pkgfuncs.inc.php 18.6 KB
Newer Older
1
<?php
2
include_once("config.inc.php");
3
include_once("pkgbasefuncs.inc.php");
eric's avatar
eric committed
4

5
6
7
8
9
10
11
12
13
14
15
16
/**
 * Determine if the user can delete a specific package comment
 *
 * Only the comment submitter, Trusted Users, and Developers can delete
 * comments. This function is used for the backend side of comment deletion.
 *
 * @param string $comment_id The comment ID in the database
 * @param string $atype The account type of the user trying to delete a comment
 * @param string|int $uid The user ID of the individual trying to delete a comment
 *
 * @return bool True if the user can delete the comment, otherwise false
 */
17
function can_delete_comment($comment_id=0, $atype="", $uid=0) {
18
19
20
21
	if (!$uid) {
		/* Unauthenticated users cannot delete anything. */
		return false;
	}
22
	if ($atype == "Trusted User" || $atype == "Developer") {
23
		/* TUs and developers can delete any comment. */
24
		return true;
25
	}
Lukas Fleischer's avatar
Lukas Fleischer committed
26

27
	$dbh = DB::connect();
Lukas Fleischer's avatar
Lukas Fleischer committed
28
29
30

	$q = "SELECT COUNT(*) FROM PackageComments ";
	$q.= "WHERE ID = " . intval($comment_id) . " AND UsersID = " . $uid;
canyonknight's avatar
canyonknight committed
31
	$result = $dbh->query($q);
Lukas Fleischer's avatar
Lukas Fleischer committed
32
33
34

	if (!$result) {
		return false;
35
	}
Lukas Fleischer's avatar
Lukas Fleischer committed
36
37
38

	$row = $result->fetch(PDO::FETCH_NUM);
	return ($row[0] > 0);
39
}
eric's avatar
eric committed
40

41
42
43
44
45
46
47
48
49
50
51
52
/**
 * Determine if the user can delete a specific package comment using an array
 *
 * Only the comment submitter, Trusted Users, and Developers can delete
 * comments. This function is used for the frontend side of comment deletion.
 *
 * @param array $comment All database information relating a specific comment
 * @param string $atype The account type of the user trying to delete a comment
 * @param string|int $uid The user ID of the individual trying to delete a comment
 *
 * @return bool True if the user can delete the comment, otherwise false
 */
53
function can_delete_comment_array($comment, $atype="", $uid=0) {
54
55
56
57
	if (!$uid) {
		/* Unauthenticated users cannot delete anything. */
		return false;
	} elseif ($atype == "Trusted User" || $atype == "Developer") {
58
		/* TUs and developers can delete any comment. */
59
		return true;
60
	} else if ($comment['UsersID'] == $uid) {
61
		/* Users can delete their own comments. */
62
		return true;
63
	}
64
	return false;
65
66
}

67
68
69
70
71
72
73
74
75
76
/**
 * Determine if the visitor can submit blacklisted packages.
 *
 * Only Trusted Users and Developers can delete blacklisted packages. Packages
 * are blacklisted if they are include in the official repositories.
 *
 * @param string $atype The account type of the user
 *
 * @return bool True if the user can submit blacklisted packages, otherwise false
 */
77
function can_submit_blacklisted($atype = "") {
78
	if ($atype == "Trusted User" || $atype == "Developer") {
79
		/* Only TUs and developers can submit blacklisted packages. */
80
		return true;
81
82
	}
	else {
83
		return false;
84
85
86
	}
}

87
88
89
90
91
92
93
/**
 * Check to see if the package name already exists in the database
 *
 * @param string $name The package name to check
 *
 * @return string|void Package name if it already exists
 */
94
function pkg_from_name($name="") {
95
	if (!$name) {return NULL;}
96
	$dbh = DB::connect();
97
	$q = "SELECT ID FROM Packages ";
canyonknight's avatar
canyonknight committed
98
99
100
101
102
103
	$q.= "WHERE Name = " . $dbh->quote($name);
	$result = $dbh->query($q);
	if (!$result) {
		return;
	}
	$row = $result->fetch(PDO::FETCH_NUM);
104
105
106
	return $row[0];
}

107
108
109
110
111
112
113
/**
 * Get package dependencies for a specific package
 *
 * @param int $pkgid The package to get dependencies for
 *
 * @return array All package dependencies for the package
 */
114
function pkg_dependencies($pkgid) {
115
	$deps = array();
116
117
	$pkgid = intval($pkgid);
	if ($pkgid > 0) {
118
		$dbh = DB::connect();
Dan McGee's avatar
Dan McGee committed
119
120
121
122
		$q = "SELECT pd.DepName, pd.DepCondition, p.ID FROM PackageDepends pd ";
		$q.= "LEFT JOIN Packages p ON pd.DepName = p.Name ";
		$q.= "WHERE pd.PackageID = ". $pkgid . " ";
		$q.= "ORDER BY pd.DepName";
canyonknight's avatar
canyonknight committed
123
124
125
126
127
		$result = $dbh->query($q);
		if (!$result) {
			return array();
		}
		while ($row = $result->fetch(PDO::FETCH_NUM)) {
128
129
130
131
132
133
			$deps[] = $row;
		}
	}
	return $deps;
}

134
135
136
137
138
139
140
/**
 * Determine packages that depend on a package
 *
 * @param string $name The package name for the dependency search
 *
 * @return array All packages that depend on the specified package name
 */
141
function pkg_required($name="") {
142
	$deps = array();
Dan McGee's avatar
Dan McGee committed
143
	if ($name != "") {
144
		$dbh = DB::connect();
145
		$q = "SELECT DISTINCT p.Name, PackageID FROM PackageDepends pd ";
Dan McGee's avatar
Dan McGee committed
146
		$q.= "JOIN Packages p ON pd.PackageID = p.ID ";
canyonknight's avatar
canyonknight committed
147
		$q.= "WHERE DepName = " . $dbh->quote($name) . " ";
Dan McGee's avatar
Dan McGee committed
148
		$q.= "ORDER BY p.Name";
canyonknight's avatar
canyonknight committed
149
		$result = $dbh->query($q);
150
		if (!$result) {return array();}
canyonknight's avatar
canyonknight committed
151
		while ($row = $result->fetch(PDO::FETCH_NUM)) {
152
153
154
155
156
157
			$deps[] = $row;
		}
	}
	return $deps;
}

158
159
160
161
162
163
164
/**
 * Get all package sources for a specific package
 *
 * @param string $pkgid The package ID to get the sources for
 *
 * @return array All sources associated with a specific package
 */
165
function pkg_sources($pkgid) {
166
	$sources = array();
167
168
	$pkgid = intval($pkgid);
	if ($pkgid > 0) {
169
		$dbh = DB::connect();
170
		$q = "SELECT Source FROM PackageSources ";
171
		$q.= "WHERE PackageID = " . $pkgid;
172
		$q.= " ORDER BY Source";
canyonknight's avatar
canyonknight committed
173
174
175
176
177
		$result = $dbh->query($q);
		if (!$result) {
			return array();
		}
		while ($row = $result->fetch(PDO::FETCH_NUM)) {
178
179
180
181
182
183
			$sources[] = $row[0];
		}
	}
	return $sources;
}

184
185
186
187
188
189
190
/**
 * Determine package names from package IDs
 *
 * @param string|array $pkgids The package IDs to get names for
 *
 * @return array|string All names if multiple package IDs, otherwise package name
 */
191
function pkg_name_from_id($pkgids) {
192
193
194
	if (is_array($pkgids)) {
		$pkgids = sanitize_ids($pkgids);
		$names = array();
195
		$dbh = DB::connect();
canyonknight's avatar
canyonknight committed
196
197
198
199
200
		$q = "SELECT Name FROM Packages WHERE ID IN (";
		$q.= implode(",", $pkgids) . ")";
		$result = $dbh->query($q);
		if ($result) {
			while ($row = $result->fetch(PDO::FETCH_ASSOC)) {
201
202
203
204
205
206
				$names[] = $row['Name'];
			}
		}
		return $names;
	}
	elseif ($pkgids > 0) {
207
		$dbh = DB::connect();
208
		$q = "SELECT Name FROM Packages WHERE ID = " . $pkgids;
canyonknight's avatar
canyonknight committed
209
210
211
		$result = $dbh->query($q);
		if ($result) {
			$name = $result->fetch(PDO::FETCH_NUM);
212
		}
canyonknight's avatar
canyonknight committed
213
		return $name[0];
214
215
216
	}
	else {
		return NULL;
217
218
219
	}
}

220
221
222
223
224
225
226
/**
 * Determine if a package name is on the database blacklist
 *
 * @param string $name The package name to check
 *
 * @return bool True if the name is blacklisted, otherwise false
 */
227
function pkg_name_is_blacklisted($name) {
228
	$dbh = DB::connect();
canyonknight's avatar
canyonknight committed
229
230
231
	$q = "SELECT COUNT(*) FROM PackageBlacklist ";
	$q.= "WHERE Name = " . $dbh->quote($name);
	$result = $dbh->query($q);
232
233

	if (!$result) return false;
234
	return ($result->fetchColumn() > 0);
235
236
}

237
/**
238
 * Get the package details
239
 *
240
 * @param string $id The package ID to get description for
241
 *
242
243
 * @return array The package's details OR error message
 **/
244
function pkg_get_details($id=0) {
245
	$dbh = DB::connect();
246

247
248
249
250
251
252
253
254
	$q = "SELECT Packages.*, PackageBases.Name AS BaseName, ";
	$q.= "PackageBases.CategoryID, PackageBases.NumVotes, ";
	$q.= "PackageBases.OutOfDateTS, PackageBases.SubmittedTS, ";
	$q.= "PackageBases.ModifiedTS, PackageBases.SubmitterUID, ";
	$q.= "PackageBases.MaintainerUID, PackageCategories.Category ";
	$q.= "FROM Packages, PackageBases, PackageCategories ";
	$q.= "WHERE PackageBases.ID = Packages.PackageBaseID ";
	$q.= "AND PackageBases.CategoryID = PackageCategories.ID ";
Loui Chang's avatar
Loui Chang committed
255
	$q.= "AND Packages.ID = " . intval($id);
canyonknight's avatar
canyonknight committed
256
	$result = $dbh->query($q);
eric's avatar
eric committed
257

258
259
	$row = array();

canyonknight's avatar
canyonknight committed
260
	if (!$result) {
261
		$row['error'] = __("Error retrieving package details.");
262
263
	}
	else {
canyonknight's avatar
canyonknight committed
264
		$row = $result->fetch(PDO::FETCH_ASSOC);
eric's avatar
eric committed
265
		if (empty($row)) {
266
			$row['error'] = __("Package details could not be found.");
267
		}
268
269
270
271
272
273
274
275
276
277
278
	}

	return $row;
}

/**
 * Display the package details page
 *
 * @global string $AUR_LOCATION The AUR's URL used for notification e-mails
 * @global bool $USE_VIRTUAL_URLS True if using URL rewriting, otherwise false
 * @param string $id The package ID to get details page for
279
 * @param array $row Package details retrieved by pkg_get_details()
280
281
282
283
 * @param string $SID The session ID of the visitor
 *
 * @return void
 */
284
function pkg_display_details($id=0, $row, $SID="") {
285
286
287
	global $AUR_LOCATION;
	global $USE_VIRTUAL_URLS;

288
	$dbh = DB::connect();
289

290
291
292
293
	if (isset($row['error'])) {
		print "<p>" . $row['error'] . "</p>\n";
	}
	else {
294
295
296
		$base_id = pkgbase_from_pkgid($id);
		$pkgbase_name = pkgbase_name_from_id($base_id);

297
298
299
300
301
302
303
		include('pkg_details.php');

		if ($SID) {
			include('actions_form.php');
			include('pkg_comment_form.php');
		}

304
		$comments = pkgbase_comments($base_id);
305
306
		if (!empty($comments)) {
			include('pkg_comments.php');
eric's avatar
eric committed
307
308
309
310
		}
	}
}

Simo Leone's avatar
Simo Leone committed
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
/* pkg_search_page(SID)
 * outputs the body of search/search results page
 *
 * parameters:
 *  SID - current Session ID
 * preconditions:
 *  package search page has been accessed
 *  request variables have not been sanitized
 *
 *  request vars:
 *    O  - starting result number
 *    PP - number of search hits per page
 *    C  - package category ID number
 *    K  - package search string
 *    SO - search hit sort order:
 *          values: a - ascending
 *                  d - descending
 *    SB - sort search hits by:
329
 *          values: c - package category
Simo Leone's avatar
Simo Leone committed
330
331
332
333
 *                  n - package name
 *                  v - number of votes
 *                  m - maintainer username
 *    SeB- property that search string (K) represents
Andrea Scarpino's avatar
Andrea Scarpino committed
334
335
 *          values: n  - package name
 *                  nd - package name & description
336
 *                  x  - package name (exact match)
Simo Leone's avatar
Simo Leone committed
337
338
339
340
341
342
343
344
345
346
347
348
349
350
 *                  m  - package maintainer's username
 *                  s  - package submitter's username
 *    do_Orphans    - boolean. whether to search packages
 *                     without a maintainer
 *
 *
 *    These two are actually handled in packages.php.
 *
 *    IDs- integer array of ticked packages' IDs
 *    action - action to be taken on ticked packages
 *             values: do_Flag   - Flag out-of-date
 *                     do_UnFlag - Remove out-of-date flag
 *                     do_Adopt  - Adopt
 *                     do_Disown - Disown
351
 *                     do_Delete - Delete (requires confirm_Delete to be set)
352
353
 *                     do_Notify - Enable notification
 *                     do_UnNotify - Disable notification
Simo Leone's avatar
Simo Leone committed
354
 */
355
function pkg_search_page($SID="") {
356
	$dbh = DB::connect();
Loui Chang's avatar
Loui Chang committed
357

358
359
360
361
	/*
	 * Get commonly used variables.
	 * TODO: Reduce the number of database queries!
	 */
Loui Chang's avatar
Loui Chang committed
362
	if ($SID)
363
		$myuid = uid_from_sid($SID);
364
	$cats = pkgbase_categories($dbh);
Loui Chang's avatar
Loui Chang committed
365

366
	/* Sanitize paging variables. */
Loui Chang's avatar
Loui Chang committed
367
368
369
370
371
372
373
374
375
376
377
	if (isset($_GET['O'])) {
		$_GET['O'] = intval($_GET['O']);
		if ($_GET['O'] < 0)
			$_GET['O'] = 0;
	}
	else {
		$_GET['O'] = 0;
	}

	if (isset($_GET["PP"])) {
		$_GET["PP"] = intval($_GET["PP"]);
378
379
380
381
		if ($_GET["PP"] < 50)
			$_GET["PP"] = 50;
		else if ($_GET["PP"] > 250)
			$_GET["PP"] = 250;
Loui Chang's avatar
Loui Chang committed
382
383
	}
	else {
384
		$_GET["PP"] = 50;
Loui Chang's avatar
Loui Chang committed
385
386
	}

387
388
389
390
	/*
	 * FIXME: Pull out DB-related code. All of it! This one's worth a
	 * choco-chip cookie, one of those nice big soft ones.
	 */
Loui Chang's avatar
Loui Chang committed
391

392
	/* Build the package search query. */
393
	$q_select = "SELECT ";
Loui Chang's avatar
Loui Chang committed
394
	if ($SID) {
395
		$q_select .= "CommentNotify.UserID AS Notify,
396
			   PackageVotes.UsersID AS Voted, ";
Loui Chang's avatar
Loui Chang committed
397
	}
398
	$q_select .= "Users.Username AS Maintainer,
Loui Chang's avatar
Loui Chang committed
399
	PackageCategories.Category,
400
	Packages.Name, Packages.Version, Packages.Description,
401
402
	PackageBases.NumVotes, Packages.ID, Packages.PackageBaseID,
	PackageBases.OutOfDateTS ";
Loui Chang's avatar
Loui Chang committed
403

404
	$q_from = "FROM Packages
405
406
	LEFT JOIN PackageBases ON (PackageBases.ID = Packages.PackageBaseID)
	LEFT JOIN Users ON (PackageBases.MaintainerUID = Users.ID)
407
	LEFT JOIN PackageCategories
408
	ON (PackageBases.CategoryID = PackageCategories.ID) ";
Loui Chang's avatar
Loui Chang committed
409
	if ($SID) {
410
		/* This is not needed for the total row count query. */
411
		$q_from_extra = "LEFT JOIN PackageVotes
412
		ON (PackageBases.ID = PackageVotes.PackageBaseID AND PackageVotes.UsersID = $myuid)
Loui Chang's avatar
Loui Chang committed
413
		LEFT JOIN CommentNotify
414
		ON (PackageBases.ID = CommentNotify.PackageBaseID AND CommentNotify.UserID = $myuid) ";
415
416
	} else {
		$q_from_extra = "";
Loui Chang's avatar
Loui Chang committed
417
418
	}

Dan McGee's avatar
Dan McGee committed
419
	$q_where = "WHERE 1 = 1 ";
420
421
422
423
	/*
	 * TODO: Possibly do string matching on category to make request
	 * variable values more sensible.
	 */
424
	if (isset($_GET["C"]) && intval($_GET["C"])) {
425
		$q_where .= "AND Packages.CategoryID = ".intval($_GET["C"])." ";
Loui Chang's avatar
Loui Chang committed
426
427
	}

428
429
	if (isset($_GET['K'])) {
		if (isset($_GET["SeB"]) && $_GET["SeB"] == "m") {
430
			/* Search by maintainer. */
canyonknight's avatar
canyonknight committed
431
			$q_where .= "AND Users.Username = " . $dbh->quote($_GET['K']) . " ";
Loui Chang's avatar
Loui Chang committed
432
		}
433
		elseif (isset($_GET["SeB"]) && $_GET["SeB"] == "s") {
434
			/* Search by submitter. */
435
			$q_where .= "AND SubmitterUID = ".uid_from_username($_GET['K'])." ";
Loui Chang's avatar
Loui Chang committed
436
		}
437
		elseif (isset($_GET["SeB"]) && $_GET["SeB"] == "n") {
438
			/* Search by name. */
canyonknight's avatar
canyonknight committed
439
			$K = "%" . addcslashes($_GET['K'], '%_') . "%";
440
			$q_where .= "AND (Packages.Name LIKE " . $dbh->quote($K) . ") ";
Andrea Scarpino's avatar
Andrea Scarpino committed
441
		}
442
443
444
445
446
447
		elseif (isset($_GET["SeB"]) && $_GET["SeB"] == "b") {
			/* Search by package base name. */
			$K = "%" . addcslashes($_GET['K'], '%_') . "%";
			$q_where .= "AND (PackageBases.Name LIKE " . $dbh->quote($K) . ") ";
		}
		elseif (isset($_GET["SeB"]) && $_GET["SeB"] == "N") {
448
			/* Search by name (exact match). */
449
			$q_where .= "AND (Packages.Name = " . $dbh->quote($_GET['K']) . ") ";
450
		}
451
452
453
454
		elseif (isset($_GET["SeB"]) && $_GET["SeB"] == "B") {
			/* Search by package base name (exact match). */
			$q_where .= "AND (PackageBases.Name = " . $dbh->quote($_GET['K']) . ") ";
		}
Loui Chang's avatar
Loui Chang committed
455
		else {
456
			/* Search by name and description (default). */
canyonknight's avatar
canyonknight committed
457
			$K = "%" . addcslashes($_GET['K'], '%_') . "%";
458
			$q_where .= "AND (Packages.Name LIKE " . $dbh->quote($K) . " OR ";
canyonknight's avatar
canyonknight committed
459
			$q_where .= "Description LIKE " . $dbh->quote($K) . ") ";
Loui Chang's avatar
Loui Chang committed
460
461
462
		}
	}

463
	if (isset($_GET["do_Orphans"])) {
464
		$q_where .= "AND MaintainerUID IS NULL ";
Loui Chang's avatar
Loui Chang committed
465
	}
466

467
	if (isset($_GET['outdated'])) {
468
		if ($_GET['outdated'] == 'on') {
469
			$q_where .= "AND OutOfDateTS IS NOT NULL ";
470
471
		}
		elseif ($_GET['outdated'] == 'off') {
472
			$q_where .= "AND OutOfDateTS IS NULL ";
473
		}
474
475
	}

476
	$order = (isset($_GET["SO"]) && $_GET["SO"] == 'd') ? 'DESC' : 'ASC';
Loui Chang's avatar
Loui Chang committed
477

478
	$q_sort = "ORDER BY ";
479
480
	$sort_by = isset($_GET["SB"]) ? $_GET["SB"] : '';
	switch ($sort_by) {
Loui Chang's avatar
Loui Chang committed
481
	case 'c':
482
		$q_sort .= "CategoryID " . $order . ", ";
Loui Chang's avatar
Loui Chang committed
483
484
		break;
	case 'v':
485
		$q_sort .= "NumVotes " . $order . ", ";
Loui Chang's avatar
Loui Chang committed
486
		break;
487
488
	case 'w':
		if ($SID) {
489
			$q_sort .= "Voted " . $order . ", ";
490
491
492
493
		}
		break;
	case 'o':
		if ($SID) {
494
			$q_sort .= "Notify " . $order . ", ";
495
496
		}
		break;
Loui Chang's avatar
Loui Chang committed
497
	case 'm':
498
		$q_sort .= "Maintainer " . $order . ", ";
Loui Chang's avatar
Loui Chang committed
499
500
		break;
	case 'a':
501
		$q_sort .= "ModifiedTS " . $order . ", ";
Loui Chang's avatar
Loui Chang committed
502
503
504
505
		break;
	default:
		break;
	}
506
	$q_sort .= " Packages.Name " . $order . " ";
Loui Chang's avatar
Loui Chang committed
507

508
	$q_limit = "LIMIT ".$_GET["PP"]." OFFSET ".$_GET["O"];
509

510
511
	$q = $q_select . $q_from . $q_from_extra . $q_where . $q_sort . $q_limit;
	$q_total = "SELECT COUNT(*) " . $q_from . $q_where;
Loui Chang's avatar
Loui Chang committed
512

canyonknight's avatar
canyonknight committed
513
514
	$result = $dbh->query($q);
	$result_t = $dbh->query($q_total);
515
	if ($result_t) {
canyonknight's avatar
canyonknight committed
516
517
		$row = $result_t->fetch(PDO::FETCH_NUM);
		$total = $row[0];
518
519
520
521
	}
	else {
		$total = 0;
	}
Simo Leone's avatar
Simo Leone committed
522

523
	if ($result && $total > 0) {
524
525
		if (isset($_GET["SO"]) && $_GET["SO"] == "d"){
			$SO_next = "a";
Loui Chang's avatar
Loui Chang committed
526
527
		}
		else {
528
			$SO_next = "d";
Loui Chang's avatar
Loui Chang committed
529
		}
530
	}
Simo Leone's avatar
Simo Leone committed
531

532
	/* Calculate the results to use. */
Loui Chang's avatar
Loui Chang committed
533
	$first = $_GET['O'] + 1;
Simo Leone's avatar
Simo Leone committed
534

535
	/* Calculation of pagination links. */
536
537
538
539
	$per_page = ($_GET['PP'] > 0) ? $_GET['PP'] : 50;
	$current = ceil($first / $per_page);
	$pages = ceil($total / $per_page);
	$templ_pages = array();
540

541
	if ($current > 1) {
542
543
		$templ_pages['&laquo; ' . __('First')] = 0;
		$templ_pages['&lsaquo; ' . __('Previous')] = ($current - 2) * $per_page;
544
	}
545

546
547
	if ($current - 5 > 1)
		$templ_pages["..."] = false;
548

549
550
551
	for ($i = max($current - 5, 1); $i <= min($pages, $current + 5); $i++) {
		$templ_pages[$i] = ($i - 1) * $per_page;
	}
552

553
554
	if ($current + 5 < $pages)
		$templ_pages["... "] = false;
555

556
	if ($current < $pages) {
557
558
		$templ_pages[__('Next') . ' &rsaquo;'] = $current * $per_page;
		$templ_pages[__('Last') . ' &raquo;'] = ($pages - 1) * $per_page;
559
	}
Simo Leone's avatar
Simo Leone committed
560

561
	include('pkg_search_form.php');
562

canyonknight's avatar
canyonknight committed
563
564
565
566
	if ($result) {
		while ($row = $result->fetch(PDO::FETCH_ASSOC)) {
			$searchresults[] = $row;
		}
567
568
	}

569
570
	include('pkg_search_results.php');

Loui Chang's avatar
Loui Chang committed
571
	return;
eric's avatar
eric committed
572
573
}

574
575
576
577
578
579
580
/**
 * Determine if a POST string has been sent by a visitor
 *
 * @param string $action String to check has been sent via POST
 *
 * @return bool True if the POST string was used, otherwise false
 */
Dan McGee's avatar
Dan McGee committed
581
582
583
584
585
function current_action($action) {
	return (isset($_POST['action']) && $_POST['action'] == $action) ||
		isset($_POST[$action]);
}

586
/**
587
588
589
590
591
 * Determine if sent IDs are valid integers
 *
 * @param array $ids IDs to validate
 *
 * @return array All sent IDs that are valid integers
592
593
594
595
596
597
598
599
600
601
602
603
 */
function sanitize_ids($ids) {
	$new_ids = array();
	foreach ($ids as $id) {
		$id = intval($id);
		if ($id > 0) {
			$new_ids[] = $id;
		}
	}
	return $new_ids;
}

604
605
606
607
608
609
610
/**
 * Get all package information in the database for a specific package
 *
 * @param string $pkgname The name of the package to get details for
 *
 * @return array All package details for a specific package
 */
611
function pkg_details_by_name($pkgname) {
612
	$dbh = DB::connect();
613
614
615
616
617
618
619
620
	$q = "SELECT Packages.*, PackageBases.Name AS BaseName, ";
	$q.= "PackageBases.CategoryID, PackageBases.NumVotes, ";
	$q.= "PackageBases.OutOfDateTS, PackageBases.SubmittedTS, ";
	$q.= "PackageBases.ModifiedTS, PackageBases.SubmitterUID, ";
	$q.= "PackageBases.MaintainerUID FROM Packages ";
	$q.= "INNER JOIN PackageBases ";
	$q.= "ON PackageBases.ID = Packages.PackageBaseID WHERE ";
	$q.= "Packages.Name = " . $dbh->quote($pkgname);
canyonknight's avatar
canyonknight committed
621
	$result = $dbh->query($q);
canyonknight's avatar
canyonknight committed
622
	if ($result) {
canyonknight's avatar
canyonknight committed
623
		$row = $result->fetch(PDO::FETCH_ASSOC);
canyonknight's avatar
canyonknight committed
624
	}
canyonknight's avatar
canyonknight committed
625
	return $row;
canyonknight's avatar
canyonknight committed
626
627
}

628
629
630
/**
 * Add package information to the database for a specific package
 *
631
 * @param int $base_id ID of the package base
632
633
634
635
636
 * @param string $pkgname Name of the new package
 * @param string $license License of the new package
 * @param string $pkgver Version of the new package
 * @param string $pkgdesc Description of the new package
 * @param string $pkgurl Upstream URL for the new package
637
638
639
 *
 * @return int ID of the new package
 */
640
function pkg_create($base_id, $pkgname, $license, $pkgver, $pkgdesc, $pkgurl) {
641
642
643
644
645
646
647
648
649
650
	$dbh = DB::connect();
	$q = sprintf("INSERT INTO Packages (PackageBaseID, Name, License, " .
		"Version, Description, URL) VALUES (%d, %s, %s, %s, %s, %s)",
		$base_id, $dbh->quote($pkgname), $dbh->quote($license),
		$dbh->quote($pkgver), $dbh->quote($pkgdesc),
		$dbh->quote($pkgurl));
	$dbh->exec($q);
	return $dbh->lastInsertId();
}

651
652
653
654
655
656
657
658
659
/**
 * Add a dependency for a specific package to the database
 *
 * @param int $pkgid The package ID to add the dependency for
 * @param string $depname The name of the dependency to add
 * @param string $depcondition The  type of dependency for the package
 *
 * @return void
 */
660
function pkg_add_dep($pkgid, $depname, $depcondition) {
661
	$dbh = DB::connect();
canyonknight's avatar
canyonknight committed
662
	$q = sprintf("INSERT INTO PackageDepends (PackageID, DepName, DepCondition) VALUES (%d, %s, %s)",
canyonknight's avatar
canyonknight committed
663
	$pkgid,
canyonknight's avatar
canyonknight committed
664
665
	$dbh->quote($depname),
	$dbh->quote($depcondition));
canyonknight's avatar
canyonknight committed
666

canyonknight's avatar
canyonknight committed
667
	$dbh->exec($q);
canyonknight's avatar
canyonknight committed
668
669
}

670
671
672
673
674
675
676
677
/**
 * Add a source for a specific package to the database
 *
 * @param int $pkgid The package ID to add the source for
 * @param string $pkgsrc The package source to add to the database
 *
 * @return void
 */
678
function pkg_add_src($pkgid, $pkgsrc) {
679
	$dbh = DB::connect();
canyonknight's avatar
canyonknight committed
680
	$q = "INSERT INTO PackageSources (PackageID, Source) VALUES (";
canyonknight's avatar
canyonknight committed
681
	$q .= $pkgid . ", " . $dbh->quote($pkgsrc) . ")";
canyonknight's avatar
canyonknight committed
682

canyonknight's avatar
canyonknight committed
683
	$dbh->exec($q);
canyonknight's avatar
canyonknight committed
684
}