xref: /xnu-12377.1.9/tests/text_corruption.c (revision f6217f891ac0bb64f3d375211650a4c1ff8ca1ea)
1*f6217f89SApple OSS Distributions #include <unistd.h>
2*f6217f89SApple OSS Distributions #include <stdio.h>
3*f6217f89SApple OSS Distributions 
4*f6217f89SApple OSS Distributions #include <darwintest.h>
5*f6217f89SApple OSS Distributions #include <darwintest_utils.h>
6*f6217f89SApple OSS Distributions 
7*f6217f89SApple OSS Distributions T_GLOBAL_META(
8*f6217f89SApple OSS Distributions /*
9*f6217f89SApple OSS Distributions  * We're going to corrupt shared library text, so don't
10*f6217f89SApple OSS Distributions  * run with other tests.
11*f6217f89SApple OSS Distributions  */
12*f6217f89SApple OSS Distributions 	T_META_RUN_CONCURRENTLY(false),
13*f6217f89SApple OSS Distributions 	T_META_REQUIRES_SYSCTL_NE("kern.page_protection_type", 2)
14*f6217f89SApple OSS Distributions 	);
15*f6217f89SApple OSS Distributions 
16*f6217f89SApple OSS Distributions /*
17*f6217f89SApple OSS Distributions  * No system(3c) on watchOS, so provide our own.
18*f6217f89SApple OSS Distributions  * returns -1 if fails to run
19*f6217f89SApple OSS Distributions  * returns 0 if process exits normally.
20*f6217f89SApple OSS Distributions  * returns +n if process exits due to signal N
21*f6217f89SApple OSS Distributions  */
22*f6217f89SApple OSS Distributions static int
my_system(const char * command)23*f6217f89SApple OSS Distributions my_system(const char *command)
24*f6217f89SApple OSS Distributions {
25*f6217f89SApple OSS Distributions 	pid_t pid;
26*f6217f89SApple OSS Distributions 	int status = 0;
27*f6217f89SApple OSS Distributions 	int signal = 0;
28*f6217f89SApple OSS Distributions 	int err;
29*f6217f89SApple OSS Distributions 	const char *argv[] = {
30*f6217f89SApple OSS Distributions 		"/bin/sh",
31*f6217f89SApple OSS Distributions 		"-c",
32*f6217f89SApple OSS Distributions 		command,
33*f6217f89SApple OSS Distributions 		NULL
34*f6217f89SApple OSS Distributions 	};
35*f6217f89SApple OSS Distributions 
36*f6217f89SApple OSS Distributions 	if (dt_launch_tool(&pid, (char **)(void *)argv, FALSE, NULL, NULL)) {
37*f6217f89SApple OSS Distributions 		return -1;
38*f6217f89SApple OSS Distributions 	}
39*f6217f89SApple OSS Distributions 
40*f6217f89SApple OSS Distributions 	err = dt_waitpid(pid, &status, &signal, 30);
41*f6217f89SApple OSS Distributions 	if (err) {
42*f6217f89SApple OSS Distributions 		return 0;
43*f6217f89SApple OSS Distributions 	}
44*f6217f89SApple OSS Distributions 
45*f6217f89SApple OSS Distributions 	return signal;
46*f6217f89SApple OSS Distributions }
47*f6217f89SApple OSS Distributions 
48*f6217f89SApple OSS Distributions 
49*f6217f89SApple OSS Distributions /*
50*f6217f89SApple OSS Distributions  * The tests are run in the following order:
51*f6217f89SApple OSS Distributions  *
52*f6217f89SApple OSS Distributions  * - call foo
53*f6217f89SApple OSS Distributions  * - corrupt foo, then call foo
54*f6217f89SApple OSS Distributions  * - call foo
55*f6217f89SApple OSS Distributions  *
56*f6217f89SApple OSS Distributions  * - call atan
57*f6217f89SApple OSS Distributions  * - corrupt atan, then call atan
58*f6217f89SApple OSS Distributions  * - call atan
59*f6217f89SApple OSS Distributions  *
60*f6217f89SApple OSS Distributions  * The first and last of each should exit normally. The middle one should exit with SIGILL.
61*f6217f89SApple OSS Distributions  *
62*f6217f89SApple OSS Distributions  * atan() was picked as a shared region function that isn't likely used by any normal daemons.
63*f6217f89SApple OSS Distributions  */
64*f6217f89SApple OSS Distributions T_DECL(text_corruption_recovery, "test detection/recovery of text corruption",
65*f6217f89SApple OSS Distributions     T_META_IGNORECRASHES(".*text_corruption_helper.*"),
66*f6217f89SApple OSS Distributions     T_META_ASROOT(true))
67*f6217f89SApple OSS Distributions {
68*f6217f89SApple OSS Distributions 	int ret;
69*f6217f89SApple OSS Distributions 
70*f6217f89SApple OSS Distributions 	ret = my_system("./text_corruption_helper foo");
71*f6217f89SApple OSS Distributions 	T_QUIET; T_ASSERT_EQ(ret, 0, "First call of foo");
72*f6217f89SApple OSS Distributions 
73*f6217f89SApple OSS Distributions 	ret = my_system("./text_corruption_helper Xfoo");
74*f6217f89SApple OSS Distributions 	T_QUIET; T_ASSERT_EQ(ret, SIGILL, "Call of corrupted foo");
75*f6217f89SApple OSS Distributions 
76*f6217f89SApple OSS Distributions 	ret = my_system("./text_corruption_helper foo");
77*f6217f89SApple OSS Distributions 	T_QUIET; T_ASSERT_EQ(ret, 0, "Fixed call of foo");
78*f6217f89SApple OSS Distributions 
79*f6217f89SApple OSS Distributions 	ret = my_system("./text_corruption_helper atan");
80*f6217f89SApple OSS Distributions 	T_QUIET; T_ASSERT_EQ(ret, 0, "First call of atan");
81*f6217f89SApple OSS Distributions 
82*f6217f89SApple OSS Distributions 	ret = my_system("./text_corruption_helper Xatan");
83*f6217f89SApple OSS Distributions 	T_QUIET; T_ASSERT_EQ(ret, SIGILL, "Call of corrupted atan");
84*f6217f89SApple OSS Distributions 
85*f6217f89SApple OSS Distributions 	ret = my_system("./text_corruption_helper atan");
86*f6217f89SApple OSS Distributions 	T_QUIET; T_ASSERT_EQ(ret, 0, "Fixed call of atan");
87*f6217f89SApple OSS Distributions }
88