diff options
-rw-r--r-- | plugins/popen.c | 256 |
1 files changed, 122 insertions, 134 deletions
diff --git a/plugins/popen.c b/plugins/popen.c index 54e63bc5..32c9ea4e 100644 --- a/plugins/popen.c +++ b/plugins/popen.c | |||
@@ -1,42 +1,42 @@ | |||
1 | /***************************************************************************** | 1 | /***************************************************************************** |
2 | * | 2 | * |
3 | * Monitoring Plugins popen | 3 | * Monitoring Plugins popen |
4 | * | 4 | * |
5 | * License: GPL | 5 | * License: GPL |
6 | * Copyright (c) 2005-2007 Monitoring Plugins Development Team | 6 | * Copyright (c) 2005-2007 Monitoring Plugins Development Team |
7 | * | 7 | * |
8 | * Description: | 8 | * Description: |
9 | * | 9 | * |
10 | * A safe alternative to popen | 10 | * A safe alternative to popen |
11 | * | 11 | * |
12 | * Provides spopen and spclose | 12 | * Provides spopen and spclose |
13 | * | 13 | * |
14 | * FILE * spopen(const char *); | 14 | * FILE * spopen(const char *); |
15 | * int spclose(FILE *); | 15 | * int spclose(FILE *); |
16 | * | 16 | * |
17 | * Code taken with little modification from "Advanced Programming for the Unix | 17 | * Code taken with little modification from "Advanced Programming for the Unix |
18 | * Environment" by W. Richard Stevens | 18 | * Environment" by W. Richard Stevens |
19 | * | 19 | * |
20 | * This is considered safe in that no shell is spawned, and the environment | 20 | * This is considered safe in that no shell is spawned, and the environment |
21 | * and path passed to the exec'd program are essentially empty. (popen create | 21 | * and path passed to the exec'd program are essentially empty. (popen create |
22 | * a shell and passes the environment to it). | 22 | * a shell and passes the environment to it). |
23 | * | 23 | * |
24 | * | 24 | * |
25 | * This program is free software: you can redistribute it and/or modify | 25 | * This program is free software: you can redistribute it and/or modify |
26 | * it under the terms of the GNU General Public License as published by | 26 | * it under the terms of the GNU General Public License as published by |
27 | * the Free Software Foundation, either version 3 of the License, or | 27 | * the Free Software Foundation, either version 3 of the License, or |
28 | * (at your option) any later version. | 28 | * (at your option) any later version. |
29 | * | 29 | * |
30 | * This program is distributed in the hope that it will be useful, | 30 | * This program is distributed in the hope that it will be useful, |
31 | * but WITHOUT ANY WARRANTY; without even the implied warranty of | 31 | * but WITHOUT ANY WARRANTY; without even the implied warranty of |
32 | * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the | 32 | * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the |
33 | * GNU General Public License for more details. | 33 | * GNU General Public License for more details. |
34 | * | 34 | * |
35 | * You should have received a copy of the GNU General Public License | 35 | * You should have received a copy of the GNU General Public License |
36 | * along with this program. If not, see <http://www.gnu.org/licenses/>. | 36 | * along with this program. If not, see <http://www.gnu.org/licenses/>. |
37 | * | 37 | * |
38 | * | 38 | * |
39 | *****************************************************************************/ | 39 | *****************************************************************************/ |
40 | 40 | ||
41 | #include "./common.h" | 41 | #include "./common.h" |
42 | #include "./utils.h" | 42 | #include "./utils.h" |
@@ -47,46 +47,43 @@ extern pid_t *childpid; | |||
47 | extern int *child_stderr_array; | 47 | extern int *child_stderr_array; |
48 | extern FILE *child_process; | 48 | extern FILE *child_process; |
49 | 49 | ||
50 | FILE *spopen (const char *); | 50 | FILE *spopen(const char *); |
51 | int spclose (FILE *); | 51 | int spclose(FILE *); |
52 | #ifdef REDHAT_SPOPEN_ERROR | 52 | #ifdef REDHAT_SPOPEN_ERROR |
53 | void popen_sigchld_handler (int); | 53 | void popen_sigchld_handler(int); |
54 | #endif | 54 | #endif |
55 | void popen_timeout_alarm_handler (int); | 55 | void popen_timeout_alarm_handler(int); |
56 | 56 | ||
57 | #include <stdarg.h> /* ANSI C header file */ | 57 | #include <stdarg.h> /* ANSI C header file */ |
58 | #include <fcntl.h> | 58 | #include <fcntl.h> |
59 | 59 | ||
60 | #include <limits.h> | 60 | #include <limits.h> |
61 | #include <sys/resource.h> | 61 | #include <sys/resource.h> |
62 | 62 | ||
63 | #ifdef HAVE_SYS_WAIT_H | 63 | #ifdef HAVE_SYS_WAIT_H |
64 | #include <sys/wait.h> | 64 | # include <sys/wait.h> |
65 | #endif | 65 | #endif |
66 | 66 | ||
67 | #ifndef WEXITSTATUS | 67 | #ifndef WEXITSTATUS |
68 | # define WEXITSTATUS(stat_val) ((unsigned)(stat_val) >> 8) | 68 | # define WEXITSTATUS(stat_val) ((unsigned)(stat_val) >> 8) |
69 | #endif | 69 | #endif |
70 | 70 | ||
71 | #ifndef WIFEXITED | 71 | #ifndef WIFEXITED |
72 | # define WIFEXITED(stat_val) (((stat_val) & 255) == 0) | 72 | # define WIFEXITED(stat_val) (((stat_val)&255) == 0) |
73 | #endif | 73 | #endif |
74 | 74 | ||
75 | /* 4.3BSD Reno <signal.h> doesn't define SIG_ERR */ | 75 | /* 4.3BSD Reno <signal.h> doesn't define SIG_ERR */ |
76 | #if defined(SIG_IGN) && !defined(SIG_ERR) | 76 | #if defined(SIG_IGN) && !defined(SIG_ERR) |
77 | #define SIG_ERR ((Sigfunc *)-1) | 77 | # define SIG_ERR ((Sigfunc *)-1) |
78 | #endif | 78 | #endif |
79 | 79 | ||
80 | 80 | char *pname = NULL; /* caller can set this from argv[0] */ | |
81 | char *pname = NULL; /* caller can set this from argv[0] */ | ||
82 | 81 | ||
83 | #ifdef REDHAT_SPOPEN_ERROR | 82 | #ifdef REDHAT_SPOPEN_ERROR |
84 | static volatile int childtermd = 0; | 83 | static volatile int childtermd = 0; |
85 | #endif | 84 | #endif |
86 | 85 | ||
87 | FILE * | 86 | FILE *spopen(const char *cmdstring) { |
88 | spopen (const char *cmdstring) | ||
89 | { | ||
90 | char *env[2]; | 87 | char *env[2]; |
91 | char *cmd = NULL; | 88 | char *cmd = NULL; |
92 | char **argv = NULL; | 89 | char **argv = NULL; |
@@ -96,12 +93,12 @@ spopen (const char *cmdstring) | |||
96 | int i = 0, pfd[2], pfderr[2]; | 93 | int i = 0, pfd[2], pfderr[2]; |
97 | pid_t pid; | 94 | pid_t pid; |
98 | 95 | ||
99 | #ifdef RLIMIT_CORE | 96 | #ifdef RLIMIT_CORE |
100 | /* do not leave core files */ | 97 | /* do not leave core files */ |
101 | struct rlimit limit; | 98 | struct rlimit limit; |
102 | getrlimit (RLIMIT_CORE, &limit); | 99 | getrlimit(RLIMIT_CORE, &limit); |
103 | limit.rlim_cur = 0; | 100 | limit.rlim_cur = 0; |
104 | setrlimit (RLIMIT_CORE, &limit); | 101 | setrlimit(RLIMIT_CORE, &limit); |
105 | #endif | 102 | #endif |
106 | 103 | ||
107 | env[0] = strdup("LC_ALL=C"); | 104 | env[0] = strdup("LC_ALL=C"); |
@@ -113,182 +110,173 @@ spopen (const char *cmdstring) | |||
113 | 110 | ||
114 | /* make copy of command string so strtok() doesn't silently modify it */ | 111 | /* make copy of command string so strtok() doesn't silently modify it */ |
115 | /* (the calling program may want to access it later) */ | 112 | /* (the calling program may want to access it later) */ |
116 | cmd = malloc (strlen (cmdstring) + 1); | 113 | cmd = malloc(strlen(cmdstring) + 1); |
117 | if (cmd == NULL) | 114 | if (cmd == NULL) |
118 | return NULL; | 115 | return NULL; |
119 | strcpy (cmd, cmdstring); | 116 | strcpy(cmd, cmdstring); |
120 | 117 | ||
121 | /* This is not a shell, so we don't handle "???" */ | 118 | /* This is not a shell, so we don't handle "???" */ |
122 | if (strstr (cmdstring, "\"")) | 119 | if (strstr(cmdstring, "\"")) |
123 | return NULL; | 120 | return NULL; |
124 | 121 | ||
125 | /* allow single quotes, but only if non-whitesapce doesn't occur on both sides */ | 122 | /* allow single quotes, but only if non-whitesapce doesn't occur on both sides */ |
126 | if (strstr (cmdstring, " ' ") || strstr (cmdstring, "'''")) | 123 | if (strstr(cmdstring, " ' ") || strstr(cmdstring, "'''")) |
127 | return NULL; | 124 | return NULL; |
128 | 125 | ||
129 | /* there cannot be more args than characters */ | 126 | /* there cannot be more args than characters */ |
130 | argc = strlen (cmdstring) + 1; /* add 1 for NULL termination */ | 127 | argc = strlen(cmdstring) + 1; /* add 1 for NULL termination */ |
131 | argv = malloc (sizeof(char*)*argc); | 128 | argv = malloc(sizeof(char *) * argc); |
132 | 129 | ||
133 | if (argv == NULL) { | 130 | if (argv == NULL) { |
134 | printf ("%s\n", _("Could not malloc argv array in popen()")); | 131 | printf("%s\n", _("Could not malloc argv array in popen()")); |
135 | return NULL; | 132 | return NULL; |
136 | } | 133 | } |
137 | 134 | ||
138 | /* loop to get arguments to command */ | 135 | /* loop to get arguments to command */ |
139 | while (cmd) { | 136 | while (cmd) { |
140 | str = cmd; | 137 | str = cmd; |
141 | str += strspn (str, " \t\r\n"); /* trim any leading whitespace */ | 138 | str += strspn(str, " \t\r\n"); /* trim any leading whitespace */ |
142 | 139 | ||
143 | if (i >= argc - 2) { | 140 | if (i >= argc - 2) { |
144 | printf ("%s\n",_("CRITICAL - You need more args!!!")); | 141 | printf("%s\n", _("CRITICAL - You need more args!!!")); |
145 | return (NULL); | 142 | return (NULL); |
146 | } | 143 | } |
147 | 144 | ||
148 | if (strstr (str, "'") == str) { /* handle SIMPLE quoted strings */ | 145 | if (strstr(str, "'") == str) { /* handle SIMPLE quoted strings */ |
149 | str++; | 146 | str++; |
150 | if (!strstr (str, "'")) | 147 | if (!strstr(str, "'")) |
151 | return NULL; /* balanced? */ | 148 | return NULL; /* balanced? */ |
152 | cmd = 1 + strstr (str, "'"); | 149 | cmd = 1 + strstr(str, "'"); |
153 | str[strcspn (str, "'")] = 0; | 150 | str[strcspn(str, "'")] = 0; |
154 | } | 151 | } else if (strcspn(str, "'") < strcspn(str, " \t\r\n")) { |
155 | else if (strcspn(str,"'") < strcspn (str, " \t\r\n")) { | 152 | /* handle --option='foo bar' strings */ |
156 | /* handle --option='foo bar' strings */ | ||
157 | tmp = str + strcspn(str, "'") + 1; | 153 | tmp = str + strcspn(str, "'") + 1; |
158 | if (!strstr (tmp, "'")) | 154 | if (!strstr(tmp, "'")) |
159 | return NULL; /* balanced? */ | 155 | return NULL; /* balanced? */ |
160 | tmp += strcspn(tmp,"'") + 1; | 156 | tmp += strcspn(tmp, "'") + 1; |
161 | *tmp = 0; | 157 | *tmp = 0; |
162 | cmd = tmp + 1; | 158 | cmd = tmp + 1; |
163 | } else { | 159 | } else { |
164 | if (strpbrk (str, " \t\r\n")) { | 160 | if (strpbrk(str, " \t\r\n")) { |
165 | cmd = 1 + strpbrk (str, " \t\r\n"); | 161 | cmd = 1 + strpbrk(str, " \t\r\n"); |
166 | str[strcspn (str, " \t\r\n")] = 0; | 162 | str[strcspn(str, " \t\r\n")] = 0; |
167 | } | 163 | } else { |
168 | else { | ||
169 | cmd = NULL; | 164 | cmd = NULL; |
170 | } | 165 | } |
171 | } | 166 | } |
172 | 167 | ||
173 | if (cmd && strlen (cmd) == strspn (cmd, " \t\r\n")) | 168 | if (cmd && strlen(cmd) == strspn(cmd, " \t\r\n")) |
174 | cmd = NULL; | 169 | cmd = NULL; |
175 | 170 | ||
176 | argv[i++] = str; | 171 | argv[i++] = str; |
177 | |||
178 | } | 172 | } |
179 | argv[i] = NULL; | 173 | argv[i] = NULL; |
180 | 174 | ||
181 | long maxfd = mp_open_max(); | 175 | long maxfd = mp_open_max(); |
182 | 176 | ||
183 | if (childpid == NULL) { /* first time through */ | 177 | if (childpid == NULL) { /* first time through */ |
184 | if ((childpid = calloc ((size_t)maxfd, sizeof (pid_t))) == NULL) | 178 | if ((childpid = calloc((size_t)maxfd, sizeof(pid_t))) == NULL) |
185 | return (NULL); | 179 | return (NULL); |
186 | } | 180 | } |
187 | 181 | ||
188 | if (child_stderr_array == NULL) { /* first time through */ | 182 | if (child_stderr_array == NULL) { /* first time through */ |
189 | if ((child_stderr_array = calloc ((size_t)maxfd, sizeof (int))) == NULL) | 183 | if ((child_stderr_array = calloc((size_t)maxfd, sizeof(int))) == NULL) |
190 | return (NULL); | 184 | return (NULL); |
191 | } | 185 | } |
192 | 186 | ||
193 | if (pipe (pfd) < 0) | 187 | if (pipe(pfd) < 0) |
194 | return (NULL); /* errno set by pipe() */ | 188 | return (NULL); /* errno set by pipe() */ |
195 | 189 | ||
196 | if (pipe (pfderr) < 0) | 190 | if (pipe(pfderr) < 0) |
197 | return (NULL); /* errno set by pipe() */ | 191 | return (NULL); /* errno set by pipe() */ |
198 | 192 | ||
199 | #ifdef REDHAT_SPOPEN_ERROR | 193 | #ifdef REDHAT_SPOPEN_ERROR |
200 | if (signal (SIGCHLD, popen_sigchld_handler) == SIG_ERR) { | 194 | if (signal(SIGCHLD, popen_sigchld_handler) == SIG_ERR) { |
201 | usage4 (_("Cannot catch SIGCHLD")); | 195 | usage4(_("Cannot catch SIGCHLD")); |
202 | } | 196 | } |
203 | #endif | 197 | #endif |
204 | 198 | ||
205 | if ((pid = fork ()) < 0) | 199 | if ((pid = fork()) < 0) |
206 | return (NULL); /* errno set by fork() */ | 200 | return (NULL); /* errno set by fork() */ |
207 | else if (pid == 0) { /* child */ | 201 | else if (pid == 0) { /* child */ |
208 | close (pfd[0]); | 202 | close(pfd[0]); |
209 | if (pfd[1] != STDOUT_FILENO) { | 203 | if (pfd[1] != STDOUT_FILENO) { |
210 | dup2 (pfd[1], STDOUT_FILENO); | 204 | dup2(pfd[1], STDOUT_FILENO); |
211 | close (pfd[1]); | 205 | close(pfd[1]); |
212 | } | 206 | } |
213 | close (pfderr[0]); | 207 | close(pfderr[0]); |
214 | if (pfderr[1] != STDERR_FILENO) { | 208 | if (pfderr[1] != STDERR_FILENO) { |
215 | dup2 (pfderr[1], STDERR_FILENO); | 209 | dup2(pfderr[1], STDERR_FILENO); |
216 | close (pfderr[1]); | 210 | close(pfderr[1]); |
217 | } | 211 | } |
218 | /* close all descriptors in childpid[] */ | 212 | /* close all descriptors in childpid[] */ |
219 | for (i = 0; i < maxfd; i++) | 213 | for (i = 0; i < maxfd; i++) |
220 | if (childpid[i] > 0) | 214 | if (childpid[i] > 0) |
221 | close (i); | 215 | close(i); |
222 | 216 | ||
223 | execve (argv[0], argv, env); | 217 | execve(argv[0], argv, env); |
224 | _exit (0); | 218 | _exit(0); |
225 | } | 219 | } |
226 | 220 | ||
227 | close (pfd[1]); /* parent */ | 221 | close(pfd[1]); /* parent */ |
228 | if ((child_process = fdopen (pfd[0], "r")) == NULL) | 222 | if ((child_process = fdopen(pfd[0], "r")) == NULL) |
229 | return (NULL); | 223 | return (NULL); |
230 | close (pfderr[1]); | 224 | close(pfderr[1]); |
231 | 225 | ||
232 | childpid[fileno (child_process)] = pid; /* remember child pid for this fd */ | 226 | childpid[fileno(child_process)] = pid; /* remember child pid for this fd */ |
233 | child_stderr_array[fileno (child_process)] = pfderr[0]; /* remember STDERR */ | 227 | child_stderr_array[fileno(child_process)] = pfderr[0]; /* remember STDERR */ |
234 | return (child_process); | 228 | return (child_process); |
235 | } | 229 | } |
236 | 230 | ||
237 | int | 231 | int spclose(FILE *fp) { |
238 | spclose (FILE * fp) | ||
239 | { | ||
240 | int fd, status; | 232 | int fd, status; |
241 | pid_t pid; | 233 | pid_t pid; |
242 | 234 | ||
243 | if (childpid == NULL) | 235 | if (childpid == NULL) |
244 | return (1); /* popen() has never been called */ | 236 | return (1); /* popen() has never been called */ |
245 | 237 | ||
246 | fd = fileno (fp); | 238 | fd = fileno(fp); |
247 | if ((pid = childpid[fd]) == 0) | 239 | if ((pid = childpid[fd]) == 0) |
248 | return (1); /* fp wasn't opened by popen() */ | 240 | return (1); /* fp wasn't opened by popen() */ |
249 | 241 | ||
250 | childpid[fd] = 0; | 242 | childpid[fd] = 0; |
251 | if (fclose (fp) == EOF) | 243 | if (fclose(fp) == EOF) |
252 | return (1); | 244 | return (1); |
253 | 245 | ||
254 | #ifdef REDHAT_SPOPEN_ERROR | 246 | #ifdef REDHAT_SPOPEN_ERROR |
255 | while (!childtermd); /* wait until SIGCHLD */ | 247 | while (!childtermd) |
248 | ; /* wait until SIGCHLD */ | ||
256 | #endif | 249 | #endif |
257 | 250 | ||
258 | while (waitpid (pid, &status, 0) < 0) | 251 | while (waitpid(pid, &status, 0) < 0) |
259 | if (errno != EINTR) | 252 | if (errno != EINTR) |
260 | return (1); /* error other than EINTR from waitpid() */ | 253 | return (1); /* error other than EINTR from waitpid() */ |
261 | 254 | ||
262 | if (WIFEXITED (status)) | 255 | if (WIFEXITED(status)) |
263 | return (WEXITSTATUS (status)); /* return child's termination status */ | 256 | return (WEXITSTATUS(status)); /* return child's termination status */ |
264 | 257 | ||
265 | return (1); | 258 | return (1); |
266 | } | 259 | } |
267 | 260 | ||
268 | #ifdef REDHAT_SPOPEN_ERROR | 261 | #ifdef REDHAT_SPOPEN_ERROR |
269 | void | 262 | void popen_sigchld_handler(int signo) { |
270 | popen_sigchld_handler (int signo) | ||
271 | { | ||
272 | if (signo == SIGCHLD) | 263 | if (signo == SIGCHLD) |
273 | childtermd = 1; | 264 | childtermd = 1; |
274 | } | 265 | } |
275 | #endif | 266 | #endif |
276 | 267 | ||
277 | void | 268 | void popen_timeout_alarm_handler(int signo) { |
278 | popen_timeout_alarm_handler (int signo) | ||
279 | { | ||
280 | int fh; | 269 | int fh; |
281 | if (signo == SIGALRM) { | 270 | if (signo == SIGALRM) { |
282 | if (child_process != NULL) { | 271 | if (child_process != NULL) { |
283 | fh=fileno (child_process); | 272 | fh = fileno(child_process); |
284 | if(fh >= 0){ | 273 | if (fh >= 0) { |
285 | kill (childpid[fh], SIGKILL); | 274 | kill(childpid[fh], SIGKILL); |
286 | } | 275 | } |
287 | printf (_("CRITICAL - Plugin timed out after %d seconds\n"), | 276 | printf(_("CRITICAL - Plugin timed out after %d seconds\n"), timeout_interval); |
288 | timeout_interval); | ||
289 | } else { | 277 | } else { |
290 | printf ("%s\n", _("CRITICAL - popen timeout received, but no child process")); | 278 | printf("%s\n", _("CRITICAL - popen timeout received, but no child process")); |
291 | } | 279 | } |
292 | exit (STATE_CRITICAL); | 280 | exit(STATE_CRITICAL); |
293 | } | 281 | } |
294 | } | 282 | } |