1*49cdfc7eSAndroid Build Coastguard Worker // SPDX-License-Identifier: GPL-2.0-or-later
2*49cdfc7eSAndroid Build Coastguard Worker /*
3*49cdfc7eSAndroid Build Coastguard Worker * Copyright (c) International Business Machines Corp., 2001
4*49cdfc7eSAndroid Build Coastguard Worker * Ported by John George
5*49cdfc7eSAndroid Build Coastguard Worker * Copyright (c) 2022 SUSE LLC Avinesh Kumar <[email protected]>
6*49cdfc7eSAndroid Build Coastguard Worker */
7*49cdfc7eSAndroid Build Coastguard Worker
8*49cdfc7eSAndroid Build Coastguard Worker /*\
9*49cdfc7eSAndroid Build Coastguard Worker * [Description]
10*49cdfc7eSAndroid Build Coastguard Worker *
11*49cdfc7eSAndroid Build Coastguard Worker * Verify that root user can change the real and effective uid to an
12*49cdfc7eSAndroid Build Coastguard Worker * unprivileged user.
13*49cdfc7eSAndroid Build Coastguard Worker */
14*49cdfc7eSAndroid Build Coastguard Worker
15*49cdfc7eSAndroid Build Coastguard Worker #include <pwd.h>
16*49cdfc7eSAndroid Build Coastguard Worker #include "tst_test.h"
17*49cdfc7eSAndroid Build Coastguard Worker #include "compat_tst_16.h"
18*49cdfc7eSAndroid Build Coastguard Worker
19*49cdfc7eSAndroid Build Coastguard Worker static uid_t root_uid, nobody_uid;
20*49cdfc7eSAndroid Build Coastguard Worker
setup(void)21*49cdfc7eSAndroid Build Coastguard Worker static void setup(void)
22*49cdfc7eSAndroid Build Coastguard Worker {
23*49cdfc7eSAndroid Build Coastguard Worker struct passwd *nobody;
24*49cdfc7eSAndroid Build Coastguard Worker
25*49cdfc7eSAndroid Build Coastguard Worker root_uid = getuid();
26*49cdfc7eSAndroid Build Coastguard Worker nobody = SAFE_GETPWNAM("nobody");
27*49cdfc7eSAndroid Build Coastguard Worker nobody_uid = nobody->pw_uid;
28*49cdfc7eSAndroid Build Coastguard Worker
29*49cdfc7eSAndroid Build Coastguard Worker UID16_CHECK(nobody_uid, setreuid);
30*49cdfc7eSAndroid Build Coastguard Worker UID16_CHECK(root_uid, setreuid);
31*49cdfc7eSAndroid Build Coastguard Worker }
32*49cdfc7eSAndroid Build Coastguard Worker
run(void)33*49cdfc7eSAndroid Build Coastguard Worker static void run(void)
34*49cdfc7eSAndroid Build Coastguard Worker {
35*49cdfc7eSAndroid Build Coastguard Worker if (!SAFE_FORK()) {
36*49cdfc7eSAndroid Build Coastguard Worker TST_EXP_PASS(SETREUID(nobody_uid, nobody_uid));
37*49cdfc7eSAndroid Build Coastguard Worker
38*49cdfc7eSAndroid Build Coastguard Worker TST_EXP_EQ_LI(GETUID(), nobody_uid);
39*49cdfc7eSAndroid Build Coastguard Worker TST_EXP_EQ_LI(GETEUID(), nobody_uid);
40*49cdfc7eSAndroid Build Coastguard Worker }
41*49cdfc7eSAndroid Build Coastguard Worker tst_reap_children();
42*49cdfc7eSAndroid Build Coastguard Worker }
43*49cdfc7eSAndroid Build Coastguard Worker
44*49cdfc7eSAndroid Build Coastguard Worker static struct tst_test test = {
45*49cdfc7eSAndroid Build Coastguard Worker .setup = setup,
46*49cdfc7eSAndroid Build Coastguard Worker .test_all = run,
47*49cdfc7eSAndroid Build Coastguard Worker .needs_root = 1,
48*49cdfc7eSAndroid Build Coastguard Worker .forks_child = 1
49*49cdfc7eSAndroid Build Coastguard Worker };
50