dbus/test/data/auth/cookie-sha1.auth-script
Simon McVittie 6231e7d75f test: Add basic test coverage for DBUS_COOKIE_SHA1
We don't actually complete successful authentication, because that
would require us to generate a cookie and compute the correct SHA1,
which is difficult to do in a deterministic authentication script.
However, we do assert that dbus#269 (CVE-2019-12749) has been fixed.

Signed-off-by: Simon McVittie <smcv@collabora.com>
2019-06-09 13:08:53 +01:00

11 lines
343 B
Text

SERVER
SEND 'AUTH DBUS_COOKIE_SHA1 WRONG_USERID_HEX'
EXPECT_COMMAND REJECTED
EXPECT_STATE WAITING_FOR_INPUT
EXPECT_HAVE_NO_CREDENTIALS
SEND 'AUTH DBUS_COOKIE_SHA1 USERID_HEX'
EXPECT_COMMAND DATA
EXPECT_STATE WAITING_FOR_INPUT
EXPECT_HAVE_NO_CREDENTIALS
# We don't actually complete DBUS_COOKIE_SHA1 authentication, because
# it's non-trivial.