1*2c2f96dcSApple OSS Distributions #pragma clang diagnostic ignored "-Wdeprecated-declarations" 2*2c2f96dcSApple OSS Distributions 3*2c2f96dcSApple OSS Distributions #include <sys/codesign.h> 4*2c2f96dcSApple OSS Distributions #include <signal.h> 5*2c2f96dcSApple OSS Distributions 6*2c2f96dcSApple OSS Distributions #include <darwintest.h> 7*2c2f96dcSApple OSS Distributions #include <darwintest_utils.h> 8*2c2f96dcSApple OSS Distributions 9*2c2f96dcSApple OSS Distributions T_GLOBAL_META(T_META_RUN_CONCURRENTLY(true)); 10*2c2f96dcSApple OSS Distributions 11*2c2f96dcSApple OSS Distributions T_DECL(static_binary, 12*2c2f96dcSApple OSS Distributions "Verify that static binaries have CS_NO_UNTRUSTED_HELPERS set") { 13*2c2f96dcSApple OSS Distributions int ret; 14*2c2f96dcSApple OSS Distributions pid_t pid; 15*2c2f96dcSApple OSS Distributions char *launch_argv[] = {"./static_binary", NULL}; 16*2c2f96dcSApple OSS Distributions ret = dt_launch_tool(&pid, launch_argv, /*start_suspended*/ true, NULL, NULL); 17*2c2f96dcSApple OSS Distributions T_QUIET; 18*2c2f96dcSApple OSS Distributions T_ASSERT_POSIX_SUCCESS(ret, "dt_launch_tool on static binary"); 19*2c2f96dcSApple OSS Distributions 20*2c2f96dcSApple OSS Distributions uint32_t status = 0; 21*2c2f96dcSApple OSS Distributions ret = csops(pid, CS_OPS_STATUS, &status, sizeof(status)); 22*2c2f96dcSApple OSS Distributions T_QUIET; 23*2c2f96dcSApple OSS Distributions T_EXPECT_POSIX_SUCCESS(ret, "request CS_OPS_STATUS on static binary"); 24*2c2f96dcSApple OSS Distributions 25*2c2f96dcSApple OSS Distributions if (!ret) { 26*2c2f96dcSApple OSS Distributions T_EXPECT_BITS_SET(status, CS_NO_UNTRUSTED_HELPERS, "CS_NO_UNTRUSTED_HELPERS should be set on static binary"); 27*2c2f96dcSApple OSS Distributions } 28*2c2f96dcSApple OSS Distributions 29*2c2f96dcSApple OSS Distributions ret = kill(pid, SIGCONT); 30*2c2f96dcSApple OSS Distributions T_QUIET; 31*2c2f96dcSApple OSS Distributions T_ASSERT_POSIX_SUCCESS(ret, "SIGCONT on static binary"); 32*2c2f96dcSApple OSS Distributions 33*2c2f96dcSApple OSS Distributions int exitstatus, signal; 34*2c2f96dcSApple OSS Distributions dt_waitpid(pid, &exitstatus, &signal, 30); 35*2c2f96dcSApple OSS Distributions T_QUIET; 36*2c2f96dcSApple OSS Distributions T_ASSERT_EQ(signal, 0, "static binary exited"); 37*2c2f96dcSApple OSS Distributions T_QUIET; 38*2c2f96dcSApple OSS Distributions T_ASSERT_EQ(exitstatus, 42, "static binary exited with code 42"); 39*2c2f96dcSApple OSS Distributions } 40