2 5d56da81 2019-01-13 stsp * Copyright (c) 2018, 2019 Stefan Sperling <stsp@openbsd.org>
4 2178c42e 2018-04-22 stsp * Permission to use, copy, modify, and distribute this software for any
5 2178c42e 2018-04-22 stsp * purpose with or without fee is hereby granted, provided that the above
6 2178c42e 2018-04-22 stsp * copyright notice and this permission notice appear in all copies.
8 2178c42e 2018-04-22 stsp * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
9 2178c42e 2018-04-22 stsp * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
10 2178c42e 2018-04-22 stsp * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
11 2178c42e 2018-04-22 stsp * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
12 2178c42e 2018-04-22 stsp * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
13 2178c42e 2018-04-22 stsp * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
14 2178c42e 2018-04-22 stsp * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
17 2178c42e 2018-04-22 stsp #include <sys/types.h>
18 2178c42e 2018-04-22 stsp #include <sys/queue.h>
19 2178c42e 2018-04-22 stsp #include <sys/uio.h>
20 876c234b 2018-09-10 stsp #include <sys/syslimits.h>
21 876c234b 2018-09-10 stsp #include <sys/wait.h>
23 2178c42e 2018-04-22 stsp #include <stdio.h>
24 2178c42e 2018-04-22 stsp #include <stdlib.h>
25 2178c42e 2018-04-22 stsp #include <string.h>
26 2178c42e 2018-04-22 stsp #include <errno.h>
27 2178c42e 2018-04-22 stsp #include <stdint.h>
28 2178c42e 2018-04-22 stsp #include <poll.h>
29 2178c42e 2018-04-22 stsp #include <imsg.h>
30 2178c42e 2018-04-22 stsp #include <sha1.h>
31 2178c42e 2018-04-22 stsp #include <zlib.h>
32 788c352e 2018-06-16 stsp #include <time.h>
34 2178c42e 2018-04-22 stsp #include "got_object.h"
35 2178c42e 2018-04-22 stsp #include "got_error.h"
37 2178c42e 2018-04-22 stsp #include "got_lib_sha1.h"
38 2178c42e 2018-04-22 stsp #include "got_lib_delta.h"
39 63581804 2018-07-09 stsp #include "got_lib_inflate.h"
40 2178c42e 2018-04-22 stsp #include "got_lib_object.h"
41 a440fac0 2018-09-06 stsp #include "got_lib_object_parse.h"
42 2178c42e 2018-04-22 stsp #include "got_lib_privsep.h"
43 876c234b 2018-09-10 stsp #include "got_lib_pack.h"
46 2178c42e 2018-04-22 stsp #define MIN(_a,_b) ((_a) < (_b) ? (_a) : (_b))
49 2178c42e 2018-04-22 stsp static const struct got_error *
50 2178c42e 2018-04-22 stsp poll_fd(int fd, int events, int timeout)
52 2178c42e 2018-04-22 stsp struct pollfd pfd[1];
55 2178c42e 2018-04-22 stsp pfd[0].fd = fd;
56 2178c42e 2018-04-22 stsp pfd[0].events = events;
58 2178c42e 2018-04-22 stsp n = poll(pfd, 1, timeout);
59 2178c42e 2018-04-22 stsp if (n == -1)
60 638f9024 2019-05-13 stsp return got_error_from_errno("poll");
62 2178c42e 2018-04-22 stsp return got_error(GOT_ERR_TIMEOUT);
63 2178c42e 2018-04-22 stsp if (pfd[0].revents & (POLLERR | POLLNVAL))
64 638f9024 2019-05-13 stsp return got_error_from_errno("poll error");
65 2178c42e 2018-04-22 stsp if (pfd[0].revents & (events | POLLHUP))
66 2178c42e 2018-04-22 stsp return NULL;
68 2178c42e 2018-04-22 stsp return got_error(GOT_ERR_INTERRUPT);
71 c4eae628 2018-04-23 stsp static const struct got_error *
72 e033d803 2018-04-23 stsp read_imsg(struct imsgbuf *ibuf)
74 fe36cf76 2018-04-23 stsp const struct got_error *err;
77 fe36cf76 2018-04-23 stsp err = poll_fd(ibuf->fd, POLLIN, INFTIM);
81 fe36cf76 2018-04-23 stsp n = imsg_read(ibuf);
82 fe36cf76 2018-04-23 stsp if (n == -1) {
83 fe36cf76 2018-04-23 stsp if (errno == EAGAIN) /* Could be a file-descriptor leak. */
84 fe36cf76 2018-04-23 stsp return got_error(GOT_ERR_PRIVSEP_NO_FD);
85 fe36cf76 2018-04-23 stsp return got_error(GOT_ERR_PRIVSEP_READ);
88 fe36cf76 2018-04-23 stsp return got_error(GOT_ERR_PRIVSEP_PIPE);
90 e033d803 2018-04-23 stsp return NULL;
93 ad242220 2018-09-08 stsp const struct got_error *
94 876c234b 2018-09-10 stsp got_privsep_wait_for_child(pid_t pid)
96 876c234b 2018-09-10 stsp int child_status;
98 2cb49fa8 2019-05-10 stsp if (waitpid(pid, &child_status, 0) == -1)
99 638f9024 2019-05-13 stsp return got_error_from_errno("waitpid");
101 876c234b 2018-09-10 stsp if (!WIFEXITED(child_status))
102 876c234b 2018-09-10 stsp return got_error(GOT_ERR_PRIVSEP_DIED);
104 876c234b 2018-09-10 stsp if (WEXITSTATUS(child_status) != 0)
105 876c234b 2018-09-10 stsp return got_error(GOT_ERR_PRIVSEP_EXIT);
107 876c234b 2018-09-10 stsp return NULL;
110 73b7854a 2018-11-11 stsp static const struct got_error *
111 73b7854a 2018-11-11 stsp recv_imsg_error(struct imsg *imsg, size_t datalen)
113 73b7854a 2018-11-11 stsp struct got_imsg_error *ierr;
115 73b7854a 2018-11-11 stsp if (datalen != sizeof(*ierr))
116 73b7854a 2018-11-11 stsp return got_error(GOT_ERR_PRIVSEP_LEN);
118 73b7854a 2018-11-11 stsp ierr = imsg->data;
119 73b7854a 2018-11-11 stsp if (ierr->code == GOT_ERR_ERRNO) {
120 73b7854a 2018-11-11 stsp static struct got_error serr;
121 73b7854a 2018-11-11 stsp serr.code = GOT_ERR_ERRNO;
122 73b7854a 2018-11-11 stsp serr.msg = strerror(ierr->errno_code);
123 73b7854a 2018-11-11 stsp return &serr;
126 73b7854a 2018-11-11 stsp return got_error(ierr->code);
129 876c234b 2018-09-10 stsp const struct got_error *
130 46de5bfd 2018-11-11 stsp got_privsep_recv_imsg(struct imsg *imsg, struct imsgbuf *ibuf,
131 46de5bfd 2018-11-11 stsp size_t min_datalen)
133 e033d803 2018-04-23 stsp const struct got_error *err;
136 e033d803 2018-04-23 stsp n = imsg_get(ibuf, imsg);
137 876c234b 2018-09-10 stsp if (n == -1)
138 638f9024 2019-05-13 stsp return got_error_from_errno("imsg_get");
140 876c234b 2018-09-10 stsp while (n == 0) {
141 876c234b 2018-09-10 stsp err = read_imsg(ibuf);
143 876c234b 2018-09-10 stsp return err;
144 876c234b 2018-09-10 stsp n = imsg_get(ibuf, imsg);
147 fe36cf76 2018-04-23 stsp if (imsg->hdr.len < IMSG_HEADER_SIZE + min_datalen)
148 c4eae628 2018-04-23 stsp return got_error(GOT_ERR_PRIVSEP_LEN);
150 73b7854a 2018-11-11 stsp if (imsg->hdr.type == GOT_IMSG_ERROR) {
151 73b7854a 2018-11-11 stsp size_t datalen = imsg->hdr.len - IMSG_HEADER_SIZE;
152 73b7854a 2018-11-11 stsp return recv_imsg_error(imsg, datalen);
155 73b7854a 2018-11-11 stsp return NULL;
158 2178c42e 2018-04-22 stsp /* Attempt to send an error in an imsg. Complain on stderr as a last resort. */
160 2178c42e 2018-04-22 stsp got_privsep_send_error(struct imsgbuf *ibuf, const struct got_error *err)
162 2178c42e 2018-04-22 stsp const struct got_error *poll_err;
163 2178c42e 2018-04-22 stsp struct got_imsg_error ierr;
166 2178c42e 2018-04-22 stsp ierr.code = err->code;
167 2178c42e 2018-04-22 stsp if (err->code == GOT_ERR_ERRNO)
168 2178c42e 2018-04-22 stsp ierr.errno_code = errno;
170 2178c42e 2018-04-22 stsp ierr.errno_code = 0;
171 2178c42e 2018-04-22 stsp ret = imsg_compose(ibuf, GOT_IMSG_ERROR, 0, 0, -1, &ierr, sizeof(ierr));
172 e93cd828 2018-11-11 stsp if (ret == -1) {
173 2178c42e 2018-04-22 stsp fprintf(stderr, "%s: error %d \"%s\": imsg_compose: %s\n",
174 2178c42e 2018-04-22 stsp getprogname(), err->code, err->msg, strerror(errno));
178 2178c42e 2018-04-22 stsp poll_err = poll_fd(ibuf->fd, POLLOUT, INFTIM);
179 5d43e84d 2018-04-23 stsp if (poll_err) {
180 2178c42e 2018-04-22 stsp fprintf(stderr, "%s: error %d \"%s\": poll: %s\n",
181 2178c42e 2018-04-22 stsp getprogname(), err->code, err->msg, poll_err->msg);
185 2178c42e 2018-04-22 stsp ret = imsg_flush(ibuf);
186 5d43e84d 2018-04-23 stsp if (ret == -1) {
187 2178c42e 2018-04-22 stsp fprintf(stderr, "%s: error %d \"%s\": imsg_flush: %s\n",
188 2178c42e 2018-04-22 stsp getprogname(), err->code, err->msg, strerror(errno));
193 e033d803 2018-04-23 stsp static const struct got_error *
194 e033d803 2018-04-23 stsp flush_imsg(struct imsgbuf *ibuf)
196 e033d803 2018-04-23 stsp const struct got_error *err;
198 e033d803 2018-04-23 stsp err = poll_fd(ibuf->fd, POLLOUT, INFTIM);
200 e033d803 2018-04-23 stsp return err;
202 e033d803 2018-04-23 stsp if (imsg_flush(ibuf) == -1)
203 638f9024 2019-05-13 stsp return got_error_from_errno("imsg_flush");
205 e033d803 2018-04-23 stsp return NULL;
208 ad242220 2018-09-08 stsp const struct got_error *
209 ad242220 2018-09-08 stsp got_privsep_send_stop(int fd)
211 ad242220 2018-09-08 stsp const struct got_error *err = NULL;
212 ad242220 2018-09-08 stsp struct imsgbuf ibuf;
214 ad242220 2018-09-08 stsp imsg_init(&ibuf, fd);
216 ad242220 2018-09-08 stsp if (imsg_compose(&ibuf, GOT_IMSG_STOP, 0, 0, -1, NULL, 0) == -1)
217 638f9024 2019-05-13 stsp return got_error_from_errno("imsg_compose STOP");
219 ad242220 2018-09-08 stsp err = flush_imsg(&ibuf);
220 ad242220 2018-09-08 stsp imsg_clear(&ibuf);
221 ad242220 2018-09-08 stsp return err;
224 ad242220 2018-09-08 stsp const struct got_error *
225 aea5f015 2018-12-24 stsp got_privsep_send_obj_req(struct imsgbuf *ibuf, int fd)
227 aea5f015 2018-12-24 stsp if (imsg_compose(ibuf, GOT_IMSG_OBJECT_REQUEST, 0, 0, fd, NULL, 0)
229 638f9024 2019-05-13 stsp return got_error_from_errno("imsg_compose OBJECT_REQUEST");
231 1785f84a 2018-12-23 stsp return flush_imsg(ibuf);
234 1785f84a 2018-12-23 stsp const struct got_error *
235 1785f84a 2018-12-23 stsp got_privsep_send_commit_req(struct imsgbuf *ibuf, int fd,
236 1785f84a 2018-12-23 stsp struct got_object_id *id, int pack_idx)
238 41496140 2019-02-21 stsp const struct got_error *err = NULL;
239 1785f84a 2018-12-23 stsp struct got_imsg_packed_object iobj, *iobjp;
240 1785f84a 2018-12-23 stsp size_t len;
242 1785f84a 2018-12-23 stsp if (id) { /* commit is packed */
243 1785f84a 2018-12-23 stsp iobj.idx = pack_idx;
244 1785f84a 2018-12-23 stsp memcpy(iobj.id, id->sha1, sizeof(iobj.id));
245 1785f84a 2018-12-23 stsp iobjp = &iobj;
246 1785f84a 2018-12-23 stsp len = sizeof(iobj);
248 1785f84a 2018-12-23 stsp iobjp = NULL;
252 1785f84a 2018-12-23 stsp if (imsg_compose(ibuf, GOT_IMSG_COMMIT_REQUEST, 0, 0, fd, iobjp, len)
254 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose COMMIT_REQUEST");
256 41496140 2019-02-21 stsp return err;
259 13c729f7 2018-12-24 stsp return flush_imsg(ibuf);
262 13c729f7 2018-12-24 stsp const struct got_error *
263 13c729f7 2018-12-24 stsp got_privsep_send_tree_req(struct imsgbuf *ibuf, int fd,
264 13c729f7 2018-12-24 stsp struct got_object_id *id, int pack_idx)
266 41496140 2019-02-21 stsp const struct got_error *err = NULL;
267 13c729f7 2018-12-24 stsp struct got_imsg_packed_object iobj, *iobjp;
268 13c729f7 2018-12-24 stsp size_t len;
270 13c729f7 2018-12-24 stsp if (id) { /* tree is packed */
271 13c729f7 2018-12-24 stsp iobj.idx = pack_idx;
272 13c729f7 2018-12-24 stsp memcpy(iobj.id, id->sha1, sizeof(iobj.id));
273 13c729f7 2018-12-24 stsp iobjp = &iobj;
274 13c729f7 2018-12-24 stsp len = sizeof(iobj);
276 13c729f7 2018-12-24 stsp iobjp = NULL;
280 13c729f7 2018-12-24 stsp if (imsg_compose(ibuf, GOT_IMSG_TREE_REQUEST, 0, 0, fd, iobjp, len)
282 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose TREE_REQUEST");
284 41496140 2019-02-21 stsp return err;
287 268f7291 2018-12-24 stsp return flush_imsg(ibuf);
290 268f7291 2018-12-24 stsp const struct got_error *
291 268f7291 2018-12-24 stsp got_privsep_send_tag_req(struct imsgbuf *ibuf, int fd,
292 268f7291 2018-12-24 stsp struct got_object_id *id, int pack_idx)
294 268f7291 2018-12-24 stsp struct got_imsg_packed_object iobj, *iobjp;
295 268f7291 2018-12-24 stsp size_t len;
297 268f7291 2018-12-24 stsp if (id) { /* tag is packed */
298 268f7291 2018-12-24 stsp iobj.idx = pack_idx;
299 268f7291 2018-12-24 stsp memcpy(iobj.id, id->sha1, sizeof(iobj.id));
300 268f7291 2018-12-24 stsp iobjp = &iobj;
301 268f7291 2018-12-24 stsp len = sizeof(iobj);
303 268f7291 2018-12-24 stsp iobjp = NULL;
307 268f7291 2018-12-24 stsp if (imsg_compose(ibuf, GOT_IMSG_TAG_REQUEST, 0, 0, fd, iobjp, len)
309 638f9024 2019-05-13 stsp return got_error_from_errno("imsg_compose TAG_REQUEST");
311 7762fe12 2018-11-05 stsp return flush_imsg(ibuf);
314 7762fe12 2018-11-05 stsp const struct got_error *
315 ebc55e2d 2018-12-24 stsp got_privsep_send_blob_req(struct imsgbuf *ibuf, int infd,
316 ebc55e2d 2018-12-24 stsp struct got_object_id *id, int pack_idx)
318 41496140 2019-02-21 stsp const struct got_error *err = NULL;
319 ebc55e2d 2018-12-24 stsp struct got_imsg_packed_object iobj, *iobjp;
320 ebc55e2d 2018-12-24 stsp size_t len;
322 ebc55e2d 2018-12-24 stsp if (id) { /* blob is packed */
323 ebc55e2d 2018-12-24 stsp iobj.idx = pack_idx;
324 ebc55e2d 2018-12-24 stsp memcpy(iobj.id, id->sha1, sizeof(iobj.id));
325 ebc55e2d 2018-12-24 stsp iobjp = &iobj;
326 ebc55e2d 2018-12-24 stsp len = sizeof(iobj);
328 ebc55e2d 2018-12-24 stsp iobjp = NULL;
332 ebc55e2d 2018-12-24 stsp if (imsg_compose(ibuf, GOT_IMSG_BLOB_REQUEST, 0, 0, infd, iobjp, len)
334 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose BLOB_REQUEST");
335 41496140 2019-02-21 stsp close(infd);
336 41496140 2019-02-21 stsp return err;
339 55da3778 2018-09-10 stsp return flush_imsg(ibuf);
342 55da3778 2018-09-10 stsp const struct got_error *
343 55da3778 2018-09-10 stsp got_privsep_send_blob_outfd(struct imsgbuf *ibuf, int outfd)
345 41496140 2019-02-21 stsp const struct got_error *err = NULL;
347 ad242220 2018-09-08 stsp if (imsg_compose(ibuf, GOT_IMSG_BLOB_OUTFD, 0, 0, outfd, NULL, 0)
349 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose BLOB_OUTFD");
350 41496140 2019-02-21 stsp close(outfd);
351 41496140 2019-02-21 stsp return err;
354 3840f4c9 2018-09-12 stsp return flush_imsg(ibuf);
357 3840f4c9 2018-09-12 stsp const struct got_error *
358 3840f4c9 2018-09-12 stsp got_privsep_send_tmpfd(struct imsgbuf *ibuf, int fd)
360 41496140 2019-02-21 stsp const struct got_error *err = NULL;
362 3840f4c9 2018-09-12 stsp if (imsg_compose(ibuf, GOT_IMSG_TMPFD, 0, 0, fd, NULL, 0)
364 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose TMPFD");
366 41496140 2019-02-21 stsp return err;
369 ad242220 2018-09-08 stsp return flush_imsg(ibuf);
372 ad242220 2018-09-08 stsp const struct got_error *
373 876c234b 2018-09-10 stsp got_privsep_send_obj(struct imsgbuf *ibuf, struct got_object *obj)
375 2178c42e 2018-04-22 stsp struct got_imsg_object iobj;
377 c59b3346 2018-09-11 stsp memcpy(iobj.id, obj->id.sha1, sizeof(iobj.id));
378 2178c42e 2018-04-22 stsp iobj.type = obj->type;
379 2178c42e 2018-04-22 stsp iobj.flags = obj->flags;
380 2178c42e 2018-04-22 stsp iobj.hdrlen = obj->hdrlen;
381 2178c42e 2018-04-22 stsp iobj.size = obj->size;
382 c59b3346 2018-09-11 stsp if (iobj.flags & GOT_OBJ_FLAG_PACKED) {
383 876c234b 2018-09-10 stsp iobj.pack_offset = obj->pack_offset;
384 c59b3346 2018-09-11 stsp iobj.pack_idx = obj->pack_idx;
387 2178c42e 2018-04-22 stsp if (imsg_compose(ibuf, GOT_IMSG_OBJECT, 0, 0, -1, &iobj, sizeof(iobj))
389 638f9024 2019-05-13 stsp return got_error_from_errno("imsg_compose OBJECT");
391 c59b3346 2018-09-11 stsp return flush_imsg(ibuf);
394 cfd633c2 2018-09-10 stsp const struct got_error *
395 cfd633c2 2018-09-10 stsp got_privsep_get_imsg_obj(struct got_object **obj, struct imsg *imsg,
396 cfd633c2 2018-09-10 stsp struct imsgbuf *ibuf)
398 cfd633c2 2018-09-10 stsp const struct got_error *err = NULL;
399 291624d8 2018-11-07 stsp struct got_imsg_object *iobj;
400 cfd633c2 2018-09-10 stsp size_t datalen = imsg->hdr.len - IMSG_HEADER_SIZE;
402 291624d8 2018-11-07 stsp if (datalen != sizeof(*iobj))
403 cfd633c2 2018-09-10 stsp return got_error(GOT_ERR_PRIVSEP_LEN);
404 291624d8 2018-11-07 stsp iobj = imsg->data;
406 cfd633c2 2018-09-10 stsp *obj = calloc(1, sizeof(**obj));
407 cfd633c2 2018-09-10 stsp if (*obj == NULL)
408 638f9024 2019-05-13 stsp return got_error_from_errno("calloc");
410 291624d8 2018-11-07 stsp memcpy((*obj)->id.sha1, iobj->id, SHA1_DIGEST_LENGTH);
411 291624d8 2018-11-07 stsp (*obj)->type = iobj->type;
412 291624d8 2018-11-07 stsp (*obj)->flags = iobj->flags;
413 291624d8 2018-11-07 stsp (*obj)->hdrlen = iobj->hdrlen;
414 291624d8 2018-11-07 stsp (*obj)->size = iobj->size;
415 c59b3346 2018-09-11 stsp /* path_packfile is handled by caller */
416 291624d8 2018-11-07 stsp if (iobj->flags & GOT_OBJ_FLAG_PACKED) {
417 291624d8 2018-11-07 stsp (*obj)->pack_offset = iobj->pack_offset;
418 291624d8 2018-11-07 stsp (*obj)->pack_idx = iobj->pack_idx;
421 876c234b 2018-09-10 stsp return err;
424 2178c42e 2018-04-22 stsp const struct got_error *
425 2178c42e 2018-04-22 stsp got_privsep_recv_obj(struct got_object **obj, struct imsgbuf *ibuf)
427 2178c42e 2018-04-22 stsp const struct got_error *err = NULL;
428 2178c42e 2018-04-22 stsp struct imsg imsg;
429 2178c42e 2018-04-22 stsp size_t datalen;
430 c4eae628 2018-04-23 stsp const size_t min_datalen =
431 c4eae628 2018-04-23 stsp MIN(sizeof(struct got_imsg_error), sizeof(struct got_imsg_object));
433 2178c42e 2018-04-22 stsp *obj = NULL;
435 ad242220 2018-09-08 stsp err = got_privsep_recv_imsg(&imsg, ibuf, min_datalen);
437 2178c42e 2018-04-22 stsp return err;
439 2178c42e 2018-04-22 stsp datalen = imsg.hdr.len - IMSG_HEADER_SIZE;
441 2178c42e 2018-04-22 stsp switch (imsg.hdr.type) {
442 2178c42e 2018-04-22 stsp case GOT_IMSG_OBJECT:
443 cfd633c2 2018-09-10 stsp err = got_privsep_get_imsg_obj(obj, &imsg, ibuf);
446 bff6ca00 2018-04-23 stsp err = got_error(GOT_ERR_PRIVSEP_MSG);
450 bff6ca00 2018-04-23 stsp imsg_free(&imsg);
452 bff6ca00 2018-04-23 stsp return err;
455 c75f7264 2018-09-11 stsp static const struct got_error *
456 c75f7264 2018-09-11 stsp send_commit_logmsg(struct imsgbuf *ibuf, struct got_commit_object *commit,
457 c75f7264 2018-09-11 stsp size_t logmsg_len)
459 fa4ffeb3 2018-11-04 stsp const struct got_error *err = NULL;
460 c75f7264 2018-09-11 stsp size_t offset, remain;
462 c75f7264 2018-09-11 stsp offset = 0;
463 c75f7264 2018-09-11 stsp remain = logmsg_len;
464 c75f7264 2018-09-11 stsp while (remain > 0) {
465 c75f7264 2018-09-11 stsp size_t n = MIN(MAX_IMSGSIZE - IMSG_HEADER_SIZE, remain);
467 c75f7264 2018-09-11 stsp if (imsg_compose(ibuf, GOT_IMSG_COMMIT_LOGMSG, 0, 0, -1,
468 fa4ffeb3 2018-11-04 stsp commit->logmsg + offset, n) == -1) {
469 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose "
470 230a42bd 2019-05-11 jcs "COMMIT_LOGMSG");
474 fa4ffeb3 2018-11-04 stsp err = flush_imsg(ibuf);
478 c75f7264 2018-09-11 stsp offset += n;
479 c75f7264 2018-09-11 stsp remain -= n;
482 fa4ffeb3 2018-11-04 stsp return err;
485 bff6ca00 2018-04-23 stsp const struct got_error *
486 068fd2bf 2018-04-24 stsp got_privsep_send_commit(struct imsgbuf *ibuf, struct got_commit_object *commit)
488 bff6ca00 2018-04-23 stsp const struct got_error *err = NULL;
489 b9c33926 2018-11-07 stsp struct got_imsg_commit_object *icommit;
490 bff6ca00 2018-04-23 stsp uint8_t *buf;
491 bff6ca00 2018-04-23 stsp size_t len, total;
492 79f35eb3 2018-06-11 stsp struct got_object_qid *qid;
493 b9c33926 2018-11-07 stsp size_t author_len = strlen(commit->author);
494 b9c33926 2018-11-07 stsp size_t committer_len = strlen(commit->committer);
495 c75f7264 2018-09-11 stsp size_t logmsg_len = strlen(commit->logmsg);
497 b9c33926 2018-11-07 stsp total = sizeof(*icommit) + author_len + committer_len +
498 b9c33926 2018-11-07 stsp commit->nparents * SHA1_DIGEST_LENGTH;
500 bff6ca00 2018-04-23 stsp buf = malloc(total);
501 bff6ca00 2018-04-23 stsp if (buf == NULL)
502 638f9024 2019-05-13 stsp return got_error_from_errno("malloc");
504 b9c33926 2018-11-07 stsp icommit = (struct got_imsg_commit_object *)buf;
505 a7403916 2018-12-24 stsp memcpy(icommit->tree_id, commit->tree_id->sha1,
506 a7403916 2018-12-24 stsp sizeof(icommit->tree_id));
507 b9c33926 2018-11-07 stsp icommit->author_len = author_len;
508 b9c33926 2018-11-07 stsp icommit->author_time = commit->author_time;
509 b9c33926 2018-11-07 stsp icommit->author_gmtoff = commit->author_gmtoff;
510 b9c33926 2018-11-07 stsp icommit->committer_len = committer_len;
511 b9c33926 2018-11-07 stsp icommit->committer_time = commit->committer_time;
512 b9c33926 2018-11-07 stsp icommit->committer_gmtoff = commit->committer_gmtoff;
513 b9c33926 2018-11-07 stsp icommit->logmsg_len = logmsg_len;
514 b9c33926 2018-11-07 stsp icommit->nparents = commit->nparents;
516 b9c33926 2018-11-07 stsp len = sizeof(*icommit);
517 b9c33926 2018-11-07 stsp memcpy(buf + len, commit->author, author_len);
518 b9c33926 2018-11-07 stsp len += author_len;
519 b9c33926 2018-11-07 stsp memcpy(buf + len, commit->committer, committer_len);
520 b9c33926 2018-11-07 stsp len += committer_len;
521 79f35eb3 2018-06-11 stsp SIMPLEQ_FOREACH(qid, &commit->parent_ids, entry) {
522 79f35eb3 2018-06-11 stsp memcpy(buf + len, qid->id, SHA1_DIGEST_LENGTH);
523 86acc566 2018-04-23 stsp len += SHA1_DIGEST_LENGTH;
526 bff6ca00 2018-04-23 stsp if (imsg_compose(ibuf, GOT_IMSG_COMMIT, 0, 0, -1, buf, len) == -1) {
527 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose COMMIT");
531 904df868 2018-11-04 stsp if (logmsg_len == 0 ||
532 904df868 2018-11-04 stsp logmsg_len + len > MAX_IMSGSIZE - IMSG_HEADER_SIZE) {
533 904df868 2018-11-04 stsp err = flush_imsg(ibuf);
537 c75f7264 2018-09-11 stsp err = send_commit_logmsg(ibuf, commit, logmsg_len);
540 bff6ca00 2018-04-23 stsp return err;
543 bff6ca00 2018-04-23 stsp const struct got_error *
544 068fd2bf 2018-04-24 stsp got_privsep_recv_commit(struct got_commit_object **commit, struct imsgbuf *ibuf)
546 bff6ca00 2018-04-23 stsp const struct got_error *err = NULL;
547 bff6ca00 2018-04-23 stsp struct imsg imsg;
548 291624d8 2018-11-07 stsp struct got_imsg_commit_object *icommit;
549 bff6ca00 2018-04-23 stsp size_t len, datalen;
551 bff6ca00 2018-04-23 stsp const size_t min_datalen =
552 bff6ca00 2018-04-23 stsp MIN(sizeof(struct got_imsg_error),
553 bff6ca00 2018-04-23 stsp sizeof(struct got_imsg_commit_object));
555 bff6ca00 2018-04-23 stsp *commit = NULL;
557 ad242220 2018-09-08 stsp err = got_privsep_recv_imsg(&imsg, ibuf, min_datalen);
559 bff6ca00 2018-04-23 stsp return err;
561 bff6ca00 2018-04-23 stsp datalen = imsg.hdr.len - IMSG_HEADER_SIZE;
564 bff6ca00 2018-04-23 stsp switch (imsg.hdr.type) {
565 bff6ca00 2018-04-23 stsp case GOT_IMSG_COMMIT:
566 291624d8 2018-11-07 stsp if (datalen < sizeof(*icommit)) {
567 bff6ca00 2018-04-23 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
570 291624d8 2018-11-07 stsp icommit = imsg.data;
571 291624d8 2018-11-07 stsp if (datalen != sizeof(*icommit) + icommit->author_len +
572 291624d8 2018-11-07 stsp icommit->committer_len +
573 291624d8 2018-11-07 stsp icommit->nparents * SHA1_DIGEST_LENGTH) {
574 bff6ca00 2018-04-23 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
577 291624d8 2018-11-07 stsp if (icommit->nparents < 0) {
578 bff6ca00 2018-04-23 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
581 291624d8 2018-11-07 stsp len += sizeof(*icommit);
583 bff6ca00 2018-04-23 stsp *commit = got_object_commit_alloc_partial();
584 bff6ca00 2018-04-23 stsp if (*commit == NULL) {
585 638f9024 2019-05-13 stsp err = got_error_from_errno(
586 230a42bd 2019-05-11 jcs "got_object_commit_alloc_partial");
590 291624d8 2018-11-07 stsp memcpy((*commit)->tree_id->sha1, icommit->tree_id,
591 86acc566 2018-04-23 stsp SHA1_DIGEST_LENGTH);
592 291624d8 2018-11-07 stsp (*commit)->author_time = icommit->author_time;
593 291624d8 2018-11-07 stsp (*commit)->author_gmtoff = icommit->author_gmtoff;
594 291624d8 2018-11-07 stsp (*commit)->committer_time = icommit->committer_time;
595 291624d8 2018-11-07 stsp (*commit)->committer_gmtoff = icommit->committer_gmtoff;
597 291624d8 2018-11-07 stsp if (icommit->author_len == 0) {
598 bff6ca00 2018-04-23 stsp (*commit)->author = strdup("");
599 bff6ca00 2018-04-23 stsp if ((*commit)->author == NULL) {
600 638f9024 2019-05-13 stsp err = got_error_from_errno("strdup");
604 291624d8 2018-11-07 stsp (*commit)->author = malloc(icommit->author_len + 1);
605 bff6ca00 2018-04-23 stsp if ((*commit)->author == NULL) {
606 638f9024 2019-05-13 stsp err = got_error_from_errno("malloc");
609 291624d8 2018-11-07 stsp memcpy((*commit)->author, imsg.data + len,
610 291624d8 2018-11-07 stsp icommit->author_len);
611 291624d8 2018-11-07 stsp (*commit)->author[icommit->author_len] = '\0';
613 291624d8 2018-11-07 stsp len += icommit->author_len;
615 291624d8 2018-11-07 stsp if (icommit->committer_len == 0) {
616 bff6ca00 2018-04-23 stsp (*commit)->committer = strdup("");
617 bff6ca00 2018-04-23 stsp if ((*commit)->committer == NULL) {
618 638f9024 2019-05-13 stsp err = got_error_from_errno("strdup");
622 bff6ca00 2018-04-23 stsp (*commit)->committer =
623 291624d8 2018-11-07 stsp malloc(icommit->committer_len + 1);
624 bff6ca00 2018-04-23 stsp if ((*commit)->committer == NULL) {
625 638f9024 2019-05-13 stsp err = got_error_from_errno("malloc");
628 291624d8 2018-11-07 stsp memcpy((*commit)->committer, imsg.data + len,
629 291624d8 2018-11-07 stsp icommit->committer_len);
630 291624d8 2018-11-07 stsp (*commit)->committer[icommit->committer_len] = '\0';
632 291624d8 2018-11-07 stsp len += icommit->committer_len;
634 291624d8 2018-11-07 stsp if (icommit->logmsg_len == 0) {
635 bff6ca00 2018-04-23 stsp (*commit)->logmsg = strdup("");
636 bff6ca00 2018-04-23 stsp if ((*commit)->logmsg == NULL) {
637 638f9024 2019-05-13 stsp err = got_error_from_errno("strdup");
641 291624d8 2018-11-07 stsp size_t offset = 0, remain = icommit->logmsg_len;
643 291624d8 2018-11-07 stsp (*commit)->logmsg = malloc(icommit->logmsg_len + 1);
644 bff6ca00 2018-04-23 stsp if ((*commit)->logmsg == NULL) {
645 638f9024 2019-05-13 stsp err = got_error_from_errno("malloc");
648 c75f7264 2018-09-11 stsp while (remain > 0) {
649 c75f7264 2018-09-11 stsp struct imsg imsg_log;
650 c75f7264 2018-09-11 stsp size_t n = MIN(MAX_IMSGSIZE - IMSG_HEADER_SIZE,
653 c75f7264 2018-09-11 stsp err = got_privsep_recv_imsg(&imsg_log, ibuf, n);
655 c75f7264 2018-09-11 stsp return err;
657 c75f7264 2018-09-11 stsp if (imsg_log.hdr.type != GOT_IMSG_COMMIT_LOGMSG)
658 c75f7264 2018-09-11 stsp return got_error(GOT_ERR_PRIVSEP_MSG);
660 c75f7264 2018-09-11 stsp memcpy((*commit)->logmsg + offset,
661 c75f7264 2018-09-11 stsp imsg_log.data, n);
662 c75f7264 2018-09-11 stsp imsg_free(&imsg_log);
663 c75f7264 2018-09-11 stsp offset += n;
664 c75f7264 2018-09-11 stsp remain -= n;
666 291624d8 2018-11-07 stsp (*commit)->logmsg[icommit->logmsg_len] = '\0';
669 291624d8 2018-11-07 stsp for (i = 0; i < icommit->nparents; i++) {
670 79f35eb3 2018-06-11 stsp struct got_object_qid *qid;
672 5df4932d 2018-11-05 stsp err = got_object_qid_alloc_partial(&qid);
675 291624d8 2018-11-07 stsp memcpy(qid->id, imsg.data + len +
676 291624d8 2018-11-07 stsp i * SHA1_DIGEST_LENGTH, sizeof(*qid->id));
677 7762fe12 2018-11-05 stsp SIMPLEQ_INSERT_TAIL(&(*commit)->parent_ids, qid, entry);
678 7762fe12 2018-11-05 stsp (*commit)->nparents++;
682 8c580685 2018-04-22 stsp err = got_error(GOT_ERR_PRIVSEP_MSG);
686 2178c42e 2018-04-22 stsp imsg_free(&imsg);
688 e033d803 2018-04-23 stsp return err;
691 e033d803 2018-04-23 stsp const struct got_error *
692 068fd2bf 2018-04-24 stsp got_privsep_send_tree(struct imsgbuf *ibuf, struct got_tree_object *tree)
694 e033d803 2018-04-23 stsp const struct got_error *err = NULL;
695 e033d803 2018-04-23 stsp struct got_imsg_tree_object itree;
696 e033d803 2018-04-23 stsp struct got_tree_entry *te;
697 b00c9821 2018-11-04 stsp size_t totlen;
698 6eb07a17 2018-11-04 stsp int nimsg; /* number of imsg queued in ibuf */
700 883f0469 2018-06-23 stsp itree.nentries = tree->entries.nentries;
701 e033d803 2018-04-23 stsp if (imsg_compose(ibuf, GOT_IMSG_TREE, 0, 0, -1, &itree, sizeof(itree))
703 638f9024 2019-05-13 stsp return got_error_from_errno("imsg_compose TREE");
705 b00c9821 2018-11-04 stsp totlen = sizeof(itree);
707 883f0469 2018-06-23 stsp SIMPLEQ_FOREACH(te, &tree->entries.head, entry) {
708 a58a49db 2018-11-07 stsp struct got_imsg_tree_entry *ite;
709 e033d803 2018-04-23 stsp uint8_t *buf = NULL;
710 a58a49db 2018-11-07 stsp size_t len = sizeof(*ite) + strlen(te->name);
712 e033d803 2018-04-23 stsp if (len > MAX_IMSGSIZE)
713 e033d803 2018-04-23 stsp return got_error(GOT_ERR_NO_SPACE);
716 6eb07a17 2018-11-04 stsp if (totlen + len >= MAX_IMSGSIZE - (IMSG_HEADER_SIZE * nimsg)) {
717 b00c9821 2018-11-04 stsp err = flush_imsg(ibuf);
719 b00c9821 2018-11-04 stsp return err;
723 e033d803 2018-04-23 stsp buf = malloc(len);
724 e033d803 2018-04-23 stsp if (buf == NULL)
725 638f9024 2019-05-13 stsp return got_error_from_errno("malloc");
727 a58a49db 2018-11-07 stsp ite = (struct got_imsg_tree_entry *)buf;
728 a58a49db 2018-11-07 stsp memcpy(ite->id, te->id->sha1, sizeof(ite->id));
729 a58a49db 2018-11-07 stsp ite->mode = te->mode;
730 a58a49db 2018-11-07 stsp memcpy(buf + sizeof(*ite), te->name, strlen(te->name));
732 e033d803 2018-04-23 stsp if (imsg_compose(ibuf, GOT_IMSG_TREE_ENTRY, 0, 0, -1,
733 e033d803 2018-04-23 stsp buf, len) == -1)
734 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose TREE_ENTRY");
737 e033d803 2018-04-23 stsp return err;
738 b00c9821 2018-11-04 stsp totlen += len;
741 b00c9821 2018-11-04 stsp return flush_imsg(ibuf);
744 e033d803 2018-04-23 stsp const struct got_error *
745 068fd2bf 2018-04-24 stsp got_privsep_recv_tree(struct got_tree_object **tree, struct imsgbuf *ibuf)
747 e033d803 2018-04-23 stsp const struct got_error *err = NULL;
748 e033d803 2018-04-23 stsp const size_t min_datalen =
749 e033d803 2018-04-23 stsp MIN(sizeof(struct got_imsg_error),
750 e033d803 2018-04-23 stsp sizeof(struct got_imsg_tree_object));
751 291624d8 2018-11-07 stsp struct got_imsg_tree_object *itree;
752 e033d803 2018-04-23 stsp int nentries = 0;
754 e033d803 2018-04-23 stsp *tree = NULL;
756 e033d803 2018-04-23 stsp err = read_imsg(ibuf);
761 e033d803 2018-04-23 stsp struct imsg imsg;
763 e033d803 2018-04-23 stsp size_t datalen;
764 c0588d8d 2018-11-07 stsp struct got_imsg_tree_entry *ite;
765 e033d803 2018-04-23 stsp struct got_tree_entry *te = NULL;
767 e033d803 2018-04-23 stsp n = imsg_get(ibuf, &imsg);
768 e033d803 2018-04-23 stsp if (n == 0) {
769 883f0469 2018-06-23 stsp if (*tree && (*tree)->entries.nentries != nentries)
770 e033d803 2018-04-23 stsp goto get_more;
774 e033d803 2018-04-23 stsp if (imsg.hdr.len < IMSG_HEADER_SIZE + min_datalen)
775 e033d803 2018-04-23 stsp return got_error(GOT_ERR_PRIVSEP_LEN);
777 e033d803 2018-04-23 stsp datalen = imsg.hdr.len - IMSG_HEADER_SIZE;
779 e033d803 2018-04-23 stsp switch (imsg.hdr.type) {
780 e033d803 2018-04-23 stsp case GOT_IMSG_ERROR:
781 e033d803 2018-04-23 stsp err = recv_imsg_error(&imsg, datalen);
783 e033d803 2018-04-23 stsp case GOT_IMSG_TREE:
784 e033d803 2018-04-23 stsp /* This message should only appear once. */
785 e033d803 2018-04-23 stsp if (*tree != NULL) {
786 e033d803 2018-04-23 stsp err = got_error(GOT_ERR_PRIVSEP_MSG);
789 291624d8 2018-11-07 stsp if (datalen != sizeof(*itree)) {
790 e033d803 2018-04-23 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
793 291624d8 2018-11-07 stsp itree = imsg.data;
794 c3b78ecc 2018-11-07 stsp *tree = malloc(sizeof(**tree));
795 e033d803 2018-04-23 stsp if (*tree == NULL) {
796 638f9024 2019-05-13 stsp err = got_error_from_errno("malloc");
799 291624d8 2018-11-07 stsp (*tree)->entries.nentries = itree->nentries;
800 883f0469 2018-06-23 stsp SIMPLEQ_INIT(&(*tree)->entries.head);
801 c3b78ecc 2018-11-07 stsp (*tree)->refcnt = 0;
803 e033d803 2018-04-23 stsp case GOT_IMSG_TREE_ENTRY:
804 e033d803 2018-04-23 stsp /* This message should be preceeded by GOT_IMSG_TREE. */
805 e033d803 2018-04-23 stsp if (*tree == NULL) {
806 e033d803 2018-04-23 stsp err = got_error(GOT_ERR_PRIVSEP_MSG);
809 c0588d8d 2018-11-07 stsp if (datalen < sizeof(*ite) || datalen > MAX_IMSGSIZE) {
810 e033d803 2018-04-23 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
814 e033d803 2018-04-23 stsp /* Remaining data contains the entry's name. */
815 c0588d8d 2018-11-07 stsp datalen -= sizeof(*ite);
816 e033d803 2018-04-23 stsp if (datalen == 0 || datalen > MAX_IMSGSIZE) {
817 e033d803 2018-04-23 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
820 c0588d8d 2018-11-07 stsp ite = imsg.data;
822 e033d803 2018-04-23 stsp te = got_alloc_tree_entry_partial();
823 e033d803 2018-04-23 stsp if (te == NULL) {
824 638f9024 2019-05-13 stsp err = got_error_from_errno(
825 230a42bd 2019-05-11 jcs "got_alloc_tree_entry_partial");
828 e033d803 2018-04-23 stsp te->name = malloc(datalen + 1);
829 e033d803 2018-04-23 stsp if (te->name == NULL) {
831 638f9024 2019-05-13 stsp err = got_error_from_errno("malloc");
834 c0588d8d 2018-11-07 stsp memcpy(te->name, imsg.data + sizeof(*ite), datalen);
835 e033d803 2018-04-23 stsp te->name[datalen] = '\0';
837 c0588d8d 2018-11-07 stsp memcpy(te->id->sha1, ite->id, SHA1_DIGEST_LENGTH);
838 c0588d8d 2018-11-07 stsp te->mode = ite->mode;
839 883f0469 2018-06-23 stsp SIMPLEQ_INSERT_TAIL(&(*tree)->entries.head, te, entry);
840 e033d803 2018-04-23 stsp nentries++;
843 e033d803 2018-04-23 stsp err = got_error(GOT_ERR_PRIVSEP_MSG);
847 e033d803 2018-04-23 stsp imsg_free(&imsg);
850 883f0469 2018-06-23 stsp if (*tree && (*tree)->entries.nentries != nentries) {
851 1e51f5b9 2018-04-23 stsp if (err == NULL)
852 1e51f5b9 2018-04-23 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
853 e033d803 2018-04-23 stsp got_object_tree_close(*tree);
854 e033d803 2018-04-23 stsp *tree = NULL;
857 ff6b18f8 2018-04-24 stsp return err;
860 ff6b18f8 2018-04-24 stsp const struct got_error *
861 ac544f8c 2019-01-13 stsp got_privsep_send_blob(struct imsgbuf *ibuf, size_t size, size_t hdrlen,
862 ac544f8c 2019-01-13 stsp const uint8_t *data)
864 2967a784 2018-04-24 stsp struct got_imsg_blob iblob;
866 2967a784 2018-04-24 stsp iblob.size = size;
867 ebc55e2d 2018-12-24 stsp iblob.hdrlen = hdrlen;
869 ac544f8c 2019-01-13 stsp if (data) {
870 ac544f8c 2019-01-13 stsp uint8_t *buf;
872 ac544f8c 2019-01-13 stsp if (size > GOT_PRIVSEP_INLINE_BLOB_DATA_MAX)
873 ac544f8c 2019-01-13 stsp return got_error(GOT_ERR_NO_SPACE);
875 ac544f8c 2019-01-13 stsp buf = malloc(sizeof(iblob) + size);
876 ac544f8c 2019-01-13 stsp if (buf == NULL)
877 638f9024 2019-05-13 stsp return got_error_from_errno("malloc");
879 ac544f8c 2019-01-13 stsp memcpy(buf, &iblob, sizeof(iblob));
880 ac544f8c 2019-01-13 stsp memcpy(buf + sizeof(iblob), data, size);
881 ac544f8c 2019-01-13 stsp if (imsg_compose(ibuf, GOT_IMSG_BLOB, 0, 0, -1, buf,
882 ac544f8c 2019-01-13 stsp sizeof(iblob) + size) == -1) {
884 638f9024 2019-05-13 stsp return got_error_from_errno("imsg_compose BLOB");
888 ac544f8c 2019-01-13 stsp /* Data has already been written to file descriptor. */
889 ac544f8c 2019-01-13 stsp if (imsg_compose(ibuf, GOT_IMSG_BLOB, 0, 0, -1, &iblob,
890 ac544f8c 2019-01-13 stsp sizeof(iblob)) == -1)
891 638f9024 2019-05-13 stsp return got_error_from_errno("imsg_compose BLOB");
895 ff6b18f8 2018-04-24 stsp return flush_imsg(ibuf);
898 ff6b18f8 2018-04-24 stsp const struct got_error *
899 ac544f8c 2019-01-13 stsp got_privsep_recv_blob(uint8_t **outbuf, size_t *size, size_t *hdrlen,
900 ac544f8c 2019-01-13 stsp struct imsgbuf *ibuf)
902 ff6b18f8 2018-04-24 stsp const struct got_error *err = NULL;
903 ff6b18f8 2018-04-24 stsp struct imsg imsg;
904 291624d8 2018-11-07 stsp struct got_imsg_blob *iblob;
905 ff6b18f8 2018-04-24 stsp size_t datalen;
907 ac544f8c 2019-01-13 stsp *outbuf = NULL;
909 ad242220 2018-09-08 stsp err = got_privsep_recv_imsg(&imsg, ibuf, 0);
911 ff6b18f8 2018-04-24 stsp return err;
913 ff6b18f8 2018-04-24 stsp datalen = imsg.hdr.len - IMSG_HEADER_SIZE;
915 ff6b18f8 2018-04-24 stsp switch (imsg.hdr.type) {
916 ff6b18f8 2018-04-24 stsp case GOT_IMSG_BLOB:
917 ac544f8c 2019-01-13 stsp if (datalen < sizeof(*iblob)) {
918 ff6b18f8 2018-04-24 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
921 291624d8 2018-11-07 stsp iblob = imsg.data;
922 291624d8 2018-11-07 stsp *size = iblob->size;
923 ebc55e2d 2018-12-24 stsp *hdrlen = iblob->hdrlen;
925 ac544f8c 2019-01-13 stsp if (datalen == sizeof(*iblob)) {
926 ac544f8c 2019-01-13 stsp /* Data has been written to file descriptor. */
930 ac544f8c 2019-01-13 stsp if (*size > GOT_PRIVSEP_INLINE_BLOB_DATA_MAX) {
931 ac544f8c 2019-01-13 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
935 ac544f8c 2019-01-13 stsp *outbuf = malloc(*size);
936 ac544f8c 2019-01-13 stsp if (*outbuf == NULL) {
937 638f9024 2019-05-13 stsp err = got_error_from_errno("malloc");
940 ac544f8c 2019-01-13 stsp memcpy(*outbuf, imsg.data + sizeof(*iblob), *size);
943 f4a881ce 2018-11-17 stsp err = got_error(GOT_ERR_PRIVSEP_MSG);
947 f4a881ce 2018-11-17 stsp imsg_free(&imsg);
949 f4a881ce 2018-11-17 stsp return err;
952 f4a881ce 2018-11-17 stsp static const struct got_error *
953 f4a881ce 2018-11-17 stsp send_tagmsg(struct imsgbuf *ibuf, struct got_tag_object *tag, size_t tagmsg_len)
955 f4a881ce 2018-11-17 stsp const struct got_error *err = NULL;
956 f4a881ce 2018-11-17 stsp size_t offset, remain;
958 f4a881ce 2018-11-17 stsp offset = 0;
959 f4a881ce 2018-11-17 stsp remain = tagmsg_len;
960 f4a881ce 2018-11-17 stsp while (remain > 0) {
961 f4a881ce 2018-11-17 stsp size_t n = MIN(MAX_IMSGSIZE - IMSG_HEADER_SIZE, remain);
963 f4a881ce 2018-11-17 stsp if (imsg_compose(ibuf, GOT_IMSG_TAG_TAGMSG, 0, 0, -1,
964 f4a881ce 2018-11-17 stsp tag->tagmsg + offset, n) == -1) {
965 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose TAG_TAGMSG");
969 f4a881ce 2018-11-17 stsp err = flush_imsg(ibuf);
973 f4a881ce 2018-11-17 stsp offset += n;
974 f4a881ce 2018-11-17 stsp remain -= n;
977 f4a881ce 2018-11-17 stsp return err;
980 f4a881ce 2018-11-17 stsp const struct got_error *
981 f4a881ce 2018-11-17 stsp got_privsep_send_tag(struct imsgbuf *ibuf, struct got_tag_object *tag)
983 f4a881ce 2018-11-17 stsp const struct got_error *err = NULL;
984 f4a881ce 2018-11-17 stsp struct got_imsg_tag_object *itag;
985 f4a881ce 2018-11-17 stsp uint8_t *buf;
986 f4a881ce 2018-11-17 stsp size_t len, total;
987 f4a881ce 2018-11-17 stsp size_t tag_len = strlen(tag->tag);
988 f4a881ce 2018-11-17 stsp size_t tagger_len = strlen(tag->tagger);
989 f4a881ce 2018-11-17 stsp size_t tagmsg_len = strlen(tag->tagmsg);
991 f4a881ce 2018-11-17 stsp total = sizeof(*itag) + tag_len + tagger_len + tagmsg_len;
993 f4a881ce 2018-11-17 stsp buf = malloc(total);
994 f4a881ce 2018-11-17 stsp if (buf == NULL)
995 638f9024 2019-05-13 stsp return got_error_from_errno("malloc");
997 f4a881ce 2018-11-17 stsp itag = (struct got_imsg_tag_object *)buf;
998 f4a881ce 2018-11-17 stsp memcpy(itag->id, tag->id.sha1, sizeof(itag->id));
999 f4a881ce 2018-11-17 stsp itag->obj_type = tag->obj_type;
1000 f4a881ce 2018-11-17 stsp itag->tag_len = tag_len;
1001 f4a881ce 2018-11-17 stsp itag->tagger_len = tagger_len;
1002 f4a881ce 2018-11-17 stsp itag->tagger_time = tag->tagger_time;
1003 f4a881ce 2018-11-17 stsp itag->tagger_gmtoff = tag->tagger_gmtoff;
1004 f4a881ce 2018-11-17 stsp itag->tagmsg_len = tagmsg_len;
1006 f4a881ce 2018-11-17 stsp len = sizeof(*itag);
1007 f4a881ce 2018-11-17 stsp memcpy(buf + len, tag->tag, tag_len);
1008 f4a881ce 2018-11-17 stsp len += tag_len;
1009 f4a881ce 2018-11-17 stsp memcpy(buf + len, tag->tagger, tagger_len);
1010 f4a881ce 2018-11-17 stsp len += tagger_len;
1012 f4a881ce 2018-11-17 stsp if (imsg_compose(ibuf, GOT_IMSG_TAG, 0, 0, -1, buf, len) == -1) {
1013 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose TAG");
1014 f4a881ce 2018-11-17 stsp goto done;
1017 f4a881ce 2018-11-17 stsp if (tagmsg_len == 0 ||
1018 f4a881ce 2018-11-17 stsp tagmsg_len + len > MAX_IMSGSIZE - IMSG_HEADER_SIZE) {
1019 f4a881ce 2018-11-17 stsp err = flush_imsg(ibuf);
1021 f4a881ce 2018-11-17 stsp goto done;
1023 f4a881ce 2018-11-17 stsp err = send_tagmsg(ibuf, tag, tagmsg_len);
1025 f4a881ce 2018-11-17 stsp free(buf);
1026 f4a881ce 2018-11-17 stsp return err;
1029 f4a881ce 2018-11-17 stsp const struct got_error *
1030 f4a881ce 2018-11-17 stsp got_privsep_recv_tag(struct got_tag_object **tag, struct imsgbuf *ibuf)
1032 f4a881ce 2018-11-17 stsp const struct got_error *err = NULL;
1033 f4a881ce 2018-11-17 stsp struct imsg imsg;
1034 f4a881ce 2018-11-17 stsp struct got_imsg_tag_object *itag;
1035 f4a881ce 2018-11-17 stsp size_t len, datalen;
1036 f4a881ce 2018-11-17 stsp const size_t min_datalen =
1037 f4a881ce 2018-11-17 stsp MIN(sizeof(struct got_imsg_error),
1038 f4a881ce 2018-11-17 stsp sizeof(struct got_imsg_tag_object));
1040 f4a881ce 2018-11-17 stsp *tag = NULL;
1042 f4a881ce 2018-11-17 stsp err = got_privsep_recv_imsg(&imsg, ibuf, min_datalen);
1044 f4a881ce 2018-11-17 stsp return err;
1046 f4a881ce 2018-11-17 stsp datalen = imsg.hdr.len - IMSG_HEADER_SIZE;
1049 f4a881ce 2018-11-17 stsp switch (imsg.hdr.type) {
1050 f4a881ce 2018-11-17 stsp case GOT_IMSG_TAG:
1051 f4a881ce 2018-11-17 stsp if (datalen < sizeof(*itag)) {
1052 f4a881ce 2018-11-17 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
1055 f4a881ce 2018-11-17 stsp itag = imsg.data;
1056 f4a881ce 2018-11-17 stsp if (datalen != sizeof(*itag) + itag->tag_len +
1057 f4a881ce 2018-11-17 stsp itag->tagger_len) {
1058 f4a881ce 2018-11-17 stsp err = got_error(GOT_ERR_PRIVSEP_LEN);
1061 f4a881ce 2018-11-17 stsp len += sizeof(*itag);
1063 f4a881ce 2018-11-17 stsp *tag = calloc(1, sizeof(**tag));
1064 f4a881ce 2018-11-17 stsp if (*tag == NULL) {
1065 638f9024 2019-05-13 stsp err = got_error_from_errno("calloc");
1069 f4a881ce 2018-11-17 stsp memcpy((*tag)->id.sha1, itag->id, SHA1_DIGEST_LENGTH);
1071 f4a881ce 2018-11-17 stsp if (itag->tag_len == 0) {
1072 f4a881ce 2018-11-17 stsp (*tag)->tag = strdup("");
1073 f4a881ce 2018-11-17 stsp if ((*tag)->tag == NULL) {
1074 638f9024 2019-05-13 stsp err = got_error_from_errno("strdup");
1078 f4a881ce 2018-11-17 stsp (*tag)->tag = malloc(itag->tag_len + 1);
1079 f4a881ce 2018-11-17 stsp if ((*tag)->tag == NULL) {
1080 638f9024 2019-05-13 stsp err = got_error_from_errno("malloc");
1083 f4a881ce 2018-11-17 stsp memcpy((*tag)->tag, imsg.data + len,
1084 f4a881ce 2018-11-17 stsp itag->tag_len);
1085 f4a881ce 2018-11-17 stsp (*tag)->tag[itag->tag_len] = '\0';
1087 f4a881ce 2018-11-17 stsp len += itag->tag_len;
1089 f4a881ce 2018-11-17 stsp (*tag)->obj_type = itag->obj_type;
1090 f4a881ce 2018-11-17 stsp (*tag)->tagger_time = itag->tagger_time;
1091 f4a881ce 2018-11-17 stsp (*tag)->tagger_gmtoff = itag->tagger_gmtoff;
1093 f4a881ce 2018-11-17 stsp if (itag->tagger_len == 0) {
1094 f4a881ce 2018-11-17 stsp (*tag)->tagger = strdup("");
1095 f4a881ce 2018-11-17 stsp if ((*tag)->tagger == NULL) {
1096 638f9024 2019-05-13 stsp err = got_error_from_errno("strdup");
1100 f4a881ce 2018-11-17 stsp (*tag)->tagger = malloc(itag->tagger_len + 1);
1101 f4a881ce 2018-11-17 stsp if ((*tag)->tagger == NULL) {
1102 638f9024 2019-05-13 stsp err = got_error_from_errno("malloc");
1105 f4a881ce 2018-11-17 stsp memcpy((*tag)->tagger, imsg.data + len,
1106 f4a881ce 2018-11-17 stsp itag->tagger_len);
1107 f4a881ce 2018-11-17 stsp (*tag)->tagger[itag->tagger_len] = '\0';
1109 f4a881ce 2018-11-17 stsp len += itag->tagger_len;
1111 f4a881ce 2018-11-17 stsp if (itag->tagmsg_len == 0) {
1112 f4a881ce 2018-11-17 stsp (*tag)->tagmsg = strdup("");
1113 f4a881ce 2018-11-17 stsp if ((*tag)->tagmsg == NULL) {
1114 638f9024 2019-05-13 stsp err = got_error_from_errno("strdup");
1118 f4a881ce 2018-11-17 stsp size_t offset = 0, remain = itag->tagmsg_len;
1120 f4a881ce 2018-11-17 stsp (*tag)->tagmsg = malloc(itag->tagmsg_len + 1);
1121 f4a881ce 2018-11-17 stsp if ((*tag)->tagmsg == NULL) {
1122 638f9024 2019-05-13 stsp err = got_error_from_errno("malloc");
1125 f4a881ce 2018-11-17 stsp while (remain > 0) {
1126 f4a881ce 2018-11-17 stsp struct imsg imsg_log;
1127 f4a881ce 2018-11-17 stsp size_t n = MIN(MAX_IMSGSIZE - IMSG_HEADER_SIZE,
1130 f4a881ce 2018-11-17 stsp err = got_privsep_recv_imsg(&imsg_log, ibuf, n);
1132 f4a881ce 2018-11-17 stsp return err;
1134 f4a881ce 2018-11-17 stsp if (imsg_log.hdr.type != GOT_IMSG_TAG_TAGMSG)
1135 f4a881ce 2018-11-17 stsp return got_error(GOT_ERR_PRIVSEP_MSG);
1137 f4a881ce 2018-11-17 stsp memcpy((*tag)->tagmsg + offset, imsg_log.data,
1139 f4a881ce 2018-11-17 stsp imsg_free(&imsg_log);
1140 f4a881ce 2018-11-17 stsp offset += n;
1141 f4a881ce 2018-11-17 stsp remain -= n;
1143 f4a881ce 2018-11-17 stsp (*tag)->tagmsg[itag->tagmsg_len] = '\0';
1148 ff6b18f8 2018-04-24 stsp err = got_error(GOT_ERR_PRIVSEP_MSG);
1152 ff6b18f8 2018-04-24 stsp imsg_free(&imsg);
1154 2178c42e 2018-04-22 stsp return err;
1157 876c234b 2018-09-10 stsp const struct got_error *
1158 876c234b 2018-09-10 stsp got_privsep_init_pack_child(struct imsgbuf *ibuf, struct got_pack *pack,
1159 876c234b 2018-09-10 stsp struct got_packidx *packidx)
1161 41496140 2019-02-21 stsp const struct got_error *err = NULL;
1162 876c234b 2018-09-10 stsp struct got_imsg_packidx ipackidx;
1163 876c234b 2018-09-10 stsp struct got_imsg_pack ipack;
1166 876c234b 2018-09-10 stsp ipackidx.len = packidx->len;
1167 876c234b 2018-09-10 stsp fd = dup(packidx->fd);
1168 876c234b 2018-09-10 stsp if (fd == -1)
1169 638f9024 2019-05-13 stsp return got_error_from_errno("dup");
1171 876c234b 2018-09-10 stsp if (imsg_compose(ibuf, GOT_IMSG_PACKIDX, 0, 0, fd, &ipackidx,
1172 41496140 2019-02-21 stsp sizeof(ipackidx)) == -1) {
1173 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose PACKIDX");
1174 41496140 2019-02-21 stsp close(fd);
1175 41496140 2019-02-21 stsp return err;
1178 876c234b 2018-09-10 stsp if (strlcpy(ipack.path_packfile, pack->path_packfile,
1179 876c234b 2018-09-10 stsp sizeof(ipack.path_packfile)) >= sizeof(ipack.path_packfile))
1180 876c234b 2018-09-10 stsp return got_error(GOT_ERR_NO_SPACE);
1181 876c234b 2018-09-10 stsp ipack.filesize = pack->filesize;
1183 876c234b 2018-09-10 stsp fd = dup(pack->fd);
1184 876c234b 2018-09-10 stsp if (fd == -1)
1185 638f9024 2019-05-13 stsp return got_error_from_errno("dup");
1187 876c234b 2018-09-10 stsp if (imsg_compose(ibuf, GOT_IMSG_PACK, 0, 0, fd, &ipack, sizeof(ipack))
1189 638f9024 2019-05-13 stsp err = got_error_from_errno("imsg_compose PACK");
1190 41496140 2019-02-21 stsp close(fd);
1191 41496140 2019-02-21 stsp return err;
1194 876c234b 2018-09-10 stsp return flush_imsg(ibuf);
1197 876c234b 2018-09-10 stsp const struct got_error *
1198 106807b4 2018-09-15 stsp got_privsep_send_packed_obj_req(struct imsgbuf *ibuf, int idx,
1199 106807b4 2018-09-15 stsp struct got_object_id *id)
1201 876c234b 2018-09-10 stsp struct got_imsg_packed_object iobj;
1203 876c234b 2018-09-10 stsp iobj.idx = idx;
1204 106807b4 2018-09-15 stsp memcpy(iobj.id, id->sha1, sizeof(iobj.id));
1206 876c234b 2018-09-10 stsp if (imsg_compose(ibuf, GOT_IMSG_PACKED_OBJECT_REQUEST, 0, 0, -1,
1207 876c234b 2018-09-10 stsp &iobj, sizeof(iobj)) == -1)
1208 638f9024 2019-05-13 stsp return got_error_from_errno("imsg_compose "
1209 230a42bd 2019-05-11 jcs "PACKED_OBJECT_REQUEST");
1211 876c234b 2018-09-10 stsp return flush_imsg(ibuf);
1214 63219cd2 2019-01-04 stsp const struct got_error *
1215 63219cd2 2019-01-04 stsp got_privsep_unveil_exec_helpers(void)
1217 63219cd2 2019-01-04 stsp if (unveil(GOT_PATH_PROG_READ_PACK, "x") != 0 ||
1218 63219cd2 2019-01-04 stsp unveil(GOT_PATH_PROG_READ_OBJECT, "x") != 0 ||
1219 63219cd2 2019-01-04 stsp unveil(GOT_PATH_PROG_READ_COMMIT, "x") != 0 ||
1220 63219cd2 2019-01-04 stsp unveil(GOT_PATH_PROG_READ_TREE, "x") != 0 ||
1221 63219cd2 2019-01-04 stsp unveil(GOT_PATH_PROG_READ_BLOB, "x") != 0 ||
1222 63219cd2 2019-01-04 stsp unveil(GOT_PATH_PROG_READ_TAG, "x") != 0)
1223 638f9024 2019-05-13 stsp return got_error_from_errno("unveil");
1225 63219cd2 2019-01-04 stsp return NULL;