15821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Copyright (c) 2006-2008 The Chromium Authors. All rights reserved. 25821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Use of this source code is governed by a BSD-style license that can be 35821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// found in the LICENSE file. 45821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 55821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "sandbox/win/src/named_pipe_interception.h" 65821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 75821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "sandbox/win/src/crosscall_client.h" 85821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "sandbox/win/src/ipc_tags.h" 95821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "sandbox/win/src/policy_params.h" 105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "sandbox/win/src/policy_target.h" 115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "sandbox/win/src/sandbox_factory.h" 125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "sandbox/win/src/sandbox_nt_util.h" 135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "sandbox/win/src/sharedmem_ipc_client.h" 145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "sandbox/win/src/target_services.h" 155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)namespace sandbox { 175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)HANDLE WINAPI TargetCreateNamedPipeW( 195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) CreateNamedPipeWFunction orig_CreateNamedPipeW, LPCWSTR pipe_name, 205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DWORD open_mode, DWORD pipe_mode, DWORD max_instance, DWORD out_buffer_size, 215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DWORD in_buffer_size, DWORD default_timeout, 225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) LPSECURITY_ATTRIBUTES security_attributes) { 235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) HANDLE pipe = orig_CreateNamedPipeW(pipe_name, open_mode, pipe_mode, 245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) max_instance, out_buffer_size, 255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) in_buffer_size, default_timeout, 265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) security_attributes); 275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (INVALID_HANDLE_VALUE != pipe) 285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return pipe; 295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // We don't trust that the IPC can work this early. 315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (!SandboxFactory::GetTargetServices()->GetState()->InitCalled()) 325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return INVALID_HANDLE_VALUE; 338bcbed890bc3ce4d7a057a8f32cab53fa534672eTorne (Richard Coles) 348bcbed890bc3ce4d7a057a8f32cab53fa534672eTorne (Richard Coles) DWORD original_error = ::GetLastError(); 355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // We don't support specific Security Attributes. 375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (security_attributes) 385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return INVALID_HANDLE_VALUE; 395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) do { 415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) void* memory = GetGlobalIPCMemory(); 425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (NULL == memory) 435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) break; 445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) CountedParameterSet<NameBased> params; 465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) params[NameBased::NAME] = ParamPickerMake(pipe_name); 475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (!QueryBroker(IPC_CREATENAMEDPIPEW_TAG, params.GetBase())) 495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) break; 505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) SharedMemIPCClient ipc(memory); 525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) CrossCallReturn answer = {0}; 535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) ResultCode code = CrossCall(ipc, IPC_CREATENAMEDPIPEW_TAG, pipe_name, 545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) open_mode, pipe_mode, max_instance, 555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) out_buffer_size, in_buffer_size, 565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) default_timeout, &answer); 575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (SBOX_ALL_OK != code) 585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) break; 595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) ::SetLastError(answer.win32_result); 615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (ERROR_SUCCESS != answer.win32_result) 635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return INVALID_HANDLE_VALUE; 645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return answer.handle; 665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } while (false); 675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) ::SetLastError(original_error); 695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return INVALID_HANDLE_VALUE; 705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} // namespace sandbox 73