uploader.php 5.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161
  1. <?php
  2. session_start();
  3. include('logo.html');
  4. include('menulist.html');
  5. include('configuration');
  6. include('functions.php');
  7. include('searchengine.php');
  8. if ($_FILES["uploadedfile"]["error"] > 0) {
  9. echo "Error: " . $_FILES["uploadedfile"]["error"] . "<br />";
  10. exit();
  11. }
  12. //list of file types supported
  13. if($_FILES["uploadedfile"]["type"] == "application/x-gzip"
  14. || $_FILES["uploadedfile"]["type"] == "application/x-tar"
  15. || $_FILES["uploadedfile"]["type"] == "application/x-bzip"
  16. || $_FILES["uploadedfile"]["type"] == "application/zip") {
  17. $folder = substr($_FILES["uploadedfile"]["name"], 0, strpos($_FILES["uploadedfile"]["name"],'.'));
  18. move_uploaded_file($_FILES["uploadedfile"]["tmp_name"],
  19. $tempfolder . $_FILES["uploadedfile"]["name"]);
  20. //extracting code
  21. if($_FILES["uploadedfile"]["type"] == "application/zip") {
  22. exec('unzip '.$tempfolder.$_FILES["uploadedfile"]["name"].' -d '.$tempfolder, $op, $status);
  23. }
  24. else {
  25. exec('tar -xf '.$tempfolder.$_FILES["uploadedfile"]["name"].' -C '.$tempfolder, $op, $status);
  26. }
  27. checkerror($status,"Error: cannot extract(tar error).");
  28. //if user not logged in
  29. if($_SESSION["slogged"] == false) {
  30. //move to temp folder
  31. if (file_exists($temprepo . $folder))
  32. rmdirr($temprepo.$folder);
  33. rename($tempfolder.$folder, $temprepo.$folder);
  34. //send mail for review to admins
  35. $subject = "Review: code upload at temporary repository";
  36. $message = "Some developer has uploaded code who has not logged in.\n\nModule is stored in ".$temprepo.$folder.".\n\nOutput of ccanlint: \n";
  37. $toaddress = getccanadmin($db);
  38. mail($toaddress, $subject, $message, "From: $frommail");
  39. echo "<div align=\"center\"> Stored to temporary repository. Mail will be send to admin to get verification of the code.<//div>";
  40. unlink($tempfolder.$_FILES["uploadedfile"]["name"]);
  41. exit();
  42. }
  43. //running ccanlint
  44. exec($ccanlint.$tempfolder.$folder, $score, $status);
  45. //if not junk code
  46. if($status == 0) {
  47. $rename = $folder;
  48. $exactpath = $repopath . $_SESSION['susername'] .'/';
  49. if (file_exists($exactpath)) {
  50. echo "<div align=\"center\"> Your another upload is in progress please wait...</div>";
  51. exit();
  52. }
  53. //bzr local repo for commit
  54. chdir($repopath);
  55. unset($op); exec($bzr_clone . $_SESSION['susername'], $op, $status);
  56. checkerror($status, "Error: bzr local repo.");
  57. chdir('..');
  58. //if module already exist
  59. if (file_exists($exactpath . $ccan_home_dir . $folder)) {
  60. // if owner is not same
  61. if(!(getowner($ccan_home_dir . $folder, $db) == $_SESSION['susername'])) {
  62. if(!file_exists($repopath . $ccan_home_dir . $folder . '-' . $_SESSION['susername']))
  63. echo "<div align=\"center\">". $ccan_home_dir . $folder . " already exists. Renaming to " . $folder . "-" . $_SESSION['susername'] . "</div>";
  64. else
  65. echo "<div align=\"center\">". $ccan_home_dir . $folder . "-" . $_SESSION['susername'] . " already exists. Overwriting " . $folder. "-" . $_SESSION['susername'] . "</div>";
  66. $rename = $folder."-".$_SESSION['susername'];
  67. }
  68. else
  69. echo "<div align=\"center\">".$repopath. $ccan_home_dir. $folder. " already exists(uploaded by you). Overwriting ". $repopath. $folder."</div>";
  70. }
  71. //module not exist. store author to db
  72. else {
  73. storefileowner($ccan_home_dir . $folder, $_SESSION['susername'], $db);
  74. }
  75. rmdirr($exactpath . $ccan_home_dir . $rename);
  76. rename($tempfolder . $folder, $exactpath . $ccan_home_dir . $rename);
  77. chdir($exactpath);
  78. unset($op); exec($infotojson . $ccan_home_dir . $rename . " " . $ccan_home_dir. $rename."/_info.c ". $ccan_home_dir . $rename . "/json_" . $rename . " " . $_SESSION['susername']. " ../../" . $db, $op, $status);
  79. checkerror($status,"Error: In infotojson.");
  80. unset($op); exec('bzr add', $op, $status);
  81. checkerror($status,"Error: bzr add error.");
  82. unset($op); exec('bzr commit --unchanged -m "commiting from ccan web ' . $rename . " " . $_SESSION['susername'] . '"', $op, $status);
  83. checkerror($status,"Error: bzr commit error.");
  84. unset($op); exec($bzr_push, $op, $status);
  85. checkerror($status,"Error: bzr push error.");
  86. chdir('../..');
  87. rmdirr($exactpath);
  88. echo "<div align=\"center\"> Stored to ". $ccan_home_dir . $rename . "</div>";
  89. }
  90. //if junk code (no _info.c etc)
  91. else {
  92. rmdirr($junkcode.$folder.'-'.$_SESSION['susername']);
  93. rename($tempfolder.$folder, $junkcode.$folder.'-'.$_SESSION['susername']);
  94. if($score == '')
  95. $msg = 'Below is details for test.';
  96. echo "<div align=\"center\"><table><tr><td> Score for code is low. Cannot copy to repository. Moving to ". $junkcode.$folder.'-'.$_SESSION['susername']."... </br></br>". $msg ." </br></br></td></tr><tr><td>";
  97. foreach($score as $disp)
  98. echo "$disp</br>";
  99. echo "</td></tr></table></div>";
  100. }
  101. unlink($tempfolder.$_FILES["uploadedfile"]["name"]);
  102. }
  103. else {
  104. echo "<div align=\"center\"> File type not supported </div>";
  105. exit();
  106. }
  107. function checkerror($status, $msg)
  108. {
  109. if($status != 0) {
  110. echo "<div align=\"center\">" . $msg . "Contact ccan admin. </div>";
  111. exit();
  112. }
  113. }
  114. function getowner($filename, $db)
  115. {
  116. //getting owner of a file stored at db
  117. $handle = sqlite3_open($db) or die("Could not open database");
  118. $query = "SELECT owner FROM fileowner users where filename=\"$filename\"";
  119. $result = sqlite3_query($handle, $query) or die("Error in query: ".sqlite3_error($handle));
  120. $row = sqlite3_fetch_array($result);
  121. return $row["owner"];
  122. }
  123. function storefileowner($filename, $owner, $db)
  124. {
  125. //storing owner of a file stored at db
  126. $handle = sqlite3_open($db) or die("Could not open database");
  127. $query = "insert into fileowner values(\"$filename\", \"$owner\")";
  128. $result = sqlite3_exec($handle, $query) or die("Error in query: ".sqlite3_error($handle));
  129. }
  130. ?>