123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507 |
-
-
- FILE_LICENCE ( GPL2_OR_LATER_OR_UBDL );
-
- #include <stddef.h>
- #include <string.h>
- #include <stdlib.h>
- #include <stdio.h>
- #include <errno.h>
- #include <assert.h>
- #include <libgen.h>
- #include <syslog.h>
- #include <ipxe/list.h>
- #include <ipxe/umalloc.h>
- #include <ipxe/uri.h>
- #include <ipxe/image.h>
-
-
-
-
- #define EACCES_UNTRUSTED \
- __einfo_error ( EINFO_EACCES_UNTRUSTED )
- #define EINFO_EACCES_UNTRUSTED \
- __einfo_uniqify ( EINFO_EACCES, 0x01, "Untrusted image" )
- #define EACCES_PERMANENT \
- __einfo_error ( EINFO_EACCES_PERMANENT )
- #define EINFO_EACCES_PERMANENT \
- __einfo_uniqify ( EINFO_EACCES, 0x02, "Trust requirement is permanent" )
-
-
- struct list_head images = LIST_HEAD_INIT ( images );
-
-
- struct image *current_image;
-
-
- static int require_trusted_images = 0;
-
-
- static int require_trusted_images_permanent = 0;
-
-
- static void free_image ( struct refcnt *refcnt ) {
- struct image *image = container_of ( refcnt, struct image, refcnt );
-
- DBGC ( image, "IMAGE %s freed\n", image->name );
- free ( image->name );
- free ( image->cmdline );
- uri_put ( image->uri );
- ufree ( image->data );
- image_put ( image->replacement );
- free ( image );
- }
-
-
- struct image * alloc_image ( struct uri *uri ) {
- struct image *image;
- int rc;
-
-
- image = zalloc ( sizeof ( *image ) );
- if ( ! image )
- goto err_alloc;
-
-
- ref_init ( &image->refcnt, free_image );
- if ( uri && ( ( rc = image_set_uri ( image, uri ) ) != 0 ) )
- goto err_set_uri;
-
- return image;
-
- err_set_uri:
- image_put ( image );
- err_alloc:
- return NULL;
- }
-
-
- int image_set_uri ( struct image *image, struct uri *uri ) {
- const char *name;
- int rc;
-
-
- if ( uri->path && ( ! ( image->name && image->name[0] ) ) ) {
- name = basename ( ( char * ) uri->path );
- if ( ( rc = image_set_name ( image, name ) ) != 0 )
- return rc;
- }
-
-
- uri_put ( image->uri );
- image->uri = uri_get ( uri );
-
- return 0;
- }
-
-
- int image_set_name ( struct image *image, const char *name ) {
- char *name_copy;
-
-
- name_copy = strdup ( name );
- if ( ! name_copy )
- return -ENOMEM;
-
-
- free ( image->name );
- image->name = name_copy;
-
- return 0;
- }
-
-
- int image_set_cmdline ( struct image *image, const char *cmdline ) {
-
- free ( image->cmdline );
- image->cmdline = NULL;
- if ( cmdline ) {
- image->cmdline = strdup ( cmdline );
- if ( ! image->cmdline )
- return -ENOMEM;
- }
- return 0;
- }
-
-
- static int image_probe ( struct image *image ) {
- struct image_type *type;
- int rc;
-
-
- for_each_table_entry ( type, IMAGE_TYPES ) {
- if ( ( rc = type->probe ( image ) ) == 0 ) {
- image->type = type;
- DBGC ( image, "IMAGE %s is %s\n",
- image->name, type->name );
- return 0;
- }
- DBGC ( image, "IMAGE %s is not %s: %s\n", image->name,
- type->name, strerror ( rc ) );
- }
-
- DBGC ( image, "IMAGE %s format not recognised\n", image->name );
- return -ENOTSUP;
- }
-
-
- int register_image ( struct image *image ) {
- static unsigned int imgindex = 0;
- char name[8];
- int rc;
-
-
- if ( ! image->name ) {
- snprintf ( name, sizeof ( name ), "img%d", imgindex++ );
- if ( ( rc = image_set_name ( image, name ) ) != 0 )
- return rc;
- }
-
-
-
- if ( image_find_selected() )
- image->flags &= ~IMAGE_SELECTED;
-
-
- image_get ( image );
- image->flags |= IMAGE_REGISTERED;
- list_add_tail ( &image->list, &images );
- DBGC ( image, "IMAGE %s at [%lx,%lx) registered\n",
- image->name, user_to_phys ( image->data, 0 ),
- user_to_phys ( image->data, image->len ) );
-
-
-
- if ( ! image->type )
- image_probe ( image );
-
- return 0;
- }
-
-
- void unregister_image ( struct image *image ) {
-
-
- if ( ! ( image->flags & IMAGE_REGISTERED ) )
- return;
-
- DBGC ( image, "IMAGE %s unregistered\n", image->name );
- list_del ( &image->list );
- image->flags &= ~IMAGE_REGISTERED;
- image_put ( image );
- }
-
-
- struct image * find_image ( const char *name ) {
- struct image *image;
-
- list_for_each_entry ( image, &images, list ) {
- if ( strcmp ( image->name, name ) == 0 )
- return image;
- }
-
- return NULL;
- }
-
-
- int image_exec ( struct image *image ) {
- struct image *saved_current_image;
- struct image *replacement = NULL;
- struct uri *old_cwuri;
- int rc;
-
-
- assert ( image->flags & IMAGE_REGISTERED );
-
-
- old_cwuri = uri_get ( cwuri );
- churi ( image->uri );
-
-
- saved_current_image = current_image;
-
-
-
- current_image = image_get ( image );
-
-
- if ( ! ( image->type && image->type->exec ) ) {
- rc = -ENOEXEC;
- goto err;
- }
-
-
- if ( require_trusted_images && ! ( image->flags & IMAGE_TRUSTED ) ) {
- DBGC ( image, "IMAGE %s is not trusted\n", image->name );
- rc = -EACCES_UNTRUSTED;
- goto err;
- }
-
-
- syslog ( LOG_NOTICE, "Executing \"%s\"\n", image->name );
-
-
- if ( ( rc = image->type->exec ( image ) ) != 0 ) {
- DBGC ( image, "IMAGE %s could not execute: %s\n",
- image->name, strerror ( rc ) );
-
- }
-
-
- if ( rc == 0 ) {
- syslog ( LOG_NOTICE, "Execution of \"%s\" completed\n",
- image->name );
- } else {
- syslog ( LOG_ERR, "Execution of \"%s\" failed: %s\n",
- image->name, strerror ( rc ) );
- }
-
-
-
- replacement = image->replacement;
- if ( replacement )
- assert ( replacement->flags & IMAGE_REGISTERED );
-
- err:
-
- if ( image->flags & IMAGE_AUTO_UNREGISTER )
- unregister_image ( image );
-
-
-
- if ( replacement ) {
- DBGC ( image, "IMAGE %s replacing self with IMAGE %s\n",
- image->name, replacement->name );
- }
-
-
- image_put ( image );
-
-
- current_image = saved_current_image;
-
-
- churi ( old_cwuri );
- uri_put ( old_cwuri );
-
-
- if ( replacement )
- return image_exec ( replacement );
-
- return rc;
- }
-
-
- int image_replace ( struct image *replacement ) {
- struct image *image = current_image;
- int rc;
-
-
- assert ( replacement->flags & IMAGE_REGISTERED );
-
-
- if ( ! image ) {
- rc = -ENOTTY;
- DBGC ( replacement, "IMAGE %s cannot replace non-existent "
- "image: %s\n", replacement->name, strerror ( rc ) );
- return rc;
- }
-
-
- if ( ! ( replacement->type && replacement->type->exec ) )
- return -ENOEXEC;
-
-
- image_put ( image->replacement );
-
-
- image->replacement = image_get ( replacement );
- DBGC ( image, "IMAGE %s will replace self with IMAGE %s\n",
- image->name, replacement->name );
-
- return 0;
- }
-
-
- int image_select ( struct image *image ) {
- struct image *tmp;
-
-
- for_each_image ( tmp )
- tmp->flags &= ~IMAGE_SELECTED;
-
-
- if ( ! ( image->type && image->type->exec ) )
- return -ENOEXEC;
-
-
- image->flags |= IMAGE_SELECTED;
-
- return 0;
- }
-
-
- struct image * image_find_selected ( void ) {
- struct image *image;
-
- for_each_image ( image ) {
- if ( image->flags & IMAGE_SELECTED )
- return image;
- }
- return NULL;
- }
-
-
- int image_set_trust ( int require_trusted, int permanent ) {
-
-
- if ( ! require_trusted_images_permanent ) {
- require_trusted_images = require_trusted;
- require_trusted_images_permanent = permanent;
- }
-
-
-
- if ( require_trusted_images != require_trusted )
- return -EACCES_PERMANENT;
-
- return 0;
- }
-
-
- int image_pixbuf ( struct image *image, struct pixel_buffer **pixbuf ) {
- int rc;
-
-
- if ( ! ( image->type && image->type->pixbuf ) )
- return -ENOTSUP;
-
-
- if ( ( rc = image->type->pixbuf ( image, pixbuf ) ) != 0 ) {
- DBGC ( image, "IMAGE %s could not create pixel buffer: %s\n",
- image->name, strerror ( rc ) );
- return rc;
- }
-
- return 0;
- }
|