04-retain-check-source.py 2.8 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485
  1. #!/usr/bin/env python3
  2. # Test for CVE-2018-12546
  3. from mosq_test_helper import *
  4. import signal
  5. def write_config(filename, port, per_listener):
  6. with open(filename, 'w') as f:
  7. f.write("per_listener_settings %s\n" % (per_listener))
  8. f.write("check_retain_source true\n")
  9. f.write("port %d\n" % (port))
  10. f.write("allow_anonymous true\n")
  11. f.write("acl_file %s\n" % (filename.replace('.conf', '.acl')))
  12. def write_acl_1(filename):
  13. with open(filename, 'w') as f:
  14. f.write('topic readwrite test/topic\n')
  15. def write_acl_2(filename):
  16. with open(filename, 'w') as f:
  17. f.write('topic read test/topic\n')
  18. def do_test(proto_ver, per_listener):
  19. conf_file = os.path.basename(__file__).replace('.py', '.conf')
  20. write_config(conf_file, port, per_listener)
  21. acl_file = os.path.basename(__file__).replace('.py', '.acl')
  22. write_acl_1(acl_file)
  23. rc = 1
  24. keepalive = 60
  25. connect_packet = mosq_test.gen_connect("retain-check", keepalive=keepalive, proto_ver=proto_ver)
  26. connack_packet = mosq_test.gen_connack(rc=0, proto_ver=proto_ver)
  27. mid = 1
  28. publish_packet = mosq_test.gen_publish("test/topic", qos=0, payload="retained message", retain=True, proto_ver=proto_ver)
  29. subscribe_packet = mosq_test.gen_subscribe(mid, "test/topic", 0, proto_ver=proto_ver)
  30. suback_packet = mosq_test.gen_suback(mid, 0, proto_ver=proto_ver)
  31. broker = mosq_test.start_broker(filename=os.path.basename(__file__), use_conf=True, port=port)
  32. try:
  33. sock = mosq_test.do_client_connect(connect_packet, connack_packet, port=port)
  34. sock.send(publish_packet)
  35. sock.close()
  36. sock = mosq_test.do_client_connect(connect_packet, connack_packet, port=port)
  37. mosq_test.do_send_receive(sock, subscribe_packet, suback_packet, "suback 1")
  38. mosq_test.expect_packet(sock, "publish", publish_packet)
  39. sock.close()
  40. # Remove "write" ability
  41. write_acl_2(acl_file)
  42. broker.send_signal(signal.SIGHUP)
  43. sock = mosq_test.do_client_connect(connect_packet, connack_packet, port=port)
  44. mosq_test.do_send_receive(sock, subscribe_packet, suback_packet, "suback 2")
  45. # If we receive the retained message here, it is a failure.
  46. mosq_test.do_ping(sock)
  47. rc = 0
  48. sock.close()
  49. except mosq_test.TestError:
  50. pass
  51. finally:
  52. os.remove(conf_file)
  53. os.remove(acl_file)
  54. broker.terminate()
  55. broker.wait()
  56. (stdo, stde) = broker.communicate()
  57. if rc:
  58. print(stde.decode('utf-8'))
  59. exit(rc)
  60. port = mosq_test.get_port()
  61. do_test(proto_ver=4, per_listener="true")
  62. do_test(proto_ver=4, per_listener="false")
  63. do_test(proto_ver=5, per_listener="true")
  64. do_test(proto_ver=5, per_listener="false")