2 * Copyright © 2009 Carl Worth
4 * This program is free software: you can redistribute it and/or modify
5 * it under the terms of the GNU General Public License as published by
6 * the Free Software Foundation, either version 3 of the License, or
7 * (at your option) any later version.
9 * This program is distributed in the hope that it will be useful,
10 * but WITHOUT ANY WARRANTY; without even the implied warranty of
11 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12 * GNU General Public License for more details.
14 * You should have received a copy of the GNU General Public License
15 * along with this program. If not, see https://www.gnu.org/licenses/ .
17 * Author: Carl Worth <cworth@cworth.org>
20 #include "notmuch-private.h"
22 #include <gmime/gmime.h>
23 #include <gmime/gmime-filter.h>
33 int next_if_not_match;
36 /* Simple, linear state-transition diagram for the uuencode filter.
38 * If the character being processed is within the range of [a, b]
39 * for the current state then we transition next_if_match
40 * state. If not, we transition to the next_if_not_match state.
42 * The final two states are special in that they are the states in
43 * which we discard data. */
44 static const int first_uuencode_skipping_state = 11;
45 static const scanner_state_t uuencode_states[] = {
46 { 0, 'b', 'b', 1, 0 },
47 { 1, 'e', 'e', 2, 0 },
48 { 2, 'g', 'g', 3, 0 },
49 { 3, 'i', 'i', 4, 0 },
50 { 4, 'n', 'n', 5, 0 },
51 { 5, ' ', ' ', 6, 0 },
52 { 6, '0', '7', 7, 0 },
53 { 7, '0', '7', 8, 0 },
54 { 8, '0', '7', 9, 0 },
55 { 9, ' ', ' ', 10, 0 },
56 { 10, '\n', '\n', 11, 10 },
57 { 11, 'M', 'M', 12, 0 },
58 { 12, ' ', '`', 12, 11 }
61 /* The following table is intended to implement this DFA (in 'dot'
62 * format). Note that 2 and 3 are "hidden" states used to step through
63 * the possible out edges of state 1.
65 * digraph html_filter {
69 * 1 -> 5 [label="\""];
74 * 5 -> 1 [label="\""];
78 static const int first_html_skipping_state = 1;
79 static const scanner_state_t html_states[] = {
80 { 0, '<', '<', 1, 0 },
81 { 1, '\'', '\'', 4, 2 }, /* scanning for quote or > */
82 { 1, '"', '"', 5, 3 },
83 { 1, '>', '>', 0, 1 },
84 { 4, '\'', '\'', 1, 4 }, /* inside single quotes */
85 { 5, '"', '"', 1, 5 }, /* inside double quotes */
88 /* Oh, how I wish that gobject didn't require so much noisy boilerplate!
89 * (Though I have at least eliminated some of the stock set...) */
90 typedef struct _NotmuchFilterDiscardNonTerm NotmuchFilterDiscardNonTerm;
91 typedef struct _NotmuchFilterDiscardNonTermClass NotmuchFilterDiscardNonTermClass;
94 * NotmuchFilterDiscardNonTerm:
96 * @parent_object: parent #GMimeFilter
97 * @encode: encoding vs decoding
98 * @state: State of the parser
100 * A filter to discard uuencoded portions of an email.
102 * A uuencoded portion is identified as beginning with a line
105 * begin [0-7][0-7][0-7] .*
107 * After that detection, and beginning with the following line,
108 * characters will be discarded as long as the first character of each
109 * line begins with M and subsequent characters on the line are within
110 * the range of ASCII characters from ' ' to '`'.
112 * This is not a perfect UUencode filter. It's possible to have a
113 * message that will legitimately match that pattern, (so that some
114 * legitimate content is discarded). And for most UUencoded files, the
115 * final line of encoded data (the line not starting with M) will be
118 struct _NotmuchFilterDiscardNonTerm {
119 GMimeFilter parent_object;
120 GMimeContentType *content_type;
122 int first_skipping_state;
123 const scanner_state_t *states;
126 struct _NotmuchFilterDiscardNonTermClass {
127 GMimeFilterClass parent_class;
130 static GMimeFilter *notmuch_filter_discard_non_term_new (GMimeContentType *content);
132 static void notmuch_filter_discard_non_term_finalize (GObject *object);
134 static GMimeFilter *filter_copy (GMimeFilter *filter);
135 static void filter_filter (GMimeFilter *filter, char *in, size_t len, size_t prespace,
136 char **out, size_t *outlen, size_t *outprespace);
137 static void filter_complete (GMimeFilter *filter, char *in, size_t len, size_t prespace,
138 char **out, size_t *outlen, size_t *outprespace);
139 static void filter_reset (GMimeFilter *filter);
142 static GMimeFilterClass *parent_class = NULL;
145 notmuch_filter_discard_non_term_class_init (NotmuchFilterDiscardNonTermClass *klass,
146 unused (void *class_data))
148 GObjectClass *object_class = G_OBJECT_CLASS (klass);
149 GMimeFilterClass *filter_class = GMIME_FILTER_CLASS (klass);
151 object_class->finalize = notmuch_filter_discard_non_term_finalize;
153 filter_class->copy = filter_copy;
154 filter_class->filter = filter_filter;
155 filter_class->complete = filter_complete;
156 filter_class->reset = filter_reset;
160 notmuch_filter_discard_non_term_finalize (GObject *object)
162 G_OBJECT_CLASS (parent_class)->finalize (object);
166 filter_copy (GMimeFilter *gmime_filter)
168 NotmuchFilterDiscardNonTerm *filter = (NotmuchFilterDiscardNonTerm *) gmime_filter;
170 return notmuch_filter_discard_non_term_new (filter->content_type);
174 filter_filter (GMimeFilter *gmime_filter, char *inbuf, size_t inlen, size_t prespace,
175 char **outbuf, size_t *outlen, size_t *outprespace)
177 NotmuchFilterDiscardNonTerm *filter = (NotmuchFilterDiscardNonTerm *) gmime_filter;
178 const scanner_state_t *states = filter->states;
179 const char *inptr = inbuf;
180 const char *inend = inbuf + inlen;
187 g_mime_filter_set_size (gmime_filter, inlen, false);
188 outptr = gmime_filter->outbuf;
190 next = filter->state;
191 while (inptr < inend) {
192 /* Each state is defined by a contiguous set of rows of the
193 * state table marked by a common value for '.state'. The
194 * state numbers must be equal to the index of the first row
195 * in a given state; thus the loop condition here looks for a
196 * jump to a first row of a state, which is a real transition
197 * in the underlying DFA.
200 if (*inptr >= states[next].a && *inptr <= states[next].b) {
201 next = states[next].next_if_match;
203 next = states[next].next_if_not_match;
206 } while (next != states[next].state);
208 if (filter->state < filter->first_skipping_state)
211 filter->state = next;
215 *outlen = outptr - gmime_filter->outbuf;
216 *outprespace = gmime_filter->outpre;
217 *outbuf = gmime_filter->outbuf;
221 filter_complete (GMimeFilter *filter, char *inbuf, size_t inlen, size_t prespace,
222 char **outbuf, size_t *outlen, size_t *outprespace)
225 filter_filter (filter, inbuf, inlen, prespace, outbuf, outlen, outprespace);
229 filter_reset (GMimeFilter *gmime_filter)
231 NotmuchFilterDiscardNonTerm *filter = (NotmuchFilterDiscardNonTerm *) gmime_filter;
237 * notmuch_filter_discard_non_term_new:
239 * Returns: a new #NotmuchFilterDiscardNonTerm filter.
241 static GType type = 0;
243 static const GTypeInfo info = {
244 .class_size = sizeof (NotmuchFilterDiscardNonTermClass),
246 .base_finalize = NULL,
247 .class_init = (GClassInitFunc) notmuch_filter_discard_non_term_class_init,
248 .class_finalize = NULL,
250 .instance_size = sizeof (NotmuchFilterDiscardNonTerm),
252 .instance_init = NULL,
257 _notmuch_filter_init () {
258 type = g_type_register_static (GMIME_TYPE_FILTER, "NotmuchFilterDiscardNonTerm", &info,
260 parent_class = (GMimeFilterClass *) g_type_class_ref (GMIME_TYPE_FILTER);
264 notmuch_filter_discard_non_term_new (GMimeContentType *content_type)
266 NotmuchFilterDiscardNonTerm *filter;
268 filter = (NotmuchFilterDiscardNonTerm *) g_object_new (type, NULL);
269 filter->content_type = content_type;
271 if (g_mime_content_type_is_type (content_type, "text", "html")) {
272 filter->states = html_states;
273 filter->first_skipping_state = first_html_skipping_state;
275 filter->states = uuencode_states;
276 filter->first_skipping_state = first_uuencode_skipping_state;
279 return (GMimeFilter *) filter;
282 /* We're finally down to a single (NAME + address) email "mailbox". */
284 _index_address_mailbox (notmuch_message_t *message,
285 const char *prefix_name,
286 InternetAddress *address)
288 InternetAddressMailbox *mailbox = INTERNET_ADDRESS_MAILBOX (address);
289 const char *name, *addr, *combined;
290 void *local = talloc_new (message);
292 name = internet_address_get_name (address);
293 addr = internet_address_mailbox_get_addr (mailbox);
295 /* Combine the name and address and index them as a phrase. */
297 combined = talloc_asprintf (local, "%s %s", name, addr);
304 _notmuch_message_gen_terms (message, prefix_name, combined);
310 _index_address_list (notmuch_message_t *message,
311 const char *prefix_name,
312 InternetAddressList *addresses);
314 /* The outer loop over the InternetAddressList wasn't quite enough.
315 * There can actually be a tree here where a single member of the list
316 * is a "group" containing another list. Recurse please.
319 _index_address_group (notmuch_message_t *message,
320 const char *prefix_name,
321 InternetAddress *address)
323 InternetAddressGroup *group;
324 InternetAddressList *list;
326 group = INTERNET_ADDRESS_GROUP (address);
327 list = internet_address_group_get_members (group);
332 _index_address_list (message, prefix_name, list);
336 _index_address_list (notmuch_message_t *message,
337 const char *prefix_name,
338 InternetAddressList *addresses)
341 InternetAddress *address;
343 if (addresses == NULL)
346 for (i = 0; i < internet_address_list_length (addresses); i++) {
347 address = internet_address_list_get_address (addresses, i);
348 if (INTERNET_ADDRESS_IS_MAILBOX (address)) {
349 _index_address_mailbox (message, prefix_name, address);
350 } else if (INTERNET_ADDRESS_IS_GROUP (address)) {
351 _index_address_group (message, prefix_name, address);
353 INTERNAL_ERROR ("GMime InternetAddress is neither a mailbox nor a group.\n");
359 _index_content_type (notmuch_message_t *message, GMimeObject *part)
361 GMimeContentType *content_type = g_mime_object_get_content_type (part);
364 char *mime_string = g_mime_content_type_get_mime_type (content_type);
366 _notmuch_message_gen_terms (message, "mimetype", mime_string);
367 g_free (mime_string);
373 _index_encrypted_mime_part (notmuch_message_t *message, notmuch_indexopts_t *indexopts,
375 _notmuch_message_crypto_t *msg_crypto);
378 _index_pkcs7_part (notmuch_message_t *message,
379 notmuch_indexopts_t *indexopts,
381 _notmuch_message_crypto_t *msg_crypto);
383 /* Callback to generate terms for each mime part of a message. */
385 _index_mime_part (notmuch_message_t *message,
386 notmuch_indexopts_t *indexopts,
388 _notmuch_message_crypto_t *msg_crypto)
390 GMimeStream *stream, *filter;
391 GMimeFilter *discard_non_term_filter;
392 GMimeDataWrapper *wrapper;
393 GByteArray *byte_array;
394 GMimeContentDisposition *disposition;
395 GMimeContentType *content_type;
398 GMimeObject *repaired_part = NULL;
401 _notmuch_database_log (notmuch_message_get_database (message),
402 "Warning: Not indexing empty mime part.\n");
406 repaired_part = _notmuch_repair_mixed_up_mangled (part);
408 /* This was likely "Mixed Up" in transit! We will instead use
409 * the more likely-to-be-correct variant. */
410 notmuch_message_add_property (message, "index.repaired", "mixedup");
411 part = repaired_part;
414 _index_content_type (message, part);
416 if (GMIME_IS_MULTIPART (part)) {
417 GMimeMultipart *multipart = GMIME_MULTIPART (part);
420 if (GMIME_IS_MULTIPART_SIGNED (multipart))
421 _notmuch_message_add_term (message, "tag", "signed");
423 if (GMIME_IS_MULTIPART_ENCRYPTED (multipart))
424 _notmuch_message_add_term (message, "tag", "encrypted");
426 for (i = 0; i < g_mime_multipart_get_count (multipart); i++) {
428 if (GMIME_IS_MULTIPART_SIGNED (multipart)) {
429 /* Don't index the signature, but index its content type. */
430 if (i == GMIME_MULTIPART_SIGNED_SIGNATURE) {
431 _index_content_type (message,
432 g_mime_multipart_get_part (multipart, i));
434 } else if (i != GMIME_MULTIPART_SIGNED_CONTENT) {
435 _notmuch_database_log (notmuch_message_get_database (message),
436 "Warning: Unexpected extra parts of multipart/signed. Indexing anyway.\n");
439 if (GMIME_IS_MULTIPART_ENCRYPTED (multipart)) {
440 _index_content_type (message,
441 g_mime_multipart_get_part (multipart, i));
442 if (i == GMIME_MULTIPART_ENCRYPTED_CONTENT) {
443 _index_encrypted_mime_part (message, indexopts,
447 if (i != GMIME_MULTIPART_ENCRYPTED_VERSION) {
448 _notmuch_database_log (notmuch_message_get_database (message),
449 "Warning: Unexpected extra parts of multipart/encrypted.\n");
454 child = g_mime_multipart_get_part (multipart, i);
455 GMimeObject *toindex = child;
456 if (_notmuch_message_crypto_potential_payload (msg_crypto, child, part, i) &&
457 msg_crypto->decryption_status == NOTMUCH_MESSAGE_DECRYPTED_FULL) {
458 toindex = _notmuch_repair_crypto_payload_skip_legacy_display (child);
459 if (toindex != child)
460 notmuch_message_add_property (message, "index.repaired",
461 "skip-protected-headers-legacy-display");
463 _index_mime_part (message, indexopts, toindex, msg_crypto);
468 if (GMIME_IS_MESSAGE_PART (part)) {
469 GMimeMessage *mime_message;
471 mime_message = g_mime_message_part_get_message (GMIME_MESSAGE_PART (part));
473 _index_mime_part (message, indexopts, g_mime_message_get_mime_part (mime_message),
479 if (GMIME_IS_APPLICATION_PKCS7_MIME (part)) {
480 _index_pkcs7_part (message, indexopts, part, msg_crypto);
484 if (! (GMIME_IS_PART (part))) {
485 _notmuch_database_log (notmuch_message_get_database (message),
486 "Warning: Not indexing unknown mime part: %s.\n",
487 g_type_name (G_OBJECT_TYPE (part)));
491 disposition = g_mime_object_get_content_disposition (part);
493 strcasecmp (g_mime_content_disposition_get_disposition (disposition),
494 GMIME_DISPOSITION_ATTACHMENT) == 0) {
495 const char *filename = g_mime_part_get_filename (GMIME_PART (part));
497 _notmuch_message_add_term (message, "tag", "attachment");
498 _notmuch_message_gen_terms (message, "attachment", filename);
500 /* XXX: Would be nice to call out to something here to parse
501 * the attachment into text and then index that. */
505 byte_array = g_byte_array_new ();
507 stream = g_mime_stream_mem_new_with_byte_array (byte_array);
508 g_mime_stream_mem_set_owner (GMIME_STREAM_MEM (stream), false);
510 filter = g_mime_stream_filter_new (stream);
512 content_type = g_mime_object_get_content_type (part);
513 discard_non_term_filter = notmuch_filter_discard_non_term_new (content_type);
515 g_mime_stream_filter_add (GMIME_STREAM_FILTER (filter),
516 discard_non_term_filter);
518 charset = g_mime_object_get_content_type_parameter (part, "charset");
520 GMimeFilter *charset_filter;
521 charset_filter = g_mime_filter_charset_new (charset, "UTF-8");
522 /* This result can be NULL for things like "unknown-8bit".
523 * Don't set a NULL filter as that makes GMime print
524 * annoying assertion-failure messages on stderr. */
525 if (charset_filter) {
526 g_mime_stream_filter_add (GMIME_STREAM_FILTER (filter),
528 g_object_unref (charset_filter);
532 wrapper = g_mime_part_get_content (GMIME_PART (part));
534 g_mime_data_wrapper_write_to_stream (wrapper, filter);
536 g_object_unref (stream);
537 g_object_unref (filter);
538 g_object_unref (discard_non_term_filter);
540 g_byte_array_append (byte_array, (guint8 *) "\0", 1);
541 body = (char *) g_byte_array_free (byte_array, false);
544 _notmuch_message_gen_terms (message, NULL, body);
550 g_object_unref (repaired_part);
553 /* descend (if desired) into the cleartext part of an encrypted MIME
554 * part while indexing. */
556 _index_encrypted_mime_part (notmuch_message_t *message,
557 notmuch_indexopts_t *indexopts,
558 GMimeObject *encrypted_data,
559 _notmuch_message_crypto_t *msg_crypto)
561 notmuch_status_t status;
563 notmuch_database_t *notmuch = NULL;
564 GMimeObject *clear = NULL;
566 if (! indexopts || (notmuch_indexopts_get_decrypt_policy (indexopts) == NOTMUCH_DECRYPT_FALSE))
569 notmuch = notmuch_message_get_database (message);
571 bool attempted = false;
572 GMimeDecryptResult *decrypt_result = NULL;
573 bool get_sk = (notmuch_indexopts_get_decrypt_policy (indexopts) == NOTMUCH_DECRYPT_TRUE);
575 clear = _notmuch_crypto_decrypt (&attempted, notmuch_indexopts_get_decrypt_policy (indexopts),
576 message, encrypted_data, get_sk ? &decrypt_result : NULL, &err);
579 if (err || ! clear) {
581 g_object_unref (decrypt_result);
583 _notmuch_database_log (notmuch, "Failed to decrypt during indexing. (%d:%d) [%s]\n",
584 err->domain, err->code, err->message);
587 _notmuch_database_log (notmuch, "Failed to decrypt during indexing. (unknown error)\n");
589 /* Indicate that we failed to decrypt during indexing */
590 status = notmuch_message_add_property (message, "index.decryption", "failure");
592 _notmuch_database_log_append (notmuch, "failed to add index.decryption "
593 "property (%d)\n", status);
596 if (decrypt_result) {
597 status = _notmuch_message_crypto_successful_decryption (msg_crypto);
599 _notmuch_database_log_append (notmuch, "failed to mark the message as decrypted (%s)\n",
600 notmuch_status_to_string (status));
602 status = notmuch_message_add_property (message, "session-key",
603 g_mime_decrypt_result_get_session_key (
606 _notmuch_database_log (notmuch, "failed to add session-key "
607 "property (%d)\n", status);
609 g_object_unref (decrypt_result);
611 GMimeObject *toindex = clear;
613 if (_notmuch_message_crypto_potential_payload (msg_crypto, clear, encrypted_data,
614 GMIME_MULTIPART_ENCRYPTED_CONTENT) &&
615 msg_crypto->decryption_status == NOTMUCH_MESSAGE_DECRYPTED_FULL) {
616 toindex = _notmuch_repair_crypto_payload_skip_legacy_display (clear);
617 if (toindex != clear)
618 notmuch_message_add_property (message, "index.repaired",
619 "skip-protected-headers-legacy-display");
621 _index_mime_part (message, indexopts, toindex, msg_crypto);
622 g_object_unref (clear);
624 status = notmuch_message_add_property (message, "index.decryption", "success");
626 _notmuch_database_log (notmuch, "failed to add index.decryption "
627 "property (%d)\n", status);
632 _index_pkcs7_part (notmuch_message_t *message,
633 notmuch_indexopts_t *indexopts,
635 _notmuch_message_crypto_t *msg_crypto)
637 GMimeApplicationPkcs7Mime *pkcs7;
638 GMimeSecureMimeType p7type;
639 GMimeObject *mimeobj = NULL;
640 GMimeSignatureList *sigs = NULL;
642 notmuch_database_t *notmuch = NULL;
644 pkcs7 = GMIME_APPLICATION_PKCS7_MIME (part);
645 p7type = g_mime_application_pkcs7_mime_get_smime_type (pkcs7);
646 notmuch = notmuch_message_get_database (message);
647 _index_content_type (message, part);
649 if (p7type == GMIME_SECURE_MIME_TYPE_SIGNED_DATA) {
650 sigs = g_mime_application_pkcs7_mime_verify (pkcs7, GMIME_VERIFY_NONE, &mimeobj, &err);
652 _notmuch_database_log (notmuch,
653 "Failed to verify PKCS#7 SignedData during indexing. (%d:%d) [%s]\n",
654 err->domain, err->code, err->message);
658 _notmuch_message_add_term (message, "tag", "signed");
659 GMimeObject *toindex = mimeobj;
660 if (_notmuch_message_crypto_potential_payload (msg_crypto, mimeobj, part, 0) &&
661 msg_crypto->decryption_status == NOTMUCH_MESSAGE_DECRYPTED_FULL) {
662 toindex = _notmuch_repair_crypto_payload_skip_legacy_display (mimeobj);
663 if (toindex != mimeobj)
664 notmuch_message_add_property (message, "index.repaired",
665 "skip-protected-headers-legacy-display");
667 _index_mime_part (message, indexopts, toindex, msg_crypto);
668 } else if (p7type == GMIME_SECURE_MIME_TYPE_ENVELOPED_DATA) {
669 _notmuch_message_add_term (message, "tag", "encrypted");
670 _index_encrypted_mime_part (message, indexopts,
674 _notmuch_database_log (notmuch, "Cannot currently handle PKCS#7 smime-type '%s'\n",
675 g_mime_object_get_content_type_parameter (part, "smime-type"));
679 g_object_unref (mimeobj);
681 g_object_unref (sigs);
684 static notmuch_status_t
685 _notmuch_message_index_user_headers (notmuch_message_t *message, GMimeMessage *mime_message)
688 notmuch_database_t *notmuch = notmuch_message_get_database (message);
689 notmuch_string_map_iterator_t *iter = _notmuch_database_user_headers (notmuch);
691 for (; _notmuch_string_map_iterator_valid (iter);
692 _notmuch_string_map_iterator_move_to_next (iter)) {
694 const char *prefix_name = _notmuch_string_map_iterator_key (iter);
696 const char *header_name = _notmuch_string_map_iterator_value (iter);
698 const char *header = g_mime_object_get_header (GMIME_OBJECT (mime_message), header_name);
700 _notmuch_message_gen_terms (message, prefix_name, header);
704 _notmuch_string_map_iterator_destroy (iter);
705 return NOTMUCH_STATUS_SUCCESS;
710 _notmuch_message_index_file (notmuch_message_t *message,
711 notmuch_indexopts_t *indexopts,
712 notmuch_message_file_t *message_file)
714 GMimeMessage *mime_message;
715 InternetAddressList *addresses;
717 notmuch_status_t status;
718 _notmuch_message_crypto_t *msg_crypto;
720 status = _notmuch_message_file_get_mime_message (message_file,
725 addresses = g_mime_message_get_from (mime_message);
727 _index_address_list (message, "from", addresses);
730 addresses = g_mime_message_get_all_recipients (mime_message);
732 _index_address_list (message, "to", addresses);
733 g_object_unref (addresses);
736 subject = g_mime_message_get_subject (mime_message);
737 _notmuch_message_gen_terms (message, "subject", subject);
739 status = _notmuch_message_index_user_headers (message, mime_message);
741 msg_crypto = _notmuch_message_crypto_new (NULL);
742 _index_mime_part (message, indexopts, g_mime_message_get_mime_part (mime_message), msg_crypto);
743 if (msg_crypto && msg_crypto->payload_subject) {
744 _notmuch_message_gen_terms (message, "subject", msg_crypto->payload_subject);
745 _notmuch_message_update_subject (message, msg_crypto->payload_subject);
748 talloc_free (msg_crypto);
750 return NOTMUCH_STATUS_SUCCESS;