1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334
|
/*
* Copyright (C) 2005-2018 Team Kodi
* This file is part of Kodi - https://kodi.tv
*
* SPDX-License-Identifier: GPL-2.0-or-later
* See LICENSES/README.md for more information.
*/
#include "Repository.h"
#include "FileItem.h"
#include "ServiceBroker.h"
#include "URL.h"
#include "addons/AddonDatabase.h"
#include "addons/AddonInstaller.h"
#include "addons/AddonManager.h"
#include "addons/RepositoryUpdater.h"
#include "addons/addoninfo/AddonInfo.h"
#include "addons/addoninfo/AddonType.h"
#include "filesystem/CurlFile.h"
#include "filesystem/File.h"
#include "filesystem/ZipFile.h"
#include "games/GameServices.h"
#include "messaging/helpers/DialogHelper.h"
#include "utils/Base64.h"
#include "utils/Digest.h"
#include "utils/Mime.h"
#include "utils/StringUtils.h"
#include "utils/URIUtils.h"
#include "utils/XBMCTinyXML.h"
#include "utils/log.h"
#include <algorithm>
#include <iterator>
#include <tuple>
#include <utility>
using namespace XFILE;
using namespace ADDON;
using namespace KODI::MESSAGING;
using KODI::UTILITY::CDigest;
using KODI::UTILITY::TypedDigest;
CRepository::ResolveResult CRepository::ResolvePathAndHash(const AddonPtr& addon) const
{
std::string const& path = addon->Path();
auto dirIt = std::find_if(m_dirs.begin(), m_dirs.end(), [&path](RepositoryDirInfo const& dir) {
return URIUtils::PathHasParent(path, dir.datadir, true);
});
if (dirIt == m_dirs.end())
{
CLog::Log(LOGERROR, "Requested path {} not found in known repository directories", path);
return {};
}
if (dirIt->hashType == CDigest::Type::INVALID)
{
// We have a path, but need no hash
return {path, {}};
}
// Do not follow mirror redirect, we want the headers of the redirect response
CURL url{path};
url.SetProtocolOption("redirect-limit", "0");
CCurlFile file;
if (!file.Open(url))
{
CLog::Log(LOGERROR, "Could not fetch addon location and hash from {}", path);
return {};
}
std::string hashTypeStr = CDigest::TypeToString(dirIt->hashType);
// Return the location from the header so we don't have to look it up again
// (saves one request per addon install)
std::string location = file.GetRedirectURL();
// content-* headers are base64, convert to base16
TypedDigest hash{dirIt->hashType, StringUtils::ToHexadecimal(Base64::Decode(file.GetHttpHeader().GetValue(std::string("content-") + hashTypeStr)))};
if (hash.Empty())
{
int tmp;
// Expected hash, but none found -> fall back to old method
if (!FetchChecksum(path + "." + hashTypeStr, hash.value, tmp) || hash.Empty())
{
CLog::Log(LOGERROR, "Failed to find hash for {} from HTTP header and in separate file", path);
return {};
}
}
if (location.empty())
{
// Fall back to original URL if we do not get a redirect
location = path;
}
CLog::Log(LOGDEBUG, "Resolved addon path {} to {} hash {}", path, location, hash.value);
return {location, hash};
}
CRepository::CRepository(const AddonInfoPtr& addonInfo) : CAddon(addonInfo, AddonType::REPOSITORY)
{
RepositoryDirList dirs;
CAddonVersion version;
AddonInfoPtr addonver =
CServiceBroker::GetAddonMgr().GetAddonInfo("xbmc.addon", AddonType::UNKNOWN);
if (addonver)
version = addonver->Version();
for (const auto& element : Type(AddonType::REPOSITORY)->GetElements("dir"))
{
RepositoryDirInfo dir = ParseDirConfiguration(element.second);
if ((dir.minversion.empty() || version >= dir.minversion) &&
(dir.maxversion.empty() || version <= dir.maxversion))
m_dirs.push_back(std::move(dir));
}
// old (dharma compatible) way of defining the addon repository structure, is no longer supported
// we error out so the user knows how to migrate. The <dir> way is supported since gotham.
//! @todo remove if block completely in v21
if (!Type(AddonType::REPOSITORY)->GetValue("info").empty())
{
CLog::Log(LOGERROR,
"Repository add-on {} uses old schema definition for the repository extension point! "
"This is no longer supported, please update your addon to use <dir> definitions.",
ID());
}
if (m_dirs.empty())
{
CLog::Log(LOGERROR,
"Repository add-on {} does not have any directory matching {} and won't be able to "
"update/serve addons! Please fix the addon.xml definition",
ID(), version.asString());
}
for (auto const& dir : m_dirs)
{
CURL datadir(dir.datadir);
if (datadir.IsProtocol("http"))
{
CLog::Log(LOGWARNING, "Repository add-on {} uses plain HTTP for add-on downloads in path {} - this is insecure and will make your Kodi installation vulnerable to attacks if enabled!", ID(), datadir.GetRedacted());
}
else if (datadir.IsProtocol("https") && datadir.HasProtocolOption("verifypeer") && datadir.GetProtocolOption("verifypeer") == "false")
{
CLog::Log(LOGWARNING, "Repository add-on {} disabled peer verification for add-on downloads in path {} - this is insecure and will make your Kodi installation vulnerable to attacks if enabled!", ID(), datadir.GetRedacted());
}
}
}
void CRepository::OnPostInstall(bool update, bool modal)
{
// The repo may contain game add-ons, which can introduce new file
// extensions to the list of known game extensions
CServiceBroker::GetGameServices().OnAddonRepoInstalled();
}
bool CRepository::FetchChecksum(const std::string& url,
std::string& checksum,
int& recheckAfter) noexcept
{
CFile file;
if (!file.Open(url))
return false;
// we intentionally avoid using file.GetLength() for
// Transfer-Encoding: chunked servers.
std::stringstream ss;
char temp[1024];
int read;
while ((read = file.Read(temp, sizeof(temp))) > 0)
ss.write(temp, read);
if (read <= -1)
return false;
checksum = ss.str();
std::size_t pos = checksum.find_first_of(" \n");
if (pos != std::string::npos)
{
checksum.resize(pos);
}
// Determine update interval from (potential) HTTP response
// Default: 24 h
recheckAfter = 24 * 60 * 60;
// This special header is set by the Kodi mirror redirector to control client update frequency
// depending on the load on the mirrors
const std::string recheckAfterHeader{
file.GetProperty(FILE_PROPERTY_RESPONSE_HEADER, "X-Kodi-Recheck-After")};
if (!recheckAfterHeader.empty())
{
try
{
// Limit value range to sensible values (1 hour to 1 week)
recheckAfter =
std::max(std::min(std::stoi(recheckAfterHeader), 24 * 7 * 60 * 60), 1 * 60 * 60);
}
catch (...)
{
CLog::Log(LOGWARNING, "Could not parse X-Kodi-Recheck-After header value '{}' from {}",
recheckAfterHeader, url);
}
}
return true;
}
bool CRepository::FetchIndex(const RepositoryDirInfo& repo,
std::string const& digest,
std::vector<AddonInfoPtr>& addons) noexcept
{
XFILE::CCurlFile http;
std::string response;
if (!http.Get(repo.info, response))
{
CLog::Log(LOGERROR, "CRepository: failed to read {}", repo.info);
return false;
}
if (repo.checksumType != CDigest::Type::INVALID)
{
std::string actualDigest = CDigest::Calculate(repo.checksumType, response);
if (!StringUtils::EqualsNoCase(digest, actualDigest))
{
CLog::Log(LOGERROR, "CRepository: {} index has wrong digest {}, expected: {}", repo.info, actualDigest, digest);
return false;
}
}
if (URIUtils::HasExtension(repo.info, ".gz")
|| CMime::GetFileTypeFromMime(http.GetProperty(XFILE::FILE_PROPERTY_MIME_TYPE)) == CMime::EFileType::FileTypeGZip)
{
CLog::Log(LOGDEBUG, "CRepository '{}' is gzip. decompressing", repo.info);
std::string buffer;
if (!CZipFile::DecompressGzip(response, buffer))
{
CLog::Log(LOGERROR, "CRepository: failed to decompress gzip from '{}'", repo.info);
return false;
}
response = std::move(buffer);
}
return CServiceBroker::GetAddonMgr().AddonsFromRepoXML(repo, response, addons);
}
CRepository::FetchStatus CRepository::FetchIfChanged(const std::string& oldChecksum,
std::string& checksum,
std::vector<AddonInfoPtr>& addons,
int& recheckAfter) const
{
checksum = "";
std::vector<std::tuple<RepositoryDirInfo const&, std::string>> dirChecksums;
std::vector<int> recheckAfterTimes;
for (const auto& dir : m_dirs)
{
if (!dir.checksum.empty())
{
std::string part;
int recheckAfterThisDir;
if (!FetchChecksum(dir.checksum, part, recheckAfterThisDir))
{
recheckAfter = 1 * 60 * 60; // retry after 1 hour
CLog::Log(LOGERROR, "CRepository: failed read '{}'", dir.checksum);
return STATUS_ERROR;
}
dirChecksums.emplace_back(dir, part);
recheckAfterTimes.push_back(recheckAfterThisDir);
checksum += part;
}
}
// Default interval: 24 h
recheckAfter = 24 * 60 * 60;
if (dirChecksums.size() == m_dirs.size() && !dirChecksums.empty())
{
// Use smallest update interval out of all received (individual intervals per directory are
// not possible)
recheckAfter = *std::min_element(recheckAfterTimes.begin(), recheckAfterTimes.end());
// If all directories have checksums and they match the last one, nothing has changed
if (dirChecksums.size() == m_dirs.size() && oldChecksum == checksum)
return STATUS_NOT_MODIFIED;
}
for (const auto& dirTuple : dirChecksums)
{
std::vector<AddonInfoPtr> tmp;
if (!FetchIndex(std::get<0>(dirTuple), std::get<1>(dirTuple), tmp))
return STATUS_ERROR;
addons.insert(addons.end(), tmp.begin(), tmp.end());
}
return STATUS_OK;
}
RepositoryDirInfo CRepository::ParseDirConfiguration(const CAddonExtensions& configuration)
{
RepositoryDirInfo dir;
dir.checksum = configuration.GetValue("checksum").asString();
std::string checksumStr = configuration.GetValue("checksum@verify").asString();
if (!checksumStr.empty())
{
dir.checksumType = CDigest::TypeFromString(checksumStr);
}
dir.info = configuration.GetValue("info").asString();
dir.datadir = configuration.GetValue("datadir").asString();
dir.artdir = configuration.GetValue("artdir").asString();
if (dir.artdir.empty())
{
dir.artdir = dir.datadir;
}
std::string hashStr = configuration.GetValue("hashes").asString();
StringUtils::ToLower(hashStr);
if (hashStr == "true")
{
// Deprecated alias
hashStr = "md5";
}
if (!hashStr.empty() && hashStr != "false")
{
dir.hashType = CDigest::TypeFromString(hashStr);
if (dir.hashType == CDigest::Type::MD5)
{
CLog::Log(LOGWARNING, "CRepository::{}: Repository has MD5 hashes enabled - this hash function is broken and will only guard against unintentional data corruption", __FUNCTION__);
}
}
dir.minversion = CAddonVersion{configuration.GetValue("@minversion").asString()};
dir.maxversion = CAddonVersion{configuration.GetValue("@maxversion").asString()};
return dir;
}
|