t_o_search.c revision 1.2 1 1.2 martin /* $NetBSD: t_o_search.c,v 1.2 2012/11/23 08:24:20 martin Exp $ */
2 1.1 manu
3 1.1 manu /*-
4 1.1 manu * Copyright (c) 2012 The NetBSD Foundation, Inc.
5 1.1 manu * All rights reserved.
6 1.1 manu *
7 1.1 manu * This code is derived from software contributed to The NetBSD Foundation
8 1.1 manu * by Emmanuel Dreyfus.
9 1.1 manu *
10 1.1 manu * Redistribution and use in source and binary forms, with or without
11 1.1 manu * modification, are permitted provided that the following conditions
12 1.1 manu * are met:
13 1.1 manu * 1. Redistributions of source code must retain the above copyright
14 1.1 manu * notice, this list of conditions and the following disclaimer.
15 1.1 manu * 2. Redistributions in binary form must reproduce the above copyright
16 1.1 manu * notice, this list of conditions and the following disclaimer in the
17 1.1 manu * documentation and/or other materials provided with the distribution.
18 1.1 manu *
19 1.1 manu * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
20 1.1 manu * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
21 1.1 manu * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
22 1.1 manu * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
23 1.1 manu * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
24 1.1 manu * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
25 1.1 manu * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
26 1.1 manu * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
27 1.1 manu * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
28 1.1 manu * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
29 1.1 manu * POSSIBILITY OF SUCH DAMAGE.
30 1.1 manu */
31 1.1 manu #include <sys/cdefs.h>
32 1.2 martin __RCSID("$NetBSD: t_o_search.c,v 1.2 2012/11/23 08:24:20 martin Exp $");
33 1.1 manu
34 1.1 manu #include <atf-c.h>
35 1.1 manu #include <errno.h>
36 1.1 manu #include <fcntl.h>
37 1.1 manu #include <limits.h>
38 1.1 manu #include <paths.h>
39 1.1 manu #include <stdio.h>
40 1.1 manu #include <string.h>
41 1.1 manu #include <unistd.h>
42 1.1 manu #include <pwd.h>
43 1.1 manu #include <sys/param.h>
44 1.1 manu
45 1.1 manu #define DIR "dir"
46 1.1 manu #define FILE "dir/o_search"
47 1.1 manu #define BASEFILE "o_search"
48 1.1 manu
49 1.1 manu ATF_TC_WITH_CLEANUP(o_search_perm1);
50 1.1 manu ATF_TC_HEAD(o_search_perm1, tc)
51 1.1 manu {
52 1.1 manu atf_tc_set_md_var(tc, "descr", "See that openat enforce search permission");
53 1.1 manu atf_tc_set_md_var(tc, "require.user", "unprivileged");
54 1.1 manu }
55 1.1 manu
56 1.1 manu ATF_TC_BODY(o_search_perm1, tc)
57 1.1 manu {
58 1.1 manu int dfd;
59 1.1 manu int fd;
60 1.1 manu
61 1.1 manu ATF_REQUIRE(mkdir(DIR, 0755) == 0);
62 1.1 manu ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
63 1.1 manu ATF_REQUIRE(close(fd) == 0);
64 1.1 manu
65 1.1 manu ATF_REQUIRE((dfd = open(DIR, O_RDONLY, 0)) != -1);
66 1.1 manu
67 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
68 1.1 manu ATF_REQUIRE(close(fd) == 0);
69 1.1 manu
70 1.1 manu ATF_REQUIRE(fchmod(dfd, 644) == 0);
71 1.1 manu
72 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) == -1);
73 1.1 manu ATF_REQUIRE(errno == EACCES);
74 1.1 manu
75 1.1 manu ATF_REQUIRE(close(dfd) == 0);
76 1.1 manu }
77 1.1 manu
78 1.1 manu ATF_TC_CLEANUP(o_search_perm1, tc)
79 1.1 manu {
80 1.1 manu (void)unlink(FILE);
81 1.1 manu (void)rmdir(DIR);
82 1.1 manu }
83 1.1 manu
84 1.2 martin ATF_TC_WITH_CLEANUP(o_search_root_flag1);
85 1.2 martin ATF_TC_HEAD(o_search_root_flag1, tc)
86 1.1 manu {
87 1.1 manu atf_tc_set_md_var(tc, "descr", "See that openat honours O_SEARCH");
88 1.2 martin atf_tc_set_md_var(tc, "require.user", "root");
89 1.1 manu }
90 1.1 manu
91 1.2 martin ATF_TC_BODY(o_search_root_flag1, tc)
92 1.1 manu {
93 1.1 manu int dfd;
94 1.1 manu int fd;
95 1.1 manu
96 1.1 manu ATF_REQUIRE(mkdir(DIR, 0755) == 0);
97 1.1 manu ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
98 1.1 manu ATF_REQUIRE(close(fd) == 0);
99 1.1 manu
100 1.1 manu ATF_REQUIRE((dfd = open(DIR, O_RDONLY|O_SEARCH, 0)) != -1);
101 1.1 manu
102 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
103 1.1 manu ATF_REQUIRE(close(fd) == 0);
104 1.1 manu
105 1.1 manu ATF_REQUIRE(fchmod(dfd, 644) == 0);
106 1.1 manu
107 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
108 1.1 manu ATF_REQUIRE(close(fd) == 0);
109 1.1 manu
110 1.1 manu ATF_REQUIRE(fchmod(dfd, 444) == 0);
111 1.1 manu
112 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
113 1.1 manu
114 1.1 manu ATF_REQUIRE(close(dfd) == 0);
115 1.1 manu }
116 1.1 manu
117 1.2 martin ATF_TC_CLEANUP(o_search_root_flag1, tc)
118 1.2 martin {
119 1.2 martin (void)unlink(FILE);
120 1.2 martin (void)rmdir(DIR);
121 1.2 martin }
122 1.2 martin
123 1.2 martin ATF_TC_WITH_CLEANUP(o_search_unpriv_flag1);
124 1.2 martin ATF_TC_HEAD(o_search_unpriv_flag1, tc)
125 1.2 martin {
126 1.2 martin atf_tc_set_md_var(tc, "descr", "See that openat honours O_SEARCH");
127 1.2 martin atf_tc_set_md_var(tc, "require.user", "unprivileged");
128 1.2 martin }
129 1.2 martin
130 1.2 martin ATF_TC_BODY(o_search_unpriv_flag1, tc)
131 1.2 martin {
132 1.2 martin int dfd;
133 1.2 martin int fd;
134 1.2 martin
135 1.2 martin ATF_REQUIRE(mkdir(DIR, 0755) == 0);
136 1.2 martin ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
137 1.2 martin ATF_REQUIRE(close(fd) == 0);
138 1.2 martin
139 1.2 martin ATF_REQUIRE((dfd = open(DIR, O_RDONLY|O_SEARCH, 0)) != -1);
140 1.2 martin
141 1.2 martin ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
142 1.2 martin ATF_REQUIRE(close(fd) == 0);
143 1.2 martin
144 1.2 martin ATF_REQUIRE(fchmod(dfd, 744) == 0);
145 1.2 martin
146 1.2 martin ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
147 1.2 martin ATF_REQUIRE(close(fd) == 0);
148 1.2 martin
149 1.2 martin ATF_REQUIRE(fchmod(dfd, 444) == 0);
150 1.2 martin
151 1.2 martin ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) == -1);
152 1.2 martin
153 1.2 martin ATF_REQUIRE(close(dfd) == 0);
154 1.2 martin }
155 1.2 martin
156 1.2 martin ATF_TC_CLEANUP(o_search_unpriv_flag1, tc)
157 1.1 manu {
158 1.1 manu (void)unlink(FILE);
159 1.1 manu (void)rmdir(DIR);
160 1.1 manu }
161 1.1 manu
162 1.1 manu ATF_TC_WITH_CLEANUP(o_search_perm2);
163 1.1 manu ATF_TC_HEAD(o_search_perm2, tc)
164 1.1 manu {
165 1.1 manu atf_tc_set_md_var(tc, "descr", "See that fstatat enforce search permission");
166 1.1 manu atf_tc_set_md_var(tc, "require.user", "unprivileged");
167 1.1 manu }
168 1.1 manu
169 1.1 manu ATF_TC_BODY(o_search_perm2, tc)
170 1.1 manu {
171 1.1 manu int dfd;
172 1.1 manu int fd;
173 1.1 manu ATF_REQUIRE(mkdir(DIR, 0755) == 0);
174 1.1 manu ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
175 1.1 manu ATF_REQUIRE(close(fd) == 0);
176 1.1 manu
177 1.1 manu ATF_REQUIRE((dfd = open(DIR, O_RDONLY, 0)) != -1);
178 1.1 manu
179 1.1 manu ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
180 1.1 manu
181 1.1 manu ATF_REQUIRE(fchmod(dfd, 644) == 0);
182 1.1 manu
183 1.1 manu ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == -1);
184 1.1 manu ATF_REQUIRE(errno == EACCES);
185 1.1 manu
186 1.1 manu ATF_REQUIRE(close(dfd) == 0);
187 1.1 manu }
188 1.1 manu
189 1.1 manu ATF_TC_CLEANUP(o_search_perm2, tc)
190 1.1 manu {
191 1.1 manu (void)unlink(FILE);
192 1.1 manu (void)rmdir(DIR);
193 1.1 manu }
194 1.1 manu
195 1.2 martin ATF_TC_WITH_CLEANUP(o_search_root_flag2);
196 1.2 martin ATF_TC_HEAD(o_search_root_flag2, tc)
197 1.1 manu {
198 1.1 manu atf_tc_set_md_var(tc, "descr", "See that fstatat honours O_SEARCH");
199 1.2 martin atf_tc_set_md_var(tc, "require.user", "root");
200 1.1 manu }
201 1.1 manu
202 1.2 martin ATF_TC_BODY(o_search_root_flag2, tc)
203 1.1 manu {
204 1.1 manu int dfd;
205 1.1 manu int fd;
206 1.1 manu
207 1.1 manu ATF_REQUIRE(mkdir(DIR, 0755) == 0);
208 1.1 manu ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
209 1.1 manu ATF_REQUIRE(close(fd) == 0);
210 1.1 manu
211 1.1 manu ATF_REQUIRE((dfd = open(DIR, O_RDONLY|O_SEARCH, 0)) != -1);
212 1.1 manu
213 1.1 manu ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
214 1.1 manu
215 1.1 manu ATF_REQUIRE(fchmod(dfd, 644) == 0);
216 1.1 manu
217 1.1 manu ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
218 1.1 manu
219 1.1 manu ATF_REQUIRE(fchmod(dfd, 444) == 0);
220 1.1 manu
221 1.1 manu ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
222 1.1 manu
223 1.1 manu ATF_REQUIRE(close(dfd) == 0);
224 1.1 manu }
225 1.1 manu
226 1.2 martin ATF_TC_CLEANUP(o_search_root_flag2, tc)
227 1.2 martin {
228 1.2 martin (void)unlink(FILE);
229 1.2 martin (void)rmdir(DIR);
230 1.2 martin }
231 1.2 martin
232 1.2 martin ATF_TC_WITH_CLEANUP(o_search_unpriv_flag2);
233 1.2 martin ATF_TC_HEAD(o_search_unpriv_flag2, tc)
234 1.2 martin {
235 1.2 martin atf_tc_set_md_var(tc, "descr", "See that fstatat honours O_SEARCH");
236 1.2 martin atf_tc_set_md_var(tc, "require.user", "unprivileged");
237 1.2 martin }
238 1.2 martin
239 1.2 martin ATF_TC_BODY(o_search_unpriv_flag2, tc)
240 1.2 martin {
241 1.2 martin int dfd;
242 1.2 martin int fd;
243 1.2 martin
244 1.2 martin ATF_REQUIRE(mkdir(DIR, 0755) == 0);
245 1.2 martin ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
246 1.2 martin ATF_REQUIRE(close(fd) == 0);
247 1.2 martin
248 1.2 martin ATF_REQUIRE((dfd = open(DIR, O_RDONLY|O_SEARCH, 0)) != -1);
249 1.2 martin
250 1.2 martin ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
251 1.2 martin
252 1.2 martin ATF_REQUIRE(fchmod(dfd, 744) == 0);
253 1.2 martin
254 1.2 martin ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
255 1.2 martin
256 1.2 martin ATF_REQUIRE(fchmod(dfd, 444) == 0);
257 1.2 martin
258 1.2 martin ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
259 1.2 martin
260 1.2 martin ATF_REQUIRE(close(dfd) == 0);
261 1.2 martin }
262 1.2 martin
263 1.2 martin ATF_TC_CLEANUP(o_search_unpriv_flag2, tc)
264 1.1 manu {
265 1.1 manu (void)unlink(FILE);
266 1.1 manu (void)rmdir(DIR);
267 1.1 manu }
268 1.1 manu
269 1.1 manu ATF_TC_WITH_CLEANUP(o_search_notdir);
270 1.1 manu ATF_TC_HEAD(o_search_notdir, tc)
271 1.1 manu {
272 1.1 manu atf_tc_set_md_var(tc, "descr", "See that openat fails with non dir fd");
273 1.1 manu }
274 1.1 manu
275 1.1 manu ATF_TC_BODY(o_search_notdir, tc)
276 1.1 manu {
277 1.1 manu int dfd;
278 1.1 manu int fd;
279 1.1 manu
280 1.1 manu ATF_REQUIRE(mkdir(DIR, 0755) == 0);
281 1.1 manu ATF_REQUIRE((dfd = open(FILE, O_CREAT|O_RDWR|O_SEARCH, 0644)) != -1);
282 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) == -1);
283 1.1 manu ATF_REQUIRE(errno == ENOTDIR);
284 1.1 manu }
285 1.1 manu
286 1.1 manu ATF_TC_CLEANUP(o_search_notdir, tc)
287 1.1 manu {
288 1.1 manu (void)unlink(FILE);
289 1.1 manu (void)rmdir(DIR);
290 1.1 manu }
291 1.1 manu
292 1.1 manu
293 1.1 manu
294 1.1 manu ATF_TP_ADD_TCS(tp)
295 1.1 manu {
296 1.1 manu
297 1.1 manu ATF_TP_ADD_TC(tp, o_search_perm1);
298 1.2 martin ATF_TP_ADD_TC(tp, o_search_root_flag1);
299 1.2 martin ATF_TP_ADD_TC(tp, o_search_unpriv_flag1);
300 1.1 manu ATF_TP_ADD_TC(tp, o_search_perm2);
301 1.2 martin ATF_TP_ADD_TC(tp, o_search_root_flag2);
302 1.2 martin ATF_TP_ADD_TC(tp, o_search_unpriv_flag2);
303 1.1 manu ATF_TP_ADD_TC(tp, o_search_notdir);
304 1.1 manu
305 1.1 manu return atf_no_error();
306 1.1 manu }
307