blob: 9267b184a5661428048c82472832fcfd80b2f1d0 [file] [log] [blame]
Alex Light53cb16b2014-06-12 11:26:29 -07001/*
2 * Copyright (C) 2014 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16#include "patchoat.h"
17
Alex Klyubin3856af02017-10-23 13:53:13 -070018#include <openssl/sha.h>
Alex Light53cb16b2014-06-12 11:26:29 -070019#include <stdio.h>
20#include <stdlib.h>
Alex Lighta59dd802014-07-02 16:28:08 -070021#include <sys/file.h>
Alex Light53cb16b2014-06-12 11:26:29 -070022#include <sys/stat.h>
Alex Lighta59dd802014-07-02 16:28:08 -070023#include <unistd.h>
Alex Light53cb16b2014-06-12 11:26:29 -070024
25#include <string>
26#include <vector>
27
Chris Morin754b7572018-01-19 18:04:46 -080028#include "android-base/file.h"
Andreas Gampe46ee31b2016-12-14 10:11:49 -080029#include "android-base/stringprintf.h"
Andreas Gampe9186ced2016-12-12 14:28:21 -080030#include "android-base/strings.h"
31
Mathieu Chartierc7853442015-03-27 14:35:38 -070032#include "art_field-inl.h"
Mathieu Chartiere401d142015-04-22 13:56:20 -070033#include "art_method-inl.h"
Ian Rogersc7dd2952014-10-21 23:31:19 -070034#include "base/dumpable.h"
Chris Morin754b7572018-01-19 18:04:46 -080035#include "base/file_utils.h"
Andreas Gampe170331f2017-12-07 18:41:03 -080036#include "base/logging.h" // For InitLogging.
Andreas Gampeb8cc1752017-04-26 21:28:50 -070037#include "base/memory_tool.h"
Alex Lighta59dd802014-07-02 16:28:08 -070038#include "base/scoped_flock.h"
Alex Light53cb16b2014-06-12 11:26:29 -070039#include "base/stringpiece.h"
Ian Rogersd4c4d952014-10-16 20:31:53 -070040#include "base/unix_file/fd_file.h"
David Brazdil7b49e6c2016-09-01 11:06:18 +010041#include "base/unix_file/random_access_file_utils.h"
Alex Light53cb16b2014-06-12 11:26:29 -070042#include "elf_file.h"
Tong Shen62d1ca32014-09-03 17:24:56 -070043#include "elf_file_impl.h"
Andreas Gampe8cf9cb32017-07-19 09:28:38 -070044#include "elf_utils.h"
Ian Rogerse63db272014-07-15 15:36:11 -070045#include "gc/space/image_space.h"
Mathieu Chartier4a26f172016-01-26 14:26:18 -080046#include "image-inl.h"
Andreas Gampeb2d18fa2017-06-06 20:46:10 -070047#include "intern_table.h"
Alex Klyubin3856af02017-10-23 13:53:13 -070048#include "leb128.h"
Christina Wadsworthbf44e0e2016-08-18 10:37:42 -070049#include "mirror/dex_cache.h"
Neil Fuller0e844392016-09-08 13:43:31 +010050#include "mirror/executable.h"
Andreas Gampe8cf9cb32017-07-19 09:28:38 -070051#include "mirror/method.h"
Alex Light53cb16b2014-06-12 11:26:29 -070052#include "mirror/object-inl.h"
Andreas Gampec6ea7d02017-02-01 16:46:28 -080053#include "mirror/object-refvisitor-inl.h"
Alex Light53cb16b2014-06-12 11:26:29 -070054#include "mirror/reference.h"
55#include "noop_compiler_callbacks.h"
56#include "offsets.h"
57#include "os.h"
58#include "runtime.h"
Mathieu Chartier0795f232016-09-27 18:43:30 -070059#include "scoped_thread_state_change-inl.h"
Alex Light53cb16b2014-06-12 11:26:29 -070060#include "thread.h"
61#include "utils.h"
62
63namespace art {
64
Alex Klyubin3856af02017-10-23 13:53:13 -070065using android::base::StringPrintf;
66
Alex Light0eb76d22015-08-11 18:03:47 -070067static const OatHeader* GetOatHeader(const ElfFile* elf_file) {
68 uint64_t off = 0;
69 if (!elf_file->GetSectionOffsetAndSize(".rodata", &off, nullptr)) {
70 return nullptr;
71 }
72
73 OatHeader* oat_header = reinterpret_cast<OatHeader*>(elf_file->Begin() + off);
74 return oat_header;
75}
76
Richard Uhler4bc11d02017-02-01 09:53:54 +000077static File* CreateOrOpen(const char* name) {
Jeff Haodcdc85b2015-12-04 14:06:18 -080078 if (OS::FileExists(name)) {
Jeff Haodcdc85b2015-12-04 14:06:18 -080079 return OS::OpenFileReadWrite(name);
80 } else {
Jeff Haodcdc85b2015-12-04 14:06:18 -080081 std::unique_ptr<File> f(OS::CreateEmptyFile(name));
82 if (f.get() != nullptr) {
83 if (fchmod(f->Fd(), 0644) != 0) {
84 PLOG(ERROR) << "Unable to make " << name << " world readable";
Dimitry Ivanov7a1c0142016-03-17 15:59:38 -070085 unlink(name);
Jeff Haodcdc85b2015-12-04 14:06:18 -080086 return nullptr;
87 }
88 }
89 return f.release();
90 }
91}
92
93// Either try to close the file (close=true), or erase it.
94static bool FinishFile(File* file, bool close) {
95 if (close) {
96 if (file->FlushCloseOrErase() != 0) {
97 PLOG(ERROR) << "Failed to flush and close file.";
98 return false;
99 }
100 return true;
101 } else {
102 file->Erase();
103 return false;
104 }
105}
106
David Brazdil7b49e6c2016-09-01 11:06:18 +0100107static bool SymlinkFile(const std::string& input_filename, const std::string& output_filename) {
108 if (input_filename == output_filename) {
109 // Input and output are the same, nothing to do.
110 return true;
111 }
112
113 // Unlink the original filename, since we are overwriting it.
114 unlink(output_filename.c_str());
115
116 // Create a symlink from the source file to the target path.
117 if (symlink(input_filename.c_str(), output_filename.c_str()) < 0) {
118 PLOG(ERROR) << "Failed to create symlink " << output_filename << " -> " << input_filename;
119 return false;
120 }
121
122 if (kIsDebugBuild) {
123 LOG(INFO) << "Created symlink " << output_filename << " -> " << input_filename;
124 }
125
126 return true;
127}
128
Alex Klyubin3856af02017-10-23 13:53:13 -0700129bool PatchOat::GeneratePatch(
130 const MemMap& original,
131 const MemMap& relocated,
132 std::vector<uint8_t>* output,
133 std::string* error_msg) {
134 // FORMAT of the patch (aka image relocation) file:
135 // * SHA-256 digest (32 bytes) of original/unrelocated file (e.g., the one from /system)
136 // * List of monotonically increasing offsets (max value defined by uint32_t) at which relocations
137 // occur.
138 // Each element is represented as the delta from the previous offset in the list (first element
139 // is a delta from 0). Each delta is encoded using unsigned LEB128: little-endian
140 // variable-length 7 bits per byte encoding, where all bytes have the highest bit (0x80) set
141 // except for the final byte which does not have that bit set. For example, 0x3f is offset 0x3f,
142 // whereas 0xbf 0x05 is offset (0x3f & 0x7f) | (0x5 << 7) which is 0x2bf. Most deltas end up
143 // being encoding using just one byte, achieving ~4x decrease in relocation file size compared
144 // to the encoding where offsets are stored verbatim, as uint32_t.
145
146 size_t original_size = original.Size();
147 size_t relocated_size = relocated.Size();
148 if (original_size != relocated_size) {
149 *error_msg =
150 StringPrintf(
151 "Original and relocated image sizes differ: %zu vs %zu", original_size, relocated_size);
152 return false;
153 }
154 if ((original_size % 4) != 0) {
155 *error_msg = StringPrintf("Image size not multiple of 4: %zu", original_size);
156 return false;
157 }
158 if (original_size > UINT32_MAX) {
159 *error_msg = StringPrintf("Image too large: %zu" , original_size);
160 return false;
161 }
162
163 const ImageHeader& relocated_header =
164 *reinterpret_cast<const ImageHeader*>(relocated.Begin());
165 // Offsets are supposed to differ between original and relocated by this value
166 off_t expected_diff = relocated_header.GetPatchDelta();
167 if (expected_diff == 0) {
168 // Can't identify offsets which are supposed to differ due to relocation
169 *error_msg = "Relocation delta is 0";
170 return false;
171 }
172
173 // Output the SHA-256 digest of the original
174 output->resize(SHA256_DIGEST_LENGTH);
175 const uint8_t* original_bytes = original.Begin();
176 SHA256(original_bytes, original_size, output->data());
177
178 // Output the list of offsets at which the original and patched images differ
179 size_t last_diff_offset = 0;
180 size_t diff_offset_count = 0;
181 const uint8_t* relocated_bytes = relocated.Begin();
182 for (size_t offset = 0; offset < original_size; offset += 4) {
183 uint32_t original_value = *reinterpret_cast<const uint32_t*>(original_bytes + offset);
184 uint32_t relocated_value = *reinterpret_cast<const uint32_t*>(relocated_bytes + offset);
185 off_t diff = relocated_value - original_value;
186 if (diff == 0) {
187 continue;
188 } else if (diff != expected_diff) {
189 *error_msg =
190 StringPrintf(
191 "Unexpected diff at offset %zu. Expected: %jd, but was: %jd",
192 offset,
193 (intmax_t) expected_diff,
194 (intmax_t) diff);
195 return false;
196 }
197
198 uint32_t offset_diff = offset - last_diff_offset;
199 last_diff_offset = offset;
200 diff_offset_count++;
201
202 EncodeUnsignedLeb128(output, offset_diff);
203 }
204
205 if (diff_offset_count == 0) {
206 *error_msg = "Original and patched images are identical";
207 return false;
208 }
209
210 return true;
211}
212
213static bool WriteRelFile(
214 const MemMap& original,
215 const MemMap& relocated,
216 const std::string& rel_filename,
217 std::string* error_msg) {
218 std::vector<uint8_t> output;
219 if (!PatchOat::GeneratePatch(original, relocated, &output, error_msg)) {
220 return false;
221 }
222
223 std::unique_ptr<File> rel_file(OS::CreateEmptyFileWriteOnly(rel_filename.c_str()));
224 if (rel_file.get() == nullptr) {
225 *error_msg = StringPrintf("Failed to create/open output file %s", rel_filename.c_str());
226 return false;
227 }
228 if (!rel_file->WriteFully(output.data(), output.size())) {
229 *error_msg = StringPrintf("Failed to write to %s", rel_filename.c_str());
230 return false;
231 }
232 if (rel_file->FlushCloseOrErase() != 0) {
233 *error_msg = StringPrintf("Failed to flush and close %s", rel_filename.c_str());
234 return false;
235 }
236
237 return true;
238}
239
Chris Morin754b7572018-01-19 18:04:46 -0800240static bool CheckImageIdenticalToOriginalExceptForRelocation(
241 const std::string& relocated_filename,
242 const std::string& original_filename,
243 std::string* error_msg) {
244 *error_msg = "";
245 std::string rel_filename = original_filename + ".rel";
246 std::unique_ptr<File> rel_file(OS::OpenFileForReading(rel_filename.c_str()));
247 if (rel_file.get() == nullptr) {
248 *error_msg = StringPrintf("Failed to open image relocation file %s", rel_filename.c_str());
249 return false;
250 }
251 int64_t rel_size = rel_file->GetLength();
252 if (rel_size < 0) {
253 *error_msg = StringPrintf("Error while getting size of image relocation file %s",
254 rel_filename.c_str());
255 return false;
256 }
257 std::unique_ptr<uint8_t[]> rel(new uint8_t[rel_size]);
258 if (!rel_file->ReadFully(rel.get(), rel_size)) {
259 *error_msg = StringPrintf("Failed to read image relocation file %s", rel_filename.c_str());
260 return false;
261 }
262
263 std::unique_ptr<File> image_file(OS::OpenFileForReading(relocated_filename.c_str()));
264 if (image_file.get() == nullptr) {
265 *error_msg = StringPrintf("Unable to open relocated image file %s",
266 relocated_filename.c_str());
267 return false;
268 }
269
270 int64_t image_size = image_file->GetLength();
271 if (image_size < 0) {
272 *error_msg = StringPrintf("Error while getting size of relocated image file %s",
273 relocated_filename.c_str());
274 return false;
275 }
276 if ((image_size % 4) != 0) {
277 *error_msg =
278 StringPrintf(
Orion Hodsonb348b3b2018-01-26 09:02:49 +0000279 "Relocated image file %s size not multiple of 4: %" PRId64,
Chris Morin754b7572018-01-19 18:04:46 -0800280 relocated_filename.c_str(), image_size);
281 return false;
282 }
Orion Hodsonb348b3b2018-01-26 09:02:49 +0000283 if (image_size > std::numeric_limits<uint32_t>::max()) {
Chris Morin754b7572018-01-19 18:04:46 -0800284 *error_msg =
285 StringPrintf(
Orion Hodsonb348b3b2018-01-26 09:02:49 +0000286 "Relocated image file %s too large: %" PRId64, relocated_filename.c_str(), image_size);
Chris Morin754b7572018-01-19 18:04:46 -0800287 return false;
288 }
289
290 std::unique_ptr<uint8_t[]> image(new uint8_t[image_size]);
291 if (!image_file->ReadFully(image.get(), image_size)) {
292 *error_msg = StringPrintf("Failed to read relocated image file %s", relocated_filename.c_str());
293 return false;
294 }
295
296 const uint8_t* original_image_digest = rel.get();
297 if (rel_size < SHA256_DIGEST_LENGTH) {
298 *error_msg = StringPrintf("Malformed image relocation file %s: too short",
299 rel_filename.c_str());
300 return false;
301 }
302
303 const ImageHeader& image_header = *reinterpret_cast<const ImageHeader*>(image.get());
304 off_t expected_diff = image_header.GetPatchDelta();
305
306 if (expected_diff == 0) {
307 *error_msg = StringPrintf("Unsuported patch delta of zero in %s",
308 relocated_filename.c_str());
309 return false;
310 }
311
312 // Relocated image is expected to differ from the original due to relocation.
313 // Unrelocate the image in memory to compensate.
314 uint8_t* image_start = image.get();
315 const uint8_t* rel_end = &rel[rel_size];
316 const uint8_t* rel_ptr = &rel[SHA256_DIGEST_LENGTH];
317 // The remaining .rel file consists of offsets at which relocation should've occurred.
318 // For each offset, we "unrelocate" the image by subtracting the expected relocation
319 // diff value (as specified in the image header).
320 //
321 // Each offset is encoded as a delta/diff relative to the previous offset. With the
322 // very first offset being encoded relative to offset 0.
323 // Deltas are encoded using little-endian 7 bits per byte encoding, with all bytes except
324 // the last one having the highest bit set.
325 uint32_t offset = 0;
326 while (rel_ptr != rel_end) {
327 uint32_t offset_delta = 0;
328 if (DecodeUnsignedLeb128Checked(&rel_ptr, rel_end, &offset_delta)) {
329 offset += offset_delta;
330 uint32_t *image_value = reinterpret_cast<uint32_t*>(image_start + offset);
331 *image_value -= expected_diff;
332 } else {
333 *error_msg =
334 StringPrintf(
335 "Malformed image relocation file %s: "
336 "last byte has it's most significant bit set",
337 rel_filename.c_str());
338 return false;
339 }
340 }
341
342 // Image in memory is now supposed to be identical to the original. We
343 // confirm this by comparing the digest of the in-memory image to the expected
344 // digest from relocation file.
345 uint8_t image_digest[SHA256_DIGEST_LENGTH];
346 SHA256(image.get(), image_size, image_digest);
347 if (memcmp(image_digest, original_image_digest, SHA256_DIGEST_LENGTH) != 0) {
348 *error_msg =
349 StringPrintf(
350 "Relocated image %s does not match the original %s after unrelocation",
351 relocated_filename.c_str(),
352 original_filename.c_str());
353 return false;
354 }
355
356 // Relocated image is identical to the original, once relocations are taken into account
357 return true;
358}
359
Chris Morinae6832f2018-02-09 19:12:35 -0800360static bool VerifySymlink(const std::string& intended_target, const std::string& link_name) {
361 std::string actual_target;
362 if (!android::base::Readlink(link_name, &actual_target)) {
363 PLOG(ERROR) << "Readlink on " << link_name << " failed.";
364 return false;
365 }
366 return actual_target == intended_target;
367}
368
369static bool VerifyVdexAndOatSymlinks(const std::string& input_image_filename,
370 const std::string& output_image_filename) {
371 return VerifySymlink(ImageHeader::GetVdexLocationFromImageLocation(input_image_filename),
372 ImageHeader::GetVdexLocationFromImageLocation(output_image_filename))
373 && VerifySymlink(ImageHeader::GetOatLocationFromImageLocation(input_image_filename),
374 ImageHeader::GetOatLocationFromImageLocation(output_image_filename));
375}
376
377bool PatchOat::CreateVdexAndOatSymlinks(const std::string& input_image_filename,
378 const std::string& output_image_filename) {
379 std::string input_vdex_filename =
380 ImageHeader::GetVdexLocationFromImageLocation(input_image_filename);
381 std::string input_oat_filename =
382 ImageHeader::GetOatLocationFromImageLocation(input_image_filename);
383
384 std::unique_ptr<File> input_oat_file(OS::OpenFileForReading(input_oat_filename.c_str()));
385 if (input_oat_file.get() == nullptr) {
386 LOG(ERROR) << "Unable to open input oat file at " << input_oat_filename;
387 return false;
388 }
389 std::string error_msg;
390 std::unique_ptr<ElfFile> elf(ElfFile::Open(input_oat_file.get(),
391 PROT_READ | PROT_WRITE,
392 MAP_PRIVATE,
393 &error_msg));
394 if (elf.get() == nullptr) {
395 LOG(ERROR) << "Unable to open oat file " << input_oat_filename << " : " << error_msg;
396 return false;
397 }
398
399 MaybePic is_oat_pic = IsOatPic(elf.get());
400 if (is_oat_pic >= ERROR_FIRST) {
401 // Error logged by IsOatPic
402 return false;
403 } else if (is_oat_pic == NOT_PIC) {
404 LOG(ERROR) << "patchoat cannot be used on non-PIC oat file: " << input_oat_filename;
405 return false;
406 }
407
408 CHECK(is_oat_pic == PIC);
409
410 std::string output_vdex_filename =
411 ImageHeader::GetVdexLocationFromImageLocation(output_image_filename);
412 std::string output_oat_filename =
413 ImageHeader::GetOatLocationFromImageLocation(output_image_filename);
414
415 return SymlinkFile(input_oat_filename, output_oat_filename) &&
416 SymlinkFile(input_vdex_filename, output_vdex_filename);
417}
418
Andreas Gampe6eb6a392016-02-10 20:18:37 -0800419bool PatchOat::Patch(const std::string& image_location,
420 off_t delta,
Alex Klyubin3856af02017-10-23 13:53:13 -0700421 const std::string& output_image_directory,
422 const std::string& output_image_relocation_directory,
Andreas Gampe6eb6a392016-02-10 20:18:37 -0800423 InstructionSet isa,
424 TimingLogger* timings) {
Alex Klyubin3856af02017-10-23 13:53:13 -0700425 bool output_image = !output_image_directory.empty();
426 bool output_image_relocation = !output_image_relocation_directory.empty();
427 if ((!output_image) && (!output_image_relocation)) {
428 // Nothing to do
429 return true;
430 }
431 if ((output_image_relocation) && (delta == 0)) {
432 LOG(ERROR) << "Cannot output image relocation information when requested relocation delta is 0";
433 return false;
434 }
435
Alex Light53cb16b2014-06-12 11:26:29 -0700436 CHECK(Runtime::Current() == nullptr);
Alex Light53cb16b2014-06-12 11:26:29 -0700437 CHECK(!image_location.empty()) << "image file must have a filename.";
438
Alex Lighteefbe392014-07-08 09:53:18 -0700439 TimingLogger::ScopedTiming t("Runtime Setup", timings);
Alex Light53cb16b2014-06-12 11:26:29 -0700440
Vladimir Marko33bff252017-11-01 14:35:42 +0000441 CHECK_NE(isa, InstructionSet::kNone);
Alex Light53cb16b2014-06-12 11:26:29 -0700442 const char* isa_name = GetInstructionSetString(isa);
Igor Murashkin46774762014-10-22 11:37:02 -0700443
Alex Light53cb16b2014-06-12 11:26:29 -0700444 // Set up the runtime
Ian Rogerse63db272014-07-15 15:36:11 -0700445 RuntimeOptions options;
Alex Light53cb16b2014-06-12 11:26:29 -0700446 NoopCompilerCallbacks callbacks;
447 options.push_back(std::make_pair("compilercallbacks", &callbacks));
448 std::string img = "-Ximage:" + image_location;
449 options.push_back(std::make_pair(img.c_str(), nullptr));
450 options.push_back(std::make_pair("imageinstructionset", reinterpret_cast<const void*>(isa_name)));
Calin Juravle01aaf6e2015-06-19 22:05:39 +0100451 options.push_back(std::make_pair("-Xno-sig-chain", nullptr));
Alex Light53cb16b2014-06-12 11:26:29 -0700452 if (!Runtime::Create(options, false)) {
453 LOG(ERROR) << "Unable to initialize runtime";
454 return false;
455 }
Andreas Gampeb8cc1752017-04-26 21:28:50 -0700456 std::unique_ptr<Runtime> runtime(Runtime::Current());
457
Alex Light53cb16b2014-06-12 11:26:29 -0700458 // Runtime::Create acquired the mutator_lock_ that is normally given away when we Runtime::Start,
459 // give it away now and then switch to a more manageable ScopedObjectAccess.
460 Thread::Current()->TransitionFromRunnableToSuspended(kNative);
461 ScopedObjectAccess soa(Thread::Current());
462
Jeff Haodcdc85b2015-12-04 14:06:18 -0800463 std::vector<gc::space::ImageSpace*> spaces = Runtime::Current()->GetHeap()->GetBootImageSpaces();
Jeff Haodcdc85b2015-12-04 14:06:18 -0800464 std::map<gc::space::ImageSpace*, std::unique_ptr<MemMap>> space_to_memmap_map;
Alex Light53cb16b2014-06-12 11:26:29 -0700465
Jeff Haodcdc85b2015-12-04 14:06:18 -0800466 for (size_t i = 0; i < spaces.size(); ++i) {
Chris Morinae6832f2018-02-09 19:12:35 -0800467 t.NewTiming("Image Patching setup");
Jeff Haodcdc85b2015-12-04 14:06:18 -0800468 gc::space::ImageSpace* space = spaces[i];
469 std::string input_image_filename = space->GetImageFilename();
470 std::unique_ptr<File> input_image(OS::OpenFileForReading(input_image_filename.c_str()));
471 if (input_image.get() == nullptr) {
472 LOG(ERROR) << "Unable to open input image file at " << input_image_filename;
Igor Murashkin46774762014-10-22 11:37:02 -0700473 return false;
474 }
Jeff Haodcdc85b2015-12-04 14:06:18 -0800475
476 int64_t image_len = input_image->GetLength();
477 if (image_len < 0) {
478 LOG(ERROR) << "Error while getting image length";
479 return false;
480 }
481 ImageHeader image_header;
482 if (sizeof(image_header) != input_image->Read(reinterpret_cast<char*>(&image_header),
483 sizeof(image_header), 0)) {
484 LOG(ERROR) << "Unable to read image header from image file " << input_image->GetPath();
485 }
486
487 /*bool is_image_pic = */IsImagePic(image_header, input_image->GetPath());
488 // Nothing special to do right now since the image always needs to get patched.
489 // Perhaps in some far-off future we may have images with relative addresses that are true-PIC.
490
491 // Create the map where we will write the image patches to.
492 std::string error_msg;
493 std::unique_ptr<MemMap> image(MemMap::MapFile(image_len,
494 PROT_READ | PROT_WRITE,
495 MAP_PRIVATE,
496 input_image->Fd(),
497 0,
498 /*low_4gb*/false,
499 input_image->GetPath().c_str(),
500 &error_msg));
501 if (image.get() == nullptr) {
502 LOG(ERROR) << "Unable to map image file " << input_image->GetPath() << " : " << error_msg;
503 return false;
504 }
Chris Morinae6832f2018-02-09 19:12:35 -0800505
506
Jeff Haodcdc85b2015-12-04 14:06:18 -0800507 space_to_memmap_map.emplace(space, std::move(image));
Chris Morinae6832f2018-02-09 19:12:35 -0800508 PatchOat p = PatchOat(isa,
509 space_to_memmap_map.at(space).get(),
510 space->GetLiveBitmap(),
511 space->GetMemMap(),
512 delta,
513 &space_to_memmap_map,
514 timings);
Jeff Haodcdc85b2015-12-04 14:06:18 -0800515
Richard Uhler4bc11d02017-02-01 09:53:54 +0000516 t.NewTiming("Patching image");
Jeff Haodcdc85b2015-12-04 14:06:18 -0800517 if (!p.PatchImage(i == 0)) {
518 LOG(ERROR) << "Failed to patch image file " << input_image_filename;
519 return false;
520 }
Alex Light53cb16b2014-06-12 11:26:29 -0700521
Alex Klyubin3856af02017-10-23 13:53:13 -0700522 // Write the patched image spaces.
Chris Morinae6832f2018-02-09 19:12:35 -0800523 if (output_image) {
524 std::string output_image_filename;
525 if (!GetDalvikCacheFilename(space->GetImageLocation().c_str(),
526 output_image_directory.c_str(),
527 &output_image_filename,
528 &error_msg)) {
529 LOG(ERROR) << "Failed to find relocated image file name: " << error_msg;
530 return false;
531 }
532
533 if (!CreateVdexAndOatSymlinks(input_image_filename, output_image_filename))
534 return false;
Jeff Haodcdc85b2015-12-04 14:06:18 -0800535
Alex Klyubin3856af02017-10-23 13:53:13 -0700536 t.NewTiming("Writing image");
Alex Klyubin3856af02017-10-23 13:53:13 -0700537 std::unique_ptr<File> output_image_file(CreateOrOpen(output_image_filename.c_str()));
538 if (output_image_file.get() == nullptr) {
539 LOG(ERROR) << "Failed to open output image file at " << output_image_filename;
540 return false;
541 }
542
Alex Klyubin3856af02017-10-23 13:53:13 -0700543 bool success = p.WriteImage(output_image_file.get());
544 success = FinishFile(output_image_file.get(), success);
545 if (!success) {
546 return false;
547 }
Jeff Haodcdc85b2015-12-04 14:06:18 -0800548 }
549
Chris Morinae6832f2018-02-09 19:12:35 -0800550 if (output_image_relocation) {
Alex Klyubin3856af02017-10-23 13:53:13 -0700551 t.NewTiming("Writing image relocation");
552 std::string original_image_filename(space->GetImageLocation() + ".rel");
553 std::string image_relocation_filename =
554 output_image_relocation_directory
555 + (android::base::StartsWith(original_image_filename, "/") ? "" : "/")
556 + original_image_filename.substr(original_image_filename.find_last_of("/"));
Chris Morinae6832f2018-02-09 19:12:35 -0800557 int64_t input_image_size = input_image->GetLength();
Alex Klyubin3856af02017-10-23 13:53:13 -0700558 if (input_image_size < 0) {
559 LOG(ERROR) << "Error while getting input image size";
560 return false;
561 }
Alex Klyubin3856af02017-10-23 13:53:13 -0700562 std::unique_ptr<MemMap> original(MemMap::MapFile(input_image_size,
563 PROT_READ,
564 MAP_PRIVATE,
Chris Morinae6832f2018-02-09 19:12:35 -0800565 input_image->Fd(),
Alex Klyubin3856af02017-10-23 13:53:13 -0700566 0,
567 /*low_4gb*/false,
Chris Morinae6832f2018-02-09 19:12:35 -0800568 input_image->GetPath().c_str(),
Alex Klyubin3856af02017-10-23 13:53:13 -0700569 &error_msg));
570 if (original.get() == nullptr) {
Chris Morinae6832f2018-02-09 19:12:35 -0800571 LOG(ERROR) << "Unable to map image file " << input_image->GetPath() << " : " << error_msg;
Alex Klyubin3856af02017-10-23 13:53:13 -0700572 return false;
573 }
574
Alex Klyubin3856af02017-10-23 13:53:13 -0700575 const MemMap* relocated = p.image_;
576
577 if (!WriteRelFile(*original, *relocated, image_relocation_filename, &error_msg)) {
578 LOG(ERROR) << "Failed to create image relocation file " << image_relocation_filename
579 << ": " << error_msg;
580 return false;
581 }
Jeff Haodcdc85b2015-12-04 14:06:18 -0800582 }
Alex Light53cb16b2014-06-12 11:26:29 -0700583 }
Andreas Gampeb8cc1752017-04-26 21:28:50 -0700584
585 if (!kIsDebugBuild && !(RUNNING_ON_MEMORY_TOOL && kMemoryToolDetectsLeaks)) {
586 // We want to just exit on non-debug builds, not bringing the runtime down
587 // in an orderly fashion. So release the following fields.
588 runtime.release();
589 }
590
Alex Light53cb16b2014-06-12 11:26:29 -0700591 return true;
592}
593
Chris Morin754b7572018-01-19 18:04:46 -0800594bool PatchOat::Verify(const std::string& image_location,
595 const std::string& output_image_directory,
596 InstructionSet isa,
597 TimingLogger* timings) {
598 if (image_location.empty()) {
599 LOG(ERROR) << "Original image file not provided";
600 return false;
601 }
602 if (output_image_directory.empty()) {
603 LOG(ERROR) << "Relocated image directory not provided";
604 return false;
605 }
606
607 TimingLogger::ScopedTiming t("Runtime Setup", timings);
608
609 CHECK_NE(isa, InstructionSet::kNone);
610 const char* isa_name = GetInstructionSetString(isa);
611
612 // Set up the runtime
613 RuntimeOptions options;
614 NoopCompilerCallbacks callbacks;
615 options.push_back(std::make_pair("compilercallbacks", &callbacks));
616 std::string img = "-Ximage:" + image_location;
617 options.push_back(std::make_pair(img.c_str(), nullptr));
618 options.push_back(std::make_pair("imageinstructionset", reinterpret_cast<const void*>(isa_name)));
619 options.push_back(std::make_pair("-Xno-sig-chain", nullptr));
620 if (!Runtime::Create(options, false)) {
621 LOG(ERROR) << "Unable to initialize runtime";
622 return false;
623 }
624 std::unique_ptr<Runtime> runtime(Runtime::Current());
625
626 // Runtime::Create acquired the mutator_lock_ that is normally given away when we Runtime::Start,
627 // give it away now and then switch to a more manageable ScopedObjectAccess.
628 Thread::Current()->TransitionFromRunnableToSuspended(kNative);
629 ScopedObjectAccess soa(Thread::Current());
630
631 t.NewTiming("Image Verification setup");
632 std::vector<gc::space::ImageSpace*> spaces = Runtime::Current()->GetHeap()->GetBootImageSpaces();
633
634 // TODO: Check that no other .rel files exist in the original dir
635
636 bool success = true;
637 std::string image_location_dir = android::base::Dirname(image_location);
638 for (size_t i = 0; i < spaces.size(); ++i) {
639 gc::space::ImageSpace* space = spaces[i];
Chris Morin754b7572018-01-19 18:04:46 -0800640
641 std::string relocated_image_filename;
642 std::string error_msg;
Chris Morinae6832f2018-02-09 19:12:35 -0800643 if (!GetDalvikCacheFilename(space->GetImageLocation().c_str(),
Chris Morin754b7572018-01-19 18:04:46 -0800644 output_image_directory.c_str(), &relocated_image_filename, &error_msg)) {
645 LOG(ERROR) << "Failed to find relocated image file name: " << error_msg;
646 success = false;
647 break;
648 }
649 // location: /system/framework/boot.art
650 // isa: arm64
651 // basename: boot.art
652 // original: /system/framework/arm64/boot.art
653 // relocation: /system/framework/arm64/boot.art.rel
Chris Morinae6832f2018-02-09 19:12:35 -0800654 std::string original_image_filename =
655 GetSystemImageFilename(space->GetImageLocation().c_str(), isa);
Chris Morin754b7572018-01-19 18:04:46 -0800656
657 if (!CheckImageIdenticalToOriginalExceptForRelocation(
658 relocated_image_filename, original_image_filename, &error_msg)) {
659 LOG(ERROR) << error_msg;
660 success = false;
661 break;
662 }
Chris Morinae6832f2018-02-09 19:12:35 -0800663
664 if (!VerifyVdexAndOatSymlinks(original_image_filename, relocated_image_filename)) {
665 LOG(ERROR) << "Verification of vdex and oat symlinks for "
666 << space->GetImageLocation() << " failed.";
667 success = false;
668 break;
669 }
Chris Morin754b7572018-01-19 18:04:46 -0800670 }
671
672 if (!kIsDebugBuild && !(RUNNING_ON_MEMORY_TOOL && kMemoryToolDetectsLeaks)) {
673 // We want to just exit on non-debug builds, not bringing the runtime down
674 // in an orderly fashion. So release the following fields.
675 runtime.release();
676 }
677
678 return success;
679}
680
Alex Light53cb16b2014-06-12 11:26:29 -0700681bool PatchOat::WriteImage(File* out) {
Alex Lighteefbe392014-07-08 09:53:18 -0700682 TimingLogger::ScopedTiming t("Writing image File", timings_);
Alex Lighta59dd802014-07-02 16:28:08 -0700683 std::string error_msg;
684
Narayan Kamatha3d27eb2017-05-11 13:50:59 +0100685 // No error checking here, this is best effort. The locking may or may not
686 // succeed and we don't really care either way.
687 ScopedFlock img_flock = LockedFile::DupOf(out->Fd(), out->GetPath(),
688 true /* read_only_mode */, &error_msg);
Alex Lighta59dd802014-07-02 16:28:08 -0700689
Alex Light53cb16b2014-06-12 11:26:29 -0700690 CHECK(image_ != nullptr);
691 CHECK(out != nullptr);
692 size_t expect = image_->Size();
693 if (out->WriteFully(reinterpret_cast<char*>(image_->Begin()), expect) &&
694 out->SetLength(expect) == 0) {
695 return true;
696 } else {
697 LOG(ERROR) << "Writing to image file " << out->GetPath() << " failed.";
698 return false;
699 }
700}
701
Igor Murashkin46774762014-10-22 11:37:02 -0700702bool PatchOat::IsImagePic(const ImageHeader& image_header, const std::string& image_path) {
703 if (!image_header.CompilePic()) {
704 if (kIsDebugBuild) {
705 LOG(INFO) << "image at location " << image_path << " was *not* compiled pic";
706 }
707 return false;
708 }
709
710 if (kIsDebugBuild) {
711 LOG(INFO) << "image at location " << image_path << " was compiled PIC";
712 }
713
714 return true;
715}
716
717PatchOat::MaybePic PatchOat::IsOatPic(const ElfFile* oat_in) {
718 if (oat_in == nullptr) {
719 LOG(ERROR) << "No ELF input oat fie available";
720 return ERROR_OAT_FILE;
721 }
722
Brian Carlstromf5b0f2c2016-10-14 01:04:26 -0700723 const std::string& file_path = oat_in->GetFilePath();
Igor Murashkin46774762014-10-22 11:37:02 -0700724
725 const OatHeader* oat_header = GetOatHeader(oat_in);
726 if (oat_header == nullptr) {
727 LOG(ERROR) << "Failed to find oat header in oat file " << file_path;
728 return ERROR_OAT_FILE;
729 }
730
731 if (!oat_header->IsValid()) {
732 LOG(ERROR) << "Elf file " << file_path << " has an invalid oat header";
733 return ERROR_OAT_FILE;
734 }
735
736 bool is_pic = oat_header->IsPic();
737 if (kIsDebugBuild) {
738 LOG(INFO) << "Oat file at " << file_path << " is " << (is_pic ? "PIC" : "not pic");
739 }
740
741 return is_pic ? PIC : NOT_PIC;
742}
743
Vladimir Markoad06b982016-11-17 16:38:59 +0000744class PatchOat::PatchOatArtFieldVisitor : public ArtFieldVisitor {
Mathieu Chartier54d220e2015-07-30 16:20:06 -0700745 public:
746 explicit PatchOatArtFieldVisitor(PatchOat* patch_oat) : patch_oat_(patch_oat) {}
747
Andreas Gampebdf7f1c2016-08-30 16:38:47 -0700748 void Visit(ArtField* field) OVERRIDE REQUIRES_SHARED(Locks::mutator_lock_) {
Mathieu Chartier54d220e2015-07-30 16:20:06 -0700749 ArtField* const dest = patch_oat_->RelocatedCopyOf(field);
Mathieu Chartier3398c782016-09-30 10:27:43 -0700750 dest->SetDeclaringClass(
Mathieu Chartier1cc62e42016-10-03 18:01:28 -0700751 patch_oat_->RelocatedAddressOfPointer(field->GetDeclaringClass().Ptr()));
Mathieu Chartiere401d142015-04-22 13:56:20 -0700752 }
Mathieu Chartier54d220e2015-07-30 16:20:06 -0700753
754 private:
755 PatchOat* const patch_oat_;
756};
757
758void PatchOat::PatchArtFields(const ImageHeader* image_header) {
759 PatchOatArtFieldVisitor visitor(this);
Mathieu Chartiere42888f2016-04-14 10:49:19 -0700760 image_header->VisitPackedArtFields(&visitor, heap_->Begin());
Mathieu Chartiere401d142015-04-22 13:56:20 -0700761}
762
Vladimir Markoad06b982016-11-17 16:38:59 +0000763class PatchOat::PatchOatArtMethodVisitor : public ArtMethodVisitor {
Mathieu Chartier54d220e2015-07-30 16:20:06 -0700764 public:
765 explicit PatchOatArtMethodVisitor(PatchOat* patch_oat) : patch_oat_(patch_oat) {}
766
Andreas Gampebdf7f1c2016-08-30 16:38:47 -0700767 void Visit(ArtMethod* method) OVERRIDE REQUIRES_SHARED(Locks::mutator_lock_) {
Mathieu Chartier54d220e2015-07-30 16:20:06 -0700768 ArtMethod* const dest = patch_oat_->RelocatedCopyOf(method);
769 patch_oat_->FixupMethod(method, dest);
770 }
771
772 private:
773 PatchOat* const patch_oat_;
774};
775
Mathieu Chartiere401d142015-04-22 13:56:20 -0700776void PatchOat::PatchArtMethods(const ImageHeader* image_header) {
Andreas Gampe542451c2016-07-26 09:02:02 -0700777 const PointerSize pointer_size = InstructionSetPointerSize(isa_);
Mathieu Chartier54d220e2015-07-30 16:20:06 -0700778 PatchOatArtMethodVisitor visitor(this);
Mathieu Chartiere42888f2016-04-14 10:49:19 -0700779 image_header->VisitPackedArtMethods(&visitor, heap_->Begin(), pointer_size);
780}
781
Artem Udovichenkoa62cb9b2016-06-30 09:18:25 +0000782void PatchOat::PatchImTables(const ImageHeader* image_header) {
Andreas Gampe542451c2016-07-26 09:02:02 -0700783 const PointerSize pointer_size = InstructionSetPointerSize(isa_);
Artem Udovichenkoa62cb9b2016-06-30 09:18:25 +0000784 // We can safely walk target image since the conflict tables are independent.
785 image_header->VisitPackedImTables(
786 [this](ArtMethod* method) {
787 return RelocatedAddressOfPointer(method);
788 },
789 image_->Begin(),
790 pointer_size);
791}
792
Mathieu Chartiere42888f2016-04-14 10:49:19 -0700793void PatchOat::PatchImtConflictTables(const ImageHeader* image_header) {
Andreas Gampe542451c2016-07-26 09:02:02 -0700794 const PointerSize pointer_size = InstructionSetPointerSize(isa_);
Mathieu Chartiere42888f2016-04-14 10:49:19 -0700795 // We can safely walk target image since the conflict tables are independent.
796 image_header->VisitPackedImtConflictTables(
797 [this](ArtMethod* method) {
798 return RelocatedAddressOfPointer(method);
799 },
800 image_->Begin(),
801 pointer_size);
Mathieu Chartierc7853442015-03-27 14:35:38 -0700802}
803
Vladimir Markoad06b982016-11-17 16:38:59 +0000804class PatchOat::FixupRootVisitor : public RootVisitor {
Mathieu Chartierd39645e2015-06-09 17:50:29 -0700805 public:
806 explicit FixupRootVisitor(const PatchOat* patch_oat) : patch_oat_(patch_oat) {
807 }
808
809 void VisitRoots(mirror::Object*** roots, size_t count, const RootInfo& info ATTRIBUTE_UNUSED)
Andreas Gampebdf7f1c2016-08-30 16:38:47 -0700810 OVERRIDE REQUIRES_SHARED(Locks::mutator_lock_) {
Mathieu Chartierd39645e2015-06-09 17:50:29 -0700811 for (size_t i = 0; i < count; ++i) {
812 *roots[i] = patch_oat_->RelocatedAddressOfPointer(*roots[i]);
813 }
814 }
815
816 void VisitRoots(mirror::CompressedReference<mirror::Object>** roots, size_t count,
817 const RootInfo& info ATTRIBUTE_UNUSED)
Andreas Gampebdf7f1c2016-08-30 16:38:47 -0700818 OVERRIDE REQUIRES_SHARED(Locks::mutator_lock_) {
Mathieu Chartierd39645e2015-06-09 17:50:29 -0700819 for (size_t i = 0; i < count; ++i) {
820 roots[i]->Assign(patch_oat_->RelocatedAddressOfPointer(roots[i]->AsMirrorPtr()));
821 }
822 }
823
824 private:
825 const PatchOat* const patch_oat_;
826};
827
828void PatchOat::PatchInternedStrings(const ImageHeader* image_header) {
Vladimir Markocd87c3e2017-09-05 13:11:57 +0100829 const auto& section = image_header->GetInternedStringsSection();
Vladimir Marko6cfbdbc2017-07-25 13:26:39 +0100830 if (section.Size() == 0) {
831 return;
832 }
Mathieu Chartierd39645e2015-06-09 17:50:29 -0700833 InternTable temp_table;
834 // Note that we require that ReadFromMemory does not make an internal copy of the elements.
835 // This also relies on visit roots not doing any verification which could fail after we update
836 // the roots to be the image addresses.
Mathieu Chartierea0831f2015-12-29 13:17:37 -0800837 temp_table.AddTableFromMemory(image_->Begin() + section.Offset());
Mathieu Chartierd39645e2015-06-09 17:50:29 -0700838 FixupRootVisitor visitor(this);
839 temp_table.VisitRoots(&visitor, kVisitRootFlagAllRoots);
840}
841
Mathieu Chartier208a5cb2015-12-02 15:44:07 -0800842void PatchOat::PatchClassTable(const ImageHeader* image_header) {
Vladimir Markocd87c3e2017-09-05 13:11:57 +0100843 const auto& section = image_header->GetClassTableSection();
Mathieu Chartierfbc31082016-01-24 11:59:56 -0800844 if (section.Size() == 0) {
845 return;
846 }
Mathieu Chartier208a5cb2015-12-02 15:44:07 -0800847 // Note that we require that ReadFromMemory does not make an internal copy of the elements.
848 // This also relies on visit roots not doing any verification which could fail after we update
849 // the roots to be the image addresses.
850 WriterMutexLock mu(Thread::Current(), *Locks::classlinker_classes_lock_);
851 ClassTable temp_table;
852 temp_table.ReadFromMemory(image_->Begin() + section.Offset());
853 FixupRootVisitor visitor(this);
Mathieu Chartier58c3f6a2016-12-01 14:21:11 -0800854 temp_table.VisitRoots(UnbufferedRootVisitor(&visitor, RootInfo(kRootUnknown)));
Mathieu Chartier208a5cb2015-12-02 15:44:07 -0800855}
856
857
Vladimir Markoad06b982016-11-17 16:38:59 +0000858class PatchOat::RelocatedPointerVisitor {
Mathieu Chartier4b00d342015-11-13 10:42:08 -0800859 public:
860 explicit RelocatedPointerVisitor(PatchOat* patch_oat) : patch_oat_(patch_oat) {}
861
862 template <typename T>
Mathieu Chartier8c19d242017-03-06 12:35:10 -0800863 T* operator()(T* ptr, void** dest_addr ATTRIBUTE_UNUSED = 0) const {
Mathieu Chartier4b00d342015-11-13 10:42:08 -0800864 return patch_oat_->RelocatedAddressOfPointer(ptr);
865 }
866
867 private:
868 PatchOat* const patch_oat_;
869};
870
Mathieu Chartierc7853442015-03-27 14:35:38 -0700871void PatchOat::PatchDexFileArrays(mirror::ObjectArray<mirror::Object>* img_roots) {
872 auto* dex_caches = down_cast<mirror::ObjectArray<mirror::DexCache>*>(
873 img_roots->Get(ImageHeader::kDexCaches));
Andreas Gampe542451c2016-07-26 09:02:02 -0700874 const PointerSize pointer_size = InstructionSetPointerSize(isa_);
Mathieu Chartierc7853442015-03-27 14:35:38 -0700875 for (size_t i = 0, count = dex_caches->GetLength(); i < count; ++i) {
Vladimir Marko05792b92015-08-03 11:56:49 +0100876 auto* orig_dex_cache = dex_caches->GetWithoutChecks(i);
877 auto* copy_dex_cache = RelocatedCopyOf(orig_dex_cache);
Vladimir Marko05792b92015-08-03 11:56:49 +0100878 // Though the DexCache array fields are usually treated as native pointers, we set the full
879 // 64-bit values here, clearing the top 32 bits for 32-bit targets. The zero-extension is
880 // done by casting to the unsigned type uintptr_t before casting to int64_t, i.e.
881 // static_cast<int64_t>(reinterpret_cast<uintptr_t>(image_begin_ + offset))).
Christina Wadsworthbf44e0e2016-08-18 10:37:42 -0700882 mirror::StringDexCacheType* orig_strings = orig_dex_cache->GetStrings();
883 mirror::StringDexCacheType* relocated_strings = RelocatedAddressOfPointer(orig_strings);
Vladimir Marko05792b92015-08-03 11:56:49 +0100884 copy_dex_cache->SetField64<false>(
885 mirror::DexCache::StringsOffset(),
886 static_cast<int64_t>(reinterpret_cast<uintptr_t>(relocated_strings)));
887 if (orig_strings != nullptr) {
Mathieu Chartier4b00d342015-11-13 10:42:08 -0800888 orig_dex_cache->FixupStrings(RelocatedCopyOf(orig_strings), RelocatedPointerVisitor(this));
Mathieu Chartierc7853442015-03-27 14:35:38 -0700889 }
Vladimir Marko8d6768d2017-03-14 10:13:21 +0000890 mirror::TypeDexCacheType* orig_types = orig_dex_cache->GetResolvedTypes();
891 mirror::TypeDexCacheType* relocated_types = RelocatedAddressOfPointer(orig_types);
Vladimir Marko05792b92015-08-03 11:56:49 +0100892 copy_dex_cache->SetField64<false>(
893 mirror::DexCache::ResolvedTypesOffset(),
894 static_cast<int64_t>(reinterpret_cast<uintptr_t>(relocated_types)));
895 if (orig_types != nullptr) {
Mathieu Chartier4b00d342015-11-13 10:42:08 -0800896 orig_dex_cache->FixupResolvedTypes(RelocatedCopyOf(orig_types),
897 RelocatedPointerVisitor(this));
Vladimir Marko05792b92015-08-03 11:56:49 +0100898 }
Vladimir Marko07bfbac2017-07-06 14:55:02 +0100899 mirror::MethodDexCacheType* orig_methods = orig_dex_cache->GetResolvedMethods();
900 mirror::MethodDexCacheType* relocated_methods = RelocatedAddressOfPointer(orig_methods);
Vladimir Marko05792b92015-08-03 11:56:49 +0100901 copy_dex_cache->SetField64<false>(
902 mirror::DexCache::ResolvedMethodsOffset(),
903 static_cast<int64_t>(reinterpret_cast<uintptr_t>(relocated_methods)));
904 if (orig_methods != nullptr) {
Vladimir Marko07bfbac2017-07-06 14:55:02 +0100905 mirror::MethodDexCacheType* copy_methods = RelocatedCopyOf(orig_methods);
Vladimir Marko05792b92015-08-03 11:56:49 +0100906 for (size_t j = 0, num = orig_dex_cache->NumResolvedMethods(); j != num; ++j) {
Vladimir Marko07bfbac2017-07-06 14:55:02 +0100907 mirror::MethodDexCachePair orig =
908 mirror::DexCache::GetNativePairPtrSize(orig_methods, j, pointer_size);
909 mirror::MethodDexCachePair copy(RelocatedAddressOfPointer(orig.object), orig.index);
910 mirror::DexCache::SetNativePairPtrSize(copy_methods, j, copy, pointer_size);
Vladimir Marko05792b92015-08-03 11:56:49 +0100911 }
912 }
Vladimir Markof44d36c2017-03-14 14:18:46 +0000913 mirror::FieldDexCacheType* orig_fields = orig_dex_cache->GetResolvedFields();
914 mirror::FieldDexCacheType* relocated_fields = RelocatedAddressOfPointer(orig_fields);
Vladimir Marko05792b92015-08-03 11:56:49 +0100915 copy_dex_cache->SetField64<false>(
916 mirror::DexCache::ResolvedFieldsOffset(),
917 static_cast<int64_t>(reinterpret_cast<uintptr_t>(relocated_fields)));
918 if (orig_fields != nullptr) {
Vladimir Markof44d36c2017-03-14 14:18:46 +0000919 mirror::FieldDexCacheType* copy_fields = RelocatedCopyOf(orig_fields);
Vladimir Marko05792b92015-08-03 11:56:49 +0100920 for (size_t j = 0, num = orig_dex_cache->NumResolvedFields(); j != num; ++j) {
Vladimir Markof44d36c2017-03-14 14:18:46 +0000921 mirror::FieldDexCachePair orig =
922 mirror::DexCache::GetNativePairPtrSize(orig_fields, j, pointer_size);
923 mirror::FieldDexCachePair copy(RelocatedAddressOfPointer(orig.object), orig.index);
924 mirror::DexCache::SetNativePairPtrSize(copy_fields, j, copy, pointer_size);
Vladimir Marko05792b92015-08-03 11:56:49 +0100925 }
Mathieu Chartiere401d142015-04-22 13:56:20 -0700926 }
Narayan Kamath7fe56582016-10-14 18:49:12 +0100927 mirror::MethodTypeDexCacheType* orig_method_types = orig_dex_cache->GetResolvedMethodTypes();
928 mirror::MethodTypeDexCacheType* relocated_method_types =
929 RelocatedAddressOfPointer(orig_method_types);
930 copy_dex_cache->SetField64<false>(
931 mirror::DexCache::ResolvedMethodTypesOffset(),
932 static_cast<int64_t>(reinterpret_cast<uintptr_t>(relocated_method_types)));
933 if (orig_method_types != nullptr) {
934 orig_dex_cache->FixupResolvedMethodTypes(RelocatedCopyOf(orig_method_types),
935 RelocatedPointerVisitor(this));
936 }
Orion Hodsonc069a302017-01-18 09:23:12 +0000937
938 GcRoot<mirror::CallSite>* orig_call_sites = orig_dex_cache->GetResolvedCallSites();
939 GcRoot<mirror::CallSite>* relocated_call_sites = RelocatedAddressOfPointer(orig_call_sites);
940 copy_dex_cache->SetField64<false>(
941 mirror::DexCache::ResolvedCallSitesOffset(),
942 static_cast<int64_t>(reinterpret_cast<uintptr_t>(relocated_call_sites)));
943 if (orig_call_sites != nullptr) {
944 orig_dex_cache->FixupResolvedCallSites(RelocatedCopyOf(orig_call_sites),
945 RelocatedPointerVisitor(this));
946 }
Mathieu Chartiere401d142015-04-22 13:56:20 -0700947 }
948}
949
Jeff Haodcdc85b2015-12-04 14:06:18 -0800950bool PatchOat::PatchImage(bool primary_image) {
Alex Light53cb16b2014-06-12 11:26:29 -0700951 ImageHeader* image_header = reinterpret_cast<ImageHeader*>(image_->Begin());
952 CHECK_GT(image_->Size(), sizeof(ImageHeader));
953 // These are the roots from the original file.
Mathieu Chartierc7853442015-03-27 14:35:38 -0700954 auto* img_roots = image_header->GetImageRoots();
Alex Light53cb16b2014-06-12 11:26:29 -0700955 image_header->RelocateImage(delta_);
956
Mathieu Chartierc7853442015-03-27 14:35:38 -0700957 PatchArtFields(image_header);
Mathieu Chartiere401d142015-04-22 13:56:20 -0700958 PatchArtMethods(image_header);
Artem Udovichenkoa62cb9b2016-06-30 09:18:25 +0000959 PatchImTables(image_header);
Mathieu Chartiere42888f2016-04-14 10:49:19 -0700960 PatchImtConflictTables(image_header);
Mathieu Chartierd39645e2015-06-09 17:50:29 -0700961 PatchInternedStrings(image_header);
Mathieu Chartier208a5cb2015-12-02 15:44:07 -0800962 PatchClassTable(image_header);
Mathieu Chartierc7853442015-03-27 14:35:38 -0700963 // Patch dex file int/long arrays which point to ArtFields.
964 PatchDexFileArrays(img_roots);
965
Jeff Haodcdc85b2015-12-04 14:06:18 -0800966 if (primary_image) {
967 VisitObject(img_roots);
968 }
969
Alex Light53cb16b2014-06-12 11:26:29 -0700970 if (!image_header->IsValid()) {
Jeff Haodcdc85b2015-12-04 14:06:18 -0800971 LOG(ERROR) << "relocation renders image header invalid";
Alex Light53cb16b2014-06-12 11:26:29 -0700972 return false;
973 }
974
975 {
Alex Lighteefbe392014-07-08 09:53:18 -0700976 TimingLogger::ScopedTiming t("Walk Bitmap", timings_);
Alex Light53cb16b2014-06-12 11:26:29 -0700977 // Walk the bitmap.
978 WriterMutexLock mu(Thread::Current(), *Locks::heap_bitmap_lock_);
Andreas Gampe0c183382017-07-13 22:26:24 -0700979 auto visitor = [&](mirror::Object* obj) REQUIRES_SHARED(Locks::mutator_lock_) {
980 VisitObject(obj);
981 };
982 bitmap_->Walk(visitor);
Alex Light53cb16b2014-06-12 11:26:29 -0700983 }
984 return true;
985}
986
Alex Light53cb16b2014-06-12 11:26:29 -0700987
Mathieu Chartier31e88222016-10-14 18:43:19 -0700988void PatchOat::PatchVisitor::operator() (ObjPtr<mirror::Object> obj,
989 MemberOffset off,
Ian Rogers6a3c1fc2014-10-31 00:33:20 -0700990 bool is_static_unused ATTRIBUTE_UNUSED) const {
Alex Light53cb16b2014-06-12 11:26:29 -0700991 mirror::Object* referent = obj->GetFieldObject<mirror::Object, kVerifyNone>(off);
Mathieu Chartierc7853442015-03-27 14:35:38 -0700992 mirror::Object* moved_object = patcher_->RelocatedAddressOfPointer(referent);
Alex Light53cb16b2014-06-12 11:26:29 -0700993 copy_->SetFieldObjectWithoutWriteBarrier<false, true, kVerifyNone>(off, moved_object);
994}
995
Mathieu Chartier31e88222016-10-14 18:43:19 -0700996void PatchOat::PatchVisitor::operator() (ObjPtr<mirror::Class> cls ATTRIBUTE_UNUSED,
997 ObjPtr<mirror::Reference> ref) const {
Alex Light53cb16b2014-06-12 11:26:29 -0700998 MemberOffset off = mirror::Reference::ReferentOffset();
999 mirror::Object* referent = ref->GetReferent();
Mathieu Chartiera13abba2016-04-21 10:23:16 -07001000 DCHECK(referent == nullptr ||
1001 Runtime::Current()->GetHeap()->ObjectIsInBootImageSpace(referent)) << referent;
Mathieu Chartierc7853442015-03-27 14:35:38 -07001002 mirror::Object* moved_object = patcher_->RelocatedAddressOfPointer(referent);
Alex Light53cb16b2014-06-12 11:26:29 -07001003 copy_->SetFieldObjectWithoutWriteBarrier<false, true, kVerifyNone>(off, moved_object);
1004}
1005
Andreas Gampe0c183382017-07-13 22:26:24 -07001006// Called by PatchImage.
Alex Light53cb16b2014-06-12 11:26:29 -07001007void PatchOat::VisitObject(mirror::Object* object) {
1008 mirror::Object* copy = RelocatedCopyOf(object);
1009 CHECK(copy != nullptr);
Hiroshi Yamauchi12b58b22016-11-01 11:55:29 -07001010 if (kUseBakerReadBarrier) {
1011 object->AssertReadBarrierState();
Alex Light53cb16b2014-06-12 11:26:29 -07001012 }
1013 PatchOat::PatchVisitor visitor(this, copy);
Mathieu Chartier059ef3d2015-08-18 13:54:21 -07001014 object->VisitReferences<kVerifyNone>(visitor, visitor);
Mathieu Chartiere401d142015-04-22 13:56:20 -07001015 if (object->IsClass<kVerifyNone>()) {
Andreas Gampe542451c2016-07-26 09:02:02 -07001016 const PointerSize pointer_size = InstructionSetPointerSize(isa_);
Mathieu Chartier4b00d342015-11-13 10:42:08 -08001017 mirror::Class* klass = object->AsClass();
1018 mirror::Class* copy_klass = down_cast<mirror::Class*>(copy);
1019 RelocatedPointerVisitor native_visitor(this);
1020 klass->FixupNativePointers(copy_klass, pointer_size, native_visitor);
Mathieu Chartiere401d142015-04-22 13:56:20 -07001021 auto* vtable = klass->GetVTable();
1022 if (vtable != nullptr) {
Jeff Haodcdc85b2015-12-04 14:06:18 -08001023 vtable->Fixup(RelocatedCopyOfFollowImages(vtable), pointer_size, native_visitor);
Mathieu Chartiere401d142015-04-22 13:56:20 -07001024 }
Mathieu Chartier6beced42016-11-15 15:51:31 -08001025 mirror::IfTable* iftable = klass->GetIfTable();
1026 for (int32_t i = 0; i < klass->GetIfTableCount(); ++i) {
1027 if (iftable->GetMethodArrayCount(i) > 0) {
1028 auto* method_array = iftable->GetMethodArray(i);
1029 CHECK(method_array != nullptr);
1030 method_array->Fixup(RelocatedCopyOfFollowImages(method_array),
1031 pointer_size,
1032 native_visitor);
Mathieu Chartiere401d142015-04-22 13:56:20 -07001033 }
1034 }
Mathieu Chartier4b00d342015-11-13 10:42:08 -08001035 } else if (object->GetClass() == mirror::Method::StaticClass() ||
1036 object->GetClass() == mirror::Constructor::StaticClass()) {
Mathieu Chartiere401d142015-04-22 13:56:20 -07001037 // Need to go update the ArtMethod.
Neil Fuller0e844392016-09-08 13:43:31 +01001038 auto* dest = down_cast<mirror::Executable*>(copy);
1039 auto* src = down_cast<mirror::Executable*>(object);
Mathieu Chartiere401d142015-04-22 13:56:20 -07001040 dest->SetArtMethod(RelocatedAddressOfPointer(src->GetArtMethod()));
Alex Light53cb16b2014-06-12 11:26:29 -07001041 }
1042}
1043
Mathieu Chartiere401d142015-04-22 13:56:20 -07001044void PatchOat::FixupMethod(ArtMethod* object, ArtMethod* copy) {
Andreas Gampe542451c2016-07-26 09:02:02 -07001045 const PointerSize pointer_size = InstructionSetPointerSize(isa_);
Mathieu Chartiere401d142015-04-22 13:56:20 -07001046 copy->CopyFrom(object, pointer_size);
Alex Light53cb16b2014-06-12 11:26:29 -07001047 // Just update the entry points if it looks like we should.
Alex Lighteefbe392014-07-08 09:53:18 -07001048 // TODO: sanity check all the pointers' values
Mathieu Chartiere401d142015-04-22 13:56:20 -07001049 copy->SetDeclaringClass(RelocatedAddressOfPointer(object->GetDeclaringClass()));
Mathieu Chartiere401d142015-04-22 13:56:20 -07001050 copy->SetEntryPointFromQuickCompiledCodePtrSize(RelocatedAddressOfPointer(
1051 object->GetEntryPointFromQuickCompiledCodePtrSize(pointer_size)), pointer_size);
Mathieu Chartiere42888f2016-04-14 10:49:19 -07001052 // No special handling for IMT conflict table since all pointers are moved by the same offset.
Andreas Gampe75f08852016-07-19 08:06:07 -07001053 copy->SetDataPtrSize(RelocatedAddressOfPointer(
1054 object->GetDataPtrSize(pointer_size)), pointer_size);
Alex Light53cb16b2014-06-12 11:26:29 -07001055}
1056
Alex Light53cb16b2014-06-12 11:26:29 -07001057static int orig_argc;
1058static char** orig_argv;
1059
1060static std::string CommandLine() {
1061 std::vector<std::string> command;
1062 for (int i = 0; i < orig_argc; ++i) {
1063 command.push_back(orig_argv[i]);
1064 }
Andreas Gampe9186ced2016-12-12 14:28:21 -08001065 return android::base::Join(command, ' ');
Alex Light53cb16b2014-06-12 11:26:29 -07001066}
1067
1068static void UsageErrorV(const char* fmt, va_list ap) {
1069 std::string error;
Andreas Gampe46ee31b2016-12-14 10:11:49 -08001070 android::base::StringAppendV(&error, fmt, ap);
Alex Light53cb16b2014-06-12 11:26:29 -07001071 LOG(ERROR) << error;
1072}
1073
1074static void UsageError(const char* fmt, ...) {
1075 va_list ap;
1076 va_start(ap, fmt);
1077 UsageErrorV(fmt, ap);
1078 va_end(ap);
1079}
1080
Andreas Gampe794ad762015-02-23 08:12:24 -08001081NO_RETURN static void Usage(const char *fmt, ...) {
Alex Light53cb16b2014-06-12 11:26:29 -07001082 va_list ap;
1083 va_start(ap, fmt);
1084 UsageErrorV(fmt, ap);
1085 va_end(ap);
1086
1087 UsageError("Command: %s", CommandLine().c_str());
1088 UsageError("Usage: patchoat [options]...");
1089 UsageError("");
1090 UsageError(" --instruction-set=<isa>: Specifies the instruction set the patched code is");
Richard Uhler4bc11d02017-02-01 09:53:54 +00001091 UsageError(" compiled for (required).");
Alex Light53cb16b2014-06-12 11:26:29 -07001092 UsageError("");
1093 UsageError(" --input-image-location=<file.art>: Specifies the 'location' of the image file to");
Richard Uhler4bc11d02017-02-01 09:53:54 +00001094 UsageError(" be patched.");
Alex Light53cb16b2014-06-12 11:26:29 -07001095 UsageError("");
Chris Morin88c6d262018-02-13 15:26:21 -08001096 UsageError(" --output-image-directory=<dir>: Specifies the directory to write the patched");
1097 UsageError(" image file(s) to.");
Alex Light53cb16b2014-06-12 11:26:29 -07001098 UsageError("");
Chris Morin88c6d262018-02-13 15:26:21 -08001099 UsageError(" --output-image-relocation-directory=<dir>: Specifies the directory to write");
Alex Klyubin3856af02017-10-23 13:53:13 -07001100 UsageError(" the image relocation information to.");
1101 UsageError("");
Alex Light53cb16b2014-06-12 11:26:29 -07001102 UsageError(" --base-offset-delta=<delta>: Specify the amount to change the old base-offset by.");
1103 UsageError(" This value may be negative.");
1104 UsageError("");
Chris Morin754b7572018-01-19 18:04:46 -08001105 UsageError(" --verify: Verify an existing patched file instead of creating one.");
1106 UsageError("");
Alex Light53cb16b2014-06-12 11:26:29 -07001107 UsageError(" --dump-timings: dump out patch timing information");
1108 UsageError("");
1109 UsageError(" --no-dump-timings: do not dump out patch timing information");
1110 UsageError("");
1111
1112 exit(EXIT_FAILURE);
1113}
1114
Chris Morin754b7572018-01-19 18:04:46 -08001115static int patchoat_patch_image(TimingLogger& timings,
1116 InstructionSet isa,
1117 const std::string& input_image_location,
1118 const std::string& output_image_directory,
Chris Morin88c6d262018-02-13 15:26:21 -08001119 const std::string& output_image_relocation_directory,
Chris Morin754b7572018-01-19 18:04:46 -08001120 off_t base_delta,
1121 bool base_delta_set,
1122 bool debug) {
Andreas Gampe6eb6a392016-02-10 20:18:37 -08001123 CHECK(!input_image_location.empty());
Chris Morin88c6d262018-02-13 15:26:21 -08001124 if ((output_image_directory.empty()) && (output_image_relocation_directory.empty())) {
1125 Usage("Image patching requires --output-image-directory or --output-image-relocation-directory");
Andreas Gampe6eb6a392016-02-10 20:18:37 -08001126 }
1127
1128 if (!base_delta_set) {
1129 Usage("Must supply a desired new offset or delta.");
1130 }
1131
1132 if (!IsAligned<kPageSize>(base_delta)) {
1133 Usage("Base offset/delta must be aligned to a pagesize (0x%08x) boundary.", kPageSize);
1134 }
1135
1136 if (debug) {
1137 LOG(INFO) << "moving offset by " << base_delta
1138 << " (0x" << std::hex << base_delta << ") bytes or "
1139 << std::dec << (base_delta/kPageSize) << " pages.";
1140 }
1141
1142 TimingLogger::ScopedTiming pt("patch image and oat", &timings);
1143
Alex Klyubin3856af02017-10-23 13:53:13 -07001144 bool ret =
1145 PatchOat::Patch(
1146 input_image_location,
1147 base_delta,
1148 output_image_directory,
1149 output_image_relocation_directory,
1150 isa,
1151 &timings);
Andreas Gampe6eb6a392016-02-10 20:18:37 -08001152
1153 if (kIsDebugBuild) {
1154 LOG(INFO) << "Exiting with return ... " << ret;
1155 }
1156 return ret ? EXIT_SUCCESS : EXIT_FAILURE;
1157}
1158
Chris Morin754b7572018-01-19 18:04:46 -08001159static int patchoat_verify_image(TimingLogger& timings,
1160 InstructionSet isa,
1161 const std::string& input_image_location,
1162 const std::string& output_image_directory) {
1163 CHECK(!input_image_location.empty());
1164 TimingLogger::ScopedTiming pt("verify image and oat", &timings);
1165
1166 bool ret =
1167 PatchOat::Verify(
1168 input_image_location,
1169 output_image_directory,
1170 isa,
1171 &timings);
1172
1173 if (kIsDebugBuild) {
1174 LOG(INFO) << "Exiting with return ... " << ret;
1175 }
1176 return ret ? EXIT_SUCCESS : EXIT_FAILURE;
1177}
1178
Alex Lighteefbe392014-07-08 09:53:18 -07001179static int patchoat(int argc, char **argv) {
Andreas Gampe51d80cc2017-06-21 21:05:13 -07001180 InitLogging(argv, Runtime::Abort);
Mathieu Chartier6e88ef62014-10-14 15:01:24 -07001181 MemMap::Init();
Alex Light53cb16b2014-06-12 11:26:29 -07001182 const bool debug = kIsDebugBuild;
1183 orig_argc = argc;
1184 orig_argv = argv;
1185 TimingLogger timings("patcher", false, false);
1186
Alex Light53cb16b2014-06-12 11:26:29 -07001187 // Skip over the command name.
1188 argv++;
1189 argc--;
1190
1191 if (argc == 0) {
1192 Usage("No arguments specified");
1193 }
1194
1195 timings.StartTiming("Patchoat");
1196
1197 // cmd line args
1198 bool isa_set = false;
Vladimir Marko33bff252017-11-01 14:35:42 +00001199 InstructionSet isa = InstructionSet::kNone;
Alex Light53cb16b2014-06-12 11:26:29 -07001200 std::string input_image_location;
Chris Morin88c6d262018-02-13 15:26:21 -08001201 std::string output_image_directory;
1202 std::string output_image_relocation_directory;
Alex Light53cb16b2014-06-12 11:26:29 -07001203 off_t base_delta = 0;
1204 bool base_delta_set = false;
Alex Light53cb16b2014-06-12 11:26:29 -07001205 bool dump_timings = kIsDebugBuild;
Chris Morin754b7572018-01-19 18:04:46 -08001206 bool verify = false;
Alex Light53cb16b2014-06-12 11:26:29 -07001207
Ian Rogersd4c4d952014-10-16 20:31:53 -07001208 for (int i = 0; i < argc; ++i) {
Alex Light53cb16b2014-06-12 11:26:29 -07001209 const StringPiece option(argv[i]);
1210 const bool log_options = false;
1211 if (log_options) {
1212 LOG(INFO) << "patchoat: option[" << i << "]=" << argv[i];
1213 }
Alex Light53cb16b2014-06-12 11:26:29 -07001214 if (option.starts_with("--instruction-set=")) {
1215 isa_set = true;
1216 const char* isa_str = option.substr(strlen("--instruction-set=")).data();
Andreas Gampe20c89302014-08-19 17:28:06 -07001217 isa = GetInstructionSetFromString(isa_str);
Vladimir Marko33bff252017-11-01 14:35:42 +00001218 if (isa == InstructionSet::kNone) {
Andreas Gampe20c89302014-08-19 17:28:06 -07001219 Usage("Unknown or invalid instruction set %s", isa_str);
Alex Light53cb16b2014-06-12 11:26:29 -07001220 }
Alex Light53cb16b2014-06-12 11:26:29 -07001221 } else if (option.starts_with("--input-image-location=")) {
1222 input_image_location = option.substr(strlen("--input-image-location=")).data();
Chris Morin88c6d262018-02-13 15:26:21 -08001223 } else if (option.starts_with("--output-image-directory=")) {
1224 output_image_directory = option.substr(strlen("--output-image-directory=")).data();
1225 } else if (option.starts_with("--output-image-relocation-directory=")) {
1226 output_image_relocation_directory =
1227 option.substr(strlen("--output-image-relocation-directory=")).data();
Alex Light53cb16b2014-06-12 11:26:29 -07001228 } else if (option.starts_with("--base-offset-delta=")) {
1229 const char* base_delta_str = option.substr(strlen("--base-offset-delta=")).data();
1230 base_delta_set = true;
1231 if (!ParseInt(base_delta_str, &base_delta)) {
1232 Usage("Failed to parse --base-offset-delta argument '%s' as an off_t", base_delta_str);
1233 }
Alex Light53cb16b2014-06-12 11:26:29 -07001234 } else if (option == "--dump-timings") {
1235 dump_timings = true;
1236 } else if (option == "--no-dump-timings") {
1237 dump_timings = false;
Chris Morin754b7572018-01-19 18:04:46 -08001238 } else if (option == "--verify") {
1239 verify = true;
Alex Light53cb16b2014-06-12 11:26:29 -07001240 } else {
1241 Usage("Unknown argument %s", option.data());
1242 }
1243 }
1244
Andreas Gampe6eb6a392016-02-10 20:18:37 -08001245 // The instruction set is mandatory. This simplifies things...
1246 if (!isa_set) {
1247 Usage("Instruction set must be set.");
Alex Light53cb16b2014-06-12 11:26:29 -07001248 }
1249
Chris Morin754b7572018-01-19 18:04:46 -08001250 int ret;
1251 if (verify) {
1252 ret = patchoat_verify_image(timings,
1253 isa,
1254 input_image_location,
1255 output_image_directory);
1256 } else {
1257 ret = patchoat_patch_image(timings,
1258 isa,
1259 input_image_location,
1260 output_image_directory,
Chris Morin88c6d262018-02-13 15:26:21 -08001261 output_image_relocation_directory,
Chris Morin754b7572018-01-19 18:04:46 -08001262 base_delta,
1263 base_delta_set,
1264 debug);
1265 }
Alex Light53cb16b2014-06-12 11:26:29 -07001266
Andreas Gampe6eb6a392016-02-10 20:18:37 -08001267 timings.EndTiming();
1268 if (dump_timings) {
1269 LOG(INFO) << Dumpable<TimingLogger>(timings);
Alex Light53cb16b2014-06-12 11:26:29 -07001270 }
1271
Andreas Gampe6eb6a392016-02-10 20:18:37 -08001272 return ret;
Alex Light53cb16b2014-06-12 11:26:29 -07001273}
1274
1275} // namespace art
1276
1277int main(int argc, char **argv) {
1278 return art::patchoat(argc, argv);
1279}