ee7130d1d873b6baea3e575510fc450635ac99f1
[squirrelmail.git] / src / compose.php
1 <?php
2 /**
3 * compose.php
4 *
5 * This code sends a mail.
6 *
7 * There are 4 modes of operation:
8 * - Start new mail
9 * - Add an attachment
10 * - Send mail
11 * - Save As Draft
12 *
13 * @copyright &copy; 1999-2007 The SquirrelMail Project Team
14 * @license http://opensource.org/licenses/gpl-license.php GNU Public License
15 * @version $Id$
16 * @package squirrelmail
17 */
18
19 /** This is the compose page */
20 define('PAGE_NAME', 'compose');
21
22 /**
23 * Include the SquirrelMail initialization file.
24 */
25 require('../include/init.php');
26
27 /* If email_address not set and admin wants us to ask user for it,
28 * redirect to options page. */
29 if ( $ask_user_info && getPref($data_dir, $username,'email_address') == "" ) {
30 header("Location: " . get_location() . "/options.php?optpage=personal");
31 exit;
32 }
33
34 /* SquirrelMail required files. */
35 require_once(SM_PATH . 'functions/imap_general.php');
36 require_once(SM_PATH . 'functions/imap_messages.php');
37 require_once(SM_PATH . 'functions/date.php');
38 require_once(SM_PATH . 'functions/mime.php');
39 require_once(SM_PATH . 'functions/compose.php');
40 require_once(SM_PATH . 'class/deliver/Deliver.class.php');
41 require_once(SM_PATH . 'functions/addressbook.php');
42 require_once(SM_PATH . 'functions/forms.php');
43 require_once(SM_PATH . 'functions/identity.php');
44
45 /* --------------------- Get globals ------------------------------------- */
46
47 /** SESSION VARS */
48 sqgetGlobalVar('delimiter', $delimiter, SQ_SESSION);
49
50 sqgetGlobalVar('delayed_errors', $delayed_errors, SQ_SESSION);
51 sqgetGlobalVar('composesession', $composesession, SQ_SESSION);
52 sqgetGlobalVar('compose_messages', $compose_messages, SQ_SESSION);
53
54 // compose_messages only useful in SESSION when a forward-as-attachment
55 // has been preconstructed for us and passed in via that mechanism; once
56 // we have it, we can clear it from the SESSION
57 sqsession_unregister('compose_messages');
58
59 // Turn on delayed error handling in case we wind up redirecting below
60 $oErrorHandler->setDelayedErrors(true);
61
62 /** SESSION/POST/GET VARS */
63 sqgetGlobalVar('send', $send, SQ_POST);
64 // Send can only be achieved by setting $_POST var. If Send = true then
65 // retrieve other form fields from $_POST
66 if (isset($send) && $send) {
67 $SQ_GLOBAL = SQ_POST;
68 } else {
69 $SQ_GLOBAL = SQ_FORM;
70 }
71 sqgetGlobalVar('session',$session, $SQ_GLOBAL);
72 sqgetGlobalVar('mailbox',$mailbox, $SQ_GLOBAL);
73 if(!sqgetGlobalVar('identity',$identity, $SQ_GLOBAL)) {
74 $identity=0;
75 }
76 sqgetGlobalVar('send_to',$send_to, $SQ_GLOBAL);
77 sqgetGlobalVar('send_to_cc',$send_to_cc, $SQ_GLOBAL);
78 sqgetGlobalVar('send_to_bcc',$send_to_bcc, $SQ_GLOBAL);
79 sqgetGlobalVar('subject',$subject, $SQ_GLOBAL);
80 sqgetGlobalVar('body',$body, $SQ_GLOBAL);
81 sqgetGlobalVar('mailprio',$mailprio, $SQ_GLOBAL);
82 sqgetGlobalVar('request_mdn',$request_mdn, $SQ_GLOBAL);
83 sqgetGlobalVar('request_dr',$request_dr, $SQ_GLOBAL);
84 sqgetGlobalVar('html_addr_search',$html_addr_search, $SQ_GLOBAL);
85 sqgetGlobalVar('mail_sent',$mail_sent, $SQ_GLOBAL);
86 sqgetGlobalVar('passed_id',$passed_id, $SQ_GLOBAL);
87 sqgetGlobalVar('passed_ent_id',$passed_ent_id, $SQ_GLOBAL);
88
89 sqgetGlobalVar('attach',$attach, SQ_POST);
90 sqgetGlobalVar('draft',$draft, SQ_POST);
91 sqgetGlobalVar('draft_id',$draft_id, $SQ_GLOBAL);
92 sqgetGlobalVar('ent_num',$ent_num, $SQ_GLOBAL);
93 sqgetGlobalVar('saved_draft',$saved_draft, SQ_FORM);
94
95 if ( sqgetGlobalVar('delete_draft',$delete_draft) ) {
96 $delete_draft = (int)$delete_draft;
97 }
98
99 if ( sqgetGlobalVar('startMessage',$startMessage) ) {
100 $startMessage = (int)$startMessage;
101 } else {
102 $startMessage = 1;
103 }
104
105
106 /** POST VARS */
107 sqgetGlobalVar('sigappend', $sigappend, SQ_POST);
108 sqgetGlobalVar('from_htmladdr_search', $from_htmladdr_search, SQ_POST);
109 sqgetGlobalVar('addr_search_done', $html_addr_search_done, SQ_POST);
110 sqgetGlobalVar('addr_search_cancel', $html_addr_search_cancel, SQ_POST);
111 sqgetGlobalVar('send_to_search', $send_to_search, SQ_POST);
112 sqgetGlobalVar('do_delete', $do_delete, SQ_POST);
113 sqgetGlobalVar('delete', $delete, SQ_POST);
114 sqgetGlobalVar('attachments', $attachments, SQ_POST);
115 if ( sqgetGlobalVar('return', $temp, SQ_POST) ) {
116 $html_addr_search_done = 'Use Addresses';
117 }
118
119 /** GET VARS */
120 if ( sqgetGlobalVar('account', $temp, SQ_GET) ) {
121 $iAccount = (int) $temp;
122 } else {
123 $iAccount = 0;
124 }
125
126
127 /** get smaction */
128 if ( !sqgetGlobalVar('smaction',$action) )
129 {
130 if ( sqgetGlobalVar('smaction_reply',$tmp) ) $action = 'reply';
131 if ( sqgetGlobalVar('smaction_reply_all',$tmp) ) $action = 'reply_all';
132 if ( sqgetGlobalVar('smaction_forward',$tmp) ) $action = 'forward';
133 if ( sqgetGlobalVar('smaction_attache',$tmp) ) $action = 'forward_as_attachment';
134 if ( sqgetGlobalVar('smaction_draft',$tmp) ) $action = 'draft';
135 if ( sqgetGlobalVar('smaction_edit_new',$tmp) ) $action = 'edit_as_new';
136 }
137
138 /**
139 * Here we decode the data passed in from mailto.php.
140 */
141 if ( sqgetGlobalVar('mailtodata', $mailtodata, SQ_GET) ) {
142 $trtable = array('to' => 'send_to',
143 'cc' => 'send_to_cc',
144 'bcc' => 'send_to_bcc',
145 'body' => 'body',
146 'subject' => 'subject');
147 $mtdata = unserialize($mailtodata);
148
149 foreach ($trtable as $f => $t) {
150 if ( !empty($mtdata[$f]) ) {
151 $$t = $mtdata[$f];
152 }
153 }
154 unset($mailtodata,$mtdata, $trtable);
155 }
156
157 /* Location (For HTTP 1.1 header("Location: ...") redirects) */
158 $location = get_location();
159 /* Identities (fetch only once) */
160 $idents = get_identities();
161
162 /* --------------------- Specific Functions ------------------------------ */
163
164 function replyAllString($header) {
165 global $include_self_reply_all, $idents;
166 $excl_ar = array();
167 /**
168 * 1) Remove the addresses we'll be sending the message 'to'
169 */
170 if (isset($header->reply_to)) {
171 $excl_ar = $header->getAddr_a('reply_to');
172 }
173 /**
174 * 2) Remove our identities from the CC list (they still can be in the
175 * TO list) only if $include_self_reply_all is turned off
176 */
177 if (!$include_self_reply_all) {
178 foreach($idents as $id) {
179 $excl_ar[strtolower(trim($id['email_address']))] = '';
180 }
181 }
182
183 /**
184 * 3) get the addresses.
185 */
186 $url_replytoall_ar = $header->getAddr_a(array('to','cc'), $excl_ar);
187
188 /**
189 * 4) generate the string.
190 */
191 $url_replytoallcc = '';
192 foreach( $url_replytoall_ar as $email => $personal) {
193 if ($personal) {
194 // if personal name contains address separator then surround
195 // the personal name with double quotes.
196 if (strpos($personal,',') !== false) {
197 $personal = '"'.$personal.'"';
198 }
199 $url_replytoallcc .= ", $personal <$email>";
200 } else {
201 $url_replytoallcc .= ', '. $email;
202 }
203 }
204 $url_replytoallcc = substr($url_replytoallcc,2);
205
206 return $url_replytoallcc;
207 }
208
209 /**
210 * creates top line in reply citations
211 *
212 * Line style depends on user preferences.
213 * $orig_date argument is available only from 1.4.3 and 1.5.1 version.
214 * @param object $orig_from From: header object.
215 * @param integer $orig_date email's timestamp
216 * @return string reply citation
217 */
218 function getReplyCitation($orig_from, $orig_date) {
219 global $reply_citation_style, $reply_citation_start, $reply_citation_end;
220
221 if (!is_object($orig_from)) {
222 $sOrig_from = '';
223 } else {
224 $sOrig_from = decodeHeader($orig_from->getAddress(false),false,false,true);
225 }
226
227 /* First, return an empty string when no citation style selected. */
228 if (($reply_citation_style == '') || ($reply_citation_style == 'none')) {
229 return '';
230 }
231
232 /* Make sure our final value isn't an empty string. */
233 if ($sOrig_from == '') {
234 return '';
235 }
236
237 /* Otherwise, try to select the desired citation style. */
238 switch ($reply_citation_style) {
239 case 'author_said':
240 // i18n: %s is for author's name
241 $full_reply_citation = sprintf(_("%s wrote:"),$sOrig_from);
242 break;
243 case 'quote_who':
244 $start = '<quote who="';
245 $end = '">';
246 $full_reply_citation = $start . $sOrig_from . $end;
247 break;
248 case 'date_time_author':
249 // i18n:
250 // The first %s is for date string, the second %s is for author's name.
251 // The date uses formating from "D, F j, Y g:i a" and "D, F j, Y H:i"
252 // translations.
253 // Example string:
254 // "On Sat, December 24, 2004 23:59, Santa wrote:"
255 // If you have to put author's name in front of date string, check comments about
256 // argument swapping at http://php.net/sprintf
257 $full_reply_citation = sprintf(_("On %s, %s wrote:"), getLongDateString($orig_date), $sOrig_from);
258 break;
259 case 'user-defined':
260 $start = $reply_citation_start .
261 ($reply_citation_start == '' ? '' : ' ');
262 $end = $reply_citation_end;
263 $full_reply_citation = $start . $sOrig_from . $end;
264 break;
265 default:
266 return '';
267 }
268
269 /* Add line feed and return the citation string. */
270 return ($full_reply_citation . "\n");
271 }
272
273 /**
274 * Creates header fields in forwarded email body
275 *
276 * $default_charset global must be set correctly before you call this function.
277 * @param object $orig_header
278 * @return $string
279 */
280 function getforwardHeader($orig_header) {
281 global $editor_size, $default_charset;
282
283 // using own strlen function in order to detect correct string length
284 $display = array( _("Subject") => sq_strlen(_("Subject"),$default_charset),
285 _("From") => sq_strlen(_("From"),$default_charset),
286 _("Date") => sq_strlen(_("Date"),$default_charset),
287 _("To") => sq_strlen(_("To"),$default_charset),
288 _("Cc") => sq_strlen(_("Cc"),$default_charset) );
289 $maxsize = max($display);
290 $indent = str_pad('',$maxsize+2);
291 foreach($display as $key => $val) {
292 $display[$key] = $key .': '. str_pad('', $maxsize - $val);
293 }
294 $from = decodeHeader($orig_header->getAddr_s('from',"\n$indent"),false,false,true);
295 $from = str_replace('&nbsp;',' ',$from);
296 $to = decodeHeader($orig_header->getAddr_s('to',"\n$indent"),false,false,true);
297 $to = str_replace('&nbsp;',' ',$to);
298 $subject = decodeHeader($orig_header->subject,false,false,true);
299 $subject = str_replace('&nbsp;',' ',$subject);
300
301 // using own str_pad function in order to create correct string pad
302 $bodyTop = sq_str_pad(' '._("Original Message").' ',$editor_size -2,'-',STR_PAD_BOTH,$default_charset) .
303 "\n". $display[_("Subject")] . $subject . "\n" .
304 $display[_("From")] . $from . "\n" .
305 $display[_("Date")] . getLongDateString( $orig_header->date, $orig_header->date_unparsed ). "\n" .
306 $display[_("To")] . $to . "\n";
307 if ($orig_header->cc != array() && $orig_header->cc !='') {
308 $cc = decodeHeader($orig_header->getAddr_s('cc',"\n$indent"),false,false,true);
309 $cc = str_replace('&nbsp;',' ',$cc);
310 $bodyTop .= $display[_("Cc")] .$cc . "\n";
311 }
312 $bodyTop .= str_pad('', $editor_size -2 , '-') .
313 "\n\n";
314 return $bodyTop;
315 }
316 /* ----------------------------------------------------------------------- */
317
318 /*
319 * If the session is expired during a post this restores the compose session
320 * vars.
321 */
322 $session_expired = false;
323 if (sqsession_is_registered('session_expired_post')) {
324 sqgetGlobalVar('session_expired_post', $session_expired_post, SQ_SESSION);
325 /*
326 * extra check for username so we don't display previous post data from
327 * another user during this session.
328 */
329 if (!empty($session_expired_post['username'])
330 && $session_expired_post['username'] == $username) {
331 // these are the vars that we can set from the expired composed session
332 $compo_var_list = array ('send_to', 'send_to_cc', 'body',
333 'startMessage', 'passed_body', 'use_signature', 'signature',
334 'subject', 'newmail', 'send_to_bcc', 'passed_id', 'mailbox',
335 'from_htmladdr_search', 'identity', 'draft_id', 'delete_draft',
336 'mailprio', 'edit_as_new', 'attachments', 'composesession',
337 'request_mdn', 'request_dr');
338
339 foreach ($compo_var_list as $var) {
340 if ( isset($session_expired_post[$var]) && !isset($$var) ) {
341 $$var = $session_expired_post[$var];
342 }
343 }
344
345 if (!empty($attachments))
346 $attachments = unserialize(urldecode($attachments));
347
348 sqsession_register($composesession,'composesession');
349
350 if (isset($send)) {
351 unset($send);
352 }
353 $session_expired = true;
354 }
355 unset($session_expired_post);
356 sqsession_unregister('session_expired_post');
357 session_write_close();
358 if (!isset($mailbox)) {
359 $mailbox = '';
360 }
361 if ($compose_new_win == '1') {
362 compose_Header($color, $mailbox);
363 } else {
364 $sHeaderJs = (isset($sHeaderJs)) ? $sHeaderJs : '';
365 if (strpos($action, 'reply') !== false && $reply_focus) {
366 $sBodyTagJs = 'onload="checkForm(\''.$replyfocus.'\');"';
367 } else {
368 $sBodyTagJs = 'onload="checkForm();"';
369 }
370 displayPageHeader($color, $mailbox,$sHeaderJs,$sBodyTagJs);
371 }
372 showInputForm($session, false);
373 exit();
374 }
375
376 if (!isset($composesession)) {
377 $composesession = 0;
378 sqsession_register(0,'composesession');
379 } else {
380 $composesession = (int)$composesession;
381 }
382
383 if (!isset($session) || (isset($newmessage) && $newmessage)) {
384 sqsession_unregister('composesession');
385 $session = "$composesession" +1;
386 $composesession = $session;
387 sqsession_register($composesession,'composesession');
388 }
389 if (!empty($compose_messages[$session])) {
390 $composeMessage = $compose_messages[$session];
391 } else {
392 $composeMessage = new Message();
393 $rfc822_header = new Rfc822Header();
394 $composeMessage->rfc822_header = $rfc822_header;
395 $composeMessage->reply_rfc822_header = '';
396 }
397
398 // re-add attachments that were already in this message
399 // FIXME: note that technically this is very bad form -
400 // should never directly manipulate an object like this
401 if (!empty($attachments)) {
402 $attachments = unserialize(urldecode($attachments));
403 if (!empty($attachments) && is_array($attachments))
404 $composeMessage->entities = $attachments;
405 }
406
407 if (empty($mailbox)) {
408 $mailbox = 'INBOX';
409 }
410
411 if ($draft) {
412 /*
413 * Set $default_charset to correspond with the user's selection
414 * of language interface.
415 */
416 set_my_charset();
417 if (! deliverMessage($composeMessage, true)) {
418 showInputForm($session);
419 exit();
420 } else {
421 $draft_message = _("Draft Email Saved");
422 /* If this is a resumed draft, then delete the original */
423 if(isset($delete_draft)) {
424 $imap_stream = sqimap_login($username, false, $imapServerAddress, $imapPort, false);
425 sqimap_mailbox_select($imap_stream, $draft_folder);
426 // force bypass_trash=true because message should be saved when deliverMessage() returns true.
427 // in current implementation of sqimap_msgs_list_flag() single message id can
428 // be submitted as string. docs state that it should be array.
429 sqimap_msgs_list_delete($imap_stream, $draft_folder, $delete_draft, true);
430 if ($auto_expunge) {
431 sqimap_mailbox_expunge($imap_stream, $draft_folder, true);
432 }
433 sqimap_logout($imap_stream);
434 }
435
436 $oErrorHandler->saveDelayedErrors();
437 session_write_close();
438
439 if ($compose_new_win == '1') {
440 if ( !isset($pageheader_sent) || !$pageheader_sent ) {
441 header("Location: $location/compose.php?saved_draft=yes&session=$composesession");
442 } else {
443 //FIXME: DON'T ECHO HTML FROM CORE!
444 echo ' <br><br><div style="text-align: center;"><a href="' . $location
445 . '/compose.php?saved_sent=yes&amp;session=' . $composesession . '">'
446 . _("Return") . '</a></div>';
447 }
448 exit();
449 } else {
450 if ( !isset($pageheader_sent) || !$pageheader_sent ) {
451 header("Location: $location/right_main.php?mailbox=" . urlencode($draft_folder) .
452 "&startMessage=1&note=".urlencode($draft_message));
453 } else {
454 //FIXME: DON'T ECHO HTML FROM CORE!
455 echo ' <br><br><div style="text-align: center;"><a href="' . $location
456 . '/right_main.php?mailbox=' . urlencode($draft_folder)
457 . '&amp;startMessage=1&amp;note=' . urlencode($draft_message) .'">'
458 . _("Return") . '</a></div>';
459 }
460 exit();
461 }
462 }
463 }
464
465 if ($send) {
466 if (isset($_FILES['attachfile']) &&
467 $_FILES['attachfile']['tmp_name'] &&
468 $_FILES['attachfile']['tmp_name'] != 'none') {
469 $AttachFailure = saveAttachedFiles($session);
470 }
471 if (checkInput(false) && !isset($AttachFailure)) {
472 if ($mailbox == "All Folders") {
473 /* We entered compose via the search results page */
474 $mailbox = 'INBOX'; /* Send 'em to INBOX, that's safe enough */
475 }
476 $urlMailbox = urlencode($mailbox);
477 if (! isset($passed_id)) {
478 $passed_id = 0;
479 }
480 /**
481 * Set $default_charset to correspond with the user's selection
482 * of language interface.
483 */
484 set_my_charset();
485 /**
486 * This is to change all newlines to \n
487 * We'll change them to \r\n later (in the sendMessage function)
488 */
489 $body = str_replace("\r\n", "\n", $body);
490 $body = str_replace("\r", "\n", $body);
491
492 /**
493 * Rewrap $body so that no line is bigger than $editor_size
494 */
495 $body = explode("\n", $body);
496 $newBody = '';
497 foreach ($body as $line) {
498 if( $line <> '-- ' ) {
499 $line = rtrim($line);
500 }
501 if (sq_strlen($line, $default_charset) <= $editor_size + 1) {
502 $newBody .= $line . "\n";
503 } else {
504 sqWordWrap($line, $editor_size, $default_charset);
505 $newBody .= $line . "\n";
506
507 }
508
509 }
510 $body = $newBody;
511
512 $Result = deliverMessage($composeMessage);
513
514 if ($Result)
515 $mail_sent = 'yes';
516 else
517 $mail_sent = 'no';
518
519 // NOTE: this hook changed in 1.5.2 from sending $Result and
520 // $composeMessage as args #2 and #3 to being in an array
521 // under arg #2
522 $temp = array(&$Result, &$composeMessage, &$mail_sent);
523 do_hook('compose_send_after', $temp);
524 if (! $Result) {
525 showInputForm($session);
526 exit();
527 }
528
529 /* if it is resumed draft, delete draft message */
530 if ( isset($delete_draft)) {
531 $imap_stream = sqimap_login($username, false, $imapServerAddress, $imapPort, false);
532 sqimap_mailbox_select($imap_stream, $draft_folder);
533 // bypass_trash=true because message should be saved when deliverMessage() returns true.
534 // in current implementation of sqimap_msgs_list_flag() single message id can
535 // be submitted as string. docs state that it should be array.
536 sqimap_msgs_list_delete($imap_stream, $draft_folder, $delete_draft, true);
537 if ($auto_expunge) {
538 sqimap_mailbox_expunge($imap_stream, $draft_folder, true);
539 }
540 sqimap_logout($imap_stream);
541 }
542 /*
543 * Store the error array in the session because they will be lost on a redirect
544 */
545 $oErrorHandler->saveDelayedErrors();
546 session_write_close();
547
548 if ($compose_new_win == '1') {
549 if ( !isset($pageheader_sent) || !$pageheader_sent ) {
550 header("Location: $location/compose.php?mail_sent=$mail_sent");
551 } else {
552 //FIXME: DON'T ECHO HTML FROM CORE!
553 echo ' <br><br><div style="text-align: center;"><a href="' . $location
554 . '/compose.php?mail_sent=$mail_sent">'
555 . _("Return") . '</a></div>';
556 }
557 exit();
558 } else {
559 if ( !isset($pageheader_sent) || !$pageheader_sent ) {
560 header("Location: $location/right_main.php?mailbox=$urlMailbox".
561 "&startMessage=$startMessage&mail_sent=$mail_sent");
562 } else {
563 //FIXME: DON'T ECHO HTML FROM CORE!
564 echo ' <br><br><div style="text-align: center;"><a href="' . $location
565 . "/right_main.php?mailbox=$urlMailbox"
566 . "&amp;startMessage=$startMessage&amp;mail_sent=$mail_sent\">"
567 . _("Return") . '</a></div>';
568 }
569 exit();
570 }
571 } else {
572 if ($compose_new_win == '1') {
573 compose_Header($color, $mailbox);
574 }
575 else {
576 displayPageHeader($color, $mailbox);
577 }
578 if (isset($AttachFailure)) {
579 plain_error_message(_("Could not move/copy file. File not attached"),
580 $color);
581 }
582 checkInput(true);
583 showInputForm($session);
584 /* sqimap_logout($imapConnection); */
585 }
586 } elseif (isset($html_addr_search_done)) {
587 if ($compose_new_win == '1') {
588 compose_Header($color, $mailbox);
589 }
590 else {
591 displayPageHeader($color, $mailbox);
592 }
593
594 if (isset($send_to_search) && is_array($send_to_search)) {
595 foreach ($send_to_search as $k => $v) {
596 if (substr($k, 0, 1) == 'T') {
597 if ($send_to) {
598 $send_to .= ', ';
599 }
600 $send_to .= $v;
601 }
602 elseif (substr($k, 0, 1) == 'C') {
603 if ($send_to_cc) {
604 $send_to_cc .= ', ';
605 }
606 $send_to_cc .= $v;
607 }
608 elseif (substr($k, 0, 1) == 'B') {
609 if ($send_to_bcc) {
610 $send_to_bcc .= ', ';
611 }
612 $send_to_bcc .= $v;
613 }
614 }
615 }
616 showInputForm($session);
617 } elseif (isset($html_addr_search) && !isset($html_addr_search_cancel)) {
618 if (isset($_FILES['attachfile']) &&
619 $_FILES['attachfile']['tmp_name'] &&
620 $_FILES['attachfile']['tmp_name'] != 'none') {
621 if(saveAttachedFiles($session)) {
622 plain_error_message(_("Could not move/copy file. File not attached"));
623 }
624 }
625 /*
626 * I am using an include so as to elminiate an extra unnecessary
627 * click. If you can think of a better way, please implement it.
628 */
629 include_once('./addrbook_search_html.php');
630 } elseif (isset($attach)) {
631 if ($compose_new_win == '1') {
632 compose_Header($color, $mailbox);
633 } else {
634 displayPageHeader($color, $mailbox);
635 }
636 if (saveAttachedFiles($session)) {
637 plain_error_message(_("Could not move/copy file. File not attached"));
638 }
639 showInputForm($session);
640 }
641 elseif (isset($sigappend)) {
642 $signature = $idents[$identity]['signature'];
643
644 $body .= "\n\n".($prefix_sig==true? "-- \n":'').$signature;
645 if ($compose_new_win == '1') {
646 compose_Header($color, $mailbox);
647 } else {
648 displayPageHeader($color, $mailbox);
649 }
650 showInputForm($session);
651 } elseif (isset($do_delete)) {
652 if ($compose_new_win == '1') {
653 compose_Header($color, $mailbox);
654 } else {
655 displayPageHeader($color, $mailbox);
656 }
657
658 if (isset($delete) && is_array($delete)) {
659 foreach($delete as $index) {
660 if (!empty($composeMessage->entities) && isset($composeMessage->entities[$index])) {
661 $composeMessage->entities[$index]->purgeAttachments();
662 unset ($composeMessage->entities[$index]);
663 }
664 }
665 $new_entities = array();
666 foreach ($composeMessage->entities as $entity) {
667 $new_entities[] = $entity;
668 }
669 $composeMessage->entities = $new_entities;
670 }
671 showInputForm($session);
672 } else {
673 /*
674 * This handles the default case as well as the error case
675 * (they had the same code) --> if (isset($smtpErrors))
676 */
677
678 if ($compose_new_win == '1') {
679 compose_Header($color, $mailbox);
680 } else {
681 displayPageHeader($color, $mailbox);
682 }
683
684 $newmail = true;
685
686 if (!isset($passed_ent_id)) {
687 $passed_ent_id = '';
688 }
689 if (!isset($passed_id)) {
690 $passed_id = '';
691 }
692 if (!isset($mailbox)) {
693 $mailbox = '';
694 }
695 if (!isset($action)) {
696 $action = '';
697 }
698
699 $values = newMail($mailbox,$passed_id,$passed_ent_id, $action, $session);
700
701 /* in case the origin is not read_body.php */
702 if (isset($send_to)) {
703 $values['send_to'] = $send_to;
704 }
705 if (isset($send_to_cc)) {
706 $values['send_to_cc'] = $send_to_cc;
707 }
708 if (isset($send_to_bcc)) {
709 $values['send_to_bcc'] = $send_to_bcc;
710 }
711 if (isset($subject)) {
712 $values['subject'] = $subject;
713 }
714 showInputForm($session, $values);
715 }
716
717 exit();
718
719 /**************** Only function definitions go below *************/
720
721 function getforwardSubject($subject)
722 {
723 if ((substr(strtolower($subject), 0, 4) != 'fwd:') &&
724 (substr(strtolower($subject), 0, 5) != '[fwd:') &&
725 (substr(strtolower($subject), 0, 6) != '[ fwd:')) {
726 $subject = '[Fwd: ' . $subject . ']';
727 }
728 return $subject;
729 }
730
731 /* This function is used when not sending or adding attachments */
732 function newMail ($mailbox='', $passed_id='', $passed_ent_id='', $action='', $session='') {
733 global $editor_size, $default_use_priority, $body, $idents,
734 $use_signature, $data_dir, $username,
735 $key, $imapServerAddress, $imapPort,
736 $composeMessage, $body_quote, $request_mdn, $request_dr,
737 $mdn_user_support, $languages, $squirrelmail_language,
738 $default_charset;
739
740 /*
741 * Set $default_charset to correspond with the user's selection
742 * of language interface. $default_charset global is not correct,
743 * if message is composed in new window.
744 */
745 set_my_charset();
746
747 $send_to = $send_to_cc = $send_to_bcc = $subject = $identity = '';
748 $mailprio = 3;
749
750 if ($passed_id) {
751 $imapConnection = sqimap_login($username, false, $imapServerAddress,
752 $imapPort, 0);
753
754 sqimap_mailbox_select($imapConnection, $mailbox);
755 $message = sqimap_get_message($imapConnection, $passed_id, $mailbox);
756
757 $body = '';
758 if ($passed_ent_id) {
759 /* redefine the messsage in case of message/rfc822 */
760 $message = $message->getEntity($passed_ent_id);
761 /* message is an entity which contains the envelope and type0=message
762 * and type1=rfc822. The actual entities are childs from
763 * $message->entities[0]. That's where the encoding and is located
764 */
765
766 $entities = $message->entities[0]->findDisplayEntity
767 (array(), $alt_order = array('text/plain'));
768 if (!count($entities)) {
769 $entities = $message->entities[0]->findDisplayEntity
770 (array(), $alt_order = array('text/plain','text/html'));
771 }
772 $orig_header = $message->rfc822_header; /* here is the envelope located */
773 /* redefine the message for picking up the attachments */
774 $message = $message->entities[0];
775
776 } else {
777 $entities = $message->findDisplayEntity (array(), $alt_order = array('text/plain'));
778 if (!count($entities)) {
779 $entities = $message->findDisplayEntity (array(), $alt_order = array('text/plain','text/html'));
780 }
781 $orig_header = $message->rfc822_header;
782 }
783
784 $type0 = $message->type0;
785 $type1 = $message->type1;
786 foreach ($entities as $ent) {
787 $msg = $message->getEntity($ent);
788 $type0 = $msg->type0;
789 $type1 = $msg->type1;
790 $unencoded_bodypart = mime_fetch_body($imapConnection, $passed_id, $ent);
791 $body_part_entity = $message->getEntity($ent);
792 $bodypart = decodeBody($unencoded_bodypart,
793 $body_part_entity->header->encoding);
794 if ($type1 == 'html') {
795 $bodypart = str_replace("\n", ' ', $bodypart);
796 $bodypart = preg_replace(array('/<\/?p>/i','/<div><\/div>/i','/<br\s*(\/)*>/i','/<\/?div>/i'), "\n", $bodypart);
797 $bodypart = str_replace(array('&nbsp;','&gt;','&lt;'),array(' ','>','<'),$bodypart);
798 $bodypart = strip_tags($bodypart);
799 }
800 if (isset($languages[$squirrelmail_language]['XTRA_CODE']) &&
801 function_exists($languages[$squirrelmail_language]['XTRA_CODE'] . '_decode')) {
802 if (mb_detect_encoding($bodypart) != 'ASCII') {
803 $bodypart = call_user_func($languages[$squirrelmail_language]['XTRA_CODE'] . '_decode', $bodypart);
804 }
805 }
806
807 // charset encoding in compose form stuff
808 if (isset($body_part_entity->header->parameters['charset'])) {
809 $actual = $body_part_entity->header->parameters['charset'];
810 } else {
811 $actual = 'us-ascii';
812 }
813
814 if ( $actual && is_conversion_safe($actual) && $actual != $default_charset){
815 $bodypart = charset_convert($actual,$bodypart,$default_charset,false);
816 }
817 // end of charset encoding in compose
818
819 $body .= $bodypart;
820 }
821 if ($default_use_priority) {
822 $mailprio = substr($orig_header->priority,0,1);
823 if (!$mailprio) {
824 $mailprio = 3;
825 }
826 } else {
827 $mailprio = '';
828 }
829
830 $from_o = $orig_header->from;
831 if (is_array($from_o)) {
832 if (isset($from_o[0])) {
833 $from_o = $from_o[0];
834 }
835 }
836 if (is_object($from_o)) {
837 $orig_from = $from_o->getAddress();
838 } else {
839 $orig_from = '';
840 }
841
842 $identities = array();
843 if (count($idents) > 1) {
844 foreach($idents as $nr=>$data) {
845 $enc_from_name = '"'.$data['full_name'].'" <'. $data['email_address'].'>';
846 if(strtolower($enc_from_name) == strtolower($orig_from)) {
847 $identity = $nr;
848 // don't stop! need to build $identities array for idents match below
849 //break;
850 }
851 $identities[] = $enc_from_name;
852 }
853
854 $identity_match = $orig_header->findAddress($identities);
855 if ($identity_match) {
856 $identity = $identity_match;
857 }
858 }
859
860 switch ($action) {
861 case ('draft'):
862 $use_signature = FALSE;
863 $composeMessage->rfc822_header = $orig_header;
864 $send_to = decodeHeader($orig_header->getAddr_s('to'),false,false,true);
865 $send_to_cc = decodeHeader($orig_header->getAddr_s('cc'),false,false,true);
866 $send_to_bcc = decodeHeader($orig_header->getAddr_s('bcc'),false,false,true);
867 $send_from = $orig_header->getAddr_s('from');
868 $send_from_parts = new AddressStructure();
869 $send_from_parts = $orig_header->parseAddress($send_from);
870 $send_from_add = $send_from_parts->mailbox . '@' . $send_from_parts->host;
871 $identity = find_identity(array($send_from_add));
872 $subject = decodeHeader($orig_header->subject,false,false,true);
873
874 // Remember the receipt settings
875 $request_mdn = $mdn_user_support && !empty($orig_header->dnt) ? '1' : '0';
876 $request_dr = $mdn_user_support && !empty($orig_header->drnt) ? '1' : '0';
877
878 /* remember the references and in-reply-to headers in case of an reply */
879 //FIXME: it would be better to fiddle with headers inside of the message object or possibly when delivering the message to its destination (drafts folder?); is this possible?
880 $composeMessage->rfc822_header->more_headers['References'] = $orig_header->references;
881 $composeMessage->rfc822_header->more_headers['In-Reply-To'] = $orig_header->in_reply_to;
882 // rewrap the body to clean up quotations and line lengths
883 sqBodyWrap($body, $editor_size);
884 $composeMessage = getAttachments($message, $composeMessage, $passed_id, $entities, $imapConnection);
885 break;
886 case ('edit_as_new'):
887 $send_to = decodeHeader($orig_header->getAddr_s('to'),false,false,true);
888 $send_to_cc = decodeHeader($orig_header->getAddr_s('cc'),false,false,true);
889 $send_to_bcc = decodeHeader($orig_header->getAddr_s('bcc'),false,false,true);
890 $subject = decodeHeader($orig_header->subject,false,false,true);
891 $mailprio = $orig_header->priority;
892 $orig_from = '';
893 $composeMessage = getAttachments($message, $composeMessage, $passed_id, $entities, $imapConnection);
894 // rewrap the body to clean up quotations and line lengths
895 sqBodyWrap($body, $editor_size);
896 break;
897 case ('forward'):
898 $send_to = '';
899 $subject = getforwardSubject(decodeHeader($orig_header->subject,false,false,true));
900 $body = getforwardHeader($orig_header) . $body;
901 // the logic for calling sqUnWordWrap here would be to allow the browser to wrap the lines
902 // forwarded message text should be as undisturbed as possible, so commenting out this call
903 // sqUnWordWrap($body);
904 $composeMessage = getAttachments($message, $composeMessage, $passed_id, $entities, $imapConnection);
905
906 //add a blank line after the forward headers
907 $body = "\n" . $body;
908 break;
909 case ('forward_as_attachment'):
910 $subject = getforwardSubject(decodeHeader($orig_header->subject,false,false,true));
911 $composeMessage = getMessage_RFC822_Attachment($message, $composeMessage, $passed_id, $passed_ent_id, $imapConnection);
912 $body = '';
913 break;
914 case ('reply_all'):
915 if(isset($orig_header->mail_followup_to) && $orig_header->mail_followup_to) {
916 $send_to = $orig_header->getAddr_s('mail_followup_to');
917 } else {
918 $send_to_cc = replyAllString($orig_header);
919 $send_to_cc = decodeHeader($send_to_cc,false,false,true);
920 }
921 case ('reply'):
922 // skip this if send_to was already set right above here
923 if(!$send_to) {
924 $send_to = $orig_header->reply_to;
925 if (is_array($send_to) && count($send_to)) {
926 $send_to = $orig_header->getAddr_s('reply_to');
927 } else if (is_object($send_to)) { /* unneccesarry, just for failsafe purpose */
928 $send_to = $orig_header->getAddr_s('reply_to');
929 } else {
930 $send_to = $orig_header->getAddr_s('from');
931 }
932 }
933 $send_to = decodeHeader($send_to,false,false,true);
934 $subject = decodeHeader($orig_header->subject,false,false,true);
935 $subject = str_replace('"', "'", $subject);
936 $subject = trim($subject);
937 if (substr(strtolower($subject), 0, 3) != 're:') {
938 $subject = 'Re: ' . $subject;
939 }
940 /* this corrects some wrapping/quoting problems on replies */
941 $rewrap_body = explode("\n", $body);
942 $from = (is_array($orig_header->from) && !empty($orig_header->from)) ? $orig_header->from[0] : $orig_header->from;
943 $body = '';
944 $strip_sigs = getPref($data_dir, $username, 'strip_sigs');
945 foreach ($rewrap_body as $line) {
946 if ($strip_sigs && substr($line,0,3) == '-- ') {
947 break;
948 }
949 if (preg_match("/^(>+)/", $line, $matches)) {
950 $gt = $matches[1];
951 $body .= $body_quote . str_replace("\n", "\n$body_quote$gt ", rtrim($line)) ."\n";
952 } else {
953 $body .= $body_quote . (!empty($body_quote) ? ' ' : '') . str_replace("\n", "\n$body_quote" . (!empty($body_quote) ? ' ' : ''), rtrim($line)) . "\n";
954 }
955 }
956
957 //rewrap the body to clean up quotations and line lengths
958 $body = sqBodyWrap ($body, $editor_size);
959
960 $body = getReplyCitation($from , $orig_header->date) . $body;
961 $composeMessage->reply_rfc822_header = $orig_header;
962
963 break;
964 default:
965 break;
966 }
967 //FIXME: we used to register $compose_messages in the session here, but not any more - so do we still need the session_write_close() and sqimap_logout() here? We probably need the IMAP logout, but what about the session closure?
968 session_write_close();
969 sqimap_logout($imapConnection);
970 }
971 $ret = array( 'send_to' => $send_to,
972 'send_to_cc' => $send_to_cc,
973 'send_to_bcc' => $send_to_bcc,
974 'subject' => $subject,
975 'mailprio' => $mailprio,
976 'body' => $body,
977 'identity' => $identity );
978
979 return ($ret);
980 } /* function newMail() */
981
982 /**
983 * downloads attachments from original message, stores them in attachment directory and adds
984 * them to composed message.
985 * @param object $message
986 * @param object $composeMessage
987 * @param integer $passed_id
988 * @param mixed $entities
989 * @param mixed $imapConnection
990 * @return object
991 */
992 function getAttachments($message, &$composeMessage, $passed_id, $entities, $imapConnection) {
993 global $squirrelmail_language, $languages, $username, $attachment_dir;
994
995 if (!count($message->entities) ||
996 ($message->type0 == 'message' && $message->type1 == 'rfc822')) {
997 if ( !in_array($message->entity_id, $entities) && $message->entity_id) {
998 switch ($message->type0) {
999 case 'message':
1000 if ($message->type1 == 'rfc822') {
1001 $filename = $message->rfc822_header->subject;
1002 if ($filename == "") {
1003 $filename = "untitled-".$message->entity_id;
1004 }
1005 $filename .= '.eml';
1006 } else {
1007 $filename = $message->getFilename();
1008 }
1009 break;
1010 default:
1011 if (!$message->mime_header) { /* temporary hack */
1012 $message->mime_header = $message->header;
1013 }
1014 $filename = $message->getFilename();
1015 break;
1016 }
1017 $filename = str_replace('&#32;', ' ', decodeHeader($filename));
1018 if (isset($languages[$squirrelmail_language]['XTRA_CODE']) &&
1019 function_exists($languages[$squirrelmail_language]['XTRA_CODE'] . '_encode')) {
1020 $filename = call_user_func($languages[$squirrelmail_language]['XTRA_CODE'] . '_encode', $filename);
1021 }
1022
1023 $hashed_attachment_dir = getHashedDir($username, $attachment_dir);
1024 $localfilename = sq_get_attach_tempfile();
1025 $message->att_local_name = $localfilename;
1026
1027 $composeMessage->initAttachment($message->type0.'/'.$message->type1,$filename,
1028 $localfilename);
1029
1030 /* Write Attachment to file */
1031 $fp = fopen ($hashed_attachment_dir . '/' . $localfilename, 'wb');
1032 mime_print_body_lines ($imapConnection, $passed_id, $message->entity_id, $message->header->encoding, $fp);
1033 fclose ($fp);
1034 }
1035 } else {
1036 for ($i=0, $entCount=count($message->entities); $i<$entCount;$i++) {
1037 $composeMessage=getAttachments($message->entities[$i], $composeMessage, $passed_id, $entities, $imapConnection);
1038 }
1039 }
1040 return $composeMessage;
1041 }
1042
1043 function getMessage_RFC822_Attachment($message, $composeMessage, $passed_id,
1044 $passed_ent_id='', $imapConnection) {
1045 if (!$passed_ent_id) {
1046 $body_a = sqimap_run_command($imapConnection,
1047 'FETCH '.$passed_id.' RFC822',
1048 TRUE, $response, $readmessage,
1049 TRUE);
1050 } else {
1051 $body_a = sqimap_run_command($imapConnection,
1052 'FETCH '.$passed_id.' BODY['.$passed_ent_id.']',
1053 TRUE, $response, $readmessage, TRUE);
1054 $message = $message->parent;
1055 }
1056 if ($response == 'OK') {
1057 $subject = encodeHeader($message->rfc822_header->subject);
1058 array_shift($body_a);
1059 array_pop($body_a);
1060 $body = implode('', $body_a) . "\r\n";
1061
1062 global $username, $attachment_dir;
1063 $hashed_attachment_dir = getHashedDir($username, $attachment_dir);
1064 $localfilename = sq_get_attach_tempfile();
1065 $fp = fopen($hashed_attachment_dir . '/' . $localfilename, 'wb');
1066 fwrite ($fp, $body);
1067 fclose($fp);
1068 $composeMessage->initAttachment('message/rfc822',$subject.'.eml',
1069 $localfilename);
1070 }
1071 return $composeMessage;
1072 }
1073
1074 function showInputForm ($session, $values=false) {
1075 global $send_to, $send_to_cc, $send_to_bcc,
1076 $body, $startMessage, $action, $attachments,
1077 $use_signature, $signature, $prefix_sig, $session_expired,
1078 $editor_size, $editor_height, $subject, $newmail,
1079 $use_javascript_addr_book, $passed_id, $mailbox,
1080 $from_htmladdr_search, $location_of_buttons, $attachment_dir,
1081 $username, $data_dir, $identity, $idents, $delete_draft,
1082 $mailprio, $compose_new_win, $saved_draft, $mail_sent, $sig_first,
1083 $composeMessage, $composesession, $default_charset,
1084 $compose_onsubmit, $oTemplate, $oErrorHandler;
1085
1086 if (checkForJavascript()) {
1087 $onfocus = ' onfocus="alreadyFocused=true;"';
1088 $onfocus_array = array('onfocus' => 'alreadyFocused=true;');
1089 }
1090 else {
1091 $onfocus = '';
1092 $onfocus_array = array();
1093 }
1094
1095 if ($values) {
1096 $send_to = $values['send_to'];
1097 $send_to_cc = $values['send_to_cc'];
1098 $send_to_bcc = $values['send_to_bcc'];
1099 $subject = $values['subject'];
1100 $mailprio = $values['mailprio'];
1101 $body = $values['body'];
1102 $identity = (int) $values['identity'];
1103 } else {
1104 $send_to = decodeHeader($send_to, true, false);
1105 $send_to_cc = decodeHeader($send_to_cc, true, false);
1106 $send_to_bcc = decodeHeader($send_to_bcc, true, false);
1107 }
1108
1109 if ($use_javascript_addr_book) {
1110 //FIXME: NO HTML IN CORE!
1111 echo "\n". '<script type="text/javascript">'."\n<!--\n" .
1112 'function open_abook() { ' . "\n" .
1113 ' var nwin = window.open("addrbook_popup.php","abookpopup",' .
1114 '"width=670,height=300,resizable=yes,scrollbars=yes");' . "\n" .
1115 ' if((!nwin.opener) && (document.windows != null))' . "\n" .
1116 ' nwin.opener = document.windows;' . "\n" .
1117 "}\n" .
1118 "// -->\n</script>\n\n";
1119 }
1120
1121 //FIXME: NO HTML IN CORE!
1122 echo "\n" . '<form name="compose" action="compose.php" method="post" ' .
1123 'enctype="multipart/form-data"';
1124
1125 $compose_onsubmit = array();
1126 global $null;
1127 do_hook('compose_form', $null);
1128
1129 // Plugins that use compose_form hook can add an array entry
1130 // to the globally scoped $compose_onsubmit; we add them up
1131 // here and format the form tag's full onsubmit handler.
1132 // Each plugin should use "return false" if they need to
1133 // stop form submission but otherwise should NOT use "return
1134 // true" to give other plugins the chance to do what they need
1135 // to do; SquirrelMail itself will add the final "return true".
1136 // Onsubmit text is enclosed inside of double quotes, so plugins
1137 // need to quote accordingly.
1138 if (checkForJavascript()) {
1139 $onsubmit_text = ' onsubmit="';
1140 if (empty($compose_onsubmit))
1141 $compose_onsubmit = array();
1142 else if (!is_array($compose_onsubmit))
1143 $compose_onsubmit = array($compose_onsubmit);
1144
1145 foreach ($compose_onsubmit as $text) {
1146 $text = trim($text);
1147 if (substr($text, -1) != ';' && substr($text, -1) != '}')
1148 $text .= '; ';
1149 $onsubmit_text .= $text;
1150 }
1151
1152 //FIXME: DON'T ECHO HTML FROM CORE!
1153 echo $onsubmit_text . ' return true;"';
1154 }
1155
1156
1157 //FIXME: NO HTML IN CORE!
1158 echo ">\n";
1159
1160 //FIXME: DON'T ECHO HTML FROM CORE!
1161 echo addHidden('startMessage', $startMessage);
1162
1163 if ($action == 'draft') {
1164 //FIXME: DON'T ECHO HTML FROM CORE!
1165 echo addHidden('delete_draft', $passed_id);
1166 }
1167 if (isset($delete_draft)) {
1168 //FIXME: DON'T ECHO HTML FROM CORE!
1169 echo addHidden('delete_draft', $delete_draft);
1170 }
1171 if (isset($session)) {
1172 //FIXME: DON'T ECHO HTML FROM CORE!
1173 echo addHidden('session', $session);
1174 }
1175
1176 if (isset($passed_id)) {
1177 //FIXME: DON'T ECHO HTML FROM CORE!
1178 echo addHidden('passed_id', $passed_id);
1179 }
1180
1181 if ($saved_draft == 'yes') {
1182 $oTemplate->assign('note', _("Your draft has been saved."));
1183 $oTemplate->display('note.tpl');
1184 }
1185 if ($mail_sent == 'yes') {
1186 $oTemplate->assign('note', _("Your mail has been sent."));
1187 $oTemplate->display('note.tpl');
1188 }
1189 if ($compose_new_win == '1') {
1190 $oTemplate->display('compose_newwin_close.tpl');
1191 }
1192
1193 if ($location_of_buttons == 'top') {
1194 //FIXME: DON'T ECHO HTML FROM CORE!
1195 showComposeButtonRow();
1196 }
1197
1198 $identities = array();
1199 if (count($idents) > 1) {
1200 reset($idents);
1201 foreach($idents as $id => $data) {
1202 $identities[$id] = $data['full_name'].' &lt;'.$data['email_address'].'&gt;';
1203 }
1204 }
1205
1206 $oTemplate->assign('identities', $identities);
1207 $oTemplate->assign('identity_def', $identity);
1208 $oTemplate->assign('input_onfocus', 'onfocus="'.join(' ', $onfocus_array).'"');
1209
1210 $oTemplate->assign('to', htmlspecialchars($send_to));
1211 $oTemplate->assign('cc', htmlspecialchars($send_to_cc));
1212 $oTemplate->assign('bcc', htmlspecialchars($send_to_bcc));
1213 $oTemplate->assign('subject', htmlspecialchars($subject));
1214
1215 $oTemplate->display('compose_header.tpl');
1216
1217 if ($location_of_buttons == 'between') {
1218 //FIXME: DON'T ECHO HTML FROM CORE!
1219 showComposeButtonRow();
1220 }
1221
1222 $body_str = '';
1223 if ($use_signature == true && $newmail == true && !isset($from_htmladdr_search)) {
1224 $signature = $idents[$identity]['signature'];
1225
1226 if ($sig_first == '1') {
1227 /*
1228 * FIXME: test is specific to ja_JP translation implementation.
1229 * This test might apply incorrect conversion to other translations, but
1230 * use of 7bit iso-2022-jp charset in other translations might have other
1231 * issues too.
1232 */
1233 if ($default_charset == 'iso-2022-jp') {
1234 $body_str = "\n\n".($prefix_sig==true? "-- \n":'').mb_convert_encoding($signature, 'EUC-JP');
1235 } else {
1236 $body_str = "\n\n".($prefix_sig==true? "-- \n":'').decodeHeader($signature,false,false);
1237 }
1238 $body_str .= "\n\n".htmlspecialchars(decodeHeader($body,false,false));
1239 } else {
1240 $body_str = "\n\n".htmlspecialchars(decodeHeader($body,false,false));
1241 // FIXME: test is specific to ja_JP translation implementation. See above comments.
1242 if ($default_charset == 'iso-2022-jp') {
1243 $body_str .= "\n\n".($prefix_sig==true? "-- \n":'').mb_convert_encoding($signature, 'EUC-JP');
1244 } else {
1245 $body_str .= "\n\n".($prefix_sig==true? "-- \n":'').decodeHeader($signature,false,false);
1246 }
1247 }
1248 } else {
1249 $body_str = htmlspecialchars(decodeHeader($body,false,false));
1250 }
1251
1252 $oTemplate->assign('editor_width', (int)$editor_size);
1253 $oTemplate->assign('editor_height', (int)$editor_height);
1254 $oTemplate->assign('input_onfocus', 'onfocus="'.join(' ', $onfocus_array).'"');
1255 $oTemplate->assign('body', $body_str);
1256 $oTemplate->assign('show_bottom_send', $location_of_buttons!='bottom');
1257
1258 $oTemplate->display ('compose_body.tpl');
1259
1260 if ($location_of_buttons == 'bottom') {
1261 //FIXME: DON'T ECHO HTML FROM CORE!
1262 showComposeButtonRow();
1263 }
1264
1265 // composeMessage can be empty when coming from a restored session
1266 if (is_object($composeMessage) && $composeMessage->entities)
1267 $attach_array = $composeMessage->entities;
1268 if ($session_expired && !empty($attachments) && is_array($attachments))
1269 $attach_array = $attachments;
1270
1271 /* This code is for attachments */
1272 if ((bool) ini_get('file_uploads')) {
1273
1274 /* Calculate the max size for an uploaded file.
1275 * This is advisory for the user because we can't actually prevent
1276 * people to upload too large files. */
1277 $sizes = array();
1278 /* php.ini vars which influence the max for uploads */
1279 $configvars = array('post_max_size', 'memory_limit', 'upload_max_filesize');
1280 foreach($configvars as $var) {
1281 /* skip 0 or empty values, and -1 which means 'unlimited' */
1282 if( $size = getByteSize(ini_get($var)) ) {
1283 if ( $size != '-1' ) {
1284 $sizes[] = $size;
1285 }
1286 }
1287 }
1288
1289 $attach = array();
1290 global $username, $attachment_dir;
1291 $hashed_attachment_dir = getHashedDir($username, $attachment_dir);
1292 if (!empty($attach_array)) {
1293 foreach ($attach_array as $key => $attachment) {
1294 $attached_file = $attachment->att_local_name;
1295 if ($attachment->att_local_name || $attachment->body_part) {
1296 $attached_filename = decodeHeader($attachment->mime_header->getParameter('name'));
1297 $type = $attachment->mime_header->type0.'/'.
1298 $attachment->mime_header->type1;
1299
1300 $a = array();
1301 $a['Key'] = $key;
1302 $a['FileName'] = $attached_filename;
1303 $a['ContentType'] = $type;
1304 $a['Size'] = filesize($hashed_attachment_dir . '/' . $attached_file);
1305 $attach[$key] = $a;
1306 }
1307 }
1308 }
1309
1310 $max = min($sizes);
1311 $oTemplate->assign('max_file_size', empty($max) ? -1 : $max);
1312 $oTemplate->assign('attachments', $attach);
1313
1314 $oTemplate->display('compose_attachments.tpl');
1315 } // End of file_uploads if-block
1316 /* End of attachment code */
1317
1318 //FIXME: no direct echoing to browser, no HTML output in core!
1319 echo addHidden('username', $username).
1320 addHidden('smaction', $action).
1321 addHidden('mailbox', $mailbox);
1322 sqgetGlobalVar('QUERY_STRING', $queryString, SQ_SERVER);
1323 //FIXME: no direct echoing to browser, no HTML output in core!
1324 echo addHidden('composesession', $composesession).
1325 addHidden('querystring', $queryString).
1326 (!empty($attach_array) ?
1327 addHidden('attachments', urlencode(serialize($attach_array))) : '').
1328 "</form>\n";
1329 if (!(bool) ini_get('file_uploads')) {
1330 /* File uploads are off, so we didn't show that part of the form.
1331 To avoid bogus bug reports, tell the user why. */
1332 //FIXME: no direct echoing to browser, no HTML output in core!
1333 echo '<p style="text-align:center">'
1334 . _("Because PHP file uploads are turned off, you can not attach files to this message. Please see your system administrator for details.")
1335 . "</p>\r\n";
1336 }
1337
1338 if ($compose_new_win=='1') {
1339 $oTemplate->display('compose_newwin_close.tpl');
1340 }
1341
1342 do_hook('compose_bottom', $null);
1343
1344 $oErrorHandler->setDelayedErrors(false);
1345 $oTemplate->display('footer.tpl');
1346 }
1347
1348
1349 function showComposeButtonRow() {
1350 global $use_javascript_addr_book, $save_as_draft,
1351 $default_use_priority, $mailprio, $default_use_mdn,
1352 $request_mdn, $request_dr,
1353 $data_dir, $username;
1354
1355 global $oTemplate, $buffer_hook;
1356
1357 if ($default_use_priority) {
1358 $priorities = array('1'=>_("High"), '3'=>_("Normal"), '5'=>_("Low"));
1359 $priority = isset($mailprio) ? $mailprio : 3;
1360 } else {
1361 $priorities = array();
1362 $priority = NULL;
1363 }
1364
1365 $mdn_user_support=getPref($data_dir, $username, 'mdn_user_support',$default_use_mdn);
1366
1367 if ($use_javascript_addr_book && checkForJavascript()) {
1368 $addr_book = addButton(_("Addresses"), null, array('onclick' => 'javascript:open_abook();'));
1369 } else {
1370 $addr_book = addSubmit(_("Addresses"), 'html_addr_search');
1371 }
1372
1373 $oTemplate->assign('allow_priority', $default_use_priority==1);
1374 $oTemplate->assign('priority_list', $priorities);
1375 $oTemplate->assign('current_priority', $priority);
1376
1377 $oTemplate->assign('notifications_enabled', $mdn_user_support==1);
1378 $oTemplate->assign('read_receipt', $request_mdn=='1');
1379 $oTemplate->assign('delivery_receipt', $request_dr=='1');
1380
1381 $oTemplate->assign('drafts_enabled', $save_as_draft);
1382 $oTemplate->assign('address_book_button', $addr_book);
1383
1384 $oTemplate->display('compose_buttons.tpl');
1385 }
1386
1387 function checkInput ($show) {
1388 /*
1389 * I implemented the $show variable because the error messages
1390 * were getting sent before the page header. So, I check once
1391 * using $show=false, and then when i'm ready to display the error
1392 * message, show=true
1393 */
1394 global $send_to, $send_to_cc, $send_to_bcc;
1395
1396 $send_to = trim($send_to);
1397 $send_to_cc = trim($send_to_cc);
1398 $send_to_bcc = trim($send_to_bcc);
1399 if (empty($send_to) && empty($send_to_cc) && empty($send_to_bcc)) {
1400 if ($show) {
1401 plain_error_message(_("You have not filled in the \"To:\" field."));
1402 }
1403 return false;
1404 }
1405 return true;
1406 } /* function checkInput() */
1407
1408
1409 /* True if FAILURE */
1410 function saveAttachedFiles($session) {
1411 global $composeMessage, $username, $attachment_dir;
1412
1413 /* get out of here if no file was attached at all */
1414 if (! is_uploaded_file($_FILES['attachfile']['tmp_name']) ) {
1415 return true;
1416 }
1417
1418 $hashed_attachment_dir = getHashedDir($username, $attachment_dir);
1419 $localfilename = sq_get_attach_tempfile();
1420 $fullpath = $hashed_attachment_dir . '/' . $localfilename;
1421
1422 // m_u_f works better with restricted PHP installs (safe_mode, open_basedir),
1423 // if that doesn't work, try a simple rename.
1424 if (!sq_call_function_suppress_errors('move_uploaded_file', array($_FILES['attachfile']['tmp_name'], $fullpath))) {
1425 if (!sq_call_function_suppress_errors('rename', array($_FILES['attachfile']['tmp_name'], $fullpath))) {
1426 return true;
1427 }
1428 }
1429 $type = strtolower($_FILES['attachfile']['type']);
1430 $name = $_FILES['attachfile']['name'];
1431 $composeMessage->initAttachment($type, $name, $localfilename);
1432 }
1433
1434 /* parse values like 8M and 2k into bytes */
1435 function getByteSize($ini_size) {
1436
1437 if(!$ini_size) {
1438 return FALSE;
1439 }
1440
1441 $ini_size = trim($ini_size);
1442
1443 // if there's some kind of letter at the end of the string we need to multiply.
1444 if(!is_numeric(substr($ini_size, -1))) {
1445
1446 switch(strtoupper(substr($ini_size, -1))) {
1447 case 'G':
1448 $bytesize = 1073741824;
1449 break;
1450 case 'M':
1451 $bytesize = 1048576;
1452 break;
1453 case 'K':
1454 $bytesize = 1024;
1455 break;
1456 }
1457
1458 return ($bytesize * (int)substr($ini_size, 0, -1));
1459 }
1460
1461 return $ini_size;
1462 }
1463
1464
1465 /**
1466 * temporary function to make use of the deliver class.
1467 * In the future the responsible backend should be automaticly loaded
1468 * and conf.pl should show a list of available backends.
1469 * The message also should be constructed by the message class.
1470 *
1471 * @param object $composeMessage The message being sent. Please note
1472 * that it is passed by reference and
1473 * will be returned modified, with additional
1474 * headers, such as Message-ID, Date, In-Reply-To,
1475 * References, and so forth.
1476 *
1477 * @return boolean FALSE if delivery failed, or some non-FALSE value
1478 * upon success.
1479 *
1480 */
1481 function deliverMessage(&$composeMessage, $draft=false) {
1482 global $send_to, $send_to_cc, $send_to_bcc, $mailprio, $subject, $body,
1483 $username, $identity, $idents, $data_dir,
1484 $request_mdn, $request_dr, $default_charset, $useSendmail,
1485 $domain, $action, $default_move_to_sent, $move_to_sent,
1486 $imapServerAddress, $imapPort, $sent_folder, $key;
1487
1488 $rfc822_header = $composeMessage->rfc822_header;
1489
1490 $abook = addressbook_init(false, true);
1491 $rfc822_header->to = $rfc822_header->parseAddress($send_to,true, array(), '', $domain, array(&$abook,'lookup'));
1492 $rfc822_header->cc = $rfc822_header->parseAddress($send_to_cc,true,array(), '',$domain, array(&$abook,'lookup'));
1493 $rfc822_header->bcc = $rfc822_header->parseAddress($send_to_bcc,true, array(), '',$domain, array(&$abook,'lookup'));
1494 $rfc822_header->priority = $mailprio;
1495 $rfc822_header->subject = $subject;
1496
1497 $special_encoding='';
1498 if (strtolower($default_charset) == 'iso-2022-jp') {
1499 if (mb_detect_encoding($body) == 'ASCII') {
1500 $special_encoding = '8bit';
1501 } else {
1502 $body = mb_convert_encoding($body, 'JIS');
1503 $special_encoding = '7bit';
1504 }
1505 }
1506 $composeMessage->setBody($body);
1507
1508 $reply_to = '';
1509 $reply_to = $idents[$identity]['reply_to'];
1510
1511 $from_addr = build_from_header($identity);
1512 $rfc822_header->from = $rfc822_header->parseAddress($from_addr,true);
1513 if ($reply_to) {
1514 $rfc822_header->reply_to = $rfc822_header->parseAddress($reply_to,true);
1515 }
1516 /* Receipt: On Read */
1517 if (isset($request_mdn) && $request_mdn) {
1518 $rfc822_header->dnt = $rfc822_header->parseAddress($from_addr,true);
1519 } elseif (isset($rfc822_header->dnt)) {
1520 unset($rfc822_header->dnt);
1521 }
1522
1523 /* Receipt: On Delivery */
1524 if (!empty($request_dr)) {
1525 //FIXME: it would be better to fiddle with headers inside of the message object or possibly when delivering the message to its destination; is this possible?
1526 $rfc822_header->more_headers['Return-Receipt-To'] = $from_addr;
1527 } elseif (isset($rfc822_header->more_headers['Return-Receipt-To'])) {
1528 unset($rfc822_header->more_headers['Return-Receipt-To']);
1529 }
1530
1531 /* multipart messages */
1532 if (count($composeMessage->entities)) {
1533 $message_body = new Message();
1534 $message_body->body_part = $composeMessage->body_part;
1535 $composeMessage->body_part = '';
1536 $mime_header = new MessageHeader;
1537 $mime_header->type0 = 'text';
1538 $mime_header->type1 = 'plain';
1539 if ($special_encoding) {
1540 $mime_header->encoding = $special_encoding;
1541 } else {
1542 $mime_header->encoding = '8bit';
1543 }
1544 if ($default_charset) {
1545 $mime_header->parameters['charset'] = $default_charset;
1546 }
1547 $message_body->mime_header = $mime_header;
1548 array_unshift($composeMessage->entities, $message_body);
1549 $content_type = new ContentType('multipart/mixed');
1550 } else {
1551 $content_type = new ContentType('text/plain');
1552 if ($special_encoding) {
1553 $rfc822_header->encoding = $special_encoding;
1554 } else {
1555 $rfc822_header->encoding = '8bit';
1556 }
1557 if ($default_charset) {
1558 $content_type->properties['charset']=$default_charset;
1559 }
1560 }
1561
1562 $rfc822_header->content_type = $content_type;
1563 $composeMessage->rfc822_header = $rfc822_header;
1564 if ($action == 'reply' || $action == 'reply_all') {
1565 global $passed_id, $passed_ent_id;
1566 $reply_id = $passed_id;
1567 $reply_ent_id = $passed_ent_id;
1568 } else {
1569 $reply_id = '';
1570 $reply_ent_id = '';
1571 }
1572
1573 /* Here you can modify the message structure just before we hand
1574 it over to deliver; plugin authors note that $composeMessage
1575 is sent and modified by reference since 1.5.2 */
1576 do_hook('compose_send', $composeMessage);
1577
1578 if (!$useSendmail && !$draft) {
1579 require_once(SM_PATH . 'class/deliver/Deliver_SMTP.class.php');
1580 $deliver = new Deliver_SMTP();
1581 global $smtpServerAddress, $smtpPort, $pop_before_smtp, $pop_before_smtp_host;
1582
1583 $authPop = (isset($pop_before_smtp) && $pop_before_smtp) ? true : false;
1584 if (empty($pop_before_smtp_host)) $pop_before_smtp_host = $smtpServerAddress;
1585 get_smtp_user($user, $pass);
1586 $stream = $deliver->initStream($composeMessage,$domain,0,
1587 $smtpServerAddress, $smtpPort, $user, $pass, $authPop, $pop_before_smtp_host);
1588 } elseif (!$draft) {
1589 require_once(SM_PATH . 'class/deliver/Deliver_SendMail.class.php');
1590 global $sendmail_path, $sendmail_args;
1591 // Check for outdated configuration
1592 if (!isset($sendmail_args)) {
1593 if ($sendmail_path=='/var/qmail/bin/qmail-inject') {
1594 $sendmail_args = '';
1595 } else {
1596 $sendmail_args = '-i -t';
1597 }
1598 }
1599 $deliver = new Deliver_SendMail(array('sendmail_args'=>$sendmail_args));
1600 $stream = $deliver->initStream($composeMessage,$sendmail_path);
1601 } elseif ($draft) {
1602 global $draft_folder;
1603 $imap_stream = sqimap_login($username, false, $imapServerAddress,
1604 $imapPort, 0);
1605 if (sqimap_mailbox_exists ($imap_stream, $draft_folder)) {
1606 require_once(SM_PATH . 'class/deliver/Deliver_IMAP.class.php');
1607 $imap_deliver = new Deliver_IMAP();
1608 $success = $imap_deliver->mail($composeMessage, $imap_stream, $reply_id, $reply_ent_id, $imap_stream, $draft_folder);
1609 sqimap_logout($imap_stream);
1610 unset ($imap_deliver);
1611 $composeMessage->purgeAttachments();
1612 return $success;
1613 } else {
1614 $msg = '<br />'.sprintf(_("Error: Draft folder %s does not exist."), htmlspecialchars($draft_folder));
1615 plain_error_message($msg);
1616 return false;
1617 }
1618 }
1619 $success = false;
1620 if ($stream) {
1621 $deliver->mail($composeMessage, $stream, $reply_id, $reply_ent_id);
1622 $success = $deliver->finalizeStream($stream);
1623 }
1624 if (!$success) {
1625 // $deliver->dlv_server_msg is not always server's reply
1626 $msg = _("Message not sent.") . "<br />\n" .
1627 $deliver->dlv_msg;
1628 if (!empty($deliver->dlv_server_msg)) {
1629 // add 'server replied' part only when it is not empty.
1630 // Delivery error can be generated by delivery class itself
1631 $msg.='<br />' .
1632 _("Server replied:") . ' ' . $deliver->dlv_ret_nr . ' ' .
1633 nl2br(htmlspecialchars($deliver->dlv_server_msg));
1634 }
1635 plain_error_message($msg);
1636 } else {
1637 unset ($deliver);
1638 $imap_stream = sqimap_login($username, false, $imapServerAddress, $imapPort, 0);
1639
1640
1641 // mark as replied or forwarded if applicable
1642 //
1643 global $what, $iAccount, $startMessage, $passed_id, $mailbox;
1644
1645 if ($action=='reply' || $action=='reply_all' || $action=='forward' || $action=='forward_as_attachment') {
1646 require(SM_PATH . 'functions/mailbox_display.php');
1647 $aMailbox = sqm_api_mailbox_select($imap_stream, $iAccount, $mailbox,array('setindex' => $what, 'offset' => $startMessage),array());
1648 switch($action) {
1649 case 'reply':
1650 case 'reply_all':
1651 // check if we are allowed to set the \\Answered flag
1652 if (in_array('\\answered',$aMailbox['PERMANENTFLAGS'], true)) {
1653 $aUpdatedMsgs = sqimap_toggle_flag($imap_stream, array($passed_id), '\\Answered', true, false);
1654 if (isset($aUpdatedMsgs[$passed_id]['FLAGS'])) {
1655 /**
1656 * Only update the cached headers if the header is
1657 * cached.
1658 */
1659 if (isset($aMailbox['MSG_HEADERS'][$passed_id])) {
1660 $aMailbox['MSG_HEADERS'][$passed_id]['FLAGS'] = $aMsg['FLAGS'];
1661 }
1662 }
1663 }
1664 break;
1665 case 'forward':
1666 case 'forward_as_attachment':
1667 // check if we are allowed to set the $Forwarded flag (RFC 4550 paragraph 2.8)
1668 if (in_array('$forwarded',$aMailbox['PERMANENTFLAGS'], true) ||
1669 in_array('\\*',$aMailbox['PERMANENTFLAGS'])) {
1670
1671 $aUpdatedMsgs = sqimap_toggle_flag($imap_stream, array($passed_id), '$Forwarded', true, false);
1672 if (isset($aUpdatedMsgs[$passed_id]['FLAGS'])) {
1673 if (isset($aMailbox['MSG_HEADERS'][$passed_id])) {
1674 $aMailbox['MSG_HEADERS'][$passed_id]['FLAGS'] = $aMsg['FLAGS'];
1675 }
1676 }
1677 }
1678 break;
1679 }
1680
1681 /**
1682 * Write mailbox with updated seen flag information back to cache.
1683 */
1684 if(isset($aUpdatedMsgs[$passed_id])) {
1685 $mailbox_cache[$iAccount.'_'.$aMailbox['NAME']] = $aMailbox;
1686 sqsession_register($mailbox_cache,'mailbox_cache');
1687 }
1688
1689 }
1690
1691
1692 // move to sent folder
1693 //
1694 $move_to_sent = getPref($data_dir,$username,'move_to_sent');
1695 if (isset($default_move_to_sent) && ($default_move_to_sent != 0)) {
1696 $svr_allow_sent = true;
1697 } else {
1698 $svr_allow_sent = false;
1699 }
1700
1701 if (isset($sent_folder) && (($sent_folder != '') || ($sent_folder != 'none'))
1702 && sqimap_mailbox_exists( $imap_stream, $sent_folder)) {
1703 $fld_sent = true;
1704 } else {
1705 $fld_sent = false;
1706 }
1707
1708 if ((isset($move_to_sent) && ($move_to_sent != 0)) || (!isset($move_to_sent))) {
1709 $lcl_allow_sent = true;
1710 } else {
1711 $lcl_allow_sent = false;
1712 }
1713
1714 if (($fld_sent && $svr_allow_sent && !$lcl_allow_sent) || ($fld_sent && $lcl_allow_sent)) {
1715 if ($action == 'reply' || $action == 'reply_all') {
1716 $save_reply_with_orig=getPref($data_dir,$username,'save_reply_with_orig');
1717 if ($save_reply_with_orig) {
1718 $sent_folder = $mailbox;
1719 }
1720 }
1721 require_once(SM_PATH . 'class/deliver/Deliver_IMAP.class.php');
1722 $imap_deliver = new Deliver_IMAP();
1723 $imap_deliver->mail($composeMessage, $imap_stream, $reply_id, $reply_ent_id, $imap_stream, $sent_folder);
1724 unset ($imap_deliver);
1725 }
1726
1727
1728 // final cleanup
1729 //
1730 $composeMessage->purgeAttachments();
1731 sqimap_logout($imap_stream);
1732
1733 }
1734 return $success;
1735 }