2 * Server-side ptrace support
4 * Copyright (C) 1999 Alexandre Julliard
6 * This library is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU Lesser General Public
8 * License as published by the Free Software Foundation; either
9 * version 2.1 of the License, or (at your option) any later version.
11 * This library is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 * Lesser General Public License for more details.
16 * You should have received a copy of the GNU Lesser General Public
17 * License along with this library; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301, USA
28 #include <sys/types.h>
29 #ifdef HAVE_SYS_PTRACE_H
30 # include <sys/ptrace.h>
32 #ifdef HAVE_SYS_PARAM_H
33 # include <sys/param.h>
35 #ifdef HAVE_SYS_WAIT_H
36 # include <sys/wait.h>
39 # include <sys/ucontext.h>
45 #define WIN32_NO_STATUS
55 #define PTRACE_CONT PT_CONTINUE
57 #ifndef PTRACE_SINGLESTEP
58 #define PTRACE_SINGLESTEP PT_STEP
61 #define PTRACE_ATTACH PT_ATTACH
64 #define PTRACE_DETACH PT_DETACH
66 #ifndef PTRACE_PEEKDATA
67 #define PTRACE_PEEKDATA PT_READ_D
69 #ifndef PTRACE_POKEDATA
70 #define PTRACE_POKEDATA PT_WRITE_D
72 #ifndef PTRACE_PEEKUSER
73 #define PTRACE_PEEKUSER PT_READ_U
75 #ifndef PTRACE_POKEUSER
76 #define PTRACE_POKEUSER PT_WRITE_U
80 #define PTRACE_GETDBREGS PT_GETDBREGS
83 #define PTRACE_SETDBREGS PT_SETDBREGS
86 #ifndef HAVE_SYS_PTRACE_H
93 static inline int ptrace(int req
, ...) { errno
= EPERM
; return -1; /*FAIL*/ }
94 #endif /* HAVE_SYS_PTRACE_H */
96 /* handle a status returned by wait4 */
97 static int handle_child_status( struct thread
*thread
, int pid
, int status
, int want_sig
)
99 if (WIFSTOPPED(status
))
101 int sig
= WSTOPSIG(status
);
102 if (debug_level
&& thread
)
103 fprintf( stderr
, "%04x: *signal* signal=%d\n", thread
->id
, sig
);
106 /* ignore other signals for now */
107 ptrace( PTRACE_CONT
, pid
, (caddr_t
)1, sig
);
111 if (thread
&& (WIFSIGNALED(status
) || WIFEXITED(status
)))
113 thread
->unix_pid
= -1;
114 thread
->unix_tid
= -1;
117 if (WIFSIGNALED(status
))
118 fprintf( stderr
, "%04x: *exited* signal=%d\n",
119 thread
->id
, WTERMSIG(status
) );
121 fprintf( stderr
, "%04x: *exited* status=%d\n",
122 thread
->id
, WEXITSTATUS(status
) );
128 /* wait4 wrapper to handle missing __WALL flag in older kernels */
129 static inline pid_t
wait4_wrapper( pid_t pid
, int *status
, int options
, struct rusage
*usage
)
132 static int wall_flag
= __WALL
;
136 pid_t ret
= wait4( pid
, status
, options
| wall_flag
, usage
);
137 if (ret
!= -1 || !wall_flag
|| errno
!= EINVAL
) return ret
;
141 return wait4( pid
, status
, options
, usage
);
145 /* handle a SIGCHLD signal */
146 void sigchld_callback(void)
152 if (!(pid
= wait4_wrapper( -1, &status
, WUNTRACED
| WNOHANG
, NULL
))) break;
155 struct thread
*thread
= get_thread_from_tid( pid
);
156 if (!thread
) thread
= get_thread_from_pid( pid
);
157 handle_child_status( thread
, pid
, status
, -1 );
163 /* return the Unix pid to use in ptrace calls for a given process */
164 static int get_ptrace_pid( struct thread
*thread
)
166 #ifdef linux /* linux always uses thread id */
167 if (thread
->unix_tid
!= -1) return thread
->unix_tid
;
169 return thread
->unix_pid
;
172 /* return the Unix tid to use in ptrace calls for a given thread */
173 static int get_ptrace_tid( struct thread
*thread
)
175 if (thread
->unix_tid
!= -1) return thread
->unix_tid
;
176 return thread
->unix_pid
;
179 /* wait for a ptraced child to get a certain signal */
180 static int wait4_thread( struct thread
*thread
, int signal
)
187 if ((res
= wait4_wrapper( get_ptrace_pid(thread
), &status
, WUNTRACED
, NULL
)) == -1)
191 if (!watchdog_triggered()) continue;
192 if (debug_level
) fprintf( stderr
, "%04x: *watchdog* wait4 aborted\n", thread
->id
);
194 else if (errno
== ECHILD
) /* must have died */
196 thread
->unix_pid
= -1;
197 thread
->unix_tid
= -1;
199 else perror( "wait4" );
203 res
= handle_child_status( thread
, res
, status
, signal
);
204 if (!res
|| res
== signal
) break;
207 return (thread
->unix_pid
!= -1);
210 /* send a signal to a specific thread */
211 static inline int tkill( int tgid
, int pid
, int sig
)
216 __asm__( "pushl %%ebx\n\t"
221 : "0" (270) /*SYS_tgkill*/, "r" (tgid
), "c" (pid
), "d" (sig
) );
223 __asm__( "pushl %%ebx\n\t"
228 : "0" (238) /*SYS_tkill*/, "r" (pid
), "c" (sig
) );
229 # elif defined(__x86_64__)
230 __asm__( "syscall" : "=a" (ret
)
231 : "0" (200) /*SYS_tkill*/, "D" (pid
), "S" (sig
) );
233 if (ret
>= 0) return ret
;
236 #elif defined(__FreeBSD__) && defined(HAVE_THR_KILL2)
237 return thr_kill2( tgid
, pid
, sig
);
244 /* initialize the process tracing mechanism */
245 void init_tracing_mechanism(void)
247 /* no initialization needed for ptrace */
250 /* initialize the per-process tracing mechanism */
251 void init_process_tracing( struct process
*process
)
253 /* ptrace setup is done on-demand */
256 /* terminate the per-process tracing mechanism */
257 void finish_process_tracing( struct process
*process
)
261 /* send a Unix signal to a specific thread */
262 int send_thread_signal( struct thread
*thread
, int sig
)
266 if (thread
->unix_pid
!= -1)
268 if (thread
->unix_tid
!= -1)
270 ret
= tkill( thread
->unix_pid
, thread
->unix_tid
, sig
);
271 if (ret
== -1 && errno
== ENOSYS
) ret
= kill( thread
->unix_pid
, sig
);
273 else ret
= kill( thread
->unix_pid
, sig
);
275 if (ret
== -1 && errno
== ESRCH
) /* thread got killed */
277 thread
->unix_pid
= -1;
278 thread
->unix_tid
= -1;
281 if (debug_level
&& ret
!= -1)
282 fprintf( stderr
, "%04x: *sent signal* signal=%d\n", thread
->id
, sig
);
286 /* resume a thread after we have used ptrace on it */
287 static void resume_after_ptrace( struct thread
*thread
)
289 if (thread
->unix_pid
== -1) return;
290 if (ptrace( PTRACE_DETACH
, get_ptrace_pid(thread
), (caddr_t
)1, 0 ) == -1)
292 if (errno
== ESRCH
) thread
->unix_pid
= thread
->unix_tid
= -1; /* thread got killed */
296 /* suspend a thread to allow using ptrace on it */
297 /* you must do a resume_after_ptrace when finished with the thread */
298 static int suspend_for_ptrace( struct thread
*thread
)
300 /* can't stop a thread while initialisation is in progress */
301 if (thread
->unix_pid
== -1 || !is_process_init_done(thread
->process
)) goto error
;
303 /* this may fail if the client is already being debugged */
304 if (ptrace( PTRACE_ATTACH
, get_ptrace_pid(thread
), 0, 0 ) == -1)
306 if (errno
== ESRCH
) thread
->unix_pid
= thread
->unix_tid
= -1; /* thread got killed */
309 if (wait4_thread( thread
, SIGSTOP
)) return 1;
310 resume_after_ptrace( thread
);
312 set_error( STATUS_ACCESS_DENIED
);
316 /* read an int from a thread address space */
317 static int read_thread_int( struct thread
*thread
, int *addr
, int *data
)
320 *data
= ptrace( PTRACE_PEEKDATA
, get_ptrace_pid(thread
), (caddr_t
)addr
, 0 );
321 if ( *data
== -1 && errno
)
329 /* write an int to a thread address space */
330 static int write_thread_int( struct thread
*thread
, int *addr
, int data
, unsigned int mask
)
335 if (read_thread_int( thread
, addr
, &res
) == -1) return -1;
336 data
= (data
& mask
) | (res
& ~mask
);
338 if ((res
= ptrace( PTRACE_POKEDATA
, get_ptrace_pid(thread
), (caddr_t
)addr
, data
)) == -1)
343 /* return a thread of the process suitable for ptracing */
344 static struct thread
*get_ptrace_thread( struct process
*process
)
346 struct thread
*thread
;
348 LIST_FOR_EACH_ENTRY( thread
, &process
->thread_list
, struct thread
, proc_entry
)
350 if (thread
->unix_pid
!= -1) return thread
;
352 set_error( STATUS_ACCESS_DENIED
); /* process is dead */
356 /* read data from a process memory space */
357 int read_process_memory( struct process
*process
, client_ptr_t ptr
, data_size_t size
, char *dest
)
359 struct thread
*thread
= get_ptrace_thread( process
);
360 unsigned int first_offset
, last_offset
, len
;
363 if (!thread
) return 0;
365 if ((unsigned long)ptr
!= ptr
)
367 set_error( STATUS_ACCESS_DENIED
);
371 first_offset
= ptr
% sizeof(int);
372 last_offset
= (size
+ first_offset
) % sizeof(int);
373 if (!last_offset
) last_offset
= sizeof(int);
375 addr
= (int *)(unsigned long)(ptr
- first_offset
);
376 len
= (size
+ first_offset
+ sizeof(int) - 1) / sizeof(int);
378 if (suspend_for_ptrace( thread
))
382 if (read_thread_int( thread
, addr
++, &data
) == -1) goto done
;
383 memcpy( dest
, (char *)&data
+ first_offset
, sizeof(int) - first_offset
);
384 dest
+= sizeof(int) - first_offset
;
391 if (read_thread_int( thread
, addr
++, &data
) == -1) goto done
;
392 memcpy( dest
, &data
, sizeof(int) );
397 if (read_thread_int( thread
, addr
++, &data
) == -1) goto done
;
398 memcpy( dest
, (char *)&data
+ first_offset
, last_offset
- first_offset
);
402 resume_after_ptrace( thread
);
407 /* make sure we can write to the whole address range */
408 /* len is the total size (in ints) */
409 static int check_process_write_access( struct thread
*thread
, int *addr
, data_size_t len
)
411 int page
= get_page_size() / sizeof(int);
415 if (write_thread_int( thread
, addr
, 0, 0 ) == -1) return 0;
416 if (len
<= page
) break;
420 return (write_thread_int( thread
, addr
+ len
- 1, 0, 0 ) != -1);
423 /* write data to a process memory space */
424 int write_process_memory( struct process
*process
, client_ptr_t ptr
, data_size_t size
, const char *src
)
426 struct thread
*thread
= get_ptrace_thread( process
);
427 int ret
= 0, data
= 0;
430 unsigned int first_mask
, first_offset
, last_mask
, last_offset
;
432 if (!thread
) return 0;
434 if ((unsigned long)ptr
!= ptr
)
436 set_error( STATUS_ACCESS_DENIED
);
440 /* compute the mask for the first int */
442 first_offset
= ptr
% sizeof(int);
443 memset( &first_mask
, 0, first_offset
);
445 /* compute the mask for the last int */
446 last_offset
= (size
+ first_offset
) % sizeof(int);
447 if (!last_offset
) last_offset
= sizeof(int);
449 memset( &last_mask
, 0xff, last_offset
);
451 addr
= (int *)(unsigned long)(ptr
- first_offset
);
452 len
= (size
+ first_offset
+ sizeof(int) - 1) / sizeof(int);
454 if (suspend_for_ptrace( thread
))
456 if (!check_process_write_access( thread
, addr
, len
))
458 set_error( STATUS_ACCESS_DENIED
);
461 /* first word is special */
464 memcpy( (char *)&data
+ first_offset
, src
, sizeof(int) - first_offset
);
465 src
+= sizeof(int) - first_offset
;
466 if (write_thread_int( thread
, addr
++, data
, first_mask
) == -1) goto done
;
470 else last_mask
&= first_mask
;
474 memcpy( &data
, src
, sizeof(int) );
476 if (write_thread_int( thread
, addr
++, data
, ~0 ) == -1) goto done
;
480 /* last word is special too */
481 memcpy( (char *)&data
+ first_offset
, src
, last_offset
- first_offset
);
482 if (write_thread_int( thread
, addr
, data
, last_mask
) == -1) goto done
;
486 resume_after_ptrace( thread
);
491 /* retrieve an LDT selector entry */
492 void get_selector_entry( struct thread
*thread
, int entry
, unsigned int *base
,
493 unsigned int *limit
, unsigned char *flags
)
495 if (!thread
->process
->ldt_copy
)
497 set_error( STATUS_ACCESS_DENIED
);
502 set_error( STATUS_ACCESS_VIOLATION
);
505 if (suspend_for_ptrace( thread
))
507 unsigned char flags_buf
[4];
508 int *addr
= (int *)(unsigned long)thread
->process
->ldt_copy
+ entry
;
509 if (read_thread_int( thread
, addr
, (int *)base
) == -1) goto done
;
510 if (read_thread_int( thread
, addr
+ 8192, (int *)limit
) == -1) goto done
;
511 addr
= (int *)(unsigned long)thread
->process
->ldt_copy
+ 2*8192 + (entry
>> 2);
512 if (read_thread_int( thread
, addr
, (int *)flags_buf
) == -1) goto done
;
513 *flags
= flags_buf
[entry
& 3];
515 resume_after_ptrace( thread
);
520 #if defined(linux) && (defined(__i386__) || defined(__x86_64__))
522 #ifdef HAVE_SYS_USER_H
523 # include <sys/user.h>
526 /* debug register offset in struct user */
527 #define DR_OFFSET(dr) ((((struct user *)0)->u_debugreg) + (dr))
529 /* retrieve the thread x86 registers */
530 void get_thread_context( struct thread
*thread
, context_t
*context
, unsigned int flags
)
532 int i
, pid
= get_ptrace_tid(thread
);
535 /* all other regs are handled on the client side */
536 assert( flags
== SERVER_CTX_DEBUG_REGISTERS
);
538 if (!suspend_for_ptrace( thread
)) return;
540 for (i
= 0; i
< 8; i
++)
542 if (i
== 4 || i
== 5) continue;
544 data
[i
] = ptrace( PTRACE_PEEKUSER
, pid
, DR_OFFSET(i
), 0 );
545 if ((data
[i
] == -1) && errno
)
551 context
->debug
.i386_regs
.dr0
= data
[0];
552 context
->debug
.i386_regs
.dr1
= data
[1];
553 context
->debug
.i386_regs
.dr2
= data
[2];
554 context
->debug
.i386_regs
.dr3
= data
[3];
555 context
->debug
.i386_regs
.dr6
= data
[6];
556 context
->debug
.i386_regs
.dr7
= data
[7];
557 context
->flags
|= SERVER_CTX_DEBUG_REGISTERS
;
559 resume_after_ptrace( thread
);
562 /* set the thread x86 registers */
563 void set_thread_context( struct thread
*thread
, const context_t
*context
, unsigned int flags
)
565 int pid
= get_ptrace_tid( thread
);
567 /* all other regs are handled on the client side */
568 assert( flags
== SERVER_CTX_DEBUG_REGISTERS
);
570 if (!suspend_for_ptrace( thread
)) return;
572 if (ptrace( PTRACE_POKEUSER
, pid
, DR_OFFSET(0), context
->debug
.i386_regs
.dr0
) == -1) goto error
;
573 if (thread
->context
) thread
->context
->debug
.i386_regs
.dr0
= context
->debug
.i386_regs
.dr0
;
574 if (ptrace( PTRACE_POKEUSER
, pid
, DR_OFFSET(1), context
->debug
.i386_regs
.dr1
) == -1) goto error
;
575 if (thread
->context
) thread
->context
->debug
.i386_regs
.dr1
= context
->debug
.i386_regs
.dr1
;
576 if (ptrace( PTRACE_POKEUSER
, pid
, DR_OFFSET(2), context
->debug
.i386_regs
.dr2
) == -1) goto error
;
577 if (thread
->context
) thread
->context
->debug
.i386_regs
.dr2
= context
->debug
.i386_regs
.dr2
;
578 if (ptrace( PTRACE_POKEUSER
, pid
, DR_OFFSET(3), context
->debug
.i386_regs
.dr3
) == -1) goto error
;
579 if (thread
->context
) thread
->context
->debug
.i386_regs
.dr3
= context
->debug
.i386_regs
.dr3
;
580 if (ptrace( PTRACE_POKEUSER
, pid
, DR_OFFSET(6), context
->debug
.i386_regs
.dr6
) == -1) goto error
;
581 if (thread
->context
) thread
->context
->debug
.i386_regs
.dr6
= context
->debug
.i386_regs
.dr6
;
582 if (ptrace( PTRACE_POKEUSER
, pid
, DR_OFFSET(7), context
->debug
.i386_regs
.dr7
) == -1) goto error
;
583 if (thread
->context
) thread
->context
->debug
.i386_regs
.dr7
= context
->debug
.i386_regs
.dr7
;
584 resume_after_ptrace( thread
);
588 resume_after_ptrace( thread
);
591 #elif defined(__i386__) && defined(PTRACE_GETDBREGS) && defined(PTRACE_SETDBREGS) && \
592 (defined(__FreeBSD__) || defined(__FreeBSD_kernel__) || defined(__OpenBSD__) || defined(__NetBSD__))
594 #include <machine/reg.h>
596 /* retrieve the thread x86 registers */
597 void get_thread_context( struct thread
*thread
, context_t
*context
, unsigned int flags
)
599 int pid
= get_ptrace_tid(thread
);
602 /* all other regs are handled on the client side */
603 assert( flags
== SERVER_CTX_DEBUG_REGISTERS
);
605 if (!suspend_for_ptrace( thread
)) return;
607 if (ptrace( PTRACE_GETDBREGS
, pid
, (caddr_t
) &dbregs
, 0 ) == -1) file_set_error();
611 /* needed for FreeBSD, the structure fields have changed under 5.x */
612 context
->debug
.i386_regs
.dr0
= DBREG_DRX((&dbregs
), 0);
613 context
->debug
.i386_regs
.dr1
= DBREG_DRX((&dbregs
), 1);
614 context
->debug
.i386_regs
.dr2
= DBREG_DRX((&dbregs
), 2);
615 context
->debug
.i386_regs
.dr3
= DBREG_DRX((&dbregs
), 3);
616 context
->debug
.i386_regs
.dr6
= DBREG_DRX((&dbregs
), 6);
617 context
->debug
.i386_regs
.dr7
= DBREG_DRX((&dbregs
), 7);
619 context
->debug
.i386_regs
.dr0
= dbregs
.dr0
;
620 context
->debug
.i386_regs
.dr1
= dbregs
.dr1
;
621 context
->debug
.i386_regs
.dr2
= dbregs
.dr2
;
622 context
->debug
.i386_regs
.dr3
= dbregs
.dr3
;
623 context
->debug
.i386_regs
.dr6
= dbregs
.dr6
;
624 context
->debug
.i386_regs
.dr7
= dbregs
.dr7
;
626 context
->flags
|= SERVER_CTX_DEBUG_REGISTERS
;
628 resume_after_ptrace( thread
);
631 /* set the thread x86 registers */
632 void set_thread_context( struct thread
*thread
, const context_t
*context
, unsigned int flags
)
634 int pid
= get_ptrace_tid(thread
);
637 /* all other regs are handled on the client side */
638 assert( flags
== SERVER_CTX_DEBUG_REGISTERS
);
640 if (!suspend_for_ptrace( thread
)) return;
643 /* needed for FreeBSD, the structure fields have changed under 5.x */
644 DBREG_DRX((&dbregs
), 0) = context
->debug
.i386_regs
.dr0
;
645 DBREG_DRX((&dbregs
), 1) = context
->debug
.i386_regs
.dr1
;
646 DBREG_DRX((&dbregs
), 2) = context
->debug
.i386_regs
.dr2
;
647 DBREG_DRX((&dbregs
), 3) = context
->debug
.i386_regs
.dr3
;
648 DBREG_DRX((&dbregs
), 4) = 0;
649 DBREG_DRX((&dbregs
), 5) = 0;
650 DBREG_DRX((&dbregs
), 6) = context
->debug
.i386_regs
.dr6
;
651 DBREG_DRX((&dbregs
), 7) = context
->debug
.i386_regs
.dr7
;
653 dbregs
.dr0
= context
->debug
.i386_regs
.dr0
;
654 dbregs
.dr1
= context
->debug
.i386_regs
.dr1
;
655 dbregs
.dr2
= context
->debug
.i386_regs
.dr2
;
656 dbregs
.dr3
= context
->debug
.i386_regs
.dr3
;
659 dbregs
.dr6
= context
->debug
.i386_regs
.dr6
;
660 dbregs
.dr7
= context
->debug
.i386_regs
.dr7
;
662 if (ptrace( PTRACE_SETDBREGS
, pid
, (caddr_t
) &dbregs
, 0 ) == -1) file_set_error();
663 else if (thread
->context
)
664 thread
->context
->debug
.i386_regs
= context
->debug
.i386_regs
; /* update the cached values */
665 resume_after_ptrace( thread
);
668 #else /* linux || __FreeBSD__ */
670 /* retrieve the thread x86 registers */
671 void get_thread_context( struct thread
*thread
, context_t
*context
, unsigned int flags
)
675 /* set the thread x86 debug registers */
676 void set_thread_context( struct thread
*thread
, const context_t
*context
, unsigned int flags
)
680 #endif /* linux || __FreeBSD__ */
682 #endif /* USE_PTRACE */