Subs-Graphics.php 34 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131
  1. <?php
  2. /**
  3. * This file deals with low-level graphics operations performed on images,
  4. * specially as needed for avatars (uploaded avatars), attachments, or
  5. * visual verification images.
  6. * It uses, for gifs at least, Gif Util. For more information on that,
  7. * please see its website.
  8. * TrueType fonts supplied by www.LarabieFonts.com
  9. *
  10. * Simple Machines Forum (SMF)
  11. *
  12. * @package SMF
  13. * @author Simple Machines http://www.simplemachines.org
  14. * @copyright 2011 Simple Machines
  15. * @license http://www.simplemachines.org/about/smf/license.php BSD
  16. *
  17. * @version 2.1 Alpha 1
  18. */
  19. if (!defined('SMF'))
  20. die('Hacking attempt...');
  21. /**
  22. * downloads a file from a url and stores it locally for avatar use by id_member.
  23. * - supports GIF, JPG, PNG, BMP and WBMP formats.
  24. * - detects if GD2 is available.
  25. * - uses resizeImageFile() to resize to max_width by max_height, and saves the result to a file.
  26. * - updates the database info for the member's avatar.
  27. * - returns whether the download and resize was successful.
  28. *
  29. * @param string $temporary_path, the full path to the temporary file
  30. * @param int $memID, member ID
  31. * @param int $max_width
  32. * @param int $max_height
  33. * @return bool, whether the download and resize was successful.
  34. *
  35. */
  36. function downloadAvatar($url, $memID, $max_width, $max_height)
  37. {
  38. global $modSettings, $sourcedir, $smcFunc;
  39. $ext = !empty($modSettings['avatar_download_png']) ? 'png' : 'jpeg';
  40. $destName = 'avatar_' . $memID . '_' . time() . '.' . $ext;
  41. // Just making sure there is a non-zero member.
  42. if (empty($memID))
  43. return false;
  44. require_once($sourcedir . '/ManageAttachments.php');
  45. removeAttachments(array('id_member' => $memID));
  46. $id_folder = !empty($modSettings['currentAttachmentUploadDir']) ? $modSettings['currentAttachmentUploadDir'] : 1;
  47. $avatar_hash = empty($modSettings['custom_avatar_enabled']) ? getAttachmentFilename($destName, false, null, true) : '';
  48. $smcFunc['db_insert']('',
  49. '{db_prefix}attachments',
  50. array(
  51. 'id_member' => 'int', 'attachment_type' => 'int', 'filename' => 'string-255', 'file_hash' => 'string-255', 'fileext' => 'string-8', 'size' => 'int',
  52. 'id_folder' => 'int',
  53. ),
  54. array(
  55. $memID, empty($modSettings['custom_avatar_enabled']) ? 0 : 1, $destName, $avatar_hash, $ext, 1,
  56. $id_folder,
  57. ),
  58. array('id_attach')
  59. );
  60. $attachID = $smcFunc['db_insert_id']('{db_prefix}attachments', 'id_attach');
  61. // Retain this globally in case the script wants it.
  62. $modSettings['new_avatar_data'] = array(
  63. 'id' => $attachID,
  64. 'filename' => $destName,
  65. 'type' => empty($modSettings['custom_avatar_enabled']) ? 0 : 1,
  66. );
  67. $destName = (empty($modSettings['custom_avatar_enabled']) ? (is_array($modSettings['attachmentUploadDir']) ? $modSettings['attachmentUploadDir'][$modSettings['currentAttachmentUploadDir']] : $modSettings['attachmentUploadDir']) : $modSettings['custom_avatar_dir']) . '/' . $destName . '.tmp';
  68. // Resize it.
  69. if (!empty($modSettings['avatar_download_png']))
  70. $success = resizeImageFile($url, $destName, $max_width, $max_height, 3);
  71. else
  72. $success = resizeImageFile($url, $destName, $max_width, $max_height);
  73. // Remove the .tmp extension.
  74. $destName = substr($destName, 0, -4);
  75. if ($success)
  76. {
  77. // Walk the right path.
  78. if (!empty($modSettings['currentAttachmentUploadDir']))
  79. {
  80. if (!is_array($modSettings['attachmentUploadDir']))
  81. $modSettings['attachmentUploadDir'] = unserialize($modSettings['attachmentUploadDir']);
  82. $path = $modSettings['attachmentUploadDir'][$modSettings['currentAttachmentUploadDir']];
  83. }
  84. else
  85. $path = $modSettings['attachmentUploadDir'];
  86. // Remove the .tmp extension from the attachment.
  87. if (rename($destName . '.tmp', empty($avatar_hash) ? $destName : $path . '/' . $attachID . '_' . $avatar_hash))
  88. {
  89. $destName = empty($avatar_hash) ? $destName : $path . '/' . $attachID . '_' . $avatar_hash;
  90. list ($width, $height) = getimagesize($destName);
  91. $mime_type = 'image/' . $ext;
  92. // Write filesize in the database.
  93. $smcFunc['db_query']('', '
  94. UPDATE {db_prefix}attachments
  95. SET size = {int:filesize}, width = {int:width}, height = {int:height},
  96. mime_type = {string:mime_type}
  97. WHERE id_attach = {int:current_attachment}',
  98. array(
  99. 'filesize' => filesize($destName),
  100. 'width' => (int) $width,
  101. 'height' => (int) $height,
  102. 'current_attachment' => $attachID,
  103. 'mime_type' => $mime_type,
  104. )
  105. );
  106. return true;
  107. }
  108. else
  109. return false;
  110. }
  111. else
  112. {
  113. $smcFunc['db_query']('', '
  114. DELETE FROM {db_prefix}attachments
  115. WHERE id_attach = {int:current_attachment}',
  116. array(
  117. 'current_attachment' => $attachID,
  118. )
  119. );
  120. @unlink($destName . '.tmp');
  121. return false;
  122. }
  123. }
  124. /**
  125. * Create a thumbnail of the given source.
  126. *
  127. * @uses resizeImageFile() function to achieve the resize.
  128. *
  129. * @param string $source
  130. * @param int $max_width
  131. * @param int $max_height
  132. * @return bool, whether the thumbnail creation was successful.
  133. */
  134. function createThumbnail($source, $max_width, $max_height)
  135. {
  136. global $modSettings;
  137. $destName = $source . '_thumb.tmp';
  138. // Do the actual resize.
  139. if (!empty($modSettings['attachment_thumb_png']))
  140. $success = resizeImageFile($source, $destName, $max_width, $max_height, 3);
  141. else
  142. $success = resizeImageFile($source, $destName, $max_width, $max_height);
  143. // Okay, we're done with the temporary stuff.
  144. $destName = substr($destName, 0, -4);
  145. if ($success && @rename($destName . '.tmp', $destName))
  146. return true;
  147. else
  148. {
  149. @unlink($destName . '.tmp');
  150. @touch($destName);
  151. return false;
  152. }
  153. }
  154. /**
  155. * Used to re-econodes an image to a specifed image format
  156. * - creates a copy of the file at the same location as fileName.
  157. * - the file would have the format preferred_format if possible, otherwise the default format is jpeg.
  158. * - the function makes sure that all non-essential image contents are disposed.
  159. *
  160. * @param string $fileName
  161. * @param int $preferred_format = 0
  162. * @return bool, true on success, false on failure.
  163. */
  164. function reencodeImage($fileName, $preferred_format = 0)
  165. {
  166. if (!resizeImageFile($fileName, $fileName . '.tmp', null, null, $preferred_format))
  167. {
  168. if (file_exists($fileName . '.tmp'))
  169. unlink($fileName . '.tmp');
  170. return false;
  171. }
  172. if (!unlink($fileName))
  173. return false;
  174. if (!rename($fileName . '.tmp', $fileName))
  175. return false;
  176. }
  177. /**
  178. * Searches through the file to see if there's potentialy harmful non-binary content.
  179. * - if extensiveCheck is true, searches for asp/php short tags as well.
  180. *
  181. * @param string $fileName
  182. * @param bool $extensiveCheck = false
  183. * @return true on success, false on failure.
  184. */
  185. function checkImageContents($fileName, $extensiveCheck = false)
  186. {
  187. $fp = fopen($fileName, 'rb');
  188. if (!$fp)
  189. fatal_lang_error('attach_timeout');
  190. $prev_chunk = '';
  191. while (!feof($fp))
  192. {
  193. $cur_chunk = fread($fp, 8192);
  194. // Though not exhaustive lists, better safe than sorry.
  195. if (!empty($extensiveCheck))
  196. {
  197. // Paranoid check. Some like it that way.
  198. if (preg_match('~(iframe|\\<\\?|\\<%|html|eval|body|script\W|[CF]WS[\x01-\x0C])~i', $prev_chunk . $cur_chunk) === 1)
  199. {
  200. fclose($fp);
  201. return false;
  202. }
  203. }
  204. else
  205. {
  206. // Check for potential infection
  207. if (preg_match('~(iframe|(?<!cellTextIs)html|eval|body|script\W|[CF]WS[\x01-\x0C])~i', $prev_chunk . $cur_chunk) === 1)
  208. {
  209. fclose($fp);
  210. return false;
  211. }
  212. }
  213. $prev_chunk = $cur_chunk;
  214. }
  215. fclose($fp);
  216. return true;
  217. }
  218. /**
  219. * Sets a global $gd2 variable needed by some functions to determine
  220. * whether the GD2 library is present.
  221. *
  222. * @return whether or not GD1 is available.
  223. */
  224. function checkGD()
  225. {
  226. global $gd2;
  227. // Check to see if GD is installed and what version.
  228. if (($extensionFunctions = get_extension_funcs('gd')) === false)
  229. return false;
  230. // Also determine if GD2 is installed and store it in a global.
  231. $gd2 = in_array('imagecreatetruecolor', $extensionFunctions) && function_exists('imagecreatetruecolor');
  232. return true;
  233. }
  234. /**
  235. * Checks whether the Imagick class is present.
  236. *
  237. * @return whether or not Imagick is available.
  238. */
  239. function checkIM()
  240. {
  241. static $IM;
  242. if (isset($IM))
  243. return $IM;
  244. $IM = class_exists('Imagick');
  245. return $IM;
  246. }
  247. /**
  248. * See if we have enough memory to thumbnail an image
  249. *
  250. * @return whether we do
  251. */
  252. function imageMemoryCheck($sizes)
  253. {
  254. global $modSettings;
  255. // doing the old 'set it and hope' way?
  256. if (empty($modSettings['attachment_thumb_memory']))
  257. {
  258. setMemoryLimit('128M');
  259. return true;
  260. }
  261. // Determine the memory requirements for this image, note: if you want to use an image formula W x H x bits/8 x channels x Overhead factor
  262. // you will need to account for single bit images as GD expands them to an 8 bit and will greatly overun the calculated value. The 5 is
  263. // simply a shortcut of 8bpp, 3 channels, 1.66 overhead
  264. $needed_memory = ($sizes[0] * $sizes[1] * 5);
  265. // if we need more, lets try to get it
  266. return setMemoryLimit($needed_memory, true);
  267. }
  268. /**
  269. * Resizes an image from a remote location or a local file.
  270. * Puts the resized image at the destination location.
  271. * The file would have the format preferred_format if possible,
  272. * otherwise the default format is jpeg.
  273. *
  274. * @param string $source
  275. * @param string $destination
  276. * @param int $max_width
  277. * @param int $max_height
  278. * @param int $preferred_format = 0
  279. * @return whether it succeeded.
  280. */
  281. function resizeImageFile($source, $destination, $max_width, $max_height, $preferred_format = 0)
  282. {
  283. global $sourcedir;
  284. // Nothing to do without GD or IM
  285. if (!checkGD() || !checkIM())
  286. return false;
  287. static $default_formats = array(
  288. '1' => 'gif',
  289. '2' => 'jpeg',
  290. '3' => 'png',
  291. '6' => 'bmp',
  292. '15' => 'wbmp'
  293. );
  294. require_once($sourcedir . '/Subs-Package.php');
  295. // Get the image file, we have to work with something after all
  296. $fp_destination = fopen($destination, 'wb');
  297. if ($fp_destination && substr($source, 0, 7) == 'http://')
  298. {
  299. $fileContents = fetch_web_data($source);
  300. fwrite($fp_destination, $fileContents);
  301. fclose($fp_destination);
  302. $sizes = @getimagesize($destination);
  303. }
  304. elseif ($fp_destination)
  305. {
  306. $sizes = @getimagesize($source);
  307. $fp_source = fopen($source, 'rb');
  308. if ($fp_source !== false)
  309. {
  310. while (!feof($fp_source))
  311. fwrite($fp_destination, fread($fp_source, 8192));
  312. fclose($fp_source);
  313. }
  314. else
  315. $sizes = array(-1, -1, -1);
  316. fclose($fp_destination);
  317. }
  318. // We can't get to the file.
  319. else
  320. $sizes = array(-1, -1, -1);
  321. // See if we have -or- can get the needed memory for this operation
  322. if (checkGD() && !imageMemoryCheck($sizes))
  323. return false;
  324. // A known and supported format?
  325. // @todo test PSD and gif.
  326. if (checkIM() && isset($default_formats[$sizes[2]]))
  327. {
  328. return resizeImage(null, $destination, null, null, $max_width, $max_height, true, $preferred_format);
  329. }
  330. elseif (checkGD() && isset($default_formats[$sizes[2]]) && function_exists('imagecreatefrom' . $default_formats[$sizes[2]]))
  331. {
  332. $imagecreatefrom = 'imagecreatefrom' . $default_formats[$sizes[2]];
  333. if ($src_img = @$imagecreatefrom($destination))
  334. {
  335. return resizeImage($src_img, $destination, imagesx($src_img), imagesy($src_img), $max_width === null ? imagesx($src_img) : $max_width, $max_height === null ? imagesy($src_img) : $max_height, true, $preferred_format);
  336. }
  337. }
  338. return false;
  339. }
  340. /**
  341. * Resizes src_img proportionally to fit within max_width and max_height limits
  342. * if it is too large.
  343. * If GD2 is present, it'll use it to achieve better quality.
  344. * It saves the new image to destination_filename, as preferred_format
  345. * if possible, default is jpeg.
  346. * @uses GD
  347. *
  348. * @param resource $src_img
  349. * @param string $destName
  350. * @param int $src_width
  351. * @param int $src_height
  352. * @param int $max_width
  353. * @param int $max_height
  354. * @param bool $force_resize = false
  355. * @param int $preferred_format = 0
  356. */
  357. function resizeImage($src_img, $destName, $src_width, $src_height, $max_width, $max_height, $force_resize = false, $preferred_format = 0)
  358. {
  359. global $gd2, $modSettings;
  360. if (checkIM())
  361. {
  362. static $default_formats = array(
  363. '1' => 'gif',
  364. '2' => 'jpeg',
  365. '3' => 'png',
  366. '6' => 'bmp',
  367. '15' => 'wbmp'
  368. );
  369. $preferred_format = empty($preferred_format) || !isset($default_formats[$preferred_format]) ? 2 : $preferred_format;
  370. $imagick = New Imagick($destName);
  371. $src_width = empty($src_width) ? $imagick->getImageWidth() : $src_width;
  372. $src_height = empty($src_height) ? $imagick->getImageHeight() : $src_height;
  373. $dest_width = empty($max_width) ? $src_width : $max_width;
  374. $dest_height = empty($max_height) ? $src_height : $max_height;
  375. $imagick->setImageFormat($default_formats[$preferred_format]);
  376. $success = $imagick->writeImage($destName);
  377. return !empty($success);
  378. }
  379. elseif (checkGD())
  380. {
  381. $success = false;
  382. // Determine whether to resize to max width or to max height (depending on the limits.)
  383. if (!empty($max_width) || !empty($max_height))
  384. {
  385. if (!empty($max_width) && (empty($max_height) || $src_height * $max_width / $src_width <= $max_height))
  386. {
  387. $dst_width = $max_width;
  388. $dst_height = floor($src_height * $max_width / $src_width);
  389. }
  390. elseif (!empty($max_height))
  391. {
  392. $dst_width = floor($src_width * $max_height / $src_height);
  393. $dst_height = $max_height;
  394. }
  395. // Don't bother resizing if it's already smaller...
  396. if (!empty($dst_width) && !empty($dst_height) && ($dst_width < $src_width || $dst_height < $src_height || $force_resize))
  397. {
  398. // (make a true color image, because it just looks better for resizing.)
  399. if ($gd2)
  400. {
  401. $dst_img = imagecreatetruecolor($dst_width, $dst_height);
  402. // Deal nicely with a PNG - because we can.
  403. if ((!empty($preferred_format)) && ($preferred_format == 3))
  404. {
  405. imagealphablending($dst_img, false);
  406. if (function_exists('imagesavealpha'))
  407. imagesavealpha($dst_img, true);
  408. }
  409. }
  410. else
  411. $dst_img = imagecreate($dst_width, $dst_height);
  412. // Resize it!
  413. if ($gd2)
  414. imagecopyresampled($dst_img, $src_img, 0, 0, 0, 0, $dst_width, $dst_height, $src_width, $src_height);
  415. else
  416. imagecopyresamplebicubic($dst_img, $src_img, 0, 0, 0, 0, $dst_width, $dst_height, $src_width, $src_height);
  417. }
  418. else
  419. $dst_img = $src_img;
  420. }
  421. else
  422. $dst_img = $src_img;
  423. // Save the image as ...
  424. if (!empty($preferred_format) && ($preferred_format == 3) && function_exists('imagepng'))
  425. $success = imagepng($dst_img, $destName);
  426. elseif (!empty($preferred_format) && ($preferred_format == 1) && function_exists('imagegif'))
  427. $success = imagegif($dst_img, $destName);
  428. elseif (function_exists('imagejpeg'))
  429. $success = imagejpeg($dst_img, $destName);
  430. // Free the memory.
  431. imagedestroy($src_img);
  432. if ($dst_img != $src_img)
  433. imagedestroy($dst_img);
  434. return $success;
  435. }
  436. else
  437. // Without GD, no image resizing at all.
  438. return false;
  439. }
  440. /**
  441. * Copy image.
  442. * Used when imagecopyresample() is not available.
  443. * @param resource $dst_img
  444. * @param resource $src_img
  445. * @param int $dst_x
  446. * @param int $dst_y
  447. * @param int $src_x
  448. * @param int $src_y
  449. * @param int $dst_w
  450. * @param int $dst_h
  451. * @param int $src_w
  452. * @param int $src_h
  453. */
  454. function imagecopyresamplebicubic($dst_img, $src_img, $dst_x, $dst_y, $src_x, $src_y, $dst_w, $dst_h, $src_w, $src_h)
  455. {
  456. $palsize = imagecolorstotal($src_img);
  457. for ($i = 0; $i < $palsize; $i++)
  458. {
  459. $colors = imagecolorsforindex($src_img, $i);
  460. imagecolorallocate($dst_img, $colors['red'], $colors['green'], $colors['blue']);
  461. }
  462. $scaleX = ($src_w - 1) / $dst_w;
  463. $scaleY = ($src_h - 1) / $dst_h;
  464. $scaleX2 = (int) $scaleX / 2;
  465. $scaleY2 = (int) $scaleY / 2;
  466. for ($j = $src_y; $j < $dst_h; $j++)
  467. {
  468. $sY = (int) $j * $scaleY;
  469. $y13 = $sY + $scaleY2;
  470. for ($i = $src_x; $i < $dst_w; $i++)
  471. {
  472. $sX = (int) $i * $scaleX;
  473. $x34 = $sX + $scaleX2;
  474. $color1 = imagecolorsforindex($src_img, imagecolorat($src_img, $sX, $y13));
  475. $color2 = imagecolorsforindex($src_img, imagecolorat($src_img, $sX, $sY));
  476. $color3 = imagecolorsforindex($src_img, imagecolorat($src_img, $x34, $y13));
  477. $color4 = imagecolorsforindex($src_img, imagecolorat($src_img, $x34, $sY));
  478. $red = ($color1['red'] + $color2['red'] + $color3['red'] + $color4['red']) / 4;
  479. $green = ($color1['green'] + $color2['green'] + $color3['green'] + $color4['green']) / 4;
  480. $blue = ($color1['blue'] + $color2['blue'] + $color3['blue'] + $color4['blue']) / 4;
  481. $color = imagecolorresolve($dst_img, $red, $green, $blue);
  482. if ($color == -1)
  483. {
  484. if ($palsize++ < 256)
  485. imagecolorallocate($dst_img, $red, $green, $blue);
  486. $color = imagecolorclosest($dst_img, $red, $green, $blue);
  487. }
  488. imagesetpixel($dst_img, $i + $dst_x - $src_x, $j + $dst_y - $src_y, $color);
  489. }
  490. }
  491. }
  492. if (!function_exists('imagecreatefrombmp'))
  493. {
  494. /**
  495. * It is set only if it doesn't already exist (for forwards compatiblity.)
  496. * It only supports uncompressed bitmaps.
  497. *
  498. * @param string $filename
  499. * @return resource, an image identifier representing the bitmap image
  500. * obtained from the given filename.
  501. */
  502. function imagecreatefrombmp($filename)
  503. {
  504. global $gd2;
  505. $fp = fopen($filename, 'rb');
  506. $errors = error_reporting(0);
  507. $header = unpack('vtype/Vsize/Vreserved/Voffset', fread($fp, 14));
  508. $info = unpack('Vsize/Vwidth/Vheight/vplanes/vbits/Vcompression/Vimagesize/Vxres/Vyres/Vncolor/Vcolorimportant', fread($fp, 40));
  509. if ($header['type'] != 0x4D42)
  510. false;
  511. if ($gd2)
  512. $dst_img = imagecreatetruecolor($info['width'], $info['height']);
  513. else
  514. $dst_img = imagecreate($info['width'], $info['height']);
  515. $palette_size = $header['offset'] - 54;
  516. $info['ncolor'] = $palette_size / 4;
  517. $palette = array();
  518. $palettedata = fread($fp, $palette_size);
  519. $n = 0;
  520. for ($j = 0; $j < $palette_size; $j++)
  521. {
  522. $b = ord($palettedata{$j++});
  523. $g = ord($palettedata{$j++});
  524. $r = ord($palettedata{$j++});
  525. $palette[$n++] = imagecolorallocate($dst_img, $r, $g, $b);
  526. }
  527. $scan_line_size = ($info['bits'] * $info['width'] + 7) >> 3;
  528. $scan_line_align = $scan_line_size & 3 ? 4 - ($scan_line_size & 3) : 0;
  529. for ($y = 0, $l = $info['height'] - 1; $y < $info['height']; $y++, $l--)
  530. {
  531. fseek($fp, $header['offset'] + ($scan_line_size + $scan_line_align) * $l);
  532. $scan_line = fread($fp, $scan_line_size);
  533. if (strlen($scan_line) < $scan_line_size)
  534. continue;
  535. if ($info['bits'] == 32)
  536. {
  537. $x = 0;
  538. for ($j = 0; $j < $scan_line_size; $x++)
  539. {
  540. $b = ord($scan_line{$j++});
  541. $g = ord($scan_line{$j++});
  542. $r = ord($scan_line{$j++});
  543. $j++;
  544. $color = imagecolorexact($dst_img, $r, $g, $b);
  545. if ($color == -1)
  546. {
  547. $color = imagecolorallocate($dst_img, $r, $g, $b);
  548. // Gah! Out of colors? Stupid GD 1... try anyhow.
  549. if ($color == -1)
  550. $color = imagecolorclosest($dst_img, $r, $g, $b);
  551. }
  552. imagesetpixel($dst_img, $x, $y, $color);
  553. }
  554. }
  555. elseif ($info['bits'] == 24)
  556. {
  557. $x = 0;
  558. for ($j = 0; $j < $scan_line_size; $x++)
  559. {
  560. $b = ord($scan_line{$j++});
  561. $g = ord($scan_line{$j++});
  562. $r = ord($scan_line{$j++});
  563. $color = imagecolorexact($dst_img, $r, $g, $b);
  564. if ($color == -1)
  565. {
  566. $color = imagecolorallocate($dst_img, $r, $g, $b);
  567. // Gah! Out of colors? Stupid GD 1... try anyhow.
  568. if ($color == -1)
  569. $color = imagecolorclosest($dst_img, $r, $g, $b);
  570. }
  571. imagesetpixel($dst_img, $x, $y, $color);
  572. }
  573. }
  574. elseif ($info['bits'] == 16)
  575. {
  576. $x = 0;
  577. for ($j = 0; $j < $scan_line_size; $x++)
  578. {
  579. $b1 = ord($scan_line{$j++});
  580. $b2 = ord($scan_line{$j++});
  581. $word = $b2 * 256 + $b1;
  582. $b = (($word & 31) * 255) / 31;
  583. $g = ((($word >> 5) & 31) * 255) / 31;
  584. $r = ((($word >> 10) & 31) * 255) / 31;
  585. // Scale the image colors up properly.
  586. $color = imagecolorexact($dst_img, $r, $g, $b);
  587. if ($color == -1)
  588. {
  589. $color = imagecolorallocate($dst_img, $r, $g, $b);
  590. // Gah! Out of colors? Stupid GD 1... try anyhow.
  591. if ($color == -1)
  592. $color = imagecolorclosest($dst_img, $r, $g, $b);
  593. }
  594. imagesetpixel($dst_img, $x, $y, $color);
  595. }
  596. }
  597. elseif ($info['bits'] == 8)
  598. {
  599. $x = 0;
  600. for ($j = 0; $j < $scan_line_size; $x++)
  601. imagesetpixel($dst_img, $x, $y, $palette[ord($scan_line{$j++})]);
  602. }
  603. elseif ($info['bits'] == 4)
  604. {
  605. $x = 0;
  606. for ($j = 0; $j < $scan_line_size; $x++)
  607. {
  608. $byte = ord($scan_line{$j++});
  609. imagesetpixel($dst_img, $x, $y, $palette[(int) ($byte / 16)]);
  610. if (++$x < $info['width'])
  611. imagesetpixel($dst_img, $x, $y, $palette[$byte & 15]);
  612. }
  613. }
  614. elseif ($info['bits'] == 1)
  615. {
  616. $x = 0;
  617. for ($j = 0; $j < $scan_line_size; $x++)
  618. {
  619. $byte = ord($scan_line{$j++});
  620. imagesetpixel($dst_img, $x, $y, $palette[(($byte) & 128) != 0]);
  621. for ($shift = 1; $shift < 8; $shift++) {
  622. if (++$x < $info['width']) imagesetpixel($dst_img, $x, $y, $palette[(($byte << $shift) & 128) != 0]);
  623. }
  624. }
  625. }
  626. }
  627. fclose($fp);
  628. error_reporting($errors);
  629. return $dst_img;
  630. }
  631. }
  632. /**
  633. * Writes a gif file to disk as a png file.
  634. * @param resource $gif
  635. * @param string $lpszFileName
  636. * @param int $background_color = -1
  637. * @return bool, whether it was successful or not.
  638. */
  639. function gif_outputAsPng($gif, $lpszFileName, $background_color = -1)
  640. {
  641. if (!isset($gif) || @get_class($gif) != 'cgif' || !$gif->loaded || $lpszFileName == '')
  642. return false;
  643. $fd = $gif->get_png_data($background_color);
  644. if (strlen($fd) <= 0)
  645. return false;
  646. if (!($fh = @fopen($lpszFileName, 'wb')))
  647. return false;
  648. @fwrite($fh, $fd, strlen($fd));
  649. @fflush($fh);
  650. @fclose($fh);
  651. return true;
  652. }
  653. /**
  654. * Show an image containing the visual verification code for registration.
  655. * Requires the GD extension.
  656. * Uses a random font for each letter from default_theme_dir/fonts.
  657. * Outputs a gif or a png (depending on whether gif ix supported).
  658. *
  659. * @param string $code
  660. * @return false if something goes wrong.
  661. */
  662. function showCodeImage($code)
  663. {
  664. global $gd2, $settings, $user_info, $modSettings;
  665. // Note: The higher the value of visual_verification_type the harder the verification is - from 0 as disabled through to 4 as "Very hard".
  666. // What type are we going to be doing?
  667. $imageType = $modSettings['visual_verification_type'];
  668. // Special case to allow the admin center to show samples.
  669. if ($user_info['is_admin'] && isset($_GET['type']))
  670. $imageType = (int) $_GET['type'];
  671. // Some quick references for what we do.
  672. // Do we show no, low or high noise?
  673. $noiseType = $imageType == 3 ? 'low' : ($imageType == 4 ? 'high' : ($imageType == 5 ? 'extreme' : 'none'));
  674. // Can we have more than one font in use?
  675. $varyFonts = $imageType > 3 ? true : false;
  676. // Just a plain white background?
  677. $simpleBGColor = $imageType < 3 ? true : false;
  678. // Plain black foreground?
  679. $simpleFGColor = $imageType == 0 ? true : false;
  680. // High much to rotate each character.
  681. $rotationType = $imageType == 1 ? 'none' : ($imageType > 3 ? 'low' : 'high');
  682. // Do we show some characters inversed?
  683. $showReverseChars = $imageType > 3 ? true : false;
  684. // Special case for not showing any characters.
  685. $disableChars = $imageType == 0 ? true : false;
  686. // What do we do with the font colors. Are they one color, close to one color or random?
  687. $fontColorType = $imageType == 1 ? 'plain' : ($imageType > 3 ? 'random' : 'cyclic');
  688. // Are the fonts random sizes?
  689. $fontSizeRandom = $imageType > 3 ? true : false;
  690. // How much space between characters?
  691. $fontHorSpace = $imageType > 3 ? 'high' : ($imageType == 1 ? 'medium' : 'minus');
  692. // Where do characters sit on the image? (Fixed position or random/very random)
  693. $fontVerPos = $imageType == 1 ? 'fixed' : ($imageType > 3 ? 'vrandom' : 'random');
  694. // Make font semi-transparent?
  695. $fontTrans = $imageType == 2 || $imageType == 3 ? true : false;
  696. // Give the image a border?
  697. $hasBorder = $simpleBGColor;
  698. // The amount of pixels inbetween characters.
  699. $character_spacing = 1;
  700. // What color is the background - generally white unless we're on "hard".
  701. if ($simpleBGColor)
  702. $background_color = array(255, 255, 255);
  703. else
  704. $background_color = isset($settings['verification_background']) ? $settings['verification_background'] : array(236, 237, 243);
  705. // The color of the characters shown (red, green, blue).
  706. if ($simpleFGColor)
  707. $foreground_color = array(0, 0, 0);
  708. else
  709. {
  710. $foreground_color = array(64, 101, 136);
  711. // Has the theme author requested a custom color?
  712. if (isset($settings['verification_foreground']))
  713. $foreground_color = $settings['verification_foreground'];
  714. }
  715. if (!is_dir($settings['default_theme_dir'] . '/fonts'))
  716. return false;
  717. // Get a list of the available fonts.
  718. $font_dir = dir($settings['default_theme_dir'] . '/fonts');
  719. $font_list = array();
  720. $ttfont_list = array();
  721. while ($entry = $font_dir->read())
  722. {
  723. if (preg_match('~^(.+)\.gdf$~', $entry, $matches) === 1)
  724. $font_list[] = $entry;
  725. elseif (preg_match('~^(.+)\.ttf$~', $entry, $matches) === 1)
  726. $ttfont_list[] = $entry;
  727. }
  728. if (empty($font_list))
  729. return false;
  730. // For non-hard things don't even change fonts.
  731. if (!$varyFonts)
  732. {
  733. $font_list = array($font_list[0]);
  734. // Try use Screenge if we can - it looks good!
  735. if (in_array('Screenge.ttf', $ttfont_list))
  736. $ttfont_list = array('Screenge.ttf');
  737. else
  738. $ttfont_list = empty($ttfont_list) ? array() : array($ttfont_list[0]);
  739. }
  740. // Create a list of characters to be shown.
  741. $characters = array();
  742. $loaded_fonts = array();
  743. for ($i = 0; $i < strlen($code); $i++)
  744. {
  745. $characters[$i] = array(
  746. 'id' => $code{$i},
  747. 'font' => array_rand($font_list),
  748. );
  749. $loaded_fonts[$characters[$i]['font']] = null;
  750. }
  751. // Load all fonts and determine the maximum font height.
  752. foreach ($loaded_fonts as $font_index => $dummy)
  753. $loaded_fonts[$font_index] = imageloadfont($settings['default_theme_dir'] . '/fonts/' . $font_list[$font_index]);
  754. // Determine the dimensions of each character.
  755. $total_width = $character_spacing * strlen($code) + 20;
  756. $max_height = 0;
  757. foreach ($characters as $char_index => $character)
  758. {
  759. $characters[$char_index]['width'] = imagefontwidth($loaded_fonts[$character['font']]);
  760. $characters[$char_index]['height'] = imagefontheight($loaded_fonts[$character['font']]);
  761. $max_height = max($characters[$char_index]['height'] + 5, $max_height);
  762. $total_width += $characters[$char_index]['width'];
  763. }
  764. // Create an image.
  765. $code_image = $gd2 ? imagecreatetruecolor($total_width, $max_height) : imagecreate($total_width, $max_height);
  766. // Draw the background.
  767. $bg_color = imagecolorallocate($code_image, $background_color[0], $background_color[1], $background_color[2]);
  768. imagefilledrectangle($code_image, 0, 0, $total_width - 1, $max_height - 1, $bg_color);
  769. // Randomize the foreground color a little.
  770. for ($i = 0; $i < 3; $i++)
  771. $foreground_color[$i] = mt_rand(max($foreground_color[$i] - 3, 0), min($foreground_color[$i] + 3, 255));
  772. $fg_color = imagecolorallocate($code_image, $foreground_color[0], $foreground_color[1], $foreground_color[2]);
  773. // Color for the dots.
  774. for ($i = 0; $i < 3; $i++)
  775. $dotbgcolor[$i] = $background_color[$i] < $foreground_color[$i] ? mt_rand(0, max($foreground_color[$i] - 20, 0)) : mt_rand(min($foreground_color[$i] + 20, 255), 255);
  776. $randomness_color = imagecolorallocate($code_image, $dotbgcolor[0], $dotbgcolor[1], $dotbgcolor[2]);
  777. // Some squares/rectanges for new extreme level
  778. if ($noiseType == 'extreme')
  779. {
  780. for ($i = 0; $i < rand(1, 5); $i++)
  781. {
  782. $x1 = rand(0, $total_width / 4);
  783. $x2 = $x1 + round(rand($total_width / 4, $total_width));
  784. $y1 = rand(0, $max_height);
  785. $y2 = $y1 + round(rand(0, $max_height / 3));
  786. imagefilledrectangle($code_image, $x1, $y1, $x2, $y2, mt_rand(0, 1) ? $fg_color : $randomness_color);
  787. }
  788. }
  789. // Fill in the characters.
  790. if (!$disableChars)
  791. {
  792. $cur_x = 0;
  793. foreach ($characters as $char_index => $character)
  794. {
  795. // Can we use true type fonts?
  796. $can_do_ttf = function_exists('imagettftext');
  797. // How much rotation will we give?
  798. if ($rotationType == 'none')
  799. $angle = 0;
  800. else
  801. $angle = mt_rand(-100, 100) / ($rotationType == 'high' ? 6 : 10);
  802. // What color shall we do it?
  803. if ($fontColorType == 'cyclic')
  804. {
  805. // Here we'll pick from a set of acceptance types.
  806. $colors = array(
  807. array(10, 120, 95),
  808. array(46, 81, 29),
  809. array(4, 22, 154),
  810. array(131, 9, 130),
  811. array(0, 0, 0),
  812. array(143, 39, 31),
  813. );
  814. if (!isset($last_index))
  815. $last_index = -1;
  816. $new_index = $last_index;
  817. while ($last_index == $new_index)
  818. $new_index = mt_rand(0, count($colors) - 1);
  819. $char_fg_color = $colors[$new_index];
  820. $last_index = $new_index;
  821. }
  822. elseif ($fontColorType == 'random')
  823. $char_fg_color = array(mt_rand(max($foreground_color[0] - 2, 0), $foreground_color[0]), mt_rand(max($foreground_color[1] - 2, 0), $foreground_color[1]), mt_rand(max($foreground_color[2] - 2, 0), $foreground_color[2]));
  824. else
  825. $char_fg_color = array($foreground_color[0], $foreground_color[1], $foreground_color[2]);
  826. if (!empty($can_do_ttf))
  827. {
  828. // GD2 handles font size differently.
  829. if ($fontSizeRandom)
  830. $font_size = $gd2 ? mt_rand(17, 19) : mt_rand(18, 25);
  831. else
  832. $font_size = $gd2 ? 18 : 24;
  833. // Work out the sizes - also fix the character width cause TTF not quite so wide!
  834. $font_x = $fontHorSpace == 'minus' && $cur_x > 0 ? $cur_x - 3 : $cur_x + 5;
  835. $font_y = $max_height - ($fontVerPos == 'vrandom' ? mt_rand(2, 8) : ($fontVerPos == 'random' ? mt_rand(3, 5) : 5));
  836. // What font face?
  837. if (!empty($ttfont_list))
  838. $fontface = $settings['default_theme_dir'] . '/fonts/' . $ttfont_list[mt_rand(0, count($ttfont_list) - 1)];
  839. // What color are we to do it in?
  840. $is_reverse = $showReverseChars ? mt_rand(0, 1) : false;
  841. $char_color = function_exists('imagecolorallocatealpha') && $fontTrans ? imagecolorallocatealpha($code_image, $char_fg_color[0], $char_fg_color[1], $char_fg_color[2], 50) : imagecolorallocate($code_image, $char_fg_color[0], $char_fg_color[1], $char_fg_color[2]);
  842. $fontcord = @imagettftext($code_image, $font_size, $angle, $font_x, $font_y, $char_color, $fontface, $character['id']);
  843. if (empty($fontcord))
  844. $can_do_ttf = false;
  845. elseif ($is_reverse)
  846. {
  847. imagefilledpolygon($code_image, $fontcord, 4, $fg_color);
  848. // Put the character back!
  849. imagettftext($code_image, $font_size, $angle, $font_x, $font_y, $randomness_color, $fontface, $character['id']);
  850. }
  851. if ($can_do_ttf)
  852. $cur_x = max($fontcord[2], $fontcord[4]) + ($angle == 0 ? 0 : 3);
  853. }
  854. if (!$can_do_ttf)
  855. {
  856. // Rotating the characters a little...
  857. if (function_exists('imagerotate'))
  858. {
  859. $char_image = $gd2 ? imagecreatetruecolor($character['width'], $character['height']) : imagecreate($character['width'], $character['height']);
  860. $char_bgcolor = imagecolorallocate($char_image, $background_color[0], $background_color[1], $background_color[2]);
  861. imagefilledrectangle($char_image, 0, 0, $character['width'] - 1, $character['height'] - 1, $char_bgcolor);
  862. imagechar($char_image, $loaded_fonts[$character['font']], 0, 0, $character['id'], imagecolorallocate($char_image, $char_fg_color[0], $char_fg_color[1], $char_fg_color[2]));
  863. $rotated_char = imagerotate($char_image, mt_rand(-100, 100) / 10, $char_bgcolor);
  864. imagecopy($code_image, $rotated_char, $cur_x, 0, 0, 0, $character['width'], $character['height']);
  865. imagedestroy($rotated_char);
  866. imagedestroy($char_image);
  867. }
  868. // Sorry, no rotation available.
  869. else
  870. imagechar($code_image, $loaded_fonts[$character['font']], $cur_x, floor(($max_height - $character['height']) / 2), $character['id'], imagecolorallocate($code_image, $char_fg_color[0], $char_fg_color[1], $char_fg_color[2]));
  871. $cur_x += $character['width'] + $character_spacing;
  872. }
  873. }
  874. }
  875. // If disabled just show a cross.
  876. else
  877. {
  878. imageline($code_image, 0, 0, $total_width, $max_height, $fg_color);
  879. imageline($code_image, 0, $max_height, $total_width, 0, $fg_color);
  880. }
  881. // Make the background color transparent on the hard image.
  882. if (!$simpleBGColor)
  883. imagecolortransparent($code_image, $bg_color);
  884. if ($hasBorder)
  885. imagerectangle($code_image, 0, 0, $total_width - 1, $max_height - 1, $fg_color);
  886. // Add some noise to the background?
  887. if ($noiseType != 'none')
  888. {
  889. for ($i = mt_rand(0, 2); $i < $max_height; $i += mt_rand(1, 2))
  890. for ($j = mt_rand(0, 10); $j < $total_width; $j += mt_rand(1, 10))
  891. imagesetpixel($code_image, $j, $i, mt_rand(0, 1) ? $fg_color : $randomness_color);
  892. // Put in some lines too?
  893. if ($noiseType != 'extreme')
  894. {
  895. $num_lines = $noiseType == 'high' ? mt_rand(3, 7) : mt_rand(2, 5);
  896. for ($i = 0; $i < $num_lines; $i++)
  897. {
  898. if (mt_rand(0, 1))
  899. {
  900. $x1 = mt_rand(0, $total_width);
  901. $x2 = mt_rand(0, $total_width);
  902. $y1 = 0; $y2 = $max_height;
  903. }
  904. else
  905. {
  906. $y1 = mt_rand(0, $max_height);
  907. $y2 = mt_rand(0, $max_height);
  908. $x1 = 0; $x2 = $total_width;
  909. }
  910. imagesetthickness($code_image, mt_rand(1, 2));
  911. imageline($code_image, $x1, $y1, $x2, $y2, mt_rand(0, 1) ? $fg_color : $randomness_color);
  912. }
  913. }
  914. else
  915. {
  916. // Put in some ellipse
  917. $num_ellipse = $noiseType == 'extreme' ? mt_rand(6, 12) : mt_rand(2, 6);
  918. for ($i = 0; $i < $num_ellipse; $i++)
  919. {
  920. $x1 = round(rand(($total_width / 4) * -1, $total_width + ($total_width / 4)));
  921. $x2 = round(rand($total_width / 2, 2 * $total_width));
  922. $y1 = round(rand(($max_height / 4) * -1, $max_height + ($max_height / 4)));
  923. $y2 = round(rand($max_height / 2, 2 * $max_height));
  924. imageellipse($code_image, $x1, $y1, $x2, $y2, mt_rand(0, 1) ? $fg_color : $randomness_color);
  925. }
  926. }
  927. }
  928. // Show the image.
  929. if (function_exists('imagegif'))
  930. {
  931. header('Content-type: image/gif');
  932. imagegif($code_image);
  933. }
  934. else
  935. {
  936. header('Content-type: image/png');
  937. imagepng($code_image);
  938. }
  939. // Bail out.
  940. imagedestroy($code_image);
  941. die();
  942. }
  943. /**
  944. * Show a letter for the visual verification code.
  945. * Alternative function for showCodeImage() in case GD is missing.
  946. * Includes an image from a random sub directory of default_theme_dir/fonts.
  947. *
  948. * @param string $letter
  949. */
  950. function showLetterImage($letter)
  951. {
  952. global $settings;
  953. if (!is_dir($settings['default_theme_dir'] . '/fonts'))
  954. return false;
  955. // Get a list of the available font directories.
  956. $font_dir = dir($settings['default_theme_dir'] . '/fonts');
  957. $font_list = array();
  958. while ($entry = $font_dir->read())
  959. if ($entry[0] !== '.' && is_dir($settings['default_theme_dir'] . '/fonts/' . $entry) && file_exists($settings['default_theme_dir'] . '/fonts/' . $entry . '.gdf'))
  960. $font_list[] = $entry;
  961. if (empty($font_list))
  962. return false;
  963. // Pick a random font.
  964. $random_font = $font_list[array_rand($font_list)];
  965. // Check if the given letter exists.
  966. if (!file_exists($settings['default_theme_dir'] . '/fonts/' . $random_font . '/' . $letter . '.gif'))
  967. return false;
  968. // Include it!
  969. header('Content-type: image/gif');
  970. include($settings['default_theme_dir'] . '/fonts/' . $random_font . '/' . $letter . '.gif');
  971. // Nothing more to come.
  972. die();
  973. }
  974. ?>