2015-12-17 20:56:48 +03:00
/*
* Copyright ( c ) 2000 Wichert Akkerman < wakkerma @ debian . org >
* Copyright ( c ) 2011 Denys Vlasenko < dvlasenk @ redhat . com >
* Copyright ( c ) 2005 - 2015 Dmitry V . Levin < ldv @ altlinux . org >
* All rights reserved .
*
* Redistribution and use in source and binary forms , with or without
* modification , are permitted provided that the following conditions
* are met :
* 1. Redistributions of source code must retain the above copyright
* notice , this list of conditions and the following disclaimer .
* 2. Redistributions in binary form must reproduce the above copyright
* notice , this list of conditions and the following disclaimer in the
* documentation and / or other materials provided with the distribution .
* 3. The name of the author may not be used to endorse or promote products
* derived from this software without specific prior written permission .
*
* THIS SOFTWARE IS PROVIDED BY THE AUTHOR ` ` AS IS ' ' AND ANY EXPRESS OR
* IMPLIED WARRANTIES , INCLUDING , BUT NOT LIMITED TO , THE IMPLIED WARRANTIES
* OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED .
* IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT , INDIRECT ,
* INCIDENTAL , SPECIAL , EXEMPLARY , OR CONSEQUENTIAL DAMAGES ( INCLUDING , BUT
* NOT LIMITED TO , PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES ; LOSS OF USE ,
* DATA , OR PROFITS ; OR BUSINESS INTERRUPTION ) HOWEVER CAUSED AND ON ANY
* THEORY OF LIABILITY , WHETHER IN CONTRACT , STRICT LIABILITY , OR TORT
* ( INCLUDING NEGLIGENCE OR OTHERWISE ) ARISING IN ANY WAY OUT OF THE USE OF
* THIS SOFTWARE , EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE .
*/
2014-12-03 23:30:15 +03:00
# include "defs.h"
2014-12-05 03:21:23 +03:00
/* these constants are the same as in <linux/capability.h> */
2014-12-03 23:39:20 +03:00
enum {
2015-02-19 02:59:50 +03:00
# include "caps0.h"
2014-12-03 23:39:20 +03:00
} ;
2014-12-03 23:30:15 +03:00
2015-02-19 02:59:50 +03:00
# include "xlat/cap_mask0.h"
2014-12-03 23:30:15 +03:00
2014-12-05 03:21:23 +03:00
/* these constants are CAP_TO_INDEX'ed constants from <linux/capability.h> */
enum {
2015-02-19 02:59:50 +03:00
# include "caps1.h"
2014-12-05 03:21:23 +03:00
} ;
2015-02-19 02:59:50 +03:00
# include "xlat/cap_mask1.h"
2014-12-05 03:21:23 +03:00
/* these constants are the same as in <linux/capability.h> */
2014-12-03 23:39:20 +03:00
enum {
_LINUX_CAPABILITY_VERSION_1 = 0x19980330 ,
_LINUX_CAPABILITY_VERSION_2 = 0x20071026 ,
_LINUX_CAPABILITY_VERSION_3 = 0x20080522
} ;
2014-12-03 23:30:15 +03:00
# include "xlat/cap_version.h"
2014-12-03 23:39:20 +03:00
typedef struct user_cap_header_struct {
uint32_t version ;
int pid ;
} * cap_user_header_t ;
typedef struct user_cap_data_struct {
uint32_t effective ;
uint32_t permitted ;
uint32_t inheritable ;
} * cap_user_data_t ;
2014-12-05 03:21:23 +03:00
static cap_user_header_t
get_cap_header ( struct tcb * tcp , unsigned long addr )
2014-12-03 23:30:15 +03:00
{
2014-12-05 03:21:23 +03:00
static struct user_cap_header_struct header ;
if ( ! addr | | ! verbose ( tcp ) )
return NULL ;
2014-12-03 23:30:15 +03:00
2014-12-05 03:21:23 +03:00
if ( umove ( tcp , addr , & header ) < 0 )
return NULL ;
return & header ;
}
static void
print_cap_header ( struct tcb * tcp , unsigned long addr , cap_user_header_t h )
{
2015-07-20 20:50:56 +03:00
if ( ! addr | | ! h ) {
printaddr ( addr ) ;
2014-12-05 03:21:23 +03:00
return ;
}
2016-11-27 03:35:02 +03:00
tprints ( " {version= " ) ;
2014-12-05 03:21:23 +03:00
printxval ( cap_version , h - > version ,
" _LINUX_CAPABILITY_VERSION_??? " ) ;
2016-11-27 03:35:02 +03:00
tprintf ( " , pid=%d} " , h - > pid ) ;
2014-12-05 03:21:23 +03:00
}
static void
print_cap_bits ( const uint32_t lo , const uint32_t hi )
{
if ( lo | | ! hi )
2015-02-19 02:59:50 +03:00
printflags ( cap_mask0 , lo , " CAP_??? " ) ;
2014-12-05 03:21:23 +03:00
if ( hi ) {
if ( lo )
tprints ( " | " ) ;
2015-02-19 02:59:50 +03:00
printflags ( cap_mask1 , hi , " CAP_??? " ) ;
2014-12-03 23:30:15 +03:00
}
}
static void
2014-12-05 03:21:23 +03:00
print_cap_data ( struct tcb * tcp , unsigned long addr , const cap_user_header_t h )
2014-12-03 23:30:15 +03:00
{
2014-12-05 03:21:23 +03:00
struct user_cap_data_struct data [ 2 ] ;
unsigned int len ;
2014-12-03 23:30:15 +03:00
2015-07-20 20:50:56 +03:00
if ( ! addr | | ! h ) {
printaddr ( addr ) ;
2014-12-05 03:21:23 +03:00
return ;
2014-12-03 23:30:15 +03:00
}
2014-12-05 03:21:23 +03:00
if ( _LINUX_CAPABILITY_VERSION_2 = = h - > version | |
_LINUX_CAPABILITY_VERSION_3 = = h - > version )
len = 2 ;
else
len = 1 ;
2015-07-20 20:50:56 +03:00
if ( umoven_or_printaddr ( tcp , addr , len * sizeof ( data [ 0 ] ) , data ) )
2014-12-05 03:21:23 +03:00
return ;
2016-11-27 03:35:02 +03:00
tprints ( " {effective= " ) ;
2014-12-05 03:21:23 +03:00
print_cap_bits ( data [ 0 ] . effective , len > 1 ? data [ 1 ] . effective : 0 ) ;
2016-11-27 03:35:02 +03:00
tprints ( " , permitted= " ) ;
2014-12-05 03:21:23 +03:00
print_cap_bits ( data [ 0 ] . permitted , len > 1 ? data [ 1 ] . permitted : 0 ) ;
2016-11-27 03:35:02 +03:00
tprints ( " , inheritable= " ) ;
2014-12-05 03:21:23 +03:00
print_cap_bits ( data [ 0 ] . inheritable , len > 1 ? data [ 1 ] . inheritable : 0 ) ;
tprints ( " } " ) ;
2014-12-03 23:30:15 +03:00
}
2015-04-07 04:36:50 +03:00
SYS_FUNC ( capget )
2014-12-03 23:30:15 +03:00
{
2014-12-05 03:21:23 +03:00
cap_user_header_t h ;
2014-12-03 23:30:15 +03:00
if ( entering ( tcp ) ) {
2014-12-05 03:21:23 +03:00
h = get_cap_header ( tcp , tcp - > u_arg [ 0 ] ) ;
print_cap_header ( tcp , tcp - > u_arg [ 0 ] , h ) ;
2014-12-03 23:30:15 +03:00
tprints ( " , " ) ;
} else {
2014-12-05 03:21:23 +03:00
h = syserror ( tcp ) ? NULL : get_cap_header ( tcp , tcp - > u_arg [ 0 ] ) ;
print_cap_data ( tcp , tcp - > u_arg [ 1 ] , h ) ;
2014-12-03 23:30:15 +03:00
}
return 0 ;
}
2015-04-07 04:36:50 +03:00
SYS_FUNC ( capset )
2014-12-03 23:30:15 +03:00
{
2015-07-20 20:54:02 +03:00
cap_user_header_t h = get_cap_header ( tcp , tcp - > u_arg [ 0 ] ) ;
print_cap_header ( tcp , tcp - > u_arg [ 0 ] , h ) ;
tprints ( " , " ) ;
print_cap_data ( tcp , tcp - > u_arg [ 1 ] , h ) ;
return RVAL_DECODED ;
2014-12-03 23:30:15 +03:00
}