michael@0: // Copyright (c) 2006-2008 The Chromium Authors. All rights reserved. michael@0: // Use of this source code is governed by a BSD-style license that can be michael@0: // found in the LICENSE file. michael@0: michael@0: #include "sandbox/win/src/sync_interception.h" michael@0: michael@0: #include "sandbox/win/src/crosscall_client.h" michael@0: #include "sandbox/win/src/ipc_tags.h" michael@0: #include "sandbox/win/src/policy_params.h" michael@0: #include "sandbox/win/src/policy_target.h" michael@0: #include "sandbox/win/src/sandbox_factory.h" michael@0: #include "sandbox/win/src/sandbox_nt_util.h" michael@0: #include "sandbox/win/src/sharedmem_ipc_client.h" michael@0: #include "sandbox/win/src/target_services.h" michael@0: michael@0: namespace sandbox { michael@0: michael@0: HANDLE WINAPI TargetCreateEventW(CreateEventWFunction orig_CreateEvent, michael@0: LPSECURITY_ATTRIBUTES security_attributes, michael@0: BOOL manual_reset, BOOL initial_state, michael@0: LPCWSTR name) { michael@0: // Check if the process can create it first. michael@0: HANDLE handle = orig_CreateEvent(security_attributes, manual_reset, michael@0: initial_state, name); michael@0: DWORD original_error = ::GetLastError(); michael@0: if (NULL != handle) michael@0: return handle; michael@0: michael@0: // We don't trust that the IPC can work this early. michael@0: if (!SandboxFactory::GetTargetServices()->GetState()->InitCalled()) michael@0: return NULL; michael@0: michael@0: do { michael@0: if (security_attributes) michael@0: break; michael@0: michael@0: void* memory = GetGlobalIPCMemory(); michael@0: if (NULL == memory) michael@0: break; michael@0: michael@0: CountedParameterSet params; michael@0: params[NameBased::NAME] = ParamPickerMake(name); michael@0: michael@0: if (!QueryBroker(IPC_CREATEEVENT_TAG, params.GetBase())) michael@0: break; michael@0: michael@0: SharedMemIPCClient ipc(memory); michael@0: CrossCallReturn answer = {0}; michael@0: ResultCode code = CrossCall(ipc, IPC_CREATEEVENT_TAG, name, manual_reset, michael@0: initial_state, &answer); michael@0: michael@0: if (SBOX_ALL_OK != code) michael@0: break; michael@0: michael@0: ::SetLastError(answer.win32_result); michael@0: return answer.handle; michael@0: } while (false); michael@0: michael@0: ::SetLastError(original_error); michael@0: return NULL; michael@0: } michael@0: michael@0: // Interception of OpenEventW on the child process. michael@0: // It should never be called directly michael@0: HANDLE WINAPI TargetOpenEventW(OpenEventWFunction orig_OpenEvent, michael@0: ACCESS_MASK desired_access, BOOL inherit_handle, michael@0: LPCWSTR name) { michael@0: // Check if the process can open it first. michael@0: HANDLE handle = orig_OpenEvent(desired_access, inherit_handle, name); michael@0: DWORD original_error = ::GetLastError(); michael@0: if (NULL != handle) michael@0: return handle; michael@0: michael@0: // We don't trust that the IPC can work this early. michael@0: if (!SandboxFactory::GetTargetServices()->GetState()->InitCalled()) michael@0: return NULL; michael@0: michael@0: do { michael@0: void* memory = GetGlobalIPCMemory(); michael@0: if (NULL == memory) michael@0: break; michael@0: michael@0: uint32 inherit_handle_ipc = inherit_handle; michael@0: CountedParameterSet params; michael@0: params[OpenEventParams::NAME] = ParamPickerMake(name); michael@0: params[OpenEventParams::ACCESS] = ParamPickerMake(desired_access); michael@0: michael@0: if (!QueryBroker(IPC_OPENEVENT_TAG, params.GetBase())) michael@0: break; michael@0: michael@0: SharedMemIPCClient ipc(memory); michael@0: CrossCallReturn answer = {0}; michael@0: ResultCode code = CrossCall(ipc, IPC_OPENEVENT_TAG, name, desired_access, michael@0: inherit_handle_ipc, &answer); michael@0: michael@0: if (SBOX_ALL_OK != code) michael@0: break; michael@0: michael@0: ::SetLastError(answer.win32_result); michael@0: return answer.handle; michael@0: } while (false); michael@0: michael@0: ::SetLastError(original_error); michael@0: return NULL; michael@0: } michael@0: michael@0: } // namespace sandbox