// Copyright 2015 The Chromium Authors. All rights reserved. // Use of this source code is governed by a BSD-style license that can be // found in the LICENSE file. #include "components/filesystem/util.h" #include #include #include #include #include #include "base/logging.h" #include "base/strings/string_util.h" #include "build/build_config.h" #if defined(OS_WIN) #include "base/strings/utf_string_conversions.h" #endif // module filesystem has various constants which must line up with enum values // in base::File::Flags. static_assert(filesystem::mojom::kFlagOpen == static_cast(base::File::FLAG_OPEN), ""); static_assert(filesystem::mojom::kFlagCreate == static_cast(base::File::FLAG_CREATE), ""); static_assert(filesystem::mojom::kFlagOpenAlways == static_cast(base::File::FLAG_OPEN_ALWAYS), ""); static_assert(filesystem::mojom::kCreateAlways == static_cast(base::File::FLAG_CREATE_ALWAYS), ""); static_assert(filesystem::mojom::kFlagOpenTruncated == static_cast(base::File::FLAG_OPEN_TRUNCATED), ""); static_assert(filesystem::mojom::kFlagRead == static_cast(base::File::FLAG_READ), ""); static_assert(filesystem::mojom::kFlagWrite == static_cast(base::File::FLAG_WRITE), ""); static_assert(filesystem::mojom::kFlagAppend == static_cast(base::File::FLAG_APPEND), ""); // filesystem.Error in types.mojom must be the same as base::File::Error. static_assert(static_cast(filesystem::mojom::FileError::OK) == static_cast(base::File::FILE_OK), ""); static_assert(static_cast(filesystem::mojom::FileError::FAILED) == static_cast(base::File::FILE_ERROR_FAILED), ""); static_assert(static_cast(filesystem::mojom::FileError::IN_USE) == static_cast(base::File::FILE_ERROR_IN_USE), ""); static_assert(static_cast(filesystem::mojom::FileError::EXISTS) == static_cast(base::File::FILE_ERROR_EXISTS), ""); static_assert(static_cast(filesystem::mojom::FileError::NOT_FOUND) == static_cast(base::File::FILE_ERROR_NOT_FOUND), ""); static_assert(static_cast(filesystem::mojom::FileError::ACCESS_DENIED) == static_cast(base::File::FILE_ERROR_ACCESS_DENIED), ""); static_assert(static_cast(filesystem::mojom::FileError::TOO_MANY_OPENED) == static_cast(base::File::FILE_ERROR_TOO_MANY_OPENED), ""); static_assert(static_cast(filesystem::mojom::FileError::NO_MEMORY) == static_cast(base::File::FILE_ERROR_NO_MEMORY), ""); static_assert(static_cast(filesystem::mojom::FileError::NO_SPACE) == static_cast(base::File::FILE_ERROR_NO_SPACE), ""); static_assert(static_cast(filesystem::mojom::FileError::NOT_A_DIRECTORY) == static_cast(base::File::FILE_ERROR_NOT_A_DIRECTORY), ""); static_assert( static_cast(filesystem::mojom::FileError::INVALID_OPERATION) == static_cast(base::File::FILE_ERROR_INVALID_OPERATION), ""); static_assert(static_cast(filesystem::mojom::FileError::SECURITY) == static_cast(base::File::FILE_ERROR_SECURITY), ""); static_assert(static_cast(filesystem::mojom::FileError::ABORT) == static_cast(base::File::FILE_ERROR_ABORT), ""); static_assert(static_cast(filesystem::mojom::FileError::NOT_A_FILE) == static_cast(base::File::FILE_ERROR_NOT_A_FILE), ""); static_assert(static_cast(filesystem::mojom::FileError::NOT_EMPTY) == static_cast(base::File::FILE_ERROR_NOT_EMPTY), ""); static_assert(static_cast(filesystem::mojom::FileError::INVALID_URL) == static_cast(base::File::FILE_ERROR_INVALID_URL), ""); static_assert(static_cast(filesystem::mojom::FileError::IO) == static_cast(base::File::FILE_ERROR_IO), ""); // filesystem.Whence in types.mojom must be the same as base::File::Whence. static_assert(static_cast(filesystem::mojom::Whence::FROM_BEGIN) == static_cast(base::File::FROM_BEGIN), ""); static_assert(static_cast(filesystem::mojom::Whence::FROM_CURRENT) == static_cast(base::File::FROM_CURRENT), ""); static_assert(static_cast(filesystem::mojom::Whence::FROM_END) == static_cast(base::File::FROM_END), ""); namespace filesystem { mojom::FileError IsWhenceValid(mojom::Whence whence) { return (whence == mojom::Whence::FROM_CURRENT || whence == mojom::Whence::FROM_BEGIN || whence == mojom::Whence::FROM_END) ? mojom::FileError::OK : mojom::FileError::INVALID_OPERATION; } mojom::FileError IsOffsetValid(int64_t offset) { return (offset >= std::numeric_limits::min() && offset <= std::numeric_limits::max()) ? mojom::FileError::OK : mojom::FileError::INVALID_OPERATION; } mojom::FileError GetError(const base::File& file) { return static_cast(file.error_details()); } mojom::FileInformationPtr MakeFileInformation(const base::File::Info& info) { mojom::FileInformationPtr file_info(mojom::FileInformation::New()); file_info->type = info.is_directory ? mojom::FsFileType::DIRECTORY : mojom::FsFileType::REGULAR_FILE; file_info->size = info.size; file_info->atime = info.last_accessed.ToDoubleT(); file_info->mtime = info.last_modified.ToDoubleT(); file_info->ctime = info.creation_time.ToDoubleT(); return file_info; } mojom::FileError ValidatePath(const std::string& raw_path, const base::FilePath& filesystem_base, base::FilePath* out) { if (!base::IsStringUTF8(raw_path)) return mojom::FileError::INVALID_OPERATION; #if defined(OS_POSIX) base::FilePath::StringType path = raw_path; #elif defined(OS_WIN) base::FilePath::StringType path = base::UTF8ToUTF16(raw_path); #endif // TODO(erg): This isn't really what we want. FilePath::AppendRelativePath() // is closer. We need to deal with entirely hostile apps trying to bust this // function to use a possibly maliciously provided |raw_path| to bust out of // |filesystem_base|. base::FilePath full_path = filesystem_base.Append(path); if (full_path.ReferencesParent()) { // TODO(erg): For now, if it references a parent, we'll consider this bad. return mojom::FileError::ACCESS_DENIED; } *out = full_path; return mojom::FileError::OK; } } // namespace filesystem