mirror of
https://git.proxmox.com/git/libgit2
synced 2025-05-11 23:37:38 +00:00

When checking for out of memory situations we usually use the GITERR_CHECK_ALLOC macro. Besides conforming to our current code base it adds the benefit of silencing errors in Coverity due to Coverity handling the macro's error path as abort.
297 lines
6.9 KiB
C
297 lines
6.9 KiB
C
/*
|
|
* Copyright (C) the libgit2 contributors. All rights reserved.
|
|
*
|
|
* This file is part of libgit2, distributed under the GNU GPL v2 with
|
|
* a Linking Exception. For full terms see the included COPYING file.
|
|
*/
|
|
|
|
#include "common.h"
|
|
#include "signature.h"
|
|
#include "repository.h"
|
|
#include "git2/common.h"
|
|
#include "posix.h"
|
|
|
|
void git_signature_free(git_signature *sig)
|
|
{
|
|
if (sig == NULL)
|
|
return;
|
|
|
|
git__free(sig->name);
|
|
sig->name = NULL;
|
|
git__free(sig->email);
|
|
sig->email = NULL;
|
|
git__free(sig);
|
|
}
|
|
|
|
static int signature_error(const char *msg)
|
|
{
|
|
giterr_set(GITERR_INVALID, "Failed to parse signature - %s", msg);
|
|
return -1;
|
|
}
|
|
|
|
static bool contains_angle_brackets(const char *input)
|
|
{
|
|
return strchr(input, '<') != NULL || strchr(input, '>') != NULL;
|
|
}
|
|
|
|
static bool is_crud(unsigned char c)
|
|
{
|
|
return c <= 32 ||
|
|
c == '.' ||
|
|
c == ',' ||
|
|
c == ':' ||
|
|
c == ';' ||
|
|
c == '<' ||
|
|
c == '>' ||
|
|
c == '"' ||
|
|
c == '\\' ||
|
|
c == '\'';
|
|
}
|
|
|
|
static char *extract_trimmed(const char *ptr, size_t len)
|
|
{
|
|
while (len && is_crud((unsigned char)ptr[0])) {
|
|
ptr++; len--;
|
|
}
|
|
|
|
while (len && is_crud((unsigned char)ptr[len - 1])) {
|
|
len--;
|
|
}
|
|
|
|
return git__substrdup(ptr, len);
|
|
}
|
|
|
|
int git_signature_new(git_signature **sig_out, const char *name, const char *email, git_time_t time, int offset)
|
|
{
|
|
git_signature *p = NULL;
|
|
|
|
assert(name && email);
|
|
|
|
*sig_out = NULL;
|
|
|
|
if (contains_angle_brackets(name) ||
|
|
contains_angle_brackets(email)) {
|
|
return signature_error(
|
|
"Neither `name` nor `email` should contain angle brackets chars.");
|
|
}
|
|
|
|
p = git__calloc(1, sizeof(git_signature));
|
|
GITERR_CHECK_ALLOC(p);
|
|
|
|
p->name = extract_trimmed(name, strlen(name));
|
|
GITERR_CHECK_ALLOC(p->name);
|
|
p->email = extract_trimmed(email, strlen(email));
|
|
GITERR_CHECK_ALLOC(p->email);
|
|
|
|
if (p->name[0] == '\0' || p->email[0] == '\0') {
|
|
git_signature_free(p);
|
|
return signature_error("Signature cannot have an empty name or email");
|
|
}
|
|
|
|
p->when.time = time;
|
|
p->when.offset = offset;
|
|
|
|
*sig_out = p;
|
|
return 0;
|
|
}
|
|
|
|
int git_signature_dup(git_signature **dest, const git_signature *source)
|
|
{
|
|
git_signature *signature;
|
|
|
|
if (source == NULL)
|
|
return 0;
|
|
|
|
signature = git__calloc(1, sizeof(git_signature));
|
|
GITERR_CHECK_ALLOC(signature);
|
|
|
|
signature->name = git__strdup(source->name);
|
|
GITERR_CHECK_ALLOC(signature->name);
|
|
|
|
signature->email = git__strdup(source->email);
|
|
GITERR_CHECK_ALLOC(signature->email);
|
|
|
|
signature->when.time = source->when.time;
|
|
signature->when.offset = source->when.offset;
|
|
|
|
*dest = signature;
|
|
|
|
return 0;
|
|
}
|
|
|
|
int git_signature__pdup(git_signature **dest, const git_signature *source, git_pool *pool)
|
|
{
|
|
git_signature *signature;
|
|
|
|
if (source == NULL)
|
|
return 0;
|
|
|
|
signature = git_pool_mallocz(pool, sizeof(git_signature));
|
|
GITERR_CHECK_ALLOC(signature);
|
|
|
|
signature->name = git_pool_strdup(pool, source->name);
|
|
GITERR_CHECK_ALLOC(signature->name);
|
|
|
|
signature->email = git_pool_strdup(pool, source->email);
|
|
GITERR_CHECK_ALLOC(signature->email);
|
|
|
|
signature->when.time = source->when.time;
|
|
signature->when.offset = source->when.offset;
|
|
|
|
*dest = signature;
|
|
|
|
return 0;
|
|
}
|
|
|
|
int git_signature_now(git_signature **sig_out, const char *name, const char *email)
|
|
{
|
|
time_t now;
|
|
time_t offset;
|
|
struct tm *utc_tm;
|
|
git_signature *sig;
|
|
struct tm _utc;
|
|
|
|
*sig_out = NULL;
|
|
|
|
/*
|
|
* Get the current time as seconds since the epoch and
|
|
* transform that into a tm struct containing the time at
|
|
* UTC. Give that to mktime which considers it a local time
|
|
* (tm_isdst = -1 asks it to take DST into account) and gives
|
|
* us that time as seconds since the epoch. The difference
|
|
* between its return value and 'now' is our offset to UTC.
|
|
*/
|
|
time(&now);
|
|
utc_tm = p_gmtime_r(&now, &_utc);
|
|
utc_tm->tm_isdst = -1;
|
|
offset = (time_t)difftime(now, mktime(utc_tm));
|
|
offset /= 60;
|
|
|
|
if (git_signature_new(&sig, name, email, now, (int)offset) < 0)
|
|
return -1;
|
|
|
|
*sig_out = sig;
|
|
|
|
return 0;
|
|
}
|
|
|
|
int git_signature_default(git_signature **out, git_repository *repo)
|
|
{
|
|
int error;
|
|
git_config *cfg;
|
|
const char *user_name, *user_email;
|
|
|
|
if ((error = git_repository_config_snapshot(&cfg, repo)) < 0)
|
|
return error;
|
|
|
|
if (!(error = git_config_get_string(&user_name, cfg, "user.name")) &&
|
|
!(error = git_config_get_string(&user_email, cfg, "user.email")))
|
|
error = git_signature_now(out, user_name, user_email);
|
|
|
|
git_config_free(cfg);
|
|
return error;
|
|
}
|
|
|
|
int git_signature__parse(git_signature *sig, const char **buffer_out,
|
|
const char *buffer_end, const char *header, char ender)
|
|
{
|
|
const char *buffer = *buffer_out;
|
|
const char *email_start, *email_end;
|
|
|
|
memset(sig, 0, sizeof(git_signature));
|
|
|
|
if ((buffer_end = memchr(buffer, ender, buffer_end - buffer)) == NULL)
|
|
return signature_error("no newline given");
|
|
|
|
if (header) {
|
|
const size_t header_len = strlen(header);
|
|
|
|
if (buffer + header_len >= buffer_end || memcmp(buffer, header, header_len) != 0)
|
|
return signature_error("expected prefix doesn't match actual");
|
|
|
|
buffer += header_len;
|
|
}
|
|
|
|
email_start = git__memrchr(buffer, '<', buffer_end - buffer);
|
|
email_end = git__memrchr(buffer, '>', buffer_end - buffer);
|
|
|
|
if (!email_start || !email_end || email_end <= email_start)
|
|
return signature_error("malformed e-mail");
|
|
|
|
email_start += 1;
|
|
sig->name = extract_trimmed(buffer, email_start - buffer - 1);
|
|
sig->email = extract_trimmed(email_start, email_end - email_start);
|
|
|
|
/* Do we even have a time at the end of the signature? */
|
|
if (email_end + 2 < buffer_end) {
|
|
const char *time_start = email_end + 2;
|
|
const char *time_end;
|
|
|
|
if (git__strtol64(&sig->when.time, time_start, &time_end, 10) < 0)
|
|
return signature_error("invalid Unix timestamp");
|
|
|
|
/* do we have a timezone? */
|
|
if (time_end + 1 < buffer_end) {
|
|
int offset, hours, mins;
|
|
const char *tz_start, *tz_end;
|
|
|
|
tz_start = time_end + 1;
|
|
|
|
if ((tz_start[0] != '-' && tz_start[0] != '+') ||
|
|
git__strtol32(&offset, tz_start + 1, &tz_end, 10) < 0) {
|
|
//malformed timezone, just assume it's zero
|
|
offset = 0;
|
|
}
|
|
|
|
hours = offset / 100;
|
|
mins = offset % 100;
|
|
|
|
/*
|
|
* only store timezone if it's not overflowing;
|
|
* see http://www.worldtimezone.com/faq.html
|
|
*/
|
|
if (hours < 14 && mins < 59) {
|
|
sig->when.offset = (hours * 60) + mins;
|
|
if (tz_start[0] == '-')
|
|
sig->when.offset = -sig->when.offset;
|
|
}
|
|
}
|
|
}
|
|
|
|
*buffer_out = buffer_end + 1;
|
|
return 0;
|
|
}
|
|
|
|
void git_signature__writebuf(git_buf *buf, const char *header, const git_signature *sig)
|
|
{
|
|
int offset, hours, mins;
|
|
char sign;
|
|
|
|
assert(buf && sig);
|
|
|
|
offset = sig->when.offset;
|
|
sign = (sig->when.offset < 0) ? '-' : '+';
|
|
|
|
if (offset < 0)
|
|
offset = -offset;
|
|
|
|
hours = offset / 60;
|
|
mins = offset % 60;
|
|
|
|
git_buf_printf(buf, "%s%s <%s> %u %c%02d%02d\n",
|
|
header ? header : "", sig->name, sig->email,
|
|
(unsigned)sig->when.time, sign, hours, mins);
|
|
}
|
|
|
|
bool git_signature__equal(const git_signature *one, const git_signature *two)
|
|
{
|
|
assert(one && two);
|
|
|
|
return
|
|
git__strcmp(one->name, two->name) == 0 &&
|
|
git__strcmp(one->email, two->email) == 0 &&
|
|
one->when.time == two->when.time &&
|
|
one->when.offset == two->when.offset;
|
|
}
|
|
|