1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59
|
#include <stdarg.h>
#include <stddef.h>
#include <setjmp.h>
#include <stdint.h>
#include <cmocka.h>
#include <errno.h>
#include <unistd.h>
#include <stdlib.h>
static int setup(void **state)
{
(void) state; /* unused */
setenv("PRIV_WRAPPER", "1", 1);
return 0;
}
static void test_pledge(void **state)
{
int rc;
(void) state; /* unused */
setenv("PRIV_WRAPPER_PLEDGE_DISABLE", "1", 1);
rc = pledge("stdio", NULL);
assert_return_code(rc, errno);
rc = pledge("cpath", NULL);
assert_return_code(rc, errno);
unsetenv("PRIV_WRAPPER_PLEDGE_DISABLE");
}
static void test_pledge_fail(void **state)
{
int rc;
(void) state; /* unused */
rc = pledge("stdio", NULL);
assert_return_code(rc, errno);
rc = pledge("cpath", NULL); /* Attempting to increase permissions */
assert_int_equal(rc, -1);
assert_int_equal(errno, EPERM);
}
int main(void)
{
const struct CMUnitTest tests[] = {
cmocka_unit_test(test_pledge),
cmocka_unit_test(test_pledge_fail),
};
return cmocka_run_group_tests(tests, setup, NULL);
}
|