3 Copyright (c) 2013-2014, ARM Ltd. All rights reserved.<BR>
5 SPDX-License-Identifier: BSD-2-Clause-Patent
9 #include "AndroidFastbootApp.h"
11 #include <Protocol/AndroidFastbootTransport.h>
12 #include <Protocol/AndroidFastbootPlatform.h>
13 #include <Protocol/SimpleTextOut.h>
14 #include <Protocol/SimpleTextIn.h>
16 #include <Library/PcdLib.h>
17 #include <Library/UefiRuntimeServicesTableLib.h>
18 #include <Library/BaseMemoryLib.h>
19 #include <Library/UefiBootServicesTableLib.h>
20 #include <Library/UefiApplicationEntryPoint.h>
21 #include <Library/PrintLib.h>
24 * UEFI Application using the FASTBOOT_TRANSPORT_PROTOCOL and
25 * FASTBOOT_PLATFORM_PROTOCOL to implement the Android Fastboot protocol.
28 STATIC FASTBOOT_TRANSPORT_PROTOCOL
*mTransport
;
29 STATIC FASTBOOT_PLATFORM_PROTOCOL
*mPlatform
;
31 STATIC EFI_SIMPLE_TEXT_OUTPUT_PROTOCOL
*mTextOut
;
37 } ANDROID_FASTBOOT_STATE
;
39 STATIC ANDROID_FASTBOOT_STATE mState
= ExpectCmdState
;
41 // When in ExpectDataState, the number of bytes of data to expect:
42 STATIC UINT64 mNumDataBytes
;
43 // .. and the number of bytes so far received this data phase
44 STATIC UINT64 mBytesReceivedSoFar
;
45 // .. and the buffer to save data into
46 STATIC UINT8
*mDataBuffer
= NULL
;
48 // Event notify functions, from which gBS->Exit shouldn't be called, can signal
49 // this event when the application should exit
50 STATIC EFI_EVENT mFinishedEvent
;
52 STATIC EFI_EVENT mFatalSendErrorEvent
;
54 // This macro uses sizeof - only use it on arrays (i.e. string literals)
55 #define SEND_LITERAL(Str) mTransport->Send ( \
58 &mFatalSendErrorEvent \
60 #define MATCH_CMD_LITERAL(Cmd, Buf) !AsciiStrnCmp (Cmd, Buf, sizeof (Cmd) - 1)
62 #define IS_LOWERCASE_ASCII(Char) (Char >= 'a' && Char <= 'z')
64 #define FASTBOOT_STRING_MAX_LENGTH 256
65 #define FASTBOOT_COMMAND_MAX_LENGTH 64
73 CHAR8 Response
[FASTBOOT_COMMAND_MAX_LENGTH
+ 1] = "OKAY";
76 // Respond to getvar:version with 0.4 (version of Fastboot protocol)
77 if (!AsciiStrnCmp ("version", CmdArg
, sizeof ("version") - 1)) {
78 SEND_LITERAL ("OKAY" ANDROID_FASTBOOT_VERSION
);
80 // All other variables are assumed to be platform specific
81 Status
= mPlatform
->GetVar (CmdArg
, Response
+ 4);
82 if (EFI_ERROR (Status
)) {
83 SEND_LITERAL ("FAILSomething went wrong when looking up the variable");
85 mTransport
->Send (AsciiStrLen (Response
), Response
, &mFatalSendErrorEvent
);
93 IN CHAR8
*NumBytesString
97 CHAR16 OutputString
[FASTBOOT_STRING_MAX_LENGTH
];
99 // Argument is 8-character ASCII string hex representation of number of bytes
100 // that will be sent in the data phase.
101 // Response is "DATA" + that same 8-character string.
103 // Replace any previously downloaded data
104 if (mDataBuffer
!= NULL
) {
105 FreePool (mDataBuffer
);
109 // Parse out number of data bytes to expect
110 mNumDataBytes
= AsciiStrHexToUint64 (NumBytesString
);
111 if (mNumDataBytes
== 0) {
112 mTextOut
->OutputString (mTextOut
, L
"ERROR: Fail to get the number of bytes to download.\r\n");
113 SEND_LITERAL ("FAILFailed to get the number of bytes to download");
117 UnicodeSPrint (OutputString
, sizeof (OutputString
), L
"Downloading %d bytes\r\n", mNumDataBytes
);
118 mTextOut
->OutputString (mTextOut
, OutputString
);
120 mDataBuffer
= AllocatePool (mNumDataBytes
);
121 if (mDataBuffer
== NULL
) {
122 SEND_LITERAL ("FAILNot enough memory");
124 ZeroMem (Response
, sizeof Response
);
129 (UINT32
)mNumDataBytes
131 mTransport
->Send (sizeof Response
- 1, Response
, &mFatalSendErrorEvent
);
133 mState
= ExpectDataState
;
134 mBytesReceivedSoFar
= 0;
141 IN CHAR8
*PartitionName
145 CHAR16 OutputString
[FASTBOOT_STRING_MAX_LENGTH
];
147 // Build output string
148 UnicodeSPrint (OutputString
, sizeof (OutputString
), L
"Flashing partition %a\r\n", PartitionName
);
149 mTextOut
->OutputString (mTextOut
, OutputString
);
151 if (mDataBuffer
== NULL
) {
152 // Doesn't look like we were sent any data
153 SEND_LITERAL ("FAILNo data to flash");
157 Status
= mPlatform
->FlashPartition (
162 if (Status
== EFI_NOT_FOUND
) {
163 SEND_LITERAL ("FAILNo such partition.");
164 mTextOut
->OutputString (mTextOut
, L
"No such partition.\r\n");
165 } else if (EFI_ERROR (Status
)) {
166 SEND_LITERAL ("FAILError flashing partition.");
167 mTextOut
->OutputString (mTextOut
, L
"Error flashing partition.\r\n");
168 DEBUG ((DEBUG_ERROR
, "Couldn't flash image: %r\n", Status
));
170 mTextOut
->OutputString (mTextOut
, L
"Done.\r\n");
171 SEND_LITERAL ("OKAY");
178 IN CHAR8
*PartitionName
182 CHAR16 OutputString
[FASTBOOT_STRING_MAX_LENGTH
];
184 // Build output string
185 UnicodeSPrint (OutputString
, sizeof (OutputString
), L
"Erasing partition %a\r\n", PartitionName
);
186 mTextOut
->OutputString (mTextOut
, OutputString
);
188 Status
= mPlatform
->ErasePartition (PartitionName
);
189 if (EFI_ERROR (Status
)) {
190 SEND_LITERAL ("FAILCheck device console.");
191 DEBUG ((DEBUG_ERROR
, "Couldn't erase image: %r\n", Status
));
193 SEND_LITERAL ("OKAY");
205 mTextOut
->OutputString (mTextOut
, L
"Booting downloaded image\r\n");
207 if (mDataBuffer
== NULL
) {
208 // Doesn't look like we were sent any data
209 SEND_LITERAL ("FAILNo image in memory");
213 // We don't really have any choice but to report success, because once we
214 // boot we lose control of the system.
215 SEND_LITERAL ("OKAY");
217 Status
= BootAndroidBootImg (mNumDataBytes
, mDataBuffer
);
218 if (EFI_ERROR (Status
)) {
219 DEBUG ((DEBUG_ERROR
, "Failed to boot downloaded image: %r\n", Status
));
222 // We shouldn't get here
233 Status
= mPlatform
->DoOemCommand (Command
);
234 if (Status
== EFI_NOT_FOUND
) {
235 SEND_LITERAL ("FAILOEM Command not recognised.");
236 } else if (Status
== EFI_DEVICE_ERROR
) {
237 SEND_LITERAL ("FAILError while executing command");
238 } else if (EFI_ERROR (Status
)) {
239 SEND_LITERAL ("FAIL");
241 SEND_LITERAL ("OKAY");
252 CHAR8 Command
[FASTBOOT_COMMAND_MAX_LENGTH
+ 1];
254 // Max command size is 64 bytes
255 if (Size
> FASTBOOT_COMMAND_MAX_LENGTH
) {
256 SEND_LITERAL ("FAILCommand too large");
260 // Commands aren't null-terminated. Let's get a null-terminated version.
261 AsciiStrnCpyS (Command
, sizeof Command
, Data
, Size
);
264 if (MATCH_CMD_LITERAL ("getvar", Command
)) {
265 HandleGetVar (Command
+ sizeof ("getvar"));
266 } else if (MATCH_CMD_LITERAL ("download", Command
)) {
267 HandleDownload (Command
+ sizeof ("download"));
268 } else if (MATCH_CMD_LITERAL ("verify", Command
)) {
269 SEND_LITERAL ("FAILNot supported");
270 } else if (MATCH_CMD_LITERAL ("flash", Command
)) {
271 HandleFlash (Command
+ sizeof ("flash"));
272 } else if (MATCH_CMD_LITERAL ("erase", Command
)) {
273 HandleErase (Command
+ sizeof ("erase"));
274 } else if (MATCH_CMD_LITERAL ("boot", Command
)) {
276 } else if (MATCH_CMD_LITERAL ("continue", Command
)) {
277 SEND_LITERAL ("OKAY");
278 mTextOut
->OutputString (mTextOut
, L
"Received 'continue' command. Exiting Fastboot mode\r\n");
280 gBS
->SignalEvent (mFinishedEvent
);
281 } else if (MATCH_CMD_LITERAL ("reboot", Command
)) {
282 if (MATCH_CMD_LITERAL ("reboot-booloader", Command
)) {
283 // fastboot_protocol.txt:
284 // "reboot-bootloader Reboot back into the bootloader."
285 // I guess this means reboot back into fastboot mode to save the user
286 // having to do whatever they did to get here again.
287 // Here we just reboot normally.
288 SEND_LITERAL ("INFOreboot-bootloader not supported, rebooting normally.");
291 SEND_LITERAL ("OKAY");
292 gRT
->ResetSystem (EfiResetCold
, EFI_SUCCESS
, 0, NULL
);
294 // Shouldn't get here
295 DEBUG ((DEBUG_ERROR
, "Fastboot: gRT->ResetSystem didn't work\n"));
296 } else if (MATCH_CMD_LITERAL ("powerdown", Command
)) {
297 SEND_LITERAL ("OKAY");
298 gRT
->ResetSystem (EfiResetShutdown
, EFI_SUCCESS
, 0, NULL
);
300 // Shouldn't get here
301 DEBUG ((DEBUG_ERROR
, "Fastboot: gRT->ResetSystem didn't work\n"));
302 } else if (MATCH_CMD_LITERAL ("oem", Command
)) {
303 // The "oem" command isn't in the specification, but it was observed in the
304 // wild, followed by a space, followed by the actual command.
305 HandleOemCommand (Command
+ sizeof ("oem"));
306 } else if (IS_LOWERCASE_ASCII (Command
[0])) {
307 // Commands starting with lowercase ASCII characters are reserved for the
308 // Fastboot protocol. If we don't recognise it, it's probably the future
309 // and there are new commands in the protocol.
310 // (By the way, the "oem" command mentioned above makes this reservation
311 // redundant, but we handle it here to be spec-compliant)
312 SEND_LITERAL ("FAILCommand not recognised. Check Fastboot version.");
314 HandleOemCommand (Command
);
325 UINT32 RemainingBytes
= mNumDataBytes
- mBytesReceivedSoFar
;
326 CHAR16 OutputString
[FASTBOOT_STRING_MAX_LENGTH
];
327 STATIC UINTN Count
= 0;
329 // Protocol doesn't say anything about sending extra data so just ignore it.
330 if (Size
> RemainingBytes
) {
331 Size
= RemainingBytes
;
334 CopyMem (&mDataBuffer
[mBytesReceivedSoFar
], Data
, Size
);
336 mBytesReceivedSoFar
+= Size
;
338 // Show download progress. Don't do it for every packet as outputting text
339 // might be time consuming - do it on the last packet and on every 32nd packet
340 if (((Count
++ % 32) == 0) || (Size
== RemainingBytes
)) {
341 // (Note no newline in format string - it will overwrite the line each time)
344 sizeof (OutputString
),
345 L
"\r%8d / %8d bytes downloaded (%d%%)",
348 (mBytesReceivedSoFar
* 100) / mNumDataBytes
// percentage
350 mTextOut
->OutputString (mTextOut
, OutputString
);
353 if (mBytesReceivedSoFar
== mNumDataBytes
) {
354 // Download finished.
356 mTextOut
->OutputString (mTextOut
, L
"\r\n");
357 SEND_LITERAL ("OKAY");
358 mState
= ExpectCmdState
;
363 This is the NotifyFunction passed to CreateEvent in the FastbootAppEntryPoint
364 It will be called by the UEFI event framework when the transport protocol
365 implementation signals that data has been received from the Fastboot host.
366 The parameters are ignored.
380 Status
= mTransport
->Receive (&Size
, &Data
);
381 if (!EFI_ERROR (Status
)) {
382 if (mState
== ExpectCmdState
) {
383 AcceptCmd (Size
, (CHAR8
*)Data
);
384 } else if (mState
== ExpectDataState
) {
385 AcceptData (Size
, Data
);
392 } while (!EFI_ERROR (Status
));
394 // Quit if there was a fatal error
395 if (Status
!= EFI_NOT_READY
) {
396 ASSERT (Status
== EFI_DEVICE_ERROR
);
397 // (Put a newline at the beginning as we are probably in the data phase,
398 // so the download progress line, with no '\n' is probably on the console)
399 mTextOut
->OutputString (mTextOut
, L
"\r\nFatal error receiving data. Exiting.\r\n");
400 gBS
->SignalEvent (mFinishedEvent
);
405 Event notify for a fatal error in transmission.
414 mTextOut
->OutputString (mTextOut
, L
"Fatal error sending command response. Exiting.\r\n");
415 gBS
->SignalEvent (mFinishedEvent
);
420 FastbootAppEntryPoint (
421 IN EFI_HANDLE ImageHandle
,
422 IN EFI_SYSTEM_TABLE
*SystemTable
426 EFI_EVENT ReceiveEvent
;
427 EFI_EVENT WaitEventArray
[2];
429 EFI_SIMPLE_TEXT_INPUT_PROTOCOL
*TextIn
;
434 Status
= gBS
->LocateProtocol (
435 &gAndroidFastbootTransportProtocolGuid
,
439 if (EFI_ERROR (Status
)) {
440 DEBUG ((DEBUG_ERROR
, "Fastboot: Couldn't open Fastboot Transport Protocol: %r\n", Status
));
444 Status
= gBS
->LocateProtocol (&gAndroidFastbootPlatformProtocolGuid
, NULL
, (VOID
**)&mPlatform
);
445 if (EFI_ERROR (Status
)) {
446 DEBUG ((DEBUG_ERROR
, "Fastboot: Couldn't open Fastboot Platform Protocol: %r\n", Status
));
450 Status
= mPlatform
->Init ();
451 if (EFI_ERROR (Status
)) {
452 DEBUG ((DEBUG_ERROR
, "Fastboot: Couldn't initialise Fastboot Platform Protocol: %r\n", Status
));
456 Status
= gBS
->LocateProtocol (&gEfiSimpleTextOutProtocolGuid
, NULL
, (VOID
**)&mTextOut
);
457 if (EFI_ERROR (Status
)) {
460 "Fastboot: Couldn't open Text Output Protocol: %r\n",
466 Status
= gBS
->LocateProtocol (&gEfiSimpleTextInProtocolGuid
, NULL
, (VOID
**)&TextIn
);
467 if (EFI_ERROR (Status
)) {
468 DEBUG ((DEBUG_ERROR
, "Fastboot: Couldn't open Text Input Protocol: %r\n", Status
));
473 Status
= gBS
->SetWatchdogTimer (0, 0x10000, 0, NULL
);
474 if (EFI_ERROR (Status
)) {
475 DEBUG ((DEBUG_ERROR
, "Fastboot: Couldn't disable watchdog timer: %r\n", Status
));
478 // Create event for receipt of data from the host
479 Status
= gBS
->CreateEvent (
486 ASSERT_EFI_ERROR (Status
);
488 // Create event for exiting application when "continue" command is received
489 Status
= gBS
->CreateEvent (0, TPL_CALLBACK
, NULL
, NULL
, &mFinishedEvent
);
490 ASSERT_EFI_ERROR (Status
);
492 // Create event to pass to FASTBOOT_TRANSPORT_PROTOCOL.Send, signalling a
494 Status
= gBS
->CreateEvent (
499 &mFatalSendErrorEvent
501 ASSERT_EFI_ERROR (Status
);
503 // Start listening for data
504 Status
= mTransport
->Start (
507 if (EFI_ERROR (Status
)) {
508 DEBUG ((DEBUG_ERROR
, "Fastboot: Couldn't start transport: %r\n", Status
));
513 mTextOut
->OutputString (
515 L
"Android Fastboot mode - version " ANDROID_FASTBOOT_VERSION
". Press RETURN or SPACE key to quit.\r\n"
518 // Quit when the user presses any key, or mFinishedEvent is signalled
519 WaitEventArray
[0] = mFinishedEvent
;
520 WaitEventArray
[1] = TextIn
->WaitForKey
;
522 gBS
->WaitForEvent (2, WaitEventArray
, &EventIndex
);
523 Status
= TextIn
->ReadKeyStroke (gST
->ConIn
, &Key
);
524 if (Key
.ScanCode
== SCAN_NULL
) {
525 if ((Key
.UnicodeChar
== CHAR_CARRIAGE_RETURN
) ||
526 (Key
.UnicodeChar
== L
' '))
534 if (EFI_ERROR (Status
)) {
535 DEBUG ((DEBUG_ERROR
, "Warning: Fastboot Transport Stop: %r\n", Status
));
538 mPlatform
->UnInit ();