003 File Manager
Current Path:
/usr/src/contrib/openpam/lib/libpam
usr
/
src
/
contrib
/
openpam
/
lib
/
libpam
/
π
..
π
Makefile.am
(2.07 KB)
π
Makefile.in
(34.58 KB)
π
openpam_asprintf.c
(1.99 KB)
π
openpam_asprintf.h
(1.78 KB)
π
openpam_borrow_cred.c
(3.8 KB)
π
openpam_check_owner_perms.c
(3.94 KB)
π
openpam_configure.c
(12.26 KB)
π
openpam_constants.c
(7.07 KB)
π
openpam_constants.h
(2.09 KB)
π
openpam_cred.h
(2.12 KB)
π
openpam_ctype.h
(3.15 KB)
π
openpam_debug.h
(3.87 KB)
π
openpam_dispatch.c
(6.77 KB)
π
openpam_dlfunc.h
(1.79 KB)
π
openpam_dynamic.c
(6.91 KB)
π
openpam_features.c
(2.42 KB)
π
openpam_features.h
(1.87 KB)
π
openpam_findenv.c
(2.37 KB)
π
openpam_free_data.c
(2.43 KB)
π
openpam_free_envlist.c
(2.16 KB)
π
openpam_get_feature.c
(3.03 KB)
π
openpam_get_option.c
(2.85 KB)
π
openpam_impl.h
(4.28 KB)
π
openpam_load.c
(3.6 KB)
π
openpam_log.c
(4.57 KB)
π
openpam_nullconv.c
(2.93 KB)
π
openpam_readline.c
(3.8 KB)
π
openpam_readlinev.c
(4.99 KB)
π
openpam_readword.c
(6.58 KB)
π
openpam_restore_cred.c
(2.93 KB)
π
openpam_set_feature.c
(2.28 KB)
π
openpam_set_option.c
(3.51 KB)
π
openpam_static.c
(2.39 KB)
π
openpam_straddch.c
(3.75 KB)
π
openpam_strlcat.c
(2 KB)
π
openpam_strlcat.h
(1.78 KB)
π
openpam_strlcmp.h
(1.93 KB)
π
openpam_strlcpy.c
(1.95 KB)
π
openpam_strlcpy.h
(1.78 KB)
π
openpam_strlset.c
(2.01 KB)
π
openpam_strlset.h
(1.77 KB)
π
openpam_subst.c
(4.56 KB)
π
openpam_ttyconv.c
(9.95 KB)
π
openpam_vasprintf.c
(2.14 KB)
π
openpam_vasprintf.h
(1.79 KB)
π
pam_acct_mgmt.c
(2.74 KB)
π
pam_authenticate.c
(3.13 KB)
π
pam_authenticate_secondary.c
(2.34 KB)
π
pam_chauthtok.c
(3.12 KB)
π
pam_close_session.c
(2.73 KB)
π
pam_end.c
(3.02 KB)
π
pam_error.c
(2.65 KB)
π
pam_get_authtok.c
(7.76 KB)
π
pam_get_data.c
(2.94 KB)
π
pam_get_item.c
(3.9 KB)
π
pam_get_mapped_authtok.c
(2.33 KB)
π
pam_get_mapped_username.c
(2.35 KB)
π
pam_get_user.c
(4.58 KB)
π
pam_getenv.c
(2.75 KB)
π
pam_getenvlist.c
(3.33 KB)
π
pam_info.c
(2.66 KB)
π
pam_open_session.c
(2.77 KB)
π
pam_prompt.c
(2.82 KB)
π
pam_putenv.c
(3.35 KB)
π
pam_set_data.c
(3.36 KB)
π
pam_set_item.c
(3.52 KB)
π
pam_set_mapped_authtok.c
(2.33 KB)
π
pam_set_mapped_username.c
(2.29 KB)
π
pam_setcred.c
(3.08 KB)
π
pam_setenv.c
(3.01 KB)
π
pam_sm_acct_mgmt.c
(2.58 KB)
π
pam_sm_authenticate.c
(2.61 KB)
π
pam_sm_authenticate_secondary.c
(2.44 KB)
π
pam_sm_chauthtok.c
(2.82 KB)
π
pam_sm_close_session.c
(2.54 KB)
π
pam_sm_get_mapped_authtok.c
(2.42 KB)
π
pam_sm_get_mapped_username.c
(2.43 KB)
π
pam_sm_open_session.c
(2.53 KB)
π
pam_sm_set_mapped_authtok.c
(2.42 KB)
π
pam_sm_set_mapped_username.c
(2.36 KB)
π
pam_sm_setcred.c
(2.57 KB)
π
pam_start.c
(3.78 KB)
π
pam_strerror.c
(2.72 KB)
π
pam_verror.c
(2.58 KB)
π
pam_vinfo.c
(2.58 KB)
π
pam_vprompt.c
(3.98 KB)
Editing: openpam_check_owner_perms.c
/*- * Copyright (c) 2011 Dag-Erling SmΓΈrgrav * All rights reserved. * * Redistribution and use in source and binary forms, with or without * modification, are permitted provided that the following conditions * are met: * 1. Redistributions of source code must retain the above copyright * notice, this list of conditions and the following disclaimer. * 2. Redistributions in binary form must reproduce the above copyright * notice, this list of conditions and the following disclaimer in the * documentation and/or other materials provided with the distribution. * 3. The name of the author may not be used to endorse or promote * products derived from this software without specific prior written * permission. * * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF * SUCH DAMAGE. * * $OpenPAM: openpam_check_owner_perms.c 938 2017-04-30 21:34:42Z des $ */ #ifdef HAVE_CONFIG_H # include "config.h" #endif #include <sys/types.h> #include <sys/stat.h> #include <errno.h> #include <limits.h> #include <stdlib.h> #include <string.h> #include <unistd.h> #include <security/pam_appl.h> #include "openpam_impl.h" /* * OpenPAM internal * * Verify that the file or directory referenced by the given descriptor is * owned by either root or the arbitrator and that it is not writable by * group or other. */ int openpam_check_desc_owner_perms(const char *name, int fd) { uid_t root, arbitrator; struct stat sb; int serrno; root = 0; arbitrator = geteuid(); if (fstat(fd, &sb) != 0) { serrno = errno; openpam_log(PAM_LOG_ERROR, "%s: %m", name); errno = serrno; return (-1); } if (!S_ISREG(sb.st_mode)) { openpam_log(PAM_LOG_ERROR, "%s: not a regular file", name); errno = EINVAL; return (-1); } if ((sb.st_uid != root && sb.st_uid != arbitrator) || (sb.st_mode & (S_IWGRP|S_IWOTH)) != 0) { openpam_log(PAM_LOG_ERROR, "%s: insecure ownership or permissions", name); errno = EPERM; return (-1); } return (0); } /* * OpenPAM internal * * Verify that a file or directory and all components of the path leading * up to it are owned by either root or the arbitrator and that they are * not writable by group or other. * * Note that openpam_check_desc_owner_perms() should be used instead if * possible to avoid a race between the ownership / permission check and * the actual open(). */ int openpam_check_path_owner_perms(const char *path) { uid_t root, arbitrator; char pathbuf[PATH_MAX]; struct stat sb; int len, serrno, tip; tip = 1; root = 0; arbitrator = geteuid(); if (realpath(path, pathbuf) == NULL) return (-1); len = strlen(pathbuf); while (len > 0) { if (stat(pathbuf, &sb) != 0) { if (errno != ENOENT) { serrno = errno; openpam_log(PAM_LOG_ERROR, "%s: %m", pathbuf); errno = serrno; } return (-1); } if (tip && !S_ISREG(sb.st_mode)) { openpam_log(PAM_LOG_ERROR, "%s: not a regular file", pathbuf); errno = EINVAL; return (-1); } if ((sb.st_uid != root && sb.st_uid != arbitrator) || (sb.st_mode & (S_IWGRP|S_IWOTH)) != 0) { openpam_log(PAM_LOG_ERROR, "%s: insecure ownership or permissions", pathbuf); errno = EPERM; return (-1); } while (--len > 0 && pathbuf[len] != '/') pathbuf[len] = '\0'; tip = 0; } return (0); } /* * NOPARSE */
Upload File
Create Folder