danielebarchiesi@0: status && !empty($file->sub_themes)) { danielebarchiesi@0: foreach ($file->sub_themes as $key => $name) { danielebarchiesi@0: // Build a list of enabled sub-themes. danielebarchiesi@0: if ($list[$key]->status) { danielebarchiesi@0: $file->enabled_sub_themes[$key] = $name; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: // If there are no enabled subthemes, we should ignore this base theme danielebarchiesi@0: // for the enabled case. If the site is trying to display disabled danielebarchiesi@0: // themes, we'll catch it then. danielebarchiesi@0: if (empty($file->enabled_sub_themes)) { danielebarchiesi@0: continue; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: // Otherwise, just add projects of the proper status to our list. danielebarchiesi@0: elseif ($file->status != $status) { danielebarchiesi@0: continue; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Skip if the .info file is broken. danielebarchiesi@0: if (empty($file->info)) { danielebarchiesi@0: continue; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Skip if it's a hidden module or theme. danielebarchiesi@0: if (!empty($file->info['hidden'])) { danielebarchiesi@0: continue; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // If the .info doesn't define the 'project', try to figure it out. danielebarchiesi@0: if (!isset($file->info['project'])) { danielebarchiesi@0: $file->info['project'] = update_get_project_name($file); danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // If we still don't know the 'project', give up. danielebarchiesi@0: if (empty($file->info['project'])) { danielebarchiesi@0: continue; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // If we don't already know it, grab the change time on the .info file danielebarchiesi@0: // itself. Note: we need to use the ctime, not the mtime (modification danielebarchiesi@0: // time) since many (all?) tar implementations will go out of their way to danielebarchiesi@0: // set the mtime on the files it creates to the timestamps recorded in the danielebarchiesi@0: // tarball. We want to see the last time the file was changed on disk, danielebarchiesi@0: // which is left alone by tar and correctly set to the time the .info file danielebarchiesi@0: // was unpacked. danielebarchiesi@0: if (!isset($file->info['_info_file_ctime'])) { danielebarchiesi@0: $info_filename = dirname($file->uri) . '/' . $file->name . '.info'; danielebarchiesi@0: $file->info['_info_file_ctime'] = filectime($info_filename); danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: if (!isset($file->info['datestamp'])) { danielebarchiesi@0: $file->info['datestamp'] = 0; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: $project_name = $file->info['project']; danielebarchiesi@0: danielebarchiesi@0: // Figure out what project type we're going to use to display this module danielebarchiesi@0: // or theme. If the project name is 'drupal', we don't want it to show up danielebarchiesi@0: // under the usual "Modules" section, we put it at a special "Drupal Core" danielebarchiesi@0: // section at the top of the report. danielebarchiesi@0: if ($project_name == 'drupal') { danielebarchiesi@0: $project_display_type = 'core'; danielebarchiesi@0: } danielebarchiesi@0: else { danielebarchiesi@0: $project_display_type = $project_type; danielebarchiesi@0: } danielebarchiesi@0: if (empty($status) && empty($file->enabled_sub_themes)) { danielebarchiesi@0: // If we're processing disabled modules or themes, append a suffix. danielebarchiesi@0: // However, we don't do this to a a base theme with enabled danielebarchiesi@0: // subthemes, since we treat that case as if it is enabled. danielebarchiesi@0: $project_display_type .= '-disabled'; danielebarchiesi@0: } danielebarchiesi@0: // Add a list of sub-themes that "depend on" the project and a list of base danielebarchiesi@0: // themes that are "required by" the project. danielebarchiesi@0: if ($project_name == 'drupal') { danielebarchiesi@0: // Drupal core is always required, so this extra info would be noise. danielebarchiesi@0: $sub_themes = array(); danielebarchiesi@0: $base_themes = array(); danielebarchiesi@0: } danielebarchiesi@0: else { danielebarchiesi@0: // Add list of enabled sub-themes. danielebarchiesi@0: $sub_themes = !empty($file->enabled_sub_themes) ? $file->enabled_sub_themes : array(); danielebarchiesi@0: // Add list of base themes. danielebarchiesi@0: $base_themes = !empty($file->base_themes) ? $file->base_themes : array(); danielebarchiesi@0: } danielebarchiesi@0: if (!isset($projects[$project_name])) { danielebarchiesi@0: // Only process this if we haven't done this project, since a single danielebarchiesi@0: // project can have multiple modules or themes. danielebarchiesi@0: $projects[$project_name] = array( danielebarchiesi@0: 'name' => $project_name, danielebarchiesi@0: // Only save attributes from the .info file we care about so we do not danielebarchiesi@0: // bloat our RAM usage needlessly. danielebarchiesi@0: 'info' => update_filter_project_info($file->info), danielebarchiesi@0: 'datestamp' => $file->info['datestamp'], danielebarchiesi@0: 'includes' => array($file->name => $file->info['name']), danielebarchiesi@0: 'project_type' => $project_display_type, danielebarchiesi@0: 'project_status' => $status, danielebarchiesi@0: 'sub_themes' => $sub_themes, danielebarchiesi@0: 'base_themes' => $base_themes, danielebarchiesi@0: ); danielebarchiesi@0: } danielebarchiesi@0: elseif ($projects[$project_name]['project_type'] == $project_display_type) { danielebarchiesi@0: // Only add the file we're processing to the 'includes' array for this danielebarchiesi@0: // project if it is of the same type and status (which is encoded in the danielebarchiesi@0: // $project_display_type). This prevents listing all the disabled danielebarchiesi@0: // modules included with an enabled project if we happen to be checking danielebarchiesi@0: // for disabled modules, too. danielebarchiesi@0: $projects[$project_name]['includes'][$file->name] = $file->info['name']; danielebarchiesi@0: $projects[$project_name]['info']['_info_file_ctime'] = max($projects[$project_name]['info']['_info_file_ctime'], $file->info['_info_file_ctime']); danielebarchiesi@0: $projects[$project_name]['datestamp'] = max($projects[$project_name]['datestamp'], $file->info['datestamp']); danielebarchiesi@0: if (!empty($sub_themes)) { danielebarchiesi@0: $projects[$project_name]['sub_themes'] += $sub_themes; danielebarchiesi@0: } danielebarchiesi@0: if (!empty($base_themes)) { danielebarchiesi@0: $projects[$project_name]['base_themes'] += $base_themes; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: elseif (empty($status)) { danielebarchiesi@0: // If we have a project_name that matches, but the project_display_type danielebarchiesi@0: // does not, it means we're processing a disabled module or theme that danielebarchiesi@0: // belongs to a project that has some enabled code. In this case, we add danielebarchiesi@0: // the disabled thing into a separate array for separate display. danielebarchiesi@0: $projects[$project_name]['disabled'][$file->name] = $file->info['name']; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: /** danielebarchiesi@0: * Determines what project a given file object belongs to. danielebarchiesi@0: * danielebarchiesi@0: * @param $file danielebarchiesi@0: * A file object as returned by system_get_files_database(). danielebarchiesi@0: * danielebarchiesi@0: * @return danielebarchiesi@0: * The canonical project short name. danielebarchiesi@0: * danielebarchiesi@0: * @see system_get_files_database() danielebarchiesi@0: */ danielebarchiesi@0: function update_get_project_name($file) { danielebarchiesi@0: $project_name = ''; danielebarchiesi@0: if (isset($file->info['project'])) { danielebarchiesi@0: $project_name = $file->info['project']; danielebarchiesi@0: } danielebarchiesi@0: elseif (isset($file->info['package']) && (strpos($file->info['package'], 'Core') === 0)) { danielebarchiesi@0: $project_name = 'drupal'; danielebarchiesi@0: } danielebarchiesi@0: return $project_name; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: /** danielebarchiesi@0: * Determines version and type information for currently installed projects. danielebarchiesi@0: * danielebarchiesi@0: * Processes the list of projects on the system to figure out the currently danielebarchiesi@0: * installed versions, and other information that is required before we can danielebarchiesi@0: * compare against the available releases to produce the status report. danielebarchiesi@0: * danielebarchiesi@0: * @param $projects danielebarchiesi@0: * Array of project information from update_get_projects(). danielebarchiesi@0: */ danielebarchiesi@0: function update_process_project_info(&$projects) { danielebarchiesi@0: foreach ($projects as $key => $project) { danielebarchiesi@0: // Assume an official release until we see otherwise. danielebarchiesi@0: $install_type = 'official'; danielebarchiesi@0: danielebarchiesi@0: $info = $project['info']; danielebarchiesi@0: danielebarchiesi@0: if (isset($info['version'])) { danielebarchiesi@0: // Check for development snapshots danielebarchiesi@0: if (preg_match('@(dev|HEAD)@', $info['version'])) { danielebarchiesi@0: $install_type = 'dev'; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Figure out what the currently installed major version is. We need danielebarchiesi@0: // to handle both contribution (e.g. "5.x-1.3", major = 1) and core danielebarchiesi@0: // (e.g. "5.1", major = 5) version strings. danielebarchiesi@0: $matches = array(); danielebarchiesi@0: if (preg_match('/^(\d+\.x-)?(\d+)\..*$/', $info['version'], $matches)) { danielebarchiesi@0: $info['major'] = $matches[2]; danielebarchiesi@0: } danielebarchiesi@0: elseif (!isset($info['major'])) { danielebarchiesi@0: // This would only happen for version strings that don't follow the danielebarchiesi@0: // drupal.org convention. We let contribs define "major" in their danielebarchiesi@0: // .info in this case, and only if that's missing would we hit this. danielebarchiesi@0: $info['major'] = -1; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: else { danielebarchiesi@0: // No version info available at all. danielebarchiesi@0: $install_type = 'unknown'; danielebarchiesi@0: $info['version'] = t('Unknown'); danielebarchiesi@0: $info['major'] = -1; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Finally, save the results we care about into the $projects array. danielebarchiesi@0: $projects[$key]['existing_version'] = $info['version']; danielebarchiesi@0: $projects[$key]['existing_major'] = $info['major']; danielebarchiesi@0: $projects[$key]['install_type'] = $install_type; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: /** danielebarchiesi@0: * Calculates the current update status of all projects on the site. danielebarchiesi@0: * danielebarchiesi@0: * The results of this function are expensive to compute, especially on sites danielebarchiesi@0: * with lots of modules or themes, since it involves a lot of comparisons and danielebarchiesi@0: * other operations. Therefore, we cache the results into the {cache_update} danielebarchiesi@0: * table using the 'update_project_data' cache ID. However, since this is not danielebarchiesi@0: * the data about available updates fetched from the network, it is ok to danielebarchiesi@0: * invalidate it somewhat quickly. If we keep this data for very long, site danielebarchiesi@0: * administrators are more likely to see incorrect results if they upgrade to a danielebarchiesi@0: * newer version of a module or theme but do not visit certain pages that danielebarchiesi@0: * automatically clear this cache. danielebarchiesi@0: * danielebarchiesi@0: * @param array $available danielebarchiesi@0: * Data about available project releases. danielebarchiesi@0: * danielebarchiesi@0: * @return danielebarchiesi@0: * An array of installed projects with current update status information. danielebarchiesi@0: * danielebarchiesi@0: * @see update_get_available() danielebarchiesi@0: * @see update_get_projects() danielebarchiesi@0: * @see update_process_project_info() danielebarchiesi@0: * @see update_project_cache() danielebarchiesi@0: */ danielebarchiesi@0: function update_calculate_project_data($available) { danielebarchiesi@0: // Retrieve the projects from cache, if present. danielebarchiesi@0: $projects = update_project_cache('update_project_data'); danielebarchiesi@0: // If $projects is empty, then the cache must be rebuilt. danielebarchiesi@0: // Otherwise, return the cached data and skip the rest of the function. danielebarchiesi@0: if (!empty($projects)) { danielebarchiesi@0: return $projects; danielebarchiesi@0: } danielebarchiesi@0: $projects = update_get_projects(); danielebarchiesi@0: update_process_project_info($projects); danielebarchiesi@0: foreach ($projects as $project => $project_info) { danielebarchiesi@0: if (isset($available[$project])) { danielebarchiesi@0: update_calculate_project_update_status($project, $projects[$project], $available[$project]); danielebarchiesi@0: } danielebarchiesi@0: else { danielebarchiesi@0: $projects[$project]['status'] = UPDATE_UNKNOWN; danielebarchiesi@0: $projects[$project]['reason'] = t('No available releases found'); danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: // Give other modules a chance to alter the status (for example, to allow a danielebarchiesi@0: // contrib module to provide fine-grained settings to ignore specific danielebarchiesi@0: // projects or releases). danielebarchiesi@0: drupal_alter('update_status', $projects); danielebarchiesi@0: danielebarchiesi@0: // Cache the site's update status for at most 1 hour. danielebarchiesi@0: _update_cache_set('update_project_data', $projects, REQUEST_TIME + 3600); danielebarchiesi@0: return $projects; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: /** danielebarchiesi@0: * Calculates the current update status of a specific project. danielebarchiesi@0: * danielebarchiesi@0: * This function is the heart of the update status feature. For each project it danielebarchiesi@0: * is invoked with, it first checks if the project has been flagged with a danielebarchiesi@0: * special status like "unsupported" or "insecure", or if the project node danielebarchiesi@0: * itself has been unpublished. In any of those cases, the project is marked danielebarchiesi@0: * with an error and the next project is considered. danielebarchiesi@0: * danielebarchiesi@0: * If the project itself is valid, the function decides what major release danielebarchiesi@0: * series to consider. The project defines what the currently supported major danielebarchiesi@0: * versions are for each version of core, so the first step is to make sure the danielebarchiesi@0: * current version is still supported. If so, that's the target version. If the danielebarchiesi@0: * current version is unsupported, the project maintainer's recommended major danielebarchiesi@0: * version is used. There's also a check to make sure that this function never danielebarchiesi@0: * recommends an earlier release than the currently installed major version. danielebarchiesi@0: * danielebarchiesi@0: * Given a target major version, the available releases are scanned looking for danielebarchiesi@0: * the specific release to recommend (avoiding beta releases and development danielebarchiesi@0: * snapshots if possible). For the target major version, the highest patch level danielebarchiesi@0: * is found. If there is a release at that patch level with no extra ("beta", danielebarchiesi@0: * etc.), then the release at that patch level with the most recent release date danielebarchiesi@0: * is recommended. If every release at that patch level has extra (only betas), danielebarchiesi@0: * then the latest release from the previous patch level is recommended. For danielebarchiesi@0: * example: danielebarchiesi@0: * danielebarchiesi@0: * - 1.6-bugfix <-- recommended version because 1.6 already exists. danielebarchiesi@0: * - 1.6 danielebarchiesi@0: * danielebarchiesi@0: * or danielebarchiesi@0: * danielebarchiesi@0: * - 1.6-beta danielebarchiesi@0: * - 1.5 <-- recommended version because no 1.6 exists. danielebarchiesi@0: * - 1.4 danielebarchiesi@0: * danielebarchiesi@0: * Also, the latest release from the same major version is looked for, even beta danielebarchiesi@0: * releases, to display to the user as the "Latest version" option. danielebarchiesi@0: * Additionally, the latest official release from any higher major versions that danielebarchiesi@0: * have been released is searched for to provide a set of "Also available" danielebarchiesi@0: * options. danielebarchiesi@0: * danielebarchiesi@0: * Finally, and most importantly, the release history continues to be scanned danielebarchiesi@0: * until the currently installed release is reached, searching for anything danielebarchiesi@0: * marked as a security update. If any security updates have been found between danielebarchiesi@0: * the recommended release and the installed version, all of the releases that danielebarchiesi@0: * included a security fix are recorded so that the site administrator can be danielebarchiesi@0: * warned their site is insecure, and links pointing to the release notes for danielebarchiesi@0: * each security update can be included (which, in turn, will link to the danielebarchiesi@0: * official security announcements for each vulnerability). danielebarchiesi@0: * danielebarchiesi@0: * This function relies on the fact that the .xml release history data comes danielebarchiesi@0: * sorted based on major version and patch level, then finally by release date danielebarchiesi@0: * if there are multiple releases such as betas from the same major.patch danielebarchiesi@0: * version (e.g., 5.x-1.5-beta1, 5.x-1.5-beta2, and 5.x-1.5). Development danielebarchiesi@0: * snapshots for a given major version are always listed last. danielebarchiesi@0: * danielebarchiesi@0: * @param $project danielebarchiesi@0: * An array containing information about a specific project. danielebarchiesi@0: * @param $project_data danielebarchiesi@0: * An array containing information about a specific project. danielebarchiesi@0: * @param $available danielebarchiesi@0: * Data about available project releases of a specific project. danielebarchiesi@0: */ danielebarchiesi@0: function update_calculate_project_update_status($project, &$project_data, $available) { danielebarchiesi@0: foreach (array('title', 'link') as $attribute) { danielebarchiesi@0: if (!isset($project_data[$attribute]) && isset($available[$attribute])) { danielebarchiesi@0: $project_data[$attribute] = $available[$attribute]; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // If the project status is marked as something bad, there's nothing else danielebarchiesi@0: // to consider. danielebarchiesi@0: if (isset($available['project_status'])) { danielebarchiesi@0: switch ($available['project_status']) { danielebarchiesi@0: case 'insecure': danielebarchiesi@0: $project_data['status'] = UPDATE_NOT_SECURE; danielebarchiesi@0: if (empty($project_data['extra'])) { danielebarchiesi@0: $project_data['extra'] = array(); danielebarchiesi@0: } danielebarchiesi@0: $project_data['extra'][] = array( danielebarchiesi@0: 'class' => array('project-not-secure'), danielebarchiesi@0: 'label' => t('Project not secure'), danielebarchiesi@0: 'data' => t('This project has been labeled insecure by the Drupal security team, and is no longer available for download. Immediately disabling everything included by this project is strongly recommended!'), danielebarchiesi@0: ); danielebarchiesi@0: break; danielebarchiesi@0: case 'unpublished': danielebarchiesi@0: case 'revoked': danielebarchiesi@0: $project_data['status'] = UPDATE_REVOKED; danielebarchiesi@0: if (empty($project_data['extra'])) { danielebarchiesi@0: $project_data['extra'] = array(); danielebarchiesi@0: } danielebarchiesi@0: $project_data['extra'][] = array( danielebarchiesi@0: 'class' => array('project-revoked'), danielebarchiesi@0: 'label' => t('Project revoked'), danielebarchiesi@0: 'data' => t('This project has been revoked, and is no longer available for download. Disabling everything included by this project is strongly recommended!'), danielebarchiesi@0: ); danielebarchiesi@0: break; danielebarchiesi@0: case 'unsupported': danielebarchiesi@0: $project_data['status'] = UPDATE_NOT_SUPPORTED; danielebarchiesi@0: if (empty($project_data['extra'])) { danielebarchiesi@0: $project_data['extra'] = array(); danielebarchiesi@0: } danielebarchiesi@0: $project_data['extra'][] = array( danielebarchiesi@0: 'class' => array('project-not-supported'), danielebarchiesi@0: 'label' => t('Project not supported'), danielebarchiesi@0: 'data' => t('This project is no longer supported, and is no longer available for download. Disabling everything included by this project is strongly recommended!'), danielebarchiesi@0: ); danielebarchiesi@0: break; danielebarchiesi@0: case 'not-fetched': danielebarchiesi@0: $project_data['status'] = UPDATE_NOT_FETCHED; danielebarchiesi@0: $project_data['reason'] = t('Failed to get available update data.'); danielebarchiesi@0: break; danielebarchiesi@0: danielebarchiesi@0: default: danielebarchiesi@0: // Assume anything else (e.g. 'published') is valid and we should danielebarchiesi@0: // perform the rest of the logic in this function. danielebarchiesi@0: break; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: if (!empty($project_data['status'])) { danielebarchiesi@0: // We already know the status for this project, so there's nothing else to danielebarchiesi@0: // compute. Record the project status into $project_data and we're done. danielebarchiesi@0: $project_data['project_status'] = $available['project_status']; danielebarchiesi@0: return; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Figure out the target major version. danielebarchiesi@0: $existing_major = $project_data['existing_major']; danielebarchiesi@0: $supported_majors = array(); danielebarchiesi@0: if (isset($available['supported_majors'])) { danielebarchiesi@0: $supported_majors = explode(',', $available['supported_majors']); danielebarchiesi@0: } danielebarchiesi@0: elseif (isset($available['default_major'])) { danielebarchiesi@0: // Older release history XML file without supported or recommended. danielebarchiesi@0: $supported_majors[] = $available['default_major']; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: if (in_array($existing_major, $supported_majors)) { danielebarchiesi@0: // Still supported, stay at the current major version. danielebarchiesi@0: $target_major = $existing_major; danielebarchiesi@0: } danielebarchiesi@0: elseif (isset($available['recommended_major'])) { danielebarchiesi@0: // Since 'recommended_major' is defined, we know this is the new XML danielebarchiesi@0: // format. Therefore, we know the current release is unsupported since danielebarchiesi@0: // its major version was not in the 'supported_majors' list. We should danielebarchiesi@0: // find the best release from the recommended major version. danielebarchiesi@0: $target_major = $available['recommended_major']; danielebarchiesi@0: $project_data['status'] = UPDATE_NOT_SUPPORTED; danielebarchiesi@0: } danielebarchiesi@0: elseif (isset($available['default_major'])) { danielebarchiesi@0: // Older release history XML file without recommended, so recommend danielebarchiesi@0: // the currently defined "default_major" version. danielebarchiesi@0: $target_major = $available['default_major']; danielebarchiesi@0: } danielebarchiesi@0: else { danielebarchiesi@0: // Malformed XML file? Stick with the current version. danielebarchiesi@0: $target_major = $existing_major; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Make sure we never tell the admin to downgrade. If we recommended an danielebarchiesi@0: // earlier version than the one they're running, they'd face an danielebarchiesi@0: // impossible data migration problem, since Drupal never supports a DB danielebarchiesi@0: // downgrade path. In the unfortunate case that what they're running is danielebarchiesi@0: // unsupported, and there's nothing newer for them to upgrade to, we danielebarchiesi@0: // can't print out a "Recommended version", but just have to tell them danielebarchiesi@0: // what they have is unsupported and let them figure it out. danielebarchiesi@0: $target_major = max($existing_major, $target_major); danielebarchiesi@0: danielebarchiesi@0: $release_patch_changed = ''; danielebarchiesi@0: $patch = ''; danielebarchiesi@0: danielebarchiesi@0: // If the project is marked as UPDATE_FETCH_PENDING, it means that the danielebarchiesi@0: // data we currently have (if any) is stale, and we've got a task queued danielebarchiesi@0: // up to (re)fetch the data. In that case, we mark it as such, merge in danielebarchiesi@0: // whatever data we have (e.g. project title and link), and move on. danielebarchiesi@0: if (!empty($available['fetch_status']) && $available['fetch_status'] == UPDATE_FETCH_PENDING) { danielebarchiesi@0: $project_data['status'] = UPDATE_FETCH_PENDING; danielebarchiesi@0: $project_data['reason'] = t('No available update data'); danielebarchiesi@0: $project_data['fetch_status'] = $available['fetch_status']; danielebarchiesi@0: return; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Defend ourselves from XML history files that contain no releases. danielebarchiesi@0: if (empty($available['releases'])) { danielebarchiesi@0: $project_data['status'] = UPDATE_UNKNOWN; danielebarchiesi@0: $project_data['reason'] = t('No available releases found'); danielebarchiesi@0: return; danielebarchiesi@0: } danielebarchiesi@0: foreach ($available['releases'] as $version => $release) { danielebarchiesi@0: // First, if this is the existing release, check a few conditions. danielebarchiesi@0: if ($project_data['existing_version'] === $version) { danielebarchiesi@0: if (isset($release['terms']['Release type']) && danielebarchiesi@0: in_array('Insecure', $release['terms']['Release type'])) { danielebarchiesi@0: $project_data['status'] = UPDATE_NOT_SECURE; danielebarchiesi@0: } danielebarchiesi@0: elseif ($release['status'] == 'unpublished') { danielebarchiesi@0: $project_data['status'] = UPDATE_REVOKED; danielebarchiesi@0: if (empty($project_data['extra'])) { danielebarchiesi@0: $project_data['extra'] = array(); danielebarchiesi@0: } danielebarchiesi@0: $project_data['extra'][] = array( danielebarchiesi@0: 'class' => array('release-revoked'), danielebarchiesi@0: 'label' => t('Release revoked'), danielebarchiesi@0: 'data' => t('Your currently installed release has been revoked, and is no longer available for download. Disabling everything included in this release or upgrading is strongly recommended!'), danielebarchiesi@0: ); danielebarchiesi@0: } danielebarchiesi@0: elseif (isset($release['terms']['Release type']) && danielebarchiesi@0: in_array('Unsupported', $release['terms']['Release type'])) { danielebarchiesi@0: $project_data['status'] = UPDATE_NOT_SUPPORTED; danielebarchiesi@0: if (empty($project_data['extra'])) { danielebarchiesi@0: $project_data['extra'] = array(); danielebarchiesi@0: } danielebarchiesi@0: $project_data['extra'][] = array( danielebarchiesi@0: 'class' => array('release-not-supported'), danielebarchiesi@0: 'label' => t('Release not supported'), danielebarchiesi@0: 'data' => t('Your currently installed release is now unsupported, and is no longer available for download. Disabling everything included in this release or upgrading is strongly recommended!'), danielebarchiesi@0: ); danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Otherwise, ignore unpublished, insecure, or unsupported releases. danielebarchiesi@0: if ($release['status'] == 'unpublished' || danielebarchiesi@0: (isset($release['terms']['Release type']) && danielebarchiesi@0: (in_array('Insecure', $release['terms']['Release type']) || danielebarchiesi@0: in_array('Unsupported', $release['terms']['Release type'])))) { danielebarchiesi@0: continue; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // See if this is a higher major version than our target and yet still danielebarchiesi@0: // supported. If so, record it as an "Also available" release. danielebarchiesi@0: // Note: some projects have a HEAD release from CVS days, which could danielebarchiesi@0: // be one of those being compared. They would not have version_major danielebarchiesi@0: // set, so we must call isset first. danielebarchiesi@0: if (isset($release['version_major']) && $release['version_major'] > $target_major) { danielebarchiesi@0: if (in_array($release['version_major'], $supported_majors)) { danielebarchiesi@0: if (!isset($project_data['also'])) { danielebarchiesi@0: $project_data['also'] = array(); danielebarchiesi@0: } danielebarchiesi@0: if (!isset($project_data['also'][$release['version_major']])) { danielebarchiesi@0: $project_data['also'][$release['version_major']] = $version; danielebarchiesi@0: $project_data['releases'][$version] = $release; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: // Otherwise, this release can't matter to us, since it's neither danielebarchiesi@0: // from the release series we're currently using nor the recommended danielebarchiesi@0: // release. We don't even care about security updates for this danielebarchiesi@0: // branch, since if a project maintainer puts out a security release danielebarchiesi@0: // at a higher major version and not at the lower major version, danielebarchiesi@0: // they must remove the lower version from the supported major danielebarchiesi@0: // versions at the same time, in which case we won't hit this code. danielebarchiesi@0: continue; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Look for the 'latest version' if we haven't found it yet. Latest is danielebarchiesi@0: // defined as the most recent version for the target major version. danielebarchiesi@0: if (!isset($project_data['latest_version']) danielebarchiesi@0: && $release['version_major'] == $target_major) { danielebarchiesi@0: $project_data['latest_version'] = $version; danielebarchiesi@0: $project_data['releases'][$version] = $release; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Look for the development snapshot release for this branch. danielebarchiesi@0: if (!isset($project_data['dev_version']) danielebarchiesi@0: && $release['version_major'] == $target_major danielebarchiesi@0: && isset($release['version_extra']) danielebarchiesi@0: && $release['version_extra'] == 'dev') { danielebarchiesi@0: $project_data['dev_version'] = $version; danielebarchiesi@0: $project_data['releases'][$version] = $release; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Look for the 'recommended' version if we haven't found it yet (see danielebarchiesi@0: // phpdoc at the top of this function for the definition). danielebarchiesi@0: if (!isset($project_data['recommended']) danielebarchiesi@0: && $release['version_major'] == $target_major danielebarchiesi@0: && isset($release['version_patch'])) { danielebarchiesi@0: if ($patch != $release['version_patch']) { danielebarchiesi@0: $patch = $release['version_patch']; danielebarchiesi@0: $release_patch_changed = $release; danielebarchiesi@0: } danielebarchiesi@0: if (empty($release['version_extra']) && $patch == $release['version_patch']) { danielebarchiesi@0: $project_data['recommended'] = $release_patch_changed['version']; danielebarchiesi@0: $project_data['releases'][$release_patch_changed['version']] = $release_patch_changed; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Stop searching once we hit the currently installed version. danielebarchiesi@0: if ($project_data['existing_version'] === $version) { danielebarchiesi@0: break; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // If we're running a dev snapshot and have a timestamp, stop danielebarchiesi@0: // searching for security updates once we hit an official release danielebarchiesi@0: // older than what we've got. Allow 100 seconds of leeway to handle danielebarchiesi@0: // differences between the datestamp in the .info file and the danielebarchiesi@0: // timestamp of the tarball itself (which are usually off by 1 or 2 danielebarchiesi@0: // seconds) so that we don't flag that as a new release. danielebarchiesi@0: if ($project_data['install_type'] == 'dev') { danielebarchiesi@0: if (empty($project_data['datestamp'])) { danielebarchiesi@0: // We don't have current timestamp info, so we can't know. danielebarchiesi@0: continue; danielebarchiesi@0: } danielebarchiesi@0: elseif (isset($release['date']) && ($project_data['datestamp'] + 100 > $release['date'])) { danielebarchiesi@0: // We're newer than this, so we can skip it. danielebarchiesi@0: continue; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // See if this release is a security update. danielebarchiesi@0: if (isset($release['terms']['Release type']) danielebarchiesi@0: && in_array('Security update', $release['terms']['Release type'])) { danielebarchiesi@0: $project_data['security updates'][] = $release; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // If we were unable to find a recommended version, then make the latest danielebarchiesi@0: // version the recommended version if possible. danielebarchiesi@0: if (!isset($project_data['recommended']) && isset($project_data['latest_version'])) { danielebarchiesi@0: $project_data['recommended'] = $project_data['latest_version']; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // danielebarchiesi@0: // Check to see if we need an update or not. danielebarchiesi@0: // danielebarchiesi@0: danielebarchiesi@0: if (!empty($project_data['security updates'])) { danielebarchiesi@0: // If we found security updates, that always trumps any other status. danielebarchiesi@0: $project_data['status'] = UPDATE_NOT_SECURE; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: if (isset($project_data['status'])) { danielebarchiesi@0: // If we already know the status, we're done. danielebarchiesi@0: return; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // If we don't know what to recommend, there's nothing we can report. danielebarchiesi@0: // Bail out early. danielebarchiesi@0: if (!isset($project_data['recommended'])) { danielebarchiesi@0: $project_data['status'] = UPDATE_UNKNOWN; danielebarchiesi@0: $project_data['reason'] = t('No available releases found'); danielebarchiesi@0: return; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // If we're running a dev snapshot, compare the date of the dev snapshot danielebarchiesi@0: // with the latest official version, and record the absolute latest in danielebarchiesi@0: // 'latest_dev' so we can correctly decide if there's a newer release danielebarchiesi@0: // than our current snapshot. danielebarchiesi@0: if ($project_data['install_type'] == 'dev') { danielebarchiesi@0: if (isset($project_data['dev_version']) && $available['releases'][$project_data['dev_version']]['date'] > $available['releases'][$project_data['latest_version']]['date']) { danielebarchiesi@0: $project_data['latest_dev'] = $project_data['dev_version']; danielebarchiesi@0: } danielebarchiesi@0: else { danielebarchiesi@0: $project_data['latest_dev'] = $project_data['latest_version']; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: // Figure out the status, based on what we've seen and the install type. danielebarchiesi@0: switch ($project_data['install_type']) { danielebarchiesi@0: case 'official': danielebarchiesi@0: if ($project_data['existing_version'] === $project_data['recommended'] || $project_data['existing_version'] === $project_data['latest_version']) { danielebarchiesi@0: $project_data['status'] = UPDATE_CURRENT; danielebarchiesi@0: } danielebarchiesi@0: else { danielebarchiesi@0: $project_data['status'] = UPDATE_NOT_CURRENT; danielebarchiesi@0: } danielebarchiesi@0: break; danielebarchiesi@0: danielebarchiesi@0: case 'dev': danielebarchiesi@0: $latest = $available['releases'][$project_data['latest_dev']]; danielebarchiesi@0: if (empty($project_data['datestamp'])) { danielebarchiesi@0: $project_data['status'] = UPDATE_NOT_CHECKED; danielebarchiesi@0: $project_data['reason'] = t('Unknown release date'); danielebarchiesi@0: } danielebarchiesi@0: elseif (($project_data['datestamp'] + 100 > $latest['date'])) { danielebarchiesi@0: $project_data['status'] = UPDATE_CURRENT; danielebarchiesi@0: } danielebarchiesi@0: else { danielebarchiesi@0: $project_data['status'] = UPDATE_NOT_CURRENT; danielebarchiesi@0: } danielebarchiesi@0: break; danielebarchiesi@0: danielebarchiesi@0: default: danielebarchiesi@0: $project_data['status'] = UPDATE_UNKNOWN; danielebarchiesi@0: $project_data['reason'] = t('Invalid info'); danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: /** danielebarchiesi@0: * Retrieves data from {cache_update} or empties the cache when necessary. danielebarchiesi@0: * danielebarchiesi@0: * Two very expensive arrays computed by this module are the list of all danielebarchiesi@0: * installed modules and themes (and .info data, project associations, etc), and danielebarchiesi@0: * the current status of the site relative to the currently available releases. danielebarchiesi@0: * These two arrays are cached in the {cache_update} table and used whenever danielebarchiesi@0: * possible. The cache is cleared whenever the administrator visits the status danielebarchiesi@0: * report, available updates report, or the module or theme administration danielebarchiesi@0: * pages, since we should always recompute the most current values on any of danielebarchiesi@0: * those pages. danielebarchiesi@0: * danielebarchiesi@0: * Note: while both of these arrays are expensive to compute (in terms of disk danielebarchiesi@0: * I/O and some fairly heavy CPU processing), neither of these is the actual danielebarchiesi@0: * data about available updates that we have to fetch over the network from danielebarchiesi@0: * updates.drupal.org. That information is stored with the danielebarchiesi@0: * 'update_available_releases' cache ID -- it needs to persist longer than 1 danielebarchiesi@0: * hour and never get invalidated just by visiting a page on the site. danielebarchiesi@0: * danielebarchiesi@0: * @param $cid danielebarchiesi@0: * The cache ID of data to return from the cache. Valid options are danielebarchiesi@0: * 'update_project_data' and 'update_project_projects'. danielebarchiesi@0: * danielebarchiesi@0: * @return danielebarchiesi@0: * The cached value of the $projects array generated by danielebarchiesi@0: * update_calculate_project_data() or update_get_projects(), or an empty array danielebarchiesi@0: * when the cache is cleared. danielebarchiesi@0: */ danielebarchiesi@0: function update_project_cache($cid) { danielebarchiesi@0: $projects = array(); danielebarchiesi@0: danielebarchiesi@0: // On certain paths, we should clear the cache and recompute the projects for danielebarchiesi@0: // update status of the site to avoid presenting stale information. danielebarchiesi@0: $q = $_GET['q']; danielebarchiesi@0: $paths = array( danielebarchiesi@0: 'admin/modules', danielebarchiesi@0: 'admin/modules/update', danielebarchiesi@0: 'admin/appearance', danielebarchiesi@0: 'admin/appearance/update', danielebarchiesi@0: 'admin/reports', danielebarchiesi@0: 'admin/reports/updates', danielebarchiesi@0: 'admin/reports/updates/update', danielebarchiesi@0: 'admin/reports/status', danielebarchiesi@0: 'admin/reports/updates/check', danielebarchiesi@0: ); danielebarchiesi@0: if (in_array($q, $paths)) { danielebarchiesi@0: _update_cache_clear($cid); danielebarchiesi@0: } danielebarchiesi@0: else { danielebarchiesi@0: $cache = _update_cache_get($cid); danielebarchiesi@0: if (!empty($cache->data) && $cache->expire > REQUEST_TIME) { danielebarchiesi@0: $projects = $cache->data; danielebarchiesi@0: } danielebarchiesi@0: } danielebarchiesi@0: return $projects; danielebarchiesi@0: } danielebarchiesi@0: danielebarchiesi@0: /** danielebarchiesi@0: * Filters the project .info data to only save attributes we need. danielebarchiesi@0: * danielebarchiesi@0: * @param array $info danielebarchiesi@0: * Array of .info file data as returned by drupal_parse_info_file(). danielebarchiesi@0: * danielebarchiesi@0: * @return danielebarchiesi@0: * Array of .info file data we need for the update manager. danielebarchiesi@0: * danielebarchiesi@0: * @see _update_process_info_list() danielebarchiesi@0: */ danielebarchiesi@0: function update_filter_project_info($info) { danielebarchiesi@0: $whitelist = array( danielebarchiesi@0: '_info_file_ctime', danielebarchiesi@0: 'datestamp', danielebarchiesi@0: 'major', danielebarchiesi@0: 'name', danielebarchiesi@0: 'package', danielebarchiesi@0: 'project', danielebarchiesi@0: 'project status url', danielebarchiesi@0: 'version', danielebarchiesi@0: ); danielebarchiesi@0: return array_intersect_key($info, drupal_map_assoc($whitelist)); danielebarchiesi@0: }