File: chroot.c

package info (click to toggle)
llvm-toolchain-21 1%3A21.1.6-3
  • links: PTS, VCS
  • area: main
  • in suites: forky, sid
  • size: 2,245,028 kB
  • sloc: cpp: 7,619,726; ansic: 1,434,018; asm: 1,058,748; python: 252,740; f90: 94,671; objc: 70,685; lisp: 42,813; pascal: 18,401; sh: 8,601; ml: 5,111; perl: 4,720; makefile: 3,675; awk: 3,523; javascript: 2,409; xml: 892; fortran: 770
file content (68 lines) | stat: -rw-r--r-- 2,074 bytes parent folder | download | duplicates (5)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
// RUN: %clang_analyze_cc1 -analyzer-checker=unix.Chroot -analyzer-output=text -verify %s

extern int chroot(const char* path);
extern int chdir(const char* path);

void foo(void) {
}

void f1(void) {
  chroot("/usr/local"); // expected-note {{chroot called here}}
  foo();
  // expected-warning@-1 {{No call of chdir("/") immediately after chroot}}
  // expected-note@-2    {{No call of chdir("/") immediately after chroot}}
}

void f2(void) {
  chroot("/usr/local"); // root changed.
  chdir("/"); // enter the jail.
  foo(); // no-warning
}

void f3(void) {
  chroot("/usr/local"); // expected-note {{chroot called here}}
  chdir("../"); // change working directory, still out of jail.
  foo();
  // expected-warning@-1 {{No call of chdir("/") immediately after chroot}}
  // expected-note@-2    {{No call of chdir("/") immediately after chroot}}
}

void f4(void) {
  if (chroot("/usr/local") == 0) {
      chdir("../"); // change working directory, still out of jail.
  }
}

void f5(void) {
  int v = chroot("/usr/local");
  if (v == -1) {
      foo();        // no warning, chroot failed
      chdir("../"); // change working directory, still out of jail.
  }
}

void f6(void) {
  if (chroot("/usr/local") == -1) {
      chdir("../"); // change working directory, still out of jail.
  }
}

void f7(void) {
  int v = chroot("/usr/local"); // expected-note {{chroot called here}}
  if (v == -1) { // expected-note {{Taking false branch}}
      foo();        // no warning, chroot failed
      chdir("../"); // change working directory, still out of jail.
  } else {
      foo();
      // expected-warning@-1 {{No call of chdir("/") immediately after chroot}}
      // expected-note@-2    {{No call of chdir("/") immediately after chroot}}
  }
}

void f8() {
  chroot("/usr/local"); // expected-note {{chroot called here}}
  chdir("/usr"); // This chdir was ineffective because it's not exactly `chdir("/")`.
  foo();
  // expected-warning@-1 {{No call of chdir("/") immediately after chroot}}
  // expected-note@-2    {{No call of chdir("/") immediately after chroot}}
}