554 Commits
Author SHA1 Message Date
Matthew Johnson 1a39f57af1 Release v3.14.3
This release fixes a double-free issue introduced by e18eb69.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
v3.14.3
2018-01-03 17:13:58 -08:00
Patrick McCarty eb95f36d3b Fix double free issue
In commit e18eb69, retrieve_manifests() was refactored to support the
mixer integration feature, but it introduced a double free of the
"filename" pointer when following certain code paths.

One code path to reproduce the issue is when a Manifest.MoM is not
present in the state directory, and swupd_curl_check_network() fails.  A
free(filename) was being called immediately before
swupd_curl_check_network(), and then again after jumping to the "out"
label for the error condition.

Resolve the issue by resetting the filename pointer to NULL after
freeing the memory to prevent a later double free. I also reset the url
pointer to NULL at the second call site for similar reasoning.

Signed-off-by: Patrick McCarty <patrick.mccarty@intel.com>
2018-01-03 17:11:35 -08:00
Matthew Johnson fbbc445627 Release v3.14.2
This release removes download continues for bundle-add and verify
--install operations because swupd does not expect to have valid cache
for these operations. It also updates the heuristics logic in order to
not set files under /usr/src/kernel/ as state files so that kernel
sources can be shipped.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
v3.14.2
2017-12-13 16:56:38 -08:00
Miguel Bernal Marin 3afa5220f9 heuristics: do not ignore /usr/src/kernel
Linux kernel sources are shipped in the /usr/src/kernel/<kernel_version>
directory. So, it need to be added as an exception in the is_state()
function.

Fixes #348

Debugged-by: Ornelas Aguayo, Jesus <jesus.ornelas.aguayo@intel.com>
Debugged-by: Mario Alfredo Carrillo Arevalo <mario.alfredo.c.arevalo@intel.com>
Signed-off-by: Miguel Bernal Marin <miguel.bernal.marin@linux.intel.com>
2017-12-13 16:47:13 -08:00
Matthew Johnson 85cc5a7fe4 Do not try to resume failed bundle-add pack downloads
Fixes #352
This operation is fragile and can cause errors if a zero pack download
is interrupted resulting in an incomplete tar archive. A user reported
that having the incomplete pack around prevented the pack from being
re-downloaded and the content was incorrect so the bundle-add was not
completing. Instead of trying to resume a bundle-add pack download just
remove the old file and try again.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-12-13 16:00:04 -08:00
Matthew Johnson 52019f638c Release v3.14.1
This release makes several library linking fixes and cleanups, removes
several completely unused test files, and updates generated man pages.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
v3.14.1
2017-12-01 10:59:37 -08:00
Matthew Johnson 24e0803d85 Update out-of-date man page
Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-12-01 11:00:02 -08:00
Matthew Johnson 6de33b5953 Remove tests that have been unused since inception
Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-12-01 11:00:02 -08:00
Matthew Johnson 27644c69f1 Remove redundant libraries linked into swupd binary
Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-12-01 11:00:02 -08:00
Matthew Johnson ad69494195 Link libarchive into libswupd
Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-12-01 09:40:18 -08:00
Matthew Johnson 74b85edc78 Release v3.14.0
* Fix a bug in which the return code of an internal function was not
  being checked.
* Add the --picky-tree argument
  --picky-tree=path allows a user to specify the tree under which to run
  verify --picky
* Add the --picky-whitelist argument
  --picky-whitelist=regex allows the user to tell swupd to ignore
  certain file paths when running verify --picky
* Use libarchive to extract archives instead of direct calls to tar

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
v3.14.0
2017-11-30 17:20:18 -08:00
Matthew Johnson c8fad75386 Fix code style error
Different versions of clang-format suggest different indentation levels
for comments before labels. This commit reverts
64e14b6fd9 which likely used an older
version of clang-format.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-11-30 17:17:40 -08:00
Matthew Johnson 08f8614fc7 Add travis configuration for libarchive
Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-11-30 17:15:40 -08:00
Matthew Johnson 6043f4700b Use libarchive instead of calling out to tar
Use libarchive in order to make use of its security features and avoid
calling out to tar via a shell. The TAR_COMMAND is still used in
staging.c to complete the copy when a hardlink fails.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-11-30 17:15:40 -08:00
Patrick Ohly 64e14b6fd9 verify.c: fix indention
"make compliant" wants the comment aligned with the following label.
This fixes commit ad556deb.

Signed-off-by: Patrick Ohly <patrick.ohly@intel.com>
2017-11-30 17:15:09 -08:00
Patrick Ohly d59738ece7 swupd verify: fix --picky, add --picky-tree and--picky-whitelist
The code implementing the suppression of /usr/lib/kernel,
/usr/lib/modules and /usr/local did a rather simplistic prefix
comparison with strncmp() to match path names against these
exceptions. As a result, paths like /usr/lib/kernel.old which should
get reported also got skipped.

An if check tested the wrong variable, so the result from strdup()
wasn't checked.

The replacement code uses regular expression matching and allows
replacing the default (--picky-whitelist
"/ignore-this-top-level-dir"). A single parameter is enough when using
the | operator.

A/B partition update must remove extra files in the entire partition,
which can be selected with --picky-tree=/, and also needs to override
the default whitelist.

Fixes #336
Implements #239

Signed-off-by: Patrick Ohly <patrick.ohly@intel.com>
2017-11-30 17:15:09 -08:00
Patrick Ohly 984a0001b7 swupd verify --fix: report removal errors
The return code of the remove() call was not getting checked. Usually
it shouldn't fail, but if it does, the failure now gets reported.

Instead of doing this change in two places, the common code gets
refactored into a new handle() function.

Signed-off-by: Patrick Ohly <patrick.ohly@intel.com>
2017-11-30 17:15:09 -08:00
Matthew Johnson 5126b765e0 Release v3.13.1
This release adds the ability to configure an executable path to be used
for swupd pre- and post-updates. The previous hard-coded method still
exists as a fallback.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
v3.13.1
2017-11-14 15:26:09 -08:00
Matthew Johnson 20768e13b3 Fix code style issues
Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-11-14 15:25:14 -08:00
William Douglas 6966baf4fa Configure systemctl and pre-update commands
Add the ability to configure an executable path to be used when swupd
completes its update process. Similarly add the use of a configurable
executable path for the pre-update script. The previous method will be
used if the configuration isn't set.
2017-11-14 15:24:50 -08:00
Matthew Johnson d405c7f430 Release v3.13.0
This release adds mixer integration to swupd-client which allows local
content to be added alongside upstream content.

A bug is also fixed where CTRL-C during fullfile download caused
subsequent operations to fail due to a hash mismatch in the state
directory. Autocompletion was fixed. A --no-scripts flag was added to
the post-update scripts entirely, mainly for container use-cases when
these scripts will not work.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
v3.13.0
2017-11-03 11:50:16 -07:00
Tudor Marcu 2ed73f38e3 Update add-pkg.sh naming and fix man pages
Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu 8b696b789d Fix code style
Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu 884a720b8c Split out well known filename checks into function
Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu 12ceb7c2a5 add-pkg.sh: Add precheck for mixer and update curl
The mixer bundle must be installed for any of this to work, so check that the
mixer program exists before continuing to do any legitimate work.
The curl commands should also be checked that they worked, and not leave
incorrect 404 files around.

Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu e62615d0c7 Update command line args and clarify comment
Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu 2793bda3a6 Move bsearch_helper into only file it is used
Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu 5a8f8e6c2e Update function signature for no sig verify
Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu be4c7bdba1 Block on manifest collisions but allow override
When content mismatches in the user manifest and the upstream content,
that is - the filenames are equal but the hashes are not, this signifies
that something is being introduced that already exists and is not the
same. Currently, only additive functionality is fully guaranteed to work,
so existing packages can be added as long as they are the same as the ones
provided by upstream. If non-unique content is added, all conflicts will be
printed out to the user so it can be fixed, and swupd will exit unless it
is given the allow-mix-collisions override flag.

Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu 71a58815bd Replace hardcoded paths and update URL comparison
Use defines instead, and check the user passed in URL against the URLs listed
in the official upstream contenturl file vs a static hardcoded URL.

Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu bc0fbefafc Add man pages and add-pkg.sh
The add-pkg.sh script handles all of the custom mixer content generation
for use added content. Supporting documentation is added to explain its
behaviour and the additional swupd command to incorporate the local content.

Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu e910900b1b Add better error handling throughout and cleanup
Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu ebf0373f00 Add check_mix_exists() function
Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu e18eb6917f Update to support new state if system is on a mix
This patch adds the logic required to handle files and manifests
differently if it is detected that the system is on a mix, or the
content being provided is local mix content.

Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu e9cb557676 Convert manifest to array
Until internal data structures are fully migrated, provide a helper function
to transform a loaded manifest to an array. We can then do file lookups in
O(logn) time using binary search instead of traversing linked lists.

Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu c7f37aec32 Move bsearch helper out to use in other functions
Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Tudor Marcu 20dc4ed84f Store 'filecount' field from manifest header
The filecount field becomes relevant when using an array implementation
of the manifest contents, so store it in the struct.

Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
2017-11-03 11:50:08 -07:00
Matthew Johnson 9d06cbf9b8 Add functional test for bad hash in state directory
Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-11-03 11:45:39 -07:00
Matthew Johnson 497063952d Remove hash-mismatched file in full-download loop
Fixes #325

Fullfile download will fail when downloading if it encounters the file
already existing in state directory but the file's hash is mismatching.
Instead of failing on this case remove that file and download it again.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-11-03 11:45:39 -07:00
Icarus Sparry 040c816009 Fix build break for "make dist"
Signed-off-by: Icarus Sparry <icarus.w.sparry@intel.com>
2017-11-03 11:31:34 -07:00
Matthew Johnson 91d067b7c9 Add tests for --no-scripts flag
Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-11-02 09:07:39 -07:00
Matthew Johnson 2658bd4959 Add --no-scripts flag to skip post-update scripts
Add the --no-scripts flag to update, verify, and bundle-add commands to
allow users to skip the post update scripts for these commands. This is
useful when running in environments when systemctl is not available such
as containers.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-11-02 09:07:39 -07:00
Icarus Sparry bbb9774703 Fix generation of swupd.bash
When output was changed to stderr for user output, this broke
automatic generation of the bash completion function.

Add suitable redirection to the generation script to capture stderr.

Add test to check the generated file looks reasonable.

Signed-off-by: Icarus Sparry <icarus.w.sparry@intel.com>
2017-11-02 09:06:57 -07:00
Patrick McCarty 9165551893 travis: install rst2man dependency
Because rst2man.py is called when the timestamps on *.rst are newer than
their associated man pages, we need to have rst2man.py just in case we
hit this condition for the build.

Signed-off-by: Patrick McCarty <patrick.mccarty@intel.com>
2017-10-31 16:27:49 -07:00
Matthew Johnson ba9e0f232f Release v3.12.7
This release improves rename detection times from a O(n^3) operation to
roughly a O(n^2) operation (although typically less). It also makes curl
error messages more consistent across the codebase.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
v3.12.7
2017-10-27 10:11:16 -07:00
Icarus Sparry 7ca4873b73 More a constant time check before a O(n) check
Hopefully will drop yet another cubic operation to quadratic

Signed-off-by: Icarus Sparry <icarus.w.sparry@intel.com>
2017-10-26 16:21:28 -07:00
Patrick McCarty 1876dc1bf0 Add curl error wrapper function
To ensure that generic curl error messages are printed uniformly, add a
wrapper function.

Signed-off-by: Patrick McCarty <patrick.mccarty@intel.com>
2017-10-23 12:22:41 -07:00
Patrick McCarty ffabf640a6 Pretty print check_network error messages
This line of code is a recent addition, and I think it is more helpful
for the end user to see the pretty-printed curl error message in
addition to the error number.

Signed-off-by: Patrick McCarty <patrick.mccarty@intel.com>
2017-10-23 12:22:41 -07:00
Matthew Johnson d47e05edac Release v3.12.6
This release fixes client re-exec capabilities over format bumps.
Instead of relying on a special post-update action from the server via
the Manifest.MoM (which was being done incorrectly server-side) the
client now does format bump detection by itself.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
v3.12.6
2017-10-19 10:13:17 -07:00
Matthew Johnson c79297886b Fix re-exec capabilities over format bumps
Instead of relying on swupd-server to put the post-update action in the
correct manifest and in the correct format, do the format change
detection on the client.

Signed-off-by: Matthew Johnson <matthew.johnson@intel.com>
2017-10-19 09:51:08 -07:00