From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from picard.linux.it (picard.linux.it [213.254.12.146]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.lore.kernel.org (Postfix) with ESMTPS id 375B0C79FB9 for ; Thu, 10 Sep 2026 13:27:43 +0000 (UTC) Received: from picard.linux.it (localhost [IPv6:::1]) by picard.linux.it (Postfix) with ESMTP id 6E7453C18A4 for ; Thu, 10 Sep 2026 15:27:41 +0200 (CEST) Received: from in-5.smtp.seeweb.it (in-5.smtp.seeweb.it [217.194.8.5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (secp384r1)) (No client certificate requested) by picard.linux.it (Postfix) with ESMTPS id 9291E3C18A4 for ; Thu, 10 Sep 2026 15:27:25 +0200 (CEST) Received: from smtp-out2.suse.de (smtp-out2.suse.de [195.135.223.131]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by in-5.smtp.seeweb.it (Postfix) with ESMTPS id D6551600BE3 for ; Thu, 10 Sep 2026 15:27:24 +0200 (CEST) Received: from imap1.dmz-prg2.suse.org (imap1.dmz-prg2.suse.org [IPv6:2a07:de40:b281:104:10:150:64:97]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (No client certificate requested) by smtp-out2.suse.de (Postfix) with ESMTPS id 3446C1FDCD; Thu, 10 Sep 2026 13:27:16 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=suse.de; s=susede2_rsa; t=1789046840; h=from:from:reply-to:date:date:message-id:message-id:to:to:cc:cc: mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=790/e4DqYEsFvLMeg+HcYKLqFsJTKxNXJMy48p37+D0=; b=zoZa6ERy7Z96GKEe+Ke9cOtAdgF7X/Ih7doRoiA01b7QPAP1EAbgdVm4Cb/7iNfz0urzmL ywcwsMCo3EgtpduXNIuQfMnoMGmI85l6IQxk6usiJKY4qk7YEK/88+py3GNJmjw93gYGRH spWlUnDQtWjLWk2FhgO2cEXQS273iLY= DKIM-Signature: v=1; a=ed25519-sha256; c=relaxed/relaxed; d=suse.de; s=susede2_ed25519; t=1789046840; h=from:from:reply-to:date:date:message-id:message-id:to:to:cc:cc: mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=790/e4DqYEsFvLMeg+HcYKLqFsJTKxNXJMy48p37+D0=; b=mTBvfJ04vEqJ1a2VLOgLlYitotrkEX2SZEAEXOrNQauVqXewydlVDlbHl7lJK9jcmUyxxk WfeR2bCDZtOWKGDg== Authentication-Results: smtp-out2.suse.de; dkim=pass header.d=suse.de header.s=susede2_rsa header.b="a/aQSGSM"; dkim=pass header.d=suse.de header.s=susede2_ed25519 header.b=um1bPIHZ DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=suse.de; s=susede2_rsa; t=1789046836; h=from:from:reply-to:date:date:message-id:message-id:to:to:cc:cc: mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=790/e4DqYEsFvLMeg+HcYKLqFsJTKxNXJMy48p37+D0=; b=a/aQSGSMeVtx901Ft8v//058WUsAys7UbqDlfS1de4esYNSF8dAxf9AHc0s1hUYhDR5imA wY2FT/jfgjvWIYyoVq6EkfDYU6V4LNMg15MBkUkC89ePBYhaBkfXSQ9olpMx7DpkkmTmkI NeIm/fMsJRNm6LxYPlVJ68EJyFJV22k= DKIM-Signature: v=1; a=ed25519-sha256; c=relaxed/relaxed; d=suse.de; s=susede2_ed25519; t=1789046836; h=from:from:reply-to:date:date:message-id:message-id:to:to:cc:cc: mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=790/e4DqYEsFvLMeg+HcYKLqFsJTKxNXJMy48p37+D0=; b=um1bPIHZ2cjgMRju2yCDAoX5iCKuHyvpKn2XUidwKkY0ypwiQ6A36eIXEquQwUlPzhO2Q/ cT5enulEh+xEM2Cg== Received: from imap1.dmz-prg2.suse.org (localhost [127.0.0.1]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (No client certificate requested) by imap1.dmz-prg2.suse.org (Postfix) with ESMTPS id C8E5C13A5A; Thu, 10 Sep 2026 13:27:15 +0000 (UTC) Received: from dovecot-director2.suse.de ([2a07:de40:b281:106:10:150:64:167]) by imap1.dmz-prg2.suse.org with ESMTPSA id mL3ZLzOwompBDwAAD6G6ig (envelope-from ); Thu, 10 Sep 2026 13:27:15 +0000 From: Andrea Cervesato Date: Thu, 10 Sep 2026 15:27:13 +0200 MIME-Version: 1.0 Message-Id: <20260910-coredump-v11-3-e87e2100dbe3@suse.com> References: <20260910-coredump-v11-0-e87e2100dbe3@suse.com> In-Reply-To: <20260910-coredump-v11-0-e87e2100dbe3@suse.com> To: Linux Test Project X-Mailer: b4 0.16.0 X-Developer-Signature: v=1; a=ed25519-sha256; t=1789046835; l=6806; i=andrea.cervesato@suse.com; s=20251210; h=from:subject:message-id; bh=fGnIJjHyGOJW0B0Vy5M8zW8h+aKwCYIQajvxCukMC/w=; b=n+eGZBL6Nsruj64c2eD23R3R5EgyYdXj2bOvFe9yuOJT3AFg+UEXQ3GdC7ecGZ2uw1ReWJgwM U9OEJyH7LRTCtR5J1Gc4vyDUdRbB6eXtRdEvHdHBlhhs+91uIFntqrd X-Developer-Key: i=andrea.cervesato@suse.com; a=ed25519; pk=zKY+6GCauOiuHNZ//d8PQ/UL4jFCTKbXrzXAOQSLevI= X-Rspamd-Action: no action X-Rspamd-Server: rspamd2.dmz-prg2.suse.org X-Rspamd-Queue-Id: 3446C1FDCD X-Spamd-Result: default: False [-4.51 / 50.00]; BAYES_HAM(-3.00)[100.00%]; NEURAL_HAM_LONG(-1.00)[-1.000]; R_DKIM_ALLOW(-0.20)[suse.de:s=susede2_rsa,suse.de:s=susede2_ed25519]; NEURAL_HAM_SHORT(-0.20)[-1.000]; MIME_GOOD(-0.10)[text/plain]; MX_GOOD(-0.01)[]; RBL_SPAMHAUS_BLOCKED_OPENRESOLVER(0.00)[2a07:de40:b281:104:10:150:64:97:from]; ARC_NA(0.00)[]; MIME_TRACE(0.00)[0:+]; RECEIVED_SPAMHAUS_BLOCKED_OPENRESOLVER(0.00)[2a07:de40:b281:106:10:150:64:167:received]; RCVD_VIA_SMTP_AUTH(0.00)[]; RCVD_TLS_ALL(0.00)[]; DKIM_SIGNED(0.00)[suse.de:s=susede2_rsa,suse.de:s=susede2_ed25519]; FROM_EQ_ENVFROM(0.00)[]; FROM_HAS_DN(0.00)[]; RCPT_COUNT_THREE(0.00)[3]; RCVD_COUNT_TWO(0.00)[2]; TO_MATCH_ENVRCPT_ALL(0.00)[]; DBL_BLOCKED_OPENRESOLVER(0.00)[suse.de:dkim,suse.cz:email,suse.com:email,suse.com:mid,imap1.dmz-prg2.suse.org:rdns,imap1.dmz-prg2.suse.org:helo]; TO_DN_ALL(0.00)[]; DKIM_TRACE(0.00)[suse.de:+] X-Virus-Scanned: clamav-milter 1.0.9 at in-5.smtp.seeweb.it X-Virus-Status: Clean Subject: [LTP] [PATCH v11 3/3] coredump02: Verify ELF structure and notes X-BeenThere: ltp@lists.linux.it X-Mailman-Version: 2.1.29 Precedence: list List-Id: Linux Test Project List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit Errors-To: ltp-bounces+ltp=archiver.kernel.org@lists.linux.it Sender: "ltp" From: Andrea Cervesato LTP currently only tests core_pattern specifier expansion and basic ELF magic in coredump01, leaving the internal ELF structure and notes generated by the kernel unverified. Add a test to verify that the kernel produces a valid ET_CORE ELF file with the expected PT_NOTE and PT_LOAD segments, and that the NT_PRPSINFO and NT_PRSTATUS notes contain the expected process name, PID, and terminating signal. Root is required to set the system-wide core_pattern into the test's temporary directory. Reviewed-by: Cyril Hrubis Signed-off-by: Andrea Cervesato --- runtest/kernel_misc | 1 + testcases/kernel/coredump/.gitignore | 1 + testcases/kernel/coredump/coredump02.c | 191 +++++++++++++++++++++++++++++++++ 3 files changed, 193 insertions(+) diff --git a/runtest/kernel_misc b/runtest/kernel_misc index ecf9ee2a2..3311e1929 100644 --- a/runtest/kernel_misc +++ b/runtest/kernel_misc @@ -18,3 +18,4 @@ zram03 zram03 umip_basic_test umip_basic_test aslr01 aslr01 coredump01 coredump01 +coredump02 coredump02 diff --git a/testcases/kernel/coredump/.gitignore b/testcases/kernel/coredump/.gitignore index cd0b51700..e241a112e 100644 --- a/testcases/kernel/coredump/.gitignore +++ b/testcases/kernel/coredump/.gitignore @@ -1,2 +1,3 @@ /coredump01 /coredump01_helper +/coredump02 diff --git a/testcases/kernel/coredump/coredump02.c b/testcases/kernel/coredump/coredump02.c new file mode 100644 index 000000000..7b0b4c43e --- /dev/null +++ b/testcases/kernel/coredump/coredump02.c @@ -0,0 +1,191 @@ +// SPDX-License-Identifier: GPL-2.0-or-later +/* + * Copyright (C) 2026 Linux Test Project + */ + +/*\ + * Verify the ELF structure and note content of a kernel-generated core + * dump. + * + * A core dump written by the kernel is an ELF file of type ET_CORE. It + * contains: + * + * - one PT_NOTE program header holding process metadata + * - one or more PT_LOAD program headers for the mapped memory segments + * + * The PT_NOTE segment carries a stream of notes. Two of them describe + * the crashed process: + * + * - NT_PRPSINFO, whose descriptor is a struct elf_prpsinfo. The pr_fname + * field holds the executable name. + * - NT_PRSTATUS, whose descriptor is a struct elf_prstatus. The pr_pid + * field holds the PID and pr_cursig holds the terminating signal. + * + * The crashed child is a fork of the test binary, so the core dump has + * the same ELF class as the test. ElfW() is therefore safe here. + * + * The test needs root because it rewrites the system-wide core_pattern. + * The original value is saved and restored by the test library on all + * exit paths. + * + * [Algorithm] + * + * - Point core_pattern into the test temporary directory + * - Fork a child which aborts itself to produce a core dump + * - Read the core file into memory and parse the ELF header + * - Walk the program headers and verify PT_NOTE and PT_LOAD are present + * - Walk the notes in every PT_NOTE segment + * - Check that NT_PRPSINFO carries the expected executable name + * - Check that NT_PRSTATUS carries the expected PID and signal + */ + +#include +#include + +#include "coredump_common.h" + +#define NOTE_ALIGN(x) (((x) + 3) & ~3U) + +static char *core_buf; +static size_t core_len; +static int prpsinfo_seen, prstatus_seen; + +static void load_core(const char *path) +{ + struct stat st; + int fd; + + SAFE_STAT(path, &st); + if (st.st_size <= 0) + tst_brk(TFAIL, "core file %s is empty", path); + + core_len = st.st_size; + core_buf = SAFE_MALLOC(core_len); + + fd = SAFE_OPEN(path, O_RDONLY); + SAFE_READ(1, fd, core_buf, core_len); + SAFE_CLOSE(fd); +} + +static void unload_core(void) +{ + free(core_buf); + core_buf = NULL; + core_len = 0; +} + +static const void *core_at(size_t off, size_t need) +{ + if (off > core_len || need > core_len - off) + tst_brk(TFAIL, "core file truncated at %zu (need %zu, have %zu)", + off, need, core_len); + + return core_buf + off; +} + +static void handle_note(uint32_t type, const void *desc, size_t descsz, pid_t pid) +{ + if (type == NT_PRPSINFO && descsz >= sizeof(struct elf_prpsinfo)) { + const struct elf_prpsinfo *info = desc; + + TST_EXP_EQ_STR(info->pr_fname, "coredump02"); + prpsinfo_seen = 1; + } else if (type == NT_PRSTATUS && descsz >= sizeof(struct elf_prstatus)) { + const struct elf_prstatus *st = desc; + + TST_EXP_EQ_LI(st->pr_pid, pid); + TST_EXP_EQ_LI(st->pr_cursig, SIGABRT); + prstatus_seen = 1; + } +} + +static void walk_notes(size_t off, size_t size, pid_t pid) +{ + size_t pos = 0; + + while (pos + sizeof(ElfW(Nhdr)) <= size) { + const ElfW(Nhdr) *nh = core_at(off + pos, sizeof(*nh)); + size_t np = NOTE_ALIGN(nh->n_namesz); + size_t dp = NOTE_ALIGN(nh->n_descsz); + size_t total = sizeof(*nh) + np + dp; + + if (pos + total > size) + tst_brk(TFAIL, "note extends past PT_NOTE (pos=%zu total=%zu size=%zu)", + pos, total, size); + + handle_note(nh->n_type, + core_at(off + pos + sizeof(*nh) + np, nh->n_descsz), + nh->n_descsz, pid); + + pos += total; + } +} + +static void run(void) +{ + char dump[PATH_MAX + 32]; + int pt_note_cnt = 0, have_load = 0; + const ElfW(Ehdr) *eh; + const ElfW(Phdr) *ph; + pid_t pid; + size_t i; + + prpsinfo_seen = prstatus_seen = 0; + + set_pattern("%s/core.%%p", cwd); + + pid = crash_child(); + + snprintf(dump, sizeof(dump), "%s/core.%d", cwd, pid); + load_core(dump); + + eh = core_at(0, sizeof(*eh)); + + TST_EXP_EXPR(!memcmp(eh->e_ident, ELFMAG, SELFMAG), "core has ELF magic"); + TST_EXP_EQ_LI(eh->e_type, ET_CORE); + + if (!eh->e_phnum) + tst_brk(TFAIL, "core has no program headers"); + + ph = core_at(eh->e_phoff, (size_t)eh->e_phnum * sizeof(*ph)); + + for (i = 0; i < eh->e_phnum; i++) { + if (ph[i].p_type == PT_NOTE) { + pt_note_cnt++; + walk_notes(ph[i].p_offset, ph[i].p_filesz, pid); + } else if (ph[i].p_type == PT_LOAD) { + have_load = 1; + core_at(ph[i].p_offset, ph[i].p_filesz); + } + } + + TST_EXP_EQ_LI(pt_note_cnt, 1); + TST_EXP_EQ_LI(have_load, 1); + TST_EXP_EQ_LI(prpsinfo_seen, 1); + TST_EXP_EQ_LI(prstatus_seen, 1); + + SAFE_UNLINK(dump); + unload_core(); +} + +static void cleanup(void) +{ + unload_core(); +} + +static struct tst_test test = { + .test_all = run, + .setup = coredump_setup, + .cleanup = cleanup, + .needs_root = 1, + .needs_tmpdir = 1, + .forks_child = 1, + .needs_kconfigs = (const char *[]) { + "CONFIG_COREDUMP=y", + NULL, + }, + .save_restore = (const struct tst_path_val[]) { + {PATH_KERN_CORE_PATTERN, NULL, TST_SR_TCONF}, + {} + }, +}; -- 2.51.0 -- Mailing list info: https://lists.linux.it/listinfo/ltp