| Commit message (Expand) | Author | Age | Files | Lines |
| * | security hardening: ensure suid programs have valid stdin/out/err•••this behavior (opening fds 0-2 for a suid program) is explicitly
allowed (but not required) by POSIX to protect badly-written suid
programs from clobbering files they later open.
this commit does add some cost in startup code, but the availability
of auxv and the security flag will be useful elsewhere in the future.
in particular auxv is needed for static-linked vdso support, which is
still waiting to be committed (sorry nik!)
| Rich Felker | 2011-08-23 | 2 | -0/+10 |
| * | typo in macro definitions for x86_64 | Rich Felker | 2011-08-14 | 1 | -1/+1 |
| * | ensure the compiler does not move around thread-register-based reads•••if gcc decided to move this across a conditional that checks validity
of the thread register, an invalid thread-register-based read could be
performed and raise sigsegv.
| Rich Felker | 2011-08-06 | 2 | -2/+2 |
| * | socket headers macro adjustment - workaround for buggy programs•••some program was undefining AF_NETLINK and thereby breaking AF_ROUTE...
| Rich Felker | 2011-07-21 | 2 | -2/+2 |
| * | fix some symbol resolution issues in dynamic linker•••1. search was wrongly beginning with lib itself rather than dso head
2. inconsistent resolution of function pointers for functions in plt
| Rich Felker | 2011-06-25 | 2 | -0/+2 |
| * | move all limits that don't vary out of bits/limits.h, into main limits.h | Rich Felker | 2011-06-25 | 2 | -53/+2 |
| * | proper path searching for dynamic linker•••first, use $LD_LIBRARY_PATH unless suid. if that fails, read path from
/etc/ld-musl-$ARCH.path and fallback to a builtin default.
| Rich Felker | 2011-06-25 | 2 | -0/+4 |
| * | experimental dynamic linker!•••some notes:
- library search path is hard coded
- x86_64 code is untested and may not work
- dlopen/dlsym is not yet implemented
- relocations in read-only memory won't work
| Rich Felker | 2011-06-18 | 2 | -0/+54 |
| * | __syscall5 inline is having trouble with PIC; just use the function for now | Rich Felker | 2011-06-14 | 1 | -0/+7 |
| * | use __WCHAR_TYPE__ on i386 if it is defined•••unfortunately traditional i386 practice was to use "long" rather than
"int" for wchar_t, despite the latter being much more natural and
logical. we followed this practice, but it seems some compilers (clang
and maybe certain gcc builds or others too..?) have switched to using
int, resulting in spurious pointer type mismatches when L"..." wide
strings are used. the best solution I could find is to use the
compiler's definition of wchar_t if it exists, and otherwise fallback
to the traditional definition.
there's no point in duplicating this approach on 64-bit archs, as
their only 32-bit type is int.
| Rich Felker | 2011-06-07 | 1 | -0/+4 |
| * | use compiler builtins for variadic macros when available•••this slightly cuts down on the degree musl "fights with" gcc, but more
importantly, it fixes a critical bug when gcc inlines a variadic
function and optimizes out the variadic arguments due to noticing that
they were "not used" (by __builtin_va_arg).
we leave the old code in place if __GNUC__ >= 3 is false; it seems
like it might be necessary at least for tinycc support and perhaps if
anyone ever gets around to fixing gcc 2.95.3 enough to make it work..
| Rich Felker | 2011-04-27 | 2 | -1/+5 |
| * | add word-sized ctz function to atomic.h•••strictly speaking this and a few other ops should be factored into
asm.h or the file should just be renamed to asm.h, but whatever. clean
it up someday.
| Rich Felker | 2011-04-27 | 2 | -4/+16 |
| * | move wait.h macros out of bits. they do not vary. | Rich Felker | 2011-04-21 | 4 | -46/+0 |
| * | namespace fixes for sys/mman.h | Rich Felker | 2011-04-20 | 2 | -30/+30 |
| * | add syscall wrappers for posix_fadvise, posix_fallocate | Rich Felker | 2011-04-20 | 2 | -0/+6 |
| * | overhaul pthread cancellation•••this patch improves the correctness, simplicity, and size of
cancellation-related code. modulo any small errors, it should now be
completely conformant, safe, and resource-leak free.
the notion of entering and exiting cancellation-point context has been
completely eliminated and replaced with alternative syscall assembly
code for cancellable syscalls. the assembly is responsible for setting
up execution context information (stack pointer and address of the
syscall instruction) which the cancellation signal handler can use to
determine whether the interrupted code was in a cancellable state.
these changes eliminate race conditions in the previous generation of
cancellation handling code (whereby a cancellation request received
just prior to the syscall would not be processed, leaving the syscall
to block, potentially indefinitely), and remedy an issue where
non-cancellable syscalls made from signal handlers became cancellable
if the signal handler interrupted a cancellation point.
x86_64 asm is untested and may need a second try to get it right.
| Rich Felker | 2011-04-17 | 5 | -9/+12 |
| * | fix O_SYNC definition, cleanup fcntl.h | Rich Felker | 2011-04-14 | 2 | -22/+10 |
| * | fix FAPPEND typo on x86_64 (previously only fixed on i386) | Rich Felker | 2011-04-14 | 1 | -1/+1 |
| * | fcntl.h: move macros that do not vary between archs out of bits | Rich Felker | 2011-04-14 | 2 | -48/+0 |
| * | fix broken fcntl locks on x86_64 | Rich Felker | 2011-04-14 | 1 | -3/+3 |
| * | fix typo in legacy FAPPEND definition | Rich Felker | 2011-04-14 | 1 | -1/+1 |
| * | numerous fixes to sysv ipc•••some of these definitions were just plain wrong, others based on
outdated ancient "non-64" versions of the kernel interface.
as much as possible has now been moved out of bits/*
these changes break abi (the old abi for these functions was wrong),
but since they were not working anyway it can hardly matter.
| Rich Felker | 2011-04-13 | 6 | -48/+36 |
| * | fix and cleanup suseconds_t/timeval stuff (broken on 64-bit)•••trash in the upper 32 bits was making the kernel sleep forever in
select on 64-bit systems.
| Rich Felker | 2011-04-13 | 1 | -1/+1 |
| * | more types cleanup•••the basic idea is that the only things in alltypes.h should be types
that either vary from system to system (in practice, not just in
theoretical la-la land - this is the implementation so we choose what
constraints we want to impose on ports) or which are needed by
multiple system headers.
| Rich Felker | 2011-04-11 | 2 | -6/+0 |
| * | cleanup types stuff in headers, fix missing u_int*_t in sys/types.h | Rich Felker | 2011-04-11 | 2 | -22/+0 |
| * | add missing float.h macros•••actually FLT_ROUNDS needs to expand to a static inline function that
obtains the current rounding mode and returns it, but that will be
added later with fenv.h stuff.
| Rich Felker | 2011-04-10 | 2 | -0/+6 |
| * | workaround broken msghdr struct on 64bit linux•••POSIX clearly specifies the type of msg_iovlen and msg_controllen, and
Linux ignores it and makes them both size_t instead. to work around
this we add padding (instead of just using the wrong types like glibc
does), but we also need to patch-up the struct before passing it to
the kernel in case the caller did not zero-fill it.
if i could trust the kernel to just ignore the upper 32 bits, this
would not be necessary, but i don't think it will ignore them...
| Rich Felker | 2011-04-08 | 1 | -2/+2 |
| * | add ip6 pktinfo stuff for x86_64•••these defs should probably all be moved out of bits and unified...
| Rich Felker | 2011-04-05 | 1 | -0/+12 |
| * | add some missing ipv6 stuff | Rich Felker | 2011-04-05 | 1 | -0/+12 |
| * | uncomment IP_PKTINFO•••this was a hack leftover from testing before the initial
check-in to git.
| Rich Felker | 2011-04-05 | 2 | -2/+2 |
| * | fix statvfs syscalls (missing size argument) | Rich Felker | 2011-04-03 | 1 | -1/+1 |
| * | remove obsolete and useless useconds_t type | Rich Felker | 2011-04-01 | 2 | -2/+0 |
| * | somehow timespec tv_nsec had the wrong type on x86_64... fixed | Rich Felker | 2011-04-01 | 1 | -1/+1 |
| * | avoid all malloc/free in timer creation/destruction•••instead of allocating a userspace structure for signal-based timers,
simply use the kernel timer id. we use the fact that thread pointers
will always be zero in the low bit (actually more) to encode integer
timerid values as pointers.
also, this change ensures that the timer_destroy syscall has completed
before the library timer_destroy function returns, in case it matters.
| Rich Felker | 2011-03-30 | 2 | -2/+2 |
| * | some preliminaries for adding POSIX timers | Rich Felker | 2011-03-29 | 2 | -2/+2 |
| * | fix bug from syscall overhaul: extra __syscall_ret call for 0-arg syscalls•••this mainly just caused bloat, but could corrupt errno if a 0-arg
syscall ever failed.
| Rich Felker | 2011-03-28 | 1 | -1/+1 |
| * | match glibc/lsb cancellation abi on i386•••glibc made the ridiculous choice to use pass-by-register calling
convention for these functions, which is impossible to duplicate
directly on non-gcc compilers. instead, we use ugly asm to wrap and
convert the calling convention. presumably this works with every
compiler anyone could potentially want to use.
| Rich Felker | 2011-03-25 | 1 | -0/+19 |
| * | overhaul cancellation to fix resource leaks and dangerous behavior with signals•••this commit addresses two issues:
1. a race condition, whereby a cancellation request occurring after a
syscall returned from kernelspace but before the subsequent
CANCELPT_END would cause cancellable resource-allocating syscalls
(like open) to leak resources.
2. signal handlers invoked while the thread was blocked at a
cancellation point behaved as if asynchronous cancellation mode wer in
effect, resulting in potentially dangerous state corruption if a
cancellation request occurs.
the glibc/nptl implementation of threads shares both of these issues.
with this commit, both are fixed. however, cancellation points
encountered in a signal handler will not be acted upon if the signal
was received while the thread was already at a cancellation point.
they will of course be acted upon after the signal handler returns, so
in real-world usage where signal handlers quickly return, it should
not be a problem. it's possible to solve this problem too by having
sigaction() wrap all signal handlers with a function that uses a
pthread_cleanup handler to catch cancellation, patch up the saved
context, and return into the cancellable function that will catch and
act upon the cancellation. however that would be a lot of complexity
for minimal if any benefit...
| Rich Felker | 2011-03-24 | 2 | -0/+6 |
| * | honor namespace for i386 syscall.h, even though it's not a standard header | Rich Felker | 2011-03-19 | 1 | -50/+50 |
| * | fix typo in x86_64 part of syscall overhaul | Rich Felker | 2011-03-19 | 1 | -1/+1 |
| * | syscall overhaul part two - unify public and internal syscall interface•••with this patch, the syscallN() functions are no longer needed; a
variadic syscall() macro allows syscalls with anywhere from 0 to 6
arguments to be made with a single macro name. also, manually casting
each non-integer argument with (long) is no longer necessary; the
casts are hidden in the macros.
some source files which depended on being able to define the old macro
SYSCALL_RETURNS_ERRNO have been modified to directly use __syscall()
instead of syscall(). references to SYSCALL_SIGSET_SIZE and SYSCALL_LL
have also been changed.
x86_64 has not been tested, and may need a follow-up commit to fix any
minor bugs/oversights.
| Rich Felker | 2011-03-19 | 6 | -284/+205 |
| * | overhaul syscall interface•••this commit shuffles around the location of syscall definitions so
that we can make a syscall() library function with both SYS_* and
__NR_* style syscall names available to user applications, provides
the syscall() library function, and optimizes the code that performs
the actual inline syscalls in the library itself.
previously on i386 when built as PIC (shared library), syscalls were
incurring bus lock (lock prefix) overhead at entry and exit, due to
the way the ebx register was being loaded (xchg instruction with a
memory operand). now the xchg takes place between two registers.
further cleanup to arch/$(ARCH)/syscall.h is planned.
| Rich Felker | 2011-03-19 | 4 | -736/+1494 |
| * | various legacy and linux-specific stuff•••this commit is part of an effort to make more of busybox work
out-of-the-box.
| Rich Felker | 2011-03-18 | 2 | -0/+2 |
| * | optimize contended normal mutex case; add int compare-and-swap atomic | Rich Felker | 2011-03-17 | 2 | -0/+14 |
| * | match dimensions so we can use all slots without invoking OOB-array-access | Rich Felker | 2011-03-11 | 2 | -10/+10 |
| * | fix missing ENOTSUP error code | Rich Felker | 2011-03-11 | 2 | -0/+2 |
| * | make sigaltstack work (missing macros in signal.h, error conditions) | Rich Felker | 2011-03-10 | 2 | -0/+4 |
| * | resolve some header namespace non-issues•••after re-reading 2.2.2 of POSIX 2008, all of these are in the correct
reserved namespaces and do not need protection.
| Rich Felker | 2011-02-20 | 1 | -1/+0 |
| * | fill in some missing siginfo stuff in signal.h | Rich Felker | 2011-02-20 | 2 | -10/+112 |
| * | add missing WIFCONTINUED macro and improve WIFSIGNALED | Rich Felker | 2011-02-19 | 2 | -2/+4 |