]> git.cameronkatri.com Git - pw-darwin.git/blob - pw/pwupd.c
Prevent a null pointer dereference in pw userdel when deleting
[pw-darwin.git] / pw / pwupd.c
1 /*-
2 * Copyright (C) 1996
3 * David L. Nugent. All rights reserved.
4 *
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
7 * are met:
8 * 1. Redistributions of source code must retain the above copyright
9 * notice, this list of conditions and the following disclaimer.
10 * 2. Redistributions in binary form must reproduce the above copyright
11 * notice, this list of conditions and the following disclaimer in the
12 * documentation and/or other materials provided with the distribution.
13 *
14 * THIS SOFTWARE IS PROVIDED BY DAVID L. NUGENT AND CONTRIBUTORS ``AS IS'' AND
15 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
16 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
17 * ARE DISCLAIMED. IN NO EVENT SHALL DAVID L. NUGENT OR CONTRIBUTORS BE LIABLE
18 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
19 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
20 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
21 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
22 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
23 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
24 * SUCH DAMAGE.
25 */
26
27 #ifndef lint
28 static const char rcsid[] =
29 "$FreeBSD$";
30 #endif /* not lint */
31
32 #include <stdio.h>
33 #include <stdlib.h>
34 #include <string.h>
35 #include <unistd.h>
36 #include <stdarg.h>
37 #include <pwd.h>
38 #include <libutil.h>
39 #include <errno.h>
40 #include <err.h>
41 #include <sys/types.h>
42 #include <sys/stat.h>
43 #include <sys/param.h>
44 #include <sys/wait.h>
45
46 #include "pwupd.h"
47
48 #define HAVE_PWDB_C 1
49 #define HAVE_PWDB_U 1
50
51 static char pathpwd[] = _PATH_PWD;
52 static char * pwpath = pathpwd;
53
54 int
55 setpwdir(const char * dir)
56 {
57 if (dir == NULL)
58 return -1;
59 else
60 pwpath = strdup(dir);
61 if (pwpath == NULL)
62 return -1;
63 return 0;
64 }
65
66 char *
67 getpwpath(char const * file)
68 {
69 static char pathbuf[MAXPATHLEN];
70
71 snprintf(pathbuf, sizeof pathbuf, "%s/%s", pwpath, file);
72 return pathbuf;
73 }
74
75 static int
76 pwdb(char *arg,...)
77 {
78 int i = 0;
79 pid_t pid;
80 va_list ap;
81 char *args[10];
82
83 args[i++] = _PATH_PWD_MKDB;
84 va_start(ap, arg);
85 while (i < 6 && arg != NULL) {
86 args[i++] = arg;
87 arg = va_arg(ap, char *);
88 }
89 if (pwpath != pathpwd) {
90 args[i++] = "-d";
91 args[i++] = pwpath;
92 }
93 args[i++] = getpwpath(_MASTERPASSWD);
94 args[i] = NULL;
95
96 if ((pid = fork()) == -1) /* Error (errno set) */
97 i = errno;
98 else if (pid == 0) { /* Child */
99 execv(args[0], args);
100 _exit(1);
101 } else { /* Parent */
102 waitpid(pid, &i, 0);
103 if (WEXITSTATUS(i))
104 i = EIO;
105 }
106 va_end(ap);
107 return i;
108 }
109
110 static int
111 pw_update(struct passwd * pwd, char const * user)
112 {
113 int rc = 0;
114
115 /*
116 * First, let's check the see if the database is alright
117 * Note: -C is only available in FreeBSD 2.2 and above
118 */
119 #ifdef HAVE_PWDB_C
120 rc = pwdb("-C", (char *)NULL); /* Check only */
121 if (rc == 0) {
122 #else
123 { /* No -C */
124 #endif
125 int pfd, tfd;
126 struct passwd *pw = NULL;
127 struct passwd *old_pw = NULL;
128
129 if (pwd != NULL)
130 pw = pw_dup(pwd);
131
132 if (user != NULL)
133 old_pw = GETPWNAM(user);
134
135 if (pw_init(pwpath, NULL))
136 err(1, "pw_init()");
137 if ((pfd = pw_lock()) == -1) {
138 pw_fini();
139 err(1, "pw_lock()");
140 }
141 if ((tfd = pw_tmp(-1)) == -1) {
142 pw_fini();
143 err(1, "pw_tmp()");
144 }
145 if (pw_copy(pfd, tfd, pw, old_pw) == -1) {
146 pw_fini();
147 err(1, "pw_copy()");
148 }
149 /*
150 * in case of deletion of a user, the whole database
151 * needs to be regenerated
152 */
153 if (pw_mkdb(pw != NULL ? user : NULL) == -1) {
154 pw_fini();
155 err(1, "pw_mkdb()");
156 }
157 free(pw);
158 pw_fini();
159 }
160 return 0;
161 }
162
163 int
164 addpwent(struct passwd * pwd)
165 {
166 return pw_update(pwd, NULL);
167 }
168
169 int
170 chgpwent(char const * login, struct passwd * pwd)
171 {
172 return pw_update(pwd, login);
173 }
174
175 int
176 delpwent(struct passwd * pwd)
177 {
178 char login[MAXLOGNAME];
179
180 strlcpy(login, pwd->pw_name, MAXLOGNAME);
181 return pw_update(NULL, login);
182 }