1 1.1 joerg /*- 2 1.1.1.6 christos * SPDX-License-Identifier: BSD-2-Clause 3 1.1.1.6 christos * 4 1.1 joerg * Copyright (c) 2003-2007 Tim Kientzle 5 1.1 joerg * All rights reserved. 6 1.1 joerg */ 7 1.1 joerg 8 1.1 joerg 9 1.1 joerg #include "cpio_platform.h" 10 1.1 joerg 11 1.1 joerg #ifdef HAVE_ERRNO_H 12 1.1 joerg #include <errno.h> 13 1.1 joerg #endif 14 1.1.1.8 christos #ifdef HAVE_LIMITS_H 15 1.1.1.8 christos #include <limits.h> 16 1.1.1.8 christos #endif 17 1.1 joerg #ifdef HAVE_GRP_H 18 1.1 joerg #include <grp.h> 19 1.1 joerg #endif 20 1.1 joerg #ifdef HAVE_PWD_H 21 1.1 joerg #include <pwd.h> 22 1.1 joerg #endif 23 1.1 joerg #include <stdio.h> 24 1.1 joerg #ifdef HAVE_STDLIB_H 25 1.1 joerg #include <stdlib.h> 26 1.1 joerg #endif 27 1.1 joerg #ifdef HAVE_STRING_H 28 1.1 joerg #include <string.h> 29 1.1 joerg #endif 30 1.1 joerg 31 1.1 joerg #include "cpio.h" 32 1.1.1.7 christos #include "lafe_err.h" 33 1.1 joerg 34 1.1 joerg /* 35 1.1.1.2 joerg * Short options for cpio. Please keep this sorted. 36 1.1 joerg */ 37 1.1.1.5 christos static const char *short_options = "067AaBC:cdE:F:f:H:hI:iJjLlmnO:opR:rtuVvW:yZz"; 38 1.1 joerg 39 1.1 joerg /* 40 1.1.1.2 joerg * Long options for cpio. Please keep this sorted. 41 1.1 joerg */ 42 1.1.1.2 joerg static const struct option { 43 1.1.1.2 joerg const char *name; 44 1.1.1.2 joerg int required; /* 1 if this option requires an argument */ 45 1.1.1.2 joerg int equivalent; /* Equivalent short option. */ 46 1.1.1.2 joerg } cpio_longopts[] = { 47 1.1.1.3 joerg { "b64encode", 0, OPTION_B64ENCODE }, 48 1.1.1.5 christos { "binary", 0, '7' }, 49 1.1.1.2 joerg { "create", 0, 'o' }, 50 1.1.1.3 joerg { "dereference", 0, 'L' }, 51 1.1.1.3 joerg { "dot", 0, 'V' }, 52 1.1.1.2 joerg { "extract", 0, 'i' }, 53 1.1.1.2 joerg { "file", 1, 'F' }, 54 1.1.1.2 joerg { "format", 1, 'H' }, 55 1.1.1.3 joerg { "grzip", 0, OPTION_GRZIP }, 56 1.1.1.2 joerg { "help", 0, 'h' }, 57 1.1.1.2 joerg { "insecure", 0, OPTION_INSECURE }, 58 1.1.1.2 joerg { "link", 0, 'l' }, 59 1.1.1.2 joerg { "list", 0, 't' }, 60 1.1.1.3 joerg { "lrzip", 0, OPTION_LRZIP }, 61 1.1.1.3 joerg { "lz4", 0, OPTION_LZ4 }, 62 1.1.1.2 joerg { "lzma", 0, OPTION_LZMA }, 63 1.1.1.3 joerg { "lzop", 0, OPTION_LZOP }, 64 1.1.1.2 joerg { "make-directories", 0, 'd' }, 65 1.1.1.2 joerg { "no-preserve-owner", 0, OPTION_NO_PRESERVE_OWNER }, 66 1.1.1.2 joerg { "null", 0, '0' }, 67 1.1.1.2 joerg { "numeric-uid-gid", 0, 'n' }, 68 1.1.1.2 joerg { "owner", 1, 'R' }, 69 1.1.1.3 joerg { "passphrase", 1, OPTION_PASSPHRASE }, 70 1.1.1.2 joerg { "pass-through", 0, 'p' }, 71 1.1.1.2 joerg { "preserve-modification-time", 0, 'm' }, 72 1.1.1.2 joerg { "preserve-owner", 0, OPTION_PRESERVE_OWNER }, 73 1.1.1.5 christos { "pwb", 0, '6' }, 74 1.1.1.2 joerg { "quiet", 0, OPTION_QUIET }, 75 1.1.1.2 joerg { "unconditional", 0, 'u' }, 76 1.1.1.3 joerg { "uuencode", 0, OPTION_UUENCODE }, 77 1.1.1.2 joerg { "verbose", 0, 'v' }, 78 1.1.1.2 joerg { "version", 0, OPTION_VERSION }, 79 1.1.1.2 joerg { "xz", 0, 'J' }, 80 1.1.1.4 joerg { "zstd", 0, OPTION_ZSTD }, 81 1.1.1.2 joerg { NULL, 0, 0 } 82 1.1 joerg }; 83 1.1 joerg 84 1.1 joerg /* 85 1.1.1.2 joerg * I used to try to select platform-provided getopt() or 86 1.1.1.2 joerg * getopt_long(), but that caused a lot of headaches. In particular, 87 1.1.1.2 joerg * I couldn't consistently use long options in the test harness 88 1.1.1.2 joerg * because not all platforms have getopt_long(). That in turn led to 89 1.1.1.2 joerg * overuse of the -W hack in the test harness, which made it rough to 90 1.1.1.2 joerg * run the test harness against GNU cpio. (I periodically run the 91 1.1.1.2 joerg * test harness here against GNU cpio as a sanity-check. Yes, 92 1.1.1.2 joerg * I've found a couple of bugs in GNU cpio that way.) 93 1.1 joerg */ 94 1.1 joerg int 95 1.1 joerg cpio_getopt(struct cpio *cpio) 96 1.1 joerg { 97 1.1.1.2 joerg enum { state_start = 0, state_next_word, state_short, state_long }; 98 1.1.1.2 joerg static int state = state_start; 99 1.1.1.2 joerg static char *opt_word; 100 1.1.1.2 joerg 101 1.1.1.5 christos const struct option *popt, *match, *match2; 102 1.1.1.5 christos const char *p, *long_prefix; 103 1.1.1.2 joerg size_t optlength; 104 1.1.1.5 christos int opt; 105 1.1.1.5 christos int required; 106 1.1.1.2 joerg 107 1.1.1.5 christos again: 108 1.1.1.5 christos match = NULL; 109 1.1.1.5 christos match2 = NULL; 110 1.1.1.5 christos long_prefix = "--"; 111 1.1.1.5 christos opt = '?'; 112 1.1.1.5 christos required = 0; 113 1.1.1.3 joerg cpio->argument = NULL; 114 1.1.1.2 joerg 115 1.1.1.2 joerg /* First time through, initialize everything. */ 116 1.1.1.2 joerg if (state == state_start) { 117 1.1.1.2 joerg /* Skip program name. */ 118 1.1.1.2 joerg ++cpio->argv; 119 1.1.1.2 joerg --cpio->argc; 120 1.1.1.2 joerg state = state_next_word; 121 1.1.1.2 joerg } 122 1.1 joerg 123 1.1.1.2 joerg /* 124 1.1.1.2 joerg * We're ready to look at the next word in argv. 125 1.1.1.2 joerg */ 126 1.1.1.2 joerg if (state == state_next_word) { 127 1.1.1.2 joerg /* No more arguments, so no more options. */ 128 1.1.1.2 joerg if (cpio->argv[0] == NULL) 129 1.1.1.2 joerg return (-1); 130 1.1.1.2 joerg /* Doesn't start with '-', so no more options. */ 131 1.1.1.2 joerg if (cpio->argv[0][0] != '-') 132 1.1.1.2 joerg return (-1); 133 1.1.1.2 joerg /* "--" marks end of options; consume it and return. */ 134 1.1.1.2 joerg if (strcmp(cpio->argv[0], "--") == 0) { 135 1.1.1.2 joerg ++cpio->argv; 136 1.1.1.2 joerg --cpio->argc; 137 1.1.1.2 joerg return (-1); 138 1.1.1.2 joerg } 139 1.1.1.2 joerg /* Get next word for parsing. */ 140 1.1.1.2 joerg opt_word = *cpio->argv++; 141 1.1.1.2 joerg --cpio->argc; 142 1.1.1.2 joerg if (opt_word[1] == '-') { 143 1.1.1.2 joerg /* Set up long option parser. */ 144 1.1.1.2 joerg state = state_long; 145 1.1.1.2 joerg opt_word += 2; /* Skip leading '--' */ 146 1.1 joerg } else { 147 1.1.1.2 joerg /* Set up short option parser. */ 148 1.1.1.2 joerg state = state_short; 149 1.1.1.2 joerg ++opt_word; /* Skip leading '-' */ 150 1.1.1.2 joerg } 151 1.1.1.2 joerg } 152 1.1.1.2 joerg 153 1.1.1.2 joerg /* 154 1.1.1.2 joerg * We're parsing a group of POSIX-style single-character options. 155 1.1.1.2 joerg */ 156 1.1.1.2 joerg if (state == state_short) { 157 1.1.1.2 joerg /* Peel next option off of a group of short options. */ 158 1.1.1.2 joerg opt = *opt_word++; 159 1.1.1.2 joerg if (opt == '\0') { 160 1.1.1.2 joerg /* End of this group; recurse to get next option. */ 161 1.1.1.2 joerg state = state_next_word; 162 1.1.1.5 christos goto again; 163 1.1 joerg } 164 1.1.1.2 joerg 165 1.1.1.2 joerg /* Does this option take an argument? */ 166 1.1.1.2 joerg p = strchr(short_options, opt); 167 1.1.1.2 joerg if (p == NULL) 168 1.1.1.2 joerg return ('?'); 169 1.1.1.2 joerg if (p[1] == ':') 170 1.1.1.2 joerg required = 1; 171 1.1.1.2 joerg 172 1.1.1.2 joerg /* If it takes an argument, parse that. */ 173 1.1.1.2 joerg if (required) { 174 1.1.1.2 joerg /* If arg is run-in, opt_word already points to it. */ 175 1.1.1.2 joerg if (opt_word[0] == '\0') { 176 1.1.1.2 joerg /* Otherwise, pick up the next word. */ 177 1.1.1.2 joerg opt_word = *cpio->argv; 178 1.1.1.2 joerg if (opt_word == NULL) { 179 1.1.1.2 joerg lafe_warnc(0, 180 1.1.1.2 joerg "Option -%c requires an argument", 181 1.1.1.2 joerg opt); 182 1.1.1.2 joerg return ('?'); 183 1.1.1.2 joerg } 184 1.1.1.2 joerg ++cpio->argv; 185 1.1.1.2 joerg --cpio->argc; 186 1.1.1.2 joerg } 187 1.1.1.2 joerg if (opt == 'W') { 188 1.1.1.2 joerg state = state_long; 189 1.1.1.2 joerg long_prefix = "-W "; /* For clearer errors. */ 190 1.1 joerg } else { 191 1.1.1.2 joerg state = state_next_word; 192 1.1.1.3 joerg cpio->argument = opt_word; 193 1.1.1.2 joerg } 194 1.1.1.2 joerg } 195 1.1.1.2 joerg } 196 1.1.1.2 joerg 197 1.1.1.2 joerg /* We're reading a long option, including -W long=arg convention. */ 198 1.1.1.2 joerg if (state == state_long) { 199 1.1.1.2 joerg /* After this long option, we'll be starting a new word. */ 200 1.1.1.2 joerg state = state_next_word; 201 1.1.1.2 joerg 202 1.1.1.2 joerg /* Option name ends at '=' if there is one. */ 203 1.1.1.2 joerg p = strchr(opt_word, '='); 204 1.1.1.2 joerg if (p != NULL) { 205 1.1.1.2 joerg optlength = (size_t)(p - opt_word); 206 1.1.1.3 joerg cpio->argument = (char *)(uintptr_t)(p + 1); 207 1.1.1.2 joerg } else { 208 1.1.1.2 joerg optlength = strlen(opt_word); 209 1.1.1.2 joerg } 210 1.1.1.2 joerg 211 1.1.1.2 joerg /* Search the table for an unambiguous match. */ 212 1.1.1.2 joerg for (popt = cpio_longopts; popt->name != NULL; popt++) { 213 1.1.1.2 joerg /* Short-circuit if first chars don't match. */ 214 1.1.1.2 joerg if (popt->name[0] != opt_word[0]) 215 1.1.1.2 joerg continue; 216 1.1.1.2 joerg /* If option is a prefix of name in table, record it.*/ 217 1.1.1.2 joerg if (strncmp(opt_word, popt->name, optlength) == 0) { 218 1.1.1.2 joerg match2 = match; /* Record up to two matches. */ 219 1.1.1.2 joerg match = popt; 220 1.1.1.2 joerg /* If it's an exact match, we're done. */ 221 1.1.1.2 joerg if (strlen(popt->name) == optlength) { 222 1.1.1.2 joerg match2 = NULL; /* Forget the others. */ 223 1.1.1.2 joerg break; 224 1.1.1.2 joerg } 225 1.1.1.2 joerg } 226 1.1.1.2 joerg } 227 1.1.1.2 joerg 228 1.1.1.2 joerg /* Fail if there wasn't a unique match. */ 229 1.1.1.2 joerg if (match == NULL) { 230 1.1.1.2 joerg lafe_warnc(0, 231 1.1.1.2 joerg "Option %s%s is not supported", 232 1.1.1.2 joerg long_prefix, opt_word); 233 1.1.1.2 joerg return ('?'); 234 1.1.1.2 joerg } 235 1.1.1.2 joerg if (match2 != NULL) { 236 1.1.1.2 joerg lafe_warnc(0, 237 1.1.1.2 joerg "Ambiguous option %s%s (matches --%s and --%s)", 238 1.1.1.2 joerg long_prefix, opt_word, match->name, match2->name); 239 1.1.1.2 joerg return ('?'); 240 1.1.1.2 joerg } 241 1.1.1.2 joerg 242 1.1.1.2 joerg /* We've found a unique match; does it need an argument? */ 243 1.1.1.2 joerg if (match->required) { 244 1.1.1.2 joerg /* Argument required: get next word if necessary. */ 245 1.1.1.3 joerg if (cpio->argument == NULL) { 246 1.1.1.3 joerg cpio->argument = *cpio->argv; 247 1.1.1.3 joerg if (cpio->argument == NULL) { 248 1.1.1.2 joerg lafe_warnc(0, 249 1.1.1.2 joerg "Option %s%s requires an argument", 250 1.1.1.2 joerg long_prefix, match->name); 251 1.1.1.2 joerg return ('?'); 252 1.1 joerg } 253 1.1.1.2 joerg ++cpio->argv; 254 1.1.1.2 joerg --cpio->argc; 255 1.1 joerg } 256 1.1 joerg } else { 257 1.1.1.2 joerg /* Argument forbidden: fail if there is one. */ 258 1.1.1.3 joerg if (cpio->argument != NULL) { 259 1.1.1.2 joerg lafe_warnc(0, 260 1.1.1.2 joerg "Option %s%s does not allow an argument", 261 1.1.1.2 joerg long_prefix, match->name); 262 1.1.1.2 joerg return ('?'); 263 1.1.1.2 joerg } 264 1.1 joerg } 265 1.1.1.2 joerg return (match->equivalent); 266 1.1 joerg } 267 1.1 joerg 268 1.1 joerg return (opt); 269 1.1 joerg } 270 1.1 joerg 271 1.1 joerg 272 1.1 joerg /* 273 1.1 joerg * Parse the argument to the -R or --owner flag. 274 1.1 joerg * 275 1.1 joerg * The format is one of the following: 276 1.1.1.2 joerg * <username|uid> - Override user but not group 277 1.1.1.2 joerg * <username>: - Override both, group is user's default group 278 1.1.1.2 joerg * <uid>: - Override user but not group 279 1.1.1.2 joerg * <username|uid>:<groupname|gid> - Override both 280 1.1.1.2 joerg * :<groupname|gid> - Override group but not user 281 1.1.1.2 joerg * 282 1.1.1.2 joerg * Where uid/gid are decimal representations and groupname/username 283 1.1.1.2 joerg * are names to be looked up in system database. Note that we try 284 1.1.1.2 joerg * to look up an argument as a name first, then try numeric parsing. 285 1.1 joerg * 286 1.1 joerg * A period can be used instead of the colon. 287 1.1 joerg * 288 1.1.1.2 joerg * Sets uid/gid return as appropriate, -1 indicates uid/gid not specified. 289 1.1.1.3 joerg * TODO: If the spec uses uname/gname, then return those to the caller 290 1.1.1.3 joerg * as well. If the spec provides uid/gid, just return names as NULL. 291 1.1.1.2 joerg * 292 1.1.1.2 joerg * Returns NULL if no error, otherwise returns error string for display. 293 1.1 joerg * 294 1.1 joerg */ 295 1.1.1.6 christos int 296 1.1.1.6 christos owner_parse(const char *spec, struct cpio_owner *owner, const char **errmsg) 297 1.1 joerg { 298 1.1.1.2 joerg static char errbuff[128]; 299 1.1 joerg const char *u, *ue, *g; 300 1.1 joerg 301 1.1.1.6 christos owner->uid = -1; 302 1.1.1.6 christos owner->gid = -1; 303 1.1 joerg 304 1.1.1.6 christos owner->uname = NULL; 305 1.1.1.6 christos owner->gname = NULL; 306 1.1.1.6 christos 307 1.1.1.6 christos if (spec[0] == '\0') { 308 1.1.1.6 christos *errmsg = "Invalid empty user/group spec"; 309 1.1.1.6 christos return (-1); 310 1.1.1.6 christos } 311 1.1.1.2 joerg 312 1.1 joerg /* 313 1.1 joerg * Split spec into [user][:.][group] 314 1.1 joerg * u -> first char of username, NULL if no username 315 1.1 joerg * ue -> first char after username (colon, period, or \0) 316 1.1 joerg * g -> first char of group name 317 1.1 joerg */ 318 1.1 joerg if (*spec == ':' || *spec == '.') { 319 1.1 joerg /* If spec starts with ':' or '.', then just group. */ 320 1.1 joerg ue = u = NULL; 321 1.1 joerg g = spec + 1; 322 1.1 joerg } else { 323 1.1 joerg /* Otherwise, [user] or [user][:] or [user][:][group] */ 324 1.1 joerg ue = u = spec; 325 1.1 joerg while (*ue != ':' && *ue != '.' && *ue != '\0') 326 1.1 joerg ++ue; 327 1.1 joerg g = ue; 328 1.1 joerg if (*g != '\0') /* Skip : or . to find first char of group. */ 329 1.1 joerg ++g; 330 1.1 joerg } 331 1.1 joerg 332 1.1 joerg if (u != NULL) { 333 1.1 joerg /* Look up user: ue is first char after end of user. */ 334 1.1 joerg char *user; 335 1.1 joerg struct passwd *pwent; 336 1.1 joerg 337 1.1.1.6 christos user = malloc(ue - u + 1); 338 1.1.1.2 joerg if (user == NULL) 339 1.1.1.6 christos goto alloc_error; 340 1.1 joerg memcpy(user, u, ue - u); 341 1.1 joerg user[ue - u] = '\0'; 342 1.1.1.2 joerg if ((pwent = getpwnam(user)) != NULL) { 343 1.1.1.6 christos owner->uid = pwent->pw_uid; 344 1.1.1.6 christos owner->uname = strdup(pwent->pw_name); 345 1.1.1.6 christos if (owner->uname == NULL) { 346 1.1.1.6 christos free(user); 347 1.1.1.6 christos goto alloc_error; 348 1.1.1.6 christos } 349 1.1.1.2 joerg if (*ue != '\0') 350 1.1.1.6 christos owner->gid = pwent->pw_gid; 351 1.1.1.2 joerg } else { 352 1.1.1.2 joerg char *end; 353 1.1.1.8 christos unsigned long val; 354 1.1.1.2 joerg errno = 0; 355 1.1.1.8 christos val = strtoul(user, &end, 10); 356 1.1.1.8 christos if (errno || *end != '\0' || val > (unsigned)INT_MAX) { 357 1.1.1.2 joerg snprintf(errbuff, sizeof(errbuff), 358 1.1.1.2 joerg "Couldn't lookup user ``%s''", user); 359 1.1.1.2 joerg errbuff[sizeof(errbuff) - 1] = '\0'; 360 1.1.1.3 joerg free(user); 361 1.1.1.6 christos *errmsg = errbuff; 362 1.1.1.6 christos return (-1); 363 1.1.1.2 joerg } 364 1.1.1.8 christos owner->uid = (int)val; 365 1.1 joerg } 366 1.1 joerg free(user); 367 1.1 joerg } 368 1.1.1.2 joerg 369 1.1 joerg if (*g != '\0') { 370 1.1 joerg struct group *grp; 371 1.1.1.2 joerg if ((grp = getgrnam(g)) != NULL) { 372 1.1.1.6 christos owner->gid = grp->gr_gid; 373 1.1.1.6 christos owner->gname = strdup(grp->gr_name); 374 1.1.1.6 christos if (owner->gname == NULL) { 375 1.1.1.6 christos free(owner->uname); 376 1.1.1.6 christos owner->uname = NULL; 377 1.1.1.6 christos goto alloc_error; 378 1.1.1.6 christos } 379 1.1.1.2 joerg } else { 380 1.1.1.2 joerg char *end; 381 1.1.1.8 christos unsigned long val; 382 1.1.1.2 joerg errno = 0; 383 1.1.1.8 christos val = strtoul(g, &end, 10); 384 1.1.1.8 christos if (errno || *end != '\0' || val > (unsigned)INT_MAX) { 385 1.1.1.2 joerg snprintf(errbuff, sizeof(errbuff), 386 1.1.1.2 joerg "Couldn't lookup group ``%s''", g); 387 1.1.1.2 joerg errbuff[sizeof(errbuff) - 1] = '\0'; 388 1.1.1.6 christos *errmsg = errbuff; 389 1.1.1.6 christos return (-1); 390 1.1.1.2 joerg } 391 1.1.1.8 christos owner->gid = (int)val; 392 1.1 joerg } 393 1.1 joerg } 394 1.1.1.6 christos return (0); 395 1.1.1.6 christos alloc_error: 396 1.1.1.6 christos *errmsg = "Couldn't allocate memory"; 397 1.1.1.6 christos return (-1); 398 1.1 joerg } 399