Blame nis/nss_nis/nis-initgroups.c

Packit Service 82fcde
/* Copyright (C) 1998-2018 Free Software Foundation, Inc.
Packit Service 82fcde
   This file is part of the GNU C Library.
Packit Service 82fcde
   Contributed by Thorsten Kukuk <kukuk@suse.de>, 1998.
Packit Service 82fcde
Packit Service 82fcde
   The GNU C Library is free software; you can redistribute it and/or
Packit Service 82fcde
   modify it under the terms of the GNU Lesser General Public
Packit Service 82fcde
   License as published by the Free Software Foundation; either
Packit Service 82fcde
   version 2.1 of the License, or (at your option) any later version.
Packit Service 82fcde
Packit Service 82fcde
   The GNU C Library is distributed in the hope that it will be useful,
Packit Service 82fcde
   but WITHOUT ANY WARRANTY; without even the implied warranty of
Packit Service 82fcde
   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
Packit Service 82fcde
   Lesser General Public License for more details.
Packit Service 82fcde
Packit Service 82fcde
   You should have received a copy of the GNU Lesser General Public
Packit Service 82fcde
   License along with the GNU C Library; if not, see
Packit Service 82fcde
   <http://www.gnu.org/licenses/>.  */
Packit Service 82fcde
Packit Service 82fcde
#include <ctype.h>
Packit Service 82fcde
#include <errno.h>
Packit Service 82fcde
#include <grp.h>
Packit Service 82fcde
#include <nss.h>
Packit Service 82fcde
#include <pwd.h>
Packit Service 82fcde
#include <string.h>
Packit Service 82fcde
#include <unistd.h>
Packit Service 82fcde
#include <rpcsvc/yp.h>
Packit Service 82fcde
#include <rpcsvc/ypclnt.h>
Packit Service 82fcde
#include <sys/param.h>
Packit Service 82fcde
#include <scratch_buffer.h>
Packit Service 82fcde
Packit Service 82fcde
#include "nss-nis.h"
Packit Service 82fcde
#include <libnsl.h>
Packit Service 82fcde
Packit Service 82fcde
/* Get the declaration of the parser function.  */
Packit Service 82fcde
#define ENTNAME grent
Packit Service 82fcde
#define STRUCTURE group
Packit Service 82fcde
#define EXTERN_PARSER
Packit Service 82fcde
#include <nss/nss_files/files-parse.c>
Packit Service 82fcde
Packit Service 82fcde
Packit Service 82fcde
static enum nss_status
Packit Service 82fcde
internal_setgrent (char *domainname, intern_t *intern)
Packit Service 82fcde
{
Packit Service 82fcde
  struct ypall_callback ypcb;
Packit Service 82fcde
  enum nss_status status;
Packit Service 82fcde
Packit Service 82fcde
  ypcb.foreach = _nis_saveit;
Packit Service 82fcde
  ypcb.data = (char *) intern;
Packit Service 82fcde
  status = yperr2nss (yp_all (domainname, "group.byname", &ypcb));
Packit Service 82fcde
Packit Service 82fcde
  /* Mark the last buffer as full.  */
Packit Service 82fcde
  if (intern->next != NULL)
Packit Service 82fcde
    intern->next->size = intern->offset;
Packit Service 82fcde
Packit Service 82fcde
  intern->next = intern->start;
Packit Service 82fcde
  intern->offset = 0;
Packit Service 82fcde
Packit Service 82fcde
  return status;
Packit Service 82fcde
}
Packit Service 82fcde
Packit Service 82fcde
Packit Service 82fcde
static enum nss_status
Packit Service 82fcde
internal_getgrent_r (struct group *grp, char *buffer, size_t buflen,
Packit Service 82fcde
		     int *errnop, intern_t *intern)
Packit Service 82fcde
{
Packit Service 82fcde
  if (intern->start == NULL)
Packit Service 82fcde
    return NSS_STATUS_NOTFOUND;
Packit Service 82fcde
Packit Service 82fcde
  /* Get the next entry until we found a correct one. */
Packit Service 82fcde
  int parse_res;
Packit Service 82fcde
  do
Packit Service 82fcde
    {
Packit Service 82fcde
      struct response_t *bucket = intern->next;
Packit Service 82fcde
Packit Service 82fcde
      if (__glibc_unlikely (intern->offset >= bucket->size))
Packit Service 82fcde
	{
Packit Service 82fcde
	  if (bucket->next == NULL)
Packit Service 82fcde
	    return NSS_STATUS_NOTFOUND;
Packit Service 82fcde
Packit Service 82fcde
	  /* We look at all the content in the current bucket.  Go on
Packit Service 82fcde
	     to the next.  */
Packit Service 82fcde
	  bucket = intern->next = bucket->next;
Packit Service 82fcde
	  intern->offset = 0;
Packit Service 82fcde
	}
Packit Service 82fcde
Packit Service 82fcde
      char *p;
Packit Service 82fcde
      for (p = &bucket->mem[intern->offset]; isspace (*p); ++p)
Packit Service 82fcde
        ++intern->offset;
Packit Service 82fcde
Packit Service 82fcde
      size_t len = strlen (p) + 1;
Packit Service 82fcde
      if (__glibc_unlikely (len > buflen))
Packit Service 82fcde
	{
Packit Service 82fcde
	  *errnop = ERANGE;
Packit Service 82fcde
	  return NSS_STATUS_TRYAGAIN;
Packit Service 82fcde
	}
Packit Service 82fcde
Packit Service 82fcde
      /* We unfortunately have to copy the data in the user-provided
Packit Service 82fcde
	 buffer because that buffer might be around for a very long
Packit Service 82fcde
	 time and the servent structure must remain valid.  If we would
Packit Service 82fcde
	 rely on the BUCKET memory the next 'setservent' or 'endservent'
Packit Service 82fcde
	 call would destroy it.
Packit Service 82fcde
Packit Service 82fcde
	 The important thing is that it is a single NUL-terminated
Packit Service 82fcde
	 string.  This is what the parsing routine expects.  */
Packit Service 82fcde
      p = memcpy (buffer, &bucket->mem[intern->offset], len);
Packit Service 82fcde
Packit Service 82fcde
      parse_res = _nss_files_parse_grent (p, grp, (void *) buffer, buflen,
Packit Service 82fcde
					  errnop);
Packit Service 82fcde
      if (__glibc_unlikely (parse_res == -1))
Packit Service 82fcde
        return NSS_STATUS_TRYAGAIN;
Packit Service 82fcde
Packit Service 82fcde
      intern->offset += len;
Packit Service 82fcde
    }
Packit Service 82fcde
  while (!parse_res);
Packit Service 82fcde
Packit Service 82fcde
  return NSS_STATUS_SUCCESS;
Packit Service 82fcde
}
Packit Service 82fcde
Packit Service 82fcde
Packit Service 82fcde
static int
Packit Service 82fcde
get_uid (const char *user, uid_t *uidp)
Packit Service 82fcde
{
Packit Service 82fcde
  struct scratch_buffer tmpbuf;
Packit Service 82fcde
  scratch_buffer_init (&tmpbuf);
Packit Service 82fcde
Packit Service 82fcde
  while (1)
Packit Service 82fcde
    {
Packit Service 82fcde
      struct passwd result;
Packit Service 82fcde
      struct passwd *resp;
Packit Service 82fcde
Packit Service 82fcde
      int r = getpwnam_r (user, &result, tmpbuf.data, tmpbuf.length, &resp);
Packit Service 82fcde
      if (r == 0 && resp != NULL)
Packit Service 82fcde
	{
Packit Service 82fcde
	  *uidp = resp->pw_uid;
Packit Service 82fcde
	  scratch_buffer_free (&tmpbuf);
Packit Service 82fcde
	  return 0;
Packit Service 82fcde
	}
Packit Service 82fcde
Packit Service 82fcde
      if (r != ERANGE)
Packit Service 82fcde
	break;
Packit Service 82fcde
Packit Service 82fcde
      if (!scratch_buffer_grow (&tmpbuf))
Packit Service 82fcde
	return 1;
Packit Service 82fcde
    }
Packit Service 82fcde
Packit Service 82fcde
  scratch_buffer_free (&tmpbuf);
Packit Service 82fcde
  return 1;
Packit Service 82fcde
}
Packit Service 82fcde
Packit Service 82fcde
Packit Service 82fcde
static enum nss_status
Packit Service 82fcde
initgroups_netid (uid_t uid, gid_t group, long int *start, long int *size,
Packit Service 82fcde
		  gid_t **groupsp, long int limit, int *errnop,
Packit Service 82fcde
		  const char *domainname)
Packit Service 82fcde
{
Packit Service 82fcde
  /* Limit domainname length to the maximum size of an RPC packet.  */
Packit Service 82fcde
  if (strlen (domainname) > UDPMSGSIZE)
Packit Service 82fcde
    {
Packit Service 82fcde
      *errnop = ERANGE;
Packit Service 82fcde
      return NSS_STATUS_UNAVAIL;
Packit Service 82fcde
    }
Packit Service 82fcde
Packit Service 82fcde
  /* Prepare the key.  The form is "unix.UID@DOMAIN" with the UID and
Packit Service 82fcde
     DOMAIN field filled in appropriately.  */
Packit Service 82fcde
  char key[sizeof ("unix.@") + sizeof (uid_t) * 3 + strlen (domainname)];
Packit Service 82fcde
  ssize_t keylen = snprintf (key, sizeof (key), "unix.%lu@%s",
Packit Service 82fcde
			     (unsigned long int) uid, domainname);
Packit Service 82fcde
Packit Service 82fcde
  char *result;
Packit Service 82fcde
  int reslen;
Packit Service 82fcde
  int yperr = yp_match (domainname, "netid.byname", key, keylen, &result,
Packit Service 82fcde
			&reslen);
Packit Service 82fcde
  if (__glibc_unlikely (yperr != YPERR_SUCCESS))
Packit Service 82fcde
    return yperr2nss (yperr);
Packit Service 82fcde
Packit Service 82fcde
  /* Parse the result: following the colon is a comma separated list of
Packit Service 82fcde
     group IDs.  */
Packit Service 82fcde
  char *cp = strchr (result, ':');
Packit Service 82fcde
  if (cp == NULL)
Packit Service 82fcde
    {
Packit Service 82fcde
    errout:
Packit Service 82fcde
      free (result);
Packit Service 82fcde
      return NSS_STATUS_NOTFOUND;
Packit Service 82fcde
    }
Packit Service 82fcde
  /* Skip the colon.  */
Packit Service 82fcde
  ++cp;
Packit Service 82fcde
Packit Service 82fcde
  gid_t *groups = *groupsp;
Packit Service 82fcde
  while (*cp != '\0')
Packit Service 82fcde
    {
Packit Service 82fcde
      char *endp;
Packit Service 82fcde
      unsigned long int gid = strtoul (cp, &endp, 0);
Packit Service 82fcde
      if (cp == endp)
Packit Service 82fcde
	goto errout;
Packit Service 82fcde
      if (*endp == ',')
Packit Service 82fcde
	++endp;
Packit Service 82fcde
      else if (*endp != '\0')
Packit Service 82fcde
	goto errout;
Packit Service 82fcde
      cp = endp;
Packit Service 82fcde
Packit Service 82fcde
      if (gid == group)
Packit Service 82fcde
	/* We do not need this group again.  */
Packit Service 82fcde
	continue;
Packit Service 82fcde
Packit Service 82fcde
      /* Insert this group.  */
Packit Service 82fcde
      if (*start == *size)
Packit Service 82fcde
	{
Packit Service 82fcde
	  /* Need a bigger buffer.  */
Packit Service 82fcde
	  long int newsize;
Packit Service 82fcde
Packit Service 82fcde
	  if (limit > 0 && *size == limit)
Packit Service 82fcde
	    /* We reached the maximum.  */
Packit Service 82fcde
	    break;
Packit Service 82fcde
Packit Service 82fcde
	  if (limit <= 0)
Packit Service 82fcde
	    newsize = 2 * *size;
Packit Service 82fcde
	  else
Packit Service 82fcde
	    newsize = MIN (limit, 2 * *size);
Packit Service 82fcde
Packit Service 82fcde
	  gid_t *newgroups = realloc (groups, newsize * sizeof (*groups));
Packit Service 82fcde
	  if (newgroups == NULL)
Packit Service 82fcde
	    goto errout;
Packit Service 82fcde
	  *groupsp = groups = newgroups;
Packit Service 82fcde
	  *size = newsize;
Packit Service 82fcde
	}
Packit Service 82fcde
Packit Service 82fcde
      groups[*start] = gid;
Packit Service 82fcde
      *start += 1;
Packit Service 82fcde
    }
Packit Service 82fcde
Packit Service 82fcde
  free (result);
Packit Service 82fcde
Packit Service 82fcde
  return NSS_STATUS_SUCCESS;
Packit Service 82fcde
}
Packit Service 82fcde
Packit Service 82fcde
Packit Service 82fcde
enum nss_status
Packit Service 82fcde
_nss_nis_initgroups_dyn (const char *user, gid_t group, long int *start,
Packit Service 82fcde
			 long int *size, gid_t **groupsp, long int limit,
Packit Service 82fcde
			 int *errnop)
Packit Service 82fcde
{
Packit Service 82fcde
  /* We always need the domain name.  */
Packit Service 82fcde
  char *domainname;
Packit Service 82fcde
  if (yp_get_default_domain (&domainname))
Packit Service 82fcde
    return NSS_STATUS_UNAVAIL;
Packit Service 82fcde
Packit Service 82fcde
  /* Check whether we are supposed to use the netid.byname map.  */
Packit Service 82fcde
  if (_nsl_default_nss () & NSS_FLAG_NETID_AUTHORITATIVE)
Packit Service 82fcde
    {
Packit Service 82fcde
      /* We need the user ID.  */
Packit Service 82fcde
      uid_t uid;
Packit Service 82fcde
Packit Service 82fcde
      if (get_uid (user, &uid) == 0
Packit Service 82fcde
	  && initgroups_netid (uid, group, start, size, groupsp, limit,
Packit Service 82fcde
			       errnop, domainname) == NSS_STATUS_SUCCESS)
Packit Service 82fcde
	return NSS_STATUS_SUCCESS;
Packit Service 82fcde
    }
Packit Service 82fcde
Packit Service 82fcde
  struct group grpbuf, *g;
Packit Service 82fcde
  enum nss_status status;
Packit Service 82fcde
  intern_t intern = { NULL, NULL, 0 };
Packit Service 82fcde
  gid_t *groups = *groupsp;
Packit Service 82fcde
Packit Service 82fcde
  status = internal_setgrent (domainname, &intern;;
Packit Service 82fcde
  if (status != NSS_STATUS_SUCCESS)
Packit Service 82fcde
    return status;
Packit Service 82fcde
Packit Service 82fcde
  struct scratch_buffer tmpbuf;
Packit Service 82fcde
  scratch_buffer_init (&tmpbuf);
Packit Service 82fcde
Packit Service 82fcde
  while (1)
Packit Service 82fcde
    {
Packit Service 82fcde
      while ((status =
Packit Service 82fcde
	      internal_getgrent_r (&grpbuf, tmpbuf.data, tmpbuf.length, errnop,
Packit Service 82fcde
				   &intern)) == NSS_STATUS_TRYAGAIN
Packit Service 82fcde
             && *errnop == ERANGE)
Packit Service 82fcde
	if (!scratch_buffer_grow (&tmpbuf))
Packit Service 82fcde
	  {
Packit Service 82fcde
	    status = NSS_STATUS_TRYAGAIN;
Packit Service 82fcde
	    goto done;
Packit Service 82fcde
	  }
Packit Service 82fcde
Packit Service 82fcde
      if (status != NSS_STATUS_SUCCESS)
Packit Service 82fcde
	{
Packit Service 82fcde
	  if (status == NSS_STATUS_NOTFOUND)
Packit Service 82fcde
	    status = NSS_STATUS_SUCCESS;
Packit Service 82fcde
	  goto done;
Packit Service 82fcde
	}
Packit Service 82fcde
Packit Service 82fcde
      g = &grpbuf;
Packit Service 82fcde
      if (g->gr_gid != group)
Packit Service 82fcde
        {
Packit Service 82fcde
          char **m;
Packit Service 82fcde
Packit Service 82fcde
          for (m = g->gr_mem; *m != NULL; ++m)
Packit Service 82fcde
            if (strcmp (*m, user) == 0)
Packit Service 82fcde
              {
Packit Service 82fcde
                /* Matches user.  Insert this group.  */
Packit Service 82fcde
                if (*start == *size)
Packit Service 82fcde
                  {
Packit Service 82fcde
                    /* Need a bigger buffer.  */
Packit Service 82fcde
		    gid_t *newgroups;
Packit Service 82fcde
		    long int newsize;
Packit Service 82fcde
Packit Service 82fcde
		    if (limit > 0 && *size == limit)
Packit Service 82fcde
		      /* We reached the maximum.  */
Packit Service 82fcde
		      goto done;
Packit Service 82fcde
Packit Service 82fcde
		    if (limit <= 0)
Packit Service 82fcde
		      newsize = 2 * *size;
Packit Service 82fcde
		    else
Packit Service 82fcde
		      newsize = MIN (limit, 2 * *size);
Packit Service 82fcde
Packit Service 82fcde
		    newgroups = realloc (groups, newsize * sizeof (*groups));
Packit Service 82fcde
		    if (newgroups == NULL)
Packit Service 82fcde
		      {
Packit Service 82fcde
			status = NSS_STATUS_TRYAGAIN;
Packit Service 82fcde
			*errnop = errno;
Packit Service 82fcde
			goto done;
Packit Service 82fcde
		      }
Packit Service 82fcde
		    *groupsp = groups = newgroups;
Packit Service 82fcde
                    *size = newsize;
Packit Service 82fcde
                  }
Packit Service 82fcde
Packit Service 82fcde
                groups[*start] = g->gr_gid;
Packit Service 82fcde
		*start += 1;
Packit Service 82fcde
Packit Service 82fcde
                break;
Packit Service 82fcde
              }
Packit Service 82fcde
        }
Packit Service 82fcde
    }
Packit Service 82fcde
Packit Service 82fcde
done:
Packit Service 82fcde
  while (intern.start != NULL)
Packit Service 82fcde
    {
Packit Service 82fcde
      intern.next = intern.start;
Packit Service 82fcde
      intern.start = intern.start->next;
Packit Service 82fcde
      free (intern.next);
Packit Service 82fcde
    }
Packit Service 82fcde
  scratch_buffer_free (&tmpbuf);
Packit Service 82fcde
Packit Service 82fcde
  return status;
Packit Service 82fcde
}