[roll] Roll fuchsia [starnix] Verify SCM_CREDENTIALS over Unix sockets

An external reporter discovered that in Starnix we do not verify
purported credentials sent over Unix socket via the SO_PASSCRED
socket option. This CL adds their recommended fix.  We also include
a few tests to codify the behavior specified by the manpage-- i.e.,
when can credentials be forged and when not.

Original-Bug: 502456949
Original-Reviewed-on: https://fuchsia-review.googlesource.com/c/fuchsia/+/1576033
Original-Revision: c2cc7f8bff0caae5196248f212153d565f09c701
GitOrigin-RevId: 6a060e593cc9cbb33524e4007c287e2b8ce1c6a7
Change-Id: Id0e6035430e4465f3a42588b3a8995a3a47f91fe
1 file changed
tree: 2f3893277ea2b6863935dab7fc4edc4d50f72de8
  1. ctf/
  2. git-hooks/
  3. infra/
  4. third_party/
  5. cobalt
  6. flower
  7. jiri.lock
  8. MILESTONE
  9. minimal
  10. prebuilts
  11. README.md
  12. stem
  13. test_durations
README.md

Integration

This repository contains Fuchsia's Global Integration manifest files.

Making changes

All changes should be made to the internal version of this repository. Our infrastructure automatically updates this version when the internal one changes.

Currently all changes must be made by a Google employee. Non-Google employees wishing to make a change can ask for assistance in one of the communication channels documented at get involved.

Obtaining the source

First install Jiri.

Next run:

$ jiri init
$ jiri import minimal https://fuchsia.googlesource.com/integration
$ jiri update

Third party

Third party projects should have their own subdirectory in ./third_party.