1*49a6e16fSderaadt /* $OpenBSD: t_mkdir.c,v 1.2 2021/12/13 16:56:48 deraadt Exp $ */
2a545a52cSbluhm /* $NetBSD: t_mkdir.c,v 1.2 2011/10/15 07:38:31 jruoho Exp $ */
3a545a52cSbluhm
4a545a52cSbluhm /*-
5a545a52cSbluhm * Copyright (c) 2008, 2011 The NetBSD Foundation, Inc.
6a545a52cSbluhm * All rights reserved.
7a545a52cSbluhm *
8a545a52cSbluhm * This code is derived from software contributed to The NetBSD Foundation
9a545a52cSbluhm * by Jason R. Thorpe and Jukka Ruohonen.
10a545a52cSbluhm *
11a545a52cSbluhm * Redistribution and use in source and binary forms, with or without
12a545a52cSbluhm * modification, are permitted provided that the following conditions
13a545a52cSbluhm * are met:
14a545a52cSbluhm * 1. Redistributions of source code must retain the above copyright
15a545a52cSbluhm * notice, this list of conditions and the following disclaimer.
16a545a52cSbluhm * 2. Redistributions in binary form must reproduce the above copyright
17a545a52cSbluhm * notice, this list of conditions and the following disclaimer in the
18a545a52cSbluhm * documentation and/or other materials provided with the distribution.
19a545a52cSbluhm *
20a545a52cSbluhm * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
21a545a52cSbluhm * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
22a545a52cSbluhm * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
23a545a52cSbluhm * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
24a545a52cSbluhm * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
25a545a52cSbluhm * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
26a545a52cSbluhm * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
27a545a52cSbluhm * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
28a545a52cSbluhm * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
29a545a52cSbluhm * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
30a545a52cSbluhm * POSSIBILITY OF SUCH DAMAGE.
31a545a52cSbluhm */
32a545a52cSbluhm
33a545a52cSbluhm #include "macros.h"
34a545a52cSbluhm
35a545a52cSbluhm #include <sys/stat.h>
36a545a52cSbluhm #include <sys/wait.h>
37a545a52cSbluhm
38a545a52cSbluhm #include "atf-c.h"
39a545a52cSbluhm #include <errno.h>
40a545a52cSbluhm #include <fcntl.h>
41a545a52cSbluhm #include <limits.h>
42a545a52cSbluhm #include <pwd.h>
43a545a52cSbluhm #include <stdio.h>
44a545a52cSbluhm #include <stdlib.h>
45a545a52cSbluhm #include <string.h>
46a545a52cSbluhm #include <unistd.h>
47a545a52cSbluhm
48a545a52cSbluhm ATF_TC(mkdir_err);
ATF_TC_HEAD(mkdir_err,tc)49a545a52cSbluhm ATF_TC_HEAD(mkdir_err, tc)
50a545a52cSbluhm {
51a545a52cSbluhm atf_tc_set_md_var(tc, "descr", "Checks errors from mkdir(2)");
52a545a52cSbluhm }
53a545a52cSbluhm
ATF_TC_BODY(mkdir_err,tc)54a545a52cSbluhm ATF_TC_BODY(mkdir_err, tc)
55a545a52cSbluhm {
56a545a52cSbluhm char buf[PATH_MAX + 1];
57a545a52cSbluhm int fd;
58a545a52cSbluhm
59a545a52cSbluhm (void)memset(buf, 'x', sizeof(buf));
60a545a52cSbluhm
61a545a52cSbluhm fd = open("/etc", O_RDONLY);
62a545a52cSbluhm
63a545a52cSbluhm if (fd >= 0) {
64a545a52cSbluhm
65a545a52cSbluhm (void)close(fd);
66a545a52cSbluhm
67a545a52cSbluhm errno = 0;
68a545a52cSbluhm ATF_REQUIRE_ERRNO(EEXIST, mkdir("/etc", 0500) == -1);
69a545a52cSbluhm }
70a545a52cSbluhm
71a545a52cSbluhm errno = 0;
72a545a52cSbluhm ATF_REQUIRE_ERRNO(EFAULT, mkdir((void *)-1, 0500) == -1);
73a545a52cSbluhm
74a545a52cSbluhm errno = 0;
75a545a52cSbluhm ATF_REQUIRE_ERRNO(ENAMETOOLONG, mkdir(buf, 0500) == -1);
76a545a52cSbluhm
77a545a52cSbluhm errno = 0;
78a545a52cSbluhm ATF_REQUIRE_ERRNO(ENOENT, mkdir("/a/b/c/d/e/f/g/h/i/j/k", 0500) == -1);
79a545a52cSbluhm }
80a545a52cSbluhm
81a545a52cSbluhm ATF_TC_WITH_CLEANUP(mkdir_perm);
ATF_TC_HEAD(mkdir_perm,tc)82a545a52cSbluhm ATF_TC_HEAD(mkdir_perm, tc)
83a545a52cSbluhm {
84a545a52cSbluhm atf_tc_set_md_var(tc, "descr", "Checks permissions with mkdir(2)");
85a545a52cSbluhm atf_tc_set_md_var(tc, "require.user", "unprivileged");
86a545a52cSbluhm }
87a545a52cSbluhm
ATF_TC_BODY(mkdir_perm,tc)88a545a52cSbluhm ATF_TC_BODY(mkdir_perm, tc)
89a545a52cSbluhm {
90a545a52cSbluhm errno = 0;
91a545a52cSbluhm ATF_REQUIRE_ERRNO(EACCES, mkdir("/usr/__nonexistent__", 0500) == -1);
92a545a52cSbluhm }
93a545a52cSbluhm
ATF_TC_CLEANUP(mkdir_perm,tc)94a545a52cSbluhm ATF_TC_CLEANUP(mkdir_perm, tc)
95a545a52cSbluhm {
96a545a52cSbluhm (void)rmdir("/usr/__nonexistent__");
97a545a52cSbluhm }
98a545a52cSbluhm
99a545a52cSbluhm ATF_TC_WITH_CLEANUP(mkdir_mode);
ATF_TC_HEAD(mkdir_mode,tc)100a545a52cSbluhm ATF_TC_HEAD(mkdir_mode, tc)
101a545a52cSbluhm {
102a545a52cSbluhm atf_tc_set_md_var(tc, "descr", "Test that UIDs and GIDs are right "
103a545a52cSbluhm "for a directory created with mkdir(2)");
104a545a52cSbluhm atf_tc_set_md_var(tc, "require.user", "root");
105a545a52cSbluhm }
106a545a52cSbluhm
ATF_TC_BODY(mkdir_mode,tc)107a545a52cSbluhm ATF_TC_BODY(mkdir_mode, tc)
108a545a52cSbluhm {
109a545a52cSbluhm static const char *path = "/tmp/mkdir";
110a545a52cSbluhm struct stat st_a, st_b;
111a545a52cSbluhm struct passwd *pw;
112a545a52cSbluhm pid_t pid;
113a545a52cSbluhm int sta;
114a545a52cSbluhm
115a545a52cSbluhm (void)memset(&st_a, 0, sizeof(struct stat));
116a545a52cSbluhm (void)memset(&st_b, 0, sizeof(struct stat));
117a545a52cSbluhm
118a545a52cSbluhm pw = getpwnam("nobody");
119a545a52cSbluhm
120a545a52cSbluhm ATF_REQUIRE(pw != NULL);
121a545a52cSbluhm ATF_REQUIRE(stat("/tmp", &st_a) == 0);
122a545a52cSbluhm
123a545a52cSbluhm pid = fork();
124a545a52cSbluhm ATF_REQUIRE(pid >= 0);
125a545a52cSbluhm
126a545a52cSbluhm if (pid == 0) {
127a545a52cSbluhm
128a545a52cSbluhm if (setuid(pw->pw_uid) != 0)
129a545a52cSbluhm _exit(EXIT_FAILURE);
130a545a52cSbluhm
131a545a52cSbluhm if (mkdir(path, 0500) != 0)
132a545a52cSbluhm _exit(EXIT_FAILURE);
133a545a52cSbluhm
134a545a52cSbluhm _exit(EXIT_SUCCESS);
135a545a52cSbluhm }
136a545a52cSbluhm
137a545a52cSbluhm (void)sleep(1);
138a545a52cSbluhm (void)wait(&sta);
139a545a52cSbluhm
140a545a52cSbluhm if (WIFEXITED(sta) == 0 || WEXITSTATUS(sta) != EXIT_SUCCESS)
141a545a52cSbluhm atf_tc_fail("failed to create '%s'", path);
142a545a52cSbluhm
143a545a52cSbluhm ATF_REQUIRE(stat(path, &st_b) == 0);
144a545a52cSbluhm ATF_REQUIRE(rmdir(path) == 0);
145a545a52cSbluhm
146a545a52cSbluhm /*
147a545a52cSbluhm * The directory's owner ID should be set to the
148a545a52cSbluhm * effective UID, whereas the group ID should be
149a545a52cSbluhm * set to that of the parent directory.
150a545a52cSbluhm */
151a545a52cSbluhm if (st_b.st_uid != pw->pw_uid)
152a545a52cSbluhm atf_tc_fail("invalid UID for '%s'", path);
153a545a52cSbluhm
154a545a52cSbluhm if (st_b.st_gid != st_a.st_gid)
155a545a52cSbluhm atf_tc_fail("GID did not follow the parent directory");
156a545a52cSbluhm }
157a545a52cSbluhm
ATF_TC_CLEANUP(mkdir_mode,tc)158a545a52cSbluhm ATF_TC_CLEANUP(mkdir_mode, tc)
159a545a52cSbluhm {
160a545a52cSbluhm (void)rmdir("/tmp/mkdir");
161a545a52cSbluhm }
162a545a52cSbluhm
163a545a52cSbluhm ATF_TC(mkdir_trail);
ATF_TC_HEAD(mkdir_trail,tc)164a545a52cSbluhm ATF_TC_HEAD(mkdir_trail, tc)
165a545a52cSbluhm {
166a545a52cSbluhm atf_tc_set_md_var(tc, "descr", "Checks mkdir(2) for trailing slashes");
167a545a52cSbluhm }
168a545a52cSbluhm
ATF_TC_BODY(mkdir_trail,tc)169a545a52cSbluhm ATF_TC_BODY(mkdir_trail, tc)
170a545a52cSbluhm {
171a545a52cSbluhm const char *tests[] = {
172a545a52cSbluhm /*
173a545a52cSbluhm * IEEE 1003.1 second ed. 2.2.2.78:
174a545a52cSbluhm *
175a545a52cSbluhm * If the pathname refers to a directory, it may also have
176a545a52cSbluhm * one or more trailing slashes. Multiple successive slashes
177a545a52cSbluhm * are considered to be the same as one slash.
178a545a52cSbluhm */
179a545a52cSbluhm "dir1/",
180a545a52cSbluhm "dir2//",
181a545a52cSbluhm
182a545a52cSbluhm NULL,
183a545a52cSbluhm };
184a545a52cSbluhm
185a545a52cSbluhm const char **test;
186a545a52cSbluhm
187a545a52cSbluhm for (test = &tests[0]; *test != NULL; ++test) {
188a545a52cSbluhm
189a545a52cSbluhm (void)printf("Checking \"%s\"\n", *test);
190a545a52cSbluhm (void)rmdir(*test);
191a545a52cSbluhm
192a545a52cSbluhm ATF_REQUIRE(mkdir(*test, 0777) == 0);
193a545a52cSbluhm ATF_REQUIRE(rename(*test, "foo") == 0);
194a545a52cSbluhm ATF_REQUIRE(rename("foo/", *test) == 0);
195a545a52cSbluhm ATF_REQUIRE(rmdir(*test) == 0);
196a545a52cSbluhm }
197a545a52cSbluhm }
198a545a52cSbluhm
ATF_TP_ADD_TCS(tp)199a545a52cSbluhm ATF_TP_ADD_TCS(tp)
200a545a52cSbluhm {
201a545a52cSbluhm
202a545a52cSbluhm ATF_TP_ADD_TC(tp, mkdir_err);
203a545a52cSbluhm ATF_TP_ADD_TC(tp, mkdir_perm);
204a545a52cSbluhm ATF_TP_ADD_TC(tp, mkdir_mode);
205a545a52cSbluhm ATF_TP_ADD_TC(tp, mkdir_trail);
206a545a52cSbluhm
207a545a52cSbluhm return atf_no_error();
208a545a52cSbluhm }
209