cosmopolitan/test/net/http/isacceptablepath_test.c
Justine Tunney a4b455185b
Bring back gc() function
Renaming gc() to _gc() was a mistake since the better thing to do is put
it behind the _COSMO_SOURCE macro. We need this change because I haven't
wanted to use my amazing garbage collector ever since we renamed it. You
now need to define _COSMO_SOURCE yourself when using amalgamation header
and cosmocc users need to pass the -mcosmo flag to get the gc() function

Some other issues relating to cancelation have been fixed along the way.
We're also now putting cosmocc in a folder named `.cosmocc` so it can be
more safely excluded by grep --exclude-dir=.cosmocc --exclude-dir=o etc.
2024-01-08 10:26:28 -08:00

95 lines
4.6 KiB
C

/*-*- mode:c;indent-tabs-mode:nil;c-basic-offset:2;tab-width:8;coding:utf-8 -*-│
│ vi: set et ft=c ts=2 sts=2 sw=2 fenc=utf-8 :vi │
╞══════════════════════════════════════════════════════════════════════════════╡
│ Copyright 2021 Justine Alexandra Roberts Tunney │
│ │
│ Permission to use, copy, modify, and/or distribute this software for │
│ any purpose with or without fee is hereby granted, provided that the │
│ above copyright notice and this permission notice appear in all copies. │
│ │
│ THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL │
│ WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED │
│ WARRANTIES OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE │
│ AUTHOR BE LIABLE FOR ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL │
│ DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR │
│ PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR OTHER │
│ TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR │
│ PERFORMANCE OF THIS SOFTWARE. │
╚─────────────────────────────────────────────────────────────────────────────*/
#include "libc/mem/gc.h"
#include "libc/testlib/ezbench.h"
#include "libc/testlib/testlib.h"
#include "net/http/escape.h"
#include "net/http/http.h"
TEST(IsAcceptablePath, test) {
EXPECT_TRUE(IsAcceptablePath("*", 1));
EXPECT_TRUE(IsAcceptablePath("/", 1));
EXPECT_TRUE(IsAcceptablePath("index.html", 10));
EXPECT_TRUE(IsAcceptablePath("/index.html", 11));
EXPECT_TRUE(IsAcceptablePath("/index.html", -1));
EXPECT_TRUE(IsAcceptablePath("/redbean.png", -1));
}
TEST(IsAcceptablePath, testEmptyString_allowedIfYouLikeImplicitLeadingSlash) {
EXPECT_TRUE(IsAcceptablePath(0, 0));
EXPECT_TRUE(IsAcceptablePath(0, -1));
EXPECT_TRUE(IsAcceptablePath("", 0));
}
TEST(IsAcceptablePath, testHiddenFiles_notAllowed) {
EXPECT_FALSE(IsAcceptablePath("/.index.html", 12));
EXPECT_FALSE(IsAcceptablePath("/x/.index.html", 14));
}
TEST(IsAcceptablePath, testDoubleSlash_notAllowed) {
EXPECT_FALSE(IsAcceptablePath("//", 2));
EXPECT_FALSE(IsAcceptablePath("foo//", 5));
EXPECT_FALSE(IsAcceptablePath("/foo//", 6));
EXPECT_FALSE(IsAcceptablePath("/foo//bar", 9));
}
TEST(IsAcceptablePath, testNoncanonicalDirectories_areForbidden) {
EXPECT_FALSE(IsAcceptablePath(".", 1));
EXPECT_FALSE(IsAcceptablePath("..", 2));
EXPECT_FALSE(IsAcceptablePath("/.", 2));
EXPECT_FALSE(IsAcceptablePath("/..", 3));
EXPECT_FALSE(IsAcceptablePath("./", 2));
EXPECT_FALSE(IsAcceptablePath("../", 3));
EXPECT_FALSE(IsAcceptablePath("/./", 3));
EXPECT_FALSE(IsAcceptablePath("/../", 4));
EXPECT_FALSE(IsAcceptablePath("x/.", 3));
EXPECT_FALSE(IsAcceptablePath("x/..", 4));
EXPECT_FALSE(IsAcceptablePath("x/./", 4));
EXPECT_FALSE(IsAcceptablePath("x/../", 5));
EXPECT_FALSE(IsAcceptablePath("/x/./", 5));
EXPECT_FALSE(IsAcceptablePath("/x/../", 6));
}
TEST(IsAcceptablePath, testNoncanonicalWindowsDirs_areForbidden) {
EXPECT_FALSE(IsAcceptablePath(".", 1));
EXPECT_FALSE(IsAcceptablePath("..", 2));
EXPECT_FALSE(IsAcceptablePath("\\.", 2));
EXPECT_FALSE(IsAcceptablePath("\\..", 3));
EXPECT_FALSE(IsAcceptablePath(".\\", 2));
EXPECT_FALSE(IsAcceptablePath("..\\", 3));
EXPECT_FALSE(IsAcceptablePath("\\.\\", 3));
EXPECT_FALSE(IsAcceptablePath("\\..\\", 4));
EXPECT_FALSE(IsAcceptablePath("x\\.", 3));
EXPECT_FALSE(IsAcceptablePath("x\\..", 4));
EXPECT_FALSE(IsAcceptablePath("x\\.\\", 4));
EXPECT_FALSE(IsAcceptablePath("x\\..\\", 5));
EXPECT_FALSE(IsAcceptablePath("\\x\\.\\", 5));
EXPECT_FALSE(IsAcceptablePath("\\x\\..\\", 6));
}
TEST(IsAcceptablePath, testOverlongSlashDot_isDetected) {
EXPECT_FALSE(IsAcceptablePath("/\300\256", 3));
EXPECT_FALSE(IsAcceptablePath("/\300\257", 3));
EXPECT_FALSE(IsAcceptablePath("\300\256\300\256", 4));
}
BENCH(IsAcceptablePath, bench) {
EZBENCH2("IsAcceptablePath", donothing, IsAcceptablePath("*", 1));
EZBENCH2("IsAcceptablePath", donothing, IsAcceptablePath("/index.html", 11));
}