Dmitry V. Levin | 38a34c9 | 2015-12-17 17:56:48 +0000 | [diff] [blame^] | 1 | /* |
| 2 | * Copyright (c) 2014-2015 Dmitry V. Levin <ldv@altlinux.org> |
| 3 | * All rights reserved. |
| 4 | * |
| 5 | * Redistribution and use in source and binary forms, with or without |
| 6 | * modification, are permitted provided that the following conditions |
| 7 | * are met: |
| 8 | * 1. Redistributions of source code must retain the above copyright |
| 9 | * notice, this list of conditions and the following disclaimer. |
| 10 | * 2. Redistributions in binary form must reproduce the above copyright |
| 11 | * notice, this list of conditions and the following disclaimer in the |
| 12 | * documentation and/or other materials provided with the distribution. |
| 13 | * 3. The name of the author may not be used to endorse or promote products |
| 14 | * derived from this software without specific prior written permission. |
| 15 | * |
| 16 | * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR |
| 17 | * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES |
| 18 | * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. |
| 19 | * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, |
| 20 | * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT |
| 21 | * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, |
| 22 | * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY |
| 23 | * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT |
| 24 | * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF |
| 25 | * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. |
| 26 | */ |
| 27 | |
Dmitry V. Levin | 80f7db1 | 2014-12-13 21:49:01 +0000 | [diff] [blame] | 28 | #ifdef HAVE_CONFIG_H |
| 29 | # include "config.h" |
| 30 | #endif |
| 31 | #include <assert.h> |
Dmitry V. Levin | 530bed0 | 2014-12-14 13:30:54 +0000 | [diff] [blame] | 32 | #include <stdlib.h> |
Dmitry V. Levin | 80f7db1 | 2014-12-13 21:49:01 +0000 | [diff] [blame] | 33 | #include <unistd.h> |
Dmitry V. Levin | 77e0d2d | 2015-03-02 02:13:03 +0000 | [diff] [blame] | 34 | #include <fcntl.h> |
Dmitry V. Levin | 80f7db1 | 2014-12-13 21:49:01 +0000 | [diff] [blame] | 35 | #include <sys/syscall.h> |
| 36 | |
| 37 | int |
| 38 | main(void) |
| 39 | { |
| 40 | #if defined(__NR_getuid) \ |
| 41 | && defined(__NR_setuid) \ |
| 42 | && defined(__NR_getresuid) \ |
| 43 | && defined(__NR_setreuid) \ |
| 44 | && defined(__NR_setresuid) \ |
Dmitry V. Levin | 68804b3 | 2015-03-16 18:10:21 +0000 | [diff] [blame] | 45 | && defined(__NR_fchown) \ |
Dmitry V. Levin | 530bed0 | 2014-12-14 13:30:54 +0000 | [diff] [blame] | 46 | && defined(__NR_getgroups) \ |
Dmitry V. Levin | 80f7db1 | 2014-12-13 21:49:01 +0000 | [diff] [blame] | 47 | \ |
| 48 | && defined(__NR_getuid32) \ |
| 49 | && defined(__NR_setuid32) \ |
| 50 | && defined(__NR_getresuid32) \ |
| 51 | && defined(__NR_setreuid32) \ |
| 52 | && defined(__NR_setresuid32) \ |
Dmitry V. Levin | 68804b3 | 2015-03-16 18:10:21 +0000 | [diff] [blame] | 53 | && defined(__NR_fchown32) \ |
Dmitry V. Levin | 530bed0 | 2014-12-14 13:30:54 +0000 | [diff] [blame] | 54 | && defined(__NR_getgroups32) \ |
Dmitry V. Levin | 80f7db1 | 2014-12-13 21:49:01 +0000 | [diff] [blame] | 55 | \ |
| 56 | && __NR_getuid != __NR_getuid32 \ |
| 57 | && __NR_setuid != __NR_setuid32 \ |
| 58 | && __NR_getresuid != __NR_getresuid32 \ |
| 59 | && __NR_setreuid != __NR_setreuid32 \ |
| 60 | && __NR_setresuid != __NR_setresuid32 \ |
Dmitry V. Levin | 68804b3 | 2015-03-16 18:10:21 +0000 | [diff] [blame] | 61 | && __NR_fchown != __NR_fchown32 \ |
Dmitry V. Levin | 530bed0 | 2014-12-14 13:30:54 +0000 | [diff] [blame] | 62 | && __NR_getgroups != __NR_getgroups32 \ |
Dmitry V. Levin | 80f7db1 | 2014-12-13 21:49:01 +0000 | [diff] [blame] | 63 | /**/ |
Dmitry V. Levin | 3a15bc8 | 2015-03-02 01:13:47 +0000 | [diff] [blame] | 64 | int uid; |
Dmitry V. Levin | 530bed0 | 2014-12-14 13:30:54 +0000 | [diff] [blame] | 65 | int size; |
| 66 | int *list = 0; |
Dmitry V. Levin | 80f7db1 | 2014-12-13 21:49:01 +0000 | [diff] [blame] | 67 | |
Dmitry V. Levin | 3a15bc8 | 2015-03-02 01:13:47 +0000 | [diff] [blame] | 68 | uid = syscall(__NR_getuid); |
Dmitry V. Levin | 77e0d2d | 2015-03-02 02:13:03 +0000 | [diff] [blame] | 69 | |
| 70 | (void) close(0); |
| 71 | if (open("/proc/sys/kernel/overflowuid", O_RDONLY) == 0) { |
| 72 | /* we trust the kernel */ |
| 73 | char buf[sizeof(int)*3]; |
| 74 | int n = read(0, buf, sizeof(buf) - 1); |
| 75 | if (n) { |
| 76 | buf[n] = '\0'; |
| 77 | n = atoi(buf); |
| 78 | if (uid == n) |
| 79 | return 77; |
| 80 | } |
| 81 | close(0); |
| 82 | } |
| 83 | |
Dmitry V. Levin | 3a15bc8 | 2015-03-02 01:13:47 +0000 | [diff] [blame] | 84 | assert(syscall(__NR_setuid, uid) == 0); |
| 85 | { |
| 86 | /* |
| 87 | * uids returned by getresuid should be ignored |
| 88 | * to avoid 16bit vs 32bit issues. |
| 89 | */ |
| 90 | int r, e, s; |
| 91 | assert(syscall(__NR_getresuid, &r, &e, &s) == 0); |
| 92 | } |
Dmitry V. Levin | 80f7db1 | 2014-12-13 21:49:01 +0000 | [diff] [blame] | 93 | assert(syscall(__NR_setreuid, -1, 0xffff) == 0); |
Dmitry V. Levin | 3a15bc8 | 2015-03-02 01:13:47 +0000 | [diff] [blame] | 94 | assert(syscall(__NR_setresuid, uid, -1, 0xffff) == 0); |
Dmitry V. Levin | 68804b3 | 2015-03-16 18:10:21 +0000 | [diff] [blame] | 95 | assert(syscall(__NR_fchown, 1, -1, 0xffff) == 0); |
Dmitry V. Levin | 530bed0 | 2014-12-14 13:30:54 +0000 | [diff] [blame] | 96 | assert((size = syscall(__NR_getgroups, 0, list)) >= 0); |
| 97 | assert(list = calloc(size + 1, sizeof(*list))); |
| 98 | assert(syscall(__NR_getgroups, size, list) == size); |
Dmitry V. Levin | 80f7db1 | 2014-12-13 21:49:01 +0000 | [diff] [blame] | 99 | return 0; |
| 100 | #else |
| 101 | return 77; |
| 102 | #endif |
| 103 | } |