t_o_search.c revision 1.3 1 1.3 dholland /* $NetBSD: t_o_search.c,v 1.3 2013/01/13 08:15:03 dholland Exp $ */
2 1.1 manu
3 1.1 manu /*-
4 1.1 manu * Copyright (c) 2012 The NetBSD Foundation, Inc.
5 1.1 manu * All rights reserved.
6 1.1 manu *
7 1.1 manu * This code is derived from software contributed to The NetBSD Foundation
8 1.1 manu * by Emmanuel Dreyfus.
9 1.1 manu *
10 1.1 manu * Redistribution and use in source and binary forms, with or without
11 1.1 manu * modification, are permitted provided that the following conditions
12 1.1 manu * are met:
13 1.1 manu * 1. Redistributions of source code must retain the above copyright
14 1.1 manu * notice, this list of conditions and the following disclaimer.
15 1.1 manu * 2. Redistributions in binary form must reproduce the above copyright
16 1.1 manu * notice, this list of conditions and the following disclaimer in the
17 1.1 manu * documentation and/or other materials provided with the distribution.
18 1.1 manu *
19 1.1 manu * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
20 1.1 manu * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
21 1.1 manu * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
22 1.1 manu * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
23 1.1 manu * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
24 1.1 manu * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
25 1.1 manu * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
26 1.1 manu * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
27 1.1 manu * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
28 1.1 manu * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
29 1.1 manu * POSSIBILITY OF SUCH DAMAGE.
30 1.1 manu */
31 1.1 manu #include <sys/cdefs.h>
32 1.3 dholland __RCSID("$NetBSD: t_o_search.c,v 1.3 2013/01/13 08:15:03 dholland Exp $");
33 1.1 manu
34 1.1 manu #include <atf-c.h>
35 1.1 manu #include <errno.h>
36 1.1 manu #include <fcntl.h>
37 1.1 manu #include <limits.h>
38 1.1 manu #include <paths.h>
39 1.1 manu #include <stdio.h>
40 1.1 manu #include <string.h>
41 1.1 manu #include <unistd.h>
42 1.1 manu #include <pwd.h>
43 1.1 manu #include <sys/param.h>
44 1.1 manu
45 1.3 dholland /*
46 1.3 dholland * dholland 20130112: disable tests that require O_SEARCH semantics
47 1.3 dholland * until a decision is reached about the semantics of O_SEARCH and a
48 1.3 dholland * non-broken implementation is available.
49 1.3 dholland */
50 1.3 dholland #if (O_MASK & O_SEARCH) != 0
51 1.3 dholland #define USE_O_SEARCH
52 1.3 dholland #endif
53 1.3 dholland
54 1.1 manu #define DIR "dir"
55 1.1 manu #define FILE "dir/o_search"
56 1.1 manu #define BASEFILE "o_search"
57 1.1 manu
58 1.3 dholland
59 1.1 manu ATF_TC_WITH_CLEANUP(o_search_perm1);
60 1.1 manu ATF_TC_HEAD(o_search_perm1, tc)
61 1.1 manu {
62 1.3 dholland atf_tc_set_md_var(tc, "descr", "See that openat enforces search permission");
63 1.1 manu atf_tc_set_md_var(tc, "require.user", "unprivileged");
64 1.1 manu }
65 1.1 manu
66 1.1 manu ATF_TC_BODY(o_search_perm1, tc)
67 1.1 manu {
68 1.1 manu int dfd;
69 1.1 manu int fd;
70 1.1 manu
71 1.1 manu ATF_REQUIRE(mkdir(DIR, 0755) == 0);
72 1.1 manu ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
73 1.1 manu ATF_REQUIRE(close(fd) == 0);
74 1.1 manu
75 1.1 manu ATF_REQUIRE((dfd = open(DIR, O_RDONLY, 0)) != -1);
76 1.1 manu
77 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
78 1.1 manu ATF_REQUIRE(close(fd) == 0);
79 1.1 manu
80 1.1 manu ATF_REQUIRE(fchmod(dfd, 644) == 0);
81 1.1 manu
82 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) == -1);
83 1.1 manu ATF_REQUIRE(errno == EACCES);
84 1.1 manu
85 1.1 manu ATF_REQUIRE(close(dfd) == 0);
86 1.1 manu }
87 1.1 manu
88 1.1 manu ATF_TC_CLEANUP(o_search_perm1, tc)
89 1.1 manu {
90 1.1 manu (void)unlink(FILE);
91 1.1 manu (void)rmdir(DIR);
92 1.1 manu }
93 1.1 manu
94 1.3 dholland
95 1.3 dholland #ifdef USE_O_SEARCH
96 1.3 dholland
97 1.2 martin ATF_TC_WITH_CLEANUP(o_search_root_flag1);
98 1.2 martin ATF_TC_HEAD(o_search_root_flag1, tc)
99 1.1 manu {
100 1.3 dholland atf_tc_set_md_var(tc, "descr", "See that root openat honours O_SEARCH");
101 1.2 martin atf_tc_set_md_var(tc, "require.user", "root");
102 1.1 manu }
103 1.1 manu
104 1.2 martin ATF_TC_BODY(o_search_root_flag1, tc)
105 1.1 manu {
106 1.1 manu int dfd;
107 1.1 manu int fd;
108 1.1 manu
109 1.1 manu ATF_REQUIRE(mkdir(DIR, 0755) == 0);
110 1.1 manu ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
111 1.1 manu ATF_REQUIRE(close(fd) == 0);
112 1.1 manu
113 1.1 manu ATF_REQUIRE((dfd = open(DIR, O_RDONLY|O_SEARCH, 0)) != -1);
114 1.1 manu
115 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
116 1.1 manu ATF_REQUIRE(close(fd) == 0);
117 1.1 manu
118 1.1 manu ATF_REQUIRE(fchmod(dfd, 644) == 0);
119 1.1 manu
120 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
121 1.1 manu ATF_REQUIRE(close(fd) == 0);
122 1.1 manu
123 1.1 manu ATF_REQUIRE(fchmod(dfd, 444) == 0);
124 1.1 manu
125 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
126 1.1 manu
127 1.1 manu ATF_REQUIRE(close(dfd) == 0);
128 1.1 manu }
129 1.1 manu
130 1.2 martin ATF_TC_CLEANUP(o_search_root_flag1, tc)
131 1.2 martin {
132 1.2 martin (void)unlink(FILE);
133 1.2 martin (void)rmdir(DIR);
134 1.2 martin }
135 1.2 martin
136 1.3 dholland
137 1.2 martin ATF_TC_WITH_CLEANUP(o_search_unpriv_flag1);
138 1.2 martin ATF_TC_HEAD(o_search_unpriv_flag1, tc)
139 1.2 martin {
140 1.2 martin atf_tc_set_md_var(tc, "descr", "See that openat honours O_SEARCH");
141 1.2 martin atf_tc_set_md_var(tc, "require.user", "unprivileged");
142 1.2 martin }
143 1.2 martin
144 1.2 martin ATF_TC_BODY(o_search_unpriv_flag1, tc)
145 1.2 martin {
146 1.2 martin int dfd;
147 1.2 martin int fd;
148 1.2 martin
149 1.2 martin ATF_REQUIRE(mkdir(DIR, 0755) == 0);
150 1.2 martin ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
151 1.2 martin ATF_REQUIRE(close(fd) == 0);
152 1.2 martin
153 1.2 martin ATF_REQUIRE((dfd = open(DIR, O_RDONLY|O_SEARCH, 0)) != -1);
154 1.2 martin
155 1.2 martin ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
156 1.2 martin ATF_REQUIRE(close(fd) == 0);
157 1.2 martin
158 1.3 dholland ATF_REQUIRE(fchmod(dfd, 644) == 0);
159 1.2 martin
160 1.2 martin ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
161 1.2 martin ATF_REQUIRE(close(fd) == 0);
162 1.2 martin
163 1.2 martin ATF_REQUIRE(fchmod(dfd, 444) == 0);
164 1.2 martin
165 1.3 dholland ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) != -1);
166 1.2 martin
167 1.2 martin ATF_REQUIRE(close(dfd) == 0);
168 1.2 martin }
169 1.2 martin
170 1.2 martin ATF_TC_CLEANUP(o_search_unpriv_flag1, tc)
171 1.1 manu {
172 1.1 manu (void)unlink(FILE);
173 1.1 manu (void)rmdir(DIR);
174 1.1 manu }
175 1.1 manu
176 1.3 dholland #endif /* USE_O_SEARCH */
177 1.3 dholland
178 1.3 dholland
179 1.1 manu ATF_TC_WITH_CLEANUP(o_search_perm2);
180 1.1 manu ATF_TC_HEAD(o_search_perm2, tc)
181 1.1 manu {
182 1.3 dholland atf_tc_set_md_var(tc, "descr", "See that faccessat enforces search permission");
183 1.1 manu atf_tc_set_md_var(tc, "require.user", "unprivileged");
184 1.1 manu }
185 1.1 manu
186 1.1 manu ATF_TC_BODY(o_search_perm2, tc)
187 1.1 manu {
188 1.1 manu int dfd;
189 1.1 manu int fd;
190 1.1 manu ATF_REQUIRE(mkdir(DIR, 0755) == 0);
191 1.1 manu ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
192 1.1 manu ATF_REQUIRE(close(fd) == 0);
193 1.1 manu
194 1.1 manu ATF_REQUIRE((dfd = open(DIR, O_RDONLY, 0)) != -1);
195 1.1 manu
196 1.1 manu ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
197 1.1 manu
198 1.1 manu ATF_REQUIRE(fchmod(dfd, 644) == 0);
199 1.1 manu
200 1.1 manu ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == -1);
201 1.1 manu ATF_REQUIRE(errno == EACCES);
202 1.1 manu
203 1.1 manu ATF_REQUIRE(close(dfd) == 0);
204 1.1 manu }
205 1.1 manu
206 1.1 manu ATF_TC_CLEANUP(o_search_perm2, tc)
207 1.1 manu {
208 1.1 manu (void)unlink(FILE);
209 1.1 manu (void)rmdir(DIR);
210 1.1 manu }
211 1.1 manu
212 1.3 dholland
213 1.3 dholland #ifdef USE_O_SEARCH
214 1.3 dholland
215 1.2 martin ATF_TC_WITH_CLEANUP(o_search_root_flag2);
216 1.2 martin ATF_TC_HEAD(o_search_root_flag2, tc)
217 1.1 manu {
218 1.3 dholland atf_tc_set_md_var(tc, "descr", "See that root fstatat honours O_SEARCH");
219 1.2 martin atf_tc_set_md_var(tc, "require.user", "root");
220 1.1 manu }
221 1.1 manu
222 1.2 martin ATF_TC_BODY(o_search_root_flag2, tc)
223 1.1 manu {
224 1.1 manu int dfd;
225 1.1 manu int fd;
226 1.1 manu
227 1.1 manu ATF_REQUIRE(mkdir(DIR, 0755) == 0);
228 1.1 manu ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
229 1.1 manu ATF_REQUIRE(close(fd) == 0);
230 1.1 manu
231 1.1 manu ATF_REQUIRE((dfd = open(DIR, O_RDONLY|O_SEARCH, 0)) != -1);
232 1.1 manu
233 1.1 manu ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
234 1.1 manu
235 1.1 manu ATF_REQUIRE(fchmod(dfd, 644) == 0);
236 1.1 manu
237 1.1 manu ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
238 1.1 manu
239 1.1 manu ATF_REQUIRE(fchmod(dfd, 444) == 0);
240 1.1 manu
241 1.1 manu ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
242 1.1 manu
243 1.1 manu ATF_REQUIRE(close(dfd) == 0);
244 1.1 manu }
245 1.1 manu
246 1.2 martin ATF_TC_CLEANUP(o_search_root_flag2, tc)
247 1.2 martin {
248 1.2 martin (void)unlink(FILE);
249 1.2 martin (void)rmdir(DIR);
250 1.2 martin }
251 1.2 martin
252 1.3 dholland
253 1.2 martin ATF_TC_WITH_CLEANUP(o_search_unpriv_flag2);
254 1.2 martin ATF_TC_HEAD(o_search_unpriv_flag2, tc)
255 1.2 martin {
256 1.2 martin atf_tc_set_md_var(tc, "descr", "See that fstatat honours O_SEARCH");
257 1.2 martin atf_tc_set_md_var(tc, "require.user", "unprivileged");
258 1.2 martin }
259 1.2 martin
260 1.2 martin ATF_TC_BODY(o_search_unpriv_flag2, tc)
261 1.2 martin {
262 1.2 martin int dfd;
263 1.2 martin int fd;
264 1.2 martin
265 1.2 martin ATF_REQUIRE(mkdir(DIR, 0755) == 0);
266 1.2 martin ATF_REQUIRE((fd = open(FILE, O_CREAT|O_RDWR, 0644)) != -1);
267 1.2 martin ATF_REQUIRE(close(fd) == 0);
268 1.2 martin
269 1.2 martin ATF_REQUIRE((dfd = open(DIR, O_RDONLY|O_SEARCH, 0)) != -1);
270 1.2 martin
271 1.2 martin ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
272 1.2 martin
273 1.3 dholland ATF_REQUIRE(fchmod(dfd, 644) == 0);
274 1.2 martin
275 1.2 martin ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
276 1.2 martin
277 1.2 martin ATF_REQUIRE(fchmod(dfd, 444) == 0);
278 1.2 martin
279 1.2 martin ATF_REQUIRE(faccessat(dfd, BASEFILE, W_OK, 0) == 0);
280 1.2 martin
281 1.2 martin ATF_REQUIRE(close(dfd) == 0);
282 1.2 martin }
283 1.2 martin
284 1.2 martin ATF_TC_CLEANUP(o_search_unpriv_flag2, tc)
285 1.1 manu {
286 1.1 manu (void)unlink(FILE);
287 1.1 manu (void)rmdir(DIR);
288 1.3 dholland }
289 1.3 dholland
290 1.3 dholland #endif /* USE_O_SEARCH */
291 1.3 dholland
292 1.1 manu
293 1.1 manu ATF_TC_WITH_CLEANUP(o_search_notdir);
294 1.1 manu ATF_TC_HEAD(o_search_notdir, tc)
295 1.1 manu {
296 1.1 manu atf_tc_set_md_var(tc, "descr", "See that openat fails with non dir fd");
297 1.1 manu }
298 1.1 manu
299 1.1 manu ATF_TC_BODY(o_search_notdir, tc)
300 1.1 manu {
301 1.1 manu int dfd;
302 1.1 manu int fd;
303 1.1 manu
304 1.1 manu ATF_REQUIRE(mkdir(DIR, 0755) == 0);
305 1.1 manu ATF_REQUIRE((dfd = open(FILE, O_CREAT|O_RDWR|O_SEARCH, 0644)) != -1);
306 1.1 manu ATF_REQUIRE((fd = openat(dfd, BASEFILE, O_RDWR, 0)) == -1);
307 1.1 manu ATF_REQUIRE(errno == ENOTDIR);
308 1.1 manu }
309 1.1 manu
310 1.1 manu ATF_TC_CLEANUP(o_search_notdir, tc)
311 1.1 manu {
312 1.1 manu (void)unlink(FILE);
313 1.1 manu (void)rmdir(DIR);
314 1.1 manu }
315 1.1 manu
316 1.1 manu
317 1.1 manu
318 1.1 manu ATF_TP_ADD_TCS(tp)
319 1.1 manu {
320 1.1 manu
321 1.1 manu ATF_TP_ADD_TC(tp, o_search_perm1);
322 1.3 dholland #ifdef USE_O_SEARCH
323 1.2 martin ATF_TP_ADD_TC(tp, o_search_root_flag1);
324 1.2 martin ATF_TP_ADD_TC(tp, o_search_unpriv_flag1);
325 1.3 dholland #endif
326 1.1 manu ATF_TP_ADD_TC(tp, o_search_perm2);
327 1.3 dholland #ifdef USE_O_SEARCH
328 1.2 martin ATF_TP_ADD_TC(tp, o_search_root_flag2);
329 1.2 martin ATF_TP_ADD_TC(tp, o_search_unpriv_flag2);
330 1.3 dholland #endif
331 1.1 manu ATF_TP_ADD_TC(tp, o_search_notdir);
332 1.1 manu
333 1.1 manu return atf_no_error();
334 1.1 manu }
335