Blame


1 ad242220 2018-09-08 stsp /*
2 ad242220 2018-09-08 stsp * Copyright (c) 2018 Stefan Sperling <stsp@openbsd.org>
3 ad242220 2018-09-08 stsp *
4 ad242220 2018-09-08 stsp * Permission to use, copy, modify, and distribute this software for any
5 ad242220 2018-09-08 stsp * purpose with or without fee is hereby granted, provided that the above
6 ad242220 2018-09-08 stsp * copyright notice and this permission notice appear in all copies.
7 ad242220 2018-09-08 stsp *
8 ad242220 2018-09-08 stsp * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
9 ad242220 2018-09-08 stsp * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
10 ad242220 2018-09-08 stsp * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
11 ad242220 2018-09-08 stsp * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
12 ad242220 2018-09-08 stsp * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
13 ad242220 2018-09-08 stsp * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
14 ad242220 2018-09-08 stsp * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
15 ad242220 2018-09-08 stsp */
16 ad242220 2018-09-08 stsp
17 ad242220 2018-09-08 stsp #include <sys/types.h>
18 8b925c6c 2022-07-16 thomas #include <sys/queue.h>
19 ad242220 2018-09-08 stsp #include <sys/uio.h>
20 ad242220 2018-09-08 stsp #include <sys/time.h>
21 ad242220 2018-09-08 stsp
22 ad242220 2018-09-08 stsp #include <stdint.h>
23 12ce7a6c 2019-08-12 stsp #include <limits.h>
24 99437157 2018-11-11 stsp #include <signal.h>
25 ad242220 2018-09-08 stsp #include <stdio.h>
26 ad242220 2018-09-08 stsp #include <stdlib.h>
27 ad242220 2018-09-08 stsp #include <string.h>
28 81a12da5 2020-09-09 naddy #include <unistd.h>
29 ad242220 2018-09-08 stsp #include <zlib.h>
30 ad242220 2018-09-08 stsp
31 dd038bc6 2021-09-21 thomas.ad #include "got_compat.h"
32 dd038bc6 2021-09-21 thomas.ad
33 ad242220 2018-09-08 stsp #include "got_error.h"
34 ad242220 2018-09-08 stsp #include "got_object.h"
35 ad242220 2018-09-08 stsp
36 ad242220 2018-09-08 stsp #include "got_lib_delta.h"
37 ad242220 2018-09-08 stsp #include "got_lib_inflate.h"
38 ad242220 2018-09-08 stsp #include "got_lib_object.h"
39 1785f84a 2018-12-23 stsp #include "got_lib_object_parse.h"
40 ad242220 2018-09-08 stsp #include "got_lib_privsep.h"
41 d5c81d44 2021-07-08 stsp #include "got_lib_sha1.h"
42 ad242220 2018-09-08 stsp
43 ad242220 2018-09-08 stsp #ifndef nitems
44 ad242220 2018-09-08 stsp #define nitems(_a) (sizeof(_a) / sizeof((_a)[0]))
45 ad242220 2018-09-08 stsp #endif
46 ad242220 2018-09-08 stsp
47 ad242220 2018-09-08 stsp #define GOT_OBJ_TAG_COMMIT "commit"
48 ad242220 2018-09-08 stsp #define GOT_OBJ_TAG_TREE "tree"
49 ad242220 2018-09-08 stsp #define GOT_OBJ_TAG_BLOB "blob"
50 f4a881ce 2018-11-17 stsp #define GOT_OBJ_TAG_TAG "tag"
51 ad242220 2018-09-08 stsp
52 99437157 2018-11-11 stsp static volatile sig_atomic_t sigint_received;
53 99437157 2018-11-11 stsp
54 99437157 2018-11-11 stsp static void
55 99437157 2018-11-11 stsp catch_sigint(int signo)
56 99437157 2018-11-11 stsp {
57 99437157 2018-11-11 stsp sigint_received = 1;
58 99437157 2018-11-11 stsp }
59 99437157 2018-11-11 stsp
60 59d1e4a0 2021-03-10 stsp static const struct got_error *
61 d5c81d44 2021-07-08 stsp send_raw_obj(struct imsgbuf *ibuf, struct got_object *obj,
62 d5c81d44 2021-07-08 stsp struct got_object_id *expected_id,
63 d5c81d44 2021-07-08 stsp int fd, int outfd)
64 59d1e4a0 2021-03-10 stsp {
65 59d1e4a0 2021-03-10 stsp const struct got_error *err = NULL;
66 59d1e4a0 2021-03-10 stsp uint8_t *data = NULL;
67 59d1e4a0 2021-03-10 stsp size_t len = 0, consumed;
68 59d1e4a0 2021-03-10 stsp FILE *f;
69 d5c81d44 2021-07-08 stsp struct got_object_id id;
70 d5c81d44 2021-07-08 stsp struct got_inflate_checksum csum;
71 d5c81d44 2021-07-08 stsp SHA1_CTX sha1_ctx;
72 59d1e4a0 2021-03-10 stsp
73 d5c81d44 2021-07-08 stsp SHA1Init(&sha1_ctx);
74 d5c81d44 2021-07-08 stsp memset(&csum, 0, sizeof(csum));
75 d5c81d44 2021-07-08 stsp csum.output_sha1 = &sha1_ctx;
76 d5c81d44 2021-07-08 stsp
77 59d1e4a0 2021-03-10 stsp if (lseek(fd, SEEK_SET, 0) == -1) {
78 59d1e4a0 2021-03-10 stsp err = got_error_from_errno("lseek");
79 59d1e4a0 2021-03-10 stsp close(fd);
80 59d1e4a0 2021-03-10 stsp return err;
81 59d1e4a0 2021-03-10 stsp }
82 59d1e4a0 2021-03-10 stsp
83 59d1e4a0 2021-03-10 stsp f = fdopen(fd, "r");
84 59d1e4a0 2021-03-10 stsp if (f == NULL) {
85 59d1e4a0 2021-03-10 stsp err = got_error_from_errno("fdopen");
86 59d1e4a0 2021-03-10 stsp close(fd);
87 59d1e4a0 2021-03-10 stsp return err;
88 59d1e4a0 2021-03-10 stsp }
89 59d1e4a0 2021-03-10 stsp
90 a8591711 2021-06-18 stsp if (obj->size + obj->hdrlen <= GOT_PRIVSEP_INLINE_OBJECT_DATA_MAX)
91 d5c81d44 2021-07-08 stsp err = got_inflate_to_mem(&data, &len, &consumed, &csum, f);
92 59d1e4a0 2021-03-10 stsp else
93 d5c81d44 2021-07-08 stsp err = got_inflate_to_fd(&len, f, &csum, outfd);
94 59d1e4a0 2021-03-10 stsp if (err)
95 59d1e4a0 2021-03-10 stsp goto done;
96 59d1e4a0 2021-03-10 stsp
97 59d1e4a0 2021-03-10 stsp if (len < obj->hdrlen || len != obj->hdrlen + obj->size) {
98 59d1e4a0 2021-03-10 stsp err = got_error(GOT_ERR_BAD_OBJ_HDR);
99 59d1e4a0 2021-03-10 stsp goto done;
100 59d1e4a0 2021-03-10 stsp }
101 59d1e4a0 2021-03-10 stsp
102 d5c81d44 2021-07-08 stsp SHA1Final(id.sha1, &sha1_ctx);
103 d5c81d44 2021-07-08 stsp if (memcmp(expected_id->sha1, id.sha1, SHA1_DIGEST_LENGTH) != 0) {
104 d5c81d44 2021-07-08 stsp char buf[SHA1_DIGEST_STRING_LENGTH];
105 d5c81d44 2021-07-08 stsp err = got_error_fmt(GOT_ERR_OBJ_CSUM,
106 d5c81d44 2021-07-08 stsp "checksum failure for object %s",
107 d5c81d44 2021-07-08 stsp got_sha1_digest_to_str(expected_id->sha1, buf,
108 d5c81d44 2021-07-08 stsp sizeof(buf)));
109 d5c81d44 2021-07-08 stsp goto done;
110 d5c81d44 2021-07-08 stsp }
111 d5c81d44 2021-07-08 stsp
112 d5c81d44 2021-07-08 stsp
113 a8591711 2021-06-18 stsp err = got_privsep_send_raw_obj(ibuf, obj->size, obj->hdrlen, data);
114 a8591711 2021-06-18 stsp
115 59d1e4a0 2021-03-10 stsp done:
116 59d1e4a0 2021-03-10 stsp free(data);
117 59d1e4a0 2021-03-10 stsp if (fclose(f) == EOF && err == NULL)
118 59d1e4a0 2021-03-10 stsp err = got_error_from_errno("fclose");
119 59d1e4a0 2021-03-10 stsp
120 59d1e4a0 2021-03-10 stsp return err;
121 59d1e4a0 2021-03-10 stsp }
122 59d1e4a0 2021-03-10 stsp
123 ad242220 2018-09-08 stsp int
124 ad242220 2018-09-08 stsp main(int argc, char *argv[])
125 ad242220 2018-09-08 stsp {
126 ad242220 2018-09-08 stsp const struct got_error *err = NULL;
127 ad242220 2018-09-08 stsp struct got_object *obj = NULL;
128 ad242220 2018-09-08 stsp struct imsg imsg;
129 ad242220 2018-09-08 stsp struct imsgbuf ibuf;
130 ad242220 2018-09-08 stsp size_t datalen;
131 d5c81d44 2021-07-08 stsp struct got_object_id expected_id;
132 ad242220 2018-09-08 stsp
133 99437157 2018-11-11 stsp signal(SIGINT, catch_sigint);
134 99437157 2018-11-11 stsp
135 ad242220 2018-09-08 stsp imsg_init(&ibuf, GOT_IMSG_FD_CHILD);
136 ad242220 2018-09-08 stsp
137 2ff12563 2018-09-15 stsp #ifndef PROFILE
138 ad242220 2018-09-08 stsp /* revoke access to most system calls */
139 ad242220 2018-09-08 stsp if (pledge("stdio recvfd", NULL) == -1) {
140 638f9024 2019-05-13 stsp err = got_error_from_errno("pledge");
141 ad242220 2018-09-08 stsp got_privsep_send_error(&ibuf, err);
142 ad242220 2018-09-08 stsp return 1;
143 ad242220 2018-09-08 stsp }
144 97799ccd 2022-02-06 thomas
145 97799ccd 2022-02-06 thomas /* revoke fs access */
146 97799ccd 2022-02-06 thomas if (landlock_no_fs() == -1) {
147 97799ccd 2022-02-06 thomas err = got_error_from_errno("landlock_no_fs");
148 97799ccd 2022-02-06 thomas got_privsep_send_error(&ibuf, err);
149 97799ccd 2022-02-06 thomas return 1;
150 97799ccd 2022-02-06 thomas }
151 5d120ea8 2022-06-23 op if (cap_enter() == -1) {
152 5d120ea8 2022-06-23 op err = got_error_from_errno("cap_enter");
153 5d120ea8 2022-06-23 op got_privsep_send_error(&ibuf, err);
154 5d120ea8 2022-06-23 op return 1;
155 5d120ea8 2022-06-23 op }
156 2ff12563 2018-09-15 stsp #endif
157 ad242220 2018-09-08 stsp
158 656b1f76 2019-05-11 jcs for (;;) {
159 99437157 2018-11-11 stsp if (sigint_received) {
160 99437157 2018-11-11 stsp err = got_error(GOT_ERR_CANCELLED);
161 99437157 2018-11-11 stsp break;
162 99437157 2018-11-11 stsp }
163 99437157 2018-11-11 stsp
164 ad242220 2018-09-08 stsp err = got_privsep_recv_imsg(&imsg, &ibuf, 0);
165 ad242220 2018-09-08 stsp if (err) {
166 876c234b 2018-09-10 stsp if (err->code == GOT_ERR_PRIVSEP_PIPE)
167 ad242220 2018-09-08 stsp err = NULL;
168 ad242220 2018-09-08 stsp break;
169 ad242220 2018-09-08 stsp }
170 ad242220 2018-09-08 stsp
171 ad242220 2018-09-08 stsp if (imsg.hdr.type == GOT_IMSG_STOP)
172 ad242220 2018-09-08 stsp break;
173 ad242220 2018-09-08 stsp
174 59d1e4a0 2021-03-10 stsp if (imsg.hdr.type != GOT_IMSG_OBJECT_REQUEST &&
175 59d1e4a0 2021-03-10 stsp imsg.hdr.type != GOT_IMSG_RAW_OBJECT_REQUEST) {
176 ad242220 2018-09-08 stsp err = got_error(GOT_ERR_PRIVSEP_MSG);
177 ad242220 2018-09-08 stsp goto done;
178 ad242220 2018-09-08 stsp }
179 ad242220 2018-09-08 stsp
180 ad242220 2018-09-08 stsp datalen = imsg.hdr.len - IMSG_HEADER_SIZE;
181 d5c81d44 2021-07-08 stsp if (datalen != sizeof(expected_id)) {
182 ad242220 2018-09-08 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
183 ad242220 2018-09-08 stsp goto done;
184 ad242220 2018-09-08 stsp }
185 d5c81d44 2021-07-08 stsp memcpy(&expected_id, imsg.data, sizeof(expected_id));
186 ad242220 2018-09-08 stsp
187 59d1e4a0 2021-03-10 stsp if (imsg.fd == -1) {
188 59d1e4a0 2021-03-10 stsp err = got_error(GOT_ERR_PRIVSEP_NO_FD);
189 59d1e4a0 2021-03-10 stsp goto done;
190 59d1e4a0 2021-03-10 stsp }
191 59d1e4a0 2021-03-10 stsp
192 1785f84a 2018-12-23 stsp err = got_object_read_header(&obj, imsg.fd);
193 ad242220 2018-09-08 stsp if (err)
194 ad242220 2018-09-08 stsp goto done;
195 ad242220 2018-09-08 stsp
196 59d1e4a0 2021-03-10 stsp if (imsg.hdr.type == GOT_IMSG_RAW_OBJECT_REQUEST) {
197 59d1e4a0 2021-03-10 stsp struct imsg imsg_outfd;
198 d5c81d44 2021-07-08 stsp
199 59d1e4a0 2021-03-10 stsp err = got_privsep_recv_imsg(&imsg_outfd, &ibuf, 0);
200 59d1e4a0 2021-03-10 stsp if (err) {
201 59d1e4a0 2021-03-10 stsp if (imsg_outfd.hdr.len == 0)
202 59d1e4a0 2021-03-10 stsp err = NULL;
203 59d1e4a0 2021-03-10 stsp goto done;
204 59d1e4a0 2021-03-10 stsp }
205 59d1e4a0 2021-03-10 stsp
206 59d1e4a0 2021-03-10 stsp if (imsg_outfd.hdr.type == GOT_IMSG_STOP) {
207 59d1e4a0 2021-03-10 stsp imsg_free(&imsg_outfd);
208 59d1e4a0 2021-03-10 stsp goto done;
209 59d1e4a0 2021-03-10 stsp }
210 59d1e4a0 2021-03-10 stsp
211 59d1e4a0 2021-03-10 stsp if (imsg_outfd.hdr.type != GOT_IMSG_RAW_OBJECT_OUTFD) {
212 59d1e4a0 2021-03-10 stsp err = got_error(GOT_ERR_PRIVSEP_MSG);
213 59d1e4a0 2021-03-10 stsp imsg_free(&imsg_outfd);
214 59d1e4a0 2021-03-10 stsp goto done;
215 59d1e4a0 2021-03-10 stsp }
216 59d1e4a0 2021-03-10 stsp
217 59d1e4a0 2021-03-10 stsp datalen = imsg_outfd.hdr.len - IMSG_HEADER_SIZE;
218 59d1e4a0 2021-03-10 stsp if (datalen != 0) {
219 59d1e4a0 2021-03-10 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
220 59d1e4a0 2021-03-10 stsp imsg_free(&imsg_outfd);
221 59d1e4a0 2021-03-10 stsp goto done;
222 59d1e4a0 2021-03-10 stsp }
223 59d1e4a0 2021-03-10 stsp if (imsg_outfd.fd == -1) {
224 59d1e4a0 2021-03-10 stsp err = got_error(GOT_ERR_PRIVSEP_NO_FD);
225 59d1e4a0 2021-03-10 stsp imsg_free(&imsg_outfd);
226 59d1e4a0 2021-03-10 stsp goto done;
227 59d1e4a0 2021-03-10 stsp }
228 d5c81d44 2021-07-08 stsp err = send_raw_obj(&ibuf, obj, &expected_id,
229 d5c81d44 2021-07-08 stsp imsg.fd, imsg_outfd.fd);
230 59d1e4a0 2021-03-10 stsp imsg.fd = -1; /* imsg.fd is owned by send_raw_obj() */
231 e5ad7365 2021-05-20 stsp if (close(imsg_outfd.fd) == -1 && err == NULL)
232 e5ad7365 2021-05-20 stsp err = got_error_from_errno("close");
233 59d1e4a0 2021-03-10 stsp imsg_free(&imsg_outfd);
234 59d1e4a0 2021-03-10 stsp if (err)
235 59d1e4a0 2021-03-10 stsp goto done;
236 59d1e4a0 2021-03-10 stsp } else
237 59d1e4a0 2021-03-10 stsp err = got_privsep_send_obj(&ibuf, obj);
238 ad242220 2018-09-08 stsp done:
239 59d1e4a0 2021-03-10 stsp if (imsg.fd != -1 && close(imsg.fd) == -1 && err == NULL)
240 638f9024 2019-05-13 stsp err = got_error_from_errno("close");
241 ad242220 2018-09-08 stsp imsg_free(&imsg);
242 ad242220 2018-09-08 stsp if (obj)
243 ad242220 2018-09-08 stsp got_object_close(obj);
244 99437157 2018-11-11 stsp if (err)
245 ad242220 2018-09-08 stsp break;
246 ad242220 2018-09-08 stsp }
247 ad242220 2018-09-08 stsp
248 ad242220 2018-09-08 stsp imsg_clear(&ibuf);
249 99437157 2018-11-11 stsp if (err) {
250 80d5f134 2018-11-11 stsp if(!sigint_received && err->code != GOT_ERR_PRIVSEP_PIPE) {
251 80d5f134 2018-11-11 stsp fprintf(stderr, "%s: %s\n", getprogname(), err->msg);
252 99437157 2018-11-11 stsp got_privsep_send_error(&ibuf, err);
253 80d5f134 2018-11-11 stsp }
254 99437157 2018-11-11 stsp }
255 08578a35 2021-01-22 stsp if (close(GOT_IMSG_FD_CHILD) == -1 && err == NULL)
256 638f9024 2019-05-13 stsp err = got_error_from_errno("close");
257 ad242220 2018-09-08 stsp return err ? 1 : 0;
258 ad242220 2018-09-08 stsp }