1*4d495c6eSApple OSS Distributions #include <darwintest.h>
2*4d495c6eSApple OSS Distributions #include <servers/bootstrap.h>
3*4d495c6eSApple OSS Distributions #include <mach/mach.h>
4*4d495c6eSApple OSS Distributions #include <mach/message.h>
5*4d495c6eSApple OSS Distributions #include <stdlib.h>
6*4d495c6eSApple OSS Distributions #include <sys/sysctl.h>
7*4d495c6eSApple OSS Distributions #include <unistd.h>
8*4d495c6eSApple OSS Distributions #include <darwintest_multiprocess.h>
9*4d495c6eSApple OSS Distributions #include <excserver.h>
10*4d495c6eSApple OSS Distributions #include <spawn.h>
11*4d495c6eSApple OSS Distributions #include <spawn_private.h>
12*4d495c6eSApple OSS Distributions #include <libproc_internal.h>
13*4d495c6eSApple OSS Distributions #include <signal.h>
14*4d495c6eSApple OSS Distributions
15*4d495c6eSApple OSS Distributions #include <IOKit/IOKitLib.h>
16*4d495c6eSApple OSS Distributions
17*4d495c6eSApple OSS Distributions T_GLOBAL_META(
18*4d495c6eSApple OSS Distributions T_META_NAMESPACE("xnu.ipc"),
19*4d495c6eSApple OSS Distributions T_META_RUN_CONCURRENTLY(TRUE),
20*4d495c6eSApple OSS Distributions T_META_RADAR_COMPONENT_NAME("xnu"),
21*4d495c6eSApple OSS Distributions T_META_RADAR_COMPONENT_VERSION("IPC"),
22*4d495c6eSApple OSS Distributions T_META_TAG_VM_PREFERRED);
23*4d495c6eSApple OSS Distributions
24*4d495c6eSApple OSS Distributions #define TASK_EXC_GUARD_MP_DELIVER 0x10
25*4d495c6eSApple OSS Distributions #define MAX_ARGV 2
26*4d495c6eSApple OSS Distributions
27*4d495c6eSApple OSS Distributions extern char **environ;
28*4d495c6eSApple OSS Distributions
29*4d495c6eSApple OSS Distributions kern_return_t
catch_mach_exception_raise_state(mach_port_t exception_port,exception_type_t exception,const mach_exception_data_t code,mach_msg_type_number_t code_count,int * flavor,const thread_state_t old_state,mach_msg_type_number_t old_state_count,thread_state_t new_state,mach_msg_type_number_t * new_state_count)30*4d495c6eSApple OSS Distributions catch_mach_exception_raise_state(mach_port_t exception_port,
31*4d495c6eSApple OSS Distributions exception_type_t exception,
32*4d495c6eSApple OSS Distributions const mach_exception_data_t code,
33*4d495c6eSApple OSS Distributions mach_msg_type_number_t code_count,
34*4d495c6eSApple OSS Distributions int * flavor,
35*4d495c6eSApple OSS Distributions const thread_state_t old_state,
36*4d495c6eSApple OSS Distributions mach_msg_type_number_t old_state_count,
37*4d495c6eSApple OSS Distributions thread_state_t new_state,
38*4d495c6eSApple OSS Distributions mach_msg_type_number_t * new_state_count)
39*4d495c6eSApple OSS Distributions {
40*4d495c6eSApple OSS Distributions #pragma unused(exception_port, exception, code, code_count, flavor, old_state, old_state_count, new_state, new_state_count)
41*4d495c6eSApple OSS Distributions T_FAIL("Unsupported catch_mach_exception_raise_state");
42*4d495c6eSApple OSS Distributions return KERN_NOT_SUPPORTED;
43*4d495c6eSApple OSS Distributions }
44*4d495c6eSApple OSS Distributions
45*4d495c6eSApple OSS Distributions kern_return_t
catch_mach_exception_raise_state_identity(mach_port_t exception_port,mach_port_t thread,mach_port_t task,exception_type_t exception,mach_exception_data_t code,mach_msg_type_number_t code_count,int * flavor,thread_state_t old_state,mach_msg_type_number_t old_state_count,thread_state_t new_state,mach_msg_type_number_t * new_state_count)46*4d495c6eSApple OSS Distributions catch_mach_exception_raise_state_identity(mach_port_t exception_port,
47*4d495c6eSApple OSS Distributions mach_port_t thread,
48*4d495c6eSApple OSS Distributions mach_port_t task,
49*4d495c6eSApple OSS Distributions exception_type_t exception,
50*4d495c6eSApple OSS Distributions mach_exception_data_t code,
51*4d495c6eSApple OSS Distributions mach_msg_type_number_t code_count,
52*4d495c6eSApple OSS Distributions int * flavor,
53*4d495c6eSApple OSS Distributions thread_state_t old_state,
54*4d495c6eSApple OSS Distributions mach_msg_type_number_t old_state_count,
55*4d495c6eSApple OSS Distributions thread_state_t new_state,
56*4d495c6eSApple OSS Distributions mach_msg_type_number_t * new_state_count)
57*4d495c6eSApple OSS Distributions {
58*4d495c6eSApple OSS Distributions #pragma unused(exception_port, thread, task, exception, code, code_count, flavor, old_state, old_state_count, new_state, new_state_count)
59*4d495c6eSApple OSS Distributions T_FAIL("Unsupported catch_mach_exception_raise_state_identity");
60*4d495c6eSApple OSS Distributions return KERN_NOT_SUPPORTED;
61*4d495c6eSApple OSS Distributions }
62*4d495c6eSApple OSS Distributions
63*4d495c6eSApple OSS Distributions kern_return_t
catch_mach_exception_raise(mach_port_t exception_port,mach_port_t thread,mach_port_t task,exception_type_t exception,mach_exception_data_t code,mach_msg_type_number_t code_count)64*4d495c6eSApple OSS Distributions catch_mach_exception_raise(mach_port_t exception_port,
65*4d495c6eSApple OSS Distributions mach_port_t thread,
66*4d495c6eSApple OSS Distributions mach_port_t task,
67*4d495c6eSApple OSS Distributions exception_type_t exception,
68*4d495c6eSApple OSS Distributions mach_exception_data_t code,
69*4d495c6eSApple OSS Distributions mach_msg_type_number_t code_count)
70*4d495c6eSApple OSS Distributions {
71*4d495c6eSApple OSS Distributions #pragma unused(exception_port, task, thread, code_count)
72*4d495c6eSApple OSS Distributions T_ASSERT_EQ(exception, EXC_GUARD, "exception type");
73*4d495c6eSApple OSS Distributions T_LOG("Exception raised with exception code : %llx\n", *code);
74*4d495c6eSApple OSS Distributions T_END;
75*4d495c6eSApple OSS Distributions return KERN_SUCCESS;
76*4d495c6eSApple OSS Distributions }
77*4d495c6eSApple OSS Distributions
78*4d495c6eSApple OSS Distributions typedef struct {
79*4d495c6eSApple OSS Distributions mach_msg_header_t header;
80*4d495c6eSApple OSS Distributions mach_msg_body_t body;
81*4d495c6eSApple OSS Distributions mach_msg_port_descriptor_t port_descriptor;
82*4d495c6eSApple OSS Distributions mach_msg_trailer_t trailer; // subtract this when sending
83*4d495c6eSApple OSS Distributions } ipc_complex_message;
84*4d495c6eSApple OSS Distributions
85*4d495c6eSApple OSS Distributions struct args {
86*4d495c6eSApple OSS Distributions char *server_port_name;
87*4d495c6eSApple OSS Distributions mach_port_t server_port;
88*4d495c6eSApple OSS Distributions };
89*4d495c6eSApple OSS Distributions
90*4d495c6eSApple OSS Distributions void parse_args(struct args *args);
91*4d495c6eSApple OSS Distributions void server_setup(struct args* args);
92*4d495c6eSApple OSS Distributions void* exception_server_thread(void *arg);
93*4d495c6eSApple OSS Distributions mach_port_t create_exception_port(void);
94*4d495c6eSApple OSS Distributions
95*4d495c6eSApple OSS Distributions #define TEST_TIMEOUT 10
96*4d495c6eSApple OSS Distributions
97*4d495c6eSApple OSS Distributions void
parse_args(struct args * args)98*4d495c6eSApple OSS Distributions parse_args(struct args *args)
99*4d495c6eSApple OSS Distributions {
100*4d495c6eSApple OSS Distributions args->server_port_name = "TEST_IMMOVABLE_SEND";
101*4d495c6eSApple OSS Distributions args->server_port = MACH_PORT_NULL;
102*4d495c6eSApple OSS Distributions }
103*4d495c6eSApple OSS Distributions
104*4d495c6eSApple OSS Distributions /* Create a mach IPC listener which will respond to the client's message */
105*4d495c6eSApple OSS Distributions void
server_setup(struct args * args)106*4d495c6eSApple OSS Distributions server_setup(struct args *args)
107*4d495c6eSApple OSS Distributions {
108*4d495c6eSApple OSS Distributions kern_return_t ret;
109*4d495c6eSApple OSS Distributions mach_port_t bsport;
110*4d495c6eSApple OSS Distributions
111*4d495c6eSApple OSS Distributions ret = mach_port_allocate(mach_task_self(), MACH_PORT_RIGHT_RECEIVE,
112*4d495c6eSApple OSS Distributions &args->server_port);
113*4d495c6eSApple OSS Distributions T_ASSERT_MACH_SUCCESS(ret, "server: mach_port_allocate()");
114*4d495c6eSApple OSS Distributions
115*4d495c6eSApple OSS Distributions ret = mach_port_insert_right(mach_task_self(), args->server_port, args->server_port,
116*4d495c6eSApple OSS Distributions MACH_MSG_TYPE_MAKE_SEND);
117*4d495c6eSApple OSS Distributions T_ASSERT_MACH_SUCCESS(ret, "server: mach_port_insert_right()");
118*4d495c6eSApple OSS Distributions
119*4d495c6eSApple OSS Distributions ret = task_get_bootstrap_port(mach_task_self(), &bsport);
120*4d495c6eSApple OSS Distributions T_ASSERT_MACH_SUCCESS(ret, "server: task_get_bootstrap_port()");
121*4d495c6eSApple OSS Distributions
122*4d495c6eSApple OSS Distributions ret = bootstrap_register(bsport, args->server_port_name, args->server_port);
123*4d495c6eSApple OSS Distributions T_ASSERT_MACH_SUCCESS(ret, "server: bootstrap_register()");
124*4d495c6eSApple OSS Distributions
125*4d495c6eSApple OSS Distributions T_LOG("server: waiting for IPC messages from client on port '%s'.\n",
126*4d495c6eSApple OSS Distributions args->server_port_name);
127*4d495c6eSApple OSS Distributions }
128*4d495c6eSApple OSS Distributions
129*4d495c6eSApple OSS Distributions mach_port_t
create_exception_port()130*4d495c6eSApple OSS Distributions create_exception_port()
131*4d495c6eSApple OSS Distributions {
132*4d495c6eSApple OSS Distributions kern_return_t kret;
133*4d495c6eSApple OSS Distributions mach_port_t exc_port = MACH_PORT_NULL;
134*4d495c6eSApple OSS Distributions mach_port_t task = mach_task_self();
135*4d495c6eSApple OSS Distributions
136*4d495c6eSApple OSS Distributions kret = mach_port_allocate(task, MACH_PORT_RIGHT_RECEIVE, &exc_port);
137*4d495c6eSApple OSS Distributions T_EXPECT_MACH_SUCCESS(kret, "mach_port_allocate exc_port");
138*4d495c6eSApple OSS Distributions
139*4d495c6eSApple OSS Distributions kret = mach_port_insert_right(task, exc_port, exc_port, MACH_MSG_TYPE_MAKE_SEND);
140*4d495c6eSApple OSS Distributions T_EXPECT_MACH_SUCCESS(kret, "mach_port_insert_right exc_port");
141*4d495c6eSApple OSS Distributions
142*4d495c6eSApple OSS Distributions return exc_port;
143*4d495c6eSApple OSS Distributions }
144*4d495c6eSApple OSS Distributions
145*4d495c6eSApple OSS Distributions void *
exception_server_thread(void * arg)146*4d495c6eSApple OSS Distributions exception_server_thread(void *arg)
147*4d495c6eSApple OSS Distributions {
148*4d495c6eSApple OSS Distributions kern_return_t kr;
149*4d495c6eSApple OSS Distributions mach_port_t exc_port = *(mach_port_t *)arg;
150*4d495c6eSApple OSS Distributions T_EXPECT_NE(exc_port, MACH_PORT_NULL, "exception port is not null");
151*4d495c6eSApple OSS Distributions
152*4d495c6eSApple OSS Distributions /* Handle exceptions on exc_port */
153*4d495c6eSApple OSS Distributions kr = mach_msg_server(mach_exc_server, 4096, exc_port, 0);
154*4d495c6eSApple OSS Distributions T_EXPECT_MACH_SUCCESS(kr, "mach_msg_server");
155*4d495c6eSApple OSS Distributions
156*4d495c6eSApple OSS Distributions return NULL;
157*4d495c6eSApple OSS Distributions }
158*4d495c6eSApple OSS Distributions
159*4d495c6eSApple OSS Distributions T_DECL(catch_immovable_send_exception, "Send guard port descriptor to another process", T_META_IGNORECRASHES(".*immovable_send_client.*"))
160*4d495c6eSApple OSS Distributions {
161*4d495c6eSApple OSS Distributions uint32_t task_exc_guard = 0;
162*4d495c6eSApple OSS Distributions size_t te_size = sizeof(&task_exc_guard);
163*4d495c6eSApple OSS Distributions kern_return_t kr;
164*4d495c6eSApple OSS Distributions mach_msg_type_number_t maskCount = 1;
165*4d495c6eSApple OSS Distributions exception_mask_t mask;
166*4d495c6eSApple OSS Distributions exception_handler_t handler;
167*4d495c6eSApple OSS Distributions exception_behavior_t behavior;
168*4d495c6eSApple OSS Distributions thread_state_flavor_t flavor;
169*4d495c6eSApple OSS Distributions mach_port_t task = mach_task_self();
170*4d495c6eSApple OSS Distributions struct args* server_args = (struct args*)malloc(sizeof(struct args));
171*4d495c6eSApple OSS Distributions posix_spawnattr_t attrs;
172*4d495c6eSApple OSS Distributions char *test_prog_name = "./immovable_send_client";
173*4d495c6eSApple OSS Distributions char *child_args[MAX_ARGV];
174*4d495c6eSApple OSS Distributions
175*4d495c6eSApple OSS Distributions T_LOG("Check if task_exc_guard exception has been enabled\n");
176*4d495c6eSApple OSS Distributions sysctlbyname("kern.task_exc_guard_default", &task_exc_guard, &te_size, NULL, 0);
177*4d495c6eSApple OSS Distributions //TODO: check if sysctlbyname is successful
178*4d495c6eSApple OSS Distributions
179*4d495c6eSApple OSS Distributions /* Create the bootstrap port */
180*4d495c6eSApple OSS Distributions parse_args(server_args);
181*4d495c6eSApple OSS Distributions server_setup(server_args);
182*4d495c6eSApple OSS Distributions
183*4d495c6eSApple OSS Distributions /* Create the exception port for the server */
184*4d495c6eSApple OSS Distributions mach_port_t exc_port = create_exception_port();
185*4d495c6eSApple OSS Distributions T_EXPECT_NOTNULL(exc_port, "Create a new exception port");
186*4d495c6eSApple OSS Distributions
187*4d495c6eSApple OSS Distributions pthread_t s_exc_thread;
188*4d495c6eSApple OSS Distributions
189*4d495c6eSApple OSS Distributions /* Create exception serving thread */
190*4d495c6eSApple OSS Distributions int ret = pthread_create(&s_exc_thread, NULL, exception_server_thread, &exc_port);
191*4d495c6eSApple OSS Distributions T_EXPECT_POSIX_SUCCESS(ret, "pthread_create exception_server_thread");
192*4d495c6eSApple OSS Distributions
193*4d495c6eSApple OSS Distributions /* Get current exception ports */
194*4d495c6eSApple OSS Distributions kr = task_get_exception_ports(task, EXC_MASK_GUARD, &mask,
195*4d495c6eSApple OSS Distributions &maskCount, &handler, &behavior, &flavor);
196*4d495c6eSApple OSS Distributions T_EXPECT_MACH_SUCCESS(kr, "task_get_exception_ports");
197*4d495c6eSApple OSS Distributions
198*4d495c6eSApple OSS Distributions /* Initialize posix_spawn attributes */
199*4d495c6eSApple OSS Distributions posix_spawnattr_init(&attrs);
200*4d495c6eSApple OSS Distributions
201*4d495c6eSApple OSS Distributions int err = posix_spawnattr_setexceptionports_np(&attrs, EXC_MASK_GUARD, exc_port,
202*4d495c6eSApple OSS Distributions (exception_behavior_t) (EXCEPTION_DEFAULT | MACH_EXCEPTION_CODES), 0);
203*4d495c6eSApple OSS Distributions T_EXPECT_POSIX_SUCCESS(err, "posix_spawnattr_setflags");
204*4d495c6eSApple OSS Distributions
205*4d495c6eSApple OSS Distributions child_args[0] = test_prog_name;
206*4d495c6eSApple OSS Distributions child_args[1] = NULL;
207*4d495c6eSApple OSS Distributions
208*4d495c6eSApple OSS Distributions err = posix_spawn(NULL, child_args[0], NULL, &attrs, &child_args[0], environ);
209*4d495c6eSApple OSS Distributions T_EXPECT_POSIX_SUCCESS(err, "posix_spawn immovable_send_client");
210*4d495c6eSApple OSS Distributions
211*4d495c6eSApple OSS Distributions int child_status;
212*4d495c6eSApple OSS Distributions /* Wait for child and check for exception */
213*4d495c6eSApple OSS Distributions if (-1 == wait4(-1, &child_status, 0, NULL)) {
214*4d495c6eSApple OSS Distributions T_FAIL("wait4: child mia");
215*4d495c6eSApple OSS Distributions }
216*4d495c6eSApple OSS Distributions
217*4d495c6eSApple OSS Distributions if (WIFEXITED(child_status) && WEXITSTATUS(child_status)) {
218*4d495c6eSApple OSS Distributions T_LOG("Child exited with status = %x", child_status);
219*4d495c6eSApple OSS Distributions }
220*4d495c6eSApple OSS Distributions
221*4d495c6eSApple OSS Distributions sigsuspend(0);
222*4d495c6eSApple OSS Distributions }
223