mirror of
https://github.com/actions/setup-java.git
synced 2026-08-04 16:52:58 +00:00
27f2c62824
* Verify JDK downloads with vendor checksums Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: a800a031-600e-4d28-b23e-be309555d38d * Handle missing vendor checksum values Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: a800a031-600e-4d28-b23e-be309555d38d * Preserve checksum error during cleanup failure Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: a800a031-600e-4d28-b23e-be309555d38d * Validate checksum metadata value types Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: a800a031-600e-4d28-b23e-be309555d38d * Clarify checksum documentation Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: a800a031-600e-4d28-b23e-be309555d38d * Expand vendor checksum verification Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: a800a031-600e-4d28-b23e-be309555d38d * Accept SHA-256 or SHA-512 for JetBrains checksum sibling JetBrains publishes a single, generically-named ".checksum" sibling whose digest algorithm isn't disclosed by the filename. Older JBR 11 builds (e.g. jbrsdk_nomod-11_0_16-*-b2043.64.tar.gz) publish a SHA-256 digest there, while newer builds publish SHA-512. The JetBrains installer previously assumed SHA-512 unconditionally, so verification failed with "Malformed sha512 checksum metadata ... expected a 128-character hexadecimal digest" for those older builds, breaking the jetbrains 11 e2e job on macOS and Windows. fetchChecksum now accepts a list of candidate algorithms and infers the actual algorithm from the returned digest's length, preferring the strongest match. The JetBrains installer passes ['sha512', 'sha256']; all other callers are unaffected since they already pass a single, vendor-disclosed algorithm. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: a800a031-600e-4d28-b23e-be309555d38d * Use SapMachine archive checksum files Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: a800a031-600e-4d28-b23e-be309555d38d --------- Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: a800a031-600e-4d28-b23e-be309555d38d
153 lines
4.7 KiB
TypeScript
153 lines
4.7 KiB
TypeScript
import * as core from '@actions/core';
|
|
import * as tc from '@actions/tool-cache';
|
|
|
|
import fs from 'fs';
|
|
import path from 'path';
|
|
|
|
import {JavaBase} from '../base-installer.js';
|
|
import {
|
|
JavaDownloadRelease,
|
|
JavaInstallerOptions,
|
|
JavaInstallerResults
|
|
} from '../base-models.js';
|
|
import {
|
|
extractJdkFile,
|
|
getDownloadArchiveExtension,
|
|
getLatestMajorVersion,
|
|
renameWinArchive
|
|
} from '../../util.js';
|
|
import {HttpCodes} from '@actions/http-client';
|
|
import {OsVersions} from './models.js';
|
|
|
|
const ORACLE_DL_BASE = 'https://download.oracle.com/java';
|
|
|
|
export class OracleDistribution extends JavaBase {
|
|
constructor(installerOptions: JavaInstallerOptions) {
|
|
super('Oracle', installerOptions);
|
|
}
|
|
|
|
protected async downloadTool(
|
|
javaRelease: JavaDownloadRelease
|
|
): Promise<JavaInstallerResults> {
|
|
core.info(
|
|
`Downloading Java ${javaRelease.version} (${this.distribution}) from ${javaRelease.url} ...`
|
|
);
|
|
let javaArchivePath = await this.downloadAndVerify(javaRelease);
|
|
|
|
core.info(`Extracting Java archive...`);
|
|
const extension = getDownloadArchiveExtension();
|
|
if (process.platform === 'win32') {
|
|
javaArchivePath = renameWinArchive(javaArchivePath);
|
|
}
|
|
const extractedJavaPath = await extractJdkFile(javaArchivePath, extension);
|
|
|
|
const archiveName = fs.readdirSync(extractedJavaPath)[0];
|
|
const archivePath = path.join(extractedJavaPath, archiveName);
|
|
const version = this.getToolcacheVersionName(javaRelease.version);
|
|
|
|
const javaPath = await tc.cacheDir(
|
|
archivePath,
|
|
this.toolcacheFolderName,
|
|
version,
|
|
this.architecture
|
|
);
|
|
|
|
return {version: javaRelease.version, path: javaPath};
|
|
}
|
|
|
|
protected async findPackageForDownload(
|
|
range: string
|
|
): Promise<JavaDownloadRelease> {
|
|
const arch = this.distributionArchitecture();
|
|
if (arch !== 'x64' && arch !== 'aarch64') {
|
|
throw new Error(`Unsupported architecture: ${this.architecture}`);
|
|
}
|
|
|
|
if (!this.stable) {
|
|
throw new Error('Early access versions are not supported');
|
|
}
|
|
|
|
if (this.packageType !== 'jdk') {
|
|
throw new Error('Oracle JDK provides only the `jdk` package type');
|
|
}
|
|
|
|
const platform = this.getPlatform();
|
|
const extension = getDownloadArchiveExtension();
|
|
|
|
// The `latest` alias is normalized to the SemVer wildcard. Oracle builds its
|
|
// download URLs from a concrete major and has no endpoint to list releases,
|
|
// so resolve the newest available GA major from the Adoptium API and use it.
|
|
if (this.latest) {
|
|
const latestMajor = await getLatestMajorVersion(this.http);
|
|
range = latestMajor.toString();
|
|
}
|
|
|
|
const isOnlyMajorProvided = !range.includes('.');
|
|
const major = isOnlyMajorProvided ? range : range.split('.')[0];
|
|
|
|
const possibleUrls: string[] = [];
|
|
|
|
/**
|
|
* NOTE
|
|
* If only major version was provided we will check it under /latest first
|
|
* in order to retrieve the latest possible version if possible,
|
|
* otherwise we will fall back to /archive where we are guaranteed to
|
|
* find any version if it exists
|
|
*/
|
|
if (isOnlyMajorProvided) {
|
|
possibleUrls.push(
|
|
`${ORACLE_DL_BASE}/${major}/latest/jdk-${major}_${platform}-${arch}_bin.${extension}`
|
|
);
|
|
}
|
|
|
|
possibleUrls.push(
|
|
`${ORACLE_DL_BASE}/${major}/archive/jdk-${range}_${platform}-${arch}_bin.${extension}`
|
|
);
|
|
|
|
if (parseInt(major) < 17) {
|
|
throw new Error('Oracle JDK is only supported for JDK 17 and later');
|
|
}
|
|
|
|
for (const url of possibleUrls) {
|
|
const response = await this.http.head(url);
|
|
|
|
if (response.message.statusCode === HttpCodes.OK) {
|
|
return {
|
|
url,
|
|
version: range,
|
|
checksum: await this.fetchChecksum(`${url}.sha256`, 'sha256')
|
|
};
|
|
}
|
|
|
|
if (response.message.statusCode !== HttpCodes.NotFound) {
|
|
throw new Error(
|
|
`Http request for Oracle JDK failed with status code: ${response.message.statusCode}`
|
|
);
|
|
}
|
|
}
|
|
|
|
if (this.latest) {
|
|
const error = this.createVersionNotFoundError(range);
|
|
error.message += `\nThe latest Java major version (${range}) is not yet available for the Oracle JDK distribution. Please specify a concrete version instead of 'latest'.`;
|
|
throw error;
|
|
}
|
|
|
|
throw this.createVersionNotFoundError(range);
|
|
}
|
|
|
|
public getPlatform(platform: NodeJS.Platform = process.platform): OsVersions {
|
|
switch (platform) {
|
|
case 'darwin':
|
|
return 'macos';
|
|
case 'win32':
|
|
return 'windows';
|
|
case 'linux':
|
|
return 'linux';
|
|
default:
|
|
throw new Error(
|
|
`Platform '${platform}' is not supported. Supported platforms: 'linux', 'macos', 'windows'`
|
|
);
|
|
}
|
|
}
|
|
}
|