]> git.saurik.com Git - apt.git/blame_incremental - test/integration/test-apt-update-file
fix two typos in untranslated errors of libapt-pkg
[apt.git] / test / integration / test-apt-update-file
... / ...
CommitLineData
1#!/bin/sh
2#
3# Ensure that we do not modify file:/// uris (regression test for
4# CVE-2014-0487
5#
6set -e
7
8TESTDIR="$(readlink -f "$(dirname "$0")")"
9. "$TESTDIR/framework"
10
11setupenvironment
12configarchitecture "amd64"
13configcompression 'bz2' 'gz'
14confighashes 'SHA512'
15
16insertpackage 'unstable' 'foo' 'all' '1'
17insertpackage 'unstable' 'bar' 'amd64' '1'
18insertsource 'unstable' 'foo' 'all' '1'
19
20setupaptarchive --no-update
21
22# ensure the archive is not writable
23addtrap 'prefix' 'chmod 755 aptarchive/dists/unstable/main/binary-all;'
24if [ "$(id -u)" = '0' ]; then
25 # too deep to notice it, but it also unlikely that files in the same repo have different permissions
26 chmod 500 aptarchive/dists/unstable/main/binary-all
27 testfailure aptget update
28 rm -rf rootdir/var/lib/apt/lists
29 chmod 755 aptarchive/dists/unstable/main/binary-all
30 testsuccess aptget update
31 rm -rf rootdir/var/lib/apt/lists
32 chmod 511 aptarchive/dists/
33 testsuccess aptget update
34 rm -rf rootdir/var/lib/apt/lists
35 chmod 510 aptarchive/dists/
36 testsuccesswithnotice aptget update
37 rm -rf rootdir/var/lib/apt/lists
38 chmod 500 aptarchive/dists/
39 testsuccesswithnotice aptget update
40 exit
41fi
42chmod 555 aptarchive/dists/unstable/main/binary-all
43testsuccess aptget update -o Debug::pkgAcquire::Worker=1
44cp -a rootdir/tmp/testsuccess.output rootdir/tmp/update.output
45testsuccess grep '%0aAlt-Filename:%20' rootdir/tmp/update.output
46
47# the release files aren't an IMS-hit, but the indexes are
48redatereleasefiles '+1 hour'
49
50# we don't download the index if it isn't updated
51testsuccess aptget update -o Debug::pkgAcquire::Auth=1
52# file:/ isn't shown in the log, so see if it was downloaded anyhow
53cp -a rootdir/tmp/testsuccess.output rootdir/tmp/update.output
54canary="SHA512:$(bzcat aptarchive/dists/unstable/main/binary-all/Packages.bz2 | sha512sum |cut -f1 -d' ')"
55testfailure grep -- "$canary" rootdir/tmp/update.output
56
57testfoo() {
58 # foo is still available
59 testsuccess aptget install -s foo
60 testsuccess aptcache showsrc foo
61 testsuccess aptget source foo --print-uris
62}
63testfoo
64
65# the release file is new again, the index still isn't, but it is somehow gone now from disk
66redatereleasefiles '+2 hour'
67find rootdir/var/lib/apt/lists -name '*_Packages*' -delete
68
69testsuccess aptget update -o Debug::pkgAcquire::Auth=1
70# file:/ isn't shown in the log, so see if it was downloaded anyhow
71cp -a rootdir/tmp/testsuccess.output rootdir/tmp/update.output
72canary="SHA512:$(bzcat aptarchive/dists/unstable/main/binary-all/Packages.bz2 | sha512sum |cut -f1 -d' ')"
73testsuccess grep -- "$canary" rootdir/tmp/update.output
74
75testfoo