summaryrefslogtreecommitdiff
path: root/tests
diff options
context:
space:
mode:
authorAndroid Build Merger (Role) <noreply-android-build-merger@google.com>2018-10-22 22:21:56 +0000
committerAndroid Build Merger (Role) <noreply-android-build-merger@google.com>2018-10-22 22:21:56 +0000
commit9df22bbe22eff44d8808df500c6fe0caf587faab (patch)
treee01e86b883b1db5cc453c07657c1cb3852deeaae /tests
parentd999061774ef930bfd7f8ecb4075d82c2419291e (diff)
parent456f745849bda6e4f92c3cff52550d98f40cced4 (diff)
downloadContacts-9df22bbe22eff44d8808df500c6fe0caf587faab.tar.gz
[automerger] Patch URI vulnerability in contact photo editing am: ccfd94b965 am: 2fc4d78bfc am: fc6e94648d am: 3ffe76ed9c am: 456f745849
Change-Id: Id234d18bc2f23835e01b3498ac35838c06acc8fa
Diffstat (limited to 'tests')
-rw-r--r--tests/src/com/android/contacts/util/ContactPhotoUtilsTest.java49
1 files changed, 49 insertions, 0 deletions
diff --git a/tests/src/com/android/contacts/util/ContactPhotoUtilsTest.java b/tests/src/com/android/contacts/util/ContactPhotoUtilsTest.java
new file mode 100644
index 000000000..d17b98c2d
--- /dev/null
+++ b/tests/src/com/android/contacts/util/ContactPhotoUtilsTest.java
@@ -0,0 +1,49 @@
+package com.android.contacts.util;
+
+import android.net.Uri;
+import android.test.AndroidTestCase;
+import android.test.suitebuilder.annotation.SmallTest;
+
+/**
+ * Test cases for {@link ContactPhotoUtils}.
+ *
+ * adb shell am instrument -w -e class com.android.contacts.util.ContactPhotoUtilsTest \
+ * com.android.contacts.tests/android.test.InstrumentationTestRunner
+ */
+@SmallTest
+public class ContactPhotoUtilsTest extends AndroidTestCase {
+
+ private Uri tempUri;
+
+ @Override
+ protected void setUp() throws Exception {
+ tempUri = ContactPhotoUtils.generateTempImageUri(getContext());
+ }
+
+ protected void tearDown() throws Exception {
+ getContext().getContentResolver().delete(tempUri, null, null);
+ }
+
+ public void testFileUriDataPathFails() {
+ String filePath =
+ "file:///data/data/com.android.contacts/shared_prefs/com.android.contacts.xml";
+
+ assertFalse(
+ ContactPhotoUtils.savePhotoFromUriToUri(getContext(), Uri.parse(filePath), tempUri, false));
+ }
+
+ public void testFileUriCanonicalDataPathFails() {
+ String filePath =
+ "file:///storage/../data/data/com.android.contacts/shared_prefs/com.android.contacts.xml";
+
+ assertFalse(
+ ContactPhotoUtils.savePhotoFromUriToUri(getContext(), Uri.parse(filePath), tempUri, false));
+ }
+
+ public void testContentUriInternalPasses() {
+ Uri internal = ContactPhotoUtils.generateTempImageUri(getContext());
+
+ assertTrue(
+ ContactPhotoUtils.savePhotoFromUriToUri(getContext(), internal, tempUri, true));
+ }
+}