t_msgctl.c revision 1.5 1 1.5 christos /* $NetBSD: t_msgctl.c,v 1.5 2017/01/13 20:44:45 christos Exp $ */
2 1.1 jruoho
3 1.1 jruoho /*-
4 1.1 jruoho * Copyright (c) 2011 The NetBSD Foundation, Inc.
5 1.1 jruoho * All rights reserved.
6 1.1 jruoho *
7 1.1 jruoho * This code is derived from software contributed to The NetBSD Foundation
8 1.1 jruoho * by Jukka Ruohonen.
9 1.1 jruoho *
10 1.1 jruoho * Redistribution and use in source and binary forms, with or without
11 1.1 jruoho * modification, are permitted provided that the following conditions
12 1.1 jruoho * are met:
13 1.1 jruoho * 1. Redistributions of source code must retain the above copyright
14 1.1 jruoho * notice, this list of conditions and the following disclaimer.
15 1.1 jruoho * 2. Redistributions in binary form must reproduce the above copyright
16 1.1 jruoho * notice, this list of conditions and the following disclaimer in the
17 1.1 jruoho * documentation and/or other materials provided with the distribution.
18 1.1 jruoho *
19 1.1 jruoho * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
20 1.1 jruoho * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
21 1.1 jruoho * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
22 1.1 jruoho * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
23 1.1 jruoho * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
24 1.1 jruoho * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
25 1.1 jruoho * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
26 1.1 jruoho * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
27 1.1 jruoho * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
28 1.1 jruoho * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
29 1.1 jruoho * POSSIBILITY OF SUCH DAMAGE.
30 1.1 jruoho */
31 1.1 jruoho #include <sys/cdefs.h>
32 1.5 christos __RCSID("$NetBSD: t_msgctl.c,v 1.5 2017/01/13 20:44:45 christos Exp $");
33 1.1 jruoho
34 1.1 jruoho #include <sys/msg.h>
35 1.1 jruoho #include <sys/stat.h>
36 1.1 jruoho #include <sys/sysctl.h>
37 1.1 jruoho #include <sys/wait.h>
38 1.1 jruoho
39 1.1 jruoho #include <atf-c.h>
40 1.1 jruoho #include <errno.h>
41 1.5 christos #include <limits.h>
42 1.1 jruoho #include <pwd.h>
43 1.1 jruoho #include <stdio.h>
44 1.1 jruoho #include <stdlib.h>
45 1.1 jruoho #include <string.h>
46 1.1 jruoho #include <sysexits.h>
47 1.1 jruoho #include <time.h>
48 1.1 jruoho #include <unistd.h>
49 1.1 jruoho
50 1.1 jruoho #define MSG_KEY 12345689
51 1.1 jruoho #define MSG_MTYPE_1 0x41
52 1.1 jruoho
53 1.1 jruoho struct msg {
54 1.1 jruoho long mtype;
55 1.1 jruoho char buf[3];
56 1.1 jruoho };
57 1.1 jruoho
58 1.1 jruoho static void clean(void);
59 1.1 jruoho
60 1.1 jruoho static void
61 1.1 jruoho clean(void)
62 1.1 jruoho {
63 1.1 jruoho int id;
64 1.1 jruoho
65 1.1 jruoho if ((id = msgget(MSG_KEY, 0)) != -1)
66 1.1 jruoho (void)msgctl(id, IPC_RMID, 0);
67 1.1 jruoho }
68 1.1 jruoho
69 1.1 jruoho ATF_TC_WITH_CLEANUP(msgctl_err);
70 1.1 jruoho ATF_TC_HEAD(msgctl_err, tc)
71 1.1 jruoho {
72 1.1 jruoho atf_tc_set_md_var(tc, "descr", "Test errors from msgctl(2)");
73 1.1 jruoho }
74 1.1 jruoho
75 1.1 jruoho ATF_TC_BODY(msgctl_err, tc)
76 1.1 jruoho {
77 1.1 jruoho const int cmd[] = { IPC_STAT, IPC_SET, IPC_RMID };
78 1.1 jruoho struct msqid_ds msgds;
79 1.1 jruoho size_t i;
80 1.1 jruoho int id;
81 1.1 jruoho
82 1.1 jruoho (void)memset(&msgds, 0, sizeof(struct msqid_ds));
83 1.1 jruoho
84 1.1 jruoho id = msgget(MSG_KEY, IPC_CREAT | 0600);
85 1.1 jruoho ATF_REQUIRE(id != -1);
86 1.1 jruoho
87 1.1 jruoho errno = 0;
88 1.1 jruoho ATF_REQUIRE_ERRNO(EINVAL, msgctl(id, INT_MAX, &msgds) == -1);
89 1.1 jruoho
90 1.1 jruoho errno = 0;
91 1.1 jruoho ATF_REQUIRE_ERRNO(EFAULT, msgctl(id, IPC_STAT, (void *)-1) == -1);
92 1.1 jruoho
93 1.1 jruoho for (i = 0; i < __arraycount(cmd); i++) {
94 1.1 jruoho errno = 0;
95 1.1 jruoho ATF_REQUIRE_ERRNO(EINVAL, msgctl(-1, cmd[i], &msgds) == -1);
96 1.1 jruoho }
97 1.1 jruoho
98 1.1 jruoho ATF_REQUIRE(msgctl(id, IPC_RMID, 0) == 0);
99 1.1 jruoho }
100 1.1 jruoho
101 1.1 jruoho ATF_TC_CLEANUP(msgctl_err, tc)
102 1.1 jruoho {
103 1.1 jruoho clean();
104 1.1 jruoho }
105 1.1 jruoho
106 1.1 jruoho ATF_TC_WITH_CLEANUP(msgctl_perm);
107 1.1 jruoho ATF_TC_HEAD(msgctl_perm, tc)
108 1.1 jruoho {
109 1.3 jruoho atf_tc_set_md_var(tc, "descr", "Test permissions with msgctl(2)");
110 1.1 jruoho atf_tc_set_md_var(tc, "require.user", "root");
111 1.1 jruoho }
112 1.1 jruoho
113 1.1 jruoho ATF_TC_BODY(msgctl_perm, tc)
114 1.1 jruoho {
115 1.1 jruoho struct msqid_ds msgds;
116 1.1 jruoho struct passwd *pw;
117 1.1 jruoho pid_t pid;
118 1.1 jruoho int sta;
119 1.1 jruoho int id;
120 1.1 jruoho
121 1.1 jruoho (void)memset(&msgds, 0, sizeof(struct msqid_ds));
122 1.1 jruoho
123 1.1 jruoho pw = getpwnam("nobody");
124 1.1 jruoho id = msgget(MSG_KEY, IPC_CREAT | 0600);
125 1.1 jruoho
126 1.1 jruoho ATF_REQUIRE(id != -1);
127 1.1 jruoho ATF_REQUIRE(pw != NULL);
128 1.1 jruoho ATF_REQUIRE(msgctl(id, IPC_STAT, &msgds) == 0);
129 1.1 jruoho
130 1.1 jruoho pid = fork();
131 1.1 jruoho ATF_REQUIRE(pid >= 0);
132 1.1 jruoho
133 1.1 jruoho if (pid == 0) {
134 1.1 jruoho
135 1.1 jruoho if (setuid(pw->pw_uid) != 0)
136 1.1 jruoho _exit(EX_OSERR);
137 1.1 jruoho
138 1.1 jruoho msgds.msg_perm.uid = getuid();
139 1.1 jruoho msgds.msg_perm.gid = getgid();
140 1.1 jruoho
141 1.1 jruoho errno = 0;
142 1.1 jruoho
143 1.1 jruoho if (msgctl(id, IPC_SET, &msgds) == 0)
144 1.1 jruoho _exit(EXIT_FAILURE);
145 1.1 jruoho
146 1.1 jruoho if (errno != EPERM)
147 1.1 jruoho _exit(EXIT_FAILURE);
148 1.1 jruoho
149 1.1 jruoho (void)memset(&msgds, 0, sizeof(struct msqid_ds));
150 1.1 jruoho
151 1.1 jruoho if (msgctl(id, IPC_STAT, &msgds) != 0)
152 1.1 jruoho _exit(EX_OSERR);
153 1.1 jruoho
154 1.1 jruoho msgds.msg_qbytes = 1;
155 1.1 jruoho
156 1.1 jruoho if (msgctl(id, IPC_SET, &msgds) == 0)
157 1.1 jruoho _exit(EXIT_FAILURE);
158 1.1 jruoho
159 1.1 jruoho if (errno != EPERM)
160 1.1 jruoho _exit(EXIT_FAILURE);
161 1.1 jruoho
162 1.1 jruoho _exit(EXIT_SUCCESS);
163 1.1 jruoho }
164 1.1 jruoho
165 1.1 jruoho (void)wait(&sta);
166 1.1 jruoho
167 1.1 jruoho if (WIFEXITED(sta) == 0) {
168 1.1 jruoho
169 1.1 jruoho if (WEXITSTATUS(sta) == EX_OSERR)
170 1.1 jruoho atf_tc_fail("system call failed");
171 1.1 jruoho
172 1.1 jruoho if (WEXITSTATUS(sta) == EXIT_FAILURE)
173 1.1 jruoho atf_tc_fail("UID %u manipulated root's "
174 1.1 jruoho "message queue", pw->pw_uid);
175 1.1 jruoho }
176 1.1 jruoho
177 1.1 jruoho ATF_REQUIRE(msgctl(id, IPC_RMID, 0) == 0);
178 1.1 jruoho }
179 1.1 jruoho
180 1.1 jruoho ATF_TC_CLEANUP(msgctl_perm, tc)
181 1.1 jruoho {
182 1.1 jruoho clean();
183 1.1 jruoho }
184 1.1 jruoho
185 1.1 jruoho ATF_TC_WITH_CLEANUP(msgctl_pid);
186 1.1 jruoho ATF_TC_HEAD(msgctl_pid, tc)
187 1.1 jruoho {
188 1.1 jruoho atf_tc_set_md_var(tc, "descr", "Test that PIDs are updated");
189 1.1 jruoho }
190 1.1 jruoho
191 1.1 jruoho ATF_TC_BODY(msgctl_pid, tc)
192 1.1 jruoho {
193 1.1 jruoho struct msg msg = { MSG_MTYPE_1, { 'a', 'b', 'c' } };
194 1.1 jruoho struct msqid_ds msgds;
195 1.1 jruoho int id, sta;
196 1.1 jruoho pid_t pid;
197 1.1 jruoho
198 1.1 jruoho id = msgget(MSG_KEY, IPC_CREAT | 0600);
199 1.1 jruoho ATF_REQUIRE(id != -1);
200 1.1 jruoho
201 1.1 jruoho pid = fork();
202 1.1 jruoho ATF_REQUIRE(pid >= 0);
203 1.1 jruoho
204 1.1 jruoho if (pid == 0) {
205 1.1 jruoho
206 1.1 jruoho (void)msgsnd(id, &msg, sizeof(struct msg), IPC_NOWAIT);
207 1.1 jruoho
208 1.1 jruoho _exit(EXIT_SUCCESS);
209 1.1 jruoho }
210 1.1 jruoho
211 1.1 jruoho (void)sleep(1);
212 1.1 jruoho (void)wait(&sta);
213 1.1 jruoho (void)memset(&msgds, 0, sizeof(struct msqid_ds));
214 1.1 jruoho
215 1.1 jruoho ATF_REQUIRE(msgctl(id, IPC_STAT, &msgds) == 0);
216 1.1 jruoho
217 1.1 jruoho if (pid != msgds.msg_lspid)
218 1.1 jruoho atf_tc_fail("the PID of last msgsnd(2) was not updated");
219 1.1 jruoho
220 1.1 jruoho pid = fork();
221 1.1 jruoho ATF_REQUIRE(pid >= 0);
222 1.1 jruoho
223 1.1 jruoho if (pid == 0) {
224 1.1 jruoho
225 1.1 jruoho (void)msgrcv(id, &msg,
226 1.1 jruoho sizeof(struct msg), MSG_MTYPE_1, IPC_NOWAIT);
227 1.1 jruoho
228 1.1 jruoho _exit(EXIT_SUCCESS);
229 1.1 jruoho }
230 1.1 jruoho
231 1.1 jruoho (void)sleep(1);
232 1.1 jruoho (void)wait(&sta);
233 1.1 jruoho (void)memset(&msgds, 0, sizeof(struct msqid_ds));
234 1.1 jruoho
235 1.1 jruoho ATF_REQUIRE(msgctl(id, IPC_STAT, &msgds) == 0);
236 1.1 jruoho
237 1.1 jruoho if (pid != msgds.msg_lrpid)
238 1.1 jruoho atf_tc_fail("the PID of last msgrcv(2) was not updated");
239 1.1 jruoho
240 1.1 jruoho ATF_REQUIRE(msgctl(id, IPC_RMID, 0) == 0);
241 1.1 jruoho }
242 1.1 jruoho
243 1.1 jruoho ATF_TC_CLEANUP(msgctl_pid, tc)
244 1.1 jruoho {
245 1.1 jruoho clean();
246 1.1 jruoho }
247 1.1 jruoho
248 1.1 jruoho ATF_TC_WITH_CLEANUP(msgctl_set);
249 1.1 jruoho ATF_TC_HEAD(msgctl_set, tc)
250 1.1 jruoho {
251 1.1 jruoho atf_tc_set_md_var(tc, "descr", "Test msgctl(2) with IPC_SET");
252 1.1 jruoho atf_tc_set_md_var(tc, "require.user", "root");
253 1.1 jruoho }
254 1.1 jruoho
255 1.1 jruoho ATF_TC_BODY(msgctl_set, tc)
256 1.1 jruoho {
257 1.1 jruoho struct msqid_ds msgds;
258 1.1 jruoho struct passwd *pw;
259 1.1 jruoho int id;
260 1.1 jruoho
261 1.1 jruoho (void)memset(&msgds, 0, sizeof(struct msqid_ds));
262 1.1 jruoho
263 1.1 jruoho pw = getpwnam("nobody");
264 1.1 jruoho id = msgget(MSG_KEY, IPC_CREAT | 0600);
265 1.1 jruoho
266 1.1 jruoho ATF_REQUIRE(id != -1);
267 1.1 jruoho ATF_REQUIRE(pw != NULL);
268 1.1 jruoho ATF_REQUIRE(msgctl(id, IPC_STAT, &msgds) == 0);
269 1.1 jruoho
270 1.1 jruoho msgds.msg_perm.uid = pw->pw_uid;
271 1.1 jruoho
272 1.1 jruoho if (msgctl(id, IPC_SET, &msgds) != 0)
273 1.1 jruoho atf_tc_fail("root failed to change the UID of message queue");
274 1.1 jruoho
275 1.1 jruoho msgds.msg_perm.uid = getuid();
276 1.1 jruoho msgds.msg_perm.gid = pw->pw_gid;
277 1.1 jruoho
278 1.1 jruoho if (msgctl(id, IPC_SET, &msgds) != 0)
279 1.1 jruoho atf_tc_fail("root failed to change the GID of message queue");
280 1.1 jruoho
281 1.1 jruoho /*
282 1.2 jruoho * Note: setting the qbytes to zero fails even as root.
283 1.1 jruoho */
284 1.1 jruoho msgds.msg_qbytes = 1;
285 1.1 jruoho msgds.msg_perm.gid = getgid();
286 1.1 jruoho
287 1.1 jruoho if (msgctl(id, IPC_SET, &msgds) != 0)
288 1.1 jruoho atf_tc_fail("root failed to change qbytes of message queue");
289 1.1 jruoho
290 1.1 jruoho ATF_REQUIRE(msgctl(id, IPC_RMID, 0) == 0);
291 1.1 jruoho }
292 1.1 jruoho
293 1.1 jruoho ATF_TC_CLEANUP(msgctl_set, tc)
294 1.1 jruoho {
295 1.1 jruoho clean();
296 1.1 jruoho }
297 1.1 jruoho
298 1.1 jruoho ATF_TC_WITH_CLEANUP(msgctl_time);
299 1.1 jruoho ATF_TC_HEAD(msgctl_time, tc)
300 1.1 jruoho {
301 1.2 jruoho atf_tc_set_md_var(tc, "descr", "Test that access times are updated");
302 1.1 jruoho }
303 1.1 jruoho
304 1.1 jruoho ATF_TC_BODY(msgctl_time, tc)
305 1.1 jruoho {
306 1.1 jruoho struct msg msg = { MSG_MTYPE_1, { 'a', 'b', 'c' } };
307 1.1 jruoho struct msqid_ds msgds;
308 1.1 jruoho time_t t;
309 1.1 jruoho int id;
310 1.1 jruoho
311 1.1 jruoho id = msgget(MSG_KEY, IPC_CREAT | 0600);
312 1.1 jruoho ATF_REQUIRE(id != -1);
313 1.1 jruoho
314 1.1 jruoho t = time(NULL);
315 1.1 jruoho
316 1.1 jruoho (void)memset(&msgds, 0, sizeof(struct msqid_ds));
317 1.1 jruoho (void)msgsnd(id, &msg, sizeof(struct msg), IPC_NOWAIT);
318 1.1 jruoho (void)msgctl(id, IPC_STAT, &msgds);
319 1.1 jruoho
320 1.4 joerg if (llabs(t - msgds.msg_stime) > 1)
321 1.1 jruoho atf_tc_fail("time of last msgsnd(2) was not updated");
322 1.1 jruoho
323 1.1 jruoho if (msgds.msg_rtime != 0)
324 1.1 jruoho atf_tc_fail("time of last msgrcv(2) was updated incorrectly");
325 1.1 jruoho
326 1.1 jruoho t = time(NULL);
327 1.1 jruoho
328 1.1 jruoho (void)memset(&msgds, 0, sizeof(struct msqid_ds));
329 1.1 jruoho (void)msgrcv(id, &msg, sizeof(struct msg), MSG_MTYPE_1, IPC_NOWAIT);
330 1.1 jruoho (void)msgctl(id, IPC_STAT, &msgds);
331 1.1 jruoho
332 1.4 joerg if (llabs(t - msgds.msg_rtime) > 1)
333 1.1 jruoho atf_tc_fail("time of last msgrcv(2) was not updated");
334 1.1 jruoho
335 1.1 jruoho /*
336 1.2 jruoho * Note: this is non-zero even after the memset(3).
337 1.1 jruoho */
338 1.1 jruoho if (msgds.msg_stime == 0)
339 1.1 jruoho atf_tc_fail("time of last msgsnd(2) was updated incorrectly");
340 1.1 jruoho
341 1.1 jruoho ATF_REQUIRE(msgctl(id, IPC_RMID, 0) == 0);
342 1.1 jruoho }
343 1.1 jruoho
344 1.1 jruoho ATF_TC_CLEANUP(msgctl_time, tc)
345 1.1 jruoho {
346 1.1 jruoho clean();
347 1.1 jruoho }
348 1.1 jruoho
349 1.1 jruoho ATF_TP_ADD_TCS(tp)
350 1.1 jruoho {
351 1.1 jruoho
352 1.1 jruoho ATF_TP_ADD_TC(tp, msgctl_err);
353 1.1 jruoho ATF_TP_ADD_TC(tp, msgctl_perm);
354 1.1 jruoho ATF_TP_ADD_TC(tp, msgctl_pid);
355 1.1 jruoho ATF_TP_ADD_TC(tp, msgctl_set);
356 1.1 jruoho ATF_TP_ADD_TC(tp, msgctl_time);
357 1.1 jruoho
358 1.1 jruoho return atf_no_error();
359 1.1 jruoho }
360