Allow user 'app_fw' to create pkgmgr_parser.db
[platform/core/appfw/pkgmgr-info.git] / src / pkgmgrinfo_db.c
1 #include <stdio.h>
2 #include <stdlib.h>
3 #include <string.h>
4 #include <unistd.h>
5 #include <ctype.h>
6 #include <sys/types.h>
7 #include <sys/stat.h>
8 #include <fcntl.h>
9 #include <grp.h>
10 #include <dirent.h>
11 #include <libgen.h>
12
13 #include <sqlite3.h>
14
15 #include <tzplatform_config.h>
16 #include <db-util.h>
17
18 #include "pkgmgr-info.h"
19 #include "pkgmgrinfo_debug.h"
20 #include "pkgmgrinfo_private.h"
21 #include "pkgmgr_parser.h"
22 #include "pkgmgr_parser_internal.h"
23
24 #define QUERY_CREATE_TABLE_PACKAGE_CERT_INDEX_INFO \
25         "CREATE TABLE IF NOT EXISTS package_cert_index_info( " \
26         " cert_info TEXT UNIQUE, " \
27         " cert_id INTEGER PRIMARY KEY, " \
28         " cert_ref_count INTEGER NOT NULL)"
29
30 #define QUERY_CREATE_TABLE_PACKAGE_CERT_INFO \
31         "CREATE TABLE IF NOT EXISTS package_cert_info( " \
32         " package TEXT PRIMARY KEY, " \
33         " package_count INTEGER, " \
34         " author_root_cert INTEGER, " \
35         " author_im_cert INTEGER, " \
36         " author_signer_cert INTEGER, " \
37         " dist_root_cert INTEGER, " \
38         " dist_im_cert INTEGER, " \
39         " dist_signer_cert INTEGER, " \
40         " dist2_root_cert INTEGER, " \
41         " dist2_im_cert INTEGER, " \
42         " dist2_signer_cert INTEGER)"
43
44 #define QUERY_CREATE_TRIGGER_UPDATE_CERT_INFO \
45         "CREATE TRIGGER IF NOT EXISTS update_cert_info " \
46         "AFTER UPDATE ON package_cert_info " \
47         "WHEN (NEW.package_count = 0) " \
48         "BEGIN" \
49         " DELETE FROM package_cert_info WHERE package=OLD.package;" \
50         "END;"
51
52 #define QUERY_CREATE_TRIGGER_UPDATE_CERT_INFO2 \
53         "CREATE TRIGGER IF NOT EXISTS update_cert_info2 " \
54         "AFTER UPDATE ON package_cert_info " \
55         "WHEN (NEW.package_count = OLD.package_count + 1) " \
56         "BEGIN" \
57         " UPDATE package_cert_index_info SET" \
58         "  cert_ref_count = cert_ref_count - 1" \
59         " WHERE cert_id = OLD.author_root_cert" \
60         "  OR cert_id = OLD.author_im_cert" \
61         "  OR cert_id = OLD.author_signer_cert" \
62         "  OR cert_id = OLD.dist_root_cert" \
63         "  OR cert_id = OLD.dist_im_cert" \
64         "  OR cert_id = OLD.dist_signer_cert" \
65         "  OR cert_id = OLD.dist2_root_cert" \
66         "  OR cert_id = OLD.dist2_im_cert" \
67         "  OR cert_id = OLD.dist2_signer_cert;" \
68         "END;"
69
70 #define QUERY_CREATE_TRIGGER_DELETE_CERT_INFO \
71         "CREATE TRIGGER IF NOT EXISTS delete_cert_info " \
72         "AFTER DELETE ON package_cert_info " \
73         "BEGIN" \
74         " UPDATE package_cert_index_info SET" \
75         "  cert_ref_count = cert_ref_count - 1" \
76         " WHERE cert_id = OLD.author_root_cert" \
77         "  OR cert_id = OLD.author_im_cert" \
78         "  OR cert_id = OLD.author_signer_cert" \
79         "  OR cert_id = OLD.dist_root_cert" \
80         "  OR cert_id = OLD.dist_im_cert" \
81         "  OR cert_id = OLD.dist_signer_cert" \
82         "  OR cert_id = OLD.dist2_root_cert" \
83         "  OR cert_id = OLD.dist2_im_cert" \
84         "  OR cert_id = OLD.dist2_signer_cert;" \
85         "END;"
86
87 #define QUERY_CREATE_TRIGGER_UPDATE_CERT_INDEX_INFO \
88         "CREATE TRIGGER IF NOT EXISTS update_cert_index_info " \
89         "AFTER UPDATE ON package_cert_index_info " \
90         "WHEN ((SELECT cert_ref_count FROM package_cert_index_info " \
91         "       WHERE cert_id = OLD.cert_id) = 0) "\
92         "BEGIN" \
93         " DELETE FROM package_cert_index_info WHERE cert_id = OLD.cert_id;" \
94         "END;"
95
96 __thread db_handle manifest_db;
97 __thread db_handle cert_db;
98
99 typedef int (*sqlite_query_callback)(void *data, int ncols, char **coltxt, char **colname);
100
101 static int _mkdir_for_user(const char* dir, uid_t uid, gid_t gid)
102 {
103         int ret;
104         char *fullpath;
105         char *subpath;
106         char buf[1024];
107         int fd;
108         struct stat sb;
109
110         fullpath = strdup(dir);
111         if (fullpath == NULL)
112                 return -1;
113         subpath = dirname(fullpath);
114         if (strlen(subpath) > 1 && strcmp(subpath, fullpath) != 0) {
115                 ret = _mkdir_for_user(fullpath, uid, gid);
116                 if (ret == -1) {
117                         free(fullpath);
118                         return ret;
119                 }
120         }
121
122         ret = mkdir(dir, S_IRWXU | S_IRGRP | S_IXGRP | S_IXOTH);
123         if (ret && errno != EEXIST) {
124                 free(fullpath);
125                 return ret;
126         } else if (ret && errno == EEXIST) {
127                 free(fullpath);
128                 return 0;
129         }
130
131         if (getuid() == ROOT_UID) {
132                 fd = open(dir, O_RDONLY);
133                 if (fd == -1) {
134                         _LOGE("FAIL : open %s : %s", dir,
135                                         strerror_r(errno, buf, sizeof(buf)));
136                         return -1;
137                 }
138                 ret = fstat(fd, &sb);
139                 if (ret == -1) {
140                         _LOGE("FAIL : fstat %s : %s", dir,
141                                         strerror_r(errno, buf, sizeof(buf)));
142                         close(fd);
143                         return -1;
144                 }
145                 if (S_ISLNK(sb.st_mode)) {
146                         _LOGE("FAIL : %s is symlink!", dir);
147                         close(fd);
148                         return -1;
149                 }
150                 ret = fchown(fd, uid, gid);
151                 if (ret == -1) {
152                         _LOGE("FAIL : fchown %s %d.%d, because %s", dir, uid,
153                                         gid, strerror_r(errno, buf, sizeof(buf)));
154                         close(fd);
155                         return -1;
156                 }
157                 close(fd);
158         }
159
160         free(fullpath);
161
162         return 0;
163 }
164
165 static char *_get_db_path(uid_t uid)
166 {
167         const char *db_path;
168         char path[PATH_MAX];
169
170         db_path = tzplatform_getenv(TZ_SYS_DB);
171         if (db_path == NULL) {
172                 _LOGE("Failed to get TZ_SYS_DB path");
173                 return NULL;
174         }
175
176         if (uid == GLOBAL_USER || uid == ROOT_UID)
177                 return strdup(db_path);
178
179         snprintf(path, sizeof(path), "%s/user/%d", db_path, uid);
180
181         return strdup(path);
182 }
183
184 static int __attach_and_create_view(sqlite3 *handle, const char *db, const char *tables[], uid_t uid)
185 {
186         int i;
187         char *err;
188         char query[MAX_QUERY_LEN];
189
190         if (uid != GLOBAL_USER && uid != ROOT_UID) {
191                 snprintf(query, sizeof(query), "ATTACH DATABASE '%s' AS Global", db);
192                 if (SQLITE_OK != sqlite3_exec(handle, query, NULL, NULL, &err)) {
193                         _LOGD("Don't execute query = %s error message = %s\n", query, err);
194                         sqlite3_free(err);
195                         return SQLITE_ERROR;
196                 }
197         }
198
199         for (i = 0; tables[i]; i++) {
200                 if (uid != GLOBAL_USER && uid != ROOT_UID)
201                         snprintf(query, sizeof(query), "CREATE TEMP VIEW '%s' AS SELECT * \
202                                         FROM (SELECT *,0 AS for_all_users FROM main.'%s' UNION \
203                                         SELECT *,1 AS for_all_users FROM Global.'%s')",
204                                         tables[i], tables[i], tables[i]);
205                 else
206                         snprintf(query, sizeof(query), "CREATE TEMP VIEW '%s' AS SELECT * \
207                                         FROM (SELECT *,1 AS for_all_users FROM main.'%s')",
208                                         tables[i], tables[i]);
209                 if (SQLITE_OK != sqlite3_exec(handle, query, NULL, NULL, &err)) {
210                         _LOGD("Don't execute query = %s error message = %s\n", query, err);
211                         sqlite3_free(err);
212                 }
213         }
214
215         return SQLITE_OK;
216 }
217
218 static int __exec_db_query(sqlite3 *db, char *query, sqlite_query_callback callback, void *data)
219 {
220         char *error_message = NULL;
221         int ret = sqlite3_exec(db, query, callback, data, &error_message);
222         if (SQLITE_OK != ret) {
223                 _LOGE("Don't execute query = %s error message = %s   ret = %d\n", query,
224                        error_message, ret);
225                 sqlite3_free(error_message);
226                 return -1;
227         }
228         sqlite3_free(error_message);
229         return 0;
230 }
231
232 int _check_create_cert_db(sqlite3 *certdb)
233 {
234         int ret = 0;
235         ret = __exec_db_query(certdb, QUERY_CREATE_TABLE_PACKAGE_CERT_INDEX_INFO, NULL, NULL);
236         if (ret < 0)
237                 return ret;
238         ret = __exec_db_query(certdb, QUERY_CREATE_TABLE_PACKAGE_CERT_INFO, NULL, NULL);
239         if (ret < 0)
240                 return ret;
241         ret = __exec_db_query(certdb, QUERY_CREATE_TRIGGER_UPDATE_CERT_INFO, NULL, NULL);
242         if (ret < 0)
243                 return ret;
244         ret = __exec_db_query(certdb, QUERY_CREATE_TRIGGER_UPDATE_CERT_INFO2, NULL, NULL);
245         if (ret < 0)
246                 return ret;
247         ret = __exec_db_query(certdb, QUERY_CREATE_TRIGGER_DELETE_CERT_INFO, NULL, NULL);
248         if (ret < 0)
249                 return ret;
250         ret = __exec_db_query(certdb, QUERY_CREATE_TRIGGER_UPDATE_CERT_INDEX_INFO, NULL, NULL);
251         return ret;
252 }
253 static gid_t _get_gid(const char *name)
254 {
255         char buf[BUFSIZE];
256         struct group entry;
257         struct group *ge;
258         int ret;
259
260         ret = getgrnam_r(name, &entry, buf, sizeof(buf), &ge);
261         if (ret || ge == NULL) {
262                 _LOGE("fail to get gid of %s", name);
263                 return -1;
264         }
265
266         return entry.gr_gid;
267 }
268
269 API const char *getIconPath(uid_t uid, bool readonly)
270 {
271         const char *path = NULL;
272         uid_t uid_caller = getuid();
273         gid_t gid = ROOT_UID;
274
275         if (uid != GLOBAL_USER && uid != ROOT_UID) {
276                 _LOGD("not supported target user");
277                 return NULL;
278         }
279
280         if (readonly)
281                 path = tzplatform_mkpath(TZ_SYS_RO_ICONS, "/");
282         else
283                 path = tzplatform_mkpath(TZ_SYS_RW_ICONS, "/");
284
285         /* just allow certain users to create the icon directory if needed. */
286         if (uid_caller == ROOT_UID  || uid_caller == APPFW_UID || uid_caller == uid)
287                 _mkdir_for_user(path, uid, gid);
288
289         return path;
290 }
291
292 API char *getUserPkgParserDBPath(void)
293 {
294         return getUserPkgParserDBPathUID(_getuid());
295 }
296
297 API char *getUserPkgParserDBPathUID(uid_t uid)
298 {
299         char pkgmgr_parser_db[PATH_MAX];
300         uid_t uid_caller = getuid();
301         gid_t gid = ROOT_UID;
302         char *db_path;
303
304         db_path = _get_db_path(uid);
305         if (db_path == NULL) {
306                 _LOGE("Failed to get db path %d", uid);
307                 return NULL;
308         }
309         snprintf(pkgmgr_parser_db, sizeof(pkgmgr_parser_db),
310                         "%s/.pkgmgr_parser.db", db_path);
311
312         if (uid != GLOBAL_USER && uid != ROOT_UID) {
313                 tzplatform_set_user(uid);
314                 gid = _get_gid(tzplatform_getenv(TZ_SYS_USER_GROUP));
315                 tzplatform_reset_user();
316         }
317
318         // just allow certain users to create the dbspace directory if needed.
319         if (uid_caller == ROOT_UID  || uid_caller == APPFW_UID || uid_caller == uid)
320                 _mkdir_for_user(db_path, uid, gid);
321
322         free(db_path);
323
324         return strdup(pkgmgr_parser_db);
325 }
326
327 API char *getUserPkgCertDBPath(void)
328 {
329          return getUserPkgCertDBPathUID(_getuid());
330 }
331
332 API char *getUserPkgCertDBPathUID(uid_t uid)
333 {
334         char pkgmgr_cert_db[PATH_MAX];
335         uid_t uid_caller = getuid();
336         gid_t gid = ROOT_UID;
337         char *db_path;
338
339         db_path = _get_db_path(uid);
340         if (db_path == NULL) {
341                 _LOGE("Failed to get db path %d", uid);
342                 return NULL;
343         }
344         snprintf(pkgmgr_cert_db, sizeof(pkgmgr_cert_db),
345                         "%s/.pkgmgr_cert.db", db_path);
346
347         if (uid != GLOBAL_USER && uid != ROOT_UID) {
348                 tzplatform_set_user(uid);
349                 gid = _get_gid(tzplatform_getenv(TZ_SYS_USER_GROUP));
350                 tzplatform_reset_user();
351         }
352
353         // just allow certain users to create the dbspace directory if needed.
354         if (uid_caller == ROOT_UID || uid_caller == APPFW_UID || uid_caller == uid)
355                 _mkdir_for_user(db_path, uid, gid);
356
357         free(db_path);
358
359         return strdup(pkgmgr_cert_db);
360 }
361
362 API const char *getUserManifestPath(uid_t uid, bool readonly)
363 {
364         const char *path = NULL;
365         uid_t uid_caller = getuid();
366         gid_t gid = ROOT_UID;
367
368         if (uid != GLOBAL_USER && uid != ROOT_UID) {
369                 tzplatform_set_user(uid);
370                 path = tzplatform_mkpath(TZ_USER_PACKAGES, "/");
371                 gid = _get_gid(tzplatform_getenv(TZ_SYS_USER_GROUP));
372                 tzplatform_reset_user();
373         } else {
374                 if (readonly)
375                         path = tzplatform_mkpath(TZ_SYS_RO_PACKAGES, "/");
376                 else
377                         path = tzplatform_mkpath(TZ_SYS_RW_PACKAGES, "/");
378         }
379
380         /* just allow certain users to create the icon directory if needed. */
381         if (uid_caller == ROOT_UID || uid_caller == APPFW_UID || uid_caller == uid)
382                 _mkdir_for_user(path, uid, gid);
383
384         return path;
385 }
386
387 int __close_manifest_db(void)
388 {
389         if (manifest_db.ref) {
390                 if (--manifest_db.ref == 0)
391                         sqlite3_close(GET_DB(manifest_db));
392                 return 0;
393         }
394         return -1;
395 }
396
397 static const char *parserdb_tables[] = {
398         "package_app_app_category",
399         "package_app_info",
400         "package_app_app_control",
401         "package_app_localized_info",
402         "package_app_app_metadata",
403         "package_app_share_allowed",
404         "package_app_app_permission",
405         "package_app_share_request",
406         "package_info",
407         "package_app_data_control",
408         "package_localized_info",
409         "package_app_icon_section_info",
410         "package_privilege_info",
411         "package_app_image_info",
412         NULL
413 };
414
415 int __open_manifest_db(uid_t uid, bool readonly)
416 {
417         int ret;
418         char *user_pkg_parser;
419         int flags;
420
421         if (manifest_db.ref) {
422                 manifest_db.ref++;
423                 return 0;
424         }
425
426         user_pkg_parser = getUserPkgParserDBPathUID(uid);
427         if (user_pkg_parser == NULL) {
428                 _LOGE("Failed to get pkg parser db path - %d", uid);
429                 return -1;
430         }
431
432         if (access(user_pkg_parser, F_OK) != 0) {
433                 _LOGE("Manifest DB does not exists !!");
434                 free(user_pkg_parser);
435                 return -1;
436         }
437
438         flags = readonly ? SQLITE_OPEN_READONLY : SQLITE_OPEN_READWRITE;
439         ret = db_util_open_with_options(user_pkg_parser, &GET_DB(manifest_db),
440                         flags, NULL);
441         if (ret != SQLITE_OK) {
442                 _LOGE("connect db [%s] failed!\n", user_pkg_parser);
443                 free(user_pkg_parser);
444                 return -1;
445         }
446
447         manifest_db.ref++;
448         if (readonly) {
449                 ret = __attach_and_create_view(GET_DB(manifest_db), MANIFEST_DB,
450                                 parserdb_tables, uid);
451                 if (ret != SQLITE_OK) {
452                         _LOGE("attach db [%s] failed!\n", user_pkg_parser);
453                         free(user_pkg_parser);
454                         return -1;
455                 }
456         }
457
458         free(user_pkg_parser);
459
460         return 0;
461 }
462
463 int __close_cert_db(void)
464 {
465         if (cert_db.ref) {
466                 if (--cert_db.ref == 0)
467                         sqlite3_close_v2(GET_DB(cert_db));
468                         return 0;
469         }
470         _LOGE("Certificate DB is already closed !!\n");
471         return -1;
472 }
473
474 static const char *certdb_tables[] = {
475         "package_cert_index_info",
476         "package_cert_info",
477         NULL
478 };
479
480 int __open_cert_db(uid_t uid, bool readonly)
481 {
482         int ret;
483         char *user_cert_parser;
484         int flags;
485
486         if (cert_db.ref) {
487                 cert_db.ref++;
488                 return 0;
489         }
490
491         user_cert_parser = getUserPkgCertDBPathUID(uid);
492         if (user_cert_parser == NULL) {
493                 _LOGE("Failed to get pkg cert db path - %d", uid);
494                 return -1;
495         }
496
497         if (access(user_cert_parser, F_OK) != 0) {
498                 _LOGE("Cert DB does not exists !!");
499                 free(user_cert_parser);
500                 return -1;
501         }
502
503         flags = readonly ? SQLITE_OPEN_READONLY : SQLITE_OPEN_READWRITE;
504         ret = db_util_open_with_options(user_cert_parser, &GET_DB(cert_db),
505                         flags, NULL);
506         if (ret != SQLITE_OK) {
507                 _LOGE("connect db [%s] failed!", user_cert_parser);
508                 free(user_cert_parser);
509                 return -1;
510         }
511         cert_db.ref++;
512         if (readonly) {
513                 ret = __attach_and_create_view(GET_DB(cert_db), CERT_DB,
514                                 certdb_tables, uid);
515                 if (ret != SQLITE_OK) {
516                         _LOGE("attach db [%s] failed!", user_cert_parser);
517                         free(user_cert_parser);
518                         return -1;
519                 }
520         }
521
522         free(user_cert_parser);
523
524         return 0;
525 }
526
527 void _save_column_int(sqlite3_stmt *stmt, int idx, int *i)
528 {
529         *i = sqlite3_column_int(stmt, idx);
530 }
531
532 void _save_column_str(sqlite3_stmt *stmt, int idx, char **str)
533 {
534         const char *val;
535
536         val = (const char *)sqlite3_column_text(stmt, idx);
537         if (val)
538                 *str = strdup(val);
539 }
540
541 API int pkgmgrinfo_pkginfo_set_usr_installed_storage(const char *pkgid, INSTALL_LOCATION location, uid_t uid)
542 {
543         retvm_if(pkgid == NULL, PMINFO_R_EINVAL, "pkgid is NULL\n");
544         int ret = -1;
545         sqlite3 *pkgmgr_parser_db = NULL;
546         char *query = NULL;
547         char *db_path;
548
549         db_path = getUserPkgParserDBPathUID(uid);
550         if (db_path == NULL) {
551                 _LOGE("Failed to get pkg parser db path - %d", uid);
552                 return PMINFO_R_ERROR;
553         }
554
555         ret = db_util_open_with_options(db_path, &pkgmgr_parser_db,
556                         SQLITE_OPEN_READWRITE, NULL);
557         if (ret != SQLITE_OK) {
558                 _LOGE("connect db failed!");
559                 free(db_path);
560                 return PMINFO_R_ERROR;
561         }
562         free(db_path);
563
564         /*Begin transaction*/
565         /* Setting Manifest DB */
566         ret = sqlite3_exec(pkgmgr_parser_db, "BEGIN EXCLUSIVE", NULL, NULL, NULL);
567         tryvm_if(ret != SQLITE_OK, ret = PMINFO_R_ERROR, "Failed to begin transaction\n");
568         _LOGD("Transaction Begin\n");
569
570         /* pkgcakge_info table */
571         query = sqlite3_mprintf(
572                         "update package_info set installed_storage=%Q where package=%Q",
573                         location ? "installed_external" : "installed_internal", pkgid);
574
575         ret = sqlite3_exec(pkgmgr_parser_db, query, NULL, NULL, NULL);
576         tryvm_if(ret != SQLITE_OK, ret = PMINFO_R_ERROR, "Don't execute query = %s\n", query);
577         sqlite3_free(query);
578
579         /* package_app_info table */
580         query = sqlite3_mprintf(
581                         "update package_app_info set app_installed_storage=%Q where package=%Q",
582                         location ? "installed_external" : "installed_internal", pkgid);
583
584         ret = sqlite3_exec(pkgmgr_parser_db, query, NULL, NULL, NULL);
585         tryvm_if(ret != SQLITE_OK, ret = PMINFO_R_ERROR, "Don't execute query = %s\n", query);
586
587         /*Commit transaction*/
588         ret = sqlite3_exec(pkgmgr_parser_db, "COMMIT", NULL, NULL, NULL);
589         if (ret != SQLITE_OK) {
590                 _LOGE("Failed to commit transaction. Rollback now\n");
591                 ret = sqlite3_exec(pkgmgr_parser_db, "ROLLBACK", NULL, NULL, NULL);
592                 tryvm_if(ret != SQLITE_OK, ret = PMINFO_R_ERROR, "Don't execute query = %s\n", query);
593         }
594         _LOGD("Transaction Commit and End\n");
595
596         ret = PMINFO_R_OK;
597 catch:
598         sqlite3_close(pkgmgr_parser_db);
599         sqlite3_free(query);
600         return ret;
601 }
602
603 API int pkgmgrinfo_pkginfo_set_installed_storage(const char *pkgid, INSTALL_LOCATION location)
604 {
605         return pkgmgrinfo_pkginfo_set_usr_installed_storage(pkgid, location, _getuid());
606 }