2 * Copyright (c) 2018, 2019 Stefan Sperling <stsp@openbsd.org>
4 * Permission to use, copy, modify, and distribute this software for any
5 * purpose with or without fee is hereby granted, provided that the above
6 * copyright notice and this permission notice appear in all copies.
8 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
9 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
10 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
11 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
12 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
13 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
14 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
17 #include <sys/types.h>
18 #include <sys/queue.h>
33 #include "got_error.h"
34 #include "got_object.h"
36 #include "got_lib_delta.h"
37 #include "got_lib_inflate.h"
38 #include "got_lib_object.h"
39 #include "got_lib_object_parse.h"
40 #include "got_lib_privsep.h"
42 static volatile sig_atomic_t sigint_received;
45 catch_sigint(int signo)
51 main(int argc, char *argv[])
53 const struct got_error *err = NULL;
57 signal(SIGINT, catch_sigint);
59 imsg_init(&ibuf, GOT_IMSG_FD_CHILD);
62 /* revoke access to most system calls */
63 if (pledge("stdio recvfd", NULL) == -1) {
64 err = got_error_from_errno("pledge");
65 got_privsep_send_error(&ibuf, err);
71 struct imsg imsg, imsg_outfd;
74 struct got_object *obj = NULL;
76 struct got_object_id id;
77 struct got_object_id expected_id;
78 struct got_inflate_checksum csum;
82 memset(&csum, 0, sizeof(csum));
83 csum.output_sha1 = &sha1_ctx;
85 memset(&imsg, 0, sizeof(imsg));
87 memset(&imsg_outfd, 0, sizeof(imsg_outfd));
90 if (sigint_received) {
91 err = got_error(GOT_ERR_CANCELLED);
95 err = got_privsep_recv_imsg(&imsg, &ibuf, 0);
97 if (err->code == GOT_ERR_PRIVSEP_PIPE)
102 if (imsg.hdr.type == GOT_IMSG_STOP)
105 if (imsg.hdr.type != GOT_IMSG_BLOB_REQUEST) {
106 err = got_error(GOT_ERR_PRIVSEP_MSG);
110 datalen = imsg.hdr.len - IMSG_HEADER_SIZE;
111 if (datalen != sizeof(expected_id)) {
112 err = got_error(GOT_ERR_PRIVSEP_LEN);
115 memcpy(&expected_id, imsg.data, sizeof(expected_id));
118 err = got_error(GOT_ERR_PRIVSEP_NO_FD);
122 err = got_privsep_recv_imsg(&imsg_outfd, &ibuf, 0);
124 if (imsg.hdr.len == 0)
129 if (imsg_outfd.hdr.type == GOT_IMSG_STOP)
132 if (imsg_outfd.hdr.type != GOT_IMSG_BLOB_OUTFD) {
133 err = got_error(GOT_ERR_PRIVSEP_MSG);
137 datalen = imsg_outfd.hdr.len - IMSG_HEADER_SIZE;
139 err = got_error(GOT_ERR_PRIVSEP_LEN);
142 if (imsg_outfd.fd == -1) {
143 err = got_error(GOT_ERR_PRIVSEP_NO_FD);
147 err = got_object_read_header(&obj, imsg.fd);
151 if (lseek(imsg.fd, SEEK_SET, 0) == -1) {
152 err = got_error_from_errno("lseek");
156 f = fdopen(imsg.fd, "rb");
158 err = got_error_from_errno("fdopen");
162 if (obj->size + obj->hdrlen <=
163 GOT_PRIVSEP_INLINE_BLOB_DATA_MAX) {
164 err = got_inflate_to_mem(&buf, &size, NULL, &csum, f);
168 err = got_inflate_to_fd(&size, f, &csum, imsg_outfd.fd);
172 SHA1Final(id.sha1, &sha1_ctx);
173 if (got_object_id_cmp(&expected_id, &id) != 0) {
174 err = got_error_checksum(&expected_id);
178 if (size < obj->hdrlen) {
179 err = got_error(GOT_ERR_BAD_OBJ_HDR);
183 err = got_privsep_send_blob(&ibuf, size, obj->hdrlen, buf);
187 if (fclose(f) == EOF && err == NULL)
188 err = got_error_from_errno("fclose");
189 } else if (imsg.fd != -1) {
190 if (close(imsg.fd) == -1 && err == NULL)
191 err = got_error_from_errno("close");
193 if (imsg_outfd.fd != -1) {
194 if (close(imsg_outfd.fd) == -1 && err == NULL)
195 err = got_error_from_errno("close");
199 imsg_free(&imsg_outfd);
201 got_object_close(obj);
208 if (!sigint_received && err->code != GOT_ERR_PRIVSEP_PIPE) {
209 fprintf(stderr, "%s: %s\n", getprogname(), err->msg);
210 got_privsep_send_error(&ibuf, err);
213 if (close(GOT_IMSG_FD_CHILD) == -1 && err == NULL)
214 err = got_error_from_errno("close");