Blame SOURCES/ltrace-0.7.91-cet.patch

263585
diff -rup a/ltrace-elf.c b/ltrace-elf.c
263585
--- a/ltrace-elf.c	2019-02-28 17:32:49.873659818 -0500
263585
+++ b/ltrace-elf.c	2019-02-28 17:36:32.426779439 -0500
263585
@@ -639,7 +639,21 @@ ltelf_read_elf(struct ltelf *lte, const
263585
 			}
263585
 		} else if (shdr.sh_type == SHT_PROGBITS
263585
 			   || shdr.sh_type == SHT_NOBITS) {
263585
-			if (strcmp(name, ".plt") == 0) {
263585
+			if (strcmp(name, ".plt") == 0
263585
+			    && lte->second_plt_seen == 0) {
263585
+				lte->plt_addr = shdr.sh_addr;
263585
+				lte->plt_size = shdr.sh_size;
263585
+				lte->plt_data = elf_loaddata(scn, &shdr);
263585
+				if (lte->plt_data == NULL)
263585
+					fprintf(stderr,
263585
+						"Can't load .plt data\n");
263585
+				lte->plt_flags = shdr.sh_flags;
263585
+			}
263585
+			/* An Intel CET binary has two PLTs; the
263585
+			   initial PLTGOT points to the second
263585
+			   one.  */
263585
+			else if (strcmp(name, ".plt.sec") == 0) {
263585
+				lte->second_plt_seen = 1;
263585
 				lte->plt_addr = shdr.sh_addr;
263585
 				lte->plt_size = shdr.sh_size;
263585
 				lte->plt_data = elf_loaddata(scn, &shdr);
263585
diff -rup a/ltrace-elf.h b/ltrace-elf.h
263585
--- a/ltrace-elf.h	2019-02-28 17:32:49.874660328 -0500
263585
+++ b/ltrace-elf.h	2019-02-28 17:36:32.428779868 -0500
263585
@@ -45,6 +45,7 @@ struct ltelf {
263585
 	Elf_Data *dynsym;
263585
 	size_t dynsym_count;
263585
 	const char *dynstr;
263585
+	int second_plt_seen;
263585
 	GElf_Addr plt_addr;
263585
 	GElf_Word plt_flags;
263585
 	size_t plt_size;
263585
diff -rup a/sysdeps/linux-gnu/x86/plt.c b/sysdeps/linux-gnu/x86/plt.c
263585
--- a/sysdeps/linux-gnu/x86/plt.c	2019-02-28 17:32:49.991720041 -0500
263585
+++ b/sysdeps/linux-gnu/x86/plt.c	2019-02-28 17:36:32.429780083 -0500
263585
@@ -28,18 +28,18 @@
263585
 #include "trace.h"
263585
 
263585
 static GElf_Addr
263585
-x86_plt_offset(uint32_t i)
263585
+x86_plt_offset(struct ltelf *lte, uint32_t i)
263585
 {
263585
 	/* Skip the first PLT entry, which contains a stub to call the
263585
 	 * resolver.  */
263585
-	return (i + 1) * 16;
263585
+	return (i + (lte->second_plt_seen ? 0 : 1)) * 16;
263585
 }
263585
 
263585
 GElf_Addr
263585
 arch_plt_sym_val(struct ltelf *lte, size_t ndx, GElf_Rela *rela)
263585
 {
263585
 	uint32_t i = *VECT_ELEMENT(&lte->arch.plt_map, uint32_t, ndx);
263585
-	return x86_plt_offset(i) + lte->plt_addr;
263585
+	return x86_plt_offset(lte, i) + lte->plt_addr;
263585
 }
263585
 
263585
 void *
263585
@@ -116,6 +116,13 @@ arch_elf_init(struct ltelf *lte, struct
263585
 	 *	 400426:   68 00 00 00 00          pushq  $0x0
263585
 	 *	 40042b:   e9 e0 ff ff ff          jmpq   400410 <_init+0x18>
263585
 	 *
263585
+	 * For CET binaries it is the following:
263585
+	 *
263585
+	 *	13d0:       f3 0f 1e fa             endbr64 
263585
+	 *	13d4:       68 27 00 00 00          pushq  $0x27  <-- index
263585
+	 *	13d9:       f2 e9 71 fd ff ff       bnd jmpq 1150 <.plt>
263585
+	 *	13df:       90                      nop
263585
+	 *
263585
          * On i386, the argument to push is an offset of relocation to
263585
 	 * use.  The first PLT slot has an offset of 0x0, the second
263585
 	 * 0x8, etc.  On x86_64, it's directly the index that we are
263585
@@ -128,11 +135,33 @@ arch_elf_init(struct ltelf *lte, struct
263585
 	unsigned int i, sz = vect_size(&lte->plt_relocs);
263585
 	for (i = 0; i < sz; ++i) {
263585
 
263585
-		GElf_Addr offset = x86_plt_offset(i);
263585
+		GElf_Addr offset = x86_plt_offset(lte, i);
263585
+		uint32_t reloc_arg;
263585
 
263585
 		uint8_t byte;
263585
-		if (elf_read_next_u8(lte->plt_data, &offset, &byte) < 0
263585
-		    || byte != 0xff
263585
+		if (elf_read_next_u8(lte->plt_data, &offset, &byte) < 0)
263585
+		  continue;
263585
+
263585
+
263585
+		if (byte == 0xf3
263585
+		    && elf_read_next_u8(lte->plt_data, &offset, &byte) >= 0
263585
+		    && byte == 0x0f
263585
+		    && elf_read_next_u8(lte->plt_data, &offset, &byte) >= 0
263585
+		    && byte == 0x1e
263585
+		    && elf_read_next_u8(lte->plt_data, &offset, &byte) >= 0
263585
+		    && byte == 0xfa
263585
+		    && elf_read_next_u8(lte->plt_data, &offset, &byte) >= 0
263585
+		    && byte == 0x68
263585
+		    && elf_read_next_u32(lte->plt_data,
263585
+					 &offset, &reloc_arg) >= 0)
263585
+		  {
263585
+		    /* CET */
263585
+		    fprintf(stderr, "%d: reloc_arg is %lx\n", i, (long)reloc_arg);
263585
+		    *VECT_ELEMENT(&lte->arch.plt_map, unsigned int, reloc_arg) = i;
263585
+		    continue;
263585
+		  }
263585
+
263585
+		if (byte != 0xff
263585
 		    || elf_read_next_u8(lte->plt_data, &offset, &byte) < 0
263585
 		    || (byte != 0xa3 && byte != 0x25))
263585
 			continue;
263585
@@ -140,7 +169,6 @@ arch_elf_init(struct ltelf *lte, struct
263585
 		/* Skip immediate argument in the instruction.  */
263585
 		offset += 4;
263585
 
263585
-		uint32_t reloc_arg;
263585
 		if (elf_read_next_u8(lte->plt_data, &offset, &byte) < 0
263585
 		    || byte != 0x68
263585
 		    || elf_read_next_u32(lte->plt_data,