1 // -*- mode: cpp; mode: fold -*-
3 /* ######################################################################
7 CopyFile - Buffered copy of a single file
8 GetLock - dpkg compatible lock file manipulation (fcntl)
10 Most of this source is placed in the Public Domain, do with it what
12 It was originally written by Jason Gunthorpe <jgg@debian.org>.
13 FileFd gzip support added by Martin Pitt <martin.pitt@canonical.com>
15 The exception is RunScripts() it is under the GPLv2
17 ##################################################################### */
19 // Include Files /*{{{*/
22 #include <apt-pkg/fileutl.h>
23 #include <apt-pkg/strutl.h>
24 #include <apt-pkg/error.h>
25 #include <apt-pkg/sptr.h>
26 #include <apt-pkg/aptconfiguration.h>
27 #include <apt-pkg/configuration.h>
28 #include <apt-pkg/macros.h>
33 #include <sys/select.h>
69 #include <sys/prctl.h>
77 // RunScripts - Run a set of scripts from a configuration subtree /*{{{*/
78 // ---------------------------------------------------------------------
80 bool RunScripts(const char *Cnf
)
82 Configuration::Item
const *Opts
= _config
->Tree(Cnf
);
83 if (Opts
== 0 || Opts
->Child
== 0)
87 // Fork for running the system calls
88 pid_t Child
= ExecFork();
93 if (_config
->FindDir("DPkg::Chroot-Directory","/") != "/")
95 std::cerr
<< "Chrooting into "
96 << _config
->FindDir("DPkg::Chroot-Directory")
98 if (chroot(_config
->FindDir("DPkg::Chroot-Directory","/").c_str()) != 0)
102 if (chdir("/tmp/") != 0)
105 unsigned int Count
= 1;
106 for (; Opts
!= 0; Opts
= Opts
->Next
, Count
++)
108 if (Opts
->Value
.empty() == true)
111 if(_config
->FindB("Debug::RunScripts", false) == true)
112 std::clog
<< "Running external script: '"
113 << Opts
->Value
<< "'" << std::endl
;
115 if (system(Opts
->Value
.c_str()) != 0)
121 // Wait for the child
123 while (waitpid(Child
,&Status
,0) != Child
)
127 return _error
->Errno("waitpid","Couldn't wait for subprocess");
130 // Restore sig int/quit
131 signal(SIGQUIT
,SIG_DFL
);
132 signal(SIGINT
,SIG_DFL
);
134 // Check for an error code.
135 if (WIFEXITED(Status
) == 0 || WEXITSTATUS(Status
) != 0)
137 unsigned int Count
= WEXITSTATUS(Status
);
141 for (; Opts
!= 0 && Count
!= 1; Opts
= Opts
->Next
, Count
--);
142 _error
->Error("Problem executing scripts %s '%s'",Cnf
,Opts
->Value
.c_str());
145 return _error
->Error("Sub-process returned an error code");
152 // CopyFile - Buffered copy of a file /*{{{*/
153 // ---------------------------------------------------------------------
154 /* The caller is expected to set things so that failure causes erasure */
155 bool CopyFile(FileFd
&From
,FileFd
&To
)
157 if (From
.IsOpen() == false || To
.IsOpen() == false ||
158 From
.Failed() == true || To
.Failed() == true)
161 // Buffered copy between fds
162 SPtrArray
<unsigned char> Buf
= new unsigned char[64000];
163 unsigned long long Size
= From
.Size();
166 unsigned long long ToRead
= Size
;
170 if (From
.Read(Buf
,ToRead
) == false ||
171 To
.Write(Buf
,ToRead
) == false)
180 // GetLock - Gets a lock file /*{{{*/
181 // ---------------------------------------------------------------------
182 /* This will create an empty file of the given name and lock it. Once this
183 is done all other calls to GetLock in any other process will fail with
184 -1. The return result is the fd of the file, the call should call
185 close at some time. */
186 int GetLock(string File
,bool Errors
)
188 // GetLock() is used in aptitude on directories with public-write access
189 // Use O_NOFOLLOW here to prevent symlink traversal attacks
190 int FD
= open(File
.c_str(),O_RDWR
| O_CREAT
| O_NOFOLLOW
,0640);
193 // Read only .. can't have locking problems there.
196 _error
->Warning(_("Not using locking for read only lock file %s"),File
.c_str());
197 return dup(0); // Need something for the caller to close
201 _error
->Errno("open",_("Could not open lock file %s"),File
.c_str());
203 // Feh.. We do this to distinguish the lock vs open case..
207 SetCloseExec(FD
,true);
209 // Acquire a write lock
212 fl
.l_whence
= SEEK_SET
;
215 if (fcntl(FD
,F_SETLK
,&fl
) == -1)
217 // always close to not leak resources
224 _error
->Warning(_("Not using locking for nfs mounted lock file %s"),File
.c_str());
225 return dup(0); // Need something for the caller to close
229 _error
->Errno("open",_("Could not get lock %s"),File
.c_str());
237 // FileExists - Check if a file exists /*{{{*/
238 // ---------------------------------------------------------------------
239 /* Beware: Directories are also files! */
240 bool FileExists(string File
)
243 if (stat(File
.c_str(),&Buf
) != 0)
248 // RealFileExists - Check if a file exists and if it is really a file /*{{{*/
249 // ---------------------------------------------------------------------
251 bool RealFileExists(string File
)
254 if (stat(File
.c_str(),&Buf
) != 0)
256 return ((Buf
.st_mode
& S_IFREG
) != 0);
259 // DirectoryExists - Check if a directory exists and is really one /*{{{*/
260 // ---------------------------------------------------------------------
262 bool DirectoryExists(string
const &Path
)
265 if (stat(Path
.c_str(),&Buf
) != 0)
267 return ((Buf
.st_mode
& S_IFDIR
) != 0);
270 // CreateDirectory - poor man's mkdir -p guarded by a parent directory /*{{{*/
271 // ---------------------------------------------------------------------
272 /* This method will create all directories needed for path in good old
273 mkdir -p style but refuses to do this if Parent is not a prefix of
274 this Path. Example: /var/cache/ and /var/cache/apt/archives are given,
275 so it will create apt/archives if /var/cache exists - on the other
276 hand if the parent is /var/lib the creation will fail as this path
277 is not a parent of the path to be generated. */
278 bool CreateDirectory(string
const &Parent
, string
const &Path
)
280 if (Parent
.empty() == true || Path
.empty() == true)
283 if (DirectoryExists(Path
) == true)
286 if (DirectoryExists(Parent
) == false)
289 // we are not going to create directories "into the blue"
290 if (Path
.compare(0, Parent
.length(), Parent
) != 0)
293 vector
<string
> const dirs
= VectorizeString(Path
.substr(Parent
.size()), '/');
294 string progress
= Parent
;
295 for (vector
<string
>::const_iterator d
= dirs
.begin(); d
!= dirs
.end(); ++d
)
297 if (d
->empty() == true)
300 progress
.append("/").append(*d
);
301 if (DirectoryExists(progress
) == true)
304 if (mkdir(progress
.c_str(), 0755) != 0)
310 // CreateAPTDirectoryIfNeeded - ensure that the given directory exists /*{{{*/
311 // ---------------------------------------------------------------------
312 /* a small wrapper around CreateDirectory to check if it exists and to
313 remove the trailing "/apt/" from the parent directory if needed */
314 bool CreateAPTDirectoryIfNeeded(string
const &Parent
, string
const &Path
)
316 if (DirectoryExists(Path
) == true)
319 size_t const len
= Parent
.size();
320 if (len
> 5 && Parent
.find("/apt/", len
- 6, 5) == len
- 5)
322 if (CreateDirectory(Parent
.substr(0,len
-5), Path
) == true)
325 else if (CreateDirectory(Parent
, Path
) == true)
331 // GetListOfFilesInDir - returns a vector of files in the given dir /*{{{*/
332 // ---------------------------------------------------------------------
333 /* If an extension is given only files with this extension are included
334 in the returned vector, otherwise every "normal" file is included. */
335 std::vector
<string
> GetListOfFilesInDir(string
const &Dir
, string
const &Ext
,
336 bool const &SortList
, bool const &AllowNoExt
)
338 std::vector
<string
> ext
;
340 if (Ext
.empty() == false)
342 if (AllowNoExt
== true && ext
.empty() == false)
344 return GetListOfFilesInDir(Dir
, ext
, SortList
);
346 std::vector
<string
> GetListOfFilesInDir(string
const &Dir
, std::vector
<string
> const &Ext
,
347 bool const &SortList
)
349 // Attention debuggers: need to be set with the environment config file!
350 bool const Debug
= _config
->FindB("Debug::GetListOfFilesInDir", false);
353 std::clog
<< "Accept in " << Dir
<< " only files with the following " << Ext
.size() << " extensions:" << std::endl
;
354 if (Ext
.empty() == true)
355 std::clog
<< "\tNO extension" << std::endl
;
357 for (std::vector
<string
>::const_iterator e
= Ext
.begin();
359 std::clog
<< '\t' << (e
->empty() == true ? "NO" : *e
) << " extension" << std::endl
;
362 std::vector
<string
> List
;
364 if (DirectoryExists(Dir
) == false)
366 _error
->Error(_("List of files can't be created as '%s' is not a directory"), Dir
.c_str());
370 Configuration::MatchAgainstConfig
SilentIgnore("Dir::Ignore-Files-Silently");
371 DIR *D
= opendir(Dir
.c_str());
374 _error
->Errno("opendir",_("Unable to read %s"),Dir
.c_str());
378 for (struct dirent
*Ent
= readdir(D
); Ent
!= 0; Ent
= readdir(D
))
380 // skip "hidden" files
381 if (Ent
->d_name
[0] == '.')
384 // Make sure it is a file and not something else
385 string
const File
= flCombine(Dir
,Ent
->d_name
);
386 #ifdef _DIRENT_HAVE_D_TYPE
387 if (Ent
->d_type
!= DT_REG
)
390 if (RealFileExists(File
) == false)
392 // do not show ignoration warnings for directories
394 #ifdef _DIRENT_HAVE_D_TYPE
395 Ent
->d_type
== DT_DIR
||
397 DirectoryExists(File
) == true)
399 if (SilentIgnore
.Match(Ent
->d_name
) == false)
400 _error
->Notice(_("Ignoring '%s' in directory '%s' as it is not a regular file"), Ent
->d_name
, Dir
.c_str());
405 // check for accepted extension:
406 // no extension given -> periods are bad as hell!
407 // extensions given -> "" extension allows no extension
408 if (Ext
.empty() == false)
410 string d_ext
= flExtension(Ent
->d_name
);
411 if (d_ext
== Ent
->d_name
) // no extension
413 if (std::find(Ext
.begin(), Ext
.end(), "") == Ext
.end())
416 std::clog
<< "Bad file: " << Ent
->d_name
<< " → no extension" << std::endl
;
417 if (SilentIgnore
.Match(Ent
->d_name
) == false)
418 _error
->Notice(_("Ignoring file '%s' in directory '%s' as it has no filename extension"), Ent
->d_name
, Dir
.c_str());
422 else if (std::find(Ext
.begin(), Ext
.end(), d_ext
) == Ext
.end())
425 std::clog
<< "Bad file: " << Ent
->d_name
<< " → bad extension »" << flExtension(Ent
->d_name
) << "«" << std::endl
;
426 if (SilentIgnore
.Match(Ent
->d_name
) == false)
427 _error
->Notice(_("Ignoring file '%s' in directory '%s' as it has an invalid filename extension"), Ent
->d_name
, Dir
.c_str());
432 // Skip bad filenames ala run-parts
433 const char *C
= Ent
->d_name
;
435 if (isalpha(*C
) == 0 && isdigit(*C
) == 0
436 && *C
!= '_' && *C
!= '-' && *C
!= ':') {
437 // no required extension -> dot is a bad character
438 if (*C
== '.' && Ext
.empty() == false)
443 // we don't reach the end of the name -> bad character included
447 std::clog
<< "Bad file: " << Ent
->d_name
<< " → bad character »"
448 << *C
<< "« in filename (period allowed: " << (Ext
.empty() ? "no" : "yes") << ")" << std::endl
;
452 // skip filenames which end with a period. These are never valid
456 std::clog
<< "Bad file: " << Ent
->d_name
<< " → Period as last character" << std::endl
;
461 std::clog
<< "Accept file: " << Ent
->d_name
<< " in " << Dir
<< std::endl
;
462 List
.push_back(File
);
466 if (SortList
== true)
467 std::sort(List
.begin(),List
.end());
470 std::vector
<string
> GetListOfFilesInDir(string
const &Dir
, bool SortList
)
472 bool const Debug
= _config
->FindB("Debug::GetListOfFilesInDir", false);
474 std::clog
<< "Accept in " << Dir
<< " all regular files" << std::endl
;
476 std::vector
<string
> List
;
478 if (DirectoryExists(Dir
) == false)
480 _error
->Error(_("List of files can't be created as '%s' is not a directory"), Dir
.c_str());
484 DIR *D
= opendir(Dir
.c_str());
487 _error
->Errno("opendir",_("Unable to read %s"),Dir
.c_str());
491 for (struct dirent
*Ent
= readdir(D
); Ent
!= 0; Ent
= readdir(D
))
493 // skip "hidden" files
494 if (Ent
->d_name
[0] == '.')
497 // Make sure it is a file and not something else
498 string
const File
= flCombine(Dir
,Ent
->d_name
);
499 #ifdef _DIRENT_HAVE_D_TYPE
500 if (Ent
->d_type
!= DT_REG
)
503 if (RealFileExists(File
) == false)
506 std::clog
<< "Bad file: " << Ent
->d_name
<< " → it is not a real file" << std::endl
;
511 // Skip bad filenames ala run-parts
512 const char *C
= Ent
->d_name
;
514 if (isalpha(*C
) == 0 && isdigit(*C
) == 0
515 && *C
!= '_' && *C
!= '-' && *C
!= '.')
518 // we don't reach the end of the name -> bad character included
522 std::clog
<< "Bad file: " << Ent
->d_name
<< " → bad character »" << *C
<< "« in filename" << std::endl
;
526 // skip filenames which end with a period. These are never valid
530 std::clog
<< "Bad file: " << Ent
->d_name
<< " → Period as last character" << std::endl
;
535 std::clog
<< "Accept file: " << Ent
->d_name
<< " in " << Dir
<< std::endl
;
536 List
.push_back(File
);
540 if (SortList
== true)
541 std::sort(List
.begin(),List
.end());
545 // SafeGetCWD - This is a safer getcwd that returns a dynamic string /*{{{*/
546 // ---------------------------------------------------------------------
547 /* We return / on failure. */
550 // Stash the current dir.
553 if (getcwd(S
,sizeof(S
)-2) == 0)
555 unsigned int Len
= strlen(S
);
561 // GetModificationTime - Get the mtime of the given file or -1 on error /*{{{*/
562 // ---------------------------------------------------------------------
563 /* We return / on failure. */
564 time_t GetModificationTime(string
const &Path
)
567 if (stat(Path
.c_str(), &St
) < 0)
572 // flNotDir - Strip the directory from the filename /*{{{*/
573 // ---------------------------------------------------------------------
575 string
flNotDir(string File
)
577 string::size_type Res
= File
.rfind('/');
578 if (Res
== string::npos
)
581 return string(File
,Res
,Res
- File
.length());
584 // flNotFile - Strip the file from the directory name /*{{{*/
585 // ---------------------------------------------------------------------
586 /* Result ends in a / */
587 string
flNotFile(string File
)
589 string::size_type Res
= File
.rfind('/');
590 if (Res
== string::npos
)
593 return string(File
,0,Res
);
596 // flExtension - Return the extension for the file /*{{{*/
597 // ---------------------------------------------------------------------
599 string
flExtension(string File
)
601 string::size_type Res
= File
.rfind('.');
602 if (Res
== string::npos
)
605 return string(File
,Res
,Res
- File
.length());
608 // flNoLink - If file is a symlink then deref it /*{{{*/
609 // ---------------------------------------------------------------------
610 /* If the name is not a link then the returned path is the input. */
611 string
flNoLink(string File
)
614 if (lstat(File
.c_str(),&St
) != 0 || S_ISLNK(St
.st_mode
) == 0)
616 if (stat(File
.c_str(),&St
) != 0)
619 /* Loop resolving the link. There is no need to limit the number of
620 loops because the stat call above ensures that the symlink is not
628 if ((Res
= readlink(NFile
.c_str(),Buffer
,sizeof(Buffer
))) <= 0 ||
629 (size_t)Res
>= sizeof(Buffer
))
632 // Append or replace the previous path
634 if (Buffer
[0] == '/')
637 NFile
= flNotFile(NFile
) + Buffer
;
639 // See if we are done
640 if (lstat(NFile
.c_str(),&St
) != 0)
642 if (S_ISLNK(St
.st_mode
) == 0)
647 // flCombine - Combine a file and a directory /*{{{*/
648 // ---------------------------------------------------------------------
649 /* If the file is an absolute path then it is just returned, otherwise
650 the directory is pre-pended to it. */
651 string
flCombine(string Dir
,string File
)
653 if (File
.empty() == true)
656 if (File
[0] == '/' || Dir
.empty() == true)
658 if (File
.length() >= 2 && File
[0] == '.' && File
[1] == '/')
660 if (Dir
[Dir
.length()-1] == '/')
662 return Dir
+ '/' + File
;
665 // flAbsPath - Return the absolute path of the filename /*{{{*/
666 // ---------------------------------------------------------------------
668 string
flAbsPath(string File
)
670 char *p
= realpath(File
.c_str(), NULL
);
673 _error
->Errno("realpath", "flAbsPath failed");
676 std::string
AbsPath(p
);
681 // SetCloseExec - Set the close on exec flag /*{{{*/
682 // ---------------------------------------------------------------------
684 void SetCloseExec(int Fd
,bool Close
)
686 if (fcntl(Fd
,F_SETFD
,(Close
== false)?0:FD_CLOEXEC
) != 0)
688 cerr
<< "FATAL -> Could not set close on exec " << strerror(errno
) << endl
;
693 // SetNonBlock - Set the nonblocking flag /*{{{*/
694 // ---------------------------------------------------------------------
696 void SetNonBlock(int Fd
,bool Block
)
698 int Flags
= fcntl(Fd
,F_GETFL
) & (~O_NONBLOCK
);
699 if (fcntl(Fd
,F_SETFL
,Flags
| ((Block
== false)?0:O_NONBLOCK
)) != 0)
701 cerr
<< "FATAL -> Could not set non-blocking flag " << strerror(errno
) << endl
;
706 // WaitFd - Wait for a FD to become readable /*{{{*/
707 // ---------------------------------------------------------------------
708 /* This waits for a FD to become readable using select. It is useful for
709 applications making use of non-blocking sockets. The timeout is
711 bool WaitFd(int Fd
,bool write
,unsigned long timeout
)
724 Res
= select(Fd
+1,0,&Set
,0,(timeout
!= 0?&tv
:0));
726 while (Res
< 0 && errno
== EINTR
);
736 Res
= select(Fd
+1,&Set
,0,0,(timeout
!= 0?&tv
:0));
738 while (Res
< 0 && errno
== EINTR
);
747 // MergeKeepFdsFromConfiguration - Merge APT::Keep-Fds configuration /*{{{*/
748 // ---------------------------------------------------------------------
749 /* This is used to merge the APT::Keep-Fds with the provided KeepFDs
752 void MergeKeepFdsFromConfiguration(std::set
<int> &KeepFDs
)
754 Configuration::Item
const *Opts
= _config
->Tree("APT::Keep-Fds");
755 if (Opts
!= 0 && Opts
->Child
!= 0)
758 for (; Opts
!= 0; Opts
= Opts
->Next
)
760 if (Opts
->Value
.empty() == true)
762 int fd
= atoi(Opts
->Value
.c_str());
768 // ExecFork - Magical fork that sanitizes the context before execing /*{{{*/
769 // ---------------------------------------------------------------------
770 /* This is used if you want to cleanse the environment for the forked
771 child, it fixes up the important signals and nukes all of the fds,
772 otherwise acts like normal fork. */
776 // we need to merge the Keep-Fds as external tools like
777 // debconf-apt-progress use it
778 MergeKeepFdsFromConfiguration(KeepFDs
);
779 return ExecFork(KeepFDs
);
782 pid_t
ExecFork(std::set
<int> KeepFDs
)
784 // Fork off the process
785 pid_t Process
= fork();
788 cerr
<< "FATAL -> Failed to fork." << endl
;
792 // Spawn the subprocess
796 signal(SIGPIPE
,SIG_DFL
);
797 signal(SIGQUIT
,SIG_DFL
);
798 signal(SIGINT
,SIG_DFL
);
799 signal(SIGWINCH
,SIG_DFL
);
800 signal(SIGCONT
,SIG_DFL
);
801 signal(SIGTSTP
,SIG_DFL
);
803 // Close all of our FDs - just in case
804 for (int K
= 3; K
!= sysconf(_SC_OPEN_MAX
); K
++)
806 if(KeepFDs
.find(K
) == KeepFDs
.end())
807 fcntl(K
,F_SETFD
,FD_CLOEXEC
);
814 // ExecWait - Fancy waitpid /*{{{*/
815 // ---------------------------------------------------------------------
816 /* Waits for the given sub process. If Reap is set then no errors are
817 generated. Otherwise a failed subprocess will generate a proper descriptive
819 bool ExecWait(pid_t Pid
,const char *Name
,bool Reap
)
824 // Wait and collect the error code
826 while (waitpid(Pid
,&Status
,0) != Pid
)
834 return _error
->Error(_("Waited for %s but it wasn't there"),Name
);
838 // Check for an error code.
839 if (WIFEXITED(Status
) == 0 || WEXITSTATUS(Status
) != 0)
843 if (WIFSIGNALED(Status
) != 0)
845 if( WTERMSIG(Status
) == SIGSEGV
)
846 return _error
->Error(_("Sub-process %s received a segmentation fault."),Name
);
848 return _error
->Error(_("Sub-process %s received signal %u."),Name
, WTERMSIG(Status
));
851 if (WIFEXITED(Status
) != 0)
852 return _error
->Error(_("Sub-process %s returned an error code (%u)"),Name
,WEXITSTATUS(Status
));
854 return _error
->Error(_("Sub-process %s exited unexpectedly"),Name
);
860 // StartsWithGPGClearTextSignature - Check if a file is Pgp/GPG clearsigned /*{{{*/
861 bool StartsWithGPGClearTextSignature(string
const &FileName
)
863 static const char* SIGMSG
= "-----BEGIN PGP SIGNED MESSAGE-----\n";
864 char buffer
[strlen(SIGMSG
)+1];
865 FILE* gpg
= fopen(FileName
.c_str(), "r");
869 char const * const test
= fgets(buffer
, sizeof(buffer
), gpg
);
871 if (test
== NULL
|| strcmp(buffer
, SIGMSG
) != 0)
877 // ChangeOwnerAndPermissionOfFile - set file attributes to requested values /*{{{*/
878 bool ChangeOwnerAndPermissionOfFile(char const * const requester
, char const * const file
, char const * const user
, char const * const group
, mode_t
const mode
)
880 if (strcmp(file
, "/dev/null") == 0)
883 if (getuid() == 0 && strlen(user
) != 0 && strlen(group
) != 0) // if we aren't root, we can't chown, so don't try it
885 // ensure the file is owned by root and has good permissions
886 struct passwd
const * const pw
= getpwnam(user
);
887 struct group
const * const gr
= getgrnam(group
);
888 if (pw
!= NULL
&& gr
!= NULL
&& chown(file
, pw
->pw_uid
, gr
->gr_gid
) != 0)
889 Res
&= _error
->WarningE(requester
, "chown to %s:%s of file %s failed", user
, group
, file
);
891 if (chmod(file
, mode
) != 0)
892 Res
&= _error
->WarningE(requester
, "chmod 0%o of file %s failed", mode
, file
);
897 class FileFdPrivate
{ /*{{{*/
908 uint8_t buffer
[4096];
914 LZMAFILE() : file(NULL
), eof(false), compressing(false) { buffer
[0] = '\0'; }
916 if (compressing
== true)
919 stream
.avail_out
= sizeof(buffer
)/sizeof(buffer
[0]);
920 stream
.next_out
= buffer
;
921 err
= lzma_code(&stream
, LZMA_FINISH
);
922 if (err
!= LZMA_OK
&& err
!= LZMA_STREAM_END
)
924 _error
->Error("~LZMAFILE: Compress finalisation failed");
927 size_t const n
= sizeof(buffer
)/sizeof(buffer
[0]) - stream
.avail_out
;
928 if (n
&& fwrite(buffer
, 1, n
, file
) != n
)
930 _error
->Errno("~LZMAFILE",_("Write error"));
933 if (err
== LZMA_STREAM_END
)
944 pid_t compressor_pid
;
946 APT::Configuration::Compressor compressor
;
947 unsigned int openmode
;
948 unsigned long long seekpos
;
959 compressed_fd(-1), compressor_pid(-1), pipe(false),
960 openmode(0), seekpos(0) {};
961 bool InternalClose(std::string
const &FileName
)
964 /* dummy so that the rest can be 'else if's */;
966 else if (gz
!= NULL
) {
967 int const e
= gzclose(gz
);
969 // gzdclose() on empty files always fails with "buffer error" here, ignore that
970 if (e
!= 0 && e
!= Z_BUF_ERROR
)
971 return _error
->Errno("close",_("Problem closing the gzip file %s"), FileName
.c_str());
975 else if (bz2
!= NULL
) {
981 else if (lzma
!= NULL
) {
988 bool CloseDown(std::string
const &FileName
)
990 bool const Res
= InternalClose(FileName
);
992 if (compressor_pid
> 0)
993 ExecWait(compressor_pid
, "FileFdCompressor", true);
998 bool InternalStream() const {
1010 ~FileFdPrivate() { CloseDown(""); }
1013 // FileFd::Open - Open a file /*{{{*/
1014 // ---------------------------------------------------------------------
1015 /* The most commonly used open mode combinations are given with Mode */
1016 bool FileFd::Open(string FileName
,unsigned int const Mode
,CompressMode Compress
, unsigned long const AccessMode
)
1018 if (Mode
== ReadOnlyGzip
)
1019 return Open(FileName
, ReadOnly
, Gzip
, AccessMode
);
1021 if (Compress
== Auto
&& (Mode
& WriteOnly
) == WriteOnly
)
1022 return FileFdError("Autodetection on %s only works in ReadOnly openmode!", FileName
.c_str());
1024 std::vector
<APT::Configuration::Compressor
> const compressors
= APT::Configuration::getCompressors();
1025 std::vector
<APT::Configuration::Compressor
>::const_iterator compressor
= compressors
.begin();
1026 if (Compress
== Auto
)
1028 for (; compressor
!= compressors
.end(); ++compressor
)
1030 std::string file
= FileName
+ compressor
->Extension
;
1031 if (FileExists(file
) == false)
1037 else if (Compress
== Extension
)
1039 std::string::size_type
const found
= FileName
.find_last_of('.');
1041 if (found
!= std::string::npos
)
1043 ext
= FileName
.substr(found
);
1044 if (ext
== ".new" || ext
== ".bak")
1046 std::string::size_type
const found2
= FileName
.find_last_of('.', found
- 1);
1047 if (found2
!= std::string::npos
)
1048 ext
= FileName
.substr(found2
, found
- found2
);
1053 for (; compressor
!= compressors
.end(); ++compressor
)
1054 if (ext
== compressor
->Extension
)
1056 // no matching extension - assume uncompressed (imagine files like 'example.org_Packages')
1057 if (compressor
== compressors
.end())
1058 for (compressor
= compressors
.begin(); compressor
!= compressors
.end(); ++compressor
)
1059 if (compressor
->Name
== ".")
1067 case None
: name
= "."; break;
1068 case Gzip
: name
= "gzip"; break;
1069 case Bzip2
: name
= "bzip2"; break;
1070 case Lzma
: name
= "lzma"; break;
1071 case Xz
: name
= "xz"; break;
1075 return FileFdError("Opening File %s in None, Auto or Extension should be already handled?!?", FileName
.c_str());
1077 for (; compressor
!= compressors
.end(); ++compressor
)
1078 if (compressor
->Name
== name
)
1080 if (compressor
== compressors
.end())
1081 return FileFdError("Can't find a configured compressor %s for file %s", name
.c_str(), FileName
.c_str());
1084 if (compressor
== compressors
.end())
1085 return FileFdError("Can't find a match for specified compressor mode for file %s", FileName
.c_str());
1086 return Open(FileName
, Mode
, *compressor
, AccessMode
);
1088 bool FileFd::Open(string FileName
,unsigned int const Mode
,APT::Configuration::Compressor
const &compressor
, unsigned long const AccessMode
)
1093 if ((Mode
& WriteOnly
) != WriteOnly
&& (Mode
& (Atomic
| Create
| Empty
| Exclusive
)) != 0)
1094 return FileFdError("ReadOnly mode for %s doesn't accept additional flags!", FileName
.c_str());
1095 if ((Mode
& ReadWrite
) == 0)
1096 return FileFdError("No openmode provided in FileFd::Open for %s", FileName
.c_str());
1098 if ((Mode
& Atomic
) == Atomic
)
1102 else if ((Mode
& (Exclusive
| Create
)) == (Exclusive
| Create
))
1104 // for atomic, this will be done by rename in Close()
1105 unlink(FileName
.c_str());
1107 if ((Mode
& Empty
) == Empty
)
1110 if (lstat(FileName
.c_str(),&Buf
) == 0 && S_ISLNK(Buf
.st_mode
))
1111 unlink(FileName
.c_str());
1115 #define if_FLAGGED_SET(FLAG, MODE) if ((Mode & FLAG) == FLAG) fileflags |= MODE
1116 if_FLAGGED_SET(ReadWrite
, O_RDWR
);
1117 else if_FLAGGED_SET(ReadOnly
, O_RDONLY
);
1118 else if_FLAGGED_SET(WriteOnly
, O_WRONLY
);
1120 if_FLAGGED_SET(Create
, O_CREAT
);
1121 if_FLAGGED_SET(Empty
, O_TRUNC
);
1122 if_FLAGGED_SET(Exclusive
, O_EXCL
);
1123 #undef if_FLAGGED_SET
1125 if ((Mode
& Atomic
) == Atomic
)
1127 char *name
= strdup((FileName
+ ".XXXXXX").c_str());
1129 if((iFd
= mkstemp(name
)) == -1)
1132 return FileFdErrno("mkstemp", "Could not create temporary file for %s", FileName
.c_str());
1135 TemporaryFileName
= string(name
);
1138 // umask() will always set the umask and return the previous value, so
1139 // we first set the umask and then reset it to the old value
1140 mode_t
const CurrentUmask
= umask(0);
1141 umask(CurrentUmask
);
1142 // calculate the actual file permissions (just like open/creat)
1143 mode_t
const FilePermissions
= (AccessMode
& ~CurrentUmask
);
1145 if(fchmod(iFd
, FilePermissions
) == -1)
1146 return FileFdErrno("fchmod", "Could not change permissions for temporary file %s", TemporaryFileName
.c_str());
1149 iFd
= open(FileName
.c_str(), fileflags
, AccessMode
);
1151 this->FileName
= FileName
;
1152 if (iFd
== -1 || OpenInternDescriptor(Mode
, compressor
) == false)
1159 return FileFdErrno("open",_("Could not open file %s"), FileName
.c_str());
1162 SetCloseExec(iFd
,true);
1166 // FileFd::OpenDescriptor - Open a filedescriptor /*{{{*/
1167 // ---------------------------------------------------------------------
1169 bool FileFd::OpenDescriptor(int Fd
, unsigned int const Mode
, CompressMode Compress
, bool AutoClose
)
1171 std::vector
<APT::Configuration::Compressor
> const compressors
= APT::Configuration::getCompressors();
1172 std::vector
<APT::Configuration::Compressor
>::const_iterator compressor
= compressors
.begin();
1175 // compat with the old API
1176 if (Mode
== ReadOnlyGzip
&& Compress
== None
)
1181 case None
: name
= "."; break;
1182 case Gzip
: name
= "gzip"; break;
1183 case Bzip2
: name
= "bzip2"; break;
1184 case Lzma
: name
= "lzma"; break;
1185 case Xz
: name
= "xz"; break;
1188 if (AutoClose
== true && Fd
!= -1)
1190 return FileFdError("Opening Fd %d in Auto or Extension compression mode is not supported", Fd
);
1192 for (; compressor
!= compressors
.end(); ++compressor
)
1193 if (compressor
->Name
== name
)
1195 if (compressor
== compressors
.end())
1197 if (AutoClose
== true && Fd
!= -1)
1199 return FileFdError("Can't find a configured compressor %s for file %s", name
.c_str(), FileName
.c_str());
1201 return OpenDescriptor(Fd
, Mode
, *compressor
, AutoClose
);
1203 bool FileFd::OpenDescriptor(int Fd
, unsigned int const Mode
, APT::Configuration::Compressor
const &compressor
, bool AutoClose
)
1206 Flags
= (AutoClose
) ? FileFd::AutoClose
: 0;
1208 this->FileName
= "";
1209 if (OpenInternDescriptor(Mode
, compressor
) == false)
1212 (Flags
& Compressed
) == Compressed
||
1218 return FileFdError(_("Could not open file descriptor %d"), Fd
);
1222 bool FileFd::OpenInternDescriptor(unsigned int const Mode
, APT::Configuration::Compressor
const &compressor
)
1226 if (compressor
.Name
== "." || compressor
.Binary
.empty() == true)
1229 #if defined HAVE_ZLIB || defined HAVE_BZ2 || defined HAVE_LZMA
1230 // the API to open files is similar, so setup to avoid code duplicates later
1231 // and while at it ensure that we close before opening (if its a reopen)
1232 void* (*compress_open
)(int, const char *) = NULL
;
1234 /* dummy so that the rest can be 'else if's */;
1235 #define APT_COMPRESS_INIT(NAME,OPEN) \
1236 else if (compressor.Name == NAME) \
1238 compress_open = (void*(*)(int, const char *)) OPEN; \
1239 if (d != NULL) d->InternalClose(FileName); \
1242 APT_COMPRESS_INIT("gzip", gzdopen
)
1245 APT_COMPRESS_INIT("bzip2", BZ2_bzdopen
)
1248 APT_COMPRESS_INIT("xz", fdopen
)
1249 APT_COMPRESS_INIT("lzma", fdopen
)
1251 #undef APT_COMPRESS_INIT
1256 d
= new FileFdPrivate();
1258 d
->compressor
= compressor
;
1259 #if defined HAVE_ZLIB || defined HAVE_BZ2 || defined HAVE_LZMA
1260 if ((Flags
& AutoClose
) != AutoClose
&& compress_open
!= NULL
)
1262 // Need to duplicate fd here or gz/bz2 close for cleanup will close the fd as well
1263 int const internFd
= dup(iFd
);
1265 return FileFdErrno("OpenInternDescriptor", _("Could not open file descriptor %d"), iFd
);
1271 #if defined HAVE_ZLIB || defined HAVE_BZ2 || defined HAVE_LZMA
1272 if (compress_open
!= NULL
)
1274 void* compress_struct
= NULL
;
1275 if ((Mode
& ReadWrite
) == ReadWrite
)
1276 compress_struct
= compress_open(iFd
, "r+");
1277 else if ((Mode
& WriteOnly
) == WriteOnly
)
1278 compress_struct
= compress_open(iFd
, "w");
1280 compress_struct
= compress_open(iFd
, "r");
1281 if (compress_struct
== NULL
)
1285 /* dummy so that the rest can be 'else if's */;
1287 else if (compressor
.Name
== "gzip")
1288 d
->gz
= (gzFile
) compress_struct
;
1291 else if (compressor
.Name
== "bzip2")
1292 d
->bz2
= (BZFILE
*) compress_struct
;
1295 else if (compressor
.Name
== "xz" || compressor
.Name
== "lzma")
1297 uint32_t const xzlevel
= 6;
1298 uint64_t const memlimit
= UINT64_MAX
;
1299 if (d
->lzma
== NULL
)
1300 d
->lzma
= new FileFdPrivate::LZMAFILE
;
1301 d
->lzma
->file
= (FILE*) compress_struct
;
1302 lzma_stream tmp_stream
= LZMA_STREAM_INIT
;
1303 d
->lzma
->stream
= tmp_stream
;
1305 if ((Mode
& ReadWrite
) == ReadWrite
)
1306 return FileFdError("ReadWrite mode is not supported for file %s", FileName
.c_str());
1308 if ((Mode
& WriteOnly
) == WriteOnly
)
1310 if (compressor
.Name
== "xz")
1312 if (lzma_easy_encoder(&d
->lzma
->stream
, xzlevel
, LZMA_CHECK_CRC32
) != LZMA_OK
)
1317 lzma_options_lzma options
;
1318 lzma_lzma_preset(&options
, xzlevel
);
1319 if (lzma_alone_encoder(&d
->lzma
->stream
, &options
) != LZMA_OK
)
1322 d
->lzma
->compressing
= true;
1326 if (compressor
.Name
== "xz")
1328 if (lzma_auto_decoder(&d
->lzma
->stream
, memlimit
, 0) != LZMA_OK
)
1333 if (lzma_alone_decoder(&d
->lzma
->stream
, memlimit
) != LZMA_OK
)
1336 d
->lzma
->compressing
= false;
1340 Flags
|= Compressed
;
1345 // collect zombies here in case we reopen
1346 if (d
->compressor_pid
> 0)
1347 ExecWait(d
->compressor_pid
, "FileFdCompressor", true);
1349 if ((Mode
& ReadWrite
) == ReadWrite
)
1350 return FileFdError("ReadWrite mode is not supported for file %s", FileName
.c_str());
1352 bool const Comp
= (Mode
& WriteOnly
) == WriteOnly
;
1355 // Handle 'decompression' of empty files
1358 if (Buf
.st_size
== 0 && S_ISFIFO(Buf
.st_mode
) == false)
1361 // We don't need the file open - instead let the compressor open it
1362 // as he properly knows better how to efficiently read from 'his' file
1363 if (FileName
.empty() == false)
1370 // Create a data pipe
1371 int Pipe
[2] = {-1,-1};
1372 if (pipe(Pipe
) != 0)
1373 return FileFdErrno("pipe",_("Failed to create subprocess IPC"));
1374 for (int J
= 0; J
!= 2; J
++)
1375 SetCloseExec(Pipe
[J
],true);
1377 d
->compressed_fd
= iFd
;
1386 d
->compressor_pid
= ExecFork();
1387 if (d
->compressor_pid
== 0)
1391 dup2(d
->compressed_fd
,STDOUT_FILENO
);
1392 dup2(Pipe
[0],STDIN_FILENO
);
1396 if (d
->compressed_fd
!= -1)
1397 dup2(d
->compressed_fd
,STDIN_FILENO
);
1398 dup2(Pipe
[1],STDOUT_FILENO
);
1400 int const nullfd
= open("/dev/null", O_WRONLY
);
1403 dup2(nullfd
,STDERR_FILENO
);
1407 SetCloseExec(STDOUT_FILENO
,false);
1408 SetCloseExec(STDIN_FILENO
,false);
1410 std::vector
<char const*> Args
;
1411 Args
.push_back(compressor
.Binary
.c_str());
1412 std::vector
<std::string
> const * const addArgs
=
1413 (Comp
== true) ? &(compressor
.CompressArgs
) : &(compressor
.UncompressArgs
);
1414 for (std::vector
<std::string
>::const_iterator a
= addArgs
->begin();
1415 a
!= addArgs
->end(); ++a
)
1416 Args
.push_back(a
->c_str());
1417 if (Comp
== false && FileName
.empty() == false)
1419 // commands not needing arguments, do not need to be told about using standard output
1420 // in reality, only testcases with tools like cat, rev, rot13, … are able to trigger this
1421 if (compressor
.CompressArgs
.empty() == false && compressor
.UncompressArgs
.empty() == false)
1422 Args
.push_back("--stdout");
1423 if (TemporaryFileName
.empty() == false)
1424 Args
.push_back(TemporaryFileName
.c_str());
1426 Args
.push_back(FileName
.c_str());
1428 Args
.push_back(NULL
);
1430 execvp(Args
[0],(char **)&Args
[0]);
1431 cerr
<< _("Failed to exec compressor ") << Args
[0] << endl
;
1442 // FileFd::~File - Closes the file /*{{{*/
1443 // ---------------------------------------------------------------------
1444 /* If the proper modes are selected then we close the Fd and possibly
1445 unlink the file on error. */
1450 d
->CloseDown(FileName
);
1455 // FileFd::Read - Read a bit of the file /*{{{*/
1456 // ---------------------------------------------------------------------
1457 /* We are careful to handle interruption by a signal while reading
1459 bool FileFd::Read(void *To
,unsigned long long Size
,unsigned long long *Actual
)
1465 *((char *)To
) = '\0';
1469 /* dummy so that the rest can be 'else if's */;
1471 else if (d
!= NULL
&& d
->gz
!= NULL
)
1472 Res
= gzread(d
->gz
,To
,Size
);
1475 else if (d
!= NULL
&& d
->bz2
!= NULL
)
1476 Res
= BZ2_bzread(d
->bz2
,To
,Size
);
1479 else if (d
!= NULL
&& d
->lzma
!= NULL
)
1481 if (d
->lzma
->eof
== true)
1484 d
->lzma
->stream
.next_out
= (uint8_t *) To
;
1485 d
->lzma
->stream
.avail_out
= Size
;
1486 if (d
->lzma
->stream
.avail_in
== 0)
1488 d
->lzma
->stream
.next_in
= d
->lzma
->buffer
;
1489 d
->lzma
->stream
.avail_in
= fread(d
->lzma
->buffer
, 1, sizeof(d
->lzma
->buffer
)/sizeof(d
->lzma
->buffer
[0]), d
->lzma
->file
);
1491 d
->lzma
->err
= lzma_code(&d
->lzma
->stream
, LZMA_RUN
);
1492 if (d
->lzma
->err
== LZMA_STREAM_END
)
1494 d
->lzma
->eof
= true;
1495 Res
= Size
- d
->lzma
->stream
.avail_out
;
1497 else if (d
->lzma
->err
!= LZMA_OK
)
1504 Res
= Size
- d
->lzma
->stream
.avail_out
;
1507 // lzma run was okay, but produced no output…
1515 Res
= read(iFd
,To
,Size
);
1521 // trick the while-loop into running again
1527 /* dummy so that the rest can be 'else if's */;
1529 else if (d
!= NULL
&& d
->gz
!= NULL
)
1532 char const * const errmsg
= gzerror(d
->gz
, &err
);
1534 return FileFdError("gzread: %s (%d: %s)", _("Read error"), err
, errmsg
);
1538 else if (d
!= NULL
&& d
->bz2
!= NULL
)
1541 char const * const errmsg
= BZ2_bzerror(d
->bz2
, &err
);
1542 if (err
!= BZ_IO_ERROR
)
1543 return FileFdError("BZ2_bzread: %s %s (%d: %s)", FileName
.c_str(), _("Read error"), err
, errmsg
);
1547 else if (d
!= NULL
&& d
->lzma
!= NULL
)
1548 return FileFdError("lzma_read: %s (%d)", _("Read error"), d
->lzma
->err
);
1550 return FileFdErrno("read",_("Read error"));
1553 To
= (char *)To
+ Res
;
1560 while (Res
> 0 && Size
> 0);
1572 return FileFdError(_("read, still have %llu to read but none left"), Size
);
1575 // FileFd::ReadLine - Read a complete line from the file /*{{{*/
1576 // ---------------------------------------------------------------------
1577 /* Beware: This method can be quiet slow for big buffers on UNcompressed
1578 files because of the naive implementation! */
1579 char* FileFd::ReadLine(char *To
, unsigned long long const Size
)
1583 if (d
!= NULL
&& d
->gz
!= NULL
)
1584 return gzgets(d
->gz
, To
, Size
);
1587 unsigned long long read
= 0;
1588 while ((Size
- 1) != read
)
1590 unsigned long long done
= 0;
1591 if (Read(To
+ read
, 1, &done
) == false)
1595 if (To
[read
++] == '\n')
1604 // FileFd::Write - Write to the file /*{{{*/
1605 // ---------------------------------------------------------------------
1607 bool FileFd::Write(const void *From
,unsigned long long Size
)
1614 /* dummy so that the rest can be 'else if's */;
1616 else if (d
!= NULL
&& d
->gz
!= NULL
)
1617 Res
= gzwrite(d
->gz
,From
,Size
);
1620 else if (d
!= NULL
&& d
->bz2
!= NULL
)
1621 Res
= BZ2_bzwrite(d
->bz2
,(void*)From
,Size
);
1624 else if (d
!= NULL
&& d
->lzma
!= NULL
)
1626 d
->lzma
->stream
.next_in
= (uint8_t *)From
;
1627 d
->lzma
->stream
.avail_in
= Size
;
1628 d
->lzma
->stream
.next_out
= d
->lzma
->buffer
;
1629 d
->lzma
->stream
.avail_out
= sizeof(d
->lzma
->buffer
)/sizeof(d
->lzma
->buffer
[0]);
1630 d
->lzma
->err
= lzma_code(&d
->lzma
->stream
, LZMA_RUN
);
1631 if (d
->lzma
->err
!= LZMA_OK
)
1633 size_t const n
= sizeof(d
->lzma
->buffer
)/sizeof(d
->lzma
->buffer
[0]) - d
->lzma
->stream
.avail_out
;
1634 size_t const m
= (n
== 0) ? 0 : fwrite(d
->lzma
->buffer
, 1, n
, d
->lzma
->file
);
1638 Res
= Size
- d
->lzma
->stream
.avail_in
;
1642 Res
= write(iFd
,From
,Size
);
1644 if (Res
< 0 && errno
== EINTR
)
1649 /* dummy so that the rest can be 'else if's */;
1651 else if (d
!= NULL
&& d
->gz
!= NULL
)
1654 char const * const errmsg
= gzerror(d
->gz
, &err
);
1656 return FileFdError("gzwrite: %s (%d: %s)", _("Write error"), err
, errmsg
);
1660 else if (d
!= NULL
&& d
->bz2
!= NULL
)
1663 char const * const errmsg
= BZ2_bzerror(d
->bz2
, &err
);
1664 if (err
!= BZ_IO_ERROR
)
1665 return FileFdError("BZ2_bzwrite: %s (%d: %s)", _("Write error"), err
, errmsg
);
1669 else if (d
!= NULL
&& d
->lzma
!= NULL
)
1670 return FileFdErrno("lzma_fwrite", _("Write error"));
1672 return FileFdErrno("write",_("Write error"));
1675 From
= (char const *)From
+ Res
;
1680 while (Res
> 0 && Size
> 0);
1685 return FileFdError(_("write, still have %llu to write but couldn't"), Size
);
1687 bool FileFd::Write(int Fd
, const void *From
, unsigned long long Size
)
1693 Res
= write(Fd
,From
,Size
);
1694 if (Res
< 0 && errno
== EINTR
)
1697 return _error
->Errno("write",_("Write error"));
1699 From
= (char const *)From
+ Res
;
1702 while (Res
> 0 && Size
> 0);
1707 return _error
->Error(_("write, still have %llu to write but couldn't"), Size
);
1710 // FileFd::Seek - Seek in the file /*{{{*/
1711 // ---------------------------------------------------------------------
1713 bool FileFd::Seek(unsigned long long To
)
1717 if (d
!= NULL
&& (d
->pipe
== true || d
->InternalStream() == true))
1719 // Our poor man seeking in pipes is costly, so try to avoid it
1720 unsigned long long seekpos
= Tell();
1723 else if (seekpos
< To
)
1724 return Skip(To
- seekpos
);
1726 if ((d
->openmode
& ReadOnly
) != ReadOnly
)
1727 return FileFdError("Reopen is only implemented for read-only files!");
1728 d
->InternalClose(FileName
);
1732 if (TemporaryFileName
.empty() == false)
1733 iFd
= open(TemporaryFileName
.c_str(), O_RDONLY
);
1734 else if (FileName
.empty() == false)
1735 iFd
= open(FileName
.c_str(), O_RDONLY
);
1738 if (d
->compressed_fd
> 0)
1739 if (lseek(d
->compressed_fd
, 0, SEEK_SET
) != 0)
1740 iFd
= d
->compressed_fd
;
1742 return FileFdError("Reopen is not implemented for pipes opened with FileFd::OpenDescriptor()!");
1745 if (OpenInternDescriptor(d
->openmode
, d
->compressor
) == false)
1746 return FileFdError("Seek on file %s because it couldn't be reopened", FileName
.c_str());
1756 if (d
!= NULL
&& d
->gz
)
1757 res
= gzseek(d
->gz
,To
,SEEK_SET
);
1760 res
= lseek(iFd
,To
,SEEK_SET
);
1761 if (res
!= (off_t
)To
)
1762 return FileFdError("Unable to seek to %llu", To
);
1769 // FileFd::Skip - Seek in the file /*{{{*/
1770 // ---------------------------------------------------------------------
1772 bool FileFd::Skip(unsigned long long Over
)
1774 if (d
!= NULL
&& (d
->pipe
== true || d
->InternalStream() == true))
1779 unsigned long long toread
= std::min((unsigned long long) sizeof(buffer
), Over
);
1780 if (Read(buffer
, toread
) == false)
1781 return FileFdError("Unable to seek ahead %llu",Over
);
1789 if (d
!= NULL
&& d
->gz
!= NULL
)
1790 res
= gzseek(d
->gz
,Over
,SEEK_CUR
);
1793 res
= lseek(iFd
,Over
,SEEK_CUR
);
1795 return FileFdError("Unable to seek ahead %llu",Over
);
1802 // FileFd::Truncate - Truncate the file /*{{{*/
1803 // ---------------------------------------------------------------------
1805 bool FileFd::Truncate(unsigned long long To
)
1807 // truncating /dev/null is always successful - as we get an error otherwise
1808 if (To
== 0 && FileName
== "/dev/null")
1810 #if defined HAVE_ZLIB || defined HAVE_BZ2 || defined HAVE_LZMA
1811 if (d
!= NULL
&& (d
->InternalStream() == true
1816 return FileFdError("Truncating compressed files is not implemented (%s)", FileName
.c_str());
1818 if (ftruncate(iFd
,To
) != 0)
1819 return FileFdError("Unable to truncate to %llu",To
);
1824 // FileFd::Tell - Current seek position /*{{{*/
1825 // ---------------------------------------------------------------------
1827 unsigned long long FileFd::Tell()
1829 // In theory, we could just return seekpos here always instead of
1830 // seeking around, but not all users of FileFd use always Seek() and co
1831 // so d->seekpos isn't always true and we can just use it as a hint if
1832 // we have nothing else, but not always as an authority…
1833 if (d
!= NULL
&& (d
->pipe
== true || d
->InternalStream() == true))
1838 if (d
!= NULL
&& d
->gz
!= NULL
)
1839 Res
= gztell(d
->gz
);
1842 Res
= lseek(iFd
,0,SEEK_CUR
);
1843 if (Res
== (off_t
)-1)
1844 FileFdErrno("lseek","Failed to determine the current file position");
1850 static bool StatFileFd(char const * const msg
, int const iFd
, std::string
const &FileName
, struct stat
&Buf
, FileFdPrivate
* const d
) /*{{{*/
1852 bool ispipe
= (d
!= NULL
&& d
->pipe
== true);
1853 if (ispipe
== false)
1855 if (fstat(iFd
,&Buf
) != 0)
1856 // higher-level code will generate more meaningful messages,
1857 // even translated this would be meaningless for users
1858 return _error
->Errno("fstat", "Unable to determine %s for fd %i", msg
, iFd
);
1859 if (FileName
.empty() == false)
1860 ispipe
= S_ISFIFO(Buf
.st_mode
);
1863 // for compressor pipes st_size is undefined and at 'best' zero
1866 // we set it here, too, as we get the info here for free
1867 // in theory the Open-methods should take care of it already
1870 if (stat(FileName
.c_str(), &Buf
) != 0)
1871 return _error
->Errno("fstat", "Unable to determine %s for file %s", msg
, FileName
.c_str());
1876 // FileFd::FileSize - Return the size of the file /*{{{*/
1877 unsigned long long FileFd::FileSize()
1880 if (StatFileFd("file size", iFd
, FileName
, Buf
, d
) == false)
1888 // FileFd::ModificationTime - Return the time of last touch /*{{{*/
1889 time_t FileFd::ModificationTime()
1892 if (StatFileFd("modification time", iFd
, FileName
, Buf
, d
) == false)
1897 return Buf
.st_mtime
;
1900 // FileFd::Size - Return the size of the content in the file /*{{{*/
1901 // ---------------------------------------------------------------------
1903 unsigned long long FileFd::Size()
1905 unsigned long long size
= FileSize();
1907 // for compressor pipes st_size is undefined and at 'best' zero,
1908 // so we 'read' the content and 'seek' back - see there
1909 if (d
!= NULL
&& (d
->pipe
== true || (d
->InternalStream() == true && size
> 0)))
1911 unsigned long long const oldSeek
= Tell();
1913 unsigned long long read
= 0;
1915 if (Read(ignore
, sizeof(ignore
), &read
) == false)
1925 // only check gzsize if we are actually a gzip file, just checking for
1926 // "gz" is not sufficient as uncompressed files could be opened with
1927 // gzopen in "direct" mode as well
1928 else if (d
!= NULL
&& d
->gz
&& !gzdirect(d
->gz
) && size
> 0)
1930 off_t
const oldPos
= lseek(iFd
,0,SEEK_CUR
);
1931 /* unfortunately zlib.h doesn't provide a gzsize(), so we have to do
1932 * this ourselves; the original (uncompressed) file size is the last 32
1933 * bits of the file */
1934 // FIXME: Size for gz-files is limited by 32bit… no largefile support
1935 if (lseek(iFd
, -4, SEEK_END
) < 0)
1937 FileFdErrno("lseek","Unable to seek to end of gzipped file");
1941 if (read(iFd
, &size
, 4) != 4)
1943 FileFdErrno("read","Unable to read original size of gzipped file");
1946 size
= le32toh(size
);
1948 if (lseek(iFd
, oldPos
, SEEK_SET
) < 0)
1950 FileFdErrno("lseek","Unable to seek in gzipped file");
1961 // FileFd::Close - Close the file if the close flag is set /*{{{*/
1962 // ---------------------------------------------------------------------
1964 bool FileFd::Close()
1970 if ((Flags
& AutoClose
) == AutoClose
)
1972 if ((Flags
& Compressed
) != Compressed
&& iFd
> 0 && close(iFd
) != 0)
1973 Res
&= _error
->Errno("close",_("Problem closing the file %s"), FileName
.c_str());
1976 Res
&= d
->CloseDown(FileName
);
1982 if ((Flags
& Replace
) == Replace
) {
1983 if (rename(TemporaryFileName
.c_str(), FileName
.c_str()) != 0)
1984 Res
&= _error
->Errno("rename",_("Problem renaming the file %s to %s"), TemporaryFileName
.c_str(), FileName
.c_str());
1986 FileName
= TemporaryFileName
; // for the unlink() below.
1987 TemporaryFileName
.clear();
1992 if ((Flags
& Fail
) == Fail
&& (Flags
& DelOnFail
) == DelOnFail
&&
1993 FileName
.empty() == false)
1994 if (unlink(FileName
.c_str()) != 0)
1995 Res
&= _error
->WarningE("unlnk",_("Problem unlinking the file %s"), FileName
.c_str());
2002 // FileFd::Sync - Sync the file /*{{{*/
2003 // ---------------------------------------------------------------------
2007 if (fsync(iFd
) != 0)
2008 return FileFdErrno("sync",_("Problem syncing the file"));
2012 // FileFd::FileFdErrno - set Fail and call _error->Errno *{{{*/
2013 bool FileFd::FileFdErrno(const char *Function
, const char *Description
,...)
2017 size_t msgSize
= 400;
2018 int const errsv
= errno
;
2021 va_start(args
,Description
);
2022 if (_error
->InsertErrno(GlobalError::ERROR
, Function
, Description
, args
, errsv
, msgSize
) == false)
2029 // FileFd::FileFdError - set Fail and call _error->Error *{{{*/
2030 bool FileFd::FileFdError(const char *Description
,...) {
2033 size_t msgSize
= 400;
2036 va_start(args
,Description
);
2037 if (_error
->Insert(GlobalError::ERROR
, Description
, args
, msgSize
) == false)
2045 APT_DEPRECATED gzFile
FileFd::gzFd() {
2053 // Glob - wrapper around "glob()" /*{{{*/
2054 std::vector
<std::string
> Glob(std::string
const &pattern
, int flags
)
2056 std::vector
<std::string
> result
;
2061 glob_res
= glob(pattern
.c_str(), flags
, NULL
, &globbuf
);
2065 if(glob_res
!= GLOB_NOMATCH
) {
2066 _error
->Errno("glob", "Problem with glob");
2072 for(i
=0;i
<globbuf
.gl_pathc
;i
++)
2073 result
.push_back(string(globbuf
.gl_pathv
[i
]));
2079 std::string
GetTempDir() /*{{{*/
2081 const char *tmpdir
= getenv("TMPDIR");
2089 if (!tmpdir
|| strlen(tmpdir
) == 0 || // tmpdir is set
2090 stat(tmpdir
, &st
) != 0 || (st
.st_mode
& S_IFDIR
) == 0 || // exists and is directory
2091 access(tmpdir
, R_OK
| W_OK
| X_OK
) != 0 // current user has rwx access to directory
2095 return string(tmpdir
);
2098 FileFd
* GetTempFile(std::string
const &Prefix
, bool ImmediateUnlink
) /*{{{*/
2101 FileFd
*Fd
= new FileFd();
2103 std::string tempdir
= GetTempDir();
2104 snprintf(fn
, sizeof(fn
), "%s/%s.XXXXXX",
2105 tempdir
.c_str(), Prefix
.c_str());
2106 int fd
= mkstemp(fn
);
2111 _error
->Errno("GetTempFile",_("Unable to mkstemp %s"), fn
);
2114 if (!Fd
->OpenDescriptor(fd
, FileFd::WriteOnly
, FileFd::None
, true))
2116 _error
->Errno("GetTempFile",_("Unable to write to %s"),fn
);
2123 bool Rename(std::string From
, std::string To
) /*{{{*/
2125 if (rename(From
.c_str(),To
.c_str()) != 0)
2127 _error
->Error(_("rename failed, %s (%s -> %s)."),strerror(errno
),
2128 From
.c_str(),To
.c_str());
2134 bool Popen(const char* Args
[], FileFd
&Fd
, pid_t
&Child
, FileFd::OpenMode Mode
)/*{{{*/
2137 if (Mode
!= FileFd::ReadOnly
&& Mode
!= FileFd::WriteOnly
)
2138 return _error
->Error("Popen supports ReadOnly (x)or WriteOnly mode only");
2140 int Pipe
[2] = {-1, -1};
2142 return _error
->Errno("pipe", _("Failed to create subprocess IPC"));
2144 std::set
<int> keep_fds
;
2145 keep_fds
.insert(Pipe
[0]);
2146 keep_fds
.insert(Pipe
[1]);
2147 Child
= ExecFork(keep_fds
);
2149 return _error
->Errno("fork", "Failed to fork");
2152 if(Mode
== FileFd::ReadOnly
)
2157 else if(Mode
== FileFd::WriteOnly
)
2163 if(Mode
== FileFd::ReadOnly
)
2167 } else if(Mode
== FileFd::WriteOnly
)
2170 execv(Args
[0], (char**)Args
);
2173 if(Mode
== FileFd::ReadOnly
)
2177 } else if(Mode
== FileFd::WriteOnly
)
2182 Fd
.OpenDescriptor(fd
, Mode
, FileFd::None
, true);
2187 bool DropPrivileges() /*{{{*/
2189 if(_config
->FindB("Debug::NoDropPrivs", false) == true)
2193 #if defined(PR_SET_NO_NEW_PRIVS) && ( PR_SET_NO_NEW_PRIVS != 38 )
2194 #error "PR_SET_NO_NEW_PRIVS is defined, but with a different value than expected!"
2196 // see prctl(2), needs linux3.5 at runtime - magic constant to avoid it at buildtime
2197 int ret
= prctl(38, 1, 0, 0, 0);
2198 // ignore EINVAL - kernel is too old to understand the option
2199 if(ret
< 0 && errno
!= EINVAL
)
2200 _error
->Warning("PR_SET_NO_NEW_PRIVS failed with %i", ret
);
2203 // empty setting disables privilege dropping - this also ensures
2204 // backward compatibility, see bug #764506
2205 const std::string toUser
= _config
->Find("APT::Sandbox::User");
2209 // uid will be 0 in the end, but gid might be different anyway
2210 uid_t
const old_uid
= getuid();
2211 gid_t
const old_gid
= getgid();
2216 struct passwd
*pw
= getpwnam(toUser
.c_str());
2218 return _error
->Error("No user %s, can not drop rights", toUser
.c_str());
2220 // Do not change the order here, it might break things
2221 if (setgroups(1, &pw
->pw_gid
))
2222 return _error
->Errno("setgroups", "Failed to setgroups");
2224 if (setegid(pw
->pw_gid
) != 0)
2225 return _error
->Errno("setegid", "Failed to setegid");
2227 if (setgid(pw
->pw_gid
) != 0)
2228 return _error
->Errno("setgid", "Failed to setgid");
2230 if (setuid(pw
->pw_uid
) != 0)
2231 return _error
->Errno("setuid", "Failed to setuid");
2233 // the seteuid() is probably uneeded (at least thats what the linux
2234 // man-page says about setuid(2)) but we cargo culted it anyway
2235 if (seteuid(pw
->pw_uid
) != 0)
2236 return _error
->Errno("seteuid", "Failed to seteuid");
2238 // Verify that the user has only a single group, and the correct one
2240 if (getgroups(1, groups
) != 1)
2241 return _error
->Errno("getgroups", "Could not get new groups");
2242 if (groups
[0] != pw
->pw_gid
)
2243 return _error
->Error("Could not switch group");
2245 // Verify that gid, egid, uid, and euid changed
2246 if (getgid() != pw
->pw_gid
)
2247 return _error
->Error("Could not switch group");
2248 if (getegid() != pw
->pw_gid
)
2249 return _error
->Error("Could not switch effective group");
2250 if (getuid() != pw
->pw_uid
)
2251 return _error
->Error("Could not switch user");
2252 if (geteuid() != pw
->pw_uid
)
2253 return _error
->Error("Could not switch effective user");
2255 #ifdef HAVE_GETRESUID
2256 // verify that the saved set-user-id was changed as well
2260 if (getresuid(&ruid
, &euid
, &suid
))
2261 return _error
->Errno("getresuid", "Could not get saved set-user-ID");
2262 if (suid
!= pw
->pw_uid
)
2263 return _error
->Error("Could not switch saved set-user-ID");
2266 #ifdef HAVE_GETRESGID
2267 // verify that the saved set-group-id was changed as well
2271 if (getresgid(&rgid
, &egid
, &sgid
))
2272 return _error
->Errno("getresuid", "Could not get saved set-group-ID");
2273 if (sgid
!= pw
->pw_gid
)
2274 return _error
->Error("Could not switch saved set-group-ID");
2277 // Check that uid and gid changes do not work anymore
2278 if (pw
->pw_gid
!= old_gid
&& (setgid(old_gid
) != -1 || setegid(old_gid
) != -1))
2279 return _error
->Error("Could restore a gid to root, privilege dropping did not work");
2281 if (pw
->pw_uid
!= old_uid
&& (setuid(old_uid
) != -1 || seteuid(old_uid
) != -1))
2282 return _error
->Error("Could restore a uid to root, privilege dropping did not work");