X-Git-Url: http://git.annexia.org/?a=blobdiff_plain;ds=sidebyside;f=daemon%2Fupload.c;h=0f737af2e06b70bf7b27373130fdf8585510e2be;hb=05c34c1c1479bb07b31cfbf912743a8cf014a636;hp=b457695060d0c75978eb70f46c2fe473cd68bdfc;hpb=170f262f0413de843af62b968f6d12c1c476ae7f;p=libguestfs.git diff --git a/daemon/upload.c b/daemon/upload.c index b457695..0f737af 100644 --- a/daemon/upload.c +++ b/daemon/upload.c @@ -36,13 +36,18 @@ write_cb (void *fd_ptr, const void *buf, int len) /* Has one FileIn parameter. */ int -do_upload (const char *filename) +do_upload (char *filename) { int err, fd, r, is_dev; - NEED_ROOT_OR_IS_DEVICE (filename, -1); - is_dev = strncmp (filename, "/dev/", 5) == 0; + if (!is_dev) { + if (!root_mounted || filename[0] != '/') { + cancel_receive (); + reply_with_error ("upload: root must be mounted and path must be absolute"); + return -1; + } + } if (!is_dev) CHROOT_IN; fd = open (filename, O_WRONLY|O_CREAT|O_TRUNC|O_NOCTTY, 0666); @@ -61,6 +66,7 @@ do_upload (const char *filename) cancel_receive (); errno = err; reply_with_perror ("write: %s", filename); + close (fd); return -1; } if (r == -2) { /* cancellation from library */ @@ -82,7 +88,7 @@ do_upload (const char *filename) /* Has one FileOut parameter. */ int -do_download (const char *filename) +do_download (char *filename) { int fd, r, is_dev; char buf[GUESTFS_MAX_CHUNK_SIZE]; @@ -106,13 +112,16 @@ do_download (const char *filename) reply (NULL, NULL); while ((r = read (fd, buf, sizeof buf)) > 0) { - if (send_file_write (buf, r) < 0) + if (send_file_write (buf, r) < 0) { + close (fd); return -1; + } } if (r == -1) { perror (filename); send_file_end (1); /* Cancel. */ + close (fd); return -1; }