1*053f45beSAndroid Build Coastguard Worker // SPDX-License-Identifier: GPL-2.0-or-later 2*053f45beSAndroid Build Coastguard Worker /* 3*053f45beSAndroid Build Coastguard Worker * Author: Aleksa Sarai <[email protected]> 4*053f45beSAndroid Build Coastguard Worker * Copyright (C) 2018-2019 SUSE LLC. 5*053f45beSAndroid Build Coastguard Worker */ 6*053f45beSAndroid Build Coastguard Worker 7*053f45beSAndroid Build Coastguard Worker #ifndef __RESOLVEAT_H__ 8*053f45beSAndroid Build Coastguard Worker #define __RESOLVEAT_H__ 9*053f45beSAndroid Build Coastguard Worker 10*053f45beSAndroid Build Coastguard Worker #define _GNU_SOURCE 11*053f45beSAndroid Build Coastguard Worker #include <stdint.h> 12*053f45beSAndroid Build Coastguard Worker #include <stdbool.h> 13*053f45beSAndroid Build Coastguard Worker #include <errno.h> 14*053f45beSAndroid Build Coastguard Worker #include <linux/types.h> 15*053f45beSAndroid Build Coastguard Worker #include "../kselftest.h" 16*053f45beSAndroid Build Coastguard Worker 17*053f45beSAndroid Build Coastguard Worker #define ARRAY_LEN(X) (sizeof (X) / sizeof (*(X))) 18*053f45beSAndroid Build Coastguard Worker #define BUILD_BUG_ON(e) ((void)(sizeof(struct { int:(-!!(e)); }))) 19*053f45beSAndroid Build Coastguard Worker 20*053f45beSAndroid Build Coastguard Worker #ifndef SYS_openat2 21*053f45beSAndroid Build Coastguard Worker #ifndef __NR_openat2 22*053f45beSAndroid Build Coastguard Worker #define __NR_openat2 437 23*053f45beSAndroid Build Coastguard Worker #endif /* __NR_openat2 */ 24*053f45beSAndroid Build Coastguard Worker #define SYS_openat2 __NR_openat2 25*053f45beSAndroid Build Coastguard Worker #endif /* SYS_openat2 */ 26*053f45beSAndroid Build Coastguard Worker 27*053f45beSAndroid Build Coastguard Worker /* 28*053f45beSAndroid Build Coastguard Worker * Arguments for how openat2(2) should open the target path. If @resolve is 29*053f45beSAndroid Build Coastguard Worker * zero, then openat2(2) operates very similarly to openat(2). 30*053f45beSAndroid Build Coastguard Worker * 31*053f45beSAndroid Build Coastguard Worker * However, unlike openat(2), unknown bits in @flags result in -EINVAL rather 32*053f45beSAndroid Build Coastguard Worker * than being silently ignored. @mode must be zero unless one of {O_CREAT, 33*053f45beSAndroid Build Coastguard Worker * O_TMPFILE} are set. 34*053f45beSAndroid Build Coastguard Worker * 35*053f45beSAndroid Build Coastguard Worker * @flags: O_* flags. 36*053f45beSAndroid Build Coastguard Worker * @mode: O_CREAT/O_TMPFILE file mode. 37*053f45beSAndroid Build Coastguard Worker * @resolve: RESOLVE_* flags. 38*053f45beSAndroid Build Coastguard Worker */ 39*053f45beSAndroid Build Coastguard Worker struct open_how { 40*053f45beSAndroid Build Coastguard Worker __u64 flags; 41*053f45beSAndroid Build Coastguard Worker __u64 mode; 42*053f45beSAndroid Build Coastguard Worker __u64 resolve; 43*053f45beSAndroid Build Coastguard Worker }; 44*053f45beSAndroid Build Coastguard Worker 45*053f45beSAndroid Build Coastguard Worker #define OPEN_HOW_SIZE_VER0 24 /* sizeof first published struct */ 46*053f45beSAndroid Build Coastguard Worker #define OPEN_HOW_SIZE_LATEST OPEN_HOW_SIZE_VER0 47*053f45beSAndroid Build Coastguard Worker 48*053f45beSAndroid Build Coastguard Worker bool needs_openat2(const struct open_how *how); 49*053f45beSAndroid Build Coastguard Worker 50*053f45beSAndroid Build Coastguard Worker #ifndef RESOLVE_IN_ROOT 51*053f45beSAndroid Build Coastguard Worker /* how->resolve flags for openat2(2). */ 52*053f45beSAndroid Build Coastguard Worker #define RESOLVE_NO_XDEV 0x01 /* Block mount-point crossings 53*053f45beSAndroid Build Coastguard Worker (includes bind-mounts). */ 54*053f45beSAndroid Build Coastguard Worker #define RESOLVE_NO_MAGICLINKS 0x02 /* Block traversal through procfs-style 55*053f45beSAndroid Build Coastguard Worker "magic-links". */ 56*053f45beSAndroid Build Coastguard Worker #define RESOLVE_NO_SYMLINKS 0x04 /* Block traversal through all symlinks 57*053f45beSAndroid Build Coastguard Worker (implies OEXT_NO_MAGICLINKS) */ 58*053f45beSAndroid Build Coastguard Worker #define RESOLVE_BENEATH 0x08 /* Block "lexical" trickery like 59*053f45beSAndroid Build Coastguard Worker "..", symlinks, and absolute 60*053f45beSAndroid Build Coastguard Worker paths which escape the dirfd. */ 61*053f45beSAndroid Build Coastguard Worker #define RESOLVE_IN_ROOT 0x10 /* Make all jumps to "/" and ".." 62*053f45beSAndroid Build Coastguard Worker be scoped inside the dirfd 63*053f45beSAndroid Build Coastguard Worker (similar to chroot(2)). */ 64*053f45beSAndroid Build Coastguard Worker #endif /* RESOLVE_IN_ROOT */ 65*053f45beSAndroid Build Coastguard Worker 66*053f45beSAndroid Build Coastguard Worker #define E_func(func, ...) \ 67*053f45beSAndroid Build Coastguard Worker do { \ 68*053f45beSAndroid Build Coastguard Worker errno = 0; \ 69*053f45beSAndroid Build Coastguard Worker if (func(__VA_ARGS__) < 0) \ 70*053f45beSAndroid Build Coastguard Worker ksft_exit_fail_msg("%s:%d %s failed - errno:%d\n", \ 71*053f45beSAndroid Build Coastguard Worker __FILE__, __LINE__, #func, errno); \ 72*053f45beSAndroid Build Coastguard Worker } while (0) 73*053f45beSAndroid Build Coastguard Worker 74*053f45beSAndroid Build Coastguard Worker #define E_asprintf(...) E_func(asprintf, __VA_ARGS__) 75*053f45beSAndroid Build Coastguard Worker #define E_chmod(...) E_func(chmod, __VA_ARGS__) 76*053f45beSAndroid Build Coastguard Worker #define E_dup2(...) E_func(dup2, __VA_ARGS__) 77*053f45beSAndroid Build Coastguard Worker #define E_fchdir(...) E_func(fchdir, __VA_ARGS__) 78*053f45beSAndroid Build Coastguard Worker #define E_fstatat(...) E_func(fstatat, __VA_ARGS__) 79*053f45beSAndroid Build Coastguard Worker #define E_kill(...) E_func(kill, __VA_ARGS__) 80*053f45beSAndroid Build Coastguard Worker #define E_mkdirat(...) E_func(mkdirat, __VA_ARGS__) 81*053f45beSAndroid Build Coastguard Worker #define E_mount(...) E_func(mount, __VA_ARGS__) 82*053f45beSAndroid Build Coastguard Worker #define E_prctl(...) E_func(prctl, __VA_ARGS__) 83*053f45beSAndroid Build Coastguard Worker #define E_readlink(...) E_func(readlink, __VA_ARGS__) 84*053f45beSAndroid Build Coastguard Worker #define E_setresuid(...) E_func(setresuid, __VA_ARGS__) 85*053f45beSAndroid Build Coastguard Worker #define E_symlinkat(...) E_func(symlinkat, __VA_ARGS__) 86*053f45beSAndroid Build Coastguard Worker #define E_touchat(...) E_func(touchat, __VA_ARGS__) 87*053f45beSAndroid Build Coastguard Worker #define E_unshare(...) E_func(unshare, __VA_ARGS__) 88*053f45beSAndroid Build Coastguard Worker 89*053f45beSAndroid Build Coastguard Worker #define E_assert(expr, msg, ...) \ 90*053f45beSAndroid Build Coastguard Worker do { \ 91*053f45beSAndroid Build Coastguard Worker if (!(expr)) \ 92*053f45beSAndroid Build Coastguard Worker ksft_exit_fail_msg("ASSERT(%s:%d) failed (%s): " msg "\n", \ 93*053f45beSAndroid Build Coastguard Worker __FILE__, __LINE__, #expr, ##__VA_ARGS__); \ 94*053f45beSAndroid Build Coastguard Worker } while (0) 95*053f45beSAndroid Build Coastguard Worker 96*053f45beSAndroid Build Coastguard Worker int raw_openat2(int dfd, const char *path, void *how, size_t size); 97*053f45beSAndroid Build Coastguard Worker int sys_openat2(int dfd, const char *path, struct open_how *how); 98*053f45beSAndroid Build Coastguard Worker int sys_openat(int dfd, const char *path, struct open_how *how); 99*053f45beSAndroid Build Coastguard Worker int sys_renameat2(int olddirfd, const char *oldpath, 100*053f45beSAndroid Build Coastguard Worker int newdirfd, const char *newpath, unsigned int flags); 101*053f45beSAndroid Build Coastguard Worker 102*053f45beSAndroid Build Coastguard Worker int touchat(int dfd, const char *path); 103*053f45beSAndroid Build Coastguard Worker char *fdreadlink(int fd); 104*053f45beSAndroid Build Coastguard Worker bool fdequal(int fd, int dfd, const char *path); 105*053f45beSAndroid Build Coastguard Worker 106*053f45beSAndroid Build Coastguard Worker extern bool openat2_supported; 107*053f45beSAndroid Build Coastguard Worker 108*053f45beSAndroid Build Coastguard Worker #endif /* __RESOLVEAT_H__ */ 109