new process and its main thread */
302 /* if the function fails the fd is closed */
303 struct thread *create_process( int fd, struct thread *parent_thread, int inherit_all )
305 struct process *process;
306 struct thread *thread = NULL;
307 int request_pipe[2];
309 if (!(process = alloc_object( &process_ops )))
311 close( fd );
312 goto error;
314 process->parent = NULL;
315 process->debugger = NULL;
316 process->handles = NULL;
317 process->msg_fd = NULL;
318 process->sigkill_timeout = NULL;
319 process->unix_pid = -1;
320 process->exit_code = STILL_ACTIVE;
321 process->running_threads = 0;
322 process->priority = PROCESS_PRIOCLASS_NORMAL;
323 process->suspend = 0;
324 process->is_system = 0;
325 process->create_flags = 0;
326 process->console = NULL;
327 process->startup_state = STARTUP_IN_PROGRESS;
328 process->startup_info = NULL;
329 process->idle_event = NULL;
330 process->peb = 0;
331 process->ldt_copy = 0;
332 process->winstation = 0;
333 process->desktop = 0;
334 process->token = NULL;
335 process->trace_data = 0;
336 list_init( &process->thread_list );
337 list_init( &process->locks );
338 list_init( &process->classes );
339 list_init( &process->dlls );
341 process->start_time = current_time;
342 process->end_time = 0;
343 list_add_tail( &process_list, &process->entry );
345 if (!(process->id = process->group_id = alloc_ptid( process )))
347 close( fd );
348 goto error;
350 if (!(process->msg_fd = create_anonymous_fd( &process_fd_ops, fd, &process->obj, 0 ))) goto error;
352 /* create the handle table */
353 if (!parent_thread)
355 process->handles = alloc_handle_table( process, 0 );
356 process->token = token_create_admin();
357 process->affinity = ~0;
359 else
361 struct process *parent = parent_thread->process;
362 process->parent = (struct process *)grab_object( parent );
363 process->handles = inherit_all ? copy_handle_table( process, parent )
364 : alloc_handle_table( process, 0 );
365 /* Note: for security reasons, starting a new process does not attempt
366 * to use the current impersonation token for the new process */
367 process->token = token_duplicate( parent->token, TRUE, 0 );
368 process->affinity = parent->affinity;
370 if (!process->handles || !process->token) goto error;
372 /* create the main thread */
373 if (pipe( request_pipe ) == -1)
375 file_set_error();
376 goto error;
378 if (send_client_fd( process, request_pipe[1], SERVER_PROTOCOL_VERSION ) == -1)
380 close( request_pipe[0] );
381 close( request_pipe[1] );
382 goto error;
384 close( request_pipe[1] );
385 if (!(thread = create_thread( request_pipe[0], process ))) goto error;
387 set_fd_events( process->msg_fd, POLLIN ); /* start listening to events */
388 release_object( process );
389 return thread;
391 error:
392 if (process) release_object( process );
393 /* if we failed to start our first process, close everything down */
394 if (!running_processes) close_master_socket( 0 );
395 return NULL;
398 /* initialize the current process and fill in the request */
399 data_size_t init_process( struct thread *thread )
401 struct process *process = thread->process;
402 struct startup_info *info = process->startup_info;
404 init_process_tracing( process );
405 if (!info) return 0;
406 return info->data_size;
409 /* destroy a process when its refcount is 0 */
410 static void process_destroy( struct object *obj )
412 struct process *process = (struct process *)obj;
413 assert( obj->ops == &process_ops );
415 /* we can't have a thread remaining */
416 assert( list_empty( &process->thread_list ));
418 assert( !process->sigkill_timeout ); /* timeout should hold a reference to the process */
420 close_process_handles( process );
421 set_process_startup_state( process, STARTUP_ABORTED );
422 if (process->console) release_object( process->console );
423 if (process->parent) release_object( process->parent );
424 if (process->msg_fd) release_object( process->msg_fd );
425 list_remove( &process->entry );
426 if (process->idle_event) release_object( process->idle_event );
427 if (process->id) free_ptid( process->id );
428 if (process->token) release_object( process->token );
431 /* dump a process on stdout for debugging purposes */
432 static void process_dump( struct object *obj, int verbose )
434 struct process *process = (struct process *)obj;
435 assert( obj->ops == &process_ops );
437 fprintf( stderr, "Process id=%04x handles=%p\n", process->id, process->handles );
440 static int process_signaled( struct object *obj, struct thread *thread )
442 struct process *process = (struct process *)obj;
443 return !process->running_threads;
446 static unsigned int process_map_access( struct object *obj, unsigned int access )
448 if (access & GENERIC_READ) access |= STANDARD_RIGHTS_READ | SYNCHRONIZE;
449 if (access & GENERIC_WRITE) access |= STANDARD_RIGHTS_WRITE | SYNCHRONIZE;
450 if (access & GENERIC_EXECUTE) access |= STANDARD_RIGHTS_EXECUTE;
451 if (access & GENERIC_ALL) access |= PROCESS_ALL_ACCESS;
452 return access & ~(GENERIC_READ | GENERIC_WRITE | GENERIC_EXECUTE | GENERIC_ALL);
455 static void process_poll_event( struct fd *fd, int event )
457 struct process *process = get_fd_user( fd );
458 assert( process->obj.ops == &process_ops );
460 if (event & (POLLERR | POLLHUP)) kill_process( process, 0 );
461 else if (event & POLLIN) receive_fd( process );
464 static void startup_info_destroy( struct object *obj )
466 struct startup_info *info = (struct startup_info *)obj;
467 assert( obj->ops == &startup_info_ops );
468 free( info->data );
469 if (info->exe_file) release_object( info->exe_file );
470 if (info->process) release_object( info->process );
473 static void startup_info_dump( struct object *obj, int verbose )
475 struct startup_info *info = (struct startup_info *)obj;
476 assert( obj->ops == &startup_info_ops );
478 fprintf( stderr, "Startup info in=%04x out=%04x err=%04x\n",
479 info->data->hstdin, info->data->hstdout, info->data->hstderr );
482 static int startup_info_signaled( struct object *obj, struct thread *thread )
484 struct startup_info *info = (struct startup_info *)obj;
485 return info->process && info->process->startup_state != STARTUP_IN_PROGRESS;
488 /* get a process from an id (and increment the refcount) */
489 struct process *get_process_from_id( process_id_t id )
491 struct object *obj = get_ptid_entry( id );
493 if (obj && obj->ops == &process_ops) return (struct process *)grab_object( obj );
494 set_error( STATUS_INVALID_PARAMETER );
495 return NULL;
498 /* get a process from a handle (and increment the refcount) */
499 struct process *get_process_from_handle( obj_handle_t handle, unsigned int access )
501 return (struct process *)get_handle_obj( current->process, handle,
502 access, &process_ops );
505 /* find a dll from its base address */
506 static inline struct process_dll *find_process_dll( struct process *process, mod_handle_t base )
508 struct process_dll *dll;
510 LIST_FOR_EACH_ENTRY( dll, &process->dlls, struct process_dll, entry )
512 if (dll->base == base) return dll;
514 return NULL;
517 /* add a dll to a process list */
518 static struct process_dll *process_load_dll( struct process *process, struct file *file,
519 mod_handle_t base, const WCHAR *filename,
520 data_size_t name_len )
522 struct process_dll *dll;
524 /* make sure we don't already have one with the same base address */
525 if (find_process_dll( process, base ))
527 set_error( STATUS_INVALID_PARAMETER );
528 return NULL;
531 if ((dll = mem_alloc( sizeof(*dll) )))
533 dll->file = NULL;
534 dll->base = base;
535 dll->filename = NULL;
536 dll->namelen = name_len;
537 if (name_len && !(dll->filename = memdup( filename, name_len )))
539 free( dll );
540 return NULL;
542 if (file) dll->file = grab_file_unless_removable( file );
543 list_add_tail( &process->dlls, &dll->entry );
545 return dll;
548 /* remove a dll from a process list */
549 static void process_unload_dll( struct process *process, mod_handle_t base )
551 struct process_dll *dll = find_process_dll( process, base );
553 if (dll && (&dll->entry != list_head( &process->dlls ))) /* main exe can't be unloaded */
555 if (dll->file) release_object( dll->file );
556 free( dll->filename );
557 list_remove( &dll->entry );
558 free( dll );
559 generate_debug_event( current, UNLOAD_DLL_DEBUG_EVENT, &base );
561 else set_error( STATUS_INVALID_PARAMETER );
564 /* terminate a process with the given exit code */
565 static void terminate_process( struct process *process, struct thread *skip, int exit_code )
567 struct thread *thread;
569 grab_object( process ); /* make sure it doesn't get freed when threads die */
570 restart:
571 LIST_FOR_EACH_ENTRY( thread, &process->thread_list, struct thread, proc_entry )
573 if (exit_code) thread->exit_code = exit_code;
574 if (thread == skip) continue;
575 if (thread->state == TERMINATED) continue;
576 kill_thread( thread, 1 );
577 goto restart;
579 release_object( process );
582 /* kill all processes */
583 static void kill_all_processes(void)
585 for (;;)
587 struct process *process;
589 LIST_FOR_EACH_ENTRY( process, &process_list, struct process, entry )
591 if (process->running_threads) break;
593 if (&process->entry == &process_list) break; /* no process found */
594 terminate_process( process, NULL, 1 );
598 /* kill all processes being attached to a console renderer */
599 void kill_console_processes( struct thread *renderer, int exit_code )
601 for (;;) /* restart from the beginning of the list every time */
603 struct process *process;
605 /* find the first process being attached to 'renderer' and still running */
606 LIST_FOR_EACH_ENTRY( process, &process_list, struct process, entry )
608 if (process == renderer->process) continue;
609 if (!process->running_threads) continue;
610 if (process->console && console_get_renderer( process->console ) == renderer) break;
612 if (&process->entry == &process_list) break; /* no process found */
613 terminate_process( process, NULL, exit_code );
617 /* a process has been killed (i.e. its last thread died) */
618 static void process_killed( struct process *process )
620 struct list *ptr;
622 assert( list_empty( &process->thread_list ));
623 process->end_time = current_time;
624 if (!process->is_system) close_process_desktop( process );
625 close_process_handles( process );
626 process->winstation = 0;
627 process->desktop = 0;
628 if (process->idle_event)
630 release_object( process->idle_event );
631 process->idle_event = NULL;
634 /* close the console attached to this process, if any */
635 free_console( process );
637 while ((ptr = list_head( &process->dlls )))
639 struct process_dll *dll = LIST_ENTRY( ptr, struct process_dll, entry );
640 if (dll->file) release_object( dll->file );
641 free( dll->filename );
642 list_remove( &dll->entry );
643 free( dll );
645 destroy_process_classes( process );
646 free_process_user_handles( process );
647 remove_process_locks( process );
648 set_process_startup_state( process, STARTUP_ABORTED );
649 finish_process_tracing( process );
650 start_sigkill_timer( process );
651 wake_up( &process->obj, 0 );
654 /* add a thread to a process running threads list */
655 void add_process_thread( struct process *process, struct thread *thread )
657 list_add_tail( &process->thread_list, &thread->proc_entry );
658 if (!process->running_threads++)
660 running_processes++;
661 if (!process->is_system)
663 if (!user_processes++ && shutdown_timeout)
665 remove_timeout_user( shutdown_timeout );
666 shutdown_timeout = NULL;
670 grab_object( thread );
673 /* remove a thread from a process running threads list */
674 void remove_process_thread( struct process *process, struct thread *thread )
676 assert( process->running_threads > 0 );
677 assert( !list_empty( &process->thread_list ));
679 list_remove( &thread->proc_entry );
681 if (!--process->running_threads)
683 /* we have removed the last running thread, exit the process */
684 process->exit_code = thread->exit_code;
685 generate_debug_event( thread, EXIT_PROCESS_DEBUG_EVENT, process );
686 process_killed( process );
688 else generate_debug_event( thread, EXIT_THREAD_DEBUG_EVENT, thread );
689 release_object( thread );
692 /* suspend all the threads of a process */
693 void suspend_process( struct process *process )
695 if (!process->suspend++)
697 struct list *ptr, *next;
699 LIST_FOR_EACH_SAFE( ptr, next, &process->thread_list )
701 struct thread *thread = LIST_ENTRY( ptr, struct thread, proc_entry );
702 if (!thread->suspend) stop_thread( thread );
707 /* resume all the threads of a process */
708 void resume_process( struct process *process )
710 assert (process->suspend > 0);
711 if (!--process->suspend)
713 struct list *ptr, *next;
715 LIST_FOR_EACH_SAFE( ptr, next, &process->thread_list )
717 struct thread *thread = LIST_ENTRY( ptr, struct thread, proc_entry );
718 if (!thread->suspend) wake_thread( thread );
723 /* kill a process on the spot */
724 void kill_process( struct process *process, int violent_death )
726 if (!violent_death && process->msg_fd) /* normal termination on pipe close */
728 release_object( process->msg_fd );
729 process->msg_fd = NULL;
732 if (process->sigkill_timeout) /* already waiting for it to die */
734 remove_timeout_user( process->sigkill_timeout );
735 process->sigkill_timeout = NULL;
736 process_died( process );
737 return;
740 if (violent_death) terminate_process( process, NULL, 1 );
741 else
743 struct list *ptr;
745 grab_object( process ); /* make sure it doesn't get freed when threads die */
746 while ((ptr = list_head( &process->thread_list )))
748 struct thread *thread = LIST_ENTRY( ptr, struct thread, proc_entry );
749 kill_thread( thread, 0 );
751 release_object( process );
755 /* kill all processes being debugged by a given thread */
756 void kill_debugged_processes( struct thread *debugger, int exit_code )
758 for (;;) /* restart from the beginning of the list every time */
760 struct process *process;
762 /* find the first process being debugged by 'debugger' and still running */
763 LIST_FOR_EACH_ENTRY( process, &process_list, struct process, entry )
765 if (!process->running_threads) continue;
766 if (process->debugger == debugger) break;
768 if (&process->entry == &process_list) break; /* no process found */
769 process->debugger = NULL;
770 terminate_process( process, NULL, exit_code );
775 /* trigger a breakpoint event in a given process */
776 void break_process( struct process *process )
778 struct thread *thread;
780 suspend_process( process );
782 LIST_FOR_EACH_ENTRY( thread, &process->thread_list, struct thread, proc_entry )
784 if (thread->context) /* inside an exception event already */
786 break_thread( thread );
787 goto done;
790 if ((thread = get_process_first_thread( process ))) thread->debug_break = 1;
791 else set_error( STATUS_ACCESS_DENIED );
792 done:
793 resume_process( process );
797 /* detach a debugger from all its debuggees */
798 void detach_debugged_processes( struct thread *debugger )
800 struct process *process;
802 LIST_FOR_EACH_ENTRY( process, &process_list, struct process, entry )
804 if (process->debugger == debugger && process->running_threads)
806 debugger_detach( process, debugger );
812 void enum_processes( int (*cb)(struct process*, void*), void *user )
814 struct list *ptr, *next;
816 LIST_FOR_EACH_SAFE( ptr, next, &process_list )
818 struct process *process = LIST_ENTRY( ptr, struct process, entry );
819 if ((cb)(process, user)) break;
823 /* set the debugged flag in the process PEB */
824 int set_process_debug_flag( struct process *process, int flag )
826 char data = (flag != 0);
828 /* BeingDebugged flag is the byte at offset 2 in the PEB */
829 return write_process_memory( process, process->peb + 2, 1, &data );
832 /* take a snapshot of currently running processes */
833 struct process_snapshot *process_snap( int *count )
835 struct process_snapshot *snapshot, *ptr;
836 struct process *process;
838 if (!running_processes) return NULL;
839 if (!(snapshot = mem_alloc( sizeof(*snapshot) * running_processes )))
840 return NULL;
841 ptr = snapshot;
842 LIST_FOR_EACH_ENTRY( process, &process_list, struct process, entry )
844 if (!process->running_threads) continue;
845 ptr->process = process;
846 ptr->threads = process->running_threads;
847 ptr->count = process->obj.refcount;
848 ptr->priority = process->priority;
849 ptr->handles = get_handle_table_count(process);
850 grab_object( process );
851 ptr++;
854 if (!(*count = ptr - snapshot))
856 free( snapshot );
857 snapshot = NULL;
859 return snapshot;
862 /* create a new process */
863 DECL_HANDLER(new_process)
865 struct startup_info *info;
866 struct thread *thread;
867 struct process *process;
868 struct process *parent = current->process;
869 int socket_fd = thread_get_inflight_fd( current, req->socket_fd );
871 if (socket_fd == -1)
873 set_error( STATUS_INVALID_PARAMETER );
874 return;
876 if (fcntl( socket_fd, F_SETFL, O_NONBLOCK ) == -1)
878 set_error( STATUS_INVALID_HANDLE );
879 close( socket_fd );
880 return;
882 if (shutdown_stage)
884 set_error( STATUS_SHUTDOWN_IN_PROGRESS );
885 close( socket_fd );
886 return;
889 /* build the startup info for a new process */
890 if (!(info = alloc_object( &startup_info_ops ))) return;
891 info->exe_file = NULL;
892 info->process = NULL;
893 info->data = NULL;
895 if (req->exe_file &&
896 !(info->exe_file = get_file_obj( current->process, req->exe_file, FILE_READ_DATA )))
897 goto done;
899 info->data_size = get_req_data_size();
900 info->info_size = min( req->info_size, info->data_size );
902 if (req->info_size < sizeof(*info->data))
904 /* make sure we have a full startup_info_t structure */
905 data_size_t env_size = info->data_size - info->info_size;
906 data_size_t info_size = min( req->info_size, FIELD_OFFSET( startup_info_t, curdir_len ));
908 if (!(info->data = mem_alloc( sizeof(*info->data) + env_size ))) goto done;
909 memcpy( info->data, get_req_data(), info_size );
910 memset( (char *)info->data + info_size, 0, sizeof(*info->data) - info_size );
911 memcpy( info->data + 1, (const char *)get_req_data() + req->info_size, env_size );
912 info->info_size = sizeof(startup_info_t);
913 info->data_size = info->info_size + env_size;
915 else
917 data_size_t pos = sizeof(*info->data);
919 if (!(info->data = memdup( get_req_data(), info->data_size ))) goto done;
920 #define FIXUP_LEN(len) do { (len) = min( (len), info->info_size - pos ); pos += (len); } while(0)
921 FIXUP_LEN( info->data->curdir_len );
922 FIXUP_LEN( info->data->dllpath_len );
923 FIXUP_LEN( info->data->imagepath_len );
924 FIXUP_LEN( info->data->cmdline_len );
925 FIXUP_LEN( info->data->title_len );
926 FIXUP_LEN( info->data->desktop_len );
927 FIXUP_LEN( info->data->shellinfo_len );
928 FIXUP_LEN( info->data->runtime_len );
929 #undef FIXUP_LEN
932 if (!(thread = create_process( socket_fd, current, req->inherit_all ))) goto done;
933 process = thread->process;
934 process->create_flags = req->create_flags;
935 process->startup_info = (struct startup_info *)grab_object( info );
937 /* connect to the window station */
938 connect_process_winstation( process, current );
940 /* thread will be actually suspended in init_done */
941 if (req->create_flags & CREATE_SUSPENDED) thread->suspend++;
943 /* set the process console */
944 if (!(req->create_flags & (DETACHED_PROCESS | CREATE_NEW_CONSOLE)))
946 /* FIXME: some better error checking should be done...
947 * like if hConOut and hConIn are console handles, then they should be on the same
948 * physical console
950 inherit_console( current, process, req->inherit_all ? info->data->hstdin : 0 );
953 if (!req->inherit_all && !(req->create_flags & CREATE_NEW_CONSOLE))
955 info->data->hstdin = duplicate_handle( parent, info->data->hstdin, process,
956 0, OBJ_INHERIT, DUPLICATE_SAME_ACCESS );
957 info->data->hstdout = duplicate_handle( parent, info->data->hstdout, process,
958 0, OBJ_INHERIT, DUPLICATE_SAME_ACCESS );
959 info->data->hstderr = duplicate_handle( parent, info->data->hstderr, process,
960 0, OBJ_INHERIT, DUPLICATE_SAME_ACCESS );
961 /* some handles above may have been invalid; this is not an error */
962 if (get_error() == STATUS_INVALID_HANDLE ||
963 get_error() == STATUS_OBJECT_TYPE_MISMATCH) clear_error();
966 /* attach to the debugger if requested */
967 if (req->create_flags & (DEBUG_PROCESS | DEBUG_ONLY_THIS_PROCESS))
968 set_process_debugger( process, current );
969 else if (parent->debugger && !(parent->create_flags & DEBUG_ONLY_THIS_PROCESS))
970 set_process_debugger( process, parent->debugger );
972 if (!(req->create_flags & CREATE_NEW_PROCESS_GROUP))
973 process->group_id = parent->group_id;
975 info->process = (struct process *)grab_object( process );
976 reply->info = alloc_handle( current->process, info, SYNCHRONIZE, 0 );
977 reply->pid = get_process_id( process );
978 reply->tid = get_thread_id( thread );
979 reply->phandle = alloc_handle( parent, process, req->process_access, req->process_attr );
980 reply->thandle = alloc_handle( parent, thread, req->thread_access, req->thread_attr );
982 done:
983 release_object( info );
986 /* Retrieve information about a newly started process */
987 DECL_HANDLER(get_new_process_info)
989 struct startup_info *info;
991 if ((info = (struct startup_info *)get_handle_obj( current->process, req->info,
992 0, &startup_info_ops )))
994 reply->success = is_process_init_done( info->process );
995 reply->exit_code = info->process->exit_code;
996 release_object( info );
1000 /* Retrieve the new process startup info */
1001 DECL_HANDLER(get_startup_info)
1003 struct process *process = current->process;
1004 struct startup_info *info = process->startup_info;
1005 data_size_t size;
1007 if (!info) return;
1009 if (info->exe_file &&
1010 !(reply->exe_file = alloc_handle( process, info->exe_file, GENERIC_READ, 0 ))) return;
1012 /* we return the data directly without making a copy so this can only be called once */
1013 reply->info_size = info->info_size;
1014 size = info->data_size;
1015 if (size > get_reply_max_size()) size = get_reply_max_size();
1016 set_reply_data_ptr( info->data, size );
1017 info->data = NULL;
1018 info->data_size = 0;
1021 /* signal the end of the process initialization */
1022 DECL_HANDLER(init_process_done)
1024 struct process_dll *dll;
1025 struct process *process = current->process;
1027 if (is_process_init_done(process))
1029 set_error( STATUS_INVALID_PARAMETER );
1030 return;
1032 if (!(dll = find_process_dll( process, req->module )))
1034 set_error( STATUS_DLL_NOT_FOUND );
1035 return;
1038 /* main exe is the first in the dll list */
1039 list_remove( &dll->entry );
1040 list_add_head( &process->dlls, &dll->entry );
1042 process->ldt_copy = req->ldt_copy;
1044 generate_startup_debug_events( process, req->entry );
1045 set_process_startup_state( process, STARTUP_DONE );
1047 if (req->gui) process->idle_event = create_event( NULL, NULL, 0, 1, 0, NULL );
1048 if (current->suspend + process->suspend > 0) stop_thread( current );
1049 if (process->debugger) set_process_debug_flag( process, 1 );
1052 /* open a handle to a process */
1053 DECL_HANDLER(open_process)
1055 struct process *process = get_process_from_id( req->pid );
1056 reply->handle = 0;
1057 if (process)
1059 reply->handle = alloc_handle( current->process, process, req->access, req->attributes );
1060 release_object( process );
1064 /* terminate a process */
1065 DECL_HANDLER(terminate_process)
1067 struct process *process;
1069 if ((process = get_process_from_handle( req->handle, PROCESS_TERMINATE )))
1071 reply->self = (current->process == process);
1072 terminate_process( process, current, req->exit_code );
1073 release_object( process );
1077 /* fetch information about a process */
1078 DECL_HANDLER(get_process_info)
1080 struct process *process;
1082 if ((process = get_process_from_handle( req->handle, PROCESS_QUERY_INFORMATION )))
1084 reply->pid = get_process_id( process );
1085 reply->ppid = process->parent ? get_process_id( process->parent ) : 0;
1086 reply->exit_code = process->exit_code;
1087 reply->priority = process->priority;
1088 reply->affinity = process->affinity;
1089 reply->peb = process->peb;
1090 reply->start_time = process->start_time;
1091 reply->end_time = process->end_time;
1092 reply->cpu = process->cpu;
1093 reply->debugger_present = !!process->debugger;
1094 release_object( process );
1098 static void set_process_affinity( struct process *process, affinity_t affinity )
1100 struct thread *thread;
1102 process->affinity = affinity;
1104 LIST_FOR_EACH_ENTRY( thread, &process->thread_list, struct thread, proc_entry )
1106 set_thread_affinity( thread, affinity );
1110 /* set information about a process */
1111 DECL_HANDLER(set_process_info)
1113 struct process *process;
1115 if ((process = get_process_from_handle( req->handle, PROCESS_SET_INFORMATION )))
1117 if (req->mask & SET_PROCESS_INFO_PRIORITY) process->priority = req->priority;
1118 if (req->mask & SET_PROCESS_INFO_AFFINITY) set_process_affinity( process, req->affinity );
1119 release_object( process );
1123 /* read data from a process address space */
1124 DECL_HANDLER(read_process_memory)
1126 struct process *process;
1127 data_size_t len = get_reply_max_size();
1129 if (!(process = get_process_from_handle( req->handle, PROCESS_VM_READ ))) return;
1131 if (len)
1133 char *buffer = mem_alloc( len );
1134 if (buffer)
1136 if (read_process_memory( process, req->addr, len, buffer ))
1137 set_reply_data_ptr( buffer, len );
1138 else
1139 free( buffer );
1142 release_object( process );
1145 /* write data to a process address space */
1146 DECL_HANDLER(write_process_memory)
1148 struct process *process;
1150 if ((process = get_process_from_handle( req->handle, PROCESS_VM_WRITE )))
1152 data_size_t len = get_req_data_size();
1153 if (len) write_process_memory( process, req->addr, len, get_req_data() );
1154 else set_error( STATUS_INVALID_PARAMETER );
1155 release_object( process );
1159 /* notify the server that a dll has been loaded */
1160 DECL_HANDLER(load_dll)
1162 struct process_dll *dll;
1163 struct file *file = NULL;
1165 if (req->handle && !(file = get_file_obj( current->process, req->handle, FILE_READ_DATA )))
1166 return;
1168 if ((dll = process_load_dll( current->process, file, req->base,
1169 get_req_data(), get_req_data_size() )))
1171 dll->size = req->size;
1172 dll->dbg_offset = req->dbg_offset;
1173 dll->dbg_size = req->dbg_size;
1174 dll->name = req->name;
1175 /* only generate event if initialization is done */
1176 if (is_process_init_done( current->process ))
1177 generate_debug_event( current, LOAD_DLL_DEBUG_EVENT, dll );
1179 if (file) release_object( file );
1182 /* notify the server that a dll is being unloaded */
1183 DECL_HANDLER(unload_dll)
1185 process_unload_dll( current->process, req->base );
1188 /* retrieve information about a module in a process */
1189 DECL_HANDLER(get_dll_info)
1191 struct process *process;
1193 if ((process = get_process_from_handle( req->handle, PROCESS_QUERY_INFORMATION )))
1195 struct process_dll *dll;
1197 if (req->base_address)
1198 dll = find_process_dll( process, req->base_address );
1199 else /* NULL means main module */
1200 dll = list_head( &process->dlls ) ?
1201 LIST_ENTRY(list_head( &process->dlls ), struct process_dll, entry) : NULL;
1203 if (dll)
1205 reply->size = dll->size;
1206 reply->entry_point = 0; /* FIXME */
1207 reply->filename_len = dll->namelen;
1208 if (dll->filename)
1210 if (dll->namelen <= get_reply_max_size())
1211 set_reply_data( dll->filename, dll->namelen );
1212 else
1213 set_error( STATUS_BUFFER_TOO_SMALL );
1216 else
1217 set_error( STATUS_DLL_NOT_FOUND );
1219 release_object( process );
1223 /* retrieve the process idle event */
1224 DECL_HANDLER(get_process_idle_event)
1226 struct process *process;
1228 reply->event = 0;
1229 if ((process = get_process_from_handle( req->handle, PROCESS_QUERY_INFORMATION )))
1231 if (process->idle_event && process != current->process)
1232 reply->event = alloc_handle( current->process, process->idle_event,
1233 EVENT_ALL_ACCESS, 0 );
1234 release_object( process );
1238 /* make the current process a system process */
1239 DECL_HANDLER(make_process_system)
1241 struct process *process = current->process;
1243 if (!shutdown_event)
1245 if (!(shutdown_event = create_event( NULL, NULL, 0, 1, 0, NULL ))) return;
1246 make_object_static( (struct object *)shutdown_event );
1249 if (!(reply->event = alloc_handle( current->process, shutdown_event, SYNCHRONIZE, 0 )))
1250 return;
1252 if (!process->is_system)
1254 process->is_system = 1;
1255 close_process_desktop( process );
1256 if (!--user_processes && !shutdown_stage && master_socket_timeout != TIMEOUT_INFINITE)
1257 shutdown_timeout = add_timeout_user( master_socket_timeout, server_shutdown_timeout, NULL );