1 # Copyright (C) 2020 all contributors <meta@public-inbox.org>
2 # License: AGPL-3.0+ <https://www.gnu.org/licenses/agpl-3.0.txt>
4 # Lazy MIME parser, it still slurps the full message but keeps short
5 # lifetimes. Unlike Email::MIME, it doesn't pre-split multipart
6 # messages or do any up-front parsing of headers besides splitting
7 # the header string from the body.
9 # Contains ideas and code from Email::Simple and Email::MIME
10 # (Perl Artistic License, GPL-1+)
12 # This aims to replace Email::MIME for our purposes, similar API
13 # but internal field names are differ if they're not 100%-compatible.
15 # Includes some proposed fixes for Email::MIME:
16 # - header-less sub parts - https://github.com/rjbs/Email-MIME/issues/14
17 # - "0" as boundary - https://github.com/rjbs/Email-MIME/issues/63
20 # bdy => scalar ref for body (may be undef),
21 # hdr => scalar ref for header,
22 # crlf => "\n" or "\r\n" (scalar, not a ref),
24 # # filled in during ->each_part
25 # ct => hash ref returned by parse_content_type
27 package PublicInbox::Eml;
31 use Encode qw(find_encoding decode encode); # stdlib
32 use Text::Wrap qw(wrap); # stdlib, we need Perl 5.6+ for $huge
34 my $MIME_Header = find_encoding('MIME-Header');
36 use PublicInbox::EmlContentFoo qw(parse_content_type parse_content_disposition);
37 use Email::MIME::Encodings;
38 $PublicInbox::EmlContentFoo::STRICT_PARAMS = 0;
40 our $MAXPARTS = 1000; # same as SpamAssassin
41 our $MAXDEPTH = 20; # seems enough, Perl sucks, here
42 our $MAXBOUNDLEN = 2048; # same as postfix
44 my $NO_ENCODE_RE = qr/\A(?:7bit|8bit|binary)[ \t]*(?:;|$)?/i;
45 my %DECODE_ADDRESS = map { $_ => 1 } qw(From To Cc Sender Reply-To);
48 'Content-Description' => 1,
49 'Content-Type' => 1, # not correct, but needed, oh well
51 our %STR_TYPE = (text => 1);
52 our %STR_SUBTYPE = (plain => 1, html => 1);
57 # Do not normalize $k with lc/uc; instead strive to keep
58 # capitalization in our codebase consistent.
59 $re_memo{$k} ||= qr/^\Q$k\E:[ \t]*([^\n]*\r?\n # 1st line
61 (?:[^:\n]*?[ \t]+[^\n]*\r?\n)*)
65 # compatible with our uses of Email::MIME
67 my $ref = ref($_[1]) ? $_[1] : \(my $cpy = $_[1]);
68 if ($$ref =~ /(?:\r?\n(\r?\n))/gs) { # likely
69 # This can modify $$ref in-place and to avoid memcpy/memmove
70 # on a potentially large $$ref. It does need to make a
71 # copy for $hdr, though. Idea stolen from Email::Simple
72 my $hdr = substr($$ref, 0, pos($$ref), ''); # sv_chop on $$ref
73 substr($hdr, -(length($1))) = ''; # lower SvCUR
74 bless { hdr => \$hdr, crlf => $1, bdy => $ref }, __PACKAGE__;
75 } elsif ($$ref =~ /^[a-z0-9-]+[ \t]*:/ims && $$ref =~ /(\r?\n)\z/s) {
77 bless { hdr => \($$ref), crlf => $1 }, __PACKAGE__;
78 } else { # nothing useful
80 bless { hdr => \$hdr, crlf => "\n" }, __PACKAGE__;
85 my (undef, $ref) = @_;
86 # special case for messages like <85k5su9k59.fsf_-_@lola.goethe.zz>
87 $$ref =~ /\A(?:(\r?\n))/gs or goto &new;
88 my $hdr = substr($$ref, 0, pos($$ref), ''); # sv_chop on $$ref
89 bless { hdr => \$hdr, crlf => $1, bdy => $ref }, __PACKAGE__;
92 # same output as Email::Simple::Header::header_raw, but we extract
93 # headers on-demand instead of parsing them into a list which
94 # requires O(n) lookups anyways
96 my $re = re_memo($_[1]);
97 my @v = (${ $_[0]->{hdr} } =~ /$re/g);
99 # for compatibility w/ Email::Simple::Header,
104 wantarray ? @v : $v[0];
107 # pick the first Content-Type header to match Email::MIME behavior.
108 # It's usually the right one based on historical archives.
110 # PublicInbox::EmlContentFoo::content_type:
111 $_[0]->{ct} //= parse_content_type(header($_[0], 'Content-Type'));
114 sub body_decode ($$) {
115 my $cte = header_raw($_[0], 'Content-Transfer-Encoding');
116 ($cte) = ($cte =~ /([a-zA-Z0-9\-]+)/) if $cte; # For S/MIME, etc
117 (!$cte || $cte =~ $NO_ENCODE_RE) ?
118 $_[1] : Email::MIME::Encodings::decode($cte, $_[1], '7bit');
121 # returns a queue of sub-parts iff it's worth descending into
122 # TODO: descend into message/rfc822 parts (Email::MIME didn't)
123 sub mp_descend ($$) {
124 my ($self, $nr) = @_; # or $once for top-level
125 my $bnd = ct($self)->{attributes}->{boundary} // return; # single-part
126 return if $bnd eq '' || length($bnd) >= $MAXBOUNDLEN;
127 $bnd = quotemeta($bnd);
129 # "multipart" messages can exist w/o a body
130 my $bdy = ($nr ? delete($self->{bdy}) : \(body_raw($self))) or return;
132 # Cut at the the first epilogue, not subsequent ones.
133 # *sigh* just the regexp match alone seems to bump RSS by
134 # length($$bdy) on a ~30M string:
135 $$bdy =~ /((?:\r?\n)?^--$bnd--[ \t]*\r?$)/gsm and
136 substr($$bdy, pos($$bdy) - length($1)) = '';
138 # *Sigh* split() doesn't work in-place and return CoW strings
139 # because Perl wants to "\0"-terminate strings. So split()
140 # again bumps RSS by length($$bdy)
142 # Quiet warning for "Complex regular subexpression recursion limit"
143 # in case we get many empty parts, it's harmless in this case
144 no warnings 'regexp';
145 my ($pre, @parts) = split(/(?:\r?\n)?(?:^--$bnd[ \t]*\r?\n)+/ms,
147 # + 3 since we don't want the last part
148 # processed to include any other excluded
149 # parts ($nr starts at 1, and I suck at math)
150 $MAXPARTS + 3 - $nr);
152 if (@parts) { # the usual path if we got this far:
153 undef $bdy; # release memory ASAP if $nr > 0
154 @parts = grep /[^ \t\r\n]/s, @parts; # ignore empty parts
156 # Keep "From: someone..." from preamble in old,
157 # buggy versions of git-send-email, otherwise drop it
158 # There's also a case where quoted text showed up in the
160 # <20060515162817.65F0F1BBAE@citi.umich.edu>
161 unshift(@parts, $pre) if $pre =~ /:/s;
164 # "multipart", but no boundary found, treat as single part
165 $self->{bdy} //= $bdy;
169 # $p = [ \@parts, $depth, $idx ]
170 # $idx[0] grows as $depth grows, $idx[1] == $p->[-1] == current part
171 # (callers need to be updated)
172 # \@parts is a queue which empties when we're done with a parent part
174 # same usage as PublicInbox::MsgIter::msg_iter
175 # $cb - user-supplied callback sub
176 # $arg - user-supplied arg (think pthread_create)
177 # $once - unref body scalar during iteration
179 my ($self, $cb, $arg, $once) = @_;
180 my $p = mp_descend($self, $once // 0) or
181 return $cb->([$self, 0, 0], $arg);
183 my @s; # our virtual stack
185 while ((scalar(@{$p->[0]}) || ($p = pop @s)) && ++$nr <= $MAXPARTS) {
186 ++$p->[-1]; # bump index
187 my (undef, @idx) = @$p;
188 @idx = (join('.', @idx));
189 my $depth = ($idx[0] =~ tr/././) + 1;
190 my $sub = new_sub(undef, \(shift @{$p->[0]}));
191 if ($depth < $MAXDEPTH && (my $nxt = mp_descend($sub, $nr))) {
192 push(@s, $p) if scalar @{$p->[0]};
193 $p = [ $nxt, @idx, 0 ];
194 } else { # a leaf node
195 $cb->([$sub, $depth, @idx], $arg);
200 ########### compatibility section for existing Email::MIME uses #########
203 bless { hdr => $_[0]->{hdr}, crlf => $_[0]->{crlf} }, __PACKAGE__;
208 my $parts = mp_descend($self, 0) or return ();
209 my $bnd = ct($self)->{attributes}->{boundary} // die 'BUG: no boundary';
210 my $bdy = $self->{bdy};
211 if ($$bdy =~ /\A(.*?)(?:\r?\n)?^--\Q$bnd\E[ \t]*\r?$/sm) {
212 $self->{preamble} = $1;
214 if ($$bdy =~ /^--\Q$bnd\E--[ \t]*\r?\n(.+)\z/sm) {
215 $self->{epilogue} = $1;
217 map { new_sub(undef, \$_) } @$parts;
221 my ($self, $parts) = @_;
223 # we can't fully support what Email::MIME does,
224 # just what our filter code needs:
225 my $bnd = ct($self)->{attributes}->{boundary} // die <<EOF;
226 ->parts_set not supported for single-part messages
228 my $crlf = $self->{crlf};
229 my $fin_bnd = "$crlf--$bnd--$crlf";
230 $bnd = "$crlf--$bnd$crlf";
231 ${$self->{bdy}} = join($bnd,
232 delete($self->{preamble}) // '',
233 map { $_->as_string } @$parts
236 (delete($self->{epilogue}) // '');
241 my ($self, $body) = @_;
242 my $bdy = $self->{bdy} = ref($body) ? $body : \$body;
243 my $cte = header_raw($self, 'Content-Transfer-Encoding');
244 if ($cte && $cte !~ $NO_ENCODE_RE) {
245 $$bdy = Email::MIME::Encodings::encode($cte, $$bdy)
251 my ($self, $body_str) = @_;
252 my $charset = ct($self)->{attributes}->{charset} or
253 Carp::confess('body_str was given, but no charset is defined');
254 body_set($self, \(encode($charset, $body_str, Encode::FB_CROAK)));
257 sub content_type { scalar header($_[0], 'Content-Type') }
259 # we only support raw header_set
261 my ($self, $pfx, @vals) = @_;
262 my $re = re_memo($pfx);
263 my $hdr = $self->{hdr};
264 return $$hdr =~ s!$re!!g if !@vals;
266 my $len = 78 - length($pfx);
268 # folding differs from Email::Simple::Header,
269 # we favor tabs for visibility (and space savings :P)
270 if (length($_) >= $len && (/\n[^ \t]/s || !/\n/s)) {
271 local $Text::Wrap::columns = $len;
272 local $Text::Wrap::huge = 'overflow';
273 $pfx . wrap('', "\t", $_) . $self->{crlf};
275 $pfx . $_ . $self->{crlf};
278 $$hdr =~ s!$re!shift(@vals) // ''!ge; # replace current headers, first
279 $$hdr .= join('', @vals); # append any leftovers not replaced
280 # wantarray ? @_[2..$#_] : $_[2]; # Email::Simple::Header compat
281 undef; # we don't care for the return value
284 # note: we only call this method on Subject
286 my ($self, $name, @vals) = @_;
288 next unless /[^\x20-\x7e]/;
289 utf8::encode($_); # to octets
290 # 39: int((75 - length("Subject: =?UTF-8?B?".'?=') ) / 4) * 3;
291 s/(.{1,39})/'=?UTF-8?B?'.encode_base64($1, '').'?='/ges;
293 header_set($self, $name, @vals);
296 sub mhdr_decode ($) { eval { $MIME_Header->decode($_[0]) } // $_[0] }
299 my $dis = header_raw($_[0], 'Content-Disposition');
300 my $attrs = parse_content_disposition($dis)->{attributes};
301 my $fn = $attrs->{filename};
302 $fn = ct($_[0])->{attributes}->{name} if !defined($fn) || $fn eq '';
303 (defined($fn) && $fn =~ /=\?/) ? mhdr_decode($fn) : $fn;
306 sub xs_addr_str { # helper for ->header / ->header_str
307 for (@_) { # array from header_raw()
309 my @g = parse_email_groups($_); # [ foo => [ E::A::X, ... ]
310 for (my $i = 0; $i < @g; $i += 2) {
311 if (defined($g[$i]) && $g[$i] =~ /=\?/) {
312 $g[$i] = mhdr_decode($g[$i]);
314 my $addrs = $g[$i + 1];
315 for my $eax (@$addrs) {
316 for my $m (qw(phrase comment)) {
318 $eax->$m(mhdr_decode($v)) if
323 $_ = format_email_groups(@g);
328 require Email::Address::XS;
329 Email::Address::XS->import(qw(parse_email_groups format_email_groups));
332 # fallback to just decoding everything, because parsing
333 # email addresses correctly w/o C/XS is slow
334 %DECODE_FULL = (%DECODE_FULL, %DECODE_ADDRESS);
335 %DECODE_ADDRESS = ();
338 *header = \&header_str;
340 my ($self, $name) = @_;
341 my @v = header_raw($self, $name);
342 if ($DECODE_ADDRESS{$name}) {
344 } elsif ($DECODE_FULL{$name}) {
346 $_ = mhdr_decode($_) if /=\?/;
349 wantarray ? @v : $v[0];
352 sub body_raw { ${$_[0]->{bdy} // \''}; }
354 sub body { body_decode($_[0], body_raw($_[0])) }
359 my $charset = $ct->{attributes}->{charset};
361 if ($STR_TYPE{$ct->{type}} && $STR_SUBTYPE{$ct->{subtype}}) {
364 Carp::confess("can't get body as a string for ",
365 join("\n\t", header_raw($self, 'Content-Type')));
367 decode($charset, body($self), Encode::FB_CROAK);
372 my $ret = ${ $self->{hdr} };
373 return $ret unless defined($self->{bdy});
374 $ret .= $self->{crlf};
375 $ret .= ${$self->{bdy}};
378 # Unlike Email::MIME::charset_set, this only changes the parsed
379 # representation of charset used for search indexing and HTML display.
380 # This does NOT affect what ->as_string returns.
382 ct($_[0])->{attributes}->{charset} = $_[1];
385 sub crlf { $_[0]->{crlf} // "\n" }
387 sub willneed { re_memo($_) for @_ }
389 willneed(qw(From To Cc Date Subject Content-Type In-Reply-To References
390 Message-ID X-Alt-Message-ID));