Share one directory for Twig cache, SHP import and file uploads. The code now also validates the cache directory and creates it on the fly, so it properly detects if the directory can not be used. Also the documentation has been improved to document securing this directory. Fixes #13225 Fixes #13226 Signed-off-by: Michal Čihař <michal@cihar.com>
308 lines
9.7 KiB
PHP
308 lines
9.7 KiB
PHP
<?php
|
|
/* vim: set expandtab sw=4 ts=4 sts=4: */
|
|
/**
|
|
* ESRI Shape file import plugin for phpMyAdmin
|
|
*
|
|
* @package PhpMyAdmin-Import
|
|
* @subpackage ESRI_Shape
|
|
*/
|
|
namespace PMA\libraries\plugins\import;
|
|
|
|
use PMA\libraries\properties\plugins\ImportPluginProperties;
|
|
use PMA;
|
|
use PMA\libraries\plugins\ImportPlugin;
|
|
use PMA\libraries\gis\GISFactory;
|
|
use PMA\libraries\gis\GISMultilinestring;
|
|
use PMA\libraries\gis\GISMultipoint;
|
|
use PMA\libraries\gis\GISPoint;
|
|
use PMA\libraries\gis\GISPolygon;
|
|
|
|
/**
|
|
* Handles the import for ESRI Shape files
|
|
*
|
|
* @package PhpMyAdmin-Import
|
|
* @subpackage ESRI_Shape
|
|
*/
|
|
class ImportShp extends ImportPlugin
|
|
{
|
|
/**
|
|
* Constructor
|
|
*/
|
|
public function __construct()
|
|
{
|
|
$this->setProperties();
|
|
}
|
|
|
|
/**
|
|
* Sets the import plugin properties.
|
|
* Called in the constructor.
|
|
*
|
|
* @return void
|
|
*/
|
|
protected function setProperties()
|
|
{
|
|
$importPluginProperties = new ImportPluginProperties();
|
|
$importPluginProperties->setText(__('ESRI Shape File'));
|
|
$importPluginProperties->setExtension('shp');
|
|
$importPluginProperties->setOptions(array());
|
|
$importPluginProperties->setOptionsText(__('Options'));
|
|
|
|
$this->properties = $importPluginProperties;
|
|
}
|
|
|
|
/**
|
|
* Handles the whole import logic
|
|
*
|
|
* @param array &$sql_data 2-element array with sql data
|
|
*
|
|
* @return void
|
|
*/
|
|
public function doImport(&$sql_data = array())
|
|
{
|
|
global $db, $error, $finished,
|
|
$import_file, $local_import_file, $message;
|
|
|
|
$GLOBALS['finished'] = false;
|
|
|
|
$compression = $GLOBALS['import_handle']->getCompression();
|
|
|
|
$shp = new ShapeFileImport(1);
|
|
// If the zip archive has more than one file,
|
|
// get the correct content to the buffer from .shp file.
|
|
if ($compression == 'application/zip'
|
|
&& PMA_getNoOfFilesInZip($import_file) > 1
|
|
) {
|
|
if ($GLOBALS['import_handle']->openZip('/^.*\.shp$/i') === false) {
|
|
$message = PMA\libraries\Message::error(
|
|
__('There was an error importing the ESRI shape file: "%s".')
|
|
);
|
|
$message->addParam($GLOBALS['import_handle']->getError());
|
|
|
|
return;
|
|
}
|
|
}
|
|
|
|
$temp_dbf_file = false;
|
|
// We need dbase extension to handle .dbf file
|
|
if (extension_loaded('dbase')) {
|
|
$temp = $GLOBALS['PMA_Config']->getTempDir('shp');
|
|
// If we can extract the zip archive to 'TempDir'
|
|
// and use the files in it for import
|
|
if ($compression == 'application/zip' && ! is_null($temp)) {
|
|
$dbf_file_name = PMA_findFileFromZipArchive(
|
|
'/^.*\.dbf$/i',
|
|
$import_file
|
|
);
|
|
// If the corresponding .dbf file is in the zip archive
|
|
if ($dbf_file_name) {
|
|
// Extract the .dbf file and point to it.
|
|
$extracted = PMA_zipExtract(
|
|
$import_file,
|
|
$dbf_file_name
|
|
);
|
|
if ($extracted !== false) {
|
|
$dbf_file_path = $temp . (PMA_IS_WINDOWS ? '\\' : '/')
|
|
. Sanitize::sanitizeFilename($dbf_file_name, true);
|
|
$handle = fopen($dbf_file_path, 'wb');
|
|
if ($handle !== false) {
|
|
fwrite($handle, $extracted);
|
|
fclose($handle);
|
|
$temp_dbf_file = true;
|
|
// Replace the .dbf with .*, as required
|
|
// by the bsShapeFiles library.
|
|
$file_name = substr(
|
|
$dbf_file_path, 0, strlen($dbf_file_path) - 4
|
|
) . '.*';
|
|
$shp->FileName = $file_name;
|
|
}
|
|
}
|
|
}
|
|
} elseif (!empty($local_import_file)
|
|
&& !empty($GLOBALS['cfg']['UploadDir'])
|
|
&& $compression == 'none'
|
|
) {
|
|
// If file is in UploadDir, use .dbf file in the same UploadDir
|
|
// to load extra data.
|
|
// Replace the .shp with .*,
|
|
// so the bsShapeFiles library correctly locates .dbf file.
|
|
$file_name = mb_substr(
|
|
$import_file,
|
|
0,
|
|
mb_strlen($import_file) - 4
|
|
) . '.*';
|
|
$shp->FileName = $file_name;
|
|
}
|
|
}
|
|
|
|
// Delete the .dbf file extracted to 'TempDir'
|
|
if ($temp_dbf_file
|
|
&& isset($dbf_file_path)
|
|
&& file_exists($dbf_file_path)
|
|
) {
|
|
unlink($dbf_file_path);
|
|
}
|
|
|
|
// Load data
|
|
$shp->loadFromFile('');
|
|
if ($shp->lastError != "") {
|
|
$error = true;
|
|
$message = PMA\libraries\Message::error(
|
|
__('There was an error importing the ESRI shape file: "%s".')
|
|
);
|
|
$message->addParam($shp->lastError);
|
|
|
|
return;
|
|
}
|
|
|
|
switch ($shp->shapeType) {
|
|
// ESRI Null Shape
|
|
case 0:
|
|
break;
|
|
// ESRI Point
|
|
case 1:
|
|
$gis_type = 'point';
|
|
break;
|
|
// ESRI PolyLine
|
|
case 3:
|
|
$gis_type = 'multilinestring';
|
|
break;
|
|
// ESRI Polygon
|
|
case 5:
|
|
$gis_type = 'multipolygon';
|
|
break;
|
|
// ESRI MultiPoint
|
|
case 8:
|
|
$gis_type = 'multipoint';
|
|
break;
|
|
default:
|
|
$error = true;
|
|
$message = PMA\libraries\Message::error(
|
|
__('MySQL Spatial Extension does not support ESRI type "%s".')
|
|
);
|
|
$message->addParam($shp->getShapeName());
|
|
return;
|
|
}
|
|
|
|
if (isset($gis_type)) {
|
|
/** @var GISMultilinestring|\PMA\libraries\gis\GISMultipoint|\PMA\libraries\gis\GISPoint|GISPolygon $gis_obj */
|
|
$gis_obj = GISFactory::factory($gis_type);
|
|
} else {
|
|
$gis_obj = null;
|
|
}
|
|
|
|
$num_rows = count($shp->records);
|
|
// If .dbf file is loaded, the number of extra data columns
|
|
$num_data_cols = isset($shp->DBFHeader) ? count($shp->DBFHeader) : 0;
|
|
|
|
$rows = array();
|
|
$col_names = array();
|
|
if ($num_rows != 0) {
|
|
foreach ($shp->records as $record) {
|
|
$tempRow = array();
|
|
if ($gis_obj == null) {
|
|
$tempRow[] = null;
|
|
} else {
|
|
$tempRow[] = "GeomFromText('"
|
|
. $gis_obj->getShape($record->SHPData) . "')";
|
|
}
|
|
|
|
if (isset($shp->DBFHeader)) {
|
|
foreach ($shp->DBFHeader as $c) {
|
|
$cell = trim($record->DBFData[$c[0]]);
|
|
|
|
if (!strcmp($cell, '')) {
|
|
$cell = 'NULL';
|
|
}
|
|
|
|
$tempRow[] = $cell;
|
|
}
|
|
}
|
|
$rows[] = $tempRow;
|
|
}
|
|
}
|
|
|
|
if (count($rows) == 0) {
|
|
$error = true;
|
|
$message = PMA\libraries\Message::error(
|
|
__('The imported file does not contain any data!')
|
|
);
|
|
|
|
return;
|
|
}
|
|
|
|
// Column names for spatial column and the rest of the columns,
|
|
// if they are available
|
|
$col_names[] = 'SPATIAL';
|
|
for ($n = 0; $n < $num_data_cols; $n++) {
|
|
$col_names[] = $shp->DBFHeader[$n][0];
|
|
}
|
|
|
|
// Set table name based on the number of tables
|
|
if (strlen($db) > 0) {
|
|
$result = $GLOBALS['dbi']->fetchResult('SHOW TABLES');
|
|
$table_name = 'TABLE ' . (count($result) + 1);
|
|
} else {
|
|
$table_name = 'TBL_NAME';
|
|
}
|
|
$tables = array(array($table_name, $col_names, $rows));
|
|
|
|
// Use data from shape file to chose best-fit MySQL types for each column
|
|
$analyses = array();
|
|
$analyses[] = PMA_analyzeTable($tables[0]);
|
|
|
|
$table_no = 0;
|
|
$spatial_col = 0;
|
|
$analyses[$table_no][TYPES][$spatial_col] = GEOMETRY;
|
|
$analyses[$table_no][FORMATTEDSQL][$spatial_col] = true;
|
|
|
|
// Set database name to the currently selected one, if applicable
|
|
if (strlen($db) > 0) {
|
|
$db_name = $db;
|
|
$options = array('create_db' => false);
|
|
} else {
|
|
$db_name = 'SHP_DB';
|
|
$options = null;
|
|
}
|
|
|
|
// Created and execute necessary SQL statements from data
|
|
$null_param = null;
|
|
PMA_buildSQL($db_name, $tables, $analyses, $null_param, $options, $sql_data);
|
|
|
|
unset($tables);
|
|
unset($analyses);
|
|
|
|
$finished = true;
|
|
$error = false;
|
|
|
|
// Commit any possible data in buffers
|
|
PMA_importRunQuery('', '', $sql_data);
|
|
}
|
|
|
|
/**
|
|
* Returns specified number of bytes from the buffer.
|
|
* Buffer automatically fetches next chunk of data when the buffer
|
|
* falls short.
|
|
* Sets $eof when $GLOBALS['finished'] is set and the buffer falls short.
|
|
*
|
|
* @param int $length number of bytes
|
|
*
|
|
* @return string
|
|
*/
|
|
public static function readFromBuffer($length)
|
|
{
|
|
global $buffer, $eof;
|
|
|
|
if (strlen($buffer) < $length) {
|
|
if ($GLOBALS['finished']) {
|
|
$eof = true;
|
|
} else {
|
|
$buffer .= PMA_importGetNextChunk();
|
|
}
|
|
}
|
|
$result = substr($buffer, 0, $length);
|
|
$buffer = substr($buffer, $length);
|
|
|
|
return $result;
|
|
}
|
|
}
|