1*635a8641SAndroid Build Coastguard Worker // Copyright (c) 2012 The Chromium Authors. All rights reserved.
2*635a8641SAndroid Build Coastguard Worker // Use of this source code is governed by a BSD-style license that can be
3*635a8641SAndroid Build Coastguard Worker // found in the LICENSE file.
4*635a8641SAndroid Build Coastguard Worker
5*635a8641SAndroid Build Coastguard Worker // File utilities that use the ICU library go in this file.
6*635a8641SAndroid Build Coastguard Worker
7*635a8641SAndroid Build Coastguard Worker #include "base/i18n/file_util_icu.h"
8*635a8641SAndroid Build Coastguard Worker
9*635a8641SAndroid Build Coastguard Worker #include <stdint.h>
10*635a8641SAndroid Build Coastguard Worker
11*635a8641SAndroid Build Coastguard Worker #include <memory>
12*635a8641SAndroid Build Coastguard Worker
13*635a8641SAndroid Build Coastguard Worker #include "base/files/file_path.h"
14*635a8641SAndroid Build Coastguard Worker #include "base/i18n/icu_string_conversions.h"
15*635a8641SAndroid Build Coastguard Worker #include "base/i18n/string_compare.h"
16*635a8641SAndroid Build Coastguard Worker #include "base/logging.h"
17*635a8641SAndroid Build Coastguard Worker #include "base/macros.h"
18*635a8641SAndroid Build Coastguard Worker #include "base/memory/singleton.h"
19*635a8641SAndroid Build Coastguard Worker #include "base/strings/string_util.h"
20*635a8641SAndroid Build Coastguard Worker #include "base/strings/sys_string_conversions.h"
21*635a8641SAndroid Build Coastguard Worker #include "base/strings/utf_string_conversions.h"
22*635a8641SAndroid Build Coastguard Worker #include "build/build_config.h"
23*635a8641SAndroid Build Coastguard Worker #include "third_party/icu/source/common/unicode/uniset.h"
24*635a8641SAndroid Build Coastguard Worker #include "third_party/icu/source/i18n/unicode/coll.h"
25*635a8641SAndroid Build Coastguard Worker
26*635a8641SAndroid Build Coastguard Worker namespace base {
27*635a8641SAndroid Build Coastguard Worker namespace i18n {
28*635a8641SAndroid Build Coastguard Worker
29*635a8641SAndroid Build Coastguard Worker namespace {
30*635a8641SAndroid Build Coastguard Worker
31*635a8641SAndroid Build Coastguard Worker class IllegalCharacters {
32*635a8641SAndroid Build Coastguard Worker public:
GetInstance()33*635a8641SAndroid Build Coastguard Worker static IllegalCharacters* GetInstance() {
34*635a8641SAndroid Build Coastguard Worker return Singleton<IllegalCharacters>::get();
35*635a8641SAndroid Build Coastguard Worker }
36*635a8641SAndroid Build Coastguard Worker
DisallowedEverywhere(UChar32 ucs4)37*635a8641SAndroid Build Coastguard Worker bool DisallowedEverywhere(UChar32 ucs4) {
38*635a8641SAndroid Build Coastguard Worker return !!illegal_anywhere_->contains(ucs4);
39*635a8641SAndroid Build Coastguard Worker }
40*635a8641SAndroid Build Coastguard Worker
DisallowedLeadingOrTrailing(UChar32 ucs4)41*635a8641SAndroid Build Coastguard Worker bool DisallowedLeadingOrTrailing(UChar32 ucs4) {
42*635a8641SAndroid Build Coastguard Worker return !!illegal_at_ends_->contains(ucs4);
43*635a8641SAndroid Build Coastguard Worker }
44*635a8641SAndroid Build Coastguard Worker
IsAllowedName(const string16 & s)45*635a8641SAndroid Build Coastguard Worker bool IsAllowedName(const string16& s) {
46*635a8641SAndroid Build Coastguard Worker return s.empty() || (!!illegal_anywhere_->containsNone(
47*635a8641SAndroid Build Coastguard Worker icu::UnicodeString(s.c_str(), s.size())) &&
48*635a8641SAndroid Build Coastguard Worker !illegal_at_ends_->contains(*s.begin()) &&
49*635a8641SAndroid Build Coastguard Worker !illegal_at_ends_->contains(*s.rbegin()));
50*635a8641SAndroid Build Coastguard Worker }
51*635a8641SAndroid Build Coastguard Worker
52*635a8641SAndroid Build Coastguard Worker private:
53*635a8641SAndroid Build Coastguard Worker friend class Singleton<IllegalCharacters>;
54*635a8641SAndroid Build Coastguard Worker friend struct DefaultSingletonTraits<IllegalCharacters>;
55*635a8641SAndroid Build Coastguard Worker
56*635a8641SAndroid Build Coastguard Worker IllegalCharacters();
57*635a8641SAndroid Build Coastguard Worker ~IllegalCharacters() = default;
58*635a8641SAndroid Build Coastguard Worker
59*635a8641SAndroid Build Coastguard Worker // set of characters considered invalid anywhere inside a filename.
60*635a8641SAndroid Build Coastguard Worker std::unique_ptr<icu::UnicodeSet> illegal_anywhere_;
61*635a8641SAndroid Build Coastguard Worker
62*635a8641SAndroid Build Coastguard Worker // set of characters considered invalid at either end of a filename.
63*635a8641SAndroid Build Coastguard Worker std::unique_ptr<icu::UnicodeSet> illegal_at_ends_;
64*635a8641SAndroid Build Coastguard Worker
65*635a8641SAndroid Build Coastguard Worker DISALLOW_COPY_AND_ASSIGN(IllegalCharacters);
66*635a8641SAndroid Build Coastguard Worker };
67*635a8641SAndroid Build Coastguard Worker
IllegalCharacters()68*635a8641SAndroid Build Coastguard Worker IllegalCharacters::IllegalCharacters() {
69*635a8641SAndroid Build Coastguard Worker UErrorCode everywhere_status = U_ZERO_ERROR;
70*635a8641SAndroid Build Coastguard Worker UErrorCode ends_status = U_ZERO_ERROR;
71*635a8641SAndroid Build Coastguard Worker // Control characters, formatting characters, non-characters, path separators,
72*635a8641SAndroid Build Coastguard Worker // and some printable ASCII characters regarded as dangerous ('"*/:<>?\\').
73*635a8641SAndroid Build Coastguard Worker // See http://blogs.msdn.com/michkap/archive/2006/11/03/941420.aspx
74*635a8641SAndroid Build Coastguard Worker // and http://msdn2.microsoft.com/en-us/library/Aa365247.aspx
75*635a8641SAndroid Build Coastguard Worker // Note that code points in the "Other, Format" (Cf) category are ignored on
76*635a8641SAndroid Build Coastguard Worker // HFS+ despite the ZERO_WIDTH_JOINER and ZERO_WIDTH_NON-JOINER being
77*635a8641SAndroid Build Coastguard Worker // legitimate in Arabic and some S/SE Asian scripts. In addition tilde (~) is
78*635a8641SAndroid Build Coastguard Worker // also excluded due to the possibility of interacting poorly with short
79*635a8641SAndroid Build Coastguard Worker // filenames on VFAT. (Related to CVE-2014-9390)
80*635a8641SAndroid Build Coastguard Worker illegal_anywhere_.reset(new icu::UnicodeSet(
81*635a8641SAndroid Build Coastguard Worker UNICODE_STRING_SIMPLE("[[\"~*/:<>?\\\\|][:Cc:][:Cf:]]"),
82*635a8641SAndroid Build Coastguard Worker everywhere_status));
83*635a8641SAndroid Build Coastguard Worker illegal_at_ends_.reset(new icu::UnicodeSet(
84*635a8641SAndroid Build Coastguard Worker UNICODE_STRING_SIMPLE("[[:WSpace:][.]]"), ends_status));
85*635a8641SAndroid Build Coastguard Worker DCHECK(U_SUCCESS(everywhere_status));
86*635a8641SAndroid Build Coastguard Worker DCHECK(U_SUCCESS(ends_status));
87*635a8641SAndroid Build Coastguard Worker
88*635a8641SAndroid Build Coastguard Worker // Add non-characters. If this becomes a performance bottleneck by
89*635a8641SAndroid Build Coastguard Worker // any chance, do not add these to |set| and change IsFilenameLegal()
90*635a8641SAndroid Build Coastguard Worker // to check |ucs4 & 0xFFFEu == 0xFFFEu|, in addiition to calling
91*635a8641SAndroid Build Coastguard Worker // IsAllowedName().
92*635a8641SAndroid Build Coastguard Worker illegal_anywhere_->add(0xFDD0, 0xFDEF);
93*635a8641SAndroid Build Coastguard Worker for (int i = 0; i <= 0x10; ++i) {
94*635a8641SAndroid Build Coastguard Worker int plane_base = 0x10000 * i;
95*635a8641SAndroid Build Coastguard Worker illegal_anywhere_->add(plane_base + 0xFFFE, plane_base + 0xFFFF);
96*635a8641SAndroid Build Coastguard Worker }
97*635a8641SAndroid Build Coastguard Worker illegal_anywhere_->freeze();
98*635a8641SAndroid Build Coastguard Worker illegal_at_ends_->freeze();
99*635a8641SAndroid Build Coastguard Worker }
100*635a8641SAndroid Build Coastguard Worker
101*635a8641SAndroid Build Coastguard Worker } // namespace
102*635a8641SAndroid Build Coastguard Worker
IsFilenameLegal(const string16 & file_name)103*635a8641SAndroid Build Coastguard Worker bool IsFilenameLegal(const string16& file_name) {
104*635a8641SAndroid Build Coastguard Worker return IllegalCharacters::GetInstance()->IsAllowedName(file_name);
105*635a8641SAndroid Build Coastguard Worker }
106*635a8641SAndroid Build Coastguard Worker
ReplaceIllegalCharactersInPath(FilePath::StringType * file_name,char replace_char)107*635a8641SAndroid Build Coastguard Worker void ReplaceIllegalCharactersInPath(FilePath::StringType* file_name,
108*635a8641SAndroid Build Coastguard Worker char replace_char) {
109*635a8641SAndroid Build Coastguard Worker IllegalCharacters* illegal = IllegalCharacters::GetInstance();
110*635a8641SAndroid Build Coastguard Worker
111*635a8641SAndroid Build Coastguard Worker DCHECK(!(illegal->DisallowedEverywhere(replace_char)));
112*635a8641SAndroid Build Coastguard Worker DCHECK(!(illegal->DisallowedLeadingOrTrailing(replace_char)));
113*635a8641SAndroid Build Coastguard Worker
114*635a8641SAndroid Build Coastguard Worker int cursor = 0; // The ICU macros expect an int.
115*635a8641SAndroid Build Coastguard Worker while (cursor < static_cast<int>(file_name->size())) {
116*635a8641SAndroid Build Coastguard Worker int char_begin = cursor;
117*635a8641SAndroid Build Coastguard Worker uint32_t code_point;
118*635a8641SAndroid Build Coastguard Worker #if defined(OS_WIN)
119*635a8641SAndroid Build Coastguard Worker // Windows uses UTF-16 encoding for filenames.
120*635a8641SAndroid Build Coastguard Worker U16_NEXT(file_name->data(), cursor, static_cast<int>(file_name->length()),
121*635a8641SAndroid Build Coastguard Worker code_point);
122*635a8641SAndroid Build Coastguard Worker #elif defined(OS_POSIX) || defined(OS_FUCHSIA)
123*635a8641SAndroid Build Coastguard Worker // Mac and Chrome OS use UTF-8 encoding for filenames.
124*635a8641SAndroid Build Coastguard Worker // Linux doesn't actually define file system encoding. Try to parse as
125*635a8641SAndroid Build Coastguard Worker // UTF-8.
126*635a8641SAndroid Build Coastguard Worker U8_NEXT(file_name->data(), cursor, static_cast<int>(file_name->length()),
127*635a8641SAndroid Build Coastguard Worker code_point);
128*635a8641SAndroid Build Coastguard Worker #else
129*635a8641SAndroid Build Coastguard Worker #error Unsupported platform
130*635a8641SAndroid Build Coastguard Worker #endif
131*635a8641SAndroid Build Coastguard Worker
132*635a8641SAndroid Build Coastguard Worker if (illegal->DisallowedEverywhere(code_point) ||
133*635a8641SAndroid Build Coastguard Worker ((char_begin == 0 || cursor == static_cast<int>(file_name->length())) &&
134*635a8641SAndroid Build Coastguard Worker illegal->DisallowedLeadingOrTrailing(code_point))) {
135*635a8641SAndroid Build Coastguard Worker file_name->replace(char_begin, cursor - char_begin, 1, replace_char);
136*635a8641SAndroid Build Coastguard Worker // We just made the potentially multi-byte/word char into one that only
137*635a8641SAndroid Build Coastguard Worker // takes one byte/word, so need to adjust the cursor to point to the next
138*635a8641SAndroid Build Coastguard Worker // character again.
139*635a8641SAndroid Build Coastguard Worker cursor = char_begin + 1;
140*635a8641SAndroid Build Coastguard Worker }
141*635a8641SAndroid Build Coastguard Worker }
142*635a8641SAndroid Build Coastguard Worker }
143*635a8641SAndroid Build Coastguard Worker
LocaleAwareCompareFilenames(const FilePath & a,const FilePath & b)144*635a8641SAndroid Build Coastguard Worker bool LocaleAwareCompareFilenames(const FilePath& a, const FilePath& b) {
145*635a8641SAndroid Build Coastguard Worker UErrorCode error_code = U_ZERO_ERROR;
146*635a8641SAndroid Build Coastguard Worker // Use the default collator. The default locale should have been properly
147*635a8641SAndroid Build Coastguard Worker // set by the time this constructor is called.
148*635a8641SAndroid Build Coastguard Worker std::unique_ptr<icu::Collator> collator(
149*635a8641SAndroid Build Coastguard Worker icu::Collator::createInstance(error_code));
150*635a8641SAndroid Build Coastguard Worker DCHECK(U_SUCCESS(error_code));
151*635a8641SAndroid Build Coastguard Worker // Make it case-sensitive.
152*635a8641SAndroid Build Coastguard Worker collator->setStrength(icu::Collator::TERTIARY);
153*635a8641SAndroid Build Coastguard Worker
154*635a8641SAndroid Build Coastguard Worker #if defined(OS_WIN)
155*635a8641SAndroid Build Coastguard Worker return CompareString16WithCollator(*collator, WideToUTF16(a.value()),
156*635a8641SAndroid Build Coastguard Worker WideToUTF16(b.value())) == UCOL_LESS;
157*635a8641SAndroid Build Coastguard Worker
158*635a8641SAndroid Build Coastguard Worker #elif defined(OS_POSIX) || defined(OS_FUCHSIA)
159*635a8641SAndroid Build Coastguard Worker // On linux, the file system encoding is not defined. We assume
160*635a8641SAndroid Build Coastguard Worker // SysNativeMBToWide takes care of it.
161*635a8641SAndroid Build Coastguard Worker return CompareString16WithCollator(
162*635a8641SAndroid Build Coastguard Worker *collator, WideToUTF16(SysNativeMBToWide(a.value())),
163*635a8641SAndroid Build Coastguard Worker WideToUTF16(SysNativeMBToWide(b.value()))) == UCOL_LESS;
164*635a8641SAndroid Build Coastguard Worker #endif
165*635a8641SAndroid Build Coastguard Worker }
166*635a8641SAndroid Build Coastguard Worker
NormalizeFileNameEncoding(FilePath * file_name)167*635a8641SAndroid Build Coastguard Worker void NormalizeFileNameEncoding(FilePath* file_name) {
168*635a8641SAndroid Build Coastguard Worker #if defined(OS_CHROMEOS)
169*635a8641SAndroid Build Coastguard Worker std::string normalized_str;
170*635a8641SAndroid Build Coastguard Worker if (ConvertToUtf8AndNormalize(file_name->BaseName().value(), kCodepageUTF8,
171*635a8641SAndroid Build Coastguard Worker &normalized_str) &&
172*635a8641SAndroid Build Coastguard Worker !normalized_str.empty()) {
173*635a8641SAndroid Build Coastguard Worker *file_name = file_name->DirName().Append(FilePath(normalized_str));
174*635a8641SAndroid Build Coastguard Worker }
175*635a8641SAndroid Build Coastguard Worker #endif
176*635a8641SAndroid Build Coastguard Worker }
177*635a8641SAndroid Build Coastguard Worker
178*635a8641SAndroid Build Coastguard Worker } // namespace i18n
179*635a8641SAndroid Build Coastguard Worker } // namespace base
180