/* $OpenBSD: setgid.c,v 1.2 2021/12/13 16:56:50 deraadt Exp $ */ /* * Written by Bret Stephen Lambert 2014 * Public Domain. */ #include #include #include #include #include #include #include #include #include #include "setuid_regress.h" int main(int argc, const char *argv[]) { struct kinfo_proc kproc; struct passwd *pw; if ((pw = getpwnam(_SETUID_REGRESS_USER)) == NULL) err(1, "unknown user \"%s\"", _SETUID_REGRESS_USER); /* * From the setgid man page: * The setgid() function sets the real and effective group IDs * and the saved set-group-ID of the current process */ if (setgid(pw->pw_gid) == -1) err(1, "setgid"); checkgids(pw->pw_gid, pw->pw_gid, pw->pw_gid, "setgid"); /* should only respond to setuid upon exec */ if (issetugid()) errx(1, "process incorrectly marked as issetugid()"); if (read_kproc_pid(&kproc, getpid()) == -1) err(1, "kproc read failed"); if (!(kproc.p_psflags & PS_SUGID)) errx(1, "PS_SUGID not set"); if (kproc.p_psflags & PS_SUGIDEXEC) errx(1, "PS_SUGIDEXEC incorrectly set"); exit(0); }