blob: c22bba87bada835736eff683185f3f0fc1371d5a [file] [log] [blame]
Eric Andersen27f64e12002-06-23 04:24:25 +00001/* vi: set sw=4 ts=4: */
2/*
3 * Copyright 1989 - 1991, Julianne Frances Haugh <jockgrrl@austin.rr.com>
4 * All rights reserved.
5 *
6 * Redistribution and use in source and binary forms, with or without
7 * modification, are permitted provided that the following conditions
8 * are met:
9 * 1. Redistributions of source code must retain the above copyright
10 * notice, this list of conditions and the following disclaimer.
11 * 2. Redistributions in binary form must reproduce the above copyright
12 * notice, this list of conditions and the following disclaimer in the
13 * documentation and/or other materials provided with the distribution.
14 * 3. Neither the name of Julianne F. Haugh nor the names of its contributors
15 * may be used to endorse or promote products derived from this software
16 * without specific prior written permission.
17 *
Denys Vlasenko95f79532017-08-02 14:26:33 +020018 * THIS SOFTWARE IS PROVIDED BY JULIE HAUGH AND CONTRIBUTORS ''AS IS'' AND
Eric Andersen27f64e12002-06-23 04:24:25 +000019 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
20 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
21 * ARE DISCLAIMED. IN NO EVENT SHALL JULIE HAUGH OR CONTRIBUTORS BE LIABLE
22 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
23 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
24 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
25 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
26 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
27 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
28 * SUCH DAMAGE.
29 */
Eric Andersen27f64e12002-06-23 04:24:25 +000030#include "libbb.h"
Denis Vlasenkofad2b862007-05-31 22:16:38 +000031#if ENABLE_SELINUX
Rob Landley60158cb2005-05-03 06:25:50 +000032#include <selinux/selinux.h> /* for setexeccon */
33#endif
34
Denis Vlasenkofad2b862007-05-31 22:16:38 +000035#if ENABLE_SELINUX
Denis Vlasenko797b4d22006-09-05 09:45:30 +000036static security_context_t current_sid;
Rob Landley60158cb2005-05-03 06:25:50 +000037
Denis Vlasenkodefc1ea2008-06-27 02:52:20 +000038void FAST_FUNC renew_current_security_context(void)
Rob Landley60158cb2005-05-03 06:25:50 +000039{
Denis Vlasenko976690a2007-09-10 17:17:01 +000040 freecon(current_sid); /* Release old context */
Denis Vlasenko797b4d22006-09-05 09:45:30 +000041 getcon(&current_sid); /* update */
Rob Landley60158cb2005-05-03 06:25:50 +000042}
Denis Vlasenkodefc1ea2008-06-27 02:52:20 +000043void FAST_FUNC set_current_security_context(security_context_t sid)
Rob Landley60158cb2005-05-03 06:25:50 +000044{
Denis Vlasenko976690a2007-09-10 17:17:01 +000045 freecon(current_sid); /* Release old context */
Denis Vlasenko797b4d22006-09-05 09:45:30 +000046 current_sid = sid;
Rob Landley60158cb2005-05-03 06:25:50 +000047}
48
Eric Andersen9e480452003-07-03 10:07:04 +000049#endif
Eric Andersen27f64e12002-06-23 04:24:25 +000050
Denys Vlasenko2075aa92020-12-02 21:28:47 +010051/* Exec SHELL, or DEFAULT_SHELL if SHELL is "" or NULL.
Denys Vlasenko79e25982016-11-03 22:13:08 +010052 * If ADDITIONAL_ARGS is not NULL, pass them to the shell.
53 */
Denys Vlasenko2075aa92020-12-02 21:28:47 +010054void FAST_FUNC exec_shell(const char *shell, int loginshell, const char **additional_args)
Eric Andersen27f64e12002-06-23 04:24:25 +000055{
56 const char **args;
Eric Andersenc7bda1c2004-03-15 08:29:22 +000057
Denys Vlasenko79e25982016-11-03 22:13:08 +010058 args = additional_args;
59 while (args && *args)
60 args++;
Eric Andersen27f64e12002-06-23 04:24:25 +000061
Denys Vlasenko06224162020-12-02 21:35:32 +010062 args = xzalloc(sizeof(args[0]) * (2 + (args - additional_args)));
Eric Andersenc7bda1c2004-03-15 08:29:22 +000063
Ladislav Michla73b87e2010-06-27 03:23:31 +020064 if (!shell || !shell[0])
65 shell = DEFAULT_SHELL;
Eric Andersenc7bda1c2004-03-15 08:29:22 +000066
Ladislav Michla73b87e2010-06-27 03:23:31 +020067 args[0] = bb_get_last_path_component_nostrip(shell);
Denis Vlasenko797b4d22006-09-05 09:45:30 +000068 if (loginshell)
69 args[0] = xasprintf("-%s", args[0]);
Denys Vlasenko06224162020-12-02 21:35:32 +010070 /*args[1] = NULL; - already is */
Denis Vlasenko797b4d22006-09-05 09:45:30 +000071 if (additional_args) {
Denys Vlasenko06224162020-12-02 21:35:32 +010072 int cnt = 0;
73 while (*additional_args)
74 args[++cnt] = *additional_args++;
Eric Andersen27f64e12002-06-23 04:24:25 +000075 }
Ladislav Michla73b87e2010-06-27 03:23:31 +020076
Denis Vlasenkofad2b862007-05-31 22:16:38 +000077#if ENABLE_SELINUX
Denis Vlasenko976690a2007-09-10 17:17:01 +000078 if (current_sid)
79 setexeccon(current_sid);
80 if (ENABLE_FEATURE_CLEAN_UP)
Denis Vlasenko797b4d22006-09-05 09:45:30 +000081 freecon(current_sid);
Eric Andersen9e480452003-07-03 10:07:04 +000082#endif
Denis Vlasenko797b4d22006-09-05 09:45:30 +000083 execv(shell, (char **) args);
Denys Vlasenko41ddd9f2010-06-25 01:46:53 +020084 bb_perror_msg_and_die("can't execute '%s'", shell);
Eric Andersen27f64e12002-06-23 04:24:25 +000085}
Denys Vlasenko2075aa92020-12-02 21:28:47 +010086
Denys Vlasenkof4f6e512020-12-02 21:51:08 +010087void FAST_FUNC exec_login_shell(const char *shell)
88{
89 exec_shell(shell, 1, NULL);
90}
91
Denys Vlasenko2075aa92020-12-02 21:28:47 +010092/* Typical idiom for applets which exec *optional* PROG [ARGS] */
93void FAST_FUNC exec_prog_or_SHELL(char **argv)
94{
95 if (argv[0]) {
96 BB_EXECVP_or_die(argv);
97 }
Denys Vlasenkof4f6e512020-12-02 21:51:08 +010098 /* Both users (nsenter and unshare) do indeed exec
Denys Vlasenko06224162020-12-02 21:35:32 +010099 * a _login_ shell (with dash in argv[0])!
100 */
Denys Vlasenkof4f6e512020-12-02 21:51:08 +0100101 exec_login_shell(getenv("SHELL"));
Denys Vlasenko2075aa92020-12-02 21:28:47 +0100102}