File.php 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308
  1. <?php
  2. /**
  3. * SimplePie
  4. *
  5. * A PHP-Based RSS and Atom Feed Framework.
  6. * Takes the hard work out of managing a complete RSS/Atom solution.
  7. *
  8. * Copyright (c) 2004-2016, Ryan Parman, Geoffrey Sneddon, Ryan McCue, and contributors
  9. * All rights reserved.
  10. *
  11. * Redistribution and use in source and binary forms, with or without modification, are
  12. * permitted provided that the following conditions are met:
  13. *
  14. * * Redistributions of source code must retain the above copyright notice, this list of
  15. * conditions and the following disclaimer.
  16. *
  17. * * Redistributions in binary form must reproduce the above copyright notice, this list
  18. * of conditions and the following disclaimer in the documentation and/or other materials
  19. * provided with the distribution.
  20. *
  21. * * Neither the name of the SimplePie Team nor the names of its contributors may be used
  22. * to endorse or promote products derived from this software without specific prior
  23. * written permission.
  24. *
  25. * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" AND ANY EXPRESS
  26. * OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY
  27. * AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDERS
  28. * AND CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
  29. * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR
  30. * SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
  31. * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR
  32. * OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
  33. * POSSIBILITY OF SUCH DAMAGE.
  34. *
  35. * @package SimplePie
  36. * @copyright 2004-2016 Ryan Parman, Geoffrey Sneddon, Ryan McCue
  37. * @author Ryan Parman
  38. * @author Geoffrey Sneddon
  39. * @author Ryan McCue
  40. * @link http://simplepie.org/ SimplePie
  41. * @license http://www.opensource.org/licenses/bsd-license.php BSD License
  42. */
  43. /**
  44. * Used for fetching remote files and reading local files
  45. *
  46. * Supports HTTP 1.0 via cURL or fsockopen, with spotty HTTP 1.1 support
  47. *
  48. * This class can be overloaded with {@see SimplePie::set_file_class()}
  49. *
  50. * @package SimplePie
  51. * @subpackage HTTP
  52. * @todo Move to properly supporting RFC2616 (HTTP/1.1)
  53. */
  54. class SimplePie_File
  55. {
  56. var $url;
  57. var $useragent;
  58. var $success = true;
  59. var $headers = array();
  60. var $body;
  61. var $status_code;
  62. var $redirects = 0;
  63. var $error;
  64. var $method = SIMPLEPIE_FILE_SOURCE_NONE;
  65. var $permanent_url;
  66. public function __construct($url, $timeout = 10, $redirects = 5, $headers = null, $useragent = null, $force_fsockopen = false, $curl_options = array(), $syslog_enabled = SIMPLEPIE_SYSLOG)
  67. {
  68. if (class_exists('idna_convert'))
  69. {
  70. $idn = new idna_convert();
  71. $parsed = SimplePie_Misc::parse_url($url);
  72. $url = SimplePie_Misc::compress_parse_url($parsed['scheme'], $idn->encode($parsed['authority']), $parsed['path'], $parsed['query'], $parsed['fragment']);
  73. }
  74. $this->url = $url;
  75. $this->permanent_url = $url;
  76. $this->useragent = $useragent;
  77. if (preg_match('/^http(s)?:\/\//i', $url))
  78. {
  79. if ($syslog_enabled)
  80. {
  81. syslog(LOG_INFO, 'SimplePie GET ' . SimplePie_Misc::url_remove_credentials($url)); //FreshRSS
  82. }
  83. if ($useragent === null)
  84. {
  85. $useragent = ini_get('user_agent');
  86. $this->useragent = $useragent;
  87. }
  88. if (!is_array($headers))
  89. {
  90. $headers = array();
  91. }
  92. if (!$force_fsockopen && function_exists('curl_exec'))
  93. {
  94. $this->method = SIMPLEPIE_FILE_SOURCE_REMOTE | SIMPLEPIE_FILE_SOURCE_CURL;
  95. $fp = curl_init();
  96. $headers2 = array();
  97. foreach ($headers as $key => $value)
  98. {
  99. $headers2[] = "$key: $value";
  100. }
  101. if (version_compare(SimplePie_Misc::get_curl_version(), '7.10.5', '>='))
  102. {
  103. curl_setopt($fp, CURLOPT_ENCODING, '');
  104. }
  105. curl_setopt($fp, CURLOPT_URL, $url);
  106. curl_setopt($fp, CURLOPT_HEADER, 1);
  107. curl_setopt($fp, CURLOPT_RETURNTRANSFER, 1);
  108. curl_setopt($fp, CURLOPT_FAILONERROR, 1);
  109. curl_setopt($fp, CURLOPT_TIMEOUT, $timeout);
  110. curl_setopt($fp, CURLOPT_CONNECTTIMEOUT, $timeout);
  111. curl_setopt($fp, CURLOPT_REFERER, $url);
  112. curl_setopt($fp, CURLOPT_USERAGENT, $useragent);
  113. curl_setopt($fp, CURLOPT_HTTPHEADER, $headers2);
  114. if (!ini_get('open_basedir') && !ini_get('safe_mode') && version_compare(SimplePie_Misc::get_curl_version(), '7.15.2', '>='))
  115. {
  116. curl_setopt($fp, CURLOPT_FOLLOWLOCATION, 1);
  117. curl_setopt($fp, CURLOPT_MAXREDIRS, $redirects);
  118. }
  119. foreach ($curl_options as $curl_param => $curl_value)
  120. {
  121. curl_setopt($fp, $curl_param, $curl_value);
  122. }
  123. $this->headers = curl_exec($fp);
  124. if (curl_errno($fp) === 23 || curl_errno($fp) === 61)
  125. {
  126. curl_setopt($fp, CURLOPT_ENCODING, 'none');
  127. $this->headers = curl_exec($fp);
  128. }
  129. if (curl_errno($fp))
  130. {
  131. $this->error = 'cURL error ' . curl_errno($fp) . ': ' . curl_error($fp);
  132. $this->success = false;
  133. }
  134. else
  135. {
  136. $info = curl_getinfo($fp);
  137. curl_close($fp);
  138. $this->headers = explode("\r\n\r\n", $this->headers, $info['redirect_count'] + 1);
  139. $this->headers = array_pop($this->headers);
  140. $parser = new SimplePie_HTTP_Parser($this->headers);
  141. if ($parser->parse())
  142. {
  143. $this->headers = $parser->headers;
  144. $this->body = trim($parser->body);
  145. $this->status_code = $parser->status_code;
  146. if ((in_array($this->status_code, array(300, 301, 302, 303, 307)) || $this->status_code > 307 && $this->status_code < 400) && isset($this->headers['location']) && $this->redirects < $redirects)
  147. {
  148. $this->redirects++;
  149. $location = SimplePie_Misc::absolutize_url($this->headers['location'], $url);
  150. $previousStatusCode = $this->status_code;
  151. $this->__construct($location, $timeout, $redirects, $headers, $useragent, $force_fsockopen);
  152. $this->permanent_url = ($previousStatusCode == 301) ? $location : $url;
  153. return;
  154. }
  155. }
  156. }
  157. }
  158. else
  159. {
  160. $this->method = SIMPLEPIE_FILE_SOURCE_REMOTE | SIMPLEPIE_FILE_SOURCE_FSOCKOPEN;
  161. $url_parts = parse_url($url);
  162. $socket_host = $url_parts['host'];
  163. if (isset($url_parts['scheme']) && strtolower($url_parts['scheme']) === 'https')
  164. {
  165. $socket_host = "ssl://$url_parts[host]";
  166. $url_parts['port'] = 443;
  167. }
  168. if (!isset($url_parts['port']))
  169. {
  170. $url_parts['port'] = 80;
  171. }
  172. $fp = @fsockopen($socket_host, $url_parts['port'], $errno, $errstr, $timeout);
  173. if (!$fp)
  174. {
  175. $this->error = 'fsockopen error: ' . $errstr;
  176. $this->success = false;
  177. }
  178. else
  179. {
  180. stream_set_timeout($fp, $timeout);
  181. if (isset($url_parts['path']))
  182. {
  183. if (isset($url_parts['query']))
  184. {
  185. $get = "$url_parts[path]?$url_parts[query]";
  186. }
  187. else
  188. {
  189. $get = $url_parts['path'];
  190. }
  191. }
  192. else
  193. {
  194. $get = '/';
  195. }
  196. $out = "GET $get HTTP/1.1\r\n";
  197. $out .= "Host: $url_parts[host]\r\n";
  198. $out .= "User-Agent: $useragent\r\n";
  199. if (extension_loaded('zlib'))
  200. {
  201. $out .= "Accept-Encoding: x-gzip,gzip,deflate\r\n";
  202. }
  203. if (isset($url_parts['user']) && isset($url_parts['pass']))
  204. {
  205. $out .= "Authorization: Basic " . base64_encode("$url_parts[user]:$url_parts[pass]") . "\r\n";
  206. }
  207. foreach ($headers as $key => $value)
  208. {
  209. $out .= "$key: $value\r\n";
  210. }
  211. $out .= "Connection: Close\r\n\r\n";
  212. fwrite($fp, $out);
  213. $info = stream_get_meta_data($fp);
  214. $this->headers = '';
  215. while (!$info['eof'] && !$info['timed_out'])
  216. {
  217. $this->headers .= fread($fp, 1160);
  218. $info = stream_get_meta_data($fp);
  219. }
  220. if (!$info['timed_out'])
  221. {
  222. $parser = new SimplePie_HTTP_Parser($this->headers);
  223. if ($parser->parse())
  224. {
  225. $this->headers = $parser->headers;
  226. $this->body = $parser->body;
  227. $this->status_code = $parser->status_code;
  228. if ((in_array($this->status_code, array(300, 301, 302, 303, 307)) || $this->status_code > 307 && $this->status_code < 400) && isset($this->headers['location']) && $this->redirects < $redirects)
  229. {
  230. $this->redirects++;
  231. $location = SimplePie_Misc::absolutize_url($this->headers['location'], $url);
  232. $previousStatusCode = $this->status_code;
  233. $this->__construct($location, $timeout, $redirects, $headers, $useragent, $force_fsockopen);
  234. $this->permanent_url = ($previousStatusCode == 301) ? $location : $url;
  235. return;
  236. }
  237. if (isset($this->headers['content-encoding']))
  238. {
  239. // Hey, we act dumb elsewhere, so let's do that here too
  240. switch (strtolower(trim($this->headers['content-encoding'], "\x09\x0A\x0D\x20")))
  241. {
  242. case 'gzip':
  243. case 'x-gzip':
  244. $decoder = new SimplePie_gzdecode($this->body);
  245. if (!$decoder->parse())
  246. {
  247. $this->error = 'Unable to decode HTTP "gzip" stream';
  248. $this->success = false;
  249. }
  250. else
  251. {
  252. $this->body = trim($decoder->data);
  253. }
  254. break;
  255. case 'deflate':
  256. if (($decompressed = gzinflate($this->body)) !== false)
  257. {
  258. $this->body = $decompressed;
  259. }
  260. else if (($decompressed = gzuncompress($this->body)) !== false)
  261. {
  262. $this->body = $decompressed;
  263. }
  264. else if (function_exists('gzdecode') && ($decompressed = gzdecode($this->body)) !== false)
  265. {
  266. $this->body = $decompressed;
  267. }
  268. else
  269. {
  270. $this->error = 'Unable to decode HTTP "deflate" stream';
  271. $this->success = false;
  272. }
  273. break;
  274. default:
  275. $this->error = 'Unknown content coding';
  276. $this->success = false;
  277. }
  278. }
  279. }
  280. }
  281. else
  282. {
  283. $this->error = 'fsocket timed out';
  284. $this->success = false;
  285. }
  286. fclose($fp);
  287. }
  288. }
  289. }
  290. else
  291. {
  292. $this->method = SIMPLEPIE_FILE_SOURCE_LOCAL | SIMPLEPIE_FILE_SOURCE_FILE_GET_CONTENTS;
  293. if (empty($url) || !($this->body = trim(file_get_contents($url))))
  294. {
  295. $this->error = 'file_get_contents could not read the file';
  296. $this->success = false;
  297. }
  298. }
  299. }
  300. }